Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						215276243d 
					 
					
						
						
							
							corrected fix to PR#2711 and also cover mime_param_cmp  
						
						 
						
						
						
						
					 
					
						2012-03-12 15:25:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ddb7832852 
					 
					
						
						
							
							correct FAQ  
						
						 
						
						
						
						
					 
					
						2012-03-12 15:01:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2fad41d155 
					 
					
						
						
							
							prepare for release  
						
						 
						
						
						
						
					 
					
						2012-03-12 14:53:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b9c3d9168f 
					 
					
						
						
							
							update NEWS  
						
						 
						
						
						
						
					 
					
						2012-03-12 14:52:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f2fc3c2dd 
					 
					
						
						
							
							Fix for CMS/PKCS7 MMA. If RSA decryption fails use a random key and  
						
						 
						
						... 
						
						
						
						continue with symmetric decryption process to avoid leaking timing
information to an attacker.
Thanks to Ivan Nestlerode <inestlerode@us.ibm.com > for discovering
this issue. (CVE-2012-0884) 
						
						
					 
					
						2012-03-12 14:51:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48819f4d54 
					 
					
						
						
							
							fix error code  
						
						 
						
						
						
						
					 
					
						2012-03-12 14:50:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b0cbdd3eba 
					 
					
						
						
							
							manually patch missing part of PR#2756  
						
						 
						
						
						
						
					 
					
						2012-03-12 12:46:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5016107550 
					 
					
						
						
							
							PR: 2756  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix DTLS timeout handling. 
						
						
					 
					
						2012-03-09 15:51:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						25d5d15fd5 
					 
					
						
						
							
							check return value of BIO_write in PKCS7_decrypt  
						
						 
						
						
						
						
					 
					
						2012-03-08 14:01:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						725713f74a 
					 
					
						
						
							
							PR: 2755  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reduce MTU after failed transmissions. [0.9.8 version of patch] 
						
						
					 
					
						2012-03-07 15:14:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73eb0972cf 
					 
					
						
						
							
							return failure code if I/O error  
						
						 
						
						
						
						
					 
					
						2012-03-06 19:08:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6720779c7e 
					 
					
						
						
							
							revert PR#2755: it breaks compilation  
						
						 
						
						
						
						
					 
					
						2012-03-06 18:25:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b2a2c6af2a 
					 
					
						
						
							
							PR: 2755  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reduce MTU after failed transmissions. 
						
						
					 
					
						2012-03-06 13:45:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						272993bac4 
					 
					
						
						
							
							PR: 2696 Submitted by: Rob Austein <sra@hactrn.net>  
						
						 
						
						... 
						
						
						
						Fix inverted range problem in RFC3779 code.
Thanks to Andrew Chi for generating test cases for this bug.
[from HEAD] 
						
						
					 
					
						2012-03-06 13:37:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						58532ae047 
					 
					
						
						
							
							oops, revert unrelated patches  
						
						 
						
						
						
						
					 
					
						2012-03-06 13:22:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e7f6d380d 
					 
					
						
						
							
							PR: 2748  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix possible DTLS timer deadlock. 
						
						
					 
					
						2012-03-06 13:20:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f0be325f88 
					 
					
						
						
							
							Fix memory leak cause by race condition when creating public keys.  
						
						 
						
						... 
						
						
						
						Thanks to Ivan Nestlerode <inestlerode@us.ibm.com > for reporting this bug. 
						
						
					 
					
						2012-02-28 14:47:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b66af23aa9 
					 
					
						
						
							
							free headers after use in error message  
						
						 
						
						
						
						
					 
					
						2012-02-27 16:26:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29d0c13e97 
					 
					
						
						
							
							Detect symmetric crypto errors in PKCS7_decrypt.  
						
						 
						
						... 
						
						
						
						Thanks to Ivan Nestlerode <inestlerode@us.ibm.com > for reporting this bug. 
						
						
					 
					
						2012-02-27 15:23:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8a4e81a269 
					 
					
						
						
							
							PR: 2711  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Tolerate bad MIME headers in parser. 
						
						
					 
					
						2012-02-23 21:50:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						843fc7b681 
					 
					
						
						
							
							Fix bug in CVE-2011-4619: check we have really received a client hello  
						
						 
						
						... 
						
						
						
						before rejecting multiple SGC restarts. 
						
						
					 
					
						2012-02-16 15:21:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6dcb6bf1c1 
					 
					
						
						
							
							PR: 2703  
						
						 
						
						... 
						
						
						
						Submitted by: Alexey Melnikov <alexey.melnikov@isode.com >
Fix some memory and resource leaks in CAPI ENGINE. 
						
						
					 
					
						2012-02-11 23:12:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1061c3cb3c 
					 
					
						
						
							
							PR: 2705  
						
						 
						
						... 
						
						
						
						Submitted by: Alexey Melnikov <alexey.melnikov@isode.com >
Only create ex_data indices once for CAPI engine. 
						
						
					 
					
						2012-02-11 23:07:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0d0f15d8d1 
					 
					
						
						
							
							fix Visual Studio 2010 warning [from HEAD] (original by appro)  
						
						 
						
						
						
						
					 
					
						2012-01-20 23:24:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a72ce94213 
					 
					
						
						
							
							prepare for next version  
						
						 
						
						
						
						
					 
					
						2012-01-18 14:27:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f71d59c70e 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2012-01-18 13:15:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3309f8313c 
					 
					
						
						
							
							prepare for release  
						
						 
						
						
						
						
					 
					
						2012-01-18 13:14:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6cc5f194a7 
					 
					
						
						
							
							update NEWS  
						
						 
						
						
						
						
					 
					
						2012-01-18 13:13:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						096327a99a 
					 
					
						
						
							
							Fix for DTLS DoS issue introduced by fix for CVE-2011-4109.  
						
						 
						
						... 
						
						
						
						Thanks to Antonio Martin, Enterprise Secure Access Research and
Development, Cisco Systems, Inc. for discovering this bug and
preparing a fix. (CVE-2012-0050) 
						
						
					 
					
						2012-01-18 13:12:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc10bcf25e 
					 
					
						
						
							
							fix CHANGES entry  
						
						 
						
						
						
						
					 
					
						2012-01-17 14:18:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						875ac0ec00 
					 
					
						
						
							
							fix warning  
						
						 
						
						
						
						
					 
					
						2012-01-10 14:37:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bf240f063a 
					 
					
						
						
							
							Fix usage indentation  
						
						 
						
						
						
						
					 
					
						2012-01-05 13:15:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						dd016b0570 
					 
					
						
						
							
							Fix for builds without DTLS support.  
						
						 
						
						... 
						
						
						
						Submitted by: Brian Carlstrom 
						
						
					 
					
						2012-01-05 10:21:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						244788464a 
					 
					
						
						
							
							update for next version  
						
						 
						
						
						
						
					 
					
						2012-01-04 23:56:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a95808334e 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2012-01-04 19:23:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b3cebd5acf 
					 
					
						
						
							
							prepare for 0.9.8s release  
						
						 
						
						
						
						
					 
					
						2012-01-04 19:20:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7b775145e4 
					 
					
						
						
							
							update NEWS  
						
						 
						
						
						
						
					 
					
						2012-01-04 19:16:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7183aa6b9d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2012-01-04 19:12:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eebefe35e7 
					 
					
						
						
							
							Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>, Michael Tuexen <tuexen@fh-muenster.de>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve
Fix for DTLS plaintext recovery attack discovered by Nadhem Alfardan and
Kenny Paterson. 
						
						
					 
					
						2012-01-04 19:10:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1db0bbdc76 
					 
					
						
						
							
							Fix double free in policy check code (CVE-2011-4109)  
						
						 
						
						
						
						
					 
					
						2012-01-04 19:00:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e643112dd8 
					 
					
						
						
							
							Clear bytes used for block padding of SSL 3.0 records. (CVE-2011-4576)  
						
						 
						
						
						
						
					 
					
						2012-01-04 18:54:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						21c4b25959 
					 
					
						
						
							
							Only allow one SGC handshake restart for SSL/TLS. (CVE-2011-4619)  
						
						 
						
						
						
						
					 
					
						2012-01-04 18:52:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41cf2c3aef 
					 
					
						
						
							
							stop warning  
						
						 
						
						
						
						
					 
					
						2012-01-04 18:45:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e3a930fb4 
					 
					
						
						
							
							Prevent malformed RFC3779 data triggering an assertion failure (CVE-2011-4577)  
						
						 
						
						
						
						
					 
					
						2012-01-04 18:44:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c214e0153 
					 
					
						
						
							
							Submitted by: Adam Langley <agl@chromium.org>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve
Fix memory leaks. 
						
						
					 
					
						2012-01-04 14:25:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6c61cfbe03 
					 
					
						
						
							
							PR: 2326  
						
						 
						
						... 
						
						
						
						Submitted by: Tianjie Mao <tjmao@tjmao.net >
Reviewed by: steve
Fix incorrect comma expressions and goto f_err as alert has been set. 
						
						
					 
					
						2011-12-26 19:38:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2ee77d36a0 
					 
					
						
						
							
							x86-mont.pl: fix bug in integer-only squaring path [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 2648 
						
						
					 
					
						2011-12-09 14:28:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						24f441e0bb 
					 
					
						
						
							
							The default CN prompt message can be confusing when often the CN needs to  
						
						 
						
						... 
						
						
						
						be the server FQDN: change it.
[Reported by PSW Group] 
						
						
					 
					
						2011-12-06 00:01:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						740da44f20 
					 
					
						
						
							
							Resolve a stack set-up race condition (if the list of compression  
						
						 
						
						... 
						
						
						
						methods isn't presorted, it will be sorted on first read).
Submitted by: Adam Langley 
						
						
					 
					
						2011-12-02 12:50:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						72033fde7b 
					 
					
						
						
							
							Fix ecdsatest.c.  
						
						 
						
						... 
						
						
						
						Submitted by: Emilia Kasper 
						
						
					 
					
						2011-12-02 12:40:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9adf3fcf9a 
					 
					
						
						
							
							Fix BIO_f_buffer().  
						
						 
						
						... 
						
						
						
						Submitted by: Adam Langley
Reviewed by: Bodo Moeller 
						
						
					 
					
						2011-12-02 12:23:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						65f7456652 
					 
					
						
						
							
							ppc.pl: fix bug in bn_mul_comba4 [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 2636
Submitted by: Charles Bryant 
						
						
					 
					
						2011-11-05 10:17:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8794569a08 
					 
					
						
						
							
							PR: 2628  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Send alert instead of assertion failure for incorrectly formatted DTLS
fragments. 
						
						
					 
					
						2011-10-27 13:06:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f8731bc2fd 
					 
					
						
						
							
							PR: 2632  
						
						 
						
						... 
						
						
						
						Submitted by: emmanuel.azencot@bull.net 
Reviewed by: steve
Return -1 immediately if not affine coordinates as BN_CTX has not been
set up. 
						
						
					 
					
						2011-10-26 16:42:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						195d6bf760 
					 
					
						
						
							
							BN_BLINDING multi-threading fix.  
						
						 
						
						... 
						
						
						
						Submitted by: Emilia Kasper (Google) 
						
						
					 
					
						2011-10-19 14:57:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						dacd94b9c8 
					 
					
						
						
							
							Oops: this change ( http://cvs.openssl.org/chngview?cn=21503 )  
						
						 
						
						... 
						
						
						
						wasn't right for 0.9.8-stable (it's actually a fix for
http://cvs.openssl.org/chngview?cn=14494 , which introduced
SSL_CTRL_SET_MAX_SEND_FRAGMENT). 
						
						
					 
					
						2011-10-19 13:53:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8070cb5f87 
					 
					
						
						
							
							Clarify warning  
						
						 
						
						
						
						
					 
					
						2011-10-13 13:24:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f7d514f449 
					 
					
						
						
							
							In ssl3_clear, preserve s3->init_extra along with s3->rbuf.  
						
						 
						
						... 
						
						
						
						Submitted by: Bob Buckholz <bbuckholz@google.com > 
						
						
					 
					
						2011-10-13 13:04:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d50bce79f 
					 
					
						
						
							
							PR: 2482  
						
						 
						
						... 
						
						
						
						Submitted by: Rob Austein <sra@hactrn.net >
Reviewed by: steve
Don't allow inverted ranges in RFC3779 code, discovered by Frank Ellermann. 
						
						
					 
					
						2011-10-09 00:56:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3cf0a38b3e 
					 
					
						
						
							
							fix signed/unsigned warning  
						
						 
						
						
						
						
					 
					
						2011-09-26 17:05:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						91a1d08a4c 
					 
					
						
						
							
							use keyformat for -x509toreq, don't hard code PEM  
						
						 
						
						
						
						
					 
					
						2011-09-23 21:49:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						85e776885b 
					 
					
						
						
							
							PR: 2606  
						
						 
						
						... 
						
						
						
						Submitted by: Christoph Viethen <cv@kawo2.rwth-aachen.de >
Reviewed by: steve
Handle timezones correctly in UTCTime. 
						
						
					 
					
						2011-09-23 13:40:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fc4015329f 
					 
					
						
						
							
							PR: 2602  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS bug which prevents manual MTU setting 
						
						
					 
					
						2011-09-23 13:35:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ec9ff83f3 
					 
					
						
						
							
							PR: 2347  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Reviewed by: steve
Fix usage message. 
						
						
					 
					
						2011-09-23 13:13:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						db45308477 
					 
					
						
						
							
							(EC)DH memory handling fixes.  
						
						 
						
						... 
						
						
						
						Submitted by: Adam Langley 
						
						
					 
					
						2011-09-05 10:25:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1c7c69a8a5 
					 
					
						
						
							
							Fix memory leak on bad inputs.  
						
						 
						
						
						
						
					 
					
						2011-09-05 09:56:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						24ad061037 
					 
					
						
						
							
							Move OPENSSL_init declaration out of auto-generated code section  
						
						 
						
						... 
						
						
						
						(it is not auto-generated). 
						
						
					 
					
						2011-09-05 09:52:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92f96fa721 
					 
					
						
						
							
							PR: 2576  
						
						 
						
						... 
						
						
						
						Submitted by: Doug Goldstein <cardoe@gentoo.org >
Reviewed by: steve
Include header file stdlib.h which is needed on some platforms to get
getenv() declaration. 
						
						
					 
					
						2011-09-02 11:20:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0d1e362363 
					 
					
						
						
							
							PR: 2340  
						
						 
						
						... 
						
						
						
						Submitted by: "Mauro H. Leggieri" <mxmauro@caiman.com.ar >
Reviewed by: steve
Stop warnings if OPENSSL_NO_DGRAM is defined. 
						
						
					 
					
						2011-09-01 15:03:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0bf2c86ab 
					 
					
						
						
							
							make timing attack protection unconditional  
						
						 
						
						
						
						
					 
					
						2011-09-01 14:23:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6a662a45f3 
					 
					
						
						
							
							PR: 2573  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS buffering and decryption bug. 
						
						
					 
					
						2011-09-01 14:01:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						24d0524f31 
					 
					
						
						
							
							PR: 2588  
						
						 
						
						... 
						
						
						
						Submitted by: Thomas Jarosch <thomas.jarosch@intra2net.com >
Reviewed by: steve
Close file pointer. 
						
						
					 
					
						2011-09-01 13:48:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c081817c95 
					 
					
						
						
							
							PR: 2586  
						
						 
						
						... 
						
						
						
						Submitted by: Thomas Jarosch <thomas.jarosch@intra2net.com >
Reviewed by: steve
Fix brace mismatch. 
						
						
					 
					
						2011-09-01 13:37:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						46a1f2487e 
					 
					
						
						
							
							PR: 2559  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS socket error bug 
						
						
					 
					
						2011-07-20 15:20:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac02a4b68a 
					 
					
						
						
							
							PR: 2555  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS sequence number bug 
						
						
					 
					
						2011-07-20 15:17:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ba063d3c5 
					 
					
						
						
							
							PR: 2550  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS HelloVerifyRequest Timer bug 
						
						
					 
					
						2011-07-20 15:12:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e0e0818e4b 
					 
					
						
						
							
							config: detect if assembler supports --noexecstack and pass it down [from HEAD].  
						
						 
						
						
						
						
					 
					
						2011-07-15 19:59:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82a5049f6a 
					 
					
						
						
							
							PR: 2556 (partial)  
						
						 
						
						... 
						
						
						
						Reported by: Daniel Marschall <daniel-marschall@viathinksoft.de >
Reviewed by: steve
Fix OID routines.
Check on encoding leading zero rejection should start at beginning of
encoding.
Allow for initial digit when testing when to use BIGNUMs which can increase
first value by 2 * 40. 
						
						
					 
					
						2011-07-14 12:01:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d027b75b73 
					 
					
						
						
							
							perlasm/cbc.pl: fix tail processing bug [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 2557 
						
						
					 
					
						2011-07-13 06:25:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						87421d3fc5 
					 
					
						
						
							
							PR: 2471  
						
						 
						
						... 
						
						
						
						Submitted by: Corinna Vinschen
util/cygwin.sh: maintainer's update [from HEAD]. 
						
						
					 
					
						2011-06-22 15:46:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						87d14a3625 
					 
					
						
						
							
							PR: 2470  
						
						 
						
						... 
						
						
						
						Submitted by: Corinna Vinschen <vinschen@redhat.com >
Reviewed by: steve
Don't call ERR_remove_state from DllMain. 
						
						
					 
					
						2011-06-22 15:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc0931e36b 
					 
					
						
						
							
							PR: 2543  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Correctly handle errors in DTLSv1_handle_timeout() 
						
						
					 
					
						2011-06-22 15:29:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						22152d6885 
					 
					
						
						
							
							PR: 2540  
						
						 
						
						... 
						
						
						
						Submitted by: emmanuel.azencot@bull.net 
Reviewed by: steve
Prevent infinite loop in BN_GF2m_mod_inv(). 
						
						
					 
					
						2011-06-22 15:23:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						102bcbce8d 
					 
					
						
						
							
							correctly encode OIDs near 2^32  
						
						 
						
						
						
						
					 
					
						2011-06-22 15:15:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8655de423d 
					 
					
						
						
							
							rc4_skey.c [0.9.8]: at some point rc4_skey and x86[_64]cpuid were modified  
						
						 
						
						... 
						
						
						
						to examine bit#20 on x86[_64], but it was erroneously reverted to bit#28
in 2008 in process of FIPS integration. 
						
						
					 
					
						2011-06-06 19:58:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c4b2eb24b3 
					 
					
						
						
							
							PR: 2529  
						
						 
						
						... 
						
						
						
						Submitted by: Marcus Meissner <meissner@suse.de >
Reviewed by: steve
Call ssl_new() to reallocate SSL BIO internals if we want to replace
the existing internal SSL structure. 
						
						
					 
					
						2011-05-25 15:15:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						03e3fbb702 
					 
					
						
						
							
							PR: 2527  
						
						 
						
						... 
						
						
						
						Submitted by: Marcus Meissner <meissner@suse.de >
Reviewed by: steve
Set cnf to NULL to avoid possible double free. 
						
						
					 
					
						2011-05-25 15:06:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc7ee385f5 
					 
					
						
						
							
							Fix the ECDSA timing attack mentioned in the paper at:  
						
						 
						
						... 
						
						
						
						http://eprint.iacr.org/2011/232.pdf 
Thanks to the original authors Billy Bob Brumley and Nicola Tuveri for
bringing this to our attention. 
						
						
					 
					
						2011-05-25 14:52:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1e368ab08f 
					 
					
						
						
							
							Fix the ECDSA timing attack mentioned in the paper at:  
						
						 
						
						... 
						
						
						
						http://eprint.iacr.org/2011/232.pdf 
Thanks to the original authors Billy Bob Brumley and Nicola Tuveri for
bringing this to our attention. 
						
						
					 
					
						2011-05-25 14:43:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c77c5c8db 
					 
					
						
						
							
							Oops use up to date patch for PR#2506  
						
						 
						
						
						
						
					 
					
						2011-05-25 14:29:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1eb38c563f 
					 
					
						
						
							
							PR: 2506  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fully implement SSL_clear for DTLS. 
						
						
					 
					
						2011-05-25 12:28:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fa657871ed 
					 
					
						
						
							
							PR: 2505  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS session resumption timer bug. 
						
						
					 
					
						2011-05-25 12:24:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						09dac71a45 
					 
					
						
						
							
							update date  
						
						 
						
						
						
						
					 
					
						2011-05-19 17:57:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be70b3adce 
					 
					
						
						
							
							set encodedPoint to NULL after freeing it  
						
						 
						
						
						
						
					 
					
						2011-05-19 16:18:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d12b1f82b 
					 
					
						
						
							
							check buffer is larger enough before overwriting  
						
						 
						
						
						
						
					 
					
						2011-04-06 18:07:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7116a41129 
					 
					
						
						
							
							PR: 2462  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS Retransmission Buffer Bug 
						
						
					 
					
						2011-04-03 17:15:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7143acab25 
					 
					
						
						
							
							PR: 2458  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Don't change state when answering DTLS ClientHello. 
						
						
					 
					
						2011-04-03 16:26:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11d4086d8e 
					 
					
						
						
							
							PR: 2457  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Reviewed by: steve
Fix DTLS fragment reassembly bug. 
						
						
					 
					
						2011-04-03 15:49:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						32cd1da62e 
					 
					
						
						
							
							PR: 2469  
						
						 
						
						... 
						
						
						
						Submitted by: Jim Studt <jim@studt.net >
Reviewed by: steve
Check mac is present before trying to retrieve mac iteration count. 
						
						
					 
					
						2011-03-13 18:23:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d430f56de6 
					 
					
						
						
							
							start 0.9.8s-dev  
						
						 
						
						
						
						
					 
					
						2011-02-08 17:58:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						957ebe98fb 
					 
					
						
						
							
							OCSP stapling fix (OpenSSL 0.9.8r/1.0.0d)  
						
						 
						
						... 
						
						
						
						Submitted by: Neel Mehta, Adam Langley, Bodo Moeller 
						
						
					 
					
						2011-02-08 17:10:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9d09fc8485 
					 
					
						
						
							
							Assorted bugfixes:  
						
						 
						
						... 
						
						
						
						- RLE decompression boundary case
- SSL 2.0 key arg length check
Submitted by: Google (Neel Mehta, Bodo Moeller) 
						
						
					 
					
						2011-02-03 12:04:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8ea4531718 
					 
					
						
						
							
							Update 0.9.7-branch section with information from 1.0.0-branch NEWS file  
						
						 
						
						
						
						
					 
					
						2011-02-03 11:44:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						881611678e 
					 
					
						
						
							
							"make update"  
						
						 
						
						
						
						
					 
					
						2011-02-03 10:28:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a3dc628d86 
					 
					
						
						
							
							PR: 2433  
						
						 
						
						... 
						
						
						
						Submitted by: Chris Wilson <chris@qwirx.com >
Reviewed by: steve
Constify ASN1_STRING_set_default_mask_asc(). 
						
						
					 
					
						2011-01-24 16:21:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3c159fc1a5 
					 
					
						
						
							
							check EC public key isn't point at infinity  
						
						 
						
						
						
						
					 
					
						2011-01-24 15:08:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6056afd223 
					 
					
						
						
							
							PR: 1612  
						
						 
						
						... 
						
						
						
						Submitted by: Robert Jackson <robert@rjsweb.net >
Reviewed by: steve
Fix EC_POINT_cmp function for case where b but not a is the point at infinity. 
						
						
					 
					
						2011-01-24 14:42:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54db796991 
					 
					
						
						
							
							PR: 2434  
						
						 
						
						... 
						
						
						
						Under Windows, there seems to be a problem relinking fips_premain_dso
because that file is locked.  Changing from backtick op to using
system() with redirection and reading the hash from the output file
seems to fix the problem.
In an ideal world, there should be no difference, as a command in a
backtick op should terminate before the backtick returns, same as it
does with system().  We suspect, though, that the loaded binary is
cached by Windows for a little while, and that reading the output from
a file provides enough delay for the lock to drop before we try to
relink. 
						
						
					 
					
						2011-01-20 22:12:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						119e912a83 
					 
					
						
						
							
							Since DTLS 1.0 is based on TLS 1.1 we should never return a decryption_failed  
						
						 
						
						... 
						
						
						
						alert. 
						
						
					 
					
						2011-01-04 19:33:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4a4a0fdc7 
					 
					
						
						
							
							PR: 2411  
						
						 
						
						... 
						
						
						
						Submitted by: Rob Austein <sra@hactrn.net >
Reviewed by: steve
Fix corner cases in RFC3779 code. 
						
						
					 
					
						2011-01-03 01:40:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ad765173f 
					 
					
						
						
							
							Fix escaping code for string printing. If *any* escaping is enabled we  
						
						 
						
						... 
						
						
						
						must escape the escape character itself (backslash). 
						
						
					 
					
						2011-01-03 01:26:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c8e3c1a9b5 
					 
					
						
						
							
							PR: 2410  
						
						 
						
						... 
						
						
						
						Submitted by: Rob Austein <sra@hactrn.net >
Reviewed by: steve
Use OPENSSL_assert() instead of assert(). 
						
						
					 
					
						2011-01-03 01:20:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae378b769a 
					 
					
						
						
							
							use fips-dev not dev-fips  
						
						 
						
						
						
						
					 
					
						2011-01-03 00:43:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4de4e35459 
					 
					
						
						
							
							PR: 2416  
						
						 
						
						... 
						
						
						
						Submitted by: Mark Phalan <mark.phalan@oracle.com >
Reviewed by: steve
Use L suffix in version number. 
						
						
					 
					
						2011-01-03 00:25:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5537a83e56 
					 
					
						
						
							
							Add missing explicit instruction size.  
						
						 
						
						... 
						
						
						
						[CVS head and later branches have this since revision 1.7 of this file.]
Submitted by: Chandler Carruth (Google) 
						
						
					 
					
						2010-12-13 20:47:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c850d322a6 
					 
					
						
						
							
							add Android changes from FIPS 1.2.2 module  
						
						 
						
						
						
						
					 
					
						2010-12-11 00:30:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8be571868 
					 
					
						
						
							
							update for next release  
						
						 
						
						
						
						
					 
					
						2010-12-02 19:42:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						acd43bf38c 
					 
					
						
						
							
							prepare for release  
						
						 
						
						
						
						
					 
					
						2010-12-02 18:53:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5eaf173647 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-12-02 18:53:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7890b562bc 
					 
					
						
						
							
							fix for CVE-2010-4180  
						
						 
						
						
						
						
					 
					
						2010-12-02 18:49:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7258d33794 
					 
					
						
						
							
							PR: 2386  
						
						 
						
						... 
						
						
						
						Submitted by: Stefan Birrer <stefan.birrer@adnovum.ch >
Reviewed by: steve
Correct SKM_ASN1_SET_OF_d2i macro. 
						
						
					 
					
						2010-12-02 18:02:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						263979a2a3 
					 
					
						
						
							
							use consistent FAQ between version  
						
						 
						
						
						
						
					 
					
						2010-12-02 00:11:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c6d83354d 
					 
					
						
						
							
							update README  
						
						 
						
						
						
						
					 
					
						2010-12-01 17:50:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a188fc01fe 
					 
					
						
						
							
							oops, no corrected fix needed for 0.9.8 branch  
						
						 
						
						
						
						
					 
					
						2010-12-01 17:48:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1948f9e042 
					 
					
						
						
							
							update NEWS  
						
						 
						
						
						
						
					 
					
						2010-12-01 17:16:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f7ffc3a6c9 
					 
					
						
						
							
							add CVE to JPAKE fix  
						
						 
						
						
						
						
					 
					
						2010-11-29 18:47:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d6af5c5d2 
					 
					
						
						
							
							../comm.txt  
						
						 
						
						
						
						
					 
					
						2010-11-27 17:33:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						efed63d783 
					 
					
						
						
							
							Backport J-PAKE fix.  
						
						 
						
						
						
						
					 
					
						2010-11-26 16:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e351bb560 
					 
					
						
						
							
							add acknowledgements file to 0.9.8 branch too  
						
						 
						
						
						
						
					 
					
						2010-11-22 16:35:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0067580321 
					 
					
						
						
							
							update for next version  
						
						 
						
						
						
						
					 
					
						2010-11-16 16:35:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82e0073624 
					 
					
						
						
							
							oops, correct version number  
						
						 
						
						
						
						
					 
					
						2010-11-16 14:56:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e541b1a7f 
					 
					
						
						
							
							prepare for release  
						
						 
						
						
						
						
					 
					
						2010-11-16 14:37:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2ae47ddbc2 
					 
					
						
						
							
							fix CVE-2010-3864  
						
						 
						
						
						
						
					 
					
						2010-11-16 14:26:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e8b8b8990 
					 
					
						
						
							
							Submitted by: Jonathan Dixon <joth@chromium.org>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve
If store is NULL set flags correctly. 
						
						
					 
					
						2010-11-02 15:57:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05bbbe9204 
					 
					
						
						
							
							PR: 2295  
						
						 
						
						... 
						
						
						
						Submitted by: Alexei Khlebnikov <alexei.khlebnikov@opera.com >
Reviewed by: steve
OOM checking. Leak in OOM fix. Fall-through comment. Duplicate code
elimination. 
						
						
					 
					
						2010-10-11 23:28:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a073129293 
					 
					
						
						
							
							PR: 2314  
						
						 
						
						... 
						
						
						
						Submitted by: Mounir IDRASSI <mounir.idrassi@idrix.net >
Reviewed by: steve
Fix for double free bug in ssl/s3_clnt.c CVE-2010-2939 
						
						
					 
					
						2010-10-10 12:21:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						93fc0e0e40 
					 
					
						
						
							
							We can't always read 6 bytes in an OCSP response: fix so error statuses  
						
						 
						
						... 
						
						
						
						are read correctly for non-blocking I/O. 
						
						
					 
					
						2010-10-06 18:01:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						84f1c14396 
					 
					
						
						
							
							Minor documentation fixes, PR#2345  
						
						 
						
						
						
						
					 
					
						2010-10-04 13:28:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f10986bab4 
					 
					
						
						
							
							Minor documentation fixes, PR#2344  
						
						 
						
						
						
						
					 
					
						2010-10-04 13:25:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6cb5746b65 
					 
					
						
						
							
							Add call to ENGINE_register_all_complete() to ENGINE_load_builtin_engines(),  
						
						 
						
						... 
						
						
						
						this means that some implementations will be used automatically, e.g. aesni,
we do this for cryptodev anyway.
Setup cpuid in ENGINE_load_builtin_engines() too as some ENGINEs use it. 
						
						
					 
					
						2010-10-03 18:55:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0061aa9f32 
					 
					
						
						
							
							Don't announce tests run in empty directories  
						
						 
						
						
						
						
					 
					
						2010-09-20 23:25:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3926bbcf6d 
					 
					
						
						
							
							support customisable rm and mkdir commands  
						
						 
						
						
						
						
					 
					
						2010-09-19 15:34:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b5cee977c2 
					 
					
						
						
							
							update FIPS script generator to make output easier to hand edit  
						
						 
						
						
						
						
					 
					
						2010-09-19 11:30:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae3b60ba99 
					 
					
						
						
							
							fix bug in AES_unwrap()  
						
						 
						
						
						
						
					 
					
						2010-08-30 23:57:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d4ba6424a1 
					 
					
						
						
							
							ECC library bugfixes.  
						
