543e15a | cvs2svn | 13 December 2004, 22:48:02 UTC | This commit was manufactured by cvs2svn to create tag 'BEN_FIPS_TEST_6'. | 13 December 2004, 22:48:02 UTC |
37ece61 | Richard Levitte | 13 December 2004, 22:48:01 UTC | make update | 13 December 2004, 22:48:01 UTC |
9655740 | Dr. Stephen Henson | 12 December 2004, 13:18:23 UTC | Remove duplicate lines. | 12 December 2004, 13:18:23 UTC |
535178f | Andy Polyakov | 10 December 2004, 16:30:34 UTC | Adapt FIPS sub-tree for mingw. | 10 December 2004, 16:30:34 UTC |
a4a88ee | Andy Polyakov | 10 December 2004, 13:15:55 UTC | Solaris x86 assembler update. | 10 December 2004, 13:15:55 UTC |
a661c17 | Andy Polyakov | 10 December 2004, 11:37:25 UTC | Respect no-asm with fips option and disable FIPS DES assembler in shared context [because it's not PIC]. | 10 December 2004, 11:37:25 UTC |
13e387c | Andy Polyakov | 10 December 2004, 11:27:09 UTC | olaris x86 perlasm update [from HEAD]. | 10 December 2004, 11:27:09 UTC |
3dd16fb | Andy Polyakov | 09 December 2004, 22:43:29 UTC | Eliminate false dependency on 386 config option is FIPS context. At the same time limit assembler support to ELF platforms [that's what is there, ELF modules]. | 09 December 2004, 22:43:29 UTC |
ab09133 | Andy Polyakov | 09 December 2004, 21:05:14 UTC | Engage SHA1 IA64 assembler on IA64 platforms [from HEAD]. | 09 December 2004, 21:05:14 UTC |
90ec459 | Andy Polyakov | 09 December 2004, 20:55:52 UTC | SHA1 assember for IA64 [from HEAD]. | 09 December 2004, 20:55:52 UTC |
3d5d6f9 | Andy Polyakov | 09 December 2004, 18:13:46 UTC | Cygwin specific FIPS fix-ups. | 09 December 2004, 18:13:46 UTC |
bd5a219 | Andy Polyakov | 09 December 2004, 18:03:23 UTC | Postpone linking of shared libcrypto in FIPS build. | 09 December 2004, 18:03:23 UTC |
5868130 | Andy Polyakov | 09 December 2004, 18:00:26 UTC | Eliminate dependency on UNICODE macro. | 09 December 2004, 18:00:26 UTC |
a4c9668 | Dr. Stephen Henson | 09 December 2004, 13:34:41 UTC | Automatically mark the CRL cached encoding as invalid when some operations are performed. | 09 December 2004, 13:34:41 UTC |
f1ca15d | cvs2svn | 09 December 2004, 11:57:39 UTC | This commit was manufactured by cvs2svn to create branch 'OpenSSL_0_9_7-stable'. | 09 December 2004, 11:57:39 UTC |
b4e0ce5 | Andy Polyakov | 09 December 2004, 11:57:38 UTC | SHA1 assembler for IA-64. | 09 December 2004, 11:57:38 UTC |
17f0e91 | Andy Polyakov | 07 December 2004, 11:55:56 UTC | Extend RC4 test. | 07 December 2004, 11:55:56 UTC |
3d4c78e | Dr. Stephen Henson | 05 December 2004, 19:53:40 UTC | More CA updates. | 05 December 2004, 19:53:40 UTC |
95f5b1f | Dr. Stephen Henson | 05 December 2004, 19:51:56 UTC | Update 'certs' directory. Move expired certificates to expired directory and zero assurance demontrations CAs to 'demo'. | 05 December 2004, 19:51:56 UTC |
c78b389 | cvs2svn | 05 December 2004, 19:48:03 UTC | This commit was manufactured by cvs2svn to create branch 'OpenSSL_0_9_7-stable'. | 05 December 2004, 19:48:03 UTC |
3dfa23c | Dr. Stephen Henson | 05 December 2004, 19:48:02 UTC | Update 'certs' directory. Move expired certificates to expired directory and zero assurance demontrations CAs to 'demo'. | 05 December 2004, 19:48:02 UTC |
b0ab906 | Dr. Stephen Henson | 05 December 2004, 18:26:48 UTC | Use X509_cmp_time() in -checkend option, to support GeneralizedTime. | 05 December 2004, 18:26:48 UTC |
