Compare commits
	
		
			429 Commits
		
	
	
		
			OpenSSL-en
			...
			OpenSSL-en
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
| 
						 | 
					e463adeff8 | ||
| 
						 | 
					e39238e403 | ||
| 
						 | 
					ecdf154993 | ||
| 
						 | 
					5d92a7bef1 | ||
| 
						 | 
					8246c0607a | ||
| 
						 | 
					bfce617770 | ||
| 
						 | 
					1ce60f02d3 | ||
| 
						 | 
					bb34d6de74 | ||
| 
						 | 
					89918b5c17 | ||
| 
						 | 
					46859bf421 | ||
| 
						 | 
					6cae350ad1 | ||
| 
						 | 
					cfebe39d42 | ||
| 
						 | 
					eb80f91278 | ||
| 
						 | 
					7a0c6536e2 | ||
| 
						 | 
					b5b000d77e | ||
| 
						 | 
					6c2650a6fc | ||
| 
						 | 
					02b7ec88bb | ||
| 
						 | 
					e2cdf9c994 | ||
| 
						 | 
					0af9a89cef | ||
| 
						 | 
					290416db2a | ||
| 
						 | 
					db802c60e3 | ||
| 
						 | 
					503f3b1a21 | ||
| 
						 | 
					402bcde847 | ||
| 
						 | 
					ff192dce10 | ||
| 
						 | 
					8b98de6653 | ||
| 
						 | 
					ec9ea6a3c8 | ||
| 
						 | 
					7e6617611f | ||
| 
						 | 
					ca6dde5d3d | ||
| 
						 | 
					8e6cbcd7c0 | ||
| 
						 | 
					9335a5f7c0 | ||
| 
						 | 
					32bf74e30e | ||
| 
						 | 
					6643f275e2 | ||
| 
						 | 
					cd4c36adb8 | ||
| 
						 | 
					311e209931 | ||
| 
						 | 
					951d8e0d6b | ||
| 
						 | 
					fe5eb6707f | ||
| 
						 | 
					f5db08e57a | ||
| 
						 | 
					8cfdb960f0 | ||
| 
						 | 
					ebccb429de | ||
| 
						 | 
					7dbed652fc | ||
| 
						 | 
					6789b41d86 | ||
| 
						 | 
					0487cb234c | ||
| 
						 | 
					80e1495b99 | ||
| 
						 | 
					041843e47e | ||
| 
						 | 
					c2aa4f2081 | ||
| 
						 | 
					b23f50e67e | ||
| 
						 | 
					7fe03ed3a3 | ||
| 
						 | 
					9466fa6750 | ||
| 
						 | 
					cead7f36da | ||
| 
						 | 
					cbecb3ac37 | ||
| 
						 | 
					5dbd3efce7 | ||
| 
						 | 
					876811e2af | ||
| 
						 | 
					b57c98df7b | ||
| 
						 | 
					c4da6dd38a | ||
| 
						 | 
					2edcb4ac71 | ||
| 
						 | 
					0c4d9b2fbc | ||
| 
						 | 
					5012158adf | ||
| 
						 | 
					5c9396e37c | ||
| 
						 | 
					7b63c0fa8c | ||
| 
						 | 
					063a8905bf | ||
| 
						 | 
					cd7562091d | ||
| 
						 | 
					d1d0be3cd2 | ||
| 
						 | 
					2c8ad4f1af | ||
| 
						 | 
					121dea3f85 | ||
| 
						 | 
					ea4f109c99 | ||
| 
						 | 
					7650934f21 | ||
| 
						 | 
					40c5cae24a | ||
| 
						 | 
					cce9396dc9 | ||
| 
						 | 
					47f3eafb8d | ||
| 
						 | 
					53fc93dda6 | ||
| 
						 | 
					17085b022c | ||
| 
						 | 
					4367eb8706 | ||
| 
						 | 
					0a8a99785b | ||
| 
						 | 
					a9d96b98cb | ||
| 
						 | 
					ae689b6b27 | ||
| 
						 | 
					60d160da2d | ||
| 
						 | 
					05086644c4 | ||
| 
						 | 
					fb96d9d90d | ||
| 
						 | 
					e1a32c1807 | ||
| 
						 | 
					5585f4eca4 | ||
| 
						 | 
					e8b4d05f61 | ||
| 
						 | 
					0df748e7e2 | ||
| 
						 | 
					1fbcfbe693 | ||
| 
						 | 
					34ab17b669 | ||
| 
						 | 
					b99e18bbec | ||
| 
						 | 
					4942ef6f0e | ||
| 
						 | 
					9ae08a9c04 | ||
| 
						 | 
					76f8a1f51d | ||
| 
						 | 
					9d358821e5 | ||
| 
						 | 
					49b10f72ec | ||
| 
						 | 
					a6c6874a1a | ||
| 
						 | 
					a947f2d2b6 | ||
| 
						 | 
					94e19e7111 | ||
| 
						 | 
					04677ce024 | ||
| 
						 | 
					407adb5b17 | ||
| 
						 | 
					da0616cd13 | ||
| 
						 | 
					1c02ca537a | ||
| 
						 | 
					3f2f3d4264 | ||
| 
						 | 
					c4c2c61e8c | ||
| 
						 | 
					5f3d6f70f6 | ||
| 
						 | 
					ece0bdf1fd | ||
| 
						 | 
					97e4b1883e | ||
| 
						 | 
					a2b38b3022 | ||
| 
						 | 
					d51092f42b | ||
| 
						 | 
					bdb6171334 | ||
| 
						 | 
					1d4547a43d | ||
| 
						 | 
					65ee74fbc7 | ||
| 
						 | 
					c21506ba02 | ||
| 
						 | 
					00f1628eac | ||
| 
						 | 
					c69d103956 | ||
| 
						 | 
					d56f92ee78 | ||
| 
						 | 
					d5492d9b47 | ||
| 
						 | 
					451dc18f10 | ||
| 
						 | 
					23f0541263 | ||
| 
						 | 
					127dca46a0 | ||
| 
						 | 
					e888074bb4 | ||
| 
						 | 
					1ef5026ef9 | ||
| 
						 | 
					40889b9cd3 | ||
| 
						 | 
					99889b46c9 | ||
| 
						 | 
					82869b3c8d | ||
| 
						 | 
					e8233e699b | ||
| 
						 | 
					04cc76660a | ||
| 
						 | 
					e1f7ea25d2 | ||
| 
						 | 
					8586df1efb | ||
| 
						 | 
					b8e0e12399 | ||
| 
						 | 
					254ef80db1 | ||
| 
						 | 
					f9de8446a0 | ||
| 
						 | 
					d15711efc6 | ||
| 
						 | 
					25ace3ed25 | ||
| 
						 | 
					012c86ab74 | ||
| 
						 | 
					458c29175e | ||
| 
						 | 
					8a5dbb0a2e | ||
| 
						 | 
					532203cdb0 | ||
| 
						 | 
					870d3d5595 | ||
| 
						 | 
					c6c0e4cb32 | ||
| 
						 | 
					8f6f347848 | ||
| 
						 | 
					0f7b63c834 | ||
| 
						 | 
					64ed18ef20 | ||
| 
						 | 
					345731731a | ||
| 
						 | 
					b2c04539a1 | ||
| 
						 | 
					72645b83bb | ||
| 
						 | 
					d13363af60 | ||
| 
						 | 
					b6fc2386f0 | ||
| 
						 | 
					9f353dd662 | ||
| 
						 | 
					b49053cae2 | ||
| 
						 | 
					c8062c3a5e | ||
| 
						 | 
					05c08fc708 | ||
| 
						 | 
					0990a0851a | ||
| 
						 | 
					bb0db9c491 | ||
| 
						 | 
					966a753997 | ||
| 
						 | 
					0f829bd111 | ||
| 
						 | 
					a5200a1b8f | ||
| 
						 | 
					6631a7e7f1 | ||
| 
						 | 
					010da5c015 | ||
| 
						 | 
					fbb56e5b1d | ||
| 
						 | 
					78055aa6a5 | ||
| 
						 | 
					e6bd5e8a6d | ||
| 
						 | 
					94f1b50c0f | ||
| 
						 | 
					bd54d55c1d | ||
| 
						 | 
					09c70c3261 | ||
| 
						 | 
					1ed0c6621b | ||
| 
						 | 
					5f8453587e | ||
| 
						 | 
					b57e656095 | ||
| 
						 | 
					d6e2d12c74 | ||
| 
						 | 
					305a1afcf7 | ||
| 
						 | 
					9cdf87f194 | ||
| 
						 | 
					a81e9d3dc4 | ||
| 
						 | 
					6b7e0a9987 | ||
| 
						 | 
					8b57fb1208 | ||
| 
						 | 
					2551fc047c | ||
| 
						 | 
					2962243d19 | ||
| 
						 | 
					dbdc5d14d3 | ||
| 
						 | 
					6cbe638294 | ||
| 
						 | 
					07c08ed42c | ||
| 
						 | 
					17b226a672 | ||
| 
						 | 
					f33ca23e2f | ||
| 
						 | 
					a0f6331507 | ||
| 
						 | 
					6d79659dd7 | ||
| 
						 | 
					c56fb0f1a3 | ||
| 
						 | 
					08241a5814 | ||
| 
						 | 
					3d27b1fa85 | ||
| 
						 | 
					71aa7c586b | ||
| 
						 | 
					7462f2644c | ||
| 
						 | 
					6298bf9073 | ||
| 
						 | 
					9a26adf598 | ||
| 
						 | 
					64ad04eb2d | ||
| 
						 | 
					349b293353 | ||
| 
						 | 
					fd91256316 | ||
| 
						 | 
					a9a025d08c | ||
| 
						 | 
					b605e3ada3 | ||
| 
						 | 
					02cbedc387 | ||
| 
						 | 
					e5d814d040 | ||
| 
						 | 
					b09f4fb271 | ||
| 
						 | 
					1f4eada3b4 | ||
| 
						 | 
					b935754cb0 | ||
| 
						 | 
					396bc53593 | ||
| 
						 | 
					7711de24f9 | ||
| 
						 | 
					eee6c81af8 | ||
| 
						 | 
					b89670ef0e | ||
| 
						 | 
					0fccb00b5b | ||
| 
						 | 
					72da660ddb | ||
| 
						 | 
					46ffee4792 | ||
| 
						 | 
					c0a953650b | ||
| 
						 | 
					0424fe1a8f | ||
| 
						 | 
					544a2aea4b | ||
| 
						 | 
					60e5f36d27 | ||
| 
						 | 
					2469361c0f | ||
| 
						 | 
					6fa865a325 | ||
| 
						 | 
					e9ba69631b | ||
| 
						 | 
					d80a8d1919 | ||
| 
						 | 
					d0ff2a237b | ||
| 
						 | 
					6e5dd63c77 | ||
| 
						 | 
					dc014d43af | ||
| 
						 | 
					2f9cf160e4 | ||
| 
						 | 
					69043fa13f | ||
| 
						 | 
					336c35dc9e | ||
| 
						 | 
					72b5215645 | ||
| 
						 | 
					e0b110267d | ||
| 
						 | 
					8f1e8d274e | ||
| 
						 | 
					06bed64317 | ||
| 
						 | 
					a09d349071 | ||
| 
						 | 
					c559759265 | ||
| 
						 | 
					b4000e8ad8 | ||
| 
						 | 
					e27fd320fc | ||
| 
						 | 
					21d5ed98d5 | ||
| 
						 | 
					e9a182fa30 | ||
| 
						 | 
					b6db386ffd | ||
| 
						 | 
					2c975b501d | ||
| 
						 | 
					279fe3b1c5 | ||
| 
						 | 
					98a9092af1 | ||
| 
						 | 
					87108f5af9 | ||
| 
						 | 
					f257d984b7 | ||
| 
						 | 
					b889d6a8e8 | ||
| 
						 | 
					47234cd3d2 | ||
| 
						 | 
					2c8d0dccfc | ||
| 
						 | 
					a4f576a378 | ||
| 
						 | 
					3def5a010e | ||
| 
						 | 
					294bd1e2f3 | ||
| 
						 | 
					253ef2187c | ||
| 
						 | 
					c0455cbb18 | ||
| 
						 | 
					17e2c77a77 | ||
| 
						 | 
					b52f3818f4 | ||
| 
						 | 
					cc12975514 | ||
| 
						 | 
					9738f395c6 | ||
| 
						 | 
					d4294c8984 | ||
| 
						 | 
					8df61b5011 | ||
| 
						 | 
					f1e6643751 | ||
| 
						 | 
					6991bf196c | ||
| 
						 | 
					822a4c1bdb | ||
| 
						 | 
					a5868b3fe2 | ||
| 
						 | 
					4edfacb983 | ||
| 
						 | 
					c6efe6f59e | ||
| 
						 | 
					35c2b3a9ac | ||
| 
						 | 
					af9675e75a | ||
| 
						 | 
					66ae107a14 | ||
| 
						 | 
					8b2f9cdfad | ||
| 
						 | 
					01682a8b3c | ||
| 
						 | 
					8b07f23c30 | ||
| 
						 | 
					45932ad508 | ||
| 
						 | 
					ce94682ce1 | ||
| 
						 | 
					2d7ab7e9ea | ||
| 
						 | 
					6176df94ed | ||
| 
						 | 
					a8f8788248 | ||
| 
						 | 
					d5d007abe3 | ||
| 
						 | 
					32e692ce07 | ||
| 
						 | 
					151457ab16 | ||
| 
						 | 
					dde3e83129 | ||
| 
						 | 
					8f182fdc69 | ||
| 
						 | 
					1064acafc4 | ||
| 
						 | 
					ff8e412ceb | ||
| 
						 | 
					e9cbcb1d98 | ||
| 
						 | 
					ea7fc0311c | ||
| 
						 | 
					30911232c1 | ||
| 
						 | 
					2940a1298e | ||
| 
						 | 
					f916052eab | ||
| 
						 | 
					2fb3f002d0 | ||
| 
						 | 
					82b0bf0b87 | ||
| 
						 | 
					3a7cef3e76 | ||
| 
						 | 
					592c0e0273 | ||
| 
						 | 
					08b977b5a5 | ||
| 
						 | 
					85fb12d554 | ||
| 
						 | 
					b975183c41 | ||
| 
						 | 
					083100e2ab | ||
| 
						 | 
					241d2ba1da | ||
| 
						 | 
					e4fb49775b | ||
| 
						 | 
					381a146dc6 | ||
| 
						 | 
					b4a262832a | ||
| 
						 | 
					6d498d478e | ||
| 
						 | 
					d0561b5c2d | ||
| 
						 | 
					4f4b192402 | ||
| 
						 | 
					0ae1661ba2 | ||
| 
						 | 
					4e9ef338fc | ||
| 
						 | 
					d16e1131b4 | ||
| 
						 | 
					a18894d159 | ||
| 
						 | 
					dfee50ecd9 | ||
| 
						 | 
					10189984f9 | ||
| 
						 | 
					d8425465a3 | ||
| 
						 | 
					1fc02dcf6a | ||
| 
						 | 
					83d092f785 | ||
| 
						 | 
					4825092bbe | ||
| 
						 | 
					bbd79bdf03 | ||
| 
						 | 
					a096e9b719 | ||
| 
						 | 
					ddab25a90d | ||
| 
						 | 
					ffbe98b763 | ||
| 
						 | 
					d7a9bb0a2a | ||
| 
						 | 
					0d81c69b8e | ||
| 
						 | 
					401cd0af0f | ||
| 
						 | 
					c7b41e67f0 | ||
| 
						 | 
					003144a8e8 | ||
| 
						 | 
					af1cb47e65 | ||
| 
						 | 
					e8e7fbdb16 | ||
| 
						 | 
					d5c21afd4b | ||
| 
						 | 
					1afa967909 | ||
| 
						 | 
					85b7b80434 | ||
| 
						 | 
					fe0f662310 | ||
| 
						 | 
					90453438ff | ||
| 
						 | 
					2e63f3b733 | ||
| 
						 | 
					125cc35b59 | ||
| 
						 | 
					7e58aa7d71 | ||
| 
						 | 
					be3d90de02 | ||
| 
						 | 
					82652aaf17 | ||
| 
						 | 
					17d6bb8158 | ||
| 
						 | 
					11c26ecf81 | ||
| 
						 | 
					99d5b23023 | ||
| 
						 | 
					611ba3f4a1 | ||
| 
						 | 
					af28dd6c75 | ||
| 
						 | 
					e79ec456be | ||
| 
						 | 
					3e268d2717 | ||
| 
						 | 
					c46acbacde | ||
| 
						 | 
					304d90425f | ||
| 
						 | 
					bfaa8a89e1 | ||
| 
						 | 
					de941e289e | ||
| 
						 | 
					1d28453529 | ||
| 
						 | 
					690ecff795 | ||
| 
						 | 
					234c73767d | ||
| 
						 | 
					497810cae7 | ||
| 
						 | 
					cbc9d9713d | ||
| 
						 | 
					98fa4fe8c5 | ||
| 
						 | 
					0b4c91c0fc | ||
| 
						 | 
					b9b43196e1 | ||
| 
						 | 
					bf6a9e66d6 | ||
| 
						 | 
					0c372b94f7 | ||
| 
						 | 
					26e1237380 | ||
| 
						 | 
					4882171df5 | ||
| 
						 | 
					931627e6a0 | ||
| 
						 | 
					274a2c9970 | ||
| 
						 | 
					006fcc22a8 | ||
| 
						 | 
					709c51c424 | ||
| 
						 | 
					9bc448546e | ||
| 
						 | 
					0dc092334b | ||
| 
						 | 
					36c194638e | ||
| 
						 | 
					45fb737950 | ||
| 
						 | 
					a01273bae3 | ||
| 
						 | 
					2c17323e15 | ||
| 
						 | 
					870694b3da | ||
| 
						 | 
					87a4b4d1f4 | ||
| 
						 | 
					8ecf5104b3 | ||
| 
						 | 
					2b3aeffbbd | ||
| 
						 | 
					2c2f9e2cc3 | ||
| 
						 | 
					2d9b1b3ffa | ||
| 
						 | 
					f070480275 | ||
| 
						 | 
					49f1597de2 | ||
| 
						 | 
					b44e425f39 | ||
| 
						 | 
					93683c3cf8 | ||
| 
						 | 
					a08ee55e2d | ||
| 
						 | 
					3bac6d9479 | ||
| 
						 | 
					5c5143de48 | ||
| 
						 | 
					c8cd7d9e0f | ||
| 
						 | 
					e0a6cdcf30 | ||
| 
						 | 
					a0ecb9b8fc | ||
| 
						 | 
					4bf4bc784f | ||
| 
						 | 
					9437fef8cc | ||
| 
						 | 
					16b0384bd2 | ||
| 
						 | 
					87ebdd8a71 | ||
| 
						 | 
					7d68189d8a | ||
| 
						 | 
					26414ee013 | ||
| 
						 | 
					5c62f68e14 | ||
| 
						 | 
					0d22b5dace | ||
| 
						 | 
					023ec151df | ||
| 
						 | 
					59dbdb51dc | ||
| 
						 | 
					92d1bc09cb | ||
| 
						 | 
					d62bfb39cd | ||
| 
						 | 
					ce4b274aa1 | ||
| 
						 | 
					334f1842fc | ||
| 
						 | 
					b12540520d | ||
| 
						 | 
					0d7b9b8b7e | ||
| 
						 | 
					31188ee1a8 | ||
| 
						 | 
					4a3e6bce79 | ||
| 
						 | 
					a3829cb720 | ||
| 
						 | 
					e84be9b495 | ||
| 
						 | 
					3a3ca3f515 | ||
| 
						 | 
					032c49b8b3 | ||
| 
						 | 
					3208ff58ca | ||
| 
						 | 
					6707d22a40 | ||
| 
						 | 
					3647bee263 | ||
| 
						 | 
					e2aebccba1 | ||
| 
						 | 
					3e563bcea7 | ||
| 
						 | 
					92f91ff48b | ||
| 
						 | 
					b3dfaaa143 | ||
| 
						 | 
					5b7848a345 | ||
| 
						 | 
					915c6a21ba | ||
| 
						 | 
					58706d595b | ||
| 
						 | 
					236be53269 | ||
| 
						 | 
					1fc1bd382b | ||
| 
						 | 
					a60033f106 | ||
| 
						 | 
					3613e6fc57 | ||
| 
						 | 
					f8e21776f9 | ||
| 
						 | 
					006723cf76 | ||
| 
						 | 
					aa89bcd279 | ||
| 
						 | 
					f19759a182 | ||
| 
						 | 
					d009bcbfb6 | ||
| 
						 | 
					4b71f63ac0 | ||
| 
						 | 
					3adb8c3854 | ||
| 
						 | 
					02e666d59f | ||
| 
						 | 
					5b2d6ff07e | ||
| 
						 | 
					877b2fbd3c | ||
| 
						 | 
					afeab58a3c | ||
| 
						 | 
					744c49a81b | ||
| 
						 | 
					9c5b91fd0b | ||
| 
						 | 
					290d3eab76 | ||
| 
						 | 
					46dae77c23 | ||
| 
						 | 
					a6cd870784 | ||
| 
						 | 
					97879bcd57 | ||
| 
						 | 
					ab1dee1efc | ||
| 
						 | 
					e072aa535d | ||
| 
						 | 
					48f9859d2a | ||
| 
						 | 
					48b5083ca0 | ||
| 
						 | 
					cd64618674 | ||
| 
						 | 
					5d7e960adf | 
							
								
								
									
										77
									
								
								CHANGES
									
									
									
									
									
								
							
							
						
						
									
										77
									
								
								CHANGES
									
									
									
									
									
								
							@@ -2,7 +2,82 @@
 | 
				
			|||||||
 OpenSSL CHANGES
 | 
					 OpenSSL CHANGES
 | 
				
			||||||
 _______________
 | 
					 _______________
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 Changes between 0.9.6c and 0.9.6d  [XX xxx XXXX]
 | 
					 Changes between 0.9.6f and 0.9.6g  [9 Aug 2002]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) [In 0.9.6g-engine release:]
 | 
				
			||||||
 | 
					     Fix crypto/engine/vendor_defns/cswift.h for WIN32 (use '_stdcall').
 | 
				
			||||||
 | 
					     [Lynn Gazis <lgazis@rainbow.com>]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 Changes between 0.9.6e and 0.9.6f  [8 Aug 2002]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Fix ASN1 checks. Check for overflow by comparing with LONG_MAX
 | 
				
			||||||
 | 
					     and get fix the header length calculation.
 | 
				
			||||||
 | 
					     [Florian Weimer <Weimer@CERT.Uni-Stuttgart.DE>,
 | 
				
			||||||
 | 
						Alon Kantor <alonk@checkpoint.com> (and others),
 | 
				
			||||||
 | 
						Steve Henson]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Use proper error handling instead of 'assertions' in buffer
 | 
				
			||||||
 | 
					     overflow checks added in 0.9.6e.  This prevents DoS (the
 | 
				
			||||||
 | 
					     assertions could call abort()).
 | 
				
			||||||
 | 
					     [Arne Ansper <arne@ats.cyber.ee>, Bodo Moeller]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 Changes between 0.9.6d and 0.9.6e  [30 Jul 2002]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Fix cipher selection routines: ciphers without encryption had no flags
 | 
				
			||||||
 | 
					     for the cipher strength set and where therefore not handled correctly
 | 
				
			||||||
 | 
					     by the selection routines (PR #130).
 | 
				
			||||||
 | 
					     [Lutz Jaenicke]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Fix EVP_dsa_sha macro.
 | 
				
			||||||
 | 
					     [Nils Larsch]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) New option
 | 
				
			||||||
 | 
					          SSL_OP_DONT_INSERT_EMPTY_FRAGMENTS
 | 
				
			||||||
 | 
					     for disabling the SSL 3.0/TLS 1.0 CBC vulnerability countermeasure
 | 
				
			||||||
 | 
					     that was added in OpenSSL 0.9.6d.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					     As the countermeasure turned out to be incompatible with some
 | 
				
			||||||
 | 
					     broken SSL implementations, the new option is part of SSL_OP_ALL.
 | 
				
			||||||
 | 
					     SSL_OP_ALL is usually employed when compatibility with weird SSL
 | 
				
			||||||
 | 
					     implementations is desired (e.g. '-bugs' option to 's_client' and
 | 
				
			||||||
 | 
					     's_server'), so the new option is automatically set in many
 | 
				
			||||||
 | 
					     applications.
 | 
				
			||||||
 | 
					     [Bodo Moeller]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Changes in security patch:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					     Changes marked "(CHATS)" were sponsored by the Defense Advanced
 | 
				
			||||||
 | 
					     Research Projects Agency (DARPA) and Air Force Research Laboratory,
 | 
				
			||||||
 | 
					     Air Force Materiel Command, USAF, under agreement number
 | 
				
			||||||
 | 
					     F30602-01-2-0537.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Add various sanity checks to asn1_get_length() to reject
 | 
				
			||||||
 | 
					     the ASN1 length bytes if they exceed sizeof(long), will appear
 | 
				
			||||||
 | 
					     negative or the content length exceeds the length of the
 | 
				
			||||||
 | 
					     supplied buffer.
 | 
				
			||||||
 | 
					     [Steve Henson, Adi Stav <stav@mercury.co.il>, James Yonan <jim@ntlp.com>]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Assertions for various potential buffer overflows, not known to
 | 
				
			||||||
 | 
					     happen in practice.
 | 
				
			||||||
 | 
					     [Ben Laurie (CHATS)]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Various temporary buffers to hold ASCII versions of integers were
 | 
				
			||||||
 | 
					     too small for 64 bit platforms. (CAN-2002-0655)
 | 
				
			||||||
 | 
					     [Matthew Byng-Maddick <mbm@aldigital.co.uk> and Ben Laurie (CHATS)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Remote buffer overflow in SSL3 protocol - an attacker could
 | 
				
			||||||
 | 
					     supply an oversized session ID to a client. (CAN-2002-0656)
 | 
				
			||||||
 | 
					     [Ben Laurie (CHATS)]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Remote buffer overflow in SSL2 protocol - an attacker could
 | 
				
			||||||
 | 
					     supply an oversized client master key. (CAN-2002-0656)
 | 
				
			||||||
 | 
					     [Ben Laurie (CHATS)]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 Changes between 0.9.6c and 0.9.6d  [9 May 2002]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  *) Fix crypto/asn1/a_sign.c so that 'parameters' is omitted (not
 | 
				
			||||||
 | 
					     encoded as NULL) with id-dsa-with-sha1.
 | 
				
			||||||
 | 
					     [Nils Larsch <nla@trustcenter.de>; problem pointed out by Bodo Moeller]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  *) Check various X509_...() return values in apps/req.c.
 | 
					  *) Check various X509_...() return values in apps/req.c.
 | 
				
			||||||
     [Nils Larsch <nla@trustcenter.de>]
 | 
					     [Nils Larsch <nla@trustcenter.de>]
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										33
									
								
								Configure
									
									
									
									
									
								
							
							
						
						
									
										33
									
								
								Configure
									
									
									
									
									