						 
						
						... 
						
						
						
						Submitted by: Emilia Kapser (Google) 
						
						
					 
					
						2010-08-26 12:10:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						92a97e52a0 
					 
					
						
						
							
							Version tree clarification.  
						
						 
						
						
						
						
					 
					
						2010-08-26 11:15:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						78dcaa0609 
					 
					
						
						
							
							PR: 2297  
						
						 
						
						... 
						
						
						
						Submitted by: Antony, Benoy <bantony@ebay.com >
Approved by: steve@openssl.org 
Fix bug in AES wrap code when t > 0xff. 
						
						
					 
					
						2010-07-09 17:24:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						65b4c34d86 
					 
					
						
						
							
							initialise pbe_tmp  
						
						 
						
						
						
						
					 
					
						2010-07-08 16:51:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8486c312c 
					 
					
						
						
							
							rand_nw.c: compensate for gcc bug (using %edx instead of %eax at -O3)  
						
						 
						
						... 
						
						
						
						[from HEAD].
PR: 2296 
						
						
					 
					
						2010-07-08 09:15:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8d4baaf2f0 
					 
					
						
						
							
							PROBLEMS: MacOS X is not necessarily a problem anymore [from HEAD].  
						
						 
						
						
						
						
					 
					
						2010-07-08 09:01:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						50fb940f05 
					 
					
						
						
							
							make WIN32 compile work again  
						
						 
						
						
						
						
					 
					
						2010-07-08 01:23:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						63e3676e68 
					 
					
						
						
							
							fix so it is safe to repeatedly add PBE algorithms  
						
						 
						
						
						
						
					 
					
						2010-06-26 12:55:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1dac2cae68 
					 
					
						
						
							
							prepare for next release  
						
						 
						
						
						
						
					 
					
						2010-06-16 13:40:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d886975835 
					 
					
						
						
							
							Fix gcc 4.6 warnings. Check TLS server hello extension length.  
						
						 
						
						
						
						
					 
					
						2010-06-12 13:18:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						22872a5363 
					 
					
						
						
							
							Prepare for release.  
						
						 
						
						
						
						
					 
					
						2010-06-01 14:47:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82b6b541b1 
					 
					
						
						
							
							Fix CVE-2010-0742  
						
						 
						
						
						
						
					 
					
						2010-06-01 14:39:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						60a989a76e 
					 
					
						
						
							
							fix PR#2261 in a different way  
						
						 
						
						
						
						
					 
					
						2010-05-31 13:17:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						18394ed50f 
					 
					
						
						
							
							098 aes-x86_64.pl module was erroneously enabled in Win64 build without  
						
						 
						
						... 
						
						
						
						being adapted for Win64 ABI. Fix this. 
						
						
					 
					
						2010-05-30 22:02:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3416d11926 
					 
					
						
						
							
							update NEWS file  
						
						 
						
						
						
						
					 
					
						2010-05-27 15:02:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1f1a03d0c 
					 
					
						
						
							
							PR: 2262  
						
						 
						
						... 
						
						
						
						Submitted By: Victor Wagner <vitus@cryptocom.ru >
Fix error reporting in load_key function. 
						
						
					 
					
						2010-05-27 14:09:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						278a447ee8 
					 
					
						
						
							
							PR: 2245  
						
						 
						
						... 
						
						
						
						Submitted By: Mounir IDRASSI <mounir.idrassi@idrix.net >
Add /Zi to WIN32 debug builds in 0.9.8 tree. 
						
						
					 
					
						2010-05-27 13:16:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8ceee689c7 
					 
					
						
						
							
							PR: 2261  
						
						 
						
						... 
						
						
						
						Submitted By: De Rudder, Stephen L." <s_derudder@tditx.com >
Workaround for newer Windows headers which define EADDRINUSE but not to the
same value as WSAEADDRINUSE. 
						
						
					 
					
						2010-05-27 13:07:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						356f164f52 
					 
					
						
						
							
							PR: 2258  
						
						 
						
						... 
						
						
						
						Submitted By: Ger Hobbelt <ger@hobbelt.com >
Base64 BIO fixes:
Use OPENSSL_assert() instead of assert().
Use memmove() as buffers overlap.
Fix write retry logic. 
						
						
					 
					
						2010-05-27 12:41:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						203ef9988c 
					 
					
						
						
							
							PR: 2266  
						
						 
						
						... 
						
						
						
						Submitted By: Jonathan Gray <jsg@goblin.cx >
Correct ioctl definitions. 
						
						
					 
					
						2010-05-26 23:23:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9f51bdae00 
					 
					
						
						
							
							Avoid use of ex_data free function in Chil ENGINE so it can be safely  
						
						 
						
						... 
						
						
						
						reloaded. 
						
						
					 
					
						2010-05-26 16:16:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59c4f46f0f 
					 
					
						
						
							
							PR: 2251  
						
						 
						
						... 
						
						
						
						Submitted by: Ger Hobbelt <ger@hobbelt.com >
Approved by: steve@openssl.org 
Memleak, BIO chain leak and realloc checks in v3_pci.c 
						
						
					 
					
						2010-05-22 00:31:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f9ab6255e7 
					 
					
						
						
							
							oops, typo  
						
						 
						
						
						
						
					 
					
						2010-05-20 17:36:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a89b665b9b 
					 
					
						
						
							
							make cms-test.pl consistent with other branches  
						
						 
						
						
						
						
					 
					
						2010-05-20 17:33:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a7949b8da3 
					 
					
						
						
							
							PR: 2253  
						
						 
						
						... 
						
						
						
						Submitted By: Ger Hobbelt <ger@hobbelt.com >
Check callback return value when outputting errors. 
						
						
					 
					
						2010-05-15 00:36:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b0b4adc3af 
					 
					
						
						
							
							Use /MD in FIPS mode for WIN64 too.  
						
						 
						
						
						
						
					 
					
						2010-05-06 13:10:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e19895972 
					 
					
						
						
							
							PR: 2252  
						
						 
						
						... 
						
						
						
						Submitted By: Ger Hobbelt <ger@hobbelt.com >
Update docs to BIO_f_buffer() 
						
						
					 
					
						2010-05-03 15:29:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d24f1cbf35 
					 
					
						
						
							
							PR: 2230  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix bug in bitmask macros and stop warnings. 
						
						
					 
					
						2010-05-03 13:01:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b8febed96a 
					 
					
						
						
							
							Prevent ERR_print_errors_fp crash on Win32 [from HEAD].  
						
						 
						
						
						
						
					 
					
						2010-04-20 20:28:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82687bb4c3 
					 
					
						
						
							
							PR: 2230  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fixed various DTLS fragment reassembly bugs patch for 0.9.8. 
						
						
					 
					
						2010-04-14 13:26:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6506b7754a 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2010-04-14 13:21:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2eb8e5e62a 
					 
					
						
						
							
							fix signed/unsigned comparison warnings  
						
						 
						
						
						
						
					 
					
						2010-04-14 00:41:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c713a4c04d 
					 
					
						
						
							
							PR: 2230  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix various DTLS fragment reassembly bugs. 
						
						
					 
					
						2010-04-14 00:17:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0cefa0f942 
					 
					
						
						
							
							PR: 2229  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Don't drop DTLS connection if mac or decryption failed. 
						
						
					 
					
						2010-04-14 00:09:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						834c85ef0c 
					 
					
						
						
							
							PR: 2228  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fix DTLS buffer record MAC failure bug. 
						
						
					 
					
						2010-04-14 00:02:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0c8c8eab58 
					 
					
						
						
							
							Third argument to dtls1_buffer_record is by reference  
						
						 
						
						
						
						
					 
					
						2010-04-13 08:42:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc06baca76 
					 
					
						
						
							
							Add SHA2 algorithms to SSL_library_init(). Although these aren't used  
						
						 
						
						... 
						
						
						
						directly by SSL/TLS SHA2 certificates are becoming more common and
applications that only call SSL_library_init() and not
OpenSSL_add_all_alrgorithms() will fail when verifying certificates.
Update docs. 
						
						
					 
					
						2010-04-07 13:19:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9eeb779e8f 
					 
					
						
						
							
							Remove obsolete PRNG note. Add comment about use of SHA256 et al.  
						
						 
						
						
						
						
					 
					
						2010-04-06 15:02:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe171f9c3e 
					 
					
						
						
							
							PR: 2209  
						
						 
						
						... 
						
						
						
						Submitted Daniel Mentz <danielml@sent.com >
Documentation typo. 
						
						
					 
					
						2010-04-06 14:45:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e613d5411 
					 
					
						
						
							
							PR: 2218  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fixes for DTLS replay bug. 
						
						
					 
					
						2010-04-06 12:44:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						56e930eb03 
					 
					
						
						
							
							PR: 2219  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fixes for DTLS buffering bug. 
						
						
					 
					
						2010-04-06 12:39:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a052f0bb9 
					 
					
						
						
							
							PR: 2223  
						
						 
						
						... 
						
						
						
						Submitted By: Robin Seggelmann <seggelmann@fh-muenster.de >
Fixes for DTLS timeout bug 
						
						
					 
					
						2010-04-06 12:29:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f34e79f27b 
					 
					
						
						
							
							make no-comp compile again  
						
						 
						
						
						
						
					 
					
						2010-03-30 17:31:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef1fe9094c 
					 
					
						
						
							
							make FAQ, STATUS consistent with other branches  
						
						 
						
						
						
						
					 
					
						2010-03-30 00:58:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c25e8ee9b3 
					 
					
						
						
							
							md32_common.h: fix copy-n-paste typo. The typo was present in 098 only.  
						
						 
						
						
						
						
					 
					
						2010-03-29 11:23:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4525a048ec 
					 
					
						
						
							
							PR: 1696  
						
						 
						
						... 
						
						
						
						Check return value if d2i_PBEPARAM(). 
						
						
					 
					
						2010-03-28 00:42:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f421a52f56 
					 
					
						
						
							
							PR: 2083  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Add includes in synopsis, fix some indents. For some reason this never got
applied to the 0.9.8-stable branch. 
						
						
					 
					
						2010-03-28 00:17:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						17a79eec0c 
					 
					
						
						
							
							PR: 1763  
						
						 
						
						... 
						
						
						
						Remove useless num = 0 assignment.
Remove redundant cases on sock_ctrl(): default case handles them. 
						
						
					 
					
						2010-03-27 23:28:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1eda14b44f 
					 
					
						
						
							
							PR: 1813  
						
						 
						
						... 
						
						
						
						Submitted by: Torsten Hilbrich <torsten.hilbrich@secunet.com >
Fix memory leak when engine name cannot be loaded. 
						
						
					 
					
						2010-03-27 18:28:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aa9b502619 
					 
					
						
						
							
							We don't have a whirlpool test in this branch.  
						
						 
						
						
						
						
					 
					
						2010-03-25 20:36:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aaf45e6464 
					 
					
						
						
							
							Have an underscore before <ARCH> to make sure any future architecture  
						
						 
						
						... 
						
						
						
						name won't be mixed up with any crypto name.
Missed the other spot. 
						
						
					 
					
						2010-03-25 16:25:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						be83c31cdd 
					 
					
						
						
							
							Have an underscore before <ARCH> to make sure any future architecture  
						
						 
						
						... 
						
						
						
						name won't be mixed up with any crypto name.
Missed one spot. 
						
						
					 
					
						2010-03-25 16:18:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						76a41eec2b 
					 
					
						
						
							
							Try to define the tests and their respective directories in a way that  
						
						 
						
						... 
						
						
						
						preserves the order of the tests (to make it as easy as possible to
synchronise with future Unix builds) 
						
						
					 
					
						2010-03-25 14:46:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ab9c0ec9fc 
					 
					
						
						
							
							Have an underscore before <ARCH> to make sure any future architecture  
						
						 
						
						... 
						
						
						
						name won't be mixed up with any crypto name. 
						
						
					 
					
						2010-03-25 14:45:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf6a1dea19 
					 
					
						
						
							
							PR: 2202 (partial)  
						
						 
						
						... 
						
						
						
						Submitted by: Steven M. Schweda <sms@antinode.info >
VMS fixes:
	Reduce copying into .apps and .test in makevms.com
	Don't try to use blank CA certificate in CA.com
	Allow use of C files from original directories in maketests.com 
						
						
					 
					
						2010-03-25 12:29:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ea5b3f5e62 
					 
					
						
						
							
							PR: 2202 (partial)  
						
						 
						
						... 
						
						
						
						Submitted by: Steven M. Schweda <sms@antinode.info >
Make some declarations conditional on FIPS/ENGINE.
Make pqueue_print non-VAX. 
						
						
					 
					
						2010-03-25 12:17:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c3c658e1c0 
					 
					
						
						
							
							updates for next version  
						
						 
						
						
						
						
					 
					
						2010-03-25 12:07:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d013b6b32 
					 
					
						
						
							
							initialise buf if wrong_info not used  
						
						 
						
						
						
						
					 
					
						2010-03-24 23:42:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee91323f52 
					 
					
						
						
							
							PR: 1731 and maybe 2197  
						
						 
						
						... 
						
						
						
						Clear error queue in a few places in SSL code where errors are expected
so they don't stay in the queue. 
						
						
					 
					
						2010-03-24 23:16:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fae868811 
					 
					
						
						
							
							prepare for release  
						
						 
						
						
						
						
					 
					
						2010-03-24 13:16:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						354f92d66a 
					 
					
						
						
							
							Submitted by: Bodo Moeller and Adam Langley (Google).  
						
						 
						
						... 
						
						
						
						Fix for "Record of death" vulnerability CVE-2010-0740. 
						
						
					 
					
						2010-03-24 13:16:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c3484e0268 
					 
					
						
						
							
							rand_win.c: fix logical bug in readscreen [from HEAD].  
						
						 
						
						
						
						
					 
					
						2010-03-22 22:44:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6b0be9c73d 
					 
					
						
						
							
							bss_file.c: fix MSC 6.0 warning [from HEAD].  
						
						 
						
						
						
						
					 
					
						2010-03-22 22:40:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02312a91ca 
					 
					
						
						
							
							ppc.pl: assembler Y chokes on apostrophes in comment.  
						
						 
						
						
						
						
					 
					
						2010-03-22 20:58:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						744f6b648e 
					 
					
						
						
							
							e_capi.c: fix typo [from HEAD].  
						
						 
						
						
						
						
					 
					
						2010-03-15 22:30:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f1502a491e 
					 
					
						
						
							
							Fix UPLINK typo [from HEAD].  
						
						 
						
						
						
						
					 
					
						2010-03-15 22:27:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b70871b675 
					 
					
						
						
							
							workaround for missing definition in some headers  
						
						 
						
						
						
						
					 
					
						2010-03-15 13:12:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9de450b545 
					 
					
						
						
							
							PR: 2192  
						
						 
						
						... 
						
						
						
						Submitted By: Jaroslav Imrich <jaroslav.imrich@disig.sk >
The prompt_info and wrong_info parameters can be empty strings which
can produce confusing prompts. Treat empty string same as NULL. 
						
						
					 
					
						2010-03-12 12:48:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc53036744 
					 
					
						
						
							
							missing goto meant signature was never printed out  
						
						 
						
						
						
						
					 
					
						2010-03-12 12:07:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4610d8dc00 
					 
					
						
						
							
							don't leave bogus errors in the queue  
						
						 
						
						
						
						
					 
					
						2010-03-10 13:48:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d7dfefe82 
					 
					
						
						
							
							PR: 2186  
						
						 
						
						... 
						
						
						
						Submitted By: "Joel Rabinovitch" <Joel.Rabinovitch@tecsys.com >
Detect aix64-gcc 
						
						
					 
					
						2010-03-09 17:08:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e8e7054f7 
					 
					
						
						
							
							The OID sanity check was incorrect. It should only disallow *leading* 0x80  
						
						 
						
						... 
						
						
						
						values. 
						
						
					 
					
						2010-03-07 16:40:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a542ea01d 
					 
					
						
						
							
							don't add digest alias if signature algorithm is undefined  
						
						 
						
						
						
						
					 
					
						2010-03-06 20:52:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1939f83709 
					 
					
						
						
							
							Fix memory leak: free up ENGINE functional reference if digest is not  
						
						 
						
						... 
						
						
						
						found in an ENGINE. 
						
						
					 
					
						2010-03-05 13:35:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7c114f044 
					 
					
						
						
							
							PR: 2183  
						
						 
						
						... 
						
						
						
						PR#1999 broke fork detection by assuming HAVE_FORK was set for all platforms.
Include original HAVE_FORK detection logic while allowing it to be
overridden on specific platforms with -DHAVE_FORK=1 or -DHAVE_FORK=0 
						
						
					 
					
						2010-03-03 19:56:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ede1351997 
					 
					
						
						
							
							Submitted by: Tomas Hoger <thoger@redhat.com>  
						
						 
						
						... 
						
						
						
						Fix for CVE-2010-0433 where some kerberos enabled versions of OpenSSL
could be crashed if the relevant tables were not present (e.g. chrooted). 
						
						
					 
					
						2010-03-03 15:34:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7786ed6a64 
					 
					
						
						
							
							don't mix definitions and code  
						
						 
						
						
						
						
					 
					
						2010-03-03 15:30:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bdd08277b8 
					 
					
						
						
							
							Fix s390x-specific HOST_l2c|c2l [from HEAD].  
						
						 
						
						... 
						
						
						
						Submitted by: Andreas Krebbel 
						
						
					 
					
						2010-03-02 16:26:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2bf4faa7e4 
					 
					
						
						
							
							PR: 2178  
						
						 
						
						... 
						
						
						
						Submitted by: "Kennedy, Brendan" <brendan.kennedy@intel.com >
Handle error codes correctly: cryptodev returns 0 for success whereas OpenSSL
returns 1. 
						
						
					 
					
						2010-03-01 23:54:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e5e604b0c 
					 
					
						
						
							
							load cryptodev if HAVE_CRYPTODEV is set too  
						
						 
						
						
						
						
					 
					
						2010-03-01 00:30:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ed4cd027f3 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2010-02-28 13:37:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bab19a2ac2 
					 
					
						
						
							
							quote HOSTCC in case it isn't defined  
						
						 
						
						
						
						
					 
					
						2010-02-26 19:56:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						582eb96d15 
					 
					
						
						
							
							Revert CFB block length change. Despite what SP800-38a says the input to  
						
						 
						
						... 
						
						
						
						CFB mode does *not* have to be a multiple of the block length and several
other specifications (e.g. PKCS#11) do not require this. 
						
						
					 
					
						2010-02-26 14:41:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2649ce1ebc 
					 
					
						
						
							
							Change versions for 0.9.8n-dev  
						
						 
						
						
						
						
					 
					
						2010-02-26 14:34:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7070cdba4e 
					 
					
						
						
							
							Prepare for 0.9.8m release  
						
						 
						
						
						
						
					 
					
						2010-02-25 17:18:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e885de28b1 
					 
					
						
						
							
							Since crypto-lib.com is built to be executed in the crypto/ directory,  
						
						 
						
						... 
						
						
						
						there's no need to specify that directory in the include path. 
						
						
					 
					
						2010-02-24 01:20:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3038649ab2 
					 
					
						
						
							
							The meaning of the X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY and  
						
						 
						
						... 
						
						
						
						X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT error codes were reversed in
the verify application documentation. 
						
						
					 
					
						2010-02-23 14:09:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3e4da3f7cb 
					 
					
						
						
							
							Always check bn_wexpend() return values for failure (CVE-2009-3245).  
						
						 
						
						... 
						
						
						
						(The CHANGES entry covers the change from PR #2111  as well, submitted by
Martin Olsson.)
Submitted by: Neel Mehta 
						
						
					 
					
						2010-02-23 10:36:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						53b5d04715 
					 
					
						
						
							
							Apply changes from the 1.0.0 branch.  
						
						 
						
						
						
						
					 
					
						2010-02-23 07:51:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						defede6080 
					 
					
						
						
							
							Include [.CRYPTO.<ARCH>] instead of just [.<ARCH>]  
						
						 
						
						
						
						
					 
					
						2010-02-23 07:50:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1472f1427e 
					 
					
						
						
							
							In some environments, we need to defined sslroot locally.  
						
						 
						
						
						
						
					 
					
						2010-02-22 07:05:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						00d1ecb1da 
					 
					
						
						
							
							Add t1_reneg to the VMS build.  
						
						 
						
						... 
						
						
						
						Hack the symbols with long names. 
						
						
					 
					
						2010-02-22 07:05:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						739e0e934a 
					 
					
						
						
							
							Fix X509_STORE locking  
						
						 
						
						
						
						
					 
					
						2010-02-19 18:25:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ae9770d34 
					 
					
						
						
							
							clarify documentation  
						
						 
						
						
						
						
					 
					
						2010-02-18 12:42:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bec7184768 
					 
					
						
						
							
							OR default SSL_OP_LEGACY_SERVER_CONNECT so existing options are preserved  
						
						 
						
						
						
						
					 
					
						2010-02-17 19:43:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						442ac8d259 
					 
					
						
						
							
							Allow renegotiation if SSL_OP_LEGACY_SERVER_CONNECT is set as well as  
						
						 
						
						... 
						
						
						
						initial connection to unpatched servers. There are no additional security
concerns in doing this as clients don't see renegotiation during an
attack anyway. 
						
						
					 
					
						2010-02-17 18:37:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						657b02d0cf 
					 
					
						
						
							
							PR: 2100  
						
						 
						
						... 
						
						
						
						Submitted by: James Baker <jbaker@tableausoftware.com > et al.
Workaround for slow Heap32Next on some versions of Windows. 
						
						
					 
					
						2010-02-17 14:32:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b50ef8b216 
					 
					
						
						
							
							PR: 2171  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Since SSLv2 doesn't support renegotiation at all don't reject it if
legacy renegotiation isn't enabled.
Also can now use SSL2 compatible client hello because RFC5746 supports it. 
						
						
					 
					
						2010-02-16 14:19:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1b690c1a8b 
					 
					
						
						
							
							The "block length" for CFB mode was incorrectly coded as 1 all the time. It  
						
						 
						
						... 
						
						
						
						should be the number of feedback bits expressed in bytes. For CFB1 mode set
this to 1 by rounding up to the nearest multiple of 8. 
						
						
					 
					
						2010-02-15 19:40:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2873a53f5f 
					 
					
						
						
							
							Correct ECB mode EVP_CIPHER definition: IV length is 0  
						
						 
						
						
						
						
					 
					
						2010-02-15 19:25:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04a781e844 
					 
					
						
						
							
							PR: 2164  
						
						 
						
						... 
						
						
						
						Submitted by: "Noszticzius, Istvan" <inoszticzius@rightnow.com >
Don't clear the output buffer: ciphers should correctly the same input
and output buffers. 
						
						
					 
					
						2010-02-15 19:02:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						68be98d1a6 
					 
					
						
						
							
							update references to new RI RFC  
						
						 
						
						
						
						
					 
					
						2010-02-12 22:02:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0bbbadf3f5 
					 
					
						
						
							
							Fix memory leak in ENGINE autoconfig code. Improve error logging.  
						
						 
						
						
						
						
					 
					
						2010-02-09 14:18:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c0c1ce125a 
					 
					
						
						
							
							update year  
						
						 
						
						
						
						
					 
					
						2010-02-09 14:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						105861186f 
					 
					
						
						
							
							Only use bufferoverflowu.lib when needed  
						
						 
						
						
						
						
					 
					
						2010-02-04 01:10:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a9d335bb4 
					 
					
						
						
							
							tolerate broken CMS/PKCS7 implementations using signature OID instead of digest  
						
						 
						
						
						
						
					 
					
						2010-02-02 14:19:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						162f1e08f8 
					 
					
						
						
							
							make no-rsa no-dsa compile again  
						
						 
						
						
						
						
					 
					
						2010-02-02 14:03:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0484ff5ec1 
					 
					
						
						
							
							PR: 2160  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Make session tickets work with DTLS. 
						
						
					 
					
						2010-02-01 16:48:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4acc2fed6c 
					 
					
						
						
							
							PR: 2159  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Typo in PR#1949 bug, oops! 
						
						
					 
					
						2010-02-01 12:44:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0369804ffa 
					 
					
						
						
							
							In engine_table_select() don't clear out entire error queue: just clear  
						
						 
						
						... 
						
						
						
						out any we added using ERR_set_mark() and ERR_pop_to_mark() otherwise
errors from other sources (e.g. SSL library) can be wiped. 
						
						
					 
					
						2010-01-28 17:53:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33d7b5ec07 
					 
					
						
						
							
							reword RI description  
						
						 
						
						
						
						
					 
					
						2010-01-27 18:53:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4b38f35e72 
					 
					
						
						
							
							update documentation to reflect new renegotiation options  
						
						 
						
						
						
						
					 
					
						2010-01-27 17:50:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82c2773423 
					 
					
						
						
							
							Some shells print out the directory name if CDPATH is set breaking the  
						
						 
						
						... 
						
						
						
						pod2man test. Use ./util instead to avoid this. 
						
						
					 
					
						2010-01-27 16:06:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ded27f709c 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2010-01-27 14:04:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30dc3e112b 
					 
					
						
						
							
							stop warnings in fips_test_suite application  
						
						 
						
						
						
						
					 
					
						2010-01-27 14:03:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						371b262f96 
					 
					
						
						
							
							stop missing prototype warnings  
						
						 
						
						
						
						
					 
					
						2010-01-27 13:32:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b3fb2492d5 
					 
					
						
						
							
							eliminate some warnings in fips build  
						
						 
						
						
						
						
					 
					
						2010-01-27 13:21:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						93b810637b 
					 
					
						
						
							
							Bypass algorithm blocking with TLS MD5+SHA1 signature in FIPS mode by  
						
						 
						
						... 
						
						
						
						calling underlying method directly. 
						
						
					 
					
						2010-01-27 00:51:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc62974182 
					 
					
						
						
							
							PR: 1949  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
More robust fix and workaround for PR#1949. Don't try to work out if there
is any write pending data as this can be unreliable: always flush. 
						
						
					 
					
						2010-01-26 19:40:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9413788571 
					 
					
						
						
							
							PR: 2138  
						
						 
						
						... 
						
						
						
						Submitted by: Kevin Regan <k.regan@f5.com >
Clear stat structure if -DPURIFY is set to avoid problems on some
platforms which include unitialised fields. 
						
						
					 
					
						2010-01-26 18:08:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8387db0c4 
					 
					
						
						
							
							Fix VC++ warning (change had already been made to other branches).  
						
						 
						
						
						
						
					 
					
						2010-01-26 13:24:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81f28ca567 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2010-01-26 12:29:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1b32943215 
					 
					
						
						
							
							Update OID table too.  
						
						 
						
						
						
						
					 
					
						2010-01-25 16:08:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a231d99d4c 
					 
					
						
						
							
							PR: 2149  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila <douglas@stebila.ca >
Fix wap OIDs. 
						
						
					 
					
						2010-01-25 16:08:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						714044cc03 
					 
					
						
						
							
							oops revert test code from previous commit  
						
						 
						
						
						
						
					 
					
						2010-01-24 13:52:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5598b99fb3 
					 
					
						
						
							
							The fix for PR#1949 unfortunately broke cases where the BIO_CTRL_WPENDING  
						
						 
						
						... 
						
						
						
						ctrl is incorrectly implemented (e.g. some versions of Apache). As a workaround
call both BIO_CTRL_INFO and BIO_CTRL_WPENDING if it returns zero. This should
both address the original bug and retain compatibility with the old behaviour. 
						
						
					 
					
						2010-01-24 13:50:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6899d9bbf6 
					 
					
						
						
							
							If legacy renegotiation is not permitted then send a fatal alert if a patched  
						
						 
						
						... 
						
						
						
						server attempts to renegotiate with an unpatched client. 
						
						
					 
					
						2010-01-22 18:49:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf876a9893 
					 
					
						
						
							
							change versions back to 0.9.8m-dev  
						
						 
						
						
						
						
					 
					
						2010-01-20 18:22:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8b8a2928af 
					 
					
						
						
							
							prepare for release  
						
						 
						
						
						
						
					 
					
						2010-01-20 17:26:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						031774468c 
					 
					
						
						
							
							update TABLE  
						
						 
						
						
						
						
					 
					
						2010-01-20 17:16:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd28d12add 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2010-01-20 16:35:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6c61ee8fe3 
					 
					
						
						
							
							Support -L options in VC++ link.  
						
						 
						
						
						
						
					 
					
						2010-01-20 14:04:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b86ebb55ff 
					 
					
						
						
							
							rand_win.c: handel GetTickCount wrap-around [from HEAD].  
						
						 
						
						
						
						
					 
					
						2010-01-19 21:45:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						66956eaba3 
					 
					
						
						
							
							x86_64-xlate.pl: refine sign extension logic when handling lea [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 2094,2095 
						
						
					 
					
						2010-01-19 21:45:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						444ff35029 
					 
					
						
						
							
							revert patch  
						
						 
						
						
						
						
					 
					
						2010-01-19 19:10:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff2549be1d 
					 
					
						
						
							
							PR: 2144  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Better fix for PR#2144 
						
						
					 
					
						2010-01-19 19:10:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2557c6a812 
					 
					
						
						
							
							Valgrind fix to aes-x86_64.pl in 0.9.8. For reference, newer aes-x86_64.pl  
						
						 
						
						... 
						
						
						
						don't suffer from the problem after Win64 SEH support was added.
PR: 2075
Submitted by: Peter Klotz 
						
						
					 
					
						2010-01-17 19:43:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aae48de0f7 
					 
					
						
						
							
							PR: 2144  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Fix DTLS connection so new_session is reset if we read second client hello:
new_session is used to detect renegotiation. 
						
						
					 
					
						2010-01-16 19:45:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						766708f24b 
					 
					
						
						
							
							PR: 2133  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Add missing DTLS state strings. 
						
						
					 
					
						2010-01-16 19:18:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbeb4a9d15 
					 
					
						
						
							
							Add strings for DTLS protocol versions  
						
						 
						
						
						
						
					 
					
						2010-01-16 19:02:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						24fc4f656c 
					 
					
						
						
							
							PR: 1618  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Fix bug in 0.9.8-stable time handling in ca.c . NB: this only handles cases
where times are not being checked or printed properly. Issues relating to
time_t becoming negative or wrapping around are *NOT* addressed. OpenSSL
1.0.0 and later does fix these issues by using its own time routines. 
						
						
					 
					
						2010-01-14 17:44:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c3c3b28818 
					 
					
						
						
							
							Fix version handling so it can cope with a major version >3.  
						
						 
						
						... 
						
						
						
						Although it will be many years before TLS v2.0 or later appears old versions
of servers have a habit of hanging around for a considerable time so best
if we handle this properly now. 
						
						
					 
					
						2010-01-13 19:08:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						06e2670a57 
					 
					
						
						
							
							Modify compression code so it avoids using ex_data free functions. This  
						
						 
						
						... 
						
						
						
						stops applications that call CRYPTO_free_all_ex_data() prematurely leaking
memory. 
						
						
					 
					
						2010-01-13 18:45:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3798a4d059 
					 
					
						
						
							
							Simplify RI+SCSV logic:  
						
						 
						
						... 
						
						
						
						1. Send SCSV is not renegotiating, never empty RI.
2. Send RI if renegotiating. 
						
						
					 
					
						2010-01-07 19:09:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5b8246d6eb 
					 
					
						
						
							
							x86_64-xlate.pl: new gas requires sign extention in lea instruction  
						
						 
						
						... 
						
