oweals/openssl.git
21 years agoSmall bugfix: even when r == d, we need to adjust r and q.
Richard Levitte [Sun, 1 Dec 2002 02:17:30 +0000 (02:17 +0000)]
Small bugfix: even when r == d, we need to adjust r and q.
PR: 366

21 years agoEXIT() needs to be in a function that returns int.
Richard Levitte [Sun, 1 Dec 2002 01:23:39 +0000 (01:23 +0000)]
EXIT() needs to be in a function that returns int.

21 years agoRedo the VAX assembler version of bn_div_words().
Richard Levitte [Sun, 1 Dec 2002 00:49:45 +0000 (00:49 +0000)]
Redo the VAX assembler version of bn_div_words().
PR: 366

21 years agoRemove incorrect assert.
Richard Levitte [Fri, 29 Nov 2002 15:18:28 +0000 (15:18 +0000)]
Remove incorrect assert.
PR: 360

21 years agoMake it so all names mentioned in the NAME section of each manpage becomes a
Richard Levitte [Fri, 29 Nov 2002 15:01:12 +0000 (15:01 +0000)]
Make it so all names mentioned in the NAME section of each manpage becomes a
symlink to said manpage.
PR: 242

21 years agoThis commit was manufactured by cvs2svn to create branch
cvs2svn [Fri, 29 Nov 2002 15:01:01 +0000 (15:01 +0000)]
This commit was manufactured by cvs2svn to create branch
'OpenSSL_0_9_7-stable'.

21 years agoMake it so all names mentioned in the NAME section of each manpage becomes a
Richard Levitte [Fri, 29 Nov 2002 15:00:58 +0000 (15:00 +0000)]
Make it so all names mentioned in the NAME section of each manpage becomes a
symlink to said manpage.
PR: 242

21 years agoCorrect some names.
Richard Levitte [Fri, 29 Nov 2002 14:22:05 +0000 (14:22 +0000)]
Correct some names.

21 years agoCorrect some names.
Richard Levitte [Fri, 29 Nov 2002 14:21:54 +0000 (14:21 +0000)]
Correct some names.

21 years agoA few more memset()s converted to OPENSSL_cleanse().
Richard Levitte [Fri, 29 Nov 2002 11:31:51 +0000 (11:31 +0000)]
A few more memset()s converted to OPENSSL_cleanse().
I *think* I got them all covered by now, bu please, if you find any more,
tell me and I'll correct it.
PR: 343

21 years agoA few more memset()s converted to OPENSSL_cleanse().
Richard Levitte [Fri, 29 Nov 2002 11:30:45 +0000 (11:30 +0000)]
A few more memset()s converted to OPENSSL_cleanse().
I *think* I got them all covered by now, bu please, if you find any more,
tell me and I'll correct it.
PR: 343

21 years agoHave all tests use EXIT() to exit rather than exit(), since the latter doesn't
Richard Levitte [Thu, 28 Nov 2002 18:57:30 +0000 (18:57 +0000)]
Have all tests use EXIT() to exit rather than exit(), since the latter doesn't
always give the expected result on some platforms.

21 years agoHave all tests use EXIT() to exit rather than exit(), since the latter doesn't
Richard Levitte [Thu, 28 Nov 2002 18:54:30 +0000 (18:54 +0000)]
Have all tests use EXIT() to exit rather than exit(), since the latter doesn't
always give the expected result on some platforms.

21 years agoMake sure EXIT() can always be used as one statement.
Richard Levitte [Thu, 28 Nov 2002 18:52:24 +0000 (18:52 +0000)]
Make sure EXIT() can always be used as one statement.

21 years agoMake sure EXIT() can always be used as one statement.
Richard Levitte [Thu, 28 Nov 2002 18:52:14 +0000 (18:52 +0000)]
Make sure EXIT() can always be used as one statement.

21 years agoCleanse memory using the new OPENSSL_cleanse() function.
Richard Levitte [Thu, 28 Nov 2002 08:09:03 +0000 (08:09 +0000)]
Cleanse memory using the new OPENSSL_cleanse() function.
I've covered all the memset()s I felt safe modifying, but may have missed some.

21 years agoCleanse memory using the new OPENSSL_cleanse() function.
Richard Levitte [Thu, 28 Nov 2002 08:04:36 +0000 (08:04 +0000)]
Cleanse memory using the new OPENSSL_cleanse() function.
I've covered all the memset()s I felt safe modifying, but may have missed some.