								
							@@ -154,6 +154,7 @@ my %table=(
 | 
				
			|||||||
"solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8.o:::::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8.o:::::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"solaris-sparcv9-gcc","gcc:-mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus.o:::asm/md5-sparcv8plus.o::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"solaris-sparcv9-gcc","gcc:-mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus.o:::asm/md5-sparcv8plus.o::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
 | 
					"solaris64-sparcv9-gcc31","gcc:-mcpu=ultrasparc -m64 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::asm/md5-sparcv9.o::::::dlfcn:solaris-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
# gcc pre-2.8 doesn't understand -mcpu=ultrasparc, so fall down to -mv8
 | 
					# gcc pre-2.8 doesn't understand -mcpu=ultrasparc, so fall down to -mv8
 | 
				
			||||||
# but keep the assembler modules.
 | 
					# but keep the assembler modules.
 | 
				
			||||||
"solaris-sparcv9-gcc27","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus-gcc27.o:::asm/md5-sparcv8plus-gcc27.o::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"solaris-sparcv9-gcc27","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus-gcc27.o:::asm/md5-sparcv8plus-gcc27.o::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
@@ -179,10 +180,10 @@ my %table=(
 | 
				
			|||||||
"linux-sparcv7","gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::",
 | 
					"linux-sparcv7","gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::",
 | 
				
			||||||
# Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
 | 
					# Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
 | 
				
			||||||
# assisted with debugging of following two configs.
 | 
					# assisted with debugging of following two configs.
 | 
				
			||||||
"linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8.o::::",
 | 
					"linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8.o:::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
# it's a real mess with -mcpu=ultrasparc option under Linux, but
 | 
					# it's a real mess with -mcpu=ultrasparc option under Linux, but
 | 
				
			||||||
# -Wa,-Av8plus should do the trick no matter what.
 | 
					# -Wa,-Av8plus should do the trick no matter what.
 | 
				
			||||||
"linux-sparcv9","gcc:-mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DULTRASPARC -DBN_DIV2W::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus.o:::asm/md5-sparcv8plus.o::::::dlfcn:linux-shared:-fPIC:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"linux-sparcv9","gcc:-mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DULTRASPARC -DBN_DIV2W::-D_REENTRANT:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus.o:::asm/md5-sparcv8plus.o::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
# !!!Folowing can't be even tested yet!!!
 | 
					# !!!Folowing can't be even tested yet!!!
 | 
				
			||||||
#    We have to wait till 64-bit glibc for SPARC is operational!!!
 | 
					#    We have to wait till 64-bit glibc for SPARC is operational!!!
 | 
				
			||||||
#"linux64-sparcv9","sparc64-linux-gcc:-m64 -mcpu=v9 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DULTRASPARC -DBN_DIV2W::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::asm/md5-sparcv9.o:",
 | 
					#"linux64-sparcv9","sparc64-linux-gcc:-m64 -mcpu=v9 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DULTRASPARC -DBN_DIV2W::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::asm/md5-sparcv9.o:",
 | 
				
			||||||
@@ -238,6 +239,7 @@ my %table=(
 | 
				
			|||||||
"hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY:::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1::::::::::dl:hpux-shared:+Z::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY:::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1::::::::::dl:hpux-shared:+Z::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W:::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1::::::::::dl:hpux-shared:-fPIC::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W:::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1::::::::::dl:hpux-shared:-fPIC::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"hpux64-parisc-cc","cc:-Ae +DD64 +O3 +ESlit -z -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::::::::::dlfcn:hpux64-shared:+Z::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"hpux64-parisc-cc","cc:-Ae +DD64 +O3 +ESlit -z -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::::::::::dlfcn:hpux64-shared:+Z::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
 | 
					"hpux64-parisc-gcc","gcc:-DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::::::::::dlfcn:hpux64-shared:-fpic::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
 | 
					
 | 
				
			||||||
# More attempts at unified 10.X and 11.X targets for HP C compiler.
 | 
					# More attempts at unified 10.X and 11.X targets for HP C compiler.
 | 
				
			||||||
#
 | 
					#
 | 
				
			||||||
@@ -345,15 +347,15 @@ my %table=(
 | 
				
			|||||||
# The intel boxes :-), It would be worth seeing if bsdi-gcc can use the
 | 
					# The intel boxes :-), It would be worth seeing if bsdi-gcc can use the
 | 
				
			||||||
# bn86-elf.o file file since it is hand tweaked assembler.
 | 
					# bn86-elf.o file file since it is hand tweaked assembler.
 | 
				
			||||||
"linux-elf",	"gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::-D_REENTRANT:-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"linux-elf",	"gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::-D_REENTRANT:-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT:-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT:-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT:-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
 | 
					"debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT:-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
 | 
				
			||||||
"linux-aout",	"gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::(unknown)::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}",
 | 
					"linux-aout",	"gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::(unknown)::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}",
 | 
				
			||||||
"linux-mipsel",   "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::(unknown)::BN_LLONG:::",
 | 
					"linux-mipsel",   "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::(unknown)::BN_LLONG:::",
 | 
				
			||||||
"linux-mips",   "gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::(unknown)::BN_LLONG:::",
 | 
					"linux-mips",   "gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::(unknown)::BN_LLONG:::",
 | 
				
			||||||
"linux-ppc",	"gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"linux-ppc",	"gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"linux-m68k",   "gcc:-DB_ENDIAN -DTERMIO -O2 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG::",
 | 
					"linux-m68k",   "gcc:-DB_ENDIAN -DTERMIO -O2 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG::",
 | 
				
			||||||
"linux-s390",	"gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG::",
 | 
					"linux-s390",	"gcc:-DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:BN_LLONG::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR),\$(SHLIB_MINOR)",
 | 
				
			||||||
"linux-s390x", "gcc:-DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::SIXTY_FOUR_BIT_LONG:::::::::::linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"linux-s390x", "gcc:-DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"linux-ia64",   "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK RC4_CHAR:asm/ia64.o:::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"linux-ia64",   "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK RC4_CHAR:asm/ia64.o:::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"NetBSD-sparc",	"gcc:-DTERMIOS -O3 -fomit-frame-pointer -mv8 -Wall -DB_ENDIAN::(unknown)::BN_LLONG MD2_CHAR RC4_INDEX DES_UNROLL::::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"NetBSD-sparc",	"gcc:-DTERMIOS -O3 -fomit-frame-pointer -mv8 -Wall -DB_ENDIAN::(unknown)::BN_LLONG MD2_CHAR RC4_INDEX DES_UNROLL::::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
"NetBSD-m68",	"gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall -DB_ENDIAN::(unknown)::BN_LLONG MD2_CHAR RC4_INDEX DES_UNROLL::::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
					"NetBSD-m68",	"gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall -DB_ENDIAN::(unknown)::BN_LLONG MD2_CHAR RC4_INDEX DES_UNROLL::::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
 | 
				
			||||||
@@ -445,7 +447,7 @@ my %table=(
 | 
				
			|||||||
"sco5-cc-pentium",  "cc:-Kpentium::(unknown):-lsocket:${x86_gcc_des} ${x86_gcc_opts}:::", # des options?
 | 
					"sco5-cc-pentium",  "cc:-Kpentium::(unknown):-lsocket:${x86_gcc_des} ${x86_gcc_opts}:::", # des options?
 | 
				
			||||||
"sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown):-lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::", # the SCO assembler doesn't seem to like our assembler files ...
 | 
					"sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown):-lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::", # the SCO assembler doesn't seem to like our assembler files ...
 | 
				
			||||||
"sco5-cc-shared","cc:-belf:::-lsocket -lresolv -lnsl:MD2_CHAR RC4_INDEX ${x86_gcc_des}::::::::::dlfcn:svr3-shared:-Kpic",
 | 
					"sco5-cc-shared","cc:-belf:::-lsocket -lresolv -lnsl:MD2_CHAR RC4_INDEX ${x86_gcc_des}::::::::::dlfcn:svr3-shared:-Kpic",
 | 
				
			||||||
"sco5-gcc-shared","gcc:-O3 -DFILIO_H -fomit-frame-pointer:::-lsocket -lresolv -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-fPIC",
 | 
					"sco5-gcc-shared","gcc:-O3 -fomit-frame-pointer:::-lsocket -lresolv -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::dlfcn:svr3-shared:-fPIC", # the SCO assembler doesn't seem to like our assembler files ...
 | 
				
			||||||
 | 
					
 | 
				
			||||||
# Sinix/ReliantUNIX RM400
 | 
					# Sinix/ReliantUNIX RM400
 | 
				
			||||||
# NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
 | 
					# NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
 | 
				
			||||||
@@ -480,6 +482,9 @@ my %table=(
 | 
				
			|||||||
# and its library files in util/pl/*)
 | 
					# and its library files in util/pl/*)
 | 
				
			||||||
"Mingw32", "gcc:-DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
 | 
					"Mingw32", "gcc:-DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					# UWIN 
 | 
				
			||||||
 | 
					"UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
 | 
				
			||||||
 | 
					
 | 
				
			||||||
# Cygwin
 | 
					# Cygwin
 | 
				
			||||||
"Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -m486 -Wall::(unknown)::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
 | 
					"Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -m486 -Wall::(unknown)::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
 | 
				
			||||||
"Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -m486 -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32:cygwin-shared:::.dll",
 | 
					"Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -m486 -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32:cygwin-shared:::.dll",
 | 
				
			||||||
@@ -498,7 +503,7 @@ my %table=(
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
##### MacOS X (a.k.a. Rhapsody or Darwin) setup
 | 
					##### MacOS X (a.k.a. Rhapsody or Darwin) setup
 | 
				
			||||||
"rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown)::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
 | 
					"rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown)::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
 | 
				
			||||||
"darwin-ppc-cc","cc:-O3 -D_DARWIN -DB_ENDIAN::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::::::::::darwin-shared:-fPIC:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
 | 
					"darwin-ppc-cc","cc:-O3 -D_DARWIN -DB_ENDIAN -fno-common::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::::::::::darwin-shared:-fPIC::.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
 | 
				
			||||||
 | 
					
 | 
				
			||||||
##### Sony NEWS-OS 4.x
 | 
					##### Sony NEWS-OS 4.x
 | 
				
			||||||
"newsos4-gcc","gcc:-O -DB_ENDIAN -DNEWS4::(unknown):-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
 | 
					"newsos4-gcc","gcc:-O -DB_ENDIAN -DNEWS4::(unknown):-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
 | 
				
			||||||
@@ -921,6 +926,10 @@ if ($rmd160_obj =~ /\.o$/)
 | 
				
			|||||||
	$cflags.=" -DRMD160_ASM";
 | 
						$cflags.=" -DRMD160_ASM";
 | 
				
			||||||
	}
 | 
						}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					# "Stringify" the C flags string.  This permits it to be made part of a string
 | 
				
			||||||
 | 
					# and works as well on command lines.
 | 
				
			||||||
 | 
					$cflags =~ s/([\\\"])/\\\1/g;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
my $version = "unknown";
 | 
					my $version = "unknown";
 | 
				
			||||||
my $major = "unknown";
 | 
					my $major = "unknown";
 | 
				
			||||||
my $minor = "unknown";
 | 
					my $minor = "unknown";
 | 
				
			||||||
@@ -1003,13 +1012,21 @@ while (<IN>)
 | 
				
			|||||||
	if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
 | 
						if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		my $sotmp = $1;
 | 
							my $sotmp = $1;
 | 
				
			||||||
		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/
 | 
							s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
 | 
						elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
 | 
				
			||||||
 | 
							{
 | 
				
			||||||
 | 
							s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
	elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
 | 
						elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		my $sotmp = $1;
 | 
							my $sotmp = $1;
 | 
				
			||||||
		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
 | 
							s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
 | 
						elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
 | 
				
			||||||
 | 
							{
 | 
				
			||||||
 | 
							s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
	s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
 | 
						s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
 | 
				
			||||||
	print OUT $_."\n";
 | 
						print OUT $_."\n";
 | 
				
			||||||
	}
 | 
						}
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										57
									
								
								FAQ
									
									
									
									
									
								
							
							
						
						
									
										57
									
								
								FAQ
									
									
									
									
									
								
							@@ -38,6 +38,8 @@ OpenSSL  -  Frequently Asked Questions
 | 
				
			|||||||
* Why does the OpenSSL compilation fail on Alpha Tru64 Unix?
 | 
					* Why does the OpenSSL compilation fail on Alpha Tru64 Unix?
 | 
				
			||||||
* Why does the OpenSSL compilation fail with "ar: command not found"?
 | 
					* Why does the OpenSSL compilation fail with "ar: command not found"?
 | 
				
			||||||
* Why does the OpenSSL compilation fail on Win32 with VC++?
 | 
					* Why does the OpenSSL compilation fail on Win32 with VC++?
 | 
				
			||||||
 | 
					* What is special about OpenSSL on Redhat?
 | 
				
			||||||
 | 
					* Why does the OpenSSL test suite fail on MacOS X?
 | 
				
			||||||
 | 
					
 | 
				
			||||||
[PROG] Questions about programming with OpenSSL
 | 
					[PROG] Questions about programming with OpenSSL
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -59,7 +61,7 @@ OpenSSL  -  Frequently Asked Questions
 | 
				
			|||||||
* Which is the current version of OpenSSL?
 | 
					* Which is the current version of OpenSSL?
 | 
				
			||||||
 | 
					
 | 
				
			||||||
The current version is available from <URL: http://www.openssl.org>.
 | 
					The current version is available from <URL: http://www.openssl.org>.
 | 
				
			||||||
OpenSSL 0.9.6c was released on December 21st, 2001.
 | 
					OpenSSL 0.9.6g was released on 9 August 2002.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
In addition to the current stable release, you can also access daily
 | 
					In addition to the current stable release, you can also access daily
 | 
				
			||||||
snapshots of the OpenSSL development version at <URL:
 | 
					snapshots of the OpenSSL development version at <URL:
 | 
				
			||||||
@@ -215,8 +217,11 @@ For Solaris 2.6, Tim Nibbe <tnibbe@sprint.net> and others have suggested
 | 
				
			|||||||
installing the SUNski package from Sun patch 105710-01 (Sparc) which
 | 
					installing the SUNski package from Sun patch 105710-01 (Sparc) which
 | 
				
			||||||
adds a /dev/random device and make sure it gets used, usually through
 | 
					adds a /dev/random device and make sure it gets used, usually through
 | 
				
			||||||
$RANDFILE.  There are probably similar patches for the other Solaris
 | 
					$RANDFILE.  There are probably similar patches for the other Solaris
 | 
				
			||||||
versions.  However, be warned that /dev/random is usually a blocking
 | 
					versions.  An official statement from Sun with respect to /dev/random
 | 
				
			||||||
device, which may have some effects on OpenSSL.
 | 
					support can be found at
 | 
				
			||||||
 | 
					  http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsrdb/27606&zone_32=SUNWski
 | 
				
			||||||
 | 
					However, be warned that /dev/random is usually a blocking device, which
 | 
				
			||||||
 | 
					may have some effects on OpenSSL.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
* Why do I get an "unable to write 'random state'" error message?
 | 
					* Why do I get an "unable to write 'random state'" error message?
 | 
				
			||||||
@@ -451,6 +456,52 @@ under 'Program Files').  This needs to be done prior to running NMAKE,
 | 
				
			|||||||
and the changes are only valid for the current DOS session.
 | 
					and the changes are only valid for the current DOS session.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					* What is special about OpenSSL on Redhat?
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					Red Hat Linux (release 7.0 and later) include a preinstalled limited
 | 
				
			||||||
 | 
					version of OpenSSL. For patent reasons, support for IDEA, RC5 and MDC2
 | 
				
			||||||
 | 
					is disabled in this version. The same may apply to other Linux distributions.
 | 
				
			||||||
 | 
					Users may therefore wish to install more or all of the features left out.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					To do this you MUST ensure that you do not overwrite the openssl that is in
 | 
				
			||||||
 | 
					/usr/bin on your Red Hat machine. Several packages depend on this file,
 | 
				
			||||||
 | 
					including sendmail and ssh. /usr/local/bin is a good alternative choice. The
 | 
				
			||||||
 | 
					libraries that come with Red Hat 7.0 onwards have different names and so are
 | 
				
			||||||
 | 
					not affected. (eg For Red Hat 7.2 they are /lib/libssl.so.0.9.6b and
 | 
				
			||||||
 | 
					/lib/libcrypto.so.0.9.6b with symlinks /lib/libssl.so.2 and
 | 
				
			||||||
 | 
					/lib/libcrypto.so.2 respectively).
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					Please note that we have been advised by Red Hat attempting to recompile the
 | 
				
			||||||
 | 
					openssl rpm with all the cryptography enabled will not work. All other
 | 
				
			||||||
 | 
					packages depend on the original Red Hat supplied openssl package. It is also
 | 
				
			||||||
 | 
					worth noting that due to the way Red Hat supplies its packages, updates to
 | 
				
			||||||
 | 
					openssl on each distribution never change the package version, only the
 | 
				
			||||||
 | 
					build number. For example, on Red Hat 7.1, the latest openssl package has
 | 
				
			||||||
 | 
					version number 0.9.6 and build number 9 even though it contains all the
 | 
				
			||||||
 | 
					relevant updates in packages up to and including 0.9.6b.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					A possible way around this is to persuade Red Hat to produce a non-US
 | 
				
			||||||
 | 
					version of Red Hat Linux.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					FYI: Patent numbers and expiry dates of US patents:
 | 
				
			||||||
 | 
					MDC-2: 4,908,861 13/03/2007
 | 
				
			||||||
 | 
					IDEA:  5,214,703 25/05/2010
 | 
				
			||||||
 | 
					RC5:   5,724,428 03/03/2015
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					* Why does the OpenSSL test suite fail on MacOS X?
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					If the failure happens when running 'make test' and the RC4 test fails,
 | 
				
			||||||
 | 
					it's very probable that you have OpenSSL 0.9.6b delivered with the
 | 
				
			||||||
 | 
					operating system (you can find out by running '/usr/bin/openssl version')
 | 
				
			||||||
 | 
					and that you were trying to build OpenSSL 0.9.6d.  The problem is that
 | 
				
			||||||
 | 
					the loader ('ld') in MacOS X has a misfeature that's quite difficult to
 | 
				
			||||||
 | 
					go around and has linked the programs "openssl" and the test programs
 | 
				
			||||||
 | 
					with /usr/lib/libcrypto.dylib and /usr/lib/libssl.dylib instead of the
 | 
				
			||||||
 | 
					libraries you just built.
 | 
				
			||||||
 | 
					Look in the file PROBLEMS for a more detailed explanation and for possible
 | 
				
			||||||
 | 
					solutions.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
[PROG] ========================================================================
 | 
					[PROG] ========================================================================
 | 
				
			||||||
 | 
					
 | 
				
			||||||
* Is OpenSSL thread-safe?
 | 
					* Is OpenSSL thread-safe?
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										10
									
								
								INSTALL
									
									
									
									
									
								
							
							
						
						
									
										10
									
								
								INSTALL
									
									
									
									
									
								
							@@ -131,8 +131,11 @@
 | 
				
			|||||||
     the failure that aren't problems in OpenSSL itself (like missing
 | 
					     the failure that aren't problems in OpenSSL itself (like missing
 | 
				
			||||||
     standard headers).  If it is a problem with OpenSSL itself, please
 | 
					     standard headers).  If it is a problem with OpenSSL itself, please
 | 
				
			||||||
     report the problem to <openssl-bugs@openssl.org> (note that your
 | 
					     report the problem to <openssl-bugs@openssl.org> (note that your
 | 
				
			||||||
     message will be forwarded to a public mailing list).  Include the
 | 
					     message will be recorded in the request tracker publicly readable
 | 
				
			||||||
     output of "make report" in your message.
 | 
					     via http://www.openssl.org/rt2.html and will be forwarded to a public
 | 
				
			||||||
 | 
					     mailing list). Include the output of "make report" in your message.
 | 
				
			||||||
 | 
					     Please check out the request tracker. Maybe the bug was already
 | 
				
			||||||
 | 
					     reported or has already been fixed.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
     [If you encounter assembler error messages, try the "no-asm"
 | 
					     [If you encounter assembler error messages, try the "no-asm"
 | 
				
			||||||
     configuration option as an immediate fix.]
 | 
					     configuration option as an immediate fix.]
 | 
				
			||||||
@@ -150,7 +153,8 @@
 | 
				
			|||||||
     try removing any compiler optimization flags from the CFLAGS line
 | 
					     try removing any compiler optimization flags from the CFLAGS line
 | 
				
			||||||
     in Makefile.ssl and run "make clean; make". Please send a bug
 | 
					     in Makefile.ssl and run "make clean; make". Please send a bug
 | 
				
			||||||
     report to <openssl-bugs@openssl.org>, including the output of
 | 
					     report to <openssl-bugs@openssl.org>, including the output of
 | 
				
			||||||
     "make report".
 | 
					     "make report" in order to be added to the request tracker at
 | 
				
			||||||
 | 
					     http://www.openssl.org/rt2.html.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  4. If everything tests ok, install OpenSSL with
 | 
					  4. If everything tests ok, install OpenSSL with
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										12
									
								
								INSTALL.W32
									
									
									
									
									
								
							
							
						
						
									
										12
									
								
								INSTALL.W32
									
									
									
									
									
								
							@@ -94,6 +94,18 @@
 | 
				
			|||||||
 You can also build a static version of the library using the Makefile
 | 
					 You can also build a static version of the library using the Makefile
 | 
				
			||||||
 ms\nt.mak
 | 
					 ms\nt.mak
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 Borland C++ builder 5
 | 
				
			||||||
 | 
					 ---------------------
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 * Configure for building with Borland Builder:
 | 
				
			||||||
 | 
					   > perl Configure BC-32
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 * Create the appropriate makefile
 | 
				
			||||||
 | 
					   > ms\do_nasm
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 * Build
 | 
				
			||||||
 | 
					   > make -f ms\bcb.mak
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 Borland C++ builder 3 and 4
 | 
					 Borland C++ builder 3 and 4
 | 
				
			||||||
 ---------------------------
 | 
					 ---------------------------
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										51
									
								
								Makefile.org
									
									
									
									
									
								
							
							
						
						
									
										51
									
								
								Makefile.org
									
									
									
									
									
								
							@@ -247,7 +247,8 @@ link-shared:
 | 
				
			|||||||
		for i in $(SHLIBDIRS); do \
 | 
							for i in $(SHLIBDIRS); do \
 | 
				
			||||||
			prev=lib$$i$(SHLIB_EXT); \
 | 
								prev=lib$$i$(SHLIB_EXT); \
 | 
				
			||||||
			for j in $${tmp:-x}; do \
 | 
								for j in $${tmp:-x}; do \
 | 
				
			||||||
				( set -x; ln -f -s $$prev lib$$i$$j ); \
 | 
									( set -x; \
 | 
				
			||||||
 | 
									rm -f lib$$i$$j; ln -s $$prev lib$$i$$j ); \
 | 
				
			||||||
				prev=lib$$i$$j; \
 | 
									prev=lib$$i$$j; \
 | 
				
			||||||
			done; \
 | 
								done; \
 | 
				
			||||||
		done; \
 | 
							done; \
 | 
				
			||||||
@@ -420,6 +421,7 @@ do_hpux-shared:
 | 
				
			|||||||
		-b -z -o lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
 | 
							-b -z -o lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
 | 
				
			||||||
		+h lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
 | 
							+h lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
 | 
				
			||||||
		-Fl lib$$i.a $$libs ${EX_LIBS} -lc ) || exit 1; \
 | 
							-Fl lib$$i.a $$libs ${EX_LIBS} -lc ) || exit 1; \
 | 
				
			||||||
 | 
						chmod a=rx lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} ; \
 | 
				
			||||||
	libs="$$libs -L. -l$$i"; \
 | 
						libs="$$libs -L. -l$$i"; \
 | 
				
			||||||
	done
 | 
						done
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -430,6 +432,7 @@ do_hpux64-shared:
 | 
				
			|||||||
		-b -z -o lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
 | 
							-b -z -o lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
 | 
				
			||||||
		+h lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
 | 
							+h lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
 | 
				
			||||||
		+forceload lib$$i.a $$libs ${EX_LIBS} -lc ) || exit 1; \
 | 
							+forceload lib$$i.a $$libs ${EX_LIBS} -lc ) || exit 1; \
 | 
				
			||||||
 | 
						chmod a=rx lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} ; \
 | 
				
			||||||
	libs="$$libs -L. -l$$i"; \
 | 
						libs="$$libs -L. -l$$i"; \
 | 
				
			||||||
	done
 | 
						done
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -545,7 +548,7 @@ test:   tests
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
tests: rehash
 | 
					tests: rehash
 | 
				
			||||||
	@(cd test && echo "testing..." && \
 | 
						@(cd test && echo "testing..." && \
 | 
				
			||||||
	$(MAKE) CC='${CC}' CFLAG='${CFLAG}' INSTALLTOP='${INSTALLTOP}' PEX_LIBS='${PEX_LIBS}' EX_LIBS='${EX_LIBS}' BN_ASM='${BN_ASM}' DES_ENC='${DES_ENC}' BF_ENC='${BF_ENC}' CAST_ENC='${CAST_ENC}' RC4_ENC='${RC4_ENC}' RC5_ENC='${RC5_ENC}' SDIRS='${SDIRS}' SHA1_ASM_OBJ='${SHA1_ASM_OBJ}' MD5_ASM_OBJ='${MD5_ASM_OBJ}' RMD160_ASM_OBJ='${RMD160_ASM_OBJ}' AR='${AR}' PERL='${PERL}' EXE_EXT='${EXE_EXT}' tests );
 | 
						$(MAKE) CC='${CC}' PLATFORM='${PLATFORM}' CFLAG='${CFLAG}' SDIRS='$(SDIRS)' INSTALLTOP='${INSTALLTOP}' PEX_LIBS='${PEX_LIBS}' EX_LIBS='${EX_LIBS}' BN_ASM='${BN_ASM}' DES_ENC='${DES_ENC}' BF_ENC='${BF_ENC}' CAST_ENC='${CAST_ENC}' RC4_ENC='${RC4_ENC}' RC5_ENC='${RC5_ENC}' SHA1_ASM_OBJ='${SHA1_ASM_OBJ}' MD5_ASM_OBJ='${MD5_ASM_OBJ}' RMD160_ASM_OBJ='${RMD160_ASM_OBJ}' AR='${AR}' PROCESSOR='${PROCESSOR}' PERL='${PERL}' RANLIB='${RANLIB}' TESTS='${TESTS}' EXE_EXT='${EXE_EXT}' SHARED_LIBS='${SHARED_LIBS}' SHLIB_EXT='${SHLIB_EXT}' SHLIB_TARGET='${SHLIB_TARGET}' OPENSSL_DEBUG_MEMORY=on tests );
 | 
				
			||||||
	@apps/openssl version -a
 | 
						@apps/openssl version -a
 | 
				
			||||||
 | 
					
 | 
				
			||||||
report:
 | 
					report:
 | 
				
			||||||
@@ -556,7 +559,7 @@ depend:
 | 
				
			|||||||
	do \
 | 
						do \
 | 
				
			||||||
	if [ -d "$$i" ]; then \
 | 
						if [ -d "$$i" ]; then \
 | 
				
			||||||
		(cd $$i && echo "making dependencies $$i..." && \
 | 
							(cd $$i && echo "making dependencies $$i..." && \
 | 
				
			||||||
		$(MAKE) SDIRS='${SDIRS}' DEPFLAG='${DEPFLAG}' depend ) || exit 1; \
 | 
							$(MAKE) SDIRS='${SDIRS}' DEPFLAG='${DEPFLAG}' PERL='${PERL}' depend ) || exit 1; \
 | 
				
			||||||
	fi; \
 | 
						fi; \
 | 
				
			||||||
	done;
 | 
						done;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -601,20 +604,26 @@ TABLE: Configure
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
update: depend errors stacks util/libeay.num util/ssleay.num crypto/objects/obj_dat.h TABLE
 | 
					update: depend errors stacks util/libeay.num util/ssleay.num crypto/objects/obj_dat.h TABLE
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					# Build distribution tar-file. As the list of files returned by "find" is
 | 
				
			||||||
 | 
					# pretty long, on several platforms a "too many arguments" error or similar
 | 
				
			||||||
 | 
					# would occur. Therefore the list of files is temporarily stored into a file
 | 
				
			||||||
 | 
					# and read directly, requiring GNU-Tar. Call "make TAR=gtar dist" if the normal
 | 
				
			||||||
 | 
					# tar does not support the --files-from option.
 | 
				
			||||||
tar:
 | 
					tar:
 | 
				
			||||||
	@$(TAR) $(TARFLAGS) -cvf - \
 | 
						find * \! -path CVS/\* \! -path \*/CVS/\* \! -name CVS \! -name .cvsignore \! -name STATUS \! -name TABLE | sort > ../$(TARFILE).list; \
 | 
				
			||||||
		`find * \! -path CVS/\* \! -path \*/CVS/\* \! -name CVS \! -name .cvsignore \! -name STATUS \! -name TABLE | sort` |\
 | 
						$(TAR) $(TARFLAGS) --files-from ../$(TARFILE).list -cvf - | \
 | 
				
			||||||
	tardy --user_number=0  --user_name=openssl \
 | 
						tardy --user_number=0  --user_name=openssl \
 | 
				
			||||||
	      --group_number=0 --group_name=openssl \
 | 
						      --group_number=0 --group_name=openssl \
 | 
				
			||||||
	      --prefix=openssl-$(VERSION) - |\
 | 
						      --prefix=openssl-$(VERSION) - |\
 | 
				
			||||||
	gzip --best >../$(TARFILE).gz; \
 | 
						gzip --best >../$(TARFILE).gz; \
 | 
				
			||||||
 | 
						rm -f ../$(TARFILE).list; \
 | 
				
			||||||
	ls -l ../$(TARFILE).gz
 | 
						ls -l ../$(TARFILE).gz
 | 
				
			||||||
 | 
					
 | 
				
			||||||
dist:   
 | 
					dist:   
 | 
				
			||||||
	$(PERL) Configure dist
 | 
						$(PERL) Configure dist
 | 
				
			||||||
	@$(MAKE) dist_pem_h
 | 
						@$(MAKE) dist_pem_h
 | 
				
			||||||
	@$(MAKE) SDIRS='${SDIRS}' clean
 | 
						@$(MAKE) SDIRS='${SDIRS}' clean
 | 
				
			||||||
	@$(MAKE) tar
 | 
						@$(MAKE) TAR='${TAR}' TARFLAGS='${TARFLAGS}' tar
 | 
				
			||||||
 | 
					
 | 
				
			||||||
dist_pem_h:
 | 
					dist_pem_h:
 | 
				
			||||||
	(cd crypto/pem; $(MAKE) CC='${CC}' SDIRS='${SDIRS}' CFLAG='${CFLAG}' pem.h; $(MAKE) clean)
 | 
						(cd crypto/pem; $(MAKE) CC='${CC}' SDIRS='${SDIRS}' CFLAG='${CFLAG}' pem.h; $(MAKE) clean)
 | 
				
			||||||
@@ -646,7 +655,7 @@ install: all install_docs
 | 
				
			|||||||
			cp $$i $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
 | 
								cp $$i $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
 | 
				
			||||||
			$(RANLIB) $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i; \
 | 
								$(RANLIB) $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i; \
 | 
				
			||||||
			chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i ); \
 | 
								chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i ); \
 | 
				
			||||||
		fi \
 | 
							fi; \
 | 
				
			||||||
	done
 | 
						done
 | 
				
			||||||
	@if [ -n "$(SHARED_LIBS)" ]; then \
 | 
						@if [ -n "$(SHARED_LIBS)" ]; then \
 | 
				
			||||||
		tmp="$(SHARED_LIBS)"; \
 | 
							tmp="$(SHARED_LIBS)"; \
 | 
				
			||||||
@@ -656,7 +665,7 @@ install: all install_docs
 | 
				
			|||||||
			(       echo installing $$i; \
 | 
								(       echo installing $$i; \
 | 
				
			||||||
				if [ "$(PLATFORM)" != "Cygwin" ]; then \
 | 
									if [ "$(PLATFORM)" != "Cygwin" ]; then \
 | 
				
			||||||
					cp $$i $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
 | 
										cp $$i $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
 | 
				
			||||||
					chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i; \
 | 
										chmod 555 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i; \
 | 
				
			||||||
				else \
 | 
									else \
 | 
				
			||||||
					c=`echo $$i | sed 's/^lib/cyg/'`; \
 | 
										c=`echo $$i | sed 's/^lib/cyg/'`; \
 | 
				
			||||||
					cp $$c $(INSTALL_PREFIX)$(INSTALLTOP)/bin/$$c; \
 | 
										cp $$c $(INSTALL_PREFIX)$(INSTALLTOP)/bin/$$c; \
 | 
				
			||||||
@@ -664,11 +673,12 @@ install: all install_docs
 | 
				
			|||||||
					cp $$i.a $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a; \
 | 
										cp $$i.a $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a; \
 | 
				
			||||||
					chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a; \
 | 
										chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a; \
 | 
				
			||||||
				fi ); \
 | 
									fi ); \
 | 
				
			||||||
			fi \
 | 
								fi; \
 | 
				
			||||||
		done; \
 | 
							done; \
 | 
				
			||||||
		(	here="`pwd`"; \
 | 
							(	here="`pwd`"; \
 | 
				
			||||||
			cd $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
 | 
								cd $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
 | 
				
			||||||
			make -f $$here/Makefile link-shared ); \
 | 
								set $(MAKE); \
 | 
				
			||||||
 | 
								$$1 -f $$here/Makefile link-shared ); \
 | 
				
			||||||
	fi
 | 
						fi
 | 
				
			||||||
 | 
					
 | 
				
			||||||
install_docs:
 | 
					install_docs:
 | 
				
			||||||
@@ -677,22 +687,25 @@ install_docs:
 | 
				
			|||||||
		$(INSTALL_PREFIX)$(MANDIR)/man3 \
 | 
							$(INSTALL_PREFIX)$(MANDIR)/man3 \
 | 
				
			||||||
		$(INSTALL_PREFIX)$(MANDIR)/man5 \
 | 
							$(INSTALL_PREFIX)$(MANDIR)/man5 \
 | 
				
			||||||
		$(INSTALL_PREFIX)$(MANDIR)/man7
 | 
							$(INSTALL_PREFIX)$(MANDIR)/man7
 | 
				
			||||||
	@for i in doc/apps/*.pod; do \
 | 
						@pod2man=`cd util; ./pod2mantest ignore`; \
 | 
				
			||||||
 | 
						for i in doc/apps/*.pod; do \
 | 
				
			||||||
		fn=`basename $$i .pod`; \
 | 
							fn=`basename $$i .pod`; \
 | 
				
			||||||
		if [ "$$fn" = "config" ]; then sec=5; else sec=1; fi; \
 | 
							if [ "$$fn" = "config" ]; then sec=5; else sec=1; fi; \
 | 
				
			||||||
		echo "installing man$$sec/`basename $$i .pod`.$$sec"; \
 | 
							echo "installing man$$sec/`basename $$i .pod`.$$sec"; \
 | 
				
			||||||
		(cd `dirname $$i`; \
 | 
							(cd `$(PERL) util/dirname.pl $$i`; \
 | 
				
			||||||
		$(PERL) ../../util/pod2man.pl --section=$$sec --center=OpenSSL \
 | 
							sh -c "$(PERL) $$pod2man \
 | 
				
			||||||
			 --release=$(VERSION) `basename $$i`) \
 | 
								--section=$$sec --center=OpenSSL \
 | 
				
			||||||
 | 
								--release=$(VERSION) `basename $$i`") \
 | 
				
			||||||
			>  $(INSTALL_PREFIX)$(MANDIR)/man$$sec/`basename $$i .pod`.$$sec; \
 | 
								>  $(INSTALL_PREFIX)$(MANDIR)/man$$sec/`basename $$i .pod`.$$sec; \
 | 
				
			||||||
	done
 | 
						done; \
 | 
				
			||||||
	@for i in doc/crypto/*.pod doc/ssl/*.pod; do \
 | 
						for i in doc/crypto/*.pod doc/ssl/*.pod; do \
 | 
				
			||||||
		fn=`basename $$i .pod`; \
 | 
							fn=`basename $$i .pod`; \
 | 
				
			||||||
		if [ "$$fn" = "des_modes" ]; then sec=7; else sec=3; fi; \
 | 
							if [ "$$fn" = "des_modes" ]; then sec=7; else sec=3; fi; \
 | 
				
			||||||
		echo "installing man$$sec/`basename $$i .pod`.$$sec"; \
 | 
							echo "installing man$$sec/`basename $$i .pod`.$$sec"; \
 | 
				
			||||||
		(cd `dirname $$i`; \
 | 
							(cd `$(PERL) util/dirname.pl $$i`; \
 | 
				
			||||||
		$(PERL) ../../util/pod2man.pl --section=$$sec --center=OpenSSL \
 | 
							sh -c "$(PERL) $$pod2man \
 | 
				
			||||||
			--release=$(VERSION) `basename $$i`) \
 | 
								--section=$$sec --center=OpenSSL \
 | 
				
			||||||
 | 
								--release=$(VERSION) `basename $$i`") \
 | 
				
			||||||
			>  $(INSTALL_PREFIX)$(MANDIR)/man$$sec/`basename $$i .pod`.$$sec; \
 | 
								>  $(INSTALL_PREFIX)$(MANDIR)/man$$sec/`basename $$i .pod`.$$sec; \
 | 
				
			||||||
	done
 | 
						done
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										21
									