						
						
						[from HEAD].
PR: 2094,2095 
						
						
					 
					
						2010-01-07 11:22:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2e24bc421d 
					 
					
						
						
							
							util/pl/VC-32.pl: bufferoverflowu.lib only when actually needed [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 2086 
						
						
					 
					
						2010-01-07 11:04:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f244ed3ed2 
					 
					
						
						
							
							correct error codes  
						
						 
						
						
						
						
					 
					
						2010-01-06 18:02:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						50a095ed16 
					 
					
						
						
							
							Updates to conform with draft-ietf-tls-renegotiation-03.txt:  
						
						 
						
						... 
						
						
						
						1. Add provisional SCSV value.
2. Don't send SCSV and RI at same time.
3. Fatal error is SCSV received when renegotiating. 
						
						
					 
					
						2010-01-06 17:59:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37aff2199e 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2010-01-05 17:50:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						309aa5fbf3 
					 
					
						
						
							
							PR: 2132  
						
						 
						
						... 
						
						
						
						Submitted by: steve
Fix bundled pod2man.pl to handle alternative comment formats. 
						
						
					 
					
						2010-01-05 17:33:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f40948714 
					 
					
						
						
							
							Update RI to match latest spec.  
						
						 
						
						... 
						
						
						
						MCSV is now called SCSV.
Don't send SCSV if renegotiating.
Also note if RI is empty in debug messages. 
						
						
					 
					
						2009-12-27 23:03:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c22050be29 
					 
					
						
						
							
							Traditional Yuletide commit ;-)  
						
						 
						
						... 
						
						
						
						Add Triple DES CFB1 and CFB8 to algorithm list and NID translation. 
						
						
					 
					
						2009-12-25 14:11:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						54ca55fd81 
					 
					
						
						
							
							Constify crypto/cast.  
						
						 
						
						
						
						
					 
					
						2009-12-22 11:45:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d0e79d7e2c 
					 
					
						
						
							
							Constify crypto/cast.  
						
						 
						
						
						
						
					 
					
						2009-12-22 10:59:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1003dfd15 
					 
					
						
						
							
							Ooops, engage ENGINE initialisation code correctly in FIPS builds.  
						
						 
						
						
						
						
					 
					
						2009-12-17 16:38:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98809a1458 
					 
					
						
						
							
							Alert to use is now defined in spec: update code  
						
						 
						
						
						
						
					 
					
						2009-12-17 15:42:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ccc3df8c33 
					 
					
						
						
							
							New option to enable/disable connection to unpatched servers  
						
						 
						
						
						
						
					 
					
						2009-12-16 20:34:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						593a6dbe19 
					 
					
						
						
							
							add another missed case  
						
						 
						
						
						
						
					 
					
						2009-12-14 01:32:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						efbe446f1a 
					 
					
						
						
							
							simplify RI error code and catch extra error case ignored before  
						
						 
						
						
						
						
					 
					
						2009-12-14 01:28:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						725745d105 
					 
					
						
						
							
							Allow initial connection (but no renegoriation) to servers which don't support  
						
						 
						
						... 
						
						
						
						RI. 
						
						
					 
					
						2009-12-14 01:09:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c0e94f8292 
					 
					
						
						
							
							Missing newline.  
						
						 
						
						
						
						
					 
					
						2009-12-12 11:10:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef4bd0167c 
					 
					
						
						
							
							Move SSL_OP_ALLOW_UNSAFE_LEGACY_RENEGOTIATION out of SSL_OP_ALL  
						
						 
						
						
						
						
					 
					
						2009-12-11 00:22:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7a8a3ef4f6 
					 
					
						
						
							
							clarify docs  
						
						 
						
						
						
						
					 
					
						2009-12-09 18:17:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98c7b0367d 
					 
					
						
						
							
							Document option clearning functions.  
						
						 
						
						... 
						
						
						
						Initial secure renegotiation documentation. 
						
						
					 
					
						2009-12-09 18:01:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e5dea0ffd 
					 
					
						
						
							
							PR: 2124  
						
						 
						
						... 
						
						
						
						Submitted by: Jan Pechanec <Jan.Pechanec@Sun.COM >
Check for memory allocation failures. 
						
						
					 
					
						2009-12-09 13:41:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb4823fdd6 
					 
					
						
						
							
							Add ctrls to clear options and mode.  
						
						 
						
						... 
						
						
						
						Change RI ctrl so it doesn't clash. 
						
						
					 
					
						2009-12-09 13:15:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						17bb051628 
					 
					
						
						
							
							Send no_renegotiation alert as required by spec.  
						
						 
						
						
						
						
					 
					
						2009-12-08 19:05:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59f44e810b 
					 
					
						
						
							
							Add ctrl and macro so we can determine if peer support secure renegotiation.  
						
						 
						
						... 
						
						
						
						Fix SSL_CIPHER initialiser for mcsv 
						
						
					 
					
						2009-12-08 13:47:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7a014dceb6 
					 
					
						
						
							
							Add support for magic cipher suite value (MCSV). Make secure renegotiation  
						
						 
						
						... 
						
						
						
						work in SSLv3: initial handshake has no extensions but includes MCSV, if
server indicates RI support then renegotiation handshakes include RI.
NB: current MCSV value is bogus for testing only, will be updated when we
have an official value.
Change mismatch alerts to handshake_failure as required by spec.
Also have some debugging fprintfs so we can clearly see what is going on
if OPENSSL_RI_DEBUG is set. 
						
						
					 
					
						2009-12-08 13:15:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ff44a99a4 
					 
					
						
						
							
							PR: 2111  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Olsson <molsson@opera.com >
Check for bn_wexpand errors in bn_mul.c 
						
						
					 
					
						2009-12-02 15:27:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6cf61614e4 
					 
					
						
						
							
							Replace the broken SPKAC certification with the correct version.  
						
						 
						
						
						
						
					 
					
						2009-12-02 14:39:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82e448b92b 
					 
					
						
						
							
							PR: 2115  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Add Renegotiation extension to DTLS, fix DTLS ClientHello processing bug. 
						
						
					 
					
						2009-12-01 17:40:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b172352b52 
					 
					
						
						
							
							PR: 1432  
						
						 
						
						... 
						
						
						
						Submitted by: "Andrzej Chmielowiec" <achmielowiec@enigma.com.pl >, steve@openssl.org 
Approved by: steve@openssl.org 
Truncate hash if it is too large: as required by FIPS 186-3. 
						
						
					 
					
						2009-12-01 17:32:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						95b14fd803 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2009-11-29 13:44:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						553d2e3280 
					 
					
						
						
							
							(whitespace)  
						
						 
						
						
						
						
					 
					
						2009-11-26 18:35:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						82fb4ee89d 
					 
					
						
						
							
							The version numbering may change, again; so be careful about what we  
						
						 
						
						... 
						
						
						
						announce in CHANGES. 
						
						
					 
					
						2009-11-26 17:30:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						389fef6c9c 
					 
					
						
						
							
							Remove attribution -- this wasn't my patch, I only edited and applied it.  
						
						 
						
						
						
						
					 
					
						2009-11-26 17:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b6622f9623 
					 
					
						
						
							
							Remove obsolete information about a change for 0.9.7n.  
						
						 
						
						... 
						
						
						
						(No further releases from the 0.9.7 branch are planned.  Note that the
"deleted" change is also in 0.9.8f.) 
						
						
					 
					
						2009-11-26 17:25:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7f5448e3a8 
					 
					
						
						
							
							Servers can't end up talking SSLv2 with legacy renegotiation disabled  
						
						 
						
						
						
						
					 
					
						2009-11-18 15:08:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d965f0783 
					 
					
						
						
							
							Don't use SSLv2 compatible client hello if we don't tolerate legacy renegotiation  
						
						 
						
						
						
						
					 
					
						2009-11-18 14:43:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b14713c231 
					 
					
						
						
							
							Include a more meaningful error message when rejecting legacy renegotiation  
						
						 
						
						
						
						
					 
					
						2009-11-18 14:24:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						637e0ba420 
					 
					
						
						
							
							PR: 2094  
						
						 
						
						... 
						
						
						
						Submitted by: Arkadiusz Miskiewicz <arekm@maven.pl >
Approved by: steve@openssl.org 
Fix for out range of signed 32bit displacement error on newer binutils. 
						
						
					 
					
						2009-11-13 14:14:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ac37cb018 
					 
					
						
						
							
							PR: 2084  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Approved by: steve@openssl.org 
Parallel build fix. 
						
						
					 
					
						2009-11-13 14:09:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb7751b44f 
					 
					
						
						
							
							PR: 2101  
						
						 
						
						... 
						
						
						
						Submitted by: Doug Kaufman <dkaufman@rahul.net >
Approved by: steve@openssl.org 
Fixes for tests in cms-test.pl 
						
						
					 
					
						2009-11-13 14:09:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e333a8d673 
					 
					
						
						
							
							Updated from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-11-12 16:59:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						89a6daac00 
					 
					
						
						
							
							PR: 1686  
						
						 
						
						... 
						
						
						
						Submitted by: Hanno Böck <hanno@hboeck.de >
Approved by: steve@openssl.org 
Create engines dir if it doesn't already exist. 
						
						
					 
					
						2009-11-10 01:53:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7e42945918 
					 
					
						
						
							
							PR: 2091  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Kaiser <lists@kaiser.cx >, Stephen Henson
Approved by: steve@openssl.org 
If an OID has no short name or long name return the numerical representation. 
						
						
					 
					
						2009-11-10 01:00:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b61a87b26c 
					 
					
						
						
							
							check new_der for NULL too  
						
						 
						
						
						
						
					 
					
						2009-11-10 00:46:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c6b141931 
					 
					
						
						
							
							PR: 2090  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Kaiser <lists@kaiser.cx >, Stephen Henson
Approved by: steve@openssl.org 
Improve error checking in asn1_gen.c 
						
						
					 
					
						2009-11-10 00:40:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						af13c50d51 
					 
					
						
						
							
							Fix wrong function codes and duplicate codes  
						
						 
						
						
						
						
					 
					
						2009-11-09 18:21:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						65c2397fce 
					 
					
						
						
							
							Remove BF_PTR2 from configuration: it doesn't improve performance any more and causes gcc warnings about arrays out of range  
						
						 
						
						
						
						
					 
					
						2009-11-09 14:14:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16e7efe3c8 
					 
					
						
						
							
							use OPENSSL_assert() and not assert()  
						
						 
						
						
						
						
					 
					
						2009-11-08 17:07:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c2b78c31d6 
					 
					
						
						
							
							First cut of renegotiation extension.  
						
						 
						
						
						
						
					 
					
						2009-11-08 14:51:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1dc0336dd 
					 
					
						
						
							
							Re-revert (re-insert?) temporary change that made renegotiation work again  
						
						 
						
						... 
						
						
						
						and add a proper fix: specifically if it is a new session don't send the old
TLS ticket, send a zero length ticket to request a new session. 
						
						
					 
					
						2009-11-08 14:30:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d99a35f275 
					 
					
						
						
							
							Revert renegotiation-breaking change.  
						
						 
						
						
						
						
					 
					
						2009-11-08 12:14:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						949fbf073a 
					 
					
						
						
							
							Disable renegotiation.  
						
						 
						
						
						
						
					 
					
						2009-11-05 11:28:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						6156be4da3 
					 
					
						
						
							
							Fix compilation problem.  
						
						 
						
						
						
						
					 
					
						2009-11-05 10:18:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7d4325655 
					 
					
						
						
							
							PR: 2089  
						
						 
						
						... 
						
						
						
						Submitted by: David Woodhouse <dwmw2@infradead.org >
Approved by: steve@openssl.org 
Use EVP_MD_size() in OpenSSL 0.9.8. 
						
						
					 
					
						2009-11-04 12:58:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9f81ffe433 
					 
					
						
						
							
							PR: 2089  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS Fragment size bug fix. 
						
						
					 
					
						2009-11-02 13:36:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8164930816 
					 
					
						
						
							
							Generate stateless session ID just after the ticket is received instead  
						
						 
						
						... 
						
						
						
						of when a session is loaded. This will mean that applications that
just hold onto SSL_SESSION structures and never call d2i_SSL_SESSION()
will still work. 
						
						
					 
					
						2009-10-30 14:07:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2a8834cf89 
					 
					
						
						
							
							Fix stateless session resumption so it can coexist with SNI  
						
						 
						
						
						
						
					 
					
						2009-10-30 13:28:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e6e11f4ec3 
					 
					
						
						
							
							Don't attempt session resumption if no ticket is present and session  
						
						 
						
						... 
						
						
						
						ID length is zero. 
						
						
					 
					
						2009-10-28 19:53:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						452e41562c 
					 
					
						
						
							
							PR: 2085  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Approved by: steve@openssl.org 
Change domd test to match 1.0.0+ version: check $MAKEDEPEND
ends in "gcc" to support cross compilers. 
						
						
					 
					
						2009-10-28 19:29:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c6dd96aed 
					 
					
						
						
							
							Don't replace whole AR line  
						
						 
						
						
						
						
					 
					
						2009-10-28 15:33:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						23a4ccd178 
					 
					
						
						
							
							PR: 2081  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Approved by: steve@openssl.org 
Respect AR and RANLIB environment variables if set. 
						
						
					 
					
						2009-10-28 14:00:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2b4d877a27 
					 
					
						
						
							
							PR: 2080  
						
						 
						
						... 
						
						
						
						Submitted by: Mike Frysinger <vapier@gentoo.org >
Approved by: steve@openssl.org 
Respect MAKE environment variable if set. 
						
						
					 
					
						2009-10-28 13:56:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d916f92d6f 
					 
					
						
						
							
							PR: 2078  
						
						 
						
						... 
						
						
						
						Submitted by: Dale Anderson <dra@redevised.net >
Approved by: steve@openssl.org 
Corrections to bn_internal documentation. 
						
						
					 
					
						2009-10-28 13:52:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b9b5134e19 
					 
					
						
						
							
							Pick up install prefix from the environment, if set.  
						
						 
						
						
						
						
					 
					
						2009-10-18 14:24:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ef6fdab63 
					 
					
						
						
							
							PR: 2074  
						
						 
						
						... 
						
						
						
						Submitted by: Bram Neijt <bneijt@gmail.com >
Approved by: steve@openssl.org 
Typo: "contet". 
						
						
					 
					
						2009-10-16 15:29:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3a0b6de4d0 
					 
					
						
						
							
							PR: 2073  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Approved by: steve@openssl.org 
Don't access freed SSL_CTX in SSL_free(). 
						
						
					 
					
						2009-10-16 13:42:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						08896dc0bd 
					 
					
						
						
							
							CROSS_COMPILE: don't override command line option from environment  
						
						 
						
						
						
						
					 
					
						2009-10-15 23:45:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef62799783 
					 
					
						
						
							
							PR: 1847  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Approved by: steve@openssl.org 
Integrated patches to CA.sh to bring it into line with CA.pl functionality. 
						
						
					 
					
						2009-10-15 17:28:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8196257f00 
					 
					
						
						
							
							Cross compilation updates.  
						
						 
						
						
						
						
					 
					
						2009-10-15 14:14:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac923d3377 
					 
					
						
						
							
							Backport cross compilation options from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-10-15 13:02:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0ec529ac82 
					 
					
						
						
							
							Allow uname values to be overridden by the environment  
						
						 
						
						
						
						
					 
					
						2009-10-15 12:58:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d5b0c872d8 
					 
					
						
						
							
							Quote filenames in case they contain spaces. Print out supported values  
						
						 
						
						... 
						
						
						
						for --enable and --disable. 
						
						
					 
					
						2009-10-15 12:30:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e8026b65a 
					 
					
						
						
							
							Oops!  
						
						 
						
						
						
						
					 
					
						2009-10-05 13:32:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						381a9f04a0 
					 
					
						
						
							
							Fix unitialized warnings  
						
						 
						
						
						
						
					 
					
						2009-10-04 16:53:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7050b4424 
					 
					
						
						
							
							Fix warnings about ignoring fgets return value  
						
						 
						
						
						
						
					 
					
						2009-10-04 16:43:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						91ca332058 
					 
					
						
						
							
							Prevent ignored return value warning  
						
						 
						
						
						
						
					 
					
						2009-10-04 14:04:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff095a8ac8 
					 
					
						
						
							
							Prevent aliasing warning  
						
						 
						
						
						
						
					 
					
						2009-10-04 14:02:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae37f9f3a2 
					 
					
						
						
							
							PR: 2062  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BN_rand error handling in bntest.c 
						
						
					 
					
						2009-10-01 00:22:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						95d66bd867 
					 
					
						
						
							
							PR: 2059  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct EVP_SealInit error handling in pem_seal.c 
						
						
					 
					
						2009-10-01 00:18:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d73e9d8e8 
					 
					
						
						
							
							PR: 2056  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_wirte error handling in asn1_par.c 
						
						
					 
					
						2009-10-01 00:12:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb5a4bbaa7 
					 
					
						
						
							
							PR: 2055  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_ctrl error handling in s2_srvr.c 
						
						
					 
					
						2009-10-01 00:07:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d402f6b66f 
					 
					
						
						
							
							PR: 2054  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_ctrl error handling 
						
						
					 
					
						2009-10-01 00:03:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						36a38a7a27 
					 
					
						
						
							
							PR: 2063  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_write error handling in ocsp_prn.c 
						
						
					 
					
						2009-09-30 23:59:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2a4dc7e505 
					 
					
						
						
							
							PR: 2057  
						
						 
						
						... 
						
						
						
						Submitted by: Julia Lawall <julia@diku.dk >
Approved by: steve@openssl.org 
Correct BIO_write, BIO_printf, i2a_ASN1_INTEGER and i2a_ASN1_OBJECT
error handling in OCSP print routines. 
						
						
					 
					
						2009-09-30 23:56:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4e92353d23 
					 
					
						
						
							
							Make it build, plus make depend.  
						
						 
						
						
						
						
					 
					
						2009-09-27 14:04:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0badc909ae 
					 
					
						
						
							
							PR: 2050  
						
						 
						
						... 
						
						
						
						Submitted by: Michael Tuexen <tuexen@fh-muenster.de >
Approved by: steve@openssl.org 
Fix handling of ENOTCONN and EMSGSIZE for dgram BIOs. 
						
						
					 
					
						2009-09-22 11:33:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3cc52ee97a 
					 
					
						
						
							
							Don't set non fips allow flags when calling RSA_new() and DSA_new().  
						
						 
						
						
						
						
					 
					
						2009-09-22 11:28:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						822da9ccc3 
					 
					
						
						
							
							Stop unused variable warning.  
						
						 
						
						
						
						
					 
					
						2009-09-20 13:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						96e20179e4 
					 
					
						
						
							
							Typo presumably...  
						
						 
						
						
						
						
					 
					
						2009-09-20 12:53:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1dfa26bd84 
					 
					
						
						
							
							Ooops, missing close quote  
						
						 
						
						
						
						
					 
					
						2009-09-20 12:46:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e6c97703c 
					 
					
						
						
							
							Don't use __try+__except unless on VC++  
						
						 
						
						
						
						
					 
					
						2009-09-20 12:38:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0f6e0c1e7 
					 
					
						
						
							
							add version info for VC-WIN64I too  
						
						 
						
						
						
						
					 
					
						2009-09-20 11:40:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						edaa7a599a 
					 
					
						
						
							
							PR: 2048  
						
						 
						
						... 
						
						
						
						Submitted by: john blair <mailtome200420032002@yahoo.com >
Approved by: steve@openssl.org 
Add version info in VC-WIN64A too. 
						
						
					 
					
						2009-09-19 23:01:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b95629db1 
					 
					
						
						
							
							PR: 2039  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS listen bug fix, 
						
						
					 
					
						2009-09-15 23:11:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						afff063a14 
					 
					
						
						
							
							Add CHANGES entry.  
						
						 
						
						
						
						
					 
					
						2009-09-13 11:23:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1246e1ad7 
					 
					
						
						
							
							Submitted by:  Julia Lawall <julia@diku.dk>  
						
						 
						
						... 
						
						
						
						The functions ENGINE_ctrl(), OPENSSL_isservice(),
CMS_get1_RecipientRequest() and RAND_bytes() can return <=0 on error fix
so the return code is checked correctly. 
						
						
					 
					
						2009-09-13 11:20:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df0b451d91 
					 
					
						
						
							
							PR: 2023  
						
						 
						
						... 
						
						
						
						Submitted by: James Beckett <jmb.openssl@nospam.hackery.net >, steve
Approved by: steve@openssl.org 
Fix documentation errors in d2i_X509 manual pages. 
						
						
					 
					
						2009-09-12 23:34:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						07cb0a82d1 
					 
					
						
						
							
							PR: 2025  
						
						 
						
						... 
						
						
						
						Submitted by: Tomas Mraz <tmraz@redhat.com >
Approved by: steve@openssl.org 
Constify SSL_CIPHER_description 
						
						
					 
					
						2009-09-12 23:18:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f2671f8ac4 
					 
					
						
						
							
							PR: 1411  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Allow use of trusted certificates in SSL_CTX_use_chain_file() 
						
						
					 
					
						2009-09-12 23:09:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43e9e1a160 
					 
					
						
						
							
							PR: 2033  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS listen support. 
						
						
					 
					
						2009-09-09 17:06:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d0969d24cf 
					 
					
						
						
							
							Add new option --strict-warnings to Configure script. This is used to add  
						
						 
						
						... 
						
						
						
						in devteam warnings into other configurations. 
						
						
					 
					
						2009-09-09 16:30:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf51a0dccb 
					 
					
						
						
							
							Seed PRNG with DSA and ECDSA digests for additional protection against  
						
						 
						
						... 
						
						
						
						possible PRNG state duplication. 
						
						
					 
					
						2009-09-09 12:07:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48b30bf0e2 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2009-09-06 16:14:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						17b08b6a64 
					 
					
						
						
							
							PR: 1644  
						
						 
						
						... 
						
						
						
						Submitted by: steve@openssl.org 
Fix to make DHparams_dup() et al work in C++.
For 0.9.8, we just change the macro to avoid making incompatible changes to
the API. 
						
						
					 
					
						2009-09-06 15:46:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						197ab47bdd 
					 
					
						
						
							
							PR: 2028  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Fix DTLS cookie management bugs. 
						
						
					 
					
						2009-09-04 17:53:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8cce0babe 
					 
					
						
						
							
							PR: 2022  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Fix DTLS record header length bug. 
						
						
					 
					
						2009-09-04 16:42:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11d655ef40 
					 
					
						
						
							
							Correction: salt is now default  
						
						 
						
						
						
						
					 
					
						2009-09-04 12:26:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1da61e8051 
					 
					
						
						
							
							PR: 2009  
						
						 
						
						... 
						
						
						
						Submitted by: "Alexei Khlebnikov" <alexei.khlebnikov@opera.com >
Approved by: steve@openssl.org 
Avoid memory leak and fix error reporting in d2i_SSL_SESSION(). NB: although
the ticket mentions buffer overruns this isn't a security issue because
the SSL_SESSION structure is generated internally and it should never be
possible to supply its contents from an untrusted application (this would
among other things destroy session cache security). 
						
						
					 
					
						2009-09-02 13:20:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da6ce18279 
					 
					
						
						
							
							PR: 2006  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Do not use multiple DTLS records for a single user message 
						
						
					 
					
						2009-08-26 11:54:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98f43a173b 
					 
					
						
						
							
							Oops.  
						
						 
						
						
						
						
					 
					
						2009-08-26 11:45:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c202eda634 
					 
					
						
						
							
							PR: 2015  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Define LIBDIR properly. 
						
						
					 
					
						2009-08-26 11:44:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f78bcb8945 
					 
					
						
						
							
							Moving up the inclusion of e_os.h was a bad idea.  
						
						 
						
						... 
						
						
						
						Put it back where it was and place an inclusion of e_os2.h to get platform
macros defined... 
						
						
					 
					
						2009-08-26 11:21:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2a918d4cc0 
					 
					
						
						
							
							Make sure ENGINES can be separately compiled as well.  
						
						 
						
						... 
						
						
						
						Make sure _XOPEN_SOURCE_EXTENDED is defined in opensslconf.h
Submitted by Zoltan Arpadffy <zoli@polarhome.com > 
						
						
					 
					
						2009-08-25 07:30:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2c83b24cad 
					 
					
						
						
							
							Remove tmdiff.h from EXHEADERS as it doesn't exist.  
						
						 
						
						... 
						
						
						
						Don't have separate installation directory variables for VAX and AXP.
Submitted by Zoltan Arpadffy <zoli@polarhome.com > 
						
						
					 
					
						2009-08-25 07:28:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e75445f688 
					 
					
						
						
							
							Add CMS to the list of applications.  
						
						 
						
						... 
						
						
						
						Define EXE_DIR earlier.
Make sure S_SOCKET also gets compiled with _POSIX_C_SOURCE defined.
Submitted by Zoltan Arpadffy <zoli@polarhome.com > 
						
						
					 
					
						2009-08-25 07:26:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						df51d79ec4 
					 
					
						
						
							
							Move up the inclusion of e_os.h so OPENSSL_SYS_VMS_DECC has a chance  
						
						 
						
						... 
						
						
						
						to be properly defined. 
						
						
					 
					
						2009-08-25 07:24:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c21a427a14 
					 
					
						
						
							
							Make it possible to compile non-assembler routines on AXP as well.  
						
						 
						
						... 
						
						
						
						Submitted by Zoltan Arpadffy <arpadffy@polarhome.com > 
						
						
					 
					
						2009-08-25 07:22:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c6e4ef2c6e 
					 
					
						
						
							
							Make engines compile on VMS for ia64 as well.  
						
						 
						
						... 
						
						
						
						Parse file types in a more secure manner.
Submitted by sms@antinode.info  (Steven M. Schweda) 
						
						
					 
					
						2009-08-25 07:19:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6450908a35 
					 
					
						
						
							
							file ia64.opt was added on branch OpenSSL_0_9_8-stable on 2009-08-25 07:19:25 +0000  
						
						 
						
						
						
						
					 
					
						2009-08-25 07:19:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a91cb2103d 
					 
					
						
						
							
							file alpha.opt was added on branch OpenSSL_0_9_8-stable on 2009-08-25 07:19:24 +0000  
						
						 
						
						
						
						
					 
					
						2009-08-25 07:19:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3acd3158e9 
					 
					
						
						
							
							Correct some typos and missing things.  
						
						 
						
						... 
						
						
						
						Submitted by Arpadffy Zoltan <Zoltan.Arpadffy@scientificgames.se > 
						
						
					 
					
						2009-08-25 07:17:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8a04c6f894 
					 
					
						
						
							
							Include proper header files for time functions.  
						
						 
						
						... 
						
						
						
						Submitted by Arpadffy Zoltan <Zoltan.Arpadffy@scientificgames.se > 
						
						
					 
					
						2009-08-25 07:10:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						745565c69f 
					 
					
						
						
							
							Use SHA1 and not deprecated MD5 in demos.  
						
						 
						
						
						
						
					 
					
						2009-08-15 10:50:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbc4a24633 
					 
					
						
						
							
							PR: 1997  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS timeout handling fix. 
						
						
					 
					
						2009-08-13 15:14:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4775a89760 
					 
					
						
						
							
							Update README with bug report and contribution details.  
						
						 
						
						
						
						
					 
					
						2009-08-12 16:44:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3008a7d819 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2009-08-10 15:52:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						233f758523 
					 
					
						
						
							
							PR: 1999  
						
						 
						
						... 
						
						
						
						Submitted by: "Bayram Kurumahmut" <kbayram@ubicom.com >
Approved by: steve@openssl.org 
Don't use HAVE_FORK in apps/speed.c it can conflict with configured version. 
						
						
					 
					
						2009-08-10 15:30:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3af16cf694 
					 
					
						
						
							
							Backport GeneralizedTime fractional seconds support from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-08-10 15:15:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						985b5ee735 
					 
					
						
						
							
							PR: 2003  
						
						 
						
						... 
						
						
						
						Make it possible to install OpenSSL in directories with name other
than "lib" for example "lib64". Based on patch from Jeremy Utley. 
						
						
					 
					
						2009-08-10 14:37:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4df7ade829 
					 
					
						
						
							
							Quote $(CC) in a few places so spaces in CC work properly.  
						
						 
						
						
						
						
					 
					
						2009-08-10 11:52:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						932858d5f9 
					 
					
						
						
							
							Oops, fips_check_rsa isn't static.  
						
						 
						
						
						
						
					 
					
						2009-08-09 16:42:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c4b3503b4b 
					 
					
						
						
							
							Fix signed/unsigned warnings and make several functions static.  
						
						 
						
						
						
						
					 
					
						2009-08-09 16:02:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f871545f7f 
					 
					
						
						
							
							Stop signed/unsigned warning.  
						
						 
						
						
						
						
					 
					
						2009-08-09 15:51:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						136b5dc7c7 
					 
					
						
						
							
							Add missing CHANGES entry for OID 0x80 fix.  
						
						 
						
						
						
						
					 
					
						2009-08-09 15:40:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						759b287f15 
					 
					
						
						
							
							Add COMP error strings.  
						
						 
						
						
						
						
					 
					
						2009-08-09 14:51:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5fffb5b3d9 
					 
					
						
						
							
							Backport modified version of MIME wrapper for PKCS#7. This ensures  
						
						 
						
						... 
						
						
						
						correct values for micalg among other things. 
						
						
					 
					
						2009-08-09 14:49:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						17620eec4c 
					 
					
						
						
							
							Fix error codes.  
						
						 
						
						
						
						
					 
					
						2009-08-06 16:23:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						059230b320 
					 
					
						
						
							
							Reject leading 0x80 in OID subidentifiers.  
						
						 
						
						
						
						
					 
					
						2009-08-06 16:22:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19dac35e5f 
					 
					
						
						
							
							Make no-comp compile again under WIN32.  
						
						 
						
						
						
						
					 
					
						2009-08-05 15:48:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f5fe2a9f6c 
					 
					
						
						
							
							Skip CE config if we don't need it instead of producing an error message.  
						
						 
						
						
						
						
					 
					
						2009-07-28 12:51:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d36e9d160b 
					 
					
						
						
							
							Make genrsa work again.  
						
						 
						
						
						
						
					 
					
						2009-07-26 16:06:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e58e78cab2 
					 
					
						
						
							
							Update ordinals and add NETWARE platform to handle renamed asc2uni functions.  
						
						 
						
						
						
						
					 
					
						2009-07-24 14:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b0080e3817 
					 
					
						
						
							
							PR: 1992  
						
						 
						
						... 
						
						
						
						Submitted by: Ger Hobbelt <ger@hobbelt.com >
Approved by: steve@openssl.org 
RAND_poll() and CreateToolhelp32Snapshot() stability for WIN32. 
						
						
					 
					
						2009-07-24 13:47:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d67d79273 
					 
					
						
						
							
							Ooops, missing space.  
						
						 
						
						
						
						
					 
					
						2009-07-24 13:35:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83ece9f028 
					 
					
						
						
							
							Update TABLE.  
						
						 
						
						
						
						
					 
					
						2009-07-24 13:26:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cec136c30d 
					 
					
						
						
							
							Add additional debug targets.  
						
