Compare commits
914 Commits
OpenSSL-en
...
OpenSSL-en
Author | SHA1 | Date | |
---|---|---|---|
![]() |
5aeaff0bc0 | ||
![]() |
345d8d572c | ||
![]() |
966eac3dbd | ||
![]() |
a4348a3cd1 | ||
![]() |
b841fc03e7 | ||
![]() |
53fd7688ee | ||
![]() |
5949e8e1dd | ||
![]() |
c4157adf1e | ||
![]() |
8aac6ad0f2 | ||
![]() |
4ff15ba5e9 | ||
![]() |
acc6c94a65 | ||
![]() |
2e824f0444 | ||
![]() |
2b4a238b5b | ||
![]() |
f0c5491e9e | ||
![]() |
c086616c3e | ||
![]() |
f87ab7a42d | ||
![]() |
696335ab46 | ||
![]() |
322f190a18 | ||
![]() |
c4a150c242 | ||
![]() |
a3c5420b28 | ||
![]() |
c99f9b8ff3 | ||
![]() |
22b3a95d5c | ||
![]() |
63e86149c1 | ||
![]() |
ca8f05d093 | ||
![]() |
df29cc8f77 | ||
![]() |
ec7164133d | ||
![]() |
ba8ad07490 | ||
![]() |
17582ccf21 | ||
![]() |
31be2daa06 | ||
![]() |
de868e0b94 | ||
![]() |
15994b034a | ||
![]() |
922fa76e26 | ||
![]() |
19aa370573 | ||
![]() |
d020e701bb | ||
![]() |
364ff369d1 | ||
![]() |
8a09b3866a | ||
![]() |
137445140b | ||
![]() |
6a8afe2201 | ||
![]() |
1e3a9b650f | ||
![]() |
229dc0ee31 | ||
![]() |
fcc764639d | ||
![]() |
821385ad00 | ||
![]() |
b0fc31b390 | ||
![]() |
25ff76d565 | ||
![]() |
9801fb61d0 | ||
![]() |
20199ca809 | ||
![]() |
711f1a3c26 | ||
![]() |
a1d85309ee | ||
![]() |
450cee5c3a | ||
![]() |
a2dbcf3644 | ||
![]() |
4663355496 | ||
![]() |
9dc610495c | ||
![]() |
055076cd4f | ||
![]() |
527497a722 | ||
![]() |
32d21c1ef6 | ||
![]() |
629b58b7fb | ||
![]() |
7fa2a81d34 | ||
![]() |
7f66ab4783 | ||
![]() |
95189389b0 | ||
![]() |
b4b82ab465 | ||
![]() |
89618e7a0d | ||
![]() |
b87e2576b5 | ||
![]() |
0bf23d9b20 | ||
![]() |
813f256783 | ||
![]() |
bfa96bc20e | ||
![]() |
6f17f16fd5 | ||
![]() |
84034f7aec | ||
![]() |
6ceffdd121 | ||
![]() |
acce40c585 | ||
![]() |
6dc78bf7e8 | ||
![]() |
9c8fd367c4 | ||
![]() |
ce4f169ff9 | ||
![]() |
c566205319 | ||
![]() |
eaf6c61c9f | ||
![]() |
4c53d11d7f | ||
![]() |
1d647444e3 | ||
![]() |
c1eeb6078f | ||
![]() |
953db08416 | ||
![]() |
0a5942093e | ||
![]() |
d78254aa28 | ||
![]() |
af67804bef | ||
![]() |
35a6db8640 | ||
![]() |
56dc24d483 | ||
![]() |
84d828ab70 | ||
![]() |
cfae3d94e9 | ||
![]() |
b9c23cca01 | ||
![]() |
c863201780 | ||
![]() |
cb21d001c9 | ||
![]() |
c7faede37b | ||
![]() |
d4e573f305 | ||
![]() |
e20afbb340 | ||
![]() |
2b2ab52354 | ||
![]() |
8d6e60486f | ||
![]() |
1f30946481 | ||
![]() |
b1697f189b | ||
![]() |
17a202add7 | ||
![]() |
3bd16a8902 | ||
![]() |
555d75252a | ||
![]() |
eaad02a747 | ||
![]() |
97101fafd5 | ||
![]() |
403f1bdc70 | ||
![]() |
d574d83993 | ||
![]() |
83411793b6 | ||
![]() |
65caee44ff | ||
![]() |
738554331b | ||
![]() |
3f083ef0eb | ||
![]() |
17ed6c06a7 | ||
![]() |
c112323dd5 | ||
![]() |
0709385d3c | ||
![]() |
54a656ef08 | ||
![]() |
8f797f14b8 | ||
![]() |
c0d64de660 | ||
![]() |
c1ce8cf3b8 | ||
![]() |
2d780dfd81 | ||
![]() |
b6fee5c2fb | ||
![]() |
10fa047622 | ||
![]() |
04f0a6ba39 | ||
![]() |
78a0aebbd8 | ||
![]() |
eb43641dd3 | ||
![]() |
d479dc1d02 | ||
![]() |
7fb8d254fe | ||
![]() |
c99935e32c | ||
![]() |
2232e262bf | ||
![]() |
137e7e3aa1 | ||
![]() |
ba36b61d3d | ||
![]() |
ccb13ded84 | ||
![]() |
9ea1b87862 | ||
![]() |
688cf84d1f | ||
![]() |
69ce48c307 | ||
![]() |
06b7c8d5ba | ||
![]() |
6722b62b36 | ||
![]() |
7d80b27949 | ||
![]() |
d742bd882e | ||
![]() |
97a06ad9ef | ||
![]() |
756b9a0046 | ||
![]() |
96c930dd2f | ||
![]() |
14f4feb05b | ||
![]() |
c81a15099a | ||
![]() |
a8c125550c | ||
![]() |
3782350c14 | ||
![]() |
d6257073aa | ||
![]() |
ddff68bee7 | ||
![]() |
491659c436 | ||
![]() |
8d6fc30bc7 | ||
![]() |
56824b9658 | ||
![]() |
3ba2b94a6b | ||
![]() |
892e9625d3 | ||
![]() |
e2916b2540 | ||
![]() |
53b80e2e43 | ||
![]() |
1810d2088e | ||
![]() |
d618f703ec | ||
![]() |
896e4fef30 | ||
![]() |
38c7271a39 | ||
![]() |
5e3247d8bc | ||
![]() |
b53e44e572 | ||
![]() |
e5f4d8279d | ||
![]() |
86e8b56ac4 | ||
![]() |
bff1567623 | ||
![]() |
db199abd9e | ||
![]() |
b6d0defb98 | ||
![]() |
ad22b914d6 | ||
![]() |
f216fae545 | ||
![]() |
7fff663991 | ||
![]() |
242823c9bc | ||
![]() |
40efa67248 | ||
![]() |
3df44c0571 | ||
![]() |
769fedc3ad | ||
![]() |
9c3db400dc | ||
![]() |
d9ec9d990f | ||
![]() |
7d5376fdae | ||
![]() |
b5148cf1f7 | ||
![]() |
90a617e050 | ||
![]() |
259cdf2af9 | ||
![]() |
6c950e0dc9 | ||
![]() |
62dd6f161a | ||
![]() |
6aba658cd8 | ||
![]() |
accb0c6edb | ||
![]() |
e0db2eed8d | ||
![]() |
7c99da56cf | ||
![]() |
00a357ab20 | ||
![]() |
8ee4845b65 | ||
![]() |
19b8d06a79 | ||
![]() |
5c6bf03117 | ||
![]() |
f72ed6153b | ||
![]() |
d652a0957f | ||
![]() |
fbcd27907b | ||
![]() |
a551bea52e | ||
![]() |
6cb686208e | ||
![]() |
bd1fb77245 | ||
![]() |
d610d27f30 | ||
![]() |
96b35c9e26 | ||
![]() |
907a8f1e6e | ||
![]() |
e1c191fe44 | ||
![]() |
5aa3429c5d | ||
![]() |
ffd418f217 | ||
![]() |
0711be1696 | ||
![]() |
7521ab3d0b | ||
![]() |
0587ec2645 | ||
![]() |
b76d66fbf6 | ||
![]() |
06f851f721 | ||
![]() |
f6661d391c | ||
![]() |
284b216b3a | ||
![]() |
05dbe6ee1f | ||
![]() |
871d0f5126 | ||
![]() |
5be1264b7e | ||
![]() |
311d8d84bd | ||
![]() |
314c667050 | ||
![]() |
28c8a911bd | ||
![]() |
437d1ed49f | ||
![]() |
12fd8be2c4 | ||
![]() |
8258f7b361 | ||
![]() |
e15ea3d9e1 | ||
![]() |
677532629d | ||
![]() |
57d8ff79b2 | ||
![]() |
4b14ed760d | ||
![]() |
79a6260a11 | ||
![]() |
a0bf8f2008 | ||
![]() |
408bf2f0c4 | ||
![]() |
874fee478c | ||
![]() |
90d9a69bb1 | ||
![]() |
4006c56036 | ||
![]() |
1729588435 | ||
![]() |
6f7c2cb31e | ||
![]() |
8fd54b07a8 | ||
![]() |
a4629f4136 | ||
![]() |
56b5f687e4 | ||
![]() |
caa4f47f61 | ||
![]() |
36757b4438 | ||
![]() |
75871dda4b | ||
![]() |
506fec1a95 | ||
![]() |
aae329c447 | ||
![]() |
02acf1409e | ||
![]() |
6ac3309c74 | ||
![]() |
1b15cfa11d | ||
![]() |
76dfca879f | ||
![]() |
7cdc7bacea | ||
![]() |
fbd78b5c08 | ||
![]() |
fbcd0da597 | ||
![]() |
665dc3924d | ||
![]() |
4bdacff25b | ||
![]() |
ecd45314b8 | ||
![]() |
3e06fb754e | ||
![]() |
b2e20a31ea | ||
![]() |
38e19a4220 | ||
![]() |
f28164fefd | ||
![]() |
2eaabb718b | ||
![]() |
5572f482e7 | ||
![]() |
729f0a277e | ||
![]() |
c55d759168 | ||
![]() |
b7910992d8 | ||
![]() |
cf3b8b52f1 | ||
![]() |
42b06fbaca | ||
![]() |
2245cd87d4 | ||
![]() |
c199837c54 | ||
![]() |
83699c4784 | ||
![]() |
30afcc072a | ||
![]() |
832f9304fd | ||
![]() |
fa4bde98d2 | ||
![]() |
ca80756c70 | ||
![]() |
ef0baf60aa | ||
![]() |
7ba3a4c3d2 | ||
![]() |
29e48c18b7 | ||
![]() |
982dfb7d10 | ||
![]() |
8c4b69d3ab | ||
![]() |
0e2cc42cfb | ||
![]() |
1e5c205ccb | ||
![]() |
4c82171a8e | ||
![]() |
88c80b3e75 | ||
![]() |
3ae068316b | ||
![]() |
27bad5ad3d | ||
![]() |
6a89a25c27 | ||
![]() |
001ab3abad | ||
![]() |
ec8ad2bb96 | ||
![]() |
5fbb02fcb1 | ||
![]() |
4e1b50e219 | ||
![]() |
d7b2342a6a | ||
![]() |
7e9db7cefc | ||
![]() |
d30e4c5b0b | ||
![]() |
9de6bb8abc | ||
![]() |
72e04bd13f | ||
![]() |
4ec0448122 | ||
![]() |
842d8e209b | ||
![]() |
292fcd5c7b | ||
![]() |
74e3931f84 | ||
![]() |
12dadc555f | ||
![]() |
b75b2225e5 | ||
![]() |
12f27bd414 | ||
![]() |
69deec58fb | ||
![]() |
1e976bdc46 | ||
![]() |
9946fceb9d | ||
![]() |
6fed88113b | ||
![]() |
97ebe047d0 | ||
![]() |
fc6a6a1030 | ||
![]() |
3d840c827f | ||
![]() |
a2a1a04e53 | ||
![]() |
f86abc2e80 | ||
![]() |
7104c376ae | ||
![]() |
0638ced5cc | ||
![]() |
e984b2af64 | ||
![]() |
70e96dcf59 | ||
![]() |
2c696b2ddc | ||
![]() |
9a48b07ee4 | ||
![]() |
230fd6b7b6 | ||
![]() |
fd1c27897c | ||
![]() |
20b33a015f | ||
![]() |
293d5082c7 | ||
![]() |
929f116733 | ||
![]() |
ba5ba5490d | ||
![]() |
b8565a9af9 | ||
![]() |
c4a24b13f3 | ||
![]() |
94960c8421 | ||
![]() |
6859cf7459 | ||
![]() |
2018681b33 | ||
![]() |
e204516178 | ||
![]() |
153aecf91a | ||
![]() |
cd98ab6491 | ||
![]() |
b3823ac64b | ||
![]() |
5d9470ff8e | ||
![]() |
e78f137899 | ||
![]() |
40e66398db | ||
![]() |
bb298120c9 | ||
![]() |
6e32d0a74b | ||
![]() |
a4f53a1c73 | ||
![]() |
a90ae02454 | ||
![]() |
4c8f79a33e | ||
![]() |
7cc6ec7af7 | ||
![]() |
c2bbf275b2 | ||
![]() |
9226e2187c | ||
![]() |
48921e00fc | ||
![]() |
f804930150 | ||
![]() |
3403caf3da | ||
![]() |
ba11121731 | ||
![]() |
ed5e37c309 | ||
![]() |
65b1d31df5 | ||
![]() |
b499ed06d2 | ||
![]() |
6ff7c95843 | ||
![]() |
41cc7096b8 | ||
![]() |
c237de058f | ||
![]() |
e2aeb8174b | ||
![]() |
34f1f2a81c | ||
![]() |
c96f0fd2d1 | ||
![]() |
8aefe253a7 | ||
![]() |
7e31164ae0 | ||
![]() |
ad55f581f9 | ||
![]() |
d4a8f90cab | ||
![]() |
41ab00bedf | ||
![]() |
fc85ac20c7 | ||
![]() |
e88479243c | ||
![]() |
c787525ac8 | ||
![]() |
9a2601033d | ||
![]() |
fbb311a7d2 | ||
![]() |
f309c1ae50 | ||
![]() |
82a20fb0f0 | ||
![]() |
428112ef10 | ||
![]() |
64376cd8ff | ||
![]() |
cc8aa08b02 | ||
![]() |
1c4e4e4f56 | ||
![]() |
3f6db7f518 | ||
![]() |
8435a755fd | ||
![]() |
52c29b7b99 | ||
![]() |
c6bf63da7c | ||
![]() |
0fd05a2f0f | ||
![]() |
1fd0338b49 | ||
![]() |
b2be73e4e8 | ||
![]() |
37f5fcf85c | ||
![]() |
f742e497dd | ||
![]() |
dcc426fcfe | ||
![]() |
7eb18f1237 | ||
![]() |
265e892fed | ||
![]() |
c3bfe3f4cb | ||
![]() |
623e9e66c0 | ||
![]() |
90f5a2b6fe | ||
![]() |
bf625abe29 | ||
![]() |
b44069730b | ||
![]() |
749d055eba | ||
![]() |
49a0f77867 | ||
![]() |
2af52de7b5 | ||
![]() |
629d860cbc | ||
![]() |
056cc163f5 | ||
![]() |
e09efcf71a | ||
![]() |
763b4dcc66 | ||
![]() |
83348e0b80 | ||
![]() |
f13ddd5d0a | ||
![]() |
18a31aa861 | ||
![]() |
b2a4e959c9 | ||
![]() |
f17ef241d1 | ||
![]() |
aa1e56b0b9 | ||
![]() |
7ef524ea1c | ||
![]() |
0c7141a343 | ||
![]() |
5488bb6197 | ||
![]() |
8e28c67155 | ||
![]() |
36969082bb | ||
![]() |
4fde69b066 | ||
![]() |
fd9a4dbe94 | ||
![]() |
f0db0ed35d | ||
![]() |
6d24cbf452 | ||
![]() |
5454829ae6 | ||
![]() |
da0bca6466 | ||
![]() |
4705bd9b37 | ||
![]() |
5bd90983bc | ||
![]() |
329f981582 | ||
![]() |
d84a727178 | ||
![]() |
cece7adcee | ||
![]() |
74cc4903ef | ||
![]() |
41fdcfa71e | ||
![]() |
e463adeff8 | ||
![]() |
60cc56b1a9 | ||
![]() |
f912e9293f | ||
![]() |
56939728b7 | ||
![]() |
e39238e403 | ||
![]() |
ea26226046 | ||
![]() |
17f6279317 | ||
![]() |
e172d60ddb | ||
![]() |
ecdf154993 | ||
![]() |
f8fe7fa491 | ||
![]() |
fbe792f0ac | ||
![]() |
5d92a7bef1 | ||
![]() |
8246c0607a | ||
![]() |
bfce617770 | ||
![]() |
14a7cfb32a | ||
![]() |
7a8645d171 | ||
![]() |
5bf738737d | ||
![]() |
415e03aa6f | ||
![]() |
ac120e20e3 | ||
![]() |
3f90e45079 | ||
![]() |
9dcc441a5f | ||
![]() |
db4f691f9f | ||
![]() |
d28735a05b | ||
![]() |
183847747a | ||
![]() |
bac6012308 | ||
![]() |
aaa384ca1a | ||
![]() |
f908226898 | ||
![]() |
909abce800 | ||
![]() |
33d4e690cc | ||
![]() |
848c849584 | ||
![]() |
102c8f47bf | ||
![]() |
d3bcbba45c | ||
![]() |
0903e56196 | ||
![]() |
95ecacf8a2 | ||
![]() |
be8a280e0b | ||
![]() |
6fb60a84dd | ||
![]() |
5af7d1a3b8 | ||
![]() |
35b73a1f20 | ||
![]() |
9e4f9b36fc | ||
![]() |
84d7e365a0 | ||
![]() |
64c3da230f | ||
![]() |
7793f30e09 | ||
![]() |
714df32e33 | ||
![]() |
1dc920c8de | ||
![]() |
16dc1cfb5c | ||
![]() |
819ff32dc4 | ||
![]() |
5574e0ed41 | ||
![]() |
1ce60f02d3 | ||
![]() |
042e57d562 | ||
![]() |
bb34d6de74 | ||
![]() |
89918b5c17 | ||
![]() |
ba8fb52183 | ||
![]() |
f6f9961819 | ||
![]() |
e74e9c48de | ||
![]() |
179add2b07 | ||
![]() |
456bc309d8 | ||
![]() |
a7535a2727 | ||
![]() |
44c09667ff | ||
![]() |
da9b972466 | ||
![]() |
bd45950f4a | ||
![]() |
f70cf11819 | ||
![]() |
5575f781ad | ||
![]() |
0472883cc2 | ||
![]() |
87e8feca95 | ||
![]() |
e70a39830c | ||
![]() |
ba25198517 | ||
![]() |
6297bcd74c | ||
![]() |
dd7ab82e75 | ||
![]() |
c046fffa16 | ||
![]() |
3aecef7697 | ||
![]() |
b218af2b27 | ||
![]() |
46859bf421 | ||
![]() |
6cae350ad1 | ||
![]() |
cfebe39d42 | ||
![]() |
eb80f91278 | ||
![]() |
7a0c6536e2 | ||
![]() |
77c46bbf29 | ||
![]() |
02750ff56f | ||
![]() |
0bee0e6294 | ||
![]() |
12593e6f45 | ||
![]() |
819a040f44 | ||
![]() |
546405bece | ||
![]() |
b5b000d77e | ||
![]() |
f013c7f2a6 | ||
![]() |
1cc67fa80c | ||
![]() |
eefa6e4e2b | ||
![]() |
6d9116f83d | ||
![]() |
8be4e173e8 | ||
![]() |
648765ba2f | ||
![]() |
c6ccf055ba | ||
![]() |
1649d85d10 | ||
![]() |
cd72dcd925 | ||
![]() |
7a5ed919ad | ||
![]() |
799d7a34cf | ||
![]() |
20adcfa058 | ||
![]() |
6c2650a6fc | ||
![]() |
02b7ec88bb | ||
![]() |
e2cdf9c994 | ||
![]() |
0af9a89cef | ||
![]() |
290416db2a | ||
![]() |
db802c60e3 | ||
![]() |
503f3b1a21 | ||
![]() |
402bcde847 | ||
![]() |
ff192dce10 | ||
![]() |
8b98de6653 | ||
![]() |
ec9ea6a3c8 | ||
![]() |
7e6617611f | ||
![]() |
ca6dde5d3d | ||
![]() |
8e6cbcd7c0 | ||
![]() |
9335a5f7c0 | ||
![]() |
32bf74e30e | ||
![]() |
6643f275e2 | ||
![]() |
cd4c36adb8 | ||
![]() |
311e209931 | ||
![]() |
951d8e0d6b | ||
![]() |
fe5eb6707f | ||
![]() |
f5db08e57a | ||
![]() |
8cfdb960f0 | ||
![]() |
ebccb429de | ||
![]() |
7dbed652fc | ||
![]() |
6789b41d86 | ||
![]() |
0487cb234c | ||
![]() |
80e1495b99 | ||
![]() |
041843e47e | ||
![]() |
c2aa4f2081 | ||
![]() |
b23f50e67e | ||
![]() |
7fe03ed3a3 | ||
![]() |
9466fa6750 | ||
![]() |
cead7f36da | ||
![]() |
cbecb3ac37 | ||
![]() |
5dbd3efce7 | ||
![]() |
876811e2af | ||
![]() |
b57c98df7b | ||
![]() |
c4da6dd38a | ||
![]() |
2edcb4ac71 | ||
![]() |
0c4d9b2fbc | ||
![]() |
5012158adf | ||
![]() |
5c9396e37c | ||
![]() |
7b63c0fa8c | ||
![]() |
063a8905bf | ||
![]() |
cd7562091d | ||
![]() |
d1d0be3cd2 | ||
![]() |
2c8ad4f1af | ||
![]() |
121dea3f85 | ||
![]() |
ea4f109c99 | ||
![]() |
7650934f21 | ||
![]() |
40c5cae24a | ||
![]() |
cce9396dc9 | ||
![]() |
47f3eafb8d | ||
![]() |
53fc93dda6 | ||
![]() |
17085b022c | ||
![]() |
4367eb8706 | ||
![]() |
0a8a99785b | ||
![]() |
a9d96b98cb | ||
![]() |
ae689b6b27 | ||
![]() |
60d160da2d | ||
![]() |
05086644c4 | ||
![]() |
fb96d9d90d | ||
![]() |
e1a32c1807 | ||
![]() |
5585f4eca4 | ||
![]() |
e8b4d05f61 | ||
![]() |
0df748e7e2 | ||
![]() |
1fbcfbe693 | ||
![]() |
34ab17b669 | ||
![]() |
b99e18bbec | ||
![]() |
4942ef6f0e | ||
![]() |
9ae08a9c04 | ||
![]() |
76f8a1f51d | ||
![]() |
9d358821e5 | ||
![]() |
49b10f72ec | ||
![]() |
a6c6874a1a | ||
![]() |
a947f2d2b6 | ||
![]() |
94e19e7111 | ||
![]() |
04677ce024 | ||
![]() |
407adb5b17 | ||
![]() |
da0616cd13 | ||
![]() |
1c02ca537a | ||
![]() |
3f2f3d4264 | ||
![]() |
c4c2c61e8c | ||
![]() |
5f3d6f70f6 | ||
![]() |
ece0bdf1fd | ||
![]() |
97e4b1883e | ||
![]() |
a2b38b3022 | ||
![]() |
d51092f42b | ||
![]() |
bdb6171334 | ||
![]() |
1d4547a43d | ||
![]() |
65ee74fbc7 | ||
![]() |
c21506ba02 | ||
![]() |
00f1628eac | ||
![]() |
c69d103956 | ||
![]() |
d56f92ee78 | ||
![]() |
d5492d9b47 | ||
![]() |
451dc18f10 | ||
![]() |
23f0541263 | ||
![]() |
127dca46a0 | ||
![]() |
e888074bb4 | ||
![]() |
1ef5026ef9 | ||
![]() |
40889b9cd3 | ||
![]() |
99889b46c9 | ||
![]() |
82869b3c8d | ||
![]() |
e8233e699b | ||
![]() |
04cc76660a | ||
![]() |
e1f7ea25d2 | ||
![]() |
8586df1efb | ||
![]() |
b8e0e12399 | ||
![]() |
254ef80db1 | ||
![]() |
f9de8446a0 | ||
![]() |
d15711efc6 | ||
![]() |
25ace3ed25 | ||
![]() |
012c86ab74 | ||
![]() |
458c29175e | ||
![]() |
8a5dbb0a2e | ||
![]() |
532203cdb0 | ||
![]() |
870d3d5595 | ||
![]() |
c6c0e4cb32 | ||
![]() |
8f6f347848 | ||
![]() |
0f7b63c834 | ||
![]() |
64ed18ef20 | ||
![]() |
345731731a | ||
![]() |
b2c04539a1 | ||
![]() |
72645b83bb | ||
![]() |
d13363af60 | ||
![]() |
b6fc2386f0 | ||
![]() |
9f353dd662 | ||
![]() |
b49053cae2 | ||
![]() |
c8062c3a5e | ||
![]() |
05c08fc708 | ||
![]() |
0990a0851a | ||
![]() |
bb0db9c491 | ||
![]() |
966a753997 | ||
![]() |
0f829bd111 | ||
![]() |
a5200a1b8f | ||
![]() |
6631a7e7f1 | ||
![]() |
010da5c015 | ||
![]() |
fbb56e5b1d | ||
![]() |
78055aa6a5 | ||
![]() |
e6bd5e8a6d | ||
![]() |
94f1b50c0f | ||
![]() |
bd54d55c1d | ||
![]() |
09c70c3261 | ||
![]() |
1ed0c6621b | ||
![]() |
5f8453587e | ||
![]() |
b57e656095 | ||
![]() |
d6e2d12c74 | ||
![]() |
305a1afcf7 | ||
![]() |
9cdf87f194 | ||
![]() |
a81e9d3dc4 | ||
![]() |
6b7e0a9987 | ||
![]() |
8b57fb1208 | ||
![]() |
2551fc047c | ||
![]() |
2962243d19 | ||
![]() |
dbdc5d14d3 | ||
![]() |
6cbe638294 | ||
![]() |
07c08ed42c | ||
![]() |
17b226a672 | ||
![]() |
f33ca23e2f | ||
![]() |
a0f6331507 | ||
![]() |
6d79659dd7 | ||
![]() |
c56fb0f1a3 | ||
![]() |
08241a5814 | ||
![]() |
3d27b1fa85 | ||
![]() |
71aa7c586b | ||
![]() |
7462f2644c | ||
![]() |
6298bf9073 | ||
![]() |
9a26adf598 | ||
![]() |
64ad04eb2d | ||
![]() |
349b293353 | ||
![]() |
fd91256316 | ||
![]() |
a9a025d08c | ||
![]() |
b605e3ada3 | ||
![]() |
02cbedc387 | ||
![]() |
e5d814d040 | ||
![]() |
b09f4fb271 | ||
![]() |
1f4eada3b4 | ||
![]() |
b935754cb0 | ||
![]() |
396bc53593 | ||
![]() |
7711de24f9 | ||
![]() |
eee6c81af8 | ||
![]() |
b89670ef0e | ||
![]() |
0fccb00b5b | ||
![]() |
72da660ddb | ||
![]() |
46ffee4792 | ||
![]() |
c0a953650b | ||
![]() |
0424fe1a8f | ||
![]() |
544a2aea4b | ||
![]() |
60e5f36d27 | ||
![]() |
2469361c0f | ||
![]() |
6fa865a325 | ||
![]() |
e9ba69631b | ||
![]() |
d80a8d1919 | ||
![]() |
d0ff2a237b | ||
![]() |
6e5dd63c77 | ||
![]() |
dc014d43af | ||
![]() |
2f9cf160e4 | ||
![]() |
69043fa13f | ||
![]() |
336c35dc9e | ||
![]() |
72b5215645 | ||
![]() |
e0b110267d | ||
![]() |
8f1e8d274e | ||
![]() |
06bed64317 | ||
![]() |
a09d349071 | ||
![]() |
c559759265 | ||
![]() |
b4000e8ad8 | ||
![]() |
e27fd320fc | ||
![]() |
21d5ed98d5 | ||
![]() |
e9a182fa30 | ||
![]() |
b6db386ffd | ||
![]() |
2c975b501d | ||
![]() |
279fe3b1c5 | ||
![]() |
98a9092af1 | ||
![]() |
87108f5af9 | ||
![]() |
f257d984b7 | ||
![]() |
b889d6a8e8 | ||
![]() |
47234cd3d2 | ||
![]() |
2c8d0dccfc | ||
![]() |
a4f576a378 | ||
![]() |
3def5a010e | ||
![]() |
294bd1e2f3 | ||
![]() |
253ef2187c | ||
![]() |
c0455cbb18 | ||
![]() |
17e2c77a77 | ||
![]() |
b52f3818f4 | ||
![]() |
cc12975514 | ||
![]() |
9738f395c6 | ||
![]() |
d4294c8984 | ||
![]() |
8df61b5011 | ||
![]() |
f1e6643751 | ||
![]() |
6991bf196c | ||
![]() |
822a4c1bdb | ||
![]() |
a5868b3fe2 | ||
![]() |
4edfacb983 | ||
![]() |
c6efe6f59e | ||
![]() |
35c2b3a9ac | ||
![]() |
af9675e75a | ||
![]() |
66ae107a14 | ||
![]() |
8b2f9cdfad | ||
![]() |
01682a8b3c | ||
![]() |
8b07f23c30 | ||
![]() |
45932ad508 | ||
![]() |
ce94682ce1 | ||
![]() |
2d7ab7e9ea | ||
![]() |
6176df94ed | ||
![]() |
a8f8788248 | ||
![]() |
d5d007abe3 | ||
![]() |
32e692ce07 | ||
![]() |
151457ab16 | ||
![]() |
dde3e83129 | ||
![]() |
8f182fdc69 | ||
![]() |
1064acafc4 | ||
![]() |
ff8e412ceb | ||
![]() |
e9cbcb1d98 | ||
![]() |
ea7fc0311c | ||
![]() |
30911232c1 | ||
![]() |
2940a1298e | ||
![]() |
f916052eab | ||
![]() |
2fb3f002d0 | ||
![]() |
82b0bf0b87 | ||
![]() |
3a7cef3e76 | ||
![]() |
592c0e0273 | ||
![]() |
08b977b5a5 | ||
![]() |
85fb12d554 | ||
![]() |
b975183c41 | ||
![]() |
083100e2ab | ||
![]() |
241d2ba1da | ||
![]() |
e4fb49775b | ||
![]() |
381a146dc6 | ||
![]() |
b4a262832a | ||
![]() |
6d498d478e | ||
![]() |
d0561b5c2d | ||
![]() |
4f4b192402 | ||
![]() |
0ae1661ba2 | ||
![]() |
4e9ef338fc | ||
![]() |
d16e1131b4 | ||
![]() |
a18894d159 | ||
![]() |
dfee50ecd9 | ||
![]() |
10189984f9 | ||
![]() |
d8425465a3 | ||
![]() |
1fc02dcf6a | ||
![]() |
83d092f785 | ||
![]() |
4825092bbe | ||
![]() |
bbd79bdf03 | ||
![]() |
a096e9b719 | ||
![]() |
ddab25a90d | ||
![]() |
ffbe98b763 | ||
![]() |
d7a9bb0a2a | ||
![]() |
0d81c69b8e | ||
![]() |
401cd0af0f | ||
![]() |
c7b41e67f0 | ||
![]() |
003144a8e8 | ||
![]() |
af1cb47e65 | ||
![]() |
e8e7fbdb16 | ||
![]() |
d5c21afd4b | ||
![]() |
1afa967909 | ||
![]() |
85b7b80434 | ||
![]() |
fe0f662310 | ||
![]() |
90453438ff | ||
![]() |
2e63f3b733 | ||
![]() |
125cc35b59 | ||
![]() |
7e58aa7d71 | ||
![]() |
be3d90de02 | ||
![]() |
82652aaf17 | ||
![]() |
17d6bb8158 | ||
![]() |
11c26ecf81 | ||
![]() |
99d5b23023 | ||
![]() |
611ba3f4a1 | ||
![]() |
af28dd6c75 | ||
![]() |
e79ec456be | ||
![]() |
3e268d2717 | ||
![]() |
c46acbacde | ||
![]() |
304d90425f | ||
![]() |
bfaa8a89e1 | ||
![]() |
de941e289e | ||
![]() |
1d28453529 | ||
![]() |
690ecff795 | ||
![]() |
234c73767d | ||
![]() |
497810cae7 | ||
![]() |
cbc9d9713d | ||
![]() |
98fa4fe8c5 | ||
![]() |
0b4c91c0fc | ||
![]() |
b9b43196e1 | ||
![]() |
bf6a9e66d6 | ||
![]() |
0c372b94f7 | ||
![]() |
26e1237380 | ||
![]() |
4882171df5 | ||
![]() |
931627e6a0 | ||
![]() |
274a2c9970 | ||
![]() |
006fcc22a8 | ||
![]() |
709c51c424 | ||
![]() |
9bc448546e | ||
![]() |
0dc092334b | ||
![]() |
36c194638e | ||
![]() |
45fb737950 | ||
![]() |
a01273bae3 | ||
![]() |
2c17323e15 | ||
![]() |
870694b3da | ||
![]() |
87a4b4d1f4 | ||
![]() |
8ecf5104b3 | ||
![]() |
2b3aeffbbd | ||
![]() |
2c2f9e2cc3 | ||
![]() |
2d9b1b3ffa | ||
![]() |
f070480275 | ||
![]() |
49f1597de2 | ||
![]() |
b44e425f39 | ||
![]() |
93683c3cf8 | ||
![]() |
a08ee55e2d | ||
![]() |
3bac6d9479 | ||
![]() |
5c5143de48 | ||
![]() |
c8cd7d9e0f | ||
![]() |
e0a6cdcf30 | ||
![]() |
a0ecb9b8fc | ||
![]() |
4bf4bc784f | ||
![]() |
9437fef8cc | ||
![]() |
16b0384bd2 | ||
![]() |
87ebdd8a71 | ||
![]() |
7d68189d8a | ||
![]() |
26414ee013 | ||
![]() |
5c62f68e14 | ||
![]() |
0d22b5dace | ||
![]() |
023ec151df | ||
![]() |
59dbdb51dc | ||
![]() |
92d1bc09cb | ||
![]() |
d62bfb39cd | ||
![]() |
ce4b274aa1 | ||
![]() |
334f1842fc | ||
![]() |
b12540520d | ||
![]() |
0d7b9b8b7e | ||
![]() |
31188ee1a8 | ||
![]() |
4a3e6bce79 | ||
![]() |
a3829cb720 | ||
![]() |
e84be9b495 | ||
![]() |
3a3ca3f515 | ||
![]() |
032c49b8b3 | ||
![]() |
3208ff58ca | ||
![]() |
6707d22a40 | ||
![]() |
3647bee263 | ||
![]() |
e2aebccba1 | ||
![]() |
3e563bcea7 | ||
![]() |
92f91ff48b | ||
![]() |
b3dfaaa143 | ||
![]() |
5b7848a345 | ||
![]() |
915c6a21ba | ||
![]() |
58706d595b | ||
![]() |
236be53269 | ||
![]() |
1fc1bd382b | ||
![]() |
a60033f106 | ||
![]() |
3613e6fc57 | ||
![]() |
f8e21776f9 | ||
![]() |
006723cf76 | ||
![]() |
aa89bcd279 | ||
![]() |
f19759a182 | ||
![]() |
d009bcbfb6 | ||
![]() |
4b71f63ac0 | ||
![]() |
3adb8c3854 | ||
![]() |
02e666d59f | ||
![]() |
5b2d6ff07e | ||
![]() |
877b2fbd3c | ||
![]() |
afeab58a3c | ||
![]() |
744c49a81b | ||
![]() |
9c5b91fd0b | ||
![]() |
290d3eab76 | ||
![]() |
46dae77c23 | ||
![]() |
a6cd870784 | ||
![]() |
97879bcd57 | ||
![]() |
ab1dee1efc | ||
![]() |
e072aa535d | ||
![]() |
48f9859d2a | ||
![]() |
48b5083ca0 | ||
![]() |
cd64618674 | ||
![]() |
5d7e960adf |
193
CHANGES
193
CHANGES
@@ -2,7 +2,194 @@
|
|||||||
OpenSSL CHANGES
|
OpenSSL CHANGES
|
||||||
_______________
|
_______________
|
||||||
|
|
||||||
Changes between 0.9.6c and 0.9.6d [XX xxx XXXX]
|
Changes between 0.9.6i and 0.9.6j [10 Apr 2003]
|
||||||
|
|
||||||
|
*) Countermeasure against the Klima-Pokorny-Rosa extension of
|
||||||
|
Bleichbacher's attack on PKCS #1 v1.5 padding: treat
|
||||||
|
a protocol version number mismatch like a decryption error
|
||||||
|
in ssl3_get_client_key_exchange (ssl/s3_srvr.c).
