Steve Marquess 
							
						 
					 
					
						
						
							
						
						1278ce48a5 
					 
					
						
						
							
							Add target for i686 cross compilation  
						
						 
						
						... 
						
						
						
						Reviewed-by: Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2016-02-15 10:26:20 -05:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Steve Marquess 
							
						 
					 
					
						
						
							
						
						a0f8d282d7 
					 
					
						
						
							
							Add new iOS subdirectory  
						
						 
						
						... 
						
						
						
						Reviewed-by: Rich Salz <rsalz@openssl.org >
Reviewed-by: Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-07-04 15:18:46 -04:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0f38e9cd78 
					 
					
						
						
							
							Add new VxWorks x86 platform  
						
						 
						
						... 
						
						
						
						Reviewed-by: Rich Salz <rsalz@openssl.org >
Reviewed-by: Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-07-04 15:17:45 -04:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34f39b062c 
					 
					
						
						
							
							util/incore update that allows FINGERPRINT_premain-free build.  
						
						 
						
						... 
						
						
						
						As for complementary fips.c modification. Goal is to ensure that
FIPS_signature does not end up in .bss segment, one guaranteed to
be zeroed upon program start-up. One would expect explicitly
initialized values to end up in .data segment, but it turned out
that values explicitly initialized with zeros can end up in .bss.
The modification does not affect program flow, because first byte
was the only one of significance [to FINGERPRINT_premain].
Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:48:08 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6db8e3bdc9 
					 
					
						
						
							
							Add support for Android 5, both 32- and 64-bit cases.  
						
						 
						
						... 
						
						
						
						Special note about additional -pie flag in android-armv7. The initial
reason for adding it is that Android 5 refuses to execute non-PIE
binaries. But what about older systems and previously validated
platforms? It should be noted that flag is not used when compiling
object code, fipscanister.o in this context, only when linking
applications, *supplementary* fips_algvs used during validation
procedure.
Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:47:55 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						50e2a0ea46 
					 
					
						
						
							
							Additional vxWorks target.  
						
						 
						
						... 
						
						
						
						Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:47:43 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3f137e6f1d 
					 
					
						
						
							
							fipsalgtest.pl update.  
						
						 
						
						... 
						
						
						
						Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:47:32 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						97fbb0c88c 
					 
					
						
						
							
							Configure: add ios-cross target with ARM assembly support.  
						
						 
						
						... 
						
						
						
						Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:47:21 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5837e90f08 
					 
					
						
						
							
							Add iOS-specific armv4cpud.S module.  
						
						 
						
						... 
						
						
						
						Normally it would be generated from a perlasm module, but doing so
would affect existing armv4cpuid.S, which in turn would formally void
previously validated platforms. Hense separate module is generated.
Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:47:10 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						874faf2ffb 
					 
					
						
						
							
							Adapt ARM assembly pack for iOS.  
						
						 
						
						... 
						
						
						
						This is achieved by filtering perlasm output through arm-xlate.pl. But note
that it's done only if "flavour" argument is not 'void'. As 'void' is
default value for other ARM targets, permasm output is not actually
filtered on previously validated platforms.
Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:46:58 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0b45df73d2 
					 
					
						
						
							
							crypto/modes/modes_lcl.h: let STRICT_ALIGNMENT be on iOS.  
						
						 
						
						... 
						
						
						
						While ARMv7 in general is capable of unaligned access, not all instructions
actually are. And trouble is that compiler doesn't seem to differentiate
those capable and incapable of unaligned access. As result exceptions could
be observed in xts128.c and ccm128.c modules. Contemporary Linux kernels
handle such exceptions by performing requested operation and resuming
execution as is if it succeeded. While on iOS exception is fatal.
Correct solution is to let STRICT_ALIGNMENT be on all ARM platforms,
but doing so is in formal conflict with FIPS maintenance policy.
Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:46:44 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2bd3976ed0 
					 
					
						
						
							
							Add iOS-specific fips_algvs application.  
						
						 
						
						... 
						
						
						
						Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:46:26 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c6d109051d 
					 
					
						
						
							
							Configure: engage ARMv8 assembly pack in ios64-cross target.  
						
						 
						
						... 
						
						
						
						Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:45:50 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						083ed53def 
					 
					
						
						
							
							Engage ARMv8 assembly pack.  
						
						 
						
						... 
						
						
						
						Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:45:07 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b84813ec01 
					 
					
						
						
							
							Add ARMv8 assembly pack.  
						
						 
						
						... 
						
						
						
						Reviewed-by: Dr. Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2015-05-13 16:43:25 +02:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7447e65fcc 
					 
					
						
						
							
							support for iOS 7.x/ARMv8  
						
						 
						
						... 
						
						
						
						Reviewed-by: Tim Hudson <tjh@openssl.org >
Reviewed-by: Steve Marquess <marquess@openssl.org  
						
						
					 
					
						2014-10-24 20:41:49 +01:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						60cd2b7206 
					 
					
						
						
							
							Update fipsalgtest.pl to cope with changes in file names and format  
						
						 
						
						... 
						
						
						
						X9.31 tests need to look in files for '9.31'
RSA-PSS tests may contain additonal text as well as "salt len: n".
We now just look at the start of a filename for a match.
Separate ECDSA2 test list.
Reorder test to handle new formats: for example PQGVer for DSA2 can be
detected based on file format but if this fails revert to PQGVER.
For future debugging add a --debug-detect option which prints out more
details of the test detection including the first few lines of each
request file.
Reviewed-by: Tim Hudson <tjh@openssl.org >
Reviewed-by: Steve Marquess <marquess@openssl.org  
						
						
					 
					
						2014-10-24 20:32:27 +01:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7fb7844f3b 
					 
					
						
						
							
							Remove Dual EC DRBG again...  
						
						 
						
						... 
						
						
						
						Dual EC DRBG removal now accepted for 2.0.8 onwards. 
						
						
					 
					
						2014-07-11 19:14:15 +01:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						005563bbce 
					 
					
						
						
							
							Add linux-x86_64-cross target.  
						
						 
						
						
						
						
					 
					
						2014-05-12 18:38:41 +01:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b43568d5b 
					 
					
						
						
							
							Revert "Remove Dual EC DRBG from FIPS module."  
						
						 
						
						... 
						
						
						
						Revert Dual EC DRBG removal commit as it was not accepted for 2.0.7
version of the module.
This reverts commit 200f249b8c . 
						
						
					 
					
						2014-05-12 18:35:30 +01:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2659a2aa7c 
					 
					
						
						
							
							QNX6-armv4 support.  
						
						 
						
						
						
						
					 
					
						2013-12-16 21:41:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						200f249b8c 
					 
					
						
						
							
							Remove Dual EC DRBG from FIPS module.  
						
						 
						
						
						
						
					 
					
						2013-12-16 19:00:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4089bd6080 
					 
					
						
						
							
							eCos ARMv4/5 support  
						
						 
						
						
						
						
					 
					
						2013-12-16 14:29:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						baab0cf780 
					 
					
						
						
							
							sha1-armv4-large.pl: comply with ABI.  
						
						 
						
						... 
						
						
						
						(cherry picked from commit 1a9d60d2e3 ) 
						
						
					 
					
						2013-12-16 14:08:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e98d95f56 
					 
					
						
						
							
							Don't require tag before ciphertext in AESGCM mode  
						
						 
						
						... 
						
						
						
						(cherry picked from commit 964eaad78c ) 
						
						
					 
					
						2013-12-16 14:08:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b0ee17ad47 
					 
					
						
						
							
							Add MIPS support.  
						
						 
						
						
						
						
					 
					
						2013-12-16 14:07:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f6c4c1896 
					 
					
						
						
							
							Support for WinEC7.  
						
						 
						
						
						
						
					 
					
						2013-04-10 15:38:24 +01:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2d183e4c44 
					 
					
						
						
							
							Add BSD-ppc85xx support and avoid copying overlapping buffers in fips_dssvs.c  
						
						 
						
						
						
						
					 
					
						2012-10-14 12:02:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7049d13c5f 
					 
					
						
						
							
							update CHANGES  
						
						 
						
						
						
						
					 
					
						2012-10-04 14:10:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c616200172 
					 
					
						
						
							
							Add support for Windows CE and C64+ to FIPS module.  
						
						 
						
						
						
						
					 
					
						2012-10-04 13:27:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7b899c10cd 
					 
					
						
						
							
							file msincore was added on branch OpenSSL-fips-2_0-stable on 2012-10-04 13:27:10 +0000  
						
						 
						
						
						
						
					 
					
						2012-05-23 17:07:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b2e340bdd 
					 
					
						
						
							
							file hmac_sha1.pl was added on branch OpenSSL-fips-2_0-stable on 2012-10-04 13:27:10 +0000  
						
						 
						
						
						
						
					 
					
						2012-05-23 17:07:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1de6a62222 
					 
					
						
						
							
							revert fipslink.pl unlink retry change  
						
						 
						
						
						
						
					 
					
						2012-01-18 15:07:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac381944ac 
					 
					
						
						
							
							give a hand old assemblers assembling loop instruction. (original by Andy)  
						
						 
						
						
						
						
					 
					
						2012-01-18 14:54:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						24fadf2a20 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2012-01-03 19:43:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						409abd2fec 
					 
					
						
						
							
							Prepare RC8  
						
						 
						
						
						
						
					 
					
						2012-01-03 14:23:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						421de62232 
					 
					
						
						
							
							unlink target and retry to avoid intermittent Win32 failures  
						
						 
						
						
						
						
					 
					
						2012-01-03 14:22:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c567812fa6 
					 
					
						
						
							
							set version to rc8-dev  
						
						 
						
						
						
						
					 
					
						2011-12-12 14:02:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49dbcbaa4b 
					 
					
						
						
							
							Prepare for RC7.  
						
						 
						
						
						
						
					 
					
						2011-12-12 13:44:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df0884ffb7 
					 
					
						
						
							
							Retry rename operation with a slight delay to workaround problems on  
						
						 
						
						... 
						
						
						
						some versions of Windows. 
						
						
					 
					
						2011-12-10 18:06:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e480d5553 
					 
					
						
						
							
							use different names for asm temp files to avoid problems on some platforms  
						
						 
						
						
						
						
					 
					
						2011-12-10 13:29:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c0d30038f 
					 
					
						
						
							
							Close file streams in FIPS algorithm test utilities.  
						
						 
						
						
						
						
					 
					
						2011-12-08 15:14:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81fc8cd029 
					 
					
						
						
							
							prepare for RC6  
						
						 
						
						
						
						
					 
					
						2011-12-04 21:29:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d235039d6 
					 
					
						
						
							
							For FIPS builds we don't use the normal test files (and in the restricted  
						
						 
						
						... 
						
						
						
						tarball some don't exist) so set TEST='' to avoid linking to them. This also
avoids problems on platforms that copy instead of symlink. 
						
						
					 
					
						2011-12-04 15:26:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						58886fdefc 
					 
					
						
						
							
							use BUILD_ONE_CMD for fips specific links otherwise we effectively do 'make links' twice  
						
						 
						
						
						
						
					 
					
						2011-12-04 15:14:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						61c3085d47 
					 
					
						
						
							
							Workaround for VxWorks  
						
						 
						
						
						
						
					 
					
						2011-12-04 15:11:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						32b56fe4d2 
					 
					
						
						
							
							avoid use of symlinks on Windows: it causes problems on some build environments  
						
						 
						
						
						
						
					 
					
						2011-12-04 15:04:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						efd031abca 
					 
					
						
						
							
							Fix x86cpuid so it doesn't fail for some (currently theoretical) virtual  
						
						 
						
						... 
						
						
						
						machines. 
						
						
					 
					
						2011-12-03 21:47:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd4eefdb7b 
					 
					
						
						
							
							Change EVP_MAXCHUNK so it doesn't wraparound to 0 on some platforms (IP32L64).  
						
						 
						
						
						
						
					 
					
						2011-12-03 21:44:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fcd3e8e97b 
					 
					
						
						
							
							Prepare for RC6.  
						
						 
						
						
						
						
					 
					
						2011-12-03 19:51:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						476e7e4972 
					 
					
						
						
							
							Add tests to ensure ECDSA key gen and DSA signing fails if DRBG  
						
						 
						
						... 
						
						
						
						entropy source fails. 
						
						
					 
					
						2011-12-03 19:41:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e900f3cef 
					 
					
						
						
							
							functions aren't unused: revert  
						
						 
						
						
						
						
					 
					
						2011-12-03 19:19:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75b250a4ed 
					 
					
						
						
							
							remove unused functions from module  
						
						 
						
						
						
						
					 
					
						2011-12-03 18:27:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						44cb365eaf 
					 
					
						
						
							
							bn/asm/mips.pl: fix typos [from HEAD], original by Andy  
						
						 
						
						
						
						
					 
					
						2011-12-03 18:26:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9bd2dde42f 
					 
					
						
						
							
							prepare for rc5  
						
						 
						
						
						
						
					 
					
						2011-11-25 16:27:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31bf5f13e0 
					 
					
						
						
							
							return error if counter exceeds limit and seed value supplied  
						
						 
						
						
						
						
					 
					
						2011-11-25 16:03:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7dcdc0d94d 
					 
					
						
						
							
							check counter value against 4 * L, not 4096  
						
						 
						
						
						
						
					 
					
						2011-11-25 15:00:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ecd287acc 
					 
					
						
						
							
							bump version for rc5-dev: hopefully will never be needed...  
						
						 
						
						
						
						
					 
					
						2011-11-21 00:05:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e508c12e0 
					 
					
						
						
							
							prepare for rc4  
						
						 
						
						
						
						
					 
					
						2011-11-19 17:04:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f6385248f6 
					 
					
						
						
							
							Add flag to support cofactor ECDH  
						
						 
						
						
						
						
					 
					
						2011-11-19 17:03:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52876c3100 
					 
					
						
						
							
							bump version to rc4-dev  
						
						 
						
						
						
						
					 
					
						2011-11-18 21:59:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c08128acc2 
					 
					
						
						
							
							prepare for RC3  
						
						 
						
						
						
						
					 
					
						2011-11-18 18:50:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						901b9b5c36 
					 
					
						
						
							
							In EC_KEY_set_public_key_affine_coordinates include explicit check to see passed components do not exceed field order  
						
						 
						
						
						
						
					 
					
						2011-11-16 13:28:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9eca2399f1 
					 
					
						
						
							
							portability fix for some perl versions  
						
						 
						
						
						
						
					 
					
						2011-11-11 19:01:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b4fb53221 
					 
					
						
						
							
							fclose streams in fips_drbvs.c  
						
						 
						
						... 
						
						
						
						Produced error message for unsupported curves in fips_ecdhvs.c 
						
						
					 
					
						2011-11-09 14:23:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7437036cdf 
					 
					
						
						
							
							Prepare for RC3 (which may never happen).  
						
						 
						
						
						
						
					 
					
						2011-11-08 19:08:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ffa76736fa 
					 
					
						
						
							
							Platform update from HEAD.  
						
						 
						
						
						
						
					 
					
						2011-11-08 14:44:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cbed6cfcaa 
					 
					
						
						
							
							add fips_algvs.c to restricted tarball  
						
						 
						
						
						
						
					 
					
						2011-11-07 13:54:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be6dc7e56b 
					 
					
						
						
							
							Prepare for RC2  
						
						 
						
						
						
						
					 
					
						2011-11-07 13:18:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb25a72881 
					 
					
						
						
							
							MacOS and iOS support  
						
						 
						
						
						
						
					 
					
						2011-11-07 13:16:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1562ce17cb 
					 
					
						
						
							
							fipsld, incore: switch to new cross-compile support [from HEAD].  
						
						 
						
						
						
						
					 
					
						2011-11-07 00:22:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						68b2f55b90 
					 
					
						
						
							
							e_aes.c: fold aesni_xts_cipher and [most importantly] fix aes_xts_cipher's  
						
						 
						
						... 
						
						
						
						return value after custom flag was rightly reverted [from HEAD]. 
						
						
					 
					
						2011-11-06 19:49:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						79f2c9d1cd 
					 
					
						
						
							
							check for unset entropy and nonce callbacks  
						
						 
						
						
						
						
					 
					
						2011-11-06 13:08:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8a794abd9d 
					 
					
						
						
							
							Update fips_test_suite to take multiple command line options and  
						
						 
						
						... 
						
						
						
						an induced error checking function. 
						
						
					 
					
						2011-11-06 12:52:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						03eae35352 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-11-05 18:25:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df64f34e84 
					 
					
						
						
							
							make post failure simulation reversible in all cases  
						
						 
						
						
						
						
					 
					
						2011-11-05 18:15:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						21a5cb2696 
					 
					
						
						
							
							typo: use key for POST callback  
						
						 
						
						
						
						
					 
					
						2011-11-05 18:11:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						01fc2c1598 
					 
					
						
						
							
							fix set but unused warnings  
						
						 
						
						
						
						
					 
					
						2011-11-05 18:04:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						04c8062636 
					 
					
						
						
							
							armv4cpuid.S, armv4-gf2m.pl: make newest code compilable by older assembler [from HEAD].  
						
						 
						
						
						
						
					 
					
						2011-11-05 13:57:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6fcc2bbce8 
					 
					
						
						
							
							x86cpuid.pl: don't punish "last-year" OSes on "this-year" CPUs [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 2633 
						
						
					 
					
						2011-11-05 13:56:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f2b0cf9178 
					 
					
						
						
							
							ppc.pl: fix bug in bn_mul_comba4 [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 2636
Submitted by: Charles Bryant 
						
						
					 
					
						2011-11-05 13:55:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						485ef852ac 
					 
					
						
						
							
							Add single call public key sign and verify functions.  
						
						 
						
						
						
						
					 
					
						2011-11-05 01:32:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7de76b74d 
					 
					
						
						
							
							Add support for memory leak checking in fips_algvs.  
						
						 
						
						... 
						
						
						
						Fix many memory leaks in algorithm test utilities. 
						
						
					 
					
						2011-11-02 19:16:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8ab0d50c43 
					 
					
						
						
							
							Remove duplicate test from health check. Fix memory leaks by uninstantiating  
						
						 
						
						... 
						
						
						
						DRBG before reinitialising it. 
						
						
					 
					
						2011-11-02 16:35:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb47a7107f 
					 
					
						
						
							
							Print out an error for "make test" in FIPS builds.  
						
						 
						
						
						
						
					 
					
						2011-11-02 00:43:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d5939062d7 
					 
					
						
						
							
							Replace exit calls with return in fips_test_suite  
						
						 
						
						
						
						
					 
					
						2011-11-02 00:07:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8b8096d082 
					 
					
						
						
							
							Add support for multicall fips_algvs utility combining functionality  
						
						 
						
						... 
						
						
						
						of all fips test utilities in a single binary and some minimal script
parsing for platforms lacking a suitable shell.
In order to keep changes to the build system to a minimum it #includes all
the utilities C source files (yuck). 
						
						
					 
					
						2011-11-01 13:45:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ab6d6813e 
					 
					
						
						
							
							PR: 2632  
						
						 
						
						... 
						
						
						
						Submitted by: emmanuel.azencot@bull.net 
Reviewed by: steve
Return -1 immediately if not affine coordinates as BN_CTX has not been
set up. 
						
						
					 
					
						2011-10-26 16:46:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45e5f551ac 
					 
					
						
						
							
							Prepare for RC2.  
						
						 
						
						
						
						
					 
					
						2011-10-24 16:58:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						51035e733c 
					 
					
						
						
							
							prepare for RC1  
						
						 
						
						
						
						
					 
					
						2011-10-24 16:53:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						319c7264b0 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-10-24 13:24:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						0684e77866 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch 'OpenSSL-fips-  
						
						 
						
						... 
						
						
						
						2_0-stable'. 
						
						
					 
					
						2011-10-24 06:00:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f2784994ec 
					 
					
						
						
							
							e_aes.c: fold even aesni_ccm_cipher.  
						
						 
						
						
						
						
					 
					
						2011-10-24 06:00:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						507b0d9d38 
					 
					
						
						
							
							e_aes.c: prevent potential DoS in aes_gcm_tls_cipher.  
						
						 
						
						
						
						
					 
					
						2011-10-23 22:58:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						181fbb77f3 
					 
					
						
						
							
							cryptlib.c: remove stdio dependency in Windows fipscanister.lib.  
						
						 
						
						
						
						
					 
					
						2011-10-23 19:41:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f59a5d6079 
					 
					
						
						
							
							No need for custom flag in XTS mode: block length is 1.  
						
						 
						
						
						
						
					 
					
						2011-10-23 17:06:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						005cdace99 
					 
					
						
						
							
							fips_canister.c: harmonize fingerprinting for all Windows, CE or not.  
						
						 
						
						
						
						
					 
					
						2011-10-23 15:17:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8b8d2dccf1 
					 
					
						
						
							
							config: in cross-compile case interrogate cross-compiler, not host, work  
						
						 
						
						... 
						
						
						
						around sub-shell limitation. 
						
						
					 
					
						2011-10-23 15:12:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5fd722600b 
					 
					
						
						
							
							Check for selftest failure in various places.  
						
						 
						
						
						
						
					 
					
						2011-10-22 17:24:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5b198d5eea 
					 
					
						
						
							
							x86gas.pl: relax .init segment alignment.  
						
						 
						
						
						
						
					 
					
						2011-10-22 10:49:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						16190a71ff 
					 
					
						
						
							
							mk1mk.pl: cleanup engines' handling and make fips build work on WIN64I.  
						
						 
						
						
						
						
					 
					
						2011-10-21 19:34:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d742dd561 
					 
					
						
						
							
							Update error codes.  
						
						 
						
						
						
						
					 
					
						2011-10-21 11:46:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0cde099f86 
					 
					
						
						
							
							fips.c: remove preprocessor artefact.  
						
						 
						
						
						
						
					 
					
						2011-10-21 06:03:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dfe9a47519 
					 
					
						
						
							
							fix (?) AVX clearing  
						
						 
						
						
						
						
					 
					
						2011-10-21 01:57:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						af4bfa151c 
					 
					
						
						
							
							Check for uninitialised DRBG_CTX and don't free up default DRBG_CTX.  
						
						 
						
						
						
						
					 
					
						2011-10-21 00:12:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b5930442d 
					 
					
						
						
							
							fips.c: x86[_64] capability masking.  
						
						 
						
						
						
						
					 
					
						2011-10-20 21:03:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						033a25cef5 
					 
					
						
						
							
							armcap.c: auto-setup processor capability vector.  
						
						 
						
						
						
						
					 
					
						2011-10-20 20:52:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43760a2cf0 
					 
					
						
						
							
							Fix error codes.  
						
						 
						
						
						
						
					 
					
						2011-10-20 13:56:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5f132a0356 
					 
					
						
						
							
							fips/fips_[canister|premain].c: make it work with VC6 and add sentinels  
						
						 
						
						... 
						
						
						
						even to code segments. 
						
						
					 
					
						2011-10-20 12:09:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d528caa725 
					 
					
						
						
							
							sha1-mips.pl: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-10-20 08:39:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d22870bc00 
					 
					
						
						
							
							Drain unused MacOS directory.  
						
						 
						
						
						
						
					 
					
						2011-10-20 08:28:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ff2999e88 
					 
					
						
						
							
							Add "nopass" for empty password too.  
						
						 
						
						
						
						
					 
					
						2011-10-19 23:23:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e4eb9954b 
					 
					
						
						
							
							add authentication parameter to FIPS_module_mode_set  
						
						 
						
						
						
						
					 
					
						2011-10-19 22:34:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						227a822ab6 
					 
					
						
						
							
							vxworks-mips: unify and add assembler.  
						
						 
						
						
						
						
					 
					
						2011-10-19 21:49:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a9cf0b81fa 
					 
					
						
						
							
							Remove superseded MIPS assembler modules.  
						
						 
						
						
						
						
					 
					
						2011-10-19 21:42:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						552e412abc 
					 
					
						
						
							
							fips_canister.c: more cross-compiler platfroms verified.  
						
						 
						
						
						
						
					 
					
						2011-10-19 21:05:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ee4d41fe1 
					 
					
						
						
							
							arm_arch.h: add missing pre-defined macro, __ARM_ARCH_5TEJ__.  
						
						 
						
						
						
						
					 
					
						2011-10-19 18:57:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f391750205 
					 
					
						
						
							
							"make update" (partial)  
						
						 
						
						
						
						
					 
					
						2011-10-19 15:29:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e5641d7f05 
					 
					
						
						
							
							BN_BLINDING multi-threading fix.  
						
						 
						
						... 
						
						
						
						Submitted by: Emilia Kasper (Google) 
						
						
					 
					
						2011-10-19 14:59:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d4c65835d 
					 
					
						
						
							
							Typo (?)  
						
						 
						
						
						
						
					 
					
						2011-10-19 12:05:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0a7fcce8df 
					 
					
						
						
							
							Build fipscanister.o only by default. Utility build now needs  
						
						 
						
						... 
						
						
						
						make build_tests 
						
						
					 
					
						2011-10-19 11:47:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b0ac883d0 
					 
					
						
						
							
							Recognise new option.  
						
						 
						
						
						
						
					 
					
						2011-10-19 11:44:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7d8bb91233 
					 
					
						
						
							
							Fix indentation  
						
						 
						
						
						
						
					 
					
						2011-10-19 09:24:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e0d6132b8c 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						... 
						
						
						
						Also, use the common Configure mechanism for enabling/disabling the 64-bit ECC code. 
						
						
					 
					
						2011-10-19 08:59:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e3fed9f41e 
					 
					
						
						
							
							Update premain fingerprint.  
						
						 
						
						
						
						
					 
					
						2011-10-18 22:11:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3e00b4c9db 
					 
					
						
						
							
							Improve optional 64-bit NIST-P224 implementation, and add NIST-P256 and  
						
						 
						
						... 
						
						
						
						NIST-P521. (Now -DEC_NISTP_64_GCC_128 enables all three of these;
-DEC_NISTP224_64_GCC_128 no longer works.)
Submitted by: Google Inc. 
						
						
					 
					
						2011-10-18 19:43:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c3a7a0263 
					 
					
						
						
							
							fipssyms.h: assign alias to newly introduced bn_gather5.  
						
						 
						
						
						
						
					 
					
						2011-10-18 18:59:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						10db9f9f48 
					 
					
						
						
							
							fips/*: extend fipsro segmenting to all _MSC_VER builds (including WinCE).  
						
						 
						
						
						
						
					 
					
						2011-10-18 18:56:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9f0d2e1464 
					 
					
						
						
							
							fips_enc.c: assign minimal block size to bad_cipher [to avoid arithmetic  
						
						 
						
						... 
						
						
						
						exceptions in TLS layer]. 
						
						
					 
					
						2011-10-18 18:52:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5d77cdc591 
					 
					
						
						
							
							engines/.cvsignore: stop whining about e_padlock-*.s.  
						
						 
						
						
						
						
					 
					
						2011-10-18 13:39:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						07904e0c6c 
					 
					
						
						
							
							evp/e_aes.c: fold AES-NI modes that heavily rely on indirect calls  
						
						 
						
						... 
						
						
						
						(trade 2% small-block performance), engage bit-sliced AES in GCM. 
						
						
					 
					
						2011-10-18 13:37:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4010b341b7 
					 
					
						
						
							
							x86_64-xlate.pl: make vpaes-x86_64.pl and rc4-md5-x86_64 work with ml64,  
						
						 
						
						... 
						
						
						
						fix bug in .crt section alignment.
PR: 2620, 2624 
						
						
					 
					
						2011-10-18 09:50:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5a326467dc 
					 
					
						
						
							
							bsaes-x86_64.pl: make it work with ml64.  
						
						 
						
						
						
						
					 
					
						2011-10-18 09:22:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b7c14bb90 
					 
					
						
						
							
							[bs|vp]aes-x86[_64].pl: typos and clarifications.  
						
						 
						
						
						
						
					 
					
						2011-10-18 08:03:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e2473dcc7d 
					 
					
						
						
							
							c_allc.c: add aes-xts to loop.  
						
						 
						
						
						
						
					 
					
						2011-10-18 07:53:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1db4a63bc3 
					 
					
						
						
							
							Do global replace to remove assembly language object files.  
						
						 
						
						
						
						
					 
					
						2011-10-18 00:02:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						78f288d5c9 
					 
					
						
						
							
							bn_mont.c: get corner cases right in updated BN_from_montgomery_word.  
						
						 
						
						
						
						
					 
					
						2011-10-17 23:35:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8329e2e776 
					 
					
						
						
							
							bn_exp.c: further optimizations using more ideas from  
						
						 
						
						... 
						
						
						
						http://eprint.iacr.org/2011/239 . 
						
						
					 
					
						2011-10-17 17:41:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3f66f2040a 
					 
					
						
						
							
							x86_64-mont.pl: minor optimization.  
						
						 
						
						
						
						
					 
					
						2011-10-17 17:39:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2534891874 
					 
					
						
						
							
							bn_mont.c: simplify BN_from_montgomery_word.  
						
						 
						
						
						
						
					 
					
						2011-10-17 17:24:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						79ba545c09 
					 
					
						
						
							
							bn_shift.c: minimize reallocations, which allows BN_FLG_STATIC_DATA to  
						
						 
						
						... 
						
						
						
						be shifted in specific cases. 
						
						
					 
					
						2011-10-17 17:20:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						993adc0531 
					 
					
						
						
							
							Engage bsaes-x86_64.pl, bit-sliced AES.  
						
						 
						
						
						
						
					 
					
						2011-10-17 17:10:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc1b04d255 
					 
					
						
						
							
							L=3072, N=256 provides 128 bits of security not 112.  
						
						 
						
						
						
						
					 
					
						2011-10-16 12:31:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8fcdb1e60f 
					 
					
						
						
							
							Add android-x86.  
						
						 
						
						
						
						
					 
					
						2011-10-15 08:32:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1db7c4e7a 
					 
					
						
						
							
							Clarify usage message.  
						
						 
						
						
						
						
					 
					
						2011-10-14 23:51:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ffbfbef943 
					 
					
						
						
							
							more vxworks patches  
						
						 
						
						
						
						
					 
					
						2011-10-14 22:04:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1fb2e0f940 
					 
					
						
						
							
							Allow override of GCCVER and noexecstack checking from environment.  
						
						 
						
						... 
						
						
						
						Vxworks support. 
						
						
					 
					
						2011-10-14 17:28:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41a846c694 
					 
					
						
						
							
							Don't use TPREFIX shell variable for minimal script.  
						
						 
						
						
						
						
					 
					
						2011-10-14 15:15:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3335b6f265 
					 
					
						
						
							
							Add usage messages.  
						
						 
						
						
						
						
					 
					
						2011-10-14 13:00:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						027026df9f 
					 
					
						
						
							
							e_aes.c: fix bug in aesni_gcm_tls_cipher.  
						
						 
						
						
						
						
					 
					
						2011-10-14 09:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9ee5916d97 
					 
					
						
						
							
							aesni-x86[_64].pl: fix bug in CCM code.  
						
						 
						
						
						
						
					 
					
						2011-10-14 09:15:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						af9b610cef 
					 
					
						
						
							
							Remove eng_aesni.c as AES-NI support is integrated directly at EVP.  
						
						 
						
						
						
						
					 
					
						2011-10-13 19:46:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8bfc6479a8 
					 
					
						
						
							
							use -no_ecdhe when using -no_dhe  
						
						 
						
						
						
						
					 
					
						2011-10-13 15:07:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4f2015742d 
					 
					
						
						
							
							Oops - ectest.c finds further problems beyond those exposed by bntext.c  
						
						 
						
						
						
						
					 
					
						2011-10-13 14:29:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0a06ad76a1 
					 
					
						
						
							
							Avoid failed assertion in BN_DEBUG builds  
						
						 
						
						
						
						
					 
					
						2011-10-13 14:21:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bf6d2f986d 
					 
					
						
						
							
							Make CTR mode behaviour consistent with other modes:  
						
						 
						
						... 
						
						
						
						- clear ctx->num in EVP_CipherInit_ex
- adapt e_eas.c changes from http://cvs.openssl.org/chngview?cn=19816 
  for eng_aesni.c
Submitted by: Emilia Kasper 
						
						
					 
					
						2011-10-13 13:41:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9d74befd23 
					 
					
						
						
							
							Clarify warning  
						
						 
						
						
						
						
					 
					
						2011-10-13 13:27:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8b37d33a94 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-10-13 13:20:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3ddc06f082 
					 
					
						
						
							
							In ssl3_clear, preserve s3->init_extra along with s3->rbuf.  
						
						 
						
						... 
						
						
						
						Submitted by: Bob Buckholz <bbuckholz@google.com > 
						
						
					 
					
						2011-10-13 13:05:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cdfe0fdde6 
					 
					
						
						
							
							Fix OPENSSL_BN_ASM_MONT5 for corner cases; add a test.  
						
						 
						
						... 
						
						
						
						Submitted by: Emilia Kasper 
						
						
					 
					
						2011-10-13 12:35:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5936521495 
					 
					
						
						
							
							Print curve type for signature tests.  
						
						 
						
						
						
						
					 
					
						2011-10-12 22:41:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						35882b60d8 
					 
					
						
						
							
							increase test RSA key size to 1024 bits  
						
						 
						
						
						
						
					 
					
						2011-10-12 21:55:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce01482e0f 
					 
					
						
						
							
							Update README.FIPS for new FIPS 2.0 testvectors.  
						
						 
						
						
						
						
					 
					
						2011-10-12 18:48:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7fc78f11e8 
					 
					
						
						
							
							Remove o_init.o special case from Makefile: this doesn't work.  
						
						 
						
						
						
						
					 
					
						2011-10-12 17:27:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98bc806749 
					 
					
						
						
							
							Skip ECDH sanity check. Add --compare-all to run comparison tests on  
						
						 
						
						... 
						
						
						
						all files instead of sanity checks. 
						
						
					 
					
						2011-10-12 17:18:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a2b6dc97f6 
					 
					
						
						
							
							Handle partial test where H is absent: needed to check g generation.  
						
						 
						
						
						
						
					 
					
						2011-10-12 17:03:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df36faaaa2 
					 
					
						
						
							
							Update instructions.  
						
						 
						
						
						
						
					 
					
						2011-10-12 15:35:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e15acd9d9e 
					 
					
						
						
							
							Updates to handle some verification of v2 tests.  
						
						 
						
						... 
						
						
						
						Now enable v2 by default and require a --disable-v2 option to run the
old v1 tests. 
						
						
					 
					
						2011-10-12 15:33:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a854818ea9 
					 
					
						
						
							
							Handle broken test on verify too.  
						
						 
						
						
						
						
					 
					
						2011-10-12 15:32:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1f63b5cb3 
					 
					
						
						
							
							ECDH POST selftest failure inducing support.  
						
						 
						
						
						
						
					 
					
						2011-10-12 13:17:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf61940534 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2011-10-12 13:06:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dafd5b5d74 
					 
					
						
						
							
							Only include one ECDH selftest.  
						
						 
						
						
						
						
					 
					
						2011-10-12 12:55:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6c8ce3c2ff 
					 
					
						
						
							
							e_padlock-x86[_64].pl: protection against prefetch errata.  
						
						 
						
						
						
						
					 
					
						2011-10-11 21:07:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3231e42d72 
					 
					
						
						
							
							update pkey method initialisation and copy  
						
						 
						
						
						
						
					 
					
						2011-10-11 18:15:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cd366cf7ec 
					 
					
						
						
							
							print out subgroup order if present  
						
						 
						
						
						
						
					 
					
						2011-10-11 17:44:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a59163f6b6 
					 
					
						
						
							
							def_rsa_finish not used any more.  
						
						 
						
						
						
						
					 
					
						2011-10-10 20:35:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe4394cf1d 
					 
					
						
						
							
							remove some debugging code  
						
						 
						
						
						
						
					 
					
						2011-10-10 19:09:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						84a75ba38c 
					 
					
						
						
							
							fix leak properly this time...  
						
						 
						
						
						
						
					 
					
						2011-10-10 14:08:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb47b2fb13 
					 
					
						
						
							
							add GCM ciphers in SSL_library_init  
						
						 
						
						
						
						
					 
					
						2011-10-10 12:56:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0f21307e0 
					 
					
						
						
							
							disable GCM if not available  
						
						 
						
						
						
						
					 
					
						2011-10-10 12:41:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7d7c13cbab 
					 
					
						
						
							
							Don't disable TLS v1.2 by default now.  
						
						 
						
						
						
						
					 
					
						2011-10-09 23:26:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0feb83e222 
					 
					
						
						
							
							Synv ordinals with 1.0.1-stable.  
						
						 
						
						
						
						
					 
					
						2011-10-09 23:16:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ccbb9badba 
					 
					
						
						
							
							fix CHANGES entry  
						
						 
						
						
						
						
					 
					
						2011-10-09 23:11:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						42753a4f67 
					 
					
						
						
							
							fix memory leaks  
						
						 
						
						
						
						
					 
					
						2011-10-09 23:08:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b1d3e9de63 
					 
					
						
						
							
							e_padlock-x86_64.pl: brown-bag bug in stack pointer handling.  
						
						 
						
						
						
						
					 
					
						2011-10-09 21:53:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bd4095b12 
					 
					
						
						
							
							Sync ordinals with 1.0.1-stable.  
						
						 
						
						
						
						
					 
					
						2011-10-09 15:29:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						58b75e9c26 
					 
					
						
						
							
							PR: 2482  
						
						 
						
						... 
						
						
						
						Submitted by: Rob Austein <sra@hactrn.net >
Reviewed by: steve
Don't allow inverted ranges in RFC3779 code, discovered by Frank Ellermann. 
						
						
					 
					
						2011-10-09 00:56:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						08d62e9f1a 
					 
					
						
						
							
							e_padlock-x86[_64].pl: SHA fixes, comply with specification and fix bug.  
						
						 
						
						
						
						
					 
					
						2011-10-08 21:37:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						549cd657fd 
					 
					
						
						
							
							Add fips/ecdh directory.  
						
						 
						
						
						
						
					 
					
						2011-10-07 18:18:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43206a2d7c 
					 
					
						
						
							
							New -force_pubkey option to x509 utility to supply a different public  
						
						 
						
						... 
						
						
						
						key to the one in a request. This is useful for cases where the public
key cannot be used for signing e.g. DH. 
						
						
					 
					
						2011-10-07 15:18:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6dd547398a 
					 
					
						
						
							
							use client version when eliminating TLS v1.2 ciphersuites in client hello  
						
						 
						
						
						
						
					 
					
						2011-10-07 15:07:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						66bb328e11 
					 
					
						
						
							
							? crypto/aes/aes-armv4.S  
						
						 
						
						... 
						
						
						
						? crypto/aes/aesni-sha1-x86_64.s
? crypto/aes/aesni-x86_64.s
? crypto/aes/foo.pl
? crypto/aes/vpaes-x86_64.s
? crypto/bn/.bn_lib.c.swp
? crypto/bn/armv4-gf2m.S
? crypto/bn/diffs
? crypto/bn/modexp512-x86_64.s
? crypto/bn/x86_64-gf2m.s
? crypto/bn/x86_64-mont5.s
? crypto/ec/bc.txt
? crypto/ec/diffs
? crypto/modes/a.out
? crypto/modes/diffs
? crypto/modes/ghash-armv4.S
? crypto/modes/ghash-x86_64.s
? crypto/modes/op.h
? crypto/modes/tst.c
? crypto/modes/x.h
? crypto/objects/.obj_xref.txt.swp
? crypto/rand/diffs
? crypto/sha/sha-512
? crypto/sha/sha1-armv4-large.S
? crypto/sha/sha256-armv4.S
? crypto/sha/sha512-armv4.S
Index: crypto/objects/obj_xref.c
===================================================================
RCS file: /v/openssl/cvs/openssl/crypto/objects/obj_xref.c,v
retrieving revision 1.9
diff -u -r1.9 obj_xref.c
--- crypto/objects/obj_xref.c	5 Nov 2008 18:38:58 -0000	1.9
+++ crypto/objects/obj_xref.c	6 Oct 2011 20:30:21 -0000
@@ -110,8 +110,10 @@
 #endif
 	if (rv == NULL)
 		return 0;
-	*pdig_nid = rv->hash_id;
-	*ppkey_nid = rv->pkey_id;
+	if (pdig_nid)
+		*pdig_nid = rv->hash_id;
+	if (ppkey_nid)
+		*ppkey_nid = rv->pkey_id;
 	return 1;
 	}
@@ -144,7 +146,8 @@
 #endif
 	if (rv == NULL)
 		return 0;
-	*psignid = (*rv)->sign_id;
+	if (psignid)
+		*psignid = (*rv)->sign_id;
 	return 1;
 	}
Index: crypto/x509/x509type.c
===================================================================
RCS file: /v/openssl/cvs/openssl/crypto/x509/x509type.c,v
retrieving revision 1.10
diff -u -r1.10 x509type.c
--- crypto/x509/x509type.c	26 Oct 2007 12:06:33 -0000	1.10
+++ crypto/x509/x509type.c	6 Oct 2011 20:36:04 -0000
@@ -100,20 +100,26 @@
 		break;
 		}
-	i=X509_get_signature_type(x);
-	switch (i)
+	i=OBJ_obj2nid(x->sig_alg->algorithm);
+	if (i && OBJ_find_sigid_algs(i, NULL, &i))
 		{
-	case EVP_PKEY_RSA:
-		ret|=EVP_PKS_RSA;
-		break;
-	case EVP_PKEY_DSA:
-		ret|=EVP_PKS_DSA;
-		break;
-	case EVP_PKEY_EC:
-		ret|=EVP_PKS_EC;
-		break;
-	default:
-		break;
+
+		switch (i)
+			{
+		case NID_rsaEncryption:
+		case NID_rsa:
+			ret|=EVP_PKS_RSA;
+			break;
+		case NID_dsa:
+		case NID_dsa_2:
+			ret|=EVP_PKS_DSA;
+			break;
+		case NID_X9_62_id_ecPublicKey:
+			ret|=EVP_PKS_EC;
+			break;
+		default:
+			break;
+			}
 		}
 	if (EVP_PKEY_size(pk) <= 1024/8)/* /8 because it's 1024 bits we look 
						
						
					 
					
						2011-10-06 20:44:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						50452b2e60 
					 
					
						
						
							
							e_padlock: add CTR mode.  
						
						 
						
						
						
						
					 
					
						2011-10-05 17:03:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d18762f7c9 
					 
					
						
						
							
							e_padlock-x86_64.pl: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-10-04 11:21:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						149ca7128c 
					 
					
						
						
							
							e_padlock-x86*.pl: Nano-related update.  
						
						 
						
						
						
						
					 
					
						2011-10-04 11:05:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4cc2bbab67 
					 
					
						
						
							
							Make fips algorithm test utilities use RESP_EOL for end of line character(s).  
						
						 
						
						... 
						
						
						
						This should be CRLF even under *nix. 
						
						
					 
					
						2011-10-01 20:42:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						04c3aa5c1a 
					 
					
						
						
							
							e_padlock-x86.pl: previous C3-specific fix was incomplete.  
						
						 
						
						
						
						
					 
					
						2011-10-01 10:44:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3edc26a256 
					 
					
						
						
							
							e_padlock-x86.pl: make it work on VIA C3 (which doesn't support SSE2).  
						
						 
						
						
						
						
					 
					
						2011-10-01 10:16:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10465aca60 
					 
					
						
						
							
							Never echo Num lines for PQGGen DSA2 test.  
						
						 
						
						
						
						
					 
					
						2011-09-30 11:58:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f1ebb8f42 
					 
					
						
						
							
							make depend  
						
						 
						
						
						
						
					 
					
						2011-09-29 23:17:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2bfeb7dc83 
					 
					
						
						
							
							Add FIPS selftests for ECDH algorithm.  
						
						 
						
						
						
						
					 
					
						2011-09-29 23:08:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						55831cd6ee 
					 
					
						
						
							
							Remove s = s * P deferral.  
						
						 
						
						
						
						
					 
					
						2011-09-29 18:22:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						884c33b5c4 
					 
					
						
						
							
							Check return codes properly.  
						
						 
						
						
						
						
					 
					
						2011-09-29 16:24:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						54bb3f68e1 
					 
					
						
						
							
							Fix output format for DSA2 parameter generation.  
						
						 
						
						
						
						
					 
					
						2011-09-28 22:35:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						112726486d 
					 
					
						
						
							
							bsaes-x86_64.pl: add due credit.  
						
						 
						
						
						
						
					 
					
						2011-09-27 19:34:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fca38e350b 
					 
					
						
						
							
							fix signed/unsigned warning  
						
						 
						
						
						
						
					 
					
						2011-09-26 17:04:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a846a7ff32 
					 
					
						
						
							
							Add a --disable-all option to disable all tests.  
						
						 
						
						
						
						
					 
					
						2011-09-25 22:12:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bac3db9cc1 
					 
					
						
						
							
							Handle provable prime parameters for canonical g generation which are  
						
						 
						
						... 
						
						
						
						sometimes erroneously included. 
						
						
					 
					
						2011-09-25 22:04:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4ec93a10bd 
					 
					
						
						
							
							Add bit-sliced AES x86_64 assembler, see  http://homes.esat.kuleuven.be/~ekasper/#software  for background information. It's not integrated into build system yet.  
						
						 
						
						
						
						
					 
					
						2011-09-25 15:31:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d18a0df0a6 
					 
					
						
						
							
							make sure eivlen is initialised  
						
						 
						
						
						
						
					 
					
						2011-09-24 23:06:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1579e65604 
					 
					
						
						
							
							use keyformat for -x509toreq, don't hard code PEM  
						
						 
						
						
						
						
					 
					
						2011-09-23 21:48:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2035bffe7 
					 
					
						
						
							
							PR: 2606  
						
						 
						
						... 
						
						
						
						Submitted by: Christoph Viethen <cv@kawo2.rwth-aachen.de >
Reviewed by: steve
Handle timezones correctly in UTCTime. 
						
						
					 
					
						2011-09-23 13:39:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d7392f219 
					 
					
						
						
							
							PR: 2602  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS bug which prevents manual MTU setting 
						
						
					 
					
						2011-09-23 13:34:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						07dda896cb 
					 
					
						
						
							
							PR: 2347  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Reviewed by: steve
Fix usage message. 
						
						
					 
					
						2011-09-23 13:12:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						af70f1a35d 
					 
					
						
						
							
							Run PQGVer test before DSA2 tests.  
						
						 
						
						
						
						
					 
					
						2011-09-23 01:03:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ddf00ffab8 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-09-22 14:15:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb71870dfa 
					 
					
						
						
							
							Use function name FIPS_drbg_health_check() for health check function.  
						
						 
						
						... 
						
						
						
						Add explanatory comments to health check code. 
						
						
					 
					
						2011-09-22 14:01:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						456d883a25 
					 
					
						
						
							
							Don't print out errors in cases where errors are expected: testing  
						
						 
						
						... 
						
						
						
						DSA parameter validity and EC public key validity. 
						
						
					 
					
						2011-09-21 18:42:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d57cc97f24 
					 
					
						
						
							
							Remove unused variable.  
						
						 
						
						
						
						
					 
					
						2011-09-21 18:36:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05272d4c51 
					 
					
						
						
							
							Perform health check on all reseed operations not associated with  
						
						 
						
						... 
						
						
						
						prediction resistance requests. Although SP 800-90 is arguably unclear
on whether this is necessary adding an additional check has minimal
penalty (very few applications will make an explicit reseed request). 
						
						
					 
					
						2011-09-21 18:24:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4420b3b17a 
					 
					
						
						
							
							Revise DRBG to split between internal and external flags.  
						
						 
						
						... 
						
						
						
						One demand health check function.
Perform generation test in fips_test_suite.
Option to skip dh test if fips_test_suite. 
						
						
					 
					
						2011-09-21 17:04:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e74ac3f830 
					 
					
						
						
							
							Update error codes.  
						
						 
						
						
						
						
					 
					
						2011-09-21 16:17:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5799bdc48 
					 
					
						
						
							
							Allow reseed interval to be set.  
						
						 
						
						
						
						
					 
					
						2011-09-18 19:36:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2b1f17f83f 
					 
					
						
						
							
							Make latest assembler additions (vpaes and e_padlock) work in Windows build.  
						
						 
						
						
						
						
					 
					
						2011-09-18 15:40:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7470276a25 
					 
					
						
						
							
							sha256-586.pl: minor optimization, +0-2% on all CPUs, +7% on Westmere.  
						
						 
						
						
						
						
					 
					
						2011-09-17 12:57:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d2fd65f6f6 
					 
					
						
						
							
							sha512-x86_64.pl: +15% better performance on Westmere and incidentally Atom.  
						
						 
						
						... 
						
						
						
						Other Intel processors +5%, Opteron -2%. 
						
						
					 
					
						2011-09-17 11:30:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						819cf4b886 
					 
					
						
						
							
							Sync error codes with 1.0.1-stable.  
						
						 
						
						
						
						
					 
					
						2011-09-17 00:17:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45fcfcb99f 
					 
					
						
						
							
							clarify comment  
						
						 
						
						
						
						
					 
					
						2011-09-16 17:40:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e248740d67 
					 
					
						
						
							
							Minor code tidy and bug fix: need to set t = s after first pass and  
						
						 
						
						... 
						
						
						
						t and s do not need to have independent values after the first pass
so set t = s. 
						
						
					 
					
						2011-09-16 17:35:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b63698b70d 
					 
					
						
						
							
							Don't use vpaes in fips builds and exclude from restricted tarball.  
						
						 
						
						
						
						
					 
					
						2011-09-15 21:06:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8ca28da0a7 
					 
					
						
						
							
							Integrate Vector Permutation AES into build system.  
						
						 
						
						
						
						
					 
					
						2011-09-15 20:22:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b889a6046b 
					 
					
						
						
							
							Make HMAC kat symbols static.  
						
						 
						
						
						
						
					 
					
						2011-09-15 14:28:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00b0f2cb3e 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2011-09-15 14:08:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						03e389cf04 
					 
					
						
						
							
							Allow for dynamic base in Win64 FIPS module.  
						
						 
						
						
						
						
					 
					
						2011-09-14 20:48:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						93256bf5d1 
					 
					
						
						
							
							Update CMAC/HMAC sefltests to use NIDs instead of function pointers.  
						
						 
						
						... 
						
						
						
						Simplify HMAC selftest as each test currently uses the same key and
hash data. 
						
						
					 
					
						2011-09-14 15:49:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d47d0d2b0d 
					 
					
						
						
							
							Remove fipsdso target: it isn't supported in the 2.0 module.  
						
						 
						
						
						
						
					 
					
						2011-09-14 15:20:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						15094852de 
					 
					
						
						
							
							new function to lookup FIPS supported ciphers by NID  
						
						 
						
						
						
						
					 
					
						2011-09-14 13:25:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a11f06b2dc 
					 
					
						
						
							
							More extensive DRBG health check. New function to call health check  
						
						 
						
						... 
						
						
						
						for all DRBG combinations. 
						
						
					 
					
						2011-09-12 18:47:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						361d18a208 
					 
					
						
						
							
							Check length of additional input in DRBG generate function.  
						
						 
						
						
						
						
					 
					
						2011-09-12 18:45:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						de2132de93 
					 
					
						
						
							
							Delete strength parameter from FIPS_drbg_generate. It isn't very useful  
						
						 
						
						... 
						
						
						
						(strength can be queried using FIPS_drbg_get_strength ) and adds a
substantial extra overhead to health check (need to check every combination
of parameters). 
						
						
					 
					
						2011-09-12 13:20:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e56c99e1a 
					 
					
						
						
							
							Check we recognise DRBG type in fips_drbgvs.c initialised DRBG_CTX if we  
						
						 
						
						... 
						
						
						
						don't set type in FIPS_drbg_new(). 
						
						
					 
					
						2011-09-12 12:56:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						543dfa9f0e 
					 
					
						
						
							
							vpaes-x86[_64]*.pl: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-09-12 12:50:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a87ff751b7 
					 
					
						
						
							
							Add so called Vector Permutation AES x86[_64] assembler, see  
						
						 
						
						... 
						
						
						
						http://crypto.stanford.edu/vpaes/  for background information.
It's not integrated into build system yet. 
						
						
					 
					
						2011-09-12 08:25:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						288fe07a6e 
					 
					
						
						
							
							Fix 3DES Monte Carlo test file output which previously outputted  
						
						 
						
						... 
						
						
						
						extra bogus lines. Update fipsalgtest.pl to tolerate the old format. 
						
						
					 
					
						2011-09-11 18:05:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7fdcb45745 
					 
					
						
						
							
							Add support for Dual EC DRBG from SP800-90. Include updates to algorithm  
						
						 
						
						... 
						
						
						
						tests and POST code. 
						
						
					 
					
						2011-09-09 17:16:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e4588dc486 
					 
					
						
						
							
							Add /fixed option to linker with fips builds.  
						
						 
						
						
						
						
					 
					
						2011-09-08 13:55:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d98360392a 
					 
					
						
						
							
							Put quick DRBG selftest return after first generate operation.  
						
						 
						
						
						
						
					 
					
						2011-09-07 10:26:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						33987f2f45 
					 
					
						
						
							
							engines/asm/e_padlock-x86_64.pl: name it right and fix small bug.  
						
						 
						
						
						
						
					 
					
						2011-09-06 22:53:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bbb19418e6 
					 
					
						
						
							
							Add error codes for DRBG KAT failures.  
						
						 
						
						... 
						
						
						
						Add abbreviated DRBG KAT for POST which only performs a single generate
operations instead of four. 
						
						
					 
					
						2011-09-06 20:46:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ed28aef8b4 
					 
					
						
						
							
							Padlock engine: make it independent of inline assembler.  
						
						 
						
						
						
						
					 
					
						2011-09-06 20:45:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0486cce653 
					 
					
						
						
							
							Initialise X509_STORE_CTX properly so CRLs with nextUpdate date in the past  
						
						 
						
						... 
						
						
						
						produce an error (CVE-2011-3207) 
						
						
					 
					
						2011-09-06 15:15:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0f8d4d49dc 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2011-09-06 13:55:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f952716745 
					 
					
						
						
							
							config: don't add -Wa options with no-asm.  
						
						 
						
						
						
						
					 
					
						2011-09-05 16:31:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dd83d0f4a7 
					 
					
						
						
							
							crypto/bn/bn_gf2m.c: make it work with BN_DEBUG.  
						
						 
						
						
						
						
					 
					
						2011-09-05 16:14:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ea17b0feec 
					 
					
						
						
							
							Check reseed interval before generating output.  
						
						 
						
						
						
						
					 
					
						2011-09-05 15:45:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7634137b8a 
					 
					
						
						
							
							Place DRBG in error state if health check fails.  
						
						 
						
						
						
						
					 
					
						2011-09-05 15:32:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2c472780c0 
					 
					
						
						
							
							oops  
						
						 
						
						
						
						
					 
					
						2011-09-05 13:43:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c519e89f5c 
					 
					
						
						
							
							Fix session handling.  
						
						 
						
						
						
						
					 
					
						2011-09-05 13:36:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						612fcfbd29 
					 
					
						
						
							
							Fix d2i_SSL_SESSION.  
						
						 
						
						
						
						
					 
					
						2011-09-05 13:31:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e7928282d0 
					 
					
						
						
							
							(EC)DH memory handling fixes.  
						
						 
						
						... 
						
						
						
						Submitted by: Adam Langley 
						
						
					 
					
						2011-09-05 10:25:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						837e1b6812 
					 
					
						
						
							
							Fix memory leak on bad inputs.  
						
						 
						
						
						
						
					 
					
						2011-09-05 09:57:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ae53b299fa 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2011-09-05 09:46:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						03a64ef56d 
					 
					
						
						
							
							Fix expected DEFFLAG for default config.  
						
						 
						
						
						
						
					 
					
						2011-09-05 09:43:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f0ecb86666 
					 
					
						
						
							
							Fix error codes.  
						
						 
						
						
						
						
					 
					
						2011-09-05 09:42:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						acb4ab34a4 
					 
					
						
						
							
							Synchronize with 1.0.1 CHANGES file.  
						
						 
						
						
						
						
					 
					
						2011-09-05 09:30:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						74c40744ca 
					 
					
						
						
							
							Don't perform full DRBG health check on all DRBG types on power up, just  
						
						 
						
						... 
						
						
						
						one shorter KAT per mechanism. 
						
						
					 
					
						2011-09-04 22:48:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1567b3904c 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2011-09-04 18:44:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						06e771b580 
					 
					
						
						
							
							Add header to Makefile.  
						
						 
						
						
						
						
					 
					
						2011-09-04 18:36:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb9e63df61 
					 
					
						
						
							
							Extension of DRBG selftests using new data.  
						
						 
						
						... 
						
						
						
						Test PR and no PR and test initial generate before the reseed too.
Move selftest data to separate fips_drbg_selftest.h header file. 
						
						
					 
					
						2011-09-04 18:35:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fa85c1dbf5 
					 
					
						
						
							
							Rename some more symbols for fips module.  
						
						 
						
						
						
						
					 
					
						2011-09-02 15:10:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a60cc6b4f0 
					 
					
						
						
							
							Don't use *from++ in tolower as this is implemented as a macro on some  
						
						 
						
						... 
						
						
						
						platforms. Thanks to Shayne Murray <Shayne.Murray@Polycom.com > for
reporting this issue. 
						
						
					 
					
						2011-09-02 11:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c1f5ce4b1 
					 
					
						
						
							
							PR: 2576  
						
						 
						
						... 
						
						
						
						Submitted by: Doug Goldstein <cardoe@gentoo.org >
Reviewed by: steve
Include header file stdlib.h which is needed on some platforms to get
getenv() declaration. 
						
						
					 
					
						2011-09-02 11:20:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c41b505459 
					 
					
						
						
							
							Sync ordinals with 1.0.1-stable.  
						
						 
						
						
						
						
					 
					
						2011-09-01 17:12:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						74e056edbc 
					 
					
						
						
							
							PR: 2340  
						
						 
						
						... 
						
						
						
						Submitted by: "Mauro H. Leggieri" <mxmauro@caiman.com.ar >
Reviewed by: steve
Stop warnings if OPENSSL_NO_DGRAM is defined. 
						
						
					 
					
						2011-09-01 15:01:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff7231043f 
					 
					
						
						
							
							make timing attack protection unconditional  
						
						 
						
						
						
						
					 
					
						2011-09-01 14:23:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e92fd244c 
					 
					
						
						
							
							Stop warnings.  
						
						 
						
						
						
						
					 
					
						2011-09-01 14:15:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d41ce00b8c 
					 
					
						
						
							
							PR: 2573  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS buffering and decryption bug. 
						
						
					 
					
						2011-09-01 14:02:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04485c5bc0 
					 
					
						
						
							
							PR: 2589  
						
						 
						
						... 
						
						
						
						Submitted by: Thomas Jarosch <thomas.jarosch@intra2net.com >
Reviewed by: steve
Initialise p pointer. 
						
						
					 
					
						2011-09-01 13:52:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d77a970669 
					 
					
						
						
							
							PR: 2588  
						
						 
						
						... 
						
						
						
						Submitted by: Thomas Jarosch <thomas.jarosch@intra2net.com >
Reviewed by: steve
Close file pointer. 
						
						
					 
					
						2011-09-01 13:49:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f7924634d4 
					 
					
						
						
							
							PR: 2586  
						
						 
						
						... 
						
						
						
						Submitted by: Thomas Jarosch <thomas.jarosch@intra2net.com >
Reviewed by: steve
Zero structure fields properly. 
						
						
					 
					
						2011-09-01 13:45:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3f6a5a01d 
					 
					
						
						
							
							PR: 2586  
						
						 
						
						... 
						
						
						
						Submitted by: Thomas Jarosch <thomas.jarosch@intra2net.com >
Reviewed by: steve
Fix brace mismatch. 
						
						
					 
					
						2011-09-01 13:37:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d35c284b73 
					 
					
						
						
							
							Print private key component is -exout parameter is given.  
						
						 
						
						
						
						
					 
					
						2011-08-29 16:09:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00220f8111 
					 
					
						
						
							
							Fix ecdh primitives test command line.  
						
						 
						
						
						
						
					 
					
						2011-08-29 15:35:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cfdbff23ab 
					 
					
						
						
							
							bn_exp.c: improve portability.  
						
						 
						
						
						
						
					 
					
						2011-08-27 19:38:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f7eb0ab9ac 
					 
					
						
						
							
							util/incore: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-08-27 19:37:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2abaa9caaf 
					 
					
						
						
							
							Add support for DSA2 PQG generation of g parameter.  
						
						 
						
						
						
						
					 
					
						2011-08-27 12:30:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f55f5f775e 
					 
					
						
						
							
							Add support for canonical generation of DSA parameter g.  
						
						 
						
						... 
						
						
						
						Modify fips_dssvs to support appropriate file format. 
						
						
					 
					
						2011-08-26 14:51:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7daf0efad9 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2011-08-25 19:50:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						edd4d402c6 
					 
					
						
						
							
							Don't use some object files in FIPS build.  
						
						 
						
						
						
						
					 
					
						2011-08-23 23:35:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e6133727fb 
					 
					
						
						
							
							Rename sparc symbols.  
						
						 
						
						
						
						
					 
					
						2011-08-23 21:06:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c608171d9c 
					 
					
						
						
							
							Add RC4-MD5 and AESNI-SHA1 "stitched" implementations.  
						
						 
						
						
						
						
					 
					
						2011-08-23 20:51:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c2d4c2867b 
					 
					
						
						
							
							eng_rsax.c: improve portability.  
						
						 
						
						
						
						
					 
					
						2011-08-22 19:01:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						46883b67de 
					 
					
						
						
							
							Correct maximum request length. SP800-90 quotes maximum bits, not bytes.  
						
						 
						
						
						
						
					 
					
						2011-08-19 23:25:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6c01cbb6a0 
					 
					
						
						
							
							modexp512-x86_64.pl: make it work with ml64.  
						
						 
						
						
						
						
					 
					
						2011-08-19 06:30:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c20de0386a 
					 
					
						
						
							
							Fix fipsalgtest.pl to still work with old test vectors.  
						
						 
						
						
						
						
					 
					
						2011-08-18 16:06:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eea98320a0 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-08-16 12:45:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4c1d92c56f 
					 
					
						
						
							
							Update instructions to recommend use of included incore script.  
						
						 
						
						
						
						
					 
					
						2011-08-16 11:25:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d341e40264 
					 
					
						
						
							
							Makefile.org: get commit#21249 right.  
						
						 
						
						
						
						
					 
					
						2011-08-16 08:56:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						142625b534 
					 
					
						
						
							
							Delete library install from Makefile.fips: it isn't used.  
						
						 
						
						... 
						
						
						
						Revert change to Makefile.org: it breaks install. 
						
						
					 
					
						2011-08-15 20:38:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7cbab63f5a 
					 
					
						
						
							
							quote LIBS to copy with empty string  
						
						 
						
						
						
						
					 
					
						2011-08-15 18:16:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9015ee1826 
					 
					
						
						
							
							Enable rsa-pss0 for non-v2 tests.  
						
						 
						
						
						
						
					 
					
						2011-08-15 14:50:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1f59a84308 
					 
					
						
						
							
							Remove hard coded ecdsaWithSHA1 hack in ssl routines and check for RSA  
						
						 
						
						... 
						
						
						
						using OBJ xref utilities instead of string comparison with OID name.
This removes the arbitrary restriction on using SHA1 only with some ECC
ciphersuites. 
						
						
					 
					
						2011-08-14 13:45:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bf3dfe7fee 
					 
					
						
						
							
							bn_div.c: remove duplicate code by merging BN_div and BN_div_no_branch.  
						
						 
						
						
						
						
					 
					
						2011-08-14 11:31:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e7d1363d12 
					 
					
						
						
							
							x86_64-mont5.pl: add missing Win64 support.  
						
						 
						
						
						
						
					 
					
						2011-08-14 09:06:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f744bcfd73 
					 
					
						
						
							
							eng_rdrand.c: make it link in './config 386' case.  
						
						 
						
						
						
						
					 
					
						2011-08-14 08:30:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						10bd69bf4f 
					 
					
						
						
							
							armv4-mont.pl: profiler-assisted optimization gives 8%-14% improvement  
						
						 
						
						... 
						
						
						
						(more for longer keys) on RSA/DSA. 
						
						
					 
					
						2011-08-13 12:38:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ae8b47f07f 
					 
					
						
						
							
							SPARC assembler pack: fix FIPS linking errors.  
						
						 
						
						
						
						
					 
					
						2011-08-12 21:38:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						272ba87017 
					 
					
						
						
							
							x86_64-xlate.pl: fix movzw.  
						
						 
						
						
						
						
					 
					
						2011-08-12 21:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						361512da0d 
					 
					
						
						
							
							This commit completes recent modular exponentiation optimizations on  
						
						 
						
						... 
						
						
						
						x86_64 platform. It targets specifically RSA1024 sign (using ideas
from http://eprint.iacr.org/2011/239 ) and adds more than 10% on most
platforms. Overall performance improvement relative to 1.0.0 is ~40%
in average, with best result of 54% on Westmere. Incidentally ~40%
is average improvement even for longer key lengths. 
						
						
					 
					
						2011-08-12 16:44:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						20735f4c81 
					 
					
						
						
							
							alphacpuid.pl: fix alignment bug.  
						
						 
						
						... 
						
						
						
						alpha-mont.pl: fix typo.
PR: 2577 
						
						
					 
					
						2011-08-12 12:28:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab1ec69843 
					 
					
						
						
							
							aesni TLS GCM support  
						
						 
						
						
						
						
					 
					
						2011-08-11 23:06:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19ad345739 
					 
					
						
						
							
							prevent compilation errors and warnings  
						
						 
						
						
						
						
					 
					
						2011-08-11 21:12:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						513e28c0a4 
					 
					
						
						
							
							Include armcap.c in fips tarball.  
						
						 
						
						
						
						
					 
					
						2011-08-11 17:30:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f06921eca 
					 
					
						
						
							
							Remove redundant assignment.  
						
						 
						
						
						
						
					 
					
						2011-08-11 13:22:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						37f010e248 
					 
					
						
						
							
							Add provisory support for RDRAND instruction.  
						
						 
						
						
						
						
					 
					
						2011-08-10 18:52:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						85ec54a417 
					 
					
						
						
							
							x86_64-mont.pl: futher optimization resulting in up to 48% improvement  
						
						 
						
						... 
						
						
						
						(4096-bit RSA sign benchmark on Core2) in comparison to initial version
from 2005. 
						
						
					 
					
						2011-08-09 13:05:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						20f12e63ff 
					 
					
						
						
							
							Add HMAC DRBG from SP800-90  
						
						 
						
						
						
						
					 
					
						2011-08-08 22:07:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b38fd40db4 
					 
					
						
						
							
							Use "resp" for default directory name for .rsp files.  
						
						 
						
						
						
						
					 
					
						2011-08-08 18:06:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d7fbd021b 
					 
					
						
						
							
							Fix DSA to skip EOL test when parsing mod line.  
						
						 
						
						
						
						
					 
					
						2011-08-08 14:47:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49e9b97885 
					 
					
						
						
							
							Initial support for tests for 2.0 module. Not complete and not all working  
						
						 
						
						... 
						
						
						
						yet.
Allow test type to be determined by a regexp on the pathname. So tests like:
DSA/SigVer, DSA2/SigVer, ECDSA/SigVer, ECDSA2/SigVer can all be
distinguished. 
						
						
					 
					
						2011-08-08 14:47:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						267b481c47 
					 
					
						
						
							
							aes/asm/aesni-*.pl: fix CCM and further optimize it.  
						
						 
						
						... 
						
						
						
						modes/ccm128.c: minor branch optimization. 
						
						
					 
					
						2011-08-07 17:47:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8a8cc84f74 
					 
					
						
						
							
							fix memory leak  
						
						 
						
						
						
						
					 
					
						2011-08-03 16:39:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						28dd49faec 
					 
					
						
						
							
							Expand range of ctrls for AES GCM to support retrieval and setting of  
						
						 
						
						... 
						
						
						
						invocation field.
Add complete support for AES GCM ciphersuites including all those in
RFC5288 and RFC5289. 
						
						
					 
					
						2011-08-03 15:37:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3699ec6056 
					 
					
						
						
							
							recognise ecdsaWithSHA1 OID  
						
						 
						
						
						
						
					 
					
						2011-07-28 14:40:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a678580bb8 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2011-07-25 21:58:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe8aeffa92 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2011-07-25 21:43:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31475a370c 
					 
					
						
						
							
							oops, remove debug option  
						
						 
						
						
						
						
					 
					
						2011-07-25 21:38:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d09677ac45 
					 
					
						
						
							
							Add HMAC ECC ciphersuites from RFC5289. Include SHA384 PRF support and  
						
						 
						
						... 
						
						
						
						prohibit use of these ciphersuites for TLS < 1.2 
						
						
					 
					
						2011-07-25 20:41:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2667162d33 
					 
					
						
						
							
							cryptlib.c: OPENSSL_ia32cap environment variable to interpret ~ as cpuid mask.  
						
						 
						
						
						
						
					 
					
						2011-07-23 12:10:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						66b86a4fd5 
					 
					
						
						
							
							More symbol renaming.  
						
						 
						
						
						
						
					 
					
						2011-07-22 14:29:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d5121552d 
					 
					
						
						
							
							Make sure OPENSSL_FIPSCANISTER is visible to ARM assembly language files.  
						
						 
						
						
						
						
					 
					
						2011-07-22 14:20:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						057037e719 
					 
					
						
						
							
							util/incore: fix brown-bag bug.  
						
						 
						
						
						
						
					 
					
						2011-07-22 10:24:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b7724f6f55 
					 
					
						
						
							
							util/incore: make transition smoother.  
						
						 
						
						
						
						
					 
					
						2011-07-22 10:13:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						167cb62537 
					 
					
						
						
							
							fips_canister.c: add support for embedded ppc linux.  
						
						 
						
						
						
						
					 
					
						2011-07-22 09:42:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f275f248e 
					 
					
						
						
							
							stop warnings  
						
						 
						
						
						
						
					 
					
						2011-07-21 13:45:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ad2e14aaa 
					 
					
						
						
							
							Rename another symbol.  
						
						 
						
						
						
						
					 
					
						2011-07-21 13:43:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7b41f350d4 
					 
					
						
						
							
							aes-ppc.pl: minor optimization favoring embedded processors (performance  
						
						 
						
						... 
						
						
						
						of "big" processors is unaffected). 
						
						
					 
					
						2011-07-20 22:16:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						be9a8cc2af 
					 
					
						
						
							
							Add RSAX builtin engine. It optimizes RSA1024 sign benchmark.  
						
						 
						
						
						
						
					 
					
						2011-07-20 21:49:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dafce90ae5 
					 
					
						
						
							
							PR: 2559  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS socket error bug 
						
						
					 
					
						2011-07-20 15:22:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0445ab3ae0 
					 
					
						
						
							
							PR: 2555  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS sequence number bug 
						
						
					 
					
						2011-07-20 15:17:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb48f4ce6e 
					 
					
						
						
							
							PR: 2550  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS HelloVerifyRequest Timer bug 
						
						
					 
					
						2011-07-20 15:14:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9df286b13a 
					 
					
						
						
							
							sha512-sparcv9.pl: minor optimization of sha256.  
						
						 
						
						
						
						
					 
					
						2011-07-18 11:34:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81c2920849 
					 
					
						
						
							
							Add support for ECCCDH test format.  
						
						 
						
						
						
						
					 
					
						2011-07-18 00:45:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						87873f4328 
					 
					
						
						
							
							ARM assembler pack: add platform run-time detection.  
						
						 
						
						
						
						
					 
					
						2011-07-17 17:40:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9fe51d5f73 
					 
					
						
						
							
							PR: 2556 (partial)  
						
						 
						
						... 
						
						
						
						Reported by: Daniel Marschall <daniel-marschall@viathinksoft.de >
Reviewed by: steve
Fix OID routines.
Check on encoding leading zero rejection should start at beginning of
encoding.
Allow for initial digit when testing when to use BIGNUMs which can increase
first value by 2 * 40. 
						
						
					 
					
						2011-07-14 12:01:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b79853c262 
					 
					
						
						
							
							fips/Makefile: HP-UX-specific update.  
						
						 
						
						
						
						
					 
					
						2011-07-13 22:30:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b429c4cbb9 
					 
					
						
						
							
							ms/uplink.c: fix Visual Studio 2010 warning.  
						
						 
						
						
						
						
					 
					
						2011-07-13 14:54:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2966c2ec31 
					 
					
						
						
							
							config: detect if assembler supports --noexecstack and pass it down.  
						
						 
						
						
						
						
					 
					
						2011-07-13 14:23:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4195a369fd 
					 
					
						
						
							
							perlasm/cbc.pl: fix tail processing bug.  
						
						 
						
						... 
						
						
						
						PR: 2557 
						
						
					 
					
						2011-07-13 06:20:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						146e1fc7b3 
					 
					
						
						
							
							ssl/ssl_ciph.c: allow to switch to predefined "composite" cipher/mac  
						
						 
						
						... 
						
						
						
						combos that can be implemented as AEAD ciphers. 
						
						
					 
					
						2011-07-11 14:00:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7532071aa3 
					 
					
						
						
							
							ssl/t1_enc.c: initial support for AEAD ciphers.  
						
						 
						
						
						
						
					 
					
						2011-07-11 13:58:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a355cf9bf5 
					 
					
						
						
							
							evp.h: add flag to distinguish AEAD ciphers and pair of control codes...  
						
						 
						
						
						
						
					 
					
						2011-07-11 13:54:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						735ebc2de7 
					 
					
						
						
							
							Fix typo.  
						
						 
						
						... 
						
						
						
						Submitted by: Jim Morrison 
						
						
					 
					
						2011-07-11 12:13:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b520e4b1d5 
					 
					
						
						
							
							Add a tool that (semi)automatically created the API documentation  
						
						 
						
						... 
						
						
						
						required for FIPS. 
						
						
					 
					
						2011-07-05 15:40:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						449f2517c6 
					 
					
						
						
							
							Rename symbol.  
						
						 
						
						
						
						
					 
					
						2011-07-05 11:12:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6179f06077 
					 
					
						
						
							
							x86_64-mont.pl: add squaring procedure and improve RSA sign performance  
						
						 
						
						... 
						
						
						
						by up to 38% (4096-bit benchmark on Core2). 
						
						
					 
					
						2011-07-05 09:21:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						01a9a7592e 
					 
					
						
						
							
							Add functions to return FIPS module version.  
						
						 
						
						
						
						
					 
					
						2011-07-04 23:38:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6fa4c7c43b 
					 
					
						
						
							
							x86_64-xlate.pl: sha1 and md5 warnings made it to nasm 2.09, extend gnu  
						
						 
						
						... 
						
						
						
						assembler workaround to all assemblers. 
						
						
					 
					
						2011-07-04 13:10:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						169a274a41 
					 
					
						
						
							
							sha1-x86_64.pl: nasm 2.07 screws up labels if AVX path is compiled.  
						
						 
						
						
						
						
					 
					
						2011-07-04 13:00:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02a73e2bed 
					 
					
						
						
							
							s390x-gf2m.pl: commentary update (final performance numbers turned to be  
						
						 
						
						... 
						
						
						
						higher). 
						
						
					 
					
						2011-07-04 11:20:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c540aa2fb1 
					 
					
						
						
							
							If make clean fails it is not a fatal error.  
						
						 
						
						
						
						
					 
					
						2011-07-03 12:35:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eca7358be3 
					 
					
						
						
							
							Additional error checking.  
						
						 
						
						
						
						
					 
					
						2011-07-02 15:57:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da5e9871e9 
					 
					
						
						
							
							sha1-x86_64.pl: fix win64-specific typos and add masm support.  
						
						 
						
						
						
						
					 
					
						2011-07-01 21:23:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						94c64f9a1c 
					 
					
						
						
							
							x86_64-xlate.pl: masm-specific update.  
						
						 
						
						
						
						
					 
					
						2011-07-01 21:21:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1f77a27c16 
					 
					
						
						
							
							Delete any EXARG value first.  
						
						 
						
						
						
						
					 
					
						2011-07-01 14:52:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e780b5f1f1 
					 
					
						
						
							
							Add no-asm argument to Configure if needed.  
						
						 
						
						
						
						
					 
					
						2011-07-01 14:43:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						01f06617b1 
					 
					
						
						
							
							Recognise fipscheck option and call fipsas for WIN64 builds.  
						
						 
						
						
						
						
					 
					
						2011-06-30 19:18:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						be6ddecb8b 
					 
					
						
						
							
							crypto/aes/Makefile: make it work on IRIX.  
						
						 
						
						
						
						
					 
					
						2011-06-28 12:55:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						450853cd04 
					 
					
						
						
							
							crypto/whrlpool/wp_block.c: harmonize OPENSSL_ia32cap_P.  
						
						 
						
						
						
						
					 
					
						2011-06-28 12:42:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5a0876cb8c 
					 
					
						
						
							
							crypto/sha/asm/sha[1|512]-mips.pl: minor updates.  
						
						 
						
						
						
						
					 
					
						2011-06-28 12:41:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a908b711ac 
					 
					
						
						
							
							rc4-586.pl: add Atom performance results.  
						
						 
						
						
						
						
					 
					
						2011-06-28 12:36:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2036c9a59a 
					 
					
						
						
							
							md5-x86_86.pl: remove redundant instructions.  
						
						 
						
						
						
						
					 
					
						2011-06-28 12:33:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b247f7387f 
					 
					
						
						
							
							crypto/bn/Makefile: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-06-28 08:52:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bdd454973d 
					 
					
						
						
							
							auto detect configuration using KERNEL_BITS and CC  
						
						 
						
						
						
						
					 
					
						2011-06-27 11:38:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						12b1b9a4fa 
					 
					
						
						
							
							Configure: clean up linux32-s390x line.  
						
						 
						
						
						
						
					 
					
						2011-06-27 10:53:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0c237e42a4 
					 
					
						
						
							
							s390x assembler pack: add s390x-gf2m.pl and harmonize AES_xts_[en|de]crypt.  
						
						 
						
						
						
						
					 
					
						2011-06-27 10:00:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0772f3b4f6 
					 
					
						
						
							
							rc4-x86_64.pl: commentary update.  
						
						 
						
						
						
						
					 
					
						2011-06-27 09:46:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a9a692e4e 
					 
					
						
						
							
							Minor x86_64 perlasm update.  
						
						 
						
						
						
						
					 
					
						2011-06-27 09:45:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fc30530402 
					 
					
						
						
							
							Fix CPRNG test for Hash DRBG.  
						
						 
						
						
						
						
					 
					
						2011-06-26 12:29:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a96b90b66b 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-06-24 15:30:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d1a70cc9eb 
					 
					
						
						
							
							Add stub for HMAC DRBG.  
						
						 
						
						
						
						
					 
					
						2011-06-24 14:28:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9fa8f3a610 
					 
					
						
						
							
							allow KERNEL_BITS to be specified in the environment  
						
						 
						
						
						
						
					 
					
						2011-06-24 14:04:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dbfa236977 
					 
					
						
						
							
							get the filename right  
						
						 
						
						
						
						
					 
					
						2011-06-24 13:48:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						419989d2ec 
					 
					
						
						
							
							Add sparcv9cap.c to restricted tarball.  
						
						 
						
						
						
						
					 
					
						2011-06-24 13:45:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						021270af37 
					 
					
						
						
							
							Add a symbol for the first parameter to OPENSSL_showfatal().  
						
						 
						
						
						
						
					 
					
						2011-06-23 09:46:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ab688c234d 
					 
					
						
						
							
							Add symbols for the parameters on a couple more functions.  
						
						 
						
						
						
						
					 
					
						2011-06-23 09:43:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a4be82388 
					 
					
						
						
							
							PR: 2470  
						
						 
						
						... 
						
						
						
						Submitted by: Corinna Vinschen <vinschen@redhat.com >
Reviewed by: steve
Don't call ERR_remove_state from DllMain. 
						
						
					 
					
						2011-06-22 15:38:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						861a7e5c9f 
					 
					
						
						
							
							PR: 2543  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Correctly handle errors in DTLSv1_handle_timeout() 
						
						
					 
					
						2011-06-22 15:30:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8038e7e44c 
					 
					
						
						
							
							PR: 2540  
						
						 
						
						... 
						
						
						
						Submitted by: emmanuel.azencot@bull.net 
Reviewed by: steve
Prevent infinite loop in BN_GF2m_mod_inv(). 
						
						
					 
					
						2011-06-22 15:24:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b507284c7e 
					 
					
						
						
							
							correctly encode OIDs near 2^32  
						
						 
						
						
						
						
					 
					
						2011-06-22 15:15:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb551bfab7 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-06-22 12:59:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2d9fda6241 
					 
					
						
						
							
							stop complaints about no CVS version  
						
						 
						
						
						
						
					 
					
						2011-06-22 12:38:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce02589259 
					 
					
						
						
							
							Now the FIPS capable OpenSSL is available simplify the various FIPS test  
						
						 
						
						... 
						
						
						
						build options.
All fispcanisterbuild builds only build fipscanister.o and include symbol
renaming.
Move all renamed symbols to fipssyms.h
Update README.FIPS 
						
						
					 
					
						2011-06-22 12:30:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						93dd7d3848 
					 
					
						
						
							
							add symbol rename  
						
						 
						
						
						
						
					 
					
						2011-06-22 11:41:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a52b7b44b2 
					 
					
						
						
							
							allow MD5 use for computing old format hash links  
						
						 
						
						
						
						
					 
					
						2011-06-22 02:18:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff053fc847 
					 
					
						
						
							
							Don't set FIPS rand method at same time as RAND method as this can cause the  
						
						 
						
						... 
						
						
						
						FIPS library to fail. Applications that want to set the FIPS rand method can do
so explicitly and presumably they know what they are doing... 
						
						
					 
					
						2011-06-21 17:10:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						279a0001b6 
					 
					
						
						
							
							Add prototype for null cipher.  
						
						 
						
						
						
						
					 
					
						2011-06-21 16:14:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						af17d99245 
					 
					
						
						
							
							make EVP_dss() work for DSA signing  
						
						 
						
						
						
						
					 
					
						2011-06-20 20:05:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee033faa43 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-06-20 19:58:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ebc37e667 
					 
					
						
						
							
							add null cipher to FIPS module  
						
						 
						
						
						
						
					 
					
						2011-06-20 19:48:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a2ab6986e4 
					 
					
						
						
							
							Correction.  
						
						 
						
						
						
						
					 
					
						2011-06-18 17:21:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b41fcc2cb 
					 
					
						
						
							
							Strip CRs when installing fips_premain.c Correct compat library rule  
						
						 
						
						... 
						
						
						
						in FIPS mode. 
						
						
					 
					
						2011-06-18 17:18:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6cdcb92513 
					 
					
						
						
							
							Initial FIPS capable OpenSSL information  
						
						 
						
						
						
						
					 
					
						2011-06-17 21:08:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9945b460e2 
					 
					
						
						
							
							Give parameters names in prototypes.  
						
						 
						
						
						
						
					 
					
						2011-06-17 16:47:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b234848879 
					 
					
						
						
							
							Option "fipscheck" which checks to see if FIPS is autodetected in  
						
						 
						
						... 
						
						
						
						a build. Use this for WIN32 builds. 
						
						
					 
					
						2011-06-16 16:27:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fdb65c836c 
					 
					
						
						
							
							Don't include des.h any more: it is not needed.  
						
						 
						
						
						
						
					 
					
						2011-06-16 14:12:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c3de647e7d 
					 
					
						
						
							
							Update to mk1mf.pl and ms\do_fips.bat to install relevant files for  
						
						 
						
						... 
						
						
						
						WIN32 FIPS builds. 
						
						
					 
					
						2011-06-15 21:04:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e66cb363d6 
					 
					
						
						
							
							Fix the version history: changes going into 1.1.0 that are also going  
						
						 
						
						... 
						
						
						
						into 1.0.1 should not be listed as "changes between 1.0.1 and 1.0.0".
This makes the OpenSSL_1_0_1-stable and HEAD versions of this file
consistent with each other (the HEAD version has the additional 1.1.0
section, but doesn't otherwise differ). 
						
						
					 
					
						2011-06-15 14:49:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						70051b1d88 
					 
					
						
						
							
							set FIPS allow before initialising ctx  
						
						 
						
						
						
						
					 
					
						2011-06-14 15:25:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd6386f59c 
					 
					
						
						
							
							make sure custom cipher flag doesn't use any mode bits  
						
						 
						
						
						
						
					 
					
						2011-06-13 23:06:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d55dd86dd 
					 
					
						
						
							
							Allow applications to specify alternative FIPS RAND methods if they  
						
						 
						
						... 
						
						
						
						are sure they are OK.
API to retrieve FIPS rand method. 
						
						
					 
					
						2011-06-13 20:28:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						38f90d06d7 
					 
					
						
						
							
							sync and update ordinals  
						
						 
						
						
						
						
					 
					
						2011-06-12 15:40:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19cd2049f7 
					 
					
						
						
							
							Don't export functions marked as FIPSCAPABLE.  
						
						 
						
						
						
						
					 
					
						2011-06-12 15:38:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b08e372bf6 
					 
					
						
						
							
							Use FIPSCAPABLE for FIPS module functions used in FIPS capable OpenSSL.  
						
						 
						
						
						
						
					 
					
						2011-06-12 15:37:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0435dc1902 
					 
					
						
						
							
							HMAC fips prototypes  
						
						 
						
						
						
						
					 
					
						2011-06-12 15:02:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e6e7b4e825 
					 
					
						
						
							
							CMAC FIPS prototypes.  
						
						 
						
						
						
						
					 
					
						2011-06-12 14:11:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f41154b206 
					 
					
						
						
							
							#undef bn_div_words as it is defined for FIPS builds.  
						
						 
						
						
						
						
					 
					
						2011-06-10 14:03:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3096d53b46 
					 
					
						
						
							
							Update dependencies for m_dss.c too.  
						
						 
						
						
						
						
					 
					
						2011-06-10 14:00:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						068291cd44 
					 
					
						
						
							
							Remove x509.h from SHA1 clone digests, update dependencies.  
						
						 
						
						
						
						
					 
					
						2011-06-10 13:52:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1a8a71cf7 
					 
					
						
						
							
							Install FIPS module in FIPSDIR if set.  
						
						 
						
						
						
						
					 
					
						2011-06-09 21:52:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						603bc9395c 
					 
					
						
						
							
							more prototypes in fips.h  
						
						 
						
						
						
						
					 
					
						2011-06-09 15:18:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da9234130a 
					 
					
						
						
							
							Add more prototypes.  
						
						 
						
						
						
						
					 
					
						2011-06-09 13:50:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca9335760b 
					 
					
						
						
							
							fix memory leak  
						
						 
						
						
						
						
					 
					
						2011-06-08 15:55:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4960411e1f 
					 
					
						
						
							
							Add flags for DH FIPS method.  
						
						 
						
						... 
						
						
						
						Update/fix prototypes in fips.h 
						
						
					 
					
						2011-06-08 15:53:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b6abd627c 
					 
					
						
						
							
							Set flags in ECDH and ECDSA methods for FIPS.  
						
						 
						
						
						
						
					 
					
						2011-06-08 13:52:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7eabad423c 
					 
					
						
						
							
							rc4_skey.c: remove dead/redundant code (it's never compiled) and  
						
						 
						
						... 
						
						
						
						misleading/obsolete comment. 
						
						
					 
					
						2011-06-06 20:02:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f0d1be3a6 
					 
					
						
						
							
							Add prototypes for some FIPS EC functions.  
						
						 
						
						
						
						
					 
					
						2011-06-06 15:24:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1c13c122d8 
					 
					
						
						
							
							Set SSL_FIPS flag in ECC ciphersuites.  
						
						 
						
						
						
						
					 
					
						2011-06-06 14:14:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						644ce07ecd 
					 
					
						
						
							
							Move function prototype to fips.h  
						
						 
						
						
						
						
					 
					
						2011-06-06 11:56:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						17f121de9d 
					 
					
						
						
							
							e_aes.c: move AES-NI run-time switch and implement the switch for remaining modes.  
						
						 
						
						
						
						
					 
					
						2011-06-06 11:40:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4d01f2761d 
					 
					
						
						
							
							x86_64cpuid.pl: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-06-04 13:08:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						301799b803 
					 
					
						
						
							
							x86[_64]cpuid.pl: add function accessing rdrand instruction.  
						
						 
						
						
						
						
					 
					
						2011-06-04 12:20:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d515259e2 
					 
					
						
						
							
							No spaces in assignements in a shell script...  
						
						 
						
						
						
						
					 
					
						2011-06-04 09:00:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f8f8bf3a4 
					 
					
						
						
							
							fix error discrepancy  
						
						 
						
						
						
						
					 
					
						2011-06-03 18:50:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8b90804b6 
					 
					
						
						
							
							license correction, no EAY code included in this file  
						
						 
						
						
						
						
					 
					
						2011-06-03 17:56:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						549c4ad35b 
					 
					
						
						
							
							Add "OPENSSL_FIPSCAPABLE" define for a version of OpenSSL which is  
						
						 
						
						... 
						
						
						
						FIPS capable: i.e. FIPS module is supplied externally. 
						
						
					 
					
						2011-06-03 16:26:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						267229b141 
					 
					
						
						
							
							Constify RSA signature buffer.  
						
						 
						
						
						
						
					 
					
						2011-06-03 12:38:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						946f57105f 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-06-02 18:20:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2280dc7c43 
					 
					
						
						
							
							Remove FIPS RSA functions from crypto/rsa.  
						
						 
						
						
						
						
					 
					
						2011-06-02 17:52:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0cabe4e172 
					 
					
						
						
							
							Move FIPS RSA function definitions to fips.h  
						
						 
						
						... 
						
						
						
						New function to lookup digests by NID in module.
Minor optimisation: if supplied hash is NULL to FIPS RSA functions and
we are using PKCS padding get digest NID from otherwise unused saltlen
parameter instead. 
						
						
					 
					
						2011-06-02 17:30:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6df360b9e 
					 
					
						
						
							
							Simple automated certificate creation demo.  
						
						 
						
						
						
						
					 
					
						2011-06-01 18:36:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e7ee10d3dc 
					 
					
						
						
							
							Clone digest prototypes.  
						
						 
						
						
						
						
					 
					
						2011-06-01 14:18:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bce1af7762 
					 
					
						
						
							
							Add DSA and ECDSA "clone digests" to module for compatibility with old  
						
						 
						
						... 
						
						
						
						applications. 
						
						
					 
					
						2011-06-01 14:07:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						654ac273c1 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-06-01 11:10:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f119a0357 
					 
					
						
						
							
							set FIPS permitted flag before initalising digest  
						
						 
						
						
						
						
					 
					
						2011-05-31 16:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						06843f826f 
					 
					
						
						
							
							Fake CPU caps so fips_standalone_sha1 compiles.  
						
						 
						
						... 
						
						
						
						Initialise update function for bad digest inits. 
						
						
					 
					
						2011-05-31 16:22:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1b2047c5c0 
					 
					
						
						
							
							Don't round up partitioned premaster secret length if there is only one  
						
						 
						
						... 
						
						
						
						digest in use: this caused the PRF to fail for an odd premaster secret
length. 
						
						
					 
					
						2011-05-31 10:34:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eda3766b53 
					 
					
						
						
							
							Output supported curves in preference order instead of numerically.  
						
						 
						
						
						
						
					 
					
						2011-05-30 17:58:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62b6c5c404 
					 
					
						
						
							
							e_aes.c: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-05-30 10:13:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e76cbcf686 
					 
					
						
						
							
							e_aes.c: fix aes_cfb1_cipher.  
						
						 
						
						
						
						
					 
					
						2011-05-30 10:10:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d1fff483d6 
					 
					
						
						
							
							e_aes.c: integrate AESNI directly into EVP.  
						
						 
						
						
						
						
					 
					
						2011-05-30 09:16:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8da721ee2b 
					 
					
						
						
							
							aesni-x86[_64].pl: relax alignment requirement.  
						
						 
						
						
						
						
					 
					
						2011-05-30 09:15:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e2e231852 
					 
					
						
						
							
							Add more cipher prototypes.  
						
						 
						
						
						
						
					 
					
						2011-05-29 16:16:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						87829ac926 
					 
					
						
						
							
							Prototypes for more FIPS functions for use in FIPS capable OpenSSL.  
						
						 
						
						
						
						
					 
					
						2011-05-29 15:56:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fe9a5107be 
					 
					
						
						
							
							Various mingw64 fixes.  
						
						 
						
						
						
						
					 
					
						2011-05-29 13:51:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						afa4b38671 
					 
					
						
						
							
							sha1-586|x86_64.pl: minor portability fix.  
						
						 
						
						
						
						
					 
					
						2011-05-29 13:48:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						18f5603c53 
					 
					
						
						
							
							x86cpuid.pl: last commit broke platforms with perl with 64-bit integer.  
						
						 
						
						
						
						
					 
					
						2011-05-29 12:50:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0c149802a2 
					 
					
						
						
							
							sha1-586|x86_64.pl: add SSSE3 and AVX code paths.  
						
						 
						
						
						
						
					 
					
						2011-05-29 12:39:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c33066900c 
					 
					
						
						
							
							Add FIPS_digestinit prototype for FIPS capable OpenSSL.  
						
						 
						
						
						
						
					 
					
						2011-05-28 23:02:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f87ff24bc4 
					 
					
						
						
							
							Add prototypes for FIPS EVP implementations: for use in FIPS capable  
						
						 
						
						... 
						
						
						
						OpenSSL. 
						
						
					 
					
						2011-05-28 21:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cf3aeae419 
					 
					
						
						
							
							aes-ppc.pl: handle unaligned data on page boundaries.  
						
						 
						
						
						
						
					 
					
						2011-05-28 09:41:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a205e5981 
					 
					
						
						
							
							Rename many internal only module functions from FIPS_* to fips_*.  
						
						 
						
						
						
						
					 
					
						2011-05-27 21:11:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f44cb15fab 
					 
					
						
						
							
							rc4-x86_64.pl: fix due credit.  
						
						 
						
						
						
						
					 
					
						2011-05-27 18:58:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						986289604e 
					 
					
						
						
							
							rc4-x86_64.pl: RC4_options fix-up.  
						
						 
						
						
						
						
					 
					
						2011-05-27 16:15:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4bb90087d7 
					 
					
						
						
							
							x86[_64]cpuid.pl: harmonize usage of reserved bits  #20  and  #30 .  
						
						 
						
						
						
						
					 
					
						2011-05-27 15:32:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6715034002 
					 
					
						
						
							
							PPC assembler pack: adhere closer to ABI specs, add PowerOpen traceback data.  
						
						 
						
						
						
						
					 
					
						2011-05-27 13:32:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0ca9a483af 
					 
					
						
						
							
							rc4-x86_64.pl: major optimization for contemporary Intel CPUs.  
						
						 
						
						
						
						
					 
					
						2011-05-27 09:51:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0dff8ba248 
					 
					
						
						
							
							rc4-586.pl: optimize even further...  
						
						 
						
						
						
						
					 
					
						2011-05-27 09:46:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb62cd807b 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-05-26 22:01:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64f5178d67 
					 
					
						
						
							
							Use FIPSLD_LIBCRYPTO for consistency with other env variables in fipsld.  
						
						 
						
						... 
						
						
						
						Use current directory for fips_premain_dso 
						
						
					 
					
						2011-05-26 21:20:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e558c2aa3f 
					 
					
						
						
							
							In fipsld use FIPSLIBCRYPTO environment variable to specify an alternative  
						
						 
						
						... 
						
						
						
						location for libcrypto.a, support shared library builds in different
source tree. 
						
						
					 
					
						2011-05-26 21:15:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ed0a35f222 
					 
					
						
						
							
							Install fips_standalone_sha1 and make use of it in fipsld script.  
						
						 
						
						
						
						
					 
					
						2011-05-26 13:59:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2bc3ad28b3 
					 
					
						
						
							
							x86_64cpuid.pl: get AVX masking right.  
						
