summaryrefslogtreecommitdiffstats
path: root/fips
AgeCommit message (Collapse)Author
2011-10-18Update premain fingerprint.Dr. Stephen Henson
2011-10-18fipssyms.h: assign alias to newly introduced bn_gather5.Andy Polyakov
2011-10-18fips/*: extend fipsro segmenting to all _MSC_VER builds (including WinCE).Andy Polyakov
2011-10-18fips_enc.c: assign minimal block size to bad_cipher [to avoid arithmeticAndy Polyakov
exceptions in TLS layer].
2011-10-15Add android-x86.Andy Polyakov
2011-10-14Clarify usage message.Dr. Stephen Henson
2011-10-14Don't use TPREFIX shell variable for minimal script.Dr. Stephen Henson
2011-10-14Add usage messages.Dr. Stephen Henson
2011-10-12Print curve type for signature tests.Dr. Stephen Henson
2011-10-12Skip ECDH sanity check. Add --compare-all to run comparison tests onDr. Stephen Henson
all files instead of sanity checks.
2011-10-12Handle partial test where H is absent: needed to check g generation.Dr. Stephen Henson
2011-10-12Updates to handle some verification of v2 tests.Dr. Stephen Henson
Now enable v2 by default and require a --disable-v2 option to run the old v1 tests.
2011-10-12Handle broken test on verify too.Dr. Stephen Henson
2011-10-12ECDH POST selftest failure inducing support.Dr. Stephen Henson
2011-10-12Fix warnings.Dr. Stephen Henson
2011-10-12Only include one ECDH selftest.Dr. Stephen Henson
2011-10-01Make fips algorithm test utilities use RESP_EOL for end of line character(s).Dr. Stephen Henson
This should be CRLF even under *nix.
2011-09-30Never echo Num lines for PQGGen DSA2 test.Dr. Stephen Henson
2011-09-29make dependDr. Stephen Henson
2011-09-29Add FIPS selftests for ECDH algorithm.Dr. Stephen Henson
2011-09-29Remove s = s * P deferral.Dr. Stephen Henson
2011-09-29Check return codes properly.Dr. Stephen Henson
2011-09-28Fix output format for DSA2 parameter generation.Dr. Stephen Henson
2011-09-25Add a --disable-all option to disable all tests.Dr. Stephen Henson
2011-09-25Handle provable prime parameters for canonical g generation which areDr. Stephen Henson
sometimes erroneously included.
2011-09-23Run PQGVer test before DSA2 tests.Dr. Stephen Henson
2011-09-22Typo.Dr. Stephen Henson
2011-09-22Use function name FIPS_drbg_health_check() for health check function.Dr. Stephen Henson
Add explanatory comments to health check code.
2011-09-21Don't print out errors in cases where errors are expected: testingDr. Stephen Henson
DSA parameter validity and EC public key validity.
2011-09-21Remove unused variable.Dr. Stephen Henson
2011-09-21Perform health check on all reseed operations not associated withDr. Stephen Henson
prediction resistance requests. Although SP 800-90 is arguably unclear on whether this is necessary adding an additional check has minimal penalty (very few applications will make an explicit reseed request).
2011-09-21Revise DRBG to split between internal and external flags.Dr. Stephen Henson
One demand health check function. Perform generation test in fips_test_suite. Option to skip dh test if fips_test_suite.
2011-09-18Allow reseed interval to be set.Dr. Stephen Henson
2011-09-16clarify commentDr. Stephen Henson
2011-09-16Minor code tidy and bug fix: need to set t = s after first pass andDr. Stephen Henson
t and s do not need to have independent values after the first pass so set t = s.
2011-09-15Make HMAC kat symbols static.Dr. Stephen Henson
2011-09-15Fix warning.Dr. Stephen Henson
2011-09-14Allow for dynamic base in Win64 FIPS module.Andy Polyakov
2011-09-14Update CMAC/HMAC sefltests to use NIDs instead of function pointers.Dr. Stephen Henson
Simplify HMAC selftest as each test currently uses the same key and hash data.
2011-09-14new function to lookup FIPS supported ciphers by NIDDr. Stephen Henson
2011-09-12More extensive DRBG health check. New function to call health checkDr. Stephen Henson
for all DRBG combinations.
2011-09-12Check length of additional input in DRBG generate function.Dr. Stephen Henson
2011-09-12Delete strength parameter from FIPS_drbg_generate. It isn't very usefulDr. Stephen Henson
(strength can be queried using FIPS_drbg_get_strength ) and adds a substantial extra overhead to health check (need to check every combination of parameters).
2011-09-12Check we recognise DRBG type in fips_drbgvs.c initialised DRBG_CTX if weDr. Stephen Henson
don't set type in FIPS_drbg_new().
2011-09-11Fix 3DES Monte Carlo test file output which previously outputtedDr. Stephen Henson
extra bogus lines. Update fipsalgtest.pl to tolerate the old format.
2011-09-09Add support for Dual EC DRBG from SP800-90. Include updates to algorithmDr. Stephen Henson
tests and POST code.
2011-09-07Put quick DRBG selftest return after first generate operation.Dr. Stephen Henson
2011-09-06Add error codes for DRBG KAT failures.Dr. Stephen Henson
Add abbreviated DRBG KAT for POST which only performs a single generate operations instead of four.
2011-09-05Check reseed interval before generating output.Dr. Stephen Henson
2011-09-05Place DRBG in error state if health check fails.Dr. Stephen Henson