								
								NEWS
									
									
									
									
									
								
							
							
						
						
									
										21
									
								
								NEWS
									
									
									
									
									
								
							@@ -5,12 +5,25 @@
 | 
				
			|||||||
  This file gives a brief overview of the major changes between each OpenSSL
 | 
					  This file gives a brief overview of the major changes between each OpenSSL
 | 
				
			||||||
  release. For more details please read the CHANGES file.
 | 
					  release. For more details please read the CHANGES file.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  Changes between OpenSSL 0.9.6c and OpenSSL 0.9.6d:
 | 
					  Major changes between OpenSSL 0.9.6f and OpenSSL 0.9.6g:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					      o Important building fixes on Unix.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  Major changes between OpenSSL 0.9.6e and OpenSSL 0.9.6f:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					      o Various important bugfixes.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  Major changes between OpenSSL 0.9.6d and OpenSSL 0.9.6e:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					      o Important security related bugfixes.
 | 
				
			||||||
 | 
					      o Various SSL/TLS library bugfixes.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  Major changes between OpenSSL 0.9.6c and OpenSSL 0.9.6d:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
      o Various SSL/TLS library bugfixes.
 | 
					      o Various SSL/TLS library bugfixes.
 | 
				
			||||||
      o Fix DH parameter generation for 'non-standard' generators.
 | 
					      o Fix DH parameter generation for 'non-standard' generators.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  Changes between OpenSSL 0.9.6b and OpenSSL 0.9.6c:
 | 
					  Major changes between OpenSSL 0.9.6b and OpenSSL 0.9.6c:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
      o Various SSL/TLS library bugfixes.
 | 
					      o Various SSL/TLS library bugfixes.
 | 
				
			||||||
      o BIGNUM library fixes.
 | 
					      o BIGNUM library fixes.
 | 
				
			||||||
@@ -23,7 +36,7 @@
 | 
				
			|||||||
        Broadcom and Cryptographic Appliance's keyserver
 | 
					        Broadcom and Cryptographic Appliance's keyserver
 | 
				
			||||||
        [in 0.9.6c-engine release].
 | 
					        [in 0.9.6c-engine release].
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  Changes between OpenSSL 0.9.6a and OpenSSL 0.9.6b:
 | 
					  Major changes between OpenSSL 0.9.6a and OpenSSL 0.9.6b:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
      o Security fix: PRNG improvements.
 | 
					      o Security fix: PRNG improvements.
 | 
				
			||||||
      o Security fix: RSA OAEP check.
 | 
					      o Security fix: RSA OAEP check.
 | 
				
			||||||
@@ -56,7 +69,7 @@
 | 
				
			|||||||
      o Bug fixes for Win32, HP/UX and Irix.
 | 
					      o Bug fixes for Win32, HP/UX and Irix.
 | 
				
			||||||
      o Bug fixes in BIGNUM, SSL, PKCS#7, PKCS#12, X.509, CONF and
 | 
					      o Bug fixes in BIGNUM, SSL, PKCS#7, PKCS#12, X.509, CONF and
 | 
				
			||||||
        memory checking routines.
 | 
					        memory checking routines.
 | 
				
			||||||
      o Bug fixes for RSA operations in threaded enviroments.
 | 
					      o Bug fixes for RSA operations in threaded environments.
 | 
				
			||||||
      o Bug fixes in misc. openssl applications.
 | 
					      o Bug fixes in misc. openssl applications.
 | 
				
			||||||
      o Remove a few potential memory leaks.
 | 
					      o Remove a few potential memory leaks.
 | 
				
			||||||
      o Add tighter checks of BIGNUM routines.
 | 
					      o Add tighter checks of BIGNUM routines.
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										42
									
								
								PROBLEMS
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										42
									
								
								PROBLEMS
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,42 @@
 | 
				
			|||||||
 | 
					* System libcrypto.dylib and libssl.dylib are used by system ld on MacOS X.
 | 
				
			||||||
 | 
					[NOTE: This is currently undergoing tests, and may be removed soon]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					This is really a misfeature in ld, which seems to look for .dylib libraries
 | 
				
			||||||
 | 
					along the whole library path before it bothers looking for .a libraries.  This
 | 
				
			||||||
 | 
					means that -L switches won't matter unless OpenSSL is built with shared
 | 
				
			||||||
 | 
					library support.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					The workaround may be to change the following lines in apps/Makefile.ssl and
 | 
				
			||||||
 | 
					test/Makefile.ssl:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  LIBCRYPTO=-L.. -lcrypto
 | 
				
			||||||
 | 
					  LIBSSL=-L.. -lssl
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					to:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					  LIBCRYPTO=../libcrypto.a
 | 
				
			||||||
 | 
					  LIBSSL=../libssl.a
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					It's possible that something similar is needed for shared library support
 | 
				
			||||||
 | 
					as well.  That hasn't been well tested yet.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					Another solution that many seem to recommend is to move the libraries
 | 
				
			||||||
 | 
					/usr/lib/libcrypto.0.9.dylib, /usr/lib/libssl.0.9.dylib to a different
 | 
				
			||||||
 | 
					directory, build and install OpenSSL and anything that depends on your
 | 
				
			||||||
 | 
					build, then move libcrypto.0.9.dylib and libssl.0.9.dylib back to their
 | 
				
			||||||
 | 
					original places.  Note that the version numbers on those two libraries
 | 
				
			||||||
 | 
					may differ on your machine.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					As long as Apple doesn't fix the problem with ld, this problem building
 | 
				
			||||||
 | 
					OpenSSL will remain as is.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					* Parallell make leads to errors
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					While running tests, running a parallell make is a bad idea.  Many test
 | 
				
			||||||
 | 
					scripts use the same name for output and input files, which means different
 | 
				
			||||||
 | 
					will interfere with each other and lead to test failure.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					The solution is simple for now: don't run parallell make when testing.
 | 
				
			||||||
							
								
								
									
										19
									
								
								README
									
									
									
									
									
								
							
							
						
						
									
										19
									
								
								README
									
									
									
									
									
								
							@@ -1,5 +1,5 @@
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
 OpenSSL 0.9.6d-beta1 [engine] 17 Apr 2002
 | 
					 OpenSSL 0.9.6g [engine] 9 August 2002
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 Copyright (c) 1998-2002 The OpenSSL Project
 | 
					 Copyright (c) 1998-2002 The OpenSSL Project
 | 
				
			||||||
 Copyright (c) 1995-1998 Eric A. Young, Tim J. Hudson
 | 
					 Copyright (c) 1995-1998 Eric A. Young, Tim J. Hudson
 | 
				
			||||||
@@ -122,6 +122,13 @@
 | 
				
			|||||||
 lists the functions; you will probably have to look at the code to work out
 | 
					 lists the functions; you will probably have to look at the code to work out
 | 
				
			||||||
 how to use them. Look at the example programs.
 | 
					 how to use them. Look at the example programs.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 PROBLEMS
 | 
				
			||||||
 | 
					 --------
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 For some platforms, there are some known problems that may affect the user
 | 
				
			||||||
 | 
					 or application author.  We try to collect those in doc/PROBLEMS, with current
 | 
				
			||||||
 | 
					 thoughts on how they should be solved in a future of OpenSSL.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 SUPPORT 
 | 
					 SUPPORT 
 | 
				
			||||||
 -------
 | 
					 -------
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -146,11 +153,13 @@
 | 
				
			|||||||
    - Problem Description (steps that will reproduce the problem, if known)
 | 
					    - Problem Description (steps that will reproduce the problem, if known)
 | 
				
			||||||
    - Stack Traceback (if the application dumps core)
 | 
					    - Stack Traceback (if the application dumps core)
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 Report the bug to the OpenSSL project at:
 | 
					 Report the bug to the OpenSSL project via the Request Tracker
 | 
				
			||||||
 | 
					 (http://www.openssl.org/rt2.html) by mail to:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
    openssl-bugs@openssl.org
 | 
					    openssl-bugs@openssl.org
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 Note that mail to openssl-bugs@openssl.org is forwarded to a public
 | 
					 Note that mail to openssl-bugs@openssl.org is recorded in the publicly
 | 
				
			||||||
 | 
					 readable request tracker database and is forwarded to a public
 | 
				
			||||||
 mailing list. Confidential mail may be sent to openssl-security@openssl.org
 | 
					 mailing list. Confidential mail may be sent to openssl-security@openssl.org
 | 
				
			||||||
 (PGP key available from the key servers).
 | 
					 (PGP key available from the key servers).
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -164,7 +173,9 @@
 | 
				
			|||||||
 textual explanation of what your patch does.
 | 
					 textual explanation of what your patch does.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 Note: For legal reasons, contributions from the US can be accepted only
 | 
					 Note: For legal reasons, contributions from the US can be accepted only
 | 
				
			||||||
 if a copy of the patch is sent to crypt@bxa.doc.gov
 | 
					 if a TSA notification and a copy of the patch is sent to crypt@bis.doc.gov;
 | 
				
			||||||
 | 
					 see http://www.bis.doc.gov/Encryption/PubAvailEncSourceCodeNofify.html [sic]
 | 
				
			||||||
 | 
					 and http://w3.access.gpo.gov/bis/ear/pdf/740.pdf (EAR Section 740.13(e)).
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 The preferred format for changes is "diff -u" output. You might
 | 
					 The preferred format for changes is "diff -u" output. You might
 | 
				
			||||||
 generate it like this:
 | 
					 generate it like this:
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										7
									
								
								STATUS
									
									
									
									
									
								
							
							
						
						
									
										7
									
								
								STATUS
									
									
									
									
									
								
							@@ -1,11 +1,14 @@
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
  OpenSSL STATUS                           Last modified at
 | 
					  OpenSSL STATUS                           Last modified at
 | 
				
			||||||
  ______________                           $Date: 2002/04/17 12:52:31 $
 | 
					  ______________                           $Date: 2002/08/09 11:49:13 $
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  DEVELOPMENT STATE
 | 
					  DEVELOPMENT STATE
 | 
				
			||||||
 | 
					
 | 
				
			||||||
    o  OpenSSL 0.9.7:  Under development...
 | 
					    o  OpenSSL 0.9.7:  Under development...
 | 
				
			||||||
    o  OpenSSL 0.9.6d: Feature freeze, beta1 April 17th, 2002
 | 
					    o  OpenSSL 0.9.6g: Released on August     9th, 2002
 | 
				
			||||||
 | 
					    o  OpenSSL 0.9.6f: Released on August     8th, 2002
 | 
				
			||||||
 | 
					    o  OpenSSL 0.9.6e: Released on July      30th, 2002
 | 
				
			||||||
 | 
					    o  OpenSSL 0.9.6d: Released on May        9th, 2002
 | 
				
			||||||
    o  OpenSSL 0.9.6c: Released on December  21st, 2001
 | 
					    o  OpenSSL 0.9.6c: Released on December  21st, 2001
 | 
				
			||||||
    o  OpenSSL 0.9.6b: Released on July       9th, 2001
 | 
					    o  OpenSSL 0.9.6b: Released on July       9th, 2001
 | 
				
			||||||
    o  OpenSSL 0.9.6a: Released on April      5th, 2001
 | 
					    o  OpenSSL 0.9.6a: Released on April      5th, 2001
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										131
									
								
								TABLE
									
									
									
									
									
								
							
							
						
						
									
										131
									
								
								TABLE
									
									
									
									
									
								
							@@ -621,6 +621,29 @@ $shared_ldflag =
 | 
				
			|||||||
$shared_extension = 
 | 
					$shared_extension = 
 | 
				
			||||||
$ranlib       = 
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					*** UWIN
 | 
				
			||||||
 | 
					$cc           = cc
 | 
				
			||||||
 | 
					$cflags       = -DTERMIOS -DL_ENDIAN -O -Wall
 | 
				
			||||||
 | 
					$unistd       = 
 | 
				
			||||||
 | 
					$thread_cflag = 
 | 
				
			||||||
 | 
					$lflags       = 
 | 
				
			||||||
 | 
					$bn_ops       = BN_LLONG DES_PTR DES_RISC1 DES_UNROLL RC4_INDEX MD2_INT
 | 
				
			||||||
 | 
					$bn_obj       = 
 | 
				
			||||||
 | 
					$des_obj      = 
 | 
				
			||||||
 | 
					$bf_obj       = 
 | 
				
			||||||
 | 
					$md5_obj      = 
 | 
				
			||||||
 | 
					$sha1_obj     = 
 | 
				
			||||||
 | 
					$cast_obj     = 
 | 
				
			||||||
 | 
					$rc4_obj      = 
 | 
				
			||||||
 | 
					$rmd160_obj   = 
 | 
				
			||||||
 | 
					$rc5_obj      = 
 | 
				
			||||||
 | 
					$dso_scheme   = win32
 | 
				
			||||||
 | 
					$shared_target= 
 | 
				
			||||||
 | 
					$shared_cflag = 
 | 
				
			||||||
 | 
					$shared_ldflag = 
 | 
				
			||||||
 | 
					$shared_extension = 
 | 
				
			||||||
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
*** VC-MSDOS
 | 
					*** VC-MSDOS
 | 
				
			||||||
$cc           = cl
 | 
					$cc           = cl
 | 
				
			||||||
$cflags       = 
 | 
					$cflags       = 
 | 
				
			||||||
@@ -1083,7 +1106,7 @@ $ranlib       =
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
*** darwin-ppc-cc
 | 
					*** darwin-ppc-cc
 | 
				
			||||||
$cc           = cc
 | 
					$cc           = cc
 | 
				
			||||||
$cflags       = -O3 -D_DARWIN -DB_ENDIAN
 | 
					$cflags       = -O3 -D_DARWIN -DB_ENDIAN -fno-common
 | 
				
			||||||
$unistd       = 
 | 
					$unistd       = 
 | 
				
			||||||
$thread_cflag = -D_REENTRANT
 | 
					$thread_cflag = -D_REENTRANT
 | 
				
			||||||
$lflags       = 
 | 
					$lflags       = 
 | 
				
			||||||
@@ -1100,8 +1123,8 @@ $rc5_obj      =
 | 
				
			|||||||
$dso_scheme   = 
 | 
					$dso_scheme   = 
 | 
				
			||||||
$shared_target= darwin-shared
 | 
					$shared_target= darwin-shared
 | 
				
			||||||
$shared_cflag = -fPIC
 | 
					$shared_cflag = -fPIC
 | 
				
			||||||
$shared_ldflag = .$(SHLIB_MAJOR).$(SHLIB_MINOR).dylib
 | 
					$shared_ldflag = 
 | 
				
			||||||
$shared_extension = 
 | 
					$shared_extension = .$(SHLIB_MAJOR).$(SHLIB_MINOR).dylib
 | 
				
			||||||
$ranlib       = 
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
*** debug
 | 
					*** debug
 | 
				
			||||||
@@ -1261,8 +1284,8 @@ $rc5_obj      = asm/r586-elf.o
 | 
				
			|||||||
$dso_scheme   = dlfcn
 | 
					$dso_scheme   = dlfcn
 | 
				
			||||||
$shared_target= linux-shared
 | 
					$shared_target= linux-shared
 | 
				
			||||||
$shared_cflag = -fPIC
 | 
					$shared_cflag = -fPIC
 | 
				
			||||||
$shared_ldflag = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
					$shared_ldflag = 
 | 
				
			||||||
$shared_extension = 
 | 
					$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
				
			||||||
$ranlib       = 
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
*** debug-linux-elf-noefence
 | 
					*** debug-linux-elf-noefence
 | 
				
			||||||
@@ -1909,6 +1932,29 @@ $shared_ldflag =
 | 
				
			|||||||
$shared_extension = .sl.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
					$shared_extension = .sl.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
				
			||||||
$ranlib       = 
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					*** hpux64-parisc-gcc
 | 
				
			||||||
 | 
					$cc           = gcc
 | 
				
			||||||
 | 
					$cflags       = -DB_ENDIAN -DMD32_XARRAY
 | 
				
			||||||
 | 
					$unistd       = 
 | 
				
			||||||
 | 
					$thread_cflag = -D_REENTRANT
 | 
				
			||||||
 | 
					$lflags       = -ldl
 | 
				
			||||||
 | 
					$bn_ops       = SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT
 | 
				
			||||||
 | 
					$bn_obj       = 
 | 
				
			||||||
 | 
					$des_obj      = 
 | 
				
			||||||
 | 
					$bf_obj       = 
 | 
				
			||||||
 | 
					$md5_obj      = 
 | 
				
			||||||
 | 
					$sha1_obj     = 
 | 
				
			||||||
 | 
					$cast_obj     = 
 | 
				
			||||||
 | 
					$rc4_obj      = 
 | 
				
			||||||
 | 
					$rmd160_obj   = 
 | 
				
			||||||
 | 
					$rc5_obj      = 
 | 
				
			||||||
 | 
					$dso_scheme   = dlfcn
 | 
				
			||||||
 | 
					$shared_target= hpux64-shared
 | 
				
			||||||
 | 
					$shared_cflag = -fpic
 | 
				
			||||||
 | 
					$shared_ldflag = 
 | 
				
			||||||
 | 
					$shared_extension = .sl.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
				
			||||||
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
*** hpux64-parisc2-cc
 | 
					*** hpux64-parisc2-cc
 | 
				
			||||||
$cc           = cc
 | 
					$cc           = cc
 | 
				
			||||||
$cflags       = +DD64 +O3 +Optrs_strongly_typed +Olibcalls -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY
 | 
					$cflags       = +DD64 +O3 +Optrs_strongly_typed +Olibcalls -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY
 | 
				
			||||||
@@ -2371,10 +2417,10 @@ $ranlib       =
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
*** linux-s390
 | 
					*** linux-s390
 | 
				
			||||||
$cc           = gcc
 | 
					$cc           = gcc
 | 
				
			||||||
$cflags       = -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall
 | 
					$cflags       = -DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall
 | 
				
			||||||
$unistd       = 
 | 
					$unistd       = 
 | 
				
			||||||
$thread_cflag = -D_REENTRANT
 | 
					$thread_cflag = -D_REENTRANT
 | 
				
			||||||
$lflags       = 
 | 
					$lflags       = -ldl
 | 
				
			||||||
$bn_ops       = BN_LLONG
 | 
					$bn_ops       = BN_LLONG
 | 
				
			||||||
$bn_obj       = 
 | 
					$bn_obj       = 
 | 
				
			||||||
$des_obj      = 
 | 
					$des_obj      = 
 | 
				
			||||||
@@ -2385,11 +2431,11 @@ $cast_obj     =
 | 
				
			|||||||
$rc4_obj      = 
 | 
					$rc4_obj      = 
 | 
				
			||||||
$rmd160_obj   = 
 | 
					$rmd160_obj   = 
 | 
				
			||||||
$rc5_obj      = 
 | 
					$rc5_obj      = 
 | 
				
			||||||
$dso_scheme   = 
 | 
					$dso_scheme   = dlfcn
 | 
				
			||||||
$shared_target= 
 | 
					$shared_target= linux-shared
 | 
				
			||||||
$shared_cflag = 
 | 
					$shared_cflag = -fPIC
 | 
				
			||||||
$shared_ldflag = 
 | 
					$shared_ldflag = 
 | 
				
			||||||
$shared_extension = 
 | 
					$shared_extension = .so.$(SHLIB_MAJOR),$(SHLIB_MINOR)
 | 
				
			||||||
$ranlib       = 
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
*** linux-s390x
 | 
					*** linux-s390x
 | 
				
			||||||
@@ -2397,7 +2443,7 @@ $cc           = gcc
 | 
				
			|||||||
$cflags       = -DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall
 | 
					$cflags       = -DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall
 | 
				
			||||||
$unistd       = 
 | 
					$unistd       = 
 | 
				
			||||||
$thread_cflag = -D_REENTRANT
 | 
					$thread_cflag = -D_REENTRANT
 | 
				
			||||||
$lflags       = 
 | 
					$lflags       = -ldl
 | 
				
			||||||
$bn_ops       = SIXTY_FOUR_BIT_LONG
 | 
					$bn_ops       = SIXTY_FOUR_BIT_LONG
 | 
				
			||||||
$bn_obj       = 
 | 
					$bn_obj       = 
 | 
				
			||||||
$des_obj      = 
 | 
					$des_obj      = 
 | 
				
			||||||
@@ -2408,7 +2454,7 @@ $cast_obj     =
 | 
				
			|||||||
$rc4_obj      = 
 | 
					$rc4_obj      = 
 | 
				
			||||||
$rmd160_obj   = 
 | 
					$rmd160_obj   = 
 | 
				
			||||||
$rc5_obj      = 
 | 
					$rc5_obj      = 
 | 
				
			||||||
$dso_scheme   = 
 | 
					$dso_scheme   = dlfcn
 | 
				
			||||||
$shared_target= linux-shared
 | 
					$shared_target= linux-shared
 | 
				
			||||||
$shared_cflag = -fPIC
 | 
					$shared_cflag = -fPIC
 | 
				
			||||||
$shared_ldflag = 
 | 
					$shared_ldflag = 
 | 
				
			||||||
@@ -2443,7 +2489,7 @@ $cc           = gcc
 | 
				
			|||||||
$cflags       = -mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W
 | 
					$cflags       = -mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W
 | 
				
			||||||
$unistd       = 
 | 
					$unistd       = 
 | 
				
			||||||
$thread_cflag = -D_REENTRANT
 | 
					$thread_cflag = -D_REENTRANT
 | 
				
			||||||
$lflags       = 
 | 
					$lflags       = -ldl
 | 
				
			||||||
$bn_ops       = BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
 | 
					$bn_ops       = BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
 | 
				
			||||||
$bn_obj       = asm/sparcv8.o
 | 
					$bn_obj       = asm/sparcv8.o
 | 
				
			||||||
$des_obj      = 
 | 
					$des_obj      = 
 | 
				
			||||||
@@ -2454,11 +2500,11 @@ $cast_obj     =
 | 
				
			|||||||
$rc4_obj      = 
 | 
					$rc4_obj      = 
 | 
				
			||||||
$rmd160_obj   = 
 | 
					$rmd160_obj   = 
 | 
				
			||||||
$rc5_obj      = 
 | 
					$rc5_obj      = 
 | 
				
			||||||
$dso_scheme   = 
 | 
					$dso_scheme   = dlfcn
 | 
				
			||||||
$shared_target= 
 | 
					$shared_target= linux-shared
 | 
				
			||||||
$shared_cflag = 
 | 
					$shared_cflag = -fPIC
 | 
				
			||||||
$shared_ldflag = 
 | 
					$shared_ldflag = 
 | 
				
			||||||
$shared_extension = 
 | 
					$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
				
			||||||
$ranlib       = 
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
*** linux-sparcv9
 | 
					*** linux-sparcv9
 | 
				
			||||||
@@ -2466,7 +2512,7 @@ $cc           = gcc
 | 
				
			|||||||
$cflags       = -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DULTRASPARC -DBN_DIV2W
 | 
					$cflags       = -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DULTRASPARC -DBN_DIV2W
 | 
				
			||||||
$unistd       = 
 | 
					$unistd       = 
 | 
				
			||||||
$thread_cflag = -D_REENTRANT
 | 
					$thread_cflag = -D_REENTRANT
 | 
				
			||||||
$lflags       = 
 | 
					$lflags       = -ldl
 | 
				
			||||||
$bn_ops       = BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
 | 
					$bn_ops       = BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
 | 
				
			||||||
$bn_obj       = asm/sparcv8plus.o
 | 
					$bn_obj       = asm/sparcv8plus.o
 | 
				
			||||||
$des_obj      = 
 | 
					$des_obj      = 
 | 
				
			||||||
@@ -2480,8 +2526,8 @@ $rc5_obj      =
 | 
				
			|||||||
$dso_scheme   = dlfcn
 | 
					$dso_scheme   = dlfcn
 | 
				
			||||||
$shared_target= linux-shared
 | 
					$shared_target= linux-shared
 | 
				
			||||||
$shared_cflag = -fPIC
 | 
					$shared_cflag = -fPIC
 | 
				
			||||||
$shared_ldflag = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
					$shared_ldflag = 
 | 
				
			||||||
$shared_extension = 
 | 
					$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
				
			||||||
$ranlib       = 
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
*** ncr-scde
 | 
					*** ncr-scde
 | 
				
			||||||
@@ -2785,20 +2831,20 @@ $ranlib       =
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
*** sco5-gcc-shared
 | 
					*** sco5-gcc-shared
 | 
				
			||||||
$cc           = gcc
 | 
					$cc           = gcc
 | 
				
			||||||
$cflags       = -O3 -DFILIO_H -fomit-frame-pointer
 | 
					$cflags       = -O3 -fomit-frame-pointer
 | 
				
			||||||
$unistd       = 
 | 
					$unistd       = 
 | 
				
			||||||
$thread_cflag = 
 | 
					$thread_cflag = 
 | 
				
			||||||
$lflags       = -lsocket -lresolv -lnsl
 | 
					$lflags       = -lsocket -lresolv -lnsl
 | 
				
			||||||
$bn_ops       = BN_LLONG DES_PTR DES_RISC1 DES_UNROLL RC4_INDEX MD2_INT
 | 
					$bn_ops       = BN_LLONG DES_PTR DES_RISC1 DES_UNROLL RC4_INDEX MD2_INT
 | 
				
			||||||
$bn_obj       = asm/bn86-elf.o asm/co86-elf.o
 | 
					$bn_obj       = 
 | 
				
			||||||
$des_obj      = asm/dx86-elf.o asm/yx86-elf.o
 | 
					$des_obj      = 
 | 
				
			||||||
$bf_obj       = asm/bx86-elf.o
 | 
					$bf_obj       = 
 | 
				
			||||||
$md5_obj      = asm/mx86-elf.o
 | 
					$md5_obj      = 
 | 
				
			||||||
$sha1_obj     = asm/sx86-elf.o
 | 
					$sha1_obj     = 
 | 
				
			||||||
$cast_obj     = asm/cx86-elf.o
 | 
					$cast_obj     = 
 | 
				
			||||||
$rc4_obj      = asm/rx86-elf.o
 | 
					$rc4_obj      = 
 | 
				
			||||||
$rmd160_obj   = asm/rm86-elf.o
 | 
					$rmd160_obj   = 
 | 
				
			||||||
$rc5_obj      = asm/r586-elf.o
 | 
					$rc5_obj      = 
 | 
				
			||||||
$dso_scheme   = dlfcn
 | 
					$dso_scheme   = dlfcn
 | 
				
			||||||
$shared_target= svr3-shared
 | 
					$shared_target= svr3-shared
 | 
				
			||||||
$shared_cflag = -fPIC
 | 
					$shared_cflag = -fPIC
 | 
				
			||||||
@@ -3059,6 +3105,29 @@ $shared_ldflag = -xarch=v9
 | 
				
			|||||||
$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
					$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
				
			||||||
$ranlib       = /usr/ccs/bin/ar rs
 | 
					$ranlib       = /usr/ccs/bin/ar rs
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					*** solaris64-sparcv9-gcc31
 | 
				
			||||||
 | 
					$cc           = gcc
 | 
				
			||||||
 | 
					$cflags       = -mcpu=ultrasparc -m64 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DULTRASPARC
 | 
				
			||||||
 | 
					$unistd       = 
 | 
				
			||||||
 | 
					$thread_cflag = -D_REENTRANT
 | 
				
			||||||
 | 
					$lflags       = -lsocket -lnsl -ldl
 | 
				
			||||||
 | 
					$bn_ops       = SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR
 | 
				
			||||||
 | 
					$bn_obj       = 
 | 
				
			||||||
 | 
					$des_obj      = 
 | 
				
			||||||
 | 
					$bf_obj       = 
 | 
				
			||||||
 | 
					$md5_obj      = asm/md5-sparcv9.o
 | 
				
			||||||
 | 
					$sha1_obj     = 
 | 
				
			||||||
 | 
					$cast_obj     = 
 | 
				
			||||||
 | 
					$rc4_obj      = 
 | 
				
			||||||
 | 
					$rmd160_obj   = 
 | 
				
			||||||
 | 
					$rc5_obj      = 
 | 
				
			||||||
 | 
					$dso_scheme   = dlfcn
 | 
				
			||||||
 | 
					$shared_target= solaris-shared
 | 
				
			||||||
 | 
					$shared_cflag = -fPIC
 | 
				
			||||||
 | 
					$shared_ldflag = -m64
 | 
				
			||||||
 | 
					$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
 | 
				
			||||||
 | 
					$ranlib       = 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
*** sunos-gcc
 | 
					*** sunos-gcc
 | 
				
			||||||
$cc           = gcc
 | 
					$cc           = gcc
 | 
				
			||||||
$cflags       = -O3 -mv8 -Dssize_t=int
 | 
					$cflags       = -O3 -mv8 -Dssize_t=int
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -13,7 +13,7 @@ OPENSSLDIR=	/usr/local/ssl
 | 
				
			|||||||
MAKE=		make -f Makefile.ssl
 | 
					MAKE=		make -f Makefile.ssl
 | 
				
			||||||
MAKEDEPEND=	$(TOP)/util/domd $(TOP)
 | 
					MAKEDEPEND=	$(TOP)/util/domd $(TOP)
 | 
				
			||||||
MAKEFILE=	Makefile.ssl
 | 
					MAKEFILE=	Makefile.ssl
 | 
				
			||||||
PERL=/usr/local/bin/perl
 | 
					PERL=		perl
 | 
				
			||||||
RM=		rm -f
 | 
					RM=		rm -f
 | 
				
			||||||
 | 
					
 | 
				
			||||||
PEX_LIBS=
 | 
					PEX_LIBS=
 | 
				
			||||||
@@ -128,10 +128,10 @@ clean:
 | 
				
			|||||||
	rm -f req
 | 
						rm -f req
 | 
				
			||||||
 | 
					
 | 
				
			||||||
$(DLIBSSL):
 | 
					$(DLIBSSL):
 | 
				
			||||||
	(cd ../ssl; $(MAKE))
 | 
						(cd ../ssl; $(MAKE) CC='${CC}' PLATFORM='${PLATFORM}' CFLAG='${CFLAG}' SDIRS='$(SDIRS)' INSTALLTOP='${INSTALLTOP}' PEX_LIBS='${PEX_LIBS}' EX_LIBS='${EX_LIBS}' BN_ASM='${BN_ASM}' DES_ENC='${DES_ENC}' BF_ENC='${BF_ENC}' CAST_ENC='${CAST_ENC}' RC4_ENC='${RC4_ENC}' RC5_ENC='${RC5_ENC}' SHA1_ASM_OBJ='${SHA1_ASM_OBJ}' MD5_ASM_OBJ='${MD5_ASM_OBJ}' RMD160_ASM_OBJ='${RMD160_ASM_OBJ}' AR='${AR}' PROCESSOR='${PROCESSOR}' PERL='${PERL}' RANLIB='${RANLIB}' TESTS='${TESTS}' EXE_EXT='${EXE_EXT}' SHARED_LIBS='${SHARED_LIBS}' SHLIB_EXT='${SHLIB_EXT}' SHLIB_TARGET='${SHLIB_TARGET}')
 | 
				
			||||||
 | 
					
 | 
				
			||||||
$(DLIBCRYPTO):
 | 
					$(DLIBCRYPTO):
 | 
				
			||||||
	(cd ../crypto; $(MAKE))
 | 
						(cd ../crypto; $(MAKE) CC='${CC}' PLATFORM='${PLATFORM}' CFLAG='${CFLAG}' SDIRS='$(SDIRS)' INSTALLTOP='${INSTALLTOP}' PEX_LIBS='${PEX_LIBS}' EX_LIBS='${EX_LIBS}' BN_ASM='${BN_ASM}' DES_ENC='${DES_ENC}' BF_ENC='${BF_ENC}' CAST_ENC='${CAST_ENC}' RC4_ENC='${RC4_ENC}' RC5_ENC='${RC5_ENC}' SHA1_ASM_OBJ='${SHA1_ASM_OBJ}' MD5_ASM_OBJ='${MD5_ASM_OBJ}' RMD160_ASM_OBJ='${RMD160_ASM_OBJ}' AR='${AR}' PROCESSOR='${PROCESSOR}' PERL='${PERL}' RANLIB='${RANLIB}' TESTS='${TESTS}' EXE_EXT='${EXE_EXT}' SHARED_LIBS='${SHARED_LIBS}' SHLIB_EXT='${SHLIB_EXT}' SHLIB_TARGET='${SHLIB_TARGET}')
 | 
				
			||||||
 | 
					
 | 
				
			||||||
$(PROGRAM): progs.h $(E_OBJ) $(PROGRAM).o $(DLIBCRYPTO) $(DLIBSSL)
 | 
					$(PROGRAM): progs.h $(E_OBJ) $(PROGRAM).o $(DLIBCRYPTO) $(DLIBSSL)
 | 
				
			||||||
	$(RM) $(PROGRAM)
 | 
						$(RM) $(PROGRAM)
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										20
									
								
								apps/apps.c
									
									
									