						 
						
						
						
						
					 
					
						2011-05-26 13:16:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d67813f878 
					 
					
						
						
							
							Only install FIPS related files for fipscanisteronly build.  
						
						 
						
						
						
						
					 
					
						2011-05-26 11:00:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ecfe2d1753 
					 
					
						
						
							
							More symbol renaming.  
						
						 
						
						
						
						
					 
					
						2011-05-25 16:01:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ebc5e72fe5 
					 
					
						
						
							
							Don't advertise or use MD5 for TLS v1.2 in FIPS mode  
						
						 
						
						
						
						
					 
					
						2011-05-25 15:31:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d52f1d52b 
					 
					
						
						
							
							PR: 2533  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Setting SSL_MODE_RELEASE_BUFFERS should be ignored for DTLS, but instead causes
the program to crash. This is due to missing version checks and is fixed with
this patch. 
						
						
					 
					
						2011-05-25 15:20:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd60dfa0f2 
					 
					
						
						
							
							PR: 2529  
						
						 
						
						... 
						
						
						
						Submitted by: Marcus Meissner <meissner@suse.de >
Reviewed by: steve
Call ssl_new() to reallocate SSL BIO internals if we want to replace
the existing internal SSL structure. 
						
						
					 
					
						2011-05-25 15:16:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be1242cbd1 
					 
					
						
						
							
							PR: 2527  
						
						 
						
						... 
						
						
						
						Submitted by: Marcus Meissner <meissner@suse.de >
Reviewed by: steve
Set cnf to NULL to avoid possible double free. 
						
						
					 
					
						2011-05-25 15:05:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a26e245ecd 
					 
					
						
						
							
							Fix the ECDSA timing attack mentioned in the paper at:  
						
						 
						
						... 
						
						
						
						http://eprint.iacr.org/2011/232.pdf 
Thanks to the original authors Billy Bob Brumley and Nicola Tuveri for
bringing this to our attention. 
						
						
					 
					
						2011-05-25 14:52:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						992bdde62d 
					 
					
						
						
							
							Fix the ECDSA timing attack mentioned in the paper at:  
						
						 
						
						... 
						
						
						
						http://eprint.iacr.org/2011/232.pdf 
Thanks to the original authors Billy Bob Brumley and Nicola Tuveri for
bringing this to our attention. 
						
						
					 
					
						2011-05-25 14:41:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bbcf3a9b30 
					 
					
						
						
							
							Some nextproto patches broke DTLS: fix  
						
						 
						
						
						
						
					 
					
						2011-05-25 14:31:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						006b54a8eb 
					 
					
						
						
							
							Oops use up to date patch for PR#2506  
						
						 
						
						
						
						
					 
					
						2011-05-25 14:30:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						44ddb27fa6 
					 
					
						
						
							
							PR: 2512  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix BIO_accept so it can be bound to IPv4 or IPv6 sockets consistently. 
						
						
					 
					
						2011-05-25 12:37:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7832d6ab1c 
					 
					
						
						
							
							PR: 2506  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fully implement SSL_clear for DTLS. 
						
						
					 
					
						2011-05-25 12:28:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee4b5cebef 
					 
					
						
						
							
							PR: 2505  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS session resumption timer bug. 
						
						
					 
					
						2011-05-25 12:25:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						238b63613b 
					 
					
						
						
							
							use TLS1_get_version macro to check version so TLS v1.2 changes don't interfere with DTLS  
						
						 
						
						
						
						
					 
					
						2011-05-25 11:43:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						87f6b97e89 
					 
					
						
						
							
							e_padlock.c: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-05-25 10:02:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6a99984b57 
					 
					
						
						
							
							rc4-586.pl: optimize unused code path.  
						
						 
						
						
						
						
					 
					
						2011-05-25 09:36:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						67d8487bb8 
					 
					
						
						
							
							e_padlock.c: last x86_64 commit didn't work with some optimizers.  
						
						 
						
						
						
						
					 
					
						2011-05-24 17:18:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						760d2551fb 
					 
					
						
						
							
							rc4-586.pl: 50% improvement on Core2 and 80% on Westmere.  
						
						 
						
						
						
						
					 
					
						2011-05-24 13:07:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73ab341130 
					 
					
						
						
							
							PR: 2522  
						
						 
						
						... 
						
						
						
						Submitted by: Henrik Grindal Bakken <henribak@cisco.com >
Don't compare past end of buffer. 
						
						
					 
					
						2011-05-23 12:27:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62f29eb1cf 
					 
					
						
						
							
							spacrv9cap.c: addenum to recent EC optimizations.  
						
						 
						
						
						
						
					 
					
						2011-05-23 08:14:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f8501464cc 
					 
					
						
						
							
							aesni-x86[_64].pl: optimize for Sandy Bridge and add XTS mode.  
						
						 
						
						
						
						
					 
					
						2011-05-22 18:38:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						96abea332c 
					 
					
						
						
							
							x86_64-gf2m.pl: add Win64 SEH.  
						
						 
						
						
						
						
					 
					
						2011-05-22 18:29:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2e75ed332f 
					 
					
						
						
							
							ppccap.c: addenum to recent EC optimizations.  
						
						 
						
						
						
						
					 
					
						2011-05-21 10:17:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8ea368c41 
					 
					
						
						
							
							ec_cvt.c: ARM comparison results were wrong, clarify the background.  
						
						 
						
						
						
						
					 
					
						2011-05-21 08:40:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fdf6dac859 
					 
					
						
						
							
							ec_cvt.c: avoid EC_GFp_nist_method on platforms with bn_mul_mont [see  
						
						 
						
						... 
						
						
						
						commentary for details]. 
						
						
					 
					
						2011-05-20 20:31:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f37f20ffd3 
					 
					
						
						
							
							PR: 2295  
						
						 
						
						... 
						
						
						
						Submitted by: Alexei Khlebnikov <alexei.khlebnikov@opera.com >
Reviewed by: steve
OOM checking. Leak in OOM fix. Fall-through comment. Duplicate code
elimination. 
						
						
					 
					
						2011-05-20 14:56:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						101e6e19f2 
					 
					
						
						
							
							Add CHANGES entry: add FIPS support to ssl  
						
						 
						
						
						
						
					 
					
						2011-05-19 18:10:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						086e32a6c7 
					 
					
						
						
							
							Implement FIPS_mode and FIPS_mode_set  
						
						 
						
						
						
						
					 
					
						2011-05-19 18:09:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05b4fc6c22 
					 
					
						
						
							
							oops  
						
						 
						
						
						
						
					 
					
						2011-05-19 17:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0fba7a8fa8 
					 
					
						
						
							
							update date  
						
						 
						
						
						
						
					 
					
						2011-05-19 17:53:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92b4d936cb 
					 
					
						
						
							
							inherit HMAC flags from MD_CTX  
						
						 
						
						
						
						
					 
					
						2011-05-19 17:38:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f7533eb84 
					 
					
						
						
							
							set encodedPoint to NULL after freeing it  
						
						 
						
						
						
						
					 
					
						2011-05-19 16:17:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fb2f3411ea 
					 
					
						
						
							
							aesni-x86_64.pl: make it compile on MacOS X.  
						
						 
						
						
						
						
					 
					
						2011-05-18 17:05:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c30a2505e2 
					 
					
						
						
							
							x86gas.pl: don't omit .comm OPENSSL_ia32cap_P on MacOS X.  
						
						 
						
						
						
						
					 
					
						2011-05-18 16:28:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c7b903e01d 
					 
					
						
						
							
							x86_64-xlate.pl: add inter-register movq and make x86_64-gfm.s compile on  
						
						 
						
						... 
						
						
						
						Solaris, MacOS X, elderly gas... 
						
						
					 
					
						2011-05-18 16:26:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ddc20d4da9 
					 
					
						
						
							
							x86_64cpuid.pl: allow shared build to work without -Bsymbolic.  
						
						 
						
						... 
						
						
						
						PR: 2466 
						
						
					 
					
						2011-05-18 16:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b50842036f 
					 
					
						
						
							
							e_padlock.c: make it compile on MacOS X.  
						
						 
						
						
						
						
					 
					
						2011-05-18 16:21:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b906422149 
					 
					
						
						
							
							x86[_64]cpuid.pl: handle new extensions.  
						
						 
						
						
						
						
					 
					
						2011-05-16 20:35:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a3e07010b4 
					 
					
						
						
							
							ppc-xlate.pl: get linux64 declaration right.  
						
						 
						
						
						
						
					 
					
						2011-05-16 19:52:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9c437e2fad 
					 
					
						
						
							
							cms-test.pl: make it work with not-so-latest perl.  
						
						 
						
						
						
						
					 
					
						2011-05-16 18:11:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2b9a8ca15b 
					 
					
						
						
							
							x86gas.pl: add palignr and move pclmulqdq.  
						
						 
						
						
						
						
					 
					
						2011-05-16 18:07:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						afebe623c5 
					 
					
						
						
							
							x86_64 assembler pack: add x86_64-gf2m module.  
						
						 
						
						
						
						
					 
					
						2011-05-16 17:46:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b5c6aab57e 
					 
					
						
						
							
							x86_64-xlate.pl: allow "base-less" effective address, add palignr, move  
						
						 
						
						... 
						
						
						
						pclmulqdq. 
						
						
					 
					
						2011-05-16 17:44:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b9b0a177f8 
					 
					
						
						
							
							new flag to stop ENGINE methods being registered  
						
						 
						
						
						
						
					 
					
						2011-05-15 15:56:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9609ea869d 
					 
					
						
						
							
							NULL is a valid cspname  
						
						 
						
						
						
						
					 
					
						2011-05-15 11:44:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff636340f5 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-05-13 12:43:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ece592886 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-05-13 12:37:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a75829deef 
					 
					
						
						
							
							Recognise NO_NISTP224-64-GCC-128  
						
						 
						
						
						
						
					 
					
						2011-05-13 12:35:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d39c495130 
					 
					
						
						
							
							Enter FIPS mode by calling FIPS_module_mode_set in openssl.c until  
						
						 
						
						... 
						
						
						
						FIPS_mode_set is implemented. 
						
						
					 
					
						2011-05-12 17:59:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						855a54a9a5 
					 
					
						
						
							
							Provisional support for TLS v1.2 client authentication: client side only.  
						
						 
						
						... 
						
						
						
						Parse certificate request message and set digests appropriately.
Generate new TLS v1.2 format certificate verify message.
Keep handshake caches around for longer as they are needed for client auth. 
						
						
					 
					
						2011-05-12 17:35:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f82912460 
					 
					
						
						
							
							Process signature algorithms during TLS v1.2 client authentication.  
						
						 
						
						... 
						
						
						
						Make sure message is long enough for signature algorithms. 
						
						
					 
					
						2011-05-12 14:38:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f76b1baf86 
					 
					
						
						
							
							Fix error discrepancy.  
						
						 
						
						
						
						
					 
					
						2011-05-12 14:28:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b1d00b9611 
					 
					
						
						
							
							Add SSL_INTERN definition.  
						
						 
						
						
						
						
					 
					
						2011-05-12 13:13:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c76e024dde 
					 
					
						
						
							
							Sync ordinals.  
						
						 
						
						
						
						
					 
					
						2011-05-11 23:04:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f7a2ab8b1 
					 
					
						
						
							
							make kerberos work with OPENSSL_NO_SSL_INTERN  
						
						 
						
						
						
						
					 
					
						2011-05-11 22:50:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b0188c4f07 
					 
					
						
						
							
							bn_nist.c: fix shadowing warnings.  
						
						 
						
						
						
						
					 
					
						2011-05-11 20:19:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f24e95b72c 
					 
					
						
						
							
							fips_canister.c: pick more neutral macro name.  
						
						 
						
						
						
						
					 
					
						2011-05-11 20:17:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fc101f88b6 
					 
					
						
						
							
							Reorder signature algorithms in strongest hash first order.  
						
						 
						
						
						
						
					 
					
						2011-05-11 16:33:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f38b38986 
					 
					
						
						
							
							Set FIPS mode for values other than 1. The only current effect  
						
						 
						
						... 
						
						
						
						is to return a consistent value. So calling FIPS_module_mode_set(n)
for n != 0 will result in FIPS_module_mode() returning n. This
will support future expansion of more FIPS modes e.g. a Suite B mode. 
						
						
					 
					
						2011-05-11 14:49:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2fd598994 
					 
					
						
						
							
							Rename FIPS_mode_set and FIPS_mode. Theses symbols will be defined in  
						
						 
						
						... 
						
						
						
						the FIPS capable OpenSSL. 
						
						
					 
					
						2011-05-11 14:43:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5024b79f5c 
					 
					
						
						
							
							Inlcude README.ECC in FIPS restricted tarball.  
						
						 
						
						
						
						
					 
					
						2011-05-11 12:52:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c5ee394b58 
					 
					
						
						
							
							Add NSA sublicense info.  
						
						 
						
						
						
						
					 
					
						2011-05-11 12:50:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						21a40da045 
					 
					
						
						
							
							Update instructions.  
						
						 
						
						
						
						
					 
					
						2011-05-10 10:59:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7919c07947 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-05-10 10:57:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ab67c517ae 
					 
					
						
						
							
							fips_canister.c: fix typo.  
						
						 
						
						
						
						
					 
					
						2011-05-10 10:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31b46ebb62 
					 
					
						
						
							
							fips_canister.c: initial support for cross-compiling. "Initial" refers  
						
						 
						
						... 
						
						
						
						to the two-entry list of verified platforms in #ifndef
FIPS_REF_POINT_IS_SAFE_TO_CROSS_COMPILE pre-processor section. 
						
						
					 
					
						2011-05-10 09:53:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc7995eeb8 
					 
					
						
						
							
							Initialise rc.  
						
						 
						
						
						
						
					 
					
						2011-05-09 21:21:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a2f9200fba 
					 
					
						
						
							
							Initial TLS v1.2 client support. Include a default supported signature  
						
						 
						
						... 
						
						
						
						algorithms extension (including everything we support). Swicth to new
signature format where needed and relax ECC restrictions.
Not TLS v1.2 client certifcate support yet but client will handle case
where a certificate is requested and we don't have one. 
						
						
					 
					
						2011-05-09 15:44:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b59755f43 
					 
					
						
						
							
							Call fipsas.pl directly for pa-risc targets.  
						
						 
						
						
						
						
					 
					
						2011-05-09 15:23:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1fb97e1313 
					 
					
						
						
							
							Optimized bn_nist.c. Performance improvement varies from one benchmark  
						
						 
						
						... 
						
						
						
						and platform to another. It was measured to deliver 20-30% better
performance on x86 platforms and 30-40% on x86_64, on nistp384 benchmark. 
						
						
					 
					
						2011-05-09 10:16:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fc683d7213 
					 
					
						
						
							
							allow SHA384, SHA512 wit DSA  
						
						 
						
						
						
						
					 
					
						2011-05-08 12:38:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						03bc500a9f 
					 
					
						
						
							
							Remove gf2m modules from bn_asm if no-ec2m set.  
						
						 
						
						
						
						
					 
					
						2011-05-07 22:56:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bfe1d2f895 
					 
					
						
						
							
							Remove FIXME comments.  
						
						 
						
						
						
						
					 
					
						2011-05-07 22:37:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ed1afd327d 
					 
					
						
						
							
							Omit GF2m properly this time ;-)  
						
						 
						
						
						
						
					 
					
						2011-05-07 22:36:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dacdd5203d 
					 
					
						
						
							
							Don't include GF2m source files is NOEC2M set.  
						
						 
						
						
						
						
					 
					
						2011-05-07 22:22:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						56c5f703c1 
					 
					
						
						
							
							IA-64 assembler pack: fix typos and make it work on HP-UX.  
						
						 
						
						
						
						
					 
					
						2011-05-07 20:36:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						58cc21fdea 
					 
					
						
						
							
							x86 assembler pack: add bn_GF2m_mul_2x2 implementations (see x86-gf2m.pl for  
						
						 
						
						... 
						
						
						
						details and performance data). 
						
						
					 
					
						2011-05-07 10:31:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fa3c4c3e9 
					 
					
						
						
							
							Fixes for WIN64 FIPS build.  
						
						 
						
						
						
						
					 
					
						2011-05-06 23:47:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						524289baa5 
					 
					
						
						
							
							Get OPENSSL_FIPSSYMS from environment in fipsas.pl, include ppccap.c and .S  
						
						 
						
						... 
						
						
						
						files in fipsdist. 
						
						
					 
					
						2011-05-06 21:42:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2677d85631 
					 
					
						
						
							
							Don't fail WIN32 builds on warnings.  
						
						 
						
						
						
						
					 
					
						2011-05-06 17:55:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad4784953d 
					 
					
						
						
							
							Return error codes for selftest failure instead of hard assertion errors.  
						
						 
						
						
						
						
					 
					
						2011-05-06 17:38:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b7be581e5 
					 
					
						
						
							
							Continuing TLS v1.2 support: add support for server parsing of  
						
						 
						
						... 
						
						
						
						signature algorithms extension and correct signature format for
server key exchange.
All ciphersuites should now work on the server but no client support and
no client certificate support yet. 
						
						
					 
					
						2011-05-06 13:00:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c184711124 
					 
					
						
						
							
							Hide more symbols.  
						
						 
						
						
						
						
					 
					
						2011-05-05 23:10:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						925596f85b 
					 
					
						
						
							
							ARM assembler pack: engage newly introduced armv4-gf2m module.  
						
						 
						
						
						
						
					 
					
						2011-05-05 21:57:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d3cdd5b58 
					 
					
						
						
							
							Fix warning of signed/unsigned comparison.  
						
						 
						
						
						
						
					 
					
						2011-05-05 14:47:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						75359644d0 
					 
					
						
						
							
							ARM assembler pack. Add bn_GF2m_mul_2x2 implementation (see source code  
						
						 
						
						... 
						
						
						
						for details and performance data). 
						
						
					 
					
						2011-05-05 07:21:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6313d628da 
					 
					
						
						
							
							Remove superfluous PRNG self tests.  
						
						 
						
						... 
						
						
						
						Print timer resolution. 
						
						
					 
					
						2011-05-04 23:17:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c7d0d0ae09 
					 
					
						
						
							
							xts128.c: minor optimizaton.  
						
						 
						
						
						
						
					 
					
						2011-05-04 20:57:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c9adde0699 
					 
					
						
						
							
							Update status.  
						
						 
						
						
						
						
					 
					
						2011-05-04 18:43:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						614dd926cb 
					 
					
						
						
							
							Remove debugging print.  
						
						 
						
						... 
						
						
						
						Explicitly use LINKDIRS for fipsdist links. 
						
						
					 
					
						2011-05-04 18:33:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						034688ec4d 
					 
					
						
						
							
							bn_gf2m.c: optimized BN_GF2m_mod_inv delivers sometimes 2x of ECDSA sign.  
						
						 
						
						... 
						
						
						
						Exact improvement coefficients vary from one benchmark and platform to
another, e.g. it performs 70%-33% better on ARM, hereafter less for
longer keys, and 100%-90% better on x86_64. 
						
						
					 
					
						2011-05-04 15:22:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d16765919d 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2011-05-04 14:34:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a95bbadb57 
					 
					
						
						
							
							Include fipssyms.h for ARM builds to translate symbols.  
						
						 
						
						... 
						
						
						
						Translate arm symbol to fips_*. 
						
						
					 
					
						2011-05-04 14:16:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e350458a63 
					 
					
						
						
							
							Remove useless setting.  
						
						 
						
						
						
						
					 
					
						2011-05-04 01:09:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e9093c9832 
					 
					
						
						
							
							PR: 2499  
						
						 
						
						... 
						
						
						
						Submitted by: "James 'J.C.' Jones" <james.jc.jones@gmail.com >
Typos. 
						
						
					 
					
						2011-05-02 23:29:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e2a962aad 
					 
					
						
						
							
							Fix do_fips script.  
						
						 
						
						
						
						
					 
					
						2011-05-02 17:11:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9243a86d75 
					 
					
						
						
							
							Use faster curves for ECDSA self test.  
						
						 
						
						
						
						
					 
					
						2011-05-02 12:13:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fc98a4377d 
					 
					
						
						
							
							Use more portable clock_gettime() for fips_test_suite timing.  
						
						 
						
						... 
						
						
						
						Output times of each subtest. 
						
						
					 
					
						2011-05-02 11:09:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd600c0037 
					 
					
						
						
							
							Stop warning in VxWorks.  
						
						 
						
						
						
						
					 
					
						2011-05-01 20:55:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a32ad6891b 
					 
					
						
						
							
							Quick hack to time POST.  
						
						 
						
						
						
						
					 
					
						2011-05-01 20:54:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2325315ba3 
					 
					
						
						
							
							Two more symbol renames.  
						
						 
						
						
						
						
					 
					
						2011-05-01 19:07:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8a2024ea59 
					 
					
						
						
							
							Handle multiple CPUID_OBJ correctly.  
						
						 
						
						
						
						
					 
					
						2011-05-01 19:06:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						42c7c6764e 
					 
					
						
						
							
							Rename some more symbols.  
						
						 
						
						
						
						
					 
					
						2011-05-01 17:51:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9f7b2c76b1 
					 
					
						
						
							
							Include crypto.h in ppccap.c  
						
						 
						
						
						
						
					 
					
						2011-05-01 16:54:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1c6807c9d6 
					 
					
						
						
							
							Add ppc_cap.c to restricted tarball.  
						
						 
						
						
						
						
					 
					
						2011-05-01 16:46:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd4b0137fc 
					 
					
						
						
							
							For FIPS algorithm test utilities use our own version of strcasecmp and  
						
						 
						
						... 
						
						
						
						strncasecmp to cover cases where platforms don't support them. 
						
						
					 
					
						2011-05-01 16:18:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f6efd6acb 
					 
					
						
						
							
							Some changes to support VxWorks in the validted module.  
						
						 
						
						
						
						
					 
					
						2011-05-01 15:36:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						823df31be7 
					 
					
						
						
							
							Disable SHA256 if not supported.  
						
						 
						
						
						
						
					 
					
						2011-05-01 15:36:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee872e99f7 
					 
					
						
						
							
							Update symbol translation table.  
						
						 
						
						
						
						
					 
					
						2011-05-01 14:33:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a85e53813 
					 
					
						
						
							
							no need to include memory.h  
						
						 
						
						
						
						
					 
					
						2011-04-30 23:37:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7409d7ad51 
					 
					
						
						
							
							Initial incomplete TLS v1.2 support. New ciphersuites added, new version  
						
						 
						
						... 
						
						
						
						checking added, SHA256 PRF support added.
At present only RSA key exchange ciphersuites work with TLS v1.2 as the
new signature format is not yet implemented. 
						
						
					 
					
						2011-04-29 22:56:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						08557cf22c 
					 
					
						
						
							
							Initial "opaque SSL" framework. If an application defines  
						
						 
						
						... 
						
						
						
						OPENSSL_NO_SSL_INTERN all ssl related structures are opaque
and internals cannot be directly accessed. Many applications
will need some modification to support this and most likely some
additional functions added to OpenSSL.
The advantage of this option is that any application supporting
it will still be binary compatible if SSL structures change. 
						
						
					 
					
						2011-04-29 22:37:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c4d162873f 
					 
					
						
						
							
							Don't assume version of rm supports -rf: use RM instead.  
						
						 
						
						
						
						
					 
					
						2011-04-28 20:52:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1eb8939695 
					 
					
						
						
							
							Stop warnings about undefined _exit on Android.  
						
						 
						
						... 
						
						
						
						Additional script output options to fipsalgtest.pl 
						
						
					 
					
						2011-04-28 12:20:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c50694f05 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2011-04-24 12:40:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7979626995 
					 
					
						
						
							
							Recognise invalid enable/disable options.  
						
						 
						
						... 
						
						
						
						Option to shut up bogus warnings. 
						
						
					 
					
						2011-04-24 12:13:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c36ce81cf5 
					 
					
						
						
							
							Clarification.  
						
						 
						
						
						
						
					 
					
						2011-04-24 11:38:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3f0d14055b 
					 
					
						
						
							
							gcm128.c: minor optimization.  
						
						 
						
						
						
						
					 
					
						2011-04-24 11:10:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f855b9d719 
					 
					
						
						
							
							ccm128.c: add CRYPTO_ccm128_[en|de]crypt_ccm64 and minor optimization.  
						
						 
						
						
						
						
					 
					
						2011-04-24 11:10:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ce67647605 
					 
					
						
						
							
							fips_check_dsa_prng() should only be built when OPENSSL_FIPS is defined.  
						
						 
						
						
						
						
					 
					
						2011-04-24 10:07:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						171edf7ff4 
					 
					
						
						
							
							Error discrepancy corrected.  
						
						 
						
						
						
						
					 
					
						2011-04-24 08:59:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						69a80f7d5e 
					 
					
						
						
							
							More fixes for DSA FIPS overrides.  
						
						 
						
						
						
						
					 
					
						2011-04-23 21:59:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc03504d09 
					 
					
						
						
							
							Make sure overrides work for RSA/DSA.  
						
						 
						
						
						
						
					 
					
						2011-04-23 21:15:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						383bc117bb 
					 
					
						
						
							
							Oops, work out expanded buffer length before allocating it...  
						
						 
						
						
						
						
					 
					
						2011-04-23 20:24:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e0d1a2f80a 
					 
					
						
						
							
							Always return multiple of block length bytes from default DRBG seed  
						
						 
						
						... 
						
						
						
						callback.
Handle case where no multiple of the block size is in the interval
[min_len, max_len]. 
						
						
					 
					
						2011-04-23 20:05:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cac4fb58e0 
					 
					
						
						
							
							Add PRNG security strength checking.  
						
						 
						
						
						
						
					 
					
						2011-04-23 19:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9e5fe439b4 
					 
					
						
						
							
							xts128.c: fix bug introduced in commit#20704. Bug affected encryption of  
						
						 
						
						... 
						
						
						
						vectors whose lenght was not multiples of 16 bytes. 
						
						
					 
					
						2011-04-23 09:15:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						74fac927b0 
					 
					
						
						
							
							Return errors instead of aborting when selftest fails.  
						
						 
						
						
						
						
					 
					
						2011-04-22 11:12:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da9ead8db2 
					 
					
						
						
							
							Add XTS test vector support to fipsalgtest.pl  
						
						 
						
						
						
						
					 
					
						2011-04-22 01:05:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bef5013961 
					 
					
						
						
							
							Rewrite OutputValue to avoid use of buffer when printing out hex values.  
						
						 
						
						... 
						
						
						
						Delete unused functions from fips_utl.h.
Increase xts line buffer. 
						
						
					 
					
						2011-04-22 00:41:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						79170bc97a 
					 
					
						
						
							
							Initial do_fips.bat build script for WIN32 fipscanister.  
						
						 
						
						
						
						
					 
					
						2011-04-21 21:06:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						95c9e774f9 
					 
					
						
						
							
							Reconise no-ec-nistp224-64-gcc-128 option.  
						
						 
						
						
						
						
					 
					
						2011-04-21 20:55:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e161120eff 
					 
					
						
						
							
							Make fipscanisteronly auto detect work on WIN32.  
						
						 
						
						
						
						
					 
					
						2011-04-21 16:58:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						84ed90f88b 
					 
					
						
						
							
							Fix WIN32 warning.  
						
						 
						
						
						
						
					 
					
						2011-04-21 14:54:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						065d050e7a 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2011-04-21 14:54:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8b6a13a56 
					 
					
						
						
							
							Add continuous RNG test to entropy source. Entropy callbacks now need  
						
						 
						
						... 
						
						
						
						to specify a "block length". 
						
						
					 
					
						2011-04-21 14:17:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7608978861 
					 
					
						
						
							
							Update DRBG to use new POST scheme.  
						
						 
						
						
						
						
					 
					
						2011-04-20 18:05:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14264b19de 
					 
					
						
						
							
							Add periodic DRBG health checks as required by SP800-90.  
						
						 
						
						
						
						
					 
					
						2011-04-20 17:06:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8da18ea1a5 
					 
					
						
						
							
							Add partial GCM tests to fipsalgtest.pl  
						
						 
						
						
						
						
					 
					
						2011-04-20 15:06:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7aaa88e55c 
					 
					
						
						
							
							Add partial DH and ECDH primitives only testing to fipsalgtest.pl  
						
						 
						
						
						
						
					 
					
						2011-04-20 14:33:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						84c7a8f7dc 
					 
					
						
						
							
							Warn if lines are truncated in algorithm test utilities.  
						
						 
						
						... 
						
						
						
						Support for new test files: DRBG and CCM. 
						
						
					 
					
						2011-04-20 13:20:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						daaf5088fd 
					 
					
						
						
							
							xts128.c: minor optimization and clarified prototype.  
						
						 
						
						
						
						
					 
					
						2011-04-20 08:13:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e382e4e603 
					 
					
						
						
							
							perlasm/x86gas.pl: make OPENSSL_instrument_bus[2] compile.  
						
						 
						
						
						
						
					 
					
						2011-04-19 19:09:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb1b3aa151 
					 
					
						
						
							
							Add AES CCM selftest.  
						
						 
						
						
						
						
					 
					
						2011-04-19 18:57:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c7096835b 
					 
					
						
						
							
							Use 0 for tbslen to perform strlen.  
						
						 
						
						
						
						
					 
					
						2011-04-19 11:10:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						befcced53e 
					 
					
						
						
							
							Add fips/cmac directory to WIN32 build.  
						
						 
						
						
						
						
					 
					
						2011-04-18 23:30:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b5dd178740 
					 
					
						
						
							
							Fix EVP CCM decrypt. Add decrypt support to algorithm test program.  
						
						 
						
						
						
						
					 
					
						2011-04-18 22:48:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98279c1629 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-04-18 21:01:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a0cc46f8e4 
					 
					
						
						
							
							ccm128.c: fix Win32 compiler warning.  
						
						 
						
						
						
						
					 
					
						2011-04-18 20:19:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						70d01a7f82 
					 
					
						
						
							
							perlasm/x86[nm]asm.pl: make OPENSSL_instrument_bus[2] compile.  
						
						 
						
						
						
						
					 
					
						2011-04-18 20:18:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5f1b10ed2e 
					 
					
						
						
							
							ccm128.c: fix STRICT_ALIGNMENT another bug in CRYPTO_ccm128_decrypt.  
						
						 
						
						
						
						
					 
					
						2011-04-18 19:17:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						62dc7ed67c 
					 
					
						
						
							
							Override flag for XTS length limit.  
						
						 
						
						
						
						
					 
					
						2011-04-18 17:31:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b3a45e7db5 
					 
					
						
						
							
							CCM encrypt algorithm test support.  
						
						 
						
						
						
						
					 
					
						2011-04-18 16:31:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2391681082 
					 
					
						
						
							
							Initial untested CCM support via EVP.  
						
						 
						
						
						
						
					 
					
						2011-04-18 14:25:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6386b1b34d 
					 
					
						
						
							
							Compile ccm128.c, move some structures to modes_lcl.h add prototypes.  
						
						 
						
						
						
						
					 
					
						2011-04-18 13:15:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b4a855778 
					 
					
						
						
							
							Don't need separate tag buffer for GCM mode: use EVP_CIPHER_CTX buf  
						
						 
						
						... 
						
						
						
						field which is not unused for custom ciphers. 
						
						
					 
					
						2011-04-18 11:28:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca8630ba81 
					 
					
						
						
							
							Remove shlib_wrap.sh as it is not needed (all algorithm tests are  
						
						 
						
						... 
						
						
						
						staticly linked to fipscanister.o). Add option to generate a shell
script to run all tests: this is useful for platforms that don't have
perl. 
						
						
					 
					
						2011-04-17 15:39:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5fabb88a78 
					 
					
						
						
							
							Multiple assembler packs: add experimental memory bus instrumentation.  
						
						 
						
						
						
						
					 
					
						2011-04-17 12:46:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						764ef43962 
					 
					
						
						
							
							Remove PSS salt length detection hack from fipslagtest.pl by allowing a regexp  
						
						 
						
						... 
						
						
						
						search of the file to determine its type. This will be needed for other tests
later... 
						
						
					 
					
						2011-04-16 23:54:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7e5b4d6779 
					 
					
						
						
							
							ccm128.c: minor optimization and bugfix in CRYPTO_ccm128_[en|de]crypt.  
						
						 
						
						
						
						
					 
					
						2011-04-16 22:57:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75707a324f 
					 
					
						
						
							
							Add "post" option to fips_test_suite to run the POST only and exit.  
						
						 
						
						
						
						
					 
					
						2011-04-15 20:09:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45321c41e2 
					 
					
						
						
							
							Add length limitation from SP800-38E.  
						
						 
						
						
						
						
					 
					
						2011-04-15 12:01:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf8131f79f 
					 
					
						
						
							
							Add XTS selftest, include in fips_test_suite.  
						
						 
						
						
						
						
					 
					
						2011-04-15 11:30:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						06b7e5a0e4 
					 
					
						
						
							
							Add algorithm driver for XTS mode. Fix several bugs in EVP XTS implementation.  
						
						 
						
						
						
						
					 
					
						2011-04-15 02:49:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						706735aea3 
					 
					
						
						
							
							Add new POST support to X9.31 PRNG.  
						
						 
						
						
						
						
					 
					
						2011-04-14 18:29:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f331999f5 
					 
					
						
						
							
							Report each cipher used with CMAC tests.  
						
						 
						
						... 
						
						
						
						Only add one error to error queue if a specific test type fails. 
						
						
					 
					
						2011-04-14 16:38:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9338f290d1 
					 
					
						
						
							
							Revise fips_test_suite to use table of IDs for human readable strings.  
						
						 
						
						... 
						
						
						
						Modify HMAC selftest callbacks to notify each digest type used. 
						
						
					 
					
						2011-04-14 16:14:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8038511c27 
					 
					
						
						
							
							Update CMAC, HMAC, GCM to use new POST system.  
						
						 
						
						... 
						
						
						
						Fix crash if callback not set. 
						
						
					 
					
						2011-04-14 13:10:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6311f856b 
					 
					
						
						
							
							Remove several of the old obsolete FIPS_corrupt_*() functions.  
						
						 
						
						
						
						
					 
					
						2011-04-14 11:30:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac892b7aa6 
					 
					
						
						
							
							Initial incomplete POST overhaul: add support for POST callback to  
						
						 
						
						... 
						
						
						
						allow status of POST to be monitored and/or failures induced. 
						
						
					 
					
						2011-04-14 11:15:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77394d7e8f 
					 
					
						
						
							
							Remove duplicate flag.  
						
						 
						
						
						
						
					 
					
						2011-04-13 00:11:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						114c8e220b 
					 
					
						
						
							
							Use consistent FIPS tarball name.  
						
						 
						
						... 
						
						
						
						Add XTS to FIPS build.
Hide XTS symbol names. 
						
						
					 
					
						2011-04-12 23:59:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						32a2d8ddfe 
					 
					
						
						
							
							Provisional AES XTS support.  
						
						 
						
						
						
						
					 
					
						2011-04-12 23:21:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4bd1e895fa 
					 
					
						
						
							
							Update fips_pkey_signature_test: use fixed string if supplies tbs is  
						
						 
						
						... 
						
						
						
						NULL. Always allocate signature buffer.
Update ECDSA selftest to use fips_pkey_signature_test. Add copyright notice
to file. 
						
						
					 
					
						2011-04-12 17:41:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9b08dbe903 
					 
					
						
						
							
							Complete rewrite of FIPS_selftest_dsa(). Use hardcoded 2048 bit DSA key  
						
						 
						
						... 
						
						
						
						and SHA384. Use fips_pkey_signature_test(). 
						
						
					 
					
						2011-04-12 16:26:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d607309e6 
					 
					
						
						
							
							Update RSA selftest code to use a 2048 bit RSA and only a single KAT  
						
						 
						
						... 
						
						
						
						for PSS+SHA256 
						
						
					 
					
						2011-04-12 15:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49cb5e0b40 
					 
					
						
						
							
							Fix memory leaks: uninstantiate DRBG during health checks. Cleanup md_ctx  
						
						 
						
						... 
						
						
						
						when performing ECDSA selftest. 
						
						
					 
					
						2011-04-12 14:28:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e2abfd58cc 
					 
					
						
						
							
							Stop warning and fix memory leaks.  
						
						 
						
						
						
						
					 
					
						2011-04-12 13:02:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						364ce53cef 
					 
					
						
						
							
							No need to disable leak checking for FIPS builds now we use internal  
						
						 
						
						... 
						
						
						
						memory callbacks. 
						
						
					 
					
						2011-04-12 13:01:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6223352683 
					 
					
						
						
							
							Update ECDSA selftest to use hard coded private keys. Include tests for  
						
						 
						
						... 
						
						
						
						prime and binary fields. 
						
						
					 
					
						2011-04-12 11:49:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1a4d93bfb5 
					 
					
						
						
							
							Update fips_premain.c fingerprint.  
						
						 
						
						
						
						
					 
					
						2011-04-12 11:48:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						63c82f8abb 
					 
					
						
						
							
							Update copyright year.  
						
						 
						
						... 
						
						
						
						Zero ciphertext and plaintext temporary buffers.
Check FIPS_cipher() return value. 
						
						
					 
					
						2011-04-11 21:32:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fd7256b77 
					 
					
						
						
							
							Use correct version number.  
						
						 
						
						
						
						
					 
					
						2011-04-11 14:55:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ccc003b82 
					 
					
						
						
							
							Add mem_clr.c explicity for no-asm builds.  
						
						 
						
						
						
						
					 
					
						2011-04-11 14:53:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48da9b8f2a 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2011-04-11 14:52:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6909dccc32 
					 
					
						
						
							
							Set length to 41 (40 hex characters + null).  
						
						 
						
						
						
						
					 
					
						2011-04-11 14:50:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b93e331ba4 
					 
					
						
						
							
							Reorder headers to get definitions before they are used.  
						
						 
						
						
						
						
					 
					
						2011-04-11 14:01:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f9bf6314ea 
					 
					
						
						
							
							Don't give dependency warning for fips builds.  
						
						 
						
						... 
						
						
						
						Give error for "make depend" in restricted tarball builds.
Document how restricted tarballs work. 
						
						
					 
					
						2011-04-11 00:22:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac319dd82b 
					 
					
						
						
							
							Typo: fix duplicate call.  
						
						 
						
						
						
						
					 
					
						2011-04-10 23:32:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						284e2d2b37 
					 
					
						
						
							
							fix fipscanisteronly autodetect  
						
						 
						
						
						
						
					 
					
						2011-04-10 23:28:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4582626544 
					 
					
						
						
							
							Auto detect no-ec2m add option to make no-ec2m tarball.  
						
						 
						
						
						
						
					 
					
						2011-04-10 18:30:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ccc5784e37 
					 
					
						
						
							
							set OPENSSL_FIPSSYMS for restricted buils and auto detect no-ec2m  
						
						 
						
						
						
						
					 
					
						2011-04-10 17:31:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8742ae6e19 
					 
					
						
						
							
							Clarify README.FIPS.  
						
						 
						
						
						
						
					 
					
						2011-04-10 16:23:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c105c96bac 
					 
					
						
						
							
							Auto configure for fips is from restricted tarball.  
						
						 
						
						... 
						
						
						
						Remove more unnecessary files form fips tarball. 
						
						
					 
					
						2011-04-10 16:18:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ceb1e8efb 
					 
					
						
						
							
							Remove unused build targets from Makefile.fips, add cmac to dist list.  
						
						 
						
						
						
						
					 
					
						2011-04-10 01:14:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1f91af5e56 
					 
					
						
						
							
							remove ENGINE dependency from ecdh  
						
						 
						
						
						
						
					 
					
						2011-04-10 01:14:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						55e328f580 
					 
					
						
						
							
							Add error for health check failure.  
						
						 
						
						... 
						
						
						
						Rebuild all FIPS error codes to clean out old obsolete codes. 
						
						
					 
					
						2011-04-09 17:46:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3823ddfcf 
					 
					
						
						
							
							Before initalising a live DRBG (i.e. not in test mode) run a complete health  
						
						 
						
						... 
						
						
						
						check on a DRBG of the same type. 
						
						
					 
					
						2011-04-09 17:27:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						68ea88b8d1 
					 
					
						
						
							
							New function to return security strength of PRNG.  
						
						 
						
						
						
						
					 
					
						2011-04-09 16:49:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31360957fb 
					 
					
						
						
							
							DH keys have an (until now) unused 'q' parameter. When creating  
						
						 
						
						... 
						
						
						
						from DSA copy q across and if q present generate DH key in the
correct range. 
						
						
					 
					
						2011-04-07 15:01:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d80399a357 
					 
					
						
						
							
							Only use fake rand once per operation. This stops the EC  
						
						 
						
						... 
						
						
						
						pairwise consistency test interfering with the test. 
						
						
					 
					
						2011-04-06 23:42:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7a3ce989c 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2011-04-06 23:41:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ee49722dc 
					 
					
						
						
							
							Add fips hmac key to dgst utility.  
						
						 
						
						
						
						
					 
					
						2011-04-06 23:40:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6653c6f2e8 
					 
					
						
						
							
							Update OpenSSL DRBG support code. Use date time vector as additional data.  
						
						 
						
						... 
						
						
						
						Set FIPS RAND_METHOD at same time as OpenSSL RAND_METHOD. 
						
						
					 
					
						2011-04-06 23:40:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4c8855b975 
					 
					
						
						
							
							Add missing error code strings.  
						
						 
						
						
						
						
					 
					
						2011-04-06 18:17:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e71bbd26e7 
					 
					
						
						
							
							Remove rand files from fipscanister.o  
						
						 
						
						
						
						
					 
					
						2011-04-06 18:16:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						acd410dc15 
					 
					
						
						
							
							check buffer is larger enough before overwriting  
						
						 
						
						
						
						
					 
					
						2011-04-06 18:06:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						161cc82df1 
					 
					
						
						
							
							updated FIPS status  
						
						 
						
						
						
						
					 
					
						2011-04-06 13:40:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						42bd0a6b3c 
					 
					
						
						
							
							Update fipssyms.h to keep all symbols in FIPS,fips namespace.  
						
						 
						
						... 
						
						
						
						Rename drbg_cprng_test to fips_drbg_cprng_test.
Remove rand files from Makefile.fips. 
						
						
					 
					
						2011-04-05 15:48:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05e24c87dd 
					 
					
						
						
							
							Extensive reorganisation of PRNG handling in FIPS module: all calls  
						
						 
						
						... 
						
						
						
						now use an internal RAND_METHOD. All dependencies to OpenSSL standard
PRNG are now removed: it is the applications resposibility to setup
the FIPS PRNG and initalise it.
Initial OpenSSL RAND_init_fips() function that will setup the DRBG
for the "FIPS capable OpenSSL". 
						
						
					 
					
						2011-04-05 15:24:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cab0595c14 
					 
					
						
						
							
							Rename deprecated FIPS_rand functions to FIPS_x931. These shouldn't be  
						
						 
						
						... 
						
						
						
						used by applications directly and the X9.31 PRNG is deprecated by new
FIPS140-2 rules anyway. 
						
						
					 
					
						2011-04-05 12:42:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						856650deb0 
					 
					
						
						
							
							FIPS mode support for openssl utility: doesn't work properly yet due  
						
						 
						
						... 
						
						
						
						to missing DRBG support in libcrypto. 
						
						
					 
					
						2011-04-04 17:16:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab1415d2f5 
					 
					
						
						
							
							Updated error codes for FIPS library.  
						
						 
						
						
						
						
					 
					
						2011-04-04 17:05:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4bd65dae3 
					 
					
						
						
							
							Set error code is additional data callback fails.  
						
						 
						
						
						
						
					 
					
						2011-04-04 17:03:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac1ee8e877 
					 
					
						
						
							
							Use environment when builds libcrypto shared library so CC value is picked up  
						
						 
						
						... 
						
						
						
						in FIPS builds. 
						
						
					 
					
						2011-04-04 17:01:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8776ef63c1 
					 
					
						
						
							
							Change FIPS locking functions to macros so we get useful line information.  
						
						 
						
						... 
						
						
						
						Set fips_thread_set properly. 
						
						
					 
					
						2011-04-04 15:38:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7af0400297 
					 
					
						
						
							
							gcm128.c: fix shadow warnings.  
						
						 
						
						
						
						
					 
					
						2011-04-04 15:24:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d59fe5267 
					 
					
						
						
							
							Disable test fprintf.  
						
						 
						
						
						
						
					 
					
						2011-04-04 14:52:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ded1999702 
					 
					
						
						
							
							Change RNG test to block oriented instead of request oriented, add option  
						
						 
						
						... 
						
						
						
						to test a "stuck" DRBG. 
						
						
					 
					
						2011-04-04 14:47:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a255e5bc98 
					 
					
						
						
							
							check RAND_pseudo_bytes return value  
						
						 
						
						
						
						
					 
					
						2011-04-04 14:43:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4058861f69 
					 
					
						
						
							
							PR: 2462  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS Retransmission Buffer Bug 
						
						
					 
					
						2011-04-03 17:14:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f74a0c0c93 
					 
					
						
						
							
							PR: 2458  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Don't change state when answering DTLS ClientHello. 
						
						
					 
					
						2011-04-03 16:25:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e28b60aa5 
					 
					
						
						
							
							PR: 2457  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS fragment reassembly bug. 
						
						
					 
					
						2011-04-03 15:47:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b5c1dc565 
					 
					
						
						
							
							Make WIN32 static builds work again.  
						
						 
						
						
						
						
					 
					
						2011-04-02 16:51:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e512375186 
					 
					
						
						
							
							ARM assembler pack: add missing arm_arch.h.  
						
						 
						
						
						
						
					 
					
						2011-04-01 21:09:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1e86318091 
					 
					
						
						
							
							ARM assembler pack: profiler-assisted optimizations and NEON support.  
						
						 
						
						
						
						
					 
					
						2011-04-01 20:58:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8d958323b 
					 
					
						
						
							
							gcm128.c: tidy up, minor optimization, rearrange gcm128_context.  
						
						 
						
						
						
						
					 
					
						2011-04-01 20:52:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30b26b551f 
					 
					
						
						
							
							restore .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-04-01 18:49:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7d48743b95 
					 
					
						
						
							
							restore .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-04-01 18:40:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b26f324824 
					 
					
						
						
							
							delete lib file  
						
						 
						
						
						
						
					 
					
						2011-04-01 18:40:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						02eb92abad 
					 
					
						
						
							
							temporarily update .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-04-01 18:38:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e5cadaf8db 
					 
					
						
						
							
							Only zeroise sensitive parts of DRBG context, so the type and flags  
						
						 
						
						... 
						
						
						
						are undisturbed.
Allow setting of "rand" callbacks for DRBG. 
						
						
					 
					
						2011-04-01 17:49:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8cf88778ea 
					 
					
						
						
							
							Allow FIPS malloc callback setting. Automatically set some callbacks  
						
						 
						
						... 
						
						
						
						in OPENSSL_init(). 
						
						
					 
					
						2011-04-01 16:23:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c4acfb1fd0 
					 
					
						
						
							
							Add additional OPENSSL_init() handling add dummy call to (hopefully)  
						
						 
						
						... 
						
						
						
						ensure OPENSSL_init() is always linked into an application. 
						
						
					 
					
						2011-04-01 15:46:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f7468318d 
					 
					
						
						
							
							Provisional support for auto called OPENSSL_init() function. This can be  
						
						 
						
						... 
						
						
						
						used to set up any appropriate functions such as FIPS callbacks without
requiring an explicit application call. 
						
						
					 
					
						2011-04-01 14:49:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						011c865640 
					 
					
						
						
							
							Initial switch to DRBG base PRNG in FIPS mode. Include bogus seeding for  
						
						 
						
						... 
						
						
						
						test applications. 
						
						
					 
					
						2011-04-01 14:46:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						212a08080c 
					 
					
						
						
							
							Unused, untested, provisional RAND interface for DRBG.  
						
						 
						
						
						
						
					 
					
						2011-03-31 18:06:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e06de4dd35 
					 
					
						
						
							
							Remove redundant definitions. Give error code if DRBG sefltest fails.  
						
						 
						
						
						
						
					 
					
						2011-03-31 17:23:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52b6ee8245 
					 
					
						
						
							
							Reorganise DRBG API so the entropy and nonce callbacks can return a  
						
						 
						
						... 
						
						
						
						pointer to a buffer instead of copying to a fixed length buffer. This
removes the entropy and nonce length restrictions. 
						
						
					 
					
						2011-03-31 17:15:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb61a6c80d 
					 
					
						
						
							
							fix warnings  
						
						 
						
						
						
						
					 
					
						2011-03-31 17:12:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						79837e8c10 
					 
					
						
						
							
							Update .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-03-25 16:41:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5198009885 
					 
					
						
						
							
							Add .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-03-25 16:37:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cd22dfbf01 
					 
					
						
						
							
							Have all algorithm test programs call fips_algtest_init() at startup:  
						
						 
						
						... 
						
						
						
						this will perform all standalone operations such as setting error
callbacks, entering FIPS mode etc. 
						
						
					 
					
						2011-03-25 16:36:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4178c8fb1 
					 
					
						
						
							
							Disable cmac tests by default so the old algorithm test vectors work.  
						
						 
						
						
						
						
					 
					
						2011-03-25 16:34:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3a660e7364 
					 
					
						
						
							
							Corrections to the VMS build system.  
						
						 
						
						... 
						
						
						
						Submitted by Steven M. Schweda <sms@antinode.info > 
						
						
					 
					
						2011-03-25 16:20:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dad7851485 
					 
					
						
						
							
							Allow setting of get_entropy and get_nonce callbacks outside test mode.  
						
						 
						
						... 
						
						
						
						Test mode is now set when a DRBG context is initialised. 
						
						
					 
					
						2011-03-25 14:38:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9db6974f77 
					 
					
						
						
							
							Add .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-03-25 14:26:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e5dbc23df 
					 
					
						
						
							
							Remove unused function.  
						
						 
						
						
						
						
					 
					
						2011-03-25 14:24:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd7e6bd44b 
					 
					
						
						
							
							Fix compiler warnings.  
						
						 
						
						
						
						
					 
					
						2011-03-25 12:36:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						97057a1a7d 
					 
					
						
						
							
							Make some Unix builds work again.  
						
						 
						
						
						
						
					 
					
						2011-03-25 12:09:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e51aef611 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-03-25 12:00:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4ec3e8ca51 
					 
					
						
						
							
							For VMS, implement the possibility to choose 64-bit pointers with  
						
						 
						
						... 
						
						
						
						different options:
"64"		The build system will choose /POINTER_SIZE=64=ARGV if
		the compiler supports it, otherwise /POINTER_SIZE=64.
"64="		The build system will force /POINTER_SIZE=64.
"64=ARGV"	The build system will force /POINTER_SIZE=64=ARGV. 
						
						
					 
					
						2011-03-25 09:40:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5d0137aa14 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2011-03-25 09:30:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						30fafdebf3 
					 
					
						
						
							
							* Configure, crypto/ec/ec.h, crypto/ec/ecp_nistp224.c, util/mkdef.pl:  
						
						 
						
						... 
						
						
						
						Have EC_NISTP224_64_GCC_128 treated like any algorithm, and have
  disabled by default.  If we don't do it this way, it screws up
  libeay.num.
* util/libeay.num: make update 
						
						
					 
					
						2011-03-25 09:29:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e775bbc464 
					 
					
						
						
							
							* fips/cmac/fips_cmac_selftest.c: Because the examples in SP_800-38B  
						
						 
						
						... 
						
						
						
						aren't trustworthy (see examples 13 and 14, they have the same mac,
  as do examples 17 and 18), use examples from official test vectors
  instead. 
						
						
					 
					
						2011-03-25 09:24:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d8ba2a42e9 
					 
					
						
						
							
							* fips/fipsalgtest.pl: Test the testvectors for all the CMAC ciphers  
						
						 
						
						... 
						
						
						
						we support. 
						
						
					 
					
						2011-03-25 08:48:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af267e4315 
					 
					
						
						
							
							* fips/cmac/fips_cmactest.c: Some say TDEA, others say TDES.  Support  
						
						 
						
						... 
						
						
						
						both names. 
						
						
					 
					
						2011-03-25 08:44:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d15467d582 
					 
					
						
						
							
							* fips/cmac/fips_cmactest.c: Changed to accept all the ciphers we  
						
						 
						
						... 
						
						
						
						support (Two Key TDEA is not supported), to handle really big
  messages (some of the test vectors have messages 65536 bytes long),
  and to handle cases where there are several keys (Three Key TDEA) 
						
						
					 
					
						2011-03-25 08:40:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9507979228 
					 
					
						
						
							
							* Makefile.fips: Update and add details about cmac.  
						
						 
						
						
						
						
					 
					
						2011-03-25 07:17:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c6dbe90895 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2011-03-24 22:59:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37942b93af 
					 
					
						
						
							
							Implement FIPS CMAC.  
						
						 
						
						... 
						
						
						
						* fips/fips_test_suite.c, fips/fipsalgtest.pl, test/Makefile: Hook in
  test cases and build test program. 
						
						
					 
					
						2011-03-24 22:57:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						399aa6b5ff 
					 
					
						
						
							
							Implement FIPS CMAC.  
						
						 
						
						... 
						
						
						
						* fips/cmac/*: Implement the basis for FIPS CMAC, using FIPS HMAC as
  an example.
* crypto/cmac/cmac.c: Enable the FIPS API.  Change to use M_EVP macros
  where possible.
* crypto/evp/evp.h: (some of the macros get added with this change)
* fips/fips.h, fips/utl/fips_enc.c: Add a few needed functions and use
  macros to have cmac.c use these functions.
* Makefile.org, fips/Makefile, fips/fips.c: Hook it in. 
						
						
					 
					
						2011-03-24 22:55:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						487b023f3d 
					 
					
						
						
							
							make update (1.1.0-dev)  
						
						 
						
						... 
						
						
						
						This meant alarger renumbering in util/libeay.num due to symbols
appearing in 1.0.0-stable and 1.0.1-stable.  However, since there's
been no release on this branch yet, it should be harmless. 
						
						
					 
					
						2011-03-23 00:11:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1f9c2b3f71 
					 
					
						
						
							
							* crypto/crypto-lib.com: Add a few more missing modules.  
						
						 
						
						
						
						
					 
					
						2011-03-23 00:10:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						486ec55503 
					 
					
						
						
							
							* util/mkdef.pl: Add crypto/o_str.h and crypto/o_time.h.  Maybe some  
						
						 
						
						... 
						
						
						
						more need to be added... 
						
						
					 
					
						2011-03-22 23:54:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fc02f1229 
					 
					
						
						
							
							Use a signed value to check return value of do_cipher().  
						
						 
						
						
						
						
					 
					
						2011-03-21 17:37:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						beb895083c 
					 
					
						
						
							
							Free DRBG context in self tests.  
						
						 
						
						
						
						
					 
					
						2011-03-21 14:40:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2d1122b802 
					 
					
						
						
							
							* apps/makeapps.com: Add srp.  
						
						 
						
						
						
						
					 
					
						2011-03-20 17:34:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f0d9196237 
					 
					
						
						
							
							* apps/makeapps.com: Forgot to end the check for /POINTER_SIZE=64=ARGV  
						
						 
						
						... 
						
						
						
						with turning trapping back on.
* test/maketests.com: Do the same check for /POINTER_SIZE=64=ARGV
  here.
* test/clean-test.com: A new script for cleaning up. 
						
						
					 
					
						2011-03-20 14:02:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8ecef24a66 
					 
					
						
						
							
							* apps/openssl.c: For VMS, take care of copying argv if needed much earlier,  
						
						 
						
						... 
						
						
						
						directly in main().  'if needed' also includes when argv is a 32 bit
  pointer in an otherwise 64 bit environment.
* apps/makeapps.com: When using /POINTER_SIZE=64, try to use the additional
  =ARGV, but only if it's supported.  Fortunately, DCL is very helpful
  telling us in this case. 
						
						
					 
					
						2011-03-20 13:15:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3d62b1f22d 
					 
					
						
						
							
							A few more long symbols need shortening.  
						
						 
						
						
						
						
					 
					
						2011-03-20 10:23:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9e67d24743 
					 
					
						
						
							
							Add missing source.  Also, have the compile also use [.MODES] as  
						
						 
						
						... 
						
						
						
						include directory, as other parts (notably, EVP) seem to need it. 
						
						
					 
					
						2011-03-20 10:23:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						537c982306 
					 
					
						
						
							
							After some adjustments, apply the changes OpenSSL 1.0.0d on OpenVMS  
						
						 
						
						... 
						
						
						
						submitted by Steven M. Schweda <sms@antinode.info > 
						
						
					 
					
						2011-03-19 10:58:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5904882eaa 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-03-18 18:17:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1e803100de 
					 
					
						
						
							
							Implement continuous RNG test for SP800-90 DRBGs.  
						
						 
						
						
						
						
					 
					
						2011-03-17 18:53:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						96ec46f7c0 
					 
					
						
						
							
							Implement health checks needed by SP800-90.  
						
						 
						
						... 
						
						
						
						Fix warnings.
Instantiate DRBGs at maximum strength. 
						
						
					 
					
						2011-03-17 16:55:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						27131fe8f7 
					 
					
						
						
							
							Fix warnings about ignored return values.  
						
						 
						
						
						
						
					 
					
						2011-03-17 14:43:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						23bc7961d2 
					 
					
						
						
							
							Fix broken SRP error/function code assignment.  
						
						 
						
						
						
						
					 
					
						2011-03-16 16:17:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbbabb646c 
					 
					
						
						
							
							Add extensive DRBG selftest data and option to corrupt it in fips_test_suite.  
						
						 
						
						
						
						
					 
					
						2011-03-16 15:52:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8cd3d99f57 
					 
					
						
						
							
							Missing SRP files.  
						
						 
						
						
						
						
					 
					
						2011-03-16 11:50:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d4f3dd5fb6 
					 
					
						
						
							
							Fix Tom Wu's email.  
						
						 
						
						
						
						
					 
					
						2011-03-16 11:28:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aa24c4a736 
					 
					
						
						
							
							PR: 2469  
						
						 
						
						... 
						
						
						
						Submitted by: Jim Studt <jim@studt.net >
Reviewed by: steve
Check mac is present before trying to retrieve mac iteration count. 
						
						
					 
					
						2011-03-13 18:20:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d70fcb96ac 
					 
					
						
						
							
							Fix warnings: signed/unisgned comparison, shadowing (in some cases global  
						
						 
						
						... 
						
						
						
						functions such as rand() ). 
						
						
					 
					
						2011-03-12 17:27:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e374d2ee8 
					 
					
						
						
							
							Remove redundant check to stop compiler warning.  
						
						 
						
						
						
						
					 
					
						2011-03-12 17:06:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0deea0e03c 
					 
					
						
						
							
							Note SRP support.  
						
						 
						
						
						
						
					 
					
						2011-03-12 17:04:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						edc032b5e3 
					 
					
						
						
							
							Add SRP support.  
						
						 
						
						
						
						
					 
					
						2011-03-12 17:01:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0c4e67102e 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2011-03-12 13:55:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1b76fac5ae 
					 
					
						
						
							
							Check requested security strength in DRBG. Add function to retrieve the  
						
						 
						
						... 
						
						
						
						security strength. 
						
						
					 
					
						2011-03-11 17:42:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						329c744f51 
					 
					
						
						
							
							make no-dsa work again  
						
						 
						
						
						
						
					 
					
						2011-03-10 18:26:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d5d28675e 
					 
					
						
						
							
							Update status.  
						
						 
						
						
						
						
					 
					
						2011-03-10 14:01:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1acc24a8ba 
					 
					
						
						
							
							Make no-ec2m work again.  
						
						 
						
						
						
						
					 
					
						2011-03-10 01:00:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f52e552a93 
					 
					
						
						
							
							Add a few more symbol renames.  
						
						 
						
						
						
						
					 
					
						2011-03-09 23:53:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8857b380e2 
					 
					
						
						
							
							Add ECDH to validated module.  
						
						 
						
						
						
						
					 
					
						2011-03-09 23:44:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6de7133bb 
					 
					
						
						
							
							Enter FIPS mode in fips_dhvs. Support file I/O in fips_ecdsavs.  
						
						 
						
						
						
						
					 
					
						2011-03-09 14:55:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0fa714a4f0 
					 
					
						
						
							
							Update fips_dhvs to handle functional test by generating keys.  
						
						 
						
						
						
						
					 
					
						2011-03-09 14:39:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3c9baf25f1 
					 
					
						
						
							
							Update .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-03-09 14:35:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0392f94fbc 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-03-08 21:29:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11e80de3ee 
					 
					
						
						
							
							New initial DH algorithm test driver.  
						
						 
						
						
						
						
					 
					
						2011-03-08 19:10:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc91494e06 
					 
					
						
						
							
							New SP 800-56A compliant version of DH_compute_key().  
						
						 
						
						
						
						
					 
					
						2011-03-08 19:07:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1e7883edb 
					 
					
						
						
							
							Add meaningful error codes to DRBG.  
						
						 
						
						
						
						
					 
					
						2011-03-08 14:16:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd0d2df562 
					 
					
						
						
							
							Add file I/O to fips_drbgvs program.  
						
						 
						
						
						
						
					 
					
						2011-03-08 13:51:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce57f0d5c2 
					 
					
						
						
							
							Support I/O with files in new fips_gcmtest program.  
						
						 
						
						
						
						
					 
					
						2011-03-08 13:42:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c34a652e1e 
					 
					
						
						
							
							Remove redirection from fipsalgtest.pl script.  
						
						 
						
						
						
						
					 
					
						2011-03-08 13:29:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						12b77cbec3 
					 
					
						
						
							
							Remove need for redirection on RNG and DSS algorithm test programs: some  
						
						 
						
						... 
						
						
						
						platforms don't support it. 
						
						
					 
					
						2011-03-08 13:27:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e45c6c4e25 
					 
					
						
						
							
							Uninstantiate and free functions for DRBG.  
						
						 
						
						
						
						
					 
					
						2011-03-07 16:51:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff4a19a471 
					 
					
						
						
							
							Fix couple of bugs in CTR DRBG implementation.  
						
						 
						
						
						
						
					 
					
						2011-03-06 13:10:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						868f12988c 
					 
					
						
						
							
							Updates to DRBG: fix bugs in infrastructure. Add initial experimental  
						
						 
						
						... 
						
						
						
						algorithm test generator. 
						
						
					 
					
						2011-03-06 12:35:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						591cbfae3c 
					 
					
						
						
							
							Initial, provisional, subject to wholesale change, untested, probably  
						
						 
						
						... 
						
						
						
						not working, incomplete and unused SP800-90 DRBGs for CTR and Hash modes.
Did I say this was untested? 
						
						
					 
					
						2011-03-04 18:00:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a000759a5c 
					 
					
						
						
							
							ia64-mont.pl: optimize short-key performance.  
						
						 
						
						
						
						
					 
					
						2011-03-04 13:27:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bc5b136c5c 
					 
					
						
						
							
							ghash-x86.pl: optimize for Sandy Bridge.  
						
						 
						
						
						
						
					 
					
						2011-03-04 13:21:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						16cb0d9591 
					 
					
						
						
							
							xts128.c: minor optimization.  
						
						 
						
						
						
						
					 
					
						2011-03-04 13:17:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0ab8fd58e1 
					 
					
						
						
							
							s390x assembler pack: tune-up and support for new z196 hardware.  
						
						 
						
						
						
						
					 
					
						2011-03-04 13:09:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8aa6cff40f 
					 
					
						
						
							
							Update status information.  
						
						 
						
						
						
						
					 
					
						2011-02-23 16:06:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						949c6f8ccf 
					 
					
						
						
							
							Stop warnings.  
						
						 
						
						
						
						
					 
					
						2011-02-23 16:06:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						199e92bb57 
					 
					
						
						
							
							Use more portable options when making links in Makefile.fips  
						
						 
						
						
						
						
					 
					
						2011-02-23 16:06:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30ff3278ae 
					 
					
						
						
							
							Add DllMain to fips symbols: will need to call this in FIPS capable OpenSSL.  
						
						 
						
						
						
						
					 
					
						2011-02-23 15:16:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						071eb6b592 
					 
					
						
						
							
							Add new symbols to fipssyms.h  
						
						 
						
						
						
						
					 
					
						2011-02-23 15:04:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						548b4763e1 
					 
					
						
						
							
							Make -DOPENSSL_FIPSSYMS work under WIN32: run perl script when  
						
						 
						
						... 
						
						
						
						WIN32 assembly language files are created, add norunasm option
to just translate and not run the assembler. 
						
						
					 
					
						2011-02-23 15:03:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						227d6a9347 
					 
					
						
						
							
							Make mkfiles.pl work with fipscanisteronly.  
						
						 
						
						
						
						
					 
					
						2011-02-22 17:02:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f6e76a67f0 
					 
					
						
						
							
							Include ms directory for fips distribution.  
						
						 
						
						
						
						
					 
					
						2011-02-22 16:48:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d989e4f8c2 
					 
					
						
						
							
							Make fipscanisteronly work with WIN32 build system.  
						
						 
						
						
						
						
					 
					
						2011-02-22 16:36:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						558ddad34f 
					 
					
						
						
							
							Add fips/ecdsa directory to mkfiles.pl  
						
						 
						
						
						
						
					 
					
						2011-02-22 14:52:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f8c39f3cd0 
					 
					
						
						
							
							Remove duplicate test rule.  
						
						 
						
						
						
						
					 
					
						2011-02-22 14:50:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						324abf1d20 
					 
					
						
						
							
							Add modes_lcl.h to header list.  
						
						 
						
						
						
						
					 
					
						2011-02-22 14:06:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d7f706d08 
					 
					
						
						
							
							Removing debugging print.  
						
						 
						
						
						
						
					 
					
						2011-02-22 12:46:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						227437d292 
					 
					
						
						
							
							Don't try and update c_rehash for fipscanisteronly builds.  
						
						 
						
						
						
						
					 
					
						2011-02-22 12:44:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e446ba347 
					 
					
						
						
							
							Make "make links" work in fipscanisteronly builds.  
						
						 
						
						
						
						
					 
					
						2011-02-22 12:34:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						147e6f4465 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-02-21 19:58:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						94a0a96cd8 
					 
					
						
						
							
							Initial perl script to filter out unneeded files for a fips tarball.  
						
						 
						
						
						
						
					 
					
						2011-02-21 19:36:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83dfcd727b 
					 
					
						
						
							
							Call Makefile.fips when making a fips tarball.  
						
						 
						
						
						
						
					 
					
						2011-02-21 19:30:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e712c48ab 
					 
					
						
						
							
							Remove debugging option.  
						
						 
						
						
						
						
					 
					
						2011-02-21 19:29:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bfba6e05b8 
					 
					
						
						
							
							*** empty log message ***  
						
						 
						
						
						
						
					 
					
						2011-02-21 18:14:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f18c19f5e8 
					 
					
						
						
							
							Remove unnecessary link directories.  
						
						 
						
						
						
						
					 
					
						2011-02-21 18:07:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7056b6414 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2011-02-21 17:51:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						620baecf91 
					 
					
						
						
							
							Create fips links even if not compiling in fips mode.  
						
						 
						
						
						
						
					 
					
						2011-02-21 17:45:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37eae9909a 
					 
					
						
						
							
							Remove unnecessary dependencies.  
						
						 
						
						
						
						
					 
					
						2011-02-21 17:35:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6892d0eb03 
					 
					
						
						
							
							Need to link additional directories for fipscanisteronly build.  
						
						 
						
						
						
						
					 
					
						2011-02-21 16:37:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3deb010dc0 
					 
					
						
						
							
							x509v3.h header file not needed in fips algorithm test utilities.  
						
						 
						
						
						
						
					 
					
						2011-02-21 16:36:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a716f5beb 
					 
					
						
						
							
							tools and rehash not needed for fips build.  
						
						 
						
						
						
						
					 
					
						2011-02-21 16:00:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e3496215a2 
					 
					
						
						
							
							*** empty log message ***  
						
						 
						
						
						
						
					 
					
						2011-02-21 15:15:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eead69f5ed 
					 
					
						
						
							
							Make fipscanisteronly build only required files.  
						
						 
						
						
						
						
					 
					
						2011-02-21 14:07:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab8a4e54db 
					 
					
						
						
							
							Move gcm128_context definition to modes_lcl.h (along with some related  
						
						 
						
						... 
						
						
						
						definitions) so we can use it in EVP GCM code avoiding need to allocate
it. 
						
						
					 
					
						2011-02-19 22:16:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						947ff113d2 
					 
					
						
						
							
							add ECDSA POST  
						
						 
						
						
						
						
					 
					
						2011-02-18 17:25:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						acf254f86e 
					 
					
						
						
							
							AES GCM selftests.  
						
						 
						
						
						
						
					 
					
						2011-02-18 17:09:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d439d6955 
					 
					
						
						
							
							Make -DOPENSSL_FIPSSYMS work for assembly language builds.  
						
						 
						
						
						
						
					 
					
						2011-02-17 19:03:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						38bae7baa5 
					 
					
						
						
							
							Experimental perl script to edit assembly language source files,  
						
						 
						
						... 
						
						
						
						call the assembler, then restore original file.
This makes OPENSSL_FIPSSYMS work for assembly language builds. 
						
						
					 
					
						2011-02-17 18:08:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d47691ecfe 
					 
					
						
						
							
							Correct fipssyms.h for more assembly language symbols.  
						
						 
						
						
						
						
					 
					
						2011-02-17 17:45:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						223ef1db41 
					 
					
						
						
							
							Update auto generated comment.  
						
						 
						
						
						
						
					 
					
						2011-02-17 15:35:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						01ad8195aa 
					 
					
						
						
							
							Remove debugging command.  
						
						 
						
						... 
						
						
						
						Reorder fipssyms.h to include assembly language symbols at the end. 
						
						
					 
					
						2011-02-17 15:33:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d87f52cb94 
					 
					
						
						
							
							Don't need err library for Makefile.fips  
						
						 
						
						
						
						
					 
					
						2011-02-16 18:07:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a3654f0586 
					 
					
						
						
							
							Include openssl/crypto.h first in several other files so FIPS renaming  
						
						 
						
						... 
						
						
						
						is picked up. 
						
						
					 
					
						2011-02-16 17:25:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						017bc57bf9 
					 
					
						
						
							
							Experimental FIPS symbol renaming.  
						
						 
						
						... 
						
						
						
						Fixups under fips/ to make symbol renaming work. 
						
						
					 
					
						2011-02-16 14:49:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d749e1080a 
					 
					
						
						
							
							Experimental symbol renaming to avoid clashes with regular OpenSSL.  
						
						 
						
						... 
						
						
						
						Make sure crypto.h is included first in any affected files. 
						
						
					 
					
						2011-02-16 14:40:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0fbf8f447b 
					 
					
						
						
							
							Add pairwise consistency test to EC.  
						
						 
						
						
						
						
					 
					
						2011-02-15 16:58:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c81f8f59be 
					 
					
						
						
							
							Use SHA-256 in fips_test_suite.  
						
						 
						
						
						
						
					 
					
						2011-02-15 16:58:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						225a9e296b 
					 
					
						
						
							
							Update pairwise consistency checks to use SHA-256.  
						
						 
						
						
						
						
					 
					
						2011-02-15 16:18:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						25c6542944 
					 
					
						
						
							
							Add non-FIPS algorithm blocking and selftest checking.  
						
						 
						
						
						
						
					 
					
						2011-02-15 16:03:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14567b1451 
					 
					
						
						
							
							Add FIPS flags to AES ciphers and SHA* digests.  
						
						 
						
						
						
						
					 
					
						2011-02-15 15:57:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe082202c0 
					 
					
						
						
							
							Ignore final '\n' when checking if hex line length is odd.  
						
						 
						
						
						
						
					 
					
						2011-02-15 15:56:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbc164ec2f 
					 
					
						
						
							
							Add support for SigGen and KeyPair tests.  
						
						 
						
						
						
						
					 
					
						2011-02-15 14:16:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						943a0ceed0 
					 
					
						
						
							
							Update ECDSA test program to handle ECDSA2 format files.  
						
						 
						
						... 
						
						
						
						Correctly handle hex strings with an odd number of digits. 
						
						
					 
					
						2011-02-14 19:42:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d2f1538a0 
					 
					
						
						
							
							Add .cvsignore.  
						
						 
						
						
						
						
					 
					
						2011-02-14 17:28:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe26d066ff 
					 
					
						
						
							
							Add ECDSA functionality to fips module. Initial very incomplete version  
						
						 
						
						... 
						
						
						
						of algorithm test program. 
						
						
					 
					
						2011-02-14 17:14:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c876a4b7b1 
					 
					
						
						
							
							Include support for an add_lock callback to tiny FIPS locking API.  
						
						 
						
						
						
						
					 
					
						2011-02-14 17:05:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c966120412 
					 
					
						
						
							
							Don't use FIPS api for ec2_oct.c  
						
						 
						
						
						
						
					 
					
						2011-02-14 16:55:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						84b08eee4b 
					 
					
						
						
							
							Reorganise ECC code for inclusion in FIPS module.  
						
						 
						
						... 
						
						
						
						Move compression, point2oct and oct2point functions into separate files.
Add a flags field to EC_METHOD.
Add a flag EC_FLAGS_DEFAULT_OCT to use the default compession and oct
functions (all existing methods do this). This removes dependencies from
EC_METHOD while keeping original functionality. 
						
						
					 
					
						2011-02-14 16:52:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf2546f947 
					 
					
						
						
							
							Use BN_nist_mod_func to avoid need to peek error queue.  
						
						 
						
						
						
						
					 
					
						2011-02-14 16:45:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						133291f8e7 
					 
					
						
						
							
							New function BN_nist_mod_func which returns an appropriate function  
						
						 
						
						... 
						
						
						
						if the passed prime is a NIST prime. 
						
						
					 
					
						2011-02-14 16:44:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e990b4f838 
					 
					
						
						
							
							Remove dependency of dsa_sign.o and dsa_vrf.o: new functions FIPS_dsa_sig_new  
						
						 
						
						... 
						
						
						
						and FIPS_dsa_sig_free, reimplment DSA_SIG_new and DSA_SIG_free from ASN1
library. 
						
						
					 
					
						2011-02-13 18:45:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e47af46cd8 
					 
					
						
						
							
							Change FIPS source and utilities to use the "FIPS_" names directly  
						
						 
						
						... 
						
						
						
						instead of using regular OpenSSL API names. 
						
						
					 
					
						2011-02-12 18:25:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						36246be915 
					 
					
						
						
							
							Make no-ec2m work on Win32 build. Add nexprotoneg support too.  
						
						 
						
						
						
						
					 
					
						2011-02-12 17:38:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c9a90645a5 
					 
					
						
						
							
							Disable some functions in headers with no-ec2m  
						
						 
						
						
						
						
					 
					
						2011-02-12 17:38:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b331016124 
					 
					
						
						
							
							New option to disable characteristic two fields in EC code.  
						
						 
						
						
						
						
					 
					
						2011-02-12 17:23:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						afb4191304 
					 
					
						
						
							
							dso_dlfcn.c: make it work on Tru64 4.0.  
						
						 
						
						... 
						
						
						
						PR: 2316 
						
						
					 
					
						2011-02-12 16:43:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						874b0bd968 
					 
					
						
						
							
							Configure: engage assembler in Android target.  
						
						 
						
						
						
						
					 
					
						2011-02-12 16:13:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a6d915e0ef 
					 
					
						
						
							
							gcm128.c: make it work with no-sse2.  
						
						 
						
						
						
						
					 
					
						2011-02-12 11:47:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						975138edaa 
					 
					
						
						
							
							Add Makefile.fips.  
						
						 
						
						
						
						
					 
					
						2011-02-11 20:56:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30b56225cc 
					 
					
						
						
							
							New "fispcanisteronly" build option: only build fipscanister.o and  
						
						 
						
						... 
						
						
						
						associated utilities. This functionality will be used by the validated
tarball. 
						
						
					 
					
						2011-02-11 19:02:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc527a62a1 
					 
					
						
						
							
							Make Windows build work with GCM.  
						
						 
						
						
						
						
					 
					
						2011-02-11 16:49:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ed12c2f7ca 
					 
					
						
						
							
							In FIPS mode only use "Generation by Testing Candidates" equivalent.  
						
						 
						
						
						
						
					 
					
						2011-02-11 15:19:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16a7fcc447 
					 
					
						
						
							
							Return security strength for supported DSA parameters: will be used  
						
						 
						
						... 
						
						
						
						later. 
						
						
					 
					
						2011-02-11 14:38:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1a5885b64 
					 
					
						
						
							
							Free keys if DSA pairwise error.  
						
						 
						
						
						
						
					 
					
						2011-02-11 14:21:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f84a8ea526 
					 
					
						
						
							
							x86gas.pl: make data_short work on legacy systems.  
						
						 
						
						
						
						
					 
					
						2011-02-10 21:24:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						01be5db64e 
					 
					
						
						
							
							xts128.c: initial draft.  
						
						 
						
						
						
						
					 
					
						2011-02-10 21:16:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4113c52b2 
					 
					
						
						
							
							Disable FIPS restrictions when doing GCM testing.  
						
						 
						
						
						
						
					 
					
						2011-02-10 01:46:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b3d8022edd 
					 
					
						
						
							
							Add GCM IV generator. Add some FIPS restrictions to GCM. Update fips_gcmtest.  
						
						 
						
						
						
						
					 
					
						2011-02-09 16:21:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						632d83f0a3 
					 
					
						
						
							
							ccm128.c: initialize ctx->block (what I was smoking?).  
						
						 
						
						
						
						
					 
					
						2011-02-08 23:08:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d3fad7cb51 
					 
					
						
						
							
							ccm128.c: initial draft.  
						
						 
						
						
						
						
					 
					
						2011-02-08 23:02:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4bfe97fc9 
					 
					
						
						
							
							Equally experimental encrypt side for fips_gcmtest. Currently this uses IVs  
						
						 
						
						... 
						
						
						
						in the request file need to update it to generate IVs once we have an IV
generator in place. 
						
						
					 
					
						2011-02-08 19:25:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c415adc26f 
					 
					
						
						
							
							Sync with 1.0.1 branch.  
						
						 
						
						... 
						
						
						
						(CVE-2011-0014 OCSP stapling fix has been applied to HEAD as well.) 
						
						
					 
					
						2011-02-08 19:09:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9afe95099d 
					 
					
						
						
							
							Set values to NULL after freeing them.  
						
						 
						
						
						
						
					 
					
						2011-02-08 18:25:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9dd346c90d 
					 
					
						
						
							
							Experimental incomplete AES GCM algorithm test program.  
						
						 
						
						
						
						
					 
					
						2011-02-08 18:15:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9770924f9b 
					 
					
						
						
							
							OCSP stapling fix (OpenSSL 0.9.8r/1.0.0d)  
						
						 
						
						... 
						
						
						
						Submitted by: Neel Mehta, Adam Langley, Bodo Moeller 
						
						
					 
					
						2011-02-08 17:48:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4001a0d19 
					 
					
						
						
							
							Link GCM into FIPS module. Check return value in EVP gcm.  
						
						 
						
						
						
						
					 
					
						2011-02-08 15:10:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cea73f9db3 
					 
					
						
						
							
							Synchronize with 1.0.0 branch  
						
						 
						
						
						
						
					 
					
						2011-02-08 08:48:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1f2502eb58 
					 
					
						
						
							
							gcm128.c: add boundary condition checks.  
						
						 
						
						
						
						
					 
					
						2011-02-07 19:11:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bdaa54155c 
					 
					
						
						
							
							Initial *very* experimental EVP support for AES-GCM. Note: probably very  
						
						 
						
						... 
						
						
						
						broken and subject to change. 
						
						
					 
					
						2011-02-07 18:16:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd3dbc1dbf 
					 
					
						
						
							
							Add CRYPTO_gcm128_tag() function to retrieve the tag.  
						
						 
						
						
						
						
					 
					
						2011-02-07 18:05:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d45087c672 
					 
					
						
						
							
							Use 0 not -1 (since type is size_t) for finalisation argument to do_cipher:  
						
						 
						
						... 
						
						
						
						the NULL value for the input buffer is sufficient to notice this case. 
						
						
					 
					
						2011-02-07 18:04:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						634b66186a 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2011-02-07 14:36:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3da0ca796c 
					 
					
						
						
							
							New flags EVP_CIPH_FLAG_CUSTOM_CIPHER in cipher structures if an underlying  
						
						 
						
						... 
						
						
						
						cipher handles all cipher symantics itself. 
						
						
					 
					
						2011-02-07 14:36:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f9678b8b57 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2011-02-07 13:34:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83e9c36261 
					 
					
						
						
							
							Use default ASN1 if flag set.  
						
						 
						
						
						
						
					 
					
						2011-02-07 12:47:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b68c13154e 
					 
					
						
						
							
							gcm128.c: allow multiple calls to CRYPTO_gcm128_aad.  
						
						 
						
						
						
						
					 
					
						2011-02-06 23:50:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						68e2586bd3 
					 
					
						
						
							
							gcm128.c: fix bug in OPENSSL_SMALL_FOOTPRINT decrypt.  
						
						 
						
						... 
						
						
						
						PR: 2432
Submitted by: Michael Heyman 
						
						
					 
					
						2011-02-06 23:48:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						61f477f4ab 
					 
					
						
						
							
							Fix duplicate code and typo.  
						
						 
						
						
						
						
					 
					
						2011-02-06 00:51:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e95116064 
					 
					
						
						
							
							Remove unneeded functions, make some functions and variables static.  
						
						 
						
						
						
						
					 
					
						2011-02-04 17:56:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						06b433acad 
					 
					
						
						
							
							Add FIPS support to the WIN32 build system.  
						
						 
						
						
						
						
					 
					
						2011-02-03 23:12:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14ae26f2e4 
					 
					
						
						
							
							Transfer error redirection to fips.h, add OPENSSL_FIPSAPI to source files  
						
						 
						
						... 
						
						
						
						that use it. 
						
						
					 
					
						2011-02-03 17:00:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3710d1aae9 
					 
					
						
						
							
							Rename crypto/fips_err.c to fips_ers.c to avoid clash with other fips_err.c  
						
						 
						
						
						
						
					 
					
						2011-02-03 16:16:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc5c772abd 
					 
					
						
						
							
							Include fips header file in err_all.c if needed.  
						
						 
						
						
						
						
					 
					
						2011-02-03 16:03:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						65041aa27e 
					 
					
						
						
							
							Add FIPS error codes.  
						
						 
						
						
						
						
					 
					
						2011-02-03 15:58:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7dbbd4b357 
					 
					
						
						
							
							add -stripcr option to copy.pl from 0.9.8  
						
						 
						
						
						
						
					 
					
						2011-02-03 14:57:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						544c84b720 
					 
					
						
						
							
							Add Windows FIPS build utilities.  
						
						 
						
						
						
						
					 
					
						2011-02-03 14:20:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						65847ca378 
					 
					
						
						
							
							For now disable EC_GFp_nistp224_method() for WIN32 so the WIN32 build  
						
						 
						
						... 
						
						
						
						completes without linker errors. 
						
						
					 
					
						2011-02-03 13:00:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						53f7633739 
					 
					
						
						
							
							Add FIPS support to mkdef.pl script, update ordinals.  
						
						 
						
						
						
						
					 
					
						2011-02-03 12:59:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2a459315a 
					 
					
						
						
							
							Use single X931 key generation source file for FIPS and non-FIPS builds.  
						
						 
						
						
						
						
					 
					
						2011-02-03 12:47:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e2b798c8b3 
					 
					
						
						
							
							Assorted bugfixes:  
						
						 
						
						... 
						
						
						
						- safestack macro changes for C++ were incomplete
- RLE decompression boundary case
- SSL 2.0 key arg length check
Submitted by: Google (Adam Langley, Neel Mehta, Bodo Moeller) 
						
						
					 
					
						2011-02-03 12:03:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9bda745876 
					 
					
						
						
							
							fix omissions  
						
						 
						
						
						
						
					 
					
						2011-02-03 11:13:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						88f2a4cf9c 
					 
					
						
						
							
							CVE-2010-4180 fix (from OpenSSL_1_0_0-stable)  
						
						 
						
						
						
						
					 
					
						2011-02-03 10:43:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9d0397e977 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2011-02-03 10:17:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2440d8b1db 
					 
					
						
						
							
							Fix error codes.  
						
						 
						
						
						
						
					 
					
						2011-02-03 10:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee9884654b 
					 
					
						
						
							
							Cope with new DSA2 file format where some p/q only tests are made.  
						
						 
						
						
						
						
					 
					
						2011-02-02 17:48:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f885f1ea4 
					 
					
						
						
							
							Fix target config errors.  
						
						 
						
						
						
						
					 
					
						2011-02-02 15:11:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7a4ec19a5f 
					 
					
						
						
							
							Make no-asm work in fips mode. Add android platform.  
						
						 
						
						
						
						
					 
					
						2011-02-02 15:07:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5b196a22c 
					 
					
						
						
							
							Add sign/verify digest API to handle an explicit digest instead of finalising  
						
						 
						
						... 
						
						
						
						a context. 
						
						
					 
					
						2011-02-02 14:21:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6104f9ad8 
					 
					
						
						
							
							Remove DSA parameter generation from DSA selftest. It is unnecessary and  
						
						 
						
						... 
						
						
						
						can be very slow on embedded platforms. Hard code DSA parameters instead. 
						
						
					 
					
						2011-02-02 14:20:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						96d5997f5b 
					 
					
						
						
							
							Don't try to set pmd if it is NULL.  
						
						 
						
						
						
						
					 
					
						2011-02-01 19:15:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92eb4c551d 
					 
					
						
						
							
							Add DSA2 support to final algorithm tests: keypair and keyver.  
						
						 
						
						
						
						
					 
					
						2011-02-01 18:53:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						89f63d06f8 
					 
					
						
						
							
							Support more DSA2 tests.  
						
						 
						
						
						
						
					 
					
						2011-02-01 17:54:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2ecc150530 
					 
					
						
						
							
							Tolerate mixed case and leading zeroes when comparing.  
						
						 
						
						
						
						
					 
					
						2011-02-01 17:15:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3c2c4cc5f2 
					 
					
						
						
							
							fixes for DSA2 parameter generation  
						
						 
						
						
						
						
					 
					
						2011-02-01 17:15:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5eedacc904 
					 
					
						
						
							
							update README.FIPS  
						
						 
						
						
						
						
					 
					
						2011-02-01 17:14:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f64c26588 
					 
					
						
						
							
							Since FIPS 186-3 specifies we use the leftmost bits of the digest  
						
						 
						
						... 
						
						
						
						we shouldn't reject digest lengths larger than SHA256: the FIPS
algorithm tests include SHA384 and SHA512 tests. 
						
						
					 
					
						2011-02-01 12:52:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3dd9b31dc4 
					 
					
						
						
							
							Provisional, experimental support for DSA2 parameter generation algorithm.  
						
						 
						
						... 
						
						
						
						Not properly integrated or tested yet. 
						
						
					 
					
						2011-01-31 19:44:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb164d0b12 
					 
					
						
						
							
							stop warnings about no previous prototype when compiling shared engines  
						
						 
						
						
						
						
					 
					
						2011-01-30 01:30:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						225c272193 
					 
					
						
						
							
							Fix shared build for fips  
						
						 
						
						
						
						
					 
					
						2011-01-30 01:14:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9fdb2cc592 
					 
					
						
						
							
							Add fips option into Configure, disable endian code for no-asm and FIPS.  
						
						 
						
						... 
						
						
						
						Make shared library default for fips. 
						
						
					 
					
						2011-01-30 00:01:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc8bd54569 
					 
					
						
						
							
							add fiplibdir and basedir options to Configure  
						
						 
						
						
						
						
					 
					
						2011-01-29 23:45:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c02a37548 
					 
					
						
						
							
							use different default fips install directory  
						
						 
						
						
						
						
					 
					
						2011-01-29 23:05:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						166c9cb0b8 
					 
					
						
						
							
							update version to 2.0  
						
						 
						
						
						
						
					 
					
						2011-01-29 21:51:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5084af288d 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2011-01-29 21:45:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e23e857f6 
					 
					
						
						
							
							don't descend fips directory if not in fips mode  
						
						 
						
						
						
						
					 
					
						2011-01-29 21:39:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						44f54a130b 
					 
					
						
						
							
							Add preliminary FIPS information.  
						
						 
						
						
						
						
					 
					
						2011-01-29 17:05:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7edfe67456 
					 
					
						
						
							
							Move all FIPSAPI renames into fips.h header file, include early in  
						
						 
						
						... 
						
						
						
						crypto.h if needed.
Modify source tree to handle change. 
						
						
					 
					
						2011-01-27 19:10:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d8ad2e6112 
					 
					
						
						
							
							add .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-01-27 18:11:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1097bde192 
					 
					
						
						
							
							add FIPS API malloc/free  
						
						 
						
						
						
						
					 
					
						2011-01-27 18:09:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7cc684f4f7 
					 
					
						
						
							
							Redirect FIPS memory allocation to FIPS_malloc() routine, remove  
						
						 
						
						... 
						
						
						
						OpenSSL malloc dependencies. 
						
						
					 
					
						2011-01-27 17:23:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e36d6b8f79 
					 
					
						
						
							
							add fips_dsatest.c file  
						
						 
						
						
						
						
					 
					
						2011-01-27 16:52:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aa87945f47 
					 
					
						
						
							
							Update source files to handle new FIPS_lock() location. Add FIPS_lock()  
						
						 
						
						... 
						
						
						
						definition. Remove stale function references from fips.h 
						
						
					 
					
						2011-01-27 15:57:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c8ced94c3 
					 
					
						
						
							
							Change OPENSSL_FIPSEVP to OPENSSL_FIPSAPI as it doesn't just refer  
						
						 
						
						... 
						
						
						
						to EVP any more.
Move locking #define into fips.h.
Set FIPS locking callbacks at same time as OpenSSL locking callbacks. 
						
						
					 
					
						2011-01-27 15:22:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d5df1b3f0d 
					 
					
						
						
							
							Include thread ID code in fips module.  
						
						 
						
						
						
						
					 
					
						2011-01-27 14:50:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ff9c48811 
					 
					
						
						
							
							New FIPS_lock() function for minimal FIPS locking API: to avoid dependencies  
						
						 
						
						... 
						
						
						
						on OpenSSL locking code. Use API in some internal FIPS files.
Remove redundant ENGINE defines from fips.h 
						
						
					 
					
						2011-01-27 14:29:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad6019d6c0 
					 
					
						
						
							
							Move locking and thread ID functions into new files lock.c and thr_id.c,  
						
						 
						
						... 
						
						
						
						redirect locking to minimal FIPS_lock() function where required. 
						
						
					 
					
						2011-01-27 14:27:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a27de7b7fd 
					 
					
						
						
							
							use FIPSEVP in some bn and rsa files  
						
						 
						
						
						
						
					 
					
						2011-01-27 14:24:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						54e02a234c 
					 
					
						
						
							
							update .cvsignore  
						
						 
						
						
						
						
					 
					
						2011-01-27 13:33:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						879bd6e38c 
					 
					
						
						
							
							Internal version of BN_mod_inverse allowing checking of no-inverse without  
						
						 
						
						... 
						
						
						
						need to inspect error queue. 
						
						
					 
					
						2011-01-26 16:59:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f1a3a310c 
					 
					
						
						
							
							FIPS changes to test/Makefile: rules to build FIPS test applications.  
						
						 
						
						
						
						
					 
					
						2011-01-26 16:47:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f4b3e7c09 
					 
					
						
						
							
							Use ARX in crypto/Makefile  
						
						 
						
						
						
						
					 
					
						2011-01-26 16:22:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6dff52e858 
					 
					
						
						
							
							FIPS HMAC changes:  
						
						 
						
						... 
						
						
						
						Use EVP macros.
Use tiny EVP in FIPS mode. 
						
						
					 
					
						2011-01-26 16:15:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df6de39fe7 
					 
					
						
						
							
							Change AR to ARX to allow exclusion of fips object modules  
						
						 
						
						
						
						
					 
					
						2011-01-26 16:08:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5ca9cb7cbd 
					 
					
						
						
							
							FIPS mode ERR changes. Redirect errors to tiny FIPS callbacks to avoid ERR  
						
						 
						
						... 
						
						
						
						library dependencies. 
						
						
					 
					
						2011-01-26 15:53:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83c3410b94 
					 
					
						
						
							
							FIPS DH changes: selftest checks and key range checks.  
						
						 
						
						
						
						
					 
					
						2011-01-26 15:47:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						20818e00fd 
					 
					
						
						
							
							FIPS mode DSA changes:  
						
						 
						
						... 
						
						
						
						Check for selftest failures.
Pairwise consistency test for RSA key generation.
Use some EVP macros instead of EVP functions.
Use minimal FIPS EVP where needed.
Key size restrictions. 
						
						
					 
					
						2011-01-26 15:46:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c553721e8b 
					 
					
						
						
							
							FIPS mode RSA changes:  
						
						 
						
						... 
						
						
						
						Check for selftest failures.
Pairwise consistency test for RSA key generation.
Use some EVP macros instead of EVP functions.
Use minimal FIPS EVP where needed. 
						
						
					 
					
						2011-01-26 15:37:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1588a3cae7 
					 
					
						
						
							
							add new RAND errors  
						
						 
						
						
						
						
					 
					
						2011-01-26 15:33:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7a4bd34a4f 
					 
					
						
						
							
							FIPS mode EVP changes:  
						
						 
						
						... 
						
						
						
						Set EVP_CIPH_FLAG_FIPS on approved ciphers.
Support "default ASN1" flag which avoids need for ASN1 dependencies in FIPS
code.
Include some defines to redirect operations to a "tiny EVP" implementation
in some FIPS source files.
Change m_sha1.c to use EVP_PKEY_NULL_method: the EVP_MD sign/verify functions
are not used in OpenSSL 1.0 and later for SHA1 and SHA2 ciphers: the EVP_PKEY
API is used instead. 
						
						
					 
					
						2011-01-26 15:25:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ead4e5241 
					 
					
						
						
							
							FIPS mode changes to make RNG compile (this will need updating later as we  
						
						 
						
						... 
						
						
						
						need a whole new PRNG for FIPS).
1. avoid use of ERR_peek().
2. If compiling with FIPS use small FIPS EVP and disable ENGINE 
						
						
					 
					
						2011-01-26 14:52:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ab2f7f1cb 
					 
					
						
						
							
							Add fipscanisterbuild configuration option and update Makefile.org: doesn't compile yet  
						
						 
						
						
						
						
					 
					
						2011-01-26 12:31:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9bafd8f7b3 
					 
					
						
						
							
							FIPS_allow_md5() no longer exists and is no longer required  
						
						 
						
						
						
						
					 
					
						2011-01-26 12:23:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						373048395e 
					 
					
						
						
							
							Add rsa_crpt  
						
						 
						
						
						
						
					 
					
						2011-01-26 06:51:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d6a8954f8 
					 
					
						
						
							
							update mkerr.pl for use fips directory, add arx.pl script  
						
						 
						
						
						
						
					 
					
						2011-01-26 01:35:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c11845a4ab 
					 
					
						
						
							
							add fips_premain.c.sha1  
						
						 
						
						
						
						
					 
					
						2011-01-26 01:15:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec3657f81f 
					 
					
						
						
							
							add fips_sha1_selftest.c  
						
						 
						
						
						
						
					 
					
						2011-01-26 01:11:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d69c6653ef 
					 
					
						
						
							
							add fips/sha files  
						
						 
						
						
						
						
					 
					
						2011-01-26 01:09:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aaff7a0464 
					 
					
						
						
							
							add fips/aes/Makefile  
						
						 
						
						
						
						
					 
					
						2011-01-26 01:05:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d44454d6d 
					 
					
						
						
							
							add fips/des/Makefile  
						
						 
						
						
						
						
					 
					
						2011-01-26 01:04:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d3bfb9066 
					 
					
						
						
							
							add fips/Makefile  
						
						 
						
						
						
						
					 
					
						2011-01-26 01:03:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aeb8996c38 
					 
					
						
						
							
							add some missing fips files  
						
						 
						
						
						
						
					 
					
						2011-01-26 00:58:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2b4b28dc32 
					 
					
						
						
							
							And so it begins... again.  
						