|
||||||
|
[Bodo Moeller]
|
||||||
|
|
||||||
|
*) Turn on RSA blinding by default in the default implementation
|
||||||
|
to avoid a timing attack. Applications that don't want it can call
|
||||||
|
RSA_blinding_off() or use the new flag RSA_FLAG_NO_BLINDING.
|
||||||
|
They would be ill-advised to do so in most cases.
|
||||||
|
[Ben Laurie, Steve Henson, Geoff Thorpe, Bodo Moeller]
|
||||||
|
|
||||||
|
*) Change RSA blinding code so that it works when the PRNG is not
|
||||||
|
seeded (in this case, the secret RSA exponent is abused as
|
||||||
|
an unpredictable seed -- if it is not unpredictable, there
|
||||||
|
is no point in blinding anyway). Make RSA blinding thread-safe
|
||||||
|
by remembering the creator's thread ID in rsa->blinding and
|
||||||
|
having all other threads use local one-time blinding factors
|
||||||
|
(this requires more computation than sharing rsa->blinding, but
|
||||||
|
avoids excessive locking; and if an RSA object is not shared
|
||||||
|
between threads, blinding will still be very fast).
|
||||||
|
[Bodo Moeller]
|
||||||
|
|
||||||
|
Changes between 0.9.6h and 0.9.6i [19 Feb 2003]
|
||||||
|
|
||||||
|
*) In ssl3_get_record (ssl/s3_pkt.c), minimize information leaked
|
||||||
|
via timing by performing a MAC computation even if incorrrect
|
||||||
|
block cipher padding has been found. This is a countermeasure
|
||||||
|
against active attacks where the attacker has to distinguish
|
||||||
|
between bad padding and a MAC verification error. (CAN-2003-0078)
|
||||||
|
|
||||||
|
[Bodo Moeller; problem pointed out by Brice Canvel (EPFL),
|
||||||
|
Alain Hiltgen (UBS), Serge Vaudenay (EPFL), and
|
||||||
|
Martin Vuagnoux (EPFL, Ilion)]
|
||||||
|
|
||||||
|
Changes between 0.9.6g and 0.9.6h [5 Dec 2002]
|
||||||
|
|
||||||
|
*) New function OPENSSL_cleanse(), which is used to cleanse a section of
|
||||||
|
memory from it's contents. This is done with a counter that will
|
||||||
|
place alternating values in each byte. This can be used to solve
|
||||||
|
two issues: 1) the removal of calls to memset() by highly optimizing
|
||||||
|
compilers, and 2) cleansing with other values than 0, since those can
|
||||||
|
be read through on certain media, for example a swap space on disk.
|
||||||
|
[Geoff Thorpe]
|
||||||
|
|
||||||
|
*) Bugfix: client side session caching did not work with external caching,
|
||||||
|
because the session->cipher setting was not restored when reloading
|
||||||
|
from the external cache. This problem was masked, when
|
||||||
|
SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG (part of SSL_OP_ALL) was set.
|
||||||
|
(Found by Steve Haslam <steve@araqnid.ddts.net>.)
|
||||||
|
[Lutz Jaenicke]
|
||||||
|
|
||||||
|
*) Fix client_certificate (ssl/s2_clnt.c): The permissible total
|
||||||
|
length of the REQUEST-CERTIFICATE message is 18 .. 34, not 17 .. 33.
|
||||||
|
[Zeev Lieber <zeev-l@yahoo.com>]
|
||||||
|
|
||||||
|
*) Undo an undocumented change introduced in 0.9.6e which caused
|
||||||
|
repeated calls to OpenSSL_add_all_ciphers() and
|
||||||
|
OpenSSL_add_all_digests() to be ignored, even after calling
|
||||||
|
EVP_cleanup().
|
||||||
|
[Richard Levitte]
|
||||||
|
|
||||||
|
*) Change the default configuration reader to deal with last line not
|
||||||
|
being properly terminated.
|
||||||
|
[Richard Levitte]
|
||||||
|
|
||||||
|
*) Change X509_NAME_cmp() so it applies the special rules on handling
|
||||||
|
DN values that are of type PrintableString, as well as RDNs of type
|
||||||
|
emailAddress where the value has the type ia5String.
|
||||||
|
[stefank@valicert.com via Richard Levitte]
|
||||||
|
|
||||||
|
*) Add a SSL_SESS_CACHE_NO_INTERNAL_STORE flag to take over half
|
||||||
|
the job SSL_SESS_CACHE_NO_INTERNAL_LOOKUP was inconsistently
|
||||||
|
doing, define a new flag (SSL_SESS_CACHE_NO_INTERNAL) to be
|
||||||
|
the bitwise-OR of the two for use by the majority of applications
|
||||||
|
wanting this behaviour, and update the docs. The documented
|
||||||
|
behaviour and actual behaviour were inconsistent and had been
|
||||||
|
changing anyway, so this is more a bug-fix than a behavioural
|
||||||
|
change.
|
||||||
|
[Geoff Thorpe, diagnosed by Nadav Har'El]
|
||||||
|
|
||||||
|
*) Don't impose a 16-byte length minimum on session IDs in ssl/s3_clnt.c
|
||||||
|
(the SSL 3.0 and TLS 1.0 specifications allow any length up to 32 bytes).
|
||||||
|
[Bodo Moeller]
|
||||||
|
|
||||||
|
*) Fix initialization code race conditions in
|
||||||
|
SSLv23_method(), SSLv23_client_method(), SSLv23_server_method(),
|
||||||
|
SSLv2_method(), SSLv2_client_method(), SSLv2_server_method(),
|
||||||
|
SSLv3_method(), SSLv3_client_method(), SSLv3_server_method(),
|
||||||
|
TLSv1_method(), TLSv1_client_method(), TLSv1_server_method(),
|
||||||
|
ssl2_get_cipher_by_char(),
|
||||||
|
ssl3_get_cipher_by_char().
|
||||||
|
[Patrick McCormick <patrick@tellme.com>, Bodo Moeller]
|
||||||
|
|
||||||
|
*) Reorder cleanup sequence in SSL_CTX_free(): only remove the ex_data after
|
||||||
|
the cached sessions are flushed, as the remove_cb() might use ex_data
|
||||||
|
contents. Bug found by Sam Varshavchik <mrsam@courier-mta.com>
|
||||||
|
(see [openssl.org #212]).
|
||||||
|
[Geoff Thorpe, Lutz Jaenicke]
|
||||||
|
|
||||||
|
*) Fix typo in OBJ_txt2obj which incorrectly passed the content
|
||||||
|
length, instead of the encoding length to d2i_ASN1_OBJECT.
|
||||||
|
[Steve Henson]
|
||||||
|
|
||||||
|
Changes between 0.9.6f and 0.9.6g [9 Aug 2002]
|
||||||
|
|
||||||
|
*) [In 0.9.6g-engine release:]
|
||||||
|
Fix crypto/engine/vendor_defns/cswift.h for WIN32 (use '_stdcall').
|
||||||
|
[Lynn Gazis <lgazis@rainbow.com>]
|
||||||
|
|
||||||
|
Changes between 0.9.6e and 0.9.6f [8 Aug 2002]
|
||||||
|
|
||||||
|
*) Fix ASN1 checks. Check for overflow by comparing with LONG_MAX
|
||||||
|
and get fix the header length calculation.
|
||||||
|
[Florian Weimer <Weimer@CERT.Uni-Stuttgart.DE>,
|
||||||
|
Alon Kantor <alonk@checkpoint.com> (and others),
|
||||||
|
Steve Henson]
|
||||||
|
|
||||||
|
*) Use proper error handling instead of 'assertions' in buffer
|
||||||
|
overflow checks added in 0.9.6e. This prevents DoS (the
|
||||||
|
assertions could call abort()).
|
||||||
|
[Arne Ansper <arne@ats.cyber.ee>, Bodo Moeller]
|
||||||
|
|
||||||
|
Changes between 0.9.6d and 0.9.6e [30 Jul 2002]
|
||||||
|
|
||||||
|
*) Add various sanity checks to asn1_get_length() to reject
|
||||||
|
the ASN1 length bytes if they exceed sizeof(long), will appear
|
||||||
|
negative or the content length exceeds the length of the
|
||||||
|
supplied buffer.
|
||||||
|
[Steve Henson, Adi Stav <stav@mercury.co.il>, James Yonan <jim@ntlp.com>]
|
||||||
|
|
||||||
|
*) Fix cipher selection routines: ciphers without encryption had no flags
|
||||||
|
for the cipher strength set and where therefore not handled correctly
|
||||||
|
by the selection routines (PR #130).
|
||||||
|
[Lutz Jaenicke]
|
||||||
|
|
||||||
|
*) Fix EVP_dsa_sha macro.
|
||||||
|
[Nils Larsch]
|
||||||
|
|
||||||
|
*) New option
|
||||||
|
SSL_OP_DONT_INSERT_EMPTY_FRAGMENTS
|
||||||
|
for disabling the SSL 3.0/TLS 1.0 CBC vulnerability countermeasure
|
||||||
|
that was added in OpenSSL 0.9.6d.
|
||||||
|
|
||||||
|
As the countermeasure turned out to be incompatible with some
|
||||||
|
broken SSL implementations, the new option is part of SSL_OP_ALL.
|
||||||
|
SSL_OP_ALL is usually employed when compatibility with weird SSL
|
||||||
|
implementations is desired (e.g. '-bugs' option to 's_client' and
|
||||||
|
's_server'), so the new option is automatically set in many
|
||||||
|
applications.
|
||||||
|
[Bodo Moeller]
|
||||||
|
|
||||||
|
*) Changes in security patch:
|
||||||
|
|
||||||
|
Changes marked "(CHATS)" were sponsored by the Defense Advanced
|
||||||
|
Research Projects Agency (DARPA) and Air Force Research Laboratory,
|
||||||
|
Air Force Materiel Command, USAF, under agreement number
|
||||||
|
F30602-01-2-0537.
|
||||||
|
|
||||||
|
*) Add various sanity checks to asn1_get_length() to reject
|
||||||
|
the ASN1 length bytes if they exceed sizeof(long), will appear
|
||||||
|
negative or the content length exceeds the length of the
|
||||||
|
supplied buffer. (CAN-2002-0659)
|
||||||
|
[Steve Henson, Adi Stav <stav@mercury.co.il>, James Yonan <jim@ntlp.com>]
|
||||||
|
|
||||||
|
*) Assertions for various potential buffer overflows, not known to
|
||||||
|
happen in practice.
|
||||||
|
[Ben Laurie (CHATS)]
|
||||||
|
|
||||||
|
*) Various temporary buffers to hold ASCII versions of integers were
|
||||||
|
too small for 64 bit platforms. (CAN-2002-0655)
|
||||||
|
[Matthew Byng-Maddick <mbm@aldigital.co.uk> and Ben Laurie (CHATS)>
|
||||||
|
|
||||||
|
*) Remote buffer overflow in SSL3 protocol - an attacker could
|
||||||
|
supply an oversized session ID to a client. (CAN-2002-0656)
|
||||||
|
[Ben Laurie (CHATS)]
|
||||||
|
|
||||||
|
*) Remote buffer overflow in SSL2 protocol - an attacker could
|
||||||
|
supply an oversized client master key. (CAN-2002-0656)
|
||||||
|
[Ben Laurie (CHATS)]
|
||||||
|
|
||||||
|
Changes between 0.9.6c and 0.9.6d [9 May 2002]
|
||||||
|
|
||||||
|
*) Fix crypto/asn1/a_sign.c so that 'parameters' is omitted (not
|
||||||
|
encoded as NULL) with id-dsa-with-sha1.
|
||||||
|
[Nils Larsch <nla@trustcenter.de>; problem pointed out by Bodo Moeller]
|
||||||
|
|
||||||
*) Check various X509_...() return values in apps/req.c.
|
*) Check various X509_...() return values in apps/req.c.
|
||||||
[Nils Larsch <nla@trustcenter.de>]
|
[Nils Larsch <nla@trustcenter.de>]
|
||||||
@@ -84,8 +271,8 @@
|
|||||||
value is 0.
|
value is 0.
|
||||||
[Richard Levitte]
|
[Richard Levitte]
|
||||||
|
|
||||||
*) [In 0.9.6c-engine release:]
|
*) [In 0.9.6d-engine release:]
|
||||||
Fix a crashbug and a logic bug in hwcrhk_load_pubkey()
|
Fix a crashbug and a logic bug in hwcrhk_load_pubkey().
|
||||||
[Toomas Kiisk <vix@cyber.ee> via Richard Levitte]
|
[Toomas Kiisk <vix@cyber.ee> via Richard Levitte]
|
||||||
|
|
||||||
*) Add the configuration target linux-s390x.
|
*) Add the configuration target linux-s390x.
|
||||||
|
69
Configure
69
Configure
@@ -132,7 +132,7 @@ my %table=(
|
|||||||
"debug-bodo", "gcc:-DL_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -DBIO_PAIR_DEBUG -g -m486 -pedantic -Wshadow -Wall::-D_REENTRANT::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
|
"debug-bodo", "gcc:-DL_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -DBIO_PAIR_DEBUG -g -m486 -pedantic -Wshadow -Wall::-D_REENTRANT::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
|
||||||
"debug-ulf", "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -g -O2 -m486 -Wall -Werror -Wshadow -pipe::-D_REENTRANT::${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
|
"debug-ulf", "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -g -O2 -m486 -Wall -Werror -Wshadow -pipe::-D_REENTRANT::${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
|
||||||
"debug-steve", "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG_ALL -DPEDANTIC -g -O2 -m486 -pedantic -Wall -Werror -Wshadow -pipe::-D_REENTRANT::${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
|
"debug-steve", "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG_ALL -DPEDANTIC -g -O2 -m486 -pedantic -Wall -Werror -Wshadow -pipe::-D_REENTRANT::${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
|
||||||
"debug-levitte-linux-elf","gcc:-DUSE_ALLOCATING_PRINT -DRL_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DNO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -ggdb -g3 -m486 -pedantic -ansi -Wall -Wshadow -Wid-clash-31 -pipe::-D_REENTRANT:-ldl:::::::::::dlfcn",
|
"debug-levitte-linux-elf","gcc:-DUSE_ALLOCATING_PRINT -DRL_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DNO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -ggdb -g3 -m486 -pedantic -ansi -Wall -Wshadow -Wstrict-prototypes -Wmissing-prototypes -pipe::-D_REENTRANT:-ldl:::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"dist", "cc:-O::(unknown):::::",
|
"dist", "cc:-O::(unknown):::::",
|
||||||
|
|
||||||
# Basic configs that should work on any (32 and less bit) box
|
# Basic configs that should work on any (32 and less bit) box
|
||||||
@@ -154,6 +154,7 @@ my %table=(
|
|||||||
"solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8.o:::::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8.o:::::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"solaris-sparcv9-gcc","gcc:-mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus.o:::asm/md5-sparcv8plus.o::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"solaris-sparcv9-gcc","gcc:-mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus.o:::asm/md5-sparcv8plus.o::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
|
"solaris64-sparcv9-gcc31","gcc:-mcpu=ultrasparc -m64 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::asm/md5-sparcv9.o::::::dlfcn:solaris-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
# gcc pre-2.8 doesn't understand -mcpu=ultrasparc, so fall down to -mv8
|
# gcc pre-2.8 doesn't understand -mcpu=ultrasparc, so fall down to -mv8
|
||||||
# but keep the assembler modules.
|
# but keep the assembler modules.
|
||||||
"solaris-sparcv9-gcc27","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus-gcc27.o:::asm/md5-sparcv8plus-gcc27.o::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"solaris-sparcv9-gcc27","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DULTRASPARC::-D_REENTRANT:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus-gcc27.o:::asm/md5-sparcv8plus-gcc27.o::::::dlfcn:solaris-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
@@ -179,10 +180,10 @@ my %table=(
|
|||||||
"linux-sparcv7","gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::",
|
"linux-sparcv7","gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::",
|
||||||
# Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
|
# Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
|
||||||
# assisted with debugging of following two configs.
|
# assisted with debugging of following two configs.
|
||||||
"linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8.o::::",
|
"linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8.o:::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
# it's a real mess with -mcpu=ultrasparc option under Linux, but
|
# it's a real mess with -mcpu=ultrasparc option under Linux, but
|
||||||
# -Wa,-Av8plus should do the trick no matter what.
|
# -Wa,-Av8plus should do the trick no matter what.
|
||||||
"linux-sparcv9","gcc:-mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DULTRASPARC -DBN_DIV2W::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus.o:::asm/md5-sparcv8plus.o::::::dlfcn:linux-shared:-fPIC:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"linux-sparcv9","gcc:-mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DULTRASPARC -DBN_DIV2W::-D_REENTRANT:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:asm/sparcv8plus.o:::asm/md5-sparcv8plus.o::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
# !!!Folowing can't be even tested yet!!!
|
# !!!Folowing can't be even tested yet!!!
|
||||||
# We have to wait till 64-bit glibc for SPARC is operational!!!
|
# We have to wait till 64-bit glibc for SPARC is operational!!!
|
||||||
#"linux64-sparcv9","sparc64-linux-gcc:-m64 -mcpu=v9 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DULTRASPARC -DBN_DIV2W::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::asm/md5-sparcv9.o:",
|
#"linux64-sparcv9","sparc64-linux-gcc:-m64 -mcpu=v9 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DULTRASPARC -DBN_DIV2W::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::asm/md5-sparcv9.o:",
|
||||||
@@ -238,6 +239,7 @@ my %table=(
|
|||||||
"hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY:::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1::::::::::dl:hpux-shared:+Z::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY:::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1::::::::::dl:hpux-shared:+Z::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W:::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1::::::::::dl:hpux-shared:-fPIC::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W:::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1::::::::::dl:hpux-shared:-fPIC::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"hpux64-parisc-cc","cc:-Ae +DD64 +O3 +ESlit -z -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::::::::::dlfcn:hpux64-shared:+Z::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"hpux64-parisc-cc","cc:-Ae +DD64 +O3 +ESlit -z -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::::::::::dlfcn:hpux64-shared:+Z::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
|
"hpux64-parisc-gcc","gcc:-DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::::::::::dlfcn:hpux64-shared:-fpic::.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
|
|
||||||
# More attempts at unified 10.X and 11.X targets for HP C compiler.
|
# More attempts at unified 10.X and 11.X targets for HP C compiler.
|
||||||
#
|
#
|
||||||
@@ -345,15 +347,15 @@ my %table=(
|
|||||||
# The intel boxes :-), It would be worth seeing if bsdi-gcc can use the
|
# The intel boxes :-), It would be worth seeing if bsdi-gcc can use the
|
||||||
# bn86-elf.o file file since it is hand tweaked assembler.
|
# bn86-elf.o file file since it is hand tweaked assembler.
|
||||||
"linux-elf", "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::-D_REENTRANT:-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"linux-elf", "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::-D_REENTRANT:-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT:-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT:-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT:-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
|
"debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT:-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
|
||||||
"linux-aout", "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::(unknown)::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}",
|
"linux-aout", "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::(unknown)::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}",
|
||||||
"linux-mipsel", "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::(unknown)::BN_LLONG:::",
|
"linux-mipsel", "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::(unknown)::BN_LLONG:::",
|
||||||
"linux-mips", "gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::(unknown)::BN_LLONG:::",
|
"linux-mips", "gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::(unknown)::BN_LLONG:::",
|
||||||
"linux-ppc", "gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"linux-ppc", "gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"linux-m68k", "gcc:-DB_ENDIAN -DTERMIO -O2 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG::",
|
"linux-m68k", "gcc:-DB_ENDIAN -DTERMIO -O2 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG::",
|
||||||
"linux-s390", "gcc:-DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::BN_LLONG::",
|
"linux-s390", "gcc:-DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:BN_LLONG::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR),\$(SHLIB_MINOR)",
|
||||||
"linux-s390x", "gcc:-DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::SIXTY_FOUR_BIT_LONG:::::::::::linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"linux-s390x", "gcc:-DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"linux-ia64", "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK RC4_CHAR:asm/ia64.o:::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"linux-ia64", "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK RC4_CHAR:asm/ia64.o:::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"NetBSD-sparc", "gcc:-DTERMIOS -O3 -fomit-frame-pointer -mv8 -Wall -DB_ENDIAN::(unknown)::BN_LLONG MD2_CHAR RC4_INDEX DES_UNROLL::::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"NetBSD-sparc", "gcc:-DTERMIOS -O3 -fomit-frame-pointer -mv8 -Wall -DB_ENDIAN::(unknown)::BN_LLONG MD2_CHAR RC4_INDEX DES_UNROLL::::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
"NetBSD-m68", "gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall -DB_ENDIAN::(unknown)::BN_LLONG MD2_CHAR RC4_INDEX DES_UNROLL::::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
"NetBSD-m68", "gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall -DB_ENDIAN::(unknown)::BN_LLONG MD2_CHAR RC4_INDEX DES_UNROLL::::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
|
||||||
@@ -403,7 +405,7 @@ my %table=(
|
|||||||
"aix-cc", "cc:-O -DAIX -DB_ENDIAN -qmaxmem=16384::(unknown)::BN_LLONG RC4_CHAR:::",
|
"aix-cc", "cc:-O -DAIX -DB_ENDIAN -qmaxmem=16384::(unknown)::BN_LLONG RC4_CHAR:::",
|
||||||
"aix-gcc", "gcc:-O3 -DAIX -DB_ENDIAN::(unknown)::BN_LLONG RC4_CHAR:::",
|
"aix-gcc", "gcc:-O3 -DAIX -DB_ENDIAN::(unknown)::BN_LLONG RC4_CHAR:::",
|
||||||
"aix43-cc", "cc:-O -DAIX -DB_ENDIAN -qmaxmem=16384::(unknown)::BN_LLONG RC4_CHAR::::::::::dlfcn:",
|
"aix43-cc", "cc:-O -DAIX -DB_ENDIAN -qmaxmem=16384::(unknown)::BN_LLONG RC4_CHAR::::::::::dlfcn:",
|
||||||
"aix43-gcc", "gcc:-O3 -DAIX -DB_ENDIAN::(unknown)::BN_LLONG RC4_CHAR::::::::::dlfcn:",
|
"aix43-gcc", "gcc:-O1 -DAIX -DB_ENDIAN::(unknown)::BN_LLONG RC4_CHAR::::::::::dlfcn:",
|
||||||
|
|
||||||
#
|
#
|
||||||
# Cray T90 and similar (SDSC)
|
# Cray T90 and similar (SDSC)
|
||||||
@@ -445,7 +447,7 @@ my %table=(
|
|||||||
"sco5-cc-pentium", "cc:-Kpentium::(unknown):-lsocket:${x86_gcc_des} ${x86_gcc_opts}:::", # des options?
|
"sco5-cc-pentium", "cc:-Kpentium::(unknown):-lsocket:${x86_gcc_des} ${x86_gcc_opts}:::", # des options?
|
||||||
"sco5-gcc", "gcc:-O3 -fomit-frame-pointer::(unknown):-lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::", # the SCO assembler doesn't seem to like our assembler files ...
|
"sco5-gcc", "gcc:-O3 -fomit-frame-pointer::(unknown):-lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::", # the SCO assembler doesn't seem to like our assembler files ...
|
||||||
"sco5-cc-shared","cc:-belf:::-lsocket -lresolv -lnsl:MD2_CHAR RC4_INDEX ${x86_gcc_des}::::::::::dlfcn:svr3-shared:-Kpic",
|
"sco5-cc-shared","cc:-belf:::-lsocket -lresolv -lnsl:MD2_CHAR RC4_INDEX ${x86_gcc_des}::::::::::dlfcn:svr3-shared:-Kpic",
|
||||||
"sco5-gcc-shared","gcc:-O3 -DFILIO_H -fomit-frame-pointer:::-lsocket -lresolv -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-fPIC",
|
"sco5-gcc-shared","gcc:-O3 -fomit-frame-pointer:::-lsocket -lresolv -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::dlfcn:svr3-shared:-fPIC", # the SCO assembler doesn't seem to like our assembler files ...
|
||||||
|
|
||||||
# Sinix/ReliantUNIX RM400
|
# Sinix/ReliantUNIX RM400
|
||||||
# NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g */
|
# NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g */
|
||||||
@@ -480,9 +482,12 @@ my %table=(
|
|||||||
# and its library files in util/pl/*)
|
# and its library files in util/pl/*)
|
||||||
"Mingw32", "gcc:-DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
|
"Mingw32", "gcc:-DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
|
||||||
|
|
||||||
|
# UWIN
|
||||||
|
"UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
|
||||||
|
|
||||||
# Cygwin
|
# Cygwin
|
||||||
"Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -m486 -Wall::(unknown)::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
|
"Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -m486 -Wall::(unknown)::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32",
|
||||||
"Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -m486 -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32:cygwin-shared:::.dll",
|
"Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -march=i486 -Wall::::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}::::::::::win32:cygwin-shared:::.dll",
|
||||||
|
|
||||||
# Ultrix from Bernhard Simon <simon@zid.tuwien.ac.at>
|
# Ultrix from Bernhard Simon <simon@zid.tuwien.ac.at>
|
||||||
"ultrix-cc","cc:-std1 -O -Olimit 1000 -DL_ENDIAN::(unknown)::::::",
|
"ultrix-cc","cc:-std1 -O -Olimit 1000 -DL_ENDIAN::(unknown)::::::",
|
||||||
@@ -498,7 +503,10 @@ my %table=(
|
|||||||
|
|
||||||
##### MacOS X (a.k.a. Rhapsody or Darwin) setup
|
##### MacOS X (a.k.a. Rhapsody or Darwin) setup
|
||||||
"rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown)::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
|
"rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown)::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
|
||||||
"darwin-ppc-cc","cc:-O3 -D_DARWIN -DB_ENDIAN::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::::::::::darwin-shared:-fPIC:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
|
"darwin-ppc-cc","cc:-O3 -D_DARWIN -DB_ENDIAN -fno-common::-D_REENTRANT::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::::::::::darwin-shared:-fPIC::.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
|
||||||
|
|
||||||
|
##### A/UX
|
||||||
|
"aux3-gcc","gcc:-O2 -DTERMIO::(unknown):-lbsd:RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
|
||||||
|
|
||||||
##### Sony NEWS-OS 4.x
|
##### Sony NEWS-OS 4.x
|
||||||
"newsos4-gcc","gcc:-O -DB_ENDIAN -DNEWS4::(unknown):-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
|
"newsos4-gcc","gcc:-O -DB_ENDIAN -DNEWS4::(unknown):-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
|
||||||
@@ -506,6 +514,9 @@ my %table=(
|
|||||||
##### VxWorks for various targets
|
##### VxWorks for various targets
|
||||||
"vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DVXWORKS -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::-r:::::",
|
"vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DVXWORKS -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::-r:::::",
|
||||||
|
|
||||||
|
##### Compaq Non-Stop Kernel (Tandem)
|
||||||
|
"tandem-c89","c89:-Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN::(unknown)::THIRTY_TWO_BIT:::",
|
||||||
|
|
||||||
);
|
);
|
||||||
|
|
||||||
my @WinTargets=qw(VC-NT VC-WIN32 VC-WIN16 VC-W31-16 VC-W31-32 VC-MSDOS BC-32
|
my @WinTargets=qw(VC-NT VC-WIN32 VC-WIN16 VC-W31-16 VC-W31-32 VC-MSDOS BC-32
|
||||||
@@ -582,6 +593,7 @@ my $libs;
|
|||||||
my $target;
|
my $target;
|
||||||
my $options;
|
my $options;
|
||||||
my $symlink;
|
my $symlink;
|
||||||
|
my $make_depend=0;
|
||||||
|
|
||||||
my @argvcopy=@ARGV;
|
my @argvcopy=@ARGV;
|
||||||
my $argvstring="";
|
my $argvstring="";
|
||||||
@@ -636,7 +648,7 @@ PROCESS_ARGS:
|
|||||||
{ $threads=1; }
|
{ $threads=1; }
|
||||||
elsif (/^no-shared$/)
|
elsif (/^no-shared$/)
|
||||||
{ $no_shared=1; }
|
{ $no_shared=1; }
|
||||||
elsif (/^shared$/)
|
elsif (/^shared$/ || /^-shared$/ || /^--shared$/)
|
||||||
{ $no_shared=0; }
|
{ $no_shared=0; }
|
||||||
elsif (/^no-symlinks$/)
|
elsif (/^no-symlinks$/)
|
||||||
{ $symlink=0; }
|
{ $symlink=0; }
|
||||||
@@ -921,6 +933,10 @@ if ($rmd160_obj =~ /\.o$/)
|
|||||||
$cflags.=" -DRMD160_ASM";
|
$cflags.=" -DRMD160_ASM";
|
||||||
}
|
}
|
||||||
|
|
||||||
|
# "Stringify" the C flags string. This permits it to be made part of a string
|
||||||
|
# and works as well on command lines.
|
||||||
|
$cflags =~ s/([\\\"])/\\\1/g;
|
||||||
|
|
||||||
my $version = "unknown";
|
my $version = "unknown";
|
||||||
my $major = "unknown";
|
my $major = "unknown";
|
||||||
my $minor = "unknown";
|
my $minor = "unknown";
|
||||||
@@ -1003,13 +1019,21 @@ while (<IN>)
|
|||||||
if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
|
if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
|
||||||
{
|
{
|
||||||
my $sotmp = $1;
|
my $sotmp = $1;
|
||||||
s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/
|
s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
|
||||||
|
}
|
||||||
|
elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
|
||||||
|
{
|
||||||
|
s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
|
||||||
}
|
}
|
||||||
elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
|
elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
|
||||||
{
|
{
|
||||||
my $sotmp = $1;
|
my $sotmp = $1;
|
||||||
s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
|
s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
|
||||||
}
|
}
|
||||||
|
elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
|
||||||
|
{
|
||||||
|
s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
|
||||||
|
}
|
||||||
s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
|
s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
|
||||||
print OUT $_."\n";
|
print OUT $_."\n";
|
||||||
}
|
}
|
||||||
@@ -1193,11 +1217,13 @@ if($IsWindows) {
|
|||||||
EOF
|
EOF
|
||||||
close(OUT);
|
close(OUT);
|
||||||
} else {
|
} else {
|
||||||
(system "make -f Makefile.ssl PERL=\'$perl\' links") == 0 or exit $?
|
my $make_command = "make -f Makefile.ssl PERL=\'$perl\'";
|
||||||
if $symlink;
|
my $make_targets = "";
|
||||||
### (system 'make depend') == 0 or exit $? if $depflags ne "";
|
$make_targets .= " links" if $symlink;
|
||||||
# Run "make depend" manually if you want to be able to delete
|
$make_targets .= " depend" if $depflags ne "" && $make_depend;
|
||||||
# the source code files of ciphers you left out.
|
$make_targets .= " gentests" if $symlink;
|
||||||
|
(system $make_command.$make_targets) == 0 or exit $?
|
||||||
|
if $make_targets ne "";
|
||||||
if ( $perl =~ m@^/@) {
|
if ( $perl =~ m@^/@) {
|
||||||
&dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";');
|
&dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";');
|
||||||
&dofile("apps/der_chop",$perl,'^#!/', '#!%s');
|
&dofile("apps/der_chop",$perl,'^#!/', '#!%s');
|
||||||
@@ -1208,6 +1234,15 @@ EOF
|
|||||||
&dofile("apps/der_chop",'/usr/local/bin/perl','^#!/', '#!%s');
|
&dofile("apps/der_chop",'/usr/local/bin/perl','^#!/', '#!%s');
|
||||||
&dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
|
&dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
|
||||||
}
|
}
|
||||||
|
if ($depflags ne "" && !$make_depend) {
|
||||||
|
print <<EOF;
|
||||||
|
|
||||||
|
Since you've disabled at least one algorithm, you need to do the following
|
||||||
|
before building:
|
||||||
|
|
||||||
|
make depend
|
||||||
|
EOF
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
print <<EOF;
|
print <<EOF;
|
||||||
|
118
FAQ
118
FAQ
@@ -9,6 +9,7 @@ OpenSSL - Frequently Asked Questions
|
|||||||
* Where can I get a compiled version of OpenSSL?
|
* Where can I get a compiled version of OpenSSL?
|
||||||
* Why aren't tools like 'autoconf' and 'libtool' used?
|
* Why aren't tools like 'autoconf' and 'libtool' used?
|
||||||
* What is an 'engine' version?
|
* What is an 'engine' version?
|
||||||
|
* How do I check the authenticity of the OpenSSL distribution?
|
||||||
|
|
||||||
[LEGAL] Legal questions
|
[LEGAL] Legal questions
|
||||||
|
|
||||||
@@ -35,9 +36,12 @@ OpenSSL - Frequently Asked Questions
|
|||||||
* Why does the linker complain about undefined symbols?
|
* Why does the linker complain about undefined symbols?
|
||||||
* Why does the OpenSSL test fail with "bc: command not found"?
|
* Why does the OpenSSL test fail with "bc: command not found"?
|
||||||
* Why does the OpenSSL test fail with "bc: 1 no implemented"?
|
* Why does the OpenSSL test fail with "bc: 1 no implemented"?
|
||||||
|
* Why does the OpenSSL test fail with "bc: stack empty"?
|
||||||
* Why does the OpenSSL compilation fail on Alpha Tru64 Unix?
|
* Why does the OpenSSL compilation fail on Alpha Tru64 Unix?
|
||||||
* Why does the OpenSSL compilation fail with "ar: command not found"?
|
* Why does the OpenSSL compilation fail with "ar: command not found"?
|
||||||
* Why does the OpenSSL compilation fail on Win32 with VC++?
|
* Why does the OpenSSL compilation fail on Win32 with VC++?
|
||||||
|
* What is special about OpenSSL on Redhat?
|
||||||
|
* Why does the OpenSSL test suite fail on MacOS X?
|
||||||
|
|
||||||
[PROG] Questions about programming with OpenSSL
|
[PROG] Questions about programming with OpenSSL
|
||||||
|
|
||||||
@@ -59,7 +63,7 @@ OpenSSL - Frequently Asked Questions
|
|||||||
* Which is the current version of OpenSSL?
|
* Which is the current version of OpenSSL?
|
||||||
|
|
||||||
The current version is available from <URL: http://www.openssl.org>.
|
The current version is available from <URL: http://www.openssl.org>.
|
||||||
OpenSSL 0.9.6c was released on December 21st, 2001.
|
OpenSSL 0.9.7b was released on April 10, 2003.
|
||||||
|
|
||||||
In addition to the current stable release, you can also access daily
|
In addition to the current stable release, you can also access daily
|
||||||
snapshots of the OpenSSL development version at <URL:
|
snapshots of the OpenSSL development version at <URL:
|
||||||
@@ -130,6 +134,19 @@ hardware. This was realized in a special release '0.9.6-engine'. With
|
|||||||
version 0.9.7 (not yet released) the changes were merged into the main
|
version 0.9.7 (not yet released) the changes were merged into the main
|
||||||
development line, so that the special release is no longer necessary.
|
development line, so that the special release is no longer necessary.
|
||||||
|
|
||||||
|
* How do I check the authenticity of the OpenSSL distribution?
|
||||||
|
|
||||||
|
We provide MD5 digests and ASC signatures of each tarball.
|
||||||
|
Use MD5 to check that a tarball from a mirror site is identical:
|
||||||
|
|
||||||
|
md5sum TARBALL | awk '{print $1;}' | cmp - TARBALL.md5
|
||||||
|
|
||||||
|
You can check authenticity using pgp or gpg. You need the OpenSSL team
|
||||||
|
member public key used to sign it (download it from a key server). Then
|
||||||
|
just do:
|
||||||
|
|
||||||
|
pgp TARBALL.asc
|
||||||
|
|
||||||
[LEGAL] =======================================================================
|
[LEGAL] =======================================================================
|
||||||
|
|
||||||
* Do I need patent licenses to use OpenSSL?
|
* Do I need patent licenses to use OpenSSL?
|
||||||
@@ -167,18 +184,30 @@ for permission to use their software with OpenSSL.
|
|||||||
|
|
||||||
Cryptographic software needs a source of unpredictable data to work
|
Cryptographic software needs a source of unpredictable data to work
|
||||||
correctly. Many open source operating systems provide a "randomness
|
correctly. Many open source operating systems provide a "randomness
|
||||||
device" that serves this purpose. On other systems, applications have
|
device" (/dev/urandom or /dev/random) that serves this purpose.
|
||||||
to call the RAND_add() or RAND_seed() function with appropriate data
|
All OpenSSL versions try to use /dev/urandom by default; starting with
|
||||||
before generating keys or performing public key encryption.
|
version 0.9.7, OpenSSL also tries /dev/random if /dev/urandom is not
|
||||||
(These functions initialize the pseudo-random number generator, PRNG.)
|
available.
|
||||||
|
|
||||||
Some broken applications do not do this. As of version 0.9.5, the
|
On other systems, applications have to call the RAND_add() or
|
||||||
OpenSSL functions that need randomness report an error if the random
|
RAND_seed() function with appropriate data before generating keys or
|
||||||
number generator has not been seeded with at least 128 bits of
|
performing public key encryption. (These functions initialize the
|
||||||
randomness. If this error occurs, please contact the author of the
|
pseudo-random number generator, PRNG.) Some broken applications do
|
||||||
application you are using. It is likely that it never worked
|
not do this. As of version 0.9.5, the OpenSSL functions that need
|
||||||
correctly. OpenSSL 0.9.5 and later make the error visible by refusing
|
randomness report an error if the random number generator has not been
|
||||||
to perform potentially insecure encryption.