									
									
								
							
							
						
						
									
										20
									
								
								apps/apps.c
									
									
									
									
									
								
							@@ -230,9 +230,16 @@ void program_name(char *in, char *out, int size)
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
	q=strrchr(p,'.');
 | 
						q=strrchr(p,'.');
 | 
				
			||||||
	if (q == NULL)
 | 
						if (q == NULL)
 | 
				
			||||||
		q = in+size;
 | 
							q = p + strlen(p);
 | 
				
			||||||
	strncpy(out,p,q-p);
 | 
						strncpy(out,p,size-1);
 | 
				
			||||||
	out[q-p]='\0';
 | 
						if (q-p >= size)
 | 
				
			||||||
 | 
							{
 | 
				
			||||||
 | 
							out[size-1]='\0';
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
 | 
						else
 | 
				
			||||||
 | 
							{
 | 
				
			||||||
 | 
							out[q-p]='\0';
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
	}
 | 
						}
 | 
				
			||||||
#else
 | 
					#else
 | 
				
			||||||
void program_name(char *in, char *out, int size)
 | 
					void program_name(char *in, char *out, int size)
 | 
				
			||||||
@@ -757,7 +764,7 @@ int set_name_ex(unsigned long *flags, const char *arg)
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
void print_name(BIO *out, char *title, X509_NAME *nm, unsigned long lflags)
 | 
					void print_name(BIO *out, char *title, X509_NAME *nm, unsigned long lflags)
 | 
				
			||||||
{
 | 
					{
 | 
				
			||||||
	char buf[256];
 | 
						char *buf;
 | 
				
			||||||
	char mline = 0;
 | 
						char mline = 0;
 | 
				
			||||||
	int indent = 0;
 | 
						int indent = 0;
 | 
				
			||||||
	if(title) BIO_puts(out, title);
 | 
						if(title) BIO_puts(out, title);
 | 
				
			||||||
@@ -766,9 +773,10 @@ void print_name(BIO *out, char *title, X509_NAME *nm, unsigned long lflags)
 | 
				
			|||||||
		indent = 4;
 | 
							indent = 4;
 | 
				
			||||||
	}
 | 
						}
 | 
				
			||||||
	if(lflags == XN_FLAG_COMPAT) {
 | 
						if(lflags == XN_FLAG_COMPAT) {
 | 
				
			||||||
		X509_NAME_oneline(nm,buf,256);
 | 
							buf = X509_NAME_oneline(nm, 0, 0);
 | 
				
			||||||
		BIO_puts(out,buf);
 | 
							BIO_puts(out, buf);
 | 
				
			||||||
		BIO_puts(out, "\n");
 | 
							BIO_puts(out, "\n");
 | 
				
			||||||
 | 
							OPENSSL_free(buf);
 | 
				
			||||||
	} else {
 | 
						} else {
 | 
				
			||||||
		if(mline) BIO_puts(out, "\n");
 | 
							if(mline) BIO_puts(out, "\n");
 | 
				
			||||||
		X509_NAME_print_ex(out, nm, indent, lflags);
 | 
							X509_NAME_print_ex(out, nm, indent, lflags);
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -181,7 +181,7 @@ bad:
 | 
				
			|||||||
		BIO_printf(bio_err,"where options are\n");
 | 
							BIO_printf(bio_err,"where options are\n");
 | 
				
			||||||
		BIO_printf(bio_err," -inform arg   input format - one of DER TXT PEM\n");
 | 
							BIO_printf(bio_err," -inform arg   input format - one of DER TXT PEM\n");
 | 
				
			||||||
		BIO_printf(bio_err," -in arg       input file\n");
 | 
							BIO_printf(bio_err," -in arg       input file\n");
 | 
				
			||||||
		BIO_printf(bio_err," -out arg      output file\n");
 | 
							BIO_printf(bio_err," -out arg      output file (output format is always DER\n");
 | 
				
			||||||
		BIO_printf(bio_err," -noout arg    don't produce any output\n");
 | 
							BIO_printf(bio_err," -noout arg    don't produce any output\n");
 | 
				
			||||||
		BIO_printf(bio_err," -offset arg   offset into file\n");
 | 
							BIO_printf(bio_err," -offset arg   offset into file\n");
 | 
				
			||||||
		BIO_printf(bio_err," -length arg   length of section in file\n");
 | 
							BIO_printf(bio_err," -length arg   length of section in file\n");
 | 
				
			||||||
@@ -192,7 +192,6 @@ bad:
 | 
				
			|||||||
		BIO_printf(bio_err," -strparse offset\n");
 | 
							BIO_printf(bio_err," -strparse offset\n");
 | 
				
			||||||
		BIO_printf(bio_err,"               a series of these can be used to 'dig' into multiple\n");
 | 
							BIO_printf(bio_err,"               a series of these can be used to 'dig' into multiple\n");
 | 
				
			||||||
		BIO_printf(bio_err,"               ASN1 blob wrappings\n");
 | 
							BIO_printf(bio_err,"               ASN1 blob wrappings\n");
 | 
				
			||||||
		BIO_printf(bio_err," -out filename output DER encoding to file\n");
 | 
					 | 
				
			||||||
		goto end;
 | 
							goto end;
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -1135,7 +1135,7 @@ bad:
 | 
				
			|||||||
			}
 | 
								}
 | 
				
			||||||
		if ((crldays == 0) && (crlhours == 0))
 | 
							if ((crldays == 0) && (crlhours == 0))
 | 
				
			||||||
			{
 | 
								{
 | 
				
			||||||
			BIO_printf(bio_err,"cannot lookup how long until the next CRL is issuer\n");
 | 
								BIO_printf(bio_err,"cannot lookup how long until the next CRL is issued\n");
 | 
				
			||||||
			goto err;
 | 
								goto err;
 | 
				
			||||||
			}
 | 
								}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -176,7 +176,7 @@ bad:
 | 
				
			|||||||
		BIO_printf(bio_err," -outform arg  output format - DER or PEM\n");
 | 
							BIO_printf(bio_err," -outform arg  output format - DER or PEM\n");
 | 
				
			||||||
		BIO_printf(bio_err," -in arg       input file\n");
 | 
							BIO_printf(bio_err," -in arg       input file\n");
 | 
				
			||||||
		BIO_printf(bio_err," -out arg      output file\n");
 | 
							BIO_printf(bio_err," -out arg      output file\n");
 | 
				
			||||||
		BIO_printf(bio_err," -text         print the key in text\n");
 | 
							BIO_printf(bio_err," -text         print as text\n");
 | 
				
			||||||
		BIO_printf(bio_err," -C            Output C code\n");
 | 
							BIO_printf(bio_err," -C            Output C code\n");
 | 
				
			||||||
		BIO_printf(bio_err," -noout        no output\n");
 | 
							BIO_printf(bio_err," -noout        no output\n");
 | 
				
			||||||
		BIO_printf(bio_err," -rand         files to use for random number input\n");
 | 
							BIO_printf(bio_err," -rand         files to use for random number input\n");
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -772,7 +772,10 @@ int dump_certs_pkeys_bag (BIO *out, PKCS12_SAFEBAG *bag, char *pass,
 | 
				
			|||||||
		print_attribs (out, bag->attrib, "Bag Attributes");
 | 
							print_attribs (out, bag->attrib, "Bag Attributes");
 | 
				
			||||||
		if (!(p8 = M_PKCS12_decrypt_skey (bag, pass, passlen)))
 | 
							if (!(p8 = M_PKCS12_decrypt_skey (bag, pass, passlen)))
 | 
				
			||||||
				return 0;
 | 
									return 0;
 | 
				
			||||||
		if (!(pkey = EVP_PKCS82PKEY (p8))) return 0;
 | 
							if (!(pkey = EVP_PKCS82PKEY (p8))) {
 | 
				
			||||||
 | 
								PKCS8_PRIV_KEY_INFO_free(p8);
 | 
				
			||||||
 | 
								return 0;
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
		print_attribs (out, p8->attributes, "Key Attributes");
 | 
							print_attribs (out, p8->attributes, "Key Attributes");
 | 
				
			||||||
		PKCS8_PRIV_KEY_INFO_free(p8);
 | 
							PKCS8_PRIV_KEY_INFO_free(p8);
 | 
				
			||||||
		PEM_write_bio_PrivateKey (out, pkey, enc, NULL, 0, NULL, pempass);
 | 
							PEM_write_bio_PrivateKey (out, pkey, enc, NULL, 0, NULL, pempass);
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -90,7 +90,7 @@ int MAIN(int argc, char **argv)
 | 
				
			|||||||
	int informat,outformat;
 | 
						int informat,outformat;
 | 
				
			||||||
	char *infile,*outfile,*prog;
 | 
						char *infile,*outfile,*prog;
 | 
				
			||||||
	int print_certs=0,text=0,noout=0;
 | 
						int print_certs=0,text=0,noout=0;
 | 
				
			||||||
	int ret=0;
 | 
						int ret=1;
 | 
				
			||||||
	char *engine=NULL;
 | 
						char *engine=NULL;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	apps_startup();
 | 
						apps_startup();
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -441,7 +441,10 @@ int MAIN(int argc, char **argv)
 | 
				
			|||||||
		p7 = PKCS7_encrypt(encerts, in, cipher, flags);
 | 
							p7 = PKCS7_encrypt(encerts, in, cipher, flags);
 | 
				
			||||||
	} else if(operation == SMIME_SIGN) {
 | 
						} else if(operation == SMIME_SIGN) {
 | 
				
			||||||
		p7 = PKCS7_sign(signer, key, other, in, flags);
 | 
							p7 = PKCS7_sign(signer, key, other, in, flags);
 | 
				
			||||||
		BIO_reset(in);
 | 
							if (BIO_reset(in) != 0 && (flags & PKCS7_DETACHED)) {
 | 
				
			||||||
 | 
							  BIO_printf(bio_err, "Can't rewind input file\n");
 | 
				
			||||||
 | 
							  goto end;
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
	} else {
 | 
						} else {
 | 
				
			||||||
		if(informat == FORMAT_SMIME) 
 | 
							if(informat == FORMAT_SMIME) 
 | 
				
			||||||
			p7 = SMIME_read_PKCS7(in, &indata);
 | 
								p7 = SMIME_read_PKCS7(in, &indata);
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -237,7 +237,7 @@ int MAIN(int argc, char **argv)
 | 
				
			|||||||
		else if (strcmp(*argv,"-CAkeyform") == 0)
 | 
							else if (strcmp(*argv,"-CAkeyform") == 0)
 | 
				
			||||||
			{
 | 
								{
 | 
				
			||||||
			if (--argc < 1) goto bad;
 | 
								if (--argc < 1) goto bad;
 | 
				
			||||||
			CAformat=str2fmt(*(++argv));
 | 
								CAkeyformat=str2fmt(*(++argv));
 | 
				
			||||||
			}
 | 
								}
 | 
				
			||||||
		else if (strcmp(*argv,"-days") == 0)
 | 
							else if (strcmp(*argv,"-days") == 0)
 | 
				
			||||||
			{
 | 
								{
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										42
									
								
								config
									
									
									
									
									
								
							
							
						
						
									
										42
									
								
								config
									
									
									
									
									
								
							@@ -381,17 +381,33 @@ done
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
# figure out if gcc is available and if so we use it otherwise
 | 
					# figure out if gcc is available and if so we use it otherwise
 | 
				
			||||||
# we fallback to whatever cc does on the system
 | 
					# we fallback to whatever cc does on the system
 | 
				
			||||||
GCCVER=`(gcc --version) 2>/dev/null`
 | 
					GCCVER=`(gcc -dumpversion) 2>/dev/null`
 | 
				
			||||||
if [ "$GCCVER" != "" ]; then
 | 
					if [ "$GCCVER" != "" ]; then
 | 
				
			||||||
  CC=gcc
 | 
					  CC=gcc
 | 
				
			||||||
  # then strip off whatever prefix Cygnus prepends the number with...
 | 
					  # then strip off whatever prefix egcs prepends the number with...
 | 
				
			||||||
  GCCVER=`echo $GCCVER | sed 's/^[a-z]*\-//'`
 | 
					  # Hopefully, this will work for any future prefixes as well.
 | 
				
			||||||
 | 
					  GCCVER=`echo $GCCVER | sed 's/^[a-zA-Z]*\-//'`
 | 
				
			||||||
 | 
					  # Since gcc 3.1 gcc --version behaviour has changed.  gcc -dumpversion
 | 
				
			||||||
 | 
					  # does give us what we want though, so we use that.  We just just the
 | 
				
			||||||
 | 
					  # major and minor version numbers.
 | 
				
			||||||
  # peak single digit before and after first dot, e.g. 2.95.1 gives 29
 | 
					  # peak single digit before and after first dot, e.g. 2.95.1 gives 29
 | 
				
			||||||
  GCCVER=`echo $GCCVER | sed 's/\([0-9]\)\.\([0-9]\).*/\1\2/'`
 | 
					  GCCVER=`echo $GCCVER | sed 's/\([0-9]\)\.\([0-9]\).*/\1\2/'`
 | 
				
			||||||
else
 | 
					else
 | 
				
			||||||
  CC=cc
 | 
					  CC=cc
 | 
				
			||||||
fi
 | 
					fi
 | 
				
			||||||
 | 
					GCCVER=${GCCVER:-0}
 | 
				
			||||||
 | 
					if [ "$SYSTEM" = "HP-UX" ];then
 | 
				
			||||||
 | 
					  # By default gcc is a ILP32 compiler (with long long == 64).
 | 
				
			||||||
 | 
					  GCC_BITS="32"
 | 
				
			||||||
 | 
					  if [ $GCCVER -ge 30 ]; then
 | 
				
			||||||
 | 
					    # PA64 support only came in with gcc 3.0.x.
 | 
				
			||||||
 | 
					    # We look for the preprocessor symbol __LP64__ indicating
 | 
				
			||||||
 | 
					    # 64bit bit long and pointer.  sizeof(int) == 32 on HPUX64.
 | 
				
			||||||
 | 
					    if gcc -v -E -x c /dev/null 2>&1 | grep __LP64__ > /dev/null; then
 | 
				
			||||||
 | 
					      GCC_BITS="64"
 | 
				
			||||||
 | 
					    fi
 | 
				
			||||||
 | 
					  fi
 | 
				
			||||||
 | 
					fi
 | 
				
			||||||
if [ "$SYSTEM" = "SunOS" ]; then
 | 
					if [ "$SYSTEM" = "SunOS" ]; then
 | 
				
			||||||
  # check for WorkShop C, expected output is "cc: blah-blah C x.x"
 | 
					  # check for WorkShop C, expected output is "cc: blah-blah C x.x"
 | 
				
			||||||
  CCVER=`(cc -V 2>&1) 2>/dev/null | \
 | 
					  CCVER=`(cc -V 2>&1) 2>/dev/null | \
 | 
				
			||||||
@@ -497,6 +513,10 @@ EOF
 | 
				
			|||||||
	${CC} -o dummy dummy.c && OUT=`./dummy ${MACHINE}`
 | 
						${CC} -o dummy dummy.c && OUT=`./dummy ${MACHINE}`
 | 
				
			||||||
	rm dummy dummy.c
 | 
						rm dummy dummy.c
 | 
				
			||||||
	;;
 | 
						;;
 | 
				
			||||||
 | 
					  ppc64-*-linux2)
 | 
				
			||||||
 | 
						#Use the standard target for PPC architecture until we create a
 | 
				
			||||||
 | 
						#special one for the 64bit architecture.
 | 
				
			||||||
 | 
						OUT="linux-ppc" ;;
 | 
				
			||||||
  ppc-*-linux2) OUT="linux-ppc" ;;
 | 
					  ppc-*-linux2) OUT="linux-ppc" ;;
 | 
				
			||||||
  m68k-*-linux*) OUT="linux-m68k" ;;
 | 
					  m68k-*-linux*) OUT="linux-m68k" ;;
 | 
				
			||||||
  ia64-*-linux?) OUT="linux-ia64" ;;
 | 
					  ia64-*-linux?) OUT="linux-ia64" ;;
 | 
				
			||||||
@@ -589,8 +609,18 @@ EOF
 | 
				
			|||||||
  BS2000-siemens-sysv4) OUT="BS2000-OSD" ;;
 | 
					  BS2000-siemens-sysv4) OUT="BS2000-OSD" ;;
 | 
				
			||||||
  RM*-siemens-sysv4) OUT="ReliantUNIX" ;;
 | 
					  RM*-siemens-sysv4) OUT="ReliantUNIX" ;;
 | 
				
			||||||
  *-siemens-sysv4) OUT="SINIX" ;;
 | 
					  *-siemens-sysv4) OUT="SINIX" ;;
 | 
				
			||||||
  *-hpux1*)	OUT="hpux-parisc-$CC"
 | 
					  *-hpux1*)
 | 
				
			||||||
		options="$options -D_REENTRANT" ;;
 | 
						if [ $CC = "gcc" ];
 | 
				
			||||||
 | 
						then
 | 
				
			||||||
 | 
						  if [ $GCC_BITS = "64" ]; then
 | 
				
			||||||
 | 
						    OUT="hpux64-parisc-gcc"
 | 
				
			||||||
 | 
						  else
 | 
				
			||||||
 | 
						    OUT="hpux-parisc-gcc"
 | 
				
			||||||
 | 
						  fi
 | 
				
			||||||
 | 
						else
 | 
				
			||||||
 | 
						  OUT="hpux-parisc-$CC"
 | 
				
			||||||
 | 
						fi
 | 
				
			||||||
 | 
						options="$options -D_REENTRANT" ;;
 | 
				
			||||||
  *-hpux)	OUT="hpux-parisc-$CC" ;;
 | 
					  *-hpux)	OUT="hpux-parisc-$CC" ;;
 | 
				
			||||||
  # these are all covered by the catchall below
 | 
					  # these are all covered by the catchall below
 | 
				
			||||||
  # *-aix) OUT="aix-$CC" ;;
 | 
					  # *-aix) OUT="aix-$CC" ;;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -51,11 +51,11 @@ all: buildinf.h lib subdirs
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
buildinf.h: ../Makefile.ssl
 | 
					buildinf.h: ../Makefile.ssl
 | 
				
			||||||
	( echo "#ifndef MK1MF_BUILD"; \
 | 
						( echo "#ifndef MK1MF_BUILD"; \
 | 
				
			||||||
	echo "  /* auto-generated by crypto/Makefile.ssl for crypto/cversion.c */"; \
 | 
						echo '  /* auto-generated by crypto/Makefile.ssl for crypto/cversion.c */'; \
 | 
				
			||||||
	echo "  #define CFLAGS \"$(CC) $(CFLAG)\""; \
 | 
						echo '  #define CFLAGS "$(CC) $(CFLAG)"'; \
 | 
				
			||||||
	echo "  #define PLATFORM \"$(PLATFORM)\""; \
 | 
						echo '  #define PLATFORM "$(PLATFORM)"'; \
 | 
				
			||||||
	echo "  #define DATE \"`date`\""; \
 | 
						echo "  #define DATE \"`LC_ALL=C LC_TIME=C date`\""; \
 | 
				
			||||||
	echo "#endif" ) >buildinf.h
 | 
						echo '#endif' ) >buildinf.h
 | 
				
			||||||
 | 
					
 | 
				
			||||||
testapps:
 | 
					testapps:
 | 
				
			||||||
	if echo ${SDIRS} | fgrep ' des '; \
 | 
						if echo ${SDIRS} | fgrep ' des '; \
 | 
				
			||||||
@@ -134,7 +134,7 @@ depend:
 | 
				
			|||||||
	@for i in $(SDIRS) ;\
 | 
						@for i in $(SDIRS) ;\
 | 
				
			||||||
	do \
 | 
						do \
 | 
				
			||||||
	(cd $$i; echo "making depend in crypto/$$i..."; \
 | 
						(cd $$i; echo "making depend in crypto/$$i..."; \
 | 
				
			||||||
	$(MAKE) MAKEFILE='${MAKEFILE}' INCLUDES='${INCLUDES}' DEPFLAG='${DEPFLAG}' depend ); \
 | 
						$(MAKE) MAKEFILE='${MAKEFILE}' INCLUDES='${INCLUDES}' DEPFLAG='${DEPFLAG}' PERL='${PERL}' depend ); \
 | 
				
			||||||
	done;
 | 
						done;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
clean:
 | 
					clean:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -89,8 +89,6 @@ int i2c_ASN1_BIT_STRING(ASN1_BIT_STRING *a, unsigned char **pp)
 | 
				
			|||||||
	if (a == NULL) return(0);
 | 
						if (a == NULL) return(0);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	len=a->length;
 | 
						len=a->length;
 | 
				
			||||||
	ret=1+len;
 | 
					 | 
				
			||||||
	if (pp == NULL) return(ret);
 | 
					 | 
				
			||||||
 | 
					
 | 
				
			||||||
	if (len > 0)
 | 
						if (len > 0)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
@@ -118,6 +116,10 @@ int i2c_ASN1_BIT_STRING(ASN1_BIT_STRING *a, unsigned char **pp)
 | 
				
			|||||||
		}
 | 
							}
 | 
				
			||||||
	else
 | 
						else
 | 
				
			||||||
		bits=0;
 | 
							bits=0;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
						ret=1+len;
 | 
				
			||||||
 | 
						if (pp == NULL) return(ret);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	p= *pp;
 | 
						p= *pp;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	*(p++)=(unsigned char)bits;
 | 
						*(p++)=(unsigned char)bits;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -205,7 +205,18 @@ ASN1_ENUMERATED *BN_to_ASN1_ENUMERATED(BIGNUM *bn, ASN1_ENUMERATED *ai)
 | 
				
			|||||||
	else ret->type=V_ASN1_ENUMERATED;
 | 
						else ret->type=V_ASN1_ENUMERATED;
 | 
				
			||||||
	j=BN_num_bits(bn);
 | 
						j=BN_num_bits(bn);
 | 
				
			||||||
	len=((j == 0)?0:((j/8)+1));
 | 
						len=((j == 0)?0:((j/8)+1));
 | 
				
			||||||
	ret->data=(unsigned char *)OPENSSL_malloc(len+4);
 | 
						if (ret->length < len+4)
 | 
				
			||||||
 | 
							{
 | 
				
			||||||
 | 
							unsigned char *new_data=
 | 
				
			||||||
 | 
								OPENSSL_realloc(ret->data, len+4);
 | 
				
			||||||
 | 
							if (!new_data)
 | 
				
			||||||
 | 
								{
 | 
				
			||||||
 | 
								ASN1err(ASN1_F_BN_TO_ASN1_INTEGER,ERR_R_MALLOC_FAILURE);
 | 
				
			||||||
 | 
								goto err;
 | 
				
			||||||
 | 
								}
 | 
				
			||||||
 | 
							ret->data=new_data;
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	ret->length=BN_bn2bin(bn,ret->data);
 | 
						ret->length=BN_bn2bin(bn,ret->data);
 | 
				
			||||||
	return(ret);
 | 
						return(ret);
 | 
				
			||||||
err:
 | 
					err:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -451,7 +451,16 @@ ASN1_INTEGER *BN_to_ASN1_INTEGER(BIGNUM *bn, ASN1_INTEGER *ai)
 | 
				
			|||||||
	else ret->type=V_ASN1_INTEGER;
 | 
						else ret->type=V_ASN1_INTEGER;
 | 
				
			||||||
	j=BN_num_bits(bn);
 | 
						j=BN_num_bits(bn);
 | 
				
			||||||
	len=((j == 0)?0:((j/8)+1));
 | 
						len=((j == 0)?0:((j/8)+1));
 | 
				
			||||||
	ret->data=(unsigned char *)OPENSSL_malloc(len+4);
 | 
						if (ret->length < len+4)
 | 
				
			||||||
 | 
							{
 | 
				
			||||||
 | 
							unsigned char *new_data= OPENSSL_realloc(ret->data, len+4);
 | 
				
			||||||
 | 
							if (!new_data)
 | 
				
			||||||
 | 
								{
 | 
				
			||||||
 | 
								ASN1err(ASN1_F_BN_TO_ASN1_INTEGER,ERR_R_MALLOC_FAILURE);
 | 
				
			||||||
 | 
								goto err;
 | 
				
			||||||
 | 
								}
 | 
				
			||||||
 | 
							ret->data=new_data;
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
	ret->length=BN_bn2bin(bn,ret->data);
 | 
						ret->length=BN_bn2bin(bn,ret->data);
 | 
				
			||||||
	return(ret);
 | 
						return(ret);
 | 
				
			||||||
err:
 | 
					err:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -116,7 +116,7 @@ int i2d_ASN1_SET(STACK *a, unsigned char **pp, int (*func)(), int ex_tag,
 | 
				
			|||||||
		}
 | 
							}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
        pStart  = p; /* Catch the beg of Setblobs*/
 | 
					        pStart  = p; /* Catch the beg of Setblobs*/
 | 
				
			||||||
        rgSetBlob = (MYBLOB *)OPENSSL_malloc( sk_num(a) * sizeof(MYBLOB)); /* In this array
 | 
					        if (!(rgSetBlob = (MYBLOB *)OPENSSL_malloc( sk_num(a) * sizeof(MYBLOB)))) return 0; /* In this array
 | 
				
			||||||
we will store the SET blobs */
 | 
					we will store the SET blobs */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
        for (i=0; i<sk_num(a); i++)
 | 
					        for (i=0; i<sk_num(a); i++)
 | 
				
			||||||
@@ -133,7 +133,7 @@ SetBlob
 | 
				
			|||||||
 /* Now we have to sort the blobs. I am using a simple algo.
 | 
					 /* Now we have to sort the blobs. I am using a simple algo.
 | 
				
			||||||
    *Sort ptrs *Copy to temp-mem *Copy from temp-mem to user-mem*/
 | 
					    *Sort ptrs *Copy to temp-mem *Copy from temp-mem to user-mem*/
 | 
				
			||||||
        qsort( rgSetBlob, sk_num(a), sizeof(MYBLOB), SetBlobCmp);
 | 
					        qsort( rgSetBlob, sk_num(a), sizeof(MYBLOB), SetBlobCmp);
 | 
				
			||||||
        pTempMem = OPENSSL_malloc(totSize);
 | 
					        if (!(pTempMem = OPENSSL_malloc(totSize))) return 0;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
/* Copy to temp mem */
 | 
					/* Copy to temp mem */
 | 
				
			||||||
        p = pTempMem;
 | 
					        p = pTempMem;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -55,6 +55,59 @@
 | 
				
			|||||||
 * copied and put under another distribution licence
 | 
					 * copied and put under another distribution licence
 | 
				
			||||||
 * [including the GNU Public Licence.]
 | 
					 * [including the GNU Public Licence.]
 | 
				
			||||||
 */
 | 
					 */
 | 
				
			||||||
 | 
					/* ====================================================================
 | 
				
			||||||
 | 
					 * Copyright (c) 1998-2002 The OpenSSL Project.  All rights reserved.
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * Redistribution and use in source and binary forms, with or without
 | 
				
			||||||
 | 
					 * modification, are permitted provided that the following conditions
 | 
				
			||||||
 | 
					 * are met:
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * 1. Redistributions of source code must retain the above copyright
 | 
				
			||||||
 | 
					 *    notice, this list of conditions and the following disclaimer. 
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * 2. Redistributions in binary form must reproduce the above copyright
 | 
				
			||||||
 | 
					 *    notice, this list of conditions and the following disclaimer in
 | 
				
			||||||
 | 
					 *    the documentation and/or other materials provided with the
 | 
				
			||||||
 | 
					 *    distribution.
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * 3. All advertising materials mentioning features or use of this
 | 
				
			||||||
 | 
					 *    software must display the following acknowledgment:
 | 
				
			||||||
 | 
					 *    "This product includes software developed by the OpenSSL Project
 | 
				
			||||||
 | 
					 *    for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
 | 
				
			||||||
 | 
					 *    endorse or promote products derived from this software without
 | 
				
			||||||
 | 
					 *    prior written permission. For written permission, please contact
 | 
				
			||||||
 | 
					 *    openssl-core@openssl.org.
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * 5. Products derived from this software may not be called "OpenSSL"
 | 
				
			||||||
 | 
					 *    nor may "OpenSSL" appear in their names without prior written
 | 
				
			||||||
 | 
					 *    permission of the OpenSSL Project.
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * 6. Redistributions of any form whatsoever must retain the following
 | 
				