						 
						
						
						
						
					 
					
						2009-07-24 13:26:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ded8aff2c8 
					 
					
						
						
							
							PR: 1990  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS socket timeout bug fix. 
						
						
					 
					
						2009-07-24 13:06:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76a268a43f 
					 
					
						
						
							
							PR: 1993  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS cookie resumption and typo fix. 
						
						
					 
					
						2009-07-24 11:50:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6563b02980 
					 
					
						
						
							
							Submitted by: Doug Claar <dougopenssl@claar.org>  
						
						 
						
						... 
						
						
						
						Approved by: steve@openssl.org 
Add support for x86_64 and rpmbuild 4.1 in openssl.spec 
						
						
					 
					
						2009-07-24 11:34:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						32d4496c1e 
					 
					
						
						
							
							PR: 1989  
						
						 
						
						... 
						
						
						
						Submitted by: Viktor Szakáts <harbour.01@syenar.hu >
Approved by: steve@openssl.org 
Too few arguments in definition of BIO_get_cont_int_port macro. 
						
						
					 
					
						2009-07-24 11:24:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b26e53c59 
					 
					
						
						
							
							PR: 1991  
						
						 
						
						... 
						
						
						
						Submitted by: Michael Tuexen <tuexen@fh-muenster.de >
Approved by: steve@openssl.org 
Print DTLS message types out with -msg arg. 
						
						
					 
					
						2009-07-24 11:14:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7cf69ed544 
					 
					
						
						
							
							PR: 1994  
						
						 
						
						... 
						
						
						
						Submitted by: Gilles PION <gpion@lfdj.com >
Approved by: steve@openssl.org 
Remove extra $. 
						
						
					 
					
						2009-07-24 11:09:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8b634ba029 
					 
					
						
						
							
							OSX DSO fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-07-16 09:58:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						526228b78e 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-07-15 11:03:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						34d01a3b20 
					 
					
						
						
							
							PR: 1984  
						
						 
						
						... 
						
						
						
						Submitted by: Michael Tüxen <Michael.Tuexen@lurchi.franken.de >
Approved by: steve@openssl.org 
PR#1984 DTLS fix for 0.9.8. 
						
						
					 
					
						2009-07-13 22:37:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						856f3005de 
					 
					
						
						
							
							Document MD2 deprecation.  
						
						 
						
						
						
						
					 
					
						2009-07-13 11:53:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e2a14002e 
					 
					
						
						
							
							Delete invalid reference to HMAC_CTX.  
						
						 
						
						
						
						
					 
					
						2009-07-11 22:35:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7852c6b075 
					 
					
						
						
							
							Update from HEAD  
						
						 
						
						
						
						
					 
					
						2009-07-11 22:30:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c5f3606d1 
					 
					
						
						
							
							Remove MD2 from digest algorithm table. This follows the recommendation in  
						
						 
						
						... 
						
						
						
						several places that it is not used in new applications. 
						
						
					 
					
						2009-07-08 08:33:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1649489834 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2009-07-04 11:56:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b51291cba8 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-07-04 11:49:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b29b576957 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-07-01 11:32:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						abe389fd28 
					 
					
						
						
							
							Make text line up.  
						
						 
						
						
						
						
					 
					
						2009-06-30 22:29:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e7e7f5de4b 
					 
					
						
						
							
							PR: 1960  
						
						 
						
						... 
						
						
						
						Approved by: steve@openssl.org 
Encode compression id in {i2d,d2i}_SSL_SESSION(). 
						
						
					 
					
						2009-06-30 22:20:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3dfa7416cd 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-06-30 20:55:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d733ef7a69 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-30 11:42:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						17e01d24bb 
					 
					
						
						
							
							PR: 1822  
						
						 
						
						... 
						
						
						
						Submitted by: "Philip A. Prindeville" <philipp_subx@redfish-solutions.com >
Reviewed by: steve@openssl.org 
Use $(EXE_EXT) when invoking fips_standalone_sha1 
						
						
					 
					
						2009-06-30 11:32:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f67f815624 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-30 11:22:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab8fe43fa2 
					 
					
						
						
							
							PR: 1942  
						
						 
						
						... 
						
						
						
						Submitted by: David Woodhouse <dwmw2@infradead.org >
Approved by: steve@openssl.org 
Replace ad-hoc chain builder with X509_verify_cert(). 
						
						
					 
					
						2009-06-28 16:23:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e4c2225ed 
					 
					
						
						
							
							Oops, moved too much.  
						
						 
						
						
						
						
					 
					
						2009-06-26 23:56:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						167d2a1411 
					 
					
						
						
							
							PR: 1961  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Gerbershagen <martin.gerbershagen@nsn.com >
Approved by: steve@openssl.org 
Avoid memory leak if RAND_bytes() fails. 
						
						
					 
					
						2009-06-26 22:52:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f4802a14e 
					 
					
						
						
							
							PR: 1949  
						
						 
						
						... 
						
						
						
						Submitted by: David.Smith@cern.ch 
Approved by: steve@openssl.org 
When checking whether to flush the output BIO use BIO_CTRL_WPENDING instead
of BIO_CTRL_INFO. In most cases this will have no effect since the following
BIOs wont buffer. In the case of a following buffering BIO this will check
for any pending data in the whole chain and not just the single BIO.
See:
https://issues.apache.org/bugzilla/show_bug.cgi?id=46952 
for a detailed analysis of this issue. 
						
						
					 
					
						2009-06-26 15:02:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9aecc3e5ff 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-26 11:34:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8a4a5bcba 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-06-25 17:12:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6daac534d7 
					 
					
						
						
							
							Ooops, apply PR  #1946  to 0.9.8 too.  
						
						 
						
						
						
						
					 
					
						2009-06-22 10:32:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						79649d380e 
					 
					
						
						
							
							Fix broken config entries.  
						
						 
						
						
						
						
					 
					
						2009-06-17 12:11:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						51ebaa9f82 
					 
					
						
						
							
							Correct CHANGES entry.  
						
						 
						
						
						
						
					 
					
						2009-06-17 11:58:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						efaa569c3b 
					 
					
						
						
							
							PR: 1943  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Approved by: steve@openssl.org 
Rename uni2asc and asc2uni on Netware to avoid a name clash. 
						
						
					 
					
						2009-06-17 11:55:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						15684f58c2 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-17 11:49:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e6c24ae4b 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-06-17 11:26:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0dc1b3c1fb 
					 
					
						
						
							
							PR: 1957  
						
						 
						
						... 
						
						
						
						Submitted by: Mark Ashley <mark@ibiblio.org >
Reviewed by: steve@openssl.org 
Quote FIPSLD_CC and CC in Makefiles. 
						
						
					 
					
						2009-06-16 16:50:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1e53b797f6 
					 
					
						
						
							
							Don't check self-signed signature in X509_verify_cert(), the check just  
						
						 
						
						... 
						
						
						
						wastes processing time and doesn't add any security. 
						
						
					 
					
						2009-06-15 14:52:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ddf691244 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-05 15:05:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						78074baadd 
					 
					
						
						
							
							Fix from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-06-05 11:53:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7457642b8c 
					 
					
						
						
							
							PR: 1937  
						
						 
						
						... 
						
						
						
						Submitted by: Mark Phalan <Mark.Phalan@Sun.COM >
Reviewed by: steve@openssl.org 
Fix misuse of st_mode field in struct stat. 
						
						
					 
					
						2009-06-02 11:31:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d1e107702b 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-06-02 11:23:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19503ca653 
					 
					
						
						
							
							PR: 1939  
						
						 
						
						... 
						
						
						
						Submitted by: Sean Boudreau <seanb@qnx.com >
Reviewed by: steve@openssl.org 
Better QNX6 support. 
						
						
					 
					
						2009-06-02 11:19:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14089b1d0f 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-06-02 11:06:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						0b8eca58b9 
					 
					
						
						
							
							Update changelog to show fix for PR1679 as per Tomas Hoger's testing:  
						
						 
						
						... 
						
						
						
						http://thread.gmane.org/gmane.comp.security.oss.general/1769/focus=1814  
						
						
					 
					
						2009-06-02 09:20:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2f425a06a 
					 
					
						
						
							
							PR: 1944  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter <lists@gknw.net >
Reviewed by: steve@openssl.org 
Fix gcc warning on mingw. 
						
						
					 
					
						2009-06-01 12:18:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4930f8bbd9 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-06-01 12:14:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5668db68b 
					 
					
						
						
							
							Use correct values for lookup method.  
						
						 
						
						
						
						
					 
					
						2009-05-29 14:01:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						996b80f990 
					 
					
						
						
							
							Oops, forgot #endif...  
						
						 
						
						
						
						
					 
					
						2009-05-29 12:09:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1998f60546 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-29 12:00:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						13a4808ca4 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2009-05-28 20:47:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						a176be48a2 
					 
					
						
						
							
							Add the corresponding CVE names to the CHANGES entry for 0.9.8 branch  
						
						 
						
						
						
						
					 
					
						2009-05-26 08:21:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f47bce27e3 
					 
					
						
						
							
							Add CHANGES entries for security relate issues PR#1923, PR#1930 and PR#1931.  
						
						 
						
						
						
						
					 
					
						2009-05-18 17:34:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f86d65110d 
					 
					
						
						
							
							0.9.8 version of PR#1931 fix.  
						
						 
						
						
						
						
					 
					
						2009-05-18 16:22:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4730ea8a38 
					 
					
						
						
							
							Fix from 1.0.0-stable branch.  
						
						 
						
						
						
						
					 
					
						2009-05-18 16:12:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e82dfdf2d 
					 
					
						
						
							
							Formatting fix.  
						
						 
						
						
						
						
					 
					
						2009-05-17 16:48:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7d0d35a13 
					 
					
						
						
							
							Modified PR#1929 update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-17 16:42:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e12ceb2c92 
					 
					
						
						
							
							Reverted fix to PR#1931.. breaks compilation in 0.9.8.  
						
						 
						
						
						
						
					 
					
						2009-05-17 16:28:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8d23950a0 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-05-17 14:48:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d7c86198d9 
					 
					
						
						
							
							Stupid typo  
						
						 
						
						
						
						
					 
					
						2009-05-17 07:22:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76428da729 
					 
					
						
						
							
							Fix from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-16 16:23:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6bf4ca0840 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-16 16:18:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						efa59b8d59 
					 
					
						
						
							
							Updates from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-16 15:51:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1a2bfaaa6 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-05-15 23:07:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						48f48d96ce 
					 
					
						
						
							
							Functional VMS changes submitted by sms@antinode.info (Steven M. Schweda).  
						
						 
						
						... 
						
						
						
						Thank you\!
(note: not tested for now, a few nightly builds should give indications though) 
						
						
					 
					
						2009-05-15 16:37:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						085cb7cac0 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2009-05-15 16:15:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9874ff33c3 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2009-05-15 16:05:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						73cfd9cce9 
					 
					
						
						
							
							Have mkdef.pl also handle VAX and Non-VAX differences for VMS  
						
						 
						
						
						
						
					 
					
						2009-05-15 16:01:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3166d16f06 
					 
					
						
						
							
							Add a comment about libeay.num and ssleay.num  
						
						 
						
						
						
						
					 
					
						2009-05-15 16:00:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						26b82246b1 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-05-13 11:52:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						277ba3ebd2 
					 
					
						
						
							
							e_capi.c: update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-05-05 19:18:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3e9b2042d9 
					 
					
						
						
							
							Update from HEAD  
						
						 
						
						
						
						
					 
					
						2009-05-05 08:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d577d7eb0 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-28 22:02:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						05ee0523c1 
					 
					
						
						
							
							Update from HEAD  
						
						 
						
						
						
						
					 
					
						2009-04-28 13:11:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43f392c9a1 
					 
					
						
						
							
							Fix to escape backslashes in prefix  
						
						 
						
						
						
						
					 
					
						2009-04-26 15:51:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						01cb2049e3 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-22 17:37:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a224fe14e9 
					 
					
						
						
							
							PR: 1751  
						
						 
						
						... 
						
						
						
						Submitted by: David Woodhouse <dwmw2@infradead.org >
Approved by: steve@openssl.org 
Compatibility patches for Cisco VPN client DTLS. 
						
						
					 
					
						2009-04-19 18:08:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00d5a5ff55 
					 
					
						
						
							
							Update .cvsignore  
						
						 
						
						
						
						
					 
					
						2009-04-19 15:17:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						420312cec5 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-04-19 15:16:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3c17fa3325 
					 
					
						
						
							
							PQGVer support.  
						
						 
						
						
						
						
					 
					
						2009-04-19 14:04:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e3424084a0 
					 
					
						
						
							
							Minor format change to match expected PQGVer format.  
						
						 
						
						
						
						
					 
					
						2009-04-19 13:44:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d9a55422c7 
					 
					
						
						
							
							Add DES3 CFB1 mode tests.  
						
						 
						
						
						
						
					 
					
						2009-04-18 22:41:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						374941f727 
					 
					
						
						
							
							Fixes to make DES3 cfb1 work.  
						
						 
						
						
						
						
					 
					
						2009-04-18 22:41:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						caeb429055 
					 
					
						
						
							
							Update from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-16 16:43:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b00c36e366 
					 
					
						
						
							
							PR: 1829  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS timer bug fix from 1.0.0-stable with fixes. 
						
						
					 
					
						2009-04-14 15:20:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1f9a128519 
					 
					
						
						
							
							PR: 1647  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS Renogotiation bug fix. 
						
						
					 
					
						2009-04-14 14:28:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						18df6b30b1 
					 
					
						
						
							
							Fix from 1.0.0-stable.  
						
						 
						
						
						
						
					 
					
						2009-04-08 15:58:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0d399f97dd 
					 
					
						
						
							
							Submitted by:  Darryl Miles <darryl-mailinglists@netbauds.net>  
						
						 
						
						... 
						
						
						
						Approved by: steve@openssl.org 
Handle non-blocking I/O properly in SSL_shutdown() call. 
						
						
					 
					
						2009-04-07 16:28:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3fdc2c906d 
					 
					
						
						
							
							PR: 1795  
						
						 
						
						... 
						
						
						
						Submitted by: Peter Edwards <peter.edwards@vordel.com >
Approved by: steve@openssl.org 
Avoid race condition by sorting cipher list straight away. 
						
						
					 
					
						2009-04-07 12:10:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a78ded0b61 
					 
					
						
						
							
							PR: 1700  
						
						 
						
						... 
						
						
						
						Submitted by: "Robbins, Aharon" <aharon.robbins@intel.com >
Approved by: steve@openssl.org 
#undef X509_EXTENSIONS for WIN32 too. 
						
						
					 
					
						2009-04-03 16:54:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0a629ddbd6 
					 
					
						
						
							
							Update from 1.0.0-stable  
						
						 
						
						
						
						
					 
					
						2009-04-03 16:28:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						353cb367e4 
					 
					
						
						
							
							PR: 1616  
						
						 
						
						... 
						
						
						
						Submitted by: Dequin_Eric@emc.com 
Approved by: steve@openssl.org 
Check tree->levels to ensure malloc worked. 
						
						
					 
					
						2009-04-03 11:36:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6252f3bc7c 
					 
					
						
						
							
							PR: 1827  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Fix application data in handshake bug. 
						
						
					 
					
						2009-04-02 22:34:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e319926d7 
					 
					
						
						
							
							PR: 1828  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Fix DTLS retransmission bug. 
						
						
					 
					
						2009-04-02 22:32:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e4f456918f 
					 
					
						
						
							
							PR: 1826  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
Client random bug fix. 
						
						
					 
					
						2009-04-02 22:28:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c342341ea1 
					 
					
						
						
							
							Ooops, revert patch... due to non-portable gettimeofday call.  
						
						 
						
						
						
						
					 
					
						2009-04-02 22:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d396bee8e 
					 
					
						
						
							
							PR: 1829  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS timer bug fix. 
						
						
					 
					
						2009-04-02 22:16:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a9427c2536 
					 
					
						
						
							
							PR: 1838  
						
						 
						
						... 
						
						
						
						Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de >
Approved by: steve@openssl.org 
DTLS fragment bug. 
						
						
					 
					
						2009-04-02 22:12:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7a746ecf3e 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2009-03-25 22:22:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aca8bf43ce 
					 
					
						
						
							
							Submitted by: Ilya O. <vrghost@gmail.com>  
						
						 
						
						... 
						
						
						
						Approved by: steve@openssl.org 
Add 2.5.4.* OIDs. 
						
						
					 
					
						2009-03-25 19:01:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7de0df694f 
					 
					
						
						
							
							Prepare for next version.  
						
						 
						
						
						
						
					 
					
						2009-03-25 13:02:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						15d3cd4680 
					 
					
						
						
							
							Aaargh.... wrong version number....  
						
						 
						
						
						
						
					 
					
						2009-03-25 12:08:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da4fb3cb39 
					 
					
						
						
							
							Make update.  
						
						 
						
						
						
						
					 
					
						2009-03-25 10:59:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e10051ef3f 
					 
					
						
						
							
							Prepare for 0.9.8k release.  
						
						 
						
						
						
						
					 
					
						2009-03-25 10:46:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c60dca1f95 
					 
					
						
						
							
							PR: 1868  
						
						 
						
						... 
						
						
						
						Submitted by: Paolo Ganci <Paolo.Ganci@AdNovum.CH >
Approved by: steve@openssl.org 
Don't set fields to NULL when freeing them up in ASN1 code. On some platforms
with sizeof(long) < sizeof(char *) this can cause a crash. 
						
						
					 
					
						2009-03-25 10:42:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						188abf7e2a 
					 
					
						
						
							
							Submitted by: Ivan Nestlerode <inestlerode@us.ibm.com>  
						
						 
						
						... 
						
						
						
						Approved by: steve@openssl.org 
Check return code properly in CMS_SignerInfo_verify_content(). 
						
						
					 
					
						2009-03-25 10:40:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f021b7cca6 
					 
					
						
						
							
							Reject BMPStrings and UniversalStrings of invalid length. This prevents  
						
						 
						
						... 
						
						
						
						a crash in ASN1_STRING_print_ex() which assumes they are valid. 
						
						
					 
					
						2009-03-25 10:35:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c126b73a4a 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-03-23 21:11:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3f03b3569d 
					 
					
						
						
							
							des_enc.m4, SPARC DES assembler, update from HEAD: make it Purify-friendly.  
						
						 
						
						... 
						
						
						
						As side effect it introduces duplicate of 2KB DES_SPtrans table. 
						
						
					 
					
						2009-03-16 13:43:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						07dd3bfcd4 
					 
					
						
						
							
							Oops.  
						
						 
						
						
						
						
					 
					
						2009-03-15 14:03:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37afdc953e 
					 
					
						
						
							
							Don't force S/MIME signing purpose: allow it to be overridden by store  
						
						 
						
						... 
						
						
						
						settings.
Don't set default values in X509_VERIFY_PARAM_new(): it stops parameters
being inherited properly. 
						
						
					 
					
						2009-03-15 13:36:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						044855e146 
					 
					
						
						
							
							Permit nested ASN1 string encoding but with a maximum depth to avoid  
						
						 
						
						... 
						
						
						
						stack overflow. 
						
						
					 
					
						2009-03-14 18:33:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						12379c82ba 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-03-14 12:40:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be98d6b9ad 
					 
					
						
						
							
							PR: 1863  
						
						 
						
						... 
						
						
						
						Submitted by: Ger Hobbelt <ger@hobbelt.com >
Reviewed by: steve@openssl.org 
Check return value, use OPENSSL_assert and unsigned int. 
						
						
					 
					
						2009-03-14 12:26:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						910b484975 
					 
					
						
						
							
							PR: 1846  
						
						 
						
						... 
						
						
						
						Submitted by: Andrea Schoenberg <asg@ftpproxy.org >
Reviewed by: steve@openssl.org 
Fix for HP Nonstop(Tandem) systems. 
						
						
					 
					
						2009-03-14 12:07:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1fde5b65c6 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-03-12 17:31:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c40bc0b11f 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2009-03-12 17:13:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7a0c01b41a 
					 
					
						
						
							
							PR: 1861  
						
						 
						
						... 
						
						
						
						l must be > 0 or array will be accessed out of bounds. 
						
						
					 
					
						2009-03-12 17:09:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6fe9c925d2 
					 
					
						
						
							
							PR: 1856  
						
						 
						
						... 
						
						
						
						Check return value of PKCS12_add_safes() 
						
						
					 
					
						2009-03-09 13:07:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ebdc48d5a 
					 
					
						
						
							
							PR: 1859  
						
						 
						
						... 
						
						
						
						Submitted by: Jurko Gospodneti <jurko.gospodnetic@docte.hr >
Reviewed by: steve@openssl.org 
Don't affect echo on/off state for calling scripts. 
						
						
					 
					
						2009-03-09 12:17:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						395a6c69bd 
					 
					
						
						
							
							PR: 1860  
						
						 
						
						... 
						
						
						
						Submitted by: Jurko Gospodneti <jurko.gospodnetic@docte.hr >
Reviewed by: steve@openss.org 
Make Windows build more silent. 
						
						
					 
					
						2009-03-09 12:14:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0d658ddf25 
					 
					
						
						
							
							PR: 1858  
						
						 
						
						... 
						
						
						
						Submitted by: Jurko Gospodneti <jurko.gospodnetic@docte.hr >
Reviewed by: steve@openssl.org 
Make OPENSSL_NO_SOCK work. 
						
						
					 
					
						2009-03-09 12:09:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cefa7ce284 
					 
					
						
						
							
							PR: 1857  
						
						 
						
						... 
						
						
						
						Submitted by: Jurko GospodnetiÄ <jurko.gospodnetic@docte.hr >
Reviewed by: steve@openssl.org 
Make OPENSSL_NO_FP_API work again. 
						
						
					 
					
						2009-03-09 12:06:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee4041b8bd 
					 
					
						
						
							
							PR: 1841  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Kaiser <lists@kaiser.cx >
Reviewed by: steve@openssl.org 
Remove unused code. 
						
						
					 
					
						2009-03-08 23:05:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a17f351b56 
					 
					
						
						
							
							Fix display of all 0 IPv6 address (from Rob Austein).  
						
						 
						
						
						
						
					 
					
						2009-03-08 10:48:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fcf8d8b07 
					 
					
						
						
							
							Submitted by: Jeremy Shapiro <jnshapir@us.ibm.com>  
						
						 
						
						... 
						
						
						
						Reviewed by: steve@openssl.org 
Improve efficientcy of mem_gets(). 
						
						
					 
					
						2009-03-07 16:58:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7650eb21e 
					 
					
						
						
							
							Ooops @ should be for the if command not set.  
						
						 
						
						
						
						
					 
					
						2009-03-03 22:40:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						69120ad199 
					 
					
						
						
							
							Only require -iv for ciphers that use an IV!  
						
						 
						
						
						
						
					 
					
						2009-03-03 15:07:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1eee8a4226 
					 
					
						
						
							
							Use the correct length (reported by Quanhong Wang).  
						
						 
						
						
						
						
					 
					
						2009-03-03 15:06:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98448a53c8 
					 
					
						
						
							
							Do a "make links" in fips directory even if not compiling for fips.  
						
						 
						
						
						
						
					 
					
						2009-02-25 23:29:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						241d088156 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2009-02-23 16:02:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a22a8dd7dd 
					 
					
						
						
							
							Do not link nonexistent file.  
						
						 
						
						
						
						
					 
					
						2009-02-18 10:43:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e26ad0c4fd 
					 
					
						
						
							
							Fix FIPS typo.  
						
						 
						
						
						
						
					 
					
						2009-02-18 10:27:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e7559ac7f 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-02-16 23:24:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9feda63955 
					 
					
						
						
							
							Data not initialised.  
						
						 
						
						... 
						
						
						
						Notified by Gerardo Ganis <gerardo.ganis@cern.ch > 
						
						
					 
					
						2009-02-16 15:17:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1ed81ff731 
					 
					
						
						
							
							Use shared dev team flags, fix resulting warning.  
						
						 
						
						
						
						
					 
					
						2009-02-16 08:44:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b2dc2e6dac 
					 
					
						
						
							
							Don't eat the whole word for -d. This allows -debug to be passed to  
						
						 
						
						... 
						
						
						
						the compiler. 
						
						
					 
					
						2009-02-16 08:43:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1b787fc04c 
					 
					
						
						
							
							Include common warning options in 0.9.8, fix warnings in debug-steve64.  
						
						 
						
						
						
						
					 
					
						2009-02-15 15:46:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a6401acdf 
					 
					
						
						
							
							PR: 1422  
						
						 
						
						... 
						
						
						
						Fix return value of X509_NAME_cmp() so it works with qsort/bsearch again. 
						
						
					 
					
						2009-02-15 12:10:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c40fcc1e40 
					 
					
						
						
							
							Skip engines directory if no-engine  
						
						 
						
						
						
						
					 
					
						2009-02-14 23:08:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f908ca4db4 
					 
					
						
						
							
							PR: 1840  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Kaiser <lists@kaiser.cx >
Approved by: steve@openssl.org 
Handle NULL passing in parameter and BN_CTX_new() error correctly. 
						
						
					 
					
						2009-02-14 22:19:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						72f6453c48 
					 
					
						
						
							
							PR: 1835  
						
						 
						
						... 
						
						
						
						Submitted by: Damien Miller <djm@mindrot.org >
Approved by: steve@openssl.org 
Fix various typos. 
						
						
					 
					
						2009-02-14 21:50:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eca7b90771 
					 
					
						
						
							
							Install the fipsld link script.  
						
						 
						
						
						
						
					 
					
						2009-02-13 18:37:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7eb90ccefb 
					 
					
						
						
							
							oops  
						
						 
						
						
						
						
					 
					
						2009-02-02 00:51:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						6ed534782f 
					 
					
						
						
							
							For -hex, print just one \n  
						
						 
						
						
						
						
					 
					
						2009-02-02 00:40:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1ee27238f7 
					 
					
						
						
							
							Updated symbol for VMS  
						
						 
						
						
						
						
					 
					
						2009-02-02 00:27:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						59689735a6 
					 
					
						
						
							
							-hex option for openssl rand  
						
						 
						
						... 
						
						
						
						PR: 1831
Submitted by: Damien Miller 
						
						
					 
					
						2009-02-02 00:27:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1be16287ee 
					 
					
						
						
							
							Make sure we have a library to link dummytest.o with.  
						
						 
						
						
						
						
					 
					
						2009-02-02 00:25:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9fe4b73d97 
					 
					
						
						
							
							Add the CAPI engine  
						
						 
						
						
						
						
					 
					
						2009-02-02 00:18:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73cb37295d 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-01-28 12:55:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1f35508ae6 
					 
					
						
						
							
							Support NumericString for name components.  
						
						 
						
						
						
						
					 
					
						2009-01-28 12:35:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3e2a74c294 
					 
					
						
						
							
							Add missing modules  
						
						 
						
						
						
						
					 
					
						2009-01-28 07:54:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a34922c476 
					 
					
						
						
							
							PR: 1806  
						
						 
						
						... 
						
						
						
						Submitted by: philipp_subx@redfish-solutions.com 
Approved by: steve
Use ${CC:-gcc} instead of just gcc in domd, to support cross compilation. 
						
						
					 
					
						2009-01-21 21:44:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						84be7091fd 
					 
					
						
						
							
							No need to add fips to @skip  
						
						 
						
						
						
						
					 
					
						2009-01-19 16:42:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f82c1f0dd8 
					 
					
						
						
							
							If not compiling for fips don't do anything in fips directory.  
						
						 
						
						... 
						
						
						
						Install fipscanister.o and friends from FIPSLIBDIR location. 
						
						
					 
					
						2009-01-19 16:40:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						dc0cb7e74f 
					 
					
						
						
							
							Make it possible to override CC.  
						
						 
						
						
						
						
					 
					
						2009-01-17 14:36:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ab31dbc482 
					 
					
						
						
							
							Another symbol that's longer than 31 characters.  
						
						 
						
						
						
						
					 
					
						2009-01-17 12:33:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						36e9d3ee91 
					 
					
						
						
							
							A forgotten module...  
						
						 
						
						
						
						
					 
					
						2009-01-17 12:33:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc8c0f6b46 
					 
					
						
						
							
							Stop warnings on WIN64  
						
						 
						
						
						
						
					 
					
						2009-01-15 12:34:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3eac70a356 
					 
					
						
						
							
							Some platforms need $(EX_LIBS) when building fips_standalone_sha1 from  
						
						 
						
						... 
						
						
						
						an external fipscanister.o 
						
						
					 
					
						2009-01-14 11:10:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f3ad8f82c 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2009-01-14 10:46:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						367316c723 
					 
					
						
						
							
							Oops, remove duplicate entry.  
						
						 
						
						
						
						
					 
					
						2009-01-07 23:45:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d34353cc91 
					 
					
						
						
							
							Prepare for next version.  
						
						 
						
						
						
						
					 
					
						2009-01-07 23:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6287fa5396 
					 
					
						
						
							
							Prepare for 0.9.8j release.  
						
						 
						
						
						
						
					 
					
						2009-01-07 10:50:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a00c3c4019 
					 
					
						
						
							
							Properly check EVP_VerifyFinal() and similar return values  
						
						 
						
						... 
						
						
						
						(CVE-2008-5077).
Submitted by: Ben Laurie, Bodo Moeller, Google Security Team 
						
						
					 
					
						2009-01-07 10:48:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f4677b7960 
					 
					
						
						
							
							Fix compilation with -no-comp by adding some more #ifndef OPENSSL_NO_COMP  
						
						 
						
						... 
						
						
						
						Some #include statements were not properly protected. This will go unnoted
on most systems as openssl/comp.h tends to be installed as a system header
file by default but may become visible when cross compiling. 
						
						
					 
					
						2009-01-05 14:43:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92308905dd 
					 
					
						
						
							
							make update.  
						
						 
						
						
						
						
					 
					
						2009-01-05 12:47:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f32fc5c4e 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-12-31 12:00:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e607e731eb 
					 
					
						
						
							
							Synchronize with bn_nist.c from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-12-30 13:41:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f17c45611e 
					 
					
						
						
							
							Backport  http://cvs.openssl.org/chngview?cn=17710  from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1230 
						
						
					 
					
						2008-12-30 13:30:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1ff7b6492b 
					 
					
						
						
							
							Some seasoned makes fail to build. For reference. I had problem with Irix  
						
						 
						
						... 
						
						
						
						make which doesn't tolerate empty targets, and fips/Makefile ends up with
one when FIPSCANLIB is empty. Build failed as early as 'make links' phase. 
						
						
					 
					
						2008-12-30 13:26:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						20900d6801 
					 
					
						
						
							
							Update default compiler options for default tls extension config.  
						
						 
						
						... 
						
						
						
						Add -Wsign-compare to debug-steve64 
						
						
					 
					
						2008-12-29 00:18:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4b253d904d 
					 
					
						
						
							
							Avoid signed/unsigned compare warnings.  
						
						 
						
						
						
						
					 
					
						2008-12-29 00:17:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a51c8c64e0 
					 
					
						
						
							
							Backport aes-x86_64.pl update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-12-27 13:34:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c153422388 
					 
					
						
						
							
							Enable TLS Extensions by default.  
						
						 
						
						
						
						
					 
					
						2008-12-26 15:27:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f065cfdbd 
					 
					
						
						
							
							In BIO_write(), update the write statistics, not the read statistics.  
						