						 
						
						... 
						
						
						
						Initial FIPS 140-2 code ported to HEAD. Doesn't even compile yet, may have
missing files, extraneous files and other nastiness.
In other words: it's experimental ATM, OK? 
						
						
					 
					
						2011-01-26 00:56:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						72a267331a 
					 
					
						
						
							
							Move RSA encryption functions to new file crypto/rsa/rsa_crpt.c to separate  
						
						 
						
						... 
						
						
						
						crypto and ENGINE dependencies in RSA library. 
						
						
					 
					
						2011-01-25 17:35:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						13a5519208 
					 
					
						
						
							
							Move BN_options function to bn_print.c to remove dependency for BIO printf  
						
						 
						
						... 
						
						
						
						routines from bn_lib.c 
						
						
					 
					
						2011-01-25 17:10:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f7a2afa652 
					 
					
						
						
							
							Move DSA_sign, DSA_verify to dsa_asn1.c and include separate versions of  
						
						 
						
						... 
						
						
						
						DSA_SIG_new() and DSA_SIG_free() to remove ASN1 dependencies from DSA_do_sign()
and DSA_do_verify(). 
						
						
					 
					
						2011-01-25 16:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						245a7eee17 
					 
					
						
						
							
							recalculate DSA signature if r or s is zero (FIPS 186-3 requirement)  
						
						 
						
						
						
						
					 
					
						2011-01-25 16:01:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e0375d504 
					 
					
						
						
							
							revert Makefile change  
						
						 
						
						
						
						
					 
					
						2011-01-25 12:15:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7d05edd12e 
					 
					
						
						
							
							PR: 2433  
						
						 
						
						... 
						
						
						
						Submitted by: Chris Wilson <chris@qwirx.com >
Reviewed by: steve
Constify ASN1_STRING_set_default_mask_asc(). 
						
						
					 
					
						2011-01-24 16:19:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fef1c40bf1 
					 
					
						
						
							
							New function EC_KEY_set_affine_coordinates() this performs all the  
						
						 
						
						... 
						
						
						
						NIST PKV tests. 
						
						
					 
					
						2011-01-24 16:07:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a428ac4750 
					 
					
						
						
							
							check EC public key isn't point at infinity  
						
						 
						
						
						
						
					 
					
						2011-01-24 15:04:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0aa1aedbce 
					 
					
						
						
							
							PR: 1612  
						
						 
						
						... 
						
						
						
						Submitted by: Robert Jackson <robert@rjsweb.net >
Reviewed by: steve
Fix EC_POINT_cmp function for case where b but not a is the point at infinity. 
						
						
					 
					
						2011-01-24 14:41:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd616752a1 
					 
					
						
						
							
							oops, revert mistakenly committed EC changes  
						
						 
						
						
						
						
					 
					
						2011-01-19 14:42:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						198ce9a611 
					 
					
						
						
							
							Add additional parameter to dsa_builtin_paramgen to output the generated  
						
						 
						
						... 
						
						
						
						seed to: this doesn't introduce any binary compatibility issues as the
function is only used internally.
The seed output is needed for FIPS 140-2 algorithm testing: the functionality
used to be in DSA_generate_parameters_ex() but was removed in OpenSSL 1.0.0 
						
						
					 
					
						2011-01-19 14:35:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						78c4572296 
					 
					
						
						
							
							add va_list version of ERR_add_error_data  
						
						 
						
						
						
						
					 
					
						2011-01-14 15:13:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3f17e5ed3 
					 
					
						
						
							
							stop warning with no-engine  
						
						 
						
						
						
						
					 
					
						2011-01-13 15:41:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ff66ff0a9b 
					 
					
						
						
							
							PR: 2425  
						
						 
						
						... 
						
						
						
						Synchronise VMS build with Unixly build. 
						
						
					 
					
						2011-01-10 20:55:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						105d62cbf1 
					 
					
						
						
							
							Constify.  
						
						 
						
						
						
						
					 
					
						2011-01-09 17:50:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c13d7c0296 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2011-01-09 17:50:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						114f511f17 
					 
					
						
						
							
							missed change in ACKNOWLEDGEMENTS file  
						
						 
						
						
						
						
					 
					
						2011-01-09 13:37:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						778b14b72d 
					 
					
						
						
							
							move some string utilities to buf_str.c to reduce some dependencies (from 0.9.8 branch).  
						
						 
						
						
						
						
					 
					
						2011-01-09 13:32:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7b1a04519f 
					 
					
						
						
							
							add X9.31 prime generation routines from 0.9.8 branch  
						
						 
						
						
						
						
					 
					
						2011-01-09 13:02:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b301b2fe3 
					 
					
						
						
							
							PR: 2407  
						
						 
						
						... 
						
						
						
						Fix fault include.
Submitted by Arpadffy Zoltan <Zoltan.Arpadffy@scientificgames.se > 
						
						
					 
					
						2011-01-06 20:56:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						722521594c 
					 
					
						
						
							
							Don't use decryption_failed alert for TLS v1.1 or later.  
						
						 
						
						
						
						
					 
					
						2011-01-04 19:39:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a47577164c 
					 
					
						
						
							
							Since DTLS 1.0 is based on TLS 1.1 we should never return a decryption_failed  
						
						 
						
						... 
						
						
						
						alert. 
						
						
					 
					
						2011-01-04 19:34:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						09d84e03e8 
					 
					
						
						
							
							oops missed an assert  
						
						 
						
						
						
						
					 
					
						2011-01-03 12:54:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						85881c1d92 
					 
					
						
						
							
							PR: 2411  
						
						 
						
						... 
						
						
						
						Submitted by: Rob Austein <sra@hactrn.net >
Reviewed by: steve
Fix corner cases in RFC3779 code. 
						
						
					 
					
						2011-01-03 01:40:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						968062b7d3 
					 
					
						
						
							
							Fix escaping code for string printing. If *any* escaping is enabled we  
						
						 
						
						... 
						
						
						
						must escape the escape character itself (backslash). 
						
						
					 
					
						2011-01-03 01:31:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e82f75577b 
					 
					
						
						
							
							PR: 2410  
						
						 
						
						... 
						
						
						
						Submitted by: Rob Austein <sra@hactrn.net >
Reviewed by: steve
Use OPENSSL_assert() instead of assert(). 
						
						
					 
					
						2011-01-03 01:22:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						88ea810e25 
					 
					
						
						
							
							PR: 2413  
						
						 
						
						... 
						
						
						
						Submitted by: Michael Bergandi <mbergandi@gmail.com >
Reviewed by: steve
Fix typo in crypto/bio/bss_dgram.c 
						
						
					 
					
						2011-01-03 01:07:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2b3936e882 
					 
					
						
						
							
							avoid verification loops in trusted store when path building  
						
						 
						
						
						
						
					 
					
						2010-12-25 20:45:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c596b2ab5b 
					 
					
						
						
							
							Part of the IF structure didn't get pasted here...  
						
						 
						
						... 
						
						
						
						PR: 2393 
						
						
					 
					
						2010-12-14 21:44:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c329c6bac7 
					 
					
						
						
							
							e_capi.c: rearrange #include-s to improve portability.  
						
						 
						
						... 
						
						
						
						PR: 2394 
						
						
					 
					
						2010-12-14 20:39:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b7ef916c38 
					 
					
						
						
							
							First attempt at adding the possibility to set the pointer size for the builds on VMS.  
						
						 
						
						... 
						
						
						
						PR: 2393 
						
						
					 
					
						2010-12-14 19:19:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7d5a55d22 
					 
					
						
						
							
							Support routines for ASN1 scanning function, doesn't do much yet.  
						
						 
						
						
						
						
					 
					
						2010-12-13 18:15:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cc4c230653 
					 
					
						
						
							
							e_capi.c: change from ANSI to TCHAR domain. This makes it compilable on  
						
						 
						
						... 
						
						
						
						Windows CE/Mobile, yet keeps it normal Windows loop.
PR: 2350 
						
						
					 
					
						2010-12-12 20:26:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						de3bb266f4 
					 
					
						
						
							
							apps/x590.c: harmonize usage of STDout and out_err.  
						
						 
						
						... 
						
						
						
						PR: 2323 
						
						
					 
					
						2010-12-12 10:52:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						05e4fbf801 
					 
					
						
						
							
							bss_file.c: refine UTF8 logic.  
						
						 
						
						... 
						
						
						
						PR: 2382 
						
						
					 
					
						2010-12-11 14:53:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef3026a325 
					 
					
						
						
							
							ignore leading null fields  
						
						 
						
						
						
						
					 
					
						2010-12-03 19:31:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						420ce9eb98 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-12-02 19:55:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73334e8da1 
					 
					
						
						
							
							PR: 2386  
						
						 
						
						... 
						
						
						
						Submitted by: Stefan Birrer <stefan.birrer@adnovum.ch >
Reviewed by: steve
Correct SKM_ASN1_SET_OF_d2i macro. 
						
						
					 
					
						2010-12-02 18:02:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f413ef406 
					 
					
						
						
							
							fix doc typos  
						
						 
						
						
						
						
					 
					
						2010-12-02 13:44:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						85171f83b8 
					 
					
						
						
							
							use right version this time in FAQ  
						
						 
						
						
						
						
					 
					
						2010-12-02 00:08:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a550d351fc 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-12-02 00:01:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cbecd29a27 
					 
					
						
						
							
							Configure: make -mno-cygwin optional on mingw platforms.  
						
						 
						
						... 
						
						
						
						PR: 2381 
						
						
					 
					
						2010-11-30 22:18:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						09c1dc850c 
					 
					
						
						
							
							PR: 2385  
						
						 
						
						... 
						
						
						
						Submitted by: Stefan Birrer <stefan.birrer@adnovum.ch >
Reviewed by: steve
Zero key->pkey.ptr after it is freed so the structure can be reused. 
						
						
					 
					
						2010-11-30 19:37:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4585fd0734 
					 
					
						
						
							
							Better method for creating SSLROOT:.  
						
						 
						
						... 
						
						
						
						Make sure to include the path to evptest.txt. 
						
						
					 
					
						2010-11-29 22:27:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e3c1854b0c 
					 
					
						
						
							
							TABLE update.  
						
						 
						
						
						
						
					 
					
						2010-11-29 21:17:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e822c756b6 
					 
					
						
						
							
							s390x assembler pack: adapt for -m31 build, see commentary in Configure  
						
						 
						
						... 
						
						
						
						for more details. 
						
						
					 
					
						2010-11-29 20:52:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						300b1d76fe 
					 
					
						
						
							
							apply J-PKAKE fix to HEAD (original by Ben)  
						
						 
						
						
						
						
					 
					
						2010-11-29 18:32:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae3fff5034 
					 
					
						
						
							
							Some of the MS_STATIC use in crypto/evp is a legacy from the days when  
						
						 
						
						... 
						
						
						
						EVP_MD_CTX was much larger: it isn't needed anymore. 
						
						
					 
					
						2010-11-27 17:37:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d0205686bb 
					 
					
						
						
							
							PR: 2240  
						
						 
						
						... 
						
						
						
						Submitted by: Jack Lloyd <lloyd@randombit.net >, "Mounir IDRASSI" <mounir.idrassi@idrix.net >, steve
Reviewed by: steve
As required by RFC4492 an absent supported points format by a server is
not an error: it should be treated as equivalent to an extension only
containing uncompressed. 
						
						
					 
					
						2010-11-25 12:27:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						290be870d6 
					 
					
						
						
							
							using_ecc doesn't just apply to TLSv1  
						
						 
						
						
						
						
					 
					
						2010-11-25 11:51:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fa71cc7bce 
					 
					
						
						
							
							fix typo in HMAC redirection, add HMAC INIT tracing  
						
						 
						
						
						
						
					 
					
						2010-11-24 19:14:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e77906b9fa 
					 
					
						
						
							
							VERY EXPERIMENTAL HMAC redirection example in OpenSSL ENGINE. Untested at this  
						
						 
						
						... 
						
						
						
						stage and probably wont work properly. 
						
						
					 
					
						2010-11-24 18:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f830c68f4d 
					 
					
						
						
							
							add "missing" functions to copy EVP_PKEY_METHOD and examine info  
						
						 
						
						
						
						
					 
					
						2010-11-24 16:08:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f678c4081 
					 
					
						
						
							
							oops, revert invalid change  
						
						 
						
						
						
						
					 
					
						2010-11-24 14:03:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e9be051f3a 
					 
					
						
						
							
							use generalise mac API for SSL key generation  
						
						 
						
						
						
						
					 
					
						2010-11-24 13:16:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						46fc96d4ba 
					 
					
						
						
							
							constify EVP_PKEY_new_mac_key()  
						
						 
						
						
						
						
					 
					
						2010-11-24 13:13:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da64e0d898 
					 
					
						
						
							
							INSTALL.W32: document trouble with symlinks under MSYS.  
						
						 
						
						... 
						
						
						
						PR: 2377 
						
						
					 
					
						2010-11-23 22:56:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						88868c0786 
					 
					
						
						
							
							Use the same directory for architecture dependent header files as in  
						
						 
						
						... 
						
						
						
						the branches OpenSSL-1_0_0-stable and OpenSSL-1_0_1-stable. 
						
						
					 
					
						2010-11-23 02:43:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c5ef4bb49a 
					 
					
						
						
							
							Implement bc test strategy as submitted by Steven M. Schweda <sms@antinode.info>.  
						
						 
						
						... 
						
						
						
						Make sure we move to '__here' before trying to use it to build local sslroot: 
						
						
					 
					
						2010-11-23 02:12:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						01bfc480c6 
					 
					
						
						
							
							Print openssl version information at the end of the tests  
						
						 
						
						
						
						
					 
					
						2010-11-23 01:06:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2631a0210e 
					 
					
						
						
							
							Give the architecture dependent directory higher priority  
						
						 
						
						
						
						
					 
					
						2010-11-23 01:05:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						feb592bcc9 
					 
					
						
						
							
							Don't define an empty CFLAGS, it's much more honest not to defined it at all.  
						
						 
						
						... 
						
						
						
						Make sure to remove any [.CRYTO]BUILDINF.H so it doesn't get used instead of
[.''ARCH'.CRYPTO]BUILDINF.H 
						
						
					 
					
						2010-11-23 01:03:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fbd7d524be 
					 
					
						
						
							
							* tests.com: Add the symbol openssl_conf, so the openssl application  
						
						 
						
						... 
						
						
						
						stops complaining about a missing configuration file.  Define the logical
  name PERL_ENV_TABLES with values to Perl considers the DCL symbol table
  as part of the environment (see 'man perlvms' for details), so cms-test.pl
  can get the value of EXE_DIR from tests.com, among others.
* cms-test.pl: Make changes to have it work on VMS as well.  Upper or mixed
  case options need to be quoted and the openssl command needs a VMS-specific
  treatment.  It all should work properly on Unix, I hope it does on Windows
  as well... 
						
						
					 
					
						2010-11-22 23:42:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d5dfa7cd82 
					 
					
						
						
							
							Better way to build tests.  Taken from OpenSSL-1_0_1-stable  
						
						 
						
						
						
						
					 
					
						2010-11-22 22:17:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c8f0610d99 
					 
					
						
						
							
							Synchronise with Unix and do all other needed modifications to have it  
						
						 
						
						... 
						
						
						
						build on VMS again. 
						
						
					 
					
						2010-11-22 22:04:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dd128715a2 
					 
					
						
						
							
							s390x.S: fix typo in bn_mul_words.  
						
						 
						
						... 
						
						
						
						PR: 2380 
						
						
					 
					
						2010-11-22 21:55:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec44f0ebfa 
					 
					
						
						
							
							Taken from OpenSSL_1_0_0-stable:  
						
						 
						
						... 
						
						
						
						Include proper header files for time functions.
Submitted by Arpadffy Zoltan <Zoltan.Arpadffy@scientificgames.se > 
						
						
					 
					
						2010-11-22 18:25:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6377953816 
					 
					
						
						
							
							add pice of PR#2295 not committed to HEAD  
						
						 
						
						
						
						
					 
					
						2010-11-22 16:14:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e322fa2872 
					 
					
						
						
							
							PR: 2376  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Reviewed by: steve
Cleanup alloca use, fix Win32 target for OpenWatcom. 
						
						
					 
					
						2010-11-19 00:12:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ac0708f37 
					 
					
						
						
							
							PR: 2375  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Reviewed by: steve
cleanup/fix e_aep.c for OpenWatcom 
						
						
					 
					
						2010-11-18 23:00:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b02f9fafb 
					 
					
						
						
							
							PR: 2374  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Reviewed by: steve
Don't compile capi ENGINE on mingw32 
						
						
					 
					
						2010-11-18 22:57:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4878ad687f 
					 
					
						
						
							
							Tell the user what test is being performed.  
						
						 
						
						
						
						
					 
					
						2010-11-18 22:46:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						908df4d0f7 
					 
					
						
						
							
							We expect these scripts not to bail on error, so make sure that's what happens.  
						
						 
						
						
						
						
					 
					
						2010-11-18 22:44:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6c1982c5ce 
					 
					
						
						
							
							Synchronise with Unix tests  
						
						 
						
						
						
						
					 
					
						2010-11-18 22:36:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						40844c9f68 
					 
					
						
						
							
							We redid the structure on architecture dependent source files, but  
						
						 
						
						... 
						
						
						
						apparently forgot to adapt the copying to the installation directory. 
						
						
					 
					
						2010-11-18 20:03:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b71f815f6b 
					 
					
						
						
							
							remove duplicate statement  
						
						 
						
						
						
						
					 
					
						2010-11-18 17:33:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						833ebea189 
					 
					
						
						
							
							compile cts128.c on VMS  
						
						 
						
						
						
						
					 
					
						2010-11-18 17:04:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						91f0828c95 
					 
					
						
						
							
							fix no SIGALRM case in speed.c  
						
						 
						
						
						
						
					 
					
						2010-11-18 13:22:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						70a5f5f9ab 
					 
					
						
						
							
							PR: 2372  
						
						 
						
						... 
						
						
						
						Submitted by: "W.C.A. Wijngaards" <wouter@nlnetlabs.nl >
Reviewed by: steve
Fix OpenBSD compilation failure. 
						
						
					 
					
						2010-11-18 12:30:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac7797a722 
					 
					
						
						
							
							oops, reinstate TLSv1 string  
						
						 
						
						
						
						
					 
					
						2010-11-17 18:17:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7d5686d355 
					 
					
						
						
							
							Don't assume a decode error if session tlsext_ecpointformatlist is not NULL: it can be legitimately set elsewhere.  
						
						 
						
						
						
						
					 
					
						2010-11-17 17:37:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						732d31beee 
					 
					
						
						
							
							bring HEAD up to date, add CVE-2010-3864 fix, update NEWS files  
						
						 
						
						
						
						
					 
					
						2010-11-16 14:18:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f7d2f17a07 
					 
					
						
						
							
							add TLS v1.1 options to s_server  
						
						 
						
						
						
						
					 
					
						2010-11-16 14:16:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad889de097 
					 
					
						
						
							
							If EVP_PKEY structure contains an ENGINE the key is ENGINE specific and  
						
						 
						
						... 
						
						
						
						we should use its method instead of any generic one. 
						
						
					 
					
						2010-11-16 12:11:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e15320f652 
					 
					
						
						
							
							Only use explicit IV if cipher is in CBC mode.  
						
						 
						
						
						
						
					 
					
						2010-11-14 17:47:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e827b58711 
					 
					
						
						
							
							Get correct GOST private key instead of just assuming the last one is  
						
						 
						
						... 
						
						
						
						correct: this isn't always true if we have more than one certificate. 
						
						
					 
					
						2010-11-14 13:50:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						80f0bcbabb 
					 
					
						
						
							
							preliminary acknowledgments file  
						
						 
						
						
						
						
					 
					
						2010-11-12 20:06:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eba2b51d9e 
					 
					
						
						
							
							Submitted By: Bogdan Harjoc <harjoc@gmail.com>  
						
						 
						
						... 
						
						
						
						Add missing debug WIN64 targets. 
						
						
					 
					
						2010-11-11 15:21:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						838ea7f824 
					 
					
						
						
							
							PR: 2366  
						
						 
						
						... 
						
						
						
						Submitted by: Damien Miller <djm@mindrot.org >
Reviewed by: steve
Stop pkeyutl crashing if some arguments are missing. Also make str2fmt
tolerate NULL parameter. 
						
						
					 
					
						2010-11-11 14:42:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da7b0b2261 
					 
					
						
						
							
							Submitted by: Jonathan Dixon <joth@chromium.org>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve
If store is NULL set flags correctly. 
						
						
					 
					
						2010-11-02 15:58:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						beee17c428 
					 
					
						
						
							
							Configure: update mips[32|64]_asm lines.  
						
						 
						
						
						
						
					 
					
						2010-10-22 20:18:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c242dda4a4 
					 
					
						
						
							
							sha512-mips.pl: add missing 64-bit byte swap.  
						
						 
						
						
						
						
					 
					
						2010-10-22 20:16:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bb55003882 
					 
					
						
						
							
							Add aes-mips.pl assembler module.  
						
						 
						
						
						
						
					 
					
						2010-10-21 15:56:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ca32ceb773 
					 
					
						
						
							
							sha512-mips.pl: fix "little-endian" typos.  
						
						 
						
						
						
						
					 
					
						2010-10-21 15:56:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						776654adff 
					 
					
						
						
							
							PR: 2295  
						
						 
						
						... 
						
						
						
						Submitted by: Alexei Khlebnikov <alexei.khlebnikov@opera.com >
Reviewed by: steve
OOM checking. Leak in OOM fix. Fall-through comment. Duplicate code
elimination. 
						
						
					 
					
						2010-10-11 23:49:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d6522548dd 
					 
					
						
						
							
							x86_64-xlate.pl: fix LNK4078 and LNK4210 link warnings.  
						
						 
						
						... 
						
						
						
						PR 2356 
						
						
					 
					
						2010-10-10 21:07:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e49af2ac38 
					 
					
						
						
							
							move CHANGES entry to correct place  
						
						 
						
						
						
						
					 
					
						2010-10-10 12:24:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5759425810 
					 
					
						
						
							
							PR: 2314  
						
						 
						
						... 
						
						
						
						Submitted by: Mounir IDRASSI <mounir.idrassi@idrix.net >
Reviewed by: steve
Fix for double free bug in ssl/s3_clnt.c CVE-2010-2939 
						
						
					 
					
						2010-10-10 12:15:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						983768997e 
					 
					
						
						
							
							We can't always read 6 bytes in an OCSP response: fix so error statuses  
						
						 
						
						... 
						
						
						
						are read correctly for non-blocking I/O. 
						
						
					 
					
						2010-10-06 18:00:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8ec3fa0597 
					 
					
						
						
							
							fix signature printing routines  
						
						 
						
						
						
						
					 
					
						2010-10-04 13:58:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c7246ed4b 
					 
					
						
						
							
							fix warnings  
						
						 
						
						
						
						
					 
					
						2010-10-04 13:45:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e0de9e8a6 
					 
					
						
						
							
							Minor documentation fixes, PR#2345  
						
						 
						
						
						
						
					 
					
						2010-10-04 13:28:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0d638dc1f6 
					 
					
						
						
							
							Minor documentation fixes, PR#2344  
						
						 
						
						
						
						
					 
					
						2010-10-04 13:23:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c17171c625 
					 
					
						
						
							
							Typo, PR#2346  
						
						 
						
						
						
						
					 
					
						2010-10-04 13:19:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						39239280f3 
					 
					
						
						
							
							Add call to ENGINE_register_all_complete() to ENGINE_load_builtin_engines(),  
						
						 
						
						... 
						
						
						
						this means that some implementations will be used automatically, e.g. aesni,
we do this for cryptodev anyway.
Setup cpuid in ENGINE_load_builtin_engines() too as some ENGINEs use it. 
						
						
					 
					
						2010-10-03 18:58:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5ad83922ca 
					 
					
						
						
							
							sha512-mips.pl: add missing byte swap for little-endians.  
						
						 
						
						
						
						
					 
					
						2010-10-02 12:43:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d466588788 
					 
					
						
						
							
							MIPS assembler pack: enable it in Configure, add SHA2 module, fix make rules,  
						
						 
						
						... 
						
						
						
						update commentary... 
						
						
					 
					
						2010-10-02 11:47:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da4d239dad 
					 
					
						
						
							
							Add unified mips.pl, which will replace mips3.s.  
						
						 
						
						
						
						
					 
					
						2010-09-27 21:19:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0985473636 
					 
					
						
						
							
							sha1-mips.pl, mips-mont.pl: unify MIPS assembler modules in respect to  
						
						 
						
						... 
						
						
						
						ABI and binutils. 
						
						
					 
					
						2010-09-22 08:43:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8986e37249 
					 
					
						
						
							
							ghash-s390x.pl: reschedule instructions for better performance.  
						
						 
						
						
						
						
					 
					
						2010-09-21 11:37:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						90ba3a28f8 
					 
					
						
						
							
							s390x assembler pack: extend OPENSSL_s390xcap_P to 128 bits.  
						
						 
						
						
						
						
					 
					
						2010-09-18 08:46:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bc9092f726 
					 
					
						
						
							
							VC-32.pl: default to nasm if neither nasm or nasmw is is found at the moment.  
						
						 
						
						... 
						
						
						
						PR: 2338 
						
						
					 
					
						2010-09-13 16:15:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f8927c89d0 
					 
					
						
						
							
							Alpha assembler pack: adapt for Linux.  
						
						 
						
						... 
						
						
						
						PR: 2335 
						
						
					 
					
						2010-09-13 13:28:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3739a772e9 
					 
					
						
						
							
							sha1-armv4-large.pl: more readable input pickup.  
						
						 
						
						
						
						
					 
					
						2010-09-10 15:41:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c504f0a921 
					 
					
						
						
							
							Configure: remove redundant -DMD32_REG_T=int.  
						
						 
						
						
						
						
					 
					
						2010-09-10 15:37:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6415dd7b2f 
					 
					
						
						
							
							crypto/ppc[cpuid|cap]: call CPU detection once and detect AltiVec.  
						
						 
						
						
						
						
					 
					
						2010-09-10 15:00:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dd4a0af370 
					 
					
						
						
							
							crypto/bn/asm/s390x.S: drop redundant instructions.  
						
						 
						
						
						
						
					 
					
						2010-09-10 14:53:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7d1f55e9d9 
					 
					
						
						
							
							Add ghash-s390x.pl.  
						
						 
						
						
						
						
					 
					
						2010-09-10 14:50:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d52d5ad147 
					 
					
						
						
							
							modes/asm/ghash-*.pl: switch to [more reproducible] performance results  
						
						 
						
						... 
						
						
						
						collected with 'apps/openssl speed ghash'. 
						
						
					 
					
						2010-09-05 19:52:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a3b0c44b1b 
					 
					
						
						
							
							ghash-ia64.pl: 50% performance improvement of gcm_ghash_4bit.  
						
						 
						
						
						
						
					 
					
						2010-09-05 19:49:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4b2603e46c 
					 
					
						
						
							
							sparcv9cap.c: disengange Solaris-specific CPU detection routine in favour  
						
						 
						
						... 
						
						
						
						of unified procedure relying on SIGILL.
PR: 2321 
						
						
					 
					
						2010-09-05 19:41:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						bf48836c7c 
					 
					
						
						
							
							Fixes to NPN from Adam Langley.  
						
						 
						
						
						
						
					 
					
						2010-09-05 17:14:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d9a268b9f9 
					 
					
						
						
							
							NPN tests.  
						
						 
						
						
						
						
					 
					
						2010-09-05 16:35:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5df2a2497a 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2010-09-05 16:34:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ed7b78b56 
					 
					
						
						
							
							make no-gost work on Windows  
						
						 
						
						
						
						
					 
					
						2010-09-02 17:45:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2ec4ccee1f 
					 
					
						
						
							
							fix bug in AES_unwrap()  
						
						 
						
						
						
						
					 
					
						2010-08-30 23:59:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						396cb5657b 
					 
					
						
						
							
							More C language police work.  
						
						 
						
						
						
						
					 
					
						2010-08-27 13:17:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						eb8ef241eb 
					 
					
						
						
							
							C conformity fixes: Move declarations before statements in all blocks.  
						
						 
						
						
						
						
					 
					
						2010-08-27 12:07:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1b5af90b45 
					 
					
						
						
							
							C conformity fixes:  
						
						 
						
						... 
						
						
						
						- Move declarations before statements in all blocks.
- Where 64-bit type is required, use it explicitly (not 1l). 
						
						
					 
					
						2010-08-27 11:29:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bdd5350804 
					 
					
						
						
							
							PR: 1833  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix other cases not covered by original patch. 
						
						
					 
					
						2010-08-27 11:29:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7b3a9b0099 
					 
					
						
						
							
							Update version numbers  
						
						 
						
						
						
						
					 
					
						2010-08-26 18:45:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7c2d4fee25 
					 
					
						
						
							
							For better forward-security support, add functions  
						
						 
						
						... 
						
						
						
						SSL_[CTX_]set_not_resumable_session_callback.
Submitted by: Emilia Kasper (Google)
[A part of this change affecting ssl/s3_lib.c was accidentally commited
separately, together with a compilation fix for that file;
see s3_lib.c CVS revision 1.133 (http://cvs.openssl.org/chngview?cn=19855 ).] 
						
						
					 
					
						2010-08-26 15:15:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f16176dab4 
					 
					
						
						
							
							Patch from PR  #1833  was broken: there's no s->s3->new_session  
						
						 
						
						... 
						
						
						
						(only s->new_session). 
						
						
					 
					
						2010-08-26 14:54:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						76af94eb27 
					 
					
						
						
							
							(formatting error)  
						
						 
						
						
						
						
					 
					
						2010-08-26 14:40:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						04daec862c 
					 
					
						
						
							
							New 64-bit optimized implementation EC_GFp_nistp224_method().  
						
						 
						
						... 
						
						
						
						This will only be compiled in if explicitly requested
(#ifdef EC_NISTP224_64_GCC_128).
Submitted by: Emilia Kasper (Google) 
						
						
					 
					
						2010-08-26 14:29:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3bb63fc68 
					 
					
						
						
							
							sync and update ordinals  
						
						 
						
						
						
						
					 
					
						2010-08-26 14:27:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						44959ee456 
					 
					
						
						
							
							PR: 1833  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Support for abbreviated handshakes when renegotiating. 
						
						
					 
					
						2010-08-26 14:23:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c94f7f657b 
					 
					
						
						
							
							ECC library bugfixes.  
						
						 
						
						... 
						
						
						
						Submitted by: Emilia Kasper (Google) 
						
						
					 
					
						2010-08-26 12:11:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						173350bcca 
					 
					
						
						
							
							Harmonize with OpenSSL_1_0_1-stable version of CHANGES.  
						
						 
						
						
						
						
					 
					
						2010-08-26 11:22:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1e024f05b2 
					 
					
						
						
							
							util/cygwin.sh: maintainer's update.  
						
						 
						
						... 
						
						
						
						Submitted by: Corinna Vinschen 
						
						
					 
					
						2010-08-24 21:51:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f2c88f5282 
					 
					
						
						
							
							engine/Makefile: harmonize engine install rule for .dylib extension on MacOS X.  
						
						 
						
						... 
						
						
						
						PR: 2319 
						
						
					 
					
						2010-08-24 21:45:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						836ea45350 
					 
					
						
						
							
							gcm128.c: fix typo in CRYPTO_gcm128_encrypt_ctr32 name.  
						
						 
						
						
						
						
					 
					
						2010-08-23 14:32:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						72f421934a 
					 
					
						
						
							
							Makefile.share: fix brown-bag typo in link_o.darwin.  
						
						 
						
						
						
						
					 
					
						2010-08-21 11:34:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3fdd168ffc 
					 
					
						
						
							
							crypto/modes/Makefile: fix typo in ghash-parisc.s rule.  
						
						 
						
						
						
						
					 
					
						2010-08-21 11:20:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b789adc67 
					 
					
						
						
							
							PR: 2315  
						
						 
						
						... 
						
						
						
						Use consistent calculation for PSS salt length. 
						
						
					 
					
						2010-08-10 13:01:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						33d9c8348a 
					 
					
						
						
							
							sha1-armv4-large.pl: reschedule instructions for dual-issue pipeline.  
						
						 
						
						
						
						
					 
					
						2010-08-03 15:34:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dbe3611bbd 
					 
					
						
						
							
							rc5_locl.h: make inline assembler clang-friendly.  
						
						 
						
						
						
						
					 
					
						2010-08-02 21:51:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f71c6aceeb 
					 
					
						
						
							
							gcm128.c: add CRYPTO_gcm128_[en|de]crypt_ctr32.  
						
						 
						
						
						
						
					 
					
						2010-08-02 21:39:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						30ab7af242 
					 
					
						
						
							
							md32_common.h: modify MD32_REG_T pre-processing logic [triggered by clang].  
						
						 
						
						
						
						
					 
					
						2010-08-02 09:32:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2948fbab3a 
					 
					
						
						
							
							Fix ctr mode properly this time....  
						
						 
						
						
						
						
					 
					
						2010-07-28 16:53:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						081464fa14 
					 
					
						
						
							
							Make ctr mode behaviour consistent with other modes.  
						
						 
						
						
						
						
					 
					
						2010-07-28 11:03:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ee2ffc2794 
					 
					
						
						
							
							Add Next Protocol Negotiation.  
						
						 
						
						
						
						
					 
					
						2010-07-28 10:06:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b122e482f9 
					 
					
						
						
							
							alphacpuid.pl: fix brown-bag bug.  
						
						 
						
						
						
						
					 
					
						2010-07-28 08:17:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						3c530fef67 
					 
					
						
						
							
							Sign mismatch.  
						
						 
						
						
						
						
					 
					
						2010-07-27 16:57:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a7a6aade9d 
					 
					
						
						
							
							Missing prototype.  
						
						 
						
						
						
						
					 
					
						2010-07-27 16:34:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						20d171377f 
					 
					
						
						
							
							aes-x86_64.pl: commit#19797 was overzealous, partially reverse.  
						
						 
						
						
						
						
					 
					
						2010-07-26 22:56:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						149b18078e 
					 
					
						
						
							
							Replace alphacpuid.s with alphacpuid.pl to ensure it makes to release tar-balls.  
						
						 
						
						... 
						
						
						
						PR: 2309 
						
						
					 
					
						2010-07-26 22:04:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						39438ff6e2 
					 
					
						
						
							
							ms/: update do_win64*.bat and remove redundant mingw32.bat.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:58:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d5fe8c3459 
					 
					
						
						
							
							sha1-alpha.pl: commentary update.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:57:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6219d2c294 
					 
					
						
						
							
							rc4-s390x.pl: harmonize build rule with other similar rules.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:56:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						85e28dfa6f 
					 
					
						
						
							
							ghash-ia64.pl: excuse myself from implementing "528B" variant.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:54:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6559b40df0 
					 
					
						
						
							
							modes/Makefile: update clean rule.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:53:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3d85668ba2 
					 
					
						
						
							
							eng_aesni.c: switch to CRYPTO_ctr128_encrypt_ctr32.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:50:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						058d83cfe9 
					 
					
						
						
							
							aes-x86_64.pl: remove redundant instructions.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:48:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a9e790b95a 
					 
					
						
						
							
							perlasm/x86_64-xlate.pl: extend SSE>2 to ml64.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:45:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02f358da49 
					 
					
						
						
							
							aesni-x86_64.pl: fix typos.  
						
						 
						
						
						
						
					 
					
						2010-07-26 21:44:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						133a7f9a50 
					 
					
						
						
							
							perlasm/x86asm.pl: move aesni and pclmulqdq opcodes to aesni-x86.pl and  
						
						 
						
						... 
						
						
						
						ghash-x86.pl. 
						
						
					 
					
						2010-07-26 21:42:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb1c48be6f 
					 
					
						
						
							
							Add new type ossl_ssize_t instead of ssize_t and move definitions to  
						
						 
						
						... 
						
						
						
						e_os2.h, this should fix WIN32 compilation issues and hopefully avoid
conflicts with other headers which may workaround ssize_t in different ways. 
						
						
					 
					
						2010-07-26 18:15:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2fd9664b0b 
					 
					
						
						
							
							#if out deleted function from headers so it isn't picked up by WIN32 build  
						
						 
						
						... 
						
						
						
						system. 
						
						
					 
					
						2010-07-26 18:15:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aa763c0f6d 
					 
					
						
						
							
							WIN32 build fix.  
						
						 
						
						
						
						
					 
					
						2010-07-26 13:17:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75a96dd059 
					 
					
						
						
							
							Sync ordinals and update.  
						
						 
						
						
						
						
					 
					
						2010-07-25 19:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						843b5a250a 
					 
					
						
						
							
							Update symhacks.  
						
						 
						
						
						
						
					 
					
						2010-07-25 19:12:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						18f3385dea 
					 
					
						
						
							
							Add modes.h and cmac to WIN32 build system.  
						
						 
						
						
						
						
					 
					
						2010-07-25 18:12:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d7d119a3c9 
					 
					
						
						
							
							aesni-x86[_64].pl: fine-tune, add CCM subroutine, add performance data.  
						
						 
						
						
						
						
					 
					
						2010-07-25 15:17:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						223c59eae5 
					 
					
						
						
							
							Fix WIN32 build system to correctly link ENGINE DLLs contained in a  
						
						 
						
						... 
						
						
						
						directory: currently the GOST ENGINE is the only case. 
						
						
					 
					
						2010-07-24 17:52:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bbd0de88d 
					 
					
						
						
							
							Add call to ENGINE_register_all_complete() to ENGINE_load_builtin_engines(),  
						
						 
						
						... 
						
						
						
						this means that some implementations will be used automatically, e.g. aesni,
we do this for cryptodev anyway.
Setup cpuid in ENGINE_load_builtin_engines() too as some ENGINEs use it. 
						
						
					 
					
						2010-07-21 16:14:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f96ccf36ff 
					 
					
						
						
							
							PR: 1830  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >, Steve Henson
Support for RFC5705 key extractor. 
						
						
					 
					
						2010-07-18 17:43:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b9e7793dd7 
					 
					
						
						
							
							oops, revert wrong patch..  
						
						 
						
						
						
						
					 
					
						2010-07-18 17:43:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d135da5192 
					 
					
						
						
							
							Fix warnings (From HEAD, original patch by Ben).  
						
						 
						
						
						
						
					 
					
						2010-07-18 16:52:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						75db4b2f7b 
					 
					
						
						
							
							Makefile.shared: link_o.darwin comment update.  
						
						 
						
						
						
						
					 
					
						2010-07-16 08:15:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b730b03f2f 
					 
					
						
						
							
							Configure: suppress $multilib with non-system $prefix.  
						
						 
						
						... 
						
						
						
						PR: 2307 
						
						
					 
					
						2010-07-16 08:13:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1dc02bbaf5 
					 
					
						
						
							
							Makefile.shared: debugging line slipped through in previous commit.  
						
						 
						
						
						
						
					 
					
						2010-07-15 13:55:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cad6650f52 
					 
					
						
						
							
							Makefile.shared: update link_o.dawrin rule.  
						
						 
						
						... 
						
						
						
						PR: 2306 
						
						
					 
					
						2010-07-15 13:53:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						26064d7f77 
					 
					
						
						
							
							aes-s390x.pl: revisit buffer allocation and add performance data.  
						
						 
						
						
						
						
					 
					
						2010-07-14 08:43:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c981086d40 
					 
					
						
						
							
							sha1-armv4-large.pl: add performance data for Cortex A8 core.  
						
						 
						
						
						
						
					 
					
						2010-07-13 14:11:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2d22e08083 
					 
					
						
						
							
							ARM assembler pack: reschedule instructions for dual-issue pipeline.  
						
						 
						
						... 
						
						
						
						Modest improvement coefficients mean that code already had some
parallelism and there was not very much room for improvement. Special
thanks to Ted Krovetz for benchmarking the code with such patience. 
						
						
					 
					
						2010-07-13 14:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0852f90c30 
					 
					
						
						
							
							PR: 2297  
						
						 
						
						... 
						
						
						
						Submitted by: Antony, Benoy <bantony@ebay.com >
Approved by: steve@openssl.org 
Fix bug in AES wrap code when t > 0xff. 
						
						
					 
					
						2010-07-09 17:26:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2765001610 
					 
					
						
						
							
							Configure: fix aes_ctr.o regexp.  
						
						 
						
						
						
						
					 
					
						2010-07-09 16:19:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						653215a127 
					 
					
						
						
							
							INSTALL.W32: mention _OPENSSL_isservice().  
						
						 
						
						... 
						
						
						
						PR: 2194 
						
						
					 
					
						2010-07-09 14:30:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6acb4ff389 
					 
					
						
						
							
							gcm128.c: API modification and readability improvements,  
						
						 
						
						... 
						
						
						
						add ghash benchmark to apps/speed.c. 
						
						
					 
					
						2010-07-09 14:10:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						874a3757af 
					 
					
						
						
							
							Rework framework for assembler support for AES counter mode and add  
						
						 
						
						... 
						
						
						
						AES_ctr32_encrypt to aes-s390x.pl. 
						
						
					 
					
						2010-07-09 12:21:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1cbdca7bf2 
					 
					
						
						
							
							Harmonize s390x assembler modules with "catch-all" rules from commit#19749.  
						
						 
						
						
						
						
					 
					
						2010-07-09 12:11:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e216cd6ee9 
					 
					
						
						
							
							armv4-mont.pl: addenum to previous commit#19749.  
						
						 
						
						
						
						
					 
					
						2010-07-08 15:06:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						396df7311e 
					 
					
						
						
							
							crypto/*/Makefile: unify "catch-all" assembler make rules and harmonize  
						
						 
						
						... 
						
						
						
						ARM assembler modules. 
						
						
					 
					
						2010-07-08 15:03:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f04f3873f8 
					 
					
						
						
							
							rand_nw.c: compensate for gcc bug (using %edx instead of %eax at -O3).  
						
						 
						
						... 
						
						
						
						PR: 2296 
						
						
					 
					
						2010-07-08 09:14:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						df72970951 
					 
					
						
						
							
							PROBLEMS: MacOS X is not necessarily a problem anymore.  
						
						 
						
						
						
						
					 
					
						2010-07-08 09:00:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7c5889bf7a 
					 
					
						
						
							
							sparcv9cap.c: reiterate CPU detection logic.  
						
						 
						
						
						
						
					 
					
						2010-07-08 07:47:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc53a037b0 
					 
					
						
						
							
							i variable is used on some platforms  
						
						 
						
						
						
						
					 
					
						2010-07-05 11:05:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						acbcc271b1 
					 
					
						
						
							
							ghash-armv4.pl: excuse myself from implementing "528B" flavour.  
						
						 
						
						
						
						
					 
					
						2010-07-02 08:14:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b28750877c 
					 
					
						
						
							
							ghash-sparcv9.pl: fix Makefile rule and add performance data for T1.  
						
						 
						
						
						
						
					 
					
						2010-07-02 08:09:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d9218e11e2 
					 
					
						
						
							
							crypto/sparc*: eliminate _sparcv9_rdwrasi.  
						
						 
						
						
						
						
					 
					
						2010-07-02 08:06:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c32fcca6f4 
					 
					
						
						
							
							SPARCv9 assembler pack: refine CPU detection on Linux, fix for "unaligned  
						
						 
						
						... 
						
						
						
						opcodes detected in executable segment" error. 
						
						
					 
					
						2010-07-01 07:34:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9674de7d3d 
					 
					
						
						
							
							no need for empty fragments with TLS 1.1 and later due to explicit IV  
						
						 
						
						
						
						
					 
					
						2010-06-27 14:43:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a7c64928c8 
					 
					
						
						
							
							clarify comment  
						
						 
						
						
						
						
					 
					
						2010-06-16 13:15:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c8bbd98a2b 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2010-06-12 14:13:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						57ae37a003 
					 
					
						
						
							
							VC-32.pl: fix /Fd name generation.  
						
						 
						
						... 
						
						
						
						PR: 2284 
						
						
					 
					
						2010-06-09 15:48:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d364506a24 
					 
					
						
						
							
							ghash-x86_64.pl: "528B" variant delivers further >30% improvement.  
						
						 
						
						
						
						
					 
					
						2010-06-09 15:05:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						04e2b793d6 
					 
					
						
						
							
							ghash-x86.pl: commentary updates.  
						
						 
						
						
						
						
					 
					
						2010-06-09 15:05:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8525950e7e 
					 
					
						
						
							
							ghash-x86.pl: "528B" variant of gcm_ghash_4bit_mmx gives 20-40%  
						
						 
						
						... 
						
						
						
						improvement. 
						
						
					 
					
						2010-06-04 13:21:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d08eae1bda 
					 
					
						
						
							
							x86 perlasm: add support for 16-bit values.  
						
						 
						
						
						
						
					 
					
						2010-06-04 13:13:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8107c35b1 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-06-01 15:23:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3cbb15ee81 
					 
					
						
						
							
							add CVE-2010-0742 and CVS-2010-1633 fixes  
						
						 
						
						
						
						
					 
					
						2010-06-01 14:39:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2d060267b1 
					 
					
						
						
							
							VC-32.pl: unconditionally generate symbols.pdb.  
						
						 
						
						
						
						
					 
					
						2010-06-01 06:02:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f9a152bd90 
					 
					
						
						
							
							x86_64-xlate.pl: refine mingw support and regexps, update commentary.  
						
						 
						
						
						
						
					 
					
						2010-06-01 05:56:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						af9fafdbd1 
					 
					
						
						
							
							Configure: update mingw config-lines.  
						
						 
						
						
						
						
					 
					
						2010-06-01 05:52:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eadfa019b3 
					 
					
						
						
							
							fix PR#2261 in a different way  
						
						 
						
						
						
						
					 
					
						2010-05-31 13:18:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9799937510 
					 
					
						
						
							
							PR: 2278  
						
						 
						
						... 
						
						
						
						Submitted By: Mattias Ellert <mattias.ellert@fysast.uu.se >
Fix type checking macro SKM_ASN1_SET_OF_i2d 
						
						
					 
					
						2010-05-29 12:49:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						417a24dba5 
					 
					
						
						
							
							update NEWS  
						
						 
						
						
						
						
					 
					
						2010-05-27 15:05:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e96633ac7 
					 
					
						
						
							
							PR: 2262  
						
						 
						
						... 
						
						
						
						Submitted By: Victor Wagner <vitus@cryptocom.ru >
Fix error reporting in load_key function. 
						
						
					 
					
						2010-05-27 14:09:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77cf9e09b0 
					 
					
						
						
							
							PR: 2261  
						
						 
						
						... 
						
						
						
						Submitted By: De Rudder, Stephen L." <s_derudder@tditx.com >
Workaround for newer Windows headers which define EADDRINUSE but not to the
same value as WSAEADDRINUSE. 
						
						
					 
					
						2010-05-27 13:07:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb877ccb35 
					 
					
						
						
							
							PR: 2258  
						
						 
						
						... 
						
						
						
						Submitted By: Ger Hobbelt <ger@hobbelt.com >
Base64 BIO fixes:
Use OPENSSL_assert() instead of assert().
Use memmove() as buffers overlap.
Fix write retry logic. 
						
						
					 
					
						2010-05-27 12:41:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d4fc82c0e 
					 
					
						
						
							
							PR: 2266  
						
						 
						
						... 
						
						
						
						Submitted By: Jonathan Gray <jsg@goblin.cx >
Correct ioctl definitions. 
						
						
					 
					
						2010-05-26 23:23:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e747f4d418 
					 
					
						
						
							
							gcm128.c: P.-M. Hager has tipped about possibility to fold reductions  
						
						 
						
						... 
						
						
						
						in gcm_ghash_4bit. Taking the idea a step further I've added extra
256+16 bytes of per-key storage, so that one can speak about 3rd variant
in addition to "256B" and "4KB": "528B" one. Commonly it should be
~50% faster than "256B" implementation or ~25% slower than "4KB" one. 
						
						
					 
					
						2010-05-26 21:36:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19a45b8d47 
					 
					
						
						
							
							Avoid use of ex_data free function in Chil ENGINE so it can be safely  
						
						 
						
						... 
						
						
						
						reloaded. 
						
						
					 
					
						2010-05-26 16:17:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						07e29c1234 
					 
					
						
						
							
							ghash-x86.pl: MMX optimization (+20-40%) and commentary update.  
						
						 
						
						
						
						
					 
					
						2010-05-23 12:37:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fb2d5a91e9 
					 
					
						
						
							
							gcm128.c: commentary update.  
						
						 
						
						
						
						
					 
					
						2010-05-23 12:35:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae7c67cace 
					 
					
						
						
							
							PR: 2254  
						
						 
						
						... 
						
						
						
						Submitted by: Ger Hobbelt <ger@hobbelt.com >
Approved by: steve@openssl.org 
Check for <= 0 i2d return value. 
						
						
					 
					
						2010-05-22 00:40:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca96d38981 
					 
					
						
						
							
							PR: 2251  
						
						 
						
						... 
						
						
						
						Submitted by: Ger Hobbelt <ger@hobbelt.com >
Approved by: steve@openssl.org 
Memleak, BIO chain leak and realloc checks in v3_pci.c 
						
						
					 
					
						2010-05-22 00:30:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9f08866940 
					 
					
						
						
							
							Stop compiler complaining in pedantic mode: may be a better way to do this...  
						
						 
						
						
						
						
					 
					
						2010-05-22 00:20:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aa6d91e85b 
					 
					
						
						
							
							oops, typo  
						
						 
						
						
						
						
					 
					
						2010-05-20 17:36:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fdce8a355f 
					 
					
						
						
							
							Update cms-test.pl to handle some Unix like Windows environments where  
						
						 
						
						... 
						
						
						
						calling shlib_wrap.sh doesn't work. 
						
						
					 
					
						2010-05-20 17:28:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7837c7ec45 
					 
					
						
						
							
							PR: 2259  
						
						 
						
						... 
						
						
						
						Submitted By: Artem Chuprina <ran@cryptocom.ru >
Check return values of HMAC in tls_P_hash and tls1_generate_key_block.
Although the previous version could in theory crash that would only happen if a
digest call failed. The standard software methods can never fail and only one
ENGINE currently uses digests and it is not compiled in by default. 
						
						
					 
					
						2010-05-17 11:27:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						acf635b9b2 
					 
					
						
						
							
							oops, revert test patch  
						
						 
						
						
						
						
					 
					
						2010-05-15 00:35:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19674b5a1d 
					 
					
						
						
							
							PR: 2253  
						
						 
						
						... 
						
						
						
						Submitted By: Ger Hobbelt <ger@hobbelt.com >
Check callback return value when outputting errors. 
						
						
					 
					
						2010-05-15 00:34:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e855d538de 
					 
					
						
						
							
							PR: 2255  
						
						 
						
						... 
						
						
						
						Submitted By: Ger Hobbelt <ger@hobbelt.com >
Place RSA dependent variable under #ifndef OPENSSL_NO_RSA 
						
						
					 
					
						2010-05-15 00:19:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						629fd3aa91 
					 
					
						
						
							
							rc4-x86_64.pl: "Westmere" optimization.  
						
						 
						
						
						
						
					 
					
						2010-05-13 21:01:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1aa8a6297c 
					 
					
						
						
							
							ghash-x86[_64].pl: add due credit.  
						
						 
						
						
						
						
					 
					
						2010-05-13 17:21:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c1f092d14e 
					 
					
						
						
							
							GCM "jumbo" update:  
						
						 
						
						... 
						
						
						
						- gcm128.c: support for Intel PCLMULQDQ, readability improvements;
- asm/ghash-x86.pl: splitted vanilla, MMX, PCLMULQDQ subroutines;
- asm/ghash-x86_64.pl: add PCLMULQDQ implementations. 
						
						
					 
					
						2010-05-13 15:32:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea7239cf15 
					 
					
						
						
							
							x86asm.pl: consistency imrovements.  
						
						 
						
						
						
						
					 
					
						2010-05-13 15:28:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						046ea30864 
					 
					
						
						
							
							x86_64-xlate.pl: refine some regexp's and add support for OWORD/QWORD PTR.  
						
						 
						
						
						
						
					 
					
						2010-05-13 15:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3efe51a407 
					 
					
						
						
							
							Revert previous Linux-specific/centric commit#19629. If it really has to  
						
						 
						
						... 
						
						
						
						be done, it's definitely not the way to do it. So far answer to the
question was to ./config -Wa,--noexecstack (adopted by RedHat). 
						
						
					 
					
						2010-05-05 22:05:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0e3ef596e5 
					 
					
						
						
							
							Non-executable stack in asm.  
						
						 
						
						
						
						
					 
					
						2010-05-05 15:50:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f472ec8c2f 
					 
					
						
						
							
							"Jumbo" update for crypto/modes:  
						
						 
						
						... 
						
						
						
						- introduce common modes_lcl.h;
- ctr128.c: implement additional CRYPTO_ctr128_encrypt_ctr32 interface;
- gcm128.c: add omitted ARM initialization, remove ctx.ctr; 
						
						
					 
					
						2010-05-04 19:23:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8a682556b4 
					 
					
						
						
							
							Add ghash-armv4.pl.  
						
						 
						
						
						
						
					 
					
						2010-05-03 18:23:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						827f3d5f39 
					 
					
						
						
							
							PR: 2252  
						
						 
						
						... 
						
						
						
						Submitted By: Ger Hobbelt <ger@hobbelt.com >
Update docs to BIO_f_buffer() 
						
						
					 
					
						2010-05-03 15:30:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6006ae148c 
					 
					
						
						
							
							PR: 2230  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix bug in bitmask macros and stop warnings. 
						
						
					 
					
						2010-05-03 13:01:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						efcf5f1c50 
					 
					
						
						
							
							PR: 2244  
						
						 
						
						... 
						
						
						
						Submitted By: "PMHager" <hager@dortmund.net >
Initialise pkey callback to 0. 
						
						
					 
					
						2010-05-03 12:50:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a033c3c72b 
					 
					
						
						
							
							PR: 2250  
						
						 
						
						... 
						
						
						
						Submitted By: Ger Hobbelt <ger@hobbelt.com >
Don't overwrite return value with strlen(f). 
						
						
					 
					
						2010-05-03 12:24:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						359b0c9fb8 
					 
					
						
						
							
							experimental function to convert ASN1_TIME to tm, not used or even compiled in yet  
						
						 
						
						
						
						
					 
					
						2010-05-03 12:17:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						19f7e5e24a 
					 
					
						
						
							
							Missing declarations, no assembler in PEDANTIC.  
						
						 
						
						
						
						
					 
					
						2010-05-01 14:41:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bb92e2c89b 
					 
					
						
						
							
							bss_file.c: refine UTF-8 logic on Windows.  
						
						 
						
						
						
						
					 
					
						2010-04-28 20:02:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5e19ee96f6 
					 
					
						
						
							
							Add ghash-parisc.pl.  
						
						 
						
						
						
						
					 
					
						2010-04-28 18:51:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8a1c92ce49 
					 
					
						
						
							
							Take gcm128.c and ghash assembler modules into the build loop.  
						
						 
						
						
						
						
					 
					
						2010-04-22 21:36:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d183244b43 
					 
					
						
						
							
							bss_file.c: reserve for option to encode file name with UTF-8.  
						
						 
						
						
						
						
					 
					
						2010-04-21 20:38:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5e60dba84f 
					 
					
						
						
							
							md5-ia64.S: fix assembler warning.  
						
						 
						
						
						
						
					 
					
						2010-04-20 20:40:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a8a7d58af 
					 
					
						
						
							
							PR: 2241  
						
						 
						
						... 
						
						
						
						Submitted By: Artemy Lebedev <vagran.ast@gmail.com >
Typo. 
						
						
					 
					
						2010-04-20 12:53:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1bf508c9cf 
					 
					
						
						
							
							new function to diff tm structures  
						
						 
						
						
						
						
					 
					
						2010-04-15 13:25:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						799668c1ce 
					 
					
						
						
							
							oops revert patch not part of Configure diff  
						
						 
						
						
						
						
					 
					
						2010-04-15 13:24:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f7f155103 
					 
					
						
						
							
							oops, commit Configure part of PR#2234  
						
						 
						
						
						
						
					 
					
						2010-04-15 13:17:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45078e6c52 
					 
					
						
						
							
							PR: 2234  
						
						 
						
						... 
						
						
						
						Submitted By: Matthias Andree <matthias.andree@gmx.de >
Use correct path to openssl utility in c_rehash script. 
						
						
					 
					
						2010-04-14 23:07:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7f573fea6 
					 
					
						
						
							
							PR: 2235  
						
						 
						
						... 
						
						
						
						Submitted By: Bruce Stephens <bruce.stephens@isode.com >
Make ts/Makefile consistent with other Makefiles. 
						
						
					 
					
						2010-04-14 23:04:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1fd79f66ea 
					 
					
						
						
							
							x86_64cpuid.pl: ml64 is allergic to db on label line.  
						
						 
						
						
						
						
					 
					
						2010-04-14 19:24:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4f39edbff1 
					 
					
						
						
							
							gcm128.c and assembler modules: change argument order for gcm_ghash_4bit.  
						
						 
						
						... 
						
						
						
						ghash-x86*.pl: fix performance numbers for Core2, as it turned out
previous ones were "tainted" by variable clock frequency. 
						
						
					 
					
						2010-04-14 19:04:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8decc967dc 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-04-14 13:21:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6a1823b371 
					 
					
						
						
							
							[co]fb128.c: fix "n=0" bug.  
						
						 
						
						
						
						
					 
					
						2010-04-14 07:47:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45106caab7 
					 
					
						
						
							
							fix signed/unsigned comparison warnings  
						
						 
						
						
						
						
					 
					
						2010-04-14 00:41:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d1a50ac2a 
					 
					
						
						
							
							fix bug in ccgost CFB mode code  
						
						 
						
						
						
						
					 
					
						2010-04-14 00:33:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						af73b08ac0 
					 
					
						
						
							
							check ASN1 type before using it  
						
						 
						
						
						
						
					 
					
						2010-04-14 00:30:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						934e22e814 
					 
					
						
						
							
							PR: 2230  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix various DTLS fragment reassembly bugs. 
						
						
					 
					
						2010-04-14 00:17:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3122d1d382 
					 
					
						
						
							
							PR: 2229  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Don't drop DTLS connection if mac or decryption failed. 
						
						
					 
					
						2010-04-14 00:10:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7463c8818 
					 
					
						
						
							
							PR: 2228  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix DTLS buffer record MAC failure bug. 
						
						
					 
					
						2010-04-14 00:03:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						109757d254 
					 
					
						
						
							
							aes-ppc.pl: 10% performance improvement on Power6.  
						
						 
						
						
						
						
					 
					
						2010-04-10 14:53:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						49535cc409 
					 
					
						
						
							
							AESNI engine: update test_aesni.  
						
						 
						
						
						
						
					 
					
						2010-04-10 14:07:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a595baff9f 
					 
					
						
						
							
							gcm128.c: commentary and formatting updates.  
						
						 
						
						
						
						
					 
					
						2010-04-10 14:02:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						67a315b60b 
					 
					
						
						
							
							cts128.c: add support for NIST "Ciphertext Stealing" proposal.  
						
						 
						
						
						
						
					 
					
						2010-04-10 14:01:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6c83629bd9 
					 
					
						
						
							
							AESNI engine: add counter mode.  
						
						 
						
						
						
						
					 
					
						2010-04-10 13:56:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fead253986 
					 
					
						
						
							
							perlasm/x86*: add support to SSE>2 and pclmulqdq. x86_64-xlate.pl provides  
						
						 
						
						... 
						
						
						
						correct solution to problem addressed in committ #19244 . 
						
						
					 
					
						2010-04-10 13:55:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9a649f3b46 
					 
					
						
						
							
							sha1-alpha.pl: addenum till commit  #19547 .  
						
						 
						
						
						
						
					 
					
						2010-04-10 13:51:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f62df694ad 
					 
					
						
						
							
							ctr129.c: fix typo, simplify ctr128_inc and fix "n=0" bug.  
						
						 
						
						
						
						
					 
					
						2010-04-10 13:46:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						42feba4797 
					 
					
						
						
							
							Add ghash-alpha.pl assembler module.  
						
						 
						
						
						
						
					 
					
						2010-04-10 13:44:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3c01a1e89e 
					 
					
						
						
							
							sha1-alpha.pl: engage it in build.  
						
						 
						
						
						
						
					 
					
						2010-04-10 13:43:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6a79b3cb93 
					 
					
						
						
							
							sparccpuid.S: some assembler is allergic to apostrophes in comments.  
						
						 
						
						
						
						
					 
					
						2010-04-10 13:36:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d23f4e9d5a 
					 
					
						
						
							
							alpha-mont.pl: comply with stack alignment requirements.  
						
						 
						
						
						
						
					 
					
						2010-04-10 13:33:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						172f6b2d62 
					 
					
						
						
							
							make GOST MAC work again  
						
						 
						
						
						
						
					 
					
						2010-04-08 10:55:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c0b8eb606f 
					 
					
						
						
							
							Add SHA2 algorithms to SSL_library_init(). Although these aren't used  
						
						 
						
						... 
						
						
						
						directly by SSL/TLS SHA2 certificates are becoming more common and
applications that only call SSL_library_init() and not
OpenSSL_add_all_alrgorithms() will fail when verifying certificates.
Update docs. 
						
						
					 
					
						2010-04-07 13:18:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4a45bf31a 
					 
					
						
						
							
							Remove obsolete PRNG note. Add comment about use of SHA256 et al.  
						
						 
						
						
						
						
					 
					
						2010-04-06 15:03:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						60e24554bb 
					 
					
						
						
							
							PR: 2209  
						
						 
						
						... 
						
						
						
						Submitted Daniel Mentz <danielml@sent.com >
Documentation typo. 
						
						
					 
					
						2010-04-06 14:45:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff12f88b8e 
					 
					
						
						
							
							PR: 2218  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fixes for DTLS replay bug. 
						
						
					 
					
						2010-04-06 12:45:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						47e6a60e42 
					 
					
						
						
							
							PR: 2219  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fixes for DTLS buffering bug. 
						
						
					 
					
						2010-04-06 12:40:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						87a37cbadd 
					 
					
						
						
							
							PR: 2223  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fixes for DTLS timeout bug 
						
						
					 
					
						2010-04-06 12:29:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00a37b5a9b 
					 
					
						
						
							
							PR: 2220  
						
						 
						
						... 
						
						
						
						Fixes to make OpenSSL compile with no-rc4 
						
						
					 
					
						2010-04-06 11:18:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc494872b8 
					 
					
						
						
							
							fix FAQ (again)  
						
						 
						
						
						
						
					 
					
						2010-03-31 11:50:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4b0771c146 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-03-30 16:43:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1a80e0786 
					 
					
						
						
							
							fix FAQ  
						
						 
						
						
						
						
					 
					
						2010-03-30 16:36:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1676bec94c 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-03-30 16:35:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c25a0aae6b 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-03-30 16:24:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						46bdf0f34d 
					 
					
						
						
							
							update HEAD FAQ  
						
						 
						
						
						
						
					 
					
						2010-03-30 00:49:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						471d0eb397 
					 
					
						
						
							
							cryptlib.c: allow application to override OPENSSL_isservice.  
						
						 
						
						... 
						
						
						
						PR: 2194 
						
						
					 
					
						2010-03-29 10:06:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						97a6a01f0f 
					 
					
						
						
							
							ARMv4 assembler: fix compilation failure. Fix is actually unconfirmed, but  
						
						 
						
						... 
						
						
						
						I can't think of any other cause for failure 
						
						
					 
					
						2010-03-29 09:55:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a460c1aa8 
					 
					
						
						
							
							dso_dlfcn.c: fix compile failure on Tru64.  
						
						 
						
						
						
						
					 
					
						2010-03-29 09:50:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						216811b216 
					 
					
						
						
							
							PR: 1696  
						
						 
						
						... 
						
						
						
						Check return value if d2i_PBEPARAM(). 
						
						
					 
					
						2010-03-28 00:42:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ac75e21a1 
					 
					
						
						
							
							PR: 1763  
						
						 
						
						... 
						
						
						
						Remove useless num = 0 assignment.
Remove redundant cases on sock_ctrl(): default case handles them. 
						
						
					 
					
						2010-03-27 23:28:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14021cb821 
					 
					
						
						
							
							sync ordinals with 1.0.0  
						
						 
						
						
						
						
					 
					
						2010-03-27 19:32:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						08df41277a 
					 
					
						
						
							
							PR: 1904  
						
						 
						
						... 
						
						
						
						Submitted by: David Woodhouse <dwmw2@infradead.org >
Pass passphrase minimum length down to UI. 
						
						
					 
					
						2010-03-27 19:31:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac495542a6 
					 
					
						
						
							
							PR: 1813  
						
						 
						
						... 
						
						
						
						Submitted by: Torsten Hilbrich <torsten.hilbrich@secunet.com >
Fix memory leak when engine name cannot be loaded. 
						
						
					 
					
						2010-03-27 18:28:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						085e5f4859 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-03-25 12:08:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3e8b6485b3 
					 
					
						
						
							
							Fix for "Record of death" vulnerability CVE-2010-0740.  
						
						 
						
						... 
						
						
						
						Also, add missing CHANGES entry for CVE-2009-3245 (code changes submitted to this branch on 23 Feb 2010),
and further harmonize this version of CHANGES with the versions in the current branches. 
						
						
					 
					
						2010-03-25 11:25:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f2e8488b85 
					 
					
						
						
							
							initialise buf if wrong_info not used  
						
						 
						
						
						
						
					 
					
						2010-03-24 23:42:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a3a06e6543 
					 
					
						
						
							
							PR: 1731 and maybe 2197  
						
						 
						
						... 
						
						
						
						Clear error queue in a few places in SSL code where errors are expected
so they don't stay in the queue. 
						
						
					 
					
						2010-03-24 23:17:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						26c00de46d 
					 
					
						
						
							
							rand_win.c: fix logical bug in readscreen.  
						
						 
						
						
						
						
					 
					
						2010-03-22 22:44:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3dd303129f 
					 
					
						
						
							
							bss_file.c: fix MSC 6.0 warning.  
						
						 
						
						
						
						
					 
					
						2010-03-22 22:38:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c3473126b1 
					 
					
						
						
							
							GHASH assembler: new ghash-sparcv9.pl module and saner descriptions.  
						
						 
						
						
						
						
					 
					
						2010-03-22 17:24:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						82f385d71d 
					 
					
						
						
							
							e_capi.c: fix typo.  
						
						 
						
						
						
						
					 
					
						2010-03-15 22:28:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f2fccce4bd 
					 
					
						
						
							
							Fix UPLINK typo.  
						
						 
						
						
						
						
					 
					
						2010-03-15 22:25:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						480cd6ab6e 
					 
					
						
						
							
							ghash-ia64.pl: new file, GHASH for Itanium.  
						
						 
						
						... 
						
						
						
						ghash-x86_64.pl: minimize stack frame usage.
ghash-x86.pl: modulo-scheduling MMX loop in respect to input vector
results in up to 10% performance improvement. 
						
						
					 
					
						2010-03-15 19:07:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6c6bdd543d 
					 
					
						
						
							
							workaround for missing definition in some headers  
						
						 
						
						
						
						
					 
					
						2010-03-15 13:10:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e19f6678f5 
					 
					
						
						
							
							print signature parameters with CRLs too  
						
						 
						
						
						
						
					 
					
						2010-03-14 13:10:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						624fbfcadb 
					 
					
						
						
							
							free up sigopts STACK  
						
						 
						
						
						
						
					 
					
						2010-03-14 13:09:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						510777f2fc 
					 
					
						
						
							
							clear bogus errors in ca utility  
						
						 
						
						
						
						
					 
					
						2010-03-14 13:07:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be449448dc 
					 
					
						
						
							
							update CHANGES  
						
						 
						
						
						
						
					 
					
						2010-03-14 12:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4c623cddbe 
					 
					
						
						
							
							add -sigopt option to ca utility  
						
						 
						
						
						
						
					 
					
						2010-03-14 12:54:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d207ee3d1 
					 
					
						
						
							
							add X509_CRL_sign_ctx function  
						
						 
						
						
						
						
					 
					
						2010-03-14 12:52:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cdb182b55a 
					 
					
						
						
							
							new sigopt and PSS support for req and x509 utilities  
						
						 
						
						
						
						
					 
					
						2010-03-12 14:41:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00947cea0c 
					 
					
						
						
							
							PR: 2192  
						
						 
						
						... 
						
						
						
						Submitted By: Jaroslav Imrich <jaroslav.imrich@disig.sk >
The prompt_info and wrong_info parameters can be empty strings which
can produce confusing prompts. Treat empty string same as NULL. 
						
						
					 
					
						2010-03-12 12:48:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e45c32fabf 
					 
					
						
						
							
							missing goto meant signature was never printed out  
						
						 
						
						
						
						
					 
					
						2010-03-12 12:06:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						fb75f349b7 
					 
					
						
						
							
							This entry was in 0.9.8m changelog but missing from here, since it's  
						
						 
						
						... 
						
						
						
						security relevent we'd better list it. 
						
						
					 
					
						2010-03-12 08:36:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a907165250 
					 
					
						
						
							
							Submitted by: Martin Kaiser  
						
						 
						
						... 
						
						
						
						Reject PSS signatures with unsupported trailer value. 
						
						
					 
					
						2010-03-11 23:11:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e62774c3b9 
					 
					
						
						
							
							alg2 can be NULL  
						
						 
						
						
						
						
					 
					
						2010-03-11 19:27:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f093794e55 
					 
					
						
						
							
							Add GHASH x86_64 assembler.  
						
						 
						
						
						
						
					 
					
						2010-03-11 16:19:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f26cf9957f 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2010-03-11 14:19:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						17c63d1cca 
					 
					
						
						
							
							RSA PSS ASN1 signing method  
						
						 
						
						
						
						
					 
					
						2010-03-11 14:06:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						877669d69c 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2010-03-11 14:04:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1c8d92997d 
					 
					
						
						
							
							ctrl operations to retrieve RSA algorithm settings  
						
						 
						
						
						
						
					 
					
						2010-03-11 13:55:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf8883b351 
					 
					
						
						
							
							Add support for new PSS functions in RSA EVP_PKEY_METHOD  
						
						 
						
						
						
						
					 
					
						2010-03-11 13:45:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8254d406f 
					 
					
						
						
							
							Extend PSS padding code to support different digests for MGF1 and message.  
						
						 
						
						
						
						
					 
					
						2010-03-11 13:40:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						85522a074c 
					 
					
						
						
							
							Algorithm specific ASN1 signing functions.  
						
						 
						
						
						
						
					 
					
						2010-03-11 13:32:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31d66c2a98 
					 
					
						
						
							
							update cms code to use X509_ALGOR_set_md instead of internal function  
						
						 
						
						
						
						
					 
					
						2010-03-11 13:29:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce25c7207b 
					 
					
						
						
							
							New function X509_ALGOR_set_md() to set X509_ALGOR (DigestAlgorithmIdentifier)  
						
						 
						
						... 
						
						
						
						from a digest algorithm. 
						
						
					 
					
						2010-03-11 13:27:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77163b6234 
					 
					
						
						
							
							don't leave bogus errors in the queue  
						
						 
						
						
						
						
					 
					
						2010-03-10 13:48:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e3a510f8a6 
					 
					
						
						
							
							Add GHASH x86 assembler.  
						
						 
						
						
						
						
					 
					
						2010-03-09 23:03:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b17bdc7734 
					 
					
						
						
							
							PR: 2188  
						
						 
						
						... 
						
						
						
						Submitted By: Jaroslav Imrich <jaroslav.imrich@disig.sk >
Add "missing" functions to get and set prompt constructor. 
						
						
					 
					
						2010-03-09 17:24:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0e4a8e10a 
					 
					
						
						
							
							PR: 2186  
						
						 
						
						... 
						
						
						
						Submitted By: "Joel Rabinovitch" <Joel.Rabinovitch@tecsys.com >
Detect aix64-gcc 
						
						
					 
					
						2010-03-09 17:08:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d6eebf6d8a 
					 
					
						
						
							
							reserve a few more bits for future cipher modes  
						
						 
						
						
						
						
					 
					
						2010-03-08 23:48:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2262beef2e 
					 
					
						
						
							
							gcm128.c: add option for streamed GHASH, simple benchmark, minor naming  
						
						 
						
						... 
						
						
						
						change. 
						
						
					 
					
						2010-03-08 22:44:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31904ecdf3 
					 
					
						
						
							
							RSA PSS verification support including certificates and certificate  
						
						 
						
						... 
						
						
						
						requests. Add new ASN1 signature initialisation function to handle this
case. 
						
						
					 
					
						2010-03-08 18:10:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4d9c12f99 
					 
					
						
						
							
							correct error code  
						
						 
						
						
						
						
					 
					
						2010-03-08 18:07:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						809cd0a22d 
					 
					
						
						
							
							print outermost signature algorithm parameters too  
						
						 
						
						
						
						
					 
					
						2010-03-07 17:02:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bea29921a8 
					 
					
						
						
							
							oops  
						
						 
						
						
						
						
					 
					
						2010-03-07 16:41:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7ed485bc9f 
					 
					
						
						
							
							The OID sanity check was incorrect. It should only disallow *leading* 0x80  
						
						 
						
						... 
						
						
						
						values. 
						
						
					 
					
						2010-03-07 16:40:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						069d4cfea5 
					 
					
						
						
							
							although AES is a variable length cipher, AES EVP methods have a fixed key length  
						
						 
						
						
						
						
					 
					
						2010-03-07 15:54:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49436b59b5 
					 
					
						
						
							
							oops, make EVP ctr mode work again  
						
						 
						
						
						
						
					 
					
						2010-03-07 15:52:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ef6fe8c2e 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2010-03-07 15:37:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						63b825c9d4 
					 
					
						
						
							
							add separate PSS decode function, rename PSS parameters to RSA_PSS_PARAMS  
						
						 
						
						
						
						
					 
					
						2010-03-07 13:34:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77f4b6ba4f 
					 
					
						
						
							
							add MGF1 digest ctrl  
						
						 
						
						
						
						
					 
					
						2010-03-07 13:34:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5667732b9 
					 
					
						
						
							
							update ASN1 sign/verify to use EVP_DigestSign and EVP_DigestVerify  
						
						 
						
						
						
						
					 
					
						2010-03-07 12:05:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1708456220 
					 
					
						
						
							
							don't add digest alias if signature algorithm is undefined  
						
						 
						
						
						
						
					 
					
						2010-03-06 20:47:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff04bbe363 
					 
					
						
						
							
							Add PSS algorithm printing. This is an initial step towards full PSS support.  
						
						 
						
						... 
						
						
						
						Uses ASN1 module in Martin Kaiser's PSS patch. 
						
						
					 
					
						2010-03-06 19:55:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						148924c1f4 
					 
					
						
						
							
							fix indent, newline  
						
						 
						
						
						
						
					 
					
						2010-03-06 18:14:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fa1ba589f3 
					 
					
						
						
							
							Add algorithm specific signature printing. An individual ASN1 method can  
						
						 
						
						... 
						
						
						
						now print out signatures instead of the standard hex dump.
More complex signatures (e.g. PSS) can print out more meaningful information.
Sample DSA version included that prints out the signature parameters r, s.
[Note EVP_PKEY_ASN1_METHOD is an application opaque structure so adding
 new fields in the middle has no compatibility issues] 
						
						
					 
					
						2010-03-06 18:05:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c4ce7bab2 
					 
					
						
						
							
							Fix memory leak: free up ENGINE functional reference if digest is not  
						
						 
						
						... 
						
						
						
						found in an ENGINE. 
						
						
					 
					
						2010-03-05 13:33:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb845ee044 
					 
					
						
						
							
							Add -engine_impl option to dgst which will use an implementation of  
						
						 
						
						... 
						
						
						
						an algorithm from the supplied engine instead of just the default one. 
						
						
					 
					
						2010-03-05 13:28:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b5cfc2f590 
					 
					
						
						
							
							option to replace extensions with new ones: mainly for creating cross-certificates  
						
						 
						
						
						
						
					 
					
						2010-03-03 20:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ebaa2cf5b2 
					 
					
						
						
							
							PR: 2183  
						
						 
						
						... 
						
						
						
						PR#1999 broke fork detection by assuming HAVE_FORK was set for all platforms.
Include original HAVE_FORK detection logic while allowing it to be
overridden on specific platforms with -DHAVE_FORK=1 or -DHAVE_FORK=0 
						
						
					 
					
						2010-03-03 19:56:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cca1cd9a34 
					 
					
						
						
							
							Submitted by: Tomas Hoger <thoger@redhat.com>  
						
						 
						
						... 
						
						
						
						Fix for CVE-2010-0433 where some kerberos enabled versions of OpenSSL
could be crashed if the relevant tables were not present (e.g. chrooted). 
						
						
					 
					
						2010-03-03 15:41:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c772c8700 
					 
					
						
						
							
							don't mix definitions and code  
						
						 
						
						
						
						
					 
					
						2010-03-03 15:30:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e7f5b1cd42 
					 
					
						
						
							
							Initial version of Galois Counter Mode implementation. Interface is still  
						
						 
						
						... 
						
						
						
						subject to change... 
						
						
					 
					
						2010-03-02 16:33:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						80dfadfdf3 
					 
					
						
						
							
							ppccap.c: portability fix.  
						
						 
						
						
						
						
					 
					
						2010-03-02 16:28:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8c7bd6e11 
					 
					
						
						
							
							Fix s390x-specific HOST_l2c|c2l.  
						
						 
						
						... 
						
						
						
						Submitted by: Andreas Krebbel 
						
						
					 
					
						2010-03-02 16:23:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f84c85b0e3 
					 
					
						
						
							
							PR: 2178  
						
						 
						
						... 
						
						
						
						Submitted by: "Kennedy, Brendan" <brendan.kennedy@intel.com >
Handle error codes correctly: cryptodev returns 0 for success whereas OpenSSL
returns 1. 
						
						
					 
					
						2010-03-01 23:54:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a05b8d0ede 
					 
					
						
						
							
							use supplied ENGINE in genrsa  
						
						 
						
						
						
						
					 
					
						2010-03-01 14:22:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff2fdbf2f8 
					 
					
						
						
							
							oops, reinstate correct prototype  
						
						 
						
						
						
						
					 
					
						2010-03-01 03:01:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da3955256d 
					 
					
						
						
							
							'typo'  
						
						 
						
						
						
						
					 
					
						2010-03-01 01:53:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e28ccb798 
					 
					
						
						
							
							make USE_CRYPTODEV_DIGESTS work  
						
						 
						
						
						
						
					 
					
						2010-03-01 01:19:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6575572c6 
					 
					
						
						
							
							load cryptodev if HAVE_CRYPTODEV is set too  
						
						 
						
						
						
						
					 
					
						2010-03-01 00:40:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c3951d8973 
					 
					
						
						
							
							update cryptodev to match 1.0.0 stable branch version  
						
						 
						
						
						
						
					 
					
						2010-03-01 00:37:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						19ec2f4194 
					 
					
						
						
							
							Fix warnings (note that gcc 4.2 has a bug that makes one of its  
						
						 
						
						... 
						
						
						
						warnings hard to fix without major surgery). 
						
						
					 
					
						2010-02-28 14:22:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2b13f80360 
					 
					
						
						
							
							algorithms field has changed in 1.0.0 and later: update  
						
						 
						
						
						
						
					 
					
						2010-02-28 00:24:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						40c5eaeeec 
					 
					
						
						
							
							oops, revert verify.c change  
						
						 
						
						
						
						
					 
					
						2010-02-27 23:03:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1ca9d3238 
					 
					
						
						
							
							Add Kerberos fix which was in 0.9.8-stable but never committed to HEAD and  
						
						 
						
						... 
						
						
						
						1.0.0. Original fix was on 2007-Mar-09 and had the log message: "Fix kerberos
ciphersuite bugs introduced with PR:1336." 
						
						
					 
					
						2010-02-27 23:02:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48435b2098 
					 
					
						
						
							
							include TVS 1.1 version string  
						
						 
						
						
						
						
					 
					
						2010-02-26 19:38:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37c541faed 
					 
					
						
						
							
							Revert CFB block length change. Despite what SP800-38a says the input to  
						
						 
						
						... 
						
						
						
						CFB mode does *not* have to be a multiple of the block length and several
other specifications (e.g. PKCS#11) do not require this. 
						
						
					 
					
						2010-02-26 14:41:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0f776277bc 
					 
					
						
						
							
							oops, use correct date  
						
						 
						
						
						
						
					 
					
						2010-02-26 12:13:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5814d829e6 
					 
					
						
						
							
							update NEWS  
						
						 
						
						
						
						
					 
					
						2010-02-25 18:20:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f6bb465f87 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-02-25 18:18:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db28aa86e0 
					 
					
						
						
							
							add -trusted_first option and verify flag  
						
						 
						
						
						
						
					 
					
						2010-02-25 12:21:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2da2ff5065 
					 
					
						
						
							
							tidy verify code. xn not used any more and check for self signed more efficiently  
						
						 
						
						
						
						
					 
					
						2010-02-25 11:18:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbd2164044 
					 
					
						
						
							
							Experimental support for partial chain verification: if an intermediate  
						
						 
						
						... 
						
						
						
						certificate is explicitly trusted (using -addtrust option to x509 utility
for example) the verification is sucessful even if the chain is not complete. 
						
						
					 
					
						2010-02-25 00:17:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04e4b82726 
					 
					
						
						
							
							allow setting of verify names in command line utilities and print out verify names in verify utility  
						
						 
						
						
						
						
					 
					
						2010-02-25 00:11:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9b3d75706e 
					 
					
						
						
							
							verify parameter enumeration functions  
						
						 
						
						
						
						
					 
					
						2010-02-25 00:08:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b1efb7161f 
					 
					
						
						
							
							Include self-signed flag in certificates by checking SKID/AKID as well  
						
						 
						
						... 
						
						
						
						as issuer and subject names. Although this is an incompatible change
it should have little impact in pratice because self-issued certificates
that are not self-signed are rarely encountered. 
						
						
					 
					
						2010-02-25 00:01:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df4c395c6d 
					 
					
						
						
							
							add anyExtendedKeyUsage OID  
						
						 
						
						
						
						
					 
					
						2010-02-24 15:53:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						385a488c43 
					 
					
						
						
							
							prevent warning  
						
						 
						
						
						
						
					 
					
						2010-02-24 15:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea746dad5e 
					 
					
						
						
							
							Reserve for option to implement AES counter in assembler.  
						
						 
						
						
						
						
					 
					
						2010-02-23 16:51:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d976f99294 
					 
					
						
						
							
							Add AES counter mode to EVP.  
						
						 
						
						
						
						
					 
					
						2010-02-23 16:48:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e5a4de9e44 
					 
					
						
						
							
							Add assigned OIDs, as well as "anonymous" ones for AES counter mode.  
						
						 
						
						
						
						
					 
					
						2010-02-23 16:47:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7d3d1788a5 
					 
					
						
						
							
							The meaning of the X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY and  
						
						 
						
						... 
						
						
						
						X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT error codes were reversed in
the verify application documentation. 
						
						
					 
					
						2010-02-23 14:09:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2d9dcd4ff0 
					 
					
						
						
							
							Always check bn_wexpend() return values for failure (CVE-2009-3245).  
						
						 
						
						... 
						
						
						
						(The CHANGES entry covers the change from PR #2111  as well, submitted by
Martin Olsson.)
Submitted by: Neel Mehta 
						
						
					 
					
						2010-02-23 10:36:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a839755329 
					 
					
						
						
							
							Fix X509_STORE locking  
						
						 
						
						
						
						
					 
					
						2010-02-19 18:27:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						69582a592e 
					 
					
						
						
							
							clarify documentation  
						
						 
						
						
						
						
					 
					
						2010-02-18 12:41:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7512141162 
					 
					
						
						
							
							OR default SSL_OP_LEGACY_SERVER_CONNECT so existing options are preserved  
						
						 
						
						
						
						
					 
					
						2010-02-17 19:43:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2c49969e2 
					 
					
						
						
							
							Allow renegotiation if SSL_OP_LEGACY_SERVER_CONNECT is set as well as  
						
						 
						
						... 
						
						
						
						initial connection to unpatched servers. There are no additional security
concerns in doing this as clients don't see renegotiation during an
attack anyway. 
						
						
					 
					
						2010-02-17 18:38:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						47e0a1c335 
					 
					
						
						
							
							PR: 2100  
						
						 
						
						... 
						
						
						
						Submitted by: James Baker <jbaker@tableausoftware.com > et al.
Workaround for slow Heap32Next on some versions of Windows. 
						
						
					 
					
						2010-02-17 14:32:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						439aab3afc 
					 
					
						
						
							
							Submitted by:  Dmitry Ivanov <vonami@gmail.com>  
						
						 
						
						... 
						
						
						
						Don't leave dangling pointers in GOST engine if calls fail. 
						
						
					 
					
						2010-02-16 14:30:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d934c2585 
					 
					
						
						
							
							PR: 2171  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Since SSLv2 doesn't support renegotiation at all don't reject it if
legacy renegotiation isn't enabled.
Also can now use SSL2 compatible client hello because RFC5746 supports it. 
						
						
					 
					
						2010-02-16 14:21:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1458b931eb 
					 
					
						
						
							
							The "block length" for CFB mode was incorrectly coded as 1 all the time. It  
						
						 
						
						... 
						
						
						
						should be the number of feedback bits expressed in bytes. For CFB1 mode set
this to 1 by rounding up to the nearest multiple of 8. 
						
						
					 
					
						2010-02-15 19:40:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						20eb7238cb 
					 
					
						
						
							
							Correct ECB mode EVP_CIPHER definition: IV length is 0  
						
						 
						
						
						
						
					 
					
						2010-02-15 19:26:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						79cfc3ac54 
					 
					
						
						
							
							add EVP_CIPH_FLAG_LENGTH_BITS from 0.9.8-stable  
						
						 
						
						
						
						
					 
					
						2010-02-15 19:20:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						918a5d04e4 
					 
					
						
						
							
							PR: 2164  
						
						 
						
						... 
						
						
						
						Submitted by: "Noszticzius, Istvan" <inoszticzius@rightnow.com >
Don't clear the output buffer: ciphers should correctly the same input
and output buffers. 
						
						
					 
					
						2010-02-15 19:00:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f959598866 
					 
					
						
						
							
							update references to new RI RFC  
						
						 
						
						
						
						
					 
					
						2010-02-12 21:59:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5a9e3f05ff 
					 
					
						
						
							
							PR: 2170  
						
						 
						
						... 
						
						
						
						Submitted by: Magnus Lilja <lilja.magnus@gmail.com >
Make -c option in dgst work again. 
						
						
					 
					
						2010-02-12 17:07:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29e722f031 
					 
					
						
						
							
							Fix memory leak in ENGINE autoconfig code. Improve error logging.  
						
						 
						
						
						
						
					 
					
						2010-02-09 14:17:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05566760da 
					 
					
						
						
							
							update year  
						
						 
						
						
						
						
					 
					
						2010-02-09 14:12:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e3e31ff482 
					 
					
						
						
							
							Use supplied ENGINE when initialising CMAC. Restore pctx setting.  
						
						 
						
						
						
						
					 
					
						2010-02-08 16:31:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bae060c06a 
					 
					
						
						
							
							add cvsignore  
						
						 
						
						
						
						
					 
					
						2010-02-08 15:34:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0ff907caf8 
					 
					
						
						
							
							Make update.  
						
						 
						
						
						
						
					 
					
						2010-02-08 15:33:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c8ef656df2 
					 
					
						
						
							
							Make CMAC API similar to HMAC API. Add methods for CMAC.  
						
						 
						
						
						
						
					 
					
						2010-02-08 15:31:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c968e0355 
					 
					
						
						
							
							Initial experimental CMAC implementation.  
						
						 
						
						
						
						
					 
					
						2010-02-07 18:01:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc0661374f 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2010-02-07 13:54:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						089f02c577 
					 
					
						
						
							
							oops, use new value for new flag  
						
						 
						
						
						
						
					 
					
						2010-02-07 13:50:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2bf720842 
					 
					
						
						
							
							Add missing function EVP_CIPHER_CTX_copy(). Current code uses memcpy() to copy  
						
						 
						
						... 
						
						
						
						an EVP_CIPHER_CTX structure which may have problems with external ENGINEs
who need to duplicate internal handles etc. 
						
						
					 
					
						2010-02-07 13:39:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c95bf51167 
					 
					
						
						
							
							don't assume 0x is at start of string  
						
						 
						
						
						
						
					 
					
						2010-02-03 18:19:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2712a2f625 
					 
					
						
						
							
							tolerate broken CMS/PKCS7 implementations using signature OID instead of digest  
						
						 
						
						
						
						
					 
					
						2010-02-02 14:30:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						17ebc10ffa 
					 
					
						
						
							
							PR: 2161  
						
						 
						
						... 
						
						
						
						Submitted by: Doug Goldstein <cardoe@gentoo.org >, Steve.
Make no-dsa, no-ecdsa and no-rsa compile again. 
						
						
					 
					
						2010-02-02 13:35:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						434745dc19 
					 
					
						
						
							
							PR: 2160  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Make session tickets work with DTLS. 
						
						
					 
					
						2010-02-01 16:51:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b380f9b884 
					 
					
						
						
							
							PR: 2159  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Typo in PR#1949 bug, oops! 
						
						
					 
					
						2010-02-01 12:43:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						749af8cb61 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2010-01-29 12:07:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1d62de0395 
					 
					
						
						
							
							The previous take went wrong, try again.  
						
						 
						
						
						
						
					 
					
						2010-01-29 12:02:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d7b99700c0 
					 
					
						
						
							
							Architecture specific header files need special handling.  
						
						 
						
						
						
						
					 
					
						2010-01-29 11:44:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cd6bc02b29 
					 
					
						
						
							
							If opensslconf.h and buildinf.h are to be in an architecture specific  
						
						 
						
						... 
						
						
						
						directory, place it in the same tree as the other architecture
specific things. 
						
						
					 
					
						2010-01-29 11:43:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da454e4c67 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2010-01-29 00:09:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						08c239701b 
					 
					
						
						
							
							Experimental renegotiation support in s_server test -www server.  
						
						 
						
						
						
						
					 
					
						2010-01-28 19:48:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92714455af 
					 
					
						
						
							
							In engine_table_select() don't clear out entire error queue: just clear  
						
						 
						
						... 
						
						
						
						out any we added using ERR_set_mark() and ERR_pop_to_mark() otherwise
errors from other sources (e.g. SSL library) can be wiped. 
						
						
					 
					
						2010-01-28 17:49:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00b525781b 
					 
					
						
						
							
							oops revert test code accidentally committed  
						
						 
						
						
						
						
					 
					
						2010-01-28 16:48:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						891d3c7a60 
					 
					
						
						
							
							revert previous change  
						
						 
						
						
						
						
					 
					
						2010-01-28 14:17:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9fb6fd34f8 
					 
					
						
						
							
							reword RI description  
						
						 
						
						
						
						
					 
					
						2010-01-27 18:53:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2963f5b87 
					 
					
						
						
							
							revert wrongly committed test code  
						
						 
						
						
						
						
					 
					
						2010-01-27 17:49:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						99b36a8c31 
					 
					
						
						
							
							update documentation to reflect new renegotiation options  
						
						 
						
						
						
						
					 
					
						2010-01-27 17:46:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						89e56aebef 
					 
					
						
						
							
							Some shells print out the directory name if CDPATH is set breaking the  
						
						 
						
						... 
						
						
						
						pod2man test. Use ./util instead to avoid this. 
						
						
					 
					
						2010-01-27 16:07:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ba1aa393b 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2010-01-27 14:05:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1e27847d4e 
					 
					
						
						
							
							PR: 2157  
						
						 
						
						... 
						
						
						
						Submitted by: "Green, Paul" <Paul.Green@stratus.com >
Typo. 
						
						
					 
					
						2010-01-27 12:54:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						407a410136 
					 
					
						
						
							
							Have the VMS build system catch up with the 1.0.0-stable branch.  
						
						 
						
						
						
						
					 
					
						2010-01-27 09:18:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9921f865e4 
					 
					
						
						
							
							Apparently, test/testtsa.com was only half done  
						
						 
						
						
						
						
					 
					
						2010-01-27 01:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c8c07be883 
					 
					
						
						
							
							size_t doesn't compare less than zero...  
						
						 
						
						
						
						
					 
					
						2010-01-27 01:18:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d5e7f2f2c3 
					 
					
						
						
							
							PR: 1949  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
More robust fix and workaround for PR#1949. Don't try to work out if there
is any write pending data as this can be unreliable: always flush. 
						
						
					 
					
						2010-01-26 19:47:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1bfdbd8e75 
					 
					
						
						
							
							PR: 2138  
						
						 
						
						... 
						
						
						
						Submitted by: Kevin Regan <k.regan@f5.com >
Clear stat structure if -DPURIFY is set to avoid problems on some
platforms which include unitialised fields. 
						
						
					 
					
						2010-01-26 18:07:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e92f9f45e8 
					 
					
						
						
							
							Add flags functions which were added to 0.9.8 for fips but not 1.0.0 and  
						
						 
						
						... 
						
						
						
						later. 
						
						
					 
					
						2010-01-26 14:29:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c02119e39 
					 
					
						
						
							
							OPENSSL_isservice is now defined on all platforms not just WIN32  
						
						 
						
						
						
						
					 
					
						2010-01-26 13:59:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca9f55f710 
					 
					
						
						
							
							export OPENSSL_isservice and make update  
						
						 
						
						
						
						
					 
					
						2010-01-26 13:52:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						58c0da84dd 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2010-01-26 12:30:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						964ed94649 
					 
					
						
						
							
							parisc-mont.pl: PA-RISC 2.0 code path optimization based on intruction-  
						
						 
						
						... 
						
						
						
						level profiling data resulted in almost 50% performance improvement.
PA-RISC 1.1 is also reordered in same manner, mostly to be consistent,
as no gain was observed, not on PA-7100LC. 
						
						
					 
					
						2010-01-25 23:12:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cab6de03a2 
					 
					
						
						
							
							PR: 2149  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila <douglas@stebila.ca >
Fix wap OIDs. 
						
						
					 
					
						2010-01-25 16:07:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2d851ab919 
					 
					
						
						
							
							There's really no need to use $ENV::HOME  
						
						 
						
						
						
						
					 
					
						2010-01-25 00:22:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						04dbf0272e 
					 
					
						
						
							
							Forgot to correct the definition of __arch in this file.  
						
						 
						
						... 
						
						
						
						Submitted by Steven M. Schweda <sms@antinode.info > 
						
						
					 
					
						2010-01-25 00:21:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d15dd388c1 
					 
					
						
						
							
							It seems like sslroot: needs to be defined for some tests to work.  
						
						 
						
						... 
						
						
						
						Submitted by Steven M. Schweda <sms@antinode.info > 
						
						
					 
					
						2010-01-25 00:20:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c3502985b2 
					 
					
						
						
							
							Compile t1_reneg on VMS as well.  
						
						 
						
						... 
						
						
						
						Submitted by Steven M. Schweda <sms@antinode.info > 
						
						
					 
					
						2010-01-25 00:19:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6fa0608eaf 
					 
					
						
						
							
							A few more macros for long symbols.  
						
						 
						
						... 
						
						
						
						Submitted by Steven M. Schweda <sms@antinode.info > 
						
						
					 
					
						2010-01-25 00:18:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3f2a98acbf 
					 
					
						
						
							
							ia64cpuid.S: OPENSSL_cleanse to accept zero length parameter.  
						