21 years agoUnused variable removed.
Richard Levitte [Wed, 27 Nov 2002 13:40:41 +0000 (13:40 +0000)]
Unused variable removed.

21 years agoExtra ; removed.
Richard Levitte [Wed, 27 Nov 2002 13:40:11 +0000 (13:40 +0000)]
Extra ; removed.

21 years agoAdd OPENSSL_cleanse() to help cleanse memory and avoid certain compiler
Richard Levitte [Wed, 27 Nov 2002 12:25:52 +0000 (12:25 +0000)]
Add OPENSSL_cleanse() to help cleanse memory and avoid certain compiler
and linker optimizations.
PR: 343

21 years agoThis commit was manufactured by cvs2svn to create branch
cvs2svn [Wed, 27 Nov 2002 12:24:10 +0000 (12:24 +0000)]
This commit was manufactured by cvs2svn to create branch
'OpenSSL_0_9_7-stable'.

21 years agoAdd OPENSSL_cleanse() to help cleanse memory and avoid certain compiler
Richard Levitte [Wed, 27 Nov 2002 12:24:05 +0000 (12:24 +0000)]
Add OPENSSL_cleanse() to help cleanse memory and avoid certain compiler
and linker optimizations.
PR: 343

21 years agoI forgot that @ in strings must be escaped in Perl
Richard Levitte [Tue, 26 Nov 2002 15:27:05 +0000 (15:27 +0000)]
I forgot that @ in strings must be escaped in Perl

21 years agoI forgot that @ in strings must be escaped in Perl
Richard Levitte [Tue, 26 Nov 2002 15:26:55 +0000 (15:26 +0000)]
I forgot that @ in strings must be escaped in Perl

21 years agoThe logic in the main signing and verifying functions to check lengths was
Richard Levitte [Tue, 26 Nov 2002 11:14:45 +0000 (11:14 +0000)]
The logic in the main signing and verifying functions to check lengths was
incorrect.  Fortunately, there is a second check that's correct, when adding
the pads.
PR: 355

21 years agoThe logic in the main signing and verifying functions to check lengths was
Richard Levitte [Tue, 26 Nov 2002 11:14:32 +0000 (11:14 +0000)]
The logic in the main signing and verifying functions to check lengths was
incorrect.  Fortunately, there is a second check that's correct, when adding
the pads.
PR: 355

21 years agoHeimdal isn't really supported right now. Say so, and offer a possibility
Richard Levitte [Tue, 26 Nov 2002 10:11:58 +0000 (10:11 +0000)]
Heimdal isn't really supported right now.  Say so, and offer a possibility
to force the use of Heimdal, and warn if that's used.
PR: 346

21 years agoHeimdal isn't really supported right now. Say so, and offer a possibility
Richard Levitte [Tue, 26 Nov 2002 10:11:25 +0000 (10:11 +0000)]
Heimdal isn't really supported right now.  Say so, and offer a possibility
to force the use of Heimdal, and warn if that's used.
PR: 346

21 years agoSmall bugfixes to the KSSL implementation.
Richard Levitte [Tue, 26 Nov 2002 10:09:36 +0000 (10:09 +0000)]
Small bugfixes to the KSSL implementation.
PR: 349

21 years agoSmall bugfixes to the KSSL implementation.
Richard Levitte [Tue, 26 Nov 2002 10:09:28 +0000 (10:09 +0000)]
Small bugfixes to the KSSL implementation.
PR: 349

21 years agoHeimdal isn't really supported right now. Say so, and offer a possibility
Richard Levitte [Tue, 26 Nov 2002 09:19:17 +0000 (09:19 +0000)]
Heimdal isn't really supported right now.  Say so, and offer a possibility
to force the use of Heimdal, and warn if that's used.
PR: 346

21 years agoHeimdal isn't really supported right now. Say so, and offer a possibility
Richard Levitte [Tue, 26 Nov 2002 09:19:06 +0000 (09:19 +0000)]
Heimdal isn't really supported right now.  Say so, and offer a possibility
to force the use of Heimdal, and warn if that's used.
PR: 346

21 years agorename some functions to improve consistency
Bodo Möller [Sat, 23 Nov 2002 18:16:09 +0000 (18:16 +0000)]
rename some functions to improve consistency

Submitted by: Sheueling Chang

21 years agoadd a comment
Bodo Möller [Fri, 22 Nov 2002 09:25:35 +0000 (09:25 +0000)]
add a comment

21 years agoDisable this module if OPENSSL_NO_SOCK is defined.
Richard Levitte [Fri, 22 Nov 2002 08:45:20 +0000 (08:45 +0000)]
Disable this module if OPENSSL_NO_SOCK is defined.