						 
						
						... 
						
						
						
						PR: 1803 
						
						
					 
					
						2008-12-25 22:24:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						667fbc0847 
					 
					
						
						
							
							Further synchronisation with Unix  
						
						 
						
						
						
						
					 
					
						2008-12-25 22:04:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6ba7bd5697 
					 
					
						
						
							
							Synchronise with Unixly build.  
						
						 
						
						
						
						
					 
					
						2008-12-22 09:30:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2cad035c01 
					 
					
						
						
							
							Make no-engine work again...  
						
						 
						
						
						
						
					 
					
						2008-12-20 17:04:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a76c68842 
					 
					
						
						
							
							Backport aes-x86_64.pl update from HEAD and revisit same code in aes-586.pl.  
						
						 
						
						... 
						
						
						
						PR: 1801 
						
						
					 
					
						2008-12-17 14:14:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1b00f4bc37 
					 
					
						
						
							
							Missing return values (Coverity ID 204).  
						
						 
						
						
						
						
					 
					
						2008-12-13 17:00:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						be62eb6d93 
					 
					
						
						
							
							Make depend.  
						
						 
						
						
						
						
					 
					
						2008-12-13 12:22:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f3878f1e3 
					 
					
						
						
							
							Remove tests which rely on old root certs being present.  
						
						 
						
						
						
						
					 
					
						2008-12-10 17:34:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a523e997d3 
					 
					
						
						
							
							apps/speed.c: children should not inherit buffered I/O  
						
						 
						
						... 
						
						
						
						PR: 1787
Submitted by: Artur Klauser <aklauser@google.com > 
						
						
					 
					
						2008-12-10 08:03:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe43caa4a4 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-12-08 19:13:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						792e614144 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-12-07 23:59:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ce2b87d88a 
					 
					
						
						
							
							experimental-foo support for mk1mf.pl.  
						
						 
						
						
						
						
					 
					
						2008-12-02 23:50:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f092a073a7 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2008-12-02 18:14:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						6fa4cd7136 
					 
					
						
						
							
							Warn about JPAKE brokenness.  
						
						 
						
						
						
						
					 
					
						2008-12-02 13:36:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						505ed2b076 
					 
					
						
						
							
							Implement Configure option pattern "experimental-foo"  
						
						 
						
						... 
						
						
						
						(specifically, "experimental-jpake"). 
						
						
					 
					
						2008-12-02 01:21:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cef3e62d2b 
					 
					
						
						
							
							Don't clobber passed GENERAL_NAME on error.  
						
						 
						
						
						
						
					 
					
						2008-11-30 16:07:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						40ea9ff9e8 
					 
					
						
						
							
							Clarify a 'chil' engine param that is a little unintuitive.  
						
						 
						
						... 
						
						
						
						Submitted by: Sander Temme <sander@temme.net > 
						
						
					 
					
						2008-11-28 22:04:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a97a6b03bc 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2008-11-24 17:49:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						516f76fd2c 
					 
					
						
						
							
							Move new function CRYPTO_strdup to mem_dbg.c because mem.c is excluded in  
						
						 
						
						... 
						
						
						
						a fips build. 
						
						
					 
					
						2008-11-24 17:02:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5a02ac6e5b 
					 
					
						
						
							
							Revert OPENSSL_EXPERIMENTAL patch.  
						
						 
						
						... 
						
						
						
						Change it so JPAKE uses the standard OPENSSL_NO_JPAKE instead. 
						
						
					 
					
						2008-11-24 16:14:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14d4074ee1 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-11-21 18:18:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d9f16c405c 
					 
					
						
						
							
							Commit default dependencies.  
						
						 
						
						
						
						
					 
					
						2008-11-19 16:03:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bfc6482a7a 
					 
					
						
						
							
							Allow the CHIL engine to load even if dynamic locks aren't registered.  
						
						 
						
						... 
						
						
						
						Submitted by: Sander Temme 
						
						
					 
					
						2008-11-19 14:08:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5aa032033e 
					 
					
						
						
							
							Remove jpake.h dependencies from default build.  
						
						 
						
						
						
						
					 
					
						2008-11-19 00:40:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2d59f9938f 
					 
					
						
						
							
							On WIN32 use /MD for static library in FIPS mode to match value of  
						
						 
						
						... 
						
						
						
						validated module. 
						
						
					 
					
						2008-11-18 22:23:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c0ce8fe755 
					 
					
						
						
							
							Update .cvsignore  
						
						 
						
						
						
						
					 
					
						2008-11-15 17:47:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						55eff40084 
					 
					
						
						
							
							Stop warnings.  
						
						 
						
						
						
						
					 
					
						2008-11-15 17:46:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e5a251843d 
					 
					
						
						
							
							warnings  
						
						 
						
						
						
						
					 
					
						2008-11-14 00:18:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fe46b0de29 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2008-11-14 00:17:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a581439bb1 
					 
					
						
						
							
							Fixes for "make depend". Features which need a #define to be set to  
						
						 
						
						... 
						
						
						
						enable them, like FIPS and JPAKE need to have these set when building
dependencies. 
						
						
					 
					
						2008-11-13 15:08:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a43337e8c4 
					 
					
						
						
							
							Not an error to include jpake.h when disabled.  
						
						 
						
						
						
						
					 
					
						2008-11-13 11:35:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						33c51ec143 
					 
					
						
						
							
							J-PAKE is not RSA.  
						
						 
						
						
						
						
					 
					
						2008-11-13 09:50:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						448da15fbf 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2008-11-12 19:05:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1bb2d6c2f 
					 
					
						
						
							
							Update mk1mf.pl for new JPAKE options. Update jpaketest.c for WIN32.  
						
						 
						
						
						
						
					 
					
						2008-11-12 18:27:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81dde5e8fe 
					 
					
						
						
							
							Add support for experimental code, not compiled in by default and  
						
						 
						
						... 
						
						
						
						with OPENSSL_EXPERIMENTAL_FOO around it. Make JPAKE experimental. 
						
						
					 
					
						2008-11-12 16:54:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b84e441861 
					 
					
						
						
							
							Don't attempt to enter FIPS mode in autoconfig module if already in FIPS mode.  
						
						 
						
						
						
						
					 
					
						2008-11-11 12:52:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						08e012bbec 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-11-11 12:42:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b46acc392b 
					 
					
						
						
							
							Avoid conflict with some version of Windows platform SDK.  
						
						 
						
						
						
						
					 
					
						2008-11-11 12:22:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						28af6367b8 
					 
					
						
						
							
							PR: 1782  
						
						 
						
						... 
						
						
						
						Submitted by: Philip Prindeville <philipp_subx@redfish-solutions.com >
Approved by: steve@openssl.org  
						
						
					 
					
						2008-11-11 10:17:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c17b493b1 
					 
					
						
						
							
							Make -DKSSL_DEBUG work again.  
						
						 
						
						
						
						
					 
					
						2008-11-10 18:55:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ea725a66c9 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2008-11-10 18:22:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						1532493dab 
					 
					
						
						
							
							Clarify (non-)blocking behavior of EGD socket interface used by RAND_egd().  
						
						 
						
						
						
						
					 
					
						2008-11-10 11:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3795297af8 
					 
					
						
						
							
							Change old obsolete email address...  
						
						 
						
						
						
						
					 
					
						2008-11-05 18:36:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33fd33d423 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-11-05 18:29:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e98f8863f 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2008-10-31 12:18:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						582ef3dbdb 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-10-31 12:09:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6a933782fa 
					 
					
						
						
							
							randfile.c: .rnd can become orphaned on VMS [from HEAD].  
						
						 
						
						... 
						
						
						
						Submitted by: David North 
						
						
					 
					
						2008-10-28 16:30:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d1c2778e93 
					 
					
						
						
							
							.cvsignore update: ignore all flavors of shared objects [from HEAD].  
						
						 
						
						
						
						
					 
					
						2008-10-28 15:33:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8d64abacc6 
					 
					
						
						
							
							Fix crash in BN_rshift [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1663 
						
						
					 
					
						2008-10-28 13:47:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9af6802943 
					 
					
						
						
							
							Win32 fixes, add new directory to WIN32 build system.  
						
						 
						
						
						
						
					 
					
						2008-10-27 12:30:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c10f53a897 
					 
					
						
						
							
							Fixes from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-10-27 12:04:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2124e869a8 
					 
					
						
						
							
							Add JPAKE.  
						
						 
						
						
						
						
					 
					
						2008-10-26 18:42:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						3b668eedda 
					 
					
						
						
							
							Minor clarity enhancements.  
						
						 
						
						
						
						
					 
					
						2008-10-26 15:37:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7471431322 
					 
					
						
						
							
							Avoid warning.  
						
						 
						
						
						
						
					 
					
						2008-10-26 11:54:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1542de4eed 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-10-22 19:55:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6c2bffbdf 
					 
					
						
						
							
							Return correct exit code if there is an error in dgst command.  
						
						 
						
						
						
						
					 
					
						2008-10-22 18:51:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff09931e22 
					 
					
						
						
							
							Sync OIDS with HEAD.  
						
						 
						
						
						
						
					 
					
						2008-10-22 18:48:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						155c70b882 
					 
					
						
						
							
							Allow detection of input EOF in quiet mode by adding -no_ign_eof option  
						
						 
						
						... 
						
						
						
						to s_client application.
PR: #1761 
Submitted by: David Woodhouse <dwmw2@infradead.org > 
						
						
					 
					
						2008-10-22 06:46:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						7c49452973 
					 
					
						
						
							
							Add missing "-d" to option list of openssl version.  
						
						 
						
						... 
						
						
						
						Submitted by: Alex Chen <alex_chen@filemaker.com > 
						
						
					 
					
						2008-10-20 12:53:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						312539ae9f 
					 
					
						
						
							
							Armor pq_compat.h header file against multiple inclusion  
						
						 
						
						... 
						
						
						
						Submitted by: Alex Chen <alex_chen@filemaker.com > 
						
						
					 
					
						2008-10-20 12:40:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						cc40dcce58 
					 
					
						
						
							
							Distinguish public/private data more clearly.  
						
						 
						
						
						
						
					 
					
						2008-10-20 09:26:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5790921aea 
					 
					
						
						
							
							Ignore executable.  
						
						 
						
						
						
						
					 
					
						2008-10-19 15:34:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						df84c11407 
					 
					
						
						
							
							Add J-PAKE demo.  
						
						 
						
						
						
						
					 
					
						2008-10-19 15:33:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b76306c983 
					 
					
						
						
							
							Constification.  
						
						 
						
						
						
						
					 
					
						2008-10-18 14:27:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						cdffc716c9 
					 
					
						
						
							
							Set the comparison function in v3_addr_canonize().  
						
						 
						
						
						
						
					 
					
						2008-10-14 19:21:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5dffc13f55 
					 
					
						
						
							
							Add XMPP STARTTLS support.  
						
						 
						
						
						
						
					 
					
						2008-10-14 19:09:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a5873a8d3d 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2008-10-14 19:05:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						4db3e88459 
					 
					
						
						
							
							Firstly, the bitmap we use for replay protection was ending up with zero  
						
						 
						
						... 
						
						
						
						length, so a _single_ pair of packets getting switched around would
cause one of them to be 'dropped'.
Secondly, it wasn't even _dropping_ the offending packets, in the
non-blocking case. It was just returning garbage instead.
PR: #1752 
Submitted by: David Woodhouse <dwmw2@infradead.org > 
						
						
					 
					
						2008-10-13 06:43:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						ab073bad4f 
					 
					
						
						
							
							When the underlying BIO_write() fails to send a datagram, we leave the  
						
						 
						
						... 
						
						
						
						offending record queued as 'pending'. The DTLS code doesn't expect this,
and we end up hitting an OPENSSL_assert() in do_dtls1_write().
The simple fix is just _not_ to leave it queued. In DTLS, dropping
packets is perfectly acceptable -- and even preferable. If we wanted a
service with retries and guaranteed delivery, we'd be using TCP.
PR: #1703 
Submitted by: David Woodhouse <dwmw2@infradead.org > 
						
						
					 
					
						2008-10-10 10:41:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						cfe04f607d 
					 
					
						
						
							
							Fix incorrect command for assember file generation on IA64  
						
						 
						
						... 
						
						
						
						Submitted by: Amadeu A. Barbosa Jr <amadeu@tecgraf.puc-rio.br > 
						
						
					 
					
						2008-10-06 10:35:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c0e9f540e0 
					 
					
						
						
							
							Check for errors in ASN1 sign and verify routines.  
						
						 
						
						
						
						
					 
					
						2008-09-25 16:38:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7c97aacbe8 
					 
					
						
						
							
							Fix EC_KEY_check_key [from HEAD].  
						
						 
						
						
						
						
					 
					
						2008-09-23 17:34:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						36b8f87566 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2008-09-23 11:21:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d875413a0b 
					 
					
						
						
							
							Make sure that SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG can't  
						
						 
						
						... 
						
						
						
						enable disabled ciphersuites. 
						
						
					 
					
						2008-09-22 21:22:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						155ad6d219 
					 
					
						
						
							
							Fix warnings when more pedantic "debuge-steve32" target is used.  
						
						 
						
						
						
						
					 
					
						2008-09-21 11:40:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						138f20433e 
					 
					
						
						
							
							Camellia low level API algorithm blocking.  
						
						 
						
						
						
						
					 
					
						2008-09-21 11:21:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7747c67861 
					 
					
						
						
							
							Make camellia work with updated EVP macros.  
						
						 
						
						
						
						
					 
					
						2008-09-21 10:24:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						237a6f06b6 
					 
					
						
						
							
							Add do_fips.bat WIN32 build script. Update version in Configure.  
						
						 
						
						
						
						
					 
					
						2008-09-18 12:13:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe99beb82a 
					 
					
						
						
							
							Build montgomery ASM file on WIN32.  
						
						 
						
						
						
						
					 
					
						2008-09-18 11:56:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						736a77f275 
					 
					
						
						
							
							Merge FIPS changes to VC-32 build system.  
						
						 
						
						
						
						
					 
					
						2008-09-18 11:45:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						94539213a1 
					 
					
						
						
							
							Add extra utilities from FIPS branch.  
						
						 
						
						
						
						
					 
					
						2008-09-18 11:20:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c5c4246319 
					 
					
						
						
							
							Add FIPS changes to mk1mf.pl  
						
						 
						
						
						
						
					 
					
						2008-09-17 17:21:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e6d8a8991 
					 
					
						
						
							
							Update defs.  
						
						 
						
						
						
						
					 
					
						2008-09-17 17:12:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e852835da6 
					 
					
						
						
							
							Make update: delete duplicate error code.  
						
						 
						
						
						
						
					 
					
						2008-09-17 17:11:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d245c32529 
					 
					
						
						
							
							Update some util files to recognize new FIPS directories.  
						
						 
						
						
						
						
					 
					
						2008-09-17 16:58:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						964d58bcb0 
					 
					
						
						
							
							Add missing files.  
						
						 
						
						
						
						
					 
					
						2008-09-17 16:27:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52702f6f92 
					 
					
						
						
							
							Updates to build system from FIPS branch. Make fipscanisterbuild work and  
						
						 
						
						... 
						
						
						
						build FIPS test programs. 
						
						
					 
					
						2008-09-17 15:56:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05794d983f 
					 
					
						
						
							
							Add RSA update from FIPS branch that got omitted....  
						
						 
						
						
						
						
					 
					
						2008-09-17 15:53:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						364f36f851 
					 
					
						
						
							
							Don't change NUM_LOCKS value for non-FIPS builds.  
						
						 
						
						
						
						
					 
					
						2008-09-17 15:07:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9b809d6278 
					 
					
						
						
							
							Add missing files.  
						
						 
						
						
						
						
					 
					
						2008-09-16 22:54:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bbefea3387 
					 
					
						
						
							
							Add missing files.  
						
						 
						
						
						
						
					 
					
						2008-09-16 22:48:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d83dde6180 
					 
					
						
						
							
							Merge changes to build system from fips branch.  
						
						 
						
						
						
						
					 
					
						2008-09-16 21:44:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						63e1319d0f 
					 
					
						
						
							
							FIPS merge of test changes: make sure key sizes are 1024 bits.  
						
						 
						
						
						
						
					 
					
						2008-09-16 15:14:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8067d34b3a 
					 
					
						
						
							
							FIPS merge "crypto" functions.  
						
						 
						
						
						
						
					 
					
						2008-09-16 15:11:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e3f2860e73 
					 
					
						
						
							
							Merge public key FIPS code, RSA, DSA, DH.  
						
						 
						
						
						
						
					 
					
						2008-09-16 14:55:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92eb44d238 
					 
					
						
						
							
							Add missing file.  
						
						 
						
						
						
						
					 
					
						2008-09-16 11:52:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4179bead4 
					 
					
						
						
							
							RAND library FIPS merge.  
						
						 
						
						
						
						
					 
					
						2008-09-16 11:50:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fced277486 
					 
					
						
						
							
							conf/hmac FIPS merge.  
						
						 
						
						
						
						
					 
					
						2008-09-16 11:37:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d1be455ce 
					 
					
						
						
							
							ERR library FIPS merge. Reorganise functions and add FIPS error  
						
						 
						
						... 
						
						
						
						definitions. 
						
						
					 
					
						2008-09-16 11:26:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dee4d129cb 
					 
					
						
						
							
							FIPS des library merge.  
						
						 
						
						
						
						
					 
					
						2008-09-16 11:17:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0067bd77a8 
					 
					
						
						
							
							Part FIPS bn merge: move functiosn to bn_opt.c to reduce dependencies.  
						
						 
						
						
						
						
					 
					
						2008-09-16 11:08:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d98904e5a7 
					 
					
						
						
							
							Add missing RC4 algorithm block source file.  
						
						 
						
						
						
						
					 
					
						2008-09-16 11:02:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						96a259e81e 
					 
					
						
						
							
							Merge FIPS low level algorithm blocking code. Give hard errors if non-FIPS  
						
						 
						
						... 
						
						
						
						algorithms are use in FIPS mode using low level API. No effect in non-FIPS
mode. 
						
						
					 
					
						2008-09-16 10:47:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59f3477b82 
					 
					
						
						
							
							Merge fips directory from FIPS branch.  
						
						 
						
						
						
						
					 
					
						2008-09-16 10:12:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f947b818bf 
					 
					
						
						
							
							Oops, restore change that got reverted accidentally.  
						
						 
						
						
						
						
					 
					
						2008-09-15 22:32:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3fa1a444ce 
					 
					
						
						
							
							Merge apps changes from FIPS branch.  
						
						 
						
						
						
						
					 
					
						2008-09-15 22:24:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a2dc9b6be2 
					 
					
						
						
							
							Merge EVP changes in from FIPS branch.  
						
						 
						
						
						
						
					 
					
						2008-09-15 22:21:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16349eeceb 
					 
					
						
						
							
							Port X931 key generation routines from FIPS branch. Don't include deprecated  
						
						 
						
						... 
						
						
						
						versions as they weren't in 0.9.8 before now anyway. 
						
						
					 
					
						2008-09-15 21:42:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						aecf1c1f96 
					 
					
						
						
							
							Fix intendation  
						
						 
						
						
						
						
					 
					
						2008-09-15 20:39:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4ea574fdf3 
					 
					
						
						
							
							Now that we're changing the 0.9.8i CHANGES anyway, reorder them  
						
						 
						
						... 
						
						
						
						according to the usual convention (reverse chronological order) 
						
						
					 
					
						2008-09-15 20:34:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf8115deb0 
					 
					
						
						
							
							Add missing CHANGES entry.  
						
						 
						
						
						
						
					 
					
						2008-09-15 20:28:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d25cbda074 
					 
					
						
						
							
							update  
						
						 
						
						
						
						
					 
					
						2008-09-15 20:27:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d582fd516 
					 
					
						
						
							
							pkcs12 FIPS changes.  
						
						 
						
						
						
						
					 
					
						2008-09-15 20:16:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8ec86dcf04 
					 
					
						
						
							
							Merge minor FIPS branch changes: buffer, objects, pem, x509.  
						
						 
						
						
						
						
					 
					
						2008-09-15 19:56:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d3b70c8da 
					 
					
						
						
							
							Prepare for next version...  
						
						 
						
						
						
						
					 
					
						2008-09-15 15:30:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0a4fda742b 
					 
					
						
						
							
							Oops... use correct version number this time....  
						
						 
						
						
						
						
					 
					
						2008-09-15 14:26:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3745e57bf9 
					 
					
						
						
							
							Prepare for next version....  
						
						 
						
						
						
						
					 
					
						2008-09-15 12:19:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7e7aa00de 
					 
					
						
						
							
							Begin release of OpenSSL 0.9.8i.  
						
						 
						
						
						
						
					 
					
						2008-09-15 10:28:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1098fd48ce 
					 
					
						
						
							
							Compilation warning fix [from HEAD, "must have, as our Windows build does  
						
						 
						
						... 
						
						
						
						not tolerate warnings]. 
						
						
					 
					
						2008-09-15 07:19:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						393906d9be 
					 
					
						
						
							
							Fix yesterday typos in bss_dgram.c [from HEAD].  
						
						 
						
						
						
						
					 
					
						2008-09-15 05:45:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						446881468c 
					 
					
						
						
							
							update comment  
						
						 
						
						
						
						
					 
					
						2008-09-14 19:50:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cfb95ba9f6 
					 
					
						
						
							
							Winsock handles SO_RCVTIMEO in unique manner... [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1648 
						
						
					 
					
						2008-09-14 19:23:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c198c26226 
					 
					
						
						
							
							oops  
						
						 
						
						
						
						
					 
					
						2008-09-14 18:16:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						54d6ddba69 
					 
					
						
						
							
							dtls1_write_bytes consumers expect amount of bytes written per call, not  
						
						 
						
						... 
						
						
						
						overall [from HEAD].
PR: 1604 
						
						
					 
					
						2008-09-14 17:57:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1af12ff1d1 
					 
					
						
						
							
							Fix error code discrepancy.  
						
						 
						
						... 
						
						
						
						Make update. 
						
						
					 
					
						2008-09-14 16:43:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd72b8eca6 
					 
					
						
						
							
							Stop warnings about value not used.  
						
						 
						
						
						
						
					 
					
						2008-09-14 15:46:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						200d00c854 
					 
					
						
						
							
							Fix SSL state transitions.  
						
						 
						
						... 
						
						
						
						Submitted by: Nagendra Modadugu 
						
						
					 
					
						2008-09-14 14:02:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						669b912dea 
					 
					
						
						
							
							Really get rid of unsafe double-checked locking.  
						
						 
						
						... 
						
						
						
						Also, "CHANGES" clean-ups. 
						
						
					 
					
						2008-09-14 13:51:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						36a4a67b2b 
					 
					
						
						
							
							Some precautions to avoid potential security-relevant problems.  
						
						 
						
						
						
						
					 
					
						2008-09-14 13:42:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3413424f01 
					 
					
						
						
							
							DTLS didn't handle alerts correctly [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1632 
						
						
					 
					
						2008-09-13 18:25:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						80fc840d89 
					 
					
						
						
							
							file rc4_fblk.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 11:02:19 +0000  
						
						 
						
						
						
						
					 
					
						2008-09-12 17:44:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6455100f7a 
					 
					
						
						
							
							AIX build updates [from HEAD].  
						
						 
						
						
						
						
					 
					
						2008-09-12 14:47:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b7c8b4fc95 
					 
					
						
						
							
							Allow soft-loading engines.  
						
						 
						
						
						
						
					 
					
						2008-09-12 13:29:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f58d0f70b6 
					 
					
						
						
							
							Don't hide commands.  
						
						 
						
						
						
						
					 
					
						2008-09-12 13:26:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f59c61d1d 
					 
					
						
						
							
							If tickets disabled behave as if no ticket received to support  
						
						 
						
						... 
						
						
						
						stateful resume. 
						
						
					 
					
						2008-09-03 22:13:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd43ae3fe4 
					 
					
						
						
							
							Fix flag clash... only used internally when policy checking is  
						
						 
						
						... 
						
						
						
						enabled. 
						
						
					 
					
						2008-08-31 11:15:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cdd0f3b328 
					 
					
						
						
							
							Don't use assertions to check application-provided arguments;  
						
						 
						
						... 
						
						
						
						and don't unnecessarily fail on input size 0. 
						
						
					 
					
						2008-08-14 21:37:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f9f6f0e9f0 
					 
					
						
						
							
							sanity check  
						
						 
						
						... 
						
						
						
						PR: 1679 
						
						
					 
					
						2008-08-13 19:44:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						405f382144 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-08-05 15:56:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a750273546 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-08-02 11:17:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						ddc5f6f328 
					 
					
						
						
							
							Refer to SSL_pending from the man page for SSL_read  
						
						 
						
						
						
						
					 
					
						2008-08-01 15:03:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4231b356aa 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-07-30 15:42:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						df1f7b4b02 
					 
					
						
						
							
							We should check the eight bytes starting at p[-9] for rollback attack  
						
						 
						
						... 
						
						
						
						detection, or the probability for an erroneous RSA_R_SSLV3_ROLLBACK_ATTACK
will be larger than necessary.
PR: 1695 
						
						
					 
					
						2008-07-17 22:11:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0b7545b239 
					 
					
						
						
							
							Harmonize darwin-i386-cc config line with HEAD.  
						
						 
						
						
						
						
					 
					
						2008-07-17 11:59:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3a72137211 
					 
					
						
						
							
							darwin64-ppc-cc experimental line accidentally made it to stable:-(  
						
						 
						
						... 
						
						
						
						PR: 1699 
						
						
					 
					
						2008-07-17 10:00:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e5d289cc03 
					 
					
						
						
							
							sha1-586.pl: update from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1681 
						
						
					 
					
						2008-07-17 09:51:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0ff3766b0e 
					 
					
						
						
							
							Make sure not to read beyond end of buffer  
						
						 
						
						
						
						
					 
					
						2008-07-16 18:10:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3562202306 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-07-13 22:38:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2bf4b96aef 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-07-13 15:56:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						811e08a2c5 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-07-13 14:33:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd6e90465d 
					 
					
						
						
							
							Add support for Local Machine Keyset attribute in PKCS#12 files.  
						
						 
						
						
						
						
					 
					
						2008-06-26 23:26:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a86c626802 
					 
					
						
						
							
							Sync OIDs with HEAD so we don't need to rebuild OID database and change  
						
						 
						
						... 
						
						
						
						all NIDs every time an OID is added to 0.9.8. 
						
						
					 
					
						2008-06-26 23:20:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						705c3dec2c 
					 
					
						
						
							
							Changes to allow capi ENGINE to compile with older headers on e.g. VC6.  
						
						 
						
						
						
						
					 
					
						2008-06-25 10:41:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4afcee8b4b 
					 
					
						
						
							
							avoid potential infinite loop in final reduction round of BN_GF2m_mod_arr()  
						
						 
						
						... 
						
						
						
						Submitted by: Huang Ying
Reviewed by: Douglas Stebila 
						
						
					 
					
						2008-06-23 20:46:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9627017f9c 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-06-22 01:10:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e0f6c15418 
					 
					
						
						
							
							Make WIN32 build work with no-rc4  
						
						 
						
						
						
						
					 
					
						2008-06-21 23:28:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ecc20b75f8 
					 
					
						
						
							
							Fix typo and filter on X509_PURPOSE_SSL_CLIENT when presenting certs.  
						
						 
						
						
						
						
					 
					
						2008-06-18 14:42:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						540e455e3a 
					 
					
						
						
							
							Add support for machine stores and handle provider type errors properly in keys.  
						
						 
						
						
						
						
					 
					
						2008-06-18 12:05:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14748adb09 
					 
					
						
						
							
							Make ssl code consistent with FIPS branch. The new code has no effect  
						
						 
						
						... 
						
						
						
						at present because it asserts either noop flags or is inside
OPENSSL_FIPS #ifdef's. 
						
						
					 
					
						2008-06-16 16:56:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff2ab9e6bb 
					 
					
						
						
							
							Add error code for FIPS library and make library numbers consistent.  
						
						 
						
						
						
						
					 
					
						2008-06-16 15:22:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc5cc3bb8f 
					 
					
						
						
							
							Sync ordinals with FIPS branch. FIPS specific functions currently are place  
						
						 
						
						... 
						
						
						
						holders to keep ordinals consistent. 
						
						
					 
					
						2008-06-15 16:52:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1f3206216b 
					 
					
						
						
							
							Add acknowledgement.  
						
						 
						
						
						
						
					 
					
						2008-06-09 16:50:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f113bb9f4e 
					 
					
						
						
							
							OPENSSL_isservice() is defined on all platforms.  
						
						 
						
						
						
						
					 
					
						2008-06-07 17:22:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4681147bb3 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2008-06-06 20:48:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52c3f232e4 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-06-06 15:54:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3dc466424e 
					 
					
						
						
							
							Update CryptoAPI ENGINE from head. Export OPENSSL_isservice().  
						
						 
						
						
						
						
					 
					
						2008-06-06 15:52:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						353415cc81 
					 
					
						
						
							
							Make headers work with older versions of Window platform SDK.  
						
						 
						
						
						
						
					 
					
						2008-06-05 16:56:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1a12ce8ea5 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2008-06-05 15:32:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0278e15fa3 
					 
					
						
						
							
							If auto load ENGINE lookup fails retry adding builtin ENGINEs.  
						
						 
						
						
						
						
					 
					
						2008-06-05 15:13:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f01f085cb9 
					 
					
						
						
							
							Configure options of form -Dfoo=bar should get added to CFLAGS in mk1mf.pl  
						
						 
						
						
						
						
					 
					
						2008-06-05 15:09:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bca68e90cc 
					 
					
						
						
							
							Don't show choice dialog if only one cert.  
						
						 
						
						
						
						
					 
					
						2008-06-05 11:44:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a3f67ec18d 
					 
					
						
						
							
							Search $OPTIONS for -DOPENSSL_CAPIENG_DIALOG because $cflags is  
						
						 
						
						... 
						
						
						
						no complete at this point. 
						
						
					 
					
						2008-06-05 11:38:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						56ef1cbc40 
					 
					
						
						
							
							include engine.h if needed.  
						
						 
						
						
						
						
					 
					
						2008-06-05 11:23:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1411093f0 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-06-05 10:57:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f35f7d9fbb 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-06-05 10:56:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dfbf646ac4 
					 
					
						
						
							
							Remove some unneeded columns from dialog.  
						
						 
						
						
						
						
					 
					
						2008-06-04 23:00:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						591371566e 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-06-04 22:39:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5799b72178 
					 
					
						
						
							
							Oops... missed this part of backport.  
						
						 
						
						
						
						
					 
					
						2008-06-04 20:11:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1cfe6842d5 
					 
					
						
						
							
							Backport s_client changes.  
						
						 
						
						
						
						
					 
					
						2008-06-04 19:52:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4c98a6a3d 
					 
					
						
						
							
							Update CryptoAPI ENGINE from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-06-04 18:49:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4aefb1dd98 
					 
					
						
						
							
							Backport more ENGINE SSL client auth code to 0.9.8.  
						
						 
						
						
						
						
					 
					
						2008-06-04 18:35:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aa03989791 
					 
					
						
						
							
							Backport ssl client auth ENGINE support to 0.9.8.  
						