						 
						
						
						
						
					 
					
						2010-01-24 17:08:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc120a54c9 
					 
					
						
						
							
							PR: 2153, 2125  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
The original fix for PR#2125 broke compilation on some Unixware platforms:
revert and make conditional on VMS. 
						
						
					 
					
						2010-01-24 16:57:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						82a66ce313 
					 
					
						
						
							
							pariscid.pl: OPENSSL_cleanse to compile on PA-RISC 2.0W and to accept zero  
						
						 
						
						... 
						
						
						
						length parameter. 
						
						
					 
					
						2010-01-24 15:04:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7676eebf42 
					 
					
						
						
							
							OPENSSL_cleanse to accept zero length parameter [matching C implementation].  
						
						 
						
						
						
						
					 
					
						2010-01-24 14:54:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						21a5c040e5 
					 
					
						
						
							
							The fix for PR#1949 unfortunately broke cases where the BIO_CTRL_WPENDING  
						
						 
						
						... 
						
						
						
						ctrl is incorrectly implemented (e.g. some versions of Apache). As a workaround
call both BIO_CTRL_INFO and BIO_CTRL_WPENDING if it returns zero. This should
both address the original bug and retain compatibility with the old behaviour. 
						
						
					 
					
						2010-01-24 13:54:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba64ae6cd1 
					 
					
						
						
							
							Tolerate PKCS#8 DSA format with negative private key.  
						
						 
						
						
						
						
					 
					
						2010-01-22 20:17:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3a88efd48c 
					 
					
						
						
							
							If legacy renegotiation is not permitted then send a fatal alert if a patched  
						
						 
						
						... 
						
						
						
						server attempts to renegotiate with an unpatched client. 
						
						
					 
					
						2010-01-22 18:49:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3243698f1d 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2010-01-21 18:46:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						55f39a199d 
					 
					
						
						
							
							fix comments  
						
						 
						
						
						
						
					 
					
						2010-01-21 01:17:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49371e3acb 
					 
					
						
						
							
							oops  
						
						 
						
						
						
						
					 
					
						2010-01-20 17:59:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb125795d2 
					 
					
						
						
							
							update NEWS file  
						
						 
						
						
						
						
					 
					
						2010-01-20 17:56:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ec5f38b47 
					 
					
						
						
							
							Update demo  
						
						 
						
						
						
						
					 
					
						2010-01-20 14:06:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a70e377fd8 
					 
					
						
						
							
							Support -L options in VC++ link.  
						
						 
						
						
						
						
					 
					
						2010-01-20 14:04:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b3020393f2 
					 
					
						
						
							
							rand_win.c: fix time limit logic.  
						
						 
						
						
						
						
					 
					
						2010-01-19 20:35:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						071ef65cfa 
					 
					
						
						
							
							The use of NIDs in the password based encryption table can result in  
						
						 
						
						... 
						
						
						
						algorithms not found when an application uses PKCS#12 and only calls
SSL_library_init() instead of OpenSSL_add_all_algorithms(). Simple
work around is to add the missing algorithm (40 bit RC2) in
SSL_library_init(). 
						
						
					 
					
						2010-01-19 19:56:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d5e8d8b547 
					 
					
						
						
							
							PR: 2141  
						
						 
						
						... 
						
						
						
						Submitted by: "NARUSE, Yui" <naruse@airemix.jp >
Remove non-ASCII comment which causes compilation errors on some versions
of VC++. 
						
						
					 
					
						2010-01-19 19:28:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0debb681e1 
					 
					
						
						
							
							PR: 2144  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Better fix for PR#2144 
						
						
					 
					
						2010-01-19 19:11:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						46c42e78ff 
					 
					
						
						
							
							Enable PA-RISC assembler in Configure (feedback from PA-RISC 2.0 is still  
						
						 
						
						... 
						
						
						
						needed). 
						
						
					 
					
						2010-01-19 17:10:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ee2b8ed2f5 
					 
					
						
						
							
							x86_64-xlate.pl: refine sign extension logic when handling lea.  
						
						 
						
						... 
						
						
						
						PR: 2094,2095 
						
						
					 
					
						2010-01-19 16:15:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a6e0901ff 
					 
					
						
						
							
							rand_win.c: handle GetTickCount wrap-around.  
						
						 
						
						
						
						
					 
					
						2010-01-19 13:48:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						91fdacb2c3 
					 
					
						
						
							
							s390x assembler update: add support for run-time facility detection.  
						
						 
						
						
						
						
					 
					
						2010-01-19 12:24:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d582c98d8f 
					 
					
						
						
							
							apps/speed.c: limit loop counters to 2^31 in order to avoid overflows  
						
						 
						
						... 
						
						
						
						in performance calculations. For the moment there is only one code
fast enough to suffer from this: Intel AES-NI engine.
PR: 2096 
						
						
					 
					
						2010-01-17 17:31:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						78a533cb93 
					 
					
						
						
							
							Minor updates to ppccap.c and ppccpuid.pl.  
						
						 
						
						
						
						
					 
					
						2010-01-17 13:44:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4f38565204 
					 
					
						
						
							
							bn_lcl.h: add MIPS III-specific BN_UMULT_LOHI as alternative to porting  
						
						 
						
						... 
						
						
						
						crypto/bn/asm/mips3.s from IRIX. Performance improvement is not as
impressive as with complete assembler, but still... it's almost 2.5x
[on R5000]. 
						
						
					 
					
						2010-01-17 12:08:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4407700c40 
					 
					
						
						
							
							ia64-mont.pl: add shorter vector support ("shorter" refers to 512 bits and  
						
						 
						
						... 
						
						
						
						less). 
						
						
					 
					
						2010-01-17 11:33:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						72a9776abc 
					 
					
						
						
							
							PR: 2135  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Change missed references to lib to $(LIBDIR) 
						
						
					 
					
						2010-01-16 20:05:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d39d2800a 
					 
					
						
						
							
							PR: 2144  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Fix DTLS connection so new_session is reset if we read second client hello:
new_session is used to detect renegotiation. 
						
						
					 
					
						2010-01-16 19:46:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						598b562a7f 
					 
					
						
						
							
							PR: 2133  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Add missing DTLS state strings. 
						
						
					 
					
						2010-01-16 19:20:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dac40f87df 
					 
					
						
						
							
							convert to Unix EOL form  
						
						 
						
						
						
						
					 
					
						2010-01-15 15:26:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						031c78901b 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2010-01-15 15:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce1ec9c35e 
					 
					
						
						
							
							PR: 2125  
						
						 
						
						... 
						
						
						
						Submitted by: "Alon Bar-Lev" <alon.barlev@gmail.com >
Fix gcc-aix compilation issue. 
						
						
					 
					
						2010-01-14 17:51:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd5f21a4ae 
					 
					
						
						
							
							Fix version handling so it can cope with a major version >3.  
						
						 
						
						... 
						
						
						
						Although it will be many years before TLS v2.0 or later appears old versions
of servers have a habit of hanging around for a considerable time so best
if we handle this properly now. 
						
						
					 
					
						2010-01-13 19:08:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1b31b5ad56 
					 
					
						
						
							
							Modify compression code so it avoids using ex_data free functions. This  
						
						 
						
						... 
						
						
						
						stops applications that call CRYPTO_free_all_ex_data() prematurely leaking
memory. 
						
						
					 
					
						2010-01-13 18:57:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						97438f38df 
					 
					
						
						
							
							update and sync ordinals  
						
						 
						
						
						
						
					 
					
						2010-01-12 17:34:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e0c6821fa 
					 
					
						
						
							
							PR: 2136  
						
						 
						
						... 
						
						
						
						Submitted by: Willy Weisz <weisz@vcpc.univie.ac.at >
Add options to output hash using older algorithm compatible with OpenSSL
versions before 1.0.0 
						
						
					 
					
						2010-01-12 17:29:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						423c66f10e 
					 
					
						
						
							
							Simplify RI+SCSV logic:  
						
						 
						
						... 
						
						
						
						1. Send SCSV is not renegotiating, never empty RI.
2. Send RI if renegotiating. 
						
						
					 
					
						2010-01-07 19:04:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						74f2260694 
					 
					
						
						
							
							ia64-mont.pl: addp4 is not needed when referring to stack (this is 32-bit  
						
						 
						
						... 
						
						
						
						HP-UX thing). 
						
						
					 
					
						2010-01-07 15:36:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						25d1d62275 
					 
					
						
						
							
							http://cvs.openssl.org/chngview?cn=19053  made me wonder if bind() and  
						
						 
						
						... 
						
						
						
						connect() are as finicky as sendto() when it comes to socket address
length. As it turned out they are, therefore the fix. Note that you
can't reproduce the problem on Linux, it was failing on Solaris,
FreeBSD, most likely on more... 
						
						
					 
					
						2010-01-07 13:12:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9b5ca55695 
					 
					
						
						
							
							sendto is reportedly picky about destination socket address length.  
						
						 
						
						... 
						
						
						
						PR: 2114
Submitted by: Robin Seggelmann 
						
						
					 
					
						2010-01-07 10:42:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cba9ffc32a 
					 
					
						
						
							
							Fix compilation on older Linux. Linux didn't always have sockaddr_storage,  
						
						 
						
						... 
						
						
						
						not to mention that first sockaddr_storage had __ss_family, not ss_family.
In other words it makes more sense to avoid sockaddr_storage... 
						
						
					 
					
						2010-01-06 21:22:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76998a71bc 
					 
					
						
						
							
							Updates to conform with draft-ietf-tls-renegotiation-03.txt:  
						
						 
						
						... 
						
						
						
						1. Add provisional SCSV value.
2. Don't send SCSV and RI at same time.
3. Fatal error is SCSV received when renegotiating. 
						
						
					 
					
						2010-01-06 17:37:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd792d6222 
					 
					
						
						
							
							Missing commit from change ofr compress_meth to unsigned  
						
						 
						
						
						
						
					 
					
						2010-01-06 17:35:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82a107eaa8 
					 
					
						
						
							
							compress_meth should be unsigned  
						
						 
						
						
						
						
					 
					
						2010-01-06 14:01:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f8e1ab79f5 
					 
					
						
						
							
							ENGINE_load_capi() now exists on all platforms (but no op on non-WIN32)  
						
						 
						
						
						
						
					 
					
						2010-01-06 13:21:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1f23001d07 
					 
					
						
						
							
							ppc64-mont.pl: commentary update.  
						
						 
						
						
						
						
					 
					
						2010-01-06 10:58:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dacdcf3c15 
					 
					
						
						
							
							Add Montgomery multiplication module for IA-64.  
						
						 
						
						
						
						
					 
					
						2010-01-06 10:57:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						60c52245e1 
					 
					
						
						
							
							PR: 2102  
						
						 
						
						... 
						
						
						
						Submitted by: John Fitzgibbon <john_fitzgibbon@yahoo.com >
Remove duplicate definitions. 
						
						
					 
					
						2010-01-05 17:57:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2a30fec786 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2010-01-05 17:49:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ddf85033d 
					 
					
						
						
							
							PR: 2132  
						
						 
						
						... 
						
						
						
						Submitted by: steve
Fix bundled pod2man.pl to handle alternative comment formats. 
						
						
					 
					
						2010-01-05 17:32:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6084c797a8 
					 
					
						
						
							
							Remove tabs on blank lines: they produce warnings in pod2man  
						
						 
						
						
						
						
					 
					
						2010-01-05 17:16:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2be3d6ebc8 
					 
					
						
						
							
							Client side compression algorithm sanity checks: ensure old compression  
						
						 
						
						... 
						
						
						
						algorithm matches current and give error if compression is disabled and
server requests it (shouldn't happen unless server is broken). 
						
						
					 
					
						2010-01-01 14:39:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e6f418bcb7 
					 
					
						
						
							
							Compression handling on session resume was badly broken: it always  
						
						 
						
						... 
						
						
						
						used compression algorithms in client hello (a legacy from when
the compression algorithm wasn't serialized with SSL_SESSION). 
						
						
					 
					
						2009-12-31 14:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e63121758 
					 
					
						
						
							
							Include CHANGES entry for external cache  
						
						 
						
						
						
						
					 
					
						2009-12-31 13:58:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2f4c1dc86c 
					 
					
						
						
							
							b_sock.c: correct indirect calls on WinSock platforms.  
						
						 
						
						... 
						
						
						
						PR: 2130
Submitted by: Eugeny Gostyukhin 
						
						
					 
					
						2009-12-30 12:55:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f87e307875 
					 
					
						
						
							
							Adapt mingw config for newer mingw environment. Note modified conditional  
						
						 
						
						... 
						
						
						
						compilation in e_capi.c.
PR: 2113 
						
						
					 
					
						2009-12-30 11:46:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						70b76d392f 
					 
					
						
						
							
							ppccap.c: fix compiler warning and perform sanity check outside signal masking.  
						
						 
						
						... 
						
						
						
						ppc64-mont.pl: clarify comment and fix spelling. 
						
						
					 
					
						2009-12-29 11:18:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6a9d28f9e4 
					 
					
						
						
							
							Deploy multilib config-line parameter. It was added in February to allow  
						
						 
						
						... 
						
						
						
						for kind of installation suggested in ticket #2003  from August. What it
effectively does now, is arrange pre-configured default $libdir value.
Note that it also fixes ENGINESDIR, i.e. harmonizes it with install path. 
						
						
					 
					
						2009-12-29 10:33:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3fc2efd241 
					 
					
						
						
							
							PA-RISC assembler: missing symbol and typos.  
						
						 
						
						
						
						
					 
					
						2009-12-28 16:13:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76774c5ea1 
					 
					
						
						
							
							return v1.1 methods for client/server  
						
						 
						
						
						
						
					 
					
						2009-12-28 00:31:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						35b0ea4efe 
					 
					
						
						
							
							Add simple external session cache to s_server. This serialises sessions  
						
						 
						
						... 
						
						
						
						just like a "real" server making it easier to trace any problems. 
						
						
					 
					
						2009-12-27 23:24:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73527122c9 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2009-12-27 23:02:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d68015764e 
					 
					
						
						
							
							Update RI to match latest spec.  
						
						 
						
						... 
						
						
						
						MCSV is now called SCSV.
Don't send SCSV if renegotiating.
Also note if RI is empty in debug messages. 
						
						
					 
					
						2009-12-27 22:58:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b57599b70c 
					 
					
						
						
							
							Update sha512-parisc.pl and add make rules.  
						
						 
						
						
						
						
					 
					
						2009-12-27 21:05:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cb3b9b1323 
					 
					
						
						
							
							Throw in more PA-RISC assembler.  
						
						 
						
						
						
						
					 
					
						2009-12-27 20:49:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						beef714599 
					 
					
						
						
							
							Switch to new uplink assembler.  
						
						 
						
						
						
						
					 
					
						2009-12-27 20:38:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d741cf2267 
					 
					
						
						
							
							ppccap.c: tidy up.  
						
						 
						
						... 
						
						
						
						ppc64-mont.pl: missing predicate in commentary. 
						
						
					 
					
						2009-12-27 11:25:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b4b48a107c 
					 
					
						
						
							
							ppc64-mont.pl: adapt for 32-bit and engage for all builds.  
						
						 
						
						
						
						
					 
					
						2009-12-26 21:30:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e765bf29a 
					 
					
						
						
							
							Traditional Yuletide commit ;-)  
						
						 
						
						... 
						
						
						
						Add Triple DES CFB1 and CFB8 to algorithm list and NID translation. 
						
						
					 
					
						2009-12-25 14:13:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8580f8015f 
					 
					
						
						
							
							Use properly local variables for thread-safety.  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Rex 
						
						
					 
					
						2009-12-22 11:52:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f21516075f 
					 
					
						
						
							
							Constify crypto/cast.  
						
						 
						
						
						
						
					 
					
						2009-12-22 11:46:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7427379e9b 
					 
					
						
						
							
							Constify crypto/cast.  
						
						 
						
						
						
						
					 
					
						2009-12-22 10:58:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbed9f8158 
					 
					
						
						
							
							Alert to use is now defined in spec: update code  
						
						 
						
						
						
						
					 
					
						2009-12-17 15:42:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e50858c559 
					 
					
						
						
							
							PR: 2127  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Check for lookup failures in EVP_PBE_CipherInit(). 
						
						
					 
					
						2009-12-17 15:27:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef51b4b9b4 
					 
					
						
						
							
							New option to enable/disable connection to unpatched servers  
						
						 
						
						
						
						
					 
					
						2009-12-16 20:25:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c27c9cb4f7 
					 
					
						
						
							
							Allow initial connection (but no renegoriation) to servers which don't support  
						
						 
						
						... 
						
						
						
						RI.
Reorganise RI checking code and handle some missing cases. 
						
						
					 
					
						2009-12-14 13:56:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						22c2155595 
					 
					
						
						
							
							Move SSL_OP_ALLOW_UNSAFE_LEGACY_RENEGOTIATION out of SSL_OP_ALL and move SSL_OP_NO_TLSv1_1  
						
						 
						
						
						
						
					 
					
						2009-12-11 00:23:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b5c002d5a8 
					 
					
						
						
							
							clarify docs  
						
						 
						
						
						
						
					 
					
						2009-12-09 18:16:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4db82571ba 
					 
					
						
						
							
							Document option clearning functions.  
						
						 
						
						... 
						
						
						
						Initial secure renegotiation documentation. 
						
						
					 
					
						2009-12-09 17:59:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						89408580ed 
					 
					
						
						
							
							remove DEBUG_UNUSED from config for now  
						
						 
						
						
						
						
					 
					
						2009-12-09 15:56:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a8640f0a7d 
					 
					
						
						
							
							Check s3 is not NULL  
						
						 
						
						
						
						
					 
					
						2009-12-09 15:03:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						338a61b94e 
					 
					
						
						
							
							Add patch to crypto/evp which didn't apply from PR#2124  
						
						 
						
						
						
						
					 
					
						2009-12-09 15:01:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e4bcadb302 
					 
					
						
						
							
							Revert lhash patch for PR#2124  
						
						 
						
						
						
						
					 
					
						2009-12-09 14:59:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fdb2c6e4e5 
					 
					
						
						
							
							PR: 2124  
						
						 
						
						... 
						
						
						
						Submitted by: Jan Pechanec <Jan.Pechanec@Sun.COM >
Check for memory allocation failures. 
						
						
					 
					
						2009-12-09 13:38:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7661ccadf0 
					 
					
						
						
							
							Add ctrls to clear options and mode.  
						
						 
						
						... 
						
						
						
						Change RI ctrl so it doesn't clash. 
						
						
					 
					
						2009-12-09 13:25:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82e610e2cf 
					 
					
						
						
							
							Send no_renegotiation alert as required by spec.  
						
						 
						
						
						
						
					 
					
						2009-12-08 19:06:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5430200b8b 
					 
					
						
						
							
							Add ctrl and macro so we can determine if peer support secure renegotiation.  
						
						 
						
						
						
						
					 
					
						2009-12-08 13:42:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						13f6d57b1e 
					 
					
						
						
							
							Add support for magic cipher suite value (MCSV). Make secure renegotiation  
						
						 
						
						... 
						
						
						
						work in SSLv3: initial handshake has no extensions but includes MCSV, if
server indicates RI support then renegotiation handshakes include RI.
NB: current MCSV value is bogus for testing only, will be updated when we
have an official value.
Change mismatch alerts to handshake_failure as required by spec.
Also have some debugging fprintfs so we can clearly see what is going on
if OPENSSL_RI_DEBUG is set. 
						
						
					 
					
						2009-12-08 13:14:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8025e25113 
					 
					
						
						
							
							PR: 2121  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Add extension support to DTLS code mainly using existing implementation for
TLS. 
						
						
					 
					
						2009-12-08 11:37:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						637f374ad4 
					 
					
						
						
							
							Initial experimental TLSv1.1 support  
						
						 
						
						
						
						
					 
					
						2009-12-07 13:31:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e4cae1d2f 
					 
					
						
						
							
							PR: 2111  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Olsson <molsson@opera.com >
Check for bn_wexpand errors in bn_mul.c 
						
						
					 
					
						2009-12-02 15:28:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d9530255b 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2009-12-02 15:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3533ab1fee 
					 
					
						
						
							
							Replace the broken SPKAC certification with the correct version.  
						
						 
						
						
						
						
					 
					
						2009-12-02 14:41:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec7d16ffdd 
					 
					
						
						
							
							Check it actually compiles this time ;-)  
						
						 
						
						
						
						
					 
					
						2009-12-02 14:25:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5656f33cea 
					 
					
						
						
							
							PR: 2120  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Initialize fields correctly if pem_str or info are NULL in  EVP_PKEY_asn1_new(). 
						
						
					 
					
						2009-12-02 13:56:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f354fa42d 
					 
					
						
						
							
							Ooops...  
						
						 
						
						
						
						
					 
					
						2009-12-01 18:40:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6732e14278 
					 
					
						
						
							
							check DSA_sign() return value properly  
						
						 
						
						
						
						
					 
					
						2009-12-01 18:39:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						499684404c 
					 
					
						
						
							
							PR: 2115  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Add Renegotiation extension to DTLS, fix DTLS ClientHello processing bug. 
						
						
					 
					
						2009-12-01 17:42:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						606c46fb6f 
					 
					
						
						
							
							PR: 1432  
						
						 
						
						... 
						
						
						
						Submitted by: "Andrzej Chmielowiec" <achmielowiec@enigma.com.pl >, steve@openssl.org 
Approved by: steve@openssl.org 
Truncate hash if it is too large: as required by FIPS 186-3. 
						
						
					 
					
						2009-12-01 17:32:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fed8dbf46d 
					 
					
						
						
							
							PR: 2118  
						
						 
						
						... 
						
						
						
						Submitted by: Mounir IDRASSI <mounir.idrassi@idrix.net >
Approved by: steve@openssl.org 
Check return value of ECDSA_sign() properly. 
						
						
					 
					
						2009-11-30 13:56:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2f0203da0 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2009-11-29 13:45:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b6bf9e2ea7 
					 
					
						
						
							
							bss_dgram.c: re-fix BIO_CTRL_DGRAM_GET_PEER.  
						
						 
						
						... 
						
						
						
						PR: 2110 
						
						
					 
					
						2009-11-26 20:52:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d2a53c2238 
					 
					
						
						
							
							Experimental CMS password based recipient Info support.  
						
						 
						
						
						
						
					 
					
						2009-11-26 18:57:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						480af99ef4 
					 
					
						
						
							
							Make CHANGES in CVS head consistent with the CHANGES files in the  
						
						 
						
						... 
						
						
						
						branches.
This means that http://www.openssl.org/news/changelog.html  will
finally describe 0.9.8l. 
						
						
					 
					
						2009-11-26 18:43:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f2334630a7 
					 
					
						
						
							
							Add OID for PWRI KEK algorithm.  
						
						 
						
						
						
						
					 
					
						2009-11-25 22:07:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						007f7ec1bd 
					 
					
						
						
							
							Add PBKFD2 prototype.  
						
						 
						
						
						
						
					 
					
						2009-11-25 22:07:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d63b3966f 
					 
					
						
						
							
							Split PBES2 into cipher and PBKDF2 versions. This tidies the code somewhat  
						
						 
						
						... 
						
						
						
						and is a pre-requisite to adding password based CMS support. 
						
						
					 
					
						2009-11-25 22:01:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						451038b40c 
					 
					
						
						
							
							cms-test.pl: use EXE_EXT.  
						
						 
						
						... 
						
						
						
						PR: 2107 
						
						
					 
					
						2009-11-23 20:28:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7766bc1a19 
					 
					
						
						
							
							util/pl/VC-32.pl: bufferoverflowu.lib only when actually needed and  
						
						 
						
						... 
						
						
						
						eliminate duplicate code.
PR: 2086 
						
						
					 
					
						2009-11-19 22:29:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6cef3a7f9c 
					 
					
						
						
							
							Servers can't end up talking SSLv2 with legacy renegotiation disabled  
						
						 
						
						
						
						
					 
					
						2009-11-18 15:09:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d09323a63 
					 
					
						
						
							
							Don't use SSLv2 compatible client hello if we don't tolerate legacy renegotiation  
						
						 
						
						
						
						
					 
					
						2009-11-18 14:45:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64abf5e657 
					 
					
						
						
							
							Include a more meaningful error message when rejecting legacy renegotiation  
						
						 
						
						
						
						
					 
					
						2009-11-18 14:20:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						446a6a8af7 
					 
					
						
						
							
							PR: 2103  
						
						 
						
						... 
						
						
						
						Submitted by: Rob Austein <sra@hactrn.net >
Approved by: steve@openssl.org 
Initialise atm.flags to 0. 
						
						
					 
					
						2009-11-17 13:25:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						320d3fd6af 
					 
					
						
						
							
							PR: 2101 (additional)  
						
						 
						
						... 
						
						
						
						Submitted by: Roumen Petrov <openssl@roumenpetrov.info >
Approved by: steve@openssl.org 
Another mingw fix. 
						
						
					 
					
						2009-11-15 19:05:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cca3ea1e71 
					 
					
						
						
							
							OPENSSL_ia32cap.pod update.  
						
						 
						
						
						
						
					 
					
						2009-11-15 17:34:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a83f83aac8 
					 
					
						
						
							
							Add sha512-parisc.pl.  
						
						 
						
						
						
						
					 
					
						2009-11-15 17:29:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5727f1f790 
					 
					
						
						
							
							SHA1 assembler show off: minor performance updates and new modules for  
						
						 
						
						... 
						
						
						
						forgotten CPUs. 
						
						
					 
					
						2009-11-15 17:26:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						53f73afc4d 
					 
					
						
						
							
							sha512.c: there apparently is ILP32 PowerPC platform, where it is safe to  
						
						 
						
						... 
						
						
						
						inline 64-bit assembler instructions. Normally it's inappropriate, because
signalling doesn't preserve upper halves of general purpose registers.
Meaning that it's only safe if signals are blocked for the time "wide"
code executes.
PR: 1998 
						
						
					 
					
						2009-11-15 17:19:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						10232bdc0e 
					 
					
						
						
							
							x86_64-xlate.pl: new gas requires sign extention in lea instruction.  
						
						 
						
						... 
						
						
						
						This resolves md5-x86_64.pl and sha1-x86_64.pl bugs, but without modifying
the code.
PR: 2094,2095 
						
						
					 
					
						2009-11-15 17:11:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						55ff3aff8c 
					 
					
						
						
							
							x86masm.pl: eliminate linker "multiple sections found with different  
						
						 
						
						... 
						
						
						
						attributes" warning. 
						
						
					 
					
						2009-11-15 17:06:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b7cec490fa 
					 
					
						
						
							
							bss_dgram.c: more elegant solution to PR#2069. Use socklen_t heuristic  
						
						 
						
						... 
						
						
						
						from b_sock.c, don't assume that caller always passes pointer to buffer
large enough to hold sockaddr_storage.
PR: 2069 
						
						
					 
					
						2009-11-15 17:03:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2335e8a9cc 
					 
					
						
						
							
							b_sock.c: fix compiler warning.  
						
						 
						
						
						
						
					 
					
						2009-11-15 16:52:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6f766a4181 
					 
					
						
						
							
							aesni-x86.pl: eliminate development comments.  
						
						 
						
						
						
						
					 
					
						2009-11-15 16:40:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f741382b3c 
					 
					
						
						
							
							PR: 2101  
						
						 
						
						... 
						
						
						
						Submitted by: Doug Kaufman <dkaufman@rahul.net >
Approved by: steve@openssl.org 
Fixes for tests in cms-test.pl 
						
						
					 
					
						2009-11-13 13:44:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c18e51ba5e 
					 
					
						
						
							
							PR: 2088  
						
						 
						
						... 
						
						
						
						Submitted by: Aleksey Samsonov <s4ms0n0v@gmail.com >
Approved by: steve@openssl.org 
Fix memory leak in d2i_PublicKey(). 
						
						
					 
					
						2009-11-12 19:56:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						773b63d6f9 
					 
					
						
						
							
							set engine to NULL after releasing it  
						
						 
						
						
						
						
					 
					
						2009-11-12 19:25:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0a02d1db34 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-11-12 17:03:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff094bc2d1 
					 
					
						
						
							
							PR: 2098  
						
						 
						
						... 
						
						
						
						Submitted by: Corinna Vinschen <vinschen@redhat.com >
Approved by: steve@openssl.org 
For Cygwin enable zlib and mdc2 by default. 
						
						
					 
					
						2009-11-11 19:05:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						860c3dd1b6 
					 
					
						
						
							
							add missing parts of reneg port, fix apps patch  
						
						 
						
						
						
						
					 
					
						2009-11-11 14:51:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2942dde56c 
					 
					
						
						
							
							commit missing apps code for reneg fix  
						
						 
						
						
						
						
					 
					
						2009-11-11 14:10:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0f6e21385e 
					 
					
						
						
							
							PR: 1686  
						
						 
						
						... 
						
						
						
						Submitted by: Hanno Böck <hanno@hboeck.de >
Approved by: steve@openssl.org 
Create engines dir if it doesn't already exist. 
						
						
					 
					
						2009-11-10 01:52:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						709a395d1c 
					 
					
						
						
							
							PR: 2091  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Kaiser <lists@kaiser.cx >, Stephen Henson
Approved by: steve@openssl.org 
If an OID has no short name or long name return the numerical representation. 
						
						
					 
					
						2009-11-10 01:00:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b599006751 
					 
					
						
						
							
							PR: 2090  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Kaiser <lists@kaiser.cx >, Stephen Henson
Approved by: steve@openssl.org 
Improve error checking in asn1_gen.c 
						
						
					 
					
						2009-11-10 00:48:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e0e7997212 
					 
					
						
						
							
							First cut of renegotiation extension. (port to HEAD)  
						
						 
						
						
						
						
					 
					
						2009-11-09 19:03:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						befbd0619b 
					 
					
						
						
							
							update CHANGES  
						
						 
						
						
						
						
					 
					
						2009-11-09 17:33:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f423c63bb0 
					 
					
						
						
							
							make udpate  
						
						 
						
						
						
						
					 
					
						2009-11-09 14:56:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9acc65006c 
					 
					
						
						
							
							Remove BF_PTR2 from configuration: it doesn't improve performance any more and causes gcc warnings about arrays out of range  
						
						 
						
						
						
						
					 
					
						2009-11-09 14:13:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7ba3838a4b 
					 
					
						
						
							
							If it is a new session don't send the old TLS ticket: send a zero length  
						
						 
						
						... 
						
						
						
						ticket to request a new session. 
						
						
					 
					
						2009-11-08 14:36:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4398222457 
					 
					
						
						
							
							Ooops, revert committed conflict.  
						
						 
						
						
						
						
					 
					
						2009-11-07 22:22:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						71af26b57b 
					 
					
						
						
							
							PR: 2089  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS Fragment size bug fix. 
						
						
					 
					
						2009-11-02 13:38:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2008e714f3 
					 
					
						
						
							
							Add missing functions to allow access to newer X509_STORE_CTX status  
						
						 
						
						... 
						
						
						
						information. Add more informative message to verify callback to indicate
when CRL path validation is taking place. 
						
						
					 
					
						2009-10-31 19:22:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						245d2ee3d0 
					 
					
						
						
							
							Add option to allow in-band CRL loading in verify utility. Add function  
						
						 
						
						... 
						
						
						
						load_crls and tidy up load_certs. Remove useless purpose variable from
verify utility: now done with args_verify. 
						
						
					 
					
						2009-10-31 13:33:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4b4ba6a887 
					 
					
						
						
							
							Generate stateless session ID just after the ticket is received instead  
						
						 
						
						... 
						
						
						
						of when a session is loaded. This will mean that applications that
just hold onto SSL_SESSION structures and never call d2i_SSL_SESSION()
will still work. 
						
						
					 
					
						2009-10-30 14:06:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb4060c5b5 
					 
					
						
						
							
							Move CHANGES entry to 0.9.8l section  
						
						 
						
						
						
						
					 
					
						2009-10-30 13:29:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						661dc1431f 
					 
					
						
						
							
							Fix statless session resumption so it can coexist with SNI  
						
						 
						
						
						
						
					 
					
						2009-10-30 13:22:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						213f08a65a 
					 
					
						
						
							
							Don't attempt session resumption if no ticket is present and session  
						
						 
						
						... 
						
						
						
						ID length is zero. 
						
						
					 
					
						2009-10-28 19:52:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e24d43931 
					 
					
						
						
							
							oops!  
						
						 
						
						
						
						
					 
					
						2009-10-28 19:50:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b57329ba90 
					 
					
						
						
							
							PR: 2085  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Approved by: steve@openssl.org 
Change domd test to match 1.0.0+ version: check $MAKEDEPEND
ends in "gcc" to support cross compilers. 
						
						
					 
					
						2009-10-28 19:48:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4be92896c 
					 
					
						
						
							
							Add -no_cache option to s_server  
						
						 
						
						
						
						
					 
					
						2009-10-28 17:49:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8844a69cd3 
					 
					
						
						
							
							Don't replace whole AR line  
						
						 
						
						
						
						
					 
					
						2009-10-28 15:33:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						970097ae2c 
					 
					
						
						
							
							PR: 2081  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Approved by: steve@openssl.org 
Respect AR and RANLIB environment variables if set. 
						
						
					 
					
						2009-10-28 14:00:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dafd83334a 
					 
					
						
						
							
							PR: 2080  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Approved by: steve@openssl.org 
Respect MAKE environment variable if set. 
						
						
					 
					
						2009-10-28 13:55:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d6245b8952 
					 
					
						
						
							
							PR: 2078  
						
						 
						
						... 
						
						
						
						Submitted by: Dale Anderson <dra@redevised.net >
Approved by: steve@openssl.org 
Corrections to bn_internal documentation. 
						
						
					 
					
						2009-10-28 13:52:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						13d7524698 
					 
					
						
						
							
							Clarification  
						
						 
						
						
						
						
					 
					
						2009-10-23 12:36:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd57b657a8 
					 
					
						
						
							
							Add an FAQ.  
						
						 
						
						
						
						
					 
					
						2009-10-23 12:22:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45cd59ac71 
					 
					
						
						
							
							If not checking all certificates don't attempt to find a CRL  
						
						 
						
						... 
						
						
						
						for the leaf certificate of a CRL path. 
						
						
					 
					
						2009-10-23 12:06:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d11d977da4 
					 
					
						
						
							
							Need to check <= 0 here.  
						
						 
						
						
						
						
					 
					
						2009-10-22 23:12:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a1b71fb0c 
					 
					
						
						
							
							PR: 2070  
						
						 
						
						... 
						
						
						
						Submitted by: Alexander Nikitovskiy <Nikitovski@ya.ru >
Approved by: steve@openssl.org 
Fix wrong cast. 
						
						
					 
					
						2009-10-19 13:16:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19a9d0fcea 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2009-10-18 14:53:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6aa1770c6d 
					 
					
						
						
							
							Use new X509_STORE_set_verify_cb function instead of old macro.  
						
						 
						
						
						
						
					 
					
						2009-10-18 14:40:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						122276a7b4 
					 
					
						
						
							
							take install prefix from the environment  
						
						 
						
						
						
						
					 
					
						2009-10-18 14:27:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1e6b8d39f1 
					 
					
						
						
							
							Document more error codes.  
						
						 
						
						
						
						
					 
					
						2009-10-18 14:01:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e05d6c7d3c 
					 
					
						
						
							
							Verification callback functions.  
						
						 
						
						
						
						
					 
					
						2009-10-18 13:26:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5b37fca0a 
					 
					
						
						
							
							Add "missing" function X509_STORE_set_verify_cb().  
						
						 
						
						
						
						
					 
					
						2009-10-18 13:24:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9074df8684 
					 
					
						
						
							
							Clarification.  
						
						 
						
						
						
						
					 
					
						2009-10-17 23:08:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6c17629f91 
					 
					
						
						
							
							Preliminary documentation for X509_VERIFY_PARAM.  
						
						 
						
						
						
						
					 
					
						2009-10-17 23:00:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db57663241 
					 
					
						
						
							
							Add docs for X509_STORE_CTX_new() and related functions.  
						
						 
						
						
						
						
					 
					
						2009-10-17 18:05:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						53246488bd 
					 
					
						
						
							
							More X509 verification docs.  
						
						 
						
						
						
						
					 
					
						2009-10-17 17:07:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1f164f5ed9 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-10-17 17:06:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8c182a499 
					 
					
						
						
							
							Manual page for X509_verify_cert()  
						
						 
						
						
						
						
					 
					
						2009-10-17 12:46:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11c4c02ce3 
					 
					
						
						
							
							PR: 2074  
						
						 
						
						... 
						
						
						
						Submitted by: Bram Neijt <bneijt@gmail.com >
Approved by: steve@openssl.org 
Typo: "contet". 
						
						
					 
					
						2009-10-16 15:30:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c6bec6ef0d 
					 
					
						
						
							
							PR: 2072  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Approved by: steve@openssl.org 
Avoid potential doublefree and reuse of freed handshake_buffer. 
						
						
					 
					
						2009-10-16 15:24:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c3908dd19 
					 
					
						
						
							
							PR: 2073  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Approved by: steve@openssl.org 
Don't access freed SSL_CTX in SSL_free(). 
						
						
					 
					
						2009-10-16 13:41:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3477592385 
					 
					
						
						
							
							Fixes to CROSS_COMPILE, don't override command line option from environment  
						
						 
						
						
						
						
					 
					
						2009-10-15 23:43:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be45636661 
					 
					
						
						
							
							Fix for WIN32 and possibly other platforms which don't define in_port_t.  
						
						 
						
						
						
						
					 
					
						2009-10-15 18:49:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6fb3233778 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2009-10-15 18:08:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						636b6b450d 
					 
					
						
						
							
							PR: 2069  
						
						 
						
						... 
						
						
						
						Submitted by: Michael Tuexen <tuexen@fh-muenster.de >
Approved by: steve@openssl.org 
IPv6 support for DTLS. 
						
						
					 
					
						2009-10-15 17:41:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c55c0d367 
					 
					
						
						
							
							PR: 1847  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Approved by: steve@openssl.org 
Integrated patches to CA.sh to bring it into line with CA.pl functionality. 
						
						
					 
					
						2009-10-15 17:27:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0431941ec5 
					 
					
						
						
							
							Revert extra changes from previous commit.  
						
						 
						
						
						
						
					 
					
						2009-10-15 17:17:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						42733b3bea 
					 
					
						
						
							
							PR: 2066  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Approved by: steve@openssl.org 
Add -r option to dgst to produce format compatible with core utilities. 
						
						
					 
					
						2009-10-15 17:13:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8aab301b66 
					 
					
						
						
							
							Rename CROSS_COMPILE_PREFIX to CROSS_COMPILE  
						
						 
						
						
						
						
					 
					
						2009-10-15 13:05:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19a0192b42 
					 
					
						
						
							
							Allow uname values to be overridden by the environment  
						
						 
						
						
						
						
					 
					
						2009-10-07 16:44:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f99f41cf5c 
					 
					
						
						
							
							Allow cross compilation prefix to come from CROSS_COMPILE environment variable  
						
						 
						
						
						
						
					 
					
						2009-10-07 16:41:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b34d449c42 
					 
					
						
						
							
							Combat gcc 4.4.1 aliasing rules.  
						
						 
						
						
						
						
					 
					
						2009-10-06 07:17:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04f9095d9e 
					 
					
						
						
							
							Fix unitialized warnings  
						
						 
						
						
						
						
					 
					
						2009-10-04 16:52:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e039aa797 
					 
					
						
						
							
							Fix warnings about ignoring fgets return value  
						
						 
						
						
						
						
					 
					
						2009-10-04 16:42:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c21869fb07 
					 
					
						
						
							
							Prevent ignored return value warning  
						
						 
						
						
						
						
					 
					
						2009-10-04 14:04:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a0c776c60 
					 
					
						
						
							
							Prevent aliasing warning  
						
						 
						
						
						
						
					 
					
						2009-10-04 14:02:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77db140f94 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-10-02 18:20:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fecef70773 
					 
					
						
						
							
							Yes it is a typo ;-)  
						
						 
						
						
						
						
					 
					
						2009-10-01 12:17:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b48315d9b6 
					 
					
						
						
							
							PR: 2061  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct i2b_PVK_bio error handling in rsa.c, dsa.c 
						
						
					 
					
						2009-10-01 00:25:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8a682f223 
					 
					
						
						
							
							PR: 2062  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BN_rand error handling in bntest.c 
						
						
					 
					
						2009-10-01 00:21:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98fbfff417 
					 
					
						
						
							
							PR: 2059  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct EVP_SealInit error handling in pem_seal.c 
						
						
					 
					
						2009-10-01 00:17:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						78ca13a272 
					 
					
						
						
							
							PR: 2056  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_wirte error handling in asn1_par.c 
						
						
					 
					
						2009-10-01 00:11:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4778ae47e 
					 
					
						
						
							
							PR: 2055  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_ctrl error handling in s2_srvr.c 
						
						
					 
					
						2009-10-01 00:06:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff613640e2 
					 
					
						
						
							
							PR: 2054  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_ctrl error handling 
						
						
					 
					
						2009-10-01 00:02:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aec13c1a9f 
					 
					
						
						
							
							PR: 2063  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_write error handling in ocsp_prn.c 
						
						
					 
					
						2009-09-30 23:58:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64f0f80eb6 
					 
					
						
						
							
							PR: 2057  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_write, BIO_printf, i2a_ASN1_INTEGER and i2a_ASN1_OBJECT
error handling in OCSP print routines. 
						
						
					 
					
						2009-09-30 23:55:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d71061122c 
					 
					
						
						
							
							PR: 2058  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct EVP_DigestVerifyFinal error handling. 
						
						
					 
					
						2009-09-30 23:49:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb552ac616 
					 
					
						
						
							
							Change version from 0.9.9 to 1.0.0 in docs  
						
						 
						
						
						
						
					 
					
						2009-09-30 23:43:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						18e503f30f 
					 
					
						
						
							
							PR: 2064, 728  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Add support for custom headers in OCSP requests. 
						
						
					 
					
						2009-09-30 21:40:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37fc562bd8 
					 
					
						
						
							
							Free SSL_CTX after BIO  
						
						 
						
						
						
						
					 
					
						2009-09-30 21:36:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0b3e0de6c 
					 
					
						
						
							
							Fixup sureware ENGINE to handle new RAND_METHOD  
						
						 
						
						
						
						
					 
					
						2009-09-23 23:49:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6dcdbfc94 
					 
					
						
						
							
							Audit libcrypto for unchecked return values: fix all cases enountered  
						
						 
						
						
						
						
					 
					
						2009-09-23 23:43:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cd4f7cddc7 
					 
					
						
						
							
							Add more return value checking attributes to evp.h and hmac.h  
						
						 
						
						
						
						
					 
					
						2009-09-23 23:40:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3db244261d 
					 
					
						
						
							
							Add DEBUG_UNUSED to debug-steve* entries  
						
						 
						
						
						
						
					 
					
						2009-09-23 16:29:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						acf20c7dbd 
					 
					
						
						
							
							Add attribute to check if return value of certain functions is incorrectly  
						
						 
						
						... 
						
						
						
						ignored. 
						
						
					 
					
						2009-09-23 16:27:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c75f462e8 
					 
					
						
						
							
							PR: 2050  
						
						 
						
						... 
						
						
						
						Submitted by: Michael Tuexen <tuexen@fh-muenster.de >
Approved by: steve@openssl.org 
Fix handling of ENOTCONN and EMSGSIZE for dgram BIOs. 
						
						
					 
					
						2009-09-22 11:34:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d636aa7109 
					 
					
						
						
							
							PR: 2047  
						
						 
						
						... 
						
						
						
						Submitted by: David Lee <live4thee@gmail.com >, steve@openssl.org 
Approved by: steve@openssl.org 
Fix for IPv6 handling in BIO_get_accept_socket(). 
						
						
					 
					
						2009-09-20 16:41:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d42dbaf1e 
					 
					
						
						
							
							Ooops, missing close quote  
						
						 
						
						
						
						
					 
					
						2009-09-20 12:46:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						44c8b81eea 
					 
					
						
						
							
							Don't use __try+__except unless on VC++  
						
						 
						
						
						
						
					 
					
						2009-09-20 12:39:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						23129dec6f 
					 
					
						
						
							
							add version info for VC-WIN64I too  
						
						 
						
						
						
						
					 
					
						2009-09-20 11:40:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0287ead9aa 
					 
					
						
						
							
							PR: 2048  
						
						 
						
						... 
						
						
						
						Submitted by: john blair <mailtome200420032002@yahoo.com >
Approved by: steve@openssl.org 
Add version info in VC-WIN64A too. 
						
						
					 
					
						2009-09-19 23:00:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						282feebab3 
					 
					
						
						
							
							cmll-x86_64.pl: small buglet in CBC subroutine.  
						
						 
						
						... 
						
						
						
						PR: 2035 
						
						
					 
					
						2009-09-17 19:35:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e9f613acea 
					 
					
						
						
							
							PR: 2039  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS listen bug fix, 
						
						
					 
					
						2009-09-15 22:48:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a25f33d28a 
					 
					
						
						
							
							Submitted by:  Julia Lawall <julia@diku.dk>  
						
						 
						
						... 
						
						
						
						The functions ENGINE_ctrl(), OPENSSL_isservice(), EVP_PKEY_sign(),
CMS_get1_RecipientRequest() and RAND_bytes() can return <=0 on error fix
so the return code is checked correctly. 
						
						
					 
					
						2009-09-13 11:29:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						94480b57db 
					 
					
						
						
							
							PR: 2023  
						
						 
						
						... 
						
						
						
						Submitted by: James Beckett <jmb.openssl@nospam.hackery.net >, steve
Approved by: steve@openssl.org 
Fix documentation errors in d2i_X509 manual pages. 
						
						
					 
					
						2009-09-12 23:34:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7689ed34d3 
					 
					
						
						
							
							PR: 2025  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Approved by: steve@openssl.org 
Constify SSL_CIPHER_description 
						
						
					 
					
						2009-09-12 23:17:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33130b07ce 
					 
					
						
						
							
							PR: 1411  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Allow use of trusted certificates in SSL_CTX_use_chain_file() 
						
						
					 
					
						2009-09-12 23:09:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						08882ac5be 
					 
					
						
						
							
							PR: 2038  
						
						 
						
						... 
						
						
						
						Submitted by: Artem Chuprina <ran@cryptocom.ru >
Approved by: steve@openssl.org 
Avoid double call to BIO_free(). 
						
						
					 
					
						2009-09-11 11:02:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1fc3ac806d 
					 
					
						
						
							
							PR: 2033  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS listen support. 
						
						
					 
					
						2009-09-09 17:05:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c28f277d1 
					 
					
						
						
							
							Add new option --strict-warnings to Configure script. This is used to add  
						
						 
						
						... 
						
						
						
						in devteam warnings into other configurations. 
						
						
					 
					
						2009-09-09 16:31:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c7168698e 
					 
					
						
						
							
							Seed PRNG with DSA and ECDSA digests for additional protection against  
						
						 
						
						... 
						
						
						
						possible PRNG state duplication. 
						
						
					 
					
						2009-09-09 12:15:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b5ca7df5aa 
					 
					
						
						
							
							PR: 2031  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Tolerate application/timestamp-response which some servers send out. 
						
						
					 
					
						2009-09-07 17:57:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14b148d390 
					 
					
						
						
							
							Typo presumably....  
						
						 
						
						
						
						
					 
					
						2009-09-06 17:56:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e0d4e97c1a 
					 
					
						
						
							
							Make update, deleting bogus DTLS error code  
						
						 
						
						
						
						
					 
					
						2009-09-06 15:58:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4274da164 
					 
					
						
						
							
							PR: 1644  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Fix to make DHparams_dup() et al work in C++.
For 1.0 fix the final argument to ASN1_dup() so it is void *. Replace some
*_dup macros with functions. 
						
						
					 
					
						2009-09-06 15:49:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						07a9d1a2c2 
					 
					
						
						
							
							PR: 2028  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Fix DTLS cookie management bugs. 
						
						
					 
					
						2009-09-04 17:42:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						88a3dd7896 
					 
					
						
						
							
							Correction: salt is now default  
						
						 
						
						
						
						
					 
					
						2009-09-04 12:27:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f59432c06 
					 
					
						
						
							
							Oops, s can be NULL  
						
						 
						
						
						
						
					 
					
						2009-09-04 11:30:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2d1cbca960 
					 
					
						
						
							
							PR: 2020  
						
						 
						
						... 
						
						
						
						Submitted by: Keith Beckman <kbeckman@mcg.edu >,  Tomas Mraz <tmraz@redhat.com >
Checked by: steve@openssl.org 
Fix improperly capitalized references to WWW::Curl::Easy. 
						
						
					 
					
						2009-09-02 15:57:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fc68056917 
					 
					
						
						
							
							PR: 2029  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Checked by: steve@openssl.org 
Fix so that the legacy digest EVP_dss1() still works. 
						
						
					 
					
						2009-09-02 15:51:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						17b5326ba9 
					 
					
						
						
							
							PR: 2013  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Include a flag ASN1_STRING_FLAG_MSTRING when a multi string type is created.
This makes it possible to tell if the underlying type is UTCTime,
GeneralizedTime or Time when the structure is reused and X509_time_adj_ex()
can handle each case in an appropriate manner.
Add error checking to CRL generation in ca utility when nextUpdate is being
set. 
						
						
					 
					
						2009-09-02 13:54:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d9b105fe0 
					 
					
						
						
							
							PR: 2009  
						
						 
						
						... 
						
						
						
						Submitted by: "Alexei Khlebnikov" <alexei.khlebnikov@opera.com >
Approved by: steve@openssl.org 
Avoid memory leak and fix error reporting in d2i_SSL_SESSION(). NB: although
the ticket mentions buffer overruns this isn't a security issue because
the SSL_SESSION structure is generated internally and it should never be
possible to supply its contents from an untrusted application (this would
among other things destroy session cache security). 
						
						
					 
					
						2009-09-02 13:20:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						70dc09ebe4 
					 
					
						
						
							
							PR: 2022  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Fix DTLS record header length bug. 
						
						
					 
					
						2009-09-02 12:53:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1771668096 
					 
					
						
						
							
							Tidy up and fix verify callbacks to avoid structure dereference, use of  
						
						 
						
						... 
						
						
						
						obsolete functions and enhance to handle new conditions such as policy printing. 
						
						
					 
					
						2009-09-02 12:47:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						38663fcc82 
					 
					
						
						
							
							Missing break.  
						
						 
						
						
						
						
					 
					
						2009-08-31 22:19:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6dab873d9 
					 
					
						
						
							
							PR: 2005  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Some systems have broken IPv6 headers and/or implementations. If
OPENSSL_USE_IPV6 is set to 0 IPv6 is not used, if it is set to 1 it is used
and if undefined an attempt is made to detect at compile time by checking
if AF_INET6 is set and excluding known problem platforms. 
						
						
					 
					
						2009-08-26 15:15:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						480b9e5d29 
					 
					
						
						
							
							PR: 2006  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Do not use multiple DTLS records for a single user message 
						
						
					 
					
						2009-08-26 11:51:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19c5314f28 
					 
					
						
						
							
							PR: 2015  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Define LIBDIR properly. 
						
						
					 
					
						2009-08-26 11:42:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c372482c1b 
					 
					
						
						
							
							sha1-x86* assembler update: F_40_59 and Atom-specific optimizations.  
						
						 
						
						
						
						
					 
					
						2009-08-18 19:24:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba4526e071 
					 
					
						
						
							
							Stop unused variable warning on WIN32 et al.  
						
						 
						
						
						
						
					 
					
						2009-08-18 11:15:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98c08a6312 
					 
					
						
						
							
							Use SHA1 and not deprecated MD5 in demos.  
						
						 
						
						
						
						
					 
					
						2009-08-15 11:01:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ed3603b60 
					 
					
						
						
							
							Update default dependency flags.  
						
						 
						
						... 
						
						
						
						Make error name discrepancies a fatal error.
Fix error codes.
make update 
						
						
					 
					
						2009-08-12 17:30:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f2589af1cf 
					 
					
						
						
							
							Enable mdc2 support by default as the patent has now expired.  
						
						 
						
						
						
						
					 
					
						2009-08-12 16:46:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e37c90925 
					 
					
						
						
							
							Update README with bug report and contribution details.  
						
						 
						
						
						
						
					 
					
						2009-08-12 16:44:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b972fbaa8f 
					 
					
						
						
							
							PR: 1997  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS timeout handling fix. 
						
						
					 
					
						2009-08-12 13:19:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77c7f17a5e 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2009-08-10 15:52:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b318cfb169 
					 
					
						
						
							
							PR: 1999  
						
						 
						
						... 
						
						
						
						Submitted by: "Bayram Kurumahmut" <kbayram@ubicom.com >
Approved by: steve@openssl.org 
Don't use HAVE_FORK in apps/speed.c it can conflict with configured version. 
						
						
					 
					
						2009-08-10 15:30:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e33d290159 
					 
					
						
						
							
							PR: 2004  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester <peter.sylvester@edelweb.fr >
Approved by: steve@openssl.org 
Handle fractional seconds properly in ASN1_GENERALIZEDTIME_print 
						
						
					 
					
						2009-08-10 14:56:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6727565a84 
					 
					
						
						
							
							PR: 2003  
						
						 
						
						... 
						
						
						
						Make it possible to install OpenSSL in directories with name other
than "lib" for example "lib64". Based on patch from Jeremy Utley. 
						
						
					 
					
						2009-08-10 14:48:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0778bfae5 
					 
					
						
						
							
							Add COMP error strings.  
						
						 
						
						
						
						
					 
					
						2009-08-09 14:58:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0f1d77a870 
					 
					
						
						
							
							Fix error code.  
						
						 
						
						
						
						
					 
					
						2009-08-06 16:39:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d9d0f1b52c 
					 
					
						
						
							
							Reject leading 0x80 in OID subidentifiers.  
						
						 
						
						
						
						
					 
					
						2009-08-06 16:32:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e075341d66 
					 
					
						
						
							
							PR: 2002  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Obtained from: steve@openssl.org 
Fix bug in libssl and krb5 linking in Makefile.org 
						
						
					 
					
						2009-08-05 15:51:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc32dbbea9 
					 
					
						
						
							
							Oops!  
						
						 
						
						
						
						
					 
					
						2009-08-05 15:32:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f10f4447da 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-08-05 15:29:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d76b8c89ec 
					 
					
						
						
							
							PR: 2001  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Approved by: steve@openssl.org 
Add patch: http://cvs.openssl.org/chngview?cn=14635  which never made it to
1.0.0, HEAD. 
						
						
					 
					
						2009-08-05 14:55:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						512d359e26 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-27 21:22:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c869da8839 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-27 21:10:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d80866041e 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2009-07-26 12:09:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75a86fa024 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-24 13:48:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b3bf0edf3 
					 
					
						
						
							
							Remove MD2 test from WIN32 as we don't compile it in by default any more.  
						
						 
						
						
						
						
					 
					
						2009-07-24 13:43:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ca16bfdd9 
					 
					
						
						
							
							Fix typos.  
						
						 
						
						
						
						
					 
					
						2009-07-24 13:37:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59281ca03a 
					 
					
						
						
							
							New debug targets from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-24 13:31:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6aa220c935 
					 
					
						
						
							
							PR: 1990  
						
						 
						
						... 
						
						
						
						Update from 0.9.8-stable 
						
						
					 
					
						2009-07-24 13:07:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3fa39ed723 
					 
					
						
						
							
							Document removal of digest+signature algorithm link.  
						
						 
						
						
						
						
					 
					
						2009-07-24 13:01:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0f65d5eba5 
					 
					
						
						
							
							PR: 1993  
						
						 
						
						... 
						
						
						
						Fix from 0.9.8-stable. 
						
						
					 
					
						2009-07-24 11:52:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1587761819 
					 
					
						
						
							
							Fix from 0.9.8-stable  
						
						 
						
						
						
						
					 
					
						2009-07-24 11:34:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83019f7e12 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-24 11:25:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bdfa4ff947 
					 
					
						
						
							
							Update from 0.9.8-stable  
						
						 
						
						
						
						
					 
					
						2009-07-24 11:17:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8b69d9d2b5 
					 
					
						
						
							
							Update from 0.9.8-stable  
						
						 
						
						
						
						
					 
					
						2009-07-24 11:11:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3c630352e2 
					 
					
						
						
							
							Use correct extension and OSX detection.  
						
						 
						
						
						
						
					 
					
						2009-07-16 09:52:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a620922e2 
					 
					
						
						
							
							Updates from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-15 18:00:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4b06d778ad 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-15 11:33:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6bb7dc1e90 
					 
					
						
						
							
							Updates from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-15 11:02:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f7c592082 
					 
					
						
						
							
							Updates from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-14 15:30:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e4bc56347 
					 
					
						
						
							
							Document MD2 deprecation.  
						
						 
						
						
						
						
					 
					
						2009-07-13 11:58:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5c168710ac 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-13 11:44:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6053ef80e5 
					 
					
						
						
							
							Use new time routines to avoid possible overflow.  
						
						 
						
						
						
						
					 
					
						2009-07-13 11:40:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						55a4a77a52 
					 
					
						
						
							
							Update from 0.9.8-stable  
						
						 
						
						
						
						
					 
					
						2009-07-11 22:36:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1e8569398c 
					 
					
						
						
							
							PR: 1624  
						
						 
						
						... 
						
						
						
						Submitted by: "Simon L. Nielsen" <simon@FreeBSD.org >
Obtained from: steve@openssl.org 
Correct FreeBSD check. 
						
						
					 
					
						2009-07-11 22:28:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e0c9e6008 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-11 21:43:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c55d27ac33 
					 
					
						
						
							
							Make update.  
						
						 
						
						
						
						
					 
					
						2009-07-08 09:19:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e9de7aa3a 
					 
					
						
						
							
							Delete MD2 from algorithm tables as in 0.9.8-stable. However since this is  
						
						 
						
						... 
						
						
						
						a new branch we can also disable it by default. 
						
						
					 
					
						2009-07-08 08:49:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fc007d021e 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2009-07-04 12:04:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						baacd8d4e5 
					 
					
						
						
							
							PR: 1981  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS record header bugfix. 
						
						
					 
					
						2009-07-04 11:38:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6c495bdb5d 
					 
					
						
						
							
							Upadte from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-01 15:47:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8b96875052 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-01 15:43:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b53e076988 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-01 15:37:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e698584a0 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-01 15:26:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						15c7adb0c9 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-01 11:46:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a6d8ee5b5 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-01 11:40:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9458530d45 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-01 11:29:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9de014a7f8 
					 
					
						
						
							
							Update from 0.9.8-stable  
						
						 
						
						
						
						
					 
					
						2009-06-30 22:27:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f761f5956 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-06-30 18:27:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db99779bee 
					 
					
						
						
							
							Use common verify parameters instead of the small ad-hoc subset in  
						
						 
						
						... 
						
						
						
						s_client, s_server. 
						
						
					 
					
						2009-06-30 15:56:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e5b2b0f91f 
					 
					
						
						
							
							Updates from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-06-30 15:28:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ccf117510d 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-30 11:58:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						746570e575 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-30 11:42:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						508c535221 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-06-30 11:24:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a5faeaa42 
					 
					
						
						
							
							Allow setting of verify depth in verify parameters (as opposed to the depth  
						
						 
						
						... 
						
						
						
						implemented using the verify callback). 
						
						
					 
					
						2009-06-29 16:09:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d2f6d28298 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-28 16:24:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5f78bf3ba 
					 
					
						
						
							
							Fix from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-26 23:14:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce92bb54d1 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-26 15:03:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3be6c7b7d 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-26 11:29:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4aa902ebaf 
					 
					
						
						
							
							Stop warnings in gcc where "a" is const passed as a non-const argument.  
						
						 
						
						
						
						
					 
					
						2009-06-25 17:10:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e30dd20c0e 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-06-25 11:29:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2693812db2 
					 
					
						
						
							
							Update FAQ with note about online docs.  
						
						 
						
						
						
						
					 
					
						2009-06-24 13:50:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f20339e6d7 
					 
					
						
						
							
							Initialize outlen.  
						
						 
						
						
						
						
					 
					
						2009-06-24 13:29:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd621f7dfd 
					 
					
						
						
							
							Add beos as a supported DSO scheme.  
						
						 
						
						
						
						
					 
					
						2009-06-17 12:19:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c05353c50a 
					 
					
						
						
							
							Rename asc2uni and uni2asc functions to avoid clashes.  
						
						 
						
						
						
						
					 
					
						2009-06-17 12:04:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73ea416070 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-17 11:48:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f33534c8a 
					 
					
						
						
							
							PR: 1958  
						
						 
						
						... 
						
						
						
						Submitted by: Sean Boudreau <seanb@qnx.com >
Approved by: steve@openssl.org 
qnx6 support. 
						
						
					 
					
						2009-06-17 11:37:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eddee61671 
					 
					
						
						
							
							PR: 1956  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Approved by: steve@openssl.org 
Netware doesn't have strings.h 
						
						
					 
					
						2009-06-17 11:32:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d70323f1c5 
					 
					
						
						
							
							Submitted by: Peter Gutmann <pgut001@cs.auckland.ac.nz>  
						
						 
						
						... 
						
						
						
						Approved by: steve@openssl.org 
Check return values for NULL in case of malloc failure. 
						
						
					 
					
						2009-06-17 11:25:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						716cddc03c 
					 
					
						
						
							
							PR: 1946  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Approved by: steve@openssl.org 
Netware header fix. 
						
						
					 
					
						2009-06-16 16:54:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f0288f05b9 
					 
					
						
						
							
							Submitted by: Artem Chuprina <ran@cryptocom.ru>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve@openssl.org 
Various GOST ciphersuite and ENGINE fixes. Including...
Allow EVP_PKEY_set_derive_peerkey() in encryption operations.
New flag when certificate verify should be omitted in client key exchange. 
						
						
					 
					
						2009-06-16 16:38:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31db43df08 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-15 15:01:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						512cab0128 
					 
					
						
						
							
							Fix error codes.  
						
						 
						
						
						
						
					 
					
						2009-06-15 11:18:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						779558b9e5 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-15 10:27:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						21b25ed4b8 
					 
					
						
						
							
							PR: 1952  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve@openssl.org 
ECDH negotiation bug. 
						
						
					 
					
						2009-06-13 20:46:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						58f41a926a 
					 
					
						
						
							
							Updates from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-06-05 14:59:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81d06ef2fd 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-05 11:52:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						225f303a9d 
					 
					
						
						
							
							PR: 1946  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Reviewed by: steve@openssl.org 
Get timeval definition on Netware. 
						
						
					 
					
						2009-06-02 11:23:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff6e530359 
					 
					
						
						
							
							PR: 1938  
						
						 
						
						... 
						
						
						
						Submitted by: Mark Phalan <Mark.Phalan@Sun.COM >
Reviewed by: steve@openssl.org 
Patch to pem and hmac manual pages NAME sections. 
						
						
					 
					
						2009-06-02 11:05:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0176842592 
					 
					
						
						
							
							PR: 1945  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Approved by: steve@openssl.org 
Netware compilation fix for nonexistent header. 
						
						
					 
					
						2009-06-01 12:13:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d741ccadb5 
					 
					
						
						
							
							Oops, update CHANGES entry.  
						
						 
						
						
						
						
					 
					
						2009-05-31 17:13:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6cf41fec72 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-31 17:13:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8132d3ac40 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-30 18:11:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43e12b6f1c 
					 
					
						
						
							
							Add ignored FIPS options to evp.h change clashing flag value.  
						
						 
						
						
						
						
					 
					
						2009-05-29 18:57:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b36857866 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-29 14:02:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc9001cb3f 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-05-28 21:41:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b1b9530165 
					 
					
						
						
							
							Sync ordinals from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-05-28 21:41:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						caa97ef149 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-28 18:11:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d0b72cf45b 
					 
					
						
						
							
							Add CHANGES entries from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-18 17:37:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4243a7f796 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-18 16:12:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						046f210112 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-17 16:04:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16cd15e688 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-17 14:48:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						98a711b479 
					 
					
						
						
							
							Stupid typo  
						
						 
						
						
						
						
					 
					
						2009-05-17 07:22:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						481547f0fe 
					 
					
						
						
							
							Fix from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-16 16:23:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d932f6fd7 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-05-16 16:18:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48fd490c6d 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-16 11:16:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9289f21b7d 
					 
					
						
						
							
							Update from 1.0.0 stable branch.  
						
						 
						
						
						
						
					 
					
						2009-05-16 11:15:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3d4f9f5e9 
					 
					
						
						
							
							PR: 1929  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS MTU bug. 
						
						
					 
					
						2009-05-15 23:06:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb38b26dbc 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-15 22:58:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8bbe29f2ca 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-15 22:50:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cc8cc9a3a1 
					 
					
						
						
							
							Functional VMS changes submitted by sms@antinode.info (Steven M. Schweda).  
						
						 
						
						... 
						
						
						
						Thank you\!
(note: not tested for now, a few nightly builds should give indications though) 
						
						
					 
					
						2009-05-15 16:36:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af55c09d9f 
					 
					
						
						
							
							Have mkdef.pl also handle VAX and Non-VAX differences for VMS  
						
						 
						
						
						
						
					 
					
						2009-05-15 16:01:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4531c1aa5e 
					 
					
						
						
							
							Add a comment about libeay.num and ssleay.num  
						
						 
						
						
						
						
					 
					
						2009-05-15 16:00:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						761393bba7 
					 
					
						
						
							
							x86[_64]cpuid.pl: further refine shared cache detection.  
						
						 
						
						
						
						
					 
					
						2009-05-14 18:17:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f71e5ee6a 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-05-13 16:38:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						715feb3104 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-13 11:52:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83d8fa7dd1 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-05-13 11:32:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						586723138e 
					 
					
						
						
							
							x86cpuid.pl: sync OPENSSL_ia32_cpuid with x86_64cpuid.pl.  
						
						 
						
						
						
						
					 
					
						2009-05-12 21:19:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5cd91b5055 
					 
					
						
						
							
							x86_64cpuid.pl: refine shared cache detection logic.  
						
						 
						
						
						
						
					 
					
						2009-05-12 21:01:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6dd9066e0e 
					 
					
						
						
							
							x86_64-xlate.pl: small commentary update.  
						
						 
						
						
						
						
					 
					
						2009-05-12 20:29:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3dccfc1e68 
					 
					
						
						
							
							e_padlock.c: fix typo (missing #endif) and switch to __builtin_alloca  
						
						 
						
						... 
						
						
						
						(with introduction of 64-bit support alloca must be  declared and there
is no standard way of doing that, switching to __bultin_alloca is
considered appropriate because code explicitly targets gcc anyway). 
						
						
					 
					
						2009-05-12 20:19:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						804ab1e0a4 
					 
					
						
						
							
							Forgotten comma...  
						
						 
						
						
						
						
					 
					
						2009-05-12 05:03:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8002e3073b 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-05-07 16:40:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac6f377754 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-05-06 16:57:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						71b7858b1d 
					 
					
						
						
							
							Update from 1.0.0-stable branch.  
						
						 
						
						
						
						
					 
					
						2009-05-06 16:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7da74281d2 
					 
					
						
						
							
							Do not try to link the support file(s), as they aren't a complete  
						
						 
						
						... 
						
						
						
						engine ;-) 
						
						
					 
					
						2009-05-06 13:56:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e6b0c0007f 
					 
					
						
						
							
							Make sure the padlock code compiles correctly even on hardware that  
						
						 
						
						... 
						
						
						
						doesn't have padlocks. 
						
						
					 
					
						2009-05-06 13:55:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						eb2b33c2b9 
					 
					
						
						
							
							Synchronise VMS with Unixly build.  
						
						 
						
						
						
						
					 
					
						2009-05-06 13:54:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eed15a831c 
					 
					
						
						
							
							Fix from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-06 10:28:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5d6a017931 
					 
					
						
						
							
							Move the time fetching code to its own static function, and thereby  
						
						 
						
						... 
						
						
						
						make sure that BOTH instances of said code get the VMS modification. 
						
						
					 
					
						2009-05-05 08:45:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6022fe81a2 
					 
					
						
						
							
							cryptlib.c: refine logic in OpenSSLDie (addenum to commit#18118).  
						
						 
						
						
						
						
					 
					
						2009-05-04 06:23:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8b6fe84404 
					 
					
						
						
							
							libeay.num: add ENGINE_load_aesni.  
						
						 
						
						
						
						
					 
					
						2009-05-03 14:23:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b58c74c98 
					 
					
						
						
							
							Avoid double dialogs in OpenSSLDie on Windows.  
						
						 
						
						
						
						
					 
					
						2009-05-03 14:16:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7752d34c61 
					 
					
						
						
							
							Make it possible to compile CAPI engine under mingw64.  
						
						 
						
						
						
						
					 
					
						2009-05-03 13:54:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						01483c269e 
					 
					
						
						
							
							Make CAPI engine UNICODE aware (it didn't work on Win64).  
						
						 
						
						
						
						
					 
					
						2009-05-03 13:52:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						03e13ca3f1 
					 
					
						
						
							
							eng_aesni.c: win32 fix.  
						
						 
						
						
						
						
					 
					
						2009-05-03 13:48:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						065c5d6328 
					 
					
						
						
							
							Engage cmll-x86_64.pl in Win64 build and make it compile correctly.  
						
						 
						
						
						
						
					 
					
						2009-05-02 21:18:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f00fdcd14d 
					 
					
						
						
							
							cryptlib.c: eliminate dependency on _strtoui64, older Windows CRT don't have it.  
						
						 
						
						
						
						
					 
					
						2009-05-02 12:51:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						194274cb68 
					 
					
						
						
							
							ec_mult.c: fix C4334 win64 compiler warning.  
						
						 
						
						
						
						
					 
					
						2009-05-02 11:18:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0fe4621e19 
					 
					
						
						
							
							eng_aesni.c: fix assembler declarations.  
						
						 
						
						
						
						
					 
					
						2009-05-02 11:00:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c5036d785a 
					 
					
						
						
							
							aesni-x86_64.pl: resolve LNK1223 error.  
						
						 
						
						
						
						
					 
					
						2009-05-02 10:21:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d608b4d662 
					 
					
						
						
							
							AES-NI engine jumbo update.  
						
						 
						
						
						
						
					 
					
						2009-05-02 09:04:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b3f6fe919a 
					 
					
						
						
							
							Updates from 1.0.0 stable branch.  
						
						 
						
						
						
						
					 
					
						2009-04-29 14:13:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1417be75c 
					 
					
						
						
							
							Make the NULL definition of OPENSSL_ia32cap_loc() compatible with the  
						
						 
						
						... 
						
						
						
						declaration in crypto.h. 
						
						
					 
					
						2009-04-29 13:40:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e7deff3cdf 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-04-28 22:36:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f8f94a661 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-28 22:10:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3c3f98dc93 
					 
					
						
						
							
							Reimplement time check for VMS to mimic the way it's done on Windows.  
						
						 
						
						... 
						
						
						
						Reason: gettimeofday() is deprecated. 
						
						
					 
					
						2009-04-28 12:50:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f8a2233457 
					 
					
						
						
							
							Stupid typo  
						
						 
						
						
						
						
					 
					
						2009-04-28 12:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						051742fb6c 
					 
					
						
						
							
							v3_alt.c: otherName parsing fix.  
						
						 
						
						... 
						
						
						
						Submitted by: Love Hörnquist Åstrand 
						
						
					 
					
						2009-04-27 19:35:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b066c3cd50 
					 
					
						
						
							
							Update test/test_padlock script.  
						
						 
						
						
						
						
					 
					
						2009-04-27 19:04:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						eda2da3235 
					 
					
						
						
							
							aesni-x86.pl: fix another typo and add test script.  
						
						 
						
						
						
						
					 
					
						2009-04-27 15:46:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c0b03d44fb 
					 
					
						
						
							
							aesni-x86.pl: fix typos.  
						
						 
						
						
						
						
					 
					
						2009-04-27 12:50:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d64a7232d4 
					 
					
						
						
							
							Intel AES-NI engine.  
						
						 
						
						... 
						
						
						
						Submitted by: Huang Ying 
						
						
					 
					
						2009-04-27 05:55:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						876708c67d 
					 
					
						
						
							
							Add padlock data  
						
						 
						
						... 
						
						
						
						Redo the loop so it really compiles all objects for one engine, then
links the engine (until now, it still thought every file was an engine
of its own...). 
						
						
					 
					
						2009-04-27 00:04:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4f0339c66 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-26 22:18:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						127186bf57 
					 
					
						
						
							
							e_padlock: add support for x86_64 gcc.  
						
						 
						
						
						
						
					 
					
						2009-04-26 18:14:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f06d0072fc 
					 
					
						
						
							
							Minor shaX-s390x.pl update.  
						
						 
						
						
						
						
					 
					
						2009-04-26 18:11:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f81e86d791 
					 
					
						
						
							
							Improve readability of bio/b_sock.c  
						
						 
						
						
						
						
					 
					
						2009-04-26 18:06:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2ff2710ccf 
					 
					
						
						
							
							Engage nasm optimizations in Win64 build.  
						
						 
						
						
						
						
					 
					
						2009-04-26 18:05:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ff65e94e04 
					 
					
						
						
							
							Addenum to commit#18074: Expand OPENSSL_ia32cap to 64 bits.  
						
						 
						
						
						
						
					 
					
						2009-04-26 18:02:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6c8b9259fc 
					 
					
						
						
							
							AESNI perlasm update.  
						
						 
						
						
						
						
					 
					
						2009-04-26 17:58:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						75d448dde4 
					 
					
						
						
							
							Handle push/pop %rbx in epi/prologue (this is Win64 SEH thing).  
						
						 
						
						
						
						
					 
					
						2009-04-26 17:58:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e303f55fc7 
					 
					
						
						
							
							Expand OPENSS_ia32cap to 64 bits.  
						
						 
						
						
						
						
					 
					
						2009-04-26 17:49:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d2617165ad 
					 
					
						
						
							
							Add local symbol hacks for OpenVMS  
						
						 
						
						
						
						
					 
					
						2009-04-26 12:26:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7184ef1210 
					 
					
						
						
							
							Cast to avoid signedness confusion  
						
						 
						
						
						
						
					 
					
						2009-04-26 12:16:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						93caba129b 
					 
					
						
						
							
							Include sys/time.h to declare gettimeofday().  
						
						 
						
						
						
						
					 
					
						2009-04-26 11:23:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6e177343f7 
					 
					
						
						
							
							A DTLS1 symbol needs to be chopped off a bit.  
						
						 
						
						
						
						
					 
					
						2009-04-26 11:22:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef236ec3b2 
					 
					
						
						
							
							Merge from 1.0.0-stable branch.  
						
						 
						
						
						
						
					 
					
						2009-04-23 16:32:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8711efb498 
					 
					
						
						
							
							Updates from 1.0.0-stable branch.  
						
						 
						
						
						
						
					 
					
						2009-04-20 11:33:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e5fa864f62 
					 
					
						
						
							
							Updates from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-15 15:27:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						22c98d4aad 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-04-08 16:16:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc7399e79c 
					 
					
						
						
							
							Changes from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-07 16:33:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14b3f1007e 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-07 12:11:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						645532b999 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-04-06 21:42:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						220bd84911 
					 
					
						
						
							
							Updates from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-04-06 15:22:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dec95a126a 
					 
					
						
						
							
							Camellia update: make it respect NO_[INLINE_]ASM and typo in assembler.  
						
						 
						
						
						
						
					 
					
						2009-04-06 15:13:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a79b668b8f 
					 
					
						
						
							
							Autogeneration seems to have changed slightly.  
						
						 
						
						
						
						
					 
					
						2009-04-05 10:21:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						06ddf8eb08 
					 
					
						
						
							
							Updates from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-04-04 19:54:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						71fca64d96 
					 
					
						
						
							
							Update version info.  
						
						 
						
						
						
						
					 
					
						2009-04-03 11:47:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14023fe352 
					 
					
						
						
							
							Merge from 1.0.0-stable branch.  
						
						 
						
						
						
						
					 
					
						2009-04-03 11:45:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6b0b0d7a5 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-01 14:59:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d6e460d44c 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-03-31 22:05:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0089a9dfa8 
					 
					
						
						
							
							Fix from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-03-31 21:58:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5910673a6 
					 
					
						
						
							
							Ooops reverse previous patch.  
						
						 
						
						
						
						
					 
					
						2009-03-31 21:39:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e93eff8c6 
					 
					
						
						
							
							Update from 0.9.8-stable  
						
						 
						
						
						
						
					 
					
						2009-03-31 21:36:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						70b2186e24 
					 
					
						
						
							
							Stop warnings.  
						
						 
						
						
						
						
					 
					
						2009-03-31 19:54:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64ecdaeca9 
					 
					
						
						
							
							HEAD is now 1.1.0  
						
						 
						
						... 
						
						
						
						The 1.0.0 branch is now OpenSSL_1_0_0-stable 
						
						
					 
					
						2009-03-31 10:38:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e74239df1 
					 
					
						
						
							
							Update STATUS and NEWS.  
						
						 
						
						
						
						
					 
					
						2009-03-30 11:33:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aaf35f11d7 
					 
					
						
						
							
							Allow use of algorithm and cipher names for dgsts and enc utilities instead  
						
						 
						
						... 
						
						
						
						of having to manually include each one. 
						
						
					 
					
						2009-03-30 11:31:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						093f5d2c15 
					 
					
						
						
							
							Nothing to see here... move along....  
						
						 
						
						
						
						
					 
					
						2009-03-28 17:12:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f1c086b21 
					 
					
						
						
							
							Update NEWS file.  
						
						 
						
						
						
						
					 
					
						2009-03-28 16:21:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77ea8c3002 
					 
					
						
						
							
							Fix typo in CHANGES.  
						
						 
						
						
						
						
					 
					
						2009-03-25 22:21:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ddcfc25a6d 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-25 19:02:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d7b7c62c3 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2009-03-25 12:57:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd009fe655 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2009-03-25 12:54:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73ba116e96 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-25 12:54:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						80b2ff978d 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-25 12:53:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7ce8c95d58 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-25 12:53:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						38b6e6c07b 
					 
					
						
						
							
							Typo in usage message.  
						
						 
						
						
						
						
					 
					
						2009-03-23 21:04:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e4e949192b 
					 
					
						
						
							
							Submitted by: Victor B. Wagner <vitus@cryptocom.ru>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve@openssl.org 
Check return codes properly in md BIO and dgst command. 
						
						
					 
					
						2009-03-18 18:53:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4e52b9845e 
					 
					
						
						
							
							aes-390x.pl: commentary update.  
						
						 
						
						
						
						
					 
					
						2009-03-17 20:04:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e22b864846 
					 
					
						
						
							
							Make SPARC assembler modules *really* Purify-friendly.  
						
						 
						
						
						
						
					 
					
						2009-03-17 18:31:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6af2c7e3e 
					 
					
						
						
							
							Submitted by: "Victor B. Wagner" <vitus@cryptocom.ru>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve@openssl.org 
Update ccgost engine to support parameter files. 
						
						
					 
					
						2009-03-17 15:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						57db09906b 
					 
					
						
						
							
							Excuse myself from integrating sha1-sparcv9a.pl into build system, but  
						
						 
						
						... 
						
						
						
						make it Purify-friendly... 
						
						
					 
					
						2009-03-16 13:48:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c78bc05c4 
					 
					
						
						
							
							Make SPARC assembler Pirify-friendly (Purify can't cope with certain  
						
						 
						
						... 
						
						
						
						PIC constructs). 
						
						
					 
					
						2009-03-16 13:32:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef8e772805 
					 
					
						
						
							
							Use OPENSSL_assert() instead of assert.  
						
						 
						
						
						
						
					 
					
						2009-03-15 14:04:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						54571ba004 
					 
					
						
						
							
							Use correct ctx name.  
						
						 
						
						
						
						
					 
					
						2009-03-15 14:03:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						237d7b6cae 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-15 13:37:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						854a225a27 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-14 18:33:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e39acc1c90 
					 
					
						
						
							
							PR: 1864  
						
						 
						
						... 
						
						
						
						Submitted by: Ger Hobbelt <ger@hobbelt.com >
Reviewed by: steve@openssl.org 
Check return value. 
						
						
					 
					
						2009-03-14 12:39:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0b76569b2 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-14 12:26:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						78625cac82 
					 
					
						
						
							
							Submitted by: Victor Duchovni <Victor.Duchovni@morganstanley.com>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve@openssl.org 
Check return value of sk_SSL_COMP_find() properly. 
						
						
					 
					
						2009-03-12 17:30:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c28a9165f2 
					 
					
						
						
							
							PR: 1862  
						
						 
						
						... 
						
						
						
						Typo. 
						
						
					 
					
						2009-03-12 17:13:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						617298dca3 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-12 17:10:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33ab2e31f3 
					 
					
						
						
							
							PR: 1854  
						
						 
						
						... 
						
						
						
						Submitted by: Oliver Martin <oliver@volatilevoid.net >
Reviewed by: steve@openssl.org 
Support GeneralizedTime in ca utility. 
						
						
					 
					
						2009-03-09 13:59:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb7ccdfbe2 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-09 13:08:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c836f8ef73 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-09 12:30:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4df100935f 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-09 12:21:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2a0ff7ad20 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-03-08 12:01:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c2a548a884 
					 
					
						
						
							
							Print IPv6 all 0s correctly (Rob Austein).  
						
						 
						
						
						
						
					 
					
						2009-03-08 10:54:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77202a85a0 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-03-07 17:00:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						73bfcf2226 
					 
					
						
						
							
							Don't ask for -iv for ciphers that need no IV.  
						
						 
						
						
						
						
					 
					
						2009-03-03 15:14:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2121f15daf 
					 
					
						
						
							
							Use the right length (reported by Quanhong Wang).  
						
						 
						
						
						
						
					 
					
						2009-03-03 15:12:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b2cf7c6452 
					 
					
						
						
							
							Submitted by: "Victor B. Wagner" <vitus@cryptocom.ru>  
						
						 
						
						... 
						
						
						
						Approved by: steve
Recognise "enable-zlib" in mkdef.pl to handle "zlib" option when passed
to Configure. 
						
						
					 
					
						2009-02-25 11:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						7587347bc4 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2009-02-23 16:40:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ae3b4f2336 
					 
					
						
						
							
							Make STORE an experimental feature.  
						
						 
						
						
						
						
					 
					
						2009-02-19 09:43:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						605b04f661 
					 
					
						
						
							
							Make it possible to disable STORE.  
						
						 
						
						
						
						
					 
					
						2009-02-19 09:42:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						97132a0f8e 
					 
					
						
						
							
							Reference bug.  
						
						 
						
						
						
						
					 
					
						2009-02-19 09:42:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30e5e39a3d 
					 
					
						
						
							
							PR: 1778  
						
						 
						
						... 
						
						
						
						Increase default verify depth to 100. 
						
						
					 
					
						2009-02-16 23:23:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c618ab993 
					 
					
						
						
							
							Submitted by:  "Victor B. Wagner" <vitus@cryptocom.ru>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve@openssl.org 
Change default Gost parameter set to id_Gost28147_89_CryptoPro_A_ParamSet 
						
						
					 
					
						2009-02-16 21:52:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b5d5c0a21f 
					 
					
						
						
							
							PR: 1843  
						
						 
						
						... 
						
						
						
						Use correct array size for SHA1 hash. 
						
						
					 
					
						2009-02-16 21:42:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f8ea4757cc 
					 
					
						
						
							
							Data not initialised.  
						
						 
						
						... 
						
						
						
						Notified by Gerardo Ganis <gerardo.ganis@cern.ch > 
						
						
					 
					
						2009-02-16 15:17:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0ed6b52687 
					 
					
						
						
							
							Stop warning about use of *printf() without a format.  
						
						 
						
						
						
						
					 
					
						2009-02-15 15:29:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a63bf2c53c 
					 
					
						
						
							
							Make no-engine work again.  
						
						 
						
						
						
						
					 
					
						2009-02-15 15:28:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b3f3407850 
					 
					
						
						
							
							Use new common flags and fix resulting warnings.  
						
						 
						
						
						
						
					 
					
						2009-02-15 14:08:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						477fd4596f 
					 
					
						
						
							
							PR: 1835  
						
						 
						
						... 
						
						
						
						Submitted by: Damien Miller <djm@mindrot.org >
Approved by: steve@openssl.org 
Fix various typos. 
						
						
					 
					
						2009-02-14 21:49:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30b1b28aff 
					 
					
						
						
							
							Return correct exit code.  
						
						 
						
						
						
						
					 
					
						2009-02-12 18:06:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						46400c97a9 
					 
					
						
						
							
							Avoid leaks in pkcs8 app, tidy code up.  
						
						 
						
						
						
						
					 
					
						2009-02-12 18:02:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c558c99fd8 
					 
					
						
						
							
							rc4-s390x.pl: allow for older assembler and optimize character loop.  
						
						 
						
						
						
						
					 
					
						2009-02-12 14:48:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						13c3a1defa 
					 
					
						
						
							
							RC4 for s390x.  
						
						 
						
						
						
						
					 
					
						2009-02-11 10:01:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aaa29f9e83 
					 
					
						
						
							
							Add error checking to obj_xref.pl and add command line support for data  
						
						 
						
						... 
						
						
						
						file locations. 
						
						
					 
					
						2009-02-10 13:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ede6ef5e08 
					 
					
						
						
							
							Submitted by: Peter Sylvester <Peter.Sylvester@edelweb.fr>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve
If tagging is universal and SET or SEQUENCE set constructed bit. 
						
						
					 
					
						2009-02-10 12:13:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0f529cbdc3 
					 
					
						
						
							
							s390x-mont.pl: optimize prologue.  
						
						 
						
						
						
						
					 
					
						2009-02-10 08:46:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						eb55b9fc19 
					 
					
						
						
							
							linux-s390x failed link after assembler pack update.  
						
						 
						
						
						
						
					 
					
						2009-02-10 07:43:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7012d2a8fa 
					 
					
						
						
							
							sha1-sparcv9a.pl: fix bug in commentary section.  
						
						 
						
						
						
						
					 
					
						2009-02-09 16:03:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8626230a02 
					 
					
						
						
							
							s390x assembler pack update.  
						
						 
						
						
						
						
					 
					
						2009-02-09 15:42:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c23632d3f1 
					 
					
						
						
							
							Reserve for "multilib" suffix, the one allowing to perform multi-ABI  
						
						 
						
						... 
						
						
						
						installations. It's not enabled in Makefiles yet. 
						
						
					 
					
						2009-02-09 15:11:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3859d7ee78 
					 
					
						
						
							
							Just to be awkward Ubuntu 8.10 doesn't like _XOPEN_SOURCE_EXTENDED...  
						
						 
						
						
						
						
					 
					
						2009-02-06 16:43:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d615bceb2d 
					 
					
						
						
							
							For -hex, print just one \n  
						
						 
						
						
						
						
					 
					
						2009-02-02 00:40:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7ca1cfbac3 
					 
					
						
						
							
							-hex option for openssl rand  
						
						 
						
						... 
						
						
						
						PR: 1831
Submitted by: Damien Miller 
						
						
					 
					
						2009-02-02 00:01:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d8e8fc4803 
					 
					
						
						
							
							Put back a variable deleted by the previous revision,  
						
						 
						
						... 
						
						
						
						but used in the code. 
						
						
					 
					
						2009-02-01 01:08:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						57f39cc826 
					 
					
						
						
							
							Print out UTF8 and NumericString types in ASN1 parsing utility.  
						
						 
						
						
						
						
					 
					
						2009-01-28 12:54:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6489573224 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-01-28 12:36:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						079e00e646 
					 
					
						
						
							
							Typo: just copy across an unknown type.  
						
						 
						
						
						
						
					 
					
						2009-01-28 12:32:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5871ddb016 
					 
					
						
						
							
							Because DEC C - sorry, HP C - is picky about features, we need to  
						
						 
						
						... 
						
						
						
						define _XOPEN_SOURCE_EXTENDED to reach fd_set and timeval types and
functionality. 
						
						
					 
					
						2009-01-28 07:38:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c7ba21493a 
					 
					
						
						
							
							Hopefully resolve signed vs unsigned issue.  
						
						 
						
						
						
						
					 
					
						2009-01-28 07:09:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8bf5001612 
					 
					
						
						
							
							Do the Camellia part right  
						
						 
						
						
						
						
					 
					
						2009-01-28 07:01:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6ed9dfb23a 
					 
					
						
						
							
							Synchronise with Unix build  
						
						 
						
						
						
						
					 
					
						2009-01-20 05:39:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						7f62532030 
					 
					
						
						
							
							Allow CC to be overridden.  
						
						 
						
						
						
						
					 
					
						2009-01-18 12:06:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2c99e2860 
					 
					
						
						
							
							Update certificate hash line format to handle canonical format  
						
						 
						
						... 
						
						
						
						and avoid MD5 dependency. 
						
						
					 
					
						2009-01-15 13:22:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8125d9f99c 
					 
					
						
						
							
							Make PKCS#8 the standard write format for private keys, replacing the  
						
						 
						
						... 
						
						
						
						ancient SSLeay format. 
						
						
					 
					
						2009-01-15 12:52:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e6925b0cd 
					 
					
						
						
							
							Add CRYPTO_MDEBUG_ABORT to abort() is there are any memory leaks. This will  
						
						 
						
						... 
						
						
						
						cause "make test" failures and make resource leaks more obvious. 
						
						
					 
					
						2009-01-11 20:36:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7ecd42255 
					 
					
						
						
							
							Fix warnings properly this time ;-)  
						
						 
						
						
						
						
					 
					
						2009-01-11 20:34:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41b7619596 
					 
					
						
						
							
							Fix missing prototype warnings then fix different prototype warnings ;-)  
						
						 
						
						
						
						
					 
					
						2009-01-11 16:17:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						211655fcdd 
					 
					
						
						
							
							Fix sign-compare warnings.  
						
						 
						
						
						
						
					 
					
						2009-01-11 15:58:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						363bd0b48e 
					 
					
						
						
							
							Add a set of standard gcc warning options which are designed to be the  
						
						 
						
						... 
						
						
						
						minimum requirement for committed code. Added to debug-steve* config targets
for now. 
						
						
					 
					
						2009-01-11 15:56:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						60aee6ce15 
					 
					
						
						
							
							Add missing entry.  
						
						 
						
						
						
						
					 
					
						2009-01-09 12:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bab534057b 
					 
					
						
						
							
							Updatde from stable branch.  
						
						 
						
						
						
						
					 
					
						2009-01-07 23:44:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cec2af7510 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2009-01-07 12:15:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6de3683908 
					 
					
						
						
							
							Add UltraSPARC VIS-powered SHA1 block procedure.  
						
						 
						
						
						
						
					 
					
						2009-01-05 14:52:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						fceac0bc74 
					 
					
						
						
							
							Fix compilation with -no-comp by adding some more #ifndef OPENSSL_NO_COMP  
						
						 
						
						... 
						
						
						
						Some #include statements were not properly protected. This will go unnoted
on most systems as openssl/comp.h tends to be installed as a system header
file by default but may become visible when cross compiling. 
						
						
					 
					
						2009-01-05 14:43:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						792bbc2374 
					 
					
						
						
							
							VMS stuff I forgot...  
						
						 
						
						
						
						
					 
					
						2009-01-03 09:25:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4a94003a51 
					 
					
						
						
							
							srvr_ecdh cannot be NULL at this point (Coverity ID 232).  
						
						 
						
						
						
						
					 
					
						2009-01-02 12:49:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ab4d689832 
					 
					
						
						
							
							Makefile.shared: improve portability of commit#17753.  
						
						 
						
						
						
						
					 
					
						2009-01-02 09:02:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						23b973e600 
					 
					
						
						
							
							Calculate offset correctly. (Coverity ID 233)  
						
						 
						
						
						
						
					 
					
						2009-01-01 18:30:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b3b201b6f7 
					 
					
						
						
							
							Styling update to makefiles: eliminate redundant pipes.  
						
						 
						
						
						
						
					 
					
						2008-12-30 13:20:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d41c785d69 
					 
					
						
						
							
							Document dead code.  
						
						 
						
						
						
						
					 
					
						2008-12-30 13:02:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a370537bde 
					 
					
						
						
							
							Styling update to makefiles: $() to denote make substitutions and $${} -  
						
						 
						
						... 
						
						
						
						shell ones. 
						
						
					 
					
						2008-12-29 16:17:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2bd45dc94c 
					 
					
						
						
							
							Apparently s->ctx could be NULL. (Coverity ID 147).  
						
						 
						
						
						
						
					 
					
						2008-12-29 16:15:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						121f9e743c 
					 
					
						
						
							
							Apparently s->ctx could be NULL at this point (see earlier  
						
						 
						
						... 
						
						
						
						test). (Coverity ID 148). 
						
						
					 
					
						2008-12-29 16:13:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0eab41fb78 
					 
					
						
						
							
							If we're going to return errors (no matter how stupid), then we should  
						
						 
						
						... 
						
						
						
						test for them! 
						
						
					 
					
						2008-12-29 16:11:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8aa02e97a7 
					 
					
						
						
							
							Make sure a bad parameter to RSA_verify_PKCS1_PSS() doesn't lead to a crash.  
						
						 
						
						... 
						
						
						
						(Coverity ID 135). 
						
						
					 
					
						2008-12-29 13:35:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a68c7b9171 
					 
					
						
						
							
							bn_lib.c: [re-]fix Win64 compiler warning.  
						
						 
						
						
						
						
					 
					
						2008-12-29 12:44:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5cabcf96e7 
					 
					
						
						
							
							Fix "possible loss of data" Win64 compiler warnings.  
						
						 
						
						
						
						
					 
					
						2008-12-29 12:35:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						85e878f224 
					 
					
						
						
							
							Die earlier if hash is NULL. (Coverity IDs 137 & 138).  
						
						 
						
						
						
						
					 
					
						2008-12-29 11:54:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						fe1c7fecf1 
					 
					
						
						
							
							Reverse incorrect earlier fix.  
						
						 
						
						
						
						
					 
					
						2008-12-29 11:47:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0e941da6fa 
					 
					
						
						
							
							Die earlier if we have no hash function.  
						
						 
						
						
						
						
					 
					
						2008-12-29 11:46:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2d1cbc85c8 
					 
					
						
						
							
							Add standard .cvsignore file.  
						
						 
						
						
						
						
					 
					
						2008-12-29 00:27:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d195d60a5f 
					 
					
						
						
							
							Update steve-debug* options.  
						
						 
						
						
						
						
					 
					
						2008-12-29 00:25:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e81695205e 
					 
					
						
						
							
							x86_64-xlate.pl: support for binary constants, such as 0b1010101.  
						
						 
						
						
						
						
					 
					
						2008-12-27 14:00:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fe150ac25d 
					 
					
						
						
							
							Add modes/cts128.c, Ciphertext Stealing implementation.  
						
						 
						
						
						
						
					 
					
						2008-12-27 13:40:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bec45a35bb 
					 
					
						
						
							
							cmll-x86_64.pl: fix bug in cbc tail processing and comply with Win64 ABI spec.  
						
						 
						
						
						
						
					 
					
						2008-12-27 13:39:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b0ee0d2bf 
					 
					
						
						
							
							Revisit RT#1801 and complete fix.  
						
						 
						
						
						
						
					 
					
						2008-12-27 13:32:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						dde5b979d2 
					 
					
						
						
							
							Remove dead code. (Coverity ID 2)  
						
						 
						
						
						
						
					 
					
						2008-12-27 02:36:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						57a6ac7c4f 
					 
					
						
						
							
							Check scalar->d before we use it (in BN_num_bits()). (Coverity ID 129)  
						
						 
						
						
						
						
					 
					
						2008-12-27 02:15:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						9b9cb004f7 
					 
					
						
						
							
							Deal with the unlikely event that EVP_MD_CTX_size() returns an error.  
						
						 
						
						... 
						