|
seeded with at least 128 bits of randomness. If this error occurs and
|
||||||
|
is not discussed in the documentation of the application you are
|
||||||
|
using, please contact the author of that application; it is likely
|
||||||
|
that it never worked correctly. OpenSSL 0.9.5 and later make the
|
||||||
|
error visible by refusing to perform potentially insecure encryption.
|
||||||
|
|
||||||
|
If you are using Solaris 8, you can add /dev/urandom and /dev/random
|
||||||
|
devices by installing patch 112438 (Sparc) or 112439 (x86), which are
|
||||||
|
available via the Patchfinder at <URL: http://sunsolve.sun.com>
|
||||||
|
(Solaris 9 includes these devices by default). For /dev/random support
|
||||||
|
for earlier Solaris versions, see Sun's statement at
|
||||||
|
<URL: http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsrdb/27606&zone_32=SUNWski>
|
||||||
|
(the SUNWski package is available in patch 105710).
|
||||||
|
|
||||||
On systems without /dev/urandom and /dev/random, it is a good idea to
|
On systems without /dev/urandom and /dev/random, it is a good idea to
|
||||||
use the Entropy Gathering Demon (EGD); see the RAND_egd() manpage for
|
use the Entropy Gathering Demon (EGD); see the RAND_egd() manpage for
|
||||||
@@ -211,13 +240,6 @@ OpenSSL command line tools. Applications using the OpenSSL library
|
|||||||
provide their own configuration options to specify the entropy source,
|
provide their own configuration options to specify the entropy source,
|
||||||
please check out the documentation coming the with application.
|
please check out the documentation coming the with application.
|
||||||
|
|
||||||
For Solaris 2.6, Tim Nibbe <tnibbe@sprint.net> and others have suggested
|
|
||||||
installing the SUNski package from Sun patch 105710-01 (Sparc) which
|
|
||||||
adds a /dev/random device and make sure it gets used, usually through
|
|
||||||
$RANDFILE. There are probably similar patches for the other Solaris
|
|
||||||
versions. However, be warned that /dev/random is usually a blocking
|
|
||||||
device, which may have some effects on OpenSSL.
|
|
||||||
|
|
||||||
|
|
||||||
* Why do I get an "unable to write 'random state'" error message?
|
* Why do I get an "unable to write 'random state'" error message?
|
||||||
|
|
||||||
@@ -387,6 +409,17 @@ and compile/install it. GNU bc (see http://www.gnu.org/software/software.html
|
|||||||
for download instructions) can be safely used, for example.
|
for download instructions) can be safely used, for example.
|
||||||
|
|
||||||
|
|
||||||
|
* Why does the OpenSSL test fail with "bc: stack empty"?
|
||||||
|
|
||||||
|
On some DG/ux versions, bc seems to have a too small stack for calculations
|
||||||
|
that the OpenSSL bntest throws at it. This gets triggered when you run the
|
||||||
|
test suite (using "make test"). The message returned is "bc: stack empty".
|
||||||
|
|
||||||
|
The best way to deal with this is to find another implementation of bc
|
||||||
|
and compile/install it. GNU bc (see http://www.gnu.org/software/software.html
|
||||||
|
for download instructions) can be safely used, for example.
|
||||||
|
|
||||||
|
|
||||||
* Why does the OpenSSL compilation fail on Alpha Tru64 Unix?
|
* Why does the OpenSSL compilation fail on Alpha Tru64 Unix?
|
||||||
|
|
||||||
On some Alpha installations running Tru64 Unix and Compaq C, the compilation
|
On some Alpha installations running Tru64 Unix and Compaq C, the compilation
|
||||||
@@ -451,6 +484,52 @@ under 'Program Files'). This needs to be done prior to running NMAKE,
|
|||||||
and the changes are only valid for the current DOS session.
|
and the changes are only valid for the current DOS session.
|
||||||
|
|
||||||
|
|
||||||
|
* What is special about OpenSSL on Redhat?
|
||||||
|
|
||||||
|
Red Hat Linux (release 7.0 and later) include a preinstalled limited
|
||||||
|
version of OpenSSL. For patent reasons, support for IDEA, RC5 and MDC2
|
||||||
|
is disabled in this version. The same may apply to other Linux distributions.
|
||||||
|
Users may therefore wish to install more or all of the features left out.
|
||||||
|
|
||||||
|
To do this you MUST ensure that you do not overwrite the openssl that is in
|
||||||
|
/usr/bin on your Red Hat machine. Several packages depend on this file,
|
||||||
|
including sendmail and ssh. /usr/local/bin is a good alternative choice. The
|
||||||
|
libraries that come with Red Hat 7.0 onwards have different names and so are
|
||||||
|
not affected. (eg For Red Hat 7.2 they are /lib/libssl.so.0.9.6b and
|
||||||
|
/lib/libcrypto.so.0.9.6b with symlinks /lib/libssl.so.2 and
|
||||||
|
/lib/libcrypto.so.2 respectively).
|
||||||
|
|
||||||
|
Please note that we have been advised by Red Hat attempting to recompile the
|
||||||
|
openssl rpm with all the cryptography enabled will not work. All other
|
||||||
|
packages depend on the original Red Hat supplied openssl package. It is also
|
||||||
|
worth noting that due to the way Red Hat supplies its packages, updates to
|
||||||
|
openssl on each distribution never change the package version, only the
|
||||||
|
build number. For example, on Red Hat 7.1, the latest openssl package has
|
||||||
|
version number 0.9.6 and build number 9 even though it contains all the
|
||||||
|
relevant updates in packages up to and including 0.9.6b.
|
||||||
|
|
||||||
|
A possible way around this is to persuade Red Hat to produce a non-US
|
||||||
|
version of Red Hat Linux.
|
||||||
|
|
||||||
|
FYI: Patent numbers and expiry dates of US patents:
|
||||||
|
MDC-2: 4,908,861 13/03/2007
|
||||||
|
IDEA: 5,214,703 25/05/2010
|
||||||
|
RC5: 5,724,428 03/03/2015
|
||||||
|
|
||||||
|
|
||||||
|
* Why does the OpenSSL test suite fail on MacOS X?
|
||||||
|
|
||||||
|
If the failure happens when running 'make test' and the RC4 test fails,
|
||||||
|
it's very probable that you have OpenSSL 0.9.6b delivered with the
|
||||||
|
operating system (you can find out by running '/usr/bin/openssl version')
|
||||||
|
and that you were trying to build OpenSSL 0.9.6d. The problem is that
|
||||||
|
the loader ('ld') in MacOS X has a misfeature that's quite difficult to
|
||||||
|
go around and has linked the programs "openssl" and the test programs
|
||||||
|
with /usr/lib/libcrypto.dylib and /usr/lib/libssl.dylib instead of the
|
||||||
|
libraries you just built.
|
||||||
|
Look in the file PROBLEMS for a more detailed explanation and for possible
|
||||||
|
solutions.
|
||||||
|
|
||||||
[PROG] ========================================================================
|
[PROG] ========================================================================
|
||||||
|
|
||||||
* Is OpenSSL thread-safe?
|
* Is OpenSSL thread-safe?
|
||||||
@@ -595,6 +674,7 @@ The general answer is to check the config.log file generated when running
|
|||||||
the OpenSSH configure script. It should contain the detailed information
|
the OpenSSH configure script. It should contain the detailed information
|
||||||
on why the OpenSSL library was not detected or considered incompatible.
|
on why the OpenSSL library was not detected or considered incompatible.
|
||||||
|
|
||||||
|
|
||||||
* Can I use OpenSSL's SSL library with non-blocking I/O?
|
* Can I use OpenSSL's SSL library with non-blocking I/O?
|
||||||
|
|
||||||
Yes; make sure to read the SSL_get_error(3) manual page!
|
Yes; make sure to read the SSL_get_error(3) manual page!
|
||||||
|
22
INSTALL
22
INSTALL
@@ -131,8 +131,11 @@
|
|||||||
the failure that aren't problems in OpenSSL itself (like missing
|
the failure that aren't problems in OpenSSL itself (like missing
|
||||||
standard headers). If it is a problem with OpenSSL itself, please
|
standard headers). If it is a problem with OpenSSL itself, please
|
||||||
report the problem to <openssl-bugs@openssl.org> (note that your
|
report the problem to <openssl-bugs@openssl.org> (note that your
|
||||||
message will be forwarded to a public mailing list). Include the
|
message will be recorded in the request tracker publicly readable
|
||||||
output of "make report" in your message.
|
via http://www.openssl.org/support/rt2.html and will be forwarded to a
|
||||||
|
public mailing list). Include the output of "make report" in your message.
|
||||||
|
Please check out the request tracker. Maybe the bug was already
|
||||||
|
reported or has already been fixed.
|
||||||
|
|
||||||
[If you encounter assembler error messages, try the "no-asm"
|
[If you encounter assembler error messages, try the "no-asm"
|
||||||
configuration option as an immediate fix.]
|
configuration option as an immediate fix.]
|
||||||
@@ -150,7 +153,8 @@
|
|||||||
try removing any compiler optimization flags from the CFLAGS line
|
try removing any compiler optimization flags from the CFLAGS line
|
||||||
in Makefile.ssl and run "make clean; make". Please send a bug
|
in Makefile.ssl and run "make clean; make". Please send a bug
|
||||||
report to <openssl-bugs@openssl.org>, including the output of
|
report to <openssl-bugs@openssl.org>, including the output of
|
||||||
"make report".
|
"make report" in order to be added to the request tracker at
|
||||||
|
http://www.openssl.org/support/rt2.html.
|
||||||
|
|
||||||
4. If everything tests ok, install OpenSSL with
|
4. If everything tests ok, install OpenSSL with
|
||||||
|
|
||||||
@@ -284,3 +288,15 @@
|
|||||||
targets for shared library creation, like linux-shared. Those targets
|
targets for shared library creation, like linux-shared. Those targets
|
||||||
can currently be used on their own just as well, but this is expected
|
can currently be used on their own just as well, but this is expected
|
||||||
to change in future versions of OpenSSL.
|
to change in future versions of OpenSSL.
|
||||||
|
|
||||||
|
Note on random number generation
|
||||||
|
--------------------------------
|
||||||
|
|
||||||
|
Availability of cryptographically secure random numbers is required for
|
||||||
|
secret key generation. OpenSSL provides several options to seed the
|
||||||
|
internal PRNG. If not properly seeded, the internal PRNG will refuse
|
||||||
|
to deliver random bytes and a "PRNG not seeded error" will occur.
|
||||||
|
On systems without /dev/urandom (or similar) device, it may be necessary
|
||||||
|
to install additional support software to obtain random seed.
|
||||||
|
Please check out the manual pages for RAND_add(), RAND_bytes(), RAND_egd(),
|
||||||
|
and the FAQ for more information.
|
||||||
|
15
INSTALL.W32
15
INSTALL.W32
@@ -82,7 +82,8 @@
|
|||||||
There are various changes you can make to the Win32 compile environment. By
|
There are various changes you can make to the Win32 compile environment. By
|
||||||
default the library is not compiled with debugging symbols. If you add 'debug'
|
default the library is not compiled with debugging symbols. If you add 'debug'
|
||||||
to the mk1mf.pl lines in the do_* batch file then debugging symbols will be
|
to the mk1mf.pl lines in the do_* batch file then debugging symbols will be
|
||||||
compiled in.
|
compiled in. Note that mk1mf.pl expects the platform to be the last argument
|
||||||
|
on the command line, so 'debug' must appear before that, as all other options.
|
||||||
|
|
||||||
The default Win32 environment is to leave out any Windows NT specific
|
The default Win32 environment is to leave out any Windows NT specific
|
||||||
features.
|
features.
|
||||||
@@ -94,6 +95,18 @@
|
|||||||
You can also build a static version of the library using the Makefile
|
You can also build a static version of the library using the Makefile
|
||||||
ms\nt.mak
|
ms\nt.mak
|
||||||
|
|
||||||
|
Borland C++ builder 5
|
||||||
|
---------------------
|
||||||
|
|
||||||
|
* Configure for building with Borland Builder:
|
||||||
|
> perl Configure BC-32
|
||||||
|
|
||||||
|
* Create the appropriate makefile
|
||||||
|
> ms\do_nasm
|
||||||
|
|
||||||
|
* Build
|
||||||
|
> make -f ms\bcb.mak
|
||||||
|
|
||||||
Borland C++ builder 3 and 4
|
Borland C++ builder 3 and 4
|
||||||
---------------------------
|
---------------------------
|
||||||
|
|
||||||
|
2
LICENSE
2
LICENSE
@@ -12,7 +12,7 @@
|
|||||||
---------------
|
---------------
|
||||||
|
|
||||||
/* ====================================================================
|
/* ====================================================================
|
||||||
* Copyright (c) 1998-2002 The OpenSSL Project. All rights reserved.
|
* Copyright (c) 1998-2003 The OpenSSL Project. All rights reserved.
|
||||||
*
|
*
|
||||||
* Redistribution and use in source and binary forms, with or without
|
* Redistribution and use in source and binary forms, with or without
|
||||||
* modification, are permitted provided that the following conditions
|
* modification, are permitted provided that the following conditions
|
||||||
|
@@ -1287,7 +1287,7 @@ EXITPOINT:
|
|||||||
|
|
||||||
// Send some bytes
|
// Send some bytes
|
||||||
|
|
||||||
int MacSocket_send(const int inSocketNum,void *inBuff,int inBuffLength)
|
int MacSocket_send(const int inSocketNum,const void *inBuff,int inBuffLength)
|
||||||
{
|
{
|
||||||
OSErr errCode = noErr;
|
OSErr errCode = noErr;
|
||||||
int bytesSent = 0;
|
int bytesSent = 0;
|
||||||
|
@@ -62,7 +62,7 @@ int MacSocket_recv(const int inSocketNum,void *outBuff,int outBuffLength,const B
|
|||||||
|
|
||||||
// Call this to send data on a socket
|
// Call this to send data on a socket
|
||||||
|
|
||||||
int MacSocket_send(const int inSocketNum,void *inBuff,int inBuffLength);
|
int MacSocket_send(const int inSocketNum,const void *inBuff,int inBuffLength);
|
||||||
|
|
||||||
|
|
||||||
// If zero bytes were read in a call to MacSocket_recv(), it may be that the remote end has done a half-close
|
// If zero bytes were read in a call to MacSocket_recv(), it may be that the remote end has done a half-close
|
||||||
|
89
Makefile.org
89
Makefile.org
@@ -247,7 +247,8 @@ link-shared:
|
|||||||
for i in $(SHLIBDIRS); do \
|
for i in $(SHLIBDIRS); do \
|
||||||
prev=lib$$i$(SHLIB_EXT); \
|
prev=lib$$i$(SHLIB_EXT); \
|
||||||
for j in $${tmp:-x}; do \
|
for j in $${tmp:-x}; do \
|
||||||
( set -x; ln -f -s $$prev lib$$i$$j ); \
|
( set -x; \
|
||||||
|
rm -f lib$$i$$j; ln -s $$prev lib$$i$$j ); \
|
||||||
prev=lib$$i$$j; \
|
prev=lib$$i$$j; \
|
||||||
done; \
|
done; \
|
||||||
done; \
|
done; \
|
||||||
@@ -269,9 +270,7 @@ do_gnu-shared:
|
|||||||
done
|
done
|
||||||
|
|
||||||
DETECT_GNU_LD=${CC} -v 2>&1 | grep '^gcc' >/dev/null 2>&1 && \
|
DETECT_GNU_LD=${CC} -v 2>&1 | grep '^gcc' >/dev/null 2>&1 && \
|
||||||
collect2=`gcc -print-prog-name=collect2 2>&1` && \
|
my_ld=`${CC} -print-prog-name=ld 2>&1` && \
|
||||||
[ -n "$$collect2" ] && \
|
|
||||||
my_ld=`$$collect2 --help 2>&1 | grep Usage: | sed 's/^Usage: *\([^ ][^ ]*\).*/\1/'` && \
|
|
||||||
[ -n "$$my_ld" ] && \
|
[ -n "$$my_ld" ] && \
|
||||||
$$my_ld -v 2>&1 | grep 'GNU ld' >/dev/null 2>&1
|
$$my_ld -v 2>&1 | grep 'GNU ld' >/dev/null 2>&1
|
||||||
|
|
||||||
@@ -371,7 +370,8 @@ do_svr3-shared:
|
|||||||
for obj in `ar t lib$$i.a` ; do \
|
for obj in `ar t lib$$i.a` ; do \
|
||||||
OBJS="$${OBJS} `grep $$obj allobjs`" ; \
|
OBJS="$${OBJS} `grep $$obj allobjs`" ; \
|
||||||
done ; \
|
done ; \
|
||||||
set -x; ${CC} -G -o lib$$i.so.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
set -x; ${CC} ${SHARED_LDFLAGS} \
|
||||||
|
-G -o lib$$i.so.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
||||||
-h lib$$i.so.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
-h lib$$i.so.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
||||||
$${OBJS} $$libs ${EX_LIBS} ) || exit 1; \
|
$${OBJS} $$libs ${EX_LIBS} ) || exit 1; \
|
||||||
libs="$$libs -l$$i"; \
|
libs="$$libs -l$$i"; \
|
||||||
@@ -385,13 +385,15 @@ do_svr5-shared:
|
|||||||
else \
|
else \
|
||||||
libs='-L. ${SHLIBDEPS}'; for i in ${SHLIBDIRS}; do \
|
libs='-L. ${SHLIBDEPS}'; for i in ${SHLIBDIRS}; do \
|
||||||
( PATH=/usr/ccs/bin:$$PATH ; export PATH; \
|
( PATH=/usr/ccs/bin:$$PATH ; export PATH; \
|
||||||
|
SHARE_FLAG='-G'; \
|
||||||
|
(${CC} -v 2>&1 | grep gcc) > /dev/null && SHARE_FLAG='-shared'; \
|
||||||
find . -name "*.o" -print > allobjs ; \
|
find . -name "*.o" -print > allobjs ; \
|
||||||
OBJS= ; export OBJS ; \
|
OBJS= ; export OBJS ; \
|
||||||
for obj in `ar t lib$$i.a` ; do \
|
for obj in `ar t lib$$i.a` ; do \
|
||||||
OBJS="$${OBJS} `grep $$obj allobjs`" ; \
|
OBJS="$${OBJS} `grep $$obj allobjs`" ; \
|
||||||
done ; \
|
done ; \
|
||||||
set -x; ${CC} ${SHARED_LDFLAGS} \
|
set -x; ${CC} ${SHARED_LDFLAGS} \
|
||||||
-G -o lib$$i.so.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
$${SHARE_FLAG} -o lib$$i.so.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
||||||
-h lib$$i.so.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
-h lib$$i.so.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
||||||
$${OBJS} $$libs ${EX_LIBS} ) || exit 1; \
|
$${OBJS} $$libs ${EX_LIBS} ) || exit 1; \
|
||||||
libs="$$libs -l$$i"; \
|
libs="$$libs -l$$i"; \
|
||||||
@@ -420,6 +422,7 @@ do_hpux-shared:
|
|||||||
-b -z -o lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
-b -z -o lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
||||||
+h lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
+h lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
||||||
-Fl lib$$i.a $$libs ${EX_LIBS} -lc ) || exit 1; \
|
-Fl lib$$i.a $$libs ${EX_LIBS} -lc ) || exit 1; \
|
||||||
|
chmod a=rx lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} ; \
|
||||||
libs="$$libs -L. -l$$i"; \
|
libs="$$libs -L. -l$$i"; \
|
||||||
done
|
done
|
||||||
|
|
||||||
@@ -430,6 +433,7 @@ do_hpux64-shared:
|
|||||||
-b -z -o lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
-b -z -o lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
||||||
+h lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
+h lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} \
|
||||||
+forceload lib$$i.a $$libs ${EX_LIBS} -lc ) || exit 1; \
|
+forceload lib$$i.a $$libs ${EX_LIBS} -lc ) || exit 1; \
|
||||||
|
chmod a=rx lib$$i.sl.${SHLIB_MAJOR}.${SHLIB_MINOR} ; \
|
||||||
libs="$$libs -L. -l$$i"; \
|
libs="$$libs -L. -l$$i"; \
|
||||||
done
|
done
|
||||||
|
|
||||||
@@ -526,6 +530,10 @@ links:
|
|||||||
fi; \
|
fi; \
|
||||||
done;
|
done;
|
||||||
|
|
||||||
|
gentests:
|
||||||
|
@(cd test && echo "generating dummy tests (if needed)..." && \
|
||||||
|
$(MAKE) CC='${CC}' PLATFORM='${PLATFORM}' CFLAG='${CFLAG}' SDIRS='$(SDIRS)' INSTALLTOP='${INSTALLTOP}' PEX_LIBS='${PEX_LIBS}' EX_LIBS='${EX_LIBS}' BN_ASM='${BN_ASM}' DES_ENC='${DES_ENC}' BF_ENC='${BF_ENC}' CAST_ENC='${CAST_ENC}' RC4_ENC='${RC4_ENC}' RC5_ENC='${RC5_ENC}' SHA1_ASM_OBJ='${SHA1_ASM_OBJ}' MD5_ASM_OBJ='${MD5_ASM_OBJ}' RMD160_ASM_OBJ='${RMD160_ASM_OBJ}' AR='${AR}' PROCESSOR='${PROCESSOR}' PERL='${PERL}' RANLIB='${RANLIB}' TESTS='${TESTS}' KRB5_INCLUDES='${KRB5_INCLUDES}' LIBKRB5='${LIBKRB5}' EXE_EXT='${EXE_EXT}' SHARED_LIBS='${SHARED_LIBS}' SHLIB_EXT='${SHLIB_EXT}' SHLIB_TARGET='${SHLIB_TARGET}' TESTS='${TESTS}' OPENSSL_DEBUG_MEMORY=on generate );
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
rm -f *.bak
|
rm -f *.bak
|
||||||
@for i in $(DIRS) ;\
|
@for i in $(DIRS) ;\
|
||||||
@@ -545,7 +553,7 @@ test: tests
|
|||||||
|
|
||||||
tests: rehash
|
tests: rehash
|
||||||
@(cd test && echo "testing..." && \
|
@(cd test && echo "testing..." && \
|
||||||
$(MAKE) CC='${CC}' CFLAG='${CFLAG}' INSTALLTOP='${INSTALLTOP}' PEX_LIBS='${PEX_LIBS}' EX_LIBS='${EX_LIBS}' BN_ASM='${BN_ASM}' DES_ENC='${DES_ENC}' BF_ENC='${BF_ENC}' CAST_ENC='${CAST_ENC}' RC4_ENC='${RC4_ENC}' RC5_ENC='${RC5_ENC}' SDIRS='${SDIRS}' SHA1_ASM_OBJ='${SHA1_ASM_OBJ}' MD5_ASM_OBJ='${MD5_ASM_OBJ}' RMD160_ASM_OBJ='${RMD160_ASM_OBJ}' AR='${AR}' PERL='${PERL}' EXE_EXT='${EXE_EXT}' tests );
|
$(MAKE) CC='${CC}' PLATFORM='${PLATFORM}' CFLAG='${CFLAG}' SDIRS='$(SDIRS)' INSTALLTOP='${INSTALLTOP}' PEX_LIBS='${PEX_LIBS}' EX_LIBS='${EX_LIBS}' BN_ASM='${BN_ASM}' DES_ENC='${DES_ENC}' BF_ENC='${BF_ENC}' CAST_ENC='${CAST_ENC}' RC4_ENC='${RC4_ENC}' RC5_ENC='${RC5_ENC}' SHA1_ASM_OBJ='${SHA1_ASM_OBJ}' MD5_ASM_OBJ='${MD5_ASM_OBJ}' RMD160_ASM_OBJ='${RMD160_ASM_OBJ}' AR='${AR}' PROCESSOR='${PROCESSOR}' PERL='${PERL}' RANLIB='${RANLIB}' TESTS='${TESTS}' EXE_EXT='${EXE_EXT}' SHARED_LIBS='${SHARED_LIBS}' SHLIB_EXT='${SHLIB_EXT}' SHLIB_TARGET='${SHLIB_TARGET}' OPENSSL_DEBUG_MEMORY=on tests );
|
||||||
@apps/openssl version -a
|
@apps/openssl version -a
|
||||||
|
|
||||||
report:
|
report:
|
||||||
@@ -556,7 +564,7 @@ depend:
|
|||||||
do \
|
do \
|
||||||
if [ -d "$$i" ]; then \
|
if [ -d "$$i" ]; then \
|
||||||
(cd $$i && echo "making dependencies $$i..." && \
|
(cd $$i && echo "making dependencies $$i..." && \
|
||||||
$(MAKE) SDIRS='${SDIRS}' DEPFLAG='${DEPFLAG}' depend ) || exit 1; \
|
$(MAKE) SDIRS='${SDIRS}' DEPFLAG='${DEPFLAG}' PERL='${PERL}' depend ) || exit 1; \
|
||||||
fi; \
|
fi; \
|
||||||
done;
|
done;
|
||||||
|
|
||||||
@@ -601,20 +609,29 @@ TABLE: Configure
|
|||||||
|
|
||||||
update: depend errors stacks util/libeay.num util/ssleay.num crypto/objects/obj_dat.h TABLE
|
update: depend errors stacks util/libeay.num util/ssleay.num crypto/objects/obj_dat.h TABLE
|
||||||
|
|
||||||
|
# Build distribution tar-file. As the list of files returned by "find" is
|
||||||
|
# pretty long, on several platforms a "too many arguments" error or similar
|
||||||
|
# would occur. Therefore the list of files is temporarily stored into a file
|
||||||
|
# and read directly, requiring GNU-Tar. Call "make TAR=gtar dist" if the normal
|
||||||
|
# tar does not support the --files-from option.
|
||||||
tar:
|
tar:
|
||||||
@$(TAR) $(TARFLAGS) -cvf - \
|
find . -type d -print | xargs chmod 755
|
||||||
`find * \! -path CVS/\* \! -path \*/CVS/\* \! -name CVS \! -name .cvsignore \! -name STATUS \! -name TABLE | sort` |\
|
find . -type f -print | xargs chmod a+r
|
||||||
|
find . -type f -perm -0100 -print | xargs chmod a+x
|
||||||
|
find * \! -path CVS/\* \! -path \*/CVS/\* \! -name CVS \! -name .cvsignore \! -name STATUS \! -name TABLE | sort > ../$(TARFILE).list; \
|
||||||
|
$(TAR) $(TARFLAGS) --files-from ../$(TARFILE).list -cvf - | \
|
||||||
tardy --user_number=0 --user_name=openssl \
|
tardy --user_number=0 --user_name=openssl \
|
||||||
--group_number=0 --group_name=openssl \
|
--group_number=0 --group_name=openssl \
|
||||||
--prefix=openssl-$(VERSION) - |\
|
--prefix=openssl-$(VERSION) - |\
|
||||||
gzip --best >../$(TARFILE).gz; \
|
gzip --best >../$(TARFILE).gz; \
|
||||||
|
rm -f ../$(TARFILE).list; \
|
||||||
ls -l ../$(TARFILE).gz
|
ls -l ../$(TARFILE).gz
|
||||||
|
|
||||||
dist:
|
dist:
|
||||||
$(PERL) Configure dist
|
$(PERL) Configure dist
|
||||||
@$(MAKE) dist_pem_h
|
@$(MAKE) dist_pem_h
|
||||||
@$(MAKE) SDIRS='${SDIRS}' clean
|
@$(MAKE) SDIRS='${SDIRS}' clean
|
||||||
@$(MAKE) tar
|
@$(MAKE) TAR='${TAR}' TARFLAGS='${TARFLAGS}' tar
|
||||||
|
|
||||||
dist_pem_h:
|
dist_pem_h:
|
||||||
(cd crypto/pem; $(MAKE) CC='${CC}' SDIRS='${SDIRS}' CFLAG='${CFLAG}' pem.h; $(MAKE) clean)
|
(cd crypto/pem; $(MAKE) CC='${CC}' SDIRS='${SDIRS}' CFLAG='${CFLAG}' pem.h; $(MAKE) clean)
|
||||||
@@ -643,10 +660,11 @@ install: all install_docs
|
|||||||
do \
|
do \
|
||||||
if [ -f "$$i" ]; then \
|
if [ -f "$$i" ]; then \
|
||||||
( echo installing $$i; \
|
( echo installing $$i; \
|
||||||
cp $$i $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
|
cp $$i $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.new; \
|
||||||
$(RANLIB) $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i; \
|
$(RANLIB) $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.new; \
|
||||||
chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i ); \
|
chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.new; \
|
||||||
fi \
|
mv $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.new $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i ); \
|
||||||
|
fi; \
|
||||||
done
|
done
|
||||||
@if [ -n "$(SHARED_LIBS)" ]; then \
|
@if [ -n "$(SHARED_LIBS)" ]; then \
|
||||||
tmp="$(SHARED_LIBS)"; \
|
tmp="$(SHARED_LIBS)"; \
|
||||||
@@ -655,20 +673,24 @@ install: all install_docs
|
|||||||
if [ -f "$$i" -o -f "$$i.a" ]; then \
|
if [ -f "$$i" -o -f "$$i.a" ]; then \
|
||||||
( echo installing $$i; \
|
( echo installing $$i; \
|
||||||
if [ "$(PLATFORM)" != "Cygwin" ]; then \
|
if [ "$(PLATFORM)" != "Cygwin" ]; then \
|
||||||
cp $$i $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
|
cp $$i $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.new; \
|
||||||
chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i; \
|
chmod 555 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.new; \
|
||||||
|
mv $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.new $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i; \
|
||||||
else \
|
else \
|
||||||
c=`echo $$i | sed 's/^lib/cyg/'`; \
|
c=`echo $$i | sed 's/^lib/cyg/'`; \
|
||||||
cp $$c $(INSTALL_PREFIX)$(INSTALLTOP)/bin/$$c; \
|
cp $$c $(INSTALL_PREFIX)$(INSTALLTOP)/bin/$$c.new; \
|
||||||
chmod 755 $(INSTALL_PREFIX)$(INSTALLTOP)/bin/$$c; \
|
chmod 755 $(INSTALL_PREFIX)$(INSTALLTOP)/bin/$$c.new; \
|
||||||
cp $$i.a $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a; \
|
mv $(INSTALL_PREFIX)$(INSTALLTOP)/bin/$$c.new $(INSTALL_PREFIX)$(INSTALLTOP)/bin/$$c; \
|
||||||
chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a; \
|
cp $$i.a $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a.new; \
|
||||||
|
chmod 644 $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a.new; \
|
||||||
|
mv $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a.new $(INSTALL_PREFIX)$(INSTALLTOP)/lib/$$i.a; \
|
||||||
fi ); \
|
fi ); \
|
||||||
fi \
|
fi; \
|
||||||
done; \
|
done; \
|
||||||
( here="`pwd`"; \
|
( here="`pwd`"; \
|
||||||
cd $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
|
cd $(INSTALL_PREFIX)$(INSTALLTOP)/lib; \
|
||||||
make -f $$here/Makefile link-shared ); \
|
set $(MAKE); \
|
||||||
|
$$1 -f $$here/Makefile link-shared ); \
|
||||||
fi
|
fi
|
||||||
|
|
||||||
install_docs:
|
install_docs:
|
||||||
@@ -677,22 +699,25 @@ install_docs:
|
|||||||
$(INSTALL_PREFIX)$(MANDIR)/man3 \
|
$(INSTALL_PREFIX)$(MANDIR)/man3 \
|
||||||
$(INSTALL_PREFIX)$(MANDIR)/man5 \
|
$(INSTALL_PREFIX)$(MANDIR)/man5 \
|
||||||
$(INSTALL_PREFIX)$(MANDIR)/man7
|
$(INSTALL_PREFIX)$(MANDIR)/man7
|
||||||
@for i in doc/apps/*.pod; do \
|
@pod2man="`cd util; ./pod2mantest $(PERL)`"; \
|
||||||
|
for i in doc/apps/*.pod; do \
|
||||||
fn=`basename $$i .pod`; \
|
fn=`basename $$i .pod`; \
|
||||||
if [ "$$fn" = "config" ]; then sec=5; else sec=1; fi; \
|
if [ "$$fn" = "config" ]; then sec=5; else sec=1; fi; \
|
||||||
echo "installing man$$sec/`basename $$i .pod`.$$sec"; \
|
echo "installing man$$sec/`basename $$i .pod`.$$sec"; \
|
||||||
(cd `dirname $$i`; \
|
(cd `$(PERL) util/dirname.pl $$i`; \
|
||||||
$(PERL) ../../util/pod2man.pl --section=$$sec --center=OpenSSL \
|
sh -c "$$pod2man \
|
||||||
--release=$(VERSION) `basename $$i`) \
|
--section=$$sec --center=OpenSSL \
|
||||||
|
--release=$(VERSION) `basename $$i`") \
|
||||||
> $(INSTALL_PREFIX)$(MANDIR)/man$$sec/`basename $$i .pod`.$$sec; \
|
> $(INSTALL_PREFIX)$(MANDIR)/man$$sec/`basename $$i .pod`.$$sec; \
|
||||||
done
|
done; \
|
||||||
@for i in doc/crypto/*.pod doc/ssl/*.pod; do \
|
for i in doc/crypto/*.pod doc/ssl/*.pod; do \
|
||||||
fn=`basename $$i .pod`; \
|
fn=`basename $$i .pod`; \
|
||||||
if [ "$$fn" = "des_modes" ]; then sec=7; else sec=3; fi; \
|
if [ "$$fn" = "des_modes" ]; then sec=7; else sec=3; fi; \
|
||||||
echo "installing man$$sec/`basename $$i .pod`.$$sec"; \
|
echo "installing man$$sec/`basename $$i .pod`.$$sec"; \
|
||||||
(cd `dirname $$i`; \
|
(cd `$(PERL) util/dirname.pl $$i`; \
|
||||||
$(PERL) ../../util/pod2man.pl --section=$$sec --center=OpenSSL \
|
sh -c "$$pod2man \
|
||||||
--release=$(VERSION) `basename $$i`) \
|
--section=$$sec --center=OpenSSL \
|
||||||
|
--release=$(VERSION) `basename $$i`") \
|
||||||
> $(INSTALL_PREFIX)$(MANDIR)/man$$sec/`basename $$i .pod`.$$sec; \
|
> $(INSTALL_PREFIX)$(MANDIR)/man$$sec/`basename $$i .pod`.$$sec; \
|
||||||
done
|
done
|
||||||
|
|
||||||
|
46
NEWS
46
NEWS
@@ -5,12 +5,50 @@
|
|||||||
This file gives a brief overview of the major changes between each OpenSSL
|
This file gives a brief overview of the major changes between each OpenSSL
|
||||||
release. For more details please read the CHANGES file.
|
release. For more details please read the CHANGES file.
|
||||||
|
|
||||||
Changes between OpenSSL 0.9.6c and OpenSSL 0.9.6d:
|
Major changes between OpenSSL 0.9.6i and OpenSSL 0.9.6j:
|
||||||
|
|
||||||
|
o Security: counter the Klima-Pokorny-Rosa extension of
|
||||||
|
Bleichbacher's attack
|
||||||
|
o Security: make RSA blinding default.
|
||||||
|
o Build: shared library support fixes.
|
||||||
|
|
||||||
|
Major changes between OpenSSL 0.9.6h and OpenSSL 0.9.6i:
|
||||||
|
|
||||||
|
o Important security related bugfixes.
|
||||||
|
|
||||||
|
Major changes between OpenSSL 0.9.6g and OpenSSL 0.9.6h:
|
||||||
|
|
||||||
|
o New configuration targets for Tandem OSS and A/UX.
|
||||||
|
o New OIDs for Microsoft attributes.
|
||||||
|
o Better handling of SSL session caching.
|
||||||
|
o Better comparison of distinguished names.
|
||||||
|
o Better handling of shared libraries in a mixed GNU/non-GNU environment.
|
||||||
|
o Support assembler code with Borland C.
|
||||||
|
o Fixes for length problems.
|
||||||
|
o Fixes for uninitialised variables.
|
||||||
|
o Fixes for memory leaks, some unusual crashes and some race conditions.
|
||||||
|
o Fixes for smaller building problems.
|
||||||
|
o Updates of manuals, FAQ and other instructive documents.
|
||||||
|
|
||||||
|
Major changes between OpenSSL 0.9.6f and OpenSSL 0.9.6g:
|
||||||
|
|
||||||
|
o Important building fixes on Unix.
|
||||||
|
|
||||||
|
Major changes between OpenSSL 0.9.6e and OpenSSL 0.9.6f:
|
||||||
|
|
||||||
|
o Various important bugfixes.
|
||||||
|
|
||||||
|
Major changes between OpenSSL 0.9.6d and OpenSSL 0.9.6e:
|
||||||
|
|
||||||
|
o Important security related bugfixes.
|
||||||
|
o Various SSL/TLS library bugfixes.
|
||||||
|
|
||||||
|
Major changes between OpenSSL 0.9.6c and OpenSSL 0.9.6d:
|
||||||
|
|
||||||
o Various SSL/TLS library bugfixes.