			||||||
 | 
					 *    acknowledgment:
 | 
				
			||||||
 | 
					 *    "This product includes software developed by the OpenSSL Project
 | 
				
			||||||
 | 
					 *    for use in the OpenSSL Toolkit (http://www.openssl.org/)"
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
 | 
				
			||||||
 | 
					 * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
 | 
				
			||||||
 | 
					 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
 | 
				
			||||||
 | 
					 * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
 | 
				
			||||||
 | 
					 * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
 | 
				
			||||||
 | 
					 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
 | 
				
			||||||
 | 
					 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
 | 
				
			||||||
 | 
					 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
 | 
				
			||||||
 | 
					 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
 | 
				
			||||||
 | 
					 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
 | 
				
			||||||
 | 
					 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
 | 
				
			||||||
 | 
					 * OF THE POSSIBILITY OF SUCH DAMAGE.
 | 
				
			||||||
 | 
					 * ====================================================================
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 * This product includes cryptographic software written by Eric Young
 | 
				
			||||||
 | 
					 * (eay@cryptsoft.com).  This product includes software written by Tim
 | 
				
			||||||
 | 
					 * Hudson (tjh@cryptsoft.com).
 | 
				
			||||||
 | 
					 *
 | 
				
			||||||
 | 
					 */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#include <stdio.h>
 | 
					#include <stdio.h>
 | 
				
			||||||
#include <time.h>
 | 
					#include <time.h>
 | 
				
			||||||
@@ -87,7 +140,14 @@ int ASN1_sign(int (*i2d)(), X509_ALGOR *algor1, X509_ALGOR *algor2,
 | 
				
			|||||||
		else
 | 
							else
 | 
				
			||||||
			a=algor2;
 | 
								a=algor2;
 | 
				
			||||||
		if (a == NULL) continue;
 | 
							if (a == NULL) continue;
 | 
				
			||||||
		if (	(a->parameter == NULL) || 
 | 
					                if (type->pkey_type == NID_dsaWithSHA1)
 | 
				
			||||||
 | 
								{
 | 
				
			||||||
 | 
								/* special case: RFC 2459 tells us to omit 'parameters'
 | 
				
			||||||
 | 
								 * with id-dsa-with-sha1 */
 | 
				
			||||||
 | 
								ASN1_TYPE_free(a->parameter);
 | 
				
			||||||
 | 
								a->parameter = NULL;
 | 
				
			||||||
 | 
								}
 | 
				
			||||||
 | 
							else if ((a->parameter == NULL) || 
 | 
				
			||||||
			(a->parameter->type != V_ASN1_NULL))
 | 
								(a->parameter->type != V_ASN1_NULL))
 | 
				
			||||||
			{
 | 
								{
 | 
				
			||||||
			ASN1_TYPE_free(a->parameter);
 | 
								ASN1_TYPE_free(a->parameter);
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -270,6 +270,9 @@ ASN1_UTCTIME *ASN1_UTCTIME_set(ASN1_UTCTIME *s, time_t t)
 | 
				
			|||||||
int ASN1_UTCTIME_cmp_time_t(const ASN1_UTCTIME *s, time_t t)
 | 
					int ASN1_UTCTIME_cmp_time_t(const ASN1_UTCTIME *s, time_t t)
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
	struct tm *tm;
 | 
						struct tm *tm;
 | 
				
			||||||
 | 
					#if defined(THREADS) && !defined(WIN32) && !defined(__CYGWIN32__) && !defined(_DARWIN)
 | 
				
			||||||
 | 
						struct tm data;
 | 
				
			||||||
 | 
					#endif
 | 
				
			||||||
	int offset;
 | 
						int offset;
 | 
				
			||||||
	int year;
 | 
						int year;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -287,7 +290,8 @@ int ASN1_UTCTIME_cmp_time_t(const ASN1_UTCTIME *s, time_t t)
 | 
				
			|||||||
	t -= offset*60; /* FIXME: may overflow in extreme cases */
 | 
						t -= offset*60; /* FIXME: may overflow in extreme cases */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#if defined(THREADS) && !defined(WIN32) && !defined(__CYGWIN32__) && !defined(_DARWIN)
 | 
					#if defined(THREADS) && !defined(WIN32) && !defined(__CYGWIN32__) && !defined(_DARWIN)
 | 
				
			||||||
	{ struct tm data; gmtime_r(&t, &data); tm = &data; }
 | 
						gmtime_r(&t, &data);
 | 
				
			||||||
 | 
						tm = &data;
 | 
				
			||||||
#else
 | 
					#else
 | 
				
			||||||
	tm = gmtime(&t);
 | 
						tm = gmtime(&t);
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -57,6 +57,7 @@
 | 
				
			|||||||
 */
 | 
					 */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#include <stdio.h>
 | 
					#include <stdio.h>
 | 
				
			||||||
 | 
					#include <limits.h>
 | 
				
			||||||
#include "cryptlib.h"
 | 
					#include "cryptlib.h"
 | 
				
			||||||
#include <openssl/asn1.h>
 | 
					#include <openssl/asn1.h>
 | 
				
			||||||
#include <openssl/asn1_mac.h>
 | 
					#include <openssl/asn1_mac.h>
 | 
				
			||||||
@@ -124,15 +125,13 @@ int ASN1_get_object(unsigned char **pp, long *plength, int *ptag, int *pclass,
 | 
				
			|||||||
		(int)(omax+ *pp));
 | 
							(int)(omax+ *pp));
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
#if 0
 | 
						if (*plength > (omax - (p - *pp)))
 | 
				
			||||||
	if ((p+ *plength) > (omax+ *pp))
 | 
					 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		ASN1err(ASN1_F_ASN1_GET_OBJECT,ASN1_R_TOO_LONG);
 | 
							ASN1err(ASN1_F_ASN1_GET_OBJECT,ASN1_R_TOO_LONG);
 | 
				
			||||||
		/* Set this so that even if things are not long enough
 | 
							/* Set this so that even if things are not long enough
 | 
				
			||||||
		 * the values are set correctly */
 | 
							 * the values are set correctly */
 | 
				
			||||||
		ret|=0x80;
 | 
							ret|=0x80;
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
#endif
 | 
					 | 
				
			||||||
	*pp=p;
 | 
						*pp=p;
 | 
				
			||||||
	return(ret|inf);
 | 
						return(ret|inf);
 | 
				
			||||||
err:
 | 
					err:
 | 
				
			||||||
@@ -143,7 +142,7 @@ err:
 | 
				
			|||||||
static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
 | 
					static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
	unsigned char *p= *pp;
 | 
						unsigned char *p= *pp;
 | 
				
			||||||
	long ret=0;
 | 
						unsigned long ret=0;
 | 
				
			||||||
	int i;
 | 
						int i;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	if (max-- < 1) return(0);
 | 
						if (max-- < 1) return(0);
 | 
				
			||||||
@@ -159,6 +158,8 @@ static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
 | 
				
			|||||||
		i= *p&0x7f;
 | 
							i= *p&0x7f;
 | 
				
			||||||
		if (*(p++) & 0x80)
 | 
							if (*(p++) & 0x80)
 | 
				
			||||||
			{
 | 
								{
 | 
				
			||||||
 | 
								if (i > sizeof(long))
 | 
				
			||||||
 | 
									return 0;
 | 
				
			||||||
			if (max-- == 0) return(0);
 | 
								if (max-- == 0) return(0);
 | 
				
			||||||
			while (i-- > 0)
 | 
								while (i-- > 0)
 | 
				
			||||||
				{
 | 
									{
 | 
				
			||||||
@@ -170,8 +171,10 @@ static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
 | 
				
			|||||||
		else
 | 
							else
 | 
				
			||||||
			ret=i;
 | 
								ret=i;
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
 | 
						if (ret > LONG_MAX)
 | 
				
			||||||
 | 
							return 0;
 | 
				
			||||||
	*pp=p;
 | 
						*pp=p;
 | 
				
			||||||
	*rl=ret;
 | 
						*rl=(long)ret;
 | 
				
			||||||
	return(1);
 | 
						return(1);
 | 
				
			||||||
	}
 | 
						}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -407,7 +410,7 @@ int ASN1_STRING_cmp(ASN1_STRING *a, ASN1_STRING *b)
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
void asn1_add_error(unsigned char *address, int offset)
 | 
					void asn1_add_error(unsigned char *address, int offset)
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
	char buf1[16],buf2[16];
 | 
						char buf1[DECIMAL_SIZE(address)+1],buf2[DECIMAL_SIZE(offset)+1];
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	sprintf(buf1,"%lu",(unsigned long)address);
 | 
						sprintf(buf1,"%lu",(unsigned long)address);
 | 
				
			||||||
	sprintf(buf2,"%d",offset);
 | 
						sprintf(buf2,"%d",offset);
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -87,6 +87,7 @@ DH *d2i_DHparams(DH **a, unsigned char **pp, long length)
 | 
				
			|||||||
		}
 | 
							}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	M_ASN1_BIT_STRING_free(bs);
 | 
						M_ASN1_BIT_STRING_free(bs);
 | 
				
			||||||
 | 
						bs = NULL;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	M_ASN1_D2I_Finish_2(a);
 | 
						M_ASN1_D2I_Finish_2(a);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -84,6 +84,7 @@ DSA *d2i_DSAparams(DSA **a, unsigned char **pp, long length)
 | 
				
			|||||||
	if ((ret->g=BN_bin2bn(bs->data,bs->length,ret->g)) == NULL) goto err_bn;
 | 
						if ((ret->g=BN_bin2bn(bs->data,bs->length,ret->g)) == NULL) goto err_bn;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	M_ASN1_BIT_STRING_free(bs);
 | 
						M_ASN1_BIT_STRING_free(bs);
 | 
				
			||||||
 | 
						bs = NULL;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	M_ASN1_D2I_Finish_2(a);
 | 
						M_ASN1_D2I_Finish_2(a);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -108,6 +108,7 @@ RSA *d2i_RSAPrivateKey(RSA **a, unsigned char **pp, long length)
 | 
				
			|||||||
		goto err_bn;
 | 
							goto err_bn;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	M_ASN1_INTEGER_free(bs);
 | 
						M_ASN1_INTEGER_free(bs);
 | 
				
			||||||
 | 
						bs = NULL;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	M_ASN1_D2I_Finish_2(a);
 | 
						M_ASN1_D2I_Finish_2(a);
 | 
				
			||||||
err_bn:
 | 
					err_bn:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -96,10 +96,34 @@ int RSA_print(BIO *bp, RSA *x, int off)
 | 
				
			|||||||
	char str[128];
 | 
						char str[128];
 | 
				
			||||||
	const char *s;
 | 
						const char *s;
 | 
				
			||||||
	unsigned char *m=NULL;
 | 
						unsigned char *m=NULL;
 | 
				
			||||||
	int i,ret=0;
 | 
						int ret=0;
 | 
				
			||||||
 | 
						size_t buf_len=0, i;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	i=RSA_size(x);
 | 
						if (x->n)
 | 
				
			||||||
	m=(unsigned char *)OPENSSL_malloc((unsigned int)i+10);
 | 
							buf_len = (size_t)BN_num_bytes(x->n);
 | 
				
			||||||
 | 
						if (x->e)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->e)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						if (x->d)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->d)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						if (x->p)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->p)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						if (x->q)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->q)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						if (x->dmp1)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->dmp1)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						if (x->dmq1)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->dmq1)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						if (x->iqmp)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->iqmp)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
						m=(unsigned char *)OPENSSL_malloc(buf_len+10);
 | 
				
			||||||
	if (m == NULL)
 | 
						if (m == NULL)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		RSAerr(RSA_F_RSA_PRINT,ERR_R_MALLOC_FAILURE);
 | 
							RSAerr(RSA_F_RSA_PRINT,ERR_R_MALLOC_FAILURE);
 | 
				
			||||||
@@ -161,22 +185,25 @@ int DSA_print(BIO *bp, DSA *x, int off)
 | 
				
			|||||||
	{
 | 
						{
 | 
				
			||||||
	char str[128];
 | 
						char str[128];
 | 
				
			||||||
	unsigned char *m=NULL;
 | 
						unsigned char *m=NULL;
 | 
				
			||||||
	int i,ret=0;
 | 
						int ret=0;
 | 
				
			||||||
	BIGNUM *bn=NULL;
 | 
						size_t buf_len=0,i;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	if (x->p != NULL)
 | 
						if (x->p)
 | 
				
			||||||
		bn=x->p;
 | 
							buf_len = (size_t)BN_num_bytes(x->p);
 | 
				
			||||||
	else if (x->priv_key != NULL)
 | 
						if (x->q)
 | 
				
			||||||
		bn=x->priv_key;
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->q)))
 | 
				
			||||||
	else if (x->pub_key != NULL)
 | 
								buf_len = i;
 | 
				
			||||||
		bn=x->pub_key;
 | 
						if (x->g)
 | 
				
			||||||
		
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->g)))
 | 
				
			||||||
	/* larger than needed but what the hell :-) */
 | 
								buf_len = i;
 | 
				
			||||||
	if (bn != NULL)
 | 
						if (x->priv_key)
 | 
				
			||||||
		i=BN_num_bytes(bn)*2;
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->priv_key)))
 | 
				
			||||||
	else
 | 
								buf_len = i;
 | 
				
			||||||
		i=256;
 | 
						if (x->pub_key)
 | 
				
			||||||
	m=(unsigned char *)OPENSSL_malloc((unsigned int)i+10);
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->pub_key)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
						m=(unsigned char *)OPENSSL_malloc(buf_len+10);
 | 
				
			||||||
	if (m == NULL)
 | 
						if (m == NULL)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		DSAerr(DSA_F_DSA_PRINT,ERR_R_MALLOC_FAILURE);
 | 
							DSAerr(DSA_F_DSA_PRINT,ERR_R_MALLOC_FAILURE);
 | 
				
			||||||
@@ -281,10 +308,15 @@ int DHparams_print_fp(FILE *fp, DH *x)
 | 
				
			|||||||
int DHparams_print(BIO *bp, DH *x)
 | 
					int DHparams_print(BIO *bp, DH *x)
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
	unsigned char *m=NULL;
 | 
						unsigned char *m=NULL;
 | 
				
			||||||
	int reason=ERR_R_BUF_LIB,i,ret=0;
 | 
						int reason=ERR_R_BUF_LIB,ret=0;
 | 
				
			||||||
 | 
						size_t buf_len=0, i;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	i=BN_num_bytes(x->p);
 | 
						if (x->p)
 | 
				
			||||||
	m=(unsigned char *)OPENSSL_malloc((unsigned int)i+10);
 | 
							buf_len = (size_t)BN_num_bytes(x->p);
 | 
				
			||||||
 | 
						if (x->g)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->g)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						m=(unsigned char *)OPENSSL_malloc(buf_len+10);
 | 
				
			||||||
	if (m == NULL)
 | 
						if (m == NULL)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		reason=ERR_R_MALLOC_FAILURE;
 | 
							reason=ERR_R_MALLOC_FAILURE;
 | 
				
			||||||
@@ -334,10 +366,18 @@ int DSAparams_print_fp(FILE *fp, DSA *x)
 | 
				
			|||||||
int DSAparams_print(BIO *bp, DSA *x)
 | 
					int DSAparams_print(BIO *bp, DSA *x)
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
	unsigned char *m=NULL;
 | 
						unsigned char *m=NULL;
 | 
				
			||||||
	int reason=ERR_R_BUF_LIB,i,ret=0;
 | 
						int reason=ERR_R_BUF_LIB,ret=0;
 | 
				
			||||||
 | 
						size_t buf_len=0, i;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	i=BN_num_bytes(x->p);
 | 
						if (x->p)
 | 
				
			||||||
	m=(unsigned char *)OPENSSL_malloc((unsigned int)i+10);
 | 
							buf_len = (size_t)BN_num_bytes(x->p);
 | 
				
			||||||
 | 
						if (x->q)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->q)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						if (x->g)
 | 
				
			||||||
 | 
							if (buf_len < (i = (size_t)BN_num_bytes(x->g)))
 | 
				
			||||||
 | 
								buf_len = i;
 | 
				
			||||||
 | 
						m=(unsigned char *)OPENSSL_malloc(buf_len+10);
 | 
				
			||||||
	if (m == NULL)
 | 
						if (m == NULL)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		reason=ERR_R_MALLOC_FAILURE;
 | 
							reason=ERR_R_MALLOC_FAILURE;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -156,7 +156,7 @@ int X509_PUBKEY_set(X509_PUBKEY **x, EVP_PKEY *pkey)
 | 
				
			|||||||
		dsa->write_params=0;
 | 
							dsa->write_params=0;
 | 
				
			||||||
		ASN1_TYPE_free(a->parameter);
 | 
							ASN1_TYPE_free(a->parameter);
 | 
				
			||||||
		i=i2d_DSAparams(dsa,NULL);
 | 
							i=i2d_DSAparams(dsa,NULL);
 | 
				
			||||||
		p=(unsigned char *)OPENSSL_malloc(i);
 | 
							if ((p=(unsigned char *)OPENSSL_malloc(i)) == NULL) goto err;
 | 
				
			||||||
		pp=p;
 | 
							pp=p;
 | 
				
			||||||
		i2d_DSAparams(dsa,&pp);
 | 
							i2d_DSAparams(dsa,&pp);
 | 
				
			||||||
		a->parameter=ASN1_TYPE_new();
 | 
							a->parameter=ASN1_TYPE_new();
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -56,6 +56,13 @@
 | 
				
			|||||||
 * [including the GNU Public Licence.]
 | 
					 * [including the GNU Public Licence.]
 | 
				
			||||||
 */
 | 
					 */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					/* disable assert() unless BIO_DEBUG has been defined */
 | 
				
			||||||
 | 
					#ifndef BIO_DEBUG
 | 
				
			||||||
 | 
					# ifndef NDEBUG
 | 
				
			||||||
 | 
					#  define NDEBUG
 | 
				
			||||||
 | 
					# endif
 | 
				
			||||||
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
/* 
 | 
					/* 
 | 
				
			||||||
 * Stolen from tjh's ssl/ssl_trc.c stuff.
 | 
					 * Stolen from tjh's ssl/ssl_trc.c stuff.
 | 
				
			||||||
 */
 | 
					 */
 | 
				
			||||||
@@ -102,7 +109,7 @@
 | 
				
			|||||||
 * o ...                                       (for OpenSSL)
 | 
					 * o ...                                       (for OpenSSL)
 | 
				
			||||||
 */
 | 
					 */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#if HAVE_LONG_DOUBLE
 | 
					#ifdef HAVE_LONG_DOUBLE
 | 
				
			||||||
#define LDOUBLE long double
 | 
					#define LDOUBLE long double
 | 
				
			||||||
#else
 | 
					#else
 | 
				
			||||||
#define LDOUBLE double
 | 
					#define LDOUBLE double
 | 
				
			||||||
@@ -716,12 +723,13 @@ doapr_outch(
 | 
				
			|||||||
    if (buffer) {
 | 
					    if (buffer) {
 | 
				
			||||||
	while (*currlen >= *maxlen) {
 | 
						while (*currlen >= *maxlen) {
 | 
				
			||||||
	    if (*buffer == NULL) {
 | 
						    if (*buffer == NULL) {
 | 
				
			||||||
		assert(*sbuffer != NULL);
 | 
					 | 
				
			||||||
		if (*maxlen == 0)
 | 
							if (*maxlen == 0)
 | 
				
			||||||
		    *maxlen = 1024;
 | 
							    *maxlen = 1024;
 | 
				
			||||||
		*buffer = OPENSSL_malloc(*maxlen);
 | 
							*buffer = OPENSSL_malloc(*maxlen);
 | 
				
			||||||
		if (*currlen > 0)
 | 
							if (*currlen > 0) {
 | 
				
			||||||
 | 
							    assert(*sbuffer != NULL);
 | 
				
			||||||
		    memcpy(*buffer, *sbuffer, *currlen);
 | 
							    memcpy(*buffer, *sbuffer, *currlen);
 | 
				
			||||||
 | 
							}
 | 
				
			||||||
		*sbuffer = NULL;
 | 
							*sbuffer = NULL;
 | 
				
			||||||
	    } else {
 | 
						    } else {
 | 
				
			||||||
		*maxlen += 1024;
 | 
							*maxlen += 1024;
 | 
				
			||||||
@@ -761,7 +769,9 @@ int BIO_vprintf (BIO *bio, const char *format, va_list args)
 | 
				
			|||||||
	{
 | 
						{
 | 
				
			||||||
	int ret;
 | 
						int ret;
 | 
				
			||||||
	size_t retlen;
 | 
						size_t retlen;
 | 
				
			||||||
	MS_STATIC char hugebuf[1024*10];
 | 
						char hugebuf[1024*2];	/* Was previously 10k, which is unreasonable
 | 
				
			||||||
 | 
									   in small-stack environments, like threads
 | 
				
			||||||
 | 
									   or DOS programs. */
 | 
				
			||||||
	char *hugebufp = hugebuf;
 | 
						char *hugebufp = hugebuf;
 | 
				
			||||||
	size_t hugebufsize = sizeof(hugebuf);
 | 
						size_t hugebufsize = sizeof(hugebuf);
 | 
				
			||||||
	char *dynbuf = NULL;
 | 
						char *dynbuf = NULL;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -104,7 +104,7 @@ static int nbiof_new(BIO *bi)
 | 
				
			|||||||
	{
 | 
						{
 | 
				
			||||||
	NBIO_TEST *nt;
 | 
						NBIO_TEST *nt;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	nt=(NBIO_TEST *)OPENSSL_malloc(sizeof(NBIO_TEST));
 | 
						if (!(nt=(NBIO_TEST *)OPENSSL_malloc(sizeof(NBIO_TEST)))) return(0);
 | 
				
			||||||
	nt->lrn= -1;
 | 
						nt->lrn= -1;
 | 
				
			||||||
	nt->lwn= -1;
 | 
						nt->lwn= -1;
 | 
				
			||||||
	bi->ptr=(char *)nt;
 | 
						bi->ptr=(char *)nt;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -7,9 +7,18 @@
 | 
				
			|||||||
 * for which no specific BIO method is available.
 | 
					 * for which no specific BIO method is available.
 | 
				
			||||||
 * See ssl/ssltest.c for some hints on how this can be used. */
 | 
					 * See ssl/ssltest.c for some hints on how this can be used. */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					/* BIO_DEBUG implies BIO_PAIR_DEBUG */
 | 
				
			||||||
 | 
					#ifdef BIO_DEBUG
 | 
				
			||||||
 | 
					# ifndef BIO_PAIR_DEBUG
 | 
				
			||||||
 | 
					#  define BIO_PAIR_DEBUG
 | 
				
			||||||
 | 
					# endif
 | 
				
			||||||
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					/* disable assert() unless BIO_PAIR_DEBUG has been defined */
 | 
				
			||||||
#ifndef BIO_PAIR_DEBUG
 | 
					#ifndef BIO_PAIR_DEBUG
 | 
				
			||||||
# undef NDEBUG /* avoid conflicting definitions */
 | 
					# ifndef NDEBUG
 | 
				
			||||||
# define NDEBUG
 | 
					#  define NDEBUG
 | 
				
			||||||
 | 
					# endif
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#include <assert.h>
 | 
					#include <assert.h>
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -155,7 +155,7 @@ extern "C" {
 | 
				
			|||||||
#define BN_BYTES	4
 | 
					#define BN_BYTES	4
 | 
				
			||||||
#define BN_BITS2	32
 | 
					#define BN_BITS2	32
 | 
				
			||||||
#define BN_BITS4	16
 | 
					#define BN_BITS4	16
 | 
				
			||||||
#ifdef WIN32
 | 
					#ifdef _MSC_VER
 | 
				
			||||||
/* VC++ doesn't like the LL suffix */
 | 
					/* VC++ doesn't like the LL suffix */
 | 
				
			||||||
#define BN_MASK		(0xffffffffffffffffL)
 | 
					#define BN_MASK		(0xffffffffffffffffL)
 | 
				
			||||||
#else
 | 
					#else
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -190,10 +190,10 @@ int BN_div(BIGNUM *dv, BIGNUM *rm, const BIGNUM *num, const BIGNUM *divisor,
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
	/* First we normalise the numbers */
 | 
						/* First we normalise the numbers */
 | 
				
			||||||
	norm_shift=BN_BITS2-((BN_num_bits(divisor))%BN_BITS2);
 | 
						norm_shift=BN_BITS2-((BN_num_bits(divisor))%BN_BITS2);
 | 
				
			||||||
	BN_lshift(sdiv,divisor,norm_shift);
 | 
						if (!(BN_lshift(sdiv,divisor,norm_shift))) goto err;
 | 
				
			||||||
	sdiv->neg=0;
 | 
						sdiv->neg=0;
 | 
				
			||||||
	norm_shift+=BN_BITS2;
 | 
						norm_shift+=BN_BITS2;
 | 
				
			||||||
	BN_lshift(snum,num,norm_shift);
 | 
						if (!(BN_lshift(snum,num,norm_shift))) goto err;
 | 
				
			||||||
	snum->neg=0;
 | 
						snum->neg=0;
 | 
				
			||||||
	div_n=sdiv->top;
 | 
						div_n=sdiv->top;
 | 
				
			||||||
	num_n=snum->top;
 | 
						num_n=snum->top;
 | 
				
			||||||
@@ -315,7 +315,7 @@ int BN_div(BIGNUM *dv, BIGNUM *rm, const BIGNUM *num, const BIGNUM *divisor,
 | 
				
			|||||||
		tmp->top=j;
 | 
							tmp->top=j;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
		j=wnum.top;
 | 
							j=wnum.top;
 | 
				
			||||||
		BN_sub(&wnum,&wnum,tmp);
 | 
							if (!BN_sub(&wnum,&wnum,tmp)) goto err;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
		snum->top=snum->top+wnum.top-j;
 | 
							snum->top=snum->top+wnum.top-j;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -323,7 +323,7 @@ int BN_div(BIGNUM *dv, BIGNUM *rm, const BIGNUM *num, const BIGNUM *divisor,
 | 
				
			|||||||
			{
 | 
								{
 | 
				
			||||||
			q--;
 | 
								q--;
 | 
				
			||||||
			j=wnum.top;
 | 
								j=wnum.top;
 | 
				
			||||||
			BN_add(&wnum,&wnum,sdiv);
 | 
								if (!BN_add(&wnum,&wnum,sdiv)) goto err;
 | 
				
			||||||
			snum->top+=wnum.top-j;
 | 
								snum->top+=wnum.top-j;
 | 
				
			||||||
			}
 | 
								}
 | 
				
			||||||
		*(resp--)=q;
 | 
							*(resp--)=q;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -168,8 +168,8 @@ BIGNUM *BN_mod_inverse(BIGNUM *in, BIGNUM *a, const BIGNUM *n, BN_CTX *ctx)
 | 
				
			|||||||
		R=in;
 | 
							R=in;
 | 
				
			||||||
	if (R == NULL) goto err;
 | 
						if (R == NULL) goto err;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	BN_zero(X);
 | 
						if (!BN_zero(X)) goto err;
 | 
				
			||||||
	BN_one(Y);
 | 
						if (!BN_one(Y)) goto err;
 | 
				
			||||||
	if (BN_copy(A,a) == NULL) goto err;
 | 
						if (BN_copy(A,a) == NULL) goto err;
 | 
				
			||||||
	if (BN_copy(B,n) == NULL) goto err;
 | 
						if (BN_copy(B,n) == NULL) goto err;
 | 
				
			||||||
	sign=1;
 | 
						sign=1;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -224,7 +224,7 @@ int BN_from_montgomery(BIGNUM *ret, BIGNUM *a, BN_MONT_CTX *mont,
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
	if (!BN_mul(t1,t2,&mont->N,ctx)) goto err;
 | 
						if (!BN_mul(t1,t2,&mont->N,ctx)) goto err;
 | 
				
			||||||
	if (!BN_add(t2,a,t1)) goto err;
 | 
						if (!BN_add(t2,a,t1)) goto err;
 | 
				
			||||||
	BN_rshift(ret,t2,mont->ri);
 | 
						if (!BN_rshift(ret,t2,mont->ri)) goto err;
 | 
				
			||||||
#endif /* MONT_WORD */
 | 
					#endif /* MONT_WORD */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	if (BN_ucmp(ret, &(mont->N)) >= 0)
 | 
						if (BN_ucmp(ret, &(mont->N)) >= 0)
 | 
				
			||||||
@@ -284,8 +284,8 @@ int BN_MONT_CTX_set(BN_MONT_CTX *mont, const BIGNUM *mod, BN_CTX *ctx)
 | 
				
			|||||||
		BN_ULONG buf[2];
 | 
							BN_ULONG buf[2];
 | 
				
			||||||
 | 
					
 | 
				
			||||||
		mont->ri=(BN_num_bits(mod)+(BN_BITS2-1))/BN_BITS2*BN_BITS2;
 | 
							mont->ri=(BN_num_bits(mod)+(BN_BITS2-1))/BN_BITS2*BN_BITS2;
 | 
				
			||||||
		BN_zero(R);
 | 
							if (!(BN_zero(R))) goto err;
 | 
				
			||||||
		BN_set_bit(R,BN_BITS2);			/* R */
 | 
							if (!(BN_set_bit(R,BN_BITS2))) goto err;	/* R */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
		buf[0]=mod->d[0]; /* tmod = N mod word size */
 | 
							buf[0]=mod->d[0]; /* tmod = N mod word size */
 | 
				
			||||||
		buf[1]=0;
 | 
							buf[1]=0;
 | 
				
			||||||
@@ -296,36 +296,44 @@ int BN_MONT_CTX_set(BN_MONT_CTX *mont, const BIGNUM *mod, BN_CTX *ctx)
 | 
				
			|||||||
							/* Ri = R^-1 mod N*/
 | 
												/* Ri = R^-1 mod N*/
 | 
				
			||||||
		if ((BN_mod_inverse(&Ri,R,&tmod,ctx)) == NULL)
 | 
							if ((BN_mod_inverse(&Ri,R,&tmod,ctx)) == NULL)
 | 
				
			||||||
			goto err;
 | 
								goto err;
 | 
				
			||||||
		BN_lshift(&Ri,&Ri,BN_BITS2);		/* R*Ri */
 | 
							/* R*Ri */
 | 
				
			||||||
 | 
							if (!(BN_lshift(&Ri,&Ri,BN_BITS2))) goto err;
 | 
				
			||||||
		if (!BN_is_zero(&Ri))
 | 
							if (!BN_is_zero(&Ri))
 | 
				
			||||||
			BN_sub_word(&Ri,1);
 | 
								{
 | 
				
			||||||
 | 
							   	if (!BN_sub_word(&Ri,1)) goto err;
 | 
				
			||||||
 | 
								}
 | 
				
			||||||
		else /* if N mod word size == 1 */
 | 
							else /* if N mod word size == 1 */
 | 
				
			||||||
			BN_set_word(&Ri,BN_MASK2);  /* Ri-- (mod word size) */
 | 
							   	/* Ri-- (mod word size) */
 | 
				
			||||||
		BN_div(&Ri,NULL,&Ri,&tmod,ctx);	/* Ni = (R*Ri-1)/N,
 | 
								{
 | 
				
			||||||
		                                 * keep only least significant word: */
 | 
								if (!BN_set_word(&Ri,BN_MASK2)) goto err;
 | 
				