a37e22d | Dr. Stephen Henson | 05 December 2004, 18:26:19 UTC | Use X509_cmp_time() in -checkend option, to support GeneralizedTime. | 05 December 2004, 18:26:19 UTC |
41c70d4 | Dr. Stephen Henson | 05 December 2004, 01:50:56 UTC | Remaing bits of PR:620 relevant to 0.9.8. | 05 December 2004, 01:50:56 UTC |
ec46cd8 | Dr. Stephen Henson | 05 December 2004, 01:46:03 UTC | Remaining parts of PR:620 | 05 December 2004, 01:46:03 UTC |
da85346 | Dr. Stephen Henson | 05 December 2004, 01:04:44 UTC | Add lots of checks for memory allocation failure, error codes to indicate failure and freeing up memory if a failure occurs. PR:620 | 05 December 2004, 01:04:44 UTC |
a0e7c8e | Dr. Stephen Henson | 05 December 2004, 01:03:15 UTC | Add lots of checks for memory allocation failure, error codes to indicate failure and freeing up memory if a failure occurs. PR:620 | 05 December 2004, 01:03:15 UTC |
b56b02d | Dr. Stephen Henson | 05 December 2004, 00:52:18 UTC | Update year. | 05 December 2004, 00:52:18 UTC |
a8e00b1 | Dr. Stephen Henson | 05 December 2004, 00:51:41 UTC | Update year. | 05 December 2004, 00:51:41 UTC |
c98175b | Dr. Stephen Henson | 04 December 2004, 21:26:11 UTC | In by_file.c check last error for no start line, not first error. | 04 December 2004, 21:26:11 UTC |
3e66ee9 | Dr. Stephen Henson | 04 December 2004, 21:25:51 UTC | In by_file.c check last error for no start line, not first error. | 04 December 2004, 21:25:51 UTC |
3384bdd | Dr. Stephen Henson | 03 December 2004, 12:29:17 UTC | Add -passin argument to dgst command. | 03 December 2004, 12:29:17 UTC |
5b40d7d | Dr. Stephen Henson | 03 December 2004, 12:26:56 UTC | Add -passin argument to dgst command. | 03 December 2004, 12:26:56 UTC |
8db8893 | Dr. Stephen Henson | 03 December 2004, 00:10:59 UTC | V1 certificates that aren't self signed can't be accepted as CAs. | 03 December 2004, 00:10:59 UTC |
8f284fa | Dr. Stephen Henson | 03 December 2004, 00:10:34 UTC | V1 certificates that aren't self signed can't be accepted as CAs. | 03 December 2004, 00:10:34 UTC |
3010b17 | Andy Polyakov | 02 December 2004, 17:05:38 UTC | sha1_block_asm_data_order can't hash if message crosses 2GB boundary. [back-port from HEAD branch] | 02 December 2004, 17:05:38 UTC |
f670069 | Andy Polyakov | 02 December 2004, 10:54:36 UTC | Back-port of RC4 assembler support for IA-64 from HEAD branch. | 02 December 2004, 10:54:36 UTC |
575dbdc | Andy Polyakov | 02 December 2004, 10:09:50 UTC | Downstream update from HEAD | 02 December 2004, 10:09:50 UTC |
f774acc | Andy Polyakov | 02 December 2004, 10:07:55 UTC | Fix rc4-ia64.S to pass more exhaustive regression tests. | 02 December 2004, 10:07:55 UTC |
8544a80 | Dr. Stephen Henson | 01 December 2004, 18:09:53 UTC | Add couple of OIDs. Resync NIDs for consistency with 0.9.7. | 01 December 2004, 18:09:53 UTC |
2e13663 | Dr. Stephen Henson | 01 December 2004, 17:55:07 UTC | Add two OIDs, make update | 01 December 2004, 17:55:07 UTC |
fda344e | Andy Polyakov | 01 December 2004, 15:45:34 UTC | Complete backport of i386 RC4 assembler module from HEAD. | 01 December 2004, 15:45:34 UTC |
280e3bd | Andy Polyakov | 01 December 2004, 15:30:50 UTC | Downstream update from HEAD. | 01 December 2004, 15:30:50 UTC |
7c69478 | Andy Polyakov | 01 December 2004, 15:28:18 UTC | I've introduced a bug to i386 RC4 assembler, which would emerge with certain mix of calls to RC4 routine not covered by rc4test.c. It's fixed now. In addition this patch inadvertently fixes minor performance problem: in 0.9.7 context P4 was performing 12% slower than the original implementation... | 01 December 2004, 15:28:18 UTC |