|
o Various SSL/TLS library bugfixes.
|
||||||
o Fix DH parameter generation for 'non-standard' generators.
|
o Fix DH parameter generation for 'non-standard' generators.
|
||||||
|
|
||||||
Changes between OpenSSL 0.9.6b and OpenSSL 0.9.6c:
|
Major changes between OpenSSL 0.9.6b and OpenSSL 0.9.6c:
|
||||||
|
|
||||||
o Various SSL/TLS library bugfixes.
|
o Various SSL/TLS library bugfixes.
|
||||||
o BIGNUM library fixes.
|
o BIGNUM library fixes.
|
||||||
@@ -23,7 +61,7 @@
|
|||||||
Broadcom and Cryptographic Appliance's keyserver
|
Broadcom and Cryptographic Appliance's keyserver
|
||||||
[in 0.9.6c-engine release].
|
[in 0.9.6c-engine release].
|
||||||
|
|
||||||
Changes between OpenSSL 0.9.6a and OpenSSL 0.9.6b:
|
Major changes between OpenSSL 0.9.6a and OpenSSL 0.9.6b:
|
||||||
|
|
||||||
o Security fix: PRNG improvements.
|
o Security fix: PRNG improvements.
|
||||||
o Security fix: RSA OAEP check.
|
o Security fix: RSA OAEP check.
|
||||||
@@ -56,7 +94,7 @@
|
|||||||
o Bug fixes for Win32, HP/UX and Irix.
|
o Bug fixes for Win32, HP/UX and Irix.
|
||||||
o Bug fixes in BIGNUM, SSL, PKCS#7, PKCS#12, X.509, CONF and
|
o Bug fixes in BIGNUM, SSL, PKCS#7, PKCS#12, X.509, CONF and
|
||||||
memory checking routines.
|
memory checking routines.
|
||||||
o Bug fixes for RSA operations in threaded enviroments.
|
o Bug fixes for RSA operations in threaded environments.
|
||||||
o Bug fixes in misc. openssl applications.
|
o Bug fixes in misc. openssl applications.
|
||||||
o Remove a few potential memory leaks.
|
o Remove a few potential memory leaks.
|
||||||
o Add tighter checks of BIGNUM routines.
|
o Add tighter checks of BIGNUM routines.
|
||||||
|
58
PROBLEMS
Normal file
58
PROBLEMS
Normal file
@@ -0,0 +1,58 @@
|
|||||||
|
* System libcrypto.dylib and libssl.dylib are used by system ld on MacOS X.
|
||||||
|
[NOTE: This is currently undergoing tests, and may be removed soon]
|
||||||
|
|
||||||
|
This is really a misfeature in ld, which seems to look for .dylib libraries
|
||||||
|
along the whole library path before it bothers looking for .a libraries. This
|
||||||
|
means that -L switches won't matter unless OpenSSL is built with shared
|
||||||
|
library support.
|
||||||
|
|
||||||
|
The workaround may be to change the following lines in apps/Makefile.ssl and
|
||||||
|
test/Makefile.ssl:
|
||||||
|
|
||||||
|
LIBCRYPTO=-L.. -lcrypto
|
||||||
|
LIBSSL=-L.. -lssl
|
||||||
|
|
||||||
|
to:
|
||||||
|
|
||||||
|
LIBCRYPTO=../libcrypto.a
|
||||||
|
LIBSSL=../libssl.a
|
||||||
|
|
||||||
|
It's possible that something similar is needed for shared library support
|
||||||
|
as well. That hasn't been well tested yet.
|
||||||
|
|
||||||
|
|
||||||
|
Another solution that many seem to recommend is to move the libraries
|
||||||
|
/usr/lib/libcrypto.0.9.dylib, /usr/lib/libssl.0.9.dylib to a different
|
||||||
|
directory, build and install OpenSSL and anything that depends on your
|
||||||
|
build, then move libcrypto.0.9.dylib and libssl.0.9.dylib back to their
|
||||||
|
original places. Note that the version numbers on those two libraries
|
||||||
|
may differ on your machine.
|
||||||
|
|
||||||
|
|
||||||
|
As long as Apple doesn't fix the problem with ld, this problem building
|
||||||
|
OpenSSL will remain as is.
|
||||||
|
|
||||||
|
|
||||||
|
* Parallell make leads to errors
|
||||||
|
|
||||||
|
While running tests, running a parallell make is a bad idea. Many test
|
||||||
|
scripts use the same name for output and input files, which means different
|
||||||
|
will interfere with each other and lead to test failure.
|
||||||
|
|
||||||
|
The solution is simple for now: don't run parallell make when testing.
|
||||||
|
|
||||||
|
|
||||||
|
* Bugs in gcc 3.0 triggered
|
||||||
|
|
||||||
|
According to a problem report, there are bugs in gcc 3.0 that are
|
||||||
|
triggered by some of the code in OpenSSL, more specifically in
|
||||||
|
PEM_get_EVP_CIPHER_INFO(). The triggering code is the following:
|
||||||
|
|
||||||
|
header+=11;
|
||||||
|
if (*header != '4') return(0); header++;
|
||||||
|
if (*header != ',') return(0); header++;
|
||||||
|
|
||||||
|
What happens is that gcc might optimize a little too agressively, and
|
||||||
|
you end up with an extra incrementation when *header != '4'.
|
||||||
|
|
||||||
|
We recommend that you upgrade gcc to as high a 3.x version as you can.
|
21
README
21
README
@@ -1,7 +1,7 @@
|
|||||||
|
|
||||||
OpenSSL 0.9.6d-beta1 [engine] 17 Apr 2002
|
OpenSSL 0.9.6j [engine] 10 Apr 2003
|
||||||
|
|
||||||
Copyright (c) 1998-2002 The OpenSSL Project
|
Copyright (c) 1998-2003 The OpenSSL Project
|
||||||
Copyright (c) 1995-1998 Eric A. Young, Tim J. Hudson
|
Copyright (c) 1995-1998 Eric A. Young, Tim J. Hudson
|
||||||
All rights reserved.
|
All rights reserved.
|
||||||
|
|
||||||
@@ -122,6 +122,13 @@
|
|||||||
lists the functions; you will probably have to look at the code to work out
|
lists the functions; you will probably have to look at the code to work out
|
||||||
how to use them. Look at the example programs.
|
how to use them. Look at the example programs.
|
||||||
|
|
||||||
|
PROBLEMS
|
||||||
|
--------
|
||||||
|
|
||||||
|
For some platforms, there are some known problems that may affect the user
|
||||||
|
or application author. We try to collect those in doc/PROBLEMS, with current
|
||||||
|
thoughts on how they should be solved in a future of OpenSSL.
|
||||||
|
|
||||||
SUPPORT
|
SUPPORT
|
||||||
-------
|
-------
|
||||||
|
|
||||||
@@ -146,11 +153,13 @@
|
|||||||
- Problem Description (steps that will reproduce the problem, if known)
|
- Problem Description (steps that will reproduce the problem, if known)
|
||||||
- Stack Traceback (if the application dumps core)
|
- Stack Traceback (if the application dumps core)
|
||||||
|
|
||||||
Report the bug to the OpenSSL project at:
|
Report the bug to the OpenSSL project via the Request Tracker
|
||||||
|
(http://www.openssl.org/rt2.html) by mail to:
|
||||||
|
|
||||||
openssl-bugs@openssl.org
|
openssl-bugs@openssl.org
|
||||||
|
|
||||||
Note that mail to openssl-bugs@openssl.org is forwarded to a public
|
Note that mail to openssl-bugs@openssl.org is recorded in the publicly
|
||||||
|
readable request tracker database and is forwarded to a public
|
||||||
mailing list. Confidential mail may be sent to openssl-security@openssl.org
|
mailing list. Confidential mail may be sent to openssl-security@openssl.org
|
||||||
(PGP key available from the key servers).
|
(PGP key available from the key servers).
|
||||||
|
|
||||||
@@ -164,7 +173,9 @@
|
|||||||
textual explanation of what your patch does.
|
textual explanation of what your patch does.
|
||||||
|
|
||||||
Note: For legal reasons, contributions from the US can be accepted only
|
Note: For legal reasons, contributions from the US can be accepted only
|
||||||
if a copy of the patch is sent to crypt@bxa.doc.gov
|
if a TSA notification and a copy of the patch is sent to crypt@bis.doc.gov;
|
||||||
|
see http://www.bis.doc.gov/Encryption/PubAvailEncSourceCodeNofify.html [sic]
|
||||||
|
and http://w3.access.gpo.gov/bis/ear/pdf/740.pdf (EAR Section 740.13(e)).
|
||||||
|
|
||||||
The preferred format for changes is "diff -u" output. You might
|
The preferred format for changes is "diff -u" output. You might
|
||||||
generate it like this:
|
generate it like this:
|
||||||
|
17
STATUS
17
STATUS
@@ -1,11 +1,20 @@
|
|||||||
|
|
||||||
OpenSSL STATUS Last modified at
|
OpenSSL STATUS Last modified at
|
||||||
______________ $Date: 2002/04/17 12:52:31 $
|
______________ $Date: 2003/04/10 20:42:58 $
|
||||||
|
|
||||||
DEVELOPMENT STATE
|
DEVELOPMENT STATE
|
||||||
|
|
||||||
o OpenSSL 0.9.7: Under development...
|
o OpenSSL 0.9.8: Under development...
|
||||||
o OpenSSL 0.9.6d: Feature freeze, beta1 April 17th, 2002
|
o OpenSSL 0.9.7b: Released on April 10th, 2003
|
||||||
|
o OpenSSL 0.9.7a: Released on February 19th, 2003
|
||||||
|
o OpenSSL 0.9.7: Released on December 31st, 2002
|
||||||
|
o OpenSSL 0.9.6j: Released on April 10th, 2003
|
||||||
|
o OpenSSL 0.9.6i: Released on February 19th, 2003
|
||||||
|
o OpenSSL 0.9.6h: Released on December 5th, 2002
|
||||||
|
o OpenSSL 0.9.6g: Released on August 9th, 2002
|
||||||
|
o OpenSSL 0.9.6f: Released on August 8th, 2002
|
||||||
|
o OpenSSL 0.9.6e: Released on July 30th, 2002
|
||||||
|
o OpenSSL 0.9.6d: Released on May 9th, 2002
|
||||||
o OpenSSL 0.9.6c: Released on December 21st, 2001
|
o OpenSSL 0.9.6c: Released on December 21st, 2001
|
||||||
o OpenSSL 0.9.6b: Released on July 9th, 2001
|
o OpenSSL 0.9.6b: Released on July 9th, 2001
|
||||||
o OpenSSL 0.9.6a: Released on April 5th, 2001
|
o OpenSSL 0.9.6a: Released on April 5th, 2001
|
||||||
@@ -20,6 +29,8 @@
|
|||||||
|
|
||||||
RELEASE SHOWSTOPPERS
|
RELEASE SHOWSTOPPERS
|
||||||
|
|
||||||
|
o none
|
||||||
|
|
||||||
AVAILABLE PATCHES
|
AVAILABLE PATCHES
|
||||||
|
|
||||||
o
|
o
|
||||||
|
189
TABLE
189
TABLE
@@ -71,7 +71,7 @@ $ranlib =
|
|||||||
|
|
||||||
*** Cygwin
|
*** Cygwin
|
||||||
$cc = gcc
|
$cc = gcc
|
||||||
$cflags = -DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -m486 -Wall
|
$cflags = -DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -march=i486 -Wall
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag =
|
$thread_cflag =
|
||||||
$lflags =
|
$lflags =
|
||||||
@@ -621,6 +621,29 @@ $shared_ldflag =
|
|||||||
$shared_extension =
|
$shared_extension =
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
|
*** UWIN
|
||||||
|
$cc = cc
|
||||||
|
$cflags = -DTERMIOS -DL_ENDIAN -O -Wall
|
||||||
|
$unistd =
|
||||||
|
$thread_cflag =
|
||||||
|
$lflags =
|
||||||
|
$bn_ops = BN_LLONG DES_PTR DES_RISC1 DES_UNROLL RC4_INDEX MD2_INT
|
||||||
|
$bn_obj =
|
||||||
|
$des_obj =
|
||||||
|
$bf_obj =
|
||||||
|
$md5_obj =
|
||||||
|
$sha1_obj =
|
||||||
|
$cast_obj =
|
||||||
|
$rc4_obj =
|
||||||
|
$rmd160_obj =
|
||||||
|
$rc5_obj =
|
||||||
|
$dso_scheme = win32
|
||||||
|
$shared_target=
|
||||||
|
$shared_cflag =
|
||||||
|
$shared_ldflag =
|
||||||
|
$shared_extension =
|
||||||
|
$ranlib =
|
||||||
|
|
||||||
*** VC-MSDOS
|
*** VC-MSDOS
|
||||||
$cc = cl
|
$cc = cl
|
||||||
$cflags =
|
$cflags =
|
||||||
@@ -830,7 +853,7 @@ $ranlib =
|
|||||||
|
|
||||||
*** aix43-gcc
|
*** aix43-gcc
|
||||||
$cc = gcc
|
$cc = gcc
|
||||||
$cflags = -O3 -DAIX -DB_ENDIAN
|
$cflags = -O1 -DAIX -DB_ENDIAN
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag = (unknown)
|
$thread_cflag = (unknown)
|
||||||
$lflags =
|
$lflags =
|
||||||
@@ -966,6 +989,29 @@ $shared_ldflag =
|
|||||||
$shared_extension = .so
|
$shared_extension = .so
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
|
*** aux3-gcc
|
||||||
|
$cc = gcc
|
||||||
|
$cflags = -O2 -DTERMIO
|
||||||
|
$unistd =
|
||||||
|
$thread_cflag = (unknown)
|
||||||
|
$lflags = -lbsd
|
||||||
|
$bn_ops = RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
|
||||||
|
$bn_obj =
|
||||||
|
$des_obj =
|
||||||
|
$bf_obj =
|
||||||
|
$md5_obj =
|
||||||
|
$sha1_obj =
|
||||||
|
$cast_obj =
|
||||||
|
$rc4_obj =
|
||||||
|
$rmd160_obj =
|
||||||
|
$rc5_obj =
|
||||||
|
$dso_scheme =
|
||||||
|
$shared_target=
|
||||||
|
$shared_cflag =
|
||||||
|
$shared_ldflag =
|
||||||
|
$shared_extension =
|
||||||
|
$ranlib =
|
||||||
|
|
||||||
*** bsdi-elf-gcc
|
*** bsdi-elf-gcc
|
||||||
$cc = gcc
|
$cc = gcc
|
||||||
$cflags = -DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall
|
$cflags = -DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall
|
||||||
@@ -1083,7 +1129,7 @@ $ranlib =
|
|||||||
|
|
||||||
*** darwin-ppc-cc
|
*** darwin-ppc-cc
|
||||||
$cc = cc
|
$cc = cc
|
||||||
$cflags = -O3 -D_DARWIN -DB_ENDIAN
|
$cflags = -O3 -D_DARWIN -DB_ENDIAN -fno-common
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag = -D_REENTRANT
|
$thread_cflag = -D_REENTRANT
|
||||||
$lflags =
|
$lflags =
|
||||||
@@ -1100,8 +1146,8 @@ $rc5_obj =
|
|||||||
$dso_scheme =
|
$dso_scheme =
|
||||||
$shared_target= darwin-shared
|
$shared_target= darwin-shared
|
||||||
$shared_cflag = -fPIC
|
$shared_cflag = -fPIC
|
||||||
$shared_ldflag = .$(SHLIB_MAJOR).$(SHLIB_MINOR).dylib
|
$shared_ldflag =
|
||||||
$shared_extension =
|
$shared_extension = .$(SHLIB_MAJOR).$(SHLIB_MINOR).dylib
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
*** debug
|
*** debug
|
||||||
@@ -1221,7 +1267,7 @@ $ranlib =
|
|||||||
|
|
||||||
*** debug-levitte-linux-elf
|
*** debug-levitte-linux-elf
|
||||||
$cc = gcc
|
$cc = gcc
|
||||||
$cflags = -DUSE_ALLOCATING_PRINT -DRL_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DNO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -ggdb -g3 -m486 -pedantic -ansi -Wall -Wshadow -Wid-clash-31 -pipe
|
$cflags = -DUSE_ALLOCATING_PRINT -DRL_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DNO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -ggdb -g3 -m486 -pedantic -ansi -Wall -Wshadow -Wstrict-prototypes -Wmissing-prototypes -pipe
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag = -D_REENTRANT
|
$thread_cflag = -D_REENTRANT
|
||||||
$lflags = -ldl
|
$lflags = -ldl
|
||||||
@@ -1236,10 +1282,10 @@ $rc4_obj =
|
|||||||
$rmd160_obj =
|
$rmd160_obj =
|
||||||
$rc5_obj =
|
$rc5_obj =
|
||||||
$dso_scheme = dlfcn
|
$dso_scheme = dlfcn
|
||||||
$shared_target=
|
$shared_target= linux-shared
|
||||||
$shared_cflag =
|
$shared_cflag = -fPIC
|
||||||
$shared_ldflag =
|
$shared_ldflag =
|
||||||
$shared_extension =
|
$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
*** debug-linux-elf
|
*** debug-linux-elf
|
||||||
@@ -1261,8 +1307,8 @@ $rc5_obj = asm/r586-elf.o
|
|||||||
$dso_scheme = dlfcn
|
$dso_scheme = dlfcn
|
||||||
$shared_target= linux-shared
|
$shared_target= linux-shared
|
||||||
$shared_cflag = -fPIC
|
$shared_cflag = -fPIC
|
||||||
$shared_ldflag = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
$shared_ldflag =
|
||||||
$shared_extension =
|
$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
*** debug-linux-elf-noefence
|
*** debug-linux-elf-noefence
|
||||||
@@ -1909,6 +1955,29 @@ $shared_ldflag =
|
|||||||
$shared_extension = .sl.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
$shared_extension = .sl.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
|
*** hpux64-parisc-gcc
|
||||||
|
$cc = gcc
|
||||||
|
$cflags = -DB_ENDIAN -DMD32_XARRAY
|
||||||
|
$unistd =
|
||||||
|
$thread_cflag = -D_REENTRANT
|
||||||
|
$lflags = -ldl
|
||||||
|
$bn_ops = SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT
|
||||||
|
$bn_obj =
|
||||||
|
$des_obj =
|
||||||
|
$bf_obj =
|
||||||
|
$md5_obj =
|
||||||
|
$sha1_obj =
|
||||||
|
$cast_obj =
|
||||||
|
$rc4_obj =
|
||||||
|
$rmd160_obj =
|
||||||
|
$rc5_obj =
|
||||||
|
$dso_scheme = dlfcn
|
||||||
|
$shared_target= hpux64-shared
|
||||||
|
$shared_cflag = -fpic
|
||||||
|
$shared_ldflag =
|
||||||
|
$shared_extension = .sl.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
||||||
|
$ranlib =
|
||||||
|
|
||||||
*** hpux64-parisc2-cc
|
*** hpux64-parisc2-cc
|
||||||
$cc = cc
|
$cc = cc
|
||||||
$cflags = +DD64 +O3 +Optrs_strongly_typed +Olibcalls -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY
|
$cflags = +DD64 +O3 +Optrs_strongly_typed +Olibcalls -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY
|
||||||
@@ -2371,10 +2440,10 @@ $ranlib =
|
|||||||
|
|
||||||
*** linux-s390
|
*** linux-s390
|
||||||
$cc = gcc
|
$cc = gcc
|
||||||
$cflags = -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall
|
$cflags = -DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag = -D_REENTRANT
|
$thread_cflag = -D_REENTRANT
|
||||||
$lflags =
|
$lflags = -ldl
|
||||||
$bn_ops = BN_LLONG
|
$bn_ops = BN_LLONG
|
||||||
$bn_obj =
|
$bn_obj =
|
||||||
$des_obj =
|
$des_obj =
|
||||||
@@ -2385,11 +2454,11 @@ $cast_obj =
|
|||||||
$rc4_obj =
|
$rc4_obj =
|
||||||
$rmd160_obj =
|
$rmd160_obj =
|
||||||
$rc5_obj =
|
$rc5_obj =
|
||||||
$dso_scheme =
|
$dso_scheme = dlfcn
|
||||||
$shared_target=
|
$shared_target= linux-shared
|
||||||
$shared_cflag =
|
$shared_cflag = -fPIC
|
||||||
$shared_ldflag =
|
$shared_ldflag =
|
||||||
$shared_extension =
|
$shared_extension = .so.$(SHLIB_MAJOR),$(SHLIB_MINOR)
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
*** linux-s390x
|
*** linux-s390x
|
||||||
@@ -2397,7 +2466,7 @@ $cc = gcc
|
|||||||
$cflags = -DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall
|
$cflags = -DB_ENDIAN -DTERMIO -DNO_ASM -O3 -fomit-frame-pointer -Wall
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag = -D_REENTRANT
|
$thread_cflag = -D_REENTRANT
|
||||||
$lflags =
|
$lflags = -ldl
|
||||||
$bn_ops = SIXTY_FOUR_BIT_LONG
|
$bn_ops = SIXTY_FOUR_BIT_LONG
|
||||||
$bn_obj =
|
$bn_obj =
|
||||||
$des_obj =
|
$des_obj =
|
||||||
@@ -2408,7 +2477,7 @@ $cast_obj =
|
|||||||
$rc4_obj =
|
$rc4_obj =
|
||||||
$rmd160_obj =
|
$rmd160_obj =
|
||||||
$rc5_obj =
|
$rc5_obj =
|
||||||
$dso_scheme =
|
$dso_scheme = dlfcn
|
||||||
$shared_target= linux-shared
|
$shared_target= linux-shared
|
||||||
$shared_cflag = -fPIC
|
$shared_cflag = -fPIC
|
||||||
$shared_ldflag =
|
$shared_ldflag =
|
||||||
@@ -2443,7 +2512,7 @@ $cc = gcc
|
|||||||
$cflags = -mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W
|
$cflags = -mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag = -D_REENTRANT
|
$thread_cflag = -D_REENTRANT
|
||||||
$lflags =
|
$lflags = -ldl
|
||||||
$bn_ops = BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
|
$bn_ops = BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
|
||||||
$bn_obj = asm/sparcv8.o
|
$bn_obj = asm/sparcv8.o
|
||||||
$des_obj =
|
$des_obj =
|
||||||
@@ -2454,11 +2523,11 @@ $cast_obj =
|
|||||||
$rc4_obj =
|
$rc4_obj =
|
||||||
$rmd160_obj =
|
$rmd160_obj =
|
||||||
$rc5_obj =
|
$rc5_obj =
|
||||||
$dso_scheme =
|
$dso_scheme = dlfcn
|
||||||
$shared_target=
|
$shared_target= linux-shared
|
||||||
$shared_cflag =
|
$shared_cflag = -fPIC
|
||||||
$shared_ldflag =
|
$shared_ldflag =
|
||||||
$shared_extension =
|
$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
*** linux-sparcv9
|
*** linux-sparcv9
|
||||||
@@ -2466,7 +2535,7 @@ $cc = gcc
|
|||||||
$cflags = -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DULTRASPARC -DBN_DIV2W
|
$cflags = -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DULTRASPARC -DBN_DIV2W
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag = -D_REENTRANT
|
$thread_cflag = -D_REENTRANT
|
||||||
$lflags =
|
$lflags = -ldl
|
||||||
$bn_ops = BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
|
$bn_ops = BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR
|
||||||
$bn_obj = asm/sparcv8plus.o
|
$bn_obj = asm/sparcv8plus.o
|
||||||
$des_obj =
|
$des_obj =
|
||||||
@@ -2480,8 +2549,8 @@ $rc5_obj =
|
|||||||
$dso_scheme = dlfcn
|
$dso_scheme = dlfcn
|
||||||
$shared_target= linux-shared
|
$shared_target= linux-shared
|
||||||
$shared_cflag = -fPIC
|
$shared_cflag = -fPIC
|
||||||
$shared_ldflag = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
$shared_ldflag =
|
||||||
$shared_extension =
|
$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
*** ncr-scde
|
*** ncr-scde
|
||||||
@@ -2785,20 +2854,20 @@ $ranlib =
|
|||||||
|
|
||||||
*** sco5-gcc-shared
|
*** sco5-gcc-shared
|
||||||
$cc = gcc
|
$cc = gcc
|
||||||
$cflags = -O3 -DFILIO_H -fomit-frame-pointer
|
$cflags = -O3 -fomit-frame-pointer
|
||||||
$unistd =
|
$unistd =
|
||||||
$thread_cflag =
|
$thread_cflag =
|
||||||
$lflags = -lsocket -lresolv -lnsl
|
$lflags = -lsocket -lresolv -lnsl
|
||||||
$bn_ops = BN_LLONG DES_PTR DES_RISC1 DES_UNROLL RC4_INDEX MD2_INT
|
$bn_ops = BN_LLONG DES_PTR DES_RISC1 DES_UNROLL RC4_INDEX MD2_INT
|
||||||
$bn_obj = asm/bn86-elf.o asm/co86-elf.o
|
$bn_obj =
|
||||||
$des_obj = asm/dx86-elf.o asm/yx86-elf.o
|
$des_obj =
|
||||||
$bf_obj = asm/bx86-elf.o
|
$bf_obj =
|
||||||
$md5_obj = asm/mx86-elf.o
|
$md5_obj =
|
||||||
$sha1_obj = asm/sx86-elf.o
|
$sha1_obj =
|
||||||
$cast_obj = asm/cx86-elf.o
|
$cast_obj =
|
||||||
$rc4_obj = asm/rx86-elf.o
|
$rc4_obj =
|
||||||
$rmd160_obj = asm/rm86-elf.o
|
$rmd160_obj =
|
||||||
$rc5_obj = asm/r586-elf.o
|
$rc5_obj =
|
||||||
$dso_scheme = dlfcn
|
$dso_scheme = dlfcn
|
||||||
$shared_target= svr3-shared
|
$shared_target= svr3-shared
|
||||||
$shared_cflag = -fPIC
|
$shared_cflag = -fPIC
|
||||||
@@ -3059,6 +3128,29 @@ $shared_ldflag = -xarch=v9
|
|||||||
$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
||||||
$ranlib = /usr/ccs/bin/ar rs
|
$ranlib = /usr/ccs/bin/ar rs
|
||||||
|
|
||||||
|
*** solaris64-sparcv9-gcc31
|
||||||
|
$cc = gcc
|
||||||
|
$cflags = -mcpu=ultrasparc -m64 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DULTRASPARC
|
||||||
|
$unistd =
|
||||||
|
$thread_cflag = -D_REENTRANT
|
||||||
|
$lflags = -lsocket -lnsl -ldl
|
||||||
|
$bn_ops = SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR
|
||||||
|
$bn_obj =
|
||||||
|
$des_obj =
|
||||||
|
$bf_obj =
|
||||||
|
$md5_obj = asm/md5-sparcv9.o
|
||||||
|
$sha1_obj =
|
||||||
|
$cast_obj =
|
||||||
|
$rc4_obj =
|
||||||
|
$rmd160_obj =
|
||||||
|
$rc5_obj =
|
||||||
|
$dso_scheme = dlfcn
|
||||||
|
$shared_target= solaris-shared
|
||||||
|
$shared_cflag = -fPIC
|
||||||
|
$shared_ldflag = -m64
|
||||||
|
$shared_extension = .so.$(SHLIB_MAJOR).$(SHLIB_MINOR)
|
||||||
|
$ranlib =
|
||||||
|
|
||||||
*** sunos-gcc
|
*** sunos-gcc
|
||||||
$cc = gcc
|
$cc = gcc
|
||||||
$cflags = -O3 -mv8 -Dssize_t=int
|
$cflags = -O3 -mv8 -Dssize_t=int
|
||||||
@@ -3082,6 +3174,29 @@ $shared_ldflag =
|
|||||||
$shared_extension =
|
$shared_extension =
|
||||||
$ranlib =
|
$ranlib =
|
||||||
|
|
||||||
|
*** tandem-c89
|
||||||
|
$cc = c89
|
||||||
|
$cflags = -Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN
|
||||||
|
$unistd =
|
||||||
|
$thread_cflag = (unknown)
|
||||||
|
$lflags =
|
||||||
|
$bn_ops = THIRTY_TWO_BIT
|
||||||
|
$bn_obj =
|
||||||
|
$des_obj =
|
||||||
|
$bf_obj =
|
||||||
|
$md5_obj =
|
||||||
|
$sha1_obj =
|
||||||
|
$cast_obj =
|
||||||
|
$rc4_obj =
|
||||||
|
$rmd160_obj =
|
||||||
|
$rc5_obj =
|
||||||
|
$dso_scheme =
|
||||||
|
$shared_target=
|
||||||
|
$shared_cflag =
|
||||||
|
$shared_ldflag =
|
||||||
|
$shared_extension =
|
||||||
|
$ranlib =
|
||||||
|
|
||||||
*** ultrix-cc
|
*** ultrix-cc
|
||||||
$cc = cc
|
$cc = cc
|
||||||
$cflags = -std1 -O -Olimit 1000 -DL_ENDIAN
|
$cflags = -std1 -O -Olimit 1000 -DL_ENDIAN
|
||||||
|
@@ -13,7 +13,7 @@ OPENSSLDIR= /usr/local/ssl
|
|||||||
MAKE= make -f Makefile.ssl
|
MAKE= make -f Makefile.ssl
|
||||||
MAKEDEPEND= $(TOP)/util/domd $(TOP)
|
MAKEDEPEND= $(TOP)/util/domd $(TOP)
|
||||||
MAKEFILE= Makefile.ssl
|
MAKEFILE= Makefile.ssl
|
||||||
PERL=/usr/local/bin/perl
|
PERL= perl
|
||||||
RM= rm -f
|
RM= rm -f
|
||||||
|
|
||||||
PEX_LIBS=
|
PEX_LIBS=
|
||||||
@@ -81,6 +81,7 @@ all: exe
|
|||||||
exe: $(PROGRAM)
|
exe: $(PROGRAM)
|
||||||
|
|
||||||
req: sreq.o $(A_OBJ) $(DLIBCRYPTO)
|
req: sreq.o $(A_OBJ) $(DLIBCRYPTO)
|
||||||
|
LD_LIBRARY_PATH=..:$$LD_LIBRARY_PATH \
|
||||||
$(CC) -o req $(CFLAG) sreq.o $(A_OBJ) $(RAND_OBJ) $(PEX_LIBS) $(LIBCRYPTO) $(EX_LIBS)
|
$(CC) -o req $(CFLAG) sreq.o $(A_OBJ) $(RAND_OBJ) $(PEX_LIBS) $(LIBCRYPTO) $(EX_LIBS)
|
||||||
|
|
||||||
sreq.o: req.c
|
sreq.o: req.c
|
||||||
@@ -117,7 +118,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(PROGS) $(SRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(PROGS) $(SRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
@@ -128,13 +129,14 @@ clean:
|
|||||||
rm -f req
|
rm -f req
|
||||||
|
|
||||||
$(DLIBSSL):
|
$(DLIBSSL):
|
||||||
(cd ../ssl; $(MAKE))
|
(cd ..; $(MAKE) DIRS=ssl all)
|
||||||
|
|
||||||
$(DLIBCRYPTO):
|
$(DLIBCRYPTO):
|
||||||
(cd ../crypto; $(MAKE))
|
(cd ..; $(MAKE) DIRS=crypto all)
|
||||||
|
|
||||||
$(PROGRAM): progs.h $(E_OBJ) $(PROGRAM).o $(DLIBCRYPTO) $(DLIBSSL)
|
$(PROGRAM): progs.h $(E_OBJ) $(PROGRAM).o $(DLIBCRYPTO) $(DLIBSSL)
|
||||||
$(RM) $(PROGRAM)
|
$(RM) $(PROGRAM)
|
||||||
|
LD_LIBRARY_PATH=..:$$LD_LIBRARY_PATH \
|
||||||
$(CC) -o $(PROGRAM) $(CFLAGS) $(PROGRAM).o $(E_OBJ) $(PEX_LIBS) $(LIBSSL) $(LIBCRYPTO) $(EX_LIBS)
|
$(CC) -o $(PROGRAM) $(CFLAGS) $(PROGRAM).o $(E_OBJ) $(PEX_LIBS) $(LIBSSL) $(LIBCRYPTO) $(EX_LIBS)
|
||||||
-(cd ..; OPENSSL="`pwd`/apps/openssl"; export OPENSSL; $(PERL) tools/c_rehash certs)
|
-(cd ..; OPENSSL="`pwd`/apps/openssl"; export OPENSSL; $(PERL) tools/c_rehash certs)
|
||||||
|
|
||||||
|
20
apps/apps.c
20
apps/apps.c
@@ -230,9 +230,16 @@ void program_name(char *in, char *out, int size)
|
|||||||
|
|
||||||
q=strrchr(p,'.');
|
q=strrchr(p,'.');
|
||||||
if (q == NULL)
|
if (q == NULL)
|
||||||
q = in+size;
|
q = p + strlen(p);
|
||||||
strncpy(out,p,q-p);
|
strncpy(out,p,size-1);
|
||||||
out[q-p]='\0';
|
if (q-p >= size)
|
||||||
|
{
|
||||||
|
out[size-1]='\0';
|
||||||
|
}
|
||||||
|
else
|
||||||
|
{
|
||||||
|
out[q-p]='\0';
|
||||||
|
}
|
||||||
}
|
}
|
||||||
#else
|
#else
|
||||||
void program_name(char *in, char *out, int size)
|
void program_name(char *in, char *out, int size)
|
||||||
@@ -757,7 +764,7 @@ int set_name_ex(unsigned long *flags, const char *arg)
|
|||||||
|
|
||||||
void print_name(BIO *out, char *title, X509_NAME *nm, unsigned long lflags)
|
void print_name(BIO *out, char *title, X509_NAME *nm, unsigned long lflags)
|
||||||
{
|
{
|
||||||
char buf[256];
|
char *buf;
|
||||||
char mline = 0;
|
char mline = 0;
|
||||||
int indent = 0;
|
int indent = 0;
|
||||||
if(title) BIO_puts(out, title);
|
if(title) BIO_puts(out, title);
|
||||||
@@ -766,9 +773,10 @@ void print_name(BIO *out, char *title, X509_NAME *nm, unsigned long lflags)
|
|||||||
indent = 4;
|
indent = 4;
|
||||||
}
|
}
|
||||||
if(lflags == XN_FLAG_COMPAT) {
|
if(lflags == XN_FLAG_COMPAT) {
|
||||||
X509_NAME_oneline(nm,buf,256);
|
buf = X509_NAME_oneline(nm, 0, 0);
|
||||||
BIO_puts(out,buf);
|
BIO_puts(out, buf);
|
||||||
BIO_puts(out, "\n");
|
BIO_puts(out, "\n");
|
||||||
|
OPENSSL_free(buf);
|
||||||
} else {
|
} else {
|
||||||
if(mline) BIO_puts(out, "\n");
|
if(mline) BIO_puts(out, "\n");
|
||||||
X509_NAME_print_ex(out, nm, indent, lflags);
|
X509_NAME_print_ex(out, nm, indent, lflags);
|
||||||
|
@@ -92,8 +92,10 @@ int WIN32_rename(char *oldname,char *newname);
|
|||||||
#define MAIN(a,v) main(a,v)
|
#define MAIN(a,v) main(a,v)
|
||||||
|
|
||||||
#ifndef NON_MAIN
|
#ifndef NON_MAIN
|
||||||
|
LHASH *config=NULL;
|
||||||
BIO *bio_err=NULL;
|
BIO *bio_err=NULL;
|
||||||
#else
|
#else
|
||||||
|
extern LHASH *config;
|
||||||
extern BIO *bio_err;
|
extern BIO *bio_err;
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
|
@@ -181,7 +181,7 @@ bad:
|
|||||||
BIO_printf(bio_err,"where options are\n");
|
BIO_printf(bio_err,"where options are\n");
|
||||||
BIO_printf(bio_err," -inform arg input format - one of DER TXT PEM\n");
|
BIO_printf(bio_err," -inform arg input format - one of DER TXT PEM\n");
|
||||||
BIO_printf(bio_err," -in arg input file\n");
|
BIO_printf(bio_err," -in arg input file\n");
|
||||||
BIO_printf(bio_err," -out arg output file\n");
|
BIO_printf(bio_err," -out arg output file (output format is always DER\n");
|
||||||
BIO_printf(bio_err," -noout arg don't produce any output\n");
|
BIO_printf(bio_err," -noout arg don't produce any output\n");
|
||||||
BIO_printf(bio_err," -offset arg offset into file\n");
|
BIO_printf(bio_err," -offset arg offset into file\n");
|
||||||
BIO_printf(bio_err," -length arg length of section in file\n");
|
BIO_printf(bio_err," -length arg length of section in file\n");
|
||||||
@@ -192,7 +192,6 @@ bad:
|
|||||||
BIO_printf(bio_err," -strparse offset\n");
|
BIO_printf(bio_err," -strparse offset\n");
|
||||||
BIO_printf(bio_err," a series of these can be used to 'dig' into multiple\n");
|
BIO_printf(bio_err," a series of these can be used to 'dig' into multiple\n");
|
||||||
BIO_printf(bio_err," ASN1 blob wrappings\n");
|
BIO_printf(bio_err," ASN1 blob wrappings\n");
|
||||||
BIO_printf(bio_err," -out filename output DER encoding to file\n");
|
|
||||||
goto end;
|
goto end;
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -329,6 +328,6 @@ end:
|
|||||||
if (at != NULL) ASN1_TYPE_free(at);
|
if (at != NULL) ASN1_TYPE_free(at);
|
||||||
if (osk != NULL) sk_free(osk);
|
if (osk != NULL) sk_free(osk);
|
||||||
OBJ_cleanup();
|
OBJ_cleanup();
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
31
apps/ca.c
31
apps/ca.c
@@ -570,7 +570,7 @@ bad:
|
|||||||
goto err;
|
goto err;
|
||||||
}
|
}
|
||||||
pkey=PEM_read_bio_PrivateKey(in,NULL,NULL,key);
|
pkey=PEM_read_bio_PrivateKey(in,NULL,NULL,key);
|
||||||
if(key) memset(key,0,strlen(key));
|
if(key) OPENSSL_cleanse(key,strlen(key));
|
||||||
if (pkey == NULL)
|
if (pkey == NULL)
|
||||||
{
|
{
|
||||||
BIO_printf(bio_err,"unable to load CA private key\n");
|
BIO_printf(bio_err,"unable to load CA private key\n");
|
||||||
@@ -633,12 +633,14 @@ bad:
|
|||||||
that to access(). However, time's too short to do that just
|
that to access(). However, time's too short to do that just
|
||||||
now.