			||||||
 | 
								}
 | 
				
			||||||
 | 
							/* Ni = (R*Ri-1)/N, keep only least significant word: */
 | 
				
			||||||
 | 
					                if (!(BN_div(&Ri,NULL,&Ri,&tmod,ctx))) goto err;
 | 
				
			||||||
		mont->n0=Ri.d[0];
 | 
							mont->n0=Ri.d[0];
 | 
				
			||||||
		BN_free(&Ri);
 | 
							BN_free(&Ri);
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
#else /* !MONT_WORD */
 | 
					#else /* !MONT_WORD */
 | 
				
			||||||
		{ /* bignum version */
 | 
							{ /* bignum version */
 | 
				
			||||||
		mont->ri=BN_num_bits(mod);
 | 
							mont->ri=BN_num_bits(mod);
 | 
				
			||||||
		BN_zero(R);
 | 
							if (!(BN_zero(R))) goto err;
 | 
				
			||||||
		BN_set_bit(R,mont->ri);			/* R = 2^ri */
 | 
							/* R = 2^ri */
 | 
				
			||||||
 | 
							if (!(BN_set_bit(R,mont->ri))) goto err;
 | 
				
			||||||
							/* Ri = R^-1 mod N*/
 | 
												/* Ri = R^-1 mod N*/
 | 
				
			||||||
		if ((BN_mod_inverse(&Ri,R,mod,ctx)) == NULL)
 | 
							if ((BN_mod_inverse(&Ri,R,mod,ctx)) == NULL)
 | 
				
			||||||
			goto err;
 | 
								goto err;
 | 
				
			||||||
		BN_lshift(&Ri,&Ri,mont->ri);		/* R*Ri */
 | 
							/* R*Ri */
 | 
				
			||||||
		BN_sub_word(&Ri,1);
 | 
							if (!(BN_lshift(&Ri,&Ri,mont->ri))) goto err;
 | 
				
			||||||
 | 
							if (!(BN_sub_word(&Ri,1))) goto err;
 | 
				
			||||||
							/* Ni = (R*Ri-1) / N */
 | 
												/* Ni = (R*Ri-1) / N */
 | 
				
			||||||
		BN_div(&(mont->Ni),NULL,&Ri,mod,ctx);
 | 
							if (!(BN_div(&(mont->Ni),NULL,&Ri,mod,ctx))) goto err;
 | 
				
			||||||
		BN_free(&Ri);
 | 
							BN_free(&Ri);
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	/* setup RR for conversions */
 | 
						/* setup RR for conversions */
 | 
				
			||||||
	BN_zero(&(mont->RR));
 | 
						if (!(BN_zero(&(mont->RR)))) goto err;
 | 
				
			||||||
	BN_set_bit(&(mont->RR),mont->ri*2);
 | 
						if (!(BN_set_bit(&(mont->RR),mont->ri*2))) goto err;
 | 
				
			||||||
	BN_mod(&(mont->RR),&(mont->RR),&(mont->N),ctx);
 | 
						if (!(BN_mod(&(mont->RR),&(mont->RR),&(mont->N),ctx))) goto err;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	return(1);
 | 
						return(1);
 | 
				
			||||||
err:
 | 
					err:
 | 
				
			||||||
@@ -336,9 +344,9 @@ BN_MONT_CTX *BN_MONT_CTX_copy(BN_MONT_CTX *to, BN_MONT_CTX *from)
 | 
				
			|||||||
	{
 | 
						{
 | 
				
			||||||
	if (to == from) return(to);
 | 
						if (to == from) return(to);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	BN_copy(&(to->RR),&(from->RR));
 | 
						if (!(BN_copy(&(to->RR),&(from->RR)))) return NULL;
 | 
				
			||||||
	BN_copy(&(to->N),&(from->N));
 | 
						if (!(BN_copy(&(to->N),&(from->N)))) return NULL;
 | 
				
			||||||
	BN_copy(&(to->Ni),&(from->Ni));
 | 
						if (!(BN_copy(&(to->Ni),&(from->Ni)))) return NULL;
 | 
				
			||||||
	to->ri=from->ri;
 | 
						to->ri=from->ri;
 | 
				
			||||||
	to->n0=from->n0;
 | 
						to->n0=from->n0;
 | 
				
			||||||
	return(to);
 | 
						return(to);
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -634,7 +634,7 @@ int BN_mul(BIGNUM *r, BIGNUM *a, BIGNUM *b, BN_CTX *ctx)
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
	if ((al == 0) || (bl == 0))
 | 
						if ((al == 0) || (bl == 0))
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		BN_zero(r);
 | 
							if (!BN_zero(r)) goto err;
 | 
				
			||||||
		return(1);
 | 
							return(1);
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
	top=al+bl;
 | 
						top=al+bl;
 | 
				
			||||||
@@ -677,14 +677,14 @@ int BN_mul(BIGNUM *r, BIGNUM *a, BIGNUM *b, BN_CTX *ctx)
 | 
				
			|||||||
		{
 | 
							{
 | 
				
			||||||
		if (i == 1 && !BN_get_flags(b,BN_FLG_STATIC_DATA))
 | 
							if (i == 1 && !BN_get_flags(b,BN_FLG_STATIC_DATA))
 | 
				
			||||||
			{
 | 
								{
 | 
				
			||||||
			bn_wexpand(b,al);
 | 
								if (bn_wexpand(b,al) == NULL) goto err;
 | 
				
			||||||
			b->d[bl]=0;
 | 
								b->d[bl]=0;
 | 
				
			||||||
			bl++;
 | 
								bl++;
 | 
				
			||||||
			i--;
 | 
								i--;
 | 
				
			||||||
			}
 | 
								}
 | 
				
			||||||
		else if (i == -1 && !BN_get_flags(a,BN_FLG_STATIC_DATA))
 | 
							else if (i == -1 && !BN_get_flags(a,BN_FLG_STATIC_DATA))
 | 
				
			||||||
			{
 | 
								{
 | 
				
			||||||
			bn_wexpand(a,bl);
 | 
								if (bn_wexpand(a,bl) == NULL) goto err;
 | 
				
			||||||
			a->d[al]=0;
 | 
								a->d[al]=0;
 | 
				
			||||||
			al++;
 | 
								al++;
 | 
				
			||||||
			i++;
 | 
								i++;
 | 
				
			||||||
@@ -699,16 +699,16 @@ int BN_mul(BIGNUM *r, BIGNUM *a, BIGNUM *b, BN_CTX *ctx)
 | 
				
			|||||||
			t = BN_CTX_get(ctx);
 | 
								t = BN_CTX_get(ctx);
 | 
				
			||||||
			if (al == j) /* exact multiple */
 | 
								if (al == j) /* exact multiple */
 | 
				
			||||||
				{
 | 
									{
 | 
				
			||||||
				bn_wexpand(t,k*2);
 | 
									if (bn_wexpand(t,k*2) == NULL) goto err;
 | 
				
			||||||
				bn_wexpand(rr,k*2);
 | 
									if (bn_wexpand(rr,k*2) == NULL) goto err;
 | 
				
			||||||
				bn_mul_recursive(rr->d,a->d,b->d,al,t->d);
 | 
									bn_mul_recursive(rr->d,a->d,b->d,al,t->d);
 | 
				
			||||||
				}
 | 
									}
 | 
				
			||||||
			else
 | 
								else
 | 
				
			||||||
				{
 | 
									{
 | 
				
			||||||
				bn_wexpand(a,k);
 | 
									if (bn_wexpand(a,k) == NULL ) goto err;
 | 
				
			||||||
				bn_wexpand(b,k);
 | 
									if (bn_wexpand(b,k) == NULL ) goto err;
 | 
				
			||||||
				bn_wexpand(t,k*4);
 | 
									if (bn_wexpand(t,k*4) == NULL ) goto err;
 | 
				
			||||||
				bn_wexpand(rr,k*4);
 | 
									if (bn_wexpand(rr,k*4) == NULL ) goto err;
 | 
				
			||||||
				for (i=a->top; i<k; i++)
 | 
									for (i=a->top; i<k; i++)
 | 
				
			||||||
					a->d[i]=0;
 | 
										a->d[i]=0;
 | 
				
			||||||
				for (i=b->top; i<k; i++)
 | 
									for (i=b->top; i<k; i++)
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -5,7 +5,7 @@
 | 
				
			|||||||
DIR=	conf
 | 
					DIR=	conf
 | 
				
			||||||
TOP=	../..
 | 
					TOP=	../..
 | 
				
			||||||
CC=	cc
 | 
					CC=	cc
 | 
				
			||||||
INCLUDES= -I../../include
 | 
					INCLUDES= -I.. -I../../include
 | 
				
			||||||
CFLAG=-g
 | 
					CFLAG=-g
 | 
				
			||||||
INSTALL_PREFIX=
 | 
					INSTALL_PREFIX=
 | 
				
			||||||
OPENSSLDIR=     /usr/local/ssl
 | 
					OPENSSLDIR=     /usr/local/ssl
 | 
				
			||||||
@@ -88,10 +88,12 @@ conf_api.o: ../../include/openssl/opensslv.h ../../include/openssl/safestack.h
 | 
				
			|||||||
conf_api.o: ../../include/openssl/stack.h ../../include/openssl/symhacks.h
 | 
					conf_api.o: ../../include/openssl/stack.h ../../include/openssl/symhacks.h
 | 
				
			||||||
conf_def.o: ../../include/openssl/bio.h ../../include/openssl/buffer.h
 | 
					conf_def.o: ../../include/openssl/bio.h ../../include/openssl/buffer.h
 | 
				
			||||||
conf_def.o: ../../include/openssl/conf.h ../../include/openssl/conf_api.h
 | 
					conf_def.o: ../../include/openssl/conf.h ../../include/openssl/conf_api.h
 | 
				
			||||||
conf_def.o: ../../include/openssl/crypto.h ../../include/openssl/err.h
 | 
					conf_def.o: ../../include/openssl/crypto.h ../../include/openssl/e_os.h
 | 
				
			||||||
conf_def.o: ../../include/openssl/lhash.h ../../include/openssl/opensslv.h
 | 
					conf_def.o: ../../include/openssl/e_os2.h ../../include/openssl/err.h
 | 
				
			||||||
conf_def.o: ../../include/openssl/safestack.h ../../include/openssl/stack.h
 | 
					conf_def.o: ../../include/openssl/lhash.h ../../include/openssl/opensslconf.h
 | 
				
			||||||
conf_def.o: ../../include/openssl/symhacks.h conf_def.h
 | 
					conf_def.o: ../../include/openssl/opensslv.h ../../include/openssl/safestack.h
 | 
				
			||||||
 | 
					conf_def.o: ../../include/openssl/stack.h ../../include/openssl/symhacks.h
 | 
				
			||||||
 | 
					conf_def.o: ../cryptlib.h conf_def.h
 | 
				
			||||||
conf_err.o: ../../include/openssl/bio.h ../../include/openssl/conf.h
 | 
					conf_err.o: ../../include/openssl/bio.h ../../include/openssl/conf.h
 | 
				
			||||||
conf_err.o: ../../include/openssl/crypto.h ../../include/openssl/err.h
 | 
					conf_err.o: ../../include/openssl/crypto.h ../../include/openssl/err.h
 | 
				
			||||||
conf_err.o: ../../include/openssl/lhash.h ../../include/openssl/opensslv.h
 | 
					conf_err.o: ../../include/openssl/lhash.h ../../include/openssl/opensslv.h
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -67,6 +67,7 @@
 | 
				
			|||||||
#include "conf_def.h"
 | 
					#include "conf_def.h"
 | 
				
			||||||
#include <openssl/buffer.h>
 | 
					#include <openssl/buffer.h>
 | 
				
			||||||
#include <openssl/err.h>
 | 
					#include <openssl/err.h>
 | 
				
			||||||
 | 
					#include "cryptlib.h"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
static char *eat_ws(CONF *conf, char *p);
 | 
					static char *eat_ws(CONF *conf, char *p);
 | 
				
			||||||
static char *eat_alpha_numeric(CONF *conf, char *p);
 | 
					static char *eat_alpha_numeric(CONF *conf, char *p);
 | 
				
			||||||
@@ -180,12 +181,12 @@ static int def_destroy_data(CONF *conf)
 | 
				
			|||||||
static int def_load(CONF *conf, BIO *in, long *line)
 | 
					static int def_load(CONF *conf, BIO *in, long *line)
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
#define BUFSIZE	512
 | 
					#define BUFSIZE	512
 | 
				
			||||||
	char btmp[16];
 | 
					 | 
				
			||||||
	int bufnum=0,i,ii;
 | 
						int bufnum=0,i,ii;
 | 
				
			||||||
	BUF_MEM *buff=NULL;
 | 
						BUF_MEM *buff=NULL;
 | 
				
			||||||
	char *s,*p,*end;
 | 
						char *s,*p,*end;
 | 
				
			||||||
	int again,n;
 | 
						int again,n;
 | 
				
			||||||
	long eline=0;
 | 
						long eline=0;
 | 
				
			||||||
 | 
						char btmp[DECIMAL_SIZE(eline)+1];
 | 
				
			||||||
	CONF_VALUE *v=NULL,*tv;
 | 
						CONF_VALUE *v=NULL,*tv;
 | 
				
			||||||
	CONF_VALUE *sv=NULL;
 | 
						CONF_VALUE *sv=NULL;
 | 
				
			||||||
	char *section=NULL,*buf;
 | 
						char *section=NULL,*buf;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -491,3 +491,11 @@ BOOL WINAPI DLLEntryPoint(HINSTANCE hinstDLL, DWORD fdwReason,
 | 
				
			|||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					void OpenSSLDie(const char *file,int line,const char *assertion)
 | 
				
			||||||
 | 
					    {
 | 
				
			||||||
 | 
					    fprintf(stderr,"%s(%d): OpenSSL internal error, assertion failed: %s\n",
 | 
				
			||||||
 | 
						    file,line,assertion);
 | 
				
			||||||
 | 
					    abort();
 | 
				
			||||||
 | 
					    }
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -89,6 +89,10 @@ extern "C" {
 | 
				
			|||||||
#define X509_CERT_DIR_EVP        "SSL_CERT_DIR"
 | 
					#define X509_CERT_DIR_EVP        "SSL_CERT_DIR"
 | 
				
			||||||
#define X509_CERT_FILE_EVP       "SSL_CERT_FILE"
 | 
					#define X509_CERT_FILE_EVP       "SSL_CERT_FILE"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					/* size of string represenations */
 | 
				
			||||||
 | 
					#define DECIMAL_SIZE(type)     ((sizeof(type)*8+2)/3+1)
 | 
				
			||||||
 | 
					#define HEX_SIZE(type)         ((sizeof(type)*2)
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#ifdef  __cplusplus
 | 
					#ifdef  __cplusplus
 | 
				
			||||||
}
 | 
					}
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -626,6 +626,7 @@ $   WRITE SYS$OUTPUT "	",APPLICATION,".exe"
 | 
				
			|||||||
$!
 | 
					$!
 | 
				
			||||||
$! Link The Program, Check To See If We Need To Link With RSAREF Or Not.
 | 
					$! Link The Program, Check To See If We Need To Link With RSAREF Or Not.
 | 
				
			||||||
$!
 | 
					$!
 | 
				
			||||||
 | 
					$   ON ERROR THEN GOTO NEXT_APPLICATION
 | 
				
			||||||
$   IF (RSAREF.EQS."TRUE")
 | 
					$   IF (RSAREF.EQS."TRUE")
 | 
				
			||||||
$   THEN
 | 
					$   THEN
 | 
				
			||||||
$!
 | 
					$!
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -189,7 +189,7 @@ int des_enc_write(int fd,const void *buf,int len,des_key_schedule sched,
 | 
				
			|||||||
		  des_cblock *iv);
 | 
							  des_cblock *iv);
 | 
				
			||||||
char *des_fcrypt(const char *buf,const char *salt, char *ret);
 | 
					char *des_fcrypt(const char *buf,const char *salt, char *ret);
 | 
				
			||||||
char *des_crypt(const char *buf,const char *salt);
 | 
					char *des_crypt(const char *buf,const char *salt);
 | 
				
			||||||
#if !defined(PERL5) && !defined(__FreeBSD__) && !defined(NeXT)
 | 
					#if !defined(PERL5) && !defined(__FreeBSD__) && !defined(NeXT) && !defined(_UWIN)
 | 
				
			||||||
char *crypt(const char *buf,const char *salt);
 | 
					char *crypt(const char *buf,const char *salt);
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
void des_ofb_encrypt(const unsigned char *in,unsigned char *out,int numbits,
 | 
					void des_ofb_encrypt(const unsigned char *in,unsigned char *out,int numbits,
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -84,6 +84,7 @@ DSA_SIG *d2i_DSA_SIG(DSA_SIG **a, unsigned char **pp, long length)
 | 
				
			|||||||
	if ((ret->s=BN_bin2bn(bs->data,bs->length,ret->s)) == NULL)
 | 
						if ((ret->s=BN_bin2bn(bs->data,bs->length,ret->s)) == NULL)
 | 
				
			||||||
		goto err_bn;
 | 
							goto err_bn;
 | 
				
			||||||
	M_ASN1_BIT_STRING_free(bs);
 | 
						M_ASN1_BIT_STRING_free(bs);
 | 
				
			||||||
 | 
						bs = NULL;
 | 
				
			||||||
	M_ASN1_D2I_Finish_2(a);
 | 
						M_ASN1_D2I_Finish_2(a);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
err_bn:
 | 
					err_bn:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -112,7 +112,7 @@ DSO_METHOD *DSO_METHOD_dlfcn(void)
 | 
				
			|||||||
 * as we don't have autoconf yet, I'm implementing a hack that could
 | 
					 * as we don't have autoconf yet, I'm implementing a hack that could
 | 
				
			||||||
 * be hacked further relatively easily to deal with cases as we find
 | 
					 * be hacked further relatively easily to deal with cases as we find
 | 
				
			||||||
 * them. Initially this is to cope with OpenBSD. */
 | 
					 * them. Initially this is to cope with OpenBSD. */
 | 
				
			||||||
#ifdef __OpenBSD__
 | 
					#if defined(__OpenBSD__) || defined(__NetBSD__)
 | 
				
			||||||
#	ifdef DL_LAZY
 | 
					#	ifdef DL_LAZY
 | 
				
			||||||
#		define DLOPEN_FLAG DL_LAZY
 | 
					#		define DLOPEN_FLAG DL_LAZY
 | 
				
			||||||
#	else
 | 
					#	else
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -211,7 +211,7 @@ ascii2ebcdic(void *dest, const void *srce, size_t count)
 | 
				
			|||||||
}
 | 
					}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#else /*CHARSET_EBCDIC*/
 | 
					#else /*CHARSET_EBCDIC*/
 | 
				
			||||||
#if defined(PEDANTIC) || defined(VMS) || defined(__VMS)
 | 
					#if defined(PEDANTIC) || defined(VMS) || defined(__VMS) || defined(_DARWIN)
 | 
				
			||||||
static void *dummy=&dummy;
 | 
					static void *dummy=&dummy;
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -56,11 +56,9 @@
 | 
				
			|||||||
 *
 | 
					 *
 | 
				
			||||||
 */
 | 
					 */
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#define _XOPEN_SOURCE_EXTENDED	/* to get a proper declaration of strdup() */
 | 
					 | 
				
			||||||
#define _XOPEN_SOURCE 500
 | 
					 | 
				
			||||||
 | 
					 | 
				
			||||||
#include <stdio.h>
 | 
					#include <stdio.h>
 | 
				
			||||||
#include <string.h>
 | 
					#include <string.h>
 | 
				
			||||||
 | 
					#include <openssl/buffer.h>
 | 
				
			||||||
#include <openssl/engine.h>
 | 
					#include <openssl/engine.h>
 | 
				
			||||||
#include <openssl/err.h>
 | 
					#include <openssl/err.h>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -198,9 +196,9 @@ int main(int argc, char *argv[])
 | 
				
			|||||||
	for(loop = 0; loop < 512; loop++)
 | 
						for(loop = 0; loop < 512; loop++)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
		sprintf(buf, "id%i", loop);
 | 
							sprintf(buf, "id%i", loop);
 | 
				
			||||||
		id = strdup(buf);
 | 
							id = BUF_strdup(buf);
 | 
				
			||||||
		sprintf(buf, "Fake engine type %i", loop);
 | 
							sprintf(buf, "Fake engine type %i", loop);
 | 
				
			||||||
		name = strdup(buf);
 | 
							name = BUF_strdup(buf);
 | 
				
			||||||
		if(((block[loop] = ENGINE_new()) == NULL) ||
 | 
							if(((block[loop] = ENGINE_new()) == NULL) ||
 | 
				
			||||||
				!ENGINE_set_id(block[loop], id) ||
 | 
									!ENGINE_set_id(block[loop], id) ||
 | 
				
			||||||
				!ENGINE_set_name(block[loop], name))
 | 
									!ENGINE_set_name(block[loop], name))
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -92,7 +92,7 @@ static int ubsec_rsa_mod_exp(BIGNUM *r0, BIGNUM *I, RSA *rsa);
 | 
				
			|||||||
static int ubsec_mod_exp_mont(BIGNUM *r, BIGNUM *a, const BIGNUM *p,
 | 
					static int ubsec_mod_exp_mont(BIGNUM *r, BIGNUM *a, const BIGNUM *p,
 | 
				
			||||||
		const BIGNUM *m, BN_CTX *ctx, BN_MONT_CTX *m_ctx);
 | 
							const BIGNUM *m, BN_CTX *ctx, BN_MONT_CTX *m_ctx);
 | 
				
			||||||
#ifndef OPENSSL_NO_DSA
 | 
					#ifndef OPENSSL_NO_DSA
 | 
				
			||||||
#if NOT_USED
 | 
					#ifdef NOT_USED
 | 
				
			||||||
static int ubsec_dsa_mod_exp(DSA *dsa, BIGNUM *rr, BIGNUM *a1,
 | 
					static int ubsec_dsa_mod_exp(DSA *dsa, BIGNUM *rr, BIGNUM *a1,
 | 
				
			||||||
		BIGNUM *p1, BIGNUM *a2, BIGNUM *p2, BIGNUM *m,
 | 
							BIGNUM *p1, BIGNUM *a2, BIGNUM *p2, BIGNUM *m,
 | 
				
			||||||
		BN_CTX *ctx, BN_MONT_CTX *in_mont);
 | 
							BN_CTX *ctx, BN_MONT_CTX *in_mont);
 | 
				
			||||||
@@ -112,7 +112,7 @@ static int ubsec_dh_compute_key(unsigned char *key,BIGNUM *pub_key,DH *dh);
 | 
				
			|||||||
static int ubsec_dh_generate_key(DH *dh);
 | 
					static int ubsec_dh_generate_key(DH *dh);
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#if NOT_USED
 | 
					#ifdef NOT_USED
 | 
				
			||||||
static int ubsec_rand_bytes(unsigned char *buf, int num);
 | 
					static int ubsec_rand_bytes(unsigned char *buf, int num);
 | 
				
			||||||
static int ubsec_rand_status(void);
 | 
					static int ubsec_rand_status(void);
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
@@ -657,7 +657,7 @@ err:
 | 
				
			|||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#ifndef OPENSSL_NO_DSA
 | 
					#ifndef OPENSSL_NO_DSA
 | 
				
			||||||
#if NOT_USED
 | 
					#ifdef NOT_USED
 | 
				
			||||||
static int ubsec_dsa_mod_exp(DSA *dsa, BIGNUM *rr, BIGNUM *a1,
 | 
					static int ubsec_dsa_mod_exp(DSA *dsa, BIGNUM *rr, BIGNUM *a1,
 | 
				
			||||||
		BIGNUM *p1, BIGNUM *a2, BIGNUM *p2, BIGNUM *m,
 | 
							BIGNUM *p1, BIGNUM *a2, BIGNUM *p2, BIGNUM *m,
 | 
				
			||||||
		BN_CTX *ctx, BN_MONT_CTX *in_mont)
 | 
							BN_CTX *ctx, BN_MONT_CTX *in_mont)
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -196,6 +196,19 @@ typedef SW_U32 SW_CONTEXT_HANDLE; /* opaque context handle */
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
/* Now the OpenSSL bits, these function types are the for the function
 | 
					/* Now the OpenSSL bits, these function types are the for the function
 | 
				
			||||||
 * pointers that will bound into the Rainbow shared libraries. */
 | 
					 * pointers that will bound into the Rainbow shared libraries. */
 | 
				
			||||||
 | 
					/********** Peng's modification begins **********/
 | 
				
			||||||
 | 
					#if defined(WIN32) /* For WIN32 platform */
 | 
				
			||||||
 | 
					typedef SW_STATUS _stdcall t_swAcquireAccContext(SW_CONTEXT_HANDLE *hac);
 | 
				
			||||||
 | 
					typedef SW_STATUS _stdcall t_swAttachKeyParam(SW_CONTEXT_HANDLE hac,
 | 
				
			||||||
 | 
									SW_PARAM *key_params);
 | 
				
			||||||
 | 
					typedef SW_STATUS _stdcall t_swSimpleRequest(SW_CONTEXT_HANDLE hac,
 | 
				
			||||||
 | 
									SW_COMMAND_CODE cmd,
 | 
				
			||||||
 | 
									SW_LARGENUMBER pin[],
 | 
				
			||||||
 | 
									SW_U32 pin_count,
 | 
				
			||||||
 | 
									SW_LARGENUMBER pout[],
 | 
				
			||||||
 | 
									SW_U32 pout_count);
 | 
				
			||||||
 | 
					typedef SW_STATUS _stdcall t_swReleaseAccContext(SW_CONTEXT_HANDLE hac);
 | 
				
			||||||
 | 
					#else /* For other platforms */
 | 
				
			||||||
typedef SW_STATUS t_swAcquireAccContext(SW_CONTEXT_HANDLE *hac);
 | 
					typedef SW_STATUS t_swAcquireAccContext(SW_CONTEXT_HANDLE *hac);
 | 
				
			||||||
typedef SW_STATUS t_swAttachKeyParam(SW_CONTEXT_HANDLE hac,
 | 
					typedef SW_STATUS t_swAttachKeyParam(SW_CONTEXT_HANDLE hac,
 | 
				
			||||||
				SW_PARAM *key_params);
 | 
									SW_PARAM *key_params);
 | 
				
			||||||
@@ -206,6 +219,9 @@ typedef SW_STATUS t_swSimpleRequest(SW_CONTEXT_HANDLE hac,
 | 
				
			|||||||
				SW_LARGENUMBER pout[],
 | 
									SW_LARGENUMBER pout[],
 | 
				
			||||||
				SW_U32 pout_count);
 | 
									SW_U32 pout_count);
 | 
				
			||||||
typedef SW_STATUS t_swReleaseAccContext(SW_CONTEXT_HANDLE hac);
 | 
					typedef SW_STATUS t_swReleaseAccContext(SW_CONTEXT_HANDLE hac);
 | 
				
			||||||
 | 
					#endif
 | 
				
			||||||
 | 
					/********** Peng's modification ends **********/
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#ifdef __cplusplus
 | 
					#ifdef __cplusplus
 | 
				
			||||||
}
 | 
					}
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -106,8 +106,8 @@ static int enc_new(BIO *bi)
 | 
				
			|||||||
	BIO_ENC_CTX *ctx;
 | 
						BIO_ENC_CTX *ctx;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	ctx=(BIO_ENC_CTX *)OPENSSL_malloc(sizeof(BIO_ENC_CTX));
 | 
						ctx=(BIO_ENC_CTX *)OPENSSL_malloc(sizeof(BIO_ENC_CTX));
 | 
				
			||||||
	EVP_CIPHER_CTX_init(&ctx->cipher);
 | 
					 | 
				
			||||||
	if (ctx == NULL) return(0);
 | 
						if (ctx == NULL) return(0);
 | 
				
			||||||
 | 
						EVP_CIPHER_CTX_init(&ctx->cipher);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	ctx->buf_len=0;
 | 
						ctx->buf_len=0;
 | 
				
			||||||
	ctx->buf_off=0;
 | 
						ctx->buf_off=0;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -64,6 +64,10 @@
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
void OpenSSL_add_all_ciphers(void)
 | 
					void OpenSSL_add_all_ciphers(void)
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
 | 
						static int done=0;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
						if (done) return;
 | 
				
			||||||
 | 
						done=1;
 | 
				
			||||||
#ifndef NO_DES
 | 
					#ifndef NO_DES
 | 
				
			||||||
	EVP_add_cipher(EVP_des_cfb());
 | 
						EVP_add_cipher(EVP_des_cfb());
 | 
				
			||||||
	EVP_add_cipher(EVP_des_ede_cfb());
 | 
						EVP_add_cipher(EVP_des_ede_cfb());
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -64,6 +64,10 @@
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
void OpenSSL_add_all_digests(void)
 | 
					void OpenSSL_add_all_digests(void)
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
 | 
						static int done=0;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
						if (done) return;
 | 
				
			||||||
 | 
						done=1;
 | 
				
			||||||
#ifndef NO_MD2
 | 
					#ifndef NO_MD2
 | 
				
			||||||
	EVP_add_digest(EVP_md2());
 | 
						EVP_add_digest(EVP_md2());
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -228,7 +228,7 @@ typedef struct evp_pkey_md_st
 | 
				
			|||||||
			EVP_rsa_octet_string(),EVP_mdc2())
 | 
								EVP_rsa_octet_string(),EVP_mdc2())
 | 
				
			||||||
#define EVP_dsa_sha() \
 | 
					#define EVP_dsa_sha() \
 | 
				
			||||||
		EVP_PKEY_MD_add(NID_dsaWithSHA,\
 | 
							EVP_PKEY_MD_add(NID_dsaWithSHA,\
 | 
				
			||||||
			EVP_dsa(),EVP_mdc2())
 | 
								EVP_dsa(),EVP_sha())
 | 
				
			||||||
#define EVP_dsa_sha1() \
 | 
					#define EVP_dsa_sha1() \
 | 
				
			||||||
		EVP_PKEY_MD_add(NID_dsaWithSHA1,\
 | 
							EVP_PKEY_MD_add(NID_dsaWithSHA1,\
 | 
				
			||||||
			EVP_dsa(),EVP_sha1())
 | 
								EVP_dsa(),EVP_sha1())
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -226,6 +226,9 @@ void *CRYPTO_realloc(void *str, int num, const char *file, int line)
 | 
				
			|||||||
	{
 | 
						{
 | 
				
			||||||
	void *ret = NULL;
 | 
						void *ret = NULL;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
						if (str == NULL)
 | 
				
			||||||
 | 
							return CRYPTO_malloc(num, file, line);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	if (realloc_debug_func != NULL)
 | 
						if (realloc_debug_func != NULL)
 | 
				
			||||||
		realloc_debug_func(str, NULL, num, file, line, 0);
 | 
							realloc_debug_func(str, NULL, num, file, line, 0);
 | 
				
			||||||
	ret = realloc_func(str,num);
 | 
						ret = realloc_func(str,num);
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -61,6 +61,8 @@ int OBJ_NAME_new_index(unsigned long (*hash_func)(const char *),
 | 
				
			|||||||
		{
 | 
							{
 | 
				
			||||||
		MemCheck_off();
 | 
							MemCheck_off();
 | 
				
			||||||
		name_funcs = OPENSSL_malloc(sizeof(NAME_FUNCS));
 | 
							name_funcs = OPENSSL_malloc(sizeof(NAME_FUNCS));
 | 
				