41191d1 | Dr. Stephen Henson | 01 December 2004, 01:45:57 UTC | Perform partial comparison of different character types in X509_NAME_cmp(). | 01 December 2004, 01:45:57 UTC |
1862dae | Dr. Stephen Henson | 01 December 2004, 01:45:30 UTC | Perform partial comparison of different character types in X509_NAME_cmp(). | 01 December 2004, 01:45:30 UTC |
62c19d2 | Andy Polyakov | 30 November 2004, 18:00:33 UTC | Back-port of RC4 assembler support for AMD64 from HEAD branch. | 30 November 2004, 18:00:33 UTC |
2d1a37b | Andy Polyakov | 30 November 2004, 17:53:44 UTC | Downsync new and updated RC4 assembler modules from HEAD. | 30 November 2004, 17:53:44 UTC |
24e85c3 | cvs2svn | 30 November 2004, 15:46:47 UTC | This commit was manufactured by cvs2svn to create branch 'OpenSSL_0_9_7-stable'. | 30 November 2004, 15:46:47 UTC |
b7b46c9 | Andy Polyakov | 30 November 2004, 15:46:46 UTC | Add 0.9.7 specific comments to RC4 assembler modules. | 30 November 2004, 15:46:46 UTC |
e6e1f4c | Mark J. Cox | 30 November 2004, 14:34:16 UTC | Mention that the keys likely to have signed the distribution are now listed on the web site for easy finding and downloading | 30 November 2004, 14:34:16 UTC |
5073ff0 | Richard Levitte | 30 November 2004, 12:18:55 UTC | Split X509_check_ca() into a small self and an internal function check_ca(), to resolve constness issue. check_ca() is called from the purpose checkers instead of X509_check_ca(), since the stuff done by the latter (except for calling check_ca()) is also done by X509_check_purpose(). | 30 November 2004, 12:18:55 UTC |
fa032a6 | Richard Levitte | 30 November 2004, 12:18:53 UTC | Split X509_check_ca() into a small self and an internal function check_ca(), to resolve constness issue. check_ca() is called from the purpose checkers instead of X509_check_ca(), since the stuff done by the latter (except for calling check_ca()) is also done by X509_check_purpose(). | 30 November 2004, 12:18:53 UTC |
fc7fc56 | Andy Polyakov | 29 November 2004, 21:19:56 UTC | sha1_block_asm_data_order can't hash if message crosses 2GB boundary. | 29 November 2004, 21:19:56 UTC |
7a3240e | Andy Polyakov | 29 November 2004, 21:12:58 UTC | Final touches to rc4/asm/rc4-596.pl, +52% better performance on AMD core. | 29 November 2004, 21:12:58 UTC |
5022e4e | Richard Levitte | 29 November 2004, 11:57:00 UTC | Document the change. | 29 November 2004, 11:57:00 UTC |
d133618 | Richard Levitte | 29 November 2004, 11:56:57 UTC | Document the change. | 29 November 2004, 11:56:57 UTC |
30b415b | Richard Levitte | 29 November 2004, 11:28:08 UTC | Make an explicit check during certificate validation to see that the CA setting in each certificate on the chain is correct. As a side- effect always do the following basic checks on extensions, not just when there's an associated purpose to the check: - if there is an unhandled critical extension (unless the user has chosen to ignore this fault) - if the path length has been exceeded (if one is set at all) - that certain extensions fit the associated purpose (if one has been given) | 29 November 2004, 11:28:08 UTC |