|
now.
|
||||||
*/
|
*/
|
||||||
|
#ifndef VXWORKS
|
||||||
if (access(outdir,R_OK|W_OK|X_OK) != 0)
|
if (access(outdir,R_OK|W_OK|X_OK) != 0)
|
||||||
{
|
{
|
||||||
BIO_printf(bio_err,"I am unable to access the %s directory\n",outdir);
|
BIO_printf(bio_err,"I am unable to access the %s directory\n",outdir);
|
||||||
perror(outdir);
|
perror(outdir);
|
||||||
goto err;
|
goto err;
|
||||||
}
|
}
|
||||||
|
#endif
|
||||||
|
|
||||||
if (stat(outdir,&sb) != 0)
|
if (stat(outdir,&sb) != 0)
|
||||||
{
|
{
|
||||||
@@ -856,9 +858,14 @@ bad:
|
|||||||
}
|
}
|
||||||
if (verbose)
|
if (verbose)
|
||||||
{
|
{
|
||||||
if ((f=BN_bn2hex(serial)) == NULL) goto err;
|
if (BN_is_zero(serial))
|
||||||
BIO_printf(bio_err,"next serial number is %s\n",f);
|
BIO_printf(bio_err,"next serial number is 00\n");
|
||||||
OPENSSL_free(f);
|
else
|
||||||
|
{
|
||||||
|
if ((f=BN_bn2hex(serial)) == NULL) goto err;
|
||||||
|
BIO_printf(bio_err,"next serial number is %s\n",f);
|
||||||
|
OPENSSL_free(f);
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
if ((attribs=CONF_get_section(conf,policy)) == NULL)
|
if ((attribs=CONF_get_section(conf,policy)) == NULL)
|
||||||
@@ -1135,7 +1142,7 @@ bad:
|
|||||||
}
|
}
|
||||||
if ((crldays == 0) && (crlhours == 0))
|
if ((crldays == 0) && (crlhours == 0))
|
||||||
{
|
{
|
||||||
BIO_printf(bio_err,"cannot lookup how long until the next CRL is issuer\n");
|
BIO_printf(bio_err,"cannot lookup how long until the next CRL is issued\n");
|
||||||
goto err;
|
goto err;
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -1302,7 +1309,7 @@ err:
|
|||||||
X509_CRL_free(crl);
|
X509_CRL_free(crl);
|
||||||
CONF_free(conf);
|
CONF_free(conf);
|
||||||
OBJ_cleanup();
|
OBJ_cleanup();
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static void lookup_fail(char *name, char *tag)
|
static void lookup_fail(char *name, char *tag)
|
||||||
@@ -1367,7 +1374,7 @@ static BIGNUM *load_serial(char *serialfile)
|
|||||||
ret=ASN1_INTEGER_to_BN(ai,NULL);
|
ret=ASN1_INTEGER_to_BN(ai,NULL);
|
||||||
if (ret == NULL)
|
if (ret == NULL)
|
||||||
{
|
{
|
||||||
BIO_printf(bio_err,"error converting number from bin to BIGNUM");
|
BIO_printf(bio_err,"error converting number from bin to BIGNUM\n");
|
||||||
goto err;
|
goto err;
|
||||||
}
|
}
|
||||||
err:
|
err:
|
||||||
@@ -1755,7 +1762,10 @@ again2:
|
|||||||
BIO_printf(bio_err,"The subject name appears to be ok, checking data base for clashes\n");
|
BIO_printf(bio_err,"The subject name appears to be ok, checking data base for clashes\n");
|
||||||
|
|
||||||
row[DB_name]=X509_NAME_oneline(subject,NULL,0);
|
row[DB_name]=X509_NAME_oneline(subject,NULL,0);
|
||||||
row[DB_serial]=BN_bn2hex(serial);
|
if (BN_is_zero(serial))
|
||||||
|
row[DB_serial]=BUF_strdup("00");
|
||||||
|
else
|
||||||
|
row[DB_serial]=BN_bn2hex(serial);
|
||||||
if ((row[DB_name] == NULL) || (row[DB_serial] == NULL))
|
if ((row[DB_name] == NULL) || (row[DB_serial] == NULL))
|
||||||
{
|
{
|
||||||
BIO_printf(bio_err,"Memory allocation failure\n");
|
BIO_printf(bio_err,"Memory allocation failure\n");
|
||||||
@@ -2169,7 +2179,10 @@ static int do_revoke(X509 *x509, TXT_DB *db)
|
|||||||
row[i]=NULL;
|
row[i]=NULL;
|
||||||
row[DB_name]=X509_NAME_oneline(X509_get_subject_name(x509),NULL,0);
|
row[DB_name]=X509_NAME_oneline(X509_get_subject_name(x509),NULL,0);
|
||||||
bn = ASN1_INTEGER_to_BN(X509_get_serialNumber(x509),NULL);
|
bn = ASN1_INTEGER_to_BN(X509_get_serialNumber(x509),NULL);
|
||||||
row[DB_serial]=BN_bn2hex(bn);
|
if (BN_is_zero(bn))
|
||||||
|
row[DB_serial]=BUF_strdup("00");
|
||||||
|
else
|
||||||
|
row[DB_serial]=BN_bn2hex(bn);
|
||||||
BN_free(bn);
|
BN_free(bn);
|
||||||
if ((row[DB_name] == NULL) || (row[DB_serial] == NULL))
|
if ((row[DB_name] == NULL) || (row[DB_serial] == NULL))
|
||||||
{
|
{
|
||||||
|
@@ -202,6 +202,6 @@ end:
|
|||||||
if (ctx != NULL) SSL_CTX_free(ctx);
|
if (ctx != NULL) SSL_CTX_free(ctx);
|
||||||
if (ssl != NULL) SSL_free(ssl);
|
if (ssl != NULL) SSL_free(ssl);
|
||||||
if (STDout != NULL) BIO_free_all(STDout);
|
if (STDout != NULL) BIO_free_all(STDout);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
@@ -364,7 +364,7 @@ end:
|
|||||||
X509_STORE_CTX_cleanup(&ctx);
|
X509_STORE_CTX_cleanup(&ctx);
|
||||||
X509_STORE_free(store);
|
X509_STORE_free(store);
|
||||||
}
|
}
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static X509_CRL *load_crl(char *infile, int format)
|
static X509_CRL *load_crl(char *infile, int format)
|
||||||
|
@@ -166,7 +166,7 @@ bad:
|
|||||||
BIO_printf(bio_err," -certfile arg certificates file of chain to a trusted CA\n");
|
BIO_printf(bio_err," -certfile arg certificates file of chain to a trusted CA\n");
|
||||||
BIO_printf(bio_err," (can be used more than once)\n");
|
BIO_printf(bio_err," (can be used more than once)\n");
|
||||||
BIO_printf(bio_err," -nocrl no crl to load, just certs from '-certfile'\n");
|
BIO_printf(bio_err," -nocrl no crl to load, just certs from '-certfile'\n");
|
||||||
EXIT(1);
|
OPENSSL_EXIT(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
ERR_load_crypto_strings();
|
ERR_load_crypto_strings();
|
||||||
@@ -278,7 +278,7 @@ end:
|
|||||||
if (p7 != NULL) PKCS7_free(p7);
|
if (p7 != NULL) PKCS7_free(p7);
|
||||||
if (crl != NULL) X509_CRL_free(crl);
|
if (crl != NULL) X509_CRL_free(crl);
|
||||||
|
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
/*
|
/*
|
||||||
|
@@ -354,7 +354,7 @@ int MAIN(int argc, char **argv)
|
|||||||
end:
|
end:
|
||||||
if (buf != NULL)
|
if (buf != NULL)
|
||||||
{
|
{
|
||||||
memset(buf,0,BUFSIZE);
|
OPENSSL_cleanse(buf,BUFSIZE);
|
||||||
OPENSSL_free(buf);
|
OPENSSL_free(buf);
|
||||||
}
|
}
|
||||||
if (in != NULL) BIO_free(in);
|
if (in != NULL) BIO_free(in);
|
||||||
@@ -362,7 +362,7 @@ end:
|
|||||||
EVP_PKEY_free(sigkey);
|
EVP_PKEY_free(sigkey);
|
||||||
if(sigbuf) OPENSSL_free(sigbuf);
|
if(sigbuf) OPENSSL_free(sigbuf);
|
||||||
if (bmd != NULL) BIO_free(bmd);
|
if (bmd != NULL) BIO_free(bmd);
|
||||||
EXIT(err);
|
OPENSSL_EXIT(err);
|
||||||
}
|
}
|
||||||
|
|
||||||
void do_fp(BIO *out, unsigned char *buf, BIO *bp, int sep, int binout,
|
void do_fp(BIO *out, unsigned char *buf, BIO *bp, int sep, int binout,
|
||||||
|
@@ -346,6 +346,6 @@ end:
|
|||||||
if (in != NULL) BIO_free(in);
|
if (in != NULL) BIO_free(in);
|
||||||
if (out != NULL) BIO_free_all(out);
|
if (out != NULL) BIO_free_all(out);
|
||||||
if (dh != NULL) DH_free(dh);
|
if (dh != NULL) DH_free(dh);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
@@ -532,7 +532,7 @@ end:
|
|||||||
if (in != NULL) BIO_free(in);
|
if (in != NULL) BIO_free(in);
|
||||||
if (out != NULL) BIO_free_all(out);
|
if (out != NULL) BIO_free_all(out);
|
||||||
if (dh != NULL) DH_free(dh);
|
if (dh != NULL) DH_free(dh);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
/* dh_cb is identical to dsa_cb in apps/dsaparam.c */
|
/* dh_cb is identical to dsa_cb in apps/dsaparam.c */
|
||||||
|
@@ -320,6 +320,6 @@ end:
|
|||||||
if(dsa != NULL) DSA_free(dsa);
|
if(dsa != NULL) DSA_free(dsa);
|
||||||
if(passin) OPENSSL_free(passin);
|
if(passin) OPENSSL_free(passin);
|
||||||
if(passout) OPENSSL_free(passout);
|
if(passout) OPENSSL_free(passout);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
@@ -176,7 +176,7 @@ bad:
|
|||||||
BIO_printf(bio_err," -outform arg output format - DER or PEM\n");
|
BIO_printf(bio_err," -outform arg output format - DER or PEM\n");
|
||||||
BIO_printf(bio_err," -in arg input file\n");
|
BIO_printf(bio_err," -in arg input file\n");
|
||||||
BIO_printf(bio_err," -out arg output file\n");
|
BIO_printf(bio_err," -out arg output file\n");
|
||||||
BIO_printf(bio_err," -text print the key in text\n");
|
BIO_printf(bio_err," -text print as text\n");
|
||||||
BIO_printf(bio_err," -C Output C code\n");
|
BIO_printf(bio_err," -C Output C code\n");
|
||||||
BIO_printf(bio_err," -noout no output\n");
|
BIO_printf(bio_err," -noout no output\n");
|
||||||
BIO_printf(bio_err," -rand files to use for random number input\n");
|
BIO_printf(bio_err," -rand files to use for random number input\n");
|
||||||
@@ -357,7 +357,7 @@ end:
|
|||||||
if (in != NULL) BIO_free(in);
|
if (in != NULL) BIO_free(in);
|
||||||
if (out != NULL) BIO_free_all(out);
|
if (out != NULL) BIO_free_all(out);
|
||||||
if (dsa != NULL) DSA_free(dsa);
|
if (dsa != NULL) DSA_free(dsa);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static void MS_CALLBACK dsa_cb(int p, int n, void *arg)
|
static void MS_CALLBACK dsa_cb(int p, int n, void *arg)
|
||||||
|
@@ -533,9 +533,9 @@ bad:
|
|||||||
* bug picked up by
|
* bug picked up by
|
||||||
* Larry J. Hughes Jr. <hughes@indiana.edu> */
|
* Larry J. Hughes Jr. <hughes@indiana.edu> */
|
||||||
if (str == strbuf)
|
if (str == strbuf)
|
||||||
memset(str,0,SIZE);
|
OPENSSL_cleanse(str,SIZE);
|
||||||
else
|
else
|
||||||
memset(str,0,strlen(str));
|
OPENSSL_cleanse(str,strlen(str));
|
||||||
}
|
}
|
||||||
if ((hiv != NULL) && !set_hex(hiv,iv,8))
|
if ((hiv != NULL) && !set_hex(hiv,iv,8))
|
||||||
{
|
{
|
||||||
@@ -631,7 +631,7 @@ end:
|
|||||||
if (benc != NULL) BIO_free(benc);
|
if (benc != NULL) BIO_free(benc);
|
||||||
if (b64 != NULL) BIO_free(b64);
|
if (b64 != NULL) BIO_free(b64);
|
||||||
if(pass) OPENSSL_free(pass);
|
if(pass) OPENSSL_free(pass);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
int set_hex(char *in, unsigned char *out, int size)
|
int set_hex(char *in, unsigned char *out, int size)
|
||||||
|
@@ -121,5 +121,5 @@ int MAIN(int argc, char **argv)
|
|||||||
ret++;
|
ret++;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
@@ -211,7 +211,7 @@ end:
|
|||||||
ERR_print_errors(bio_err);
|
ERR_print_errors(bio_err);
|
||||||
if (out != NULL) BIO_free_all(out);
|
if (out != NULL) BIO_free_all(out);
|
||||||
if (dh != NULL) DH_free(dh);
|
if (dh != NULL) DH_free(dh);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static void MS_CALLBACK dh_cb(int p, int n, void *arg)
|
static void MS_CALLBACK dh_cb(int p, int n, void *arg)
|
||||||
|
@@ -247,6 +247,6 @@ end:
|
|||||||
if (out != NULL) BIO_free_all(out);
|
if (out != NULL) BIO_free_all(out);
|
||||||
if (dsa != NULL) DSA_free(dsa);
|
if (dsa != NULL) DSA_free(dsa);
|
||||||
if(passout) OPENSSL_free(passout);
|
if(passout) OPENSSL_free(passout);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
@@ -252,7 +252,7 @@ err:
|
|||||||
if(passout) OPENSSL_free(passout);
|
if(passout) OPENSSL_free(passout);
|
||||||
if (ret != 0)
|
if (ret != 0)
|
||||||
ERR_print_errors(bio_err);
|
ERR_print_errors(bio_err);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static void MS_CALLBACK genrsa_cb(int p, int n, void *arg)
|
static void MS_CALLBACK genrsa_cb(int p, int n, void *arg)
|
||||||
|
@@ -805,7 +805,7 @@ $ ENDIF
|
|||||||
$!
|
$!
|
||||||
$! Set Up Initial CC Definitions, Possibly With User Ones
|
$! Set Up Initial CC Definitions, Possibly With User Ones
|
||||||
$!
|
$!
|
||||||
$ CCDEFS = "VMS=1,MONOLITH"
|
$ CCDEFS = "VMS=1,MONOLITH,THREADS"
|
||||||
$ IF F$TRNLNM("OPENSSL_NO_ASM") THEN CCDEFS = CCDEFS + ",NO_ASM"
|
$ IF F$TRNLNM("OPENSSL_NO_ASM") THEN CCDEFS = CCDEFS + ",NO_ASM"
|
||||||
$ IF F$TRNLNM("OPENSSL_NO_RSA") THEN CCDEFS = CCDEFS + ",NO_RSA"
|
$ IF F$TRNLNM("OPENSSL_NO_RSA") THEN CCDEFS = CCDEFS + ",NO_RSA"
|
||||||
$ IF F$TRNLNM("OPENSSL_NO_DSA") THEN CCDEFS = CCDEFS + ",NO_DSA"
|
$ IF F$TRNLNM("OPENSSL_NO_DSA") THEN CCDEFS = CCDEFS + ",NO_DSA"
|
||||||
@@ -1077,7 +1077,7 @@ $ CC = CC + "/DEFINE=(" + CCDEFS + ")" + CCDISABLEWARNINGS
|
|||||||
$!
|
$!
|
||||||
$! Show user the result
|
$! Show user the result
|
||||||
$!
|
$!
|
||||||
$ WRITE SYS$OUTPUT "Main Compiling Command: ",CC
|
$ WRITE/SYMBOL SYS$OUTPUT "Main Compiling Command: ",CC
|
||||||
$!
|
$!
|
||||||
$! Special Threads For OpenVMS v7.1 Or Later
|
$! Special Threads For OpenVMS v7.1 Or Later
|
||||||
$!
|
$!
|
||||||
|
@@ -102,7 +102,7 @@ int MAIN(int argc, char **argv)
|
|||||||
BIO_printf (bio_err, "-in file input file\n");
|
BIO_printf (bio_err, "-in file input file\n");
|
||||||
BIO_printf (bio_err, "-out file output file\n");
|
BIO_printf (bio_err, "-out file output file\n");
|
||||||
BIO_printf (bio_err, "-toseq output NS Sequence file\n");
|
BIO_printf (bio_err, "-toseq output NS Sequence file\n");
|
||||||
EXIT(1);
|
OPENSSL_EXIT(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
if (infile) {
|
if (infile) {
|
||||||
@@ -162,6 +162,6 @@ end:
|
|||||||
BIO_free_all(out);
|
BIO_free_all(out);
|
||||||
NETSCAPE_CERT_SEQUENCE_free(seq);
|
NETSCAPE_CERT_SEQUENCE_free(seq);
|
||||||
|
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
@@ -77,11 +77,11 @@ static unsigned long MS_CALLBACK hash(FUNCTION *a);
|
|||||||
static int MS_CALLBACK cmp(FUNCTION *a,FUNCTION *b);
|
static int MS_CALLBACK cmp(FUNCTION *a,FUNCTION *b);
|
||||||
static LHASH *prog_init(void );
|
static LHASH *prog_init(void );
|
||||||
static int do_cmd(LHASH *prog,int argc,char *argv[]);
|
static int do_cmd(LHASH *prog,int argc,char *argv[]);
|
||||||
LHASH *config=NULL;
|
|
||||||
char *default_config_file=NULL;
|
char *default_config_file=NULL;
|
||||||
|
|
||||||
/* Make sure there is only one when MONOLITH is defined */
|
/* Make sure there is only one when MONOLITH is defined */
|
||||||
#ifdef MONOLITH
|
#ifdef MONOLITH
|
||||||
|
LHASH *config=NULL;
|
||||||
BIO *bio_err=NULL;
|
BIO *bio_err=NULL;
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
@@ -215,7 +215,7 @@ end:
|
|||||||
BIO_free(bio_err);
|
BIO_free(bio_err);
|
||||||
bio_err=NULL;
|
bio_err=NULL;
|
||||||
}
|
}
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
#define LIST_STANDARD_COMMANDS "list-standard-commands"
|
#define LIST_STANDARD_COMMANDS "list-standard-commands"
|
||||||
|
@@ -284,7 +284,7 @@ err:
|
|||||||
BIO_free(in);
|
BIO_free(in);
|
||||||
if (out)
|
if (out)
|
||||||
BIO_free_all(out);
|
BIO_free_all(out);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|
||||||
@@ -498,6 +498,6 @@ err:
|
|||||||
int MAIN(int argc, char **argv)
|
int MAIN(int argc, char **argv)
|
||||||
{
|
{
|
||||||
fputs("Program not available.\n", stderr)
|
fputs("Program not available.\n", stderr)
|
||||||
EXIT(1);
|
OPENSSL_EXIT(1);
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
@@ -503,9 +503,10 @@ int MAIN(int argc, char **argv)
|
|||||||
/* Exclude verified certificate */
|
/* Exclude verified certificate */
|
||||||
for (i = 1; i < sk_X509_num (chain2) ; i++)
|
for (i = 1; i < sk_X509_num (chain2) ; i++)
|
||||||
sk_X509_push(certs, sk_X509_value (chain2, i));
|
sk_X509_push(certs, sk_X509_value (chain2, i));
|
||||||
}
|
/* Free first certificate */
|
||||||
sk_X509_free(chain2);
|
X509_free(sk_X509_value(chain2, 0));
|
||||||
if (vret) {
|
sk_X509_free(chain2);
|
||||||
|
} else {
|
||||||
BIO_printf (bio_err, "Error %s getting chain.\n",
|
BIO_printf (bio_err, "Error %s getting chain.\n",
|
||||||
X509_verify_cert_error_string(vret));
|
X509_verify_cert_error_string(vret));
|
||||||
goto export_end;
|
goto export_end;
|
||||||
@@ -532,8 +533,6 @@ int MAIN(int argc, char **argv)
|
|||||||
}
|
}
|
||||||
sk_X509_pop_free(certs, X509_free);
|
sk_X509_pop_free(certs, X509_free);
|
||||||
certs = NULL;
|
certs = NULL;
|
||||||
/* ucert is part of certs so it is already freed */
|
|
||||||
ucert = NULL;
|
|
||||||
|
|
||||||
#ifdef CRYPTO_MDEBUG
|
#ifdef CRYPTO_MDEBUG
|
||||||
CRYPTO_pop_info();
|
CRYPTO_pop_info();
|
||||||
@@ -621,7 +620,6 @@ int MAIN(int argc, char **argv)
|
|||||||
if (certs) sk_X509_pop_free(certs, X509_free);
|
if (certs) sk_X509_pop_free(certs, X509_free);
|
||||||
if (safes) sk_PKCS7_pop_free(safes, PKCS7_free);
|
if (safes) sk_PKCS7_pop_free(safes, PKCS7_free);
|
||||||
if (bags) sk_PKCS12_SAFEBAG_pop_free(bags, PKCS12_SAFEBAG_free);
|
if (bags) sk_PKCS12_SAFEBAG_pop_free(bags, PKCS12_SAFEBAG_free);
|
||||||
if (ucert) X509_free(ucert);
|
|
||||||
|
|
||||||
#ifdef CRYPTO_MDEBUG
|
#ifdef CRYPTO_MDEBUG
|
||||||
CRYPTO_pop_info();
|
CRYPTO_pop_info();
|
||||||
@@ -691,7 +689,7 @@ int MAIN(int argc, char **argv)
|
|||||||
if (canames) sk_free(canames);
|
if (canames) sk_free(canames);
|
||||||
if(passin) OPENSSL_free(passin);
|
if(passin) OPENSSL_free(passin);
|
||||||
if(passout) OPENSSL_free(passout);
|
if(passout) OPENSSL_free(passout);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
int dump_certs_keys_p12 (BIO *out, PKCS12 *p12, char *pass,
|
int dump_certs_keys_p12 (BIO *out, PKCS12 *p12, char *pass,
|
||||||
@@ -772,7 +770,10 @@ int dump_certs_pkeys_bag (BIO *out, PKCS12_SAFEBAG *bag, char *pass,
|
|||||||
print_attribs (out, bag->attrib, "Bag Attributes");
|
print_attribs (out, bag->attrib, "Bag Attributes");
|
||||||
if (!(p8 = M_PKCS12_decrypt_skey (bag, pass, passlen)))
|
if (!(p8 = M_PKCS12_decrypt_skey (bag, pass, passlen)))
|
||||||
return 0;
|
return 0;
|
||||||
if (!(pkey = EVP_PKCS82PKEY (p8))) return 0;
|
if (!(pkey = EVP_PKCS82PKEY (p8))) {
|
||||||
|
PKCS8_PRIV_KEY_INFO_free(p8);
|
||||||
|
return 0;
|
||||||
|
}
|
||||||
print_attribs (out, p8->attributes, "Key Attributes");
|
print_attribs (out, p8->attributes, "Key Attributes");
|
||||||
PKCS8_PRIV_KEY_INFO_free(p8);
|
PKCS8_PRIV_KEY_INFO_free(p8);
|
||||||
PEM_write_bio_PrivateKey (out, pkey, enc, NULL, 0, NULL, pempass);
|
PEM_write_bio_PrivateKey (out, pkey, enc, NULL, 0, NULL, pempass);
|
||||||
|
@@ -90,7 +90,7 @@ int MAIN(int argc, char **argv)
|
|||||||
int informat,outformat;
|
int informat,outformat;
|
||||||
char *infile,*outfile,*prog;
|
char *infile,*outfile,*prog;
|
||||||
int print_certs=0,text=0,noout=0;
|
int print_certs=0,text=0,noout=0;
|
||||||
int ret=0;
|
int ret=1;
|
||||||
char *engine=NULL;
|
char *engine=NULL;
|
||||||
|
|
||||||
apps_startup();
|
apps_startup();
|
||||||
@@ -163,7 +163,7 @@ bad:
|
|||||||
BIO_printf(bio_err," -text print full details of certificates\n");
|
BIO_printf(bio_err," -text print full details of certificates\n");
|
||||||
BIO_printf(bio_err," -noout don't output encoded data\n");
|
BIO_printf(bio_err," -noout don't output encoded data\n");
|
||||||
BIO_printf(bio_err," -engine e use engine e, possibly a hardware device.\n");
|
BIO_printf(bio_err," -engine e use engine e, possibly a hardware device.\n");
|
||||||
EXIT(1);
|
OPENSSL_EXIT(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
ERR_load_crypto_strings();
|
ERR_load_crypto_strings();
|
||||||
@@ -316,5 +316,5 @@ end:
|
|||||||
if (p7 != NULL) PKCS7_free(p7);
|
if (p7 != NULL) PKCS7_free(p7);
|
||||||
if (in != NULL) BIO_free(in);
|
if (in != NULL) BIO_free(in);
|
||||||
if (out != NULL) BIO_free_all(out);
|
if (out != NULL) BIO_free_all(out);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
@@ -266,7 +266,8 @@ int MAIN(int argc, char **argv)
|
|||||||
if(passout) p8pass = passout;
|
if(passout) p8pass = passout;
|
||||||
else {
|
else {
|
||||||
p8pass = pass;
|
p8pass = pass;
|
||||||
EVP_read_pw_string(pass, 50, "Enter Encryption Password:", 1);
|
if (EVP_read_pw_string(pass, 50, "Enter Encryption Password:", 1))
|
||||||
|
return (1);
|
||||||
}
|
}
|
||||||
app_RAND_load_file(NULL, bio_err, 0);
|
app_RAND_load_file(NULL, bio_err, 0);
|
||||||
if (!(p8 = PKCS8_encrypt(pbe_nid, cipher,
|
if (!(p8 = PKCS8_encrypt(pbe_nid, cipher,
|
||||||
|
@@ -51,7 +51,7 @@ int MAIN(int argc, char **argv)
|
|||||||
else
|
else
|
||||||
badopt = 1;
|
badopt = 1;
|
||||||
}
|
}
|
||||||
if (strcmp(argv[i], "-engine") == 0)
|
else if (strcmp(argv[i], "-engine") == 0)
|
||||||
{
|
{
|
||||||
if ((argv[i+1] != NULL) && (engine == NULL))
|
if ((argv[i+1] != NULL) && (engine == NULL))
|
||||||
engine = argv[++i];
|
engine = argv[++i];
|
||||||
@@ -173,5 +173,5 @@ err:
|
|||||||
ERR_print_errors(bio_err);
|
ERR_print_errors(bio_err);
|
||||||
if (out)
|
if (out)
|
||||||
BIO_free_all(out);
|
BIO_free_all(out);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
@@ -431,7 +431,7 @@ bad:
|
|||||||
|
|
||||||
if (template != NULL)
|
if (template != NULL)
|
||||||
{
|
{
|
||||||
long errline;
|
long errline = -1;
|
||||||
|
|
||||||
BIO_printf(bio_err,"Using configuration from %s\n",template);
|
BIO_printf(bio_err,"Using configuration from %s\n",template);
|
||||||
req_conf=CONF_load(NULL,template,&errline);
|
req_conf=CONF_load(NULL,template,&errline);
|
||||||
@@ -949,7 +949,7 @@ end:
|
|||||||
#ifndef NO_DSA
|
#ifndef NO_DSA
|
||||||
if (dsa_params != NULL) DSA_free(dsa_params);
|
if (dsa_params != NULL) DSA_free(dsa_params);
|
||||||
#endif
|
#endif
|
||||||
EXIT(ex);
|
OPENSSL_EXIT(ex);
|
||||||
}
|
}
|
||||||
|
|
||||||
static int make_REQ(X509_REQ *req, EVP_PKEY *pkey, int attribs)
|
static int make_REQ(X509_REQ *req, EVP_PKEY *pkey, int attribs)
|
||||||
|
@@ -416,7 +416,7 @@ end:
|
|||||||
if(rsa != NULL) RSA_free(rsa);
|
if(rsa != NULL) RSA_free(rsa);
|
||||||
if(passin) OPENSSL_free(passin);
|
if(passin) OPENSSL_free(passin);
|
||||||
if(passout) OPENSSL_free(passout);
|
if(passout) OPENSSL_free(passout);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
#else /* !NO_RSA */
|
#else /* !NO_RSA */
|
||||||
|
|
||||||
|
@@ -800,14 +800,14 @@ end:
|
|||||||
if (con != NULL) SSL_free(con);
|
if (con != NULL) SSL_free(con);
|
||||||
if (con2 != NULL) SSL_free(con2);
|
if (con2 != NULL) SSL_free(con2);
|
||||||
if (ctx != NULL) SSL_CTX_free(ctx);
|
if (ctx != NULL) SSL_CTX_free(ctx);
|
||||||
if (cbuf != NULL) { memset(cbuf,0,BUFSIZZ); OPENSSL_free(cbuf); }
|
if (cbuf != NULL) { OPENSSL_cleanse(cbuf,BUFSIZZ); OPENSSL_free(cbuf); }
|
||||||
if (sbuf != NULL) { memset(sbuf,0,BUFSIZZ); OPENSSL_free(sbuf); }
|
if (sbuf != NULL) { OPENSSL_cleanse(sbuf,BUFSIZZ); OPENSSL_free(sbuf); }
|
||||||
if (bio_c_out != NULL)
|
if (bio_c_out != NULL)
|
||||||
{
|
{
|
||||||
BIO_free(bio_c_out);
|
BIO_free(bio_c_out);
|
||||||
bio_c_out=NULL;
|
bio_c_out=NULL;
|
||||||
}
|
}
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|
||||||
|
@@ -257,10 +257,10 @@ static char **local_argv;
|
|||||||
static int ebcdic_new(BIO *bi);
|
static int ebcdic_new(BIO *bi);
|
||||||
static int ebcdic_free(BIO *a);
|
static int ebcdic_free(BIO *a);
|
||||||
static int ebcdic_read(BIO *b, char *out, int outl);
|
static int ebcdic_read(BIO *b, char *out, int outl);
|
||||||
static int ebcdic_write(BIO *b, char *in, int inl);
|
static int ebcdic_write(BIO *b, const char *in, int inl);
|
||||||
static long ebcdic_ctrl(BIO *b, int cmd, long num, char *ptr);
|
static long ebcdic_ctrl(BIO *b, int cmd, long num, void *ptr);
|
||||||
static int ebcdic_gets(BIO *bp, char *buf, int size);
|
static int ebcdic_gets(BIO *bp, char *buf, int size);
|
||||||
static int ebcdic_puts(BIO *bp, char *str);
|
static int ebcdic_puts(BIO *bp, const char *str);
|
||||||
|
|
||||||
#define BIO_TYPE_EBCDIC_FILTER (18|0x0200)
|
#define BIO_TYPE_EBCDIC_FILTER (18|0x0200)
|
||||||
static BIO_METHOD methods_ebcdic=
|
static BIO_METHOD methods_ebcdic=
|
||||||
@@ -325,7 +325,7 @@ static int ebcdic_read(BIO *b, char *out, int outl)
|
|||||||
return(ret);
|
return(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static int ebcdic_write(BIO *b, char *in, int inl)
|
static int ebcdic_write(BIO *b, const char *in, int inl)
|
||||||
{
|
{
|
||||||
EBCDIC_OUTBUFF *wbuf;
|
EBCDIC_OUTBUFF *wbuf;
|
||||||
int ret=0;
|
int ret=0;
|
||||||
@@ -358,7 +358,7 @@ static int ebcdic_write(BIO *b, char *in, int inl)
|
|||||||
return(ret);
|
return(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static long ebcdic_ctrl(BIO *b, int cmd, long num, char *ptr)
|
static long ebcdic_ctrl(BIO *b, int cmd, long num, void *ptr)
|
||||||
{
|
{
|
||||||
long ret;
|
long ret;
|
||||||
|
|
||||||
@@ -377,7 +377,7 @@ static long ebcdic_ctrl(BIO *b, int cmd, long num, char *ptr)
|
|||||||
|
|
||||||
static int ebcdic_gets(BIO *bp, char *buf, int size)
|
static int ebcdic_gets(BIO *bp, char *buf, int size)
|
||||||
{
|
{
|
||||||
int i, ret;
|
int i, ret=0;
|
||||||
if (bp->next_bio == NULL) return(0);
|
if (bp->next_bio == NULL) return(0);
|
||||||
/* return(BIO_gets(bp->next_bio,buf,size));*/
|
/* return(BIO_gets(bp->next_bio,buf,size));*/
|
||||||
for (i=0; i<size-1; ++i)
|
for (i=0; i<size-1; ++i)
|
||||||
@@ -396,7 +396,7 @@ static int ebcdic_gets(BIO *bp, char *buf, int size)
|
|||||||
return (ret < 0 && i == 0) ? ret : i;
|
return (ret < 0 && i == 0) ? ret : i;
|
||||||
}
|
}
|
||||||
|
|
||||||
static int ebcdic_puts(BIO *bp, char *str)
|
static int ebcdic_puts(BIO *bp, const char *str)
|
||||||
{
|
{
|
||||||
if (bp->next_bio == NULL) return(0);
|
if (bp->next_bio == NULL) return(0);
|
||||||
return ebcdic_write(bp, str, strlen(str));
|
return ebcdic_write(bp, str, strlen(str));
|
||||||
@@ -775,7 +775,7 @@ end:
|
|||||||
BIO_free(bio_s_out);
|
BIO_free(bio_s_out);
|
||||||
bio_s_out=NULL;
|
bio_s_out=NULL;
|
||||||
}
|
}
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static void print_stats(BIO *bio, SSL_CTX *ssl_ctx)
|
static void print_stats(BIO *bio, SSL_CTX *ssl_ctx)
|
||||||
@@ -1077,7 +1077,7 @@ err:
|
|||||||
BIO_printf(bio_s_out,"CONNECTION CLOSED\n");
|
BIO_printf(bio_s_out,"CONNECTION CLOSED\n");
|
||||||
if (buf != NULL)
|
if (buf != NULL)
|
||||||
{
|
{
|
||||||
memset(buf,0,bufsize);
|
OPENSSL_cleanse(buf,bufsize);
|
||||||
OPENSSL_free(buf);
|
OPENSSL_free(buf);
|
||||||
}
|
}
|
||||||
if (ret >= 0)
|
if (ret >= 0)
|
||||||
@@ -1284,7 +1284,7 @@ static int www_body(char *hostname, int s, unsigned char *context)
|
|||||||
else
|
else
|
||||||
{
|
{
|
||||||
BIO_printf(bio_s_out,"read R BLOCK\n");
|
BIO_printf(bio_s_out,"read R BLOCK\n");
|
||||||
#ifndef MSDOS
|
#if !defined(MSDOS) && !defined(VXWORKS)
|
||||||
sleep(1);
|
sleep(1);
|
||||||
#endif
|
#endif
|
||||||
continue;
|
continue;
|
||||||
|
@@ -116,6 +116,11 @@
|
|||||||
#include <sys/param.h>
|
#include <sys/param.h>
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
|
#ifdef VXWORKS
|
||||||
|
#include <tickLib.h>
|
||||||
|
#undef SIGALRM
|
||||||
|
#endif
|
||||||
|
|
||||||
/* The following if from times(3) man page. It may need to be changed
|
/* The following if from times(3) man page. It may need to be changed
|
||||||
*/
|
*/
|
||||||
#ifndef HZ
|
#ifndef HZ
|
||||||
@@ -461,7 +466,7 @@ int MAIN(int argc, char **argv)
|
|||||||
|
|
||||||
if (tm_cipher == NULL ) {
|
if (tm_cipher == NULL ) {
|
||||||
fprintf( stderr, "No CIPHER specified\n" );
|
fprintf( stderr, "No CIPHER specified\n" );
|
||||||
/* EXIT(1); */
|
/* OPENSSL_EXIT(1); */
|
||||||
}
|
}
|
||||||
|
|
||||||
if (!(perform & 1)) goto next;
|
if (!(perform & 1)) goto next;
|
||||||
@@ -628,7 +633,7 @@ end:
|
|||||||
SSL_CTX_free(tm_ctx);
|
SSL_CTX_free(tm_ctx);
|
||||||
tm_ctx=NULL;
|
tm_ctx=NULL;
|
||||||
}
|
}
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
/***********************************************************************
|
/***********************************************************************
|
||||||
|
@@ -272,7 +272,7 @@ bad:
|
|||||||
end:
|
end:
|
||||||
if (out != NULL) BIO_free_all(out);
|
if (out != NULL) BIO_free_all(out);
|
||||||
if (x != NULL) SSL_SESSION_free(x);
|
if (x != NULL) SSL_SESSION_free(x);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static SSL_SESSION *load_sess_id(char *infile, int format)
|
static SSL_SESSION *load_sess_id(char *infile, int format)
|
||||||
|
@@ -441,7 +441,10 @@ int MAIN(int argc, char **argv)
|
|||||||
p7 = PKCS7_encrypt(encerts, in, cipher, flags);
|
p7 = PKCS7_encrypt(encerts, in, cipher, flags);
|
||||||
} else if(operation == SMIME_SIGN) {
|
} else if(operation == SMIME_SIGN) {
|
||||||
p7 = PKCS7_sign(signer, key, other, in, flags);
|
p7 = PKCS7_sign(signer, key, other, in, flags);
|
||||||
BIO_reset(in);
|
if (BIO_reset(in) != 0 && (flags & PKCS7_DETACHED)) {
|
||||||
|
BIO_printf(bio_err, "Can't rewind input file\n");
|
||||||
|
goto end;
|
||||||
|
}
|
||||||
} else {
|
} else {
|
||||||
if(informat == FORMAT_SMIME)
|
if(informat == FORMAT_SMIME)
|
||||||
p7 = SMIME_read_PKCS7(in, &indata);
|
p7 = SMIME_read_PKCS7(in, &indata);
|
||||||
|
@@ -724,7 +724,7 @@ int MAIN(int argc, char **argv)
|
|||||||
|
|
||||||
BIO_printf(bio_err,"\n");
|
BIO_printf(bio_err,"\n");
|
||||||
BIO_printf(bio_err,"Available options:\n");
|
BIO_printf(bio_err,"Available options:\n");
|
||||||
#ifdef TIMES
|
#if defined(TIMES) || defined(USE_TOD)
|
||||||
BIO_printf(bio_err,"-elapsed measure time in real time instead of CPU user time.\n");
|
BIO_printf(bio_err,"-elapsed measure time in real time instead of CPU user time.\n");
|
||||||
#endif
|
#endif
|
||||||
BIO_printf(bio_err,"-engine e use engine e, possibly a hardware device.\n");
|
BIO_printf(bio_err,"-engine e use engine e, possibly a hardware device.\n");
|
||||||
@@ -1447,7 +1447,7 @@ end:
|
|||||||
if (dsa_key[i] != NULL)
|
if (dsa_key[i] != NULL)
|
||||||
DSA_free(dsa_key[i]);
|
DSA_free(dsa_key[i]);
|
||||||
#endif
|
#endif
|
||||||
EXIT(mret);
|
OPENSSL_EXIT(mret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static void print_message(char *s, long num, int length)
|
static void print_message(char *s, long num, int length)
|
||||||
|
@@ -315,5 +315,5 @@ end:
|
|||||||
BIO_free(key);
|
BIO_free(key);
|
||||||
EVP_PKEY_free(pkey);
|
EVP_PKEY_free(pkey);
|
||||||
if(passin) OPENSSL_free(passin);
|
if(passin) OPENSSL_free(passin);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
@@ -239,7 +239,7 @@ end:
|
|||||||
if (cert_ctx != NULL) X509_STORE_free(cert_ctx);
|
if (cert_ctx != NULL) X509_STORE_free(cert_ctx);
|
||||||
sk_X509_pop_free(untrusted, X509_free);
|
sk_X509_pop_free(untrusted, X509_free);
|
||||||
sk_X509_pop_free(trusted, X509_free);
|
sk_X509_pop_free(trusted, X509_free);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static int check(X509_STORE *ctx, char *file, STACK_OF(X509) *uchain, STACK_OF(X509) *tchain, int purpose)
|
static int check(X509_STORE *ctx, char *file, STACK_OF(X509) *uchain, STACK_OF(X509) *tchain, int purpose)
|
||||||
|
@@ -128,5 +128,5 @@ int MAIN(int argc, char **argv)
|
|||||||
}
|
}
|
||||||
if (cflags) printf("%s\n",SSLeay_version(SSLEAY_CFLAGS));
|
if (cflags) printf("%s\n",SSLeay_version(SSLEAY_CFLAGS));
|
||||||
end:
|
end:
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
@@ -122,7 +122,7 @@ static char *x509_usage[]={
|
|||||||
" -CAkey arg - set the CA key, must be PEM format\n",
|
" -CAkey arg - set the CA key, must be PEM format\n",
|
||||||
" missing, it is assumed to be in the CA file.\n",
|
" missing, it is assumed to be in the CA file.\n",
|
||||||
" -CAcreateserial - create serial number file if it does not exist\n",
|
" -CAcreateserial - create serial number file if it does not exist\n",
|
||||||
" -CAserial - serial file\n",
|
" -CAserial arg - serial file\n",
|
||||||
" -text - print the certificate in text form\n",
|
" -text - print the certificate in text form\n",
|
||||||
" -C - print out C code forms\n",
|
" -C - print out C code forms\n",
|
||||||
" -md2/-md5/-sha1/-mdc2 - digest to use\n",
|
" -md2/-md5/-sha1/-mdc2 - digest to use\n",
|
||||||
@@ -237,7 +237,7 @@ int MAIN(int argc, char **argv)
|
|||||||
else if (strcmp(*argv,"-CAkeyform") == 0)
|
else if (strcmp(*argv,"-CAkeyform") == 0)
|
||||||
{
|
{
|
||||||
if (--argc < 1) goto bad;
|
if (--argc < 1) goto bad;
|
||||||
CAformat=str2fmt(*(++argv));
|
CAkeyformat=str2fmt(*(++argv));
|
||||||
}
|
}
|
||||||
else if (strcmp(*argv,"-days") == 0)
|
else if (strcmp(*argv,"-days") == 0)
|
||||||
{
|
{
|
||||||
@@ -474,7 +474,7 @@ bad:
|
|||||||
|
|
||||||
if (extfile)
|
if (extfile)
|
||||||
{
|
{
|
||||||
long errorline;
|
long errorline = -1;
|
||||||
X509V3_CTX ctx2;
|
X509V3_CTX ctx2;
|
||||||
if (!(extconf=CONF_load(NULL,extfile,&errorline)))
|
if (!(extconf=CONF_load(NULL,extfile,&errorline)))
|
||||||
{
|
{
|
||||||
@@ -988,7 +988,7 @@ end:
|
|||||||
sk_ASN1_OBJECT_pop_free(trust, ASN1_OBJECT_free);
|
sk_ASN1_OBJECT_pop_free(trust, ASN1_OBJECT_free);
|
||||||
sk_ASN1_OBJECT_pop_free(reject, ASN1_OBJECT_free);
|
sk_ASN1_OBJECT_pop_free(reject, ASN1_OBJECT_free);
|
||||||
if (passin) OPENSSL_free(passin);
|
if (passin) OPENSSL_free(passin);
|
||||||
EXIT(ret);
|
OPENSSL_EXIT(ret);
|
||||||
}
|
}
|
||||||
|
|
||||||
static int x509_certify(X509_STORE *ctx, char *CAfile, const EVP_MD *digest,
|
static int x509_certify(X509_STORE *ctx, char *CAfile, const EVP_MD *digest,
|
||||||
|
56
config
56
config
@@ -317,6 +317,10 @@ case "${SYSTEM}:${RELEASE}:${VERSION}:${MACHINE}" in
|
|||||||
*CRAY*)
|
*CRAY*)
|
||||||
echo "j90-cray-unicos"; exit 0;
|
echo "j90-cray-unicos"; exit 0;
|
||||||
;;
|
;;
|
||||||
|
|
||||||
|
NONSTOP_KERNEL*)
|
||||||
|
echo "nsr-tandem-nsk"; exit 0;
|
||||||
|
;;