						
						
						(Coverity ID 140). 
						
						
					 
					
						2008-12-27 02:09:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						6ba71a7173 
					 
					
						
						
							
							Handle the unlikely event that BIO_get_mem_data() returns -ve.  
						
						 
						
						
						
						
					 
					
						2008-12-27 02:00:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4ded7b44a8 
					 
					
						
						
							
							More synchronisation with Unix  
						
						 
						
						
						
						
					 
					
						2008-12-26 23:52:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1457619e13 
					 
					
						
						
							
							Remove misleading dead code. Constify. (Coverity ID 142)  
						
						 
						
						
						
						
					 
					
						2008-12-26 17:17:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ccf529928f 
					 
					
						
						
							
							!a && !a->b is clearly wrong! Changed to !a || !a->b (Coverity ID 145).  
						
						 
						
						
						
						
					 
					
						2008-12-26 15:32:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5ceb595dfa 
					 
					
						
						
							
							pval must always be set when pk7_cb() does anything (Coverity ID 146).  
						
						 
						
						
						
						
					 
					
						2008-12-26 15:29:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						44390fadc0 
					 
					
						
						
							
							In BIO_write(), update the write statistics, not the read statistics.  
						
						 
						
						... 
						
						
						
						PR: 1803 
						
						
					 
					
						2008-12-25 22:24:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						974d05a323 
					 
					
						
						
							
							Further synchronisation with Unix  
						
						 
						
						
						
						
					 
					
						2008-12-25 22:04:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0f76640fba 
					 
					
						
						
							
							Windows-specific addenum to "engage crypto/modes" commit  #17716 .  
						
						 
						
						
						
						
					 
					
						2008-12-23 15:15:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a11974180f 
					 
					
						
						
							
							Patch the omission from prvious commit  #17716 .  
						
						 
						
						
						
						
					 
					
						2008-12-23 11:38:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5d48a66a6a 
					 
					
						
						
							
							Engage crypto/modes.  
						
						 
						
						
						
						
					 
					
						2008-12-23 11:33:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63fc7f848d 
					 
					
						
						
							
							crypto/modes: make modes.h selfsufficient and rename block_f to block128_t.  
						
						 
						
						
						
						
					 
					
						2008-12-23 11:18:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						830457ce4f 
					 
					
						
						
							
							Optimize CAST for size on 64-bit platforms. For reference, CAST_LONG being  
						
						 
						
						... 
						
						
						
						unsigned long must be attributed to 16-bit support. As we don't support
16-bit platoforms anymore, there is no reason to waste twice required
space on CAST S-boxes (16KB vs. 8KB) or key schedule. 
						
						
					 
					
						2008-12-22 15:21:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea4d5005d9 
					 
					
						
						
							
							cmll-x86_64.pl: Win64 SEH section to handle pushf/popf in CBC routine.  
						
						 
						
						
						
						
					 
					
						2008-12-22 14:15:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9f03d0fc04 
					 
					
						
						
							
							Optimize #undef DES_UNROLL for size.  
						
						 
						
						
						
						
					 
					
						2008-12-22 14:10:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2140659b00 
					 
					
						
						
							
							Incidentally  http://cvs.openssl.org/chngview?cn=17710  also made it possible  
						
						 
						
						... 
						
						
						
						to build the library without -D_CRT_NONSTDC_NO_DEPRECATE. This commit
expands it even to apps catalog and actually omits the macro in question
from Configure. 
						
						
					 
					
						2008-12-22 14:05:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e527201f6b 
					 
					
						
						
							
							This _WIN32-specific patch makes it possible to "wrap" OpenSSL in another  
						
						 
						
						... 
						
						
						
						.DLL, in particular static build. The issue has been discussed in RT#1230
and later on openssl-dev, and mutually exclusive approaches were suggested.
This completes compromise solution suggested in RT#1230.
PR: 1230 
						
						
					 
					
						2008-12-22 13:54:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						70531c147c 
					 
					
						
						
							
							Make no-engine work again.  
						
						 
						
						
						
						
					 
					
						2008-12-20 17:04:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						75bbf6e14c 
					 
					
						
						
							
							make depend to work with cross-gcc, compensate for msys glitch.  
						
						 
						
						... 
						
						
						
						PR: 1753
Submitted by: Alon Bar-Lev 
						
						
					 
					
						2008-12-19 13:35:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						702e742515 
					 
					
						
						
							
							cmll-x86_64.pl: bug fix and size optimization of Win64 SEH section.  
						
						 
						
						
						
						
					 
					
						2008-12-19 11:19:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						be01f79d3d 
					 
					
						
						
							
							x86_64 assembler pack: add support for Win64 SEH.  
						
						 
						
						
						
						
					 
					
						2008-12-19 11:17:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bf785c9849 
					 
					
						
						
							
							x86_64-xlate.pl: fix masm hexadecimal constants.  
						
						 
						
						
						
						
					 
					
						2008-12-19 11:14:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4db4882402 
					 
					
						
						
							
							perlasm/x86* update: support for 3 and 4 argument instructions.  
						
						 
						
						
						
						
					 
					
						2008-12-17 19:56:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6786f52ada 
					 
					
						
						
							
							SEGV in AES_cbc_encrypt in aes-x86_64 assembler module.  
						
						 
						
						... 
						
						
						
						PR: 1801
Submitted by: Huang Ying 
						
						
					 
					
						2008-12-17 14:11:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2e6a7b3efc 
					 
					
						
						
							
							Constify where needed  
						
						 
						
						
						
						
					 
					
						2008-12-16 13:41:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						63461b8db1 
					 
					
						
						
							
							Remove extraneous semicolons  
						
						 
						
						
						
						
					 
					
						2008-12-16 10:56:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e77228ba11 
					 
					
						
						
							
							Stack changes made dso_vms.c not compile properly.  
						
						 
						
						
						
						
					 
					
						2008-12-16 10:55:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5c60b1637a 
					 
					
						
						
							
							A few more symbols that are a little bit long for VMS  
						
						 
						
						
						
						
					 
					
						2008-12-16 10:54:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						26397d2e8c 
					 
					
						
						
							
							Synchronise VMS build system with the Unixly one  
						
						 
						
						
						
						
					 
					
						2008-12-16 10:54:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						85b2c0ce7f 
					 
					
						
						
							
							128-bit block cipher modes consolidation. As consolidated functions  
						
						 
						
						... 
						
						
						
						rely on indirect call to block functions, they are not as fast as
non-consolidated routines. However, performance loss(*) is within
measurement error and consolidation advantages are considered to
outweigh it.
(*) actually one can observe performance *improvement* on e.g.
    CBC benchmarks thanks to optimization, which also becomes
    shared among ciphers. 
						
						
					 
					
						2008-12-16 08:39:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f826bf7798 
					 
					
						
						
							
							SEED to support OPENSSL_SMALL_FOOTPRINT: ~2x size decrease on x86.  
						
						 
						
						
						
						
					 
					
						2008-12-16 07:41:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ebbe8853f 
					 
					
						
						
							
							Bring C bn_mul_mont template closer to assembler.  
						
						 
						
						
						
						
					 
					
						2008-12-16 07:28:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ac71d81e84 
					 
					
						
						
							
							no-asm didn't exclude Camellia assembler.  
						
						 
						
						
						
						
					 
					
						2008-12-16 07:26:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a9dbe71ee0 
					 
					
						
						
							
							Back out pointless change.  
						
						 
						
						
						
						
					 
					
						2008-12-13 17:45:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ecd3370ba0 
					 
					
						
						
							
							*** empty log message ***  
						
						 
						
						
						
						
					 
					
						2008-12-13 17:45:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						19d300d07c 
					 
					
						
						
							
							Return error if DH_new() fails (Coverity ID 150).  
						
						 
						
						
						
						
					 
					
						2008-12-13 17:39:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						071920d9f6 
					 
					
						
						
							
							Check for NULL before use (Coverity ID 203).  
						
						 
						
						
						
						
					 
					
						2008-12-13 17:28:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1f6e9bce21 
					 
					
						
						
							
							Missing return values (Coverity ID 204).  
						
						 
						
						
						
						
					 
					
						2008-12-13 17:19:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						434ba03ca9 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-12-10 17:35:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						d88d941c87 
					 
					
						
						
							
							apps/speed.c: children should not inherit buffered I/O  
						
						 
						
						... 
						
						
						
						PR: 1787
Submitted by: Artur Klauser <aklauser@google.com > 
						
						
					 
					
						2008-12-10 08:03:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d44cd1642 
					 
					
						
						
							
							Oops should check zero_pos >= 0.  
						
						 
						
						
						
						
					 
					
						2008-12-08 19:13:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d4e879106 
					 
					
						
						
							
							Handle case where v6stat.zero_pos == 0 correctly.  
						
						 
						
						... 
						
						
						
						Reported by: Kurt Roeckx <kurt@roeckx.be >, Tobias Ginzler <ginzler@fgan.de > (Debian bug #506111 ) 
						
						
					 
					
						2008-12-07 23:58:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ae381fef5c 
					 
					
						
						
							
							Add Camellia assembler x86 and x86_64 modules.  
						
						 
						
						
						
						
					 
					
						2008-12-03 09:22:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						48114ec952 
					 
					
						
						
							
							experimental-foo support for mk1mf.pl.  
						
						 
						
						
						
						
					 
					
						2008-12-02 23:50:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7a76219774 
					 
					
						
						
							
							Implement Configure option pattern "experimental-foo"  
						
						 
						
						... 
						
						
						
						(specifically, "experimental-jpake"). 
						
						
					 
					
						2008-12-02 01:21:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2900fc8ae1 
					 
					
						
						
							
							Don't stop -cipher from working.  
						
						 
						
						
						
						
					 
					
						2008-11-30 22:01:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e9afa08cd1 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-11-30 16:09:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bcaa36fd11 
					 
					
						
						
							
							Fix compilation with -DOPENSSL_NO_DEPRECATED.  
						
						 
						
						
						
						
					 
					
						2008-11-28 22:06:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						71702f7ed0 
					 
					
						
						
							
							Clarify a 'chil' engine param that is a little unintuitive.  
						
						 
						
						... 
						
						
						
						Submitted by: Sander Temme <sander@temme.net > 
						
						
					 
					
						2008-11-28 22:04:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd252de312 
					 
					
						
						
							
							Update libeay.num  
						
						 
						
						
						
						
					 
					
						2008-11-24 17:46:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						349e78e2e8 
					 
					
						
						
							
							Stop warning about different const qualifiers.  
						
						 
						
						
						
						
					 
					
						2008-11-24 17:39:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						79bd20fd17 
					 
					
						
						
							
							Update from stable-branch.  
						
						 
						
						
						
						
					 
					
						2008-11-24 17:27:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d0c3628834 
					 
					
						
						
							
							Set memory BIOs up properly when stripping text headers from S/MIME messages.  
						
						 
						
						
						
						
					 
					
						2008-11-21 18:18:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						31636a3ed1 
					 
					
						
						
							
							Allow the CHIL engine to load even if dynamic locks aren't registered.  
						
						 
						
						... 
						
						
						
						Submitted by: Sander Temme 
						
						
					 
					
						2008-11-19 14:21:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f3b7bdadbc 
					 
					
						
						
							
							Integrate J-PAKE and TLS-PSK. Increase PSK buffer size. Fix memory leaks.  
						
						 
						
						
						
						
					 
					
						2008-11-16 12:47:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ad7159ea84 
					 
					
						
						
							
							Ignore generated ASM.  
						
						 
						
						
						
						
					 
					
						2008-11-16 12:32:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b0dbb2cac 
					 
					
						
						
							
							Don't disable JPAKE by default in head...  
						
						 
						
						
						
						
					 
					
						2008-11-15 17:36:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						12bf56c017 
					 
					
						
						
							
							PR: 1574  
						
						 
						
						... 
						
						
						
						Submitted by: Jouni Malinen <j@w1.fi >
Approved by: steve@openssl.org 
Ticket override support for EAP-FAST. 
						
						
					 
					
						2008-11-15 17:18:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						93c4ba07d7 
					 
					
						
						
							
							x86_64-xlate.pl update, engage x86_64 assembler in mingw64.  
						
						 
						
						
						
						
					 
					
						2008-11-14 16:40:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						36d46234c7 
					 
					
						
						
							
							warnings (mostly)  
						
						 
						
						
						
						
					 
					
						2008-11-14 00:22:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						774b2fe700 
					 
					
						
						
							
							Aftermath of a clashing size_t fix (now only format changes).  
						
						 
						
						
						
						
					 
					
						2008-11-13 09:48:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						6c901ae8c1 
					 
					
						
						
							
							Ignore saved Makefile.  
						
						 
						
						
						
						
					 
					
						2008-11-13 09:31:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						90c65a9838 
					 
					
						
						
							
							J-PAKE is not experimental in HEAD.  
						
						 
						
						
						
						
					 
					
						2008-11-13 09:31:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5eba1ab346 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2008-11-12 19:02:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e50072d56 
					 
					
						
						
							
							mk1mf.pl update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-11-12 18:52:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd9557a8ba 
					 
					
						
						
							
							Revert another size_t change.  
						
						 
						
						
						
						
					 
					
						2008-11-12 18:47:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ed551cddf7 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-11-12 17:28:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5aca224ecd 
					 
					
						
						
							
							Reinstate camellia header fix patch.  
						
						 
						
						
						
						
					 
					
						2008-11-12 17:02:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dab6293482 
					 
					
						
						
							
							Configure update: clean-ups and most notably engage x86_64 assembler  
						
						 
						
						... 
						
						
						
						on MacOS X. 
						
						
					 
					
						2008-11-12 08:21:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1416aec60d 
					 
					
						
						
							
							Update make rules for x86_64 assembler pack.  
						
						 
						
						
						
						
					 
					
						2008-11-12 08:19:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aa8f38e49b 
					 
					
						
						
							
							x86_64 assembler pack to comply with updated styling x86_64-xlate.pl rules.  
						
						 
						
						
						
						
					 
					
						2008-11-12 08:15:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8525377265 
					 
					
						
						
							
							x86_64-xlate.pl to support MacOS X and mingw64.  
						
						 
						
						
						
						
					 
					
						2008-11-12 08:05:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2fbc8a2aad 
					 
					
						
						
							
							Revert commit  #17603 , it should have been part of  #17617 .  
						
						 
						
						
						
						
					 
					
						2008-11-12 07:27:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6343829a39 
					 
					
						
						
							
							Revert the size_t modifications from HEAD that had led to more  
						
						 
						
						... 
						
						
						
						knock-on work than expected - they've been extracted into a patch
series that can be completed elsewhere, or in a different branch,
before merging back to HEAD. 
						
						
					 
					
						2008-11-12 03:58:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2401debe83 
					 
					
						
						
							
							Tolerate -----BEGIN PKCS  #7  SIGNED DATA----- header lines as used by some  
						
						 
						
						... 
						
						
						
						implementations. 
						
						
					 
					
						2008-11-11 12:38:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5c61111bff 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-11-11 12:23:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc645199c0 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-11-11 10:17:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0a8c9f7de1 
					 
					
						
						
							
							symbol deobnoxification  
						
						 
						
						
						
						
					 
					
						2008-11-11 07:08:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7b808412c9 
					 
					
						
						
							
							Make -DKSSL_DEBUG work again.  
						
						 
						
						
						
						
					 
					
						2008-11-10 19:08:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						706c5a4d35 
					 
					
						
						
							
							Clarify (non-)blocking behavior of EGD socket interface used by RAND_egd().  
						
						 
						
						
						
						
					 
					
						2008-11-10 11:26:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0afc9f5bc0 
					 
					
						
						
							
							PR: 1777  
						
						 
						
						... 
						
						
						
						Submitted by: "Alon Bar-Lev" <alon.barlev@gmail.com >
Approved by: steve@openssl.org 
Fix some size_t issues. 
						
						
					 
					
						2008-11-05 23:14:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e5975285e 
					 
					
						
						
							
							Update obsolete email address...  
						
						 
						
						
						
						
					 
					
						2008-11-05 18:39:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5947ca0409 
					 
					
						
						
							
							Don't use clobbered 'i' for checking UTCTime and GeneralizedTime length.  
						
						 
						
						
						
						
					 
					
						2008-11-05 18:28:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d40a1b865f 
					 
					
						
						
							
							Only one of these needs to be signed.  
						
						 
						
						
						
						
					 
					
						2008-11-04 15:16:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f80921b6a6 
					 
					
						
						
							
							Formatting.  
						
						 
						
						
						
						
					 
					
						2008-11-04 12:06:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9be5481297 
					 
					
						
						
							
							Add initial support for mingw64.  
						
						 
						
						... 
						
						
						
						PR: 1693
Submitted by: Alon Bar-Lev 
						
						
					 
					
						2008-11-03 21:15:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8fe8bae15a 
					 
					
						
						
							
							Minor perlasm updates.  
						
						 
						
						
						
						
					 
					
						2008-11-03 08:46:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f2c0230518 
					 
					
						
						
							
							Not sure about this one... seems to be needed to make 64 bit release  
						
						 
						
						... 
						
						
						
						builds work properly... 
						
						
					 
					
						2008-11-02 18:29:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e6e0c9018c 
					 
					
						
						
							
							Fix prototypes.  
						
						 
						
						
						
						
					 
					
						2008-11-02 18:12:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9619b730b4 
					 
					
						
						
							
							Use stddef.h to pick up size_t def.  
						
						 
						
						
						
						
					 
					
						2008-11-02 16:56:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2766515fca 
					 
					
						
						
							
							Fix prototypes.  
						
						 
						
						
						
						
					 
					
						2008-11-02 16:13:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						87d52468aa 
					 
					
						
						
							
							Update HMAC functions to return an error where relevant.  
						
						 
						
						
						
						
					 
					
						2008-11-02 16:00:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						70d71f6185 
					 
					
						
						
							
							Fix warnings: printf format mismatches on 64 bit platforms.  
						
						 
						
						... 
						
						
						
						Change assert to OPENSSL_assert().
Fix e_padlock prototype. 
						
						
					 
					
						2008-11-02 15:41:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5ee92a5ec1 
					 
					
						
						
							
							Fix asserts. Fix incorrect dependency.  
						
						 
						
						
						
						
					 
					
						2008-11-02 13:15:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c76fd290be 
					 
					
						
						
							
							Fix warnings about mismatched prototypes, undefined size_t and value computed  
						
						 
						
						... 
						
						
						
						not used. 
						
						
					 
					
						2008-11-02 12:50:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d0a20cafa1 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2008-11-02 09:22:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8da07655ee 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2008-11-02 09:00:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						befe1fbc29 
					 
					
						
						
							
							Fix bss_log.c on Windows.  
						
						 
						
						
						
						
					 
					
						2008-11-01 21:09:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5e4430e70d 
					 
					
						
						
							
							More size_tification.  
						
						 
						
						
						
						
					 
					
						2008-11-01 16:40:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4d6e1e4f29 
					 
					
						
						
							
							size_tification.  
						
						 
						
						
						
						
					 
					
						2008-11-01 14:37:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						122396f2db 
					 
					
						
						
							
							Fix SHA512 and optimize BN for mingw64.  
						
						 
						
						
						
						
					 
					
						2008-11-01 12:46:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						09a60c9833 
					 
					
						
						
							
							Fix warnings after commit#17578.  
						
						 
						
						
						
						
					 
					
						2008-10-31 20:20:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b444ac3e6f 
					 
					
						
						
							
							size_t-fy EVP_CIPHER. Note that being size_t-fied it doesn't require  
						
						 
						
						... 
						
						
						
						underlying cipher to be size_t-fied, it allows for size_t, signed and
unsigned long. It maintains source and even binary compatibility. 
						
						
					 
					
						2008-10-31 19:48:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f768be81d8 
					 
					
						
						
							
							size_t-fy AES, Camellia and RC4.  
						
						 
						
						
						
						
					 
					
						2008-10-31 19:30:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						91173829db 
					 
					
						
						
							
							Add install target to crypto/jpake/Makefile  
						
						 
						
						
						
						
					 
					
						2008-10-31 12:06:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						bfaead2b12 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2008-10-29 05:10:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e6b4578540 
					 
					
						
						
							
							randfile.c: .rnd can become orphaned on VMS.  
						
						 
						
						... 
						
						
						
						Submitted by: David North 
						
						
					 
					
						2008-10-28 16:25:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0dd4850ee0 
					 
					
						
						
							
							.cvsignore update: ignore all flavors of shared objects.  
						
						 
						
						
						
						
					 
					
						2008-10-28 15:29:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c650168a4f 
					 
					
						
						
							
							Fix typo in ./config.  
						
						 
						
						... 
						
						
						
						Submitted by: Sander Temme 
						
						
					 
					
						2008-10-28 15:09:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea71ec1b11 
					 
					
						
						
							
							ec2_mult.c readability update.  
						
						 
						
						
						
						
					 
					
						2008-10-28 13:53:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f1455b3063 
					 
					
						
						
							
							Minor clean-up in bn_lib.c: constification and optimization.  
						
						 
						
						
						
						
					 
					
						2008-10-28 13:52:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b764f82c64 
					 
					
						
						
							
							Fix crash in BN_rshift.  
						
						 
						
						... 
						
						
						
						PR: 1663 
						
						
					 
					
						2008-10-28 13:46:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						436bdcff4e 
					 
					
						
						
							
							Harmonize Camellia API with version 1.x.  
						
						 
						
						
						
						
					 
					
						2008-10-28 12:13:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						27f864e8ac 
					 
					
						
						
							
							Camellia update. Quoting camellia.c:  
						
						 
						
						... 
						
						
						
						/*
 * This release balances code size and performance. In particular key
 * schedule setup is fully unrolled, because doing so *significantly*
 * reduces amount of instructions per setup round and code increase is
 * justifiable. In block functions on the other hand only inner loops
 * are unrolled, as full unroll gives only nominal performance boost,
 * while code size grows 4 or 7 times. Also, unlike previous versions
 * this one "encourages" compiler to keep intermediate variables in
 * registers, which should give better "all round" results, in other
 * words reasonable performance even with not so modern compilers.
 */ 
						
						
					 
					
						2008-10-28 08:47:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						80aa9cc985 
					 
					
						
						
							
							x86_64-xlate.pl update: refine SEH support.  
						
						 
						
						
						
						
					 
					
						2008-10-28 08:40:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab7e09f59b 
					 
					
						
						
							
							Win32 fixes... add new directory to build system. Fix warnings.  
						
						 
						
						
						
						
					 
					
						2008-10-27 12:31:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e9eda23ae6 
					 
					
						
						
							
							Fix warnings and various issues.  
						
						 
						
						... 
						
						
						
						C++ style comments.
Signed/unsigned warning in apps.c
Missing targets in jpake/Makefile 
						
						
					 
					
						2008-10-27 12:02:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						6caa4edd3e 
					 
					
						
						
							
							Add JPAKE.  
						
						 
						
						
						
						
					 
					
						2008-10-26 18:40:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac786241a2 
					 
					
						
						
							
							Add support for -crlnumber option in crl utility.  
						
						 
						
						
						
						
					 
					
						2008-10-22 19:54:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df0681e554 
					 
					
						
						
							
							Add permanentIdentifier OID.  
						
						 
						
						
						
						
					 
					
						2008-10-22 18:48:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e19106f5fb 
					 
					
						
						
							
							Create function of the form OBJ_bsearch_xxx() in bsearch typesafe macros  
						
						 
						
						... 
						
						
						
						with the appropriate parameters which calls OBJ_bsearch(). A compiler will
typically inline this.
This avoids the need for cmp_xxx variables and fixes unchecked const issues
with CHECKED_PTR_OF() 
						
						
					 
					
						2008-10-22 15:43:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ae7ec4c71d 
					 
					
						
						
							
							Apparently '__top' is also risky, obfuscate further. (All this to  
						
						 
						
						... 
						
						
						
						avoid inlines...) 
						
						
					 
					
						2008-10-22 12:00:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						020d67fb89 
					 
					
						
						
							
							Allow detection of input EOF in quiet mode by adding -no_ign_eof option  
						
						 
						
						... 
						
						
						
						to s_client application.
PR: #1761 
Submitted by: David Woodhouse <dwmw2@infradead.org > 
						
						
					 
					
						2008-10-22 06:46:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						3fdc6c11aa 
					 
					
						
						
							
							Use of a 'top' var creates "shadow variable" warnings.  
						
						 
						
						
						
						
					 
					
						2008-10-22 01:25:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dcf6b3e9b6 
					 
					
						
						
							
							Reinstate obj_xref.h as it is not auto generated on all platforms.  
						
						 
						
						
						
						
					 
					
						2008-10-20 15:12:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						606f6c477a 
					 
					
						
						
							
							Fix a shed load or warnings:  
						
						 
						
						... 
						
						
						
						Duplicate const.
Use of ; outside function. 
						
						
					 
					
						2008-10-20 15:12:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						1581f82243 
					 
					
						
						
							
							Add missing "-d" to option list of openssl version.  
						
						 
						
						... 
						
						
						
						Submitted by: Alex Chen <alex_chen@filemaker.com > 
						
						
					 
					
						2008-10-20 12:53:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0d6f9c7181 
					 
					
						
						
							
							Constification.  
						
						 
						
						
						
						
					 
					
						2008-10-19 22:51:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						640b86cb24 
					 
					
						
						
							
							Fix Warning...  
						
						 
						
						
						
						
					 
					
						2008-10-19 17:22:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						111a6e2a23 
					 
					
						
						
							
							Fix multiple ; warning.  
						
						 
						
						
						
						
					 
					
						2008-10-18 15:02:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d764e7edb8 
					 
					
						
						
							
							Fix warning a different way.  
						
						 
						
						
						
						
					 
					
						2008-10-18 12:12:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aff8259510 
					 
					
						
						
							
							Fix argument order in BN_nnmod call and implement rigorous boundary  
						
						 
						
						... 
						
						
						
						condition check. 
						
						
					 
					
						2008-10-16 07:54:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						256b3e9c5f 
					 
					
						
						
							
							Optimize bn_correct_top.  
						
						 
						
						
						
						
					 
					
						2008-10-15 10:48:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						762a2e3cab 
					 
					
						
						
							
							Remove redundant BN_ucmp, fix boundary condition in BN_nist_mod_224 and  
						
						 
						
						... 
						
						
						
						reimplement BN_nist_mod_521. 
						
						
					 
					
						2008-10-15 10:47:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						28b6d5020e 
					 
					
						
						
							
							Set comparison function in v3_add_canonize().  
						
						 
						
						
						
						
					 
					
						2008-10-14 19:27:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d5bbead449 
					 
					
						
						
							
							Add XMPP STARTTLS support.  
						
						 
						
						
						
						
					 
					
						2008-10-14 19:11:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0f7efbc859 
					 
					
						
						
							
							Ooops... remove code accidentally commited from FIPS version.  
						
						 
						
						
						
						
					 
					
						2008-10-14 15:44:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a7ae4abfd9 
					 
					
						
						
							
							Add missing lock definitions...  
						
						 
						
						
						
						
					 
					
						2008-10-14 15:24:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30661b1b01 
					 
					
						
						
							
							Add missing lock definitions.  
						
						 
						
						
						
						
					 
					
						2008-10-14 15:22:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1ea6472e60 
					 
					
						
						
							
							Type-safe OBJ_bsearch_ex.  
						
						 
						
						
						
						
					 
					
						2008-10-14 08:10:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						b8dfde2a36 
					 
					
						
						
							
							Remove the DTLS1_BAD_VER thing from 0.9.9-dev. It is present in 0.9.8  
						
						 
						
						... 
						
						
						
						but has been omitted from HEAD (0.9.9), see commit
  http://cvs.openssl.org/chngview?cn=16627 
by appro. 
						
						
					 
					
						2008-10-13 06:45:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						570006f3a2 
					 
					
						
						
							
							Half of the commit for 0.9.8 as the bitmap handling has changed.  
						
						 
						
						... 
						
						
						
						(Firstly... ommitted)
Secondly, it wasn't even _dropping_ the offending packets, in the
non-blocking case. It was just returning garbage instead.
PR: #1752 
Submitted by: David Woodhouse <dwmw2@infradead.org > 
						
						
					 
					
						2008-10-13 06:43:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						babb379849 
					 
					
						
						
							
							Type-checked (and modern C compliant) OBJ_bsearch.  
						
						 
						
						
						
						
					 
					
						2008-10-12 14:32:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						6665ef303e 
					 
					
						
						
							
							Add missing DTLS1_BAD_VER (hope I got the value right).  
						
						 
						
						
						
						
					 
					
						2008-10-12 14:04:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						7e7af0bc51 
					 
					
						
						
							
							When the underlying BIO_write() fails to send a datagram, we leave the  
						
						 
						
						... 
						
						
						
						offending record queued as 'pending'. The DTLS code doesn't expect this,
and we end up hitting an OPENSSL_assert() in do_dtls1_write().
The simple fix is just _not_ to leave it queued. In DTLS, dropping
packets is perfectly acceptable -- and even preferable. If we wanted a
service with retries and guaranteed delivery, we'd be using TCP.
PR: #1703 
Submitted by: David Woodhouse <dwmw2@infradead.org > 
						
						
					 
					
						2008-10-10 10:41:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						87d3a0cd90 
					 
					
						
						
							
							Experimental new date handling routines. These fix issues with X509_time_adj()  
						
						 
						
						... 
						
						
						
						and should avoid any OS date limitations such as the year 2038 bug. 
						
						
					 
					
						2008-10-07 22:55:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						1e369b375e 
					 
					
						
						
							
							Fix incorrect command for assember file generation on IA64  
						
						 
						
						... 
						
						
						
						Submitted by: Amadeu A. Barbosa Jr <amadeu@tecgraf.puc-rio.br > 
						
						
					 
					
						2008-10-06 10:34:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6bf24568bc 
					 
					
						
						
							
							Fix EC_KEY_check_key.  
						
						 
						
						
						
						
					 
					
						2008-09-23 17:33:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						837f2fc7a4 
					 
					
						
						
							
							Make sure that SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG can't  
						
						 
						
						... 
						
						
						
						enable disabled ciphersuites. 
						
						
					 
					
						2008-09-22 21:22:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1a489c9af1 
					 
					
						
						
							
							From branch OpenSSL_0_9_8-stable: Allow soft-loading engines.  
						
						 
						
						... 
						
						
						
						Also, fix CHANGES (consistency with stable branch). 
						
						
					 
					
						2008-09-15 20:41:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c864e5466 
					 
					
						
						
							
							Add missing CHANGES entry.  
						
						 
						
						
						
						
					 
					
						2008-09-15 20:30:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						be5707c820 
					 
					
						
						
							
							from 0.9.8 branch  
						
						 
						
						
						
						
					 
					
						2008-09-15 20:30:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a4f3071ec 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2008-09-15 11:27:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d7235a9d68 
					 
					
						
						
							
							Fix yesterday typos in bss_dgram.c.  
						
						 
						
						
						
						
					 
					
						2008-09-15 05:43:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						fa0f834c20 
					 
					
						
						
							
							Fix build warnings.  
						
						 
						
						
						
						
					 
					
						2008-09-15 04:02:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						96562f2fb3 
					 
					
						
						
							
							update comment  
						
						 
						
						
						
						
					 
					
						2008-09-14 19:50:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b9790c1cd4 
					 
					
						
						
							
							Winsock handles SO_RCVTIMEO in unique manner...  
						
						 
						
						... 
						
						
						
						PR: 1648 
						
						
					 
					
						2008-09-14 19:22:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fcbdde0dfe 
					 
					
						
						
							
							oops  
						
						 
						
						
						
						
					 
					
						2008-09-14 18:16:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						51ec776b7d 
					 
					
						
						
							
							dtls1_write_bytes consumers expect amount of bytes written per call, not  
						
						 
						
						... 
						
						
						
						overall.
PR: 1604 
						
						
					 
					
						2008-09-14 17:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e65bcbcef0 
					 
					
						
						
							
							Fix SSL state transitions.  
						
						 
						
						... 
						
						
						
						Submitted by: Nagendra Modadugu 
						
						
					 
					
						2008-09-14 14:02:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e710de12ce 
					 
					
						
						
							
							Note about CVS branch inconsistency.  
						
						 
						
						
						
						
					 
					
						2008-09-14 13:53:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						db99c52509 
					 
					
						
						
							
							Really get rid of unsafe double-checked locking.  
						
						 
						
						... 
						
						
						
						Also, "CHANGES" clean-ups. 
						
						
					 
					
						2008-09-14 13:51:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f8d6be3f81 
					 
					
						
						
							
							Some precautions to avoid potential security-relevant problems.  
						
						 
						
						
						
						
					 
					
						2008-09-14 13:42:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d493899579 
					 
					
						
						
							
							DTLS didn't handle alerts correctly.  
						
						 
						
						... 
						
						
						
						PR: 1632 
						
						
					 
					
						2008-09-13 18:24:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						492279f6f3 
					 
					
						
						
							
							AIX build updates.  
						
						 
						
						
						
						
					 
					
						2008-09-12 14:45:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ad74edce8 
					 
					
						
						
							
							Add SSL_FIPS flag for FIPS 140-2 approved ciphersuites and add a new  
						
						 
						
						... 
						
						
						
						strength "FIPS" to represent all FIPS approved ciphersuites without NULL
encryption. 
						
						
					 
					
						2008-09-10 16:02:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2b7b1cad10 
					 
					
						
						
							
							Ignoring errors in makedepend can hide problems.  
						
						 
						
						
						
						
					 
					
						2008-09-09 19:08:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						43048d13c8 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2008-09-07 13:22:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8da6a1d0f 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-09-03 22:17:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						305514000c 
					 
					
						
						
							
							Do not discard cached handshake records during resumed sessions:  
						
						 
						
						... 
						
						
						
						they are used for mac computation. 
						
						
					 
					
						2008-09-03 12:36:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0702150f53 
					 
					
						
						
							
							Make no-tlsext compile.  
						
						 
						
						
						
						
					 
					
						2008-09-03 12:29:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0ee081515 
					 
					
						
						
							
							Perl script to run and verify OpenSSL against PKITS RFC3280 compliance  
						
						 
						
						... 
						
						
						
						test suite. 
						
						
					 
					
						2008-09-01 15:53:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d43c4497ce 
					 
					
						
						
							
							Initial support for delta CRLs. If "use deltas" flag is set attempt to find  
						
						 
						
						... 
						
						
						
						a delta CRL in addition to a full CRL. Check and search delta in addition to
the base. 
						
						
					 
					
						2008-09-01 15:15:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4b96839f06 
					 
					
						
						
							
							Add support for CRLs partitioned by reason code.  
						
						 
						
						... 
						
						
						
						Tidy CRL scoring system.
Add new CRL path validation error. 
						
						
					 
					
						2008-08-29 11:37:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						249a77f5fb 
					 
					
						
						
							
							Add support for freshest CRL extension.  
						
						 
						
						
						
						
					 
					
						2008-08-27 15:52:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d0fff69dc9 
					 
					
						
						
							
							Initial indirect CRL support.  
						
						 
						
						
						
						
					 
					
						2008-08-20 16:42:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c9bd89338 
					 
					
						
						
							
							Support for certificateIssuer CRL entry extension.  
						
						 
						
						
						
						
					 
					
						2008-08-18 16:48:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2e415778f2 
					 
					
						
						
							
							Don't use assertions to check application-provided arguments;  
						
						 
						
						... 
						
						
						
						and don't unnecessarily fail on input size 0. 
						
						
					 
					
						2008-08-14 21:37:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1cbf663a6c 
					 
					
						
						
							
							sanity check  
						
						 
						
						... 
						
						
						
						PR: 1679 
						
						
					 
					
						2008-08-13 19:45:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9be8035b11 
					 
					
						
						
							
							fix error function codes  
						
						 
						
						
						
						
					 
					
						2008-08-13 19:44:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2ecd2edede 
					 
					
						
						
							
							Mention ERR_remove_state() deprecation, and ERR_remove_thread_state(NULL).  
						
						 
						
						
						
						
					 
					
						2008-08-13 19:30:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d84d4ed5e 
					 
					
						
						
							
							Initial support for CRL path validation. This supports distinct certificate  
						
						 
						
						... 
						
						
						
						and CRL signing keys. 
						
						
					 
					
						2008-08-13 16:00:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e0c7db950 
					 
					
						
						
							
							Initial code to support distinct certificate and CRL signing keys where the  
						
						 
						
						... 
						
						
						
						CRL issuer is not part of the main path.
Not complete yet and not compiled in because the CRL issuer certificate is
not validated. 
						
						
					 
					
						2008-08-12 16:07:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						002e66c0e8 
					 
					
						
						
							
							Support for policy mappings extension.  
						
						 
						
						... 
						
						
						
						Delete X509_POLICY_REF code.
Fix handling of invalid policy extensions to return the correct error.
Add command line option to inhibit policy mappings. 
						
						
					 
					
						2008-08-12 10:32:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e9746e03ee 
					 
					
						
						
							
							Initial support for name constraints certificate extension.  
						
						 
						
						... 
						
						
						
						TODO: robustness checking on name forms. 
						
						
					 
					
						2008-08-08 15:35:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ab9c689ad3 
					 
					
						
						
							
							Correct the FAQ and the threads man page re: CRYPTO_THREADID changes.  
						
						 
						
						
						
						
					 
					
						2008-08-06 16:41:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						4c3296960d 
					 
					
						
						
							
							Remove the dual-callback scheme for numeric and pointer thread IDs,  
						
						 
						
						... 
						
						
						
						deprecate the original (numeric-only) scheme, and replace with the
CRYPTO_THREADID object. This hides the platform-specifics and should reduce
the possibility for programming errors (where failing to explicitly check
both thread ID forms could create subtle, platform-specific bugs).
Thanks to Bodo, for invaluable review and feedback. 
						
						
					 
					
						2008-08-06 15:54:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						96826bfc84 
					 
					
						
						
							
							sha1-armv4-large cosmetics.  
						
						 
						
						
						
						
					 
					
						2008-08-06 08:58:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						eb1aa135d8 
					 
					
						
						
							
							sha1-armv4-large.pl performance improvement. On PXA255 it gives +10% on  
						
						 
						
						... 
						
						
						
						8KB block, +60% on 1KB, +160% on 256B... 
						
						
					 
					
						2008-08-06 08:47:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						99649b5990 
					 
					
						
						
							
							Fix signed/unsigned warning.  
						
						 
						
						
						
						
					 
					
						2008-08-05 17:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d6c47980e 
					 
					
						
						
							
							Correctly handle errors in CMS I/O code.  
						
						 
						
						
						
						
					 
					
						2008-08-05 15:55:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						474b3b1cc8 
					 
					
						
						
							
							Fix error codes for memory-saving patch.  
						
						 
						
						... 
						
						
						
						Also, get rid of compile-time switch OPENSSL_NO_RELEASE_BUFFERS
because it was rather pointless (the new behavior has to be explicitly
requested by setting SSL_MODE_RELEASE_BUFFERS anyway). 
						
						
					 
					
						2008-08-04 22:10:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e727a3b37 
					 
					
						
						
							
							Add support for nameRelativeToCRLIssuer field in distribution point name  
						
						 
						
						... 
						
						
						
						fields. 
						
						
					 
					
						2008-08-04 15:34:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a9ff742e42 
					 
					
						
						
							
							Make explicit_policy handling match expected RFC3280 behaviour.  
						
						 
						
						
						
						
					 
					
						2008-08-02 11:16:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						787287af40 
					 
					
						
						
							
							Refer to SSL_pending from the man page for SSL_read  
						
						 
						
						
						
						
					 
					
						2008-08-01 15:03:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5cbd203302 
					 
					
						
						
							
							Initial support for alternative CRL issuing certificates.  
						
						 
						
						... 
						
						
						
						Allow inibit any policy flag to be set in apps. 
						
						
					 
					
						2008-07-30 15:49:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						592a207b94 
					 
					
						
						
							
							Policy validation fixes.  
						
						 
						
						... 
						
						
						
						Inhibit any policy count should ignore self issued certificates.
Require explicit policy is the number certificate before an explict policy
is required. 
						
						
					 
					
						2008-07-30 15:41:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ralf S. Engelschall 
							
						 
					 
					
						
						
							
						
						6bcbac0abb 
					 
					
						
						
							
							remove a doubled entry for '-binary' in the usage message  
						
						 
						
						
						
						
					 
					
						2008-07-27 15:51:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c048211f1 
					 
					
						
						
							
							Split ms/uplink.pl to corresponding platform versions.  
						
						 
						
						
						
						
					 
					
						2008-07-22 08:47:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b94551e823 
					 
					
						
						
							
							perlasm update: implement dataseg directive.  
						
						 
						
						
						
						
					 
					
						2008-07-22 08:44:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9b634c9b37 
					 
					
						
						
							
							x86_64-xlate.pl: implement indirect jump/calls, support for Win64 SEH.  
						
						 
						
						
						
						
					 
					
						2008-07-22 08:42:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5b331ab77a 
					 
					
						
						
							
							We should check the eight bytes starting at p[-9] for rollback attack  
						
						 
						
						... 
						
						
						
						detection, or the probability for an erroneous RSA_R_SSLV3_ROLLBACK_ATTACK
will be larger than necessary.
PR: 1695 
						
						
					 
					
						2008-07-17 22:11:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dd6f479ea8 
					 
					
						
						
							
							mem_dbg.c: avoid compiler warnings.  
						
						 
						
						... 
						
						
						
						PR: 1693
Submitted by: Stefan Neis 
						
						
					 
					
						2008-07-17 13:58:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						87facba376 
					 
					
						
						
							
							Remove junk argument to function_begin in sha/asm/*-586.pl.  
						
						 
						
						... 
						
						
						
						PR: 1681 
						
						
					 
					
						2008-07-17 09:50:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e4662fdb62 
					 
					
						
						
							
							x86masm.pl: harmonize functions' alignment.  
						
						 
						
						
						
						
					 
					
						2008-07-17 09:46:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						efa73a77e4 
					 
					
						
						
							
							Make sure not to read beyond end of buffer  
						
						 
						
						
						
						
					 
					
						2008-07-16 18:10:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						89778b7f3f 
					 
					
						
						
							
							x86_64cpuid.pl cosmetics: harmonize $dir treatment with other modules.  
						
						 
						
						
						
						
					 
					
						2008-07-15 19:52:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c79c5a256b 
					 
					
						
						
							
							des-596.pl update: short-circuit reference to DES_SPtrans.  
						
						 
						
						
						
						
					 
					
						2008-07-15 13:24:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9960bdc6fa 
					 
					
						
						
							
							x86masm.pl cosmetics.  
						
						 
						
						
						
						
					 
					
						2008-07-15 13:16:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						23dcb447ff 
					 
					
						
						
							
							x86nasm.pl update: use pre-defined macros and allow for /safeseh link.  
						
						 
						
						
						
						
					 
					
						2008-07-15 12:50:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						39c63e162c 
					 
					
						
						
							
							Reaffirm that NASM is the only supported assembler for Win32 build.  
						
						 
						
						
						
						
					 
					
						2008-07-15 12:48:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						34d05a4023 
					 
					
						
						
							
							Zero is a valid value for any_skip and map_skip  
						
						 
						
						
						
						
					 
					
						2008-07-13 22:38:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dcc0c29876 
					 
					
						
						
							
							We support inhibit any policy extension, add to table.  
						
						 
						
						
						
						
					 
					
						2008-07-13 15:55:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db50661fce 
					 
					
						
						
							
							X509 verification fixes.  
						
						 
						
						... 
						
						
						
						Ignore self issued certificates when checking path length constraints.
Duplicate OIDs in policy tree in case they are allocated.
Use anyPolicy from certificate cache and not current tree level. 
						
						
					 
					
						2008-07-13 14:25:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f9afd9f861 
					 
					
						
						
							
							If --prefix="C:\foo\bar" is supplied to Configure for a windows target,  
						
						 
						
						... 
						
						
						
						then the backslashes need escaping to avoid being treated as switches in
the auto-generated strings in opensslconf.h. Perl users are welcome to
suggest a less hokey way of doing this ... 
						
						
					 
					
						2008-07-10 20:08:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4cdbab99b 
					 
					
						
						
							
							Avoid warnings with -pedantic, specifically:  
						
						 
						
						... 
						
						
						
						Conversion between void * and function pointer.
Value computed not used.
Signed/unsigned argument. 
						
						
					 
					
						2008-07-04 23:12:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5f834ab123 
					 
					
						
						
							
							Revert my earlier CRYPTO_THREADID commit, I will commit a reworked  
						
						 
						
						... 
						
						
						
						version some time soon. 
						
						
					 
					
						2008-07-03 19:59:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8528128b2a 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-26 23:27:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0f3679b52 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-25 10:43:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8228fd89fc 
					 
					
						
						
							
							avoid potential infinite loop in final reduction round of BN_GF2m_mod_arr()  
						
						 
						
						... 
						
						
						
						Submitted by: Huang Ying
Reviewed by: Douglas Stebila 
						
						
					 
					
						2008-06-23 20:46:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						869eb9e767 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-06-22 01:09:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6c2878344f 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-21 23:28:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2836cb3816 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-18 15:08:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						46d4782888 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-18 12:06:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a01a351cc2 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-16 15:51:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						adb92d56eb 
					 
					
						
						
							
							Add acknowledgement.  
						
						 
						
						
						
						
					 
					
						2008-06-09 16:48:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce04f91951 
					 
					
						
						
							
							Sync ordinals.  
						
						 
						
						
						
						
					 
					
						2008-06-06 15:57:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6cb9fca70d 
					 
					
						
						
							
							Fix memory leak. The canonical X509_NAME_ENTRY STACK is reallocated rather  
						
						 
						
						... 
						
						
						
						than referencing existing X509_NAME_ENTRY structures so needs to be
completely freed. 
						
						
					 
					
						2008-06-06 11:26:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec0bfca7e7 
					 
					
						
						
							
							Remove uidlg library from VC-32.pl, it is now bound at runtime.  
						
						 
						
						
						
						
					 
					
						2008-06-05 23:42:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1cd504e7be 
					 
					
						
						
							
							Don't change _WIN32_WINNT and detect GetConsoleWindow() and  
						
						 
						
						... 
						
						
						
						CryptUIDlgSelectCertificateFromStore() at runtime. Add callback function
for selection mechanism. 
						
						
					 
					
						2008-06-05 23:19:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11f3cee93b 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-05 17:04:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6bf79e30ea 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2008-06-05 15:34:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7555c9337f 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-05 15:13:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ffc2b3e927 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-05 11:45:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ab89286a2 
					 
					
						
						
							
							Sync ordinals with stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-05 11:10:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5329130333 
					 
					
						
						
							
							Link in extra CryptoAPI related libraries if needed.  
						
						 
						
						
						
						
					 
					
						2008-06-05 10:51:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1451bb51d 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-04 23:03:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b44c26d78 
					 
					
						
						
							
							Remove test fprintf.  
						
						 
						
						
						
						
					 
					
						2008-06-04 22:39:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4db9677bac 
					 
					
						
						
							
							Compilation option to use a specific ssl client auth engine automatically.  
						
						 
						
						
						
						
					 
					
						2008-06-04 22:34:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1381bf90f4 
					 
					
						
						
							
							Use an appropriate Window for selection dialog.  
						
						 
						
						
						
						
					 
					
						2008-06-04 16:45:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e0f7b87227 
					 
					
						
						
							
							Add support for Windoes dialog box based certificate selection.  
						
						 
						
						
						
						
					 
					
						2008-06-04 16:10:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						985de86340 
					 
					
						
						
							
							Remove old non-safestack code.  
						
						 
						
						
						
						
					 
					
						2008-06-04 14:34:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b814c01a76 
					 
					
						
						
							
							Tidy up and add comments to selection code.  
						
						 
						
						
						
						
					 
					
						2008-06-04 12:03:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c07a126fb2 
					 
					
						
						
							
							Make DSO WIN32 compile again.  
						
						 
						
						
						
						
					 
					
						2008-06-04 11:53:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						09a6e19431 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-06-04 11:52:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						863d447e0b 
					 
					
						
						
							
							Remove store from Windows build.  
						
						 
						
						
						
						
					 
					
						2008-06-04 11:45:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5ce278a77b 
					 
					
						
						
							
							More type-checking.  
						
						 
						
						
						
						
					 
					
						2008-06-04 11:01:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37cf49a3df 
					 
					
						
						
							
							Avoid name clash.  
						
						 
						
						
						
						
					 
					
						2008-06-04 10:57:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f79262e94b 
					 
					
						
						
							
							Only include windows headers when under windows.  
						
						 
						
						
						
						
					 
					
						2008-06-04 05:21:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7d537d4fc7 
					 
					
						
						
							
							Add initial support for multiple SSL client certifcate selection in  
						
						 
						
						... 
						
						
						
						CryptoAPI ENGINE. 
						
						
					 
					
						2008-06-03 23:54:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca89fc1fb4 
					 
					
						
						
							
							Match empty CA list to anything for ssl client auth in CryptoAPI engine.  
						
						 
						
						
						
						
					 
					
						2008-06-03 11:37:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59d2d48f64 
					 
					
						
						
							
							Add support for client cert engine setting in s_client app.  
						
						 
						
						... 
						
						
						
						Add appropriate #ifdefs round client cert functions in headers. 
						
						
					 
					
						2008-06-03 11:26:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b3c8dd4eab 
					 
					
						
						
							
							Add preliminary SSL client auth callback to CryptoAPI ENGINE.  
						
						 
						
						
						
						
					 
					
						2008-06-03 10:27:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45d3767d28 
					 
					
						
						
							
							Prevent signed/unsigned warning on VC++  
						
						 
						
						
						
						
					 
					
						2008-06-03 10:17:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8671b89860 
					 
					
						
						
							
							Memory saving patch.  
						
						 
						
						
						
						
					 
					
						2008-06-03 02:48:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f7f411719 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2008-06-02 23:41:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eac442ddd3 
					 
					
						
						
							
							Windows batch file to rebuild error codes for CryptoAPI ENGINE.  
						
						 
						
						
						
						
					 
					
						2008-06-02 23:10:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						55bef26d8a 
					 
					
						
						
							
							#undef OCSP_RESPONSE: CryptoAPI uses this too.  
						
						 
						
						
						
						
					 
					
						2008-06-02 23:09:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2aa2a5775f 
					 
					
						
						
							
							Fix indentation.  
						
						 
						
						
						
						
					 
					
						2008-06-02 14:29:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c451bd828f 
					 
					
						
						
							
							Avoid case in ca.c fix.  
						
						 
						
						
						
						
					 
					
						2008-06-02 12:10:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8ecfbedd85 
					 
					
						
						
							
							Revert, doesn't fix warning :-(  
						
						 
						
						
						
						
					 
					
						2008-06-02 10:42:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c173fce4e2 
					 
					
						
						
							
							Avoid cast with wrapper function.  
						
						 
						
						
						
						
					 
					
						2008-06-02 10:37:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						953174f46e 
					 
					
						
						
							
							Free old store name (if any).  
						
						 
						
						
						
						
					 
					
						2008-06-01 23:45:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c621c7e432 
					 
					
						
						
							
							Add ctrl for alternative certificate store names.  
						
						 
						
						
						
						
					 
					
						2008-06-01 23:42:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2bbe8f9129 
					 
					
						
						
							
							Use keyspec for DSA too.  
						
						 
						
						
						
						
					 
					
						2008-06-01 23:28:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4be0a5d429 
					 
					
						
						
							
							Get and note keyspec when signing.  
						
						 
						
						
						
						
					 
					
						2008-06-01 23:24:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bdfe932dca 
					 
					
						
						
							
							Release engine reference when calling SSL_CTX_free().  
						
						 
						
						
						
						
					 
					
						2008-06-01 23:06:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3fc59c8406 
					 
					
						
						
							
							Allow ENGINE client cert callback to specify a set of other certs, for  
						
						 
						
						... 
						
						
						
						the rest of the certificate chain. Currently unused. 
						
						
					 
					
						2008-06-01 22:45:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c61915c659 
					 
					
						
						
							
							Update error codes.  
						
						 
						
						
						
						
					 
					
						2008-06-01 22:34:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						368888bcb6 
					 
					
						
						
							
							Add client cert engine to SSL routines.  
						
						 
						
						
						
						
					 
					
						2008-06-01 22:33:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eafd6e5110 
					 
					
						
						
							
							Update error codes, move typedef of SSL, SSL_CTX to ossl_typ.h  
						
						 
						
						
						
						
					 
					
						2008-06-01 21:18:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05935c47b2 
					 
					
						
						
							
							Add support for ENGINE supplied SSL client auth.  
						
						 
						
						
						
						
					 
					
						2008-06-01 21:10:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d8bd55a364 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-06-01 11:07:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						841c91d6e4 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-05-31 23:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4792168ec 
					 
					
						
						
							
							Update VC-32.pl and load CryptoAPI engine in the right place.  
						
						 
						
						
						
						
					 
					
						2008-05-31 23:21:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90b96776cd 
					 
					
						
						
							
							More CryptoAPI engine code from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-05-31 22:53:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						408f906592 
					 
					
						
						
							
							Add CryptoAPI error file too.  
						
						 
						
						
						
						
					 
					
						2008-05-31 22:50:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7a18ecb2df 
					 
					
						
						
							
							Add CryptoAPI ENGINE from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-05-31 22:49:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						174c86a216 
					 
					
						
						
							
							Recognize LHASH_OF().  
						
						 
						
						
						
						
					 
					
						2008-05-31 21:20:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c6ddacf7f8 
					 
					
						
						
							
							Stop const mismatch warning.  
						
						 
						
						
						
						
					 
					
						2008-05-31 19:28:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab3eafd5b5 
					 
					
						
						
							
							Stop warning about extra ';' outside of function.  
						
						 
						
						
						
						
					 
					
						2008-05-31 19:17:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd043cd501 
					 
					
						
						
							
							Stop const mismatch warning in VC++.  
						
						 
						
						
						
						
					 
					
						2008-05-31 18:55:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a75c662fd1 
					 
					
						
						
							
							Everyone's had a few years to port their favorite additions to 0.9.7  
						
						 
						
						... 
						
						
						
						to HEAD (and the 0.9.8 branch).  Remove the reminder. 
						
						
					 
					
						2008-05-31 13:42:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83574cf808 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-05-30 10:57:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2cd81830ef 
					 
					
						
						
							
							sync with 0.9.8 branch  
						
						 
						
						
						
						
					 
					
						2008-05-28 22:30:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e194fe8f47 
					 
					
						
						
							
							From HEAD:  
						
						 
						
						... 
						
						
						
						Fix flaw if 'Server Key exchange message' is omitted from a TLS
handshake which could lead to a cilent crash as found using the
Codenomicon TLS test suite (CVE-2008-1672)
Reviewed by: openssl-security@openssl.org 
Obtained from: mark@awe.com  
						
						
					 
					
						2008-05-28 22:17:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						40a706286f 
					 
					
						
						
							
							From HEAD:  
						
						 
						
						... 
						
						
						
						Fix double-free in TLS server name extensions which could lead to a remote
crash found by Codenomicon TLS test suite (CVE-2008-0891)
Reviewed by: openssl-security@openssl.org 
Obtained from: jorton@redhat.com  
						
						
					 
					
						2008-05-28 22:15:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c6f6c380c7 
					 
					
						
						
							
							grammar  
						
						 
						
						
						
						
					 
					
						2008-05-27 18:43:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8f395e0f4d 
					 
					
						
						
							
							year 2008  
						
						 
						
						
						
						
					 
					
						2008-05-27 18:41:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						595852f3b5 
					 
					
						
						
							
							Avoid "duplicate const" warnings.  
						
						 
						
						
						
						
					 
					
						2008-05-27 11:44:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0a56761f19 
					 
					
						
						
							
							Avoid warning about empty structures and always define CHECKED_PTR_OF  
						
						 
						
						
						
						
					 
					
						2008-05-27 11:28:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						220903f92e 
					 
					
						
						
							
							C++ style comments fixed.  
						
						 
						
						
						
						
					 
					
						2008-05-26 15:39:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						3c1d6bbc92 
					 
					
						
						
							
							LHASH revamp. make depend.  
						
						 
						
						
						
						
					 
					
						2008-05-26 11:24:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						cab14b9803 
					 
					
						
						
							
							Add README about removed root CA certificates.  
						
						 
						
						
						
						
					 
					
						2008-05-26 06:23:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						17a4a4dff8 
					 
					
						
						
							
							Reword comment to be much shorter to stop other people from complaining  
						
						 
						
						... 
						
						
						
						about "overcommenting". 
						
						
					 
					
						2008-05-26 06:21:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						c2c2e7a438 
					 
					
						
						
							
							Clear error queue when starting SSL_CTX_use_certificate_chain_file  
						
						 
						
						... 
						
						
						
						PR: 1417, 1513
Submitted by: Erik de Castro Lopo <mle+openssl@mega-nerd.com > 
						
						
					 
					
						2008-05-23 10:37:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						d18ef847f4 
					 
					
						
						
							
							Remove all root CA files (beyond test CAs including private key)  
						
						 
						
						... 
						
						
						
						from the OpenSSL distribution. 
						
						
					 
					
						2008-05-23 08:59:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5c0d90a699 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2008-05-20 18:49:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f434730524 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2008-05-20 16:13:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						65fd877515 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-05-20 12:23:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64ddafc6b6 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-05-20 11:52:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						781f0a9bb5 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-05-20 11:30:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						3de5a7745f 
					 
					
						
						
							
							Correctly adjust location of comment  
						
						 
						
						... 
						
						
						
						Submitted by: Ben Laurie <ben@links.org > 
						
						
					 
					
						2008-05-20 08:10:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						94fd382f8b 
					 
					
						
						
							
							Fix two invalid memory reads in RSA OAEP mode.  
						
						 
						
						... 
						
						
						
						Submitted by: Ivan Nestlerode <inestlerode@us.ibm.com >
Reviewed by: steve 
						
						
					 
					
						2008-05-19 21:33:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4bd4afa34e 
					 
					
						
						
							
							Change use of CRYPTO_THREADID so that we always use both the ulong and  
						
						 
						
						... 
						
						
						
						ptr members.
(So if the id_callback is bogus, we still have &errno.) 
						
						
					 
					
						2008-05-19 20:45:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						148bb9515c 
					 
					
						
						
							
							Disable code that clearly doesn't currently serve any useful purpose.  
						
						 
						
						... 
						
						
						
						(Buggy line reported by Matthias Koenig.) 
						
						
					 
					
						2008-05-19 19:44:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						51e00db226 
					 
					
						
						
							
							Document "openssl s_server" -crl_check* options  
						
						 
						
						... 
						
						
						
						Submitted by: Daniel Black <daniel.subs@internode.on.net > 
						
						
					 
					
						2008-05-19 07:52:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a92ebf2290 
					 
					
						
						
							
							Provide information about "openssl dgst" -hmac option.  
						
						 
						
						
						
						
					 
					
						2008-05-19 07:43:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f49c687507 
					 
					
						
						
							
							Typo. (From 0.9.8-stable/S. Henson)  
						
						 
						
						... 
						
						
						
						PR: 1672 
						
						
					 
					
						2008-05-19 06:21:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						8b99c79fae 
					 
					
						
						
							
							Another occurance of possible valgrind/purify "uninitialized memory"  
						
						 
						
						... 
						
						
						
						complaint related to the PRNG: with PURIFY policy don't feed uninitialized
memory into the PRNG.
Submitted by: Bodo Moeller <bmoeller@openssl.org > :-) 
						
						
					 
					
						2008-05-16 07:14:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						718f8f7a9e 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-05-12 16:24:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e718520cc5 
					 
					
						
						
							
							Add missing cast.  
						
						 
						
						
						
						
					 
					
						2008-05-09 23:16:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4f46934269 
					 
					
						
						
							
							Depict future Win64/x64 development.  
						
						 
						
						
						
						
					 
					
						2008-05-03 18:34:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fabe640f5e 
					 
					
						
						
							
							Clarifying comment.  
						
						 
						
						
						
						
					 
					
						2008-05-02 18:47:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19048b5c8d 
					 
					
						
						
							
							New function CMS_add1_crl().  
						
						 
						
						
						
						
					 
					
						2008-05-02 17:27:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						156ee88285 
					 
					
						
						
							
							Indicate support for digest init ctrl.  
						
						 
						
						
						
						
					 
					
						2008-05-02 11:24:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c386f8ac38 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2008-05-01 23:35:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a954b56c9 
					 
					
						
						
							
							Use "cont" consistently in cms-examples.pl  
						
						 
						
						... 
						
						
						
						Add a -certsout option to output any certificates in a message.
Add test for example 4.11 
						
						
					 
					
						2008-05-01 23:30:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d05a474556 
					 
					
						
						
							
							Montgomery-related minor cleanups/documentation  
						
						 
						
						
						
						
					 
					
						2008-05-01 18:48:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8a2062fefe 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-04-30 16:14:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f63ad5b35 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-04-29 17:22:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c78bba2343 
					 
					
						
						
							
							Oops!  
						
						 
						
						
						
						
					 
					
						2008-04-29 16:46:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d26c905c67 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-04-29 16:44:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8fcc9caecc 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2008-04-29 16:39:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e7b097f558 
					 
					
						
						
							
							Fix auto-discovery of ENGINEs. See the CHANGES entry for details (and/or  
						
						 
						
						... 
						
						
						
						ticket #1668 ).
PR: 1668
Submitted by: Ian Lister
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2008-04-28 21:39:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5ee6f96cea 
					 
					
						
						
							
							Paul Sheer optimised the OpenSSL to/from libGMP conversions for the case  
						
						 
						
						... 
						
						
						
						where they both use the same limb size. I've tweaked his patch slightly, so
blame me if it breaks.
Submitted by: Paul Sheer
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2008-04-27 18:41:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc634aff25 
					 
					
						
						
							
							Don't send zero length session ID if stateless session resupmtion is  
						
						 
						
						... 
						
						
						
						successful. Check be seeing if there is a cache hit. 
						
						
					 
					
						2008-04-25 16:27:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e3b2dbb31 
					 
					
						
						
							
							Disable debugging fprintf.  
						
						 
						
						
						
						
					 
					
						2008-04-25 11:33:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ba6f95e81b 
					 
					
						
						
							
							Add 64-bit support to BN_nist_mod_244 and engage BN_nist_mod_* on 64-bit  
						
						 
						
						... 
						
						
						
						platforms. 
						
						
					 
					
						2008-04-24 10:04:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						281066cb03 
					 
					
						
						
							
							Compensate inline assembler in sha512.c for gcc 2.7.2 compiler bug.  
						
						 
						
						... 
						
						
						
						PR: 1667 
						
						
					 
					
						2008-04-24 09:59:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						830b8877ba 
					 
					
						
						
							
							Takanori Yanagisawa has shown how to correctly use pre-computed values.  
						
						 
						
						... 
						
						
						
						So in a sense this commit reverts few latest ones fixing bugs in original
code and improving it, most notably adding 64-bit support [though not in
BN_nist_mod_224 yet].
PR: 1593 
						
						
					 
					
						2008-04-23 08:10:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9912ab6770 
					 
					
						
						
							
							Resolve __DECC warning and keep disclaiming support for 16-bit platforms.  
						
						 
						
						
						
						
					 
					
						2008-04-18 15:47:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						299ab428ce 
					 
					
						
						
							
							Fix remaining BN_nist_mod_*.  
						
						 
						
						... 
						
						
						
						PR: 1593 
						
						
					 
					
						2008-04-18 15:40:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e6ef05d5f3 
					 
					
						
						
							
							Make certs argument work in CMS_sign() add test case.  
						
						 
						
						... 
						
						
						
						PR:1664 
						
						
					 
					
						2008-04-18 11:18:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						0f401ff08b 
					 
					
						
						
							
							Add missing 'extern "C" {' to some _err.h files in crypto/engines/  
						
						 
						
						... 
						
						
						
						PR: 1609 
						
						
					 
					
						2008-04-18 07:43:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						5558128541 
					 
					
						
						
							
							Another minor update from the mingw development  
						
						 
						
						... 
						
						
						
						PR: 1552
Submitted by: Roumen Petrov <openssl@roumenpetrov.info > 
						
						
					 
					
						2008-04-18 06:35:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e33c72dfc6 
					 
					
						
						
							
							Synchronise with Unix.  
						
						 
						
						
						
						
					 
					
						2008-04-18 06:04:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						44a877aa88 
					 
					
						
						
							
							Fix incorrect return value in apps/apps.c:parse_yesno()  
						
						 
						
						... 
						
						
						
						PR: 1607
Submitted by: "Christophe Macé" <mace.christophe@gmail.com > 
						
						
					 
					
						2008-04-17 14:15:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						6b6fe3d8e4 
					 
					
						
						
							
							Correctly handle case of bad arguments supplied to rsautl  
						
						 
						
						... 
						
						
						
						PR: 1659 
						
						
					 
					
						2008-04-17 13:36:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						4c1a6e004a 
					 
					
						
						
							
							Apply mingw patches as supplied by Roumen Petrov an Alon Bar-Lev  
						
						 
						
						... 
						
						
						
						PR: 1552
Submitted by: Roumen Petrov <openssl@roumenpetrov.info >, "Alon Bar-Lev" <alon.barlev@gmail.com > 
						
						
					 
					
						2008-04-17 10:19:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6e6ada18c6 
					 
					
						
						
							
							Further synchronisation with Unix build.  I hadn't noticed pq_compat.h  
						
						 
						
						... 
						
						
						
						was gone... 
						
						
					 
					
						2008-04-12 08:41:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b35a131069 
					 
					
						
						
							
							Provide other forms for symbols that are too long or that clash with others  
						
						 
						
						
						
						
					 
					
						2008-04-12 08:40:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1728756255 
					 
					
						
						
							
							Detached encrypt/decrypt example, fix decrypt sample.  
						
						 
						
						
						
						
					 
					
						2008-04-11 23:52:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a12a6b9962 
					 
					
						
						
							
							Correct argument order for CMS_decrypt() in docs.  
						
						 
						
						
						
						
					 
					
						2008-04-11 23:49:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						852bd35065 
					 
					
						
						
							
							Fix prototype for CMS_decrypt(), don't free up detached content.  
						
						 
						
						
						
						
					 
					
						2008-04-11 23:45:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5db50d005 
					 
					
						
						
							
							Revert argument swap change... oops CMS_uncompress() was consistent...  
						
						 
						
						
						
						
					 
					
						2008-04-11 23:23:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3eba36c4c 
					 
					
						
						
							
							Fix comments.  
						
						 
						
						
						
						
					 
					
						2008-04-11 17:50:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						529d329ce1 
					 
					
						
						
							
							Make CMS_uncompress() argument order consistent with other functions.  
						
						 
						
						
						
						
					 
					
						2008-04-11 17:34:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						47a6d388c7 
					 
					
						
						
							
							CMS compressed data examples.  
						
						 
						
						
						
						
					 
					
						2008-04-11 17:33:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c02b6b6b21 
					 
					
						
						
							
							Fix for compression and updated CMS_final().  
						
						 
						
						
						
						
					 
					
						2008-04-11 17:07:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b28bc9910 
					 
					
						
						
							
							PKCS#7 examples converted to CMS.  
						
						 
						
						
						
						
					 
					
						2008-04-11 16:52:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fc003bcecb 
					 
					
						
						
							
							Synchronise with Unix build  
						
						 
						
						
						
						
					 
					
						2008-04-11 01:53:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						38d3a73808 
					 
					
						
						
							
							Reformat, fix typos and clarify CMS API docs.  
						
						 
						
						
						
						
					 
					
						2008-04-10 23:28:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73b3c2d861 
					 
					
						
						
							
							Correct HISTORY reference.  
						
						 
						
						
						
						
					 
					
						2008-04-10 15:59:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4670e00ff5 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2008-04-10 15:56:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						287df2fe49 
					 
					
						
						
							
							Add docs for CMS_final() and BIO_new_CMS().  
						
						 
						
						
						
						
					 
					
						2008-04-10 11:55:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e0fbd07309 
					 
					
						
						
							
							Add additional parameter to CMS_final() to handle detached content.  
						
						 
						
						
						
						
					 
					
						2008-04-10 11:22:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eaee098e1f 
					 
					
						
						
							
							Ignore nonsensical flags for signed receipts.  
						
						 
						
						
						
						
					 
					
						2008-04-10 11:12:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43d9e9d07f 
					 
					
						
						
							
							Add CMS signed receipt genration and verification docs.  
						
						 
						
						
						
						
					 
					
						2008-04-10 11:00:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c420fab52b 
					 
					
						
						
							
							Spellcheck CMS docs.  
						
						 
						
						
						
						
					 
					
						2008-04-10 10:46:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6469a1fda3 
					 
					
						
						
							
							Signed receipt request function documentation.  
						
						 
						
						
						
						
					 
					
						2008-04-09 23:13:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f50d9a4b0 
					 
					
						
						
							
							Correct references to smime in cms app.  
						
						 
						
						
						
						
					 
					
						2008-04-09 22:09:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da6ea110b5 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2008-04-09 20:59:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb777e1f79 
					 
					
						
						
							
							Add CMS_uncompress manual page.  
						
						 
						
						
						
						
					 
					
						2008-04-09 20:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						360bb61d86 
					 
					
						
						
							
							Add CMS_compress() docs.  
						
						 
						
						
						
						
					 
					
						2008-04-09 17:04:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						847e551f39 
					 
					
						
						
							
							More CMS API documentation.  
						
						 
						
						
						
						
					 
					
						2008-04-09 16:08:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d4122504a2 
					 
					
						
						
							
							Clarifying comment.  
						
						 
						
						
						
						
					 
					
						2008-04-09 12:06:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2c4226c42b 
					 
					
						
						
							
							Do BN_nist_mod_384 by the book, as cheating doesn't work. Other functions  
						
						 
						
						... 
						
						
						
						will be revised too.
PR: 1593 
						
						
					 
					
						2008-04-09 11:36:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						86173db853 
					 
					
						
						
							
							Fix various typos, update SMIMECapabilities description.  
						
						 
						
						
						
						
					 
					
						2008-04-08 22:44:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9034c56c6c 
					 
					
						
						
							
							Correct d2i/i2d typos.  
						
						 
						
						
						
						
					 
					
						2008-04-08 22:35:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e33ffaca12 
					 
					
						
						
							
							Initial CMS API documentation.  
						
						 
						
						
						
						
					 
					
						2008-04-08 22:27:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						853eae51e0 
					 
					
						
						
							
							Implement CMS_NOCRL.  
						
						 
						
						
						
						
					 
					
						2008-04-07 11:00:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						b4be380889 
					 
					
						
						
							
							Fix URI of OpenSSL Request Tracker information  
						
						 
						
						... 
						
						
						
						PR: 1661 
						
						
					 
					
						2008-04-07 06:37:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff80280b01 
					 
					
						
						
							
							Set contentType attribute just before signing to allow encapsulated content  
						
						 
						
						... 
						
						
						
						type to be set at any time in applications. 
						
						
					 
					
						2008-04-06 16:29:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e45641bd17 
					 
					
						
						
							
							Fix typo and add header files to err library.  
						
						 
						
						
						
						
					 
					
						2008-04-06 15:53:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d5a37b0293 
					 
					
						
						
							
							Give consistent return value and add error code for duplicate certificates.  
						
						 
						
						
						
						
					 
					
						2008-04-06 15:41:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6819050722 
					 
					
						
						
							
							Delete nonexistant function from pkcs7.h header file. WIN32 build fix from  
						
						 
						
						... 
						
						
						
						stable branch. Sync and update ordinals. 
						
						
					 
					
						2008-04-04 00:06:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						88db4e6b9e 
					 
					
						
						
							
							Make mk1mf.pl recognize no-cms.  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:29:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be86dd85e4 
					 
					
						
						
							
							Rename runex.pl to cms-examples.pl  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:25:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3df9357103 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2008-04-02 11:44:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						992e92a46e 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2008-04-02 11:24:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3247812e34 
					 
					
						
						
							
							Since OID NIDs with 0.9.8.  
						
						 
						
						
						
						
					 
					
						2008-04-02 10:48:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5cdb7d5bd 
					 
					
						
						
							
							Avoid warnings.  
						
						 
						
						
						
						
					 
					
						2008-04-01 16:29:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a6bb116c4 
					 
					
						
						
							
							Add signed receipt tests.  
						
						 
						
						
						
						
					 
					
						2008-04-01 15:16:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2819ffb520 
					 
					
						
						
							
							Fix fast reduction on NIST curves (as well BN_NIST_ADD_ONE macro).  
						
						 
						
						... 
						
						
						
						PR: 1593 
						
						
					 
					
						2008-04-01 08:39:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						964c7e8f6d 
					 
					
						
						
							
							Fix it properly this time....  
						
						 
						
						
						
						
					 
					
						2008-03-31 18:21:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f6a45ac5ac 
					 
					
						
						
							
							Fix macro.  
						
						 
						
						
						
						
					 
					
						2008-03-31 18:14:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e86f0d8d7 
					 
					
						
						
							
							Use correct headers for signed receipts. Use consistent naming.  
						
						 
						
						... 
						
						
						
						Update cms-test.pl to support OpenSSL 0.9.8. 
						
						
					 
					
						2008-03-31 15:03:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e2a29d49ca 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2008-03-29 21:11:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b99674103d 
					 
					
						
						
							
							Remove unnecessary header.  
						
						 
						
						
						
						
					 
					
						2008-03-29 21:08:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41f81a0143 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2008-03-29 00:54:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						36309aa2be 
					 
					
						
						
							
							Signed receipt generation code.  
						
						 
						
						
						
						
					 
					
						2008-03-28 19:43:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb9d8d8cd4 
					 
					
						
						
							
							Support for verification of signed receipts.  
						
						 
						
						
						
						
					 
					
						2008-03-28 13:15:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f7ccba3edf 
					 
					
						
						
							
							There was a need to support thread ID types that couldn't be reliably cast  
						
						 
						
						... 
						
						
						
						to 'unsigned long' (ie. odd platforms/compilers), so a pointer-typed
version was added but it required portable code to check *both* modes to
determine equality. This commit maintains the availability of both thread
ID types, but deprecates the type-specific accessor APIs that invoke the
callbacks - instead a single type-independent API is used.  This simplifies
software that calls into this interface, and should also make it less
error-prone - as forgetting to call and compare *both* thread ID accessors
could have led to hard-to-debug/infrequent bugs (that might only affect
certain platforms or thread implementations). As the CHANGES note says,
there were corresponding deprecations and replacements in the
thread-related functions for BN_BLINDING and ERR too. 
						
						
					 
					
						2008-03-28 02:49:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						eb77ebe26c 
					 
					
						
						
							
							Update tunala so it builds ok with OPENSSL_NO_DEPRECATED, and improve the  
						
						 
						
						... 
						
						
						
						autoungunk.sh logic (autobits have grown since I last tried this...). 
						
						
					 
					
						2008-03-28 01:56:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f5e2354c9d 
					 
					
						
						
							
							Add support for signed receipt request printout and generation.  
						
						 
						
						
						
						
					 
					
						2008-03-26 17:40:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4cc56f494 
					 
					
						
						
							
							Signed Receipt Request utility functions and option on CMS utility to  
						
						 
						
						... 
						
						
						
						print out receipt requests. 
						
						
					 
					
						2008-03-26 13:10:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be86c7fc87 
					 
					
						
						
							
							Add signed receipt ASN1 structures. Initial GENERAL_NAME utility functions.  
						
						 
						
						
						
						
					 
					
						2008-03-24 22:14:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6205171362 
					 
					
						
						
							
							Add support for CMS structure printing in cms utility.  
						
						 
						
						
						
						
					 
					
						2008-03-24 21:53:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab568a17cf 
					 
					
						
						
							
							Fix duplicate asn1 ctrl values.  
						
						 
						
						
						
						
					 
					
						2008-03-23 14:13:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe591284be 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2008-03-22 18:52:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7122aafce5 
					 
					
						
						
							
							Preliminary documentation for CMS utility.  
						
						 
						
						
						
						
					 
					
						2008-03-21 13:09:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5ffba305c8 
					 
					
						
						
							
							Comment out a (currently) unused CMS function. (Sorry Steve, but I need  
						
						 
						
						... 
						
						
						
						-Werror right now to help me code-by-domino :-) 
						
						
					 
					
						2008-03-19 23:08:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ceee538af5 
					 
					
						
						
							
							Fork my debug configuration into 32-bit and 64-bit versions.  
						
						 
						
						
						
						
					 
					
						2008-03-19 23:05:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						054307e7ed 
					 
					
						
						
							
							Allow alternate eContentType oids to be set in cms utility.  
						
						 
						
						... 
						
						
						
						Add id-ct-asciiTextWithCRLF OID.
Give more meaninful error message is attempt to use key ID from a certificate
without a key ID. 
						
						
					 
					
						2008-03-19 19:34:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8cd358bef8 
					 
					
						
						
							
							Rebuild CMS error codes.  
						
						 
						
						
						
						
					 
					
						2008-03-19 18:42:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eeb9cdfc94 
					 
					
						
						
							
							Add support for KEK decrypt in cms utility.  
						
						 
						
						
						
						
					 
					
						2008-03-19 18:39:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16fe5f8b50 
					 
					
						
						
							
							Produce meaningful error if sanity check fails.  
						
						 
						
						... 
						
						
						
						Delete trailing whitespace from objects.txt
Delete duplicate NIDs. 
						
						
					 
					
						2008-03-19 17:01:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						041e7f2eee 
					 
					
						
						
							
							Additional sanity check.  
						
						 
						
						
						
						
					 
					
						2008-03-19 14:18:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab12438030 
					 
					
						
						
							
							Add support for KEKRecipientInfo in cms application.  
						
						 
						
						
						
						
					 
					
						2008-03-19 13:53:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c220e58f9e 
					 
					
						
						
							
							Make 3DES default cipher in cms utility.  
						
						 
						
						
						
						
					 
					
						2008-03-18 19:03:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6bd05ad472 
					 
					
						
						
							
							Delete standard out and err temp files too.  
						
						 
						
						
						
						
					 
					
						2008-03-18 18:53:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90ec4c0af0 
					 
					
						
						
							
							Delete tmp files, silence openssl commands, compare extracted content.  
						
						 
						
						
						
						
					 
					
						2008-03-18 18:51:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52e9196d7e 
					 
					
						
						
							
							Add enveloped data keyid test.  
						
						 
						
						
						
						
					 
					
						2008-03-18 18:29:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f7e85c371e 
					 
					
						
						
							
							Uninitialized variable bug fix.  
						
						 
						
						
						
						
					 
					
						2008-03-18 18:18:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f5cbf8fbe1 
					 
					
						
						
							
							Fixes for S/MIME consistency checker and flexibility enhancements.  
						
						 
						
						
						
						
					 
					
						2008-03-18 17:33:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7d7e640e0b 
					 
					
						
						
							
							Add extensive PCKS7 and CMS consistency test script.  
						
						 
						
						
						
						
					 
					
						2008-03-18 14:37:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e4f0e40eac 
					 
					
						
						
							
							Various tidies/fixes:  
						
						 
						
						... 
						
						
						
						Make streaming support in cms cleaner.
Note errors in various S/MIME functions if CMS_final() fails.
Add streaming support for enveloped data. 
						
						
					 
					
						2008-03-18 13:45:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e3bc4f073 
					 
					
						
						
							
							More support for KEK RecipientInfo.  
						
						 
						
						... 
						
						
						
						Generalise RecipientInfo and enveloped data handling so applications can
add their own key lookup routines as well as using the standard ones. 
						
						
					 
					
						2008-03-18 01:00:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c36e936b60 
					 
					
						
						
							
							Partial support for KEKRecipientInfo type.  
						
						 
						
						
						
						
					 
					
						2008-03-17 18:11:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						761ffa729f 
					 
					
						
						
							
							Preliminary support for enveloped data content type creation.  
						
						 
						
						... 
						
						
						
						Fix signed data creation so versions are only corrected if structure is
being created. 
						
						
					 
					
						2008-03-17 13:38:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						1e26a8baed 
					 
					
						
						
							
							Fix a variety of warnings generated by some elevated compiler-fascism,  
						
						 
						
						... 
						
						
						
						OPENSSL_NO_DEPRECATED, etc. Steve, please double-check the CMS stuff... 
						
						
					 
					
						2008-03-16 21:05:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c337e00d2 
					 
					
						
						
							
							Fix some warnings.  
						
						 
						
						
						
						
					 
					
						2008-03-16 20:59:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7e8481afd1 
					 
					
						
						
							
							Fix a nasty cast issue that my compiler was choking on.  
						
						 
						
						
						
						
					 
					
						2008-03-16 20:57:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						1266cec2fe 
					 
					
						
						
							
							Fix my debug-geoff configuration.  
						
						 
						
						
						
						
					 
					
						2008-03-16 20:49:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3667a6f5b3 
					 
					
						
						
							
							Adapt to diffrent OpenSSL utility locations.  
						
						 
						
						
						
						
					 
					
						2008-03-16 19:10:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						deb21fbae9 
					 
					
						
						
							
							Remove deleted function from header file, update mkfiles.pl  
						
						 
						
						
						
						
					 
					
						2008-03-16 18:41:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						057039f782 
					 
					
						
						
							
							Don't need to check for examples directory any more.  
						
						 
						
						
						
						
					 
					
						2008-03-16 18:31:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7c738a09a 
					 
					
						
						
							
							Extend runex.pl to extract examples directly from RFC text.  
						
						 
						
						
						
						
					 
					
						2008-03-16 18:03:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a981e2adbc 
					 
					
						
						
							
							Add support for random key generation: this will be needed by enveloped data.  
						
						 
						
						
						
						
					 
					
						2008-03-16 13:05:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						88fce8539f 
					 
					
						
						
							
							Initial support for enveloped data decrypt. Extent runex.pl to cover these  
						
						 
						
						... 
						
						
						
						examples. All RFC4134 examples can now be processed. 
						
						
					 
					
						2008-03-15 23:21:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f1aa191b3 
					 
					
						
						
							
							Initial support for enveloped data decrypt. Extent runex.pl to cover these  
						
						 
						
						... 
						
						
						
						examples. All RFC4134 examples can not be processed. 
						
						
					 
					
						2008-03-15 23:21:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e540d1cd77 
					 
					
						
						
							
							Check for cipher BIO errors and set key length after parameter decode.  
						
						 
						
						
						
						
					 
					
						2008-03-15 13:37:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd47c36136 
					 
					
						
						
							
							Return error if no cipher set for encrypted data type.  
						
						 
						
						... 
						
						
						
						Update CHANGES. 
						
						
					 
					
						2008-03-15 00:02:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d9f5f07e28 
					 
					
						
						
							
							Initial support for Encrypted Data type generation.  
						
						 
						
						
						
						
					 
					
						2008-03-14 23:30:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b31db9ee96 
					 
					
						
						
							
							Delete temp files.  
						
						 
						
						
						
						
					 
					
						2008-03-14 19:40:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1021f9aa5e 
					 
					
						
						
							
							Typos.  
						
						 
						
						
						
						
					 
					
						2008-03-14 19:38:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						320bfc1be7 
					 
					
						
						
							
							Reorganise encrypted content info code to avoid duplication and be more  
						
						 
						
						... 
						
						
						
						consistent with other content types. 
						
						
					 
					
						2008-03-14 19:37:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b820455c6e 
					 
					
						
						
							
							Encrypted Data type processing. Add options to cms utility and run section 7  
						
						 
						
						... 
						
						
						
						tests in RFC4134. 
						
						
					 
					
						2008-03-14 13:21:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5c4436c977 
					 
					
						
						
							
							New utility functions for encryptedData content type which will also be used  
						
						 
						
						... 
						
						
						
						by envelopedData.
Use PRE and not POST when freeing up RecipientInfo. 
						
						
					 
					
						2008-03-14 00:58:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a78a03744d 
					 
					
						
						
							
							Only call free once in CHOICE type.  
						
						 
						
						
						
						
					 
					
						2008-03-14 00:57:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a329fdde51 
					 
					
						
						
							
							RFC4134 S/MIME examples test script.  
						
						 
						
						
						
						
					 
					
						2008-03-13 01:04:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31d3c84422 
					 
					
						
						
							
							.cvignore file for cms  
						
						 
						
						
						
						
					 
					
						2008-03-13 00:50:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						afff52a3ba 
					 
					
						
						
							
							Free up additional data in RecipientInfo structure  
						
						 
						
						
						
						
					 
					
						2008-03-13 00:48:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8931b30d84 
					 
					
						
						
							
							And so it begins...  
						
						 
						
						... 
						
						
						
						Initial support for CMS.
Add zlib compression BIO.
Add AES key wrap implementation.
Generalize S/MIME MIME code to support CMS and/or PKCS7. 
						
						
					 
					
						2008-03-12 21:14:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						27dc105f51 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2008-03-12 13:05:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3964038fe6 
					 
					
						
						
							
							#undef X509_EXTENSIONS to avoid conflict with CryptoAPI.  
						
						 
						
						
						
						
					 
					
						2008-03-12 00:37:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b510d77535 
					 
					
						
						
							
							We already have an object for "zlib compression" but it was a place  
						
						 
						
						... 
						
						
						
						holder and its actual encoding never used.
Just as well because it's value looks like it was made up in the mists of
time...
Now there is a registered value for zlib compression (used in S/MIME
compressedData content type) use that instead. 
						
						
					 
					
						2008-02-29 14:24:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						56c7754cab 
					 
					
						
						
							
							Avoid warnings.  
						
						 
						
						
						
						
					 
					
						2008-02-28 14:05:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92e2c81aff 
					 
					
						
						
							
							Fix error code function name mismatches in GOST engine, rebuild errors.  
						
						 
						
						
						
						
					 
					
						2008-02-28 13:45:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a70a49a018 
					 
					
						
						
							
							Fix typo and avoid warning.  
						
						 
						
						
						
						
					 
					
						2008-02-28 13:18:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						61b05a0025 
					 
					
						
						
							
							Make x86_64-mont.pl work with debug Win64 build.  
						
						 
						
						
						
						
					 
					
						2008-02-27 20:09:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7c9882eb24 
					 
					
						
						
							
							fix BIGNUM flag handling  
						
						 
						
						
						
						
					 
					
						2008-02-27 06:01:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0d7f6fc76a 
					 
					
						
						
							
							Clarification and fix typo.  
						
						 
						
						
						
						
					 
					
						2008-02-25 18:11:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a9e96d724d 
					 
					
						
						
							
							Use default value for $dir if it is empty.  
						
						 
						
						
						
						
					 
					
						2008-02-25 13:14:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d9e427f09c 
					 
					
						
						
							
							Make sure to set indent-tabs-mode so that we get tabs, not spaces.  
						
						 
						
						
						
						
					 
					
						2008-02-21 07:24:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a23e3dbee1 
					 
					
						
						
							
							Support for NASM>=2 in Win64/x64 build.  
						
						 
						
						
						
						
					 
					
						2008-02-13 13:07:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						400ca0e467 
					 
					
						
						
							
							Add OIDs for compressedData content type and zlib compression.  
						
						 
						
						
						
						
					 
					
						2008-02-12 13:48:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9536b85c07 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2008-02-12 01:24:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d318c79b2 
					 
					
						
						
							
							Utility attribute function to retrieve attribute data from an expected  
						
						 
						
						... 
						
						
						
						type. Useful for many attributes which are single valued and can only
have one type. 
						
						
					 
					
						2008-02-11 17:52:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ad90a916b 
					 
					
						
						
							
							Extend attribute setting routines to support non-string types.  
						
						 
						
						
						
						
					 
					
						2008-02-11 13:59:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8ab9025e31 
					 
					
						
						
							
							Ad-hockery for Platform SDK ml64.  
						
						 
						
						
						
						
					 
					
						2008-02-11 13:04:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e5df8e448 
					 
					
						
						
							
							Support custom primitive type printing routines and add one to LONG type.  
						
						 
						
						
						
						
					 
					
						2008-02-08 13:07:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						96d13fe62b 
					 
					
						
						
							
							Micro-profiling assisted "optimization" for Power6. Essentially it's so  
						
						 
						
						... 
						
						
						
						to say educational commit. Reordering instructions doesn't improve
performance much, rather exhibits Power6 limitations. 
						
						
					 
					
						2008-02-06 10:18:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						089458b096 
					 
					
						
						
							
							ppc64-mont optimization.  
						
						 
						
						
						
						
					 
					
						2008-02-05 13:10:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						7c1722c60d 
					 
					
						
						
							
							Add missing colon in manpage  
						
						 
						
						... 
						
						
						
						Submitted by: Richard Hartmann <richih.mailinglist@gmail.com > 
						
						
					 
					
						2008-01-30 08:26:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c020c3213e 
					 
					
						
						
							
							Add Global Sign root CA.  
						
						 
						
						
						
						
					 
					
						2008-01-26 23:42:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						930875ef77 
					 
					
						
						
							
							Clarify FAQ.  
						
						 
						
						
						
						
					 
					
						2008-01-23 19:21:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b979c5450 
					 
					
						
						
							
							Clarify BITLIST format and include an example.  
						
						 
						
						
						
						
					 
					
						2008-01-23 19:10:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						339ad7ce73 
					 
					
						
						
							
							rc5/asm/rc5-586.pl was erroneously omitted from last perlasm unification.  
						
						 
						
						
						
						
					 
					
						2008-01-17 19:48:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						676517e08e 
					 
					
						
						
							
							crypto/rc5/Makefile was erroneously omitted from last perlasm unification.  
						
						 
						
						... 
						
						
						
						Also remove obsolete and now misleading comments. 
						
						
					 
					
						2008-01-15 11:27:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52108cecc0 
					 
					
						
						
							
							<strings.h> does not exist under WIN32.  
						
						 
						
						
						
						
					 
					
						2008-01-14 18:10:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						addd641f3a 
					 
					
						
						
							
							Unify ppc assembler make rules.  
						
						 
						
						
						
						
					 
					
						2008-01-13 22:01:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f63e4be392 
					 
					
						
						
							
							Automate assembler support for Win64 targets (more work is needed).  
						
						 
						
						
						
						
					 
					
						2008-01-13 17:56:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ca55d11f84 
					 
					
						
						
							
							Allow to specify filename on sha1-ia64.pl command line.  
						
						 
						
						
						
						
					 
					
						2008-01-13 17:43:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						abe7f8b457 
					 
					
						
						
							
							Make all x86_64 modules independent on current working directory.  
						
						 
						
						
						
						
					 
					
						2008-01-13 17:42:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a078befcbe 
					 
					
						
						
							
							rc4-x86_64 portability fix.  
						
						 
						
						
						
						
					 
					
						2008-01-12 11:29:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f12797a447 
					 
					
						
						
							
							Missing headers.  
						
						 
						
						
						
						
					 
					
						2008-01-12 11:22:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fa8e921f66 
					 
					
						
						
							
							Unify x86 perlasm make rules.  
						
						 
						
						
						
						
					 
					
						2008-01-11 13:15:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4287ade5b4 
					 
					
						
						
							
							Automate assembler support in mk1mf even further.  
						
						 
						
						
						
						
					 
					
						2008-01-11 11:59:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7398053149 
					 
					
						
						
							
							Experimental support for import of more options from Configure  
						
						 
						
						... 
						
						
						
						(via top level Makefile) into mk1mf builds. This avoids the need
to duplicate the CFLAG handling and can auto build assembly language
source files from perl scripts.
Extend VC-WIN32 Configure entry to include new options. 
						
						
					 
					
						2008-01-06 00:36:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d1f3f7a6c 
					 
					
						
						
							
							Update perl asm scripts include paths for perlasm.  
						
						 
						
						
						
						
					 
					
						2008-01-05 22:28:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aff686df91 
					 
					
						
						
							
							Fix unsigned/signed warnings in ssl.  
						
						 
						
						
						
						
					 
					
						2008-01-05 21:35:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						637f90621d 
					 
					
						
						
							
							Cygwin compatibility fix to apps/ocsp.c.  
						
						 
						
						
						
						
					 
					
						2008-01-05 21:32:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6d0624aca3 
					 
					
						
						
							
							Compensate for BSDi shell bug.  
						
						 
						
						
						
						
					 
					
						2008-01-05 21:30:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						085ea80371 
					 
					
						
						
							
							engine/ccgost Win32 portability fixes.  
						
						 
						
						
						
						
					 
					
						2008-01-05 21:28:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ab0ff06205 
					 
					
						
						
							
							Make aes-x86_64 work with debug Win64 build.  
						
						 
						
						
						
						
					 
					
						2008-01-05 18:17:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						79eeb47031 
					 
					
						
						
							
							Make AES_T[ed] private to aes-586 module.  
						
						 
						
						
						
						
					 
					
						2008-01-05 08:58:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9911b7496f 
					 
					
						
						
							
							Include Mont asm files in WIN32 build.  
						
						 
						
						
						
						
					 
					
						2008-01-05 00:45:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3dbd453f41 
					 
					
						
						
							
							Add extra SHA2 defines.  
						
						 
						
						
						
						
					 
					
						2008-01-05 00:44:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						731339627f 
					 
					
						
						
							
							Last dso_dlfcn.c check-in said "Use Dl_info only on systems where it is  
						
						 
						
						... 
						
						
						
						known to exist. It does not exist on AIX 4.3.3, AIX 5.1, SCO 5, or Cygwin"
and disabled it on banch of systems it's known to exists, such as FreeBSD,
Solaris, 64-bit HP-UX, MacOS X. Get it straight. 
						
						
					 
					
						2008-01-04 23:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						26e71a1850 
					 
					
						
						
							
							x86gas.pl update.  
						
						 
						
						
						
						
					 
					
						2008-01-04 22:58:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db01bad30f 
					 
					
						
						
							
							Add sha2 defines.  
						
						 
						
						
						
						
					 
					
						2008-01-04 16:32:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ff28e017d 
					 
					
						
						
							
							Update netware to use new SHA2 assembly language modules.  
						
						 
						
						
						
						
					 
					
						2008-01-04 13:18:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4664eb5230 
					 
					
						
						
							
							Update WIN32 nasm build to use new asm files.  
						
						 
						
						
						
						
					 
					
						2008-01-04 00:48:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						744ecaa5b6 
					 
					
						
						
							
							Avoid WIN32 signed/unsigned warnings.  
						
						 
						
						
						
						
					 
					
						2008-01-04 00:37:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76d761ccd3 
					 
					
						
						
							
							Move CHANGES entry. Revert include file install line.  
						
						 
						
						
						
						
					 
					
						2008-01-03 22:57:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eef0c1f34c 
					 
					
						
						
							
							Netware support.  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter Knauf <eflash@gmx.net > 
						
						
					 
					
						2008-01-03 22:43:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						82a2431327 
					 
					
						
						
							
							NASM has recently changed name of win32 pre-compiled binary.  
						
						 
						
						... 
						
						
						
						PR: 1627 
						
						
					 
					
						2008-01-03 17:09:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						96fc37f145 
					 
					
						
						
							
							Add quotes to Win32 install directories.  
						
						 
						
						... 
						
						
						
						Submitted by:  Mladen Turk <mturk@apache.org > 
						
						
					 
					
						2008-01-03 16:37:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3a87756fed 
					 
					
						
						
							
							perlasm/x86*.pl updates.  
						
						 
						
						
						
						
					 
					
						2008-01-03 16:21:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c8ec4a1b0b 
					 
					
						
						
							
							Final (for this commit series) optimized version and with commentary section.  
						
						 
						
						
						
						
					 
					
						2007-12-29 20:30:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						699e1a3a82 
					 
					
						
						
							
							This is also informational commit exposing loop modulo scheduling "factor."  
						
						 
						
						
						
						
					 
					
						2007-12-29 20:28:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						64214a2183 
					 
					
						
						
							
							New Montgomery multiplication module, ppc64-mont.pl. Reference, non-optimized  
						
						 
						
						... 
						
						
						
						implementation. This is essentially informational commit. 
						
						
					 
					
						2007-12-29 20:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0fcb905b0d 
					 
					
						
						
							
							ppc-xlate.pl update.  
						