cd52956 | Richard Levitte | 29 November 2004, 11:18:00 UTC | Make an explicit check during certificate validation to see that the CA setting in each certificate on the chain is correct. As a side- effect always do the following basic checks on extensions, not just when there's an associated purpose to the check: - if there is an unhandled critical extension (unless the user has chosen to ignore this fault) - if the path length has been exceeded (if one is set at all) - that certain extensions fit the associated purpose (if one has been given) | 29 November 2004, 11:18:00 UTC |
914c2a2 | Andy Polyakov | 27 November 2004, 15:14:58 UTC | perlasm/x86[ms|nasm] update to accomodate updated RC4 assembler module. | 27 November 2004, 15:14:58 UTC |
6826d26 | Dr. Stephen Henson | 27 November 2004, 13:02:34 UTC | Remove unnecessary check and call BIO_free_all() on bio_out to avoid a leak on VMS. | 27 November 2004, 13:02:34 UTC |
18ad97b | Dr. Stephen Henson | 27 November 2004, 12:55:26 UTC | Fix leaks and give an error if no argument specified in prime.c | 27 November 2004, 12:55:26 UTC |
ea681ba | Andy Polyakov | 26 November 2004, 15:26:09 UTC | Summarize recent RC4 tune-ups. | 26 November 2004, 15:26:09 UTC |
bc3e7fa | Andy Polyakov | 26 November 2004, 15:12:17 UTC | Engage RC4 IA-64 assembler module. | 26 November 2004, 15:12:17 UTC |
d675c74 | Andy Polyakov | 26 November 2004, 15:07:50 UTC | RC4 IA-64 assembler implementation. | 26 November 2004, 15:07:50 UTC |
ee3f520 | Dr. Stephen Henson | 26 November 2004, 01:06:39 UTC | Typo. | 26 November 2004, 01:06:39 UTC |
59c7029 | Dr. Stephen Henson | 26 November 2004, 01:04:55 UTC | Typo. | 26 November 2004, 01:04:55 UTC |
9199bd0 | Dr. Stephen Henson | 25 November 2004, 18:22:13 UTC | errstr manual page. | 25 November 2004, 18:22:13 UTC |
4443f44 | cvs2svn | 25 November 2004, 18:21:27 UTC | This commit was manufactured by cvs2svn to create branch 'OpenSSL_0_9_7-stable'. | 25 November 2004, 18:21:27 UTC |
1582a40 | Dr. Stephen Henson | 25 November 2004, 18:21:26 UTC | Add errstr manual page | 25 November 2004, 18:21:26 UTC |
401ee37 | Dr. Stephen Henson | 25 November 2004, 17:47:31 UTC | Allow alternative manual sections to be embedded in .pod file comments. | 25 November 2004, 17:47:31 UTC |
cb26a20 | Dr. Stephen Henson | 25 November 2004, 14:14:25 UTC | Update docs | 25 November 2004, 14:14:25 UTC |
82c4674 | Dr. Stephen Henson | 25 November 2004, 14:11:25 UTC | Update docs. | 25 November 2004, 14:11:25 UTC |
dfcf822 | Dr. Stephen Henson | 24 November 2004, 01:21:57 UTC | Check return code of EVP_CipherInit() in PKCS#12 code. | 24 November 2004, 01:21:57 UTC |
9d2996b | Dr. Stephen Henson | 24 November 2004, 01:21:03 UTC | Check return code of EVP_CipherInit() in PKCS#12 code. | 24 November 2004, 01:21:03 UTC |
14c8986 | Dr. Stephen Henson | 23 November 2004, 21:40:32 UTC | Typo. | 23 November 2004, 21:40:32 UTC |
3fee255 | Dr. Stephen Henson | 23 November 2004, 21:40:10 UTC | Typo. | 23 November 2004, 21:40:10 UTC |
6237528 | Dr. Stephen Henson | 23 November 2004, 21:22:54 UTC | Fix memory leak. | 23 November 2004, 21:22:54 UTC |
16df5f0 | Dr. Stephen Henson | 23 November 2004, 21:22:21 UTC | Fix memory leak. | 23 November 2004, 21:22:21 UTC |
959f9b1 | Andy Polyakov | 23 November 2004, 09:06:12 UTC | linux-x86_64 didn't link after EM64T RC4 tune-up... | 23 November 2004, 09:06:12 UTC |