			||||||
 | 
							MemCheck_on();
 | 
				
			||||||
 | 
							if (!name_funcs) return(0);
 | 
				
			||||||
		name_funcs->hash_func = lh_strhash;
 | 
							name_funcs->hash_func = lh_strhash;
 | 
				
			||||||
		name_funcs->cmp_func = (int (*)())strcmp;
 | 
							name_funcs->cmp_func = (int (*)())strcmp;
 | 
				
			||||||
		name_funcs->free_func = 0; /* NULL is often declared to
 | 
							name_funcs->free_func = 0; /* NULL is often declared to
 | 
				
			||||||
@@ -68,6 +70,7 @@ int OBJ_NAME_new_index(unsigned long (*hash_func)(const char *),
 | 
				
			|||||||
					    * to Compaq C is not really
 | 
										    * to Compaq C is not really
 | 
				
			||||||
					    * compatible with a function
 | 
										    * compatible with a function
 | 
				
			||||||
					    * pointer.  -- Richard Levitte*/
 | 
										    * pointer.  -- Richard Levitte*/
 | 
				
			||||||
 | 
							MemCheck_off();
 | 
				
			||||||
		sk_NAME_FUNCS_push(name_funcs_stack,name_funcs);
 | 
							sk_NAME_FUNCS_push(name_funcs_stack,name_funcs);
 | 
				
			||||||
		MemCheck_on();
 | 
							MemCheck_on();
 | 
				
			||||||
		}
 | 
							}
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -228,7 +228,7 @@ int OBJ_add_object(ASN1_OBJECT *obj)
 | 
				
			|||||||
	if (added == NULL)
 | 
						if (added == NULL)
 | 
				
			||||||
		if (!init_added()) return(0);
 | 
							if (!init_added()) return(0);
 | 
				
			||||||
	if ((o=OBJ_dup(obj)) == NULL) goto err;
 | 
						if ((o=OBJ_dup(obj)) == NULL) goto err;
 | 
				
			||||||
	ao[ADDED_NID]=(ADDED_OBJ *)OPENSSL_malloc(sizeof(ADDED_OBJ));
 | 
						if (!(ao[ADDED_NID]=(ADDED_OBJ *)OPENSSL_malloc(sizeof(ADDED_OBJ)))) goto err;
 | 
				
			||||||
	if ((o->length != 0) && (obj->data != NULL))
 | 
						if ((o->length != 0) && (obj->data != NULL))
 | 
				
			||||||
		ao[ADDED_DATA]=(ADDED_OBJ *)OPENSSL_malloc(sizeof(ADDED_OBJ));
 | 
							ao[ADDED_DATA]=(ADDED_OBJ *)OPENSSL_malloc(sizeof(ADDED_OBJ));
 | 
				
			||||||
	if (o->sn != NULL)
 | 
						if (o->sn != NULL)
 | 
				
			||||||
@@ -428,7 +428,7 @@ int OBJ_obj2txt(char *buf, int buf_len, ASN1_OBJECT *a, int no_name)
 | 
				
			|||||||
	unsigned long l;
 | 
						unsigned long l;
 | 
				
			||||||
	unsigned char *p;
 | 
						unsigned char *p;
 | 
				
			||||||
	const char *s;
 | 
						const char *s;
 | 
				
			||||||
	char tbuf[32];
 | 
						char tbuf[DECIMAL_SIZE(i)+DECIMAL_SIZE(l)+2];
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	if (buf_len <= 0) return(0);
 | 
						if (buf_len <= 0) return(0);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -437,8 +437,7 @@ int OBJ_obj2txt(char *buf, int buf_len, ASN1_OBJECT *a, int no_name)
 | 
				
			|||||||
		return(0);
 | 
							return(0);
 | 
				
			||||||
	}
 | 
						}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	nid=OBJ_obj2nid(a);
 | 
						if (no_name || (nid=OBJ_obj2nid(a)) == NID_undef) {
 | 
				
			||||||
	if ((nid == NID_undef) || no_name) {
 | 
					 | 
				
			||||||
		len=a->length;
 | 
							len=a->length;
 | 
				
			||||||
		p=a->data;
 | 
							p=a->data;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -25,8 +25,8 @@
 | 
				
			|||||||
 * (Prior to 0.9.5a beta1, a different scheme was used: MMNNFFRBB for
 | 
					 * (Prior to 0.9.5a beta1, a different scheme was used: MMNNFFRBB for
 | 
				
			||||||
 *  major minor fix final patch/beta)
 | 
					 *  major minor fix final patch/beta)
 | 
				
			||||||
 */
 | 
					 */
 | 
				
			||||||
#define OPENSSL_VERSION_NUMBER	0x00906041L
 | 
					#define OPENSSL_VERSION_NUMBER	0x0090607fL
 | 
				
			||||||
#define OPENSSL_VERSION_TEXT	"OpenSSL 0.9.6d-beta1 [engine] 17 Apr 2002"
 | 
					#define OPENSSL_VERSION_TEXT	"OpenSSL 0.9.6g [engine] 9 Aug 2002"
 | 
				
			||||||
#define OPENSSL_VERSION_PTEXT	" part of " OPENSSL_VERSION_TEXT
 | 
					#define OPENSSL_VERSION_PTEXT	" part of " OPENSSL_VERSION_TEXT
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -61,7 +61,9 @@
 | 
				
			|||||||
extern "C" {
 | 
					extern "C" {
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					#ifndef HEADER_PEM_H
 | 
				
			||||||
void ERR_load_PEM_strings(void);
 | 
					void ERR_load_PEM_strings(void);
 | 
				
			||||||
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#ifdef __cplusplus
 | 
					#ifdef __cplusplus
 | 
				
			||||||
}
 | 
					}
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -346,7 +346,7 @@ int PEM_X509_INFO_write_bio(BIO *bp, X509_INFO *xi, EVP_CIPHER *enc,
 | 
				
			|||||||
		}
 | 
							}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	/* if we have a certificate then write it out now */
 | 
						/* if we have a certificate then write it out now */
 | 
				
			||||||
	if ((xi->x509 != NULL) || (PEM_write_bio_X509(bp,xi->x509) <= 0))
 | 
						if ((xi->x509 != NULL) && (PEM_write_bio_X509(bp,xi->x509) <= 0))
 | 
				
			||||||
		goto err;
 | 
							goto err;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	/* we are ignoring anything else that is loaded into the X509_INFO
 | 
						/* we are ignoring anything else that is loaded into the X509_INFO
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -258,6 +258,7 @@ char *PEM_ASN1_read_bio(char *(*d2i)(), const char *name, BIO *bp, char **x,
 | 
				
			|||||||
			PKCS8_PRIV_KEY_INFO *p8inf;
 | 
								PKCS8_PRIV_KEY_INFO *p8inf;
 | 
				
			||||||
			p8inf=d2i_PKCS8_PRIV_KEY_INFO(
 | 
								p8inf=d2i_PKCS8_PRIV_KEY_INFO(
 | 
				
			||||||
					(PKCS8_PRIV_KEY_INFO **) x, &p, len);
 | 
										(PKCS8_PRIV_KEY_INFO **) x, &p, len);
 | 
				
			||||||
 | 
								if(!p8inf) goto p8err;
 | 
				
			||||||
			ret = (char *)EVP_PKCS82PKEY(p8inf);
 | 
								ret = (char *)EVP_PKCS82PKEY(p8inf);
 | 
				
			||||||
			PKCS8_PRIV_KEY_INFO_free(p8inf);
 | 
								PKCS8_PRIV_KEY_INFO_free(p8inf);
 | 
				
			||||||
		} else if (strcmp(nm,PEM_STRING_PKCS8) == 0) {
 | 
							} else if (strcmp(nm,PEM_STRING_PKCS8) == 0) {
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -209,7 +209,7 @@ sub using486
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
sub main'file
 | 
					sub main'file
 | 
				
			||||||
	{
 | 
						{
 | 
				
			||||||
	push(@out, "segment .text\n");
 | 
						push(@out, "segment .text use32\n");
 | 
				
			||||||
	}
 | 
						}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
sub main'function_begin
 | 
					sub main'function_begin
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -141,8 +141,8 @@ union {
 | 
				
			|||||||
#define PKCS12_ERROR	0
 | 
					#define PKCS12_ERROR	0
 | 
				
			||||||
#define PKCS12_OK	1
 | 
					#define PKCS12_OK	1
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#define M_PKCS12_bag_type(bag) OBJ_obj2nid(bag->type)
 | 
					#define M_PKCS12_bag_type(bg) OBJ_obj2nid((bg)->type)
 | 
				
			||||||
#define M_PKCS12_cert_bag_type(bag) OBJ_obj2nid(bag->value.bag->type)
 | 
					#define M_PKCS12_cert_bag_type(bg) OBJ_obj2nid((bg)->value.bag->type)
 | 
				
			||||||
#define M_PKCS12_crl_bag_type M_PKCS12_cert_bag_type
 | 
					#define M_PKCS12_crl_bag_type M_PKCS12_cert_bag_type
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#define M_PKCS12_x5092certbag(x509) \
 | 
					#define M_PKCS12_x5092certbag(x509) \
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -621,7 +621,7 @@ int PKCS7_dataFinal(PKCS7 *p7, BIO *bio)
 | 
				
			|||||||
				x=i2d_ASN1_SET_OF_X509_ATTRIBUTE(sk,NULL,
 | 
									x=i2d_ASN1_SET_OF_X509_ATTRIBUTE(sk,NULL,
 | 
				
			||||||
					   i2d_X509_ATTRIBUTE,
 | 
										   i2d_X509_ATTRIBUTE,
 | 
				
			||||||
					   V_ASN1_SET,V_ASN1_UNIVERSAL,IS_SET);
 | 
										   V_ASN1_SET,V_ASN1_UNIVERSAL,IS_SET);
 | 
				
			||||||
				pp=(unsigned char *)OPENSSL_malloc(x);
 | 
									if (!(pp=(unsigned char *)OPENSSL_malloc(x))) goto err;
 | 
				
			||||||
				p=pp;
 | 
									p=pp;
 | 
				
			||||||
				i2d_ASN1_SET_OF_X509_ATTRIBUTE(sk,&p,
 | 
									i2d_ASN1_SET_OF_X509_ATTRIBUTE(sk,&p,
 | 
				
			||||||
				           i2d_X509_ATTRIBUTE,
 | 
									           i2d_X509_ATTRIBUTE,
 | 
				
			||||||
@@ -817,7 +817,7 @@ for (ii=0; ii<md_len; ii++) printf("%02X",md_dat[ii]); printf(" calc\n");
 | 
				
			|||||||
		 */
 | 
							 */
 | 
				
			||||||
		i=i2d_ASN1_SET_OF_X509_ATTRIBUTE(sk,NULL,i2d_X509_ATTRIBUTE,
 | 
							i=i2d_ASN1_SET_OF_X509_ATTRIBUTE(sk,NULL,i2d_X509_ATTRIBUTE,
 | 
				
			||||||
			V_ASN1_SET,V_ASN1_UNIVERSAL, IS_SEQUENCE);
 | 
								V_ASN1_SET,V_ASN1_UNIVERSAL, IS_SEQUENCE);
 | 
				
			||||||
		pp=OPENSSL_malloc(i);
 | 
							if (!(pp=OPENSSL_malloc(i))) goto err;
 | 
				
			||||||
		p=pp;
 | 
							p=pp;
 | 
				
			||||||
		i2d_ASN1_SET_OF_X509_ATTRIBUTE(sk,&p,i2d_X509_ATTRIBUTE,
 | 
							i2d_ASN1_SET_OF_X509_ATTRIBUTE(sk,&p,i2d_X509_ATTRIBUTE,
 | 
				
			||||||
			V_ASN1_SET,V_ASN1_UNIVERSAL, IS_SEQUENCE);
 | 
								V_ASN1_SET,V_ASN1_UNIVERSAL, IS_SEQUENCE);
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -179,10 +179,11 @@ char *argv[];
 | 
				
			|||||||
		{
 | 
							{
 | 
				
			||||||
		ASN1_UTCTIME *tm;
 | 
							ASN1_UTCTIME *tm;
 | 
				
			||||||
		char *str1,*str2;
 | 
							char *str1,*str2;
 | 
				
			||||||
 | 
							int rc;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
		si=sk_PKCS7_SIGNER_INFO_value(sk,i);
 | 
							si=sk_PKCS7_SIGNER_INFO_value(sk,i);
 | 
				
			||||||
		i=PKCS7_dataVerify(cert_store,&cert_ctx,p7bio,p7,si);
 | 
							rc=PKCS7_dataVerify(cert_store,&cert_ctx,p7bio,p7,si);
 | 
				
			||||||
		if (i <= 0)
 | 
							if (rc <= 0)
 | 
				
			||||||
			goto err;
 | 
								goto err;
 | 
				
			||||||
		printf("signer info\n");
 | 
							printf("signer info\n");
 | 
				
			||||||
		if ((tm=get_signed_time(si)) != NULL)
 | 
							if ((tm=get_signed_time(si)) != NULL)
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -486,11 +486,11 @@ static int RSA_eay_mod_exp(BIGNUM *r0, BIGNUM *I, RSA *rsa)
 | 
				
			|||||||
	int ret=0;
 | 
						int ret=0;
 | 
				
			||||||
	BN_CTX *ctx;
 | 
						BN_CTX *ctx;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	meth = ENGINE_get_RSA(rsa->engine);
 | 
					 | 
				
			||||||
	if ((ctx=BN_CTX_new()) == NULL) goto err;
 | 
					 | 
				
			||||||
	BN_init(&m1);
 | 
						BN_init(&m1);
 | 
				
			||||||
	BN_init(&r1);
 | 
						BN_init(&r1);
 | 
				
			||||||
	BN_init(&vrfy);
 | 
						BN_init(&vrfy);
 | 
				
			||||||
 | 
						meth = ENGINE_get_RSA(rsa->engine);
 | 
				
			||||||
 | 
						if ((ctx=BN_CTX_new()) == NULL) goto err;
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	if (rsa->flags & RSA_FLAG_CACHE_PRIVATE)
 | 
						if (rsa->flags & RSA_FLAG_CACHE_PRIVATE)
 | 
				
			||||||
		{
 | 
							{
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -122,7 +122,7 @@ TXT_DB *TXT_DB_read(BIO *in, int num)
 | 
				
			|||||||
		else
 | 
							else
 | 
				
			||||||
			{
 | 
								{
 | 
				
			||||||
			buf->data[offset-1]='\0'; /* blat the '\n' */
 | 
								buf->data[offset-1]='\0'; /* blat the '\n' */
 | 
				
			||||||
			p=(char *)OPENSSL_malloc(add+offset);
 | 
								if (!(p=(char *)OPENSSL_malloc(add+offset))) goto err;
 | 
				
			||||||
			offset=0;
 | 
								offset=0;
 | 
				
			||||||
			}
 | 
								}
 | 
				
			||||||
		pp=(char **)p;
 | 
							pp=(char **)p;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -82,7 +82,7 @@ static char *i2s_ASN1_IA5STRING(X509V3_EXT_METHOD *method,
 | 
				
			|||||||
{
 | 
					{
 | 
				
			||||||
	char *tmp;
 | 
						char *tmp;
 | 
				
			||||||
	if(!ia5 || !ia5->length) return NULL;
 | 
						if(!ia5 || !ia5->length) return NULL;
 | 
				
			||||||
	tmp = OPENSSL_malloc(ia5->length + 1);
 | 
						if (!(tmp = OPENSSL_malloc(ia5->length + 1))) return NULL;
 | 
				
			||||||
	memcpy(tmp, ia5->data, ia5->length);
 | 
						memcpy(tmp, ia5->data, ia5->length);
 | 
				
			||||||
	tmp[ia5->length] = 0;
 | 
						tmp[ia5->length] = 0;
 | 
				
			||||||
	return tmp;
 | 
						return tmp;
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -33,7 +33,7 @@ EVP_PKEY * ReadPublicKey(const char *certfile)
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
  x509 = (X509 *)PEM_ASN1_read ((char *(*)())d2i_X509,
 | 
					  x509 = (X509 *)PEM_ASN1_read ((char *(*)())d2i_X509,
 | 
				
			||||||
                                   PEM_STRING_X509,
 | 
					                                   PEM_STRING_X509,
 | 
				
			||||||
                                   fp, NULL, NULL);
 | 
					                                   fp, NULL, NULL, NULL);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  if (x509 == NULL) 
 | 
					  if (x509 == NULL) 
 | 
				
			||||||
  {  
 | 
					  {  
 | 
				
			||||||
@@ -64,7 +64,7 @@ EVP_PKEY *ReadPrivateKey(const char *keyfile)
 | 
				
			|||||||
	pkey = (EVP_PKEY*)PEM_ASN1_read ((char *(*)())d2i_PrivateKey,
 | 
						pkey = (EVP_PKEY*)PEM_ASN1_read ((char *(*)())d2i_PrivateKey,
 | 
				
			||||||
                              PEM_STRING_EVP_PKEY,
 | 
					                              PEM_STRING_EVP_PKEY,
 | 
				
			||||||
                              fp,
 | 
					                              fp,
 | 
				
			||||||
                              NULL, NULL);
 | 
					                              NULL, NULL, NULL);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
	fclose (fp);
 | 
						fclose (fp);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -6,12 +6,13 @@ crl2pkcs7 - Create a PKCS#7 structure from a CRL and certificates.
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
=head1 SYNOPSIS
 | 
					=head1 SYNOPSIS
 | 
				
			||||||
 | 
					
 | 
				
			||||||
B<openssl> B<pkcs7>
 | 
					B<openssl> B<crl2pkcs7>
 | 
				
			||||||
[B<-inform PEM|DER>]
 | 
					[B<-inform PEM|DER>]
 | 
				
			||||||
[B<-outform PEM|DER>]
 | 
					[B<-outform PEM|DER>]
 | 
				
			||||||
[B<-in filename>]
 | 
					[B<-in filename>]
 | 
				
			||||||
[B<-out filename>]
 | 
					[B<-out filename>]
 | 
				
			||||||
[B<-print_certs>]
 | 
					[B<-certfile filename>]
 | 
				
			||||||
 | 
					[B<-nocrl>]
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 DESCRIPTION
 | 
					=head1 DESCRIPTION
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -21,7 +21,6 @@ B<openssl> B<smime>
 | 
				
			|||||||
[B<-certfile file>]
 | 
					[B<-certfile file>]
 | 
				
			||||||
[B<-signer file>]
 | 
					[B<-signer file>]
 | 
				
			||||||
[B<-recip  file>]
 | 
					[B<-recip  file>]
 | 
				
			||||||
[B<-in file>]
 | 
					 | 
				
			||||||
[B<-inform SMIME|PEM|DER>]
 | 
					[B<-inform SMIME|PEM|DER>]
 | 
				
			||||||
[B<-passin arg>]
 | 
					[B<-passin arg>]
 | 
				
			||||||
[B<-inkey file>]
 | 
					[B<-inkey file>]
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -14,7 +14,7 @@ BN_rand, BN_pseudo_rand - generate pseudo-random number
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
 int BN_rand_range(BIGNUM *rnd, BIGNUM *range);
 | 
					 int BN_rand_range(BIGNUM *rnd, BIGNUM *range);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 int BN_pseudo_rand_range(BIGNUM *rnd, int bits, int top, int bottom);
 | 
					 int BN_pseudo_rand_range(BIGNUM *rnd, BIGNUM *range);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 DESCRIPTION
 | 
					=head1 DESCRIPTION
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -26,7 +26,7 @@ as described in L<RSA_get_ex_new_index(3)>.
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
=head1 SEE ALSO
 | 
					=head1 SEE ALSO
 | 
				
			||||||
 | 
					
 | 
				
			||||||
L<RSA_get_ex_new_index()|RSA_get_ex_new_index()>, L<dh(3)|dh(3)>
 | 
					L<RSA_get_ex_new_index(3)|RSA_get_ex_new_index(3)>, L<dh(3)|dh(3)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 HISTORY
 | 
					=head1 HISTORY
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -192,7 +192,7 @@ in code that must be recompiled if the size of B<EVP_MD_CTX> increases.
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
L<evp(3)|evp(3)>, L<hmac(3)|hmac(3)>, L<md2(3)|md2(3)>,
 | 
					L<evp(3)|evp(3)>, L<hmac(3)|hmac(3)>, L<md2(3)|md2(3)>,
 | 
				
			||||||
L<md5(3)|md5(3)>, L<mdc2(3)|mdc2(3)>, L<ripemd(3)|ripemd(3)>,
 | 
					L<md5(3)|md5(3)>, L<mdc2(3)|mdc2(3)>, L<ripemd(3)|ripemd(3)>,
 | 
				
			||||||
L<sha(3)|sha(3)>, L<digest(1)|digest(1)>
 | 
					L<sha(3)|sha(3)>, L<dgst(1)|dgst(1)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 HISTORY
 | 
					=head1 HISTORY
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -192,7 +192,7 @@ EVP_DecryptInit() and EVP_DecryptUpdate() return 1 for success and 0 for failure
 | 
				
			|||||||
EVP_DecryptFinal() returns 0 if the decrypt failed or 1 for success.
 | 
					EVP_DecryptFinal() returns 0 if the decrypt failed or 1 for success.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
EVP_CipherInit() and EVP_CipherUpdate() return 1 for success and 0 for failure.
 | 
					EVP_CipherInit() and EVP_CipherUpdate() return 1 for success and 0 for failure.
 | 
				
			||||||
EVP_CipherFinal() returns 1 for a decryption failure or 1 for success.
 | 
					EVP_CipherFinal() returns 0 for a decryption failure or 1 for success.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
EVP_CIPHER_CTX_cleanup() returns 1 for success and 0 for failure.
 | 
					EVP_CIPHER_CTX_cleanup() returns 1 for success and 0 for failure.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -75,7 +75,7 @@ L<EVP_VerifyInit(3)|EVP_VerifyInit(3)>,
 | 
				
			|||||||
L<EVP_DigestInit(3)|EVP_DigestInit(3)>, L<err(3)|err(3)>,
 | 
					L<EVP_DigestInit(3)|EVP_DigestInit(3)>, L<err(3)|err(3)>,
 | 
				
			||||||
L<evp(3)|evp(3)>, L<hmac(3)|hmac(3)>, L<md2(3)|md2(3)>,
 | 
					L<evp(3)|evp(3)>, L<hmac(3)|hmac(3)>, L<md2(3)|md2(3)>,
 | 
				
			||||||
L<md5(3)|md5(3)>, L<mdc2(3)|mdc2(3)>, L<ripemd(3)|ripemd(3)>,
 | 
					L<md5(3)|md5(3)>, L<mdc2(3)|mdc2(3)>, L<ripemd(3)|ripemd(3)>,
 | 
				
			||||||
L<sha(3)|sha(3)>, L<digest(1)|digest(1)>
 | 
					L<sha(3)|sha(3)>, L<dgst(1)|dgst(1)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 HISTORY
 | 
					=head1 HISTORY
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -62,7 +62,7 @@ L<EVP_SignInit(3)|EVP_SignInit(3)>,
 | 
				
			|||||||
L<EVP_DigestInit(3)|EVP_DigestInit(3)>, L<err(3)|err(3)>,
 | 
					L<EVP_DigestInit(3)|EVP_DigestInit(3)>, L<err(3)|err(3)>,
 | 
				
			||||||
L<evp(3)|evp(3)>, L<hmac(3)|hmac(3)>, L<md2(3)|md2(3)>,
 | 
					L<evp(3)|evp(3)>, L<hmac(3)|hmac(3)>, L<md2(3)|md2(3)>,
 | 
				
			||||||
L<md5(3)|md5(3)>, L<mdc2(3)|mdc2(3)>, L<ripemd(3)|ripemd(3)>,
 | 
					L<md5(3)|md5(3)>, L<mdc2(3)|mdc2(3)>, L<ripemd(3)|ripemd(3)>,
 | 
				
			||||||
L<sha(3)|sha(3)>, L<digest(1)|digest(1)>
 | 
					L<sha(3)|sha(3)>, L<dgst(1)|dgst(1)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 HISTORY
 | 
					=head1 HISTORY
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -18,7 +18,9 @@ in fact prime, and that B<n = p*q>.
 | 
				
			|||||||
It also checks that B<d*e = 1 mod (p-1*q-1)>,
 | 
					It also checks that B<d*e = 1 mod (p-1*q-1)>,
 | 
				
			||||||
and that B<dmp1>, B<dmq1> and B<iqmp> are set correctly or are B<NULL>.
 | 
					and that B<dmp1>, B<dmq1> and B<iqmp> are set correctly or are B<NULL>.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
The key's public components may not be B<NULL>.
 | 
					As such, this function can not be used with any arbitrary RSA key object,
 | 
				
			||||||
 | 
					even if it is otherwise fit for regular RSA operation. See B<NOTES> for more
 | 
				
			||||||
 | 
					information.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 RETURN VALUE
 | 
					=head1 RETURN VALUE
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -28,12 +30,19 @@ RSA_check_key() returns 1 if B<rsa> is a valid RSA key, and 0 otherwise.
 | 
				
			|||||||
If the key is invalid or an error occurred, the reason code can be
 | 
					If the key is invalid or an error occurred, the reason code can be
 | 
				
			||||||
obtained using L<ERR_get_error(3)|ERR_get_error(3)>.
 | 
					obtained using L<ERR_get_error(3)|ERR_get_error(3)>.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=head1 NOTES
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					This function does not work on RSA public keys that have only the modulus
 | 
				
			||||||
 | 
					and public exponent elements populated. It performs integrity checks on all
 | 
				
			||||||
 | 
					the RSA key material, so the RSA key structure must contain all the private
 | 
				
			||||||
 | 
					key data too.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 SEE ALSO
 | 
					=head1 SEE ALSO
 | 
				
			||||||
 | 
					
 | 
				
			||||||
L<rsa(3)|rsa(3)>, L<err(3)|err(3)>
 | 
					L<rsa(3)|rsa(3)>, L<err(3)|err(3)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 HISTORY
 | 
					=head1 HISTORY
 | 
				
			||||||
 | 
					
 | 
				
			||||||
RSA_check() appeared in OpenSSL 0.9.4.
 | 
					RSA_check_key() appeared in OpenSSL 0.9.4.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=cut
 | 
					=cut
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -172,7 +172,7 @@ ERR_get_string_table(void) respectively.
 | 
				
			|||||||
=head1 SEE ALSO
 | 
					=head1 SEE ALSO
 | 
				
			||||||
 | 
					
 | 
				
			||||||
L<CRYPTO_set_id_callback(3)|CRYPTO_set_id_callback(3)>,
 | 
					L<CRYPTO_set_id_callback(3)|CRYPTO_set_id_callback(3)>,
 | 
				
			||||||
L<CRYPTO_set_locking_callback(3)|<CRYPTO_set_locking_callback(3)>,
 | 
					L<CRYPTO_set_locking_callback(3)|CRYPTO_set_locking_callback(3)>,
 | 
				
			||||||
L<ERR_get_error(3)|ERR_get_error(3)>,
 | 
					L<ERR_get_error(3)|ERR_get_error(3)>,
 | 
				
			||||||
L<ERR_GET_LIB(3)|ERR_GET_LIB(3)>,
 | 
					L<ERR_GET_LIB(3)|ERR_GET_LIB(3)>,
 | 
				
			||||||
L<ERR_clear_error(3)|ERR_clear_error(3)>,
 | 
					L<ERR_clear_error(3)|ERR_clear_error(3)>,
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -111,7 +111,7 @@ L<RSA_blinding_on(3)|RSA_blinding_on(3)>,
 | 
				
			|||||||
L<RSA_set_method(3)|RSA_set_method(3)>, L<RSA_print(3)|RSA_print(3)>,
 | 
					L<RSA_set_method(3)|RSA_set_method(3)>, L<RSA_print(3)|RSA_print(3)>,
 | 
				
			||||||
L<RSA_get_ex_new_index(3)|RSA_get_ex_new_index(3)>,
 | 
					L<RSA_get_ex_new_index(3)|RSA_get_ex_new_index(3)>,
 | 
				
			||||||
L<RSA_private_encrypt(3)|RSA_private_encrypt(3)>,
 | 
					L<RSA_private_encrypt(3)|RSA_private_encrypt(3)>,
 | 
				
			||||||
L<RSA_sign_ASN_OCTET_STRING(3)|RSA_sign_ASN_OCTET_STRING(3)>,
 | 
					L<RSA_sign_ASN1_OCTET_STRING(3)|RSA_sign_ASN1_OCTET_STRING(3)>,
 | 
				
			||||||
L<RSA_padding_add_PKCS1_type_1(3)|RSA_padding_add_PKCS1_type_1(3)> 
 | 
					L<RSA_padding_add_PKCS1_type_1(3)|RSA_padding_add_PKCS1_type_1(3)> 
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=cut
 | 
					=cut
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -27,7 +27,7 @@ case is the size 0, which is used for unlimited size.
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
When the maximum number of sessions is reached, no more new sessions are
 | 
					When the maximum number of sessions is reached, no more new sessions are
 | 
				
			||||||
added to the cache. New space may be added by calling
 | 
					added to the cache. New space may be added by calling
 | 
				
			||||||
L<SSL_CTX_flush_sessions(3)|<SSL_CTX_flush_sessions(3)> to remove
 | 
					L<SSL_CTX_flush_sessions(3)|SSL_CTX_flush_sessions(3)> to remove
 | 
				
			||||||
expired sessions.
 | 
					expired sessions.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
If the size of the session cache is reduced and more sessions are already
 | 
					If the size of the session cache is reduced and more sessions are already
 | 
				
			||||||
@@ -46,6 +46,6 @@ SSL_CTX_sess_get_cache_size() returns the currently valid size.
 | 
				
			|||||||
L<ssl(3)|ssl(3)>,
 | 
					L<ssl(3)|ssl(3)>,
 | 
				
			||||||
L<SSL_CTX_set_session_cache_mode(3)|SSL_CTX_set_session_cache_mode(3)>,
 | 
					L<SSL_CTX_set_session_cache_mode(3)|SSL_CTX_set_session_cache_mode(3)>,
 | 
				
			||||||
L<SSL_CTX_sess_number(3)|SSL_CTX_sess_number(3)>,
 | 
					L<SSL_CTX_sess_number(3)|SSL_CTX_sess_number(3)>,
 | 
				
			||||||
L<SSL_CTX_flush_sessions(3)|<SSL_CTX_flush_sessions(3)>
 | 
					L<SSL_CTX_flush_sessions(3)|SSL_CTX_flush_sessions(3)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=cut
 | 
					=cut
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -79,7 +79,7 @@ L<SSL_SESSION_free(3)|SSL_SESSION_free(3)>.
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
L<ssl(3)|ssl(3)>, L<d2i_SSL_SESSION(3)|d2i_SSL_SESSION(3)>,
 | 
					L<ssl(3)|ssl(3)>, L<d2i_SSL_SESSION(3)|d2i_SSL_SESSION(3)>,
 | 
				
			||||||
L<SSL_CTX_set_session_cache_mode(3)|SSL_CTX_set_session_cache_mode(3)>,
 | 
					L<SSL_CTX_set_session_cache_mode(3)|SSL_CTX_set_session_cache_mode(3)>,
 | 
				
			||||||
L<SSL_CTX_flush_sessions(3)|<SSL_CTX_flush_sessions(3)>,
 | 
					L<SSL_CTX_flush_sessions(3)|SSL_CTX_flush_sessions(3)>,
 | 
				