						 
						
						
						
						
					 
					
						2007-12-29 18:50:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4be63cfb55 
					 
					
						
						
							
							Source readability fix, which incidentally works around XLC compiler bug.  
						
						 
						
						
						
						
					 
					
						2007-12-29 18:32:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ca64056836 
					 
					
						
						
							
							Engage x86 assembler in Mac OS X build.  
						
						 
						
						
						
						
					 
					
						2007-12-18 17:33:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						df77428443 
					 
					
						
						
							
							Mac OS X x86 assembler support.  
						
						 
						
						
						
						
					 
					
						2007-12-18 17:28:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3e583572b3 
					 
					
						
						
							
							Disable support for Metrowerks assembler. Assembler itself is broken,  
						
						 
						
						... 
						
						
						
						specifically it incorrectly encodes EA offsets between 128 and 255. 
						
						
					 
					
						2007-12-18 09:32:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						43d8f27dca 
					 
					
						
						
							
							x86 perlasm overhaul.  
						
						 
						
						
						
						
					 
					
						2007-12-18 09:18:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b045299113 
					 
					
						
						
							
							Avoid aliasing warning.  
						
						 
						
						
						
						
					 
					
						2007-12-16 13:57:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						13baedc55b 
					 
					
						
						
							
							Update ordinals  
						
						 
						
						
						
						
					 
					
						2007-12-16 13:16:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9400d9ac83 
					 
					
						
						
							
							Initialize sigsize.  
						
						 
						
						
						
						
					 
					
						2007-12-14 16:53:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						341e18b497 
					 
					
						
						
							
							Handle non-SHA1 digests for certids in OCSP test responder.  
						
						 
						
						
						
						
					 
					
						2007-12-14 12:43:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						339a1820fd 
					 
					
						
						
							
							gmp engine was non-operational.  
						
						 
						
						
						
						
					 
					
						2007-12-04 20:28:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cec2538ca9 
					 
					
						
						
							
							Submitted by: Victor B. Wagner <vitus@cryptocom.ru>, steve  
						
						 
						
						... 
						
						
						
						Use default algorithms for OCSP request and response signing. New command
line option to support other digest use for OCSP certificate IDs. 
						
						
					 
					
						2007-12-04 12:41:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28f7e60d47 
					 
					
						
						
							
							Change submitted by Doug Kaufman.  He writes:  
						
						 
						
						... 
						
						
						
						I just compiled the 9.9-dev version from the 12022007 tarball under
  DJGPP. There were only 2 changes needed, one for b_sock.c, since
  DJGPP with WATT32 doesn't define socklen_t and one for testtsa to
  handle DOS style path separators. I also noted what seems to be a
  typographical error in ts.pod. The test suite passes. The patch is
  attached.
  Since I am in the US, I have sent notifications to the Bureau of
  Industry and Security and to the NSA. 
						
						
					 
					
						2007-12-03 09:02:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						544b82e493 
					 
					
						
						
							
							Some assembler are allergic to lea reg,BYTE PTR[...].  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter Knauf 
						
						
					 
					
						2007-12-02 21:32:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8789af8db8 
					 
					
						
						
							
							Structure symbol decorations, optimize label handling...  
						
						 
						
						
						
						
					 
					
						2007-11-24 16:03:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ad6a1b5e9 
					 
					
						
						
							
							Rebuild OID database: duplicates got in there somehow??  
						
						 
						
						
						
						
					 
					
						2007-11-23 00:34:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e150083bb 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-11-23 00:19:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98d8baabbd 
					 
					
						
						
							
							Add caRepository OID and sync object NIDs with OpenSSL 0.9.8.  
						
						 
						
						
						
						
					 
					
						2007-11-23 00:14:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c1d2e00ec5 
					 
					
						
						
							
							Synchronize x86nasm.pl with x86unix.pl.  
						
						 
						
						
						
						
					 
					
						2007-11-22 21:21:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ad8bd4ece8 
					 
					
						
						
							
							Combat [bogus] relocations in some assember modules.  
						
						 
						
						
						
						
					 
					
						2007-11-22 20:51:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f0550c4c1 
					 
					
						
						
							
							Lookup public key ASN1 methods by string by iterating through all  
						
						 
						
						... 
						
						
						
						implementations instead of all added ENGINEs to cover case where an
ENGINE is not added. 
						
						
					 
					
						2007-11-21 17:25:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98057eba77 
					 
					
						
						
							
							Submitted by: "Victor B. Wagner" <vitus@cryptocom.ru>  
						
						 
						
						... 
						
						
						
						Update gost algorithm print routines. 
						
						
					 
					
						2007-11-21 12:39:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						097f9d8c52 
					 
					
						
						
							
							Avoid warning.  
						
						 
						
						
						
						
					 
					
						2007-11-20 17:52:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						60447e59ef 
					 
					
						
						
							
							Update debug-steve targets.  
						
						 
						
						
						
						
					 
					
						2007-11-20 17:51:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						94e6ae7a69 
					 
					
						
						
							
							Submitted by: "Victor B. Wagner" <vitus@cryptocom.ru>  
						
						 
						
						... 
						
						
						
						Make {d2i,i2d}_PrivateKey() fall back to PKCS#8 format if no legacy format
supported. Add support in d2i_AutoPrivateKey(). 
						
						
					 
					
						2007-11-20 13:37:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f670738987 
					 
					
						
						
							
							Rebuild object cross reference table.  
						
						 
						
						
						
						
					 
					
						2007-11-20 13:04:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						b6a338cb29 
					 
					
						
						
							
							Typos in man pages: dependant->dependent  
						
						 
						
						... 
						
						
						
						Submitted by: Tobias Stoeckmann <tobias@bugol.de > 
						
						
					 
					
						2007-11-19 09:18:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4726fcfc25 
					 
					
						
						
							
							Should reject signatures that we can't properly verify  
						
						 
						
						... 
						
						
						
						and couldn't generate
(as pointed out by Ernst G Giessmann) 
						
						
					 
					
						2007-11-19 07:25:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						15bd07e923 
					 
					
						
						
							
							fix typos  
						
						 
						
						... 
						
						
						
						Submitted by: Ernst G. Giessmann 
						
						
					 
					
						2007-11-19 07:24:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						fdf355878c 
					 
					
						
						
							
							Fix buffer overflow.  
						
						 
						
						
						
						
					 
					
						2007-11-16 14:41:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						da989402f2 
					 
					
						
						
							
							The hash length check wasn't strict enough,  
						
						 
						
						... 
						
						
						
						as pointed out by Ernst G Giessmann 
						
						
					 
					
						2007-11-16 13:01:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						10f0c85cfc 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2007-11-16 03:03:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						70ba4ee5d5 
					 
					
						
						
							
							Commit  #16325  fixed one thing but broke DH with certain moduli.  
						
						 
						
						
						
						
					 
					
						2007-11-03 20:09:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31f528b15d 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-11-03 13:09:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						86140095b5 
					 
					
						
						
							
							Add OIDs by CMP (RFC 4210) and CRMF (RFC 4211)  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Peylo <martinmeis@googlemail.com > 
						
						
					 
					
						2007-11-01 08:24:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e1d3ba50e 
					 
					
						
						
							
							Fix duplicate error codes.  
						
						 
						
						
						
						
					 
					
						2007-10-26 23:54:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37210fe7e2 
					 
					
						
						
							
							GOST ENGINE information.  
						
						 
						
						
						
						
					 
					
						2007-10-26 23:50:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e1dba934f 
					 
					
						
						
							
							1. Changes for s_client.c to make it return non-zero exit code in case  
						
						 
						
						... 
						
						
						
						of handshake failure
2. Changes to x509_certificate_type function (crypto/x509/x509type.c) to
make it recognize GOST certificates as EVP_PKT_SIGN|EVP_PKT_EXCH
(required for s3_srvr to accept GOST client certificates).
3. Changes to EVP
	- adding of function EVP_PKEY_CTX_get0_peerkey
	- Make function EVP_PKEY_derive_set_peerkey work for context with
	  ENCRYPT operation, because we use peerkey field in the context to
	  pass non-ephemeral secret key to GOST encrypt operation.
	- added EVP_PKEY_CTRL_SET_IV control command. It is really
	  GOST-specific, but it is used in SSL code, so it has to go
	  in some header file, available during libssl compilation
4. Fix to HMAC to avoid call of OPENSSL_cleanse on undefined data
5. Include des.h if KSSL_DEBUG is defined into some libssl files, to
  make debugging output which depends on constants defined there, work
  and other KSSL_DEBUG output fixes
6. Declaration of real GOST ciphersuites, two authentication methods
   SSL_aGOST94 and SSL_aGOST2001 and one key exchange method SSL_kGOST
7. Implementation  of these methods.
8. Support for sending unsolicited serverhello extension if GOST
  ciphersuite is selected. It is require for interoperability with
  CryptoPro CSP 3.0 and 3.6 and controlled by
  SSL_OP_CRYPTOPRO_TLSEXT_BUG constant.
  This constant is added to SSL_OP_ALL, because it does nothing, if
  non-GOST ciphersuite is selected, and all implementation of GOST
  include compatibility with CryptoPro.
9. Support for CertificateVerify message without length field. It is
   another CryptoPro bug, but support is made unconditional, because it
   does no harm for draft-conforming implementation.
10. In tls1_mac extra copy of stream mac context is no more done.
  When I've written currently commited code I haven't read
  EVP_DigestSignFinal manual carefully enough and haven't noticed that
  it does an internal digest ctx copying.
This implementation was tested against
1. CryptoPro CSP 3.6 client and server
2. Cryptopro CSP 3.0 server 
						
						
					 
					
						2007-10-26 12:06:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						11d01d371f 
					 
					
						
						
							
							Release OpenSSL 0.9.8g with various fixes to issues introduced with 0.9.8f  
						
						 
						
						
						
						
					 
					
						2007-10-19 08:26:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76c3ef7446 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-10-18 11:42:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						659f7f3168 
					 
					
						
						
							
							Don't let DTLS ChangeCipherSpec increment handshake sequence number.  
						
						 
						
						... 
						
						
						
						PR: 1587 
						
						
					 
					
						2007-10-17 21:15:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d3bf9c730 
					 
					
						
						
							
							Don't lookup zero length session ID.  
						
						 
						
						... 
						
						
						
						PR: 1591 
						
						
					 
					
						2007-10-17 17:31:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4017e8706c 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-10-17 11:49:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ce54f35b3 
					 
					
						
						
							
							Make ssl compile [from 098-stable, bug is masked by default].  
						
						 
						
						
						
						
					 
					
						2007-10-14 14:09:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ebc06fba67 
					 
					
						
						
							
							Bunch of constifications.  
						
						 
						
						
						
						
					 
					
						2007-10-13 15:51:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e979c039f9 
					 
					
						
						
							
							Fix warnings in d1_both.c [from 0.9.8-stable].  
						
						 
						
						
						
						
					 
					
						2007-10-13 11:00:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						90acf770b5 
					 
					
						
						
							
							DTLS fixes from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2007-10-13 10:57:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0d89e45690 
					 
					
						
						
							
							Synchronize CHANGES between 0.9.8 and HEAD.  
						
						 
						
						
						
						
					 
					
						2007-10-13 10:55:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1948c7e6dd 
					 
					
						
						
							
							0.9.8f.  
						
						 
						
						
						
						
					 
					
						2007-10-12 10:56:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6db6a0070 
					 
					
						
						
							
							Update CHANGES. Keep ordinals consistent.  
						
						 
						
						
						
						
					 
					
						2007-10-12 00:15:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						fdb2fe6dc2 
					 
					
						
						
							
							New release.  
						
						 
						
						
						
						
					 
					
						2007-10-11 19:31:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a2115c5d17 
					 
					
						
						
							
							Respect cookie length set by app_gen_cookie_cb.  
						
						 
						
						... 
						
						
						
						Submitted by: Alex Lam 
						
						
					 
					
						2007-10-09 19:31:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4fe55663df 
					 
					
						
						
							
							Make DTLS1 record layer MAC calculation RFC compliant.  
						
						 
						
						... 
						
						
						
						Submitted by: Alex Lam 
						
						
					 
					
						2007-10-09 19:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ae1552ee99 
					 
					
						
						
							
							Addendum to commit  #16654 .  
						
						 
						
						
						
						
					 
					
						2007-10-09 16:37:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						debf380122 
					 
					
						
						
							
							size_t-fy crypto/buffer.  
						
						 
						
						
						
						
					 
					
						2007-10-09 15:52:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ralf S. Engelschall 
							
						 
					 
					
						
						
							
						
						ddb038d349 
					 
					
						
						
							
							ignore a few additionally generated files  
						
						 
						
						
						
						
					 
					
						2007-10-09 09:56:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b7cc9dffac 
					 
					
						
						
							
							Addendum to commit  #16651 .  
						
						 
						
						
						
						
					 
					
						2007-10-07 14:34:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e1b81fed33 
					 
					
						
						
							
							Make it possible to link VC static lib with either /MT or /MD application.  
						
						 
						
						... 
						
						
						
						PR: 1230 
						
						
					 
					
						2007-10-07 12:55:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5d58f1bbfe 
					 
					
						
						
							
							Prohibit RC4 in DTLS.  
						
						 
						
						
						
						
					 
					
						2007-10-05 21:04:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fcd1cb666c 
					 
					
						
						
							
							Fix from fips branch.  
						
						 
						
						
						
						
					 
					
						2007-10-05 16:53:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f19a9cb9f 
					 
					
						
						
							
							Off by one fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-10-04 12:07:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0023adb47a 
					 
					
						
						
							
							Switch to bn-s390x (it's faster on keys longer than 512 bits) and mention  
						
						 
						
						... 
						
						
						
						s390x assembler pack in CHANAGES. 
						
						
					 
					
						2007-10-01 07:38:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						81fe8dcfe1 
					 
					
						
						
							
							Oops! This was erroneously left out commit  #16632 .  
						
						 
						
						
						
						
					 
					
						2007-10-01 06:27:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d527834a1d 
					 
					
						
						
							
							Basic idea behind explicit IV is to make it unpredictable for attacker.  
						
						 
						
						... 
						
						
						
						Until now it was xor between CBC residue and 1st block from last datagram,
or in other words still predictable. 
						
						
					 
					
						2007-09-30 22:01:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						89c333e3e5 
					 
					
						
						
							
							Make ChangeCipherSpec compliant with DTLS RFC4347.  
						
						 
						
						
						
						
					 
					
						2007-09-30 21:19:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0d97d00b6c 
					 
					
						
						
							
							DTLS RFC4347 says HelloVerifyRequest resets Finished MAC.  
						
						 
						
						
						
						
					 
					
						2007-09-30 19:34:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e7adda52b3 
					 
					
						
						
							
							DTLS RFC4347 requires client to use rame random field in reply to  
						
						 
						
						... 
						
						
						
						HelloVerifyRequest. 
						
						
					 
					
						2007-09-30 19:15:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7432d073af 
					 
					
						
						
							
							Switch to RFC-compliant version encoding in DTLS.  
						
						 
						
						
						
						
					 
					
						2007-09-30 18:53:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04e2ab2c02 
					 
					
						
						
							
							Move no status notification to ssl_check_serverhello_tlsext() to ensure  
						
						 
						
						... 
						
						
						
						no status is notified even if no server extensions are present. 
						
						
					 
					
						2007-09-28 17:45:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7fcc08976 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2007-09-28 17:18:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7722e53f12 
					 
					
						
						
							
							Yet another ARM update. It appears to be more appropriate to make  
						
						 
						
						... 
						
						
						
						developers responsible for -march choice. 
						
						
					 
					
						2007-09-27 16:27:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2c3ee16272 
					 
					
						
						
							
							Move -march=armv4t to ./config.  
						
						 
						
						
						
						
					 
					
						2007-09-27 07:43:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						19112771d6 
					 
					
						
						
							
							Minor ARMv4 update.  
						
						 
						
						
						
						
					 
					
						2007-09-27 07:20:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c7c5ff667 
					 
					
						
						
							
							ARMv4 assembler pack.  
						
						 
						
						
						
						
					 
					
						2007-09-27 07:09:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d7e915616d 
					 
					
						
						
							
							10% performance tweak in 64-bit mode.  
						
						 
						
						
						
						
					 
					
						2007-09-27 06:19:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						67c8e7f414 
					 
					
						
						
							
							Support for certificate status TLS extension.  
						
						 
						
						
						
						
					 
					
						2007-09-26 21:56:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						74eb3e0914 
					 
					
						
						
							
							Make sha512-armv4.pl byte-order neutral.  
						
						 
						
						
						
						
					 
					
						2007-09-26 12:17:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						79fe664f19 
					 
					
						
						
							
							Clarify commentary in sha512-sparcv9.pl.  
						
						 
						
						
						
						
					 
					
						2007-09-26 12:16:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						5f0477f47b 
					 
					
						
						
							
							Typos  
						
						 
						
						... 
						
						
						
						PR: 1578
Submitted by: Charles Longeau <chl@tuxfamily.org > 
						
						
					 
					
						2007-09-24 11:22:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						7bbce69721 
					 
					
						
						
							
							Port from 0.9.8-stable  
						
						 
						
						
						
						
					 
					
						2007-09-24 11:01:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						870d6541f2 
					 
					
						
						
							
							Use accept flag for new session ticket write.  
						
						 
						
						
						
						
					 
					
						2007-09-23 15:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						02c27b113c 
					 
					
						
						
							
							properly handle length-zero opaque PRF input values  
						
						 
						
						... 
						
						
						
						(which are pointless, but still might occur) 
						
						
					 
					
						2007-09-23 11:30:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						86d4bc3aea 
					 
					
						
						
							
							fix length parameter in SSL_set_tlsext_opaque_prf_input() calls  
						
						 
						
						
						
						
					 
					
						2007-09-23 11:08:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						761772d7e1 
					 
					
						
						
							
							Implement the Opaque PRF Input TLS extension  
						
						 
						
						... 
						
						
						
						(draft-rescorla-tls-opaque-prf-input-00.txt), and do some cleanups and
bugfixes on the way.  In particular, this fixes the buffer bounds
checks in ssl_add_clienthello_tlsext() and in ssl_add_serverhello_tlsext().
Note that the opaque PRF Input TLS extension is not compiled by default;
see CHANGES. 
						
						
					 
					
						2007-09-21 06:54:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						54ef01b54b 
					 
					
						
						
							
							Fix indentation in d1_both.c.  
						
						 
						
						
						
						
					 
					
						2007-09-19 16:38:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						9311c4421a 
					 
					
						
						
							
							Fix dependencies. Make depend.  
						
						 
						
						
						
						
					 
					
						2007-09-19 14:53:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						aaa4f448cf 
					 
					
						
						
							
							The other half of make errors.  
						
						 
						
						
						
						
					 
					
						2007-09-19 14:51:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5f8b524619 
					 
					
						
						
							
							make errors.  
						
						 
						
						
						
						
					 
					
						2007-09-19 14:29:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						08111768a2 
					 
					
						
						
							
							fix warning  
						
						 
						
						
						
						
					 
					
						2007-09-19 01:43:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1b827d7b6f 
					 
					
						
						
							
							Clean up error codes a bit.  
						
						 
						
						... 
						
						
						
						(engines/ccgost/ remains utter chaos, though; "make errors" is not happy.) 
						
						
					 
					
						2007-09-19 00:58:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a005fb019f 
					 
					
						
						
							
							Addenum to "Constify obj_dat.[ch]."  
						
						 
						
						
						
						
					 
					
						2007-09-18 22:15:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b5e5760d01 
					 
					
						
						
							
							Minor formatting fixes in crypto/sha/asm.  
						
						 
						
						
						
						
					 
					
						2007-09-18 21:12:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cf2bc94e5c 
					 
					
						
						
							
							Wire RC4 key_table to read-only segment.  
						
						 
						
						
						
						
					 
					
						2007-09-18 21:10:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						26f0cf69d3 
					 
					
						
						
							
							Constify obj_dat.[ch], as well as minimize linker relocations.  
						
						 
						
						
						
						
					 
					
						2007-09-18 21:05:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						61836c1b70 
					 
					
						
						
							
							Wire DES weak_keys to read-only segment.  
						
						 
						
						
						
						
					 
					
						2007-09-18 20:58:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a1b0c8d65 
					 
					
						
						
							
							Eliminate redundant make rule.  
						
						 
						
						
						
						
					 
					
						2007-09-18 20:57:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						75a8e30f4f 
					 
					
						
						
							
							Minimize stack utilization in probable_prime.  
						
						 
						
						
						
						
					 
					
						2007-09-18 20:52:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						716b87a026 
					 
					
						
						
							
							Remove excessive whitespaces from bio.h  
						
						 
						
						
						
						
					 
					
						2007-09-18 20:48:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						08b229e13f 
					 
					
						
						
							
							Make sure that BN_from_montgomery keeps the BIGNUMS in proper format  
						
						 
						
						
						
						
					 
					
						2007-09-18 16:35:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a529a80108 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-09-17 17:54:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c81898cbc4 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-09-17 17:31:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						330591fdfc 
					 
					
						
						
							
							Mention aes in enc.pod.  
						
						 
						
						... 
						
						
						
						PR: 1529 
						
						
					 
					
						2007-09-17 16:42:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c7503f5240 
					 
					
						
						
							
							Mention SHA2 in openssl.pod.  
						
						 
						
						... 
						
						
						
						PR: 1575 
						
						
					 
					
						2007-09-17 15:56:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						eff371c866 
					 
					
						
						
							
							Remove pq_compat.h.  
						
						 
						
						
						
						
					 
					
						2007-09-16 19:29:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8dc899dee4 
					 
					
						
						
							
							Minor sha[256|512]-586 performance tweaks.  
						
						 
						
						
						
						
					 
					
						2007-09-16 18:47:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cc3d7bd0fc 
					 
					
						
						
							
							It's inappropraite to override application signal, nor is it appropriate  
						
						 
						
						... 
						
						
						
						to shut down Winsock unless we know it won't be used [and we never do].
PR: 1439 
						
						
					 
					
						2007-09-16 18:35:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7df4c86bdd 
					 
					
						
						
							
							Minor fix in link_[oa].hpux.  
						
						 
						
						
						
						
					 
					
						2007-09-16 14:11:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c313e32a8b 
					 
					
						
						
							
							BSD run-time linkers apparently demand RPATH on .so objects.  
						
						 
						
						... 
						
						
						
						PR: 1381 
						
						
					 
					
						2007-09-16 12:23:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						77519b51db 
					 
					
						
						
							
							Make bn2dec work on "SIXTY_FOUR_BIT" platforms.  
						
						 
						
						... 
						
						
						
						PR: 1456 
						
						
					 
					
						2007-09-15 17:05:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a01868e35 
					 
					
						
						
							
							Remove sha512-sse2.pl.  
						
						 
						
						
						
						
					 
					
						2007-09-15 13:45:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						563d3e5948 
					 
					
						
						
							
							Engage new x86 assembler modules.  
						
						 
						
						
						
						
					 
					
						2007-09-14 21:06:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1187ee7dad 
					 
					
						
						
							
							More Intel cc fix-ups.  
						
						 
						
						
						
						
					 
					
						2007-09-14 19:32:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c5921e736 
					 
					
						
						
							
							Handle empty case in X509_NAME canonical encoding.  
						
						 
						
						
						
						
					 
					
						2007-09-14 18:11:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						399f94bfb4 
					 
					
						
						
							
							Commentary updates.  
						
						 
						
						
						
						
					 
					
						2007-09-13 07:27:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1fa29843fa 
					 
					
						
						
							
							SHA512 for ARMv4.  
						
						 
						
						
						
						
					 
					
						2007-09-13 07:26:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ee0449b17c 
					 
					
						
						
							
							SHA256/512 for x86.  
						
						 
						
						
						
						
					 
					
						2007-09-13 07:26:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e28eddc51f 
					 
					
						
						
							
							Typo? Why did this work, anyway?  
						
						 
						
						
						
						
					 
					
						2007-09-08 15:58:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d82a612a90 
					 
					
						
						
							
							Fix warning: print format option not compatible with size_t.  
						
						 
						
						
						
						
					 
					
						2007-09-07 13:34:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e7e8f4b333 
					 
					
						
						
							
							Fix another warning.  
						
						 
						
						
						
						
					 
					
						2007-09-07 13:27:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6fbcb4220 
					 
					
						
						
							
							Change safestack reimplementation to match 0.9.8.  
						
						 
						
						... 
						
						
						
						Fix additional gcc 4.2 value not used warnings. 
						
						
					 
					
						2007-09-07 13:25:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8164032a2e 
					 
					
						
						
							
							Fix warnings: computed value not use, incompatible pointer initialization  
						
						 
						
						... 
						
						
						
						and cast from pointer to int of different size (linux-x86_64 and align). 
						
						
					 
					
						2007-09-07 13:03:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a5804a750b 
					 
					
						
						
							
							Add sha512_block implementation optimized for small register bank.  
						
						 
						
						... 
						
						
						
						On x86 it gives same performance, while code size shrinks >10 times. 
						
						
					 
					
						2007-09-07 12:34:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81025661a9 
					 
					
						
						
							
							Update ssl code to support digests other than MD5+SHA1 in handshake.  
						
						 
						
						... 
						
						
						
						Submitted by: Victor B. Wagner <vitus@cryptocom.ru > 
						
						
					 
					
						2007-08-31 12:42:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4ece7eb6f4 
					 
					
						
						
							
							Constify seed and md2.  
						
						 
						
						
						
						
					 
					
						2007-08-31 10:12:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0bb01b7df0 
					 
					
						
						
							
							Offer darwin64-x86_64-cc as option.  
						
						 
						
						
						
						
					 
					
						2007-08-31 10:09:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1c56e95e28 
					 
					
						
						
							
							Compress and more aggressively constify ec_curve.c [the latter is  
						
						 
						
						... 
						
						
						
						achieved by minimizing link relocations]. 
						
						
					 
					
						2007-08-31 09:36:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						446124a258 
					 
					
						
						
							
							Check return code when attempting to receive new session ticket message.  
						
						 
						
						
						
						
					 
					
						2007-08-31 00:28:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						583b0b67ab 
					 
					
						
						
							
							Unify RC4 settings among darwin platforms.  
						
						 
						
						
						
						
					 
					
						2007-08-30 08:09:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						584502d4a0 
					 
					
						
						
							
							Add darwin64-x86_64-cc target.  
						
						 
						
						
						
						
					 
					
						2007-08-30 07:54:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8803d5ae6 
					 
					
						
						
							
							aes_ige suffered SIGBUS on RISC platforms.  
						
						 
						
						
						
						
					 
					
						2007-08-29 21:30:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						acfb4b5b9f 
					 
					
						
						
							
							Improve cache locality in linux64-sparcv9.  
						
						 
						
						
						
						
					 
					
						2007-08-29 20:46:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0ddd3ea217 
					 
					
						
						
							
							Make naming more consistent.  
						
						 
						
						
						
						
					 
					
						2007-08-28 21:02:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6a8517f274 
					 
					
						
						
							
							Make room for Camellia assembler.  
						
						 
						
						
						
						
					 
					
						2007-08-28 20:45:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						94d511cdbd 
					 
					
						
						
							
							Add ctrls to set and get RFC4507bis keys to enable several contexts to  
						
						 
						
						... 
						
						
						
						reuse the same tickets. 
						
						
					 
					
						2007-08-28 01:08:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec5d747328 
					 
					
						
						
							
							Add Google sponsorship note.  
						
						 
						
						
						
						
					 
					
						2007-08-27 23:41:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c6880b2533 
					 
					
						
						
							
							shlib_wrap commentary update.  
						
						 
						
						
						
						
					 
					
						2007-08-27 08:51:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						eb6eb3e630 
					 
					
						
						
							
							shlib_wrap update, IRIX section.  
						
						 
						
						
						
						
					 
					
						2007-08-27 08:42:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ae4eb3c9ac 
					 
					
						
						
							
							IRIX and Tru64 platform updates.  
						
						 
						
						
						
						
					 
					
						2007-08-26 14:12:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba0e826d83 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-08-23 22:59:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3fef74b09 
					 
					
						
						
							
							Document ticket disabling option.  
						
						 
						
						
						
						
					 
					
						2007-08-23 22:49:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						014f62b649 
					 
					
						
						
							
							Add usage message for -sess_out, -sess_in  
						
						 
						
						
						
						
					 
					
						2007-08-23 12:20:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						55eab3b74b 
					 
					
						
						
							
							Make x86_64 modules work under Win64/x64.  
						
						 
						
						
						
						
					 
					
						2007-08-23 12:01:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dc0fcb98df 
					 
					
						
						
							
							Workaround MSVC6 compiler bug.  
						
						 
						
						
						
						
					 
					
						2007-08-23 11:59:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d24a9c8f5a 
					 
					
						
						
							
							Docs and usage messages for RFC4507bis support.  
						
						 
						
						
						
						
					 
					
						2007-08-23 11:34:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						42fe218b9f 
					 
					
						
						
							
							VAX C can't handle 64 bit integers, making SHA512 impossible...  
						
						 
						
						
						
						
					 
					
						2007-08-22 20:58:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						956006b741 
					 
					
						
						
							
							Use SHA256 for ticket HMAC if possible.  
						
						 
						
						
						
						
					 
					
						2007-08-20 12:35:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						167066fed4 
					 
					
						
						
							
							Fix for asm/no-asm on WIN32.  
						
						 
						
						
						
						
					 
					
						2007-08-13 02:24:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						525de5d335 
					 
					
						
						
							
							OPENSSL_NO_TLS1 WIN32 build support. Fix so normal build works again.  
						
						 
						
						
						
						
					 
					
						2007-08-12 23:59:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						367eb1f125 
					 
					
						
						
							
							Fix warning and make no-tlsext work.  
						
						 
						
						
						
						
					 
					
						2007-08-12 18:56:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3444961787 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2007-08-12 18:05:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						710069c19e 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2007-08-12 17:44:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ddd3a617ca 
					 
					
						
						
							
							Remove debugging fprintfs, fix typo.  
						
						 
						
						
						
						
					 
					
						2007-08-12 17:06:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6434abbfc6 
					 
					
						
						
							
							RFC4507 (including RFC4507bis) TLS stateless session resumption support  
						
						 
						
						... 
						
						
						
						for OpenSSL. 
						
						
					 
					
						2007-08-11 23:18:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e45c100762 
					 
					
						
						
							
							Typos in ./config.  
						
						 
						
						... 
						
						
						
						PR: 1563 
						
						
					 
					
						2007-08-01 11:20:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5a22a8e7f9 
					 
					
						
						
							
							MacOS X update.  
						
						 
						
						
						
						
					 
					
						2007-07-31 19:30:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d6c764573c 
					 
					
						
						
							
							Proper support for shared build under MacOS X.  
						
						 
						
						
						
						
					 
					
						2007-07-31 18:24:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9d35d08ab6 
					 
					
						
						
							
							Typo in ppccpuid.pl.  
						
						 
						
						
						
						
					 
					
						2007-07-31 18:19:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f7b61702a0 
					 
					
						
						
							
							document -S and -nopad options in usage information  
						
						 
						
						
						
						
					 
					
						2007-07-31 09:42:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						983180bb8b 
					 
					
						
						
							
							Buglet fixes and minor optimization in aes-x86_86 assembler.  
						
						 
						
						
						
						
					 
					
						2007-07-30 16:42:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cdb0392159 
					 
					
						
						
							
							Make preprocessor logic more fail-safe.  
						
						 
						
						
						
						
					 
					
						2007-07-30 11:53:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1891f5b395 
					 
					
						
						
							
							As for inline vs. __inline. The original code implies that most compilers  
						
						 
						
						... 
						
						
						
						understand inline, while WIN32 ones insist on __inline. Well, there are
other compilers that insist on __inline. At the same time it turned out
that most compilers understand both __inline and inline. I could find
only one that doesn't understand __inline, Sun C. In other words it seems
that __inline as preferred choice provides better coverage... 
						
						
					 
					
						2007-07-30 11:42:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a3963619f6 
					 
					
						
						
							
							Make ppccpuid AIX friendly.  
						
						 
						
						
						
						
					 
					
						2007-07-30 08:47:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34994068a4 
					 
					
						
						
							
							Respect ISO aliasing rules.  
						
						 
						
						... 
						
						
						
						PR: 1296 
						
						
					 
					
						2007-07-27 20:34:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						afaad0ada6 
					 
					
						
						
							
							AES for IA64 update.  
						
						 
						
						
						
						
					 
					
						2007-07-27 18:20:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						05f9cb3b77 
					 
					
						
						
							
							ia64cpuid update.  
						
						 
						
						
						
						
					 
					
						2007-07-27 18:03:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1988a456a7 
					 
					
						
						
							
							x86 perlasm updates.  
						
						 
						
						
						
						
					 
					
						2007-07-25 12:38:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						69216cc5a5 
					 
					
						
						
							
							Configure update from 098.  
						
						 
						
						
						
						
					 
					
						2007-07-24 14:41:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2cf6fa4c8b 
					 
					
						
						
							
							Update debug-steve  
						
						 
						
						
						
						
					 
					
						2007-07-24 00:27:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a61710b868 
					 
					
						
						
							
							Allow for option to skip hardware support.  
						
						 
						
						
						
						
					 
					
						2007-07-23 20:38:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						20f7563f3d 
					 
					
						
						
							
							md32_common.h update.  
						
						 
						
						
						
						
					 
					
						2007-07-23 13:57:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3df2eff4bd 
					 
					
						
						
							
							x86*cpuid update.  
						
						 
						
						
						
						
					 
					
						2007-07-21 14:46:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a415ebd026 
					 
					
						
						
							
							Complete synchronization of aes-x86_64 with aes-586.  
						
						 
						
						
						
						
					 
					
						2007-07-21 14:20:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						52ee3d01ae 
					 
					
						
						
							
							Lppc_AES_[en|de]crypt_compact: size optimization.  
						
						 
						
						
						
						
					 
					
						2007-07-19 15:31:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e59f992be6 
					 
					
						
						
							
							Minor optimization in AES_set_encryption_key for x86_64.  
						
						 
						
						
						
						
					 
					
						2007-07-19 14:59:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8bae7722a2 
					 
					
						
						
							
							_x86_64_AES_[en|de]crypt_compact: size optimization and aggressive  
						
						 
						
						... 
						
						
						
						T[ed]4 prefetch. 
						
						
					 
					
						2007-07-19 14:29:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0d7dba92c8 
					 
					
						
						
							
							WIN32 VC++ build fixes.  
						
						 
						
						
						
						
					 
					
						2007-07-18 17:40:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ce1390aedc 
					 
					
						
						
							
							shlib_wrap.sh update.  
						
						 
						
						
						
						
					 
					
						2007-07-16 14:00:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						287a9ee76e 
					 
					
						
						
							
							gas -g doesn't tolerate unpadded .bytes in code segment.  
						
						 
						
						
						
						
					 
					
						2007-07-13 21:35:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						96b0f6c16d 
					 
					
						
						
							
							Various minor updates to AES assembler modules.  
						
						 
						
						
						
						
					 
					
						2007-07-13 17:42:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e1612ea59d 
					 
					
						
						
							
							Add _x86_64_AES_[en|de]crypt_compact.  
						
						 
						
						
						
						
					 
					
						2007-07-13 17:39:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						71f4ea44eb 
					 
					
						
						
							
							EVP_*_cfb1 was broken.  
						
						 
						
						... 
						
						
						
						PR: 1318 
						
						
					 
					
						2007-07-08 19:14:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						35295bdbee 
					 
					
						
						
							
							bn_mul_recursive doesn't handle all cases correctly, which results in  
						
						 
						
						... 
						
						
						
						BN_mul failures at certain key-length mixes.
PR: 1427 
						
						
					 
					
						2007-07-08 18:53:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aa8d6f3e86 
					 
					
						
						
							
							Typo in str_lib.c  
						
						 
						
						... 
						
						
						
						PR: 1177 
						
						
					 
					
						2007-07-07 20:11:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62aa5dd415 
					 
					
						
						
							
							Fix build problem on Tru64.  
						
						 
						
						
						
						
					 
					
						2007-06-29 13:11:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						673c55a2fe 
					 
					
						
						
							
							Latest bn_mont.c modification broke ECDSA test. I've got math wrong, which  
						
						 
						
						... 
						
						
						
						is fixed now. 
						
						
					 
					
						2007-06-29 13:10:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						949ce10e88 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2007-06-23 18:47:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8dee823e61 
					 
					
						
						
							
							Inline function declarations have to be prototypes.  
						
						 
						
						
						
						
					 
					
						2007-06-23 18:40:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5d86336746 
					 
					
						
						
							
							Flush output in x86_64cpuid.pl.  
						
						 
						
						
						
						
					 
					
						2007-06-21 11:39:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5b89f78a89 
					 
					
						
						
							
							Typo in x86_64-mont.pl.  
						
						 
						
						... 
						
						
						
						PR: 1549 
						
						
					 
					
						2007-06-21 11:38:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						85a5668dba 
					 
					
						
						
							
							CHANGES update from 098-stable.  
						
						 
						
						
						
						
					 
					
						2007-06-20 17:46:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c943ca5404 
					 
					
						
						
							
							Optimize OPENSSL_cleanse.  
						
						 
						
						
						
						
					 
					
						2007-06-20 17:36:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1c7f8707fd 
					 
					
						
						
							
							bn_asm for s390x.  
						
						 
						
						
						
						
					 
					
						2007-06-20 14:10:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a21c46e70b 
					 
					
						
						
							
							Typo in Linux part of sparcv9cap.c  
						
						 
						
						... 
						
						
						
						PR: 1532 
						
						
					 
					
						2007-06-20 13:02:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f3c26535ad 
					 
					
						
						
							
							Make some shortcuts in sparcv9cap.c. Trouble is that di_walk_node result  
						
						 
						
						... 
						
						
						
						is inconsistent among CPU generations. 
						
						
					 
					
						2007-06-20 13:00:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2329694222 
					 
					
						
						
							
							SPARC Solaris and Linux assemblers treat .align directive differently.  
						
						 
						
						... 
						
						
						
						PR: 1547 
						
						
					 
					
						2007-06-20 12:24:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						206a975752 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-06-19 15:43:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9677bf0f30 
					 
					
						
						
							
							Update .cvsignore  
						
						 
						
						
						
						
					 
					
						2007-06-18 12:40:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d6496ed52 
					 
					
						
						
							
							Make ordinals consistent with OpenSSL 0.9.8  
						
						 
						
						
						
						
					 
					
						2007-06-18 12:35:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7d9cf7c0bb 
					 
					
						
						
							
							Eliminate conditional final subtraction in Montgomery assembler modules.  
						
						 
						
						
						
						
					 
					
						2007-06-17 17:10:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						55525742f4 
					 
					
						
						
							
							Privatize BN_*_no_branch.  
						
						 
						
						
						
						
					 
					
						2007-06-11 16:33:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c693b5a55c 
					 
					
						
						
							
							Commentary updates and minor optimization for bn_mont.c.  
						
						 
						
						
						
						
					 
					
						2007-06-11 08:53:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6b6443dead 
					 
					
						
						
							
							Eliminate conditional final subtraction in Montgomery multiplication.  
						
						 
						
						
						
						
					 
					
						2007-06-10 19:34:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						54b5fd537f 
					 
					
						
						
							
							WIN32 fixes.  
						
						 
						
						
						
						
					 
					
						2007-06-08 00:26:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b99d4f1d1 
					 
					
						
						
							
							Remove unnecessary casts and avoid some warnings with gcc 4.2.  
						
						 
						
						
						
						
					 
					
						2007-06-07 16:07:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3c07d3a3d3 
					 
					
						
						
							
							Finish gcc 4.2 changes.  
						
						 
						
						
						
						
					 
					
						2007-06-07 13:14:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d1a64653c 
					 
					
						
						
							
							Back out safestack.h change for now: seems to break some things.  
						
						 
						
						
						
						
					 
					
						2007-06-04 22:18:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						297e6f1917 
					 
					
						
						
							
							Avoid use of function pointer casts in pem library. Modify safestack to  
						
						 
						
						... 
						
						
						
						always use inline functions. 
						
						
					 
					
						2007-06-04 17:53:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b948e2c59e 
					 
					
						
						
							
							Update ssl library to support EVP_PKEY MAC API. Include generic MAC support.  
						
						 
						
						
						
						
					 
					
						2007-06-04 17:04:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						18096abb29 
					 
					
						
						
							
							Handle NULL parameter in some EVP utility functions.  
						
						 
						
						
						
						
					 
					
						2007-05-31 12:39:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0aa08a2e34 
					 
					
						
						
							
							Fix for GOST engine on platforms where sizeof(size_t) != sizeof(int).  
						
						 
						
						
						
						
					 
					
						2007-05-31 12:32:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f20af72312 
					 
					
						
						
							
							AES_set_[en|de]crypt_key for ARMv4.  
						
						 
						
						
						
						
					 
					
						2007-05-30 15:57:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7ef643360d 
					 
					
						
						
							
							s390x gas can't handle .align 128.  
						
						 
						
						
						
						
					 
					
						2007-05-28 16:32:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						76c828c627 
					 
					
						
						
							
							AES_set_[en|de]crypt_key for s390x.  
						
						 
						
						
						
						
					 
					
						2007-05-28 16:30:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						281cfff026 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2007-05-24 10:17:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64a5c5d1be 
					 
					
						
						
							
							Fix X509_REQ_print_ex() to process extension options.  
						
						 
						
						
						
						
					 
					
						2007-05-22 23:31:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7b8b797375 
					 
					
						
						
							
							Revert broken change to ccgost.  
						
						 
						
						... 
						
						
						
						Initialize context properly for HMAC pkey method. 
						
						
					 
					
						2007-05-22 12:58:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a1a382dbc9 
					 
					
						
						
							
							SHA256 for ARMv4.  
						
						 
						
						
						
						
					 
					
						2007-05-22 09:56:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						19f6c524bf 
					 
					
						
						
							
							Fix crypto/ec/ec_mult.c to work properly with scalars of value 0  
						
						 
						
						
						
						
					 
					
						2007-05-22 09:47:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8dbdf6314c 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2007-05-21 16:36:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9c54e18bf0 
					 
					
						
						
							
							Fixes for dgst tool. Initialize md_name, sig_name properly. Return error code  
						
						 
						
						... 
						
						
						
						on failure. Keep output format consistent with previous versions.
Also flush stdout after printing ACCEPT in s_server. 
						
						
					 
					
						2007-05-21 15:53:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9aba74e55a 
					 
					
						
						
							
							Fix warning and back out bad modification.  
						
						 
						
						
						
						
					 
					
						2007-05-21 12:16:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e4317d2031 
					 
					
						
						
							
							OPENSSL_IMPLEMENT_GLOBAL caused more grief than it's worth (it's used twice  
						
						 
						
						... 
						
						
						
						in legacy code). I'd rather just remove it along with legacy interface,
but it's probably not as appropriate as I'd like. Reimplement the macro. 
						
						
					 
					
						2007-05-20 20:11:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						61775daf00 
					 
					
						
						
							
							Padlock engine fails to compile with -O0 -fPIC.  
						
						 
						
						
						
						
					 
					
						2007-05-20 07:13:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						86d8f3ee19 
					 
					
						
						
							
							Typo in aes-ppc.pl.  
						
						 
						
						
						
						
					 
					
						2007-05-19 20:00:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cb1fbf9f63 
					 
					
						
						
							
							--enable-auto-image-base in cygwin build.  
						
						 
						
						... 
						
						
						
						PR: 1517
Submitted by: vinschen@redhat.com  
						
						
					 
					
						2007-05-19 19:40:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3005764c18 
					 
					
						
						
							
							Typo in x509_txt.c.  
						
						 
						
						... 
						
						
						
						Submitted by: Martin.Kraemer@Fujitsu-Siemens.com  
						
						
					 
					
						2007-05-19 18:03:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b1e8b4e65d 
					 
					
						
						
							
							x86cpuid fixes.  
						
						 
						
						... 
						
						
						
						PR: 1526 
						
						
					 
					
						2007-05-19 17:52:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c6149e2f02 
					 
					
						
						
							
							ppc-xlate.pl update.  
						
						 
						
						
						
						
					 
					
						2007-05-19 17:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aa5c99fa01 
					 
					
						
						
							
							sparccpuid.s update.  
						
						 
						
						
						
						
					 
					
						2007-05-19 17:26:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9c200f5471 
					 
					
						
						
							
							Initial draft of AES for PPC.  
						
						 
						
						
						
						
					 
					
						2007-05-19 17:16:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec06417d52 
					 
					
						
						
							
							Updated GOST MAC support.  
						
						 
						
						... 
						
						
						
						Submitted by: vitus@cryptocom.ru  
						
						
					 
					
						2007-05-18 15:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4346646f1 
					 
					
						
						
							
							Initial GOST MAC support. Not fully working yet...  
						
						 
						
						
						
						
					 
					
						2007-05-17 17:44:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a70c09e2a2 
					 
					
						
						
							
							Add .cvsignore to seed dir.  
						
						 
						
						
						
						
					 
					
						2007-05-17 16:43:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0f9e0abbee 
					 
					
						
						
							
							Set len to buffer size.  
						
						 
						
						
						
						
					 
					
						2007-05-17 16:42:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e77dbf325f 
					 
					
						
						
							
							Prepend signature name in dgst output.  
						
						 
						
						
						
						
					 
					
						2007-05-17 16:19:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f03620ea15 
					 
					
						
						
							
							Use default md if none specified in dgst utility.  
						
						 
						
						
						
						
					 
					
						2007-05-17 12:55:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						47b2e238e5 
					 
					
						
						
							
							Use EVP_DigestVerify() in dgst.c if verifying.  
						
						 
						
						
						
						
					 
					
						2007-05-17 12:35:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad35cdac74 
					 
					
						
						
							
							PR: 1516  
						
						 
						
						... 
						
						
						
						Revert change in 1516 because it breaks Windows build. Use a modified version
of the headers from s_client.c which has used similar functionality without
any problems. 
						
						
					 
					
						2007-05-16 12:16:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4eba5d8c86 
					 
					
						
						
							
							Fix error code name.  
						
						 
						
						
						
						
					 
					
						2007-05-16 00:14:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e69adea539 
					 
					
						
						
							
							New function EVP_PKEY_asn1_copy(). Use default MD if type param is NULL.  
						
						 
						
						
						
						
					 
					
						2007-05-15 23:52:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9660cbcd6b 
					 
					
						
						
							
							Change C++ style comments.  
						
						 
						
						
						
						
					 
					
						2007-05-15 23:50:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9c9c83ccb9 
					 
					
						
						
							
							Throw in ppccpuid module.  
						
						 
						
						
						
						
					 
					
						2007-05-15 20:51:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1d42fb5f4a 
					 
					
						
						
							
							Fix linking error after adding alphacpuid.s.  
						
						 
						
						
						
						
					 
					
						2007-05-15 07:11:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e119769480 
					 
					
						
						
							
							Add alphacpuid.s  
						
						 
						
						
						
						
					 
					
						2007-05-15 06:36:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b2dba9bf1f 
					 
					
						
						
							
							Profiling revealed that OPENSSL_cleanse consumes *more* CPU time than  
						
						 
						
						... 
						
						
						
						sha1_block_data_order when hashing short messages. Move OPENSSL_cleanse
to "cpuid" assembler module and gain 2x. 
						
						
					 
					
						2007-05-14 21:35:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						932cc129ee 
					 
					
						
						
							
							x86_64 assembler updates.  
						
						 
						
						
						
						
					 
					
						2007-05-14 15:57:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a42839ba7 
					 
					
						
						
							
							As all assembler modules are alignment neutral, allow C to pass unaligned  
						
						 
						
						... 
						
						
						
						content. 
						
						
					 
					
						2007-05-13 15:16:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						232a938c75 
					 
					
						
						
							
							Make sha*-ia64 modules alignment neutral.  
						
						 
						
						
						
						
					 
					
						2007-05-13 15:15:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						69ab085290 
					 
					
						
						
							
							More IGE speedup.  
						
						 
						
						
						
						
					 
					
						2007-05-13 15:14:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5f09d0ecc2 
					 
					
						
						
							
							AES IGE mode speedup.  
						
						 
						
						
						
						
					 
					
						2007-05-13 12:57:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76b46e7707 
					 
					
						
						
							
							Document streaming options.  
						
						 
						
						
						
						
					 
					
						2007-05-11 12:08:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6217896145 
					 
					
						
						
							
							Improve error detection when streaming S/MIME.  
						
						 
						
						... 
						
						
						
						Only use streaming when appropriate for detached data in smime utility. 
						
						
					 
					
						2007-05-10 17:37:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee7ca0941a 
					 
					
						
						
							
							Tidy up docs, remove warning.  
						
						 
						
						
						
						
					 
					
						2007-05-10 17:35:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f8492ffeaa 
					 
					
						
						
							
							More useful ASN1 macros for static allocation functions.  
						
						 
						
						
						
						
					 
					
						2007-05-10 17:34:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						308595638a 
					 
					
						
						
							
							Mention Core2 in sha1-x86_64.  
						
						 
						
						
						
						
					 
					
						2007-05-10 07:34:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0bd8d6e2e1 
					 
					
						
						
							
							Commentary updates to SHA for sparcv9.  
						
						 
						
						
						
						
					 
					
						2007-05-10 06:48:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						160065c5bb 
					 
					
						
						
							
							Detect UltraSPARC T1 in ./config.  
						
						 
						
						
						
						
					 
					
						2007-05-04 13:04:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ae0d6e3e36 
					 
					
						
						
							
							Engage SHA for sparcv9.  
						
						 
						
						
						
						
					 
					
						2007-05-04 12:54:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6fa8a01c72 
					 
					
						
						
							
							SHA for sparcv9.  
						
						 
						
						
						
						
					 
					
						2007-05-04 12:52:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3f6916cf29 
					 
					
						
						
							
							Fix bug introduced in cn#16195.  
						
						 
						
						
						
						
					 
					
						2007-05-03 09:12:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a4470ae7b2 
					 
					
						
						
							
							Fine reading of manual suggests that km can return non-normal completion code.  
						
						 
						
						
						
						
					 
					
						2007-05-03 07:26:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						251718e4c1 
					 
					
						
						
							
							Fix s390x bugs and correct performance coefficients.  
						
						 
						
						
						
						
					 
					
						2007-05-02 11:44:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c504a5e783 
					 
					
						
						
							
							Synchronise VMS with Unix.  
						
						 
						
						
						
						
					 
					
						2007-05-01 12:25:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f6fb2c95ef 
					 
					
						
						
							
							Revert irrelevant changes from commit  #16191 .  
						
						 
						
						
						
						
					 
					
						2007-04-30 17:22:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						708311267a 
					 
					
						
						
							
							rll does not seem to be available on legacy s390.  
						
						 
						
						
						
						
					 
					
						2007-04-30 17:19:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cdd1d7a618 
					 
					
						
						
							
							Typo in commit  #16187 .  
						
						 
						
						
						
						
					 
					
						2007-04-30 15:55:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2f324768b2 
					 
					
						
						
							
							Typo in s390x_asm.  
						
						 
						
						
						
						
					 
					
						2007-04-30 15:48:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6ef18c21c9 
					 
					
						
						
							
							Bug in apps/dgst.c.  
						
						 
						
						
						
						
					 
					
						2007-04-30 15:20:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b38c0add30 
					 
					
						
						
							
							s390x optimizations.  
						
						 
						
						
						
						
					 
					
						2007-04-30 13:26:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b900df5258 
					 
					
						
						
							
							Engage s390x assembler modules.  
						
						 
						
						
						
						
					 
					
						2007-04-30 09:22:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a2a54ffc5f 
					 
					
						
						
							
							s390x assembler pack.  
						
						 
						
						
						
						
					 
					
						2007-04-30 08:42:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						20c04a13e6 
					 
					
						
						
							
							Reimplement rc4-586.pl, relicense rc4-x86_64.pl.  
						
						 
						
						
						
						
					 
					
						2007-04-26 20:48:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a291745eeb 
					 
					
						
						
							
							fix function codes for error  
						
						 
						
						
						
						
					 
					
						2007-04-24 01:06:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0862caf27e 
					 
					
						
						
							
							remove leftover from editing ...  
						
						 
						
						
						
						
					 
					
						2007-04-24 00:47:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cb1bab1a04 
					 
					
						
						
							
							All ciphersuites should have a strength designator.  
						
						 
						
						
						
						
					 
					
						2007-04-24 00:13:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						96afc1cfd5 
					 
					
						
						
							
							Add SEED encryption algorithm.  
						
						 
						
						... 
						
						
						
						PR: 1503
Submitted by: KISA
Reviewed by: Bodo Moeller 
						
						
					 
					
						2007-04-23 23:48:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						24a8c25ab5 
					 
					
						
						
							
							fix error codes  
						
						 
						
						
						
						
					 
					
						2007-04-19 15:14:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d1e7d1d96c 
					 
					
						
						
							
							don't violate the bn_check_top assertion in BN_mod_inverse_no_branch()  
						
						 
						
						
						
						
					 
					
						2007-04-19 14:45:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						18f547734e 
					 
					
						
						
							
							New function ASN1_STRING_copy() to copy to an already  
						
						 
						
						... 
						
						
						
						alloacted ASN1_STRING structure. 
						
						
					 
					
						2007-04-14 17:53:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be3b365a34 
					 
					
						
						
							
							Sample text files for S/MIME test programs.  
						
						 
						
						
						
						
					 
					
						2007-04-13 20:41:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b2b2dafc28 
					 
					
						
						
							
							Add a bunch of S/MIME sample programs and data.  
						
						 
						
						
						
						
					 
					
						2007-04-13 20:40:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14ab6cdd69 
					 
					
						
						
							
							Flush b64 BIO.  
						
						 
						
						
						
						
					 
					
						2007-04-13 18:00:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eeec060df0 
					 
					
						
						
							
							Don't finalize signerinfo if reuse and partial both set.  
						
						 
						
						
						
						
					 
					
						2007-04-13 16:41:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0efb7b1eea 
					 
					
						
						
							
							PKCS7_sign_add_signer() docs.  
						
						 
						
						
						
						
					 
					
						2007-04-13 16:31:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f000f705ea 
					 
					
						
						
							
							More docs for streaming functions.  
						
						 
						
						
						
						
					 
					
						2007-04-13 15:43:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2749cc1ede 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2007-04-13 13:23:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a44e4f2cf8 
					 
					
						
						
							
							d2i_PKCS7_bio_stream() docs.  
						
						 
						
						
						
						
					 
					
						2007-04-13 13:22:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30b10f947a 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2007-04-13 13:20:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						731c6802d7 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2007-04-13 13:13:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4cfb986f27 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2007-04-13 12:57:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9cfc8a9d5c 
					 
					
						
						
							
							Update smime utility to support streaming for -encrypt and -sign -nodetach  
						
						 
						
						... 
						
						
						
						options. Add new streaming i2d (though strictly speaking it is BER format
when streaming) and PEM functions.
These all process content on the fly without storing it all in memory. 
						
						
					 
					
						2007-04-13 01:06:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						18327cd0e4 
					 
					
						
						
							
							Copy update callback across when copying EVP_MD_CTX.  
						
						 
						
						... 
						
						
						
						Remove unnecessary reference to EVP_MD_CTX in HMAC pkey method. 
						
						
					 
					
						2007-04-12 13:02:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2022cfe07e 
					 
					
						
						
							
							New -mac and -macopt options to dgst utility. Reimplement -hmac option in  
						
						 
						
						... 
						
						
						
						terms of new API. 
						
						
					 
					
						2007-04-11 17:20:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						47b71e6ee9 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2007-04-11 12:33:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						74633553a9 
					 
					
						
						
							
							Experimental HMAC support via EVP_PKEY_METHOD.  
						
						 
						
						
						
						
					 
					
						2007-04-11 12:33:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						376bf1d4aa 
					 
					
						
						
							
							Constification.  
						
						 
						
						
						
						
					 
					
						2007-04-11 12:26:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d318fb79d2 
					 
					
						
						
							
							Don't ignore config_name parameter passed to OPENSSL_config(). Use  
						
						 
						
						... 
						
						
						
						"openssl_conf" in config file if config_name variable is missing. 
						
						
					 
					
						2007-04-09 11:45:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0cc361f3e7 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-04-08 17:45:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						baecb96e8a 
					 
					
						
						
							
							Fix digest signing so digest type is set after init.  
						
						 
						
						
						
						
					 
					
						2007-04-08 16:53:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6181f5e404 
					 
					
						
						
							
							Preliminary support for signctx/verifyctx callbacks.  
						
						 
						
						
						
						
					 
					
						2007-04-08 13:03:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d952c79a7b 
					 
					
						
						
							
							New -sigopt option for dgst utility.  
						
						 
						
						
						
						
					 
					
						2007-04-08 12:47:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						3dfb6b3353 
					 
					
						
						
							
							Yet another resource leak. Coverity ID 123.  
						
						 
						
						
						
						
					 
					
						2007-04-07 13:20:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						48bd505c0b 
					 
					
						
						
							
							If you're going to check for negative, use an signed integer! Coverity ID 122.  
						
						 
						
						
						
						
					 
					
						2007-04-05 17:31:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ab2d91bd6b 
					 
					
						
						
							
							Don't copy from a nonexistent next. Coverity ID 47.  
						
						 
						
						
						
						
					 
					
						2007-04-05 17:23:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						3b2eead381 
					 
					
						
						
							
							Fix duplicate error number.  
						
						 
						
						
						
						
					 
					
						2007-04-05 17:09:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f3d2a9db09 
					 
					
						
						
							
							Errors should actually be errors.  
						
						 
						
						
						
						
					 
					
						2007-04-05 17:03:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8bbf6ac010 
					 
					
						
						
							
							Don't dereference NULL argument. Coverity ID 52.  
						
						 
						
						
						
						
					 
					
						2007-04-05 16:58:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						38e952e8ae 
					 
					
						
						
							
							Missing config file.  
						
						 
						
						
						
						
					 
					
						2007-04-05 16:57:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						fa9fed1c3a 
					 
					
						
						
							
							Don't use a negative number as a length. Coverity ID 57.  
						
						 
						
						
						
						
					 
					
						2007-04-05 16:28:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f6301f6888 
					 
					
						
						
							
							Avoid overrun. Coverity ID 60.  
						
						 
						
						
						
						
					 
					
						2007-04-05 15:45:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						44907e6064 
					 
					
						
						
							
							Free memory. Coverity ID 62.  
						
						 
						
						
						
						
					 
					
						2007-04-05 15:45:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						907e99623c 
					 
					
						
						
							
							check return value of ASN1_item_i2d(), Coverity ID 55  
						
						 
						
						
						
						
					 
					
						2007-04-04 19:41:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						231671b9ff 
					 
					
						
						
							
							Resource leak.  
						
						 
						
						
						
						
					 
					
						2007-04-04 16:00:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4f1a0b2c21 
					 
					
						
						
							
							Handle bad content type. Coverity ID 99.  
						
						 
						
						
						
						
					 
					
						2007-04-04 15:31:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						260c497cdd 
					 
					
						
						
							
							Fix buffer overrun. Coverity ID 106.  
						
						 
						
						
						
						
					 
					
						2007-04-04 15:13:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						313fce7b61 
					 
					
						
						
							
							Don't free a NULL. Coverity ID 112.  
						
						 
						
						
						
						
					 
					
						2007-04-04 14:59:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2f877235a3 
					 
					
						
						
							
							Missing return on error. Coverity ID 115.  
						
						 
						
						
						
						
					 
					
						2007-04-04 14:38:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						309fa55bbb 
					 
					
						
						
							
							Return an error if the serial number is badly formed. (Coverity ID 116).  
						
						 
						
						
						
						
					 
					
						2007-04-04 14:35:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4b8747e440 
					 
					
						
						
							
							Die if serial number is invalid.  
						
						 
						
						
						
						
					 
					
						2007-04-04 13:41:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2ff7a0edef 
					 
					
						
						
							
							Make sure we detect corruption.  
						
						 
						
						
						
						
					 
					
						2007-04-04 13:21:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						442cbb062d 
					 
					
						
						
							
							check correct pointer before freeing it (Coverity CID 79,86)  
						
						 
						
						
						
						
					 
					
						2007-04-02 20:29:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c971ca4c86 
					 
					
						
						
							
							check if pointer is != NULL before dereferencing it (Coverity CID 40)  
						
						 
						
						
						
						
					 
					
						2007-04-02 20:02:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9babf3929b 
					 
					
						
						
							
							RC4_set_key for x86_64 and Core2 optimization.  
						
						 
						
						... 
						
						
						
						PR: 1447 
						
						
					 
					
						2007-04-02 09:50:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2ec0be9e77 
					 
					
						
						
							
							Don't die if the value is NULL (Coverity CID 98).  
						
						 
						
						
						
						
					 
					
						2007-04-01 18:00:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c2d1c2d319 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2007-04-01 17:56:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						162f677def 
					 
					
						
						
							
							Update x86cpuid.pl to correctly detect shared cache and to support new  
						
						 
						
						... 
						
						
						
						RC4_set_key. 
						
						
					 
					
						2007-04-01 17:28:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2875462425 
					 
					
						
						
							
							Reserve for assembler implementation of RC4_set_key and implement x86 one.  
						
						 
						
						
						
						
					 
					
						2007-04-01 17:01:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a1d915990b 
					 
					
						
						
							
							Apply a more modern way to get the definition of select(), except for VMS.  
						
						 
						
						... 
						
						
						
						Submitted by Corinna Vinschen <vinschen@redhat.com > 
						
						
					 
					
						2007-03-29 18:34:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b002265ee3 
					 
					
						
						
							
							make BN_FLG_CONSTTIME semantics more fool-proof  
						
						 
						
						
						
						
					 
					
						2007-03-28 18:41:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bd31fb2145 
					 
					
						
						
							
							Change to mitigate branch prediction attacks  
						
						 
						
						... 
						
						
						
						Submitted by: Matthew D Wood
Reviewed by: Bodo Moeller 
						
						
					 
					
						2007-03-28 00:15:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b506821d43 
					 
					
						
						
							
							Allow shared builds for aix[64]-gcc targets.  
						
						 
						
						
						
						
					 
					
						2007-03-25 15:20:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4bfb49b3cf 
					 
					
						
						
							
							aix[64]-cc config lines update.  
						
						 
						
						
						
						
					 
					
						2007-03-25 15:13:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9981a51e42 
					 
					
						
						
							
							Stage 1 GOST ciphersuite support.  
						
						 
						
						... 
						
						
						
						Submitted by: ran@cryptocom.ru 
Reviewed by: steve@openssl.org  
						
						
					 
					
						2007-03-23 17:04:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ebb326afe6 
					 
					
						
						
							
							Synchronise the VMS build with recent movements in the Unix build.  
						
						 
						
						
						
						
					 
					
						2007-03-23 09:36:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0d1aa74d6f 
					 
					
						
						
							
							Fixes for aix-shared rules.  
						
						 
						
						
						
						
					 
					
						2007-03-22 08:46:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0f32c841a6 
					 
					
						
						
							
							stricter session ID context matching  
						
						 
						
						
						
						
					 
					
						2007-03-21 14:33:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						41a8d5167f 
					 
					
						
						
							
							clarification regarding libdes files  
						
						 
						
						
						
						
					 
					
						2007-03-21 10:58:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8f41e4fa4d 
					 
					
						
						
							
							link warnings caused by nasm modules.  
						
						 
						
						
						
						
					 
					
						2007-03-20 09:37:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						de50494505 
					 
					
						
						
							
							Two extra instructions in RC4 character loop give 80% performance  
						
						 
						
						... 
						
						
						
						improvement on Core2. I still need to detect Core2 and choose this
path... 
						
						
					 
					
						2007-03-20 09:13:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3d1def0132 
					 
					
						
						
							
							Remove obsolete comment.  
						
						 
						
						
						
						
					 
					
						2007-03-20 09:07:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a29f5110d 
					 
					
						
						
							
							Various PowerPC config updates.  
						
						 
						
						
						
						
					 
					
						2007-03-20 08:57:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8b71d35458 
					 
					
						
						
							
							nasm fixes.  
						
						 
						
						
						
						
					 
					
						2007-03-20 08:55:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						760e353528 
					 
					
						
						
							
							sparcv9a-mont was modified to handle 32-bit aligned input, but check  
						
						 
						
						... 
						
						
						
						for 64-bit alignment was not removed. 
						
						
					 
					
						2007-03-20 08:54:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3627fedbea 
					 
					
						
						
							
							Win32 fixes. Add GOST algorithm to mkdef, update ordinals. Signed/unsigned fixes.  
						
						 
						
						
						
						
					 
					
						2007-03-16 22:20:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bbb5cf05db 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-03-05 00:09:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ebb01b84b8 
					 
					
						
						
							
							size_t -> int  
						
						 
						
						
						
						
					 
					
						2007-03-02 19:56:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						a0d48e7e7e 
					 
					
						
						
							
							remove unused file  
						
						 
						
						
						
						
					 
					
						2007-03-02 19:42:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						1fcfa22222 
					 
					
						
						
							
							Initialize "buf" to 0 to make valgrind happy :-)  
						
						 
						
						... 
						
						
						
						Note: the RAND_bytes() manual page says:
 RAND_bytes() puts num cryptographically strong pseudo-random bytes into buf.
It does not talk about using the previous contents of buf so we are working
as documented. 
						
						
					 
					
						2007-03-02 17:54:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						c9fb4e2c8d 
					 
					
						
						
							
							Do not use uninitialized memory to seed the PRNG as it may confuse  
						
						 
						
						... 
						
						
						
						code checking tools.
PR: 1499 
						
						
					 
					
						2007-03-02 17:46:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e7ca5e1eb 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2007-02-27 18:43:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ralf S. Engelschall 
							
						 
					 
					
						
						
							
						
						954b274789 
					 
					
						
						
							
							small cosmetics: align title with the other similar manual page  
						
						 
						
						
						
						
					 
					
						2007-02-27 07:41:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0d5ac5a738 
					 
					
						
						
							
							allow EVP_PKEY_CTX_free(NULL)  
						
						 
						
						
						
						
					 
					
						2007-02-26 18:32:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c209a35820 
					 
					
						
						
							
							remove dead code  
						
						 
						
						
						
						
					 
					
						2007-02-26 18:21:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						dd2b6750db 
					 
					
						
						
							
							include complete 0.9.7 history  
						
						 
						
						... 
						
						
						
						include release date of 0.9.8e 
						
						
					 
					
						2007-02-26 10:49:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4bb89bca9e 
					 
					
						
						
							
							use 2007 copyright for generated files  
						
						 
						
						
						
						
					 
					
						2007-02-26 10:48:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac63b8370e 
					 
					
						
						
							
							Update FAQ,NEWS in HEAD.  
						
						 
						
						
						
						
					 
					
						2007-02-23 13:16:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						882d29dd87 
					 
					
						
						
							
							Fix incorrect substitution that happened during the recent ciphersuite  
						
						 
						
						... 
						
						
						
						selection remodeling
Submitted by: Victor Duchovni 
						
						
					 
					
						2007-02-22 21:31:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						ee373e7f19 
					 
					
						
						
							
							Fix problem with multi line responses in -starttls by using a buffering  
						
						 
						
						... 
						
						
						
						BIO and BIO_gets(). 
						
						
					 
					
						2007-02-22 17:39:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						8d72476e2b 
					 
					
						
						
							
							Extend SMTP and IMAP protocol handling to perform the required  
						
						 
						
						... 
						
						
						
						EHLO or CAPABILITY handshake before sending STARTTLS
Submitted by: Goetz Babin-Ebell <goetz@shomitefo.de > 
						
						
					 
					
						2007-02-21 18:20:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						02756aa8ba 
					 
					
						
						
							
							Add automatic detection for Linux on SuperH  
						
						 
						
						... 
						
						
						
						PR: 1152
Submitted by: Mike Frysinger <vapier@gentoo.org > 
						
						
					 
					
						2007-02-21 18:10:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						072dfb9e4e 
					 
					
						
						
							
							Add support for m68k linux  
						
						 
						
						... 
						
						
						
						PR: 1277
Submitted by: Mike Frysinger <vapier@gentoo.org > 
						
						
					 
					
						2007-02-21 17:58:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						0636c39bb1 
					 
					
						
						
							
							Fix incorrect handling of special characters  
						
						 
						
						... 
						
						
						
						PR: 1459
Submitted by: tnitschke@innominate.com 
Reviewed by: steve@openssl.org  
						
						
					 
					
						2007-02-21 17:44:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a2e623c011 
					 
					
						
						
							
							Update from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2007-02-21 13:49:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						aa79dd6895 
					 
					
						
						
							
							prefer SHA1 over MD5 (this affects the Kerberos ciphersuites)  
						
						 
						
						
						
						
					 
					
						2007-02-21 09:33:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						60cad2caed 
					 
					
						
						
							
							delete obsolete comment  
						
						 
						
						
						
						
					 
					
						2007-02-21 09:32:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						114c9c36b1 
					 
					
						
						
							
							SSL_kKRB5 ciphersuites shouldn't be preferred by default  
						
						 
						
						
						
						
					 
					
						2007-02-20 16:39:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fd5bc65cc8 
					 
					
						
						
							
							Improve ciphersuite order stability when disabling ciphersuites.  
						
						 
						
						... 
						
						
						
						Change ssl_create_cipher_list() to prefer ephemeral ECDH over
ephemeral DH. 
						
						
					 
					
						2007-02-20 16:36:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e041863905 
					 
					
						
						
							
							fix a typo in the new ciphersuite ordering code  
						
						 
						
						
						
						
					 
					
						2007-02-20 13:25:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0a05123a6c 
					 
					
						
						
							
							Include "!eNULL" in SSL_DEFAULT_CIPHER_LIST to make sure that a  
						
						 
						
						... 
						
						
						
						ciphersuite string such as "DEFAULT:RSA" cannot enable
authentication-only ciphersuites.
Also, change ssl_create_cipher_list() so that it no longer
starts with an arbitrary ciphersuite ordering, but instead
uses the logic that we previously had in SSL_DEFEAULT_CIPHER_LIST.
SSL_DEFAULT_CIPHER_LIST simplifies into just "ALL:!aNULL:!eNULL". 
						
						
					 
					
						2007-02-19 18:41:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2afe316721 
					 
					
						
						
							
							fix warnings for CIPHER_DEBUG builds  
						
						 
						
						
						
						
					 
					
						2007-02-19 16:59:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7e69565fe6 
					 
					
						
						
							
							fix warnings/inconsistencies caused by the recent changes to the  
						
						 
						
						... 
						
						
						
						ciphersuite selection code in HEAD
Submitted by: Victor Duchovni 
						
						
					 
					
						2007-02-19 14:53:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ccae144d62 
					 
					
						
						
							
							fix incorrect strength bit values for certain Kerberos ciphersuites  
						
						 
						
						... 
						
						
						
						Submitted by: Victor Duchovni 
						
						
					 
					
						2007-02-19 14:49:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d5ca32fa1 
					 
					
						
						
							
							Updates from 0.9.8-stable branch.  
						
						 
						
						
						
						
					 
					
						2007-02-18 18:21:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						52b8dad8ec 
					 
					
						
						
							
							Reorganize the data used for SSL ciphersuite pattern matching.  
						
						 
						
						... 
						
						
						
						This change resolves a number of problems and obviates multiple kludges.
A new feature is that you can now say "AES256" or "AES128" (not just
"AES", which enables both).
In some cases the ciphersuite list generated from a given string is
affected by this change.  I hope this is just in those cases where the
previous behaviour did not make sense. 
						
						
					 
					
						2007-02-17 06:45:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cc684e330b 
					 
					
						
						
							
							ensure that the EVP_CIPHER_CTX object is initialized  
						
						 
						
						... 
						
						
						
						PR: 1490 
						
						
					 
					
						2007-02-16 20:34:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						85c6749216 
					 
					
						
						
							
							Add STARTTLS support for IMAP and FTP.  
						
						 
						
						... 
						
						
						
						Submitted by Kees Cook <kees@outflux.net > 
						
						
					 
					
						2007-02-16 18:12:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						30e5e8aca5 
					 
					
						
						
							
							- use OPENSSL_malloc() etc. in zlib  
						
						 
						
						... 
						
						
						
						- move zlib_stateful_ex_idx initialization to COMP_zlib()
PR: 1468 
						
						
					 
					
						2007-02-14 21:52:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b900a6b42f 
					 
					
						
						
							
							avoid shifting input  
						
						 
						
						
						
						
					 
					
						2007-02-11 19:33:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						15780a1ea0 
					 
					
						
						
							
							use user-supplied malloc functions for persistent kssl objects  
						
						 
						
						... 
						
						
						
						PR: 1467
Submitted by: Andrei Pelinescu-Onciul <andrei@iptel.org > 
						
						
					 
					
						2007-02-10 10:42:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						92ada7cc52 
					 
					
						
						
							
							remove unreachable code  
						
						 
						
						
						
						
					 
					
						2007-02-10 09:45:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						53ca4761cc 
					 
					
						
						
							
							PR: 1483  
						
						 
						
						... 
						
						
						
						Add support for GOST 28147-89 in Gost ENGINE. 
						
						
					 
					
						2007-02-09 19:43:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52cfa39716 
					 
					
						
						
							
							Add -hmac option to dgst from 0.9.7 stable branch.  
						
						 
						
						
						
						
					 
					
						2007-02-08 19:07:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b3bad17d1a 
					 
					
						
						
							
							remove unused variable  
						
						 
						
						
						
						
					 
					
						2007-02-07 20:49:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						feaaf1dbea 
					 
					
						
						
							
							ensure that a ec key is used  
						
						 
						
						... 
						
						
						
						PR: 1476 
						
						
					 
					
						2007-02-07 20:28:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						82bf227e91 
					 
					
						
						
							
							After objects have been freed, NULLify the pointers so there will be no double  
						
						 
						
						... 
						
						
						
						free of those objects 
						
						
					 
					
						2007-02-07 01:42:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8807a2dfc4 
					 
					
						
						
							
							fix typo  
						
						 
						
						
						
						
					 
					
						2007-02-06 19:48:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						bcb38217c4 
					 
					
						
						
							
							add note about 56 bit ciphers  
						
						 
						
						... 
						
						
						
						PR: 1461 
						
						
					 
					
						2007-02-06 19:41:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						af32f9fdda 
					 
					
						
						
							
							Update from fips2 branch.  
						
						 
						
						
						
						
					 
					
						2007-02-03 17:32:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						357d5de5b9 
					 
					
						
						
							
							add support for DSA with SHA2  
						
						 
						
						
						
						
					 
					
						2007-02-03 14:41:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0501f02b06 
					 
					
						
						
							
							fix documentation  
						
						 
						
						... 
						
						
						
						PR: 1466 
						
						
					 
					
						2007-02-03 10:28:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						689f9faba4 
					 
					
						
						
							
							fix potential memory leaks  
						
						 
						
						... 
						
						
						
						PR: 1462 
						
						
					 
					
						2007-02-03 09:55:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						82686bdcaa 
					 
					
						
						
							
							Minimize aes_core.c footprint when AES_[en|de]crypt is implemented in  
						
						 
						
						... 
						
						
						
						assembler. 
						
						
					 
					
						2007-01-25 20:47:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						14b1d089b6 
					 
					
						
						
							
							Minor touch to aes-armv4.pl.  
						
						 
						
						
						
						
					 
					
						2007-01-25 11:28:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a296239bdd 
					 
					
						
						
							
							AES for ARMv4.  
						
						 
						
						
						
						
					 
					
						2007-01-25 10:44:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0b0896cdd2 
					 
					
						
						
							
							Minor optimization for sha1-armv4 module.  
						
						 
						
						
						
						
					 
					
						2007-01-25 10:44:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2d3e956ae0 
					 
					
						
						
							
							Update from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2007-01-23 17:53:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						36b7c06975 
					 
					
						
						
							
							SHA1 for ARMv4 and Thumb.  
						
						 
						
						
						
						
					 
					
						2007-01-22 20:33:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						42182852f5 
					 
					
						
						
							
							Constify version strings is ssl lib.  
						
						 
						
						
						
						
					 
					
						2007-01-21 16:06:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						560b79cbff 
					 
					
						
						
							
							Constify version strings and some structures.  
						
						 
						
						
						
						
					 
					
						2007-01-21 13:07:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6d799d705 
					 
					
						
						
							
							Add AOL an AOLTW root CAs to bundle.  
						
						 
						
						
						
						
					 
					
						2007-01-18 21:24:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						64aecc6720 
					 
					
						
						
							
							Make armv4t-mont module backward binary compatible with armv4 and rename it  
						
						 
						
						... 
						
						
						
						accordingly. 
						
						
					 
					
						2007-01-17 20:12:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						8ac40b4dea 
					 
					
						
						
							
							Update to new home page  
						
						 
						
						
						
						
					 
					
						2007-01-12 18:47:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						43b8fe1cd0 
					 
					
						
						
							
							Montgomery multiplication for ARMv4.  
						
						 
						
						
						
						
					 
					
						2007-01-11 21:43:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						39d764ed58 
					 
					
						
						
							
							remove undefined constant  
						
						 
						
						
						
						
					 
					
						2007-01-03 20:00:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a6ebe229e3 
					 
					
						
						
							
							opensslwrap.sh to respect $OPENSSL_ENGINES.  
						
						 
						
						
						
						
					 
					
						2006-12-29 15:00:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5c914f204a 
					 
					
						
						
							
							#include <stddef.h> in digest headers.  
						
						 
						
						... 
						
						
						
						Submitted by: Kurt Roeckx <kurt@roeckx.be > 
						
						
					 
					
						2006-12-29 14:51:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8876e58f34 
					 
					
						
						
							
							Montgomery multiplication for MIPS III/IV. Not engaged.  
						
						 
						
						
						
						
					 
					
						2006-12-29 11:09:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7321a84d4c 
					 
					
						
						
							
							Minor clean-up in crypto/bn/asm.  
						
						 
						
						
						
						
					 
					
						2006-12-29 11:05:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bb11c28246 
					 
					
						
						
							
							Minor clean-up in crypto/engine.  
						
						 
						
						
						
						
					 
					
						2006-12-29 10:55:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8d9f136d06 
					 
					
						
						
							
							Allow opensslwrap.sh to access engines from build tree.  
						
						 
						
						
						
						
					 
					
						2006-12-29 10:53:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						00b4e083fd 
					 
					
						
						
							
							Move eng_padlock.c to ./engines.  
						
						 
						
						... 
						
						
						
						Submitted by: Michal Ludvig <michal@logix.cz > 
						
						
					 
					
						2006-12-29 10:42:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4cfe3df1f5 
					 
					
						
						
							
							Minor performance improvements to x86-mont.pl.  
						
						 
						
						
						
						
					 
					
						2006-12-28 12:43:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8f2d60ec26 
					 
					
						
						
							
							Fix for "strange errors" exposed by ccgost engine. The fix is  
						
						 
						
						... 
						
						
						
						two extra insructions in sqradd loop at line #503 . 
						
						
					 
					
						2006-12-27 10:59:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						123b23fa95 
					 
					
						
						
							
							fix return value of get_cert_chain()  
						
						 
						
						... 
						
						
						
						PR: 1441 
						
						
					 
					
						2006-12-27 09:40:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						423a5d54a1 
					 
					
						
						
							
							Synchronise a bit more with Unixly build  
						
						 
						
						
						
						
					 
					
						2006-12-26 21:20:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8bbf6bcf17 
					 
					
						
						
							
							Needed definition of _XOPEN_SOURCE_EXTENDED so DEC C on VMS will see  
						
						 
						
						... 
						
						
						
						the declarations of fd_set, select() and so on. 
						
						
					 
					
						2006-12-25 10:54:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ea46f5e0e5 
					 
					
						
						
							
							Replace strdup() with BUF_strdup().  
						
						 
						
						
						
						
					 
					
						2006-12-25 09:43:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f6c848242 
					 
					
						
						
							
							Synchronise with Unixly build, again ;-)  
						
						 
						
						
						
						
					 
					
						2006-12-24 20:25:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						559d50138f 
					 
					
						
						
							
							Add bit I missed from PKCS#7 streaming encoder.  
						
						 
						
						
						
						
					 
					
						2006-12-24 16:46:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11d8cdc6ad 
					 
					
						
						
							
							Experimental streaming PKCS#7 support.  
						
						 
						
						... 
						
						
						
						I thought it was about time I dusted this off. This stuff had been sitting on
my hard drive for *ages* (2003 in fact). Hasn't been tested well and may not
work properly.
Nothing uses it at present which is just as well.
Think of this as a traditional Christmas present which looks far more
impressive in the adverts and on the box, some of the bits are missing and
falls to bits if you play with it too much. 
						
						
					 
					
						2006-12-24 16:22:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e49978dafe 
					 
					
						
						
							
							Synchronise with Unixly build  
						
						 
						
						
						
						
					 
					
						2006-12-24 09:27:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e1d9e533b5 
					 
					
						
						
							
							Oops! New prototype code creeped through...  
						
						 
						
						
						
						
					 
					
						2006-12-22 15:47:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f946dd7198 
					 
					
						
						
							
							Make sha.h more "portable."  
						
						 
						
						
						
						
					 
					
						2006-12-22 15:42:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1702c8c4bf 
					 
					
						
						
							
							x86-mont.pl sse2 tune-up and integer-only squaring procedure.  
						
						 
						
						
						
						
					 
					
						2006-12-22 15:28:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						afda1385bd 
					 
					
						
						
							
							use OPENSSL_NO_DYNAMIC_ENGINE macro, disable debug messages  
						
						 
						
						... 
						
						
						
						PR: 1440
Submitted by: Victor B. Wagner" <vitus@cryptocom.ru > 
						
						
					 
					
						2006-12-22 09:21:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fec38ca4ed 
					 
					
						
						
							
							fix typos  
						
						 
						
						... 
						
						
						
						PR: 1354, 1355, 1398, 1408 
						
						
					 
					
						2006-12-21 21:13:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ec1edeb5fa 
					 
					
						
						
							
							update pkcs12 help message + manpage  
						
						 
						
						... 
						
						
						
						PR: 1443
Submitted by: Artem Chuprina <ran@cryptocom.ru > 
						
						
					 
					
						2006-12-21 20:36:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b0ec114685 
					 
					
						
						
							
							fix order  
						
						 
						
						... 
						
						
						
						PR: 1442 
						
						
					 
					
						2006-12-21 19:50:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c92da5a605 
					 
					
						
						
							
							update  
						
						 
						
						
						
						
					 
					
						2006-12-21 19:48:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						06e2dd037e 
					 
					
						
						
							
							add support for ecdsa-with-sha256 etc.  
						
						 
						
						
						
						
					 
					
						2006-12-20 08:58:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						34f0a19309 
					 
					
						
						
							
							remove trailing '\'  
						
						 
						
						... 
						
						
						
						PR: 1438 
						
						
					 
					
						2006-12-19 19:49:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						772e3c07b4 
					 
					
						
						
							
							Fix the BIT STRING encoding of EC points or parameter seeds  
						
						 
						
						... 
						
						
						
						(need to prevent the removal of trailing zero bits). 
						
						
					 
					
						2006-12-19 15:11:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						360ff3cf58 
					 
					
						
						
							
							fix order  
						
						 
						
						
						
						
					 
					
						2006-12-18 22:20:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						5dfe910023 
					 
					
						
						
							
							properly initialize SSL context, check return value  
						
						 
						
						
						
						
					 
					
						2006-12-13 22:06:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						91b73acb19 
					 
					
						
						
							
							use const ASN1_TIME *  
						
						 
						
						
						
						
					 
					
						2006-12-11 22:35:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						87d3af6475 
					 
					
						
						
							
							Eliminate 64-bit alignment limitation in sparcv9a-mont.  
						
						 
						
						
						
						
					 
					
						2006-12-08 15:18:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						98c1509f34 
					 
					
						
						
							
							Engage alpha-mont module. Actually verified on Tru64 only.  
						
						 
						
						
						
						
					 
					
						2006-12-08 14:42:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						98939a05b6 
					 
					
						
						
							
							alpha-mont.pl: gcc portability fix and make-rule.  
						
						 
						
						
						
						
					 
					
						2006-12-08 14:18:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d28134b8f3 
					 
					
						
						
							
							Minor, +10%, tune-up for x86_64-mont.pl.  
						
						 
						
						
						
						
					 
					
						2006-12-08 10:13:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8583eba015 
					 
					
						
						
							
							Montgomery multiplication routine for Alpha.  
						
						 
						
						
						
						
					 
					
						2006-12-08 10:12:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5894b98f99 
					 
					
						
						
							
							Update from 0.9.7-stable branch.  
						
						 
						
						
						
						
					 
					
						2006-12-07 13:29:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5de3a0ff3d 
					 
					
						
						
							
							Sync OID NIDs with OpenSSL 0.9.8.  
						
						 
						
						
						
						
					 
					
						2006-12-06 13:44:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10ca15f3fa 
					 
					
						
						
							
							Fix change to OPENSSL_NO_RFC3779  
						
						 
						
						
						
						
					 
					
						2006-12-06 13:36:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						da736b31b2 
					 
					
						
						
							
							fix documentation  
						
						 
						
						... 
						
						
						
						PR: 1343 
						
						
					 
					
						2006-12-06 09:10:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fa9ac569b8 
					 
					
						
						
							
							avoid duplicate entries in add_cert_dir()  
						
						 
						
						... 
						
						
						
						PR: 1407
Submitted by: Tomas Mraz <tmraz@redhat.com > 
						
						
					 
					
						2006-12-05 21:21:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						10a10fb834 
					 
					
						
						
							
							return 0 if 'noout' is used and no error has occurred  
						
						 
						
						... 
						
						
						
						PR: 1435
Submitted by: "Haridharan" <haridharan@gmail.com > 
						
						
					 
					
						2006-12-05 20:09:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0f997d0dc3 
					 
					
						
						
							
							allocate a new attributes entry in X509_REQ_add_extensions()  
						
						 
						
						... 
						
						
						
						if it's NULL (in case of a malformed pkcs10 request)
PR: 1347
Submitted by: Remo Inverardi <invi@your.toilet.ch > 
						
						
					 
					
						2006-12-04 19:11:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b0eedd77f6 
					 
					
						
						
							
							add "Certificate Issuer" and "Subject Directory Attributes" OIDs  
						
						 
						
						... 
						
						
						
						PR: 1433 
						
						
					 
					
						2006-12-04 18:51:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						502aef5aaf 
					 
					
						
						
							
							Eliminate redundant variable in Camellia CBC routine.  
						
						 
						
						
						
						
					 
					
						2006-12-02 11:52:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9f8cfb1c62 
					 
					
						
						
							
							Improve Camellia code readability.  
						
						 
						
						
						
						
					 
					
						2006-12-02 11:12:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c163b5f7a0 
					 
					
						
						
							
							Fix bugs in Camellia CBC routine.  
						
						 
						
						
						
						
					 
					
						2006-12-02 10:56:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						20da8b8f90 
					 
					
						
						
							
							Camellia portability fixes.  
						
						 
						
						... 
						
						
						
						Submitted by: Masashi Fujita, NTT 
						
						
					 
					
						2006-12-02 10:38:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ae93dc13ab 
					 
					
						
						
							
							add support for whirlpool in apps/speed  
						
						 
						
						... 
						
						
						
						PR: 1338
Submitted by: justin@soze.net  
						
						
					 
					
						2006-12-01 21:42:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77e87e6148 
					 
					
						
						
							
							Fix default dependency flags.  
						
						 
						
						
						
						
					 
					
						2006-11-30 13:55:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6e700e665 
					 
					
						
						
							
							Import ordinals from 0.9.8 and update.  
						
						 
						
						
						
						
					 
					
						2006-11-30 13:47:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d7aff707e 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2006-11-30 13:41:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d137b56a5b 
					 
					
						
						
							
							Win32 fixes from stable branch.  
						
						 
						
						
						
						
					 
					
						2006-11-30 13:39:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7806f3dd4b 
					 
					
						
						
							
							replace macros with functions  
						
						 
						
						... 
						
						
						
						Submitted by: Tracy Camp <tracyx.e.camp@intel.com > 
						
						
					 
					
						2006-11-29 20:54:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1e24b3a09e 
					 
					
						
						
							
							fix support for receiving fragmented handshake messages  
						
						 
						
						
						
						
					 
					
						2006-11-29 14:45:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						73b979e601 
					 
					
						
						
							
							Clarify HAL SPARC64 support situation in sparcv9a-mont.pl.  
						
						 
						
						
						
						
					 
					
						2006-11-28 11:07:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ebae8092cb 
					 
					
						
						
							
							Minor optimizations based on intruction level profiler feedback.  
						
						 
						
						
						
						
					 
					
						2006-11-28 10:34:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2e21922eb6 
					 
					
						
						
							
							Modulo-schedule loops in sparcv9a-mont.pl. Overall improvement factor  
						
						 
						
						... 
						
						
						
						over 0.9.8 is up to 3x on USI&II cores and up to 80% - on USIII&IV. 
						
						
					 
					
						2006-11-28 07:24:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1c3d2b94be 
					 
					
						
						
							
							This is "informational" commit. Its mere purpose is to expose "modulo  
						
						 
						
						... 
						
						
						
						factor" in inner loops. 
						
						
					 
					
						2006-11-28 07:20:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						48d2335d73 
					 
					
						
						
							
							Non-SSE2 path to bn_mul_mont. But it's disabled, because it currently  
						
						 
						
						... 
						
						
						
						doesn't give performance improvement. 
						
						
					 
					
						2006-11-27 14:59:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						96ea4ae91c 
					 
					
						
						
							
							Add RFC 3779 support.  
						
						 
						
						
						
						
					 
					
						2006-11-27 14:18:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7af5726108 
					 
					
						
						
							
							sha512-ppc.pl mutli-thread safety fix.  
						
						 
						
						
						
						
					 
					
						2006-11-27 13:11:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						69d4646f4e 
					 
					
						
						
							
							register the engine as default engine in ENGINE_set_default()  
						
						 
						
						... 
						
						
						
						PR: 1431 
						
						
					 
					
						2006-11-24 18:37:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8bd11f3ec2 
					 
					
						
						
							
							Add .cvsignore  
						
						 
						
						
						
						
					 
					
						2006-11-21 21:37:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						47a9d527ab 
					 
					
						
						
							
							Update from 0.9.8 stable. Eliminate duplicate error codes.  
						
						 
						
						
						
						
					 
					
						2006-11-21 21:29:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						d9907c972b 
					 
					
						
						
							
							wording (can't really call shared libs experimental after several years in the major Linux distributions)  
						
						 
						
						
						
						
					 
					
						2006-11-21 20:51:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1444bfb2c8 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2006-11-16 00:56:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14975faa60 
					 
					
						
						
							
							Remove illegal IMPLEMENT macros from header file.  
						
						 
						
						
						
						
					 
					
						2006-11-16 00:55:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f12464861 
					 
					
						
						
							
							Remove redundant PREDECLARE statement.  
						
						 
						
						
						
						
					 
					
						2006-11-16 00:52:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						de12116417 
					 
					
						
						
							
							Initial, incomplete support for typesafe macros without using function  
						
						 
						
						... 
						
						
						
						casts. 
						
						
					 
					
						2006-11-16 00:19:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						28b987aec9 
					 
					
						
						
							
							Don't assume requestorName is present for signed requests. ASN1 OCSP module  
						
						 
						
						... 
						
						
						
						fix: certs field is OPTIONAL. 
						
						
					 
					
						2006-11-13 13:21:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb596f3bb7 
					 
					
						
						
							
							OCSP library tidy. Use extension to encode OCSP extensions instead of doing  
						
						 
						
						... 
						
						
						
						it manually. Make OCSP_CERTID_dup() a real function instead of a macro. 
						
						
					 
					
						2006-11-13 13:18:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						84948b39df 
					 
					
						
						
							
							Fix various warnings.  
						
						 
						
						
						
						
					 
					
						2006-11-08 09:45:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf32ad7fe3 
					 
					
						
						
							
							Make TSA tests use the noprompt mode of utilities rather than piping  
						
						 
						
						... 
						
						
						
						the result into interative utilities. 
						
						
					 
					
						2006-11-07 16:21:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad0e439604 
					 
					
						
						
							
							Avoid shadow warning.  
						
						 
						
						
						
						
					 
					
						2006-11-07 16:20:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5456583294 
					 
					
						
						
							
							Don't add the TS EKU by default in openssl.cnf because it then  
						
						 
						
						... 
						
						
						
						makes certificates genereated by ca, CA.pl etc useless for anything else. 
						
						
					 
					
						2006-11-07 14:27:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f1845cbee8 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-11-07 13:46:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						51cc37b69d 
					 
					
						
						
							
							Fix link for ASN1_generate_nconf  
						
						 
						
						
						
						
					 
					
						2006-11-07 13:44:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff1b10dca1 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-11-07 13:17:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ebeb17e2e0 
					 
					
						
						
							
							Add v3 ref to see also sections.  
						
						 
						
						
						
						
					 
					
						2006-11-07 13:13:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						137de5b157 
					 
					
						
						
							
							Add documentetion for noCheck extension and add a few cross references to  
						
						 
						
						... 
						
						
						
						the extension documentation. 
						
						
					 
					
						2006-11-07 12:51:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						224328e404 
					 
					
						
						
							
							fix warning  
						
						 
						
						
						
						
					 
					
						2006-11-06 20:10:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						1611b9ed80 
					 
					
						
						
							
							remove SSLEAY_MACROS code  
						
						 
						
						
						
						
					 
					
						2006-11-06 19:53:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8a4af56fc6 
					 
					
						
						
							
							update md docs  
						
						 
						
						
						
						
					 
					
						2006-10-27 21:58:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						05cfe06607 
					 
					
						
						
							
							fix OPENSSL_NO_foo defines  
						
						 
						
						
						
						
					 
					
						2006-10-27 21:25:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b37a68cc8f 
					 
					
						
						
							
							Initialize old_priv_encode, old_priv_decode.  
						
						 
						
						
						
						
					 
					
						2006-10-27 11:43:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a2688c872d 
					 
					
						
						
							
							Minor portability update to c_rehash.  
						
						 
						
						
						
						
					 
					
						2006-10-26 10:52:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5b50f99e1e 
					 
					
						
						
							
							Further mingw build procedure updates.  
						
						 
						
						
						
						
					 
					
						2006-10-24 22:14:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b8994b6130 
					 
					
						
						
							
							Harmonize dll naming in mingw builds.  
						
						 
						
						
						
						
					 
					
						2006-10-23 11:54:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d7917c584a 
					 
					
						
						
							
							Yet another mingw warning.  
						
						 
						
						
						
						
					 
					
						2006-10-23 07:45:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						544d845585 
					 
					
						
						
							
							OPENSSL_ia32cap.pod update.  
						
						 
						
						
						
						
					 
					
						2006-10-23 07:44:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a6efc2d1b8 
					 
					
						
						
							
							Fix mingw warnings.  
						
						 
						
						
						
						
					 
					
						2006-10-23 07:41:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3189772e07 
					 
					
						
						
							
							Switch Win32/64 targets to Winsock2. Updates to ISNTALL.W32 cover even  
						
						 
						
						... 
						
						
						
						recent mingw modifications. 
						
						
					 
					
						2006-10-23 07:38:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						08a638237d 
					 
					
						
						
							
							Allow for mingw cross-compile configuration.  
						
						 
						
						
						
						
					 
					
						2006-10-23 07:30:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8cdd1567f 
					 
					
						
						
							
							Make c_rehash more platform neutral and make it work in mixed environment,  
						
						 
						
						... 
						
						
						
						such as MSYS with "native" Win32 perl. 
						
						
					 
					
						2006-10-21 16:28:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cbfb39d1be 
					 
					
						
						
							
							Rudimentary support for cross-compiling.  
						
						 
						
						
						
						
					 
					
						2006-10-21 13:38:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a4d64c7f49 
					 
					
						
						
							
							Align data payload for better performance.  
						