376729e | Andy Polyakov | 21 November 2004, 10:36:25 UTC | RC4 tune-up for Intel P4 core, both 32- and 64-bit ones. As it's apparently impossible to compose blended code with would perform satisfactory on all x86 and x86_64 cores, an extra RC4_CHAR code-path is introduced and P4 core is detected at run-time. This way we keep original performance on non-P4 implementations and turbo-charge P4 performance by factor of 2.8x (on 32-bit core). | 21 November 2004, 10:36:25 UTC |
2b35439 | Dr. Stephen Henson | 17 November 2004, 18:36:43 UTC | In "req" exit immediately if configuration file is needed and it can't be loaded instead of giving the misleading: "unable to find 'distinguised_name' in config" error message. | 17 November 2004, 18:36:43 UTC |
00dd8f6 | Dr. Stephen Henson | 17 November 2004, 18:36:13 UTC | In "req" exit immediately if configuration file is needed and it can't be loaded instead of giving the misleading: "unable to find 'distinguised_name' in config" error message. | 17 November 2004, 18:36:13 UTC |
5dd8798 | Dr. Stephen Henson | 17 November 2004, 00:55:43 UTC | Update X509v3 doc. | 17 November 2004, 00:55:43 UTC |
37dccd8 | Dr. Stephen Henson | 16 November 2004, 17:45:13 UTC | Update X509v3 docs. | 16 November 2004, 17:45:13 UTC |
826a42a | Dr. Stephen Henson | 16 November 2004, 17:30:59 UTC | PR: 910 Add command line options -certform, -keyform and -pass to s_client and s_server. This supports the use of alternative passphrase sources, key formats and keys handled by an ENGINE. Update docs. | 16 November 2004, 17:30:59 UTC |
19f3970 | Dr. Stephen Henson | 16 November 2004, 14:09:12 UTC | Initial pod documentation of X509V3 config file format. | 16 November 2004, 14:09:12 UTC |
1ec0d15 | Dr. Stephen Henson | 14 November 2004, 15:40:25 UTC | PR: 940 Typo: use prompt_info, not cb_data->prompt_info. | 14 November 2004, 15:40:25 UTC |
151368c | Dr. Stephen Henson | 14 November 2004, 15:40:00 UTC | PR: 940 Typo: use prompt_info, not cb_data->prompt_info. | 14 November 2004, 15:40:00 UTC |
4451c25 | Dr. Stephen Henson | 14 November 2004, 15:11:37 UTC | PR: 923 Typo. | 14 November 2004, 15:11:37 UTC |
ce165ad | Dr. Stephen Henson | 14 November 2004, 15:11:16 UTC | PR: 923 Typo. | 14 November 2004, 15:11:16 UTC |
b207a73 | Dr. Stephen Henson | 14 November 2004, 13:55:48 UTC | PR: 938 Typo. | 14 November 2004, 13:55:48 UTC |
4a64f3d | Dr. Stephen Henson | 14 November 2004, 13:55:16 UTC | PR: 938 Typo. | 14 November 2004, 13:55:16 UTC |
5fee606 | Dr. Stephen Henson | 14 November 2004, 00:08:36 UTC | Zap obsolete der_chop script. | 14 November 2004, 00:08:36 UTC |
22a7a3b | Dr. Stephen Henson | 13 November 2004, 23:56:15 UTC | Zap obsolete der_chop script. | 13 November 2004, 23:56:15 UTC |
ced27cc | Dr. Stephen Henson | 13 November 2004, 13:52:34 UTC | PR: 959 Use OPENSSL_NO_CAST, not OPENSSL_NO_CAST5 in e_old.c | 13 November 2004, 13:52:34 UTC |
ffec31f | Dr. Stephen Henson | 13 November 2004, 13:38:58 UTC | PR: 969 Submitted by: David Holmes <davidh@3blackdogs.com> | 13 November 2004, 13:38:58 UTC |
521aaaf | Dr. Stephen Henson | 13 November 2004, 13:38:34 UTC | PR: 969 Submitted by: David Holmes <davidh@3blackdogs.com> | 13 November 2004, 13:38:34 UTC |
e510c62 | Dr. Stephen Henson | 13 November 2004, 13:26:24 UTC | Fix x509.c so it creates serial number file again if no serial number is supplied on command line. | 13 November 2004, 13:26:24 UTC |
78df5a2 | Dr. Stephen Henson | 13 November 2004, 13:26:06 UTC | Fix x509.c so it creates serial number file again if no serial number is supplied on command line. | 13 November 2004, 13:26:06 UTC |