21 years agoTypo. OPENSSL_NO_ECDH, not NO_OPENSSL_ECDH
Richard Levitte [Fri, 22 Nov 2002 08:40:34 +0000 (08:40 +0000)]
Typo.  OPENSSL_NO_ECDH, not NO_OPENSSL_ECDH

21 years agoMention a current showstopper
Richard Levitte [Thu, 21 Nov 2002 22:39:25 +0000 (22:39 +0000)]
Mention a current showstopper

21 years agoMention a current showstopper
Richard Levitte [Thu, 21 Nov 2002 22:39:08 +0000 (22:39 +0000)]
Mention a current showstopper

21 years agoavoid uninitialized memory read
Bodo Möller [Wed, 20 Nov 2002 14:14:45 +0000 (14:14 +0000)]
avoid uninitialized memory read

Submitted by: Nils Larsch

21 years agoavoid uninitialized memory read
Bodo Möller [Wed, 20 Nov 2002 10:55:27 +0000 (10:55 +0000)]
avoid uninitialized memory read

Submitted by: Nils Larsch

21 years agoMake ec_GFp_simple_point_get_affine_coordinates() faster
Bodo Möller [Wed, 20 Nov 2002 10:53:33 +0000 (10:53 +0000)]
Make ec_GFp_simple_point_get_affine_coordinates() faster
for Montgomery representations.

Submitted by: Sheueling Chang, Bodo Moeller

21 years agoFix bug introduced by the attempt to fix client side external session
Lutz Jänicke [Wed, 20 Nov 2002 10:48:58 +0000 (10:48 +0000)]
Fix bug introduced by the attempt to fix client side external session
caching (#288): now internal caching failed (#351):
Make sure, that cipher_id is set before comparing.
Submitted by:
Reviewed by:
PR: 288 (and 351)

21 years agoFix bug introduced by the attempt to fix client side external session
Lutz Jänicke [Wed, 20 Nov 2002 10:46:35 +0000 (10:46 +0000)]
Fix bug introduced by the attempt to fix client side external session
caching (#288): now internal caching failed (#351):
Make sure, that cipher_id is set before comparing.
Submitted by:
Reviewed by:
PR: 288 (and 351)

21 years agoallocate bio_err before memory debugging is enabled to avoid memory leaks
Bodo Möller [Tue, 19 Nov 2002 11:56:05 +0000 (11:56 +0000)]
allocate bio_err before memory debugging is enabled to avoid memory leaks
(we can't release it before the CRYPTO_mem_leaks() call!)

Submitted by: Nils Larsch

21 years agoallocate bio_err before memory debugging is enabled to avoid memory leaks
Bodo Möller [Tue, 19 Nov 2002 11:55:47 +0000 (11:55 +0000)]
allocate bio_err before memory debugging is enabled to avoid memory leaks
(we can't release it before the CRYPTO_mem_leaks() call!)

Submitted by: Nils Larsch

21 years agoIt works on my laptop :-).
Richard Levitte [Tue, 19 Nov 2002 11:52:24 +0000 (11:52 +0000)]
It works on my laptop :-).

21 years agomake update
Richard Levitte [Tue, 19 Nov 2002 11:40:14 +0000 (11:40 +0000)]
make update

21 years agoWe now work with the development of 0.9.7 beta 5.
Richard Levitte [Tue, 19 Nov 2002 11:37:03 +0000 (11:37 +0000)]
We now work with the development of 0.9.7 beta 5.

21 years agoFix an unsigned/signed mismatch.
Richard Levitte [Tue, 19 Nov 2002 11:28:28 +0000 (11:28 +0000)]
Fix an unsigned/signed mismatch.