						 
						
						
						
						
					 
					
						2006-10-20 11:26:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1e7b6c029c 
					 
					
						
						
							
							Avoid application relink on every make invocation.  
						
						 
						
						
						
						
					 
					
						2006-10-20 11:23:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3634d7e97a 
					 
					
						
						
							
							Gcc over-optimizes PadLock AES CFB codepath, tell it not to.  
						
						 
						
						
						
						
					 
					
						2006-10-19 20:55:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						53d7efea76 
					 
					
						
						
							
							Temporary fix for sha256 IA64 assembler.  
						
						 
						
						
						
						
					 
					
						2006-10-18 09:42:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						002684d693 
					 
					
						
						
							
							Fix bug in big-endian path and optimize it for size.  
						
						 
						
						
						
						
					 
					
						2006-10-18 08:15:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c038b8aa56 
					 
					
						
						
							
							Typo in perlasm/x86asm.pl.  
						
						 
						
						
						
						
					 
					
						2006-10-17 16:21:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c5f17d45c1 
					 
					
						
						
							
							Further synchronizations with md32_common.h update, consistent naming  
						
						 
						
						... 
						
						
						
						for low-level SHA block routines. 
						
						
					 
					
						2006-10-17 16:13:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31439046e0 
					 
					
						
						
							
							bn/asm/ppc.pl to use ppc-xlate.pl.  
						
						 
						
						
						
						
					 
					
						2006-10-17 14:37:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						11d0ebc841 
					 
					
						
						
							
							Further synchronizations with md32_common.h update.  
						
						 
						
						
						
						
					 
					
						2006-10-17 13:38:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cecfdbf72d 
					 
					
						
						
							
							VIA-specific Montgomery multiplication routine.  
						
						 
						
						
						
						
					 
					
						2006-10-17 07:04:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f0f61f6d0d 
					 
					
						
						
							
							Synchronize SHA1 assembler with md32_common.h update.  
						
						 
						
						
						
						
					 
					
						2006-10-17 07:00:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d68ff71004 
					 
					
						
						
							
							Support for .asciz directive in perlasm modules.  
						
						 
						
						
						
						
					 
					
						2006-10-17 06:43:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						591e85e928 
					 
					
						
						
							
							Linking errors on IA64 and typo in aes-ia64.S.  
						
						 
						
						
						
						
					 
					
						2006-10-17 06:41:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c69ed6ea39 
					 
					
						
						
							
							Re-implement md32_common.h [make it simpler!] and eliminate code rendered  
						
						 
						
						... 
						
						
						
						redundant as result. 
						
						
					 
					
						2006-10-11 11:55:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						55a08fac68 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-10-05 21:59:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						2fc281d01f 
					 
					
						
						
							
							return an error if the supplied precomputed values lead to an invalid signature  
						
						 
						
						
						
						
					 
					
						2006-10-04 19:37:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d326582cab 
					 
					
						
						
							
							ASN1_item_verify needs to initialize ctx before any "goto err" can  
						
						 
						
						... 
						
						
						
						happen; the new code for the OID cross reference table failed to do so. 
						
						
					 
					
						2006-10-04 06:14:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4c630abb3 
					 
					
						
						
							
							Place standard CRL behaviour in default X509_CRL_METHOD new functions to  
						
						 
						
						... 
						
						
						
						create, free and set default CRL method. 
						
						
					 
					
						2006-10-03 02:47:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						c2cccfc585 
					 
					
						
						
							
							Initialise ctx to NULL to avoid uninitialized free, noticed by  
						
						 
						
						... 
						
						
						
						Steve Kiernan 
						
						
					 
					
						2006-09-29 08:21:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3c5406b35c 
					 
					
						
						
							
							All 0.9.8d patches have been applied to HEAD now, so we no longer need  
						
						 
						
						... 
						
						
						
						the redundant entries under the 0.9.9 heading. 
						
						
					 
					
						2006-09-28 13:50:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5e3225cc44 
					 
					
						
						
							
							Introduce limits to prevent malicious keys being able to  
						
						 
						
						... 
						
						
						
						cause a denial of service.  (CVE-2006-2940)
[Steve Henson, Bodo Moeller] 
						
						
					 
					
						2006-09-28 13:45:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						61118caa86 
					 
					
						
						
							
							include 0.9.8d and 0.9.7l information  
						
						 
						
						
						
						
					 
					
						2006-09-28 13:35:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						348be7ec60 
					 
					
						
						
							
							Fix ASN.1 parsing of certain invalid structures that can result  
						
						 
						
						... 
						
						
						
						in a denial of service.  (CVE-2006-2937)  [Steve Henson] 
						
						
					 
					
						2006-09-28 13:20:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						3ff55e9680 
					 
					
						
						
							
							Fix buffer overflow in SSL_get_shared_ciphers() function.  
						
						 
						
						... 
						
						
						
						(CVE-2006-3738) [Tavis Ormandy and Will Drewry, Google Security Team]
Fix SSL client code which could crash if connecting to a
 malicious SSLv2 server.  (CVE-2006-4343)
[Tavis Ormandy and Will Drewry, Google Security Team] 
						
						
					 
					
						2006-09-28 13:18:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cbb92dfaf0 
					 
					
						
						
							
							Fixes for the following claims:  
						
						 
						
						... 
						
						
						
						1) Certificate Message with no certs
  OpenSSL implementation sends the Certificate message during SSL
  handshake, however as per the specification, these have been omitted.
  -- RFC 2712 --
     CertificateRequest, and the ServerKeyExchange shown in Figure 1
     will be omitted since authentication and the establishment of a
     master secret will be done using the client's Kerberos credentials
     for the TLS server.  The client's certificate will be omitted for
     the same reason.
  -- RFC 2712 --
  3) Pre-master secret Protocol version
  The pre-master secret generated by OpenSSL does not have the correct
  client version.
  RFC 2712 says, if the Kerberos option is selected, the pre-master
  secret structure is the same as that used in the RSA case.
  TLS specification defines pre-master secret as:
         struct {
             ProtocolVersion client_version;
             opaque random[46];
         } PreMasterSecret;
  where client_version is the latest protocol version supported by the
  client
  The pre-master secret generated by OpenSSL does not have the correct
  client version. The implementation does not update the first 2 bytes
  of random secret for Kerberos Cipher suites. At the server-end, the
  client version from the pre-master secret is not validated.
PR: 1336 
						
						
					 
					
						2006-09-28 12:22:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						019bfef899 
					 
					
						
						
							
							Initialize new callbacks and make sure hent is always initialized.  
						
						 
						
						
						
						
					 
					
						2006-09-26 13:25:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0709249f4c 
					 
					
						
						
							
							Complete the change for VMS.  
						
						 
						
						
						
						
					 
					
						2006-09-25 08:35:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						89c9c66736 
					 
					
						
						
							
							Submitted by: Brad Spencer <spencer@jacknife.org>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve 
						
						
					 
					
						2006-09-23 17:29:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						347ed3b93c 
					 
					
						
						
							
							Buffer size handling fix for enc.  
						
						 
						
						... 
						
						
						
						PR:1374 
						
						
					 
					
						2006-09-22 17:14:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5b73c3609b 
					 
					
						
						
							
							Using correct lock for X509_REQ.  
						
						 
						
						... 
						
						
						
						PR:1348 
						
						
					 
					
						2006-09-22 17:06:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eebeb52b29 
					 
					
						
						
							
							Update length if copying MSB set in asn1_string_canon().  
						
						 
						
						
						
						
					 
					
						2006-09-22 13:37:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ec6cfc767 
					 
					
						
						
							
							Updated file.  
						
						 
						
						
						
						
					 
					
						2006-09-21 16:19:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						44181ea836 
					 
					
						
						
							
							Add missing prototype. Fix various warnings (C++ comments, ; outside function).  
						
						 
						
						
						
						
					 
					
						2006-09-21 13:24:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c80c7bf999 
					 
					
						
						
							
							Make int_rsa_sign function match prototype.  
						
						 
						
						... 
						
						
						
						PR: 1383 
						
						
					 
					
						2006-09-21 13:11:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ffa5ebf3f4 
					 
					
						
						
							
							Compile in gost engine.  
						
						 
						
						
						
						
					 
					
						2006-09-21 13:07:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						926c41bd29 
					 
					
						
						
							
							Updated version of gost engine.  
						
						 
						
						
						
						
					 
					
						2006-09-21 13:04:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1182301ca7 
					 
					
						
						
							
							Do CRL method init after other operations.  
						
						 
						
						
						
						
					 
					
						2006-09-21 12:48:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						010fa0b331 
					 
					
						
						
							
							Tidy up CRL handling by checking for critical extensions when it is  
						
						 
						
						... 
						
						
						
						loaded. Add new function X509_CRL_get0_by_serial() to lookup a revoked
entry to avoid the need to access the structure directly.
Add new X509_CRL_METHOD to allow common CRL operations (verify, lookup) to be
redirected. 
						
						
					 
					
						2006-09-21 12:42:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4ca7d975af 
					 
					
						
						
							
							Build error on non-unix.  
						
						 
						
						... 
						
						
						
						PR: 1390 
						
						
					 
					
						2006-09-18 19:50:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b774111020 
					 
					
						
						
							
							Race condition in ms/uplink.c.  
						
						 
						
						... 
						
						
						
						PR: 1382 
						
						
					 
					
						2006-09-18 19:41:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						78260d890b 
					 
					
						
						
							
							As x86ms.pl is out, remove do_masm.bat and mention to it in INSTALL.W32.  
						
						 
						
						
						
						
					 
					
						2006-09-18 19:20:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4b67fefe5a 
					 
					
						
						
							
							Remove x86ms.pl and reimplement x86*.pl.  
						
						 
						
						
						
						
					 
					
						2006-09-18 19:17:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3a8012cbf2 
					 
					
						
						
							
							Improve 386 portability of aes-586.pl.  
						
						 
						
						
						
						
					 
					
						2006-09-18 19:13:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a53cdc5b08 
					 
					
						
						
							
							Ensure that the addition mods[i]+delta cannot overflow in probable_prime().  
						
						 
						
						... 
						
						
						
						[Problem pointed out by Adam Young <adamy (at) acm.org>] 
						
						
					 
					
						2006-09-18 14:00:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d20c4fb35 
					 
					
						
						
							
							Overhaul of by_dir code to handle dynamic loading of CRLs.  
						
						 
						
						
						
						
					 
					
						2006-09-17 17:16:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a04549cc75 
					 
					
						
						
							
							GOST public key algorithm ENGINE donated to the OpenSSL by Cryptocom.  
						
						 
						
						... 
						
						
						
						Very early version, doesn't do much yet, not even added to the build system. 
						
						
					 
					
						2006-09-17 13:00:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc7535bc7f 
					 
					
						
						
							
							Support for AKID in CRLs and partial support for IDP. Overhaul of CRL  
						
						 
						
						... 
						
						
						
						handling to support this. 
						
						
					 
					
						2006-09-14 17:25:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83357f047d 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2006-09-13 03:28:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b6699c3f07 
					 
					
						
						
							
							Update  
						
						 
						
						
						
						
					 
					
						2006-09-12 14:42:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						016bc5ceb3 
					 
					
						
						
							
							Fixes for new CRL/cert callbacks. Update CRL processing code to use new  
						
						 
						
						... 
						
						
						
						callbacks. 
						
						
					 
					
						2006-09-11 13:00:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ed65f7dc34 
					 
					
						
						
							
							ensure that ciphersuite strings such as "RC4-MD5" match the SSL 2.0  
						
						 
						
						... 
						
						
						
						ciphersuite as well 
						
						
					 
					
						2006-09-11 09:49:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d50a2b4d6 
					 
					
						
						
							
							Add verify callback functions to lookup a STACK of matching certs or CRLs  
						
						 
						
						... 
						
						
						
						based on subject name.
New thread safe functions to retrieve matching STACK from X509_STORE.
Cache some IDP components. 
						
						
					 
					
						2006-09-10 12:38:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7f4301668f 
					 
					
						
						
							
							Make sure the int_rsa_verify() prototype matches the implementation  
						
						 
						
						... 
						
						
						
						(m_len currently is 'unsigned int', not 'size_t')
Submitted by: Gisle Vanem 
						
						
					 
					
						2006-09-08 06:00:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29a1bb07e5 
					 
					
						
						
							
							Additional detail.  
						
						 
						
						
						
						
					 
					
						2006-09-06 11:59:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						99e9a90081 
					 
					
						
						
							
							update information on "current version" ...  
						
						 
						
						
						
						
					 
					
						2006-09-06 11:54:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						715020e334 
					 
					
						
						
							
							Add an FAQ.  
						
						 
						
						
						
						
					 
					
						2006-09-06 11:53:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2952886010 
					 
					
						
						
							
							Remove non-functional part of recent patch, after discussion with  
						
						 
						
						... 
						
						
						
						Colin Percival (this would have caused more problems than solved,
and isn't really necessary anyway) 
						
						
					 
					
						2006-09-06 06:43:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						613e7d2a65 
					 
					
						
						
							
							Make consistent with 0.9.8-branch version of this file  
						
						 
						
						
						
						
					 
					
						2006-09-06 06:42:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						6a2c471077 
					 
					
						
						
							
							Every change so far that is in the 0.9.8 branch is (or should be) in HEAD  
						
						 
						
						
						
						
					 
					
						2006-09-06 06:34:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						b79aa05e3b 
					 
					
						
						
							
							Avoid PKCS  #1  v1.5 signature attack discovered by Daniel Bleichenbacher  
						
						 
						
						... 
						
						
						
						(CVE-2006-4339)
Submitted by: Ben Laurie, Google Security Team
Reviewed by: bmoeller, mjc, shenson 
						
						
					 
					
						2006-09-05 08:58:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						500b5a181d 
					 
					
						
						
							
							Rewrite sha1-586.pl.  
						
						 
						
						
						
						
					 
					
						2006-08-31 21:27:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2b8a5406f9 
					 
					
						
						
							
							Fix bug in aes-586.pl.  
						
						 
						
						
						
						
					 
					
						2006-08-31 21:15:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2f35ae90fe 
					 
					
						
						
							
							Fix bug in x86unix.pl introduced in latest update.  
						
						 
						
						... 
						
						
						
						PR: 1380 
						
						
					 
					
						2006-08-31 21:12:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0fca32a7aa 
					 
					
						
						
							
							Kill more C++ comments.  
						
						 
						
						
						
						
					 
					
						2006-08-31 21:01:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						02c9b66a6c 
					 
					
						
						
							
							Fix C++ style comments, change assert to OPENSSL_assert, stop warning with  
						
						 
						
						... 
						
						
						
						pedantic mode. 
						
						
					 
					
						2006-08-31 20:56:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						539d4c1030 
					 
					
						
						
							
							Fix leak  
						
						 
						
						
						
						
					 
					
						2006-08-31 20:10:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						aa6d1a0c19 
					 
					
						
						
							
							Forward port of IGE mode.  
						
						 
						
						
						
						
					 
					
						2006-08-31 14:04:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						777c47acbe 
					 
					
						
						
							
							Make things static that should be. Declare stuff in headers that should be.  
						
						 
						
						... 
						
						
						
						Fix warnings. 
						
						
					 
					
						2006-08-28 17:01:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5776c3c4c6 
					 
					
						
						
							
							According to documentation, including time.h declares select() on  
						
						 
						
						... 
						
						
						
						OpenVMS, and possibly more.
Ref: http://h71000.www7.hp.com/doc/82final/6529/6529pro_019.html#r_select  
						
						
					 
					
						2006-08-20 05:54:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0c3d346cb7 
					 
					
						
						
							
							Correct warnings about signedness.  
						
						 
						
						
						
						
					 
					
						2006-08-20 05:18:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						1c23bc5670 
					 
					
						
						
							
							Use gmtime on cygwin  
						
						 
						
						... 
						
						
						
						Submitted by: Corinna Vinschen 
						
						
					 
					
						2006-08-13 09:03:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8ea975d070 
					 
					
						
						
							
							+20% tune-up for Power5.  
						
						 
						
						
						
						
					 
					
						2006-08-09 15:40:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6c69aa532e 
					 
					
						
						
							
							Revised AES_cbc_encrypt in x86 assembler module.  
						
						 
						
						
						
						
					 
					
						2006-08-07 09:05:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						6264c9b2a9 
					 
					
						
						
							
							Correct punctuation.  
						
						 
						
						... 
						
						
						
						PR: 1367 
						
						
					 
					
						2006-08-05 20:45:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fc92414273 
					 
					
						
						
							
							Agressively prefetch S-box in SSE codepatch, relax alignment requirement,  
						
						 
						
						... 
						
						
						
						check for SSE bit instead of MMX, as pshufw was introduces in PIII, minor
optimization, typos... 
						
						
					 
					
						2006-08-02 22:38:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						53154d71c3 
					 
					
						
						
							
							Switch to compact S-box when generating AES key schedule.  
						
						 
						
						
						
						
					 
					
						2006-08-02 07:46:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8cebec9802 
					 
					
						
						
							
							Switch to compact S-box when generating AES key schedule.  
						
						 
						
						
						
						
					 
					
						2006-08-01 22:10:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0209d1605d 
					 
					
						
						
							
							Real Bourne shell doesn't interpret ==, but =.  
						
						 
						
						
						
						
					 
					
						2006-08-01 16:12:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c8a0d0aaf9 
					 
					
						
						
							
							Engage assembler in solaris64-x86_64-cc.  
						
						 
						
						
						
						
					 
					
						2006-07-31 22:28:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0cc46efa09 
					 
					
						
						
							
							perlasm/x86unix.pl update.  
						
						 
						
						
						
						
					 
					
						2006-07-31 22:26:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						22c268e6c9 
					 
					
						
						
							
							Next generation aes-586.pl featuring AES_[en|de]crypt, accessing exclusively  
						
						 
						
						... 
						
						
						
						256 byte S-box. AES_cbc_encrypt needs further work as it should also use
slow routines when processing smaller amount of data. 
						
						
					 
					
						2006-07-31 20:03:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						dd0514e2cc 
					 
					
						
						
							
							Camellia IPR information  
						
						 
						
						
						
						
					 
					
						2006-07-31 11:50:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f6e7d01450 
					 
					
						
						
							
							Support for multiple CRLs with same issuer name in X509_STORE. Modify  
						
						 
						
						... 
						
						
						
						verify logic to try to use an unexpired CRL if possible. 
						
						
					 
					
						2006-07-25 17:39:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						edc540211c 
					 
					
						
						
							
							Cache some CRL related extensions.  
						
						 
						
						
						
						
					 
					
						2006-07-24 12:39:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2eed3a3cc8 
					 
					
						
						
							
							Avoid warning.  
						
						 
						
						
						
						
					 
					
						2006-07-21 22:46:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1aa44cc797 
					 
					
						
						
							
							Avoid WIN32 warning.  
						
						 
						
						
						
						
					 
					
						2006-07-21 22:28:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37c8fd0eba 
					 
					
						
						
							
							Avoid warnings.  
						
						 
						
						
						
						
					 
					
						2006-07-21 22:26:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						786aa98da1 
					 
					
						
						
							
							Use correct pointer types for various functions.  
						
						 
						
						
						
						
					 
					
						2006-07-20 16:56:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						413e0853d7 
					 
					
						
						
							
							New Camellia implementation (replacing previous version)  
						
						 
						
						... 
						
						
						
						Submitted by: NTT 
						
						
					 
					
						2006-07-19 13:38:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8e4560c42f 
					 
					
						
						
							
							Camellia information  
						
						 
						
						
						
						
					 
					
						2006-07-19 13:36:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						450ea83495 
					 
					
						
						
							
							Store canonical encodings of Name structures. Update X509_NAME_cmp() to use  
						
						 
						
						... 
						
						
						
						them. 
						
						
					 
					
						2006-07-18 12:36:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						af8c1d81a3 
					 
					
						
						
							
							Reimplement outer rounds as "compact" in x86 assembler. This has rather  
						
						 
						
						... 
						
						
						
						strong impact on decrypt performance, 20-25%. One probably should consider
switching between slower and faster routines depending on how much data
we were asked to process. 
						
						
					 
					
						2006-07-18 10:05:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b589427941 
					 
					
						
						
							
							WIN32 fixes signed/unsigned issues and slightly socket semantics.  
						
						 
						
						
						
						
					 
					
						2006-07-17 18:52:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f0fa285f75 
					 
					
						
						
							
							Update .cvsignore again.  
						
						 
						
						
						
						
					 
					
						2006-07-17 16:42:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0b5b07010 
					 
					
						
						
							
							Update .cvsignore  
						
						 
						
						
						
						
					 
					
						2006-07-17 16:40:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5c95c2ac23 
					 
					
						
						
							
							Fix various error codes to match functions.  
						
						 
						
						
						
						
					 
					
						2006-07-17 16:33:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						454dbbc593 
					 
					
						
						
							
							Add -timeout option to ocsp utility.  
						
						 
						
						
						
						
					 
					
						2006-07-17 13:26:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1c6c0bf45 
					 
					
						
						
							
							New non-blocking OCSP functionality.  
						
						 
						
						
						
						
					 
					
						2006-07-17 12:18:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dff2922aa7 
					 
					
						
						
							
							Add option for "compact" rounds to aes_x86core.c. "Compact" rounds are  
						
						 
						
						... 
						
						
						
						those referencing compact, 256-byte, S-boxes. 
						
						
					 
					
						2006-07-14 09:57:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f253a058d3 
					 
					
						
						
							
							There is should be no need to rewind the input stream any more.  
						
						 
						
						... 
						
						
						
						For S/MIME multipart/signed type the signature is calculated on the fly.
For other detached data forms the stream isn't used after the single pass to
calculate signatures.
For non-detached the data is stored in a memory BIO. 
						
						
					 
					
						2006-07-13 20:29:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b3c6a33185 
					 
					
						
						
							
							In genpkey, also look for algorithm string name in any supplied ENGINE.  
						
						 
						
						
						
						
					 
					
						2006-07-12 18:00:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31780d0e26 
					 
					
						
						
							
							Bugfix: don't look in internal table for signature if found in application  
						
						 
						
						... 
						
						
						
						supplied list. 
						
						
					 
					
						2006-07-12 16:30:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f489ab3147 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-07-12 13:28:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29cf84c692 
					 
					
						
						
							
							New docs for EVP_Digest{Sign,Verify}*() function. Update existing docs.  
						
						 
						
						
						
						
					 
					
						2006-07-12 12:31:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e454929558 
					 
					
						
						
							
							Add docs for pkeyparam. Update some existing docs.  
						
						 
						
						
						
						
					 
					
						2006-07-10 23:10:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						105f6a6323 
					 
					
						
						
							
							Update some usage messages.  
						
						 
						
						
						
						
					 
					
						2006-07-10 22:49:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8845701719 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2006-07-10 18:40:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7683e3a5d 
					 
					
						
						
							
							Allow digests to supply S/MIME micalg values from a ctrl.  
						
						 
						
						... 
						
						
						
						Send ctrls to EVP_PKEY_METHOD during signing of PKCS7 structure so
customisation is possible. 
						
						
					 
					
						2006-07-10 18:36:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0ee2166cc5 
					 
					
						
						
							
							New functions to add and free up application defined signature OIDs.  
						
						 
						
						
						
						
					 
					
						2006-07-09 16:05:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						067707e367 
					 
					
						
						
							
							Set detached flag in PKCS7 structure earlier to avoid eating up memory.  
						
						 
						
						... 
						
						
						
						PR: 1071 
						
						
					 
					
						2006-07-09 12:02:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8211a33c7f 
					 
					
						
						
							
							Public key comparison and printing routine functions.  
						
						 
						
						
						
						
					 
					
						2006-07-09 11:26:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7441052be6 
					 
					
						
						
							
							EVP_PKEY_get_default_digest() manual page.  
						
						 
						
						
						
						
					 
					
						2006-07-09 11:01:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90ccf05f82 
					 
					
						
						
							
							EVP_PKEY_CTX_ctrl() docs.  
						
						 
						
						
						
						
					 
					
						2006-07-09 10:51:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						112161bd33 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2006-07-09 01:59:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5ba4bf35c5 
					 
					
						
						
							
							New functions to enumerate digests and ciphers.  
						
						 
						
						
						
						
					 
					
						2006-07-09 00:53:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aa93b18c2c 
					 
					
						
						
							
							Keygen docs.  
						
						 
						
						
						
						
					 
					
						2006-07-08 21:42:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba702545fc 
					 
					
						
						
							
							EVP_PKEY_derive() docs.  
						
						 
						
						
						
						
					 
					
						2006-07-08 12:47:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						436369100d 
					 
					
						
						
							
							Add some examples.  
						
						 
						
						
						
						
					 
					
						2006-07-08 12:46:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6535bd42e6 
					 
					
						
						
							
							EVP_PKEY_verify() docs.  
						
						 
						
						
						
						
					 
					
						2006-07-08 11:22:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64cee65ebc 
					 
					
						
						
							
							New docs.  
						
						 
						
						
						
						
					 
					
						2006-07-08 11:13:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba544377fb 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2006-07-08 10:55:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5165148f72 
					 
					
						
						
							
							Add some EVP_PKEY_METHOD docs.  
						
						 
						
						
						
						
					 
					
						2006-07-08 10:45:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d970ca70b 
					 
					
						
						
							
							Update docs with algorithm options.  
						
						 
						
						
						
						
					 
					
						2006-07-08 10:01:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						383b8b8ca9 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-07-08 00:50:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5ce60a20f2 
					 
					
						
						
							
							Initial docs for pkeyutl.  
						
						 
						
						
						
						
					 
					
						2006-07-08 00:47:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49131a7d94 
					 
					
						
						
							
							Docs for new utilities.  
						
						 
						
						
						
						
					 
					
						2006-07-08 00:24:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d884c5bad1 
					 
					
						
						
							
							Add documentation for new smime options.  
						
						 
						
						
						
						
					 
					
						2006-07-07 21:44:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						86bdc0a3ee 
					 
					
						
						
							
							Fix compiler warnings.  
						
						 
						
						
						
						
					 
					
						2006-07-04 20:29:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a4e245f3e 
					 
					
						
						
							
							Unsigned vs signed comparison warning.  
						
						 
						
						
						
						
					 
					
						2006-07-04 20:29:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						975efcbaee 
					 
					
						
						
							
							Typos(?) in HEAD/crypto/evp/p_lib.c.  
						
						 
						
						
						
						
					 
					
						2006-07-04 20:27:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90e1b1fd7d 
					 
					
						
						
							
							dsa_pub_cmp() doesn't need to check parameters because that is done in  
						
						 
						
						... 
						
						
						
						EVP_PKEY_cmp(). 
						
						
					 
					
						2006-07-02 21:13:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						86207c1960 
					 
					
						
						
							
							Make return value from EVP_PKEY_cmp() and EVP_PKEY_cmp_parameters() consistent.  
						
						 
						
						
						
						
					 
					
						2006-07-02 21:12:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9c62bca11a 
					 
					
						
						
							
							Prepare playground for AES experimental code.  
						
						 
						
						
						
						
					 
					
						2006-07-02 09:18:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						75d61b33bc 
					 
					
						
						
							
							documentation for "HIGH" vs. "MEDIUM" was not up-to-date  
						
						 
						
						
						
						
					 
					
						2006-06-30 22:00:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3df760b83a 
					 
					
						
						
							
							use <poll.h> as by Single Unix Specification  
						
						 
						
						
						
						
					 
					
						2006-06-30 08:14:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e34aa5a3b3 
					 
					
						
						
							
							always read in RAND_poll() if we can't use select because of a too  
						
						 
						
						... 
						
						
						
						large FD: it's non-blocking mode anyway 
						
						
					 
					
						2006-06-28 14:50:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						985e4c4154 
					 
					
						
						
							
							Mitigate the hazard of cache-collision timing attack on last round. The  
						
						 
						
						... 
						
						
						
						only chance for T[ed]4 to get evicted in this module is when its cache
"overlaps" with last 128 bits of key schedule. 
						
						
					 
					
						2006-06-28 08:52:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9598fa8759 
					 
					
						
						
							
							Mitigate the hazard of cache-collision timing attack on last round. Well,  
						
						 
						
						... 
						
						
						
						prefetch could have been moved closer to Td4 references. Something for
later consideration... 
						
						
					 
					
						2006-06-28 08:48:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ac8173515a 
					 
					
						
						
							
							Mitigate cache-collision timing attack on last round.  
						
						 
						
						
						
						
					 
					
						2006-06-28 08:39:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						944f858021 
					 
					
						
						
							
							Fix EVP_PKEY_CTX_dup() to return correct value and handle NULL keys in  
						
						 
						
						... 
						
						
						
						the source. 
						
						
					 
					
						2006-06-27 17:23:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27a3d9f9aa 
					 
					
						
						
							
							Use poll() when possible to gather Unix randomness entropy  
						
						 
						
						
						
						
					 
					
						2006-06-27 06:31:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						48fc582f66 
					 
					
						
						
							
							New functions CRYPTO_set_idptr_callback(),  
						
						 
						
						... 
						
						
						
						CRYPTO_get_idptr_callback(), CRYPTO_thread_idptr() for a 'void *' type
thread ID, since the 'unsigned long' type of the existing thread ID
does not always work well. 
						
						
					 
					
						2006-06-23 15:21:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						81de1028bc 
					 
					
						
						
							
							Change in 0.9.8 branch:  
						
						 
						
						... 
						
						
						
						Put ECCdraft ciphersuites back into default build (but disabled
unless specifically requested) 
						
						
					 
					
						2006-06-22 12:37:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						850815cb6e 
					 
					
						
						
							
							Remove ECC ciphersuites from 0.9.8 branch (should use 0.9.9 branch)  
						
						 
						
						
						
						
					 
					
						2006-06-20 08:50:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c4e7870ac1 
					 
					
						
						
							
							Change array representation of binary polynomials to make GF2m part of  
						
						 
						
						... 
						
						
						
						the BN library more generally useful.
Submitted by: Douglas Stebila 
						
						
					 
					
						2006-06-18 22:00:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4584eccea0 
					 
					
						
						
							
							another thread-safety fix  
						
						 
						
						
						
						
					 
					
						2006-06-16 01:00:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ed3ecd801e 
					 
					
						
						
							
							Error messages for client ECC cert verification.  
						
						 
						
						... 
						
						
						
						Also, change the default ciphersuite to give some prefererence to
ciphersuites with forwared secrecy (rather than using a random order). 
						
						
					 
					
						2006-06-15 19:58:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b166f13eb5 
					 
					
						
						
							
							Call 'print_stuff' even if a handshake failed.  
						
						 
						
						
						
						
					 
					
						2006-06-15 19:00:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						076944d920 
					 
					
						
						
							
							Fix algorithm handling for ECC ciphersuites: Adapt to recent changes,  
						
						 
						
						... 
						
						
						
						and allow more general RSA OIDs for ECC certs with RSA CA sig. 
						
						
					 
					
						2006-06-15 18:28:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						09e20e0bd8 
					 
					
						
						
							
							Fix another new bug in the cipherstring logic.  
						
						 
						
						
						
						
					 
					
						2006-06-15 17:17:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a717831da4 
					 
					
						
						
							
							Fix another bug introduced yesterday when deleting Fortezza stuff:  
						
						 
						
						... 
						
						
						
						make sure 'mask' is initialized in ssl_cipher_get_disabled().
Also simplify code by removing some unused arguments in static functions. 
						
						
					 
					
						2006-06-15 16:54:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4dfc8f1f0b 
					 
					
						
						
							
							Oops ... deleted too much in the previous commit when I deleted  
						
						 
						
						... 
						
						
						
						the Fortezza stuff 
						
						
					 
					
						2006-06-15 16:07:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5b57fe0a1e 
					 
					
						
						
							
							Disable invalid ciphersuites  
						
						 
						
						
						
						
					 
					
						2006-06-14 17:51:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						89bbe14c50 
					 
					
						
						
							
							Ciphersuite string bugfixes, and ECC-related (re-)definitions.  
						
						 
						
						
						
						
					 
					
						2006-06-14 17:40:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						6635b48cd1 
					 
					
						
						
							
							Make sure that AES ciphersuites get priority over Camellia  
						
						 
						
						... 
						
						
						
						ciphersuites in the default cipher string. 
						
						
					 
					
						2006-06-14 13:58:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						675f605d44 
					 
					
						
						
							
							Thread-safety fixes  
						
						 
						
						
						
						
					 
					
						2006-06-14 08:55:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						6a983d4287 
					 
					
						
						
							
							Fix a bug recently introduced when updating this file to use the new  
						
						 
						
						... 
						
						
						
						keygen API: make sure that 'pkey_type' is actually visible to MAIN(). 
						
						
					 
					
						2006-06-14 01:16:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1a159e08af 
					 
					
						
						
							
							Keep synchronised with Unix  
						
						 
						
						
						
						
					 
					
						2006-06-12 06:46:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						dd030860c4 
					 
					
						
						
							
							Camellia cipher, contributed by NTT  
						
						 
						
						... 
						
						
						
						Submitted by: Masashi Fujita
Reviewed by: Bodo Moeller 
						
						
					 
					
						2006-06-11 01:09:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2d09372434 
					 
					
						
						
							
							Keep synchronised with the Unix build  
						
						 
						
						
						
						
					 
					
						2006-06-10 05:38:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						67912e0032 
					 
					
						
						
							
							Camellia cipher, contributed by NTT  
						
						 
						
						... 
						
						
						
						Submitted by: Masashi Fujita
Reviewed by: Bodo Moeller 
						
						
					 
					
						2006-06-09 22:29:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f3dea9a595 
					 
					
						
						
							
							Camellia cipher, contributed by NTT  
						
						 
						
						... 
						
						
						
						Submitted by: Masashi Fujita
Reviewed by: Bodo Moeller 
						
						
					 
					
						2006-06-09 15:44:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb7b393278 
					 
					
						
						
							
							Output MIME parameter micalg according to RFC3851 and RFC4490 instead of hard  
						
						 
						
						... 
						
						
						
						coding it to "sha1". 
						
						
					 
					
						2006-06-06 13:27:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						61e5ec4b1e 
					 
					
						
						
							
							Add AES and GOST S/MIME capabilities if algorithms are supported.  
						
						 
						
						
						
						
					 
					
						2006-06-06 12:35:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6f344eab03 
					 
					
						
						
							
							Fix obvious typo.  
						
						 
						
						
						
						
					 
					
						2006-06-05 16:04:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41eacc84a0 
					 
					
						
						
							
							Clarify comment and add #ifdef.  
						
						 
						
						
						
						
					 
					
						2006-06-05 12:38:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						01b8b3c7d2 
					 
					
						
						
							
							Complete EVP_PKEY_ASN1_METHOD ENGINE support.  
						
						 
						
						
						
						
					 
					
						2006-06-05 11:52:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8fecd4b4f1 
					 
					
						
						
							
							Sync aes.h with  http://cvs.openssl.org/chngview?cn=15336 .  
						
						 
						
						
						
						
					 
					
						2006-06-05 10:43:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						41fc5f2dbe 
					 
					
						
						
							
							Reimplement AES_ofb128_encrypt.  
						
						 
						
						
						
						
					 
					
						2006-06-05 10:40:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bcfd3d68f5 
					 
					
						
						
							
							Correct logical error in STRICT_ALIGNMENT check and remove copy of  
						
						 
						
						... 
						
						
						
						eay licence, as module is practically rewritten from scratch [well,
even original submission was obviously "almost, but not quite,
entirely unlike" any other eay *_cfb.c module, not to mention new
functions]. 
						
						
					 
					
						2006-06-05 10:40:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d3a6461d71 
					 
					
						
						
							
							Minor ppc-xlate.pl update.  
						
						 
						
						
						
						
					 
					
						2006-06-05 09:42:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						17478fdede 
					 
					
						
						
							
							Add sha512-ppc.pl module.  
						
						 
						
						
						
						
					 
					
						2006-06-05 09:37:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4dca00cec8 
					 
					
						
						
							
							Minor sha1-ppc.pl update.  
						
						 
						
						
						
						
					 
					
						2006-06-05 09:35:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						061d774b99 
					 
					
						
						
							
							A few more ENGINE strings that need shortening.  
						
						 
						
						
						
						
					 
					
						2006-06-04 08:22:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						20469da285 
					 
					
						
						
							
							Synchronise with Unix  
						
						 
						
						
						
						
					 
					
						2006-06-03 02:17:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e18e3eba76 
					 
					
						
						
							
							Make update.  
						
						 
						
						
						
						
					 
					
						2006-06-02 17:54:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						de9fcfe348 
					 
					
						
						
							
							Initial public key ASN1 method engine support. Not integrated yet.  
						
						 
						
						
						
						
					 
					
						2006-06-02 17:52:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e5b06813d 
					 
					
						
						
							
							Automatically free up dynamically allocated public key methods when  
						
						 
						
						... 
						
						
						
						and ENGINE is destroyed. 
						
						
					 
					
						2006-06-02 17:09:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1892c8bf97 
					 
					
						
						
							
							Extend default method string to include public key methods.  
						
						 
						
						... 
						
						
						
						Add missing prototypes.
Fix engine method lookup. 
						
						
					 
					
						2006-06-02 13:09:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e428e7d0d 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-06-02 12:37:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c9777d2659 
					 
					
						
						
							
							Add ENGINE support for EVP_PKEY_METHOD including lookups of ENGINE  
						
						 
						
						... 
						
						
						
						implementations and functional reference counting when a context
is allocated, free or copied. 
						
						
					 
					
						2006-06-02 12:33:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3aedd213a9 
					 
					
						
						
							
							Synchronise with the Unixly build.  
						
						 
						
						
						
						
					 
					
						2006-06-01 12:50:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e0c1ea9038 
					 
					
						
						
							
							Fix error code. make update  
						
						 
						
						
						
						
					 
					
						2006-06-01 12:43:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f88c6a634 
					 
					
						
						
							
							Add missing prototype. Extend engine utility to print public key algorithms.  
						
						 
						
						
						
						
					 
					
						2006-06-01 12:38:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						58aa573ac2 
					 
					
						
						
							
							Add engine table for EVP_PKEY_METHOD. Doesn't do much yet.  
						
						 
						
						
						
						
					 
					
						2006-06-01 11:38:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0ed110b969 
					 
					
						
						
							
							Because all object files are now in a file, we don't need to mention  
						
						 
						
						... 
						
						
						
						any of them on the linker command line.  Besides, OBJECT_FILE now
represents the last compiled file, and using it here only results in
getting warnings about multiple definitions of the symbols in that
file. 
						
						
					 
					
						2006-06-01 10:24:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b28dea4e10 
					 
					
						
						
							
							New pkey functions for keygen callbacks and retrieving operation type.  
						
						 
						
						
						
						
					 
					
						2006-05-31 17:34:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						21f0db692d 
					 
					
						
						
							
							Tune up AES CFB. Performance improvement varies from 10% to 50% from  
						
						 
						
						... 
						
						
						
						platform to platform. Its absolute value is within few percents
marginal from that of ECB. 
						
						
					 
					
						2006-05-30 07:20:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d4e08ec1c 
					 
					
						
						
							
							Use a new signed int ii instead of j (which is unsigned) to handle the  
						
						 
						
						... 
						
						
						
						return value from sk_SSL_CIPHER_find(). 
						
						
					 
					
						2006-05-28 19:44:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						25074d6c22 
					 
					
						
						
							
							Deal with another name that's longer than 31 characters.  
						
						 
						
						
						
						
					 
					
						2006-05-28 19:39:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0cfc80c4c3 
					 
					
						
						
							
							rslen is unsigned, so it can never go below 0.  
						
						 
						
						
						
						
					 
					
						2006-05-28 19:36:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8bb15fb51 
					 
					
						
						
							
							Install openssl.cnf to OPENSSLDIR in mk1mf.pl  
						
						 
						
						
						
						
					 
					
						2006-05-28 00:49:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						994df5a248 
					 
					
						
						
							
							Flush p7bio when all data has been copied.  
						
						 
						
						
						
						
					 
					
						2006-05-26 17:14:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6657b9c73a 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2006-05-26 13:27:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba0d04a986 
					 
					
						
						
							
							Update pkeyutl to use size_t for pkey functions.  
						
						 
						
						
						
						
					 
					
						2006-05-26 12:24:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3cb9eb30d3 
					 
					
						
						
							
							Signed vs. unsigned conflict  
						
						 
						
						
						
						
					 
					
						2006-05-25 23:40:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e0b624e20e 
					 
					
						
						
							
							There was a problem with too long command lines, so I rebuilt to make  
						
						 
						
						... 
						
						
						
						it work better. 
						
						
					 
					
						2006-05-25 23:37:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c27309edcb 
					 
					
						
						
							
							Allow any supported cipher to be used with smime -encrypt.  
						
						 
						
						
						
						
					 
					
						2006-05-25 16:53:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3207e61222 
					 
					
						
						
							
							Add prototypes, update Win32 ordinals.  
						
						 
						
						
						
						
					 
					
						2006-05-25 11:44:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3671233089 
					 
					
						
						
							
							Keep in sync with Unix  
						
						 
						
						
						
						
					 
					
						2006-05-25 10:40:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3a828611e9 
					 
					
						
						
							
							Update EVP_MD_CTX_copy_ex() to use EVP_PKEY_CTX_dup().  
						
						 
						
						
						
						
					 
					
						2006-05-25 00:55:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8bdcef40e4 
					 
					
						
						
							
							New function to dup EVP_PKEY_CTX. This will be needed to make new signing  
						
						 
						
						... 
						
						
						
						functions and EVP_MD_CTX_copy work properly. 
						
						
					 
					
						2006-05-24 23:49:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						91c9e62123 
					 
					
						
						
							
							New functions for enchanced digest sign/verify.  
						
						 
						
						
						
						
					 
					
						2006-05-24 17:30:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e3453536e 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2006-05-24 13:29:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eaff5a1412 
					 
					
						
						
							
							Use size_t for new crypto size parameters.  
						
						 
						
						
						
						
					 
					
						2006-05-24 12:33:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						216e0d5b91 
					 
					
						
						
							
							Fix smime -pk7out.  
						
						 
						
						
						
						
					 
					
						2006-05-22 13:37:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0965991600 
					 
					
						
						
							
							Add ctrl to EVP_MD and EVP_PKEY_CTX to EVP_MD_CTX. These will be used  
						
						 
						
						... 
						
						
						
						for enhanced sign/verify operations. 
						
						
					 
					
						2006-05-22 13:01:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						74aa1a4378 
					 
					
						
						
							
							Tiny up hpux targets.  
						
						 
						
						
						
						
					 
					
						2006-05-20 08:52:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5531192151 
					 
					
						
						
							
							Add -resign and -md options to smime command to support resigning an  
						
						 
						
						... 
						
						
						
						existing structure and using alternative digest for signing. 
						
						
					 
					
						2006-05-18 23:44:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a620626a33 
					 
					
						
						
							
							Code tidy.  
						
						 
						
						
						
						
					 
					
						2006-05-18 18:06:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f13a71c66b 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-05-18 17:46:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ef3e07a49 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2006-05-18 17:22:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76fa8f1838 
					 
					
						
						
							
							More S/MIME tidy. Place some common attribute operations in utility  
						
						 
						
						... 
						
						
						
						functions. 
						
						
					 
					
						2006-05-18 17:20:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f2b139ed1f 
					 
					
						
						
							
							Remove old digest type hacks for non RSA keys.  
						
						 
						
						
						
						
					 
					
						2006-05-18 13:05:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6e7fcd140 
					 
					
						
						
							
							Multiple signer support in smime application.  
						
						 
						
						
						
						
					 
					
						2006-05-18 12:41:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76cf3fcb43 
					 
					
						
						
							
							Reformat smime.c utility.  
						
						 
						
						
						
						
					 
					
						2006-05-18 11:54:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						121dd39f9f 
					 
					
						
						
							
							New option to pkcs12 utility to set alternative MAC digest algorithm.  
						
						 
						
						
						
						
					 
					
						2006-05-17 18:46:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a263253545 
					 
					
						
						
							
							Don't try to print PBE information if it can't be decoded.  
						
						 
						
						
						
						
					 
					
						2006-05-17 18:24:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76d6ac4b06 
					 
					
						
						
							
							PKCS#12 mac key length should equal digest length.  
						
						 
						
						
						
						
					 
					
						2006-05-17 18:19:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						60f20632e2 
					 
					
						
						
							
							Tidy up of S/MIME code and add new functions which will make is easier  
						
						 
						
						... 
						
						
						
						to create S/MIME signed data with multiple signers. 
						
						
					 
					
						2006-05-17 17:17:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae519a247f 
					 
					
						
						
							
							Extended PBES2 function supporting application supplied IV and PRF NID.  
						
						 
						
						
						
						
					 
					
						2006-05-17 12:47:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8de916bcee 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2006-05-17 12:29:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1631d5f9b9 
					 
					
						
						
							
							HMAC OIDs from RFC4231.  
						
						 
						
						
						
						
					 
					
						2006-05-17 12:27:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98c82b899e 
					 
					
						
						
							
							Gather keygen options in req and only use them after all other options have  
						
						 
						
						... 
						
						
						
						been processed. This allows any ENGINE changing operations to be processed
first (for example a config file). 
						
						
					 
					
						2006-05-16 12:11:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d3a1eac3b 
					 
					
						
						
							
							Add PRF preference ctrl to ciphers.  
						
						 
						
						
						
						
					 
					
						2006-05-15 18:35:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8f702a0af 
					 
					
						
						
							
							Change builting PBE to use static table. Add entries for HMAC and MD5, GOST.  
						
						 
						
						
						
						
					 
					
						2006-05-15 17:34:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43c9825c2a 
					 
					
						
						
							
							Update old **EVIL** PEM_X509_INFO_read_bio() function to correctly assign  
						
						 
						
						... 
						
						
						
						private keys.
FIXME: this function should really be rewritten because it is *horrible*. 
						
						
					 
					
						2006-05-15 13:28:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbf6643607 
					 
					
						
						
							
							Bugfix: the NONE string for PBE algorithms wasn't working.  
						
						 
						
						
						
						
					 
					
						2006-05-15 13:23:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f36baa9f4 
					 
					
						
						
							
							Correctly handle missing DSA parameters.  
						
						 
						
						
						
						
					 
					
						2006-05-15 01:26:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b0e69a0500 
					 
					
						
						
							
							Add feature to PKCS12_create() if the encryption NID corresponds to a  
						
						 
						
						... 
						
						
						
						supported encryption algorithm instead of a PBE NID then use that
algorithm with PBES2. 
						
						
					 
					
						2006-05-15 00:45:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						856640b54f 
					 
					
						
						
							
							Extend PBE code to support non default PKCS#5 v2.0 PRFs.  
						
						 
						
						
						
						
					 
					
						2006-05-14 18:40:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76240b3a39 
					 
					
						
						
							
							Check for deprecated private key types before PKCS#8 types.  
						
						 
						
						
						
						
					 
					
						2006-05-14 18:35:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						34b3c72e4e 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-05-14 16:50:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c264592d69 
					 
					
						
						
							
							Add includes in synopsis.  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org > 
						
						
					 
					
						2006-05-14 11:28:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1bd06bd0c4 
					 
					
						
						
							
							In interactive mode only config OpenSSL once.  
						
						 
						
						
						
						
					 
					
						2006-05-12 17:11:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9540ccdf1f 
					 
					
						
						
							
							Stop warnings about deprecated -mcpu option.  
						
						 
						
						
						
						
					 
					
						2006-05-12 16:06:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						98bf13c36b 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2006-05-12 15:31:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e76e56387 
					 
					
						
						
							
							Someone made a mistake, and some function and reason codes got  
						
						 
						
						... 
						
						
						
						duplicate numbers.  Renumbering. 
						
						
					 
					
						2006-05-12 15:27:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						759d8ac6ee 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-05-12 00:27:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						959e8dfe06 
					 
					
						
						
							
							Update 'req' command to use new keygen API.  
						
						 
						
						
						
						
					 
					
						2006-05-11 21:39:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f57b076a6 
					 
					
						
						
							
							New functions to get key types without dereferncing EVP_PKEY.  
						
						 
						
						... 
						
						
						
						More error checking for RSA pmeth. 
						
						
					 
					
						2006-05-11 21:33:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7144c4212a 
					 
					
						
						
							
							Update PKCS#7 decrypt routines to use new API.  
						
						 
						
						
						
						
					 
					
						2006-05-08 16:38:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						399a6f0bd1 
					 
					
						
						
							
							Update PKCS#7 enveloped data to new API.  
						
						 
						
						
						
						
					 
					
						2006-05-08 12:44:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d47929968 
					 
					
						
						
							
							Update S/MIME code to use default digest.  
						
						 
						
						
						
						
					 
					
						2006-05-07 17:22:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						03919683f9 
					 
					
						
						
							
							Add support for default public key digest type ctrl.  
						
						 
						
						
						
						
					 
					
						2006-05-07 17:09:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5cda6c4582 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2006-05-07 12:30:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						83ed49149c 
					 
					
						
						
							
							bug fix.  
						
						 
						
						... 
						
						
						
						PR: 1326
Submitted by: John Skodon 
						
						
					 
					
						2006-05-06 18:26:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						67d990904e 
					 
					
						
						
							
							Futher minor PPC assembler update.  
						
						 
						
						
						
						
					 
					
						2006-05-04 21:30:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3df90b2bb 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2006-05-04 16:32:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11e46bd7ae 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2006-05-04 14:22:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c09a0318b7 
					 
					
						
						
							
							Minor PPC assembler updates.  
						
						 
						
						
						
						
					 
					
						2006-05-03 14:07:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fe716ba686 
					 
					
						
						
							
							PPC assembler distiller update.  
						
						 
						
						
						
						
					 
					
						2006-05-03 13:39:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9a97800813 
					 
					
						
						
							
							Typo in linux-ppc line.  
						
						 
						
						
						
						
					 
					
						2006-05-03 13:38:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e881f6175a 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2006-05-03 13:19:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						36e77b1059 
					 
					
						
						
							
							Bug fix.  
						
						 
						
						... 
						
						
						
						PR: 1307
Submitted by: Oliver Tappe <zooey@hirschkaefer.de > 
						
						
					 
					
						2006-05-01 18:49:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a9c32ace06 
					 
					
						
						
							
							SHA1 for PowerPC.  
						
						 
						
						
						
						
					 
					
						2006-05-01 13:35:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2c5d4daac5 
					 
					
						
						
							
							Yet another "teaser" Montgomery multiplication module, for PowerPC.  
						
						 
						
						
						
						
					 
					
						2006-04-30 21:15:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b46343583c 
					 
					
						
						
							
							Update EVP_PKEY_cmp() and X509_check_private() to return sensible values and  
						
						 
						
						... 
						
						
						
						handle unsupported key types. 
						
						
					 
					
						2006-04-28 12:27:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						816c2b5a79 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2006-04-28 00:30:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a78568b7e9 
					 
					
						
						
							
							Replace RSA specific PKCS7_RECIP_INFO set up with an public key algorithm  
						
						 
						
						... 
						
						
						
						ctrl. 
						
						
					 
					
						2006-04-27 18:20:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee5b2a1e51 
					 
					
						
						
							
							Code tidy.  
						
						 
						
						
						
						
					 
					
						2006-04-27 00:42:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e4b21c74fc 
					 
					
						
						
							
							New function to extract AlgorithmIdentifier for PKCS7_RECIP_INFO.  
						
						 
						
						
						
						
					 
					
						2006-04-27 00:29:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4edcb93dca 
					 
					
						
						
							
							Don't free up parameter. The public key ASN1 method can do that if it needs  
						
						 
						
						... 
						
						
						
						to. 
						
						
					 
					
						2006-04-27 00:20:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						15f80eea31 
					 
					
						
						
							
							Fix usage message for pkeyutl.  
						
						 
						
						
						
						
					 
					
						2006-04-26 15:42:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81cebb8b79 
					 
					
						
						
							
							Add prototypes and pkey accessor function for EVP_PKEY_CTX.  
						
						 
						
						
						
						
					 
					
						2006-04-26 11:52:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4e75b3dfd 
					 
					
						
						
							
							Correct copyright notice... this doesn't contain any SSLeay code.  
						
						 
						
						
						
						
					 
					
						2006-04-24 00:07:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cddaba8ede 
					 
					
						
						
							
							Add 'flags' parameter to EVP_PKEY_asn1_meth_new() to set algorithm flags.  
						
						 
						
						
						
						
					 
					
						2006-04-21 17:38:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						49c5f38d3d 
					 
					
						
						
							
							undo accidental commit  
						
						 
						
						
						
						
					 
					
						2006-04-20 13:54:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f8296228f1 
					 
					
						
						
							
							as we encrypt every bit separately we need to loop through the number  
						
						 
						
						... 
						
						
						
						of bits; thanks to Michael McDougall <mmcdouga@saul.cis.upenn.edu >
PR: 1318 
						
						
					 
					
						2006-04-20 13:11:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						930b0c4b8a 
					 
					
						
						
							
							make local function static  
						
						 
						
						
						
						
					 
					
						2006-04-20 09:53:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d153f7985 
					 
					
						
						
							
							Remove dss1 hack from S/MIME code.  
						
						 
						
						
						
						
					 
					
						2006-04-19 17:47:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee1d9ec019 
					 
					
						
						
							
							Remove link between digests and signature algorithms.  
						
						 
						
						... 
						
						
						
						Use cross reference table in ASN1_item_sign(), ASN1_item_verify() to eliminate
the need for algorithm specific code. 
						
						
					 
					
						2006-04-19 17:05:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						614b448a67 
					 
					
						
						
							
							Remove comment from SSLeay days about EVP_PKEY_METHOD.  
						
						 
						
						
						
						
					 
					
						2006-04-19 12:16:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a19c9f179d 
					 
					
						
						
							
							Make sure obj_xref.h is updated during a "make update"  
						
						 
						
						
						
						
					 
					
						2006-04-19 06:45:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a784b943c1 
					 
					
						
						
							
							Synchronise with Unixly build.  
						
						 
						
						... 
						
						
						
						(Geez, a lot is happening right now, eh? :-)) 
						
						
					 
					
						2006-04-19 06:44:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d202709808 
					 
					
						
						
							
							Add OID cross reference table.  
						
						 
						
						... 
						
						
						
						Fix some typos in GOST OIDs.
Update dependencies. 
						
						
					 
					
						2006-04-18 23:36:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						51ff0abb05 
					 
					
						
						
							
							Synchronise  
						
						 
						
						
						
						
					 
					
						2006-04-17 17:19:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						492a9e2415 
					 
					
						
						
							
							Allow public key ASN1 methods to set PKCS#7 SignerInfo structures.  
						
						 
						
						
						
						
					 
					
						2006-04-17 17:12:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bf7333d68 
					 
					
						
						
							
							If we include winsock2.h then FD_SET wants an unsigned type for an fd.  
						
						 
						
						
						
						
					 
					
						2006-04-17 12:22:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c20276e4ae 
					 
					
						
						
							
							Fix (most) WIN32 warnings and errors.  
						
						 
						
						
						
						
					 
					
						2006-04-17 12:08:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ca7047d71 
					 
					
						
						
							
							Provisional support for EC pkey method, supporting ECDH and ECDSA.  
						
						 
						
						
						
						
					 
					
						2006-04-16 16:15:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ba3b2f1538 
					 
					
						
						
							
							SHA-1 for x86_64.  
						
						 
						
						
						
						
					 
					
						2006-04-16 14:42:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b010b7c434 
					 
					
						
						
							
							Use more flexible method of determining output length, by setting &outlen  
						
						 
						
						... 
						
						
						
						value of the passed output buffer is NULL.
The old method of using EVP_PKEY_size(pkey) isn't flexible enough to cover all
cases where the output length may depend on the operation or the parameters
associated with it. 
						
						
					 
					
						2006-04-15 18:50:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9dc17a2536 
					 
					
						
						
							
							Fix from 0.9.7-stable branch.  
						
						 
						
						
						
						
					 
					
						2006-04-15 17:43:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5950bf7943 
					 
					
						
						
							
							Revert to original...  
						
						 
						
						
						
						
					 
					
						2006-04-15 13:15:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4141c803d8 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2006-04-15 13:12:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba1ba5f0fb 
					 
					
						
						
							
							If cipher list contains a match for an explicit ciphersuite only match that  
						
						 
						
						... 
						
						
						
						one suite. 
						
						
					 
					
						2006-04-15 00:22:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						51aa7bd321 
					 
					
						
						
							
							Got sick and tired of duplicating...  Too error-prone (i.e. I forget  
						
						 
						
						... 
						
						
						
						to update both...)! 
						
						
					 
					
						2006-04-14 19:56:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						09b88a4a55 
					 
					
						
						
							
							Update copyright notices on a few files where all original SSLeay code has  
						
						 
						
						... 
						
						
						
						been deleted. 
						
						
					 
					
						2006-04-14 17:36:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3481ca28f 
					 
					
						
						
							
							Print out zero length string properly.  
						
						 
						
						
						
						
					 
					
						2006-04-14 16:47:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba30bad57b 
					 
					
						
						
							
							Add functions to allow setting and adding external EVP_PKEY_METHOD.  
						
						 
						
						
						
						
					 
					
						2006-04-14 12:41:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ffb1ac674c 
					 
					
						
						
							
							Complete key derivation support.  
						
						 
						
						
						
						
					 
					
						2006-04-13 20:16:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3be34589e8 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2006-04-13 13:00:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d87e615209 
					 
					
						
						
							
							Add key derivation support.  
						
						 
						
						
						
						
					 
					
						2006-04-13 12:56:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92511cff48 
					 
					
						
						
							
							Change the option setting command line switch to "-pkeyopt" to avoid confusion  
						
						 
						
						... 
						
						
						
						with algorithm parameters. 
						
						
					 
					
						2006-04-13 12:38:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7b82159865 
					 
					
						
						
							
							Synchronise what what's happening with the Unix build  
						
						 
						
						
						
						
					 
					
						2006-04-13 09:59:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52c11dce31 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-04-13 00:26:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3ba0885a3e 
					 
					
						
						
							
							Extend DH ASN1 method, add DH EVP_PKEY_METHOD.  
						
						 
						
						
						
						
					 
					
						2006-04-12 23:51:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						023c9d8dd5 
					 
					
						
						
							
							Fix leak.  
						
						 
						
						
						
						
					 
					
						2006-04-12 23:38:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4c97a04e2e 
					 
					
						
						
							
							PKCS#3 DH PKCS#8 ASN1 support.  
						
						 
						
						
						
						
					 
					
						2006-04-12 23:06:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						fb05e1cdf6 
					 
					
						
						
							
							declare as in prototype  
						
						 
						
						... 
						
						
						
						Submitted by: Gisle Vanem 
						
						
					 
					
						2006-04-12 19:24:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ceb4678956 
					 
					
						
						
							
							Extend DH ASN1 method to support public key encode/decode and parameter  
						
						 
						
						... 
						
						
						
						utilities. 
						
						
					 
					
						2006-04-12 17:14:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0cb8499b73 
					 
					
						
						
							
							Compare parameters when comparing public keys.  
						
						 
						
						
						
						
					 
					
						2006-04-12 17:01:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d62ec32e0 
					 
					
						
						
							
							Add file dso_beos.c missing from original commit.  
						
						 
						
						... 
						
						
						
						PR: 1312 
						
						
					 
					
						2006-04-12 11:46:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75ef718820 
					 
					
						
						
							
							Support for DSA keygen, fix for genpkey.  
						
						 
						
						
						
						
					 
					
						2006-04-12 11:14:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c927df3fa1 
					 
					
						
						
							
							Initial DSA EVP_PKEY_METHOD. Fixup some error codes.  
						
						 
						
						
						
						
					 
					
						2006-04-12 10:20:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						4700aea951 
					 
					
						
						
							
							Add BeOS support.  
						
						 
						
						... 
						
						
						
						PR: 1312
Submitted by: Oliver Tappe <zooey@hirschkaefer.de >
Reviewed by: Ulf Moeller 
						
						
					 
					
						2006-04-11 21:34:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						60cdb821db 
					 
					
						
						
							
							manual pages as HTML  
						
						 
						
						... 
						
						
						
						Submitted by: Oliver Tappe <zooey@hirschkaefer.de > 
						
						
					 
					
						2006-04-11 21:09:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						0ef888cd3e 
					 
					
						
						
							
							Use Dl_info only on systems where it is known to exist. It does not  
						
						 
						
						... 
						
						
						
						exist on AIX 4.3.3, AIX 5.1, SCO 5, or Cygwin. 
						
						
					 
					
						2006-04-11 21:00:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						26c777d516 
					 
					
						
						
							
							uncomment; that one slipped through  
						
						 
						
						
						
						
					 
					
						2006-04-11 20:09:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						9555339007 
					 
					
						
						
							
							improve make dclean to remove files generated during build  
						
						 
						
						... 
						
						
						
						PR: 1308
Submitted by: Oliver Tappe <zooey@hirschkaefer.de >
Reviewed by: Ulf Moeller 
						
						
					 
					
						2006-04-11 20:05:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2fbe371f53 
					 
					
						
						
							
							Fix parameter error messages.  
						
						 
						
						
						
						
					 
					
						2006-04-11 18:30:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						15181d7811 
					 
					
						
						
							
							Write parameters if -genparam option include.  
						
						 
						
						
						
						
					 
					
						2006-04-11 18:21:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1edba2110f 
					 
					
						
						
							
							Add parameter generation option to genpkey.  
						
						 
						
						
						
						
					 
					
						2006-04-11 18:18:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						54d853ebc3 
					 
					
						
						
							
							Add support for setting keybits and public exponent value for pkey RSA keygen.  
						
						 
						
						
						
						
					 
					
						2006-04-11 17:28:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f5cda4cbb1 
					 
					
						
						
							
							Initial keygen support.  
						
						 
						
						
						
						
					 
					
						2006-04-11 13:28:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f9a6348a53 
					 
					
						
						
							
							ctrls to set PSS salt length.  
						
						 
						
						
						
						
					 
					
						2006-04-10 12:55:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a7ffd9d19c 
					 
					
						
						
							
							Preliminary PSS support.  
						
						 
						
						
						
						
					 
					
						2006-04-10 12:41:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29db322e8f 
					 
					
						
						
							
							Beginnings of PSS support.  
						
						 
						
						
						
						
					 
					
						2006-04-10 11:48:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						25dc89eb9b 
					 
					
						
						
							
							Synchronise with the Unix build  
						
						 
						
						
						
						
					 
					
						2006-04-10 11:39:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						716630c0eb 
					 
					
						
						
							
							Change operation values so they can be used as a mask.  
						
						 
						
						... 
						
						
						
						Fix rsa_pkey_method. 
						
						
					 
					
						2006-04-10 11:16:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f59b6587f 
					 
					
						
						
							
							Implementation of pkey_rsa_verify. Some constification.  
						
						 
						
						
						
						
					 
					
						2006-04-10 01:06:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9befdf1d20 
					 
					
						
						
							
							New utility function to reverse a buffer, either by copying or in-place.  
						
						 
						
						
						
						
					 
					
						2006-04-10 00:11:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75d44c0452 
					 
					
						
						
							
							Store digests as EVP_MD instead of a NID.  
						
						 
						
						... 
						
						
						
						Add digest size sanity checks. 
						
						
					 
					
						2006-04-09 21:24:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a58a636838 
					 
					
						
						
							
							Constification.  
						
						 
						
						
						
						
					 
					
						2006-04-09 20:53:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9fdab72dd7 
					 
					
						
						
							
							Bugfix X9.31 padding.  
						
						 
						
						
						
						
					 
					
						2006-04-09 20:44:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b2a97be7f4 
					 
					
						
						
							
							Support for digest signing and X931 in rsa_pkey_meth.  
						
						 
						
						
						
						
					 
					
						2006-04-09 19:17:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6471c9f478 
					 
					
						
						
							
							Add checking to padding ctrl.  
						
						 
						
						
						
						
					 
					
						2006-04-09 12:53:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a3dc3c0e3 
					 
					
						
						
							
							Add RSA ctrl for padding mode, add ctrl support in pkeyutl.  
						
						 
						
						
						
						
					 
					
						2006-04-09 12:42:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a2318e86bd 
					 
					
						
						
							
							Fix typo. Add EVP_PKEY_CTX control function for later use by command line  
						
						 
						
						... 
						
						
						
						utilities. 
						
						
					 
					
						2006-04-09 00:34:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a9164153d1 
					 
					
						
						
							
							Reformat pkeyutl.c, add support for verify operation but nothing actually  
						
						 
						
						... 
						
						
						
						supports it (yet). 
						
						
					 
					
						2006-04-08 22:25:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8795d38906 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2006-04-08 13:04:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8cd44e3630 
					 
					
						
						
							
							Implement encrypt/decrypt using RSA.  
						
						 
						
						
						
						
					 
					
						2006-04-08 13:02:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						07e970c7e6 
					 
					
						
						
							
							Initial functions for RSA EVP_PKEY_METHOD.  
						
						 
						
						... 
						
						
						
						Update dependencies. 
						
						
					 
					
						2006-04-08 00:15:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d1aa0d38c5 
					 
					
						
						
							
							If <operatio>_init function is zero interpret as noop.  
						
						 
						
						
						
						
					 
					
						2006-04-07 23:11:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e4d0f0be2 
					 
					
						
						
							
							New utility 'pkeyutl' a general purpose version of 'rsautl'.  
						
						 
						
						
						
						
					 
					
						2006-04-07 19:33:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cd7638980a 
					 
					
						
						
							
							Include EVP_PKEY argument in EVP_PKEY_CTX_new(). This avoids the  
						
						 
						
						... 
						
						
						
						need for a separate EVP_PKEY parameter in the other operation
initialization routines. 
						
						
					 
					
						2006-04-07 17:28:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f733a5ef0e 
					 
					
						
						
							
							Initial functions for main EVP_PKEY_METHOD operations.  
						
						 
						
						... 
						
						
						
						No method implementations yet. 
						
						
					 
					
						2006-04-07 16:42:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5da98aa687 
					 
					
						
						
							
							Updated to EVP_PKEY_METHOD code... still doesn't do much.  
						
						 
						
						
						
						
					 
					
						2006-04-06 17:32:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b6f3c66cd 
					 
					
						
						
							
							Initial definitions and a few functions for EVP_PKEY_METHOD: an extension  
						
						 
						
						... 
						
						
						
						of the EVP routines to public key algorithms. 
						
						
					 
					
						2006-04-06 13:02:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a01d9ac558 
					 
					
						
						
							
							Remove ECC extension information from external representation  
						
						 
						
						... 
						
						
						
						of the session -- we don't really need it once the handshake
has completed. 
						
						
					 
					
						2006-04-05 17:11:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e46691a0bc 
					 
					
						
						
							
							New function to add dynamic alias.  
						
						 
						
						
						
						
					 
					
						2006-04-05 13:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						732a40e107 
					 
					
						
						
							
							Last arg to EVP_PKEY_assign() should be void *.  
						
						 
						
						
						
						
					 
					
						2006-04-05 13:04:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29da3ade3c 
					 
					
						
						
							
							Rebuild mac table to avoid duplicates.  
						
						 
						
						
						
						
					 
					
						2006-04-05 12:09:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						de908d6319 
					 
					
						
						
							
							Typos in a few OID names.  
						
						 
						
						
						
						
					 
					
						2006-04-05 12:06:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9c9c98ad2e 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-04-05 12:00:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e0e9fce5d 
					 
					
						
						
							
							Minor object name edit.  
						
						 
						
						
						
						
					 
					
						2006-04-05 11:29:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						53ec8809cf 
					 
					
						
						
							
							Add an explicit load_config() call so any added algorithms are  
						
						 
						
						... 
						
						
						
						visible. 
						
						
					 
					
						2006-04-04 18:47:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						863779065e 
					 
					
						
						
							
							Fix dynamic public key method lookup.  
						
						 
						
						
						
						
					 
					
						2006-04-04 18:32:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b33dac310 
					 
					
						
						
							
							New function to retrieve ASN1 info on public key algorithms. New command  
						
						 
						
						... 
						
						
						
						line option to print out info. 
						
						
					 
					
						2006-04-04 18:16:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e2bce37720 
					 
					
						
						
							
							Stop warning.  
						
						 
						
						
						
						
					 
					
						2006-04-04 18:11:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						228b4e426b 
					 
					
						
						
							
							Update and add last (?) set of GOST OIDs.  
						
						 
						
						
						
						
					 
					
						2006-04-04 15:53:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a4974de937 
					 
					
						
						
							
							clarification  
						
						 
						
						
						
						
					 
					
						2006-04-03 14:11:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						22f41c9b99 
					 
					
						
						
							
							check length properly  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-04-03 13:57:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a123c552cd 
					 
					
						
						
							
							simplify: use s2n macro  
						
						 
						
						
						
						
					 
					
						2006-04-03 13:07:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b2172f4f8e 
					 
					
						
						
							
							Avoid hard-coded table length where we can use sizeof.  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester
Reviewed by: Bodo Moeller 
						
						
					 
					
						2006-04-03 11:56:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						dc1d1b6934 
					 
					
						
						
							
							fix memory leak  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-04-03 11:49:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						67475a7ed7 
					 
					
						
						
							
							Change chop to chomp when reading lines, so CRLF is properly processed on  
						
						 
						
						... 
						
						
						
						the operating systems where they are the normal line endings 
						
						
					 
					
						2006-04-03 09:15:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						362ab3e4f9 
					 
					
						
						
							
							More GOST OIDs  
						
						 
						
						
						
						
					 
					
						2006-04-02 13:22:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2aed84d16b 
					 
					
						
						
							
							Add GOST parameter set OIDs.  
						
						 
						
						
						
						
					 
					
						2006-04-02 03:01:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5deea1c015 
					 
					
						
						
							
							Don't free up key in priv_decode.  
						
						 
						
						
						
						
					 
					
						2006-03-31 18:16:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						99516f81b1 
					 
					
						
						
							
							Initialize pval.  
						
						 
						
						
						
						
					 
					
						2006-03-31 18:11:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d6091d5a39 
					 
					
						
						
							
							If we declare a function, like d2i_TS_MSG_IMPRINT_bio(), we'd better  
						
						 
						
						... 
						
						
						
						*define* it too, or things like shared libraries might be a bit sad. 
						
						
					 
					
						2006-03-31 12:25:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5a47825ece 
					 
					
						
						
							
							Fix gost OIDs.  
						
						 
						
						
						
						
					 
					
						2006-03-31 10:57:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						16f66ae794 
					 
					
						
						
							
							Synchronise with recent changes  
						
						 
						
						
						
						
					 
					
						2006-03-30 04:30:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7ce1d9e9a6 
					 
					
						
						
							
							The -config option flag needs to be in the SSLEAY_CONFIG value.  
						
						 
						
						... 
						
						
						
						PR: 1300 
						
						
					 
					
						2006-03-30 04:29:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a70183bc80 
					 
					
						
						
							
							fix for hostname extension  
						
						 
						
						... 
						
						
						
						Submitted by: Kaspar Brand, Peter Sylvester 
						
						
					 
					
						2006-03-30 02:53:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						332737217a 
					 
					
						
						
							
							Implement Supported Elliptic Curves Extension.  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila 
						
						
					 
					
						2006-03-30 02:44:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bcbe37b716 
					 
					
						
						
							
							Change default curve (for compatibility with a  
						
						 
						
						... 
						
						
						
						soon-to-be-widely-deployed implementation that doesn't support the
previous default)
Submitted by: Douglas Stebila 
						
						
					 
					
						2006-03-30 02:41:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f393b7449d 
					 
					
						
						
							
							Implement cipher-suite selection logic given Supported Point Formats Extension.  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila 
						
						
					 
					
						2006-03-30 02:35:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						531308d929 
					 
					
						
						
							
							Fix typo.  
						
						 
						
						
						
						
					 
					
						2006-03-29 15:58:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						74e564cd46 
					 
					
						
						
							
							Add some GOST OIDs.  
						
						 
						
						
						
						
					 
					
						2006-03-29 13:02:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						42eae426df 
					 
					
						
						
							
							Add missing function declaration.  
						
						 
						
						
						
						
					 
					
						2006-03-29 12:18:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						246e09319c 
					 
					
						
						
							
							Fix bug where freed OIDs could be accessed in EVP_cleanup() by  
						
						 
						
						... 
						
						
						
						defering freeing in OBJ_cleanup(). 
						
						
					 
					
						2006-03-28 17:23:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f7a3296d8c 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-03-28 14:48:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e4585c8fd 
					 
					
						
						
							
							New utility pkeyparam. Enhance and bugfix algorithm specific parameter  
						
						 
						
						... 
						
						
						
						functions to support it. 
						
						
					 
					
						2006-03-28 14:35:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e84b6e15f 
					 
					
						
						
							
							New general public key utility 'pkey'.  
						
						 
						
						
						
						
					 
					
						2006-03-28 12:34:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d505d1ef4a 
					 
					
						
						
							
							Small bug.  apps/CA.sh and apps/CA.com look at SSLEAY_CONFIG, not  
						
						 
						
						... 
						
						
						
						OPENSSL_CONF. 
						
						
					 
					
						2006-03-28 10:26:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						70b2ae3edf 
					 
					
						
						
							
							Since we're moving between directories, let's get an absolute path to  
						
						 
						
						... 
						
						
						
						openssl.exe. 
						
						
					 
					
						2006-03-27 14:39:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9e5dba197c 
					 
					
						
						
							
							Simplify ASN.1 for point format list  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila 
						
						
					 
					
						2006-03-26 10:53:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a61114c38b 
					 
					
						
						
							
							Only try to remove the tsa.dir subdirectory if it actually exists.  
						
						 
						
						
						
						
					 
					
						2006-03-25 10:24:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db98bbc114 
					 
					
						
						
							
							Initial support for generalized public key parameters.  
						
						 
						
						
						
						
					 
					
						2006-03-24 13:46:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e42633140e 
					 
					
						
						
							
							Add support for legacy PEM format private keys in EVP_PKEY_ASN1_METHOD.  
						
						 
						
						
						
						
					 
					
						2006-03-23 18:02:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd50e31325 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-03-23 14:08:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b2c0518e6a 
					 
					
						
						
							
							Fix bug in DSA, EC methods.  
						
						 
						
						
						
						
					 
					
						2006-03-23 14:04:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d82e2718e2 
					 
					
						
						
							
							Add information and pem strings. Update dependencies.  
						
						 
						
						
						
						
					 
					
						2006-03-23 11:54:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						18e377b4ff 
					 
					
						
						
							
							Make EVP_PKEY_ASN1_METHOD opaque. Add application level functions to  
						
						 
						
						... 
						
						
						
						initialize it. Initial support for application added public key ASN1. 
						
						
					 
					
						2006-03-22 17:59:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						043b2e9c2e 
					 
					
						
						
							
							Keep up with the changes in the Unix build system.  
						
						 
						
						
						
						
					 
					
						2006-03-22 14:31:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1b593194be 
					 
					
						
						
							
							Move algorithm specific print code from crypto/asn1/t_pkey.c to separate  
						
						 
						
						... 
						
						
						
						*_prn.c files in each algorithm directory. 
						
						
					 
					
						2006-03-22 13:34:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						35208f368c 
					 
					
						
						
							
							Gather printing routines into EVP_PKEY_ASN1_METHOD.  
						
						 
						
						
						
						
					 
					
						2006-03-22 13:09:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c788e59365 
					 
					
						
						
							
							VMS doesn't support includes of paths very well.  
						
						 
						
						
						
						
					 
					
						2006-03-22 11:26:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cb08f4a6a3 
					 
					
						
						
							
							Synchronise with recent changes  
						
						 
						
						
						
						
					 
					
						2006-03-21 06:22:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						adbc603d24 
					 
					
						
						
							
							DH EVP_PKEY_ASN1_METHOD, doesn't do much (yet?).  
						
						 
						
						
						
						
					 
					
						2006-03-20 18:37:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f81892e6b 
					 
					
						
						
							
							Transfer parameter handling and key comparison to algorithm methods.  
						
						 
						
						
						
						
					 
					
						2006-03-20 17:56:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						448be74335 
					 
					
						
						
							
							Initial support for pluggable public key ASN1 support. Process most public  
						
						 
						
						... 
						
						
						
						key ASN1 handling through a single EVP_PKEY_ASN1_METHOD structure and move
the spaghetti algorithm specific code to a single ASN1 module for each
algorithm. 
						
						
					 
					
						2006-03-20 12:22:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1a5a1a93f6 
					 
					
						
						
							
							Stop compiler warnings.  
						
						 
						
						
						
						
					 
					
						2006-03-20 11:44:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d917188a46 
					 
					
						
						
							
							fix last commit: return NULL is TS_RESP_CTX_set_status_info_cond() failed  
						
						 
						
						
						
						
					 
					
						2006-03-19 21:09:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b4e88ccb28 
					 
					
						
						
							
							ensure the pointer is valid before using it  
						
						 
						
						
						
						
					 
					
						2006-03-18 14:27:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d916ba1ba1 
					 
					
						
						
							
							check if con != NULL before using it  
						
						 
						
						
						
						
					 
					
						2006-03-18 14:24:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						33af4421f2 
					 
					
						
						
							
							remove unnecessary code  
						
						 
						
						
						
						
					 
					
						2006-03-18 14:22:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						95e362c6da 
					 
					
						
						
							
							Typo...  
						
						 
						
						
						
						
					 
					
						2006-03-18 10:36:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c58d983e3b 
					 
					
						
						
							
							*** empty log message ***  
						
						 
						
						
						
						
					 
					
						2006-03-17 19:29:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						a84c9d1ed9 
					 
					
						
						
							
							Clarification for CPU specific config options.  
						
						 
						
						
						
						
					 
					
						2006-03-17 19:22:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c6a27f0178 
					 
					
						
						
							
							fix for OPENSSL_NO_EC  
						
						 
						
						... 
						
						
						
						PR: 1293 
						
						
					 
					
						2006-03-15 19:17:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						67b6f1ca88 
					 
					
						
						
							
							fix problems found by coverity: remove useless code  
						
						 
						
						
						
						
					 
					
						2006-03-15 17:45:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a4ff392503 
					 
					
						
						
							
							tlsext_ecpointformatlist_length is unsigned, so check if it's less  
						
						 
						
						... 
						
						
						
						than zero will only result in pissing of some compilers... 
						
						
					 
					
						2006-03-15 09:57:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						40f51f506c 
					 
					
						
						
							
							create BN_CTX object  
						
						 
						
						
						
						
					 
					
						2006-03-15 08:37:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						eeb821f707 
					 
					
						
						
							
							fix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()  
						
						 
						
						
						
						
					 
					
						2006-03-14 22:48:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						47d5566646 
					 
					
						
						
							
							fix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()  
						
						 
						
						
						
						
					 
					
						2006-03-13 23:14:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						90bdfd97a6 
					 
					
						
						
							
							signed vs. unsigned  
						
						 
						
						
						
						
					 
					
						2006-03-13 22:07:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b9865f110e 
					 
					
						
						
							
							Oh, now I noticed Bodo's change that made tlsext_ecpointformatlist  
						
						 
						
						... 
						
						
						
						unsigned... 
						
						
					 
					
						2006-03-13 12:37:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						07ef612968 
					 
					
						
						
							
							Resolve signed vs. unsigned issues  
						
						 
						
						
						
						
					 
					
						2006-03-13 12:32:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						019fdc7850 
					 
					
						
						
							
							fix sign problems  
						
						 
						
						
						
						
					 
					
						2006-03-13 09:55:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7c382796be 
					 
					
						
						
							
							remove unused variables  
						
						 
						
						
						
						
					 
					
						2006-03-13 07:21:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b6acb8d0de 
					 
					
						
						
							
							udpate Supported Point Formats Extension code  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila 
						
						
					 
					
						2006-03-13 01:24:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6adbcb9755 
					 
					
						
						
							
							fix comment  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-03-12 23:00:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e968089485 
					 
					
						
						
							
							use BIO_snprintf() instead of snprintf + use BIO_FP_TEXT for text output  
						
						 
						
						... 
						
						
						
						Submitted by: Gisle Vanem 
						
						
					 
					
						2006-03-12 22:16:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c2cd422ac6 
					 
					
						
						
							
							note that SSL_library_init() is not reentrant  
						
						 
						
						
						
						
					 
					
						2006-03-12 00:37:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						36ca4ba63d 
					 
					
						
						
							
							Implement the Supported Point Formats Extension for ECC ciphersuites  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila 
						
						
					 
					
						2006-03-11 23:46:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ed4a1d12b9 
					 
					
						
						
							
							clarification  
						
						 
						
						
						
						
					 
					
						2006-03-11 22:10:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						a0aa8b4b61 
					 
					
						
						
							
							fix signed vs. unsigned warning  
						
						 
						
						
						
						
					 
					
						2006-03-11 12:18:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						2c059d58d9 
					 
					
						
						
							
							fix "missing initializer" warning  
						
						 
						
						
						
						
					 
					
						2006-03-11 11:58:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cd346d3e22 
					 
					
						
						
							
							fix signed vs. unsigned warning  
						
						 
						
						
						
						
					 
					
						2006-03-11 11:54:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						561d93aa00 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2006-03-10 23:08:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ddac197404 
					 
					
						
						
							
							add initial support for RFC 4279 PSK SSL ciphersuites  
						
						 
						
						... 
						
						
						
						PR: 1191
Submitted by: Mika Kousa and Pasi Eronen of Nokia Corporation
Reviewed by: Nils Larsch 
						
						
					 
					
						2006-03-10 23:06:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0e8e6f19b2 
					 
					
						
						
							
							Remember to *build* WP_TEST on VMS, as well :-)  
						
						 
						
						
						
						
					 
					
						2006-03-08 10:45:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c03e4f9bf0 
					 
					
						
						
							
							fix function name in error message  
						
						 
						
						
						
						
					 
					
						2006-03-07 10:22:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c3bb1f8166 
					 
					
						
						
							
							unused function  
						
						 
						
						
						
						
					 
					
						2006-03-06 17:58:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						959a7201b8 
					 
					
						
						
							
							The actual whirlpool test was missing on VMS...  
						
						 
						
						
						
						
					 
					
						2006-03-06 12:09:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6c73d01142 
					 
					
						
						
							
							constify some print and ts functions  
						
						 
						
						
						
						
					 
					
						2006-03-05 20:19:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2932ad5677 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-03-05 01:19:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						036bbcc53f 
					 
					
						
						
							
							no need to cast away the const  
						
						 
						
						
						
						
					 
					
						2006-03-04 13:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6384e46da3 
					 
					
						
						
							
							make some parameters const  
						
						 
						
						
						
						
					 
					
						2006-03-04 13:55:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6e2fcc44bd 
					 
					
						
						
							
							Make shorter TS symbols for OpenVMS.  
						
						 
						
						... 
						
						
						
						Don't convert a function pointer to a void*, ISO C doesn't like that. 
						
						
					 
					
						2006-03-02 13:55:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8721fc2d0b 
					 
					
						
						
							
							Forgot the TSA application...  
						
						 
						
						
						
						
					 
					
						2006-03-02 13:28:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1facbb681 
					 
					
						
						
							
							Check EVP_DigestInit_ex() return value in EVP_BytesToKey().  
						
						 
						
						
						
						
					 
					
						2006-03-01 21:17:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f2c33fa6fd 
					 
					
						
						
							
							force C locale when using [a-z] in sed expressions  
						
						 
						
						... 
						
						
						
						PR: 1283
Submitted by: Mike Frysinger 
						
						
					 
					
						2006-03-01 19:51:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						5aae935038 
					 
					
						
						
							
							fix "#ifndef HZ" statement  
						
						 
						
						... 
						
						
						
						PR: 1287 
						
						
					 
					
						2006-02-28 19:52:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						11503177d1 
					 
					
						
						
							
							TS bugfixes: Do not hardcode message digest algorithms; fix ASN1 decoding.  
						
						 
						
						... 
						
						
						
						Submitted by: Zoltan Glozik <zglozik@opentsa.org > 
						
						
					 
					
						2006-02-26 23:34:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ab899a660 
					 
					
						
						
							
							Synchronise with openss.cnf  
						
						 
						
						
						
						
					 
					
						2006-02-26 10:48:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8937a13e0c 
					 
					
						
						
							
							Add a TSA test.  testtsa.com is a manual sh to dcl translation of  
						
						 
						
						... 
						
						
						
						testtsa. 
						
						
					 
					
						2006-02-26 10:47:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						19017d4061 
					 
					
						
						
							
							Add TS to the VMS build.  
						
						 
						
						
						
						
					 
					
						2006-02-26 10:46:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f53ac639c6 
					 
					
						
						
							
							Break out deltree in its' own command procedure.  
						
						 
						
						
						
						
					 
					
						2006-02-26 10:44:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f71165b556 
					 
					
						
						
							
							fix no-dh configure option; patch supplied by Peter Meerwald  
						
						 
						
						
						
						
					 
					
						2006-02-24 17:58:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						350a404cb8 
					 
					
						
						
							
							Print out <INVALID> if an OID value is invalid.  
						
						 
						
						
						
						
					 
					
						2006-02-21 01:00:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						827c55741b 
					 
					
						
						
							
							Tolerate a SEQUENCE in DN components.  
						
						 
						
						
						
						
					 
					
						2006-02-19 13:44:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						e0c8c08936 
					 
					
						
						
							
							ignore  
						
						 
						
						
						
						
					 
					
						2006-02-16 20:43:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						4e397d07ea 
					 
					
						
						
							
							message style  
						
						 
						
						
						
						
					 
					
						2006-02-16 20:33:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						9eb8794149 
					 
					
						
						
							
							oops  
						
						 
						
						
						
						
					 
					
						2006-02-16 20:30:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						dc24110311 
					 
					
						
						
							
							wrap shlib for testtsa  
						
						 
						
						... 
						
						
						
						Submitted by: David Somers <dsomers@omz13.com > 
						
						
					 
					
						2006-02-16 20:20:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b3e72fc37f 
					 
					
						
						
							
							make some internal functions static; patch supplied by Kurt Roeckx  
						
						 
						
						
						
						
					 
					
						2006-02-15 20:20:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						90076b96df 
					 
					
						
						
							
							fix typos  
						
						 
						
						... 
						
						
						
						PR: 1280 
						
						
					 
					
						2006-02-15 19:42:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9c339a7227 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2006-02-15 15:04:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e7a8b47f1a 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2006-02-15 14:45:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						7ac7a4bc37 
					 
					
						
						
							
							shorter filenames  
						
						 
						
						
						
						
					 
					
						2006-02-15 00:35:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						a628901dda 
					 
					
						
						
							
							use asn1 callbacks for new, free and d2i  
						
						 
						
						
						
						
					 
					
						2006-02-14 07:55:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						2ab75dee27 
					 
					
						
						
							
							don't use the l length modifier for int  
						
						 
						
						
						
						
					 
					
						2006-02-13 09:50:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						a3f586cdab 
					 
					
						
						
							
							use stricter prototypes, fix warnings  
						
						 
						
						
						
						
					 
					
						2006-02-13 09:46:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fcfd87168a 
					 
					
						
						
							
							fix warning: add missing prototype  
						
						 
						
						
						
						
					 
					
						2006-02-13 09:43:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						95a0e8ab31 
					 
					
						
						
							
							fix warning  
						
						 
						
						
						
						
					 
					
						2006-02-13 08:45:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0c9caf04de 
					 
					
						
						
							
							fix typo: pass pre-computed parameters to the underlying signature function; thanks to Lucas Newman  
						
						 
						
						
						
						
					 
					
						2006-02-13 08:16:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						21e8bbf290 
					 
					
						
						
							
							*** empty log message ***  
						
						 
						
						
						
						
					 
					
						2006-02-12 23:36:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						3b408d83fe 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2006-02-12 23:21:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						8573552e8c 
					 
					
						
						
							
							time stamp Makefile, test files  
						
						 
						
						... 
						
						
						
						Submitted by: Zoltan Glozik <zglozik@opentsa.org > 
						
						
					 
					
						2006-02-12 23:19:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c7235be6e3 
					 
					
						
						
							
							RFC 3161 compliant time stamp request creation, response generation  
						
						 
						
						... 
						
						
						
						and response verification.
Submitted by: Zoltan Glozik <zglozik@opentsa.org >
Reviewed by: Ulf Moeller 
						
						
					 
					
						2006-02-12 23:11:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1c17d91c53 
					 
					
						
						
							
							Minor clarification.  
						
						 
						
						
						
						
					 
					
						2006-02-11 01:54:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a070f0dac5 
					 
					
						
						
							
							Add FAQ about AKID.  
						
						 
						
						
						
						
					 
					
						2006-02-11 00:46:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b480283c56 
					 
					
						
						
							
							Document the building macros.  
						
						 
						
						
						
						
					 
					
						2006-02-10 08:48:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f5ce5e1465 
					 
					
						
						
							
							As an effect of revisions 1.261, BUILD_CMD was changed so $(DIRS)  
						
						 
						
						... 
						
						
						
						wasn't respected when using it to build different parts of OpenSSL.
1.269 was an attempt to correct that, but unfortunately meant that we
built every part that was given i $(DIRS) 7 times.  This change puts
back the original intent with BUILD_CMD via the new macro
BUILD_ONE_CMD while keeping the intent with RECURSIVE_BUILD_CMD. 
						
						
					 
					
						2006-02-10 08:04:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7db77a0cb 
					 
					
						
						
							
							Fix warnings about "sin" conflicting with sin(3) definition.  
						
						 
						
						
						
						
					 
					
						2006-02-09 17:17:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						346ac30120 
					 
					
						
						
							
							Avoid warnings about shadowed definitions.  
						
						 
						
						
						
						
					 
					
						2006-02-09 17:11:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						07bb51b6b4 
					 
					
						
						
							
							Update from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2006-02-09 12:29:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						bbab9b61dd 
					 
					
						
						
							
							remove unnecessary check  
						
						 
						
						
						
						
					 
					
						2006-02-08 18:52:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						82e8372f17 
					 
					
						
						
							
							p could be uninitialized  
						
						 
						
						
						
						
					 
					
						2006-02-08 18:51:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e67ed82877 
					 
					
						
						
							
							move new member of SSL_SESSION to the end  
						
						 
						
						... 
						
						
						
						(minimize changes to binary format)
Submitted by: Peter Sylvester 
						
						
					 
					
						2006-02-07 14:26:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						15ac971681 
					 
					
						
						
							
							Update filenames in makefiles.  
						
						 
						
						
						
						
					 
					
						2006-02-04 01:45:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c21e13012 
					 
					
						
						
							
							Recognize mingw in perlasm.  
						
						 
						
						
						
						
					 
					
						2006-02-04 01:25:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d5fd72fd0d 
					 
					
						
						
							
							fix if statement: call conn_state() if the BIO is not in the BIO_CONN_S_OK state  
						
						 
						
						
						
						
					 
					
						2006-02-02 22:11:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c7474d077b 
					 
					
						
						
							
							Ignore zero length constructed segments.  
						
						 
						
						
						
						
					 
					
						2006-01-31 18:36:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						826b52d26f 
					 
					
						
						
							
							Typo  
						
						 
						
						... 
						
						
						
						Submitted by: Girish Venkatachalam <girish1729@gmail.com > 
						
						
					 
					
						2006-01-30 17:06:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8c5a2bd6bb 
					 
					
						
						
							
							add additional checks + cleanup  
						
						 
						
						... 
						
						
						
						Submitted by: David Hartman <david_hartman@symantec.com > 
						
						
					 
					
						2006-01-29 23:12:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						25a58453ff 
					 
					
						
						
							
							Fixes for BOOL handling: produce errors for invalid string for mini-compiler,  
						
						 
						
						... 
						
						
						
						correctly encode FALSE for BOOL in ASN1_TYPE. 
						
						
					 
					
						2006-01-19 17:16:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						00fe865dbe 
					 
					
						
						
							
							recent changes from 0.9.8: fix cipher list order in s3_lib.c,  
						
						 
						
						... 
						
						
						
						make "no-ssl2" work again
PR: 1217 
						
						
					 
					
						2006-01-15 17:35:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e9bececa9 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2006-01-15 17:31:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90890074b0 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-01-15 13:55:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31676a3540 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2006-01-15 13:50:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6b9e941ee3 
					 
					
						
						
							
							signed vs. unsigned clash.  
						
						 
						
						
						
						
					 
					
						2006-01-14 11:49:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						802d7fa6d5 
					 
					
						
						
							
							support numeric strings in ASN1_generate_nconf  
						
						 
						
						
						
						
					 
					
						2006-01-14 09:21:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3798cb8182 
					 
					
						
						
							
							fix comment  
						
						 
						
						... 
						
						
						
						PR: 1270 
						
						
					 
					
						2006-01-13 23:50:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						2c5fadbce3 
					 
					
						
						
							
							2 is a prime  
						
						 
						
						... 
						
						
						
						PR: 1266 
						
						
					 
					
						2006-01-13 23:27:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						58ece83395 
					 
					
						
						
							
							Further TLS extension improvements  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-01-13 09:21:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c75c096aa8 
					 
					
						
						
							
							Forgot to initialize CC6DISABLEWARNINGS properly...  
						
						 
						
						
						
						
					 
					
						2006-01-11 18:55:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ab961dc8b0 
					 
					
						
						
							
							Typo...  
						
						 
						
						
						
						
					 
					
						2006-01-11 13:31:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						6ad47e83b4 
					 
					
						
						
							
							improvements for alert handling  
						
						 
						
						
						
						
					 
					
						2006-01-11 07:18:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						241520e66d 
					 
					
						
						
							
							More TLS extension related changes.  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-01-11 06:10:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a13c20f603 
					 
					
						
						
							
							Further TLS extension updates  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-01-09 19:49:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						db6251ad54 
					 
					
						
						
							
							Disable the Mixed Linkage warning for some selected modules.  This is  
						
						 
						
						... 
						
						
						
						because the Compaq C compiler will not accept that a variable be
declared extern then defined static without a warning. 
						
						
					 
					
						2006-01-09 19:23:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						51eb1b81f6 
					 
					
						
						
							
							Avoid contradictive error code assignments.  
						
						 
						
						... 
						
						
						
						"make errors". 
						
						
					 
					
						2006-01-08 21:54:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2adc42e43e 
					 
					
						
						
							
							Detect more errors.  
						
						 
						
						... 
						
						
						
						Change assignment strategy: rathern than using max+r for new codes,
find first hole in list of existing codes. 
						
						
					 
					
						2006-01-08 21:43:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						52cc46a237 
					 
					
						
						
							
							Detect SSL error code mishandling.  
						
						 
						
						
						
						
					 
					
						2006-01-08 20:03:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a07b4dc038 
					 
					
						
						
							
							include max. codes in debug output  
						
						 
						
						
						
						
					 
					
						2006-01-08 19:54:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						739a543ea8 
					 
					
						
						
							
							Some error code cleanups (SSL lib. used SSL_R_... codes reserved for alerts)  
						
						 
						
						
						
						
					 
					
						2006-01-08 19:42:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						01c76c6606 
					 
					
						
						
							
							There's no such things as DTLS1_AD_MISSING_HANDSHAKE_MESSAGE.  
						
						 
						
						... 
						
						
						
						For now, anyway. 
						
						
					 
					
						2006-01-07 20:44:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d32f888db1 
					 
					
						
						
							
							prepare for additional RFC3546 alerts  
						
						 
						
						
						
						
					 
					
						2006-01-07 20:33:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f7914dbf9a 
					 
					
						
						
							
							make sure that the unrecognized_name alert actually gets sent  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-01-07 20:29:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3ff94a009b 
					 
					
						
						
							
							complete and correct RFC3546 error codes  
						
						 
						
						
						
						
					 
					
						2006-01-07 20:28:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1aeb3da83f 
					 
					
						
						
							
							Fixes for TLS server_name extension  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-01-06 09:08:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e8e5b46e2b 
					 
					
						
						
							
							Add names for people who provided the TLS extension patch.  
						
						 
						
						
						
						
					 
					
						2006-01-04 17:35:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c9d67d4ddf 
					 
					
						
						
							
							The VMS I run on doesn't know socklen_t and uses size_t instead.  
						