			||||||
L<SSL_SESSION_free(3)|SSL_SESSION_free(3)>
 | 
					L<SSL_SESSION_free(3)|SSL_SESSION_free(3)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=cut
 | 
					=cut
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -14,7 +14,7 @@ SSL_CTX_set_cert_store, SSL_CTX_get_cert_store - manipulate X509 certificate ver
 | 
				
			|||||||
=head1 DESCRIPTION
 | 
					=head1 DESCRIPTION
 | 
				
			||||||
 | 
					
 | 
				
			||||||
SSL_CTX_set_cert_store() sets/replaces the certificate verification storage
 | 
					SSL_CTX_set_cert_store() sets/replaces the certificate verification storage
 | 
				
			||||||
of B<ctx> to/with B<store>. If another X505_STORE object is currently
 | 
					of B<ctx> to/with B<store>. If another X509_STORE object is currently
 | 
				
			||||||
set in B<ctx>, it will be X509_STORE_free()ed.
 | 
					set in B<ctx>, it will be X509_STORE_free()ed.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
SSL_CTX_get_cert_store() returns a pointer to the current certificate
 | 
					SSL_CTX_get_cert_store() returns a pointer to the current certificate
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -15,8 +15,10 @@ SSL_CTX_set_client_cert_cb, SSL_CTX_get_client_cert_cb - handle client certifica
 | 
				
			|||||||
=head1 DESCRIPTION
 | 
					=head1 DESCRIPTION
 | 
				
			||||||
 | 
					
 | 
				
			||||||
SSL_CTX_set_client_cert_cb() sets the B<client_cert_cb()> callback, that is
 | 
					SSL_CTX_set_client_cert_cb() sets the B<client_cert_cb()> callback, that is
 | 
				
			||||||
called when a client certificate is requested by a server.
 | 
					called when a client certificate is requested by a server and no certificate
 | 
				
			||||||
When B<client_cert_cb()> is NULL, not callback function is used.
 | 
					was yet set for the SSL object.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					When B<client_cert_cb()> is NULL, no callback function is used.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
SSL_CTX_get_client_cert_cb() returns a pointer to the currently set callback
 | 
					SSL_CTX_get_client_cert_cb() returns a pointer to the currently set callback
 | 
				
			||||||
function.
 | 
					function.
 | 
				
			||||||
@@ -25,9 +27,13 @@ client_cert_cb() is the application defined callback. If it wants to
 | 
				
			|||||||
set a certificate, a certificate/private key combination must be set
 | 
					set a certificate, a certificate/private key combination must be set
 | 
				
			||||||
using the B<x509> and B<pkey> arguments and "1" must be returned. The
 | 
					using the B<x509> and B<pkey> arguments and "1" must be returned. The
 | 
				
			||||||
certificate will be installed into B<ssl>, see the NOTES and BUGS sections.
 | 
					certificate will be installed into B<ssl>, see the NOTES and BUGS sections.
 | 
				
			||||||
If no certificate should be set, "0" has to be returned and the default
 | 
					If no certificate should be set, "0" has to be returned and no certificate
 | 
				
			||||||
certificate will be sent. A fatal error can be indicated by returning
 | 
					will be sent. A negative return value will suspend the handshake and the
 | 
				
			||||||
a negative value, in which case the handshake will be canceled.
 | 
					handshake function will return immediatly. L<SSL_get_error(3)|SSL_get_error(3)>
 | 
				
			||||||
 | 
					will return SSL_ERROR_WANT_X509_LOOKUP to indicate, that the handshake was
 | 
				
			||||||
 | 
					suspended. The next call to the handshake function will again lead to the call
 | 
				
			||||||
 | 
					of client_cert_cb(). It is the job of the client_cert_cb() to store information
 | 
				
			||||||
 | 
					about the state of the last call, if required to continue.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 NOTES
 | 
					=head1 NOTES
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -35,26 +41,24 @@ During a handshake (or renegotiation) a server may request a certificate
 | 
				
			|||||||
from the client. A client certificate must only be sent, when the server
 | 
					from the client. A client certificate must only be sent, when the server
 | 
				
			||||||
did send the request.
 | 
					did send the request.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
When no callback function is set, an OpenSSL client will send the certificate
 | 
					When a certificate was set using the
 | 
				
			||||||
that was set using the
 | 
					L<SSL_CTX_use_certificate(3)|SSL_CTX_use_certificate(3)> family of functions,
 | 
				
			||||||
L<SSL_CTX_use_certificate(3)|SSL_CTX_use_certificate(3)> family of functions.
 | 
					it will be sent to the server. The TLS standard requires that only a
 | 
				
			||||||
The TLS standard requires that only a certificate is sent, if it matches
 | 
					certificate is sent, if it matches the list of acceptable CAs sent by the
 | 
				
			||||||
the list of acceptable CAs sent by the server. This constraint is
 | 
					server. This constraint is violated by the default behavior of the OpenSSL
 | 
				
			||||||
violated by the default behavior of the OpenSSL library. Using the
 | 
					library. Using the callback function it is possible to implement a proper
 | 
				
			||||||
callback function it is possible to implement a proper selection routine
 | 
					selection routine or to allow a user interaction to choose the certificate to
 | 
				
			||||||
or to allow a user interaction to choose the certificate to be sent.
 | 
					be sent.
 | 
				
			||||||
The callback function can obtain the list of acceptable CAs using the
 | 
					 | 
				
			||||||
L<SSL_get_client_CA_list(3)|SSL_get_client_CA_list(3)> function.
 | 
					 | 
				
			||||||
 | 
					
 | 
				
			||||||
If a callback function is defined, the callback function will be called.
 | 
					If a callback function is defined and no certificate was yet defined for the
 | 
				
			||||||
 | 
					SSL object, the callback function will be called.
 | 
				
			||||||
If the callback function returns a certificate, the OpenSSL library
 | 
					If the callback function returns a certificate, the OpenSSL library
 | 
				
			||||||
will try to load the private key and certificate data into the SSL
 | 
					will try to load the private key and certificate data into the SSL
 | 
				
			||||||
object using SSL_use_certificate() and SSL_use_private_key() functions.
 | 
					object using the SSL_use_certificate() and SSL_use_private_key() functions.
 | 
				
			||||||
Thus it will permanently override the certificate and key previously
 | 
					Thus it will permanently install the certificate and key for this SSL
 | 
				
			||||||
installed and will not be reset by calling L<SSL_clear(3)|SSL_clear(3)>.
 | 
					object. It will not be reset by calling L<SSL_clear(3)|SSL_clear(3)>.
 | 
				
			||||||
If the callback returns no certificate, the OpenSSL library will send
 | 
					If the callback returns no certificate, the OpenSSL library will not send
 | 
				
			||||||
the certificate previously installed for the SSL_CTX object or the specific
 | 
					a certificate.
 | 
				
			||||||
certificate of the SSL object, if available.
 | 
					 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 BUGS
 | 
					=head1 BUGS
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -35,7 +35,7 @@ operation (|). Options can only be added but can never be reset.
 | 
				
			|||||||
SSL_CTX_set_options() and SSL_set_options() affect the (external)
 | 
					SSL_CTX_set_options() and SSL_set_options() affect the (external)
 | 
				
			||||||
protocol behaviour of the SSL library. The (internal) behaviour of
 | 
					protocol behaviour of the SSL library. The (internal) behaviour of
 | 
				
			||||||
the API can be changed by using the similar
 | 
					the API can be changed by using the similar
 | 
				
			||||||
L<SSL_CTX_set_modes(3)|SSL_CTX_set_modes(3)> and SSL_set_modes() functions.
 | 
					L<SSL_CTX_set_mode(3)|SSL_CTX_set_mode(3)> and SSL_set_mode() functions.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
During a handshake, the option settings of the SSL object are used. When
 | 
					During a handshake, the option settings of the SSL object are used. When
 | 
				
			||||||
a new SSL object is created from a context using SSL_new(), the current
 | 
					a new SSL object is created from a context using SSL_new(), the current
 | 
				
			||||||
@@ -112,14 +112,22 @@ only understands up to SSLv3. In this case the client must still use the
 | 
				
			|||||||
same SSLv3.1=TLSv1 announcement. Some clients step down to SSLv3 with respect
 | 
					same SSLv3.1=TLSv1 announcement. Some clients step down to SSLv3 with respect
 | 
				
			||||||
to the server's answer and violate the version rollback protection.)
 | 
					to the server's answer and violate the version rollback protection.)
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=item SSL_OP_DONT_INSERT_EMPTY_FRAGMENTS
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					Disables a countermeasure against a SSL 3.0/TLS 1.0 protocol
 | 
				
			||||||
 | 
					vulnerability affecting CBC ciphers, which cannot be handled by some
 | 
				
			||||||
 | 
					broken SSL implementations.  This option has no effect for connections
 | 
				
			||||||
 | 
					using other ciphers.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=item SSL_OP_ALL
 | 
					=item SSL_OP_ALL
 | 
				
			||||||
 | 
					
 | 
				
			||||||
All of the above bug workarounds.
 | 
					All of the above bug workarounds.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=back
 | 
					=back
 | 
				
			||||||
 | 
					
 | 
				
			||||||
It is save and recommended to use SSL_OP_ALL to enable the bug workaround
 | 
					It is usually safe to use B<SSL_OP_ALL> to enable the bug workaround
 | 
				
			||||||
options.
 | 
					options if compatibility with somewhat broken implementations is
 | 
				
			||||||
 | 
					desired.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
The following B<modifying> options are available:
 | 
					The following B<modifying> options are available:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
@@ -199,4 +207,9 @@ L<dhparam(1)|dhparam(1)>
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
SSL_OP_TLS_ROLLBACK_BUG has been added in OpenSSL 0.9.6.
 | 
					SSL_OP_TLS_ROLLBACK_BUG has been added in OpenSSL 0.9.6.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					B<SSL_OP_DONT_INSERT_EMPTY_FRAGMENTS> has been added in OpenSSL 0.9.6e.
 | 
				
			||||||
 | 
					Versions up to OpenSSL 0.9.6c do not include the countermeasure that
 | 
				
			||||||
 | 
					can be disabled with this option (in OpenSSL 0.9.6d, it was always
 | 
				
			||||||
 | 
					enabled).
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=cut
 | 
					=cut
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -69,6 +69,7 @@ to find out the reason.
 | 
				
			|||||||
L<SSL_get_error(3)|SSL_get_error(3)>, L<SSL_connect(3)|SSL_connect(3)>,
 | 
					L<SSL_get_error(3)|SSL_get_error(3)>, L<SSL_connect(3)|SSL_connect(3)>,
 | 
				
			||||||
L<SSL_shutdown(3)|SSL_shutdown(3)>, L<ssl(3)|ssl(3)>, L<bio(3)|bio(3)>,
 | 
					L<SSL_shutdown(3)|SSL_shutdown(3)>, L<ssl(3)|ssl(3)>, L<bio(3)|bio(3)>,
 | 
				
			||||||
L<SSL_set_connect_state(3)|SSL_set_connect_state(3)>,
 | 
					L<SSL_set_connect_state(3)|SSL_set_connect_state(3)>,
 | 
				
			||||||
 | 
					L<SSL_do_handshake(3)|SSL_do_handshake(3)>,
 | 
				
			||||||
L<SSL_CTX_new(3)|SSL_CTX_new(3)>
 | 
					L<SSL_CTX_new(3)|SSL_CTX_new(3)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=cut
 | 
					=cut
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -66,6 +66,7 @@ to find out the reason.
 | 
				
			|||||||
L<SSL_get_error(3)|SSL_get_error(3)>, L<SSL_accept(3)|SSL_accept(3)>,
 | 
					L<SSL_get_error(3)|SSL_get_error(3)>, L<SSL_accept(3)|SSL_accept(3)>,
 | 
				
			||||||
L<SSL_shutdown(3)|SSL_shutdown(3)>, L<ssl(3)|ssl(3)>, L<bio(3)|bio(3)>,
 | 
					L<SSL_shutdown(3)|SSL_shutdown(3)>, L<ssl(3)|ssl(3)>, L<bio(3)|bio(3)>,
 | 
				
			||||||
L<SSL_set_connect_state(3)|SSL_set_connect_state(3)>,
 | 
					L<SSL_set_connect_state(3)|SSL_set_connect_state(3)>,
 | 
				
			||||||
 | 
					L<SSL_do_handshake(3)|SSL_do_handshake(3)>,
 | 
				
			||||||
L<SSL_CTX_new(3)|SSL_CTX_new(3)>
 | 
					L<SSL_CTX_new(3)|SSL_CTX_new(3)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=cut
 | 
					=cut
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										75
									
								
								doc/ssl/SSL_do_handshake.pod
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										75
									
								
								doc/ssl/SSL_do_handshake.pod
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,75 @@
 | 
				
			|||||||
 | 
					=pod
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=head1 NAME
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					SSL_do_handshake - perform a TLS/SSL handshake
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=head1 SYNOPSIS
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 #include <openssl/ssl.h>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					 int SSL_do_handshake(SSL *ssl);
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=head1 DESCRIPTION
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					SSL_do_handshake() will wait for a SSL/TLS handshake to take place. If the
 | 
				
			||||||
 | 
					connection is in client mode, the handshake will be started. The handshake
 | 
				
			||||||
 | 
					routines may have to be explicitly set in advance using either
 | 
				
			||||||
 | 
					L<SSL_set_connect_state(3)|SSL_set_connect_state(3)> or
 | 
				
			||||||
 | 
					L<SSL_set_accept_state(3)|SSL_set_accept_state(3)>.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=head1 NOTES
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					The behaviour of SSL_do_handshake() depends on the underlying BIO.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					If the underlying BIO is B<blocking>, SSL_do_handshake() will only return
 | 
				
			||||||
 | 
					once the handshake has been finished or an error occurred, except for SGC
 | 
				
			||||||
 | 
					(Server Gated Cryptography). For SGC, SSL_do_handshake() may return with -1,
 | 
				
			||||||
 | 
					but SSL_get_error() will yield B<SSL_ERROR_WANT_READ/WRITE> and
 | 
				
			||||||
 | 
					SSL_do_handshake() should be called again.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					If the underlying BIO is B<non-blocking>, SSL_do_handshake() will also return
 | 
				
			||||||
 | 
					when the underlying BIO could not satisfy the needs of SSL_do_handshake()
 | 
				
			||||||
 | 
					to continue the handshake. In this case a call to SSL_get_error() with the
 | 
				
			||||||
 | 
					return value of SSL_do_handshake() will yield B<SSL_ERROR_WANT_READ> or
 | 
				
			||||||
 | 
					B<SSL_ERROR_WANT_WRITE>. The calling process then must repeat the call after
 | 
				
			||||||
 | 
					taking appropriate action to satisfy the needs of SSL_do_handshake().
 | 
				
			||||||
 | 
					The action depends on the underlying BIO. When using a non-blocking socket,
 | 
				
			||||||
 | 
					nothing is to be done, but select() can be used to check for the required
 | 
				
			||||||
 | 
					condition. When using a buffering BIO, like a BIO pair, data must be written
 | 
				
			||||||
 | 
					into or retrieved out of the BIO before being able to continue.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=head1 RETURN VALUES
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					The following return values can occur:
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=over 4
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=item 1
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					The TLS/SSL handshake was successfully completed, a TLS/SSL connection has been
 | 
				
			||||||
 | 
					established.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=item 0
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					The TLS/SSL handshake was not successful but was shut down controlled and
 | 
				
			||||||
 | 
					by the specifications of the TLS/SSL protocol. Call SSL_get_error() with the
 | 
				
			||||||
 | 
					return value B<ret> to find out the reason.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=item E<lt>0
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					The TLS/SSL handshake was not successful because a fatal error occurred either
 | 
				
			||||||
 | 
					at the protocol level or a connection failure occurred. The shutdown was
 | 
				
			||||||
 | 
					not clean. It can also occur of action is need to continue the operation
 | 
				
			||||||
 | 
					for non-blocking BIOs. Call SSL_get_error() with the return value B<ret>
 | 
				
			||||||
 | 
					to find out the reason.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=back
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=head1 SEE ALSO
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					L<SSL_get_error(3)|SSL_get_error(3)>, L<SSL_connect(3)|SSL_connect(3)>,
 | 
				
			||||||
 | 
					L<SSL_accept(3)|SSL_accept(3)>, L<ssl(3)|ssl(3)>, L<bio(3)|bio(3)>,
 | 
				
			||||||
 | 
					L<SSL_set_connect_state(3)|SSL_set_connect_state(3)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					=cut
 | 
				
			||||||
@@ -13,7 +13,7 @@ SSL_get_error - obtain result code for TLS/SSL I/O operation
 | 
				
			|||||||
=head1 DESCRIPTION
 | 
					=head1 DESCRIPTION
 | 
				
			||||||
 | 
					
 | 
				
			||||||
SSL_get_error() returns a result code (suitable for the C "switch"
 | 
					SSL_get_error() returns a result code (suitable for the C "switch"
 | 
				
			||||||
statement) for a preceding call to SSL_connect(), SSL_accept(),
 | 
					statement) for a preceding call to SSL_connect(), SSL_accept(), SSL_do_handshake(),
 | 
				
			||||||
SSL_read(), SSL_peek(), or SSL_write() on B<ssl>.  The value returned by
 | 
					SSL_read(), SSL_peek(), or SSL_write() on B<ssl>.  The value returned by
 | 
				
			||||||
that TLS/SSL I/O function must be passed to SSL_get_error() in parameter
 | 
					that TLS/SSL I/O function must be passed to SSL_get_error() in parameter
 | 
				
			||||||
B<ret>.
 | 
					B<ret>.
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -49,6 +49,7 @@ information.
 | 
				
			|||||||
L<ssl(3)|ssl(3)>, L<SSL_new(3)|SSL_new(3)>, L<SSL_CTX_new(3)|SSL_CTX_new(3)>,
 | 
					L<ssl(3)|ssl(3)>, L<SSL_new(3)|SSL_new(3)>, L<SSL_CTX_new(3)|SSL_CTX_new(3)>,
 | 
				
			||||||
L<SSL_connect(3)|SSL_connect(3)>, L<SSL_accept(3)|SSL_accept(3)>,
 | 
					L<SSL_connect(3)|SSL_connect(3)>, L<SSL_accept(3)|SSL_accept(3)>,
 | 
				
			||||||
L<SSL_write(3)|SSL_write(3)>, L<SSL_read(3)|SSL_read(3)>,
 | 
					L<SSL_write(3)|SSL_write(3)>, L<SSL_read(3)|SSL_read(3)>,
 | 
				
			||||||
 | 
					L<SSL_do_handshake(3)|SSL_do_handshake(3)>,
 | 
				
			||||||
L<SSL_CTX_set_ssl_version(3)|SSL_CTX_set_ssl_version(3)>
 | 
					L<SSL_CTX_set_ssl_version(3)|SSL_CTX_set_ssl_version(3)>
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=cut
 | 
					=cut
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -65,6 +65,9 @@ When an SSL_write() operation has to be repeated because of
 | 
				
			|||||||
B<SSL_ERROR_WANT_READ> or B<SSL_ERROR_WANT_WRITE>, it must be repeated
 | 
					B<SSL_ERROR_WANT_READ> or B<SSL_ERROR_WANT_WRITE>, it must be repeated
 | 
				
			||||||
with the same arguments.
 | 
					with the same arguments.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					When calling SSL_write() with num=0 bytes to be sent the behaviour is
 | 
				
			||||||
 | 
					undefined.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
=head1 RETURN VALUES
 | 
					=head1 RETURN VALUES
 | 
				
			||||||
 | 
					
 | 
				
			||||||
The following return values can occur:
 | 
					The following return values can occur:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -682,6 +682,7 @@ L<SSL_CTX_set_tmp_dh_callback(3)|SSL_CTX_set_tmp_dh_callback(3)>,
 | 
				
			|||||||
L<SSL_CTX_set_verify(3)|SSL_CTX_set_verify(3)>,
 | 
					L<SSL_CTX_set_verify(3)|SSL_CTX_set_verify(3)>,
 | 
				
			||||||
L<SSL_CTX_use_certificate(3)|SSL_CTX_use_certificate(3)>,
 | 
					L<SSL_CTX_use_certificate(3)|SSL_CTX_use_certificate(3)>,
 | 
				
			||||||
L<SSL_alert_type_string(3)|SSL_alert_type_string(3)>,
 | 
					L<SSL_alert_type_string(3)|SSL_alert_type_string(3)>,
 | 
				
			||||||
 | 
					L<SSL_do_handshake(3)|SSL_do_handshake(3)>,
 | 
				
			||||||
L<SSL_get_SSL_CTX(3)|SSL_get_SSL_CTX(3)>,
 | 
					L<SSL_get_SSL_CTX(3)|SSL_get_SSL_CTX(3)>,
 | 
				
			||||||
L<SSL_get_ciphers(3)|SSL_get_ciphers(3)>,
 | 
					L<SSL_get_ciphers(3)|SSL_get_ciphers(3)>,
 | 
				
			||||||
L<SSL_get_client_CA_list(3)|SSL_get_client_CA_list(3)>,
 | 
					L<SSL_get_client_CA_list(3)|SSL_get_client_CA_list(3)>,
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										9
									
								
								e_os.h
									
									
									
									
									
								
							
							
						
						
									
										9
									
								
								e_os.h
									
									
									
									
									
								
							@@ -114,11 +114,11 @@ extern "C" {
 | 
				
			|||||||
#  define MS_STATIC
 | 
					#  define MS_STATIC
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#if defined(_WIN32) && !defined(WIN32) && !defined(__CYGWIN32__)
 | 
					#if defined(_WIN32) && !defined(WIN32) && !defined(__CYGWIN32__) && !defined(_UWIN)
 | 
				
			||||||
#  define WIN32
 | 
					#  define WIN32
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#if (defined(WIN32) || defined(WIN16)) && !defined(__CYGWIN32__)
 | 
					#if (defined(WIN32) || defined(WIN16)) && !defined(__CYGWIN32__) && !defined(_UWIN)
 | 
				
			||||||
#  ifndef WINDOWS
 | 
					#  ifndef WINDOWS
 | 
				
			||||||
#    define WINDOWS
 | 
					#    define WINDOWS
 | 
				
			||||||
#  endif
 | 
					#  endif
 | 
				
			||||||
@@ -142,7 +142,8 @@ extern "C" {
 | 
				
			|||||||
#define clear_sys_error()	errno=0
 | 
					#define clear_sys_error()	errno=0
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#if defined(WINDOWS) && !defined(__CYGWIN32__)
 | 
					#if defined(WINDOWS) && !defined(__CYGWIN32__)  && !defined(_UWIN)
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#define get_last_socket_error()	WSAGetLastError()
 | 
					#define get_last_socket_error()	WSAGetLastError()
 | 
				
			||||||
#define clear_socket_error()	WSASetLastError(0)
 | 
					#define clear_socket_error()	WSASetLastError(0)
 | 
				
			||||||
#define readsocket(s,b,n)	recv((s),(b),(n),0)
 | 
					#define readsocket(s,b,n)	recv((s),(b),(n),0)
 | 
				
			||||||
@@ -183,7 +184,7 @@ extern "C" {
 | 
				
			|||||||
#  define NO_FP_API
 | 
					#  define NO_FP_API
 | 
				
			||||||
#endif
 | 
					#endif
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#if (defined(WINDOWS) || defined(MSDOS)) && !defined(__CYGWIN32__)
 | 
					#if (defined(WINDOWS) || defined(MSDOS)) && !defined(__CYGWIN32__) && !defined(_UWIN)
 | 
				
			||||||
 | 
					
 | 
				
			||||||
#  ifndef S_IFDIR
 | 
					#  ifndef S_IFDIR
 | 
				
			||||||
#    define S_IFDIR	_S_IFDIR
 | 
					#    define S_IFDIR	_S_IFDIR
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -3,54 +3,54 @@ echo Generating x86 for MASM assember
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
echo Bignum
 | 
					echo Bignum
 | 
				
			||||||
cd crypto\bn\asm
 | 
					cd crypto\bn\asm
 | 
				
			||||||
perl x86.pl win32 > bn-win32.asm
 | 
					perl x86.pl win32 > bn_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo DES
 | 
					echo DES
 | 
				
			||||||
cd crypto\des\asm
 | 
					cd crypto\des\asm
 | 
				
			||||||
perl des-586.pl win32 > d-win32.asm
 | 
					perl des-586.pl win32 > d_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo "crypt(3)"
 | 
					echo "crypt(3)"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
cd crypto\des\asm
 | 
					cd crypto\des\asm
 | 
				
			||||||
perl crypt586.pl win32 > y-win32.asm
 | 
					perl crypt586.pl win32 > y_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo Blowfish
 | 
					echo Blowfish
 | 
				
			||||||
 | 
					
 | 
				
			||||||
cd crypto\bf\asm
 | 
					cd crypto\bf\asm
 | 
				
			||||||
perl bf-586.pl win32 > b-win32.asm
 | 
					perl bf-586.pl win32 > b_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo CAST5
 | 
					echo CAST5
 | 
				
			||||||
cd crypto\cast\asm
 | 
					cd crypto\cast\asm
 | 
				
			||||||
perl cast-586.pl win32 > c-win32.asm
 | 
					perl cast-586.pl win32 > c_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo RC4
 | 
					echo RC4
 | 
				
			||||||
cd crypto\rc4\asm
 | 
					cd crypto\rc4\asm
 | 
				
			||||||
perl rc4-586.pl win32 > r4-win32.asm
 | 
					perl rc4-586.pl win32 > r4_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo MD5
 | 
					echo MD5
 | 
				
			||||||
cd crypto\md5\asm
 | 
					cd crypto\md5\asm
 | 
				
			||||||
perl md5-586.pl win32 > m5-win32.asm
 | 
					perl md5-586.pl win32 > m5_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo SHA1
 | 
					echo SHA1
 | 
				
			||||||
cd crypto\sha\asm
 | 
					cd crypto\sha\asm
 | 
				
			||||||
perl sha1-586.pl win32 > s1-win32.asm
 | 
					perl sha1-586.pl win32 > s1_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo RIPEMD160
 | 
					echo RIPEMD160
 | 
				
			||||||
cd crypto\ripemd\asm
 | 
					cd crypto\ripemd\asm
 | 
				
			||||||
perl rmd-586.pl win32 > rm-win32.asm
 | 
					perl rmd-586.pl win32 > rm_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo RC5\32
 | 
					echo RC5\32
 | 
				
			||||||
cd crypto\rc5\asm
 | 
					cd crypto\rc5\asm
 | 
				
			||||||
perl rc5-586.pl win32 > r5-win32.asm
 | 
					perl rc5-586.pl win32 > r5_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo on
 | 
					echo on
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -4,54 +4,54 @@ echo Generating x86 for NASM assember
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
echo Bignum
 | 
					echo Bignum
 | 
				
			||||||
cd crypto\bn\asm
 | 
					cd crypto\bn\asm
 | 
				
			||||||
perl x86.pl win32n > bn-win32.asm
 | 
					perl x86.pl win32n > bn_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo DES
 | 
					echo DES
 | 
				
			||||||
cd crypto\des\asm
 | 
					cd crypto\des\asm
 | 
				
			||||||
perl des-586.pl win32n > d-win32.asm
 | 
					perl des-586.pl win32n > d_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo "crypt(3)"
 | 
					echo "crypt(3)"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
cd crypto\des\asm
 | 
					cd crypto\des\asm
 | 
				
			||||||
perl crypt586.pl win32n > y-win32.asm
 | 
					perl crypt586.pl win32n > y_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo Blowfish
 | 
					echo Blowfish
 | 
				
			||||||
 | 
					
 | 
				
			||||||
cd crypto\bf\asm
 | 
					cd crypto\bf\asm
 | 
				
			||||||
perl bf-586.pl win32n > b-win32.asm
 | 
					perl bf-586.pl win32n > b_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo CAST5
 | 
					echo CAST5
 | 
				
			||||||
cd crypto\cast\asm
 | 
					cd crypto\cast\asm
 | 
				
			||||||
perl cast-586.pl win32n > c-win32.asm
 | 
					perl cast-586.pl win32n > c_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo RC4
 | 
					echo RC4
 | 
				
			||||||
cd crypto\rc4\asm
 | 
					cd crypto\rc4\asm
 | 
				
			||||||
perl rc4-586.pl win32n > r4-win32.asm
 | 
					perl rc4-586.pl win32n > r4_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo MD5
 | 
					echo MD5
 | 
				
			||||||
cd crypto\md5\asm
 | 
					cd crypto\md5\asm
 | 
				
			||||||
perl md5-586.pl win32n > m5-win32.asm
 | 
					perl md5-586.pl win32n > m5_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo SHA1
 | 
					echo SHA1
 | 
				
			||||||
cd crypto\sha\asm
 | 
					cd crypto\sha\asm
 | 
				
			||||||
perl sha1-586.pl win32n > s1-win32.asm
 | 
					perl sha1-586.pl win32n > s1_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo RIPEMD160
 | 
					echo RIPEMD160
 | 
				
			||||||
cd crypto\ripemd\asm
 | 
					cd crypto\ripemd\asm
 | 
				
			||||||
perl rmd-586.pl win32n > rm-win32.asm
 | 
					perl rmd-586.pl win32n > rm_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo RC5\32
 | 
					echo RC5\32
 | 
				
			||||||
cd crypto\rc5\asm
 | 
					cd crypto\rc5\asm
 | 
				
			||||||
perl rc5-586.pl win32n > r5-win32.asm
 | 
					perl rc5-586.pl win32n > r5_win32.asm
 | 
				
			||||||
cd ..\..\..
 | 
					cd ..\..\..
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo on
 | 
					echo on
 | 
				
			||||||
@@ -62,6 +62,7 @@ rem perl util\mk1mf.pl VC-W31-32 >ms\w31.mak
 | 
				
			|||||||
perl util\mk1mf.pl dll VC-W31-32 >ms\w31dll.mak
 | 
					perl util\mk1mf.pl dll VC-W31-32 >ms\w31dll.mak
 | 
				
			||||||
perl util\mk1mf.pl nasm VC-WIN32 >ms\nt.mak
 | 
					perl util\mk1mf.pl nasm VC-WIN32 >ms\nt.mak
 | 
				
			||||||
perl util\mk1mf.pl dll nasm VC-WIN32 >ms\ntdll.mak
 | 
					perl util\mk1mf.pl dll nasm VC-WIN32 >ms\ntdll.mak
 | 
				
			||||||
 | 
					perl util\mk1mf.pl nasm BC-NT >ms\bcb.mak
 | 
				
			||||||
 | 
					
 | 
				
			||||||
perl util\mkdef.pl 16 libeay > ms\libeay16.def
 | 
					perl util\mkdef.pl 16 libeay > ms\libeay16.def
 | 
				
			||||||
perl util\mkdef.pl 32 libeay > ms\libeay32.def
 | 
					perl util\mkdef.pl 32 libeay > ms\libeay32.def
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -1,7 +1,7 @@
 | 
				
			|||||||
%define libmaj 0
 | 
					%define libmaj 0
 | 
				
			||||||
%define libmin 9
 | 
					%define libmin 9
 | 
				
			||||||
%define librel 6
 | 
					%define librel 6
 | 
				
			||||||
%define librev c
 | 
					%define librev g
 | 
				
			||||||
Release: 1
 | 
					Release: 1
 | 
				
			||||||
 | 
					
 | 
				
			||||||
%define openssldir /var/ssl
 | 
					%define openssldir /var/ssl
 | 
				
			||||||
 
 | 
				
			|||||||
Some files were not shown because too many files have changed in this diff Show More
		Reference in New Issue
	
	Block a user