						 
						
						
						
						
					 
					
						2008-06-04 18:01:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a865b2c320 
					 
					
						
						
							
							Everyone's had a few years to port their favorite additions to 0.9.7  
						
						 
						
						... 
						
						
						
						to HEAD (and the 0.9.8 branch).  Remove the reminder. 
						
						
					 
					
						2008-05-31 13:42:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						694ce314a8 
					 
					
						
						
							
							DSA method slightly more tested and fixed ;-)  
						
						 
						
						
						
						
					 
					
						2008-05-30 17:44:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						94299a36a6 
					 
					
						
						
							
							Update error codes.  
						
						 
						
						
						
						
					 
					
						2008-05-30 17:07:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3aaeb5c1e5 
					 
					
						
						
							
							Untested initial CryptoAPI dsa signing code.  
						
						 
						
						
						
						
					 
					
						2008-05-30 17:03:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						80ec6cc806 
					 
					
						
						
							
							Some DSA method structures and placeholders, not complete yet.  
						
						 
						
						
						
						
					 
					
						2008-05-30 16:31:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d83320279 
					 
					
						
						
							
							Delete unused functions.  
						
						 
						
						
						
						
					 
					
						2008-05-30 16:14:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ab252d198 
					 
					
						
						
							
							Get BIO_snprintf() argument order right....  
						
						 
						
						
						
						
					 
					
						2008-05-30 15:28:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						058ffd7623 
					 
					
						
						
							
							Add new error codes, log unknown magic or algorithm IDs.  
						
						 
						
						
						
						
					 
					
						2008-05-30 15:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0330a13aea 
					 
					
						
						
							
							Initial DSA public key loading support in CryptoAPI ENGINE.  
						
						 
						
						
						
						
					 
					
						2008-05-30 15:05:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						467325b81d 
					 
					
						
						
							
							Add support for ENGINE loaded keys in dsa app.  
						
						 
						
						
						
						
					 
					
						2008-05-30 15:04:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00f716bbe6 
					 
					
						
						
							
							Add error codes for blob sanity checks, rebuild error table.  
						
						 
						
						
						
						
					 
					
						2008-05-30 11:58:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f2f032497 
					 
					
						
						
							
							Blob type and algorithm type sanity checks  
						
						 
						
						
						
						
					 
					
						2008-05-30 11:54:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						feb200bbb3 
					 
					
						
						
							
							Don't set extended type is mbstring flag set.  
						
						 
						
						
						
						
					 
					
						2008-05-30 10:57:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3894667036 
					 
					
						
						
							
							Update default depflag.  
						
						 
						
						
						
						
					 
					
						2008-05-30 10:31:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						203ac694e3 
					 
					
						
						
							
							Load CryptoAPI engine if supported.  
						
						 
						
						
						
						
					 
					
						2008-05-29 23:47:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb592c75e7 
					 
					
						
						
							
							Update mkdef.pl to recognize CAPIENG  
						
						 
						
						
						
						
					 
					
						2008-05-29 23:15:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						777d717c40 
					 
					
						
						
							
							Make CryptoAPI engine look more like the others....  
						
						 
						
						
						
						
					 
					
						2008-05-29 21:03:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						143d84590f 
					 
					
						
						
							
							Make dynamic engine link work with capi.  
						
						 
						
						
						
						
					 
					
						2008-05-29 17:51:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a29669d78d 
					 
					
						
						
							
							Disable CryptoAPI engine compilation by default.  
						
						 
						
						
						
						
					 
					
						2008-05-29 17:20:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e5be1e1696 
					 
					
						
						
							
							Create error codes, compile in source.  
						
						 
						
						
						
						
					 
					
						2008-05-29 17:13:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e47c34729 
					 
					
						
						
							
							CryptoAPI ENGINE... initial version, not compiled in yet.  
						
						 
						
						
						
						
					 
					
						2008-05-29 16:46:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cb896f8923 
					 
					
						
						
							
							FAQ updates from HEAD  
						
						 
						
						
						
						
					 
					
						2008-05-28 22:30:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cec9bce126 
					 
					
						
						
							
							fix whitespace  
						
						 
						
						
						
						
					 
					
						2008-05-28 22:22:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						3f79793b7e 
					 
					
						
						
							
							After tagging, bump ready for 0.9.8i development  
						
						 
						
						
						
						
					 
					
						2008-05-28 07:47:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						0d01d8a735 
					 
					
						
						
							
							Prepare for 0.9.8h release  
						
						 
						
						
						
						
					 
					
						2008-05-28 07:37:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						2c0fa03dc6 
					 
					
						
						
							
							Fix flaw if 'Server Key exchange message' is omitted from a TLS  
						
						 
						
						... 
						
						
						
						handshake which could lead to a cilent crash as found using the
Codenomicon TLS test suite (CVE-2008-1672)
Reviewed by: openssl-security@openssl.org 
Obtained from: mark@awe.com  
						
						
					 
					
						2008-05-28 07:29:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						d3b3a6d389 
					 
					
						
						
							
							Fix double-free in TLS server name extensions which could lead to a remote  
						
						 
						
						... 
						
						
						
						crash found by Codenomicon TLS test suite (CVE-2008-0891)
Reviewed by: openssl-security@openssl.org 
Obtained from: jorton@redhat.com  
						
						
					 
					
						2008-05-28 07:26:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fc260b09a1 
					 
					
						
						
							
							grammar  
						
						 
						
						
						
						
					 
					
						2008-05-27 18:43:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b3c79a8a27 
					 
					
						
						
							
							year 2008  
						
						 
						
						
						
						
					 
					
						2008-05-27 18:41:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f0ecefc0c0 
					 
					
						
						
							
							Add README about removed root CA certificates.  
						
						 
						
						
						
						
					 
					
						2008-05-26 06:23:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						b0118409a9 
					 
					
						
						
							
							Reword comment to be much shorter to stop other people from complaining  
						
						 
						
						... 
						
						
						
						about "overcommenting" 
						
						
					 
					
						2008-05-26 06:21:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						5f23288692 
					 
					
						
						
							
							Clear error queue when starting SSL_CTX_use_certificate_chain_file  
						
						 
						
						... 
						
						
						
						PR: 1417, 1513
Submitted by: Erik de Castro Lopo <mle+openssl@mega-nerd.com > 
						
						
					 
					
						2008-05-23 10:37:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						45c58c7d10 
					 
					
						
						
							
							Remove all root CA files (beyond test CAs including private key)  
						
						 
						
						... 
						
						
						
						from the OpenSSL distribution. 
						
						
					 
					
						2008-05-23 08:59:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						112591be76 
					 
					
						
						
							
							Fix off by one error ;-)  
						
						 
						
						
						
						
					 
					
						2008-05-20 18:48:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1b8daa3693 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2008-05-20 16:13:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1cdbc755ee 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-05-20 12:12:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aa9c7e4b8c 
					 
					
						
						
							
							Oops... PEM_write_bio_ASN1_stream() shouldn't be in 0.9.8 CMS backport.  
						
						 
						
						
						
						
					 
					
						2008-05-20 12:10:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6be69a168f 
					 
					
						
						
							
							Remove deleted function definitions from header files  
						
						 
						
						... 
						
						
						
						so Windows build picks it up.
Recognize new option in mk1mf.pl 
						
						
					 
					
						2008-05-20 11:50:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eaf76feeb6 
					 
					
						
						
							
							Remove old DES definition of deleted function too.  
						
						 
						
						
						
						
					 
					
						2008-05-20 11:23:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						03e79ed05e 
					 
					
						
						
							
							Correctly adjust location of comment  
						
						 
						
						... 
						
						
						
						Submitted by: Ben Laurie <ben@links.org > 
						
						
					 
					
						2008-05-20 08:10:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						56bef2df4f 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2008-05-20 03:05:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10d3886c51 
					 
					
						
						
							
							Fix two invalid memory reads in RSA OAEP mode.  
						
						 
						
						... 
						
						
						
						Submitted by: Ivan Nestlerode <inestlerode@us.ibm.com >
Reviewed by: steve 
						
						
					 
					
						2008-05-19 21:26:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f1c0cf5b70 
					 
					
						
						
							
							Disable code that clearly doesn't currently serve any useful purpose.  
						
						 
						
						... 
						
						
						
						(Buggy line reported by Matthias Koenig.) 
						
						
					 
					
						2008-05-19 19:44:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						2a7ac69ee4 
					 
					
						
						
							
							Document "openssl s_server" -crl_check* options  
						
						 
						
						... 
						
						
						
						Submitted by: Daniel Black <daniel.subs@internode.on.net > 
						
						
					 
					
						2008-05-19 07:52:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						d13ea8e184 
					 
					
						
						
							
							Provide information about "openssl dgst" -hmac option.  
						
						 
						
						
						
						
					 
					
						2008-05-19 07:43:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1820b04bb2 
					 
					
						
						
							
							Typo.  
						
						 
						
						... 
						
						
						
						PR: 1672 
						
						
					 
					
						2008-05-18 13:52:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						439b7ef463 
					 
					
						
						
							
							Another occurance of possible valgrind/purify "uninitialized memory"  
						
						 
						
						... 
						
						
						
						complaint related to the PRNG: with PURIFY policy don't feed uninitialized
memory into the PRNG.
Submitted by: Bodo Moeller <bmoeller@openssl.org > :-) 
						
						
					 
					
						2008-05-16 07:14:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a25fb95bd6 
					 
					
						
						
							
							Always seed PRNG for new requests no matter what key type. RSA may need  
						
						 
						
						... 
						
						
						
						the PRNG for blinding.
PR: 1666 
						
						
					 
					
						2008-05-12 16:07:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6168067160 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-05-09 23:17:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c3031a4610 
					 
					
						
						
							
							Avoid BN_MONT_CTX incompatibility.  
						
						 
						
						
						
						
					 
					
						2008-05-02 18:47:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1099a94063 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-05-01 23:31:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						812d8a176c 
					 
					
						
						
							
							Unobtrusive backport of 32-bit x86 Montgomery improvements from 0.9.9-dev:  
						
						 
						
						... 
						
						
						
						you need to use "enable-montasm" to see a difference.  (Huge speed
advantage, but BN_MONT_CTX is not binary compatible, so this can't be
enabled by default in the 0.9.8 branch.)
The CHANGES entry also covers the 64-bit x86 backport in November 2007
by appro. 
						
						
					 
					
						2008-05-01 23:11:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db533c96e3 
					 
					
						
						
							
							TLS ticket key setting callback: this allows and application to set  
						
						 
						
						... 
						
						
						
						its own TLS ticket keys. 
						
						
					 
					
						2008-04-30 16:11:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8831eb7624 
					 
					
						
						
							
							Do not permit stateless session resumption is session IDs mismatch.  
						
						 
						
						
						
						
					 
					
						2008-04-29 17:22:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3c8f315021 
					 
					
						
						
							
							Support ticket renewal in state machine (not used at present).  
						
						 
						
						
						
						
					 
					
						2008-04-29 16:41:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0f2e636602 
					 
					
						
						
							
							Status strings for ticket states.  
						
						 
						
						
						
						
					 
					
						2008-04-29 16:38:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						98bd148b1a 
					 
					
						
						
							
							Fix auto-discovery of ENGINEs, ported from HEAD.  
						
						 
						
						... 
						
						
						
						NB, this fixes a regression relative to 0.9.7 and the documented behaviour,
but it would make sense for distro maintainers and others with an interest
in system behaviour to test with this change. The fix re-enables behaviour
that was broken and thus inherently disabled. In particular, if you
register an ENGINE implementation, and that ENGINE is able to successfully
self-initialise on the host, it will get used automatically (as claimed in
the documentation and as was the case for 0.9.7) - this was not the case
with 0.9.8 until now because of a bug.
PR: 1668
Submitted by: Ian Lister
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2008-04-28 21:45:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						292248b8c2 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-27 18:52:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3eef3e5af 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-25 16:27:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c5fbf8c1ba 
					 
					
						
						
							
							Compensate inline assembler in sha512.c for gcc 2.7.2 compiler bug [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1667 
						
						
					 
					
						2008-04-24 10:00:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1ed2d8f512 
					 
					
						
						
							
							bn_nist.c update from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1593 
						
						
					 
					
						2008-04-18 15:51:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d140890259 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-18 11:19:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						eb492df2bb 
					 
					
						
						
							
							Add missing 'extern "C" {' to some _err.h files in crypto/engines/  
						
						 
						
						... 
						
						
						
						PR: 1609 
						
						
					 
					
						2008-04-18 07:43:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2c16e78400 
					 
					
						
						
							
							Synchronise with Unix  
						
						 
						
						
						
						
					 
					
						2008-04-18 06:07:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						bf2b87aea3 
					 
					
						
						
							
							Fix incorrect return value in apps/apps.c:parse_yesno()  
						
						 
						
						... 
						
						
						
						PR: 1607
Submitted by: "Christophe Macé" <mace.christophe@gmail.com > 
						
						
					 
					
						2008-04-17 14:15:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						1dff425999 
					 
					
						
						
							
							Correctly handle case of bad arguments supplied to rsautl  
						
						 
						
						... 
						
						
						
						PR: 1659 
						
						
					 
					
						2008-04-17 13:36:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						501af5ba89 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-12 10:15:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						31d6e7b7ba 
					 
					
						
						
							
							Provide other forms for symbols that are too long or that clash with others  
						
						 
						
						
						
						
					 
					
						2008-04-12 08:40:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b983322bfb 
					 
					
						
						
							
							Revert change from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-11 23:23:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						339654e163 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-11 17:34:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5ca48cc853 
					 
					
						
						
							
							Synchronise with Unix build  
						
						 
						
						
						
						
					 
					
						2008-04-11 01:53:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						79996e3335 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-09 22:12:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						173acc185c 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-07 11:01:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a985ecdd17 
					 
					
						
						
							
							Fix URI of OpenSSL Request Tracker information  
						
						 
						
						... 
						
						
						
						PR: 1661 
						
						
					 
					
						2008-04-07 06:35:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb4c24b6e7 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-06 16:30:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1366f6b9bd 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-06 15:57:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e13546f739 
					 
					
						
						
							
							Update error codes.  
						
						 
						
						
						
						
					 
					
						2008-04-06 15:46:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d6c813daff 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-06 15:42:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e3818a4c4b 
					 
					
						
						
							
							Update WIN32 build system for CMS and update ordinals.  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:45:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						415fe2abe9 
					 
					
						
						
							
							Delete functions not implemented in 0.9.8 from cms.h  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:31:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5bbdaaf4b7 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:29:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf1f1a5759 
					 
					
						
						
							
							Update WIN32 build system for CMS.  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:21:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e42429c9d 
					 
					
						
						
							
							Update default CFLAGS and dependencies.  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:18:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c43c2285f6 
					 
					
						
						
							
							Add S/MIME test certs.  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:09:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						94b2c29f9d 
					 
					
						
						
							
							Backport of CMS code to 0.9.8-stable branch. Disabled by default.  
						
						 
						
						
						
						
					 
					
						2008-04-03 23:03:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						090f931a35 
					 
					
						
						
							
							Add -DOPENSSL_NO_DEPRECATED to debug-steve* targets. Add headers to make  
						
						 
						
						... 
						
						
						
						build work. 
						
						
					 
					
						2008-04-02 14:51:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b8be6da76 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2008-04-02 11:45:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7ec2d392e7 
					 
					
						
						
							
							Backport of zlib compression BIO from HEAD. Update mkdef.pl script to handle  
						
						 
						
						... 
						
						
						
						ZLIB. Update ordinals. 
						
						
					 
					
						2008-04-02 11:37:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e88f66bb49 
					 
					
						
						
							
							Add CHANGES entry for key wrap.  
						
						 
						
						
						
						
					 
					
						2008-04-02 11:21:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						28a2759ab8 
					 
					
						
						
							
							Add RFC3394 compatible key wrap algorithm.  
						
						 
						
						
						
						
					 
					
						2008-04-02 11:18:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3edad44d6e 
					 
					
						
						
							
							Avoid "initializer not constant" errors when compiling in pedantic mode.  
						
						 
						
						
						
						
					 
					
						2008-04-02 11:15:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e7459fc5d 
					 
					
						
						
							
							Backport some useful ASN1 utility functions from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-04-02 11:11:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b98f5ef42b 
					 
					
						
						
							
							Add debug-steve{32,64} targets to Configure script.  
						
						 
						
						
						
						
					 
					
						2008-04-02 11:09:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a6d4f79f24 
					 
					
						
						
							
							Add new missing CMS OIDs.  
						
						 
						
						
						
						
					 
					
						2008-04-02 10:45:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						efcb7a75fc 
					 
					
						
						
							
							Fix fast reduction on NIST curves [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1593 
						
						
					 
					
						2008-04-01 08:40:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						30aa23fea2 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-03-31 14:59:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c9e045041e 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2008-03-31 14:28:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd6fa9c0b2 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-03-29 13:22:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9f70d09275 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2008-03-12 13:06:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3fb0f01001 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-03-12 00:38:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						216ac24bd3 
					 
					
						
						
							
							Add missing changelog entry for  http://cvs.openssl.org/chngview?cn=16587  
						
						 
						
						
						
						
					 
					
						2008-02-28 13:35:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2035af2091 
					 
					
						
						
							
							Make x86_64-mont.pl work with debug Win64 build [from HEAD].  
						
						 
						
						
						
						
					 
					
						2008-02-27 20:14:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						19398a175a 
					 
					
						
						
							
							fix BIGNUM flag handling  
						
						 
						
						
						
						
					 
					
						2008-02-27 06:02:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fa369ddbe7 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-02-25 18:12:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						294ba3c282 
					 
					
						
						
							
							Make sure to set indent-tabs-mode so that we get tabs, not spaces.  
						
						 
						
						
						
						
					 
					
						2008-02-21 07:23:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2923e91a98 
					 
					
						
						
							
							Allow 32-bit perl to generate x86_64 assembler.  
						
						 
						
						
						
						
					 
					
						2008-02-13 20:01:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7c52b7706f 
					 
					
						
						
							
							Source readability fix, which incidentally works around XLC compiler bug  
						
						 
						
						... 
						
						
						
						[from HEAD].
PR: 1272 
						
						
					 
					
						2008-02-11 13:18:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ddec587581 
					 
					
						
						
							
							Make aes-x86_64 work with debug Win64 build [from HEAD].  
						
						 
						
						
						
						
					 
					
						2008-02-11 13:13:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4f466f8e81 
					 
					
						
						
							
							x86_64-xlate.pl update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-02-11 13:07:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						1502cda142 
					 
					
						
						
							
							Add missing colon in manpage  
						
						 
						
						... 
						
						
						
						Submitted by: Richard Hartmann <richih.mailinglist@gmail.com > 
						
						
					 
					
						2008-01-30 08:26:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce2b5d7574 
					 
					
						
						
							
							Add GlobalSign root CA.  
						
						 
						
						
						
						
					 
					
						2008-01-26 23:43:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f1c65db80b 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2008-01-23 19:25:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						496970b233 
					 
					
						
						
							
							Stop nasm/nasmw test complaining on stderr.  
						
						 
						
						
						
						
					 
					
						2008-01-04 00:40:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b0e61a812 
					 
					
						
						
							
							Netware support.  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter Knauf <eflash@gmx.net > 
						
						
					 
					
						2008-01-03 22:53:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e84b0d709b 
					 
					
						
						
							
							Typo in  http://cvs.openssl.org/chngview?cn=16833 .  
						
						 
						
						
						
						
					 
					
						2008-01-03 17:15:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						16241f0ea4 
					 
					
						
						
							
							NASM has recently changed name of win32 pre-compiled binary [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1627 
						
						
					 
					
						2008-01-03 17:14:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						518af4e3ae 
					 
					
						
						
							
							Update from HEAD  
						
						 
						
						
						
						
					 
					
						2008-01-03 16:37:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe01f90a1c 
					 
					
						
						
							
							Add fips-fingerprint option to dgst.c to use the appropriate FIPS HMAC key.  
						
						 
						
						
						
						
					 
					
						2007-12-23 13:38:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						99a376df16 
					 
					
						
						
							
							file fipsalgtest.pl was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2007-12-22 19:31:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						831ffcb705 
					 
					
						
						
							
							Typo in darinw64-ppc-cc config line.  
						
						 
						
						... 
						
						
						
						PR: 1622 
						
						
					 
					
						2007-12-16 20:42:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f297c4504 
					 
					
						
						
							
							Updates from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-12-16 16:38:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d7623ff9f3 
					 
					
						
						
							
							Update .cvsignore  
						
						 
						
						
						
						
					 
					
						2007-12-14 19:36:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df9b5405e8 
					 
					
						
						
							
							Don't shadow.  
						
						 
						
						
						
						
					 
					
						2007-12-14 19:34:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						180eb5b3c2 
					 
					
						
						
							
							gmp engine was non-operational.  
						
						 
						
						
						
						
					 
					
						2007-12-04 20:30:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						af7d49aaff 
					 
					
						
						
							
							opensslwrap.sh update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-12-04 20:29:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						187b655bc2 
					 
					
						
						
							
							Some assembler are allergic to lea reg,BYTE PTR[...].  
						
						 
						
						... 
						
						
						
						Submitted by: Guenter Knauf 
						
						
					 
					
						2007-12-02 21:32:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8612cb9239 
					 
					
						
						
							
							Learn how to spell "Repository"  
						
						 
						
						
						
						
					 
					
						2007-11-23 00:18:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b2f3fafa6a 
					 
					
						
						
							
							Oops, use the right caRepository OID this time ;-)  
						
						 
						
						
						
						
					 
					
						2007-11-23 00:11:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						483dab147d 
					 
					
						
						
							
							Add caRepository OID to OpenSSL.  
						
						 
						
						
						
						
					 
					
						2007-11-23 00:07:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f39b8e697c 
					 
					
						
						
							
							Typos in man pages: dependant->dependent  
						
						 
						
						... 
						
						
						
						Submitted by: Tobias Stoeckmann <tobias@bugol.de > 
						
						
					 
					
						2007-11-19 09:18:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7d610299c9 
					 
					
						
						
							
							Should reject signatures that we can't properly verify  
						
						 
						
						... 
						
						
						
						and couldn't generate
(as pointed out by Ernst G Giessmann) 
						
						
					 
					
						2007-11-19 07:25:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						25550b2dd4 
					 
					
						
						
							
							fix typos  
						
						 
						
						... 
						
						
						
						Submitted by: Ernst G. Giessmann 
						
						
					 
					
						2007-11-19 07:23:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5c676c47cd 
					 
					
						
						
							
							The hash length check wasn't strict enough,  
						
						 
						
						... 
						
						
						
						as pointed out by Ernst G Giessmann 
						
						
					 
					
						2007-11-16 13:00:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e77f9d5e78 
					 
					
						
						
							
							Fix buffer overflow.  
						
						 
						
						
						
						
					 
					
						2007-11-15 13:33:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						9c04747623 
					 
					
						
						
							
							Make depend.  
						
						 
						
						
						
						
					 
					
						2007-11-15 13:32:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e66deb6817 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2007-11-15 13:32:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cc9a645a02 
					 
					
						
						
							
							Add x86_64-mont.pl [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-11-11 21:04:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						18fb9d807e 
					 
					
						
						
							
							Add framework for bn_mul_mont [from 098-fips].  
						
						 
						
						
						
						
					 
					
						2007-11-11 20:43:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a1cc568288 
					 
					
						
						
							
							doc/crypto/OPENSSL_ia32cap.pod update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-11-11 20:10:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2ea3cd8abc 
					 
					
						
						
							
							Comply with updated x86cpuid.pl.  
						
						 
						
						
						
						
					 
					
						2007-11-11 20:06:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						095db72024 
					 
					
						
						
							
							x86cpuid.pl update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-11-11 19:44:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						11eb172b6e 
					 
					
						
						
							
							Typos in Configure.  
						
						 
						
						
						
						
					 
					
						2007-11-11 16:39:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4b60f4b175 
					 
					
						
						
							
							rc4-x86_64.pl update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-11-11 16:25:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0794f3a798 
					 
					
						
						
							
							x86_64cpuid.pl update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-11-11 16:25:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2b8e7b5061 
					 
					
						
						
							
							Add AES x86_64 assembler. Note that it's not latest version from HEAD,  
						
						 
						
						... 
						
						
						
						but older one corresponding to x86 module from 098-stable. 
						
						
					 
					
						2007-11-11 14:49:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6f57311da0 
					 
					
						
						
							
							Add SHA x86_64 assembler [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-11-11 13:56:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						98b09d3949 
					 
					
						
						
							
							Synchronize message digests in 098-fips with 098.  
						
						 
						
						
						
						
					 
					
						2007-11-11 13:34:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						231a737a82 
					 
					
						
						
							
							Commit  #16325  fixed one thing but broke DH with certain moduli [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-11-03 20:09:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						236860735e 
					 
					
						
						
							
							Allow new session ticket when resuming.  
						
						 
						
						
						
						
					 
					
						2007-11-03 13:07:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						ac1ef7ec72 
					 
					
						
						
							
							Add OIDs by CMP (RFC 4210) and CRMF (RFC 4211)  
						
						 
						
						... 
						
						
						
						Submitted by: Martin Peylo <martinmeis@googlemail.com > 
						
						
					 
					
						2007-11-01 08:25:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5f761514e1 
					 
					
						
						
							
							Make it possible for older masm to compile sse2 modules.  
						
						 
						
						... 
						
						
						
						PR: 1592 
						
						
					 
					
						2007-10-21 14:15:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						32f1f622f6 
					 
					
						
						
							
							Release OpenSSL 0.9.8g with various fixes to issues introduced with 0.9.8f  
						
						 
						
						
						
						
					 
					
						2007-10-19 08:25:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f95651316 
					 
					
						
						
							
							Ensure the ticket expected flag is reset when a stateless resumption is  
						
						 
						
						... 
						
						
						
						successful. 
						
						
					 
					
						2007-10-18 11:39:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ccac657556 
					 
					
						
						
							
							New unused field crippled ssl_ctx_st in 0.9.8"f".  
						
						 
						
						
						
						
					 
					
						2007-10-17 21:22:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a9c23ea079 
					 
					
						
						
							
							Don't let DTLS ChangeCipherSpec increment handshake sequence number. From  
						
						 
						
						... 
						
						
						
						HEAD with a twist: server interoperates with non-compliant client.
PR: 1587 
						
						
					 
					
						2007-10-17 21:17:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33ffe2a7f7 
					 
					
						
						
							
							Don't try to lookup zero length session.  
						
						 
						
						
						
						
					 
					
						2007-10-17 17:30:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c717aafc6 
					 
					
						
						
							
							Allow TLS tickets and session ID to both be present if lifetime hint is -1.  
						
						 
						
						... 
						
						
						
						This never happens in normal SSL sessions but can be useful if the session
is being used as a "blob" to contain other data. 
						
						
					 
					
						2007-10-17 11:27:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						225aeb171e 
					 
					
						
						
							
							Work around inconsistent version numbering in 0.9.8f (release).  
						
						 
						
						... 
						
						
						
						The version code of the release should have been 09086f (6=f, f=release)
but accidently it was marked "090870" (which would be "0.9.8g-dev").
Therefore we now use "090871" for the development of 0.9.8g. Once
0.9.8g is released, the problem will be "healed". We have never done
beta releases for 0.9.x-stable patch releases, so 090871 would never
be used in practice.
PR: #1589  
						
						
					 
					
						2007-10-17 07:46:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ffe181c366 
					 
					
						
						
							
							Make ssl compile.  
						
						 
						
						
						
						
					 
					
						2007-10-14 14:07:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fd4e79a9ed 
					 
					
						
						
							
							Include USE_SOCKETS #define  
						
						 
						
						
						
						
					 
					
						2007-10-14 12:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						299e174d2d 
					 
					
						
						
							
							Make it possible to link VC static lib with either /MT or /MD application  
						
						 
						
						... 
						
						
						
						[from HEAD].
PR: 1230 
						
						
					 
					
						2007-10-13 12:38:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ce62fc6eae 
					 
					
						
						
							
							Copy bn/asm/ia64.S from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-10-13 11:02:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43490dfb89 
					 
					
						
						
							
							Avoid shadow and signed/unsigned warnings.  
						
						 
						
						
						
						
					 
					
						2007-10-12 00:29:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a523276786 
					 
					
						
						
							
							Backport certificate status request TLS extension support to 0.9.8.  
						
						 
						
						
						
						
					 
					
						2007-10-12 00:00:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						074471ab0c 
					 
					
						
						
							
							Back to -dev.  
						
						 
						
						
						
						
					 
					
						2007-10-11 18:27:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d761421e1d 
					 
					
						
						
							
							Minor release cockups.  
						
						 
						
						
						
						
					 
					
						2007-10-11 18:23:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2339c5d722 
					 
					
						
						
							
							Next version.  
						
						 
						
						
						
						
					 
					
						2007-10-11 15:04:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						dd00266757 
					 
					
						
						
							
							Ready to roll.  
						
						 
						
						
						
						
					 
					
						2007-10-11 14:58:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						bb99ce5f80 
					 
					
						
						
							
							make update, and more DTLS stuff.  
						
						 
						
						
						
						
					 
					
						2007-10-11 14:36:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						49f42ec0f6 
					 
					
						
						
							
							Respect cookie length set by app_gen_cookie_cb [from HEAD].  
						
						 
						
						... 
						
						
						
						Submitted by: Alex Lam 
						
						
					 
					
						2007-10-09 19:31:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						91d509f0d9 
					 
					
						
						
							
							Make DTLS1 record layer MAC calculation RFC compliant. From HEAD with a  
						
						 
						
						... 
						
						
						
						twist: server interoperates with non-compliant pre-0.9.8f client. 
						
						
					 
					
						2007-10-09 19:22:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d5e858c55f 
					 
					
						
						
							
							Prohibit RC4 in DTLS [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-10-05 21:05:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb8fcce2ac 
					 
					
						
						
							
							Fix from fips branch.  
						
						 
						
						
						
						
					 
					
						2007-10-05 16:47:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d4736ae701 
					 
					
						
						
							
							Set client_version earlier in DTLS (this is 0.9.8 specific).  
						
						 
						
						
						
						
					 
					
						2007-10-03 10:18:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3e1158522a 
					 
					
						
						
							
							Oops! This was erroneously left out commit  #16633 .  
						
						 
						
						
						
						
					 
					
						2007-10-01 06:28:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						57191f86d9 
					 
					
						
						
							
							Explicit IV update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-09-30 22:03:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a89c575de 
					 
					
						
						
							
							Make ChangeCipherSpec compliant with DTLS RFC4347. From HEAD with a twist:  
						
						 
						
						... 
						
						
						
						server interoperates with non-compliant pre-0.9.8f. 
						
						
					 
					
						2007-09-30 21:20:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c860910df 
					 
					
						
						
							
							DTLS RFC4347 says HelloVerifyRequest resets Finished MAC. From HEAD with a  
						
						 
						
						... 
						
						
						
						twist: server allows for non-compliant Finished calculations in order to
enable interop with pre-0.9.8f. 
						
						
					 
					
						2007-09-30 19:36:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0fc3d51b7d 
					 
					
						
						
							
							DTLS RFC4347 requires client to use rame random field in reply to  
						
						 
						
						... 
						
						
						
						HelloVerifyRequest [from HEAD]. 
						
						
					 
					
						2007-09-30 19:15:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c4b0d7879e 
					 
					
						
						
							
							Switch for RFC-compliant version encoding in DTLS. From HEAD with a twist:  
						
						 
						
						... 
						