						 
						
						
						
						
					 
					
						2006-01-04 12:03:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8de5b7f548 
					 
					
						
						
							
							Fix signed/unsigned char clashes.  
						
						 
						
						
						
						
					 
					
						2006-01-04 12:02:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ee0f7b7e0 
					 
					
						
						
							
							In ASN1_parse() show tag value for ASN1 tags > 30.  
						
						 
						
						
						
						
					 
					
						2006-01-03 14:20:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f1fd4544a3 
					 
					
						
						
							
							Various changes in the new TLS extension code, including the following:  
						
						 
						
						... 
						
						
						
						- fix indentation
 - rename some functions and macros
 - fix up confusion between SSL_ERROR_... and SSL_AD_... values 
						
						
					 
					
						2006-01-03 03:27:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						349eb12fd5 
					 
					
						
						
							
							Make sure that after the change from revision 1.261,  
						
						 
						
						... 
						
						
						
						it's still possible to do a partial build. 
						
						
					 
					
						2006-01-03 03:05:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6a8f17de1e 
					 
					
						
						
							
							Missing files in the VMS installation  
						
						 
						
						
						
						
					 
					
						2006-01-02 23:33:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b1277b9902 
					 
					
						
						
							
							C style fix-up  
						
						 
						
						
						
						
					 
					
						2006-01-02 23:29:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ed3883d21b 
					 
					
						
						
							
							Support TLS extensions (specifically, HostName)  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Sylvester 
						
						
					 
					
						2006-01-02 23:14:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea558241e0 
					 
					
						
						
							
							Refine login in b_sock.c.  
						
						 
						
						
						
						
					 
					
						2006-01-02 16:05:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						61aa2134a4 
					 
					
						
						
							
							Compile Windows with winsock2.h. But note that we still link with wsock32!  
						
						 
						
						... 
						
						
						
						This works because wsock32 commonly loads ws2_32 anyway and we [intend to]
check upon presense of winsock2-specific API at run-time. 
						
						
					 
					
						2006-01-02 13:44:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4eb76e2397 
					 
					
						
						
							
							Fix typo and purify logic in b_sock.c  
						
						 
						
						
						
						
					 
					
						2006-01-02 12:26:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						68e575362f 
					 
					
						
						
							
							./util update, which covers various issues, but most importantly mkerr.pl  
						
						 
						
						... 
						
						
						
						and mkdef.pl spinning in endless loop. 
						
						
					 
					
						2006-01-02 12:13:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aab3bb04cf 
					 
					
						
						
							
							Typo in win32_globallookup.  
						
						 
						
						
						
						
					 
					
						2006-01-02 12:06:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						481d81cb76 
					 
					
						
						
							
							Make b_sock.c IPv6 savvy.  
						
						 
						
						
						
						
					 
					
						2006-01-02 09:12:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c6cb42e4fb 
					 
					
						
						
							
							"Relax" prototype and rename DSO_global_lookup_func to DSO_global_lookup.  
						
						 
						
						
						
						
					 
					
						2006-01-02 08:59:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2d43a89488 
					 
					
						
						
							
							util/mkerr.pl update to address various mkerr.pl problems [such as failure  
						
						 
						
						... 
						
						
						
						to handle multi-line comments and endless loop while parsing overloaded
gnu-ish __attribute__]. 
						
						
					 
					
						2006-01-01 18:42:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						302ea8c260 
					 
					
						
						
							
							Fix mapping "leak" in newly introduced win32_globallookup.  
						
						 
						
						
						
						
					 
					
						2006-01-01 18:38:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a1f3462bc0 
					 
					
						
						
							
							Oops! Remove junk...  
						
						 
						
						
						
						
					 
					
						2005-12-31 14:54:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7476f3ac3b 
					 
					
						
						
							
							Rewrite timeout computation in a way that is less prone to overflow.  
						
						 
						
						... 
						
						
						
						(Problem reported by Peter Sylvester.) 
						
						
					 
					
						2005-12-30 23:51:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						68b64fb610 
					 
					
						
						
							
							Add DSO_global_lookup_func implementation. See commentary in dso_lib.c  
						
						 
						
						... 
						
						
						
						for further details. 
						
						
					 
					
						2005-12-30 22:53:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34b537ee66 
					 
					
						
						
							
							Fix CFB and OFB modes in eng_padlock.c. Engine was consistent with itself,  
						
						 
						
						... 
						
						
						
						but not interoperable with the rest of the world. test_padlock script is
added mostly for reference. 
						
						
					 
					
						2005-12-28 16:16:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a5dbeb782 
					 
					
						
						
							
							Minor sparcv9 clean-ups.  
						
						 
						
						
						
						
					 
					
						2005-12-27 21:27:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6c06918ede 
					 
					
						
						
							
							Lower PADLOCK_CHUNK till value, which doesn't affect the benchmark results.  
						
						 
						
						... 
						
						
						
						Well, it's even contrary, 512 was observed to *improve* performance by 5%.
Excuse ourselves from treating C7 specially. 
						
						
					 
					
						2005-12-27 21:21:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ee8f293701 
					 
					
						
						
							
							Whoops, we were copying instead of comparing at the end of trying to  
						
						 
						
						... 
						
						
						
						find a queue element.
Notified by nagendra modadugu <nagendra@cs.stanford.edu > 
						
						
					 
					
						2005-12-20 07:03:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b4a0225e2 
					 
					
						
						
							
							As SPARCV9 CPU flavor is [expected to be] detected at run-time, we can  
						
						 
						
						... 
						
						
						
						afford to relax SPARCV9/8+ compiler command line and produce "unversal"
binaries as we used to. 
						
						
					 
					
						2005-12-19 09:10:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c8e1edaae5 
					 
					
						
						
							
							comments  
						
						 
						
						
						
						
					 
					
						2005-12-18 20:59:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63d3fc9106 
					 
					
						
						
							
							Eliminate possible mapping leak.  
						
						 
						
						
						
						
					 
					
						2005-12-18 19:14:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5d7324e42d 
					 
					
						
						
							
							Typo in sparcv8cap.c.  
						
						 
						
						
						
						
					 
					
						2005-12-18 19:13:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						be7b4458f2 
					 
					
						
						
							
							Keep disclaiming 16-bit platform support. For now remove WIN16 references  
						
						 
						
						... 
						
						
						
						from .h files... 
						
						
					 
					
						2005-12-18 19:11:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7304956e39 
					 
					
						
						
							
							Missing CFLAG in couple of depend: targets.  
						
						 
						
						... 
						
						
						
						PR: 1247
Submitted by: Doug Kaufman 
						
						
					 
					
						2005-12-18 19:00:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c510eec090 
					 
					
						
						
							
							Put back OPENSSL_SYS_MSDOS definition to revive DJGPP built.  
						
						 
						
						... 
						
						
						
						PR: 1247 
						
						
					 
					
						2005-12-18 18:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1b167a4343 
					 
					
						
						
							
							Make bio.h resistant to gnu-ish __attribute__ redefenitions.  
						
						 
						
						... 
						
						
						
						PR: 1252 
						
						
					 
					
						2005-12-16 21:21:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9ab5170197 
					 
					
						
						
							
							Fix typos in osf1 shared rules.  
						
						 
						
						... 
						
						
						
						PR: 1248
Submitted by: Nikola Milutinovic 
						
						
					 
					
						2005-12-16 20:51:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a00e414faf 
					 
					
						
						
							
							Unify sparcv9 assembler naming and build rules among 32- and 64-bit builds.  
						
						 
						
						... 
						
						
						
						Engage run-time switch between bn_mul_mont_fpu and bn_mul_mont_int. 
						
						
					 
					
						2005-12-16 17:39:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c5e19b6c6 
					 
					
						
						
							
							Make framework for Whirlpool assembler flexible.  
						
						 
						
						
						
						
					 
					
						2005-12-16 13:23:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ed26604a71 
					 
					
						
						
							
							Engage Whirlpool assembler and mention Whirlpool in CHANGES.  
						
						 
						
						
						
						
					 
					
						2005-12-16 12:55:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0fbd4bf044 
					 
					
						
						
							
							Make room for Whirlpool assembler in Configure.  
						
						 
						
						
						
						
					 
					
						2005-12-16 11:53:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d719e60cb4 
					 
					
						
						
							
							Allow for warning-free passing of -Wl options on config command line. One  
						
						 
						
						... 
						
						
						
						possible usage is to pass -Wl,-z,-noexecstack on Linux to ensure the stack
is marked non-executable. Well, -Wa,--noexecstack works fine too... 
						
						
					 
					
						2005-12-16 11:29:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0cb9d93d0c 
					 
					
						
						
							
							Mention bn(64,64) to bn(64,32) switch on 64-bit SPARCv9 targets in CHANGES.  
						
						 
						
						
						
						
					 
					
						2005-12-16 11:12:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f5826b8014 
					 
					
						
						
							
							We all make typos:-) Fix just introduced ones in bn.h  
						
						 
						
						
						
						
					 
					
						2005-12-16 10:43:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4a47f55639 
					 
					
						
						
							
							Eliminate warning induced by  http://cvs.openssl.org/chngview?cn=14690  and  
						
						 
						
						... 
						
						
						
						keep disclaiming narrower than 32-bit support. 
						
						
					 
					
						2005-12-16 10:37:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b884556ed8 
					 
					
						
						
							
							To exclude contention for shared FPU on T1, trade 3% of DES performance.  
						
						 
						
						
						
						
					 
					
						2005-12-15 22:55:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c06b0f3d5e 
					 
					
						
						
							
							sparccpuid module update.  
						
						 
						
						
						
						
					 
					
						2005-12-15 22:50:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						68ea60683a 
					 
					
						
						
							
							Add IALU-only bn_mul_mont for SPARCv9. See commentary section for details.  
						
						 
						
						
						
						
					 
					
						2005-12-15 22:43:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6df8c74d5b 
					 
					
						
						
							
							Switch 64-bit sparcv9 platforms from bn(64,64) to bn(64,32). This doesn't  
						
						 
						
						... 
						
						
						
						have impact on performance, because amount of multiplications does not
increase with this switch, not on sparcv9 that is. On the contrary, it
actually improves performance, because it spares a load of instructions
used to chase carries. Not to mention that BN assembler modules can be
shared more freely between 32- and 64-bit builts. 
						
						
					 
					
						2005-12-15 22:40:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						877e8e970c 
					 
					
						
						
							
							Allow for bn(64,32) on LP64 platforms.  
						
						 
						
						
						
						
					 
					
						2005-12-15 22:31:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d56349a2aa 
					 
					
						
						
							
							update TLS-ECC code  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila 
						
						
					 
					
						2005-12-13 07:33:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						67c03ff185 
					 
					
						
						
							
							comment  
						
						 
						
						
						
						
					 
					
						2005-12-13 05:46:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						35e00cc2d8 
					 
					
						
						
							
							Minor aes-sparcv9.pl optimization.  
						
						 
						
						
						
						
					 
					
						2005-12-10 12:32:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						064f6cb6f2 
					 
					
						
						
							
							Engage AES for UltraSPARC in sparcv9 targets.  
						
						 
						
						
						
						
					 
					
						2005-12-10 11:24:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						20ab8b4b41 
					 
					
						
						
							
							Revoke the option to share AES S-boxes between C and assembler. It wastes  
						
						 
						
						... 
						
						
						
						space, but gives total flexibility [back]. 
						
						
					 
					
						2005-12-10 11:22:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7395d852c3 
					 
					
						
						
							
							Initial draft for AES for UltraSPARC assembler.  
						
						 
						
						
						
						
					 
					
						2005-12-10 11:19:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ebf898e88 
					 
					
						
						
							
							Support for indirect calls in x86 assembler modules.  
						
						 
						
						
						
						
					 
					
						2005-12-06 18:43:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4c886e4c8 
					 
					
						
						
							
							Add cpuid code to VC++ build.  
						
						 
						
						
						
						
					 
					
						2005-12-06 16:35:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1291dfdead 
					 
					
						
						
							
							Don't include zlib header dir if it is not defined.  
						
						 
						
						
						
						
					 
					
						2005-12-06 13:36:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						df278aff3e 
					 
					
						
						
							
							Fix typos in wp-mmx.pl.  
						
						 
						
						
						
						
					 
					
						2005-12-06 09:34:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c510d6f43 
					 
					
						
						
							
							Initial attempt at Whirlpool assembler support on VC++.  
						
						 
						
						
						
						
					 
					
						2005-12-06 02:04:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bbcb2f690 
					 
					
						
						
							
							Avoid warnings on VC++ 2005.  
						
						 
						
						
						
						
					 
					
						2005-12-05 17:21:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad2695b1b7 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2005-12-05 13:46:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9cbf062a70 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-12-05 00:53:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec645d9017 
					 
					
						
						
							
							Make mk1mf.pl and friends recognize Whirlpool.  
						
						 
						
						
						
						
					 
					
						2005-12-05 00:53:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0d894c9dbe 
					 
					
						
						
							
							Make ZLIB without ZLIB_SHARED compiled again.  
						
						 
						
						
						
						
					 
					
						2005-12-03 17:42:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c6709b89c4 
					 
					
						
						
							
							Couple other benchmark comparisons for wp-x86_64.pl.  
						
						 
						
						
						
						
					 
					
						2005-12-03 11:59:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						061bebc0d8 
					 
					
						
						
							
							x86cpuid.pl update.  
						
						 
						
						
						
						
					 
					
						2005-12-03 11:56:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						802e1d692b 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2005-12-02 14:06:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dbf33b344c 
					 
					
						
						
							
							Update ordinals and include changes from 0.9.8.  
						
						 
						
						
						
						
					 
					
						2005-12-02 13:59:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b40228a61d 
					 
					
						
						
							
							New functions to support opaque EVP_CIPHER_CTX handling.  
						
						 
						
						
						
						
					 
					
						2005-12-02 13:46:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da5a0e8722 
					 
					
						
						
							
							Add error checking to avoid crashing when zlib cannot be loaded.  
						
						 
						
						
						
						
					 
					
						2005-12-02 13:27:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						200fc02848 
					 
					
						
						
							
							Include EVP_whirlpool() prototype in evp.h  
						
						 
						
						
						
						
					 
					
						2005-12-02 13:25:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7096217d39 
					 
					
						
						
							
							wq instead of wp?  That's gotta be among the more amazing typos I've  
						
						 
						
						... 
						
						
						
						made... 
						
						
					 
					
						2005-12-02 09:30:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f1eb83a013 
					 
					
						
						
							
							Whirlpool was added to EVP, so let's build it on VMS as well.  
						
						 
						
						
						
						
					 
					
						2005-12-01 03:06:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fec82dbc86 
					 
					
						
						
							
							Whirlpool for x86_64.  
						
						 
						
						
						
						
					 
					
						2005-11-30 21:03:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7b1b47a8e6 
					 
					
						
						
							
							Mention Whirlpool in dgst -help.  
						
						 
						
						
						
						
					 
					
						2005-11-30 20:58:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8b9afce53a 
					 
					
						
						
							
							Add Whirlpool to EVP.  
						
						 
						
						
						
						
					 
					
						2005-11-30 20:57:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						137db78b46 
					 
					
						
						
							
							Adapt Whirlpool API for EVP.  
						
						 
						
						
						
						
					 
					
						2005-11-30 20:53:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a3344c8e5e 
					 
					
						
						
							
							Fix typos in wp-mmx.pl.  
						
						 
						
						
						
						
					 
					
						2005-11-30 20:52:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c173d09c56 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2005-11-30 19:25:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb49a3cfa1 
					 
					
						
						
							
							Make CA.pl script use CA extensions when creating a root CA.  
						
						 
						
						
						
						
					 
					
						2005-11-30 18:31:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						adab80053d 
					 
					
						
						
							
							Build Whirlpool on VMS as well  
						
						 
						
						
						
						
					 
					
						2005-11-29 12:46:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f106fb85d4 
					 
					
						
						
							
							Add Whirlpool OID.  
						
						 
						
						
						
						
					 
					
						2005-11-28 20:51:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5fa6d850a2 
					 
					
						
						
							
							Remove development leftover from whrlpool/asm/wp-mmx.pl.  
						
						 
						
						
						
						
					 
					
						2005-11-28 20:29:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4adfe93cc5 
					 
					
						
						
							
							Add missing Makefile and fix couple of typos in commentary.  
						
						 
						
						
						
						
					 
					
						2005-11-28 20:16:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d1593e6b15 
					 
					
						
						
							
							Whirlpool hash implementation. The fact that subdirectory and .h file are  
						
						 
						
						... 
						
						
						
						called whrlpool is not a typo, but a way to keep the names shorter than
8 characters. Remaining TODO list comprises adding OID, EVP, corresponding
flag to apps/openssl dgst, benchmark, engage assembler... 
						
						
					 
					
						2005-11-28 20:09:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a53cb070e3 
					 
					
						
						
							
							When using POSIXly functions, we need to define _POSIX_C_SOURCE, at  
						
						 
						
						... 
						
						
						
						least when the source is compiled with ANSI settings. 
						
						
					 
					
						2005-11-27 15:32:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						452ae49db5 
					 
					
						
						
							
							Extensive OID code enhancement and fixes.  
						
						 
						
						
						
						
					 
					
						2005-11-20 13:07:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8c5c5b6517 
					 
					
						
						
							
							Synchronise with the Unix build.  
						
						 
						
						
						
						
					 
					
						2005-11-19 07:57:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						6f44d4d247 
					 
					
						
						
							
							deFUDify: don't require OPENSSL_EC_BIN_PT_COMP  
						
						 
						
						
						
						
					 
					
						2005-11-16 04:07:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d804f86b88 
					 
					
						
						
							
							disable some invalid ciphersuites  
						
						 
						
						
						
						
					 
					
						2005-11-15 23:32:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8dee9f844f 
					 
					
						
						
							
							deFUDify: don't require OPENSSL_EC_BIN_PT_COMP  
						
						 
						
						
						
						
					 
					
						2005-11-15 21:08:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						963ba10012 
					 
					
						
						
							
							Keep shutting up VC8.  
						
						 
						
						... 
						
						
						
						PR: 1243 
						
						
					 
					
						2005-11-15 08:07:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						07645deeb8 
					 
					
						
						
							
							Apply "better safe than sorry" approach after addressing sporadic SEGV in  
						
						 
						
						... 
						
						
						
						bn_sub_words to the rest of the sparcv8plus.S. 
						
						
					 
					
						2005-11-15 08:02:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c52c82ffc1 
					 
					
						
						
							
							Attempt to resolve sporadic SEGV crashes in bn_sub_words in OpenSSH. I'm  
						
						 
						
						... 
						
						
						
						baffled why it crashes and does it sporadically... 
						
						
					 
					
						2005-11-11 20:07:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d6a03a23a8 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-11-11 13:00:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e347b0da2b 
					 
					
						
						
							
							Throw in comment so that one doesn't get tempted to optimize it away.  
						
						 
						
						
						
						
					 
					
						2005-11-09 20:46:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						52b1fbbd99 
					 
					
						
						
							
							Avoid end-less loop when libcrypto.a is manually deleted, but 'make clean'  
						
						 
						
						... 
						
						
						
						was not executed. It doesn't excuse user from running 'make clean', it
simply avoids process table exhaustion.
PR: 1236
Submitted by: Michael Richardson 
						
						
					 
					
						2005-11-09 20:41:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						65613f23ba 
					 
					
						
						
							
							Mention PROBLEMS in FAQ.  
						
						 
						
						
						
						
					 
					
						2005-11-09 19:43:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4f92a764f1 
					 
					
						
						
							
							AIX -blibpath is not accumulative, one apparently has to specify even  
						
						 
						
						... 
						
						
						
						self-obvious /usr/lib:/lib.
PR: 1239 
						
						
					 
					
						2005-11-09 17:27:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6a3a7f3076 
					 
					
						
						
							
							Minor perlasm clean-up.  
						
						 
						
						
						
						
					 
					
						2005-11-09 17:20:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63d3a9c5ea 
					 
					
						
						
							
							Tidying up WinCE support.  
						
						 
						
						
						
						
					 
					
						2005-11-09 17:19:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2c730f6fc2 
					 
					
						
						
							
							Improve cross-compiler portability of applink.c module and mention  
						
						 
						
						... 
						
						
						
						CRYPTO_malloc_init in FAQ. 
						
						
					 
					
						2005-11-09 17:11:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df8dae1df4 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2005-11-07 00:35:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e9f1bf0e1 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-11-07 00:10:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b1e0ccbaa8 
					 
					
						
						
							
							One of Win64 rules lacked bufferoverflowu.lib.  
						
						 
						
						
						
						
					 
					
						2005-11-06 22:41:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bd2abcae37 
					 
					
						
						
							
							Move declaration for optional bn_mul_mont to bn_lcl.h in order to hide  
						
						 
						
						... 
						
						
						
						it from mkdef.pl. 
						
						
					 
					
						2005-11-06 22:10:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f1fbd4c7d1 
					 
					
						
						
							
							Address MASM-specific problems introduced with  
						
						 
						
						... 
						
						
						
						http://cvs.openssl.org/chngview?cn=14547 . 
						
						
					 
					
						2005-11-06 22:01:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						eed22ac4ac 
					 
					
						
						
							
							Eliminate VC compiler warning.  
						
						 
						
						
						
						
					 
					
						2005-11-06 21:11:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						176a614899 
					 
					
						
						
							
							First draft for WCE PortSDK support. Once again! It's *draft* which requires  
						
						 
						
						... 
						
						
						
						more work, i.e. more modifications are due... 
						
						
					 
					
						2005-11-06 20:52:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f858d222f2 
					 
					
						
						
							
							Make DLL engines the default in 0.9.9 and VC++.  
						
						 
						
						
						
						
					 
					
						2005-11-06 20:51:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16094305bc 
					 
					
						
						
							
							Add symbols for ASN1 print functions, update ordinal file.  
						
						 
						
						
						
						
					 
					
						2005-11-06 20:33:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbf002bb88 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-11-06 17:58:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9135fddb0e 
					 
					
						
						
							
							Revive app_tminterval for Netware.  
						
						 
						
						
						
						
					 
					
						2005-11-06 17:11:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d88fcf73f1 
					 
					
						
						
							
							Revive app_tminterval for vxworks.  
						
						 
						
						
						
						
					 
					
						2005-11-06 16:55:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a950f28762 
					 
					
						
						
							
							Revive app_tminterval for VMS.  
						
						 
						
						
						
						
					 
					
						2005-11-06 16:16:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c629204688 
					 
					
						
						
							
							Keep removing references to tmdiff.  
						
						 
						
						
						
						
					 
					
						2005-11-06 12:53:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e22f63f231 
					 
					
						
						
							
							The typos never stop. Fix one in apps/apps.c.  
						
						 
						
						
						
						
					 
					
						2005-11-06 12:15:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d256b95768 
					 
					
						
						
							
							x86_64-xlate.pl commentary section update.  
						
						 
						
						
						
						
					 
					
						2005-11-06 11:59:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f530138876 
					 
					
						
						
							
							Fix newly introduced typos and warnings in ./apps.  
						
						 
						
						
						
						
					 
					
						2005-11-06 11:58:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a39d8f207 
					 
					
						
						
							
							Collect timing procedures in apps/apps.c. It's a bit cruel patch, as it  
						
						 
						
						... 
						
						
						
						temporarily[!] removes support for couple of esoteric platforms [well,
Netware, vxWorks and VMS]. 
						
						
					 
					
						2005-11-06 11:40:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6852d1d8c3 
					 
					
						
						
							
							Eliminate crypto/tmdiff.[ch].  
						
						 
						
						
						
						
					 
					
						2005-11-06 11:38:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a1ad253f17 
					 
					
						
						
							
							Eliminate remaining calls to stat in apps/apps.c and unify WIN32_rename for  
						
						 
						
						... 
						
						
						
						all Windows targets. 
						
						
					 
					
						2005-11-04 16:12:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ffa101872f 
					 
					
						
						
							
							Eliminate dependency on read/write/stat in apps under _WIN32.  
						
						 
						
						
						
						
					 
					
						2005-11-04 09:30:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4d24b4c466 
					 
					
						
						
							
							Engage OPENSSL_NO_POSIX_IO on Windows CE.  
						
						 
						
						
						
						
					 
					
						2005-11-03 16:50:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						474b8a9716 
					 
					
						
						
							
							Make cygwin work in directories mounted with 'text' attribute.  
						
						 
						
						
						
						
					 
					
						2005-11-03 16:43:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						53261831f1 
					 
					
						
						
							
							Get rid of arcane reference to _fmode in apps/apps.h. Binary open is  
						
						 
						
						... 
						
						
						
						handles properly by bss_file.c, which renders _fmode redundant. 
						
						
					 
					
						2005-11-03 16:42:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						49e3c9d8e6 
					 
					
						
						
							
							Mask libcrypto references to stat with OPENSSL_NO_POSIX_IO.  
						
						 
						
						
						
						
					 
					
						2005-11-03 16:22:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1715e4885a 
					 
					
						
						
							
							Reserve for OPENSSL_NO_POSIX_IO macro which is to eliminate references  
						
						 
						
						... 
						
						
						
						to open/read/write/close. First OPENSSL_NO_POSIX_IO target would be
Windows CE. 
						
						
					 
					
						2005-11-03 15:50:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						eff7cb41d1 
					 
					
						
						
							
							Disable BIO_s_fd on CE and disable fd:N as password passing option on  
						
						 
						
						... 
						
						
						
						all _WIN32 [see commentary for clarification]. 
						
						
					 
					
						2005-11-03 15:31:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a6f825f0f 
					 
					
						
						
							
							Make pshufw optional and update performance table in sha512-sse2.pl  
						
						 
						
						... 
						
						
						
						[as per http://cvs.openssl.org/chngview?cn=14551 ]. 
						
						
					 
					
						2005-11-03 15:23:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						29afd31dd1 
					 
					
						
						
							
							fix typo, pointed out by Patrick Guio  
						
						 
						
						
						
						
					 
					
						2005-11-02 22:19:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d86b0f1f5f 
					 
					
						
						
							
							compile sstrsep only if HAVE_FORK is defined; patch supplied by Johan Gill <johane@lysator.liu.se>  
						
						 
						
						
						
						
					 
					
						2005-11-02 22:13:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						998ac55e19 
					 
					
						
						
							
							Document it  
						
						 
						
						
						
						
					 
					
						2005-11-01 07:53:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d6f25d70f1 
					 
					
						
						
							
							Fix numerous bugs in the Win32 path splitter  
						
						 
						
						
						
						
					 
					
						2005-11-01 07:49:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b02da8eb50 
					 
					
						
						
							
							A slight change in documentation that makes it so much more comprehensible  
						
						 
						
						
						
						
					 
					
						2005-11-01 04:56:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f52a41054 
					 
					
						
						
							
							Include kerberos libraries (if used) when linking test apps: some need it.  
						
						 
						
						
						
						
					 
					
						2005-10-29 12:51:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						99c675b2f7 
					 
					
						
						
							
							Add -install_name in link_a.darwin rule.  
						
						 
						
						... 
						
						
						
						PR: 1218 
						
						
					 
					
						2005-10-28 08:10:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						72dce7685e 
					 
					
						
						
							
							Add fixes for CAN-2005-2969.  
						
						 
						
						... 
						
						
						
						(This were in 0.9.7-stable and 0.9.8-stable, but not in HEAD so far.) 
						
						
					 
					
						2005-10-26 19:40:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ee8836c442 
					 
					
						
						
							
							fix stupid typo  
						
						 
						
						
						
						
					 
					
						2005-10-26 19:30:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a1006c373d 
					 
					
						
						
							
							harmonize with 0.9.7-stable and 0.9.8-stable variants of CHANGES  
						
						 
						
						
						
						
					 
					
						2005-10-26 19:28:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						755c5b3330 
					 
					
						
						
							
							Fix install problems on MacOS X and HP-UX.  
						
						 
						
						... 
						
						
						
						PR: 1218,1185 
						
						
					 
					
						2005-10-25 21:58:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ce6aa1e496 
					 
					
						
						
							
							+20% SHA512 performance improvement on x86.  
						
						 
						
						
						
						
					 
					
						2005-10-25 17:08:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6c1fc273f3 
					 
					
						
						
							
							Eliminate false preprocessor dependencies introduced with VOS support.  
						
						 
						
						
						
						
					 
					
						2005-10-25 15:55:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aa8b03b415 
					 
					
						
						
							
							Fix typos in macos x targets.  
						
						 
						
						
						
						
					 
					
						2005-10-25 15:51:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						96ec4abd07 
					 
					
						
						
							
							Eliminate ~3.5KB of duplicate code in des-586.pl and reserve for folded  
						
						 
						
						... 
						
						
						
						loop option, which can give further 3KB code reduction. 
						
						
					 
					
						2005-10-25 15:47:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						70532b7d6b 
					 
					
						
						
							
							Move DES_SPtrans to where it really belongs, dec_enc to be specific.  
						
						 
						
						
						
						
					 
					
						2005-10-25 15:43:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a4d729f31d 
					 
					
						
						
							
							Clarify binary compatibility with HAL/Fujitsu SPARC64 family.  
						
						 
						
						
						
						
					 
					
						2005-10-25 15:39:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fcbc5a3fdd 
					 
					
						
						
							
							Integrate sparcv9a-mont.pl into UltraSPARC builds.  
						
						 
						
						
						
						
					 
					
						2005-10-22 20:21:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8c0ceb17a2 
					 
					
						
						
							
							bn_asm.c update.  
						
						 
						
						
						
						
					 
					
						2005-10-22 20:20:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c2012f9b82 
					 
					
						
						
							
							Eliminate gcc warning in bn_mont.c.  
						
						 
						
						
						
						
					 
					
						2005-10-22 20:17:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aa2be094ae 
					 
					
						
						
							
							Add support for 32-bit ABI to sparcv9a-mont.pl module.  
						
						 
						
						
						
						
					 
					
						2005-10-22 18:16:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4d524040bc 
					 
					
						
						
							
							Change bn_mul_mont declaration and BN_MONT_CTX. Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2005-10-22 17:57:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0fe120ba25 
					 
					
						
						
							
							Add rudimentary aix64-gcc target.  
						
						 
						
						... 
						
						
						
						Submitted by: Stefan Neis 
						
						
					 
					
						2005-10-19 18:46:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2e7aa150f7 
					 
					
						
						
							
							util/pl/OS2-EMX.pl sync.  
						
						 
						
						... 
						
						
						
						Submitted by: Stefan Neis, Brian Havard 
						
						
					 
					
						2005-10-19 18:37:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						04fac37311 
					 
					
						
						
							
							one time CAN->CVE update  
						
						 
						
						
						
						
					 
					
						2005-10-19 11:00:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bcb43bb358 
					 
					
						
						
							
							Yet another "teaser" Montgomery multiply module, for UltraSPARC. It's not  
						
						 
						
						... 
						
						
						
						integrated yet, but it's tested and benchmarked [see commentary section
for further details]. 
						
						
					 
					
						2005-10-19 07:12:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						89ec4332ec 
					 
					
						
						
							
							Add in CHANGES for 0.9.7i.  
						
						 
						
						
						
						
					 
					
						2005-10-15 04:26:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34736de4c0 
					 
					
						
						
							
							Flip saved argument block and tp [required for non-SSE2 path].  
						
						 
						
						
						
						
					 
					
						2005-10-14 16:05:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5f50d597f2 
					 
					
						
						
							
							Make sure x86-mont.pl returns zero even if compiled with no-sse2.  
						
						 
						
						
						
						
					 
					
						2005-10-14 15:24:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						df94f187b9 
					 
					
						
						
							
							Fix bug in SMALL_FOOTPRINT path and clarify comment.  
						
						 
						
						
						
						
					 
					
						2005-10-14 15:22:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b92c0df834 
					 
					
						
						
							
							Broaden compatibility amount Win32 headers even further [some don't have  
						
						 
						
						... 
						
						
						
						SIZE_T]. 
						
						
					 
					
						2005-10-13 19:06:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						d357be38b9 
					 
					
						
						
							
							Make sure head CHANGES is up to date, we refer to this in announce.txt  
						
						 
						
						
						
						
					 
					
						2005-10-11 11:10:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						912e296070 
					 
					
						
						
							
							Renumber to follow what happens with 0.9.8.  
						
						 
						
						
						
						
					 
					
						2005-10-11 10:14:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						35593b33f4 
					 
					
						
						
							
							Add timestamp to x86-mont.pl.  
						
						 
						
						
						
						
					 
					
						2005-10-09 10:26:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						54f3d200d3 
					 
					
						
						
							
							Throw in bn/asm/x86-mont.pl Montgomery multiplication "teaser".  
						
						 
						
						
						
						
					 
					
						2005-10-09 09:53:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f67e11fab 
					 
					
						
						
							
							Add PVK support to dsa utility.  
						
						 
						
						
						
						
					 
					
						2005-10-08 17:32:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1de1a190d 
					 
					
						
						
							
							Avoid warning on Win32.  
						
						 
						
						
						
						
					 
					
						2005-10-08 17:31:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						566dda07ba 
					 
					
						
						
							
							New option SSL_OP_NO_COMP to disable compression. New ctrls to set  
						
						 
						
						... 
						
						
						
						maximum send fragment size. Allocate I/O buffers accordingly. 
						
						
					 
					
						2005-10-08 00:18:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a2f4cbfe8 
					 
					
						
						
							
							x86_64-mont.pl readability improvement.  
						
						 
						
						
						
						
					 
					
						2005-10-07 15:18:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5ac7bde7c9 
					 
					
						
						
							
							Throw in Montgomery multiplication assembler for x86_64.  
						
						 
						
						
						
						
					 
					
						2005-10-07 14:18:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9b4eab501a 
					 
					
						
						
							
							Refine logic in bn_mont.c and eliminate redundant BN_CTX pulls.  
						
						 
						
						
						
						
					 
					
						2005-10-06 13:12:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ca04d7a208 
					 
					
						
						
							
							Leave the decision to call/implement bn_sqr_mont to assembler developer.  
						
						 
						
						
						
						
					 
					
						2005-10-06 09:12:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						40a3c12305 
					 
					
						
						
							
							Initialize bignum constants using BN_bin2bn() instead of BN_hex2bn(). This  
						
						 
						
						... 
						
						
						
						saves a bit of space and avoids a compiler warning about string length. 
						
						
					 
					
						2005-10-05 17:51:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3001a770ed 
					 
					
						
						
							
							Mention "no-dso doesn't remove -ldl" in PROBLEMS.  
						
						 
						
						... 
						
						
						
						PR: 1160 
						
						
					 
					
						2005-10-04 06:30:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2608383c5e 
					 
					
						
						
							
							Fix typo in INSTALL.WCE.  
						
						 
						
						
						
						
					 
					
						2005-10-04 06:26:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3d6312e807 
					 
					
						
						
							
							Zap DES_UNROLL when SMALL_FOOTPRINT is in effect.  
						
						 
						
						
						
						
					 
					
						2005-10-04 06:25:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						22cd982566 
					 
					
						
						
							
							Fix typo in exptest.c.  
						
						 
						
						
						
						
					 
					
						2005-10-04 06:23:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						682b112abc 
					 
					
						
						
							
							Reserve for SMALL_FOOTPRINT bn_asm.c. Currently OPENSSL_SMALL_FOOTPRINT  
						
						 
						
						... 
						
						
						
						is defined on Windows CE targets. 
						
						
					 
					
						2005-10-04 06:22:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e738280547 
					 
					
						
						
							
							Add reference implementation for bn_[mul|sqr]_mont, new candidates for  
						
						 
						
						... 
						
						
						
						assembler implementation. 
						
						
					 
					
						2005-10-04 06:19:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8265328def 
					 
					
						
						
							
							Oops :-)  
						
						 
						
						
						
						
					 
					
						2005-10-02 12:41:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						231b98a5e1 
					 
					
						
						
							
							Make OPENSSL_NO_COMP work under Win32.  
						
						 
						
						
						
						
					 
					
						2005-10-02 12:28:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						13e4670c29 
					 
					
						
						
							
							new option "openssl ciphers -V"  
						
						 
						
						
						
						
					 
					
						2005-10-01 04:08:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d08b6b44ba 
					 
					
						
						
							
							Fix compilation without OPENSSL_NO_COMP :-)  
						
						 
						
						
						
						
					 
					
						2005-10-01 00:40:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						09b6c2ef15 
					 
					
						
						
							
							Make OPENSSL_NO_COMP compile again.  
						
						 
						
						
						
						
					 
					
						2005-09-30 23:35:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cc29c1204b 
					 
					
						
						
							
							successfully updating the db shouldn't result in an error message  
						
						 
						
						
						
						
					 
					
						2005-09-30 16:47:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						94c00f3d4d 
					 
					
						
						
							
							Fix typo.  
						
						 
						
						
						
						
					 
					
						2005-09-29 20:16:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3c2b73672e 
					 
					
						
						
							
							Fix missing applink call.  
						
						 
						
						
						
						
					 
					
						2005-09-29 16:56:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						23acb0eeb2 
					 
					
						
						
							
							Change a comment so it corresponds to reality.  Put back a character that  
						
						 
						
						... 
						
						
						
						was previously replaced with a NUL for parsing purposes.  This seems to
fix a very weird parsing bug involving two variable references in the same
value. 
						
						
					 
					
						2005-09-28 18:02:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bfa4b8c5ab 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-09-26 11:18:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ce75ca04b1 
					 
					
						
						
							
							protect BN_BLINDING_invert with a write lock and BN_BLINDING_convert  
						
						 
						
						... 
						
						
						
						with a read lock
Submitted by: Leandro Santi <lesanti@fiuba7504.com.ar > 
						
						
					 
					
						2005-09-22 23:37:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9dba0554a5 
					 
					
						
						
							
							Fix SunOS 4 building issue.  
						
						 
						
						... 
						
						
						
						PR: 1196 
						
						
					 
					
						2005-09-22 20:37:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						59947880f4 
					 
					
						
						
							
							Broaden compatibility among Windows SDK versions. Elder versions don't have  
						
						 
						
						... 
						
						
						
						ULONG_PTR, so we replace it with equally wide SIZE_T. 
						
						
					 
					
						2005-09-22 20:28:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						61094cf3dc 
					 
					
						
						
							
							128 bit AES ciphersuites should be classified as HIGH.  
						
						 
						
						
						
						
					 
					
						2005-09-21 00:55:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6d00101e9d 
					 
					
						
						
							
							Latest MSVCR80 doesn't tolerate unsupported signal numbers, throwing  
						
						 
						
						... 
						
						
						
						fatal exceptions. 
						
						
					 
					
						2005-09-20 20:30:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a06050cd3 
					 
					
						
						
							
							"Overload" SunOS 4.x memcmp, which ruins ASN1_OBJECT table lookups.  
						
						 
						
						... 
						
						
						
						PR: 1196
Submitted by: Russel Ruby 
						
						
					 
					
						2005-09-20 20:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6f9afa68cd 
					 
					
						
						
							
							IA-32 BN tune-up. Performance imrpovement varies with platform and  
						
						 
						
						... 
						
						
						
						keylength, this time larger improvement for shorter keys, and reaches
15%. Both SSE2 and IALU code pathes are improved. 
						
						
					 
					
						2005-09-20 12:26:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c038b90619 
					 
					
						
						
							
							Fix typo: "powepc" vs "powerpc." G-r-r-r-r.  
						
						 
						
						... 
						
						
						
						PR: 1198 
						
						
					 
					
						2005-09-20 12:15:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9c4fe78260 
					 
					
						
						
							
							MD5 x86_64 assembler update.  
						
						 
						
						... 
						
						
						
						Submitted by: Marc Bevand and Charles Liu 
						
						
					 
					
						2005-09-20 07:56:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						60dd08573d 
					 
					
						
						
							
							Refine AIX support.  
						
						 
						
						... 
						
						
						
						PR: 1198 
						
						
					 
					
						2005-09-20 07:43:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f5204c61fb 
					 
					
						
						
							
							BC-32.pl updates.  
						
						 
						
						... 
						
						
						
						Submitted by: Old Wolf, Jon Bright 
						
						
					 
					
						2005-09-20 07:05:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9ddeefe39d 
					 
					
						
						
							
							Proper solution to nasm compilation problems in Borland context.  
						
						 
						
						
						
						
					 
					
						2005-09-20 06:13:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0293371a1b 
					 
					
						
						
							
							Mention BN_sqr failure on x86 platforms in ./RPOBLEMS.  
						
						 
						
						... 
						
						
						
						PR: 1176 [and others] 
						
						
					 
					
						2005-09-19 14:57:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dd31c6fcb0 
					 
					
						
						
							
							Another missing space in VC-32.pl [from 0.9.8].  
						
						 
						
						
						
						
					 
					
						2005-09-19 14:44:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6708df7bf0 
					 
					
						
						
							
							Missing space in VC-32.pl.  
						
						 
						
						
						
						
					 
					
						2005-09-19 14:42:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6d9c46b811 
					 
					
						
						
							
							Oops-type typo.  
						
						 
						
						... 
						
						
						
						PR: 1195 
						
						
					 
					
						2005-09-19 13:12:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						af2c2823a7 
					 
					
						
						
							
							bswapl usage should be masked by I386_ONLY.  
						
						 
						
						... 
						
						
						
						PR: 1195 
						
						
					 
					
						2005-09-19 13:06:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b17ecb642b 
					 
					
						
						
							
							cleanup doxygen comments  
						
						 
						
						
						
						
					 
					
						2005-09-19 08:32:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ba12070f7e 
					 
					
						
						
							
							add some doxygen comments  
						
						 
						
						
						
						
					 
					
						2005-09-19 08:10:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29b9763d9f 
					 
					
						
						
							
							Change openssl.cnf to use UTF8Strings by default and not always include issuer  
						
						 
						
						... 
						
						
						
						and serial versions of AKID. 
						
						
					 
					
						2005-09-16 11:58:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						270da80bfa 
					 
					
						
						
							
							Fix for Win32.  
						
						 
						
						
						
						
					 
					
						2005-09-16 11:45:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						701d35d12f 
					 
					
						
						
							
							fix typos  
						
						 
						
						... 
						
						
						
						PR: 1201 
						
						
					 
					
						2005-09-15 19:00:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2238e8e477 
					 
					
						
						
							
							correct+extend publication info  
						
						 
						
						
						
						
					 
					
						2005-09-12 01:39:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						4b08da5538 
					 
					
						
						
							
							bugfix: register engine as default engine in ENGINE_set_default_DSA  
						
						 
						
						... 
						
						
						
						Submitted by: Jonathon Green 
						
						
					 
					
						2005-09-09 07:50:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8a616a5a5f 
					 
					
						
						
							
							Remove warnings about signed vs. unsigned...  
						
						 
						
						
						
						
					 
					
						2005-09-05 07:04:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9455d430cb 
					 
					
						
						
							
							Synchronise VMS build with Unixly build.  
						
						 
						
						
						
						
					 
					
						2005-09-05 04:20:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						137023dd0c 
					 
					
						
						
							
							fix function name in error  
						
						 
						
						
						
						
					 
					
						2005-09-03 08:01:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2a45408c4a 
					 
					
						
						
							
							Update print macro properly this time...  
						
						 
						
						
						
						
					 
					
						2005-09-03 00:49:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e201014f8 
					 
					
						
						
							
							Update ASN1 print implement macro.  
						
						 
						
						
						
						
					 
					
						2005-09-03 00:48:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c072a0b46 
					 
					
						
						
							
							Update asn1t.h too for ASN1 print.  
						
						 
						
						
						
						
					 
					
						2005-09-03 00:44:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c11c64fbe0 
					 
					
						
						
							
							Update to ASN1 printing code.  
						
						 
						
						
						
						
					 
					
						2005-09-03 00:40:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f022c177db 
					 
					
						
						
							
							Two new verify flags functions.  
						
						 
						
						
						
						
					 
					
						2005-09-02 22:49:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						5f10073c95 
					 
					
						
						
							
							fix typo in sbgp names  
						
						 
						
						... 
						
						
						
						PR: 1194 
						
						
					 
					
						2005-09-02 21:23:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						33ac8b3139 
					 
					
						
						
							
							don't try to load cert/key when the "-nocert" option is set  
						
						 
						
						
						
						
					 
					
						2005-09-02 12:44:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						244847591f 
					 
					
						
						
							
							Extend callback function to support print customization.  
						
						 
						
						
						
						
					 
					
						2005-09-01 20:42:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5abe32d861 
					 
					
						
						
							
							Return 2 from X509_NAME printing routine to add newline.  
						
						 
						
						
						
						
					 
					
						2005-09-01 18:02:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9194296de8 
					 
					
						
						
							
							Update ASN1 printing code and add a -print option to 'pkcs7' utility for  
						
						 
						
						... 
						
						
						
						initial testing. 
						
						
					 
					
						2005-09-01 18:00:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6273a91cb7 
					 
					
						
						
							
							Synchronise with Unixly build.  
						
						 
						
						
						
						
					 
					
						2005-09-01 14:24:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ef7acfe92 
					 
					
						
						
							
							Initial support for ASN1 print code.  
						
						 
						
						... 
						
						
						
						WARNING WARNING WARNING, experimental code, handle with care, use at
your own risk, may contain nuts. 
						
						
					 
					
						2005-09-01 13:59:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0156a926f 
					 
					
						
						
							
							Integrated support for PVK files.  
						
						 
						
						
						
						
					 
					
						2005-08-31 16:37:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						96998822b5 
					 
					
						
						
							
							Last synchronisationn with Unixly build.  I hope...  
						
						 
						
						
						
						
					 
					
						2005-08-30 06:00:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8215e7a938 
					 
					
						
						
							
							fix warnings when building openssl with the following compiler options:  
						
						 
						
						... 
						
						
						
						-Wmissing-prototypes -Wcomment -Wformat -Wimplicit -Wmain -Wmultichar
        -Wswitch -Wshadow -Wtrigraphs -Werror -Wchar-subscripts
        -Wstrict-prototypes -Wreturn-type -Wpointer-arith  -W -Wunused
        -Wno-unused-parameter -Wuninitialized 
						
						
					 
					
						2005-08-28 22:49:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f7622f86d9 
					 
					
						
						
							
							More synchronisation with the Unixly build.  
						
						 
						
						
						
						
					 
					
						2005-08-28 11:28:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						337e368239 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2005-08-27 12:10:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						64b6840d8d 
					 
					
						
						
							
							Synchronise with Unix changes.  
						
						 
						
						
						
						
					 
					
						2005-08-27 04:31:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6e119bb02e 
					 
					
						
						
							
							Keep cipher lists sorted in the source instead of sorting them at  
						
						 
						
						... 
						
						
						
						runtime, thus removing the need for a lock. Add a test to ssltest
to verify that the cipher lists are sorted. 
						
						
					 
					
						2005-08-25 07:29:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2c2e46dbf5 
					 
					
						
						
							
							Generate primes, too.  
						
						 
						
						
						
						
					 
					
						2005-08-23 13:48:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						770bc596e1 
					 
					
						
						
							
							recent DH change does not avoid *all* possible small-subgroup attacks;  
						
						 
						
						... 
						
						
						
						let's be clear about that 
						
						
					 
					
						2005-08-23 06:54:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7534d131d6 
					 
					
						
						
							
							avoid potential spurious BN_free()  
						
						 
						
						... 
						
						
						
						Submitted by: David Heine <dlheine@suif.Stanford.EDU > 
						
						
					 
					
						2005-08-23 04:14:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7f3c9036ea 
					 
					
						
						
							
							initialize cipher/digest methods table in SSL_library_init() and hence remove the need for a lock  
						
						 
						
						
						
						
					 
					
						2005-08-21 23:06:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						725111f7cb 
					 
					
						
						
							
							add missing file  
						
						 
						
						
						
						
					 
					
						2005-08-21 23:02:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						bf3d6c0c9b 
					 
					
						
						
							
							Make D-H safer, include well-known primes.  
						
						 
						
						
						
						
					 
					
						2005-08-21 16:00:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b8e8ccdc79 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2005-08-21 15:59:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b80c20bdb 
					 
					
						
						
							
							Use correct date and filename.  
						
						 
						
						
						
						
					 
					
						2005-08-21 12:25:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eea374fd19 
					 
					
						
						
							
							Command line support for RSAPublicKey format.  
						
						 
						
						
						
						
					 
					
						2005-08-21 00:18:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e8879fa6e 
					 
					
						
						
							
							Delete old ASN1_METHOD files.  
						
						 
						
						
						
						
					 
					
						2005-08-20 19:48:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f5a07779dd 
					 
					
						
						
							
							Add file which includes new ASN1 NETSCAPE format for certificates.  
						
						 
						
						
						
						
					 
					
						2005-08-20 19:46:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c51f2d4238 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-08-20 19:34:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45e2738585 
					 
					
						
						
							
							Remove ASN1_METHOD code replace with new ASN1 alternative.  
						
						 
						
						
						
						
					 
					
						2005-08-20 18:12:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b173acfc96 
					 
					
						
						
							
							New version of ASN1 print code, still not compiled in though.  
						
						 
						
						
						
						
					 
					
						2005-08-20 00:08:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						4ebb342fcd 
					 
					
						
						
							
							Let the TLSv1_method() etc. functions return a const SSL_METHOD  
						
						 
						
						... 
						
						
						
						pointer and make the SSL_METHOD parameter in SSL_CTX_new,
SSL_CTX_set_ssl_version and SSL_set_ssl_method const. 
						
						
					 
					
						2005-08-14 21:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8e5ef8538a 
					 
					
						
						
							
							Eliminate reference to removed platform line.  
						
						 
						
						
						
						
					 
					
						2005-08-11 09:38:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ff82bf3b07 
					 
					
						
						
							
							Pedantic polish to WCE-specific #if clause in ectest.c  
						
						 
						
						
						
						
					 
					
						2005-08-11 08:42:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5147c3c914 
					 
					
						
						
							
							Fix typo in WCE section in VC-32.pl  
						
						 
						
						
						
						
					 
					
						2005-08-11 08:18:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fbbbffc5a8 
					 
					
						
						
							
							Mention wcecompat update INSTALL.WCE.  
						
						 
						
						
						
						
					 
					
						2005-08-10 08:39:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7cfe2a5e65 
					 
					
						
						
							
							Fix Intel assembler warnings.  
						
						 
						
						
						
						
					 
					
						2005-08-10 08:28:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						df2a346b30 
					 
					
						
						
							
							Suppress "deprecated" warnings introduced in VC8.  
						
						 
						
						
						
						
					 
					
						2005-08-09 22:44:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						270512ab12 
					 
					
						
						
							
							Add support for more recent WCE SDK.  
						
						 
						
						
						
						
					 
					
						2005-08-09 22:19:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						eba63ef58b 
					 
					
						
						
							
							a ssl object needs it's own instance of a ecdh key; remove obsolete comment  
						
						 
						
						
						
						
					 
					
						2005-08-08 20:02:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						01a9792f05 
					 
					
						
						
							
							remove unused internal foo_base_method functions  
						
						 
						
						
						
						
					 
					
						2005-08-08 19:04:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0491e05833 
					 
					
						
						
							
							Final(?) WinCE update.  
						
						 
						
						
						
						
					 
					
						2005-08-07 22:21:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9a1a5b8785 
					 
					
						
						
							
							avoid infinite recursion if dynamic engine isn't loaded  
						
						 
						
						... 
						
						
						
						Submitted by: Jonathon Green <jonathon_au@yahoo.com > 
						
						
					 
					
						2005-08-06 10:46:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3b656b246 
					 
					
						
						
							
							Initialize SSL_METHOD structures at compile time. This removes the need  
						
						 
						
						... 
						
						
						
						for locking code. The CRYPTO_LOCK_SSL_METHOD lock is now no longer used. 
						
						
					 
					
						2005-08-05 23:56:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						53b38d37a9 
					 
					
						
						
							
							fix potential memory leak + improved error checking  
						
						 
						
						... 
						
						
						
						PR: 1182 
						
						
					 
					
						2005-08-05 09:42:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f2e4fdf86 
					 
					
						
						
							
							Allow PKCS7_decrypt() to work if no cert supplied.  
						
						 
						
						
						
						
					 
					
						2005-08-04 22:15:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						11de71b04c 
					 
					
						
						
							
							3-4 times better RSA/DSA performance on WIN64A target. Well, on AMD64 CPU,  
						
						 
						
						... 
						
						
						
						EMT64T will hardly exhibit better performance... 
						
						
					 
					
						2005-08-04 17:35:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						19bd66fe74 
					 
					
						
						
							
							WCE update, mostly typos.  
						
						 
						
						
						
						
					 
					
						2005-08-03 19:56:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						45771abbd6 
					 
					
						
						
							
							PIC-ify SPARC assembler in alternative manner to eliminate dependency on  
						
						 
						
						... 
						
						
						
						OPENSSL_PIC macro. 
						
						
					 
					
						2005-08-03 10:42:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						573969cd53 
					 
					
						
						
							
							Abstain from GUI calls in rand_win.c in NT service context.  
						
						 
						
						
						
						
					 
					
						2005-08-02 22:09:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34be0bb1a5 
					 
					
						
						
							
							WCE-specific update for VC-32.pl.  
						
						 
						
						
						
						
					 
					
						2005-08-02 22:08:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2031eca588 
					 
					
						
						
							
							WCE-specific fix for cryptlib.c.  
						
						 
						
						
						
						
					 
					
						2005-08-02 22:07:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6321c3a034 
					 
					
						
						
							
							Keep disclaiming 16-bit support.  
						
						 
						
						
						
						
					 
					
						2005-08-02 22:04:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1fda6c4f8c 
					 
					
						
						
							
							Optimize for space on embedded WCE.  
						
						 
						
						
						
						
					 
					
						2005-08-02 14:09:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						11a4e58fc1 
					 
					
						
						
							
							Stick to -DWCE_PLATFORM_$wceplatf, as that's what is apparently set by  
						
						 
						
						... 
						
						
						
						Visual Studio IDE. 
						
						
					 
					
						2005-08-02 12:21:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8a35fb3bea 
					 
					
						
						
							
							Eliminate bogus #if WCEPLATFORM!=MS_HPC_PRO [which by the way unconditionally  
						
						 
						
						... 
						
						
						
						invalidated the whole clause] and replace it with #if _WIN32_WCE>=210. 
						
						
					 
					
						2005-08-02 11:58:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e85d67af9f 
					 
					
						
						
							
							Type in OSF1 platform name.  
						
						 
						
						
						
						
					 
					
						2005-08-02 10:56:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b37fb16dcb 
					 
					
						
						
							
							Implement complementary LoadLibraryA shim under WCE.  
						
						 
						
						
						
						
					 
					
						2005-08-02 10:55:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1e1c5047f2 
					 
					
						
						
							
							Eliminate dependency on 3rd party wcedefs.mak.  
						
						 
						
						
						
						
					 
					
						2005-07-30 19:43:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b2be099d16 
					 
					
						
						
							
							Fix #if _MSC_VER clause in aes_locl.h  
						
						 
						
						
						
						
					 
					
						2005-07-30 19:42:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						28d8362934 
					 
					
						
						
							
							add comment  
						
						 
						
						
						
						
					 
					
						2005-07-29 19:46:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						01039d0bff 
					 
					
						
						
							
							remove unused variable  
						
						 
						
						
						
						
					 
					
						2005-07-27 20:20:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c755c5fd8b 
					 
					
						
						
							
							improved error checking and some fixes  
						
						 
						
						... 
						
						
						
						PR: 1170
Submitted by: Yair Elharrar
Reviewed and edited by: Nils Larsch 
						
						
					 
					
						2005-07-26 21:10:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5c8e9139d1 
					 
					
						
						
							
							Handle case where it==NULL  
						
						 
						
						
						
						
					 
					
						2005-07-26 12:25:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						56defd9a98 
					 
					
						
						
							
							Update ASN1 printing code. Highly experimental, not working properly (neither  
						
						 
						
						... 
						
						
						
						did the old code) and not compiled in yet... 
						
						
					 
					
						2005-07-26 11:46:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8eb7217580 
					 
					
						
						
							
							Add declaration for IDP ASN1 functions.  
						
						 
						
						
						
						
					 
					
						2005-07-26 11:43:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b2a9d36a7f 
					 
					
						
						
							
							bytes_to_long_long isn't used anywhere any more, so let's remove it  
						
						 
						
						... 
						
						
						
						entirely. 
						
						
					 
					
						2005-07-26 05:10:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						04f15edb91 
					 
					
						
						
							
							I'm reversing this change, as it seems the error is somewhere else.  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:53:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						4e98a44593 
					 
					
						
						
							
							Silence two more generated files.  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:52:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						1385ddbb14 
					 
					
						
						
							
							add a .cvsignore  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:50:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7f0c65703a 
					 
					
						
						
							
							"make update"  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:48:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						3a6dec8a05 
					 
					
						
						
							
							Change my debug build for amd64.  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:47:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						209b12814f 
					 
					
						
						
							
							Fix compilation when HAVE_LONG_LONG isn't defined.  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:43:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f920c5b590 
					 
					
						
						
							
							Fix signed/unsigned warnings.  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:25:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						05fc7018f8 
					 
					
						
						
							
							Fix PEDANTIC compilation, using the same trick as elsewhere.  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:05:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a384002724 
					 
					
						
						
							
							Fix 64-bit compilation when PQ_64BIT_IS_INTEGER isn't defined.  
						
						 
						
						
						
						
					 
					
						2005-07-26 04:01:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0260405c68 
					 
					
						
						
							
							fix BN_mod_word and give a more reasonable return value if an error occurred  
						
						 
						
						
						
						
					 
					
						2005-07-25 22:57:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0537f9689c 
					 
					
						
						
							
							Add support for setting IDP too.  
						
						 
						
						
						
						
					 
					
						2005-07-25 22:35:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c010a1517 
					 
					
						
						
							
							Don't use @syntax for extended CRLDP format.  
						
						 
						
						
						
						
					 
					
						2005-07-25 18:55:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0745d0892d 
					 
					
						
						
							
							Allow setting of all fields in CRLDP. Few cosmetic changes to output.  
						
						 
						
						
						
						
					 
					
						2005-07-25 18:42:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e64f8c44c 
					 
					
						
						
							
							Typo which prevents mult valued RDNs being created.  
						
						 
						
						
						
						
					 
					
						2005-07-25 18:39:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4a5b8a5bee 
					 
					
						
						
							
							Commentary section update in sha512-x86_64.pl.  
						
						 
						
						
						
						
					 
					
						2005-07-25 13:29:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b3836ed3cb 
					 
					
						
						
							
							Unify VC-32.pl and VC-CE.pl scripts and update INSTALL.W32.  
						
						 
						
						
						
						
					 
					
						2005-07-24 21:48:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						47738cbad7 
					 
					
						
						
							
							Pull up mkdef.pl from 0.9.8.  
						
						 
						
						
						
						
					 
					
						2005-07-24 21:45:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a882b6394 
					 
					
						
						
							
							Eliminate gcc warning in dso_win32.c.  
						
						 
						
						
						
						
					 
					
						2005-07-24 21:45:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						612a91110f 
					 
					
						
						
							
							Engage SHA-256/-512 x86_64 assembler module.  
						
						 
						
						
						
						
					 
					
						2005-07-24 12:30:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2337eb5823 
					 
					
						
						
							
							SHA-256/-512 x86_64 assembler module.  
						
						 
						
						
						
						
					 
					
						2005-07-24 12:28:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9aa9d70ddb 
					 
					
						
						
							
							Print out previously unsupported fields in CRLDP by i2r instead of i2v.  
						
						 
						
						... 
						
						
						
						Cosmetic changes to IDP printout. 
						
						
					 
					
						2005-07-24 00:23:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						231493c93c 
					 
					
						
						
							
							Initial print only support for IDP CRL extension.  
						
						 
						
						
						
						
					 
					
						2005-07-23 23:33:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						20a90e3a76 
					 
					
						
						
							
							Fix some signed/unsigned warnings.  
						
						 
						
						
						
						
					 
					
						2005-07-22 03:36:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						17a2994dbd 
					 
					
						
						
							
							set correct bn->top value  
						
						 
						
						
						
						
					 
					
						2005-07-21 22:40:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b554eef43b 
					 
					
						
						
							
							the final byte of a pkcs7 padded plaintext can never be 0  
						
						 
						
						... 
						
						
						
						Submitted by: K S Sreeram <sreeram@tachyontech.net > 
						
						
					 
					
						2005-07-20 22:03:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0066590f98 
					 
					
						
						
							
							Pedantic polish to aes-ia64 and sha512-ia64.  
						
						 
						
						
						
						
					 
					
						2005-07-20 15:15:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						165a28abae 
					 
					
						
						
							
							Pedantic polish to md5-ia64.S.  
						
						 
						
						
						
						
					 
					
						2005-07-20 12:24:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63999e5299 
					 
					
						
						
							
							Syncronize BSD-ia64 with other IA64-based platforms.  
						
						 
						
						
						
						
					 
					
						2005-07-20 12:10:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2802ec65c2 
					 
					
						
						
							
							Pedantic polish to rc4-ia64.pl.  
						
						 
						
						
						
						
					 
					
						2005-07-20 11:47:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b3f56e8b38 
					 
					
						
						
							
							Typo in version number.  
						
						 
						
						
						
						
					 
					
						2005-07-20 11:11:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5826e4f481 
					 
					
						
						
							
							Perl stylistic/cosmetic update for aes-x86_64.pl.  
						
						 
						
						
						
						
					 
					
						2005-07-20 11:09:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						66ee67be03 
					 
					
						
						
							
							Fix bug [SHA1 IA-64 being disabled] introduced with Stratus VOS update.  
						
						 
						
						... 
						
						
						
						PR: 1130 
						
						
					 
					
						2005-07-19 23:04:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a7ad2afa5e 
					 
					
						
						
							
							Engage MD5 assembler module.  
						
						 
						
						
						
						
					 
					
						2005-07-19 22:37:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0f04379d9c 
					 
					
						
						
							
							This update gets endianness-neutrality right and adds second required  
						
						 
						
						... 
						
						
						
						entry point, md5_block_asm_data_order. 
						
						
					 
					
						2005-07-19 22:33:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7e4d335943 
					 
					
						
						
							
							MD5 IA-64 assembler implementation. Original copy for reference purposes.  
						
						 
						
						... 
						
						
						
						Submitted by: David Mosberger
Obtained from: http://www.hpl.hp.com/research/linux/crypto/  
						
						
					 
					
						2005-07-19 22:27:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						26c07054a1 
					 
					
						
						
							
							Retire original rc4-ia64.S.  
						
						 
						
						
						
						
					 
					
						2005-07-18 18:59:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						843d9d0b39 
					 
					
						
						
							
							Switch to new RC4 IA-64 module.  
						
						 
						
						
						
						
					 
					
						2005-07-18 18:56:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4ac210c16a 
					 
					
						
						
							
							This update implements following improvements.  
						
						 
						
						... 
						
						
						
						1. Original submission required minor modification to RC4_set_key, which
   we don't want to tolerate and therefore we fix assembler instead.
2. Eliminate remaining byte-order dependence [look for RC4_BIG_ENDIAN].
3. Eliminate logical error [when key->x is referred prior key is verified].
4. HP-UX assembler puked on MODSCHED_RC4 macro with "syntax error,"
   macro has to be splitted in two.
5. Deploy parallel compare in function prologue.
6. Eliminate redundant instuctions and nops.
7. Eliminate assembler warnings. 
						
						
					 
					
						2005-07-18 17:11:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02703c74a4 
					 
					
						
						
							
							Unrolled RC4 IA-64 loop gives 40% improvement over current assembler  
						
						 
						
						... 
						
						
						
						implementation [as predicted].
Submitted by: David Mosberger
Obtained from: http://www.hpl.hp.com/research/linux/crypto/  
						
						
					 
					
						2005-07-18 16:55:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ef428d5681 
					 
					
						
						
							
							Fix unwind directives in IA-64 assembler modules. This helps symbolic  
						
						 
						
						... 
						
						
						
						debugging and doesn't affect functionality.
Submitted by: David Mosberger
Obtained from: http://www.hpl.hp.com/research/linux/crypto/  
						
						
					 
					
						2005-07-18 09:54:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						afbe674edb 
					 
					
						
						
							
							~15% better AES x86_64 assembler.  
						
						 
						
						
						
						
					 
					
						2005-07-18 09:15:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f42e6d24f2 
					 
					
						
						
							
							fix typo  
						
						 
						
						
						
						
					 
					
						2005-07-17 21:04:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						449bd384ed 
					 
					
						
						
							
							bugfix: 0 - w (w != 0) is actually negative  
						
						 
						
						
						
						
					 
					
						2005-07-17 16:09:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3eeaab4bed 
					 
					
						
						
							
							make  
						
						 
						
						... 
						
						
						
						./configure no-deprecated [no-dsa] [no-dh] [no-ec] [no-rsa]
    	make depend all test
work again
PR: 1159 
						
						
					 
					
						2005-07-16 12:37:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						57eb1d3250 
					 
					
						
						
							
							add missing entries for "-multivalue-rdn" and "-utf8" in ca.pod and req.pod  
						
						 
						
						... 
						
						
						
						PR: 1158
Submitted by: Michael Bell <michael.bell@cms.hu-berlin.de > 
						
						
					 
					
						2005-07-15 09:49:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b4f5e5c959 
					 
					
						
						
							
							Commentary section update.  
						
						 
						
						
						
						
					 
					
						2005-07-14 13:16:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0d2848b3ba 
					 
					
						
						
							
							the second argument of d2i_X509, d2i_X509_CRL and d2i_X509_REQ is const  
						
						 
						
						... 
						
						
						
						PR: 1156
Submitted by: Michael Bell <michael.bell@cms.hu-berlin.de > 
						
						
					 
					
						2005-07-13 22:01:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e84b663a93 
					 
					
						
						
							
							complementary x86_64-xlate.pl update.  
						
						 
						
						
						
						
					 
					
						2005-07-12 22:11:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d85185217b 
					 
					
						
						
							
							AES x86_64 assembler implementation.  
						
						 
						
						
						
						
					 
					
						2005-07-12 15:44:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8f3bdc72d0 
					 
					
						
						
							
							Latest Intel compiler means every word in "if copying [with memcpy] takes  
						
						 
						
						... 
						
						
						
						place between objects that overlap, the behavior is undefined." It's hard
to comprehend, but it reportedly manages to be case. 
						
						
					 
					
						2005-07-08 16:46:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7d368fcbd8 
					 
					
						
						
							
							On case insensitive systems, 'install' gets mixed up with the existing file  
						
						 
						
						... 
						
						
						
						'INSTALL', so we need to put some force into installing 
						
						
					 
					
						2005-07-08 10:13:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2bd2cd9b78 
					 
					
						
						
							
							Changes from the 0.9.8 branch.  
						
						 
						
						
						
						
					 
					
						2005-07-05 19:16:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c83101248a 
					 
					
						
						
							
							Changes from the 0.9.8 branch.  
						
						 
						
						
						
						
					 
					
						2005-07-05 18:36:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8d3509b937 
					 
					
						
						
							
							CHANGES and TABLE sync with 0.9.8.  
						
						 
						
						
						
						
					 
					
						2005-07-05 11:48:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1875e6db29 
					 
					
						
						
							
							Pull up Win64 support from 0.9.8.  
						
						 
						
						
						
						
					 
					
						2005-07-05 11:44:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0962fbbf98 
					 
					
						
						
							
							Add libcrypto.pc and libssl.pc, and install them along with openssl.pc.  
						
						 
						
						... 
						
						
						
						PR: 1143 
						
						
					 
					
						2005-07-05 05:14:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cbdac46d58 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-07-04 23:12:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d2e0c81720 
					 
					
						
						
							
							The private key should never have ended up in newreq.pem.  
						
						 
						
						... 
						
						
						
						Now, it ends up in newkey.pem instead. 
						
						
					 
					
						2005-07-04 21:44:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						109080ae48 
					 
					
						
						
							
							Fix bugs in bug-fix to x509/by_dir.c.  
						
						 
						
						... 
						
						
						
						PR: 1131 
						
						
					 
					
						2005-07-03 13:10:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31efffbdba 
					 
					
						
						
							
							Trap condition should be 64-bit when it's due.  
						
						 
						
						
						
						
					 
					
						2005-07-03 09:17:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aaa5dc614f 
					 
					
						
						
							
							More elegant solution to "sparse decimal printout on PPC" problem.  
						
						 
						
						
						
						
					 
					
						2005-07-02 08:58:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8be97c01d1 
					 
					
						
						
							
							Decimal printout of a BN is wrong on PPC, it's sparse with very few  
						
						 
						
						... 
						
						
						
						significant digits. As soon it verifies elsewhere it goes to 0.9.8 and
0.9.7. 
						
						
					 
					
						2005-07-01 17:49:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9e1a112336 
					 
					
						
						
							
							initialize newly allocated data  
						
						 
						
						... 
						
						
						
						PR: 1145 
						
						
					 
					
						2005-07-01 16:08:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4e28f13209 
					 
					
						
						
							
							Pedantic polish to aes-586.pl:-)  
						
						 
						
						
						
						
					 
					
						2005-07-01 10:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						53a20bfd94 
					 
					
						
						
							
							Typos in commentary section.  
						
						 
						
						
						
						
					 
					
						2005-06-30 22:09:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a28062338c 
					 
					
						
						
							
							AES_cbc_encrypt to allow end-user to retain small blocks performance by  
						
						 
						
						... 
						
						
						
						aligning the key schedule in a specific manner. 
						
						
					 
					
						2005-06-30 22:06:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1c2f1fe505 
					 
					
						
						
							
							Check PKCS7 structures in PKCS#12 files are of type data.  
						
						 
						
						
						
						
					 
					
						2005-06-30 11:34:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						14365bd820 
					 
					
						
						
							
							Actually, the 64bit format specifier differs between SIXTY_FOUR_BIT and  
						
						 
						
						... 
						
						
						
						SIXTY_FOUR_BIT_LONG 
						
						
					 
					
						2005-06-29 18:48:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a51a97262d 
					 
					
						
						
							
							Brought forward from 0.9.8 - 64 bit warning fixes and fussy compiler fixes.  
						
						 
						
						
						
						
					 
					
						2005-06-29 11:02:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						45d8574b93 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2005-06-29 10:25:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						417f8973ff 
					 
					
						
						
							
							asn1parse doesn't support any TXT format, so let's stop pretending  
						
						 
						
						... 
						
						
						
						it does. 
						
						
					 
					
						2005-06-28 15:44:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b3b72cd92c 
					 
					
						
						
							
							remove OPENSSL_NO_ASM dependency  
						
						 
						
						
						
						
					 
					
						2005-06-28 15:05:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bb00084863 
					 
					
						
						
							
							Replace _int64 with __int64, which is more widely accepted among Win32  
						
						 
						
						... 
						
						
						
						compiler vendors. 
						
						
					 
					
						2005-06-28 11:50:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						db22e5faa6 
					 
					
						
						
							
							A report suggests that there're nasm version, which defaults to 16-bit  
						
						 
						
						... 
						
						
						
						segmenting... 
						
						
					 
					
						2005-06-28 11:28:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						55d03c3179 
					 
					
						
						
							
							Mention hpux64-ia64-cc blowfish failure in PROBLEMS.  
						
						 
						
						
						
						
					 
					
						2005-06-28 09:57:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e0a494f13 
					 
					
						
						
							
							There are a few showstoppers.  Unfortunately, I only remember one.  Please fill this in.  
						
						 
						
						
						
						
					 
					
						2005-06-28 05:55:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						83e68987b3 
					 
					
						
						
							
							Eliminate dependency on UNICODE macro.  
						
						 
						
						
						
						
					 
					
						2005-06-27 21:27:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						53bb3bee34 
					 
					
						
						
							
							Fix typos in apps/apps.c  
						
						 
						
						
						
						
					 
					
						2005-06-27 15:56:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c9edf6fe98 
					 
					
						
						
							
							Sync libeay.num  
						
						 
						
						
						
						
					 
					
						2005-06-27 00:45:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						14cc0aaf7b 
					 
					
						
						
							
							Unify some SCO targets.  
						
						 
						
						
						
						
					 
					
						2005-06-26 18:06:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2f3c39bc62 
					 
					
						
						
							
							Minor (final?) Makefiles polish.  
						
						 
						
						
						
						
					 
					
						2005-06-26 17:47:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c5de8b2a27 
					 
					
						
						
							
							Minimum requirement for Solaris x86 was always Pentium. Reflect this in  
						
						 
						
						... 
						
						
						
						Configure line. TABLE update accomodates other recent ./Configure changes... 
						
						
					 
					
						2005-06-26 17:17:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a4022932ee 
					 
					
						
						
							
							Omit padding in RC4_KEY on IA-64. The idea behind padding was to reserve  
						
						 
						
						... 
						
						
						
						room for aligning of the key schedule itself [specific alignment is
required for future performance improvements], but OpenSSH "abuses"
our API by making copies and restoring RC4_KEY, thus ruining the
alignment and making it impossible to recover the key schedule.
PR: 1114 
						
						
					 
					
						2005-06-26 16:09:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0e3b6b70df 
					 
					
						
						
							
							Updated status from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2005-06-24 22:27:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c49a0aa08d 
					 
					
						
						
							
							Replace emms with finit in x86cpuid.  
						
						 
						
						
						
						
					 
					
						2005-06-24 16:32:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5503b6a352 
					 
					
						
						
							
							Add Argen root CAs.  
						
						 
						
						
						
						
					 
					
						2005-06-24 11:07:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						60021d9165 
					 
					
						
						
							
							Someone did some cutting and pasting and didn't quite finish the job :-).  
						
						 
						
						... 
						
						
						
						Notified by Steffen Pankratz <kratz00@gmx.de > 
						
						
					 
					
						2005-06-24 05:13:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						97b708910a 
					 
					
						
						
							
							Wrap the inclusion of openssl/engine.h with a protective check for  
						
						 
						
						... 
						
						
						
						the absence of OPENSSL_NO_ENGINE. 
						
						
					 
					
						2005-06-23 22:08:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2f6ebed1dc 
					 
					
						
						
							
							Wrap the inclusion of openssl/engine.h with a protective check for  
						
						 
						
						... 
						
						
						
						the absence of OPENSSL_NO_ENGINE.
PR: 1123 
						
						
					 
					
						2005-06-23 21:57:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						156f657209 
					 
					
						
						
							
							Do not defined des_crypt(), since it clashes with Solaris crypt.h.  
						
						 
						
						... 
						
						
						
						PR: 1125 
						
						
					 
					
						2005-06-23 21:53:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						816f74d1c7 
					 
					
						
						
							
							Initialise dir to avoid a compiler warning.  
						
						 
						
						
						
						
					 
					
						2005-06-23 21:49:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec14c80c7c 
					 
					
						
						
							
							The NAME section of a man page is required to have a dash followed by a  
						
						 
						
						... 
						
						
						
						short description, at least according to pod2man.
PR: 1127 
						
						
					 
					
						2005-06-23 21:45:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						543b4ecc13 
					 
					
						
						
							
							DCC doesn't like argument names in returned function pointers.  
						
						 
						
						... 
						
						
						
						PR: 1122 
						
						
					 
					
						2005-06-23 21:35:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1110cea007 
					 
					
						
						
							
							Update for Stratus VOS.  
						
						 
						
						... 
						
						
						
						PR: 1130 
						
						
					 
					
						2005-06-23 21:27:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0ed64ce310 
					 
					
						
						
							
							Configure update for Stratus VOS.  
						
						 
						
						... 
						
						
						
						PR: 1129 
						
						
					 
					
						2005-06-23 21:21:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0e441bc2be 
					 
					
						
						
							
							Change dir_ctrl to check for the environment variable before using the default  
						
						 
						
						... 
						
						
						
						directory instead of the other way around.
PR: 1131 
						
						
					 
					
						2005-06-23 21:14:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d996a9af2b 
					 
					
						
						
							
							Strip the engine shared libraries as well.  
						
						 
						
						... 
						
						
						
						Submitted by Corinna Vinschen <vinschen@redhat.com > 
						
						
					 
					
						2005-06-23 20:55:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ab6cf1b8a2 
					 
					
						
						
							
							Darwin specific update for Configure and Makefile.shared.  
						
						 
						
						
						
						
					 
					
						2005-06-23 20:44:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c25f2f1cbf 
					 
					
						
						
							
							Missed -c in IRIX rules.  
						
						 
						
						
						
						
					 
					
						2005-06-23 20:37:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62526671e9 
					 
					
						
						
							
							Typo in bn-mips3 rule.  
						
						 
						
						
						
						
					 
					
						2005-06-23 16:24:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						88ebf53577 
					 
					
						
						
							
							Rename mips3.o to bn-mips3.o [it's better in long run] and adjust the  
						
						 
						
						... 
						
						
						
						rule to accomodate gcc4, which no longer support SGI as. 
						
						
					 
					
						2005-06-23 16:23:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a41b0aade2 
					 
					
						
						
							
							HP-UX specific updates to Makefile.org and Makefile.shared.  
						
						 
						
						
						
						
					 
					
						2005-06-23 15:36:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02c31fa461 
					 
					
						
						
							
							Jumbo Makfiles update.  
						
						 
						
						... 
						
						
						
						- eliminate ambiguities between GNU-ish and SysV-ish make flavors;
- switch [back] to -e;
- fold/unify rules;
This is follow-up to the patch introducing common BUILDENV. Idea is
to collect as much parameters in $(TOP) as possible and "strip" lower
Makefiles for most variables [and thus makes them more readable]. 
						
						
					 
					
						2005-06-23 00:03:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5df70a9e21 
					 
					
						
						
							
							no-asm didn't prevent make from compiling assembler modules.  
						
						 
						
						
						
						
					 
					
						2005-06-22 23:44:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cbe52c3166 
					 
					
						
						
							
							TABLE was out-of-sync.  
						
						 
						
						
						
						
					 
					
						2005-06-22 23:43:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7858cc03da 
					 
					
						
						
							
							Solaris-specific Makefile.shared update from 098.  
						
						 
						
						
						
						
					 
					
						2005-06-22 23:42:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bbada33271 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-06-22 18:54:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f5d51a9362 
					 
					
						
						
							
							Fix extension ordering.  
						
						 
						
						
						
						
					 
					
						2005-06-22 13:26:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0fc6b2c9e2 
					 
					
						
						
							
							Do no try to pretend we're at the end of anything unless we're at the end  
						
						 
						
						... 
						
						
						
						of a 4-character block. 
						
						
					 
					
						2005-06-20 22:11:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7a5ad5d5a1 
					 
					
						
						
							
							Check for 'usage' and 'Usage'.  
						
						 
						
						... 
						
						
						
						Submitted by Tim Rice <tim@multitalents.net >.  His comment is:
I noticed "make report" didn't show the cc version on most of
my System V platforms. This patch corrects this. 
						
						
					 
					
						2005-06-20 20:48:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						44eff497e8 
					 
					
						
						
							
							Fix typo in ssl/d1_pkt.c.  
						
						 
						
						
						
						
					 
					
						2005-06-20 19:36:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8b452002e8 
					 
					
						
						
							
							Refine ELF detection on BSD platforms.  
						
						 
						
						
						
						
					 
					
						2005-06-20 17:39:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e442c36252 
					 
					
						
						
							
							Solaris x86_64 /usr/ccs/bin/as support.  
						
						 
						
						
						
						
					 
					
						2005-06-20 14:56:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						50ec3951dc 
					 
					
						
						
							
							Handle wrap-arounds and revive missing assignment.  
						
						 
						
						
						
						
					 
					
						2005-06-20 12:40:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						11cd239707 
					 
					
						
						
							
							Add crypto/bn/bn_prime.h to the collection of generated files.  In the  
						
						 
						
						... 
						
						
						
						update target, place the dependency on depend last, so all necessary files
are generated *before* the dependencies are figured out.
PR: 1121 
						
						
					 
					
						2005-06-20 04:29:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6098f2dda 
					 
					
						
						
							
							With DJGPP, it seems like the return code from grep, even when in the  
						
						 
						
						... 
						
						
						
						middle of a pipe, is noted.  Counter that by forcing a true return code
when the return code has no importance.
PR: 1085 
						
						
					 
					
						2005-06-19 20:31:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						857c6092b6 
					 
					
						
						
							
							Undefine DECRANDOM before redefining it.  
						
						 
						
						... 
						
						
						
						PR: 1110 
						
						
					 
					
						2005-06-19 20:20:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						eef468e330 
					 
					
						
						
							
							Add better documentation on how id_function() should be defined and what  
						
						 
						
						... 
						
						
						
						issues there are.
PR: 1096 
						
						
					 
					
						2005-06-18 05:52:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4bd46774bb 
					 
					
						
						
							
							Move the definition of DEVRANDOM for DJGPP from Configure to e_os.h.  
						
						 
						
						... 
						
						
						
						That should solve the issues with propagating it through the Makefiles.
PR: 1110 
						
						
					 
					
						2005-06-18 04:42:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						283c3e2437 
					 
					
						
						
							
							Only define ZLIB_SHARED if it hasn't already been defined (on the command  
						
						 
						
						... 
						
						
						
						line, for example).
PR: 1112 
						
						
					 
					
						2005-06-18 04:32:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						306aae6cee 
					 
					
						
						
							
							Have pod2man.pl accept '=for comment ...' before the '=head1 NAME' line.  
						
						 
						
						... 
						
						
						
						PR: 1113 
						
						
					 
					
						2005-06-18 04:27:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						edb0600583 
					 
					
						
						
							
							clear dso pointer in case of an error  
						
						 
						
						... 
						
						
						
						PR: 816 
						
						
					 
					
						2005-06-17 21:26:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ac86d923fc 
					 
					
						
						
							
							update for the cswift engine:  
						
						 
						
						... 
						
						
						
						- fix the problem described in bug report 825
- fix a segfault when the engine fails to initialize
- let the engine switch to software when keysize > 2048
PR: 825, 826
Submitted by: Frédéric Giudicelli 
						
						
					 
					
						2005-06-17 20:27:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fbd63d0784 
					 
					
						
						
							
							Do not undefine _XOPEN_SOURCE.  This is currently experimental, and  
						
						 
						
						... 
						
						
						
						will be firmed up as soon as it's been verified not to break anything. 
						
						
					 
					
						2005-06-16 22:20:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						78ebeee2c4 
					 
					
						
						
							
							0.9.8-beta5 works on Gentoo/arml but not /armb, and works on Linux AMD64  
						
						 
						
						
						
						
					 
					
						2005-06-14 05:42:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						55805fd2d0 
					 
					
						
						
							
							Data about which Cygwin versions 0.9.8-beta5 work on  
						
						 
						
						
						
						
					 
					
						2005-06-13 17:10:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7ebd220a8f 
					 
					
						
						
							
							0.9.8-beta5 works on SuSE 9.3  
						
						 
						
						
						
						
					 
					
						2005-06-13 17:03:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e8a1f6d190 
					 
					
						
						
							
							0.9.8-beta5 works on Cygwin  
						
						 
						
						
						
						
					 
					
						2005-06-13 17:00:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						034bae10fc 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2005-06-13 08:38:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a7c924c041 
					 
					
						
						
							
							0.9.8-beta5 works on VMS/Alpha  
						
						 
						
						
						
						
					 
					
						2005-06-13 04:17:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27b762af60 
					 
					
						
						
							
							Status update  
						
						 
						
						
						
						
					 
					
						2005-06-13 03:36:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b764ab9537 
					 
					
						
						
							
							Netware patch submitted by Verdon Walker" <VWalker@novell.com> in PR  
						
						 
						
						... 
						
						
						
						1107.  He says:
This is a followup to the NetWare patch that was applied to beta3.  It
does the following:
- Fixes a problem in the CLib build with undefined symbols.
- Adds the ability to use BSD sockets as the default for the OpenSSL
  socket BIO.  NetWare supports 2 flavors of sockets and our Apache
  developers need BSD sockets as a configurable option when building
  OpenSSL.  This adds that for them.
- Updates to the INSTALL.NW file to explain new options.
I have tried very hard to make sure all the changes are in NetWare
specific files or guarded carefully to make sure they only impact
NetWare builds.  I have tested the Windows build to make sure it does
not break that since we have made changes to mk1mf.pl.
We are still working the gcc cross compile for NetWare issue and hope
to have a patch for that before beta 6 is released. 
						
						
					 
					
						2005-06-13 03:23:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a761b89d2f 
					 
					
						
						
							
							Show what the offending target was.  
						
						 
						
						... 
						
						
						
						PR: 1108 
						
						
					 
					
						2005-06-13 02:39:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						a136862afe 
					 
					
						
						
							
							replace the deprecated "-m486" gcc option with "-march=i486"  
						
						 
						
						... 
						
						
						
						PR: 1049 
						
						
					 
					
						2005-06-12 10:34:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f0747cd950 
					 
					
						
						
							
							- let SSL_CTX_set_cipher_list and SSL_set_cipher_list return an  
						
						 
						
						... 
						
						
						
						error if the cipher list is empty
- fix last commit in ssl_create_cipher_list
- clean up ssl_create_cipher_list 
						
						
					 
					
						2005-06-10 19:55:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						21ac2b964b 
					 
					
						
						
							
							Eliminate gcc -pedantic warnings.  
						
						 
						
						
						
						
					 
					
						2005-06-09 21:41:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						79e1dd65ab 
					 
					
						
						
							
							Allow for dso load by explicit path on HP-UX.  
						
						 
						
						
						
						
					 
					
						2005-06-09 20:52:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						13e393607b 
					 
					
						
						
							
							When the return type of the function is int, it's better to return an  
						
						 
						
						... 
						
						
						
						in than NULL, especially when an error is signalled with a negative
value. 
						
						
					 
					
						2005-06-09 17:28:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						052ec89927 
					 
					
						
						
							
							use "=" instead of "|=", fix typo  
						
						 
						
						
						
						
					 
					
						2005-06-08 22:22:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2073d95fb4 
					 
					
						
						
							
							Avoid endless loops.  Really, we were using the same variable for two  
						
						 
						
						... 
						
						
						
						different conditions... 
						
						
					 
					
						2005-06-08 21:59:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cbed917fee 
					 
					
						
						
							
							ssl_create_cipher_list should return an error if no cipher could be  
						
						 
						
						... 
						
						
						
						collected (see SSL_CTX_set_cipher_list manpage). Fix handling of
"cipher1+cipher2" expressions in ssl_cipher_process_rulestr.
PR: 836 + 1005 
						
						
					 
					
						2005-06-08 21:19:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dffdb56b7f 
					 
					
						
						
							
							"Liberate" dtls from BN dependency. Fix bug in replay/update.  
						
						 
						
						
						
						
					 
					
						2005-06-07 22:21:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a78c0632ed 
					 
					
						
						
							
							Fix for padding X9.31 padding check and zero padding bytes.  
						
						 
						
						
						
						
					 
					
						2005-06-06 22:39:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8fa6a40be2 
					 
					
						
						
							
							Allow BIO_s_file to open and sequentially access files larger than 2GB on  
						
						 
						
						... 
						
						
						
						affected platforms.
PR: 973 
						
						
					 
					
						2005-06-06 11:58:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4b5598682a 
					 
					
						
						
							
							FAQ to mention no-sha512 as option for compilers without support for 64-bit  
						
						 
						
						... 
						
						
						
						integer type. 
						
						
					 
					
						2005-06-06 09:32:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e9f5428d3a 
					 
					
						
						
							
							Pass INSTALL_PREFIX in BUILDENV.  
						
						 
						
						... 
						
						
						
						PR: 1100 
						
						
					 
					
						2005-06-06 08:52:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						34f0b26424 
					 
					
						
						
							
							Skipping all tests just because one algorithm is disabled seems a bit harsch.  
						
						 
						
						... 
						
						
						
						PR: 1089 
						
						
					 
					
						2005-06-06 08:38:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cd27b13b1d 
					 
					
						
						
							
							Change mention of Makefile.ssl to Makefile.  
						
						 
						
						
						
						
					 
					
						2005-06-06 08:35:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3ecbd099eb 
					 
					
						
						
							
							_GNU_SOURCE needs to be defined before any standard header.  
						
						 
						
						
						
						
					 
					
						2005-06-06 00:50:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e43d03e30e 
					 
					
						
						
							
							Update from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2005-06-06 00:42:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1acb9b44f 
					 
					
						
						
							
							Further change pq_compat.h to generate the flag macros PQ_64BIT_IS_INTEGER  
						
						 
						
						... 
						
						
						
						and PQ_64BIT_IS_BIGNUM with the values 0 (for false) and 1 (for true),
depending on which is true.  Use those flags everywhere else to provide
the correct implementation for handling certain operations in q PQ_64BIT. 
						
						
					 
					
						2005-06-06 00:32:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						acd1c4b5af 
					 
					
						
						
							
							Document the change and update the version number (d'oh!).  
						
						 
						
						
						
						
					 
					
						2005-06-05 23:25:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						40808cedc1 
					 
					
						
						
							
							Remove the incorrect installation of '%{openssldir}/lib'.  
						
						 
						
						... 
						
						
						
						PR: 1074 
						
						
					 
					
						2005-06-05 23:15:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						51054a1b39 
					 
					
						
						
							
							Change pq_compat.h to trust the macros defined by bn.h a bit more, and thereby  
						
						 
						
						... 
						
						
						
						provide better generic support for environments that do not have 64-bit
integers.  Among others, this should solve PR 1086 
						
						
					 
					
						2005-06-05 22:42:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e774a3299e 
					 
					
						
						
							
							gcc 2.95.3 on Ultrix supports long long.  
						
						 
						
						... 
						
						
						
						PR: 1091 
						
						
					 
					
						2005-06-05 22:19:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						99febc8b9a 
					 
					
						
						
							
							Correct typo ia64.o -> bn-ia64.o.  
						
						 
						
						... 
						
						
						
						PR: 1094 
						
						
					 
					
						2005-06-05 22:09:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1ce8efbdda 
					 
					
						
						
							
							Add support for the new Intel compiler, icc.  
						
						 
						
						... 
						
						
						
						Submitted by Keith Thompson <kst@sdsc.edu >
PR: 1095 
						
						
					 
					
						2005-06-05 22:01:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b0a60d861 
					 
					
						
						
							
							Old typo...  
						
						 
						
						... 
						
						
						
						PR: 1097 
						
						
					 
					
						2005-06-05 21:54:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9e5b378081 
					 
					
						
						
							
							Updated support for NetWare, submitted by Verdon Walker <VWalker@novell.com>.  
						
						 
						
						... 
						
						
						
						PR: 1098 
						
						
					 
					
						2005-06-05 21:47:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7ed876533a 
					 
					
						
						
							
							New function, DSO_pathbyaddr, to find pathname for loaded shared object  
						
						 
						
						... 
						
						
						
						by an address within it. Tested on Linux, Solaris, IRIX, Tru64, Darwin,
HP-UX, Win32, few BSD flavors... 
						
						
					 
					
						2005-06-05 18:13:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b2d91a6913 
					 
					
						
						
							
							Unify BSDi target.  
						
						 
						
						
						
						
					 
					
						2005-06-05 18:10:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ce074604c4 
					 
					
						
						
							
							./PROBLEMS to mention workarounds for ULTRIX build problems.  
						
						 
						
						... 
						
						
						
						PR: 1092 
						
						
					 
					
						2005-06-05 18:03:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						19ac190252 
					 
					
						
						
							
							The macro THREADS was changed to OPENSSL_THREADS a long time ago.  
						
						 
						
						... 
						
						
						
						PR: 1096 
						
						
					 
					
						2005-06-04 08:44:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						02c5ddf91e 
					 
					
						
						
							
							From 0.9.8-stable:  
						
						 
						
						... 
						
						
						
						handshake_write_seq is an unsigned short, so treat it like one 
						
						
					 
					
						2005-06-04 04:18:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1aaeaf8a3d 
					 
					
						
						
							
							Use correct name for config file env variable.  
						
						 
						
						
						
						
					 
					
						2005-06-02 23:19:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d6c4985d1 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-06-02 20:29:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b615ad90c8 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2005-06-02 20:11:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c7aaf3918d 
					 
					
						
						
							
							Fix inconsistensy between 8 and HEAD.  
						
						 
						
						
						
						
					 
					
						2005-06-02 18:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d51204f1b1 
					 
					
						
						
							
							PSS update [from 0.9.7].  
						
						 
						
						
						
						
					 
					
						2005-06-02 18:25:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b3f6325988 
					 
					
						
						
							
							check return value  
						
						 
						
						
						
						
					 
					
						2005-06-01 22:35:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3129acbd83 
					 
					
						
						
							
							Update from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2005-06-01 22:14:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						12f89d32b5 
					 
					
						
						
							
							Synchronise yet a little more with the Unixly build  
						
						 
						
						
						
						
					 
					
						2005-06-01 16:24:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						1d42741a19 
					 
					
						
						
							
							clear error queue on success and return NULL if no cert could be read  
						
						 
						
						... 
						
						
						
						PR: 1088 
						
						
					 
					
						2005-06-01 08:38:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						88737991d2 
					 
					
						
						
							
							fix assertion  
						
						 
						
						
						
						
					 
					
						2005-05-31 20:39:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						75c00536ba 
					 
					
						
						
							
							Synchronise more with the Unix build.  
						
						 
						
						
						
						
					 
					
						2005-05-31 20:28:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						63d740752f 
					 
					
						
						
							
							changes from 0.9.8  
						
						 
						
						
						
						
					 
					
						2005-05-31 18:22:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6e04afb8c5 
					 
					
						
						
							
							include opensslconf.h if OPENSSL_NO_* is used  
						
						 
						
						
						
						
					 
					
						2005-05-31 17:36:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						165fca51e0 
					 
					
						
						
							
							"Show" more respect to no-sha* config options.  
						
						 
						
						... 
						
						
						
						PR: 1086 
						
						
					 
					
						2005-05-31 16:36:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						db6b4e3791 
					 
					
						
						
							
							Mention more GCC bugs in ./PROBLEMS.  
						
						 
						
						
						
						
					 
					
						2005-05-31 12:39:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						20a85e9f69 
					 
					
						
						
							
							Missing sparcv8.o rule.  
						
						 
						
						... 
						
						
						
						PR: 1082 
						
						
					 
					
						2005-05-31 12:17:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a6144a1b6 
					 
					
						
						
							
							Fix typo in ./config.  
						
						 
						
						
						
						
					 
					
						2005-05-31 11:34:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f8bc3e1bd8 
					 
					
						
						
							
							Platform update from 8-stable.  
						
						 
						
						
						
						
					 
					
						2005-05-31 11:07:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5b737a0731 
					 
					
						
						
							
							Platform update from 8-stable.  
						
						 
						
						
						
						
					 
					
						2005-05-31 09:39:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6e0ef10915 
					 
					
						
						
							
							Merge from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2005-05-30 23:26:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7017605dce 
					 
					
						
						
							
							Merge in the new news from 0.9.8-stable.  
						
						 
						
						
						
						
					 
					
						2005-05-30 22:51:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b29228836a 
					 
					
						
						
							
							DJGPP changes.  Contributed by Doug Kaufman <dkaufman@rahul.net>  
						
						 
						
						
						
						
					 
					
						2005-05-30 22:37:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						188b05792f 
					 
					
						
						
							
							pqueue and dtls uses 64-bit values.  Unfortunately, OpenSSL doesn't  
						
						 
						
						... 
						
						
						
						have a uniform representation for those over all architectures, so a
little bit of hackery is needed.
Contributed by nagendra modadugu <nagendra@cs.stanford.edu > 
						
						
					 
					
						2005-05-30 22:34:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						575901e537 
					 
					
						
						
							
							Synchronise with Unixly build  
						
						 
						
						
						
						
					 
					
						2005-05-30 22:26:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2333d65880 
					 
					
						
						
							
							Change all relevant occurences of 'ncipher' to 'chil'.  That's what nCipher always wanted...  
						
						 
						
						
						
						
					 
					
						2005-05-30 05:17:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ffd1df0579 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-05-30 00:29:16 +00:00