|
||||||
esac
|
esac
|
||||||
|
|
||||||
#
|
#
|
||||||
@@ -381,17 +385,33 @@ done
|
|||||||
|
|
||||||
# figure out if gcc is available and if so we use it otherwise
|
# figure out if gcc is available and if so we use it otherwise
|
||||||
# we fallback to whatever cc does on the system
|
# we fallback to whatever cc does on the system
|
||||||
GCCVER=`(gcc --version) 2>/dev/null`
|
GCCVER=`(gcc -dumpversion) 2>/dev/null`
|
||||||
if [ "$GCCVER" != "" ]; then
|
if [ "$GCCVER" != "" ]; then
|
||||||
CC=gcc
|
CC=gcc
|
||||||
# then strip off whatever prefix Cygnus prepends the number with...
|
# then strip off whatever prefix egcs prepends the number with...
|
||||||
GCCVER=`echo $GCCVER | sed 's/^[a-z]*\-//'`
|
# Hopefully, this will work for any future prefixes as well.
|
||||||
|
GCCVER=`echo $GCCVER | sed 's/^[a-zA-Z]*\-//'`
|
||||||
|
# Since gcc 3.1 gcc --version behaviour has changed. gcc -dumpversion
|
||||||
|
# does give us what we want though, so we use that. We just just the
|
||||||
|
# major and minor version numbers.
|
||||||
# peak single digit before and after first dot, e.g. 2.95.1 gives 29
|
# peak single digit before and after first dot, e.g. 2.95.1 gives 29
|
||||||
GCCVER=`echo $GCCVER | sed 's/\([0-9]\)\.\([0-9]\).*/\1\2/'`
|
GCCVER=`echo $GCCVER | sed 's/\([0-9]\)\.\([0-9]\).*/\1\2/'`
|
||||||
else
|
else
|
||||||
CC=cc
|
CC=cc
|
||||||
fi
|
fi
|
||||||
|
GCCVER=${GCCVER:-0}
|
||||||
|
if [ "$SYSTEM" = "HP-UX" ];then
|
||||||
|
# By default gcc is a ILP32 compiler (with long long == 64).
|
||||||
|
GCC_BITS="32"
|
||||||
|
if [ $GCCVER -ge 30 ]; then
|
||||||
|
# PA64 support only came in with gcc 3.0.x.
|
||||||
|
# We look for the preprocessor symbol __LP64__ indicating
|
||||||
|
# 64bit bit long and pointer. sizeof(int) == 32 on HPUX64.
|
||||||
|
if gcc -v -E -x c /dev/null 2>&1 | grep __LP64__ > /dev/null; then
|
||||||
|
GCC_BITS="64"
|
||||||
|
fi
|
||||||
|
fi
|
||||||
|
fi
|
||||||
if [ "$SYSTEM" = "SunOS" ]; then
|
if [ "$SYSTEM" = "SunOS" ]; then
|
||||||
# check for WorkShop C, expected output is "cc: blah-blah C x.x"
|
# check for WorkShop C, expected output is "cc: blah-blah C x.x"
|
||||||
CCVER=`(cc -V 2>&1) 2>/dev/null | \
|
CCVER=`(cc -V 2>&1) 2>/dev/null | \
|
||||||
@@ -457,7 +477,8 @@ case "$GUESSOS" in
|
|||||||
echo "WARNING! If you wish to build 64-bit library, then you have to"
|
echo "WARNING! If you wish to build 64-bit library, then you have to"
|
||||||
echo " invoke './Configure irix64-mips4-$CC' *manually*."
|
echo " invoke './Configure irix64-mips4-$CC' *manually*."
|
||||||
echo " Type return if you want to continue, Ctrl-C to abort."
|
echo " Type return if you want to continue, Ctrl-C to abort."
|
||||||
read waste < /dev/tty
|
# Do not stop if /dev/tty is unavailable
|
||||||
|
(read waste < /dev/tty) || true
|
||||||
CPU=`(hinv -t cpu) 2>/dev/null | sed 's/^CPU:[^R]*R\([0-9]*\).*/\1/'`
|
CPU=`(hinv -t cpu) 2>/dev/null | sed 's/^CPU:[^R]*R\([0-9]*\).*/\1/'`
|
||||||
CPU=${CPU:-0}
|
CPU=${CPU:-0}
|
||||||
if [ $CPU -ge 5000 ]; then
|
if [ $CPU -ge 5000 ]; then
|
||||||
@@ -497,6 +518,10 @@ EOF
|
|||||||
${CC} -o dummy dummy.c && OUT=`./dummy ${MACHINE}`
|
${CC} -o dummy dummy.c && OUT=`./dummy ${MACHINE}`
|
||||||
rm dummy dummy.c
|
rm dummy dummy.c
|
||||||
;;
|
;;
|
||||||
|
ppc64-*-linux2)
|
||||||
|
#Use the standard target for PPC architecture until we create a
|
||||||
|
#special one for the 64bit architecture.
|
||||||
|
OUT="linux-ppc" ;;
|
||||||
ppc-*-linux2) OUT="linux-ppc" ;;
|
ppc-*-linux2) OUT="linux-ppc" ;;
|
||||||
m68k-*-linux*) OUT="linux-m68k" ;;
|
m68k-*-linux*) OUT="linux-m68k" ;;
|
||||||
ia64-*-linux?) OUT="linux-ia64" ;;
|
ia64-*-linux?) OUT="linux-ia64" ;;
|
||||||
@@ -508,7 +533,8 @@ EOF
|
|||||||
#echo "WARNING! If you wish to build 64-bit library, then you have to"
|
#echo "WARNING! If you wish to build 64-bit library, then you have to"
|
||||||
#echo " invoke './Configure linux64-sparcv9' *manually*."
|
#echo " invoke './Configure linux64-sparcv9' *manually*."
|
||||||
#echo " Type return if you want to continue, Ctrl-C to abort."
|
#echo " Type return if you want to continue, Ctrl-C to abort."
|
||||||
#read waste < /dev/tty
|
# Do not stop if /dev/tty is unavailable
|
||||||
|
#(read waste < /dev/tty) || true
|
||||||
OUT="linux-sparcv9" ;;
|
OUT="linux-sparcv9" ;;
|
||||||
sparc-*-linux2)
|
sparc-*-linux2)
|
||||||
KARCH=`awk '/^type/{print$3}' /proc/cpuinfo`
|
KARCH=`awk '/^type/{print$3}' /proc/cpuinfo`
|
||||||
@@ -549,7 +575,8 @@ EOF
|
|||||||
echo "WARNING! If you wish to build 64-bit library, then you have to"
|
echo "WARNING! If you wish to build 64-bit library, then you have to"
|
||||||
echo " invoke './Configure solaris64-sparcv9-cc' *manually*."
|
echo " invoke './Configure solaris64-sparcv9-cc' *manually*."
|
||||||
echo " Type return if you want to continue, Ctrl-C to abort."
|
echo " Type return if you want to continue, Ctrl-C to abort."
|
||||||
read waste < /dev/tty
|
# Do not stop if /dev/tty is unavailable
|
||||||
|
(read waste < /dev/tty) || true
|
||||||
fi
|
fi
|
||||||
OUT="solaris-sparcv9-$CC" ;;
|
OUT="solaris-sparcv9-$CC" ;;
|
||||||
sun4m-*-solaris2) OUT="solaris-sparcv8-$CC" ;;
|
sun4m-*-solaris2) OUT="solaris-sparcv8-$CC" ;;
|
||||||
@@ -589,8 +616,18 @@ EOF
|
|||||||
BS2000-siemens-sysv4) OUT="BS2000-OSD" ;;
|
BS2000-siemens-sysv4) OUT="BS2000-OSD" ;;
|
||||||
RM*-siemens-sysv4) OUT="ReliantUNIX" ;;
|
RM*-siemens-sysv4) OUT="ReliantUNIX" ;;
|
||||||
*-siemens-sysv4) OUT="SINIX" ;;
|
*-siemens-sysv4) OUT="SINIX" ;;
|
||||||
*-hpux1*) OUT="hpux-parisc-$CC"
|
*-hpux1*)
|
||||||
options="$options -D_REENTRANT" ;;
|
if [ $CC = "gcc" ];
|
||||||
|
then
|
||||||
|
if [ $GCC_BITS = "64" ]; then
|
||||||
|
OUT="hpux64-parisc-gcc"
|
||||||
|
else
|
||||||
|
OUT="hpux-parisc-gcc"
|
||||||
|
fi
|
||||||
|
else
|
||||||
|
OUT="hpux-parisc-$CC"
|
||||||
|
fi
|
||||||
|
options="$options -D_REENTRANT" ;;
|
||||||
*-hpux) OUT="hpux-parisc-$CC" ;;
|
*-hpux) OUT="hpux-parisc-$CC" ;;
|
||||||
# these are all covered by the catchall below
|
# these are all covered by the catchall below
|
||||||
# *-aix) OUT="aix-$CC" ;;
|
# *-aix) OUT="aix-$CC" ;;
|
||||||
@@ -600,6 +637,7 @@ EOF
|
|||||||
*-*-cygwin) OUT="Cygwin" ;;
|
*-*-cygwin) OUT="Cygwin" ;;
|
||||||
t3e-cray-unicosmk) OUT="cray-t3e" ;;
|
t3e-cray-unicosmk) OUT="cray-t3e" ;;
|
||||||
j90-cray-unicos) OUT="cray-j90" ;;
|
j90-cray-unicos) OUT="cray-j90" ;;
|
||||||
|
nsr-tandem-nsk) OUT="tandem-c89" ;;
|
||||||
*) OUT=`echo $GUESSOS | awk -F- '{print $3}'`;;
|
*) OUT=`echo $GUESSOS | awk -F- '{print $3}'`;;
|
||||||
esac
|
esac
|
||||||
|
|
||||||
|
@@ -34,8 +34,8 @@ SDIRS= md2 md5 sha mdc2 hmac ripemd \
|
|||||||
GENERAL=Makefile README crypto-lib.com install.com
|
GENERAL=Makefile README crypto-lib.com install.com
|
||||||
|
|
||||||
LIB= $(TOP)/libcrypto.a
|
LIB= $(TOP)/libcrypto.a
|
||||||
LIBSRC= cryptlib.c mem.c mem_dbg.c cversion.c ex_data.c tmdiff.c cpt_err.c ebcdic.c uid.c
|
LIBSRC= cryptlib.c mem.c mem_clr.c mem_dbg.c cversion.c ex_data.c tmdiff.c cpt_err.c ebcdic.c uid.c
|
||||||
LIBOBJ= cryptlib.o mem.o mem_dbg.o cversion.o ex_data.o tmdiff.o cpt_err.o ebcdic.o uid.o
|
LIBOBJ= cryptlib.o mem.o mem_clr.o mem_dbg.o cversion.o ex_data.o tmdiff.o cpt_err.o ebcdic.o uid.o
|
||||||
|
|
||||||
SRC= $(LIBSRC)
|
SRC= $(LIBSRC)
|
||||||
|
|
||||||
@@ -51,11 +51,11 @@ all: buildinf.h lib subdirs
|
|||||||
|
|
||||||
buildinf.h: ../Makefile.ssl
|
buildinf.h: ../Makefile.ssl
|
||||||
( echo "#ifndef MK1MF_BUILD"; \
|
( echo "#ifndef MK1MF_BUILD"; \
|
||||||
echo " /* auto-generated by crypto/Makefile.ssl for crypto/cversion.c */"; \
|
echo ' /* auto-generated by crypto/Makefile.ssl for crypto/cversion.c */'; \
|
||||||
echo " #define CFLAGS \"$(CC) $(CFLAG)\""; \
|
echo ' #define CFLAGS "$(CC) $(CFLAG)"'; \
|
||||||
echo " #define PLATFORM \"$(PLATFORM)\""; \
|
echo ' #define PLATFORM "$(PLATFORM)"'; \
|
||||||
echo " #define DATE \"`date`\""; \
|
echo " #define DATE \"`LC_ALL=C LC_TIME=C date`\""; \
|
||||||
echo "#endif" ) >buildinf.h
|
echo '#endif' ) >buildinf.h
|
||||||
|
|
||||||
testapps:
|
testapps:
|
||||||
if echo ${SDIRS} | fgrep ' des '; \
|
if echo ${SDIRS} | fgrep ' des '; \
|
||||||
@@ -129,12 +129,12 @@ lint:
|
|||||||
|
|
||||||
depend:
|
depend:
|
||||||
if [ ! -f buildinf.h ]; then touch buildinf.h; fi # fake buildinf.h if it does not exist
|
if [ ! -f buildinf.h ]; then touch buildinf.h; fi # fake buildinf.h if it does not exist
|
||||||
$(MAKEDEPEND) $(INCLUDE) $(DEPFLAG) $(PROGS) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDE) $(DEPFLAG) -- $(PROGS) $(LIBSRC)
|
||||||
if [ ! -s buildinf.h ]; then rm buildinf.h; fi
|
if [ ! -s buildinf.h ]; then rm buildinf.h; fi
|
||||||
@for i in $(SDIRS) ;\
|
@for i in $(SDIRS) ;\
|
||||||
do \
|
do \
|
||||||
(cd $$i; echo "making depend in crypto/$$i..."; \
|
(cd $$i; echo "making depend in crypto/$$i..."; \
|
||||||
$(MAKE) MAKEFILE='${MAKEFILE}' INCLUDES='${INCLUDES}' DEPFLAG='${DEPFLAG}' depend ); \
|
$(MAKE) MAKEFILE='${MAKEFILE}' INCLUDES='${INCLUDES}' DEPFLAG='${DEPFLAG}' PERL='${PERL}' depend ); \
|
||||||
done;
|
done;
|
||||||
|
|
||||||
clean:
|
clean:
|
||||||
@@ -185,6 +185,9 @@ mem.o: ../include/openssl/e_os2.h ../include/openssl/err.h
|
|||||||
mem.o: ../include/openssl/lhash.h ../include/openssl/opensslconf.h
|
mem.o: ../include/openssl/lhash.h ../include/openssl/opensslconf.h
|
||||||
mem.o: ../include/openssl/opensslv.h ../include/openssl/safestack.h
|
mem.o: ../include/openssl/opensslv.h ../include/openssl/safestack.h
|
||||||
mem.o: ../include/openssl/stack.h ../include/openssl/symhacks.h cryptlib.h
|
mem.o: ../include/openssl/stack.h ../include/openssl/symhacks.h cryptlib.h
|
||||||
|
mem_clr.o: ../include/openssl/crypto.h ../include/openssl/opensslv.h
|
||||||
|
mem_clr.o: ../include/openssl/safestack.h ../include/openssl/stack.h
|
||||||
|
mem_clr.o: ../include/openssl/symhacks.h
|
||||||
mem_dbg.o: ../include/openssl/bio.h ../include/openssl/buffer.h
|
mem_dbg.o: ../include/openssl/bio.h ../include/openssl/buffer.h
|
||||||
mem_dbg.o: ../include/openssl/crypto.h ../include/openssl/e_os.h
|
mem_dbg.o: ../include/openssl/crypto.h ../include/openssl/e_os.h
|
||||||
mem_dbg.o: ../include/openssl/e_os2.h ../include/openssl/err.h
|
mem_dbg.o: ../include/openssl/e_os2.h ../include/openssl/err.h
|
||||||
|
@@ -104,7 +104,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(PROGS) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(PROGS) $(LIBSRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
|
@@ -89,8 +89,6 @@ int i2c_ASN1_BIT_STRING(ASN1_BIT_STRING *a, unsigned char **pp)
|
|||||||
if (a == NULL) return(0);
|
if (a == NULL) return(0);
|
||||||
|
|
||||||
len=a->length;
|
len=a->length;
|
||||||
ret=1+len;
|
|
||||||
if (pp == NULL) return(ret);
|
|
||||||
|
|
||||||
if (len > 0)
|
if (len > 0)
|
||||||
{
|
{
|
||||||
@@ -118,6 +116,10 @@ int i2c_ASN1_BIT_STRING(ASN1_BIT_STRING *a, unsigned char **pp)
|
|||||||
}
|
}
|
||||||
else
|
else
|
||||||
bits=0;
|
bits=0;
|
||||||
|
|
||||||
|
ret=1+len;
|
||||||
|
if (pp == NULL) return(ret);
|
||||||
|
|
||||||
p= *pp;
|
p= *pp;
|
||||||
|
|
||||||
*(p++)=(unsigned char)bits;
|
*(p++)=(unsigned char)bits;
|
||||||
|
@@ -205,7 +205,18 @@ ASN1_ENUMERATED *BN_to_ASN1_ENUMERATED(BIGNUM *bn, ASN1_ENUMERATED *ai)
|
|||||||
else ret->type=V_ASN1_ENUMERATED;
|
else ret->type=V_ASN1_ENUMERATED;
|
||||||
j=BN_num_bits(bn);
|
j=BN_num_bits(bn);
|
||||||
len=((j == 0)?0:((j/8)+1));
|
len=((j == 0)?0:((j/8)+1));
|
||||||
ret->data=(unsigned char *)OPENSSL_malloc(len+4);
|
if (ret->length < len+4)
|
||||||
|
{
|
||||||
|
unsigned char *new_data=
|
||||||
|
OPENSSL_realloc(ret->data, len+4);
|
||||||
|
if (!new_data)
|
||||||
|
{
|
||||||
|
ASN1err(ASN1_F_BN_TO_ASN1_INTEGER,ERR_R_MALLOC_FAILURE);
|
||||||
|
goto err;
|
||||||
|
}
|
||||||
|
ret->data=new_data;
|
||||||
|
}
|
||||||
|
|
||||||
ret->length=BN_bn2bin(bn,ret->data);
|
ret->length=BN_bn2bin(bn,ret->data);
|
||||||
return(ret);
|
return(ret);
|
||||||
err:
|
err:
|
||||||
|
@@ -451,7 +451,16 @@ ASN1_INTEGER *BN_to_ASN1_INTEGER(BIGNUM *bn, ASN1_INTEGER *ai)
|
|||||||
else ret->type=V_ASN1_INTEGER;
|
else ret->type=V_ASN1_INTEGER;
|
||||||
j=BN_num_bits(bn);
|
j=BN_num_bits(bn);
|
||||||
len=((j == 0)?0:((j/8)+1));
|
len=((j == 0)?0:((j/8)+1));
|
||||||
ret->data=(unsigned char *)OPENSSL_malloc(len+4);
|
if (ret->length < len+4)
|
||||||
|
{
|
||||||
|
unsigned char *new_data= OPENSSL_realloc(ret->data, len+4);
|
||||||
|
if (!new_data)
|
||||||
|
{
|
||||||
|
ASN1err(ASN1_F_BN_TO_ASN1_INTEGER,ERR_R_MALLOC_FAILURE);
|
||||||
|
goto err;
|
||||||
|
}
|
||||||
|
ret->data=new_data;
|
||||||
|
}
|
||||||
ret->length=BN_bn2bin(bn,ret->data);
|
ret->length=BN_bn2bin(bn,ret->data);
|
||||||
return(ret);
|
return(ret);
|
||||||
err:
|
err:
|
||||||
|
@@ -116,7 +116,7 @@ int i2d_ASN1_SET(STACK *a, unsigned char **pp, int (*func)(), int ex_tag,
|
|||||||
}
|
}
|
||||||
|
|
||||||
pStart = p; /* Catch the beg of Setblobs*/
|
pStart = p; /* Catch the beg of Setblobs*/
|
||||||
rgSetBlob = (MYBLOB *)OPENSSL_malloc( sk_num(a) * sizeof(MYBLOB)); /* In this array
|
if (!(rgSetBlob = (MYBLOB *)OPENSSL_malloc( sk_num(a) * sizeof(MYBLOB)))) return 0; /* In this array
|
||||||
we will store the SET blobs */
|
we will store the SET blobs */
|
||||||
|
|
||||||
for (i=0; i<sk_num(a); i++)
|
for (i=0; i<sk_num(a); i++)
|
||||||
@@ -133,7 +133,7 @@ SetBlob
|
|||||||
/* Now we have to sort the blobs. I am using a simple algo.
|
/* Now we have to sort the blobs. I am using a simple algo.
|
||||||
*Sort ptrs *Copy to temp-mem *Copy from temp-mem to user-mem*/
|
*Sort ptrs *Copy to temp-mem *Copy from temp-mem to user-mem*/
|
||||||
qsort( rgSetBlob, sk_num(a), sizeof(MYBLOB), SetBlobCmp);
|
qsort( rgSetBlob, sk_num(a), sizeof(MYBLOB), SetBlobCmp);
|
||||||
pTempMem = OPENSSL_malloc(totSize);
|
if (!(pTempMem = OPENSSL_malloc(totSize))) return 0;
|
||||||
|
|
||||||
/* Copy to temp mem */
|
/* Copy to temp mem */
|
||||||
p = pTempMem;
|
p = pTempMem;
|
||||||
|
@@ -55,6 +55,59 @@
|
|||||||
* copied and put under another distribution licence
|
* copied and put under another distribution licence
|
||||||
* [including the GNU Public Licence.]
|
* [including the GNU Public Licence.]
|
||||||
*/
|
*/
|
||||||
|
/* ====================================================================
|
||||||
|
* Copyright (c) 1998-2002 The OpenSSL Project. All rights reserved.
|
||||||
|
*
|
||||||
|
* Redistribution and use in source and binary forms, with or without
|
||||||
|
* modification, are permitted provided that the following conditions
|
||||||
|
* are met:
|
||||||
|
*
|
||||||
|
* 1. Redistributions of source code must retain the above copyright
|
||||||
|
* notice, this list of conditions and the following disclaimer.
|
||||||
|
*
|
||||||
|
* 2. Redistributions in binary form must reproduce the above copyright
|
||||||
|
* notice, this list of conditions and the following disclaimer in
|
||||||
|
* the documentation and/or other materials provided with the
|
||||||
|
* distribution.
|
||||||
|
*
|
||||||
|
* 3. All advertising materials mentioning features or use of this
|
||||||
|
* software must display the following acknowledgment:
|
||||||
|
* "This product includes software developed by the OpenSSL Project
|
||||||
|
* for use in the OpenSSL Toolkit. (http://www.openssl.org/)"
|
||||||
|
*
|
||||||
|
* 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
|
||||||
|
* endorse or promote products derived from this software without
|
||||||
|
* prior written permission. For written permission, please contact
|
||||||
|
* openssl-core@openssl.org.
|
||||||
|
*
|
||||||
|
* 5. Products derived from this software may not be called "OpenSSL"
|
||||||
|
* nor may "OpenSSL" appear in their names without prior written
|
||||||
|
* permission of the OpenSSL Project.
|
||||||
|
*
|
||||||
|
* 6. Redistributions of any form whatsoever must retain the following
|
||||||
|
* acknowledgment:
|
||||||
|
* "This product includes software developed by the OpenSSL Project
|
||||||
|
* for use in the OpenSSL Toolkit (http://www.openssl.org/)"
|
||||||
|
*
|
||||||
|
* THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
|
||||||
|
* EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
|
||||||
|
* IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
|
||||||
|
* PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR
|
||||||
|
* ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
|
||||||
|
* SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
|
||||||
|
* NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
|
||||||
|
* LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
|
||||||
|
* HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
|
||||||
|
* STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
|
||||||
|
* ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
|
||||||
|
* OF THE POSSIBILITY OF SUCH DAMAGE.
|
||||||
|
* ====================================================================
|
||||||
|
*
|
||||||
|
* This product includes cryptographic software written by Eric Young
|
||||||
|
* (eay@cryptsoft.com). This product includes software written by Tim
|
||||||
|
* Hudson (tjh@cryptsoft.com).