						
						
						server accepts even non-compliant encoding in order to enable interop with
pre-0.9.8f clients. 
						
						
					 
					
						2007-09-30 18:55:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aab1ec3f36 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-09-28 16:29:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						fbfa11fb29 
					 
					
						
						
							
							Typos  
						
						 
						
						... 
						
						
						
						PR: 1578
Submitted by: Charles Longeau <chl@tuxfamily.org > 
						
						
					 
					
						2007-09-24 11:22:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						284498fcef 
					 
					
						
						
							
							Finish sentence with a "."  
						
						 
						
						
						
						
					 
					
						2007-09-24 10:58:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						07d9808496 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-09-23 15:55:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4ab0088bfe 
					 
					
						
						
							
							More changes from HEAD:  
						
						 
						
						... 
						
						
						
						- no need to disable SSL 2.0 for SSL_CTRL_SET_TLSEXT_HOSTNAME
  now that ssl23_client_hello takes care of that
- fix buffer overrun checks in ssl_add_serverhello_tlsext() 
						
						
					 
					
						2007-09-21 14:05:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3bd1690bfb 
					 
					
						
						
							
							Fixes from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-09-21 13:40:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						29f4b05954 
					 
					
						
						
							
							The use of the PURIFY macro in ssleay_rand_bytes() is sufficient to  
						
						 
						
						... 
						
						
						
						resolve the Valgrind issue with random numbers. Undo the changes to
RAND_bytes() and RAND_pseudo_bytes() that are redundant in this
respect.
Update documentation and FAQ accordingly, as the PURIFY macro is
available at least since 0.9.7. 
						
						
					 
					
						2007-09-21 10:10:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						48ca0c99b2 
					 
					
						
						
							
							Use PURIFY instead of PEDANTIC.  
						
						 
						
						
						
						
					 
					
						2007-09-20 12:33:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						015052cf7b 
					 
					
						
						
							
							Clarify wording a little.  
						
						 
						
						
						
						
					 
					
						2007-09-20 11:32:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						9ce3ee47ba 
					 
					
						
						
							
							Add FAQ entry on how to get rid of Valgrind warnings.  
						
						 
						
						... 
						
						
						
						PR: 521 
						
						
					 
					
						2007-09-20 07:39:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						2e3fd54337 
					 
					
						
						
							
							Add passage to manual page actually reflecting the usage of the  
						
						 
						
						... 
						
						
						
						contents of "buf" when calling RAND_*bytes(). 
						
						
					 
					
						2007-09-20 07:24:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						625782f7ee 
					 
					
						
						
							
							Wrap "keep valgrind happy" change in #ifdef PEDANTIC so any entropy in the  
						
						 
						
						... 
						
						
						
						buffer can be normally used. 
						
						
					 
					
						2007-09-19 13:29:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1c90899eef 
					 
					
						
						
							
							Slight bug in dependencies caused occasional unnecessary diffs. Fixed.  
						
						 
						
						
						
						
					 
					
						2007-09-19 13:10:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4f2b7d48b1 
					 
					
						
						
							
							make depend  
						
						 
						
						
						
						
					 
					
						2007-09-19 12:17:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						458c3900e1 
					 
					
						
						
							
							Lingering "security" fix.  
						
						 
						
						
						
						
					 
					
						2007-09-19 12:16:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ba75b4e750 
					 
					
						
						
							
							Wire DES weak_keys to read-only segment [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-09-18 20:59:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ab011d51be 
					 
					
						
						
							
							Minimize stack utilization in probable_prime [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-09-18 20:55:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						898d9b1a87 
					 
					
						
						
							
							Remove excessive whitespaces from bio.h.  
						
						 
						
						
						
						
					 
					
						2007-09-18 20:49:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4f9a9d2b79 
					 
					
						
						
							
							Make sure that BN_from_montgomery keeps the BIGNUMS in proper format  
						
						 
						
						
						
						
					 
					
						2007-09-18 16:31:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						346f2f93e1 
					 
					
						
						
							
							PR: 1560  
						
						 
						
						
						
						
					 
					
						2007-09-17 17:54:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						25b0e072dd 
					 
					
						
						
							
							PR: 1582  
						
						 
						
						
						
						
					 
					
						2007-09-17 17:30:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dc13c882fb 
					 
					
						
						
							
							enc.pod update [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1529 
						
						
					 
					
						2007-09-17 16:43:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						12a52467c8 
					 
					
						
						
							
							Typo in pq_compat.h [note that this file is not present in HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1537 
						
						
					 
					
						2007-09-17 16:21:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						22e6c73dcc 
					 
					
						
						
							
							Mention SHA2 in apps/dgst and openssl.pod.  
						
						 
						
						... 
						
						
						
						PR: 1575 
						
						
					 
					
						2007-09-17 15:57:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						53b9696f3f 
					 
					
						
						
							
							It's inappropraite to override application signal, nor is it appropriate  
						
						 
						
						... 
						
						
						
						to shut down Winsock unless we know it won't be used [and we never do]
[from HEAD].
PR: 1439 
						
						
					 
					
						2007-09-16 18:35:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7e4fe4662b 
					 
					
						
						
							
							Minor fix in link_[oa].hpux [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-09-16 14:11:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						18fd413f37 
					 
					
						
						
							
							BSD run-time linkers apparently demand RPATH on .so objects [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1381 
						
						
					 
					
						2007-09-16 12:24:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						80ed5f84de 
					 
					
						
						
							
							Make bn2dec work on "SIXTY_FOUR_BIT" platforms [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1456 
						
						
					 
					
						2007-09-15 17:05:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b48111df7c 
					 
					
						
						
							
							More Intel cc fix-ups [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-09-14 19:32:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						73e3edd70d 
					 
					
						
						
							
							It's unfortunate, but we have to disengage DES assembler in linux64-sparcv9  
						
						 
						
						... 
						
						
						
						build, because it expects DES_INT and the latter didn't make it to first
0.9.8. 
						
						
					 
					
						2007-09-14 15:39:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d4cfbdf2c0 
					 
					
						
						
							
							Integrate remaining parts of  #14247  [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-09-07 12:27:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						294f03a812 
					 
					
						
						
							
							Reimplement safestack to avoid function pointer casts.  
						
						 
						
						
						
						
					 
					
						2007-09-06 21:07:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						272f9f3d27 
					 
					
						
						
							
							Update NEWS file.  
						
						 
						
						
						
						
					 
					
						2007-09-06 12:59:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						927a28ba3b 
					 
					
						
						
							
							gcc 4.2 fixes to avoid use or function pointer casts in OpenSSL.  
						
						 
						
						... 
						
						
						
						Fix various "computed value not used" warnings too. 
						
						
					 
					
						2007-09-06 12:43:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a938c4284e 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-08-31 00:28:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a44a0cee7 
					 
					
						
						
							
							aes_ige update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-08-30 08:11:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						82430309ac 
					 
					
						
						
							
							darwin platform updates [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-08-30 08:10:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2079de880 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-08-28 01:12:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						967ead7269 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-08-27 23:47:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c9255df519 
					 
					
						
						
							
							shlib_wrap update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-08-27 08:52:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						27c824a1c9 
					 
					
						
						
							
							IRIX and Tru64 platform updates [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-08-26 14:18:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5b96d1ccf9 
					 
					
						
						
							
							Clarify CHANGES entry.  
						
						 
						
						
						
						
					 
					
						2007-08-23 22:58:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29c0866b38 
					 
					
						
						
							
							Update docs and NEWS file.  
						
						 
						
						
						
						
					 
					
						2007-08-23 22:53:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0214ea0dfe 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-08-23 22:49:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						80355002a1 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-08-23 12:20:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e36825228 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2007-08-23 12:16:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						95a8f1469f 
					 
					
						
						
							
							VAX C can't handle 64 bit integers, making SHA512 impossible...  
						
						 
						
						
						
						
					 
					
						2007-08-22 20:58:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						afdbadc704 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-08-20 12:44:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						004cc26abf 
					 
					
						
						
							
							file fips_rsa_sign.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:21 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						35a924c576 
					 
					
						
						
							
							file fips_rsa_lib.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:21 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						99279ac97a 
					 
					
						
						
							
							file fips_dsa_key.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:15 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						87605ca1e2 
					 
					
						
						
							
							file fips_dsa_sign.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:16 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7cc586f117 
					 
					
						
						
							
							file fips_dsa_lib.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:15 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c263a6092c 
					 
					
						
						
							
							file dh_gen.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:14 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f92fd85400 
					 
					
						
						
							
							file fips_dh_lib.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:14 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e71520ddd6 
					 
					
						
						
							
							file fipstests.sh was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						275f34b5d2 
					 
					
						
						
							
							file fipstests.bat was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						50fbb6ed36 
					 
					
						
						
							
							file mkfipsscr.pl was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						34fdacbd35 
					 
					
						
						
							
							file fips_utl.h was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77f2d20dbc 
					 
					
						
						
							
							file fips_premain.c.sha1 was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0dbfbf26cb 
					 
					
						
						
							
							file fips-nodiff.txt was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:09 +0000  
						
						 
						
						
						
						
					 
					
						2007-08-15 13:35:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2863a6878f 
					 
					
						
						
							
							Update to Win32 build system to it knows about TLS extension code.  
						
						 
						
						
						
						
					 
					
						2007-08-12 22:31:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae46e91e4d 
					 
					
						
						
							
							Update default dependency flag.  
						
						 
						
						
						
						
					 
					
						2007-08-12 19:05:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						865a90eb4f 
					 
					
						
						
							
							Backport of TLS extension code to OpenSSL 0.9.8.  
						
						 
						
						... 
						
						
						
						Include server name and RFC4507bis support.
This is not compiled in by default and must be explicitly enabled with
the Configure option enable-tlsext 
						
						
					 
					
						2007-08-12 18:59:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0269c4507c 
					 
					
						
						
							
							Typos in ./config [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1563 
						
						
					 
					
						2007-08-01 11:21:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a5d3574984 
					 
					
						
						
							
							MacOS X update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-07-31 20:03:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1040deb0c5 
					 
					
						
						
							
							Respect ISO aliasing rules [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1296 
						
						
					 
					
						2007-07-27 20:34:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						05ea800faf 
					 
					
						
						
							
							AES for IA64 update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-07-27 18:22:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						341f87862c 
					 
					
						
						
							
							Don't set OPENSSL_IA32_SSE2 on x86_64.  
						
						 
						
						
						
						
					 
					
						2007-07-24 14:40:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f805d30769 
					 
					
						
						
							
							SSE2 and AES assembly language support for VC++ build.  
						
						 
						
						
						
						
					 
					
						2007-07-19 17:39:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fb9472cc2 
					 
					
						
						
							
							file do_fips.bat was added on branch OpenSSL_0_9_8-stable on 2008-09-18 12:13:54 +0000  
						
						 
						
						
						
						
					 
					
						2007-07-19 16:11:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a8098740c6 
					 
					
						
						
							
							Relax ISA detection.  
						
						 
						
						
						
						
					 
					
						2007-07-19 10:45:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e3af0d041e 
					 
					
						
						
							
							Fix masm type-casting problem in SSE2 code.  
						
						 
						
						
						
						
					 
					
						2007-07-18 20:25:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						28cfda9f30 
					 
					
						
						
							
							shlib_wrap.sh update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-07-16 14:02:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a313e23fff 
					 
					
						
						
							
							Shut up memory debuggers complaining about AES x86 assembler module  
						
						 
						
						... 
						
						
						
						[it was not a bug!].
PR: 1508,1320 
						
						
					 
					
						2007-07-08 19:41:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4d2a292e8a 
					 
					
						
						
							
							EVP_*_cfb1 was broken [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1318 
						
						
					 
					
						2007-07-08 19:18:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5a84b7fc2d 
					 
					
						
						
							
							bn_mul_recursive doesn't handle all cases correctly, which results in  
						
						 
						
						... 
						
						
						
						BN_mul failures at certain key-length mixes [from HEAD].
PR: 1427 
						
						
					 
					
						2007-07-08 18:54:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8e660a6dc 
					 
					
						
						
							
							Typo in str_lib [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1177 
						
						
					 
					
						2007-07-07 20:11:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						761f3b403b 
					 
					
						
						
							
							Fix more unused value warnings.  
						
						 
						
						
						
						
					 
					
						2007-07-04 13:09:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4570d29404 
					 
					
						
						
							
							Update debug-steve  
						
						 
						
						
						
						
					 
					
						2007-07-04 12:57:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14346b3456 
					 
					
						
						
							
							Fix warnings: C++ comments and computed value not used.  
						
						 
						
						
						
						
					 
					
						2007-07-04 12:56:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						769f58aaaa 
					 
					
						
						
							
							file enc_min.c was added on branch OpenSSL_0_9_8-stable on 2008-09-15 22:21:41 +0000  
						
						 
						
						
						
						
					 
					
						2007-07-01 00:08:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a166e96d16 
					 
					
						
						
							
							bn_mont.c fix [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-06-29 13:12:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8dd8ce1dc3 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2007-06-23 19:07:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c5979a107 
					 
					
						
						
							
							Mention recent changes to bn_mont.c in CHANGES.  
						
						 
						
						
						
						
					 
					
						2007-06-20 17:44:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						649ab2dcfa 
					 
					
						
						
							
							Optimize OPENSSL_cleanse [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-06-20 17:37:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						71fc9b37ae 
					 
					
						
						
							
							Use -mcpu on alpha.  
						
						 
						
						... 
						
						
						
						PR:1545 
						
						
					 
					
						2007-06-19 15:41:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						283aedf498 
					 
					
						
						
							
							Privatize BN_*_no_branch [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-06-11 16:33:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a56614af2 
					 
					
						
						
							
							Eliminate conditional final subtraction in Montgomery multiplication  
						
						 
						
						... 
						
						
						
						[from HEAD]. 
						
						
					 
					
						2007-06-11 16:15:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						693c33e407 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-06-07 16:13:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d9a9aa027d 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-05-22 23:33:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b22250bb67 
					 
					
						
						
							
							Fix crypto/ec/ec_mult.c to work properly with scalars of value 0  
						
						 
						
						
						
						
					 
					
						2007-05-22 09:48:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d446120527 
					 
					
						
						
							
							Padlock engine fails to compile with -O0 -fPIC [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-05-20 07:14:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bb9d68489c 
					 
					
						
						
							
							Type cast fixes in aes-586.pl.  
						
						 
						
						
						
						
					 
					
						2007-05-19 20:12:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						affaea59fe 
					 
					
						
						
							
							cygwin shared rules update [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1517 
						
						
					 
					
						2007-05-19 19:41:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						81fc4c93ef 
					 
					
						
						
							
							Typo in x509_txt.c [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-05-19 18:04:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8957121c14 
					 
					
						
						
							
							More IGE speedup.  
						
						 
						
						
						
						
					 
					
						2007-05-13 15:04:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						50241bc84e 
					 
					
						
						
							
							AES IGE mode speedup.  
						
						 
						
						
						
						
					 
					
						2007-05-13 12:03:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e7f077f1ba 
					 
					
						
						
							
							Detect UltraSPARC T1 in ./config [from HEAD].  
						
						 
						
						
						
						
					 
					
						2007-05-04 13:06:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c3b82c7610 
					 
					
						
						
							
							Fix s390x detection in ./config.  
						
						 
						
						
						
						
					 
					
						2007-04-30 09:26:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2c12e7f6f5 
					 
					
						
						
							
							Ensure that AES remains the preferred cipher at any given key length.  
						
						 
						
						... 
						
						
						
						(This does not really require a special case for Camellia.) 
						
						
					 
					
						2007-04-25 07:58:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8db10d9ac4 
					 
					
						
						
							
							remove leftover from editing ...  
						
						 
						
						
						
						
					 
					
						2007-04-24 00:46:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c3cc4662af 
					 
					
						
						
							
							Add SEED encryption algorithm.  
						
						 
						
						... 
						
						
						
						PR: 1503
Submitted by: KISA
Reviewed by: Bodo Moeller 
						
						
					 
					
						2007-04-23 23:50:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						22892f9803 
					 
					
						
						
							
							fix error codes  
						
						 
						
						
						
						
					 
					
						2007-04-19 15:14:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						27eb115fb6 
					 
					
						
						
							
							don't violate the bn_check_top assertion in BN_mod_inverse_no_branch()  
						
						 
						
						
						
						
					 
					
						2007-04-19 14:45:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						51a596ef4f 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-04-09 11:46:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						97de8bd1e0 
					 
					
						
						
							
							file evp_cnf.c was added on branch OpenSSL_0_9_8-stable on 2008-09-15 22:21:41 +0000  
						
						 
						
						
						
						
					 
					
						2007-04-08 17:51:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1cb7e5be5b 
					 
					
						
						
							
							Fix OID config module.  
						
						 
						
						
						
						
					 
					
						2007-04-08 17:45:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						84dd04e761 
					 
					
						
						
							
							Make sure we detect corruption.  
						
						 
						
						
						
						
					 
					
						2007-04-04 12:50:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2ac061e487 
					 
					
						
						
							
							make BN_FLG_CONSTTIME semantics more fool-proof  
						
						 
						
						
						
						
					 
					
						2007-03-28 18:44:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7cdb81582c 
					 
					
						
						
							
							Change to mitigate branch prediction attacks  
						
						 
						
						... 
						
						
						
						Submitted by: Matthew D Wood
Reviewed by: Bodo Moeller 
						
						
					 
					
						2007-03-28 00:14:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f33b40302 
					 
					
						
						
							
							file segrenam.pl was added on branch OpenSSL_0_9_8-stable on 2008-09-18 11:20:08 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-27 00:04:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e600614ef5 
					 
					
						
						
							
							aix updates from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-03-25 15:34:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02581dea1f 
					 
					
						
						
							
							aix-shared rules from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-03-22 09:03:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						40ad08bcc2 
					 
					
						
						
							
							file arx.pl was added on branch OpenSSL_0_9_8-stable on 2008-09-16 21:44:57 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:39:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9c4456a13f 
					 
					
						
						
							
							file rsa_eng.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 14:55:26 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:38:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4d0392faa 
					 
					
						
						
							
							file rsa_x931g.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 22:54:29 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45ba6cfe03 
					 
					
						
						
							
							file rand_eng.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 11:52:33 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:38:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f23a0c797 
					 
					
						
						
							
							file dig_eng.c was added on branch OpenSSL_0_9_8-stable on 2008-09-15 22:21:40 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:38:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f6c32bbf2b 
					 
					
						
						
							
							file err_def.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 11:26:29 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:38:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d040c951f0 
					 
					
						
						
							
							file err_bio.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 11:26:29 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:38:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						69abfb0e33 
					 
					
						
						
							
							file dsa_utl.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 14:55:24 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:38:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a1daf8482 
					 
					
						
						
							
							file des_lib.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 11:17:48 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:37:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9de6dc3af3 
					 
					
						
						
							
							file buf_str.c was added on branch OpenSSL_0_9_8-stable on 2008-09-15 19:56:10 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:37:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						248834dcaa 
					 
					
						
						
							
							file bn_opt.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 11:08:24 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:37:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11a7da7c9f 
					 
					
						
						
							
							file o_init.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 22:48:18 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:37:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9fea0b9937 
					 
					
						
						
							
							file dyn_lck.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 15:11:50 +0000  
						
						 
						
						
						
						
					 
					
						2007-03-22 00:37:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						6fd3f3260d 
					 
					
						
						
							
							stricter session ID context matching  
						
						 
						
						
						
						
					 
					
						2007-03-21 14:33:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d9e262443c 
					 
					
						
						
							
							oops -- this should have been in 0.9.8e  
						
						 
						
						
						
						
					 
					
						2007-03-21 14:18:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						51c3bb3b98 
					 
					
						
						
							
							clarification regarding libdes files  
						
						 
						
						
						
						
					 
					
						2007-03-21 10:58:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7d608f9e32 
					 
					
						
						
							
							PowerPC config updates from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-03-20 09:06:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						295de18c8a 
					 
					
						
						
							
							Fix kerberos ciphersuite bugs introduced with PR:1336.  
						
						 
						
						
						
						
					 
					
						2007-03-09 14:06:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						3370b694b9 
					 
					
						
						
							
							Make local function static.  
						
						 
						
						
						
						
					 
					
						2007-03-08 15:52:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3380c52f15 
					 
					
						
						
							
							Stop memory leak.  
						
						 
						
						
						
						
					 
					
						2007-03-05 00:06:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						1364e6f1ac 
					 
					
						
						
							
							Initialize "buf" to 0 to make valgrind happy :-)  
						
						 
						
						... 
						
						
						
						Note: the RAND_bytes() manual page says:
 RAND_bytes() puts num cryptographically strong pseudo-random bytes into buf.
It does not talk about using the previous contents of buf so we are working
as documented. 
						
						
					 
					
						2007-03-02 17:54:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						c5ac2aa62c 
					 
					
						
						
							
							Do not use uninitialized memory to seed the PRNG as it may confuse  
						
						 
						
						... 
						
						
						
						code checking tools.
PR: 1499 
						
						
					 
					
						2007-03-02 17:44:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						392a0345de 
					 
					
						
						
							
							EVP_CIPHER_CTX_key_length() should return the set key length in the  
						
						 
						
						... 
						
						
						
						EVP_CIPHER_CTX structure which may not be the same as the underlying
cipher key length for variable length ciphers. 
						
						
					 
					
						2007-02-27 18:42:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						5c2fc73e7b 
					 
					
						
						
							
							Merge from HEAD  
						
						 
						
						
						
						
					 
					
						2007-02-27 08:26:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						402b951804 
					 
					
						
						
							
							include complete 0.9.7 history  
						
						 
						
						
						
						
					 
					
						2007-02-26 10:48:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5848d13fed 
					 
					
						
						
							
							use 2007 copyright for generated files  
						
						 
						
						
						
						
					 
					
						2007-02-26 10:47:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5dd24ead57 
					 
					
						
						
							
							Prepare for next version.  
						
						 
						
						
						
						
					 
					
						2007-02-23 12:50:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d2cb94952a 
					 
					
						
						
							
							Add L to version number  
						
						 
						
						
						
						
					 
					
						2007-02-23 12:38:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0615396d2d 
					 
					
						
						
							
							Prepare for release.  
						
						 
						
						
						
						
					 
					
						2007-02-23 12:12:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82877ea449 
					 
					
						
						
							
							Make update.  
						
						 
						
						
						
						
					 
					
						2007-02-23 01:01:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						81fae49db9 
					 
					
						
						
							
							Fix problem with multi line responses in -starttls by using a buffering  
						
						 
						
						... 
						
						
						
						BIO and BIO_gets(). 
						
						
					 
					
						2007-02-22 17:39:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						74ff8dc975 
					 
					
						
						
							
							Don't use deprecated -mcpu option.  
						
						 
						
						
						
						
					 
					
						2007-02-22 02:00:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac319217d0 
					 
					
						
						
							
							Update NEWS file.  
						
						 
						
						
						
						
					 
					
						2007-02-22 01:35:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						cdb13ae8d0 
					 
					
						
						
							
							Extend SMTP and IMAP protocol handling to perform the required  
						
						 
						
						... 
						
						
						
						EHLO or CAPABILITY handshake before sending STARTTLS
Submitted by: Goetz Babin-Ebell <goetz@shomitefo.de > 
						
						
					 
					
						2007-02-21 18:20:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						ab700807d9 
					 
					
						
						
							
							Add automatic detection for Linux on SuperH  
						
						 
						
						... 
						
						
						
						PR: 1152
Submitted by: Mike Frysinger <vapier@gentoo.org > 
						
						
					 
					
						2007-02-21 18:10:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						744b91bb9f 
					 
					
						
						
							
							Add support for m68 linux  
						
						 
						
						... 
						
						
						
						PR: 1277
Submitted by: Mike Frysinger <vapier@gentoo.org > 
						
						
					 
					
						2007-02-21 17:58:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						d69f85bf15 
					 
					
						
						
							
							Fix incorrect handling of special characters  
						
						 
						
						... 
						
						
						
						PR: 1459
Submitted by: tnitschke@innominate.com 
Reviewed by: steve@openssl.org  
						
						
					 
					
						2007-02-21 17:44:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52ee969e29 
					 
					
						
						
							
							Update from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2007-02-21 13:48:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						55f0501201 
					 
					
						
						
							
							Include "!eNULL" in SSL_DEFAULT_CIPHER_LIST to make sure that a  
						
						 
						
						... 
						
						
						
						ciphersuite string such as "DEFAULT:RSA" cannot enable
authentication-only ciphersuites. 
						
						
					 
					
						2007-02-19 18:38:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b2710ee19a 
					 
					
						
						
							
							remove inconsistency between builds with and without Camellia enabled  
						
						 
						
						
						
						
					 
					
						2007-02-19 17:55:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bbfcc4724d 
					 
					
						
						
							
							fix incorrect strength bit values for certain Kerberos ciphersuites  
						
						 
						
						... 
						
						
						
						Submitted by: Victor Duchovni 
						
						
					 
					
						2007-02-19 14:47:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c31cc72d79 
					 
					
						
						
							
							Avoid warning.  
						
						 
						
						
						
						
					 
					
						2007-02-18 18:18:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d1049ad93e 
					 
					
						
						
							
							Fix Win32 warnings.  
						
						 
						
						
						
						
					 
					
						2007-02-18 17:23:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5f4cc234fb 
					 
					
						
						
							
							Some fixes for ciphersuite string processing:  
						
						 
						
						... 
						
						
						
						- add a workaround provided by Victor Duchovni so that 128- and
  256-bit variants of otherwise identical ciphersuites are treated
  correctly;
- also, correctly skip invalid parts of ciphersuite description strings.
Submitted by: Victor Duchovni, Bodo Moeller 
						
						
					 
					
						2007-02-17 06:52:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d31a13953c 
					 
					
						
						
							
							ensure that the EVP_CIPHER_CTX object is initialized  
						
						 
						
						... 
						
						
						
						PR: 1490 
						
						
					 
					
						2007-02-16 20:40:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28f5873179 
					 
					
						
						
							
							Add STARTTLS support for IMAP and FTP.  
						
						 
						
						... 
						
						
						
						Submitted by Kees Cook <kees@outflux.net > 
						
						
					 
					
						2007-02-16 18:12:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8f813338f1 
					 
					
						
						
							
							- use OPENSSL_malloc() etc. in zlib  
						
						 
						
						... 
						
						
						
						- move zlib_stateful_ex_idx initialization to COMP_zlib()
PR: 1468 
						
						
					 
					
						2007-02-14 21:50:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6555dfa486 
					 
					
						
						
							
							use user-supplied malloc functions for persistent kssl objects  
						
						 
						
						... 
						
						
						
						PR: 1467
Submitted by: Andrei Pelinescu-Onciul <andrei@iptel.org > 
						
						
					 
					
						2007-02-10 10:40:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						5eee0253e5 
					 
					
						
						
							
							remove unreachable code  
						
						 
						
						
						
						
					 
					
						2007-02-10 09:48:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						594c723f98 
					 
					
						
						
							
							Add hmac option to dgst from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2007-02-08 19:08:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f418265865 
					 
					
						
						
							
							ensure that a ec key is used  
						
						 
						
						... 
						
						
						
						PR: 1476 
						
						
					 
					
						2007-02-07 20:36:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						53707e2eec 
					 
					
						
						
							
							After objects have been freed, NULLify the pointers so there will be no double  
						
						 
						
						... 
						
						
						
						free of those objects 
						
						
					 
					
						2007-02-07 01:42:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fde794e898 
					 
					
						
						
							
							fix typo  
						
						 
						
						
						
						
					 
					
						2007-02-06 19:48:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						082f19b42d 
					 
					
						
						
							
							add note about 56 bit ciphers  
						
						 
						
						... 
						
						
						
						PR: 1461 
						
						
					 
					
						2007-02-06 19:40:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e31c620686 
					 
					
						
						
							
							Update from fips2 branch.  
						
						 
						
						
						
						
					 
					
						2007-02-03 17:32:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						570253315f 
					 
					
						
						
							
							file err_str.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 11:26:29 +0000  
						
						 
						
						
						
						
					 
					
						2007-02-03 17:19:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5dcdac6e4e 
					 
					
						
						
							
							file fips_err.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 22:48:18 +0000  
						
						 
						
						
						
						
					 
					
						2007-02-03 17:19:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eea3fce854 
					 
					
						
						
							
							file fips_err.h was added on branch OpenSSL_0_9_8-stable on 2008-09-16 22:48:18 +0000  
						
						 
						
						
						
						
					 
					
						2007-02-03 17:19:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						215c49d032 
					 
					
						
						
							
							fix documentation  
						
						 
						
						... 
						
						
						
						PR: 1466 
						
						
					 
					
						2007-02-03 10:27:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						923df53e25 
					 
					
						
						
							
							fix potential memory leaks  
						
						 
						
						... 
						
						
						
						PR: 1462
Submitted by: Charles Hardin <chardin@2wire.com > 
						
						
					 
					
						2007-02-03 09:51:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1a684d0020 
					 
					
						
						
							
							file mksdef.pl was added on branch OpenSSL_0_9_8-stable on 2008-09-18 11:20:08 +0000  
						
						 
						
						
						
						
					 
					
						2007-01-27 13:19:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc3b721fa0 
					 
					
						
						
							
							Update from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2007-01-23 17:54:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4479ce9c1c 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-01-21 16:07:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a0d3530e0 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-01-21 13:16:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9907d2992d 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2007-01-18 21:25:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						9d9224f184 
					 
					
						
						
							
							Update do new home page  
						
						 
						
						
						
						
					 
					
						2007-01-12 18:47:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						78d4d87e39 
					 
					
						
						
							
							Initialize padlock in shared build.  
						
						 
						
						
						
						
					 
					
						2007-01-04 22:55:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6211633273 
					 
					
						
						
							
							#include <stddef.h> in digest headers [from HEAD].  
						
						 
						
						
						
						
					 
					
						2006-12-29 14:55:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3a4cf918bf 
					 
					
						
						
							
							fix return value of get_cert_chain()  
						
						 
						
						... 
						
						
						
						PR: 1441 
						
						
					 
					
						2006-12-27 09:39:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e25eb309ec 
					 
					
						
						
							
							From HEAD  
						
						 
						
						
						
						
					 
					
						2006-12-26 21:23:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ffa2b2aa7d 
					 
					
						
						
							
							Synchronise with Unixly build  
						
						 
						
						
						
						
					 
					
						2006-12-25 10:57:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a77a95584d 
					 
					
						
						
							
							Make sha.h more "portable" [from HEAD].  
						
						 
						
						
						
						
					 
					
						2006-12-22 16:04:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						68bb98159f 
					 
					
						
						
							
							fix typos  
						
						 
						
						... 
						
						
						
						PR: 1354, 1355, 1398 
						
						
					 
					
						2006-12-21 21:11:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8e6905d238 
					 
					
						
						
							
							remove trailing '\'  
						
						 
						
						... 
						
						
						
						PR: 1438 
						
						
					 
					
						2006-12-19 19:47:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1a8521ff24 
					 
					
						
						
							
							Fix the BIT STRING encoding of EC points or parameter seeds  
						
						 
						
						... 
						
						
						
						(need to prevent the removal of trailing zero bits). 
						
