Age | Commit message (Collapse) | Author | |
---|---|---|---|
2001-08-06 | More typedef'd struct names as search targets | Bodo Möller | |
2001-08-06 | Reinsert typedef'ed names for structs to help those trying to read the | Bodo Möller | |
sourcecode (including fgrep) | |||
2001-08-05 | Start to reduce some of the header bloat. | Ben Laurie | |
2001-08-05 | Fix memory leak. | Ben Laurie | |
2001-08-04 | Parameter correction for CIOFSESSION. | Ben Laurie | |
2001-08-03 | Remove extra whitespace. Sorry. | Ben Laurie | |
2001-08-03 | Reinstate accidentally deleted code. | Ben Laurie | |
2001-08-03 | Get rid of the stuff we, err, got rid of. | Ben Laurie | |
2001-08-03 | Header bloat reduction for EVP_PKEY. | Ben Laurie | |
2001-08-03 | Make /dev/crypto work with new EVP structures. | Ben Laurie | |
2001-08-03 | Make sure memcpy() gets properly declared by including string.h. | Richard Levitte | |
2001-07-31 | make update | Richard Levitte | |
2001-07-31 | Remove old unused stuff. | Ben Laurie | |
2001-07-31 | Vade retro C++ comments! | Richard Levitte | |
(Latin for "comments", anyone?) | |||
2001-07-31 | Remove //. | Ben Laurie | |
2001-07-30 | Really add the EVP and all of the DES changes. | Ben Laurie | |
2001-07-30 | Make EVPs allocate context memory, thus making them extensible. Rationalise | Ben Laurie | |
DES's keyschedules. I know these two should be separate, and I'll back out the DES changes if they are deemed to be an error. Note that there is a memory leak lurking in SSL somewhere in this version. | |||
2001-07-30 | Enhanced support for IA-64 Linux and HP-UX (as well as better support for | Andy Polyakov | |
HP-UX in common in ./config). Note that for the moment of this writing none of 64-bit platforms pass bntest. I'm committing this anyway as it's too frustrating to patch snapshots over and over while 0.9.6 is known to work. | |||
2001-07-30 | Support for Intel and HP-UXi assemblers. | Andy Polyakov | |
2001-07-30 | ANSIfication. | Ben Laurie | |
2001-07-30 | Don't miss files... | Lutz Jänicke | |
2001-07-30 | Fix inconsistent behaviour with respect to verify_callback handling. | Lutz Jänicke | |
2001-07-27 | length of secret exponent is needed only when we create one | Bodo Möller | |
2001-07-27 | Undo DH_generate_key() change: s3_srvr.c was using it correctly | Bodo Möller | |
2001-07-27 | Another uninitialized static that may lead to problems on Solaris under some | Lutz Jänicke | |
circumstances. | |||
2001-07-27 | Addapt VMS script to the latest changes in the makefiles. | Richard Levitte | |
2001-07-27 | Make sure *outl is always initialized in EVP_EncryptUpdate(). | Dr. Stephen Henson | |
2001-07-27 | More linker bloat reorganisation: | Dr. Stephen Henson | |
Split private key PEM and normal PEM handling. Private key handling needs to link in stuff like PKCS#8. Relocate the ASN1 *_dup() functions, to the relevant ASN1 modules using new macro IMPLEMENT_ASN1_DUP_FUNCTION. Previously these were all in crypto/x509/x_all.c along with every ASN1 BIO/fp function which linked in *every* ASN1 function if a single dup was used. Move the authority key id ASN1 structure to a separate file. This is used in the X509 routines and its previous location linked in all the v3 extension code. Also move ASN1_tag2bit to avoid linking in a_bytes.c which is now largely obsolete. So far under Linux stripped binary with single PEM_read_X509 is now 238K compared to 380K before these changes. | |||
2001-07-26 | First of several reorganisations to | Dr. Stephen Henson | |
reduce linker bloat. For example the single line: PEM_read_X509() results in a binary of around 400K in Linux! This first step separates some of the PEM functions and avoids linking in some PKCS#7 and PKCS#12 code. | |||
2001-07-26 | Fix problem occuring when used from OpenSSH on Solaris 8. | Lutz Jänicke | |
2001-07-25 | DH key generation should not use a do ... while loop, | Bodo Möller | |
or bogus DH parameters can be used for launching DOS attacks | |||
2001-07-25 | Don't preserve existing keys in DH_generate_key. | Bodo Möller | |
2001-07-25 | md_rand.c thread safety | Bodo Möller | |
2001-07-25 | always reject data >= n | Bodo Möller | |
2001-07-24 | avoid warnings | Bodo Möller | |
2001-07-24 | Avoid race condition. | Bodo Möller | |
Submitted by: Travis Vitek <vitek@roguewave.com> | |||
2001-07-22 | Tidy up "cvs update" output a bit. | Geoff Thorpe | |
2001-07-21 | Not all platforms have the OpenBSD crypto device. | Richard Levitte | |
2001-07-21 | Clean up EVP macros, rename DES EDE3 modes correctly, temporary support for | Ben Laurie | |
OpenBSD /dev/crypto (this will be revamped later when the appropriate machinery is available). | |||
2001-07-20 | Currently, RSA code, when using no padding scheme, simply checks that input | Geoff Thorpe | |
does not contain more bytes than the RSA modulus 'n' - it does not check that the input is strictly *less* than 'n'. Whether this should be the case or not is open to debate - however, due to security problems with returning miscalculated CRT results, the 'rsa_mod_exp' implementation in rsa_eay.c now performs a public-key exponentiation to verify the CRT result and in the event of an error will instead recalculate and return a non-CRT (more expensive) mod_exp calculation. As the mod_exp of 'I' is equivalent to the mod_exp of 'I mod n', and the verify result is automatically between 0 and n-1 inclusive, the verify only matches the input if 'I' was less than 'n', otherwise even a correct CRT calculation is only congruent to 'I' (ie. they differ by a multiple of 'n'). Rather than rejecting correct calculations and doing redundant and slower ones instead, this changes the equality check in the verification code to a congruence check. | |||
2001-07-11 | Delete extra ; | Dr. Stephen Henson | |
2001-07-11 | In ocsp_match_issuerid() we are passed the CA that signed the responder | Dr. Stephen Henson | |
certificate so need to match its subject with the certificate IDs in the response. | |||
2001-07-11 | The implementation of the TKTBODY ASN.1 functions was missing. | Richard Levitte | |
2001-07-11 | One forgotten function. | Richard Levitte | |
2001-07-10 | make update | Richard Levitte | |
2001-07-10 | EVP_Digest() takes one more parameter. | Richard Levitte | |
2001-07-10 | For consistency with the terminology used in my SAC2001 paper, avoid | Bodo Möller | |
the term "simultaneous multiplication" (which -- acording to the paper, at least -- applies only to certain methods which we don't use here) | |||
2001-07-10 | comment change | Bodo Möller | |
2001-07-10 | Fix PRNG. | Bodo Möller | |
2001-07-10 | In version numbers, there is just one "M" nybble. | Bodo Möller | |