|
||||||
|
*
|
||||||
|
*/
|
||||||
|
|
||||||
#include <stdio.h>
|
#include <stdio.h>
|
||||||
#include <time.h>
|
#include <time.h>
|
||||||
@@ -87,7 +140,14 @@ int ASN1_sign(int (*i2d)(), X509_ALGOR *algor1, X509_ALGOR *algor2,
|
|||||||
else
|
else
|
||||||
a=algor2;
|
a=algor2;
|
||||||
if (a == NULL) continue;
|
if (a == NULL) continue;
|
||||||
if ( (a->parameter == NULL) ||
|
if (type->pkey_type == NID_dsaWithSHA1)
|
||||||
|
{
|
||||||
|
/* special case: RFC 2459 tells us to omit 'parameters'
|
||||||
|
* with id-dsa-with-sha1 */
|
||||||
|
ASN1_TYPE_free(a->parameter);
|
||||||
|
a->parameter = NULL;
|
||||||
|
}
|
||||||
|
else if ((a->parameter == NULL) ||
|
||||||
(a->parameter->type != V_ASN1_NULL))
|
(a->parameter->type != V_ASN1_NULL))
|
||||||
{
|
{
|
||||||
ASN1_TYPE_free(a->parameter);
|
ASN1_TYPE_free(a->parameter);
|
||||||
@@ -139,10 +199,10 @@ int ASN1_sign(int (*i2d)(), X509_ALGOR *algor1, X509_ALGOR *algor2,
|
|||||||
signature->flags&= ~(ASN1_STRING_FLAG_BITS_LEFT|0x07);
|
signature->flags&= ~(ASN1_STRING_FLAG_BITS_LEFT|0x07);
|
||||||
signature->flags|=ASN1_STRING_FLAG_BITS_LEFT;
|
signature->flags|=ASN1_STRING_FLAG_BITS_LEFT;
|
||||||
err:
|
err:
|
||||||
memset(&ctx,0,sizeof(ctx));
|
OPENSSL_cleanse(&ctx,sizeof(ctx));
|
||||||
if (buf_in != NULL)
|
if (buf_in != NULL)
|
||||||
{ memset((char *)buf_in,0,(unsigned int)inl); OPENSSL_free(buf_in); }
|
{ OPENSSL_cleanse((char *)buf_in,(unsigned int)inl); OPENSSL_free(buf_in); }
|
||||||
if (buf_out != NULL)
|
if (buf_out != NULL)
|
||||||
{ memset((char *)buf_out,0,outll); OPENSSL_free(buf_out); }
|
{ OPENSSL_cleanse((char *)buf_out,outll); OPENSSL_free(buf_out); }
|
||||||
return(outl);
|
return(outl);
|
||||||
}
|
}
|
||||||
|
@@ -519,7 +519,7 @@ int ASN1_STRING_to_UTF8(unsigned char **out, ASN1_STRING *in)
|
|||||||
{
|
{
|
||||||
ASN1_STRING stmp, *str = &stmp;
|
ASN1_STRING stmp, *str = &stmp;
|
||||||
int mbflag, type, ret;
|
int mbflag, type, ret;
|
||||||
if(!*out || !in) return -1;
|
if(!in) return -1;
|
||||||
type = in->type;
|
type = in->type;
|
||||||
if((type < 0) || (type > 30)) return -1;
|
if((type < 0) || (type > 30)) return -1;
|
||||||
mbflag = tag2nbyte[type];
|
mbflag = tag2nbyte[type];
|
||||||
@@ -528,6 +528,6 @@ int ASN1_STRING_to_UTF8(unsigned char **out, ASN1_STRING *in)
|
|||||||
stmp.data = NULL;
|
stmp.data = NULL;
|
||||||
ret = ASN1_mbstring_copy(&str, in->data, in->length, mbflag, B_ASN1_UTF8STRING);
|
ret = ASN1_mbstring_copy(&str, in->data, in->length, mbflag, B_ASN1_UTF8STRING);
|
||||||
if(ret < 0) return ret;
|
if(ret < 0) return ret;
|
||||||
if(out) *out = stmp.data;
|
*out = stmp.data;
|
||||||
return stmp.length;
|
return stmp.length;
|
||||||
}
|
}
|
||||||
|
@@ -246,6 +246,8 @@ ASN1_UTCTIME *ASN1_UTCTIME_set(ASN1_UTCTIME *s, time_t t)
|
|||||||
ts=(struct tm *)localtime(&t);
|
ts=(struct tm *)localtime(&t);
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
if (ts == NULL)
|
||||||
|
return(NULL);
|
||||||
p=(char *)s->data;
|
p=(char *)s->data;
|
||||||
if ((p == NULL) || (s->length < 14))
|
if ((p == NULL) || (s->length < 14))
|
||||||
{
|
{
|
||||||
@@ -270,6 +272,9 @@ ASN1_UTCTIME *ASN1_UTCTIME_set(ASN1_UTCTIME *s, time_t t)
|
|||||||
int ASN1_UTCTIME_cmp_time_t(const ASN1_UTCTIME *s, time_t t)
|
int ASN1_UTCTIME_cmp_time_t(const ASN1_UTCTIME *s, time_t t)
|
||||||
{
|
{
|
||||||
struct tm *tm;
|
struct tm *tm;
|
||||||
|
#if defined(THREADS) && !defined(WIN32) && !defined(__CYGWIN32__) && !defined(_DARWIN)
|
||||||
|
struct tm data;
|
||||||
|
#endif
|
||||||
int offset;
|
int offset;
|
||||||
int year;
|
int year;
|
||||||
|
|
||||||
@@ -287,7 +292,8 @@ int ASN1_UTCTIME_cmp_time_t(const ASN1_UTCTIME *s, time_t t)
|
|||||||
t -= offset*60; /* FIXME: may overflow in extreme cases */
|
t -= offset*60; /* FIXME: may overflow in extreme cases */
|
||||||
|
|
||||||
#if defined(THREADS) && !defined(WIN32) && !defined(__CYGWIN32__) && !defined(_DARWIN)
|
#if defined(THREADS) && !defined(WIN32) && !defined(__CYGWIN32__) && !defined(_DARWIN)
|
||||||
{ struct tm data; gmtime_r(&t, &data); tm = &data; }
|
gmtime_r(&t, &data);
|
||||||
|
tm = &data;
|
||||||
#else
|
#else
|
||||||
tm = gmtime(&t);
|
tm = gmtime(&t);
|
||||||
#endif
|
#endif
|
||||||
|
@@ -100,7 +100,7 @@ int ASN1_verify(int (*i2d)(), X509_ALGOR *a, ASN1_BIT_STRING *signature,
|
|||||||
EVP_VerifyInit(&ctx,type);
|
EVP_VerifyInit(&ctx,type);
|
||||||
EVP_VerifyUpdate(&ctx,(unsigned char *)buf_in,inl);
|
EVP_VerifyUpdate(&ctx,(unsigned char *)buf_in,inl);
|
||||||
|
|
||||||
memset(buf_in,0,(unsigned int)inl);
|
OPENSSL_cleanse(buf_in,(unsigned int)inl);
|
||||||
OPENSSL_free(buf_in);
|
OPENSSL_free(buf_in);
|
||||||
|
|
||||||
if (EVP_VerifyFinal(&ctx,(unsigned char *)signature->data,
|
if (EVP_VerifyFinal(&ctx,(unsigned char *)signature->data,
|
||||||
|
@@ -57,6 +57,7 @@
|
|||||||
*/
|
*/
|
||||||
|
|
||||||
#include <stdio.h>
|
#include <stdio.h>
|
||||||
|
#include <limits.h>
|
||||||
#include "cryptlib.h"
|
#include "cryptlib.h"
|
||||||
#include <openssl/asn1.h>
|
#include <openssl/asn1.h>
|
||||||
#include <openssl/asn1_mac.h>
|
#include <openssl/asn1_mac.h>
|
||||||
@@ -124,15 +125,13 @@ int ASN1_get_object(unsigned char **pp, long *plength, int *ptag, int *pclass,
|
|||||||
(int)(omax+ *pp));
|
(int)(omax+ *pp));
|
||||||
|
|
||||||
#endif
|
#endif
|
||||||
#if 0
|
if (*plength > (omax - (p - *pp)))
|
||||||
if ((p+ *plength) > (omax+ *pp))
|
|
||||||
{
|
{
|
||||||
ASN1err(ASN1_F_ASN1_GET_OBJECT,ASN1_R_TOO_LONG);
|
ASN1err(ASN1_F_ASN1_GET_OBJECT,ASN1_R_TOO_LONG);
|
||||||
/* Set this so that even if things are not long enough
|
/* Set this so that even if things are not long enough
|
||||||
* the values are set correctly */
|
* the values are set correctly */
|
||||||
ret|=0x80;
|
ret|=0x80;
|
||||||
}
|
}
|
||||||
#endif
|
|
||||||
*pp=p;
|
*pp=p;
|
||||||
return(ret|inf);
|
return(ret|inf);
|
||||||
err:
|
err:
|
||||||
@@ -143,7 +142,7 @@ err:
|
|||||||
static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
|
static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
|
||||||
{
|
{
|
||||||
unsigned char *p= *pp;
|
unsigned char *p= *pp;
|
||||||
long ret=0;
|
unsigned long ret=0;
|
||||||
int i;
|
int i;
|
||||||
|
|
||||||
if (max-- < 1) return(0);
|
if (max-- < 1) return(0);
|
||||||
@@ -159,6 +158,8 @@ static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
|
|||||||
i= *p&0x7f;
|
i= *p&0x7f;
|
||||||
if (*(p++) & 0x80)
|
if (*(p++) & 0x80)
|
||||||
{
|
{
|
||||||
|
if (i > sizeof(long))
|
||||||
|
return 0;
|
||||||
if (max-- == 0) return(0);
|
if (max-- == 0) return(0);
|
||||||
while (i-- > 0)
|
while (i-- > 0)
|
||||||
{
|
{
|
||||||
@@ -170,8 +171,10 @@ static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
|
|||||||
else
|
else
|
||||||
ret=i;
|
ret=i;
|
||||||
}
|
}
|
||||||
|
if (ret > LONG_MAX)
|
||||||
|
return 0;
|
||||||
*pp=p;
|
*pp=p;
|
||||||
*rl=ret;
|
*rl=(long)ret;
|
||||||
return(1);
|
return(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -407,7 +410,7 @@ int ASN1_STRING_cmp(ASN1_STRING *a, ASN1_STRING *b)
|
|||||||
|
|
||||||
void asn1_add_error(unsigned char *address, int offset)
|
void asn1_add_error(unsigned char *address, int offset)
|
||||||
{
|
{
|
||||||
char buf1[16],buf2[16];
|
char buf1[DECIMAL_SIZE(address)+1],buf2[DECIMAL_SIZE(offset)+1];
|
||||||
|
|
||||||
sprintf(buf1,"%lu",(unsigned long)address);
|
sprintf(buf1,"%lu",(unsigned long)address);
|
||||||
sprintf(buf2,"%d",offset);
|
sprintf(buf2,"%d",offset);
|
||||||
|
@@ -87,6 +87,7 @@ DH *d2i_DHparams(DH **a, unsigned char **pp, long length)
|
|||||||
}
|
}
|
||||||
|
|
||||||
M_ASN1_BIT_STRING_free(bs);
|
M_ASN1_BIT_STRING_free(bs);
|
||||||
|
bs = NULL;
|
||||||
|
|
||||||
M_ASN1_D2I_Finish_2(a);
|
M_ASN1_D2I_Finish_2(a);
|
||||||
|
|
||||||
|
@@ -84,6 +84,7 @@ DSA *d2i_DSAparams(DSA **a, unsigned char **pp, long length)
|
|||||||
if ((ret->g=BN_bin2bn(bs->data,bs->length,ret->g)) == NULL) goto err_bn;
|
if ((ret->g=BN_bin2bn(bs->data,bs->length,ret->g)) == NULL) goto err_bn;
|
||||||
|
|
||||||
M_ASN1_BIT_STRING_free(bs);
|
M_ASN1_BIT_STRING_free(bs);
|
||||||
|
bs = NULL;
|
||||||
|
|
||||||
M_ASN1_D2I_Finish_2(a);
|
M_ASN1_D2I_Finish_2(a);
|
||||||
|
|
||||||
|
@@ -108,6 +108,7 @@ RSA *d2i_RSAPrivateKey(RSA **a, unsigned char **pp, long length)
|
|||||||
goto err_bn;
|
goto err_bn;
|
||||||
|
|
||||||
M_ASN1_INTEGER_free(bs);
|
M_ASN1_INTEGER_free(bs);
|
||||||
|
bs = NULL;
|
||||||
|
|
||||||
M_ASN1_D2I_Finish_2(a);
|
M_ASN1_D2I_Finish_2(a);
|
||||||
err_bn:
|
err_bn:
|
||||||
|
@@ -181,7 +181,7 @@ int i2d_RSA_NET(RSA *a, unsigned char **pp, int (*cb)(), int sgckey)
|
|||||||
}
|
}
|
||||||
|
|
||||||
EVP_BytesToKey(EVP_rc4(),EVP_md5(),NULL,buf,i,1,key,NULL);
|
EVP_BytesToKey(EVP_rc4(),EVP_md5(),NULL,buf,i,1,key,NULL);
|
||||||
memset(buf,0,256);
|
OPENSSL_cleanse(buf,256);
|
||||||
|
|
||||||
EVP_CIPHER_CTX_init(&ctx);
|
EVP_CIPHER_CTX_init(&ctx);
|
||||||
EVP_EncryptInit(&ctx,EVP_rc4(),key,NULL);
|
EVP_EncryptInit(&ctx,EVP_rc4(),key,NULL);
|
||||||
@@ -292,7 +292,7 @@ RSA *d2i_RSA_NET_2(RSA **a, unsigned char **pp, long length,
|
|||||||
}
|
}
|
||||||
|
|
||||||
EVP_BytesToKey(EVP_rc4(),EVP_md5(),NULL,buf,i,1,key,NULL);
|
EVP_BytesToKey(EVP_rc4(),EVP_md5(),NULL,buf,i,1,key,NULL);
|
||||||
memset(buf,0,256);
|
OPENSSL_cleanse(buf,256);
|
||||||
|
|
||||||
EVP_CIPHER_CTX_init(&ctx);
|
EVP_CIPHER_CTX_init(&ctx);
|
||||||
EVP_DecryptInit(&ctx,EVP_rc4(),key,NULL);
|
EVP_DecryptInit(&ctx,EVP_rc4(),key,NULL);
|
||||||
|
@@ -119,8 +119,8 @@ void PKCS8_PRIV_KEY_INFO_free (PKCS8_PRIV_KEY_INFO *a)
|
|||||||
X509_ALGOR_free(a->pkeyalg);
|
X509_ALGOR_free(a->pkeyalg);
|
||||||
/* Clear sensitive data */
|
/* Clear sensitive data */
|
||||||
if (a->pkey->value.octet_string)
|
if (a->pkey->value.octet_string)
|
||||||
memset (a->pkey->value.octet_string->data,
|
OPENSSL_cleanse(a->pkey->value.octet_string->data,
|
||||||
0, a->pkey->value.octet_string->length);
|
a->pkey->value.octet_string->length);
|
||||||
ASN1_TYPE_free (a->pkey);
|
ASN1_TYPE_free (a->pkey);
|
||||||
sk_X509_ATTRIBUTE_pop_free (a->attributes, X509_ATTRIBUTE_free);
|
sk_X509_ATTRIBUTE_pop_free (a->attributes, X509_ATTRIBUTE_free);
|
||||||
OPENSSL_free (a);
|
OPENSSL_free (a);
|
||||||
|
@@ -96,10 +96,34 @@ int RSA_print(BIO *bp, RSA *x, int off)
|
|||||||
char str[128];
|
char str[128];
|
||||||
const char *s;
|
const char *s;
|
||||||
unsigned char *m=NULL;
|
unsigned char *m=NULL;
|
||||||
int i,ret=0;
|
int ret=0;
|
||||||
|
size_t buf_len=0, i;
|
||||||
|
|
||||||
i=RSA_size(x);
|
if (x->n)
|
||||||
m=(unsigned char *)OPENSSL_malloc((unsigned int)i+10);
|
buf_len = (size_t)BN_num_bytes(x->n);
|
||||||
|
if (x->e)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->e)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->d)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->d)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->p)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->p)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->q)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->q)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->dmp1)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->dmp1)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->dmq1)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->dmq1)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->iqmp)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->iqmp)))
|
||||||
|
buf_len = i;
|
||||||
|
|
||||||
|
m=(unsigned char *)OPENSSL_malloc(buf_len+10);
|
||||||
if (m == NULL)
|
if (m == NULL)
|
||||||
{
|
{
|
||||||
RSAerr(RSA_F_RSA_PRINT,ERR_R_MALLOC_FAILURE);
|
RSAerr(RSA_F_RSA_PRINT,ERR_R_MALLOC_FAILURE);
|
||||||
@@ -161,22 +185,25 @@ int DSA_print(BIO *bp, DSA *x, int off)
|
|||||||
{
|
{
|
||||||
char str[128];
|
char str[128];
|
||||||
unsigned char *m=NULL;
|
unsigned char *m=NULL;
|
||||||
int i,ret=0;
|
int ret=0;
|
||||||
BIGNUM *bn=NULL;
|
size_t buf_len=0,i;
|
||||||
|
|
||||||
if (x->p != NULL)
|
if (x->p)
|
||||||
bn=x->p;
|
buf_len = (size_t)BN_num_bytes(x->p);
|
||||||
else if (x->priv_key != NULL)
|
if (x->q)
|
||||||
bn=x->priv_key;
|
if (buf_len < (i = (size_t)BN_num_bytes(x->q)))
|
||||||
else if (x->pub_key != NULL)
|
buf_len = i;
|
||||||
bn=x->pub_key;
|
if (x->g)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->g)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->priv_key)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->priv_key)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->pub_key)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->pub_key)))
|
||||||
|
buf_len = i;
|
||||||
|
|
||||||
/* larger than needed but what the hell :-) */
|
m=(unsigned char *)OPENSSL_malloc(buf_len+10);
|
||||||
if (bn != NULL)
|
|
||||||
i=BN_num_bytes(bn)*2;
|
|
||||||
else
|
|
||||||
i=256;
|
|
||||||
m=(unsigned char *)OPENSSL_malloc((unsigned int)i+10);
|
|
||||||
if (m == NULL)
|
if (m == NULL)
|
||||||
{
|
{
|
||||||
DSAerr(DSA_F_DSA_PRINT,ERR_R_MALLOC_FAILURE);
|
DSAerr(DSA_F_DSA_PRINT,ERR_R_MALLOC_FAILURE);
|
||||||
@@ -281,10 +308,15 @@ int DHparams_print_fp(FILE *fp, DH *x)
|
|||||||
int DHparams_print(BIO *bp, DH *x)
|
int DHparams_print(BIO *bp, DH *x)
|
||||||
{
|
{
|
||||||
unsigned char *m=NULL;
|
unsigned char *m=NULL;
|
||||||
int reason=ERR_R_BUF_LIB,i,ret=0;
|
int reason=ERR_R_BUF_LIB,ret=0;
|
||||||
|
size_t buf_len=0, i;
|
||||||
|
|
||||||
i=BN_num_bytes(x->p);
|
if (x->p)
|
||||||
m=(unsigned char *)OPENSSL_malloc((unsigned int)i+10);
|
buf_len = (size_t)BN_num_bytes(x->p);
|
||||||
|
if (x->g)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->g)))
|
||||||
|
buf_len = i;
|
||||||
|
m=(unsigned char *)OPENSSL_malloc(buf_len+10);
|
||||||
if (m == NULL)
|
if (m == NULL)
|
||||||
{
|
{
|
||||||
reason=ERR_R_MALLOC_FAILURE;
|
reason=ERR_R_MALLOC_FAILURE;
|
||||||
@@ -334,10 +366,18 @@ int DSAparams_print_fp(FILE *fp, DSA *x)
|
|||||||
int DSAparams_print(BIO *bp, DSA *x)
|
int DSAparams_print(BIO *bp, DSA *x)
|
||||||
{
|
{
|
||||||
unsigned char *m=NULL;
|
unsigned char *m=NULL;
|
||||||
int reason=ERR_R_BUF_LIB,i,ret=0;
|
int reason=ERR_R_BUF_LIB,ret=0;
|
||||||
|
size_t buf_len=0, i;
|
||||||
|
|
||||||
i=BN_num_bytes(x->p);
|
if (x->p)
|
||||||
m=(unsigned char *)OPENSSL_malloc((unsigned int)i+10);
|
buf_len = (size_t)BN_num_bytes(x->p);
|
||||||
|
if (x->q)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->q)))
|
||||||
|
buf_len = i;
|
||||||
|
if (x->g)
|
||||||
|
if (buf_len < (i = (size_t)BN_num_bytes(x->g)))
|
||||||
|
buf_len = i;
|
||||||
|
m=(unsigned char *)OPENSSL_malloc(buf_len+10);
|
||||||
if (m == NULL)
|
if (m == NULL)
|
||||||
{
|
{
|
||||||
reason=ERR_R_MALLOC_FAILURE;
|
reason=ERR_R_MALLOC_FAILURE;
|
||||||
|
@@ -156,7 +156,7 @@ int X509_PUBKEY_set(X509_PUBKEY **x, EVP_PKEY *pkey)
|
|||||||
dsa->write_params=0;
|
dsa->write_params=0;
|
||||||
ASN1_TYPE_free(a->parameter);
|
ASN1_TYPE_free(a->parameter);
|
||||||
i=i2d_DSAparams(dsa,NULL);
|
i=i2d_DSAparams(dsa,NULL);
|
||||||
p=(unsigned char *)OPENSSL_malloc(i);
|
if ((p=(unsigned char *)OPENSSL_malloc(i)) == NULL) goto err;
|
||||||
pp=p;
|
pp=p;
|
||||||
i2d_DSAparams(dsa,&pp);
|
i2d_DSAparams(dsa,&pp);
|
||||||
a->parameter=ASN1_TYPE_new();
|
a->parameter=ASN1_TYPE_new();
|
||||||
|
@@ -96,7 +96,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(PROGS) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(PROGS) $(LIBSRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
|
@@ -63,6 +63,8 @@
|
|||||||
#include <string.h>
|
#include <string.h>
|
||||||
#include <stdlib.h>
|
#include <stdlib.h>
|
||||||
|
|
||||||
|
#include "../e_os.h"
|
||||||
|
|
||||||
#ifdef NO_BF
|
#ifdef NO_BF
|
||||||
int main(int argc, char *argv[])
|
int main(int argc, char *argv[])
|
||||||
{
|
{
|
||||||
@@ -275,7 +277,7 @@ int main(int argc, char *argv[])
|
|||||||
else
|
else
|
||||||
ret=test();
|
ret=test();
|
||||||
|
|
||||||
exit(ret);
|
EXIT(ret);
|
||||||
return(0);
|
return(0);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
@@ -78,7 +78,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(PROGS) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(PROGS) $(LIBSRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
|
@@ -56,6 +56,13 @@
|
|||||||
* [including the GNU Public Licence.]
|
* [including the GNU Public Licence.]
|
||||||
*/
|
*/
|
||||||
|
|
||||||
|
/* disable assert() unless BIO_DEBUG has been defined */
|
||||||
|
#ifndef BIO_DEBUG
|
||||||
|
# ifndef NDEBUG
|
||||||
|
# define NDEBUG
|
||||||
|
# endif
|
||||||
|
#endif
|
||||||
|
|
||||||
/*
|
/*
|
||||||
* Stolen from tjh's ssl/ssl_trc.c stuff.
|
* Stolen from tjh's ssl/ssl_trc.c stuff.
|
||||||
*/
|
*/
|
||||||
@@ -102,7 +109,7 @@
|
|||||||
* o ... (for OpenSSL)
|
* o ... (for OpenSSL)
|
||||||
*/
|
*/
|
||||||
|
|
||||||
#if HAVE_LONG_DOUBLE
|
#ifdef HAVE_LONG_DOUBLE
|
||||||
#define LDOUBLE long double
|
#define LDOUBLE long double
|
||||||
#else
|
#else
|
||||||
#define LDOUBLE double
|
#define LDOUBLE double
|
||||||
@@ -716,12 +723,13 @@ doapr_outch(
|
|||||||
if (buffer) {
|
if (buffer) {
|
||||||
while (*currlen >= *maxlen) {
|
while (*currlen >= *maxlen) {
|
||||||
if (*buffer == NULL) {
|
if (*buffer == NULL) {
|
||||||
assert(*sbuffer != NULL);
|
|
||||||
if (*maxlen == 0)
|
if (*maxlen == 0)
|
||||||
*maxlen = 1024;
|
*maxlen = 1024;
|
||||||
*buffer = OPENSSL_malloc(*maxlen);
|
*buffer = OPENSSL_malloc(*maxlen);
|
||||||
if (*currlen > 0)
|
if (*currlen > 0) {
|
||||||
|
assert(*sbuffer != NULL);
|
||||||
memcpy(*buffer, *sbuffer, *currlen);
|
memcpy(*buffer, *sbuffer, *currlen);
|
||||||
|
}
|
||||||
*sbuffer = NULL;
|
*sbuffer = NULL;
|
||||||
} else {
|
} else {
|
||||||
*maxlen += 1024;
|
*maxlen += 1024;
|
||||||
@@ -761,7 +769,9 @@ int BIO_vprintf (BIO *bio, const char *format, va_list args)
|
|||||||
{
|
{
|
||||||
int ret;
|
int ret;
|
||||||
size_t retlen;
|
size_t retlen;
|
||||||
MS_STATIC char hugebuf[1024*10];
|
char hugebuf[1024*2]; /* Was previously 10k, which is unreasonable
|
||||||
|
in small-stack environments, like threads
|
||||||
|
or DOS programs. */
|
||||||
char *hugebufp = hugebuf;
|
char *hugebufp = hugebuf;
|
||||||
size_t hugebufsize = sizeof(hugebuf);
|
size_t hugebufsize = sizeof(hugebuf);
|
||||||
char *dynbuf = NULL;
|
char *dynbuf = NULL;
|
||||||
|
@@ -104,7 +104,7 @@ static int nbiof_new(BIO *bi)
|
|||||||
{
|
{
|
||||||
NBIO_TEST *nt;
|
NBIO_TEST *nt;
|
||||||
|
|
||||||
nt=(NBIO_TEST *)OPENSSL_malloc(sizeof(NBIO_TEST));
|
if (!(nt=(NBIO_TEST *)OPENSSL_malloc(sizeof(NBIO_TEST)))) return(0);
|
||||||
nt->lrn= -1;
|
nt->lrn= -1;
|
||||||
nt->lwn= -1;
|
nt->lwn= -1;
|
||||||
bi->ptr=(char *)nt;
|
bi->ptr=(char *)nt;
|
||||||
|
@@ -241,7 +241,7 @@ typedef struct bio_method_st
|
|||||||
long (_far *ctrl)();
|
long (_far *ctrl)();
|
||||||
int (_far *create)();
|
int (_far *create)();
|
||||||
int (_far *destroy)();
|
int (_far *destroy)();
|
||||||
long (_fat *callback_ctrl)();
|
long (_far *callback_ctrl)();
|
||||||
} BIO_METHOD;
|
} BIO_METHOD;
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
|
@@ -7,9 +7,18 @@
|
|||||||
* for which no specific BIO method is available.
|
* for which no specific BIO method is available.
|
||||||
* See ssl/ssltest.c for some hints on how this can be used. */
|
* See ssl/ssltest.c for some hints on how this can be used. */
|
||||||
|
|
||||||
|
/* BIO_DEBUG implies BIO_PAIR_DEBUG */
|
||||||
|
#ifdef BIO_DEBUG
|
||||||
|
# ifndef BIO_PAIR_DEBUG
|
||||||
|
# define BIO_PAIR_DEBUG
|
||||||
|
# endif
|
||||||
|
#endif
|
||||||
|
|
||||||
|
/* disable assert() unless BIO_PAIR_DEBUG has been defined */
|
||||||
#ifndef BIO_PAIR_DEBUG
|
#ifndef BIO_PAIR_DEBUG
|
||||||
# undef NDEBUG /* avoid conflicting definitions */
|
# ifndef NDEBUG
|
||||||
# define NDEBUG
|
# define NDEBUG
|
||||||
|
# endif
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
#include <assert.h>
|
#include <assert.h>
|
||||||
|
@@ -159,7 +159,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(PROGS) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(PROGS) $(LIBSRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
|
@@ -155,7 +155,7 @@ extern "C" {
|
|||||||
#define BN_BYTES 4
|
#define BN_BYTES 4
|
||||||
#define BN_BITS2 32
|
#define BN_BITS2 32
|
||||||
#define BN_BITS4 16
|
#define BN_BITS4 16
|
||||||
#ifdef WIN32
|
#if defined(_MSC_VER) || defined(__BORLANDC__)
|
||||||
/* VC++ doesn't like the LL suffix */
|
/* VC++ doesn't like the LL suffix */
|
||||||
#define BN_MASK (0xffffffffffffffffL)
|
#define BN_MASK (0xffffffffffffffffL)
|
||||||
#else
|
#else
|
||||||
@@ -259,6 +259,8 @@ typedef struct bn_blinding_st
|
|||||||
BIGNUM *A;
|
BIGNUM *A;
|
||||||
BIGNUM *Ai;
|
BIGNUM *Ai;
|
||||||
BIGNUM *mod; /* just a reference */
|
BIGNUM *mod; /* just a reference */
|
||||||
|
unsigned long thread_id; /* added in OpenSSL 0.9.6j and 0.9.7b;
|
||||||
|
* used only by crypto/rsa/rsa_eay.c, rsa_lib.c */
|
||||||
} BN_BLINDING;
|
} BN_BLINDING;
|
||||||
|
|
||||||
/* Used for montgomery multiplication */
|
/* Used for montgomery multiplication */
|
||||||
@@ -413,7 +415,7 @@ int BN_mod_mul_montgomery(BIGNUM *r,BIGNUM *a,BIGNUM *b,BN_MONT_CTX *mont,
|
|||||||
BN_CTX *ctx);
|
BN_CTX *ctx);
|
||||||
int BN_from_montgomery(BIGNUM *r,BIGNUM *a,BN_MONT_CTX *mont,BN_CTX *ctx);
|
int BN_from_montgomery(BIGNUM *r,BIGNUM *a,BN_MONT_CTX *mont,BN_CTX *ctx);
|
||||||
void BN_MONT_CTX_free(BN_MONT_CTX *mont);
|
void BN_MONT_CTX_free(BN_MONT_CTX *mont);
|
||||||
int BN_MONT_CTX_set(BN_MONT_CTX *mont,const BIGNUM *modulus,BN_CTX *ctx);
|
int BN_MONT_CTX_set(BN_MONT_CTX *mont,const BIGNUM *mod,BN_CTX *ctx);
|
||||||
BN_MONT_CTX *BN_MONT_CTX_copy(BN_MONT_CTX *to,BN_MONT_CTX *from);
|
BN_MONT_CTX *BN_MONT_CTX_copy(BN_MONT_CTX *to,BN_MONT_CTX *from);
|
||||||
|
|
||||||
BN_BLINDING *BN_BLINDING_new(BIGNUM *A,BIGNUM *Ai,BIGNUM *mod);
|
BN_BLINDING *BN_BLINDING_new(BIGNUM *A,BIGNUM *Ai,BIGNUM *mod);
|
||||||
|
@@ -190,10 +190,10 @@ int BN_div(BIGNUM *dv, BIGNUM *rm, const BIGNUM *num, const BIGNUM *divisor,
|
|||||||
|
|
||||||
/* First we normalise the numbers */
|
/* First we normalise the numbers */
|
||||||
norm_shift=BN_BITS2-((BN_num_bits(divisor))%BN_BITS2);
|
norm_shift=BN_BITS2-((BN_num_bits(divisor))%BN_BITS2);
|
||||||
BN_lshift(sdiv,divisor,norm_shift);
|
if (!(BN_lshift(sdiv,divisor,norm_shift))) goto err;
|
||||||
sdiv->neg=0;
|
sdiv->neg=0;
|
||||||
norm_shift+=BN_BITS2;
|
norm_shift+=BN_BITS2;
|
||||||
BN_lshift(snum,num,norm_shift);
|
if (!(BN_lshift(snum,num,norm_shift))) goto err;
|
||||||
snum->neg=0;
|
snum->neg=0;
|
||||||
div_n=sdiv->top;
|
div_n=sdiv->top;
|
||||||
num_n=snum->top;
|
num_n=snum->top;
|
||||||
@@ -315,7 +315,7 @@ int BN_div(BIGNUM *dv, BIGNUM *rm, const BIGNUM *num, const BIGNUM *divisor,
|
|||||||
tmp->top=j;
|
tmp->top=j;
|
||||||
|
|
||||||
j=wnum.top;
|
j=wnum.top;
|
||||||
BN_sub(&wnum,&wnum,tmp);
|
if (!BN_sub(&wnum,&wnum,tmp)) goto err;
|
||||||
|
|
||||||
snum->top=snum->top+wnum.top-j;
|
snum->top=snum->top+wnum.top-j;
|
||||||
|
|
||||||
@@ -323,7 +323,7 @@ int BN_div(BIGNUM *dv, BIGNUM *rm, const BIGNUM *num, const BIGNUM *divisor,
|
|||||||
{
|
{
|
||||||
q--;
|
q--;
|
||||||
j=wnum.top;
|
j=wnum.top;
|
||||||
BN_add(&wnum,&wnum,sdiv);
|
if (!BN_add(&wnum,&wnum,sdiv)) goto err;
|
||||||
snum->top+=wnum.top-j;
|
snum->top+=wnum.top-j;
|
||||||
}
|
}
|
||||||
*(resp--)=q;
|
*(resp--)=q;
|
||||||
|
@@ -168,8 +168,8 @@ BIGNUM *BN_mod_inverse(BIGNUM *in, BIGNUM *a, const BIGNUM *n, BN_CTX *ctx)
|
|||||||
R=in;
|
R=in;
|
||||||
if (R == NULL) goto err;
|
if (R == NULL) goto err;
|
||||||
|
|
||||||
BN_zero(X);
|
if (!BN_zero(X)) goto err;
|
||||||
BN_one(Y);
|
if (!BN_one(Y)) goto err;
|
||||||
if (BN_copy(A,a) == NULL) goto err;
|
if (BN_copy(A,a) == NULL) goto err;
|
||||||
if (BN_copy(B,n) == NULL) goto err;
|
if (BN_copy(B,n) == NULL) goto err;
|
||||||
sign=1;
|
sign=1;
|
||||||
|
@@ -263,12 +263,12 @@ void BN_clear_free(BIGNUM *a)
|
|||||||
if (a == NULL) return;
|
if (a == NULL) return;
|
||||||
if (a->d != NULL)
|
if (a->d != NULL)
|
||||||
{
|
{
|
||||||
memset(a->d,0,a->dmax*sizeof(a->d[0]));
|
OPENSSL_cleanse(a->d,a->dmax*sizeof(a->d[0]));
|
||||||
if (!(BN_get_flags(a,BN_FLG_STATIC_DATA)))
|
if (!(BN_get_flags(a,BN_FLG_STATIC_DATA)))
|
||||||
OPENSSL_free(a->d);
|
OPENSSL_free(a->d);
|
||||||
}
|
}
|
||||||
i=BN_get_flags(a,BN_FLG_MALLOCED);
|
i=BN_get_flags(a,BN_FLG_MALLOCED);
|
||||||
memset(a,0,sizeof(BIGNUM));
|
OPENSSL_cleanse(a,sizeof(BIGNUM));
|
||||||
if (i)
|
if (i)
|
||||||
OPENSSL_free(a);
|
OPENSSL_free(a);
|
||||||
}
|
}
|
||||||
|
@@ -224,7 +224,7 @@ int BN_from_montgomery(BIGNUM *ret, BIGNUM *a, BN_MONT_CTX *mont,
|
|||||||
|
|
||||||
if (!BN_mul(t1,t2,&mont->N,ctx)) goto err;
|
if (!BN_mul(t1,t2,&mont->N,ctx)) goto err;
|
||||||
if (!BN_add(t2,a,t1)) goto err;
|
if (!BN_add(t2,a,t1)) goto err;
|
||||||
BN_rshift(ret,t2,mont->ri);
|
if (!BN_rshift(ret,t2,mont->ri)) goto err;
|
||||||
#endif /* MONT_WORD */
|
#endif /* MONT_WORD */
|
||||||
|
|
||||||
if (BN_ucmp(ret, &(mont->N)) >= 0)
|
if (BN_ucmp(ret, &(mont->N)) >= 0)
|
||||||
@@ -284,8 +284,8 @@ int BN_MONT_CTX_set(BN_MONT_CTX *mont, const BIGNUM *mod, BN_CTX *ctx)
|
|||||||
BN_ULONG buf[2];
|
BN_ULONG buf[2];
|
||||||
|
|
||||||
mont->ri=(BN_num_bits(mod)+(BN_BITS2-1))/BN_BITS2*BN_BITS2;
|
mont->ri=(BN_num_bits(mod)+(BN_BITS2-1))/BN_BITS2*BN_BITS2;
|
||||||
BN_zero(R);
|
if (!(BN_zero(R))) goto err;
|
||||||
BN_set_bit(R,BN_BITS2); /* R */
|
if (!(BN_set_bit(R,BN_BITS2))) goto err; /* R */
|
||||||
|
|
||||||
buf[0]=mod->d[0]; /* tmod = N mod word size */
|
buf[0]=mod->d[0]; /* tmod = N mod word size */
|
||||||
buf[1]=0;
|
buf[1]=0;
|
||||||
@@ -296,36 +296,44 @@ int BN_MONT_CTX_set(BN_MONT_CTX *mont, const BIGNUM *mod, BN_CTX *ctx)
|
|||||||
/* Ri = R^-1 mod N*/
|
/* Ri = R^-1 mod N*/
|
||||||
if ((BN_mod_inverse(&Ri,R,&tmod,ctx)) == NULL)
|
if ((BN_mod_inverse(&Ri,R,&tmod,ctx)) == NULL)
|
||||||
goto err;
|
goto err;
|
||||||
BN_lshift(&Ri,&Ri,BN_BITS2); /* R*Ri */
|
/* R*Ri */
|
||||||
|
if (!(BN_lshift(&Ri,&Ri,BN_BITS2))) goto err;
|
||||||
if (!BN_is_zero(&Ri))
|
if (!BN_is_zero(&Ri))
|
||||||
BN_sub_word(&Ri,1);
|
{
|
||||||
|
if (!BN_sub_word(&Ri,1)) goto err;
|
||||||
|
}
|
||||||
else /* if N mod word size == 1 */
|
else /* if N mod word size == 1 */
|
||||||
BN_set_word(&Ri,BN_MASK2); /* Ri-- (mod word size) */
|
/* Ri-- (mod word size) */
|
||||||
BN_div(&Ri,NULL,&Ri,&tmod,ctx); /* Ni = (R*Ri-1)/N,
|
{
|
||||||
* keep only least significant word: */
|
if (!BN_set_word(&Ri,BN_MASK2)) goto err;
|
||||||
|
}
|
||||||
|
/* Ni = (R*Ri-1)/N, keep only least significant word: */
|
||||||
|
if (!(BN_div(&Ri,NULL,&Ri,&tmod,ctx))) goto err;
|
||||||
mont->n0=Ri.d[0];
|
mont->n0=Ri.d[0];
|
||||||
BN_free(&Ri);