21 years agoUpdate STATUS OpenSSL_0_9_7-beta4
Richard Levitte [Tue, 19 Nov 2002 09:34:38 +0000 (09:34 +0000)]
Update STATUS

21 years agoUpdate STATUS
Richard Levitte [Tue, 19 Nov 2002 09:34:34 +0000 (09:34 +0000)]
Update STATUS

21 years agoTime to release 0.9.7-beta4.
Richard Levitte [Tue, 19 Nov 2002 09:34:29 +0000 (09:34 +0000)]
Time to release 0.9.7-beta4.
The tag will be OpenSSL_0_9_7-beta4

21 years agomake update
Richard Levitte [Tue, 19 Nov 2002 08:55:06 +0000 (08:55 +0000)]
make update

21 years agoAdd news items for 0.9.6h and expand on the 0.9.7 news as well.
Richard Levitte [Mon, 18 Nov 2002 23:58:33 +0000 (23:58 +0000)]
Add news items for 0.9.6h and expand on the 0.9.7 news as well.

21 years agoAdd news items for 0.9.6h and expand on the 0.9.7 news as well.
Richard Levitte [Mon, 18 Nov 2002 23:58:24 +0000 (23:58 +0000)]
Add news items for 0.9.6h and expand on the 0.9.7 news as well.

21 years agoDocument the addition of certificate pairs.
Richard Levitte [Mon, 18 Nov 2002 23:56:15 +0000 (23:56 +0000)]
Document the addition of certificate pairs.

21 years agoAdd the ASN.1 structures and functions for CertificatePair, which is
Richard Levitte [Mon, 18 Nov 2002 23:54:27 +0000 (23:54 +0000)]
Add the ASN.1 structures and functions for CertificatePair, which is
defined as follows (according to X.509_4thEditionDraftV6.pdf):

CertificatePair ::= SEQUENCE {
forward [0] Certificate OPTIONAL,
reverse [1] Certificate OPTIONAL,
-- at least one of the pair shall be present -- }

The only thing I'm not sure about is if it's implicit or explicit tags
that I should count on.  For now, I'm thinking explicit, but will
gladly stand corrected.

Also implement the PEM functions to read and write certificate pairs,
and defined the PEM tag as "CERTIFICATE PAIR".

This needed to be defined, mostly for the sake of the LDAP attribute
crossCertificatePair, but may prove useful elsewhere as well.

21 years agoDetermine HZ exactly as in apps/speed.c.
Richard Levitte [Mon, 18 Nov 2002 23:06:46 +0000 (23:06 +0000)]
Determine HZ exactly as in apps/speed.c.

21 years agoDetermine HZ exactly as in apps/speed.c.
Richard Levitte [Mon, 18 Nov 2002 23:06:36 +0000 (23:06 +0000)]
Determine HZ exactly as in apps/speed.c.

21 years agoMake sure sysconf exists (it doesn't in the VMS C RTL lesser than version 7).
Richard Levitte [Mon, 18 Nov 2002 23:05:50 +0000 (23:05 +0000)]
Make sure sysconf exists (it doesn't in the VMS C RTL lesser than version 7).

21 years agoMake sure sysconf exists (it doesn't in the VMS C RTL lesser than version 7).
Richard Levitte [Mon, 18 Nov 2002 23:05:39 +0000 (23:05 +0000)]
Make sure sysconf exists (it doesn't in the VMS C RTL lesser than version 7).

21 years agoremove redundant functions
Bodo Möller [Mon, 18 Nov 2002 14:37:35 +0000 (14:37 +0000)]
remove redundant functions

21 years agouse consistent order of function definitions
Bodo Möller [Mon, 18 Nov 2002 14:33:39 +0000 (14:33 +0000)]
use consistent order of function definitions

21 years agofix memory leak in memory debuggin code ...
Bodo Möller [Mon, 18 Nov 2002 14:01:24 +0000 (14:01 +0000)]
fix memory leak in memory debuggin code ...

Submitted by: Nils Larsch

21 years agofix memory leak in memory debuggin code ...
Bodo Möller [Mon, 18 Nov 2002 14:00:42 +0000 (14:00 +0000)]
fix memory leak in memory debuggin code ...

Submitted by: Nils Larsch

21 years agoallocate bio_err before memory debugging is enabled to avoid memory leaks
Bodo Möller [Mon, 18 Nov 2002 13:38:30 +0000 (13:38 +0000)]
allocate bio_err before memory debugging is enabled to avoid memory leaks
(we can't release it before the CRYPTO_mem_leaks() call!)

Submitted by: Nils Larsch

21 years agoallocate bio_err before memory debugging is enabled to avoid memory leaks
Bodo Möller [Mon, 18 Nov 2002 13:37:40 +0000 (13:37 +0000)]
allocate bio_err before memory debugging is enabled to avoid memory leaks
(we can't release it before the CRYPTO_mem_leaks() call!)

Submitted by: Nils Larsch

21 years agoA variable of type time_t is supposed to be a time measurement starting at
Richard Levitte [Mon, 18 Nov 2002 13:04:29 +0000 (13:04 +0000)]
A variable of type time_t is supposed to be a time measurement starting at
Epoch.  offset isn't such a measurement, so let's stop pretend it is.

21 years agoA variable of type time_t is supposed to be a time measurement starting at
Richard Levitte [Mon, 18 Nov 2002 13:04:08 +0000 (13:04 +0000)]
A variable of type time_t is supposed to be a time measurement starting at
Epoch.  offset isn't such a measurement, so let's stop pretend it is.

21 years agoBetter workaround to the "=head1 NAME OPTIONS" pod2latex problem:
Lutz Jänicke [Mon, 18 Nov 2002 08:15:45 +0000 (08:15 +0000)]
Better workaround to the "=head1 NAME OPTIONS" pod2latex problem:
NAME OPTIONS are a subset of OPTIONS, so just make it =head2!
Submitted by:
Reviewed by:
PR: 333

21 years agoBetter workaround to the "=head1 NAME OPTIONS" pod2latex problem:
Lutz Jänicke [Mon, 18 Nov 2002 08:14:20 +0000 (08:14 +0000)]
Better workaround to the "=head1 NAME OPTIONS" pod2latex problem:
NAME OPTIONS are a subset of OPTIONS, so just make it =head2!
Submitted by:
Reviewed by:
PR: 333

21 years agoMake it possible to build for more than one CPU.
Richard Levitte [Sun, 17 Nov 2002 19:48:34 +0000 (19:48 +0000)]
Make it possible to build for more than one CPU.
Clarify what the CE tests do.

21 years agoMake it possible to build for more than one CPU.
Richard Levitte [Sun, 17 Nov 2002 19:48:19 +0000 (19:48 +0000)]
Make it possible to build for more than one CPU.
Clarify what the CE tests do.

21 years agoIgnore openssl.pc. This way, there's no risk that I'll add it again :-).
Richard Levitte [Sun, 17 Nov 2002 08:07:12 +0000 (08:07 +0000)]
Ignore openssl.pc.  This way, there's no risk that I'll add it again :-).

21 years agoIgnore openssl.pc. This way, there's no risk that I'll add it again :-).
Richard Levitte [Sun, 17 Nov 2002 08:07:08 +0000 (08:07 +0000)]
Ignore openssl.pc.  This way, there's no risk that I'll add it again :-).

21 years agoAdding openssl.pc to the repository was a mistake,
Richard Levitte [Sun, 17 Nov 2002 08:05:43 +0000 (08:05 +0000)]
Adding openssl.pc to the repository was a mistake,
since it's generated.

21 years agoAdding openssl.pc to the repository was a mistake,
Richard Levitte [Sun, 17 Nov 2002 08:05:38 +0000 (08:05 +0000)]
Adding openssl.pc to the repository was a mistake,
since it's generated.

21 years agoAdd the file openssl.pc that I forgot a while ago.
Richard Levitte [Sun, 17 Nov 2002 08:03:24 +0000 (08:03 +0000)]
Add the file openssl.pc that I forgot a while ago.

21 years agoAdd the file openssl.pc that I forgot a while ago.
Richard Levitte [Sun, 17 Nov 2002 07:47:25 +0000 (07:47 +0000)]
Add the file openssl.pc that I forgot a while ago.

21 years agoI forgot this is compiled in test/, not crypto/ec/...
Richard Levitte [Sat, 16 Nov 2002 10:10:49 +0000 (10:10 +0000)]
I forgot this is compiled in test/, not crypto/ec/...

21 years agoI forgot this is compiled in test/, not crypto/ec/...
Richard Levitte [Sat, 16 Nov 2002 10:10:39 +0000 (10:10 +0000)]
I forgot this is compiled in test/, not crypto/ec/...