|
BN_free(&Ri);
|
||||||
}
|
}
|
||||||
#else /* !MONT_WORD */
|
#else /* !MONT_WORD */
|
||||||
{ /* bignum version */
|
{ /* bignum version */
|
||||||
mont->ri=BN_num_bits(mod);
|
mont->ri=BN_num_bits(mod);
|
||||||
BN_zero(R);
|
if (!(BN_zero(R))) goto err;
|
||||||
BN_set_bit(R,mont->ri); /* R = 2^ri */
|
/* R = 2^ri */
|
||||||
|
if (!(BN_set_bit(R,mont->ri))) goto err;
|
||||||
/* Ri = R^-1 mod N*/
|
/* Ri = R^-1 mod N*/
|
||||||
if ((BN_mod_inverse(&Ri,R,mod,ctx)) == NULL)
|
if ((BN_mod_inverse(&Ri,R,mod,ctx)) == NULL)
|
||||||
goto err;
|
goto err;
|
||||||
BN_lshift(&Ri,&Ri,mont->ri); /* R*Ri */
|
/* R*Ri */
|
||||||
BN_sub_word(&Ri,1);
|
if (!(BN_lshift(&Ri,&Ri,mont->ri))) goto err;
|
||||||
|
if (!(BN_sub_word(&Ri,1))) goto err;
|
||||||
/* Ni = (R*Ri-1) / N */
|
/* Ni = (R*Ri-1) / N */
|
||||||
BN_div(&(mont->Ni),NULL,&Ri,mod,ctx);
|
if (!(BN_div(&(mont->Ni),NULL,&Ri,mod,ctx))) goto err;
|
||||||
BN_free(&Ri);
|
BN_free(&Ri);
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
/* setup RR for conversions */
|
/* setup RR for conversions */
|
||||||
BN_zero(&(mont->RR));
|
if (!(BN_zero(&(mont->RR)))) goto err;
|
||||||
BN_set_bit(&(mont->RR),mont->ri*2);
|
if (!(BN_set_bit(&(mont->RR),mont->ri*2))) goto err;
|
||||||
BN_mod(&(mont->RR),&(mont->RR),&(mont->N),ctx);
|
if (!(BN_mod(&(mont->RR),&(mont->RR),&(mont->N),ctx))) goto err;
|
||||||
|
|
||||||
return(1);
|
return(1);
|
||||||
err:
|
err:
|
||||||
@@ -336,9 +344,9 @@ BN_MONT_CTX *BN_MONT_CTX_copy(BN_MONT_CTX *to, BN_MONT_CTX *from)
|
|||||||
{
|
{
|
||||||
if (to == from) return(to);
|
if (to == from) return(to);
|
||||||
|
|
||||||
BN_copy(&(to->RR),&(from->RR));
|
if (!(BN_copy(&(to->RR),&(from->RR)))) return NULL;
|
||||||
BN_copy(&(to->N),&(from->N));
|
if (!(BN_copy(&(to->N),&(from->N)))) return NULL;
|
||||||
BN_copy(&(to->Ni),&(from->Ni));
|
if (!(BN_copy(&(to->Ni),&(from->Ni)))) return NULL;
|
||||||
to->ri=from->ri;
|
to->ri=from->ri;
|
||||||
to->n0=from->n0;
|
to->n0=from->n0;
|
||||||
return(to);
|
return(to);
|
||||||
|
@@ -634,7 +634,7 @@ int BN_mul(BIGNUM *r, BIGNUM *a, BIGNUM *b, BN_CTX *ctx)
|
|||||||
|
|
||||||
if ((al == 0) || (bl == 0))
|
if ((al == 0) || (bl == 0))
|
||||||
{
|
{
|
||||||
BN_zero(r);
|
if (!BN_zero(r)) goto err;
|
||||||
return(1);
|
return(1);
|
||||||
}
|
}
|
||||||
top=al+bl;
|
top=al+bl;
|
||||||
@@ -677,14 +677,14 @@ int BN_mul(BIGNUM *r, BIGNUM *a, BIGNUM *b, BN_CTX *ctx)
|
|||||||
{
|
{
|
||||||
if (i == 1 && !BN_get_flags(b,BN_FLG_STATIC_DATA))
|
if (i == 1 && !BN_get_flags(b,BN_FLG_STATIC_DATA))
|
||||||
{
|
{
|
||||||
bn_wexpand(b,al);
|
if (bn_wexpand(b,al) == NULL) goto err;
|
||||||
b->d[bl]=0;
|
b->d[bl]=0;
|
||||||
bl++;
|
bl++;
|
||||||
i--;
|
i--;
|
||||||
}
|
}
|
||||||
else if (i == -1 && !BN_get_flags(a,BN_FLG_STATIC_DATA))
|
else if (i == -1 && !BN_get_flags(a,BN_FLG_STATIC_DATA))
|
||||||
{
|
{
|
||||||
bn_wexpand(a,bl);
|
if (bn_wexpand(a,bl) == NULL) goto err;
|
||||||
a->d[al]=0;
|
a->d[al]=0;
|
||||||
al++;
|
al++;
|
||||||
i++;
|
i++;
|
||||||
@@ -699,16 +699,16 @@ int BN_mul(BIGNUM *r, BIGNUM *a, BIGNUM *b, BN_CTX *ctx)
|
|||||||
t = BN_CTX_get(ctx);
|
t = BN_CTX_get(ctx);
|
||||||
if (al == j) /* exact multiple */
|
if (al == j) /* exact multiple */
|
||||||
{
|
{
|
||||||
bn_wexpand(t,k*2);
|
if (bn_wexpand(t,k*2) == NULL) goto err;
|
||||||
bn_wexpand(rr,k*2);
|
if (bn_wexpand(rr,k*2) == NULL) goto err;
|
||||||
bn_mul_recursive(rr->d,a->d,b->d,al,t->d);
|
bn_mul_recursive(rr->d,a->d,b->d,al,t->d);
|
||||||
}
|
}
|
||||||
else
|
else
|
||||||
{
|
{
|
||||||
bn_wexpand(a,k);
|
if (bn_wexpand(a,k) == NULL ) goto err;
|
||||||
bn_wexpand(b,k);
|
if (bn_wexpand(b,k) == NULL ) goto err;
|
||||||
bn_wexpand(t,k*4);
|
if (bn_wexpand(t,k*4) == NULL ) goto err;
|
||||||
bn_wexpand(rr,k*4);
|
if (bn_wexpand(rr,k*4) == NULL ) goto err;
|
||||||
for (i=a->top; i<k; i++)
|
for (i=a->top; i<k; i++)
|
||||||
a->d[i]=0;
|
a->d[i]=0;
|
||||||
for (i=b->top; i<k; i++)
|
for (i=b->top; i<k; i++)
|
||||||
|
@@ -201,7 +201,7 @@ static int bnrand(int pseudorand, BIGNUM *rnd, int bits, int top, int bottom)
|
|||||||
err:
|
err:
|
||||||
if (buf != NULL)
|
if (buf != NULL)
|
||||||
{
|
{
|
||||||
memset(buf,0,bytes);
|
OPENSSL_cleanse(buf,bytes);
|
||||||
OPENSSL_free(buf);
|
OPENSSL_free(buf);
|
||||||
}
|
}
|
||||||
return(ret);
|
return(ret);
|
||||||
|
@@ -123,7 +123,10 @@ int BN_add_word(BIGNUM *a, BN_ULONG w)
|
|||||||
i=0;
|
i=0;
|
||||||
for (;;)
|
for (;;)
|
||||||
{
|
{
|
||||||
l=(a->d[i]+(BN_ULONG)w)&BN_MASK2;
|
if (i >= a->top)
|
||||||
|
l=w;
|
||||||
|
else
|
||||||
|
l=(a->d[i]+(BN_ULONG)w)&BN_MASK2;
|
||||||
a->d[i]=l;
|
a->d[i]=l;
|
||||||
if (w > l)
|
if (w > l)
|
||||||
w=1;
|
w=1;
|
||||||
|
@@ -139,10 +139,10 @@ int main(int argc, char *argv[])
|
|||||||
|
|
||||||
|
|
||||||
ctx=BN_CTX_new();
|
ctx=BN_CTX_new();
|
||||||
if (ctx == NULL) exit(1);
|
if (ctx == NULL) EXIT(1);
|
||||||
|
|
||||||
out=BIO_new(BIO_s_file());
|
out=BIO_new(BIO_s_file());
|
||||||
if (out == NULL) exit(1);
|
if (out == NULL) EXIT(1);
|
||||||
if (outfile == NULL)
|
if (outfile == NULL)
|
||||||
{
|
{
|
||||||
BIO_set_fp(out,stdout,BIO_NOCLOSE);
|
BIO_set_fp(out,stdout,BIO_NOCLOSE);
|
||||||
@@ -152,7 +152,7 @@ int main(int argc, char *argv[])
|
|||||||
if (!BIO_write_filename(out,outfile))
|
if (!BIO_write_filename(out,outfile))
|
||||||
{
|
{
|
||||||
perror(outfile);
|
perror(outfile);
|
||||||
exit(1);
|
EXIT(1);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -228,14 +228,14 @@ int main(int argc, char *argv[])
|
|||||||
BIO_free(out);
|
BIO_free(out);
|
||||||
|
|
||||||
/**/
|
/**/
|
||||||
exit(0);
|
EXIT(0);
|
||||||
err:
|
err:
|
||||||
BIO_puts(out,"1\n"); /* make sure the Perl script fed by bc notices
|
BIO_puts(out,"1\n"); /* make sure the Perl script fed by bc notices
|
||||||
* the failure, see test_bn in test/Makefile.ssl*/
|
* the failure, see test_bn in test/Makefile.ssl*/
|
||||||
BIO_flush(out);
|
BIO_flush(out);
|
||||||
ERR_load_crypto_strings();
|
ERR_load_crypto_strings();
|
||||||
ERR_print_errors_fp(stderr);
|
ERR_print_errors_fp(stderr);
|
||||||
exit(1);
|
EXIT(1);
|
||||||
return(1);
|
return(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -746,7 +746,7 @@ int test_mod_mul(BIO *bp, BN_CTX *ctx)
|
|||||||
while ((l=ERR_get_error()))
|
while ((l=ERR_get_error()))
|
||||||
fprintf(stderr,"ERROR:%s\n",
|
fprintf(stderr,"ERROR:%s\n",
|
||||||
ERR_error_string(l,NULL));
|
ERR_error_string(l,NULL));
|
||||||
exit(1);
|
EXIT(1);
|
||||||
}
|
}
|
||||||
if (bp != NULL)
|
if (bp != NULL)
|
||||||
{
|
{
|
||||||
|
@@ -59,6 +59,9 @@
|
|||||||
#include <stdio.h>
|
#include <stdio.h>
|
||||||
#include <stdlib.h>
|
#include <stdlib.h>
|
||||||
#include <string.h>
|
#include <string.h>
|
||||||
|
|
||||||
|
#include "../e_os.h"
|
||||||
|
|
||||||
#include <openssl/bio.h>
|
#include <openssl/bio.h>
|
||||||
#include <openssl/bn.h>
|
#include <openssl/bn.h>
|
||||||
#include <openssl/rand.h>
|
#include <openssl/rand.h>
|
||||||
@@ -86,7 +89,7 @@ int main(int argc, char *argv[])
|
|||||||
ERR_load_BN_strings();
|
ERR_load_BN_strings();
|
||||||
|
|
||||||
ctx=BN_CTX_new();
|
ctx=BN_CTX_new();
|
||||||
if (ctx == NULL) exit(1);
|
if (ctx == NULL) EXIT(1);
|
||||||
r_mont=BN_new();
|
r_mont=BN_new();
|
||||||
r_recp=BN_new();
|
r_recp=BN_new();
|
||||||
r_simple=BN_new();
|
r_simple=BN_new();
|
||||||
@@ -99,7 +102,7 @@ int main(int argc, char *argv[])
|
|||||||
|
|
||||||
out=BIO_new(BIO_s_file());
|
out=BIO_new(BIO_s_file());
|
||||||
|
|
||||||
if (out == NULL) exit(1);
|
if (out == NULL) EXIT(1);
|
||||||
BIO_set_fp(out,stdout,BIO_NOCLOSE);
|
BIO_set_fp(out,stdout,BIO_NOCLOSE);
|
||||||
|
|
||||||
for (i=0; i<200; i++)
|
for (i=0; i<200; i++)
|
||||||
@@ -124,7 +127,7 @@ int main(int argc, char *argv[])
|
|||||||
{
|
{
|
||||||
printf("BN_mod_exp_mont() problems\n");
|
printf("BN_mod_exp_mont() problems\n");
|
||||||
ERR_print_errors(out);
|
ERR_print_errors(out);
|
||||||
exit(1);
|
EXIT(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
ret=BN_mod_exp_recp(r_recp,a,b,m,ctx);
|
ret=BN_mod_exp_recp(r_recp,a,b,m,ctx);
|
||||||
@@ -132,7 +135,7 @@ int main(int argc, char *argv[])
|
|||||||
{
|
{
|
||||||
printf("BN_mod_exp_recp() problems\n");
|
printf("BN_mod_exp_recp() problems\n");
|
||||||
ERR_print_errors(out);
|
ERR_print_errors(out);
|
||||||
exit(1);
|
EXIT(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
ret=BN_mod_exp_simple(r_simple,a,b,m,ctx);
|
ret=BN_mod_exp_simple(r_simple,a,b,m,ctx);
|
||||||
@@ -140,7 +143,7 @@ int main(int argc, char *argv[])
|
|||||||
{
|
{
|
||||||
printf("BN_mod_exp_simple() problems\n");
|
printf("BN_mod_exp_simple() problems\n");
|
||||||
ERR_print_errors(out);
|
ERR_print_errors(out);
|
||||||
exit(1);
|
EXIT(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
if (BN_cmp(r_simple, r_mont) == 0
|
if (BN_cmp(r_simple, r_mont) == 0
|
||||||
@@ -163,7 +166,7 @@ int main(int argc, char *argv[])
|
|||||||
printf("\nrecp ="); BN_print(out,r_recp);
|
printf("\nrecp ="); BN_print(out,r_recp);
|
||||||
printf("\nmont ="); BN_print(out,r_mont);
|
printf("\nmont ="); BN_print(out,r_mont);
|
||||||
printf("\n");
|
printf("\n");
|
||||||
exit(1);
|
EXIT(1);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
BN_free(r_mont);
|
BN_free(r_mont);
|
||||||
@@ -177,11 +180,11 @@ int main(int argc, char *argv[])
|
|||||||
CRYPTO_mem_leaks(out);
|
CRYPTO_mem_leaks(out);
|
||||||
BIO_free(out);
|
BIO_free(out);
|
||||||
printf(" done\n");
|
printf(" done\n");
|
||||||
exit(0);
|
EXIT(0);
|
||||||
err:
|
err:
|
||||||
ERR_load_crypto_strings();
|
ERR_load_crypto_strings();
|
||||||
ERR_print_errors(out);
|
ERR_print_errors(out);
|
||||||
exit(1);
|
EXIT(1);
|
||||||
return(1);
|
return(1);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
@@ -68,7 +68,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(PROGS) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(PROGS) $(LIBSRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
|
@@ -97,7 +97,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(PROGS) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(PROGS) $(LIBSRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
|
@@ -60,6 +60,8 @@
|
|||||||
#include <string.h>
|
#include <string.h>
|
||||||
#include <stdlib.h>
|
#include <stdlib.h>
|
||||||
|
|
||||||
|
#include "../e_os.h"
|
||||||
|
|
||||||
#ifdef NO_CAST
|
#ifdef NO_CAST
|
||||||
int main(int argc, char *argv[])
|
int main(int argc, char *argv[])
|
||||||
{
|
{
|
||||||
@@ -224,7 +226,7 @@ int main(int argc, char *argv[])
|
|||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
exit(err);
|
EXIT(err);
|
||||||
return(err);
|
return(err);
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
@@ -71,7 +71,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(LIBSRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
|
@@ -5,7 +5,7 @@
|
|||||||
DIR= conf
|
DIR= conf
|
||||||
TOP= ../..
|
TOP= ../..
|
||||||
CC= cc
|
CC= cc
|
||||||
INCLUDES= -I../../include
|
INCLUDES= -I.. -I../../include
|
||||||
CFLAG=-g
|
CFLAG=-g
|
||||||
INSTALL_PREFIX=
|
INSTALL_PREFIX=
|
||||||
OPENSSLDIR= /usr/local/ssl
|
OPENSSLDIR= /usr/local/ssl
|
||||||
@@ -69,7 +69,7 @@ lint:
|
|||||||
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
lint -DLINT $(INCLUDES) $(SRC)>fluff
|
||||||
|
|
||||||
depend:
|
depend:
|
||||||
$(MAKEDEPEND) $(INCLUDES) $(DEPFLAG) $(LIBSRC)
|
$(MAKEDEPEND) -- $(INCLUDES) $(DEPFLAG) -- $(LIBSRC)
|
||||||
|
|
||||||
dclean:
|
dclean:
|
||||||
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
$(PERL) -pe 'if (/^# DO NOT DELETE THIS LINE/) {print; exit(0);}' $(MAKEFILE) >Makefile.new
|
||||||
@@ -88,10 +88,12 @@ conf_api.o: ../../include/openssl/opensslv.h ../../include/openssl/safestack.h
|
|||||||
conf_api.o: ../../include/openssl/stack.h ../../include/openssl/symhacks.h
|
conf_api.o: ../../include/openssl/stack.h ../../include/openssl/symhacks.h
|
||||||
conf_def.o: ../../include/openssl/bio.h ../../include/openssl/buffer.h
|
conf_def.o: ../../include/openssl/bio.h ../../include/openssl/buffer.h
|
||||||
conf_def.o: ../../include/openssl/conf.h ../../include/openssl/conf_api.h
|
conf_def.o: ../../include/openssl/conf.h ../../include/openssl/conf_api.h
|
||||||
conf_def.o: ../../include/openssl/crypto.h ../../include/openssl/err.h
|
conf_def.o: ../../include/openssl/crypto.h ../../include/openssl/e_os.h
|
||||||
conf_def.o: ../../include/openssl/lhash.h ../../include/openssl/opensslv.h
|
conf_def.o: ../../include/openssl/e_os2.h ../../include/openssl/err.h
|
||||||
conf_def.o: ../../include/openssl/safestack.h ../../include/openssl/stack.h
|
conf_def.o: ../../include/openssl/lhash.h ../../include/openssl/opensslconf.h
|
||||||
conf_def.o: ../../include/openssl/symhacks.h conf_def.h
|
conf_def.o: ../../include/openssl/opensslv.h ../../include/openssl/safestack.h
|
||||||
|
conf_def.o: ../../include/openssl/stack.h ../../include/openssl/symhacks.h
|
||||||
|
conf_def.o: ../cryptlib.h conf_def.h
|
||||||
conf_err.o: ../../include/openssl/bio.h ../../include/openssl/conf.h
|
conf_err.o: ../../include/openssl/bio.h ../../include/openssl/conf.h
|
||||||
conf_err.o: ../../include/openssl/crypto.h ../../include/openssl/err.h
|
conf_err.o: ../../include/openssl/crypto.h ../../include/openssl/err.h
|
||||||
conf_err.o: ../../include/openssl/lhash.h ../../include/openssl/opensslv.h
|
conf_err.o: ../../include/openssl/lhash.h ../../include/openssl/opensslv.h
|
||||||
|
@@ -67,6 +67,7 @@
|
|||||||
#include "conf_def.h"
|
#include "conf_def.h"
|
||||||
#include <openssl/buffer.h>
|
#include <openssl/buffer.h>
|
||||||
#include <openssl/err.h>
|
#include <openssl/err.h>
|
||||||
|
#include "cryptlib.h"
|
||||||
|
|
||||||
static char *eat_ws(CONF *conf, char *p);
|
static char *eat_ws(CONF *conf, char *p);
|
||||||
static char *eat_alpha_numeric(CONF *conf, char *p);
|
static char *eat_alpha_numeric(CONF *conf, char *p);
|
||||||
@@ -180,12 +181,12 @@ static int def_destroy_data(CONF *conf)
|
|||||||
static int def_load(CONF *conf, BIO *in, long *line)
|
static int def_load(CONF *conf, BIO *in, long *line)
|
||||||
{
|
{
|
||||||
#define BUFSIZE 512
|
#define BUFSIZE 512
|
||||||
char btmp[16];
|
|
||||||
int bufnum=0,i,ii;
|
int bufnum=0,i,ii;
|
||||||
BUF_MEM *buff=NULL;
|
BUF_MEM *buff=NULL;
|
||||||
char *s,*p,*end;
|
char *s,*p,*end;
|
||||||
int again,n;
|
int again,n;
|
||||||
long eline=0;
|
long eline=0;
|
||||||
|
char btmp[DECIMAL_SIZE(eline)+1];
|
||||||
CONF_VALUE *v=NULL,*tv;
|
CONF_VALUE *v=NULL,*tv;
|
||||||
CONF_VALUE *sv=NULL;
|
CONF_VALUE *sv=NULL;
|
||||||
char *section=NULL,*buf;
|
char *section=NULL,*buf;
|
||||||
@@ -223,9 +224,9 @@ static int def_load(CONF *conf, BIO *in, long *line)
|
|||||||
section_sk=(STACK_OF(CONF_VALUE) *)sv->value;
|
section_sk=(STACK_OF(CONF_VALUE) *)sv->value;
|
||||||
|
|
||||||
bufnum=0;
|
bufnum=0;
|
||||||
|
again=0;
|
||||||
for (;;)
|
for (;;)
|
||||||
{
|
{
|
||||||
again=0;
|
|
||||||
if (!BUF_MEM_grow(buff,bufnum+BUFSIZE))
|
if (!BUF_MEM_grow(buff,bufnum+BUFSIZE))
|
||||||
{
|
{
|
||||||
CONFerr(CONF_F_CONF_LOAD_BIO,ERR_R_BUF_LIB);
|
CONFerr(CONF_F_CONF_LOAD_BIO,ERR_R_BUF_LIB);
|
||||||
@@ -236,7 +237,8 @@ static int def_load(CONF *conf, BIO *in, long *line)
|
|||||||
BIO_gets(in, p, BUFSIZE-1);
|
BIO_gets(in, p, BUFSIZE-1);
|
||||||
p[BUFSIZE-1]='\0';
|
p[BUFSIZE-1]='\0';
|
||||||
ii=i=strlen(p);
|
ii=i=strlen(p);
|
||||||
if (i == 0) break;
|
if (i == 0 && !again) break;
|
||||||
|
again=0;
|
||||||
while (i > 0)
|
while (i > 0)
|
||||||
{
|
{
|
||||||
if ((p[i-1] != '\r') && (p[i-1] != '\n'))
|
if ((p[i-1] != '\r') && (p[i-1] != '\n'))
|
||||||
@@ -246,7 +248,7 @@ static int def_load(CONF *conf, BIO *in, long *line)
|
|||||||
}
|
}
|
||||||
/* we removed some trailing stuff so there is a new
|
/* we removed some trailing stuff so there is a new
|
||||||
* line on the end. */
|
* line on the end. */
|
||||||
if (i == ii)
|
if (ii && i == ii)
|
||||||
again=1; /* long line */
|
again=1; /* long line */
|
||||||
else
|
else
|
||||||
{
|
{
|
||||||
|
@@ -58,6 +58,7 @@
|
|||||||
|
|
||||||
#include <stdio.h>
|
#include <stdio.h>
|
||||||
#include <string.h>
|
#include <string.h>
|
||||||
|
#include <assert.h>
|
||||||
#include "cryptlib.h"
|
#include "cryptlib.h"
|
||||||
#include <openssl/crypto.h>
|
#include <openssl/crypto.h>
|
||||||
#include <openssl/safestack.h>
|
#include <openssl/safestack.h>
|
||||||
@@ -89,6 +90,7 @@ static const char* lock_names[CRYPTO_NUM_LOCKS] =
|
|||||||
"ssl_session",
|
"ssl_session",
|
||||||
"ssl_sess_cert",
|
"ssl_sess_cert",
|
||||||
"ssl",
|
"ssl",
|
||||||
|
/* "ssl_method", */
|
||||||
"rand",
|
"rand",
|
||||||
"rand2",
|
"rand2",
|
||||||
"debug_malloc",
|
"debug_malloc",
|
||||||
@@ -205,10 +207,18 @@ int CRYPTO_get_new_dynlockid(void)
|
|||||||
i=sk_CRYPTO_dynlock_find(dyn_locks,NULL);
|
i=sk_CRYPTO_dynlock_find(dyn_locks,NULL);
|
||||||
/* If there was none, push, thereby creating a new one */
|
/* If there was none, push, thereby creating a new one */
|
||||||
if (i == -1)
|
if (i == -1)
|
||||||
i=sk_CRYPTO_dynlock_push(dyn_locks,pointer);
|
/* Since sk_push() returns the number of items on the
|
||||||
|
stack, not the location of the pushed item, we need
|
||||||
|
to transform the returned number into a position,
|
||||||
|
by decreasing it. */
|
||||||
|
i=sk_CRYPTO_dynlock_push(dyn_locks,pointer) - 1;
|
||||||
|
else
|
||||||
|
/* If we found a place with a NULL pointer, put our pointer
|
||||||
|
in it. */
|
||||||
|
sk_CRYPTO_dynlock_set(dyn_locks,i,pointer);
|
||||||
CRYPTO_w_unlock(CRYPTO_LOCK_DYNLOCK);
|
CRYPTO_w_unlock(CRYPTO_LOCK_DYNLOCK);
|
||||||
|
|
||||||
if (!i)
|
if (i == -1)
|
||||||
{
|
{
|
||||||
dynlock_destroy_callback(pointer->data,__FILE__,__LINE__);
|
dynlock_destroy_callback(pointer->data,__FILE__,__LINE__);
|
||||||
OPENSSL_free(pointer);
|
OPENSSL_free(pointer);
|
||||||
@@ -400,15 +410,17 @@ void CRYPTO_lock(int mode, int type, const char *file, int line)
|
|||||||
#endif
|
#endif
|
||||||
if (type < 0)
|
if (type < 0)
|
||||||
{
|
{
|
||||||
struct CRYPTO_dynlock_value *pointer
|
if (dynlock_lock_callback != NULL)
|
||||||
= CRYPTO_get_dynlock_value(type);
|
|
||||||
|
|
||||||
if (pointer && dynlock_lock_callback)
|
|
||||||
{
|
{
|
||||||
dynlock_lock_callback(mode, pointer, file, line);
|
struct CRYPTO_dynlock_value *pointer
|
||||||
}
|
= CRYPTO_get_dynlock_value(type);
|
||||||
|
|
||||||
CRYPTO_destroy_dynlockid(type);
|
assert(pointer != NULL);
|
||||||
|
|
||||||
|
dynlock_lock_callback(mode, pointer, file, line);
|
||||||
|
|
||||||
|
CRYPTO_destroy_dynlockid(type);
|
||||||
|
}
|
||||||
}
|
}
|
||||||
else
|
else
|
||||||
if (locking_callback != NULL)
|
if (locking_callback != NULL)
|
||||||
@@ -459,7 +471,7 @@ const char *CRYPTO_get_lock_name(int type)
|
|||||||
return("dynamic");
|
return("dynamic");
|
||||||
else if (type < CRYPTO_NUM_LOCKS)
|
else if (type < CRYPTO_NUM_LOCKS)
|
||||||
return(lock_names[type]);
|
return(lock_names[type]);
|
||||||
else if (type-CRYPTO_NUM_LOCKS >= sk_num(app_locks))
|
else if (type-CRYPTO_NUM_LOCKS > sk_num(app_locks))
|
||||||
return("ERROR");
|
return("ERROR");
|
||||||
else
|
else
|
||||||
return(sk_value(app_locks,type-CRYPTO_NUM_LOCKS));
|
return(sk_value(app_locks,type-CRYPTO_NUM_LOCKS));
|
||||||
@@ -491,3 +503,11 @@ BOOL WINAPI DLLEntryPoint(HINSTANCE hinstDLL, DWORD fdwReason,
|
|||||||
#endif
|
#endif
|
||||||
|
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
|
void OpenSSLDie(const char *file,int line,const char *assertion)
|
||||||
|
{
|
||||||
|
fprintf(stderr,"%s(%d): OpenSSL internal error, assertion failed: %s\n",
|
||||||
|
file,line,assertion);
|
||||||
|
abort();
|
||||||
|
}
|
||||||
|
|
||||||
|
@@ -89,6 +89,10 @@ extern "C" {
|
|||||||
#define X509_CERT_DIR_EVP "SSL_CERT_DIR"
|
#define X509_CERT_DIR_EVP "SSL_CERT_DIR"
|
||||||
#define X509_CERT_FILE_EVP "SSL_CERT_FILE"
|
#define X509_CERT_FILE_EVP "SSL_CERT_FILE"
|
||||||
|
|
||||||
|
/* size of string represenations */
|
||||||
|
#define DECIMAL_SIZE(type) ((sizeof(type)*8+2)/3+1)
|
||||||
|
#define HEX_SIZE(type) ((sizeof(type)*2)
|
||||||
|
|
||||||
#ifdef __cplusplus
|
#ifdef __cplusplus
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
@@ -174,7 +174,7 @@ $!
|
|||||||
$ APPS_DES = "DES/DES,CBC3_ENC"
|
$ APPS_DES = "DES/DES,CBC3_ENC"
|
||||||
$ APPS_PKCS7 = "ENC/ENC;DEC/DEC;SIGN/SIGN;VERIFY/VERIFY,EXAMPLE"
|
$ APPS_PKCS7 = "ENC/ENC;DEC/DEC;SIGN/SIGN;VERIFY/VERIFY,EXAMPLE"
|
||||||
$
|
$
|
||||||
$ LIB_ = "cryptlib,mem,mem_dbg,cversion,ex_data,tmdiff,cpt_err,ebcdic,uid"
|
$ LIB_ = "cryptlib,mem,mem_clr,mem_dbg,cversion,ex_data,tmdiff,cpt_err,ebcdic,uid"
|
||||||
$ LIB_MD2 = "md2_dgst,md2_one"
|
$ LIB_MD2 = "md2_dgst,md2_one"
|
||||||
$ LIB_MD4 = "md4_dgst,md4_one"
|
$ LIB_MD4 = "md4_dgst,md4_one"
|
||||||
$ LIB_MD5 = "md5_dgst,md5_one"
|
$ LIB_MD5 = "md5_dgst,md5_one"
|
||||||
@@ -626,6 +626,7 @@ $ WRITE SYS$OUTPUT " ",APPLICATION,".exe"
|
|||||||
$!
|
$!
|
||||||
$! Link The Program, Check To See If We Need To Link With RSAREF Or Not.
|
$! Link The Program, Check To See If We Need To Link With RSAREF Or Not.
|
||||||
$!
|
$!
|
||||||
|
$ ON ERROR THEN GOTO NEXT_APPLICATION
|
||||||
$ IF (RSAREF.EQS."TRUE")
|
$ IF (RSAREF.EQS."TRUE")
|
||||||
$ THEN
|
$ THEN
|
||||||
$!
|
$!
|
||||||
@@ -1141,7 +1142,7 @@ $ ENDIF
|
|||||||
$!
|
$!
|
||||||
$! Set Up Initial CC Definitions, Possibly With User Ones
|
$! Set Up Initial CC Definitions, Possibly With User Ones
|
||||||
$!
|
$!
|
||||||
$ CCDEFS = "VMS=1,TCPIP_TYPE_''P5',DSO_VMS"
|
$ CCDEFS = "VMS=1,TCPIP_TYPE_''P5',DSO_VMS,THREADS"
|
||||||
$ IF F$TRNLNM("OPENSSL_NO_ASM") THEN CCDEFS = CCDEFS + ",NO_ASM"
|
$ IF F$TRNLNM("OPENSSL_NO_ASM") THEN CCDEFS = CCDEFS + ",NO_ASM"
|
||||||
$ IF F$TRNLNM("OPENSSL_NO_RSA") THEN CCDEFS = CCDEFS + ",NO_RSA"
|
$ IF F$TRNLNM("OPENSSL_NO_RSA") THEN CCDEFS = CCDEFS + ",NO_RSA"
|
||||||
$ IF F$TRNLNM("OPENSSL_NO_DSA") THEN CCDEFS = CCDEFS + ",NO_DSA"
|
$ IF F$TRNLNM("OPENSSL_NO_DSA") THEN CCDEFS = CCDEFS + ",NO_DSA"
|
||||||
@@ -1332,7 +1333,7 @@ $ CC4 = CC - CCDISABLEWARNINGS + CC4DISABLEWARNINGS
|
|||||||
$!
|
$!
|
||||||
$! Show user the result
|
$! Show user the result
|
||||||
$!
|
$!
|
||||||
$ WRITE SYS$OUTPUT "Main C Compiling Command: ",CC
|
$ WRITE/SYMBOL SYS$OUTPUT "Main C Compiling Command: ",CC
|
||||||
$!
|
$!
|
||||||
$! Else The User Entered An Invalid Arguement.
|
$! Else The User Entered An Invalid Arguement.
|
||||||
$!
|
$!
|
||||||
@@ -1363,7 +1364,7 @@ $ IF ARCH .EQS. "AXP" THEN MACRO = "MACRO/MIGRATION/''DEBUGGER'/''MACRO_OPTIMIZE
|
|||||||
$!
|
$!
|
||||||
$! Show user the result
|
$! Show user the result
|
||||||
$!
|
$!
|
||||||
$ WRITE SYS$OUTPUT "Main MACRO Compiling Command: ",MACRO
|
$ WRITE/SYMBOL SYS$OUTPUT "Main MACRO Compiling Command: ",MACRO
|
||||||
$!
|
$!
|
||||||
$! Time to check the contents, and to make sure we get the correct library.
|
$! Time to check the contents, and to make sure we get the correct library.
|
||||||
$!
|
$!
|
||||||
|
@@ -95,36 +95,39 @@ extern "C" {
|
|||||||
* names in cryptlib.c
|
* names in cryptlib.c
|
||||||
*/
|
*/
|
||||||
|
|
||||||
#define CRYPTO_LOCK_ERR 1
|
#define CRYPTO_LOCK_ERR 1
|
||||||
#define CRYPTO_LOCK_ERR_HASH 2
|
#define CRYPTO_LOCK_ERR_HASH 2
|
||||||
#define CRYPTO_LOCK_X509 3
|
#define CRYPTO_LOCK_X509 3
|
||||||
#define CRYPTO_LOCK_X509_INFO 4
|
#define CRYPTO_LOCK_X509_INFO 4
|
||||||
#define CRYPTO_LOCK_X509_PKEY 5
|
#define CRYPTO_LOCK_X509_PKEY 5
|
||||||
#define CRYPTO_LOCK_X509_CRL 6
|
#define CRYPTO_LOCK_X509_CRL 6
|
||||||
#define CRYPTO_LOCK_X509_REQ 7
|
#define CRYPTO_LOCK_X509_REQ 7
|
||||||
#define CRYPTO_LOCK_DSA 8
|
#define CRYPTO_LOCK_DSA 8
|
||||||
#define CRYPTO_LOCK_RSA 9
|
#define CRYPTO_LOCK_RSA 9
|
||||||
#define CRYPTO_LOCK_EVP_PKEY 10
|
#define CRYPTO_LOCK_EVP_PKEY 10
|
||||||
#define CRYPTO_LOCK_X509_STORE 11
|
#define CRYPTO_LOCK_X509_STORE 11
|
||||||
#define CRYPTO_LOCK_SSL_CTX 12
|
#define CRYPTO_LOCK_SSL_CTX 12
|
||||||
#define CRYPTO_LOCK_SSL_CERT 13
|
#define CRYPTO_LOCK_SSL_CERT 13
|
||||||
#define CRYPTO_LOCK_SSL_SESSION 14
|
#define CRYPTO_LOCK_SSL_SESSION 14
|
||||||
#define CRYPTO_LOCK_SSL_SESS_CERT 15
|
#define CRYPTO_LOCK_SSL_SESS_CERT 15
|
||||||
#define CRYPTO_LOCK_SSL 16
|
#define CRYPTO_LOCK_SSL 16
|
||||||
#define CRYPTO_LOCK_RAND 17
|
/* for binary compatibility between 0.9.6 minor versions,
|
||||||
#define CRYPTO_LOCK_RAND2 18
|
* reuse an existing lock (later version use a new one): */
|
||||||
#define CRYPTO_LOCK_MALLOC 19
|
# define CRYPTO_LOCK_SSL_METHOD CRYPTO_LOCK_SSL_CTX
|
||||||
#define CRYPTO_LOCK_BIO 20
|
#define CRYPTO_LOCK_RAND 17
|
||||||
#define CRYPTO_LOCK_GETHOSTBYNAME 21
|
#define CRYPTO_LOCK_RAND2 18
|
||||||
#define CRYPTO_LOCK_GETSERVBYNAME 22
|
#define CRYPTO_LOCK_MALLOC 19
|
||||||
#define CRYPTO_LOCK_READDIR 23
|
#define CRYPTO_LOCK_BIO 20
|
||||||
#define CRYPTO_LOCK_RSA_BLINDING 24
|
#define CRYPTO_LOCK_GETHOSTBYNAME 21
|
||||||
#define CRYPTO_LOCK_DH 25
|
#define CRYPTO_LOCK_GETSERVBYNAME 22
|
||||||
#define CRYPTO_LOCK_MALLOC2 26
|
#define CRYPTO_LOCK_READDIR 23
|
||||||
#define CRYPTO_LOCK_DSO 27
|
#define CRYPTO_LOCK_RSA_BLINDING 24
|
||||||
#define CRYPTO_LOCK_DYNLOCK 28
|
#define CRYPTO_LOCK_DH 25
|
||||||
#define CRYPTO_LOCK_ENGINE 29
|
#define CRYPTO_LOCK_MALLOC2 26
|
||||||
#define CRYPTO_NUM_LOCKS 30
|
#define CRYPTO_LOCK_DSO 27
|
||||||
|
#define CRYPTO_LOCK_DYNLOCK 28
|
||||||
|
#define CRYPTO_LOCK_ENGINE 29
|
||||||
|
#define CRYPTO_NUM_LOCKS 30
|
||||||
|
|
||||||
#define CRYPTO_LOCK 1
|
#define CRYPTO_LOCK 1
|
||||||
#define CRYPTO_UNLOCK 2
|
#define CRYPTO_UNLOCK 2
|
||||||
@@ -146,7 +149,7 @@ extern "C" {
|
|||||||
#endif
|
#endif
|
||||||
#else
|
#else
|
||||||
#define CRYPTO_w_lock(a)
|
#define CRYPTO_w_lock(a)
|
||||||
#define CRYPTO_w_unlock(a)
|
#define CRYPTO_w_unlock(a)
|
||||||
#define CRYPTO_r_lock(a)
|
#define CRYPTO_r_lock(a)
|
||||||
#define CRYPTO_r_unlock(a)
|
#define CRYPTO_r_unlock(a)
|
||||||
#define CRYPTO_add(a,b,c) ((*(a))+=(b))
|
#define CRYPTO_add(a,b,c) ((*(a))+=(b))
|
||||||
@@ -343,6 +346,8 @@ void CRYPTO_free(void *);
|
|||||||
void *CRYPTO_realloc(void *addr,int num, const char *file, int line);
|
void *CRYPTO_realloc(void *addr,int num, const char *file, int line);
|
||||||
void *CRYPTO_remalloc(void *addr,int num, const char *file, int line);
|
void *CRYPTO_remalloc(void *addr,int num, const char *file, int line);
|
||||||
|
|
||||||
|
void OPENSSL_cleanse(void *ptr, size_t len);
|
||||||
|
|
||||||
void CRYPTO_set_mem_debug_options(long bits);
|
void CRYPTO_set_mem_debug_options(long bits);
|
||||||
long CRYPTO_get_mem_debug_options(void);
|
long CRYPTO_get_mem_debug_options(void);
|
||||||
|
|
||||||
|
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user