21 years agoWe don't want TARGETCPU expanded here.
Richard Levitte [Sat, 16 Nov 2002 09:42:17 +0000 (09:42 +0000)]
We don't want TARGETCPU expanded here.

21 years agoWe don't want TARGETCPU expanded here.
Richard Levitte [Sat, 16 Nov 2002 09:42:04 +0000 (09:42 +0000)]
We don't want TARGETCPU expanded here.

21 years agoMention ActiveState Perl much earlier in INSTALL.WCE.
Richard Levitte [Fri, 15 Nov 2002 22:54:26 +0000 (22:54 +0000)]
Mention ActiveState Perl much earlier in INSTALL.WCE.

21 years agoMention ActiveState Perl much earlier in INSTALL.WCE.
Richard Levitte [Fri, 15 Nov 2002 22:54:13 +0000 (22:54 +0000)]
Mention ActiveState Perl much earlier in INSTALL.WCE.

21 years agoWinCE patches
Richard Levitte [Fri, 15 Nov 2002 22:44:08 +0000 (22:44 +0000)]
WinCE patches

21 years agoThis commit was manufactured by cvs2svn to create branch
cvs2svn [Fri, 15 Nov 2002 22:37:19 +0000 (22:37 +0000)]
This commit was manufactured by cvs2svn to create branch
'OpenSSL_0_9_7-stable'.

21 years agoWinCE patches
Richard Levitte [Fri, 15 Nov 2002 22:37:18 +0000 (22:37 +0000)]
WinCE patches

21 years agoFix buggy #! magic and update ssleay->openssl
Lutz Jänicke [Fri, 15 Nov 2002 21:26:42 +0000 (21:26 +0000)]
Fix buggy #! magic and update ssleay->openssl
Submitted by:
Reviewed by:
PR: 305

21 years agoFix buggy #! magic and update ssleay->openssl
Lutz Jänicke [Fri, 15 Nov 2002 21:26:02 +0000 (21:26 +0000)]
Fix buggy #! magic and update ssleay->openssl
Submitted by:
Reviewed by:
PR: 305

21 years agoAdd the INHIBIT_SYMLINKS flag variable to help Cygwin.
Richard Levitte [Fri, 15 Nov 2002 16:56:36 +0000 (16:56 +0000)]
Add the INHIBIT_SYMLINKS flag variable to help Cygwin.
Add missing semicolons.
Add a comment explaining a bunch of targets without any action lines.

21 years agoChanges to make shared library building and use work better with Cygwin
Richard Levitte [Fri, 15 Nov 2002 16:49:34 +0000 (16:49 +0000)]
Changes to make shared library building and use work better with Cygwin

21 years agoChanges to make shared library building and use work better with Cygwin
Richard Levitte [Fri, 15 Nov 2002 16:48:38 +0000 (16:48 +0000)]
Changes to make shared library building and use work better with Cygwin

21 years agoDocument the change to remove the 'done' flag variable in the
Richard Levitte [Fri, 15 Nov 2002 14:01:15 +0000 (14:01 +0000)]
Document the change to remove the 'done' flag variable in the
OpenSSL_add_all_*() routines

21 years agoDocument the change to remove the 'done' flag variable in the
Richard Levitte [Fri, 15 Nov 2002 13:58:11 +0000 (13:58 +0000)]
Document the change to remove the 'done' flag variable in the
OpenSSL_add_all_*() routines

21 years agothis method does not need field_data1
Bodo Möller [Fri, 15 Nov 2002 12:43:15 +0000 (12:43 +0000)]
this method does not need field_data1

21 years agomake update
Richard Levitte [Fri, 15 Nov 2002 11:22:25 +0000 (11:22 +0000)]
make update

21 years agomake update
Richard Levitte [Fri, 15 Nov 2002 11:20:43 +0000 (11:20 +0000)]
make update

21 years agoA few more Microsoft OIDs added
Richard Levitte [Fri, 15 Nov 2002 11:18:22 +0000 (11:18 +0000)]
A few more Microsoft OIDs added

21 years agoA few more Microsoft OIDs added
Richard Levitte [Fri, 15 Nov 2002 11:17:50 +0000 (11:17 +0000)]
A few more Microsoft OIDs added