						
					 
					
						2006-12-19 15:10:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9d5460d72d 
					 
					
						
						
							
							properly initialize SSL context, check return value  
						
						 
						
						
						
						
					 
					
						2006-12-13 22:08:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						35e59297fc 
					 
					
						
						
							
							Update from 0.9.7-stable branch  
						
						 
						
						
						
						
					 
					
						2006-12-07 13:28:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9b945233b1 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-12-06 13:38:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b065dc2eee 
					 
					
						
						
							
							fix documentation  
						
						 
						
						... 
						
						
						
						PR: 1343 
						
						
					 
					
						2006-12-06 09:12:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						66c4bb1a70 
					 
					
						
						
							
							avoid duplicate entries in add_cert_dir()  
						
						 
						
						... 
						
						
						
						PR: 1407
Submitted by: Tomas Mraz <tmraz@redhat.com > 
						
						
					 
					
						2006-12-05 21:21:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						36abe6fe61 
					 
					
						
						
							
							return 0 if 'noout' is used and no has occurred  
						
						 
						
						... 
						
						
						
						PR: 1435
Submitted by: "Haridharan" <haridharan@gmail.com > 
						
						
					 
					
						2006-12-05 20:08:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3c786aa6c8 
					 
					
						
						
							
							allocate a new attributes entry in X509_REQ_add_extensions()  
						
						 
						
						... 
						
						
						
						if it's NULL (in case of a malformed pkcs10 request)
PR: 1347
Submitted by: Remo Inverardi <invi@your.toilet.ch > 
						
						
					 
					
						2006-12-04 19:10:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e5cce6d356 
					 
					
						
						
							
							add "Certificate Issuer", "Issuing Distribution Point" and  
						
						 
						
						... 
						
						
						
						"Subject Directory Attributes" OIDs
PR: 1433 
						
						
					 
					
						2006-12-04 18:48:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						723b7d81e4 
					 
					
						
						
							
							Camellia fixes and improvements from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-12-02 12:00:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a3ddd7358b 
					 
					
						
						
							
							Camellia portability fixes.  
						
						 
						
						... 
						
						
						
						Submitted by: Masashi Fujita, NTT 
						
						
					 
					
						2006-12-02 11:57:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						45c027f31f 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2006-11-30 14:03:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b62e9eb0d 
					 
					
						
						
							
							Fix default depflags.  
						
						 
						
						
						
						
					 
					
						2006-11-30 14:01:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						34a8c7ec87 
					 
					
						
						
							
							Win32 fixes.  
						
						 
						
						... 
						
						
						
						Use OPENSSL_NO_RFC3779 instead of OPENSSL_RFC3779: this makes the Win32 scripts
work and is consistent with other options.
Fix Win32 scripts and Configure to process OPENSSL_NO_RFC3779 properly.
Update ordinals.
Change some prototypes for LSB because VC++ 6 doesn't like the */ sequence and thinks it is an invalid end of comment. 
						
						
					 
					
						2006-11-30 13:04:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d4a6240005 
					 
					
						
						
							
							replace macros with functions  
						
						 
						
						... 
						
						
						
						Submitted by: Tracy Camp <tracyx.e.camp@intel.com > 
						
						
					 
					
						2006-11-29 20:47:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5c6f76da0a 
					 
					
						
						
							
							fix support for receiving fragmented handshake messages  
						
						 
						
						
						
						
					 
					
						2006-11-29 14:45:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4636341b05 
					 
					
						
						
							
							Add RFC 3779 support, contributed by ARIN.  
						
						 
						
						
						
						
					 
					
						2006-11-27 13:36:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						be3b770d8f 
					 
					
						
						
							
							register the engine as default engine in ENGINE_set_default()  
						
						 
						
						... 
						
						
						
						PR: 1431 
						
						
					 
					
						2006-11-24 18:44:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						af32387b3f 
					 
					
						
						
							
							wording, as in head  
						
						 
						
						
						
						
					 
					
						2006-11-21 20:51:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						115fc340cb 
					 
					
						
						
							
							Rebuild error file C source files.  
						
						 
						
						
						
						
					 
					
						2006-11-21 20:14:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						900f7a8776 
					 
					
						
						
							
							Update from 0.9.7-stable.  
						
						 
						
						... 
						
						
						
						Improve mkerr.pl header file function name parsing. 
						
						
					 
					
						2006-11-21 20:14:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4877e30504 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-11-13 13:23:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						4656ec3852 
					 
					
						
						
							
							update md docs  
						
						 
						
						
						
						
					 
					
						2006-10-27 21:59:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e336441197 
					 
					
						
						
							
							Gcc over-optimizes PadLock AES CFB codepath, tell it not to [from HEAD].  
						
						 
						
						
						
						
					 
					
						2006-10-19 20:56:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						20d6182f33 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-10-05 21:59:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						aa145866f9 
					 
					
						
						
							
							return an error if the supplied precomputed values lead to an invalid signature  
						
						 
						
						
						
						
					 
					
						2006-10-04 19:55:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						fdff41e166 
					 
					
						
						
							
							Initialise ctx to NULL to avoid uninitialized free, noticed by  
						
						 
						
						... 
						
						
						
						Steve Kiernan 
						
						
					 
					
						2006-09-29 08:21:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						07b4bc3979 
					 
					
						
						
							
							APP_FILES is no longer used, remove it everywhere.  
						
						 
						
						
						
						
					 
					
						2006-09-29 06:54:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0c66d3ae37 
					 
					
						
						
							
							fix typo  
						
						 
						
						
						
						
					 
					
						2006-09-28 13:30:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bd869183d5 
					 
					
						
						
							
							for completeness, include 0.9.7l information  
						
						 
						
						
						
						
					 
					
						2006-09-28 13:29:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e2bf83100 
					 
					
						
						
							
							Fixes for the following claims:  
						
						 
						
						... 
						
						
						
						1) Certificate Message with no certs
  OpenSSL implementation sends the Certificate message during SSL
  handshake, however as per the specification, these have been omitted.
  -- RFC 2712 --
     CertificateRequest, and the ServerKeyExchange shown in Figure 1
     will be omitted since authentication and the establishment of a
     master secret will be done using the client's Kerberos credentials
     for the TLS server.  The client's certificate will be omitted for
     the same reason.
  -- RFC 2712 --
  3) Pre-master secret Protocol version
  The pre-master secret generated by OpenSSL does not have the correct
  client version.
  RFC 2712 says, if the Kerberos option is selected, the pre-master
  secret structure is the same as that used in the RSA case.
  TLS specification defines pre-master secret as:
         struct {
             ProtocolVersion client_version;
             opaque random[46];
         } PreMasterSecret;
  where client_version is the latest protocol version supported by the
  client
  The pre-master secret generated by OpenSSL does not have the correct
  client version. The implementation does not update the first 2 bytes
  of random secret for Kerberos Cipher suites. At the server-end, the
  client version from the pre-master secret is not validated.
PR: 1336 
						
						
					 
					
						2006-09-28 12:23:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						25e52a78fb 
					 
					
						
						
							
							After tagging, bump ready for 0.9.8e development  
						
						 
						
						
						
						
					 
					
						2006-09-28 11:39:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						47c4bb2ddf 
					 
					
						
						
							
							Prepare for 0.9.8d release  
						
						 
						
						
						
						
					 
					
						2006-09-28 11:32:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						951dfbb13a 
					 
					
						
						
							
							Introduce limits to prevent malicious keys being able to  
						
						 
						
						... 
						
						
						
						cause a denial of service.  (CVE-2006-2940)
[Steve Henson, Bodo Moeller]
Fix ASN.1 parsing of certain invalid structures that can result
in a denial of service.  (CVE-2006-2937)  [Steve Henson]
Fix buffer overflow in SSL_get_shared_ciphers() function.
(CVE-2006-3738) [Tavis Ormandy and Will Drewry, Google Security Team]
Fix SSL client code which could crash if connecting to a
malicious SSLv2 server.  (CVE-2006-4343)
[Tavis Ormandy and Will Drewry, Google Security Team] 
						
						
					 
					
						2006-09-28 11:29:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81780a3b62 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-09-23 17:30:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c574d0cdf2 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-09-22 17:14:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c987c3f999 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-09-22 17:07:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1a5e414863 
					 
					
						
						
							
							Fix but in apps/pkcs12.c  
						
						 
						
						... 
						
						
						
						PR: 1377 
						
						
					 
					
						2006-09-22 00:28:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ec3639385e 
					 
					
						
						
							
							Build error on non-unix [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1390 
						
						
					 
					
						2006-09-18 19:51:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f01cfca6a4 
					 
					
						
						
							
							Race condition in ms/uplink.c [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1382 
						
						
					 
					
						2006-09-18 19:44:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7d5af5e0fa 
					 
					
						
						
							
							Ensure that the addition mods[i]+delta cannot overflow in probable_prime().  
						
						 
						
						... 
						
						
						
						[Problem pointed out by Adam Young <adamy (at) acm.org>] 
						
						
					 
					
						2006-09-18 14:01:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8fdb296cbd 
					 
					
						
						
							
							Update  
						
						 
						
						
						
						
					 
					
						2006-09-12 14:42:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						879b30aaa3 
					 
					
						
						
							
							ensure that ciphersuite strings such as "RC4-MD5" match the SSL 2.0  
						
						 
						
						... 
						
						
						
						ciphersuite as well 
						
						
					 
					
						2006-09-11 09:48:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						40ddcb717a 
					 
					
						
						
							
							Remove non-functional part of recent patch, after discussion with  
						
						 
						
						... 
						
						
						
						Colin Percival (this would have caused more problems than solved,
and isn't really necessary anyway) 
						
						
					 
					
						2006-09-06 06:43:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						da1841a075 
					 
					
						
						
							
							After tagging, prep for next release  
						
						 
						
						
						
						
					 
					
						2006-09-05 08:51:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						0a0a10d127 
					 
					
						
						
							
							Ready for 0.9.8c release  
						
						 
						
						
						
						
					 
					
						2006-09-05 08:45:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						df20b6e79b 
					 
					
						
						
							
							Avoid PKCS  #1  v1.5 signature attack discovered by Daniel Bleichenbacher  
						
						 
						
						... 
						
						
						
						(CVE-2006-4339)
Submitted by:  Ben Laurie, Google Security Team
Reviewed by: bmoeller, mjc, shenson 
						
						
					 
					
						2006-09-05 08:25:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f4f1dc39e0 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-08-31 21:01:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						340b4dd7df 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-08-31 20:11:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4b9dcd821f 
					 
					
						
						
							
							Add IGE and biIGE modes.  
						
						 
						
						
						
						
					 
					
						2006-08-28 11:00:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						669c5c9380 
					 
					
						
						
							
							Engage assembler in solaris64-x86_64-cc [backport from HEAD].  
						
						 
						
						
						
						
					 
					
						2006-08-01 16:13:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7f9aa6c59b 
					 
					
						
						
							
							Camellia IPR information  
						
						 
						
						
						
						
					 
					
						2006-07-31 11:50:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d9c06b56ca 
					 
					
						
						
							
							New Camellia implementation (replacing previous version)  
						
						 
						
						... 
						
						
						
						Submitted by: NTT 
						
						
					 
					
						2006-07-19 13:38:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d045e1d77e 
					 
					
						
						
							
							Camellia information  
						
						 
						
						
						
						
					 
					
						2006-07-19 13:37:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6d14cc7ec1 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-07-13 20:35:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb499b2854 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2006-07-09 12:07:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						65a82ef6d7 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-07-09 12:03:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						616f581650 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2006-07-02 14:43:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						57e802656f 
					 
					
						
						
							
							documentation for "HIGH" vs. "MEDIUM" was not up-to-date  
						
						 
						
						
						
						
					 
					
						2006-06-30 22:03:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5d7f15daf8 
					 
					
						
						
							
							use <poll.h> as by Single Unix Specification  
						
						 
						
						
						
						
					 
					
						2006-06-30 08:14:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ec67e3b7e4 
					 
					
						
						
							
							always read in RAND_poll() if we can't use select because of a too  
						
						 
						
						... 
						
						
						
						large FD: it's non-blocking mode anyway 
						
						
					 
					
						2006-06-28 14:50:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0d3ff3c073 
					 
					
						
						
							
							aes-586.pl sync from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-06-28 09:01:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						325e48867c 
					 
					
						
						
							
							Mitigate the hazard of cache-collision timing attack on last round  
						
						 
						
						... 
						
						
						
						[from HEAD]. 
						
						
					 
					
						2006-06-28 08:58:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8de95bc05b 
					 
					
						
						
							
							Use poll() when possible to gather Unix randomness entropy  
						
						 
						
						
						
						
					 
					
						2006-06-27 06:31:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5e3003bb52 
					 
					
						
						
							
							Be more explicit about requirements for multi-threading.  
						
						 
						
						
						
						
					 
					
						2006-06-23 14:59:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e6e3f38bfa 
					 
					
						
						
							
							Fix for previous change: explicitly named ciphersuites are OK to add  
						
						 
						
						
						
						
					 
					
						2006-06-22 13:07:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						aa17ab7e57 
					 
					
						
						
							
							Put ECCdraft ciphersuites back into default build (but disabled  
						
						 
						
						... 
						
						
						
						unless specifically requested) 
						
						
					 
					
						2006-06-22 12:35:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						35908bd040 
					 
					
						
						
							
							Remove ECC ciphersuites from 0.9.8 branch (should use 0.9.9 branch)  
						
						 
						
						
						
						
					 
					
						2006-06-20 08:50:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4a9cfd763e 
					 
					
						
						
							
							Another thread-safety fix  
						
						 
						
						
						
						
					 
					
						2006-06-16 01:01:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0e73294e26 
					 
					
						
						
							
							Disable invalid ciphersuites  
						
						 
						
						
						
						
					 
					
						2006-06-14 17:52:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b610f46bae 
					 
					
						
						
							
							Make sure that AES ciphersuites get priority over Camellia ciphersuites  
						
						 
						
						... 
						
						
						
						in the default cipher string. 
						
						
					 
					
						2006-06-14 13:52:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1921a1adb2 
					 
					
						
						
							
							"make depend" for the default configuration, i.e. no-camellia here in  
						
						 
						
						... 
						
						
						
						the 0.9.8 branch! 
						
						
					 
					
						2006-06-14 09:56:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						6d2cd23f40 
					 
					
						
						
							
							Thread-safety fixes  
						
						 
						
						
						
						
					 
					
						2006-06-14 08:51:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						14fb67f28a 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2006-06-14 08:47:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c552680473 
					 
					
						
						
							
							Keep synchronised with Unix  
						
						 
						
						
						
						
					 
					
						2006-06-12 06:46:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						edbf9f878d 
					 
					
						
						
							
							Camellia cipher, contributed by NTT  
						
						 
						
						... 
						
						
						
						Submitted by: Masashi Fujita
Reviewed by: Bodo Moeller 
						
						
					 
					
						2006-06-11 01:08:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2745ddfc33 
					 
					
						
						
							
							Keep synchronised with the Unix build  
						
						 
						
						
						
						
					 
					
						2006-06-10 05:38:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						808606034a 
					 
					
						
						
							
							Camellia cipher, contributed by NTT  
						
						 
						
						... 
						
						
						
						Submitted by: Masashi Fujita
Reviewed by: Bodo Moeller 
						
						
					 
					
						2006-06-09 22:31:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e18eef3d7a 
					 
					
						
						
							
							Camellia cipher, contributed by NTT  
						
						 
						
						... 
						
						
						
						Submitted by: Masashi Fujita
Reviewed by: Bodo Moeller 
						
						
					 
					
						2006-06-09 15:42:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e78fc11a95 
					 
					
						
						
							
							Tidy up hpux targets.  
						
						 
						
						
						
						
					 
					
						2006-05-20 08:51:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						83231cb376 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-05-17 18:25:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						986ad56124 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-05-17 18:20:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b723a7b11b 
					 
					
						
						
							
							Don't check for padding bug if compression is negotiated.  
						
						 
						
						... 
						
						
						
						PR: 1204 
						
						
					 
					
						2006-05-07 12:27:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						1b6b67b17e 
					 
					
						
						
							
							bug fix.  
						
						 
						
						... 
						
						
						
						PR: 1326
Submitted by: John Skodon 
						
						
					 
					
						2006-05-06 18:35:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ee3236f72 
					 
					
						
						
							
							Update debug-steve  
						
						 
						
						
						
						
					 
					
						2006-05-06 12:18:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b03a4917be 
					 
					
						
						
							
							Backport of CPUID support in mk1mf and update Mingw32 batch file to build  
						
						 
						
						... 
						
						
						
						cpuid source file. 
						
						
					 
					
						2006-05-05 13:19:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						84971b39f5 
					 
					
						
						
							
							Initial support for single batch file to build all Win32 ASM files.  
						
						 
						
						
						
						
					 
					
						2006-05-05 00:22:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5ab3e743f3 
					 
					
						
						
							
							Detect MSYS and use Unix like build if detected.  
						
						 
						
						
						
						
					 
					
						2006-05-04 16:24:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1c5dc844e7 
					 
					
						
						
							
							Update for next dev version.  
						
						 
						
						
						
						
					 
					
						2006-05-04 13:08:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f871949efd 
					 
					
						
						
							
							Prepare for new release.  
						
						 
						
						
						
						
					 
					
						2006-05-04 12:46:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb2ec6bee9 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2006-05-04 12:15:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df22f59f6e 
					 
					
						
						
							
							Update NEWS file.  
						
						 
						
						
						
						
					 
					
						2006-05-04 11:23:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db0edc3273 
					 
					
						
						
							
							Inherit check time if appropriate.  
						
						 
						
						
						
						
					 
					
						2006-05-03 13:16:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6300c14248 
					 
					
						
						
							
							Create a crlnumber file when a CA is created using CA.pl  
						
						 
						
						
						
						
					 
					
						2006-04-28 00:28:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4426e79a7 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2006-04-15 17:53:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b095418d20 
					 
					
						
						
							
							Fix from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2006-04-15 17:43:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d6fd880481 
					 
					
						
						
							
							Fix on the right branch this time :-)  
						
						 
						
						
						
						
					 
					
						2006-04-15 13:17:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cbb0b734c7 
					 
					
						
						
							
							If cipher list contains a match for an explicit ciphersuite only match that  
						
						 
						
						... 
						
						
						
						one suite. 
						
						
					 
					
						2006-04-15 00:22:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f4bcd70f27 
					 
					
						
						
							
							Change chop to chomp when reading lines, so CRLF is properly processed on  
						
						 
						
						... 
						
						
						
						the operating systems where they are the normal line endings 
						
						
					 
					
						2006-04-03 09:15:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						6e16b45d9d 
					 
					
						
						
							
							*** empty log message ***  
						
						 
						
						
						
						
					 
					
						2006-03-17 19:29:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						e09e7ab362 
					 
					
						
						
							
							as in head  
						
						 
						
						
						
						
					 
					
						2006-03-17 19:27:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d5cc2f19cd 
					 
					
						
						
							
							fix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()  
						
						 
						
						
						
						
					 
					
						2006-03-14 22:48:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b7a80146f4 
					 
					
						
						
							
							fix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()  
						
						 
						
						
						
						
					 
					
						2006-03-13 23:12:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5586a71a6e 
					 
					
						
						
							
							clarification  
						
						 
						
						
						
						
					 
					
						2006-03-11 22:10:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81418b7c77 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-03-01 21:17:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8bd0c77ae3 
					 
					
						
						
							
							force C locale when using [a-z] in sed expressions  
						
						 
						
						... 
						
						
						
						PR: 1283
Submitted by: Mike Frysinger 
						
						
					 
					
						2006-03-01 19:52:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e2217e7ed5 
					 
					
						
						
							
							fix "#ifndef HZ" statement  
						
						 
						
						... 
						
						
						
						PR: 1287 
						
						
					 
					
						2006-02-28 20:08:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						51b75ea7ef 
					 
					
						
						
							
							fix Intel Mac configuration; patch supplied by JP Szikora <szikora@icp.ucl.ac.be>  
						
						 
						
						
						
						
					 
					
						2006-02-25 11:53:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						41d4d6721c 
					 
					
						
						
							
							fix no-dh configure option; patch supplied by Peter Meerwald  
						
						 
						
						
						
						
					 
					
						2006-02-24 17:58:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d01d50459 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2006-02-21 01:00:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e27c67c5c5 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-02-19 13:45:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e7decd5f4d 
					 
					
						
						
							
							fix typos  
						
						 
						
						... 
						
						
						
						PR: 1280 
						
						
					 
					
						2006-02-15 19:44:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						38a3178185 
					 
					
						
						
							
							Fix OBJ_obj2txt() for large OIDs.  
						
						 
						
						
						
						
					 
					
						2006-02-15 15:03:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						58828ae573 
					 
					
						
						
							
							fix typo: pass pre-computed parameters to the underlying signature function; thanks to Lucas Newman  
						
						 
						
						
						
						
					 
					
						2006-02-13 08:22:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6b5f5e3508 
					 
					
						
						
							
							Backport the following changes from HEAD:  
						
						 
						
						... 
						
						
						
						1.270:
As an effect of revisions 1.261, BUILD_CMD was changed so $(DIRS)
wasn't respected when using it to build different parts of OpenSSL.
1.269 was an attempt to correct that, but unfortunately meant that we
built every part that was given i $(DIRS) 7 times.  This change puts
back the original intent with BUILD_CMD via the new macro
BUILD_ONE_CMD while keeping the intent with RECURSIVE_BUILD_CMD.
1.271:
Document the building macros. 
						
						
					 
					
						2006-02-10 08:52:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f0ec771933 
					 
					
						
						
							
							Update from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2006-02-09 12:28:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						22d1087e16 
					 
					
						
						
							
							backport recent changes from the cvs head  
						
						 
						
						
						
						
					 
					
						2006-02-08 19:16:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9f85fcefdc 
					 
					
						
						
							
							Update filenames in makefiles  
						
						 
						
						
						
						
					 
					
						2006-02-04 01:49:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						269d2575cd 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-02-04 01:26:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0b8ed5de2d 
					 
					
						
						
							
							fix if statement: call conn_state() if the BIO is not in the BIO_CONN_S_OK state  
						
						 
						
						
						
						
					 
					
						2006-02-02 22:16:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c22684eac9 
					 
					
						
						
							
							Constification.  
						
						 
						
						
						
						
					 
					
						2006-02-02 15:27:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c42cd4b831 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-01-31 18:37:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						4d018f7067 
					 
					
						
						
							
							Typo  
						
						 
						
						... 
						
						
						
						Submitted by: Girish Venkatachalam <girish1729@gmail.com > 
						
						
					 
					
						2006-01-30 17:06:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						46eaf3b0cc 
					 
					
						
						
							
							file fipslink.pl was added on branch OpenSSL_0_9_8-stable on 2008-09-18 11:20:08 +0000  
						
						 
						
						
						
						
					 
					
						2006-01-21 21:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9df2a00b94 
					 
					
						
						
							
							file fipsld was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2006-01-21 14:01:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbcf4bc1f2 
					 
					
						
						
							
							file fips_premain.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2006-01-21 14:01:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca08c064bb 
					 
					
						
						
							
							file fips_canister.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2006-01-21 14:01:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						02df47d349 
					 
					
						
						
							
							Fixes for BOOL handling: produce errors for invalid string for mini-compiler,  
						
						 
						
						... 
						
						
						
						correctly encode FALSE for BOOL in ASN1_TYPE. 
						
						
					 
					
						2006-01-19 17:17:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41c39e3366 
					 
					
						
						
							
							Fix for Win32 dynamic engine loading.  
						
						 
						
						
						
						
					 
					
						2006-01-15 17:28:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						45803988ce 
					 
					
						
						
							
							make "./configure no-ssl2" work again  
						
						 
						
						... 
						
						
						
						PR: 1217 
						
						
					 
					
						2006-01-15 16:57:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						28251e7ff9 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2006-01-15 13:56:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						217382d584 
					 
					
						
						
							
							Handle manifest files for VC++  
						
						 
						
						... 
						
						
						
						Submitted by: Austin Ziegler <halostatue@gmail.com > 
						
						
					 
					
						2006-01-15 13:46:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						82a2cb6f51 
					 
					
						
						
							
							fix cipher list order  
						
						 
						
						
						
						
					 
					
						2006-01-15 07:14:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						611ed5f312 
					 
					
						
						
							
							fix comment  
						
						 
						
						... 
						
						
						
						PR: 1270 
						
						
					 
					
						2006-01-13 23:52:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						27fbb5dbf4 
					 
					
						
						
							
							2 is a prime number ...  
						
						 
						
						... 
						
						
						
						PR: 1266 
						
						
					 
					
						2006-01-13 23:29:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						db8d9b7cf1 
					 
					
						
						
							
							Forgot to initialize CC6DISABLEWARNINGS properly...  
						
						 
						
						
						
						
					 
					
						2006-01-11 18:55:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						60ec950517 
					 
					
						
						
							
							Typo...  
						
						 
						
						
						
						
					 
					
						2006-01-11 13:31:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2cd4ebc01f 
					 
					
						
						
							
							Disable the Mixed Linkage warning for some selected modules.  This is  
						
						 
						
						... 
						
						
						
						because the Compaq C compiler will not accept that a variable be
declared extern then defined static without a warning. 
						
						
					 
					
						2006-01-09 19:22:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5f4dcaf781 
					 
					
						
						
							
							/usr/bin/perl util/mkerr.pl -recurse -write -rebuild  
						
						 
						
						
						
						
					 
					
						2006-01-09 16:05:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c55d882fab 
					 
					
						
						
							
							Avoid contradictive error code assignments.  
						
						 
						
						... 
						
						
						
						"make error". 
						
						
					 
					
						2006-01-08 21:52:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8dc7450068 
					 
					
						
						
							
							Detect more errors.  
						
						 
						
						... 
						
						
						
						Change assignment strategy: rathern than using max+r for new codes,
find first hole in list of existing codes. 
						
						
					 
					
						2006-01-08 21:40:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2e885232c2 
					 
					
						
						
							
							Some error code cleanups (SSL lib. used SSL_R_... codes reserved for alerts)  
						
						 
						
						
						
						
					 
					
						2006-01-08 19:41:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						970d9b3795 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-01-03 14:20:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2f58af0d85 
					 
					
						
						
							
							Make sure that after the change from revision 1.256.2.6 (1.261 in HEAD),  
						
						 
						
						... 
						
						
						
						it's still possible to do a partial build. 
						
						
					 
					
						2006-01-03 03:04:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0ae50f19da 
					 
					
						
						
							
							Missing files in the VMS installation  
						
						 
						
						
						
						
					 
					
						2006-01-02 23:33:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c4ac37361e 
					 
					
						
						
							
							util/*.pl update from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-01-02 14:08:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3152861e81 
					 
					
						
						
							
							mkerr.pl update from HEAD.  
						
						 
						
						
						
						
					 
					
						2006-01-01 18:43:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a14afd0804 
					 
					
						
						
							
							Rewrite timeout computation in a way that is less prone to overflow.  
						
						 
						
						... 
						
						
						
						(Problem reported by Peter Sylvester.) 
						
						
					 
					
						2005-12-30 23:51:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						25d5d1a60d 
					 
					
						
						
							
							eng_padlock.c update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-12-28 16:26:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6ff58b9240 
					 
					
						
						
							
							Minor eng_padlock.c update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-12-27 21:24:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						99237262d4 
					 
					
						
						
							
							Missing CFLAG in couple of depend: targets [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1247
Submitted by: Doug Kaufman 
						
						
					 
					
						2005-12-18 19:02:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						29982dfd15 
					 
					
						
						
							
							DJGPP-related e_os2.h update from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1247 
						
						
					 
					
						2005-12-18 18:57:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6c4da94687 
					 
					
						
						
							
							bio.h update from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1252 
						
						
					 
					
						2005-12-16 21:24:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6986d0e6eb 
					 
					
						
						
							
							Fix typos in osf1 shared rules [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1248 
						
						
					 
					
						2005-12-16 20:52:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bc9320452c 
					 
					
						
						
							
							update TLS-ECC code  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila 
						
						
					 
					
						2005-12-13 07:41:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						23d43aae27 
					 
					
						
						
							
							add missing entry (the corresponding code *is* in the 0.9.8 branch,  
						
						 
						
						... 
						
						
						
						and both the code and the CHANGES entry are in HEAD) 
						
						
					 
					
						2005-12-13 07:32:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						de71735e7c 
					 
					
						
						
							
							comment  
						
						 
						
						
						
						
					 
					
						2005-12-13 05:46:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						05decf3638 
					 
					
						
						
							
							Perlasm update from HEAD addressing build problems on non-ELF platforms  
						
						 
						
						... 
						
						
						
						after http://cvs.openssl.org/chngview?cn=14661 . 
						
						
					 
					
						2005-12-06 18:47:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						95bffa1a1f 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-12-06 13:37:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						974d52fdb8 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-12-05 17:32:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7614f0e55e 
					 
					
						
						
							
							Various zlib related fixes and enhancements.  
						
						 
						
						
						
						
					 
					
						2005-12-05 13:34:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0632284f79 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2005-12-04 21:34:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad4a89f070 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-12-03 17:47:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6104c49f31 
					 
					
						
						
							
							x86cpuid.pl update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-12-03 11:57:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						07fc760999 
					 
					
						
						
							
							Update ordinals.  
						
						 
						
						
						
						
					 
					
						2005-12-02 13:56:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf6bc84148 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-12-02 13:47:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						36d51bea93 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-12-02 13:29:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fc12885b1b 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-11-30 19:25:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ec7033745e 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2005-11-25 14:26:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						9e31e63147 
					 
					
						
						
							
							Improve documentation.  
						
						 
						
						
						
						
					 
					
						2005-11-25 13:46:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						feef17fd88 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-11-20 13:26:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						817f011191 
					 
					
						
						
							
							Keep shutting up VC8 [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1243 
						
						
					 
					
						2005-11-15 08:09:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						98c045cf3a 
					 
					
						
						
							
							crypto/bn/asm/sparcv8plus.S update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-11-15 08:05:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8860f3a82a 
					 
					
						
						
							
							Fix possible race condition.  
						
						 
						
						
						
						
					 
					
						2005-11-11 12:59:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						43e9f4ca2f 
					 
					
						
						
							
							crypto/Makefile update from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1236 
						
						
					 
					
						2005-11-09 20:47:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						586f843c76 
					 
					
						
						
							
							FAQ update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-11-09 19:47:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7cfc9e6d8c 
					 
					
						
						
							
							AIX -blibpath is not accumulative, one apparently has to specify even  
						
						 
						
						... 
						
						
						
						self-obvious /usr/lib:/lib.
PR: 1239 
						
						
					 
					
						2005-11-09 17:28:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4952ed0fa4 
					 
					
						
						
							
							FAQ and ms/applink.c update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-11-09 17:12:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a084185d76 
					 
					
						
						
							
							Document VC++ build changes.  
						
						 
						
						
						
						
					 
					
						2005-11-07 00:32:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						914b80d276 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2005-11-07 00:23:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						282557da52 
					 
					
						
						
							
							Include a "test" target do (hopefully) do something sensible.  
						
						 
						
						
						
						
					 
					
						2005-11-07 00:08:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f649d583c 
					 
					
						
						
							
							Fix "install" target for Win32 to install most utilities in a sensible location.  
						
						 
						
						
						
						
					 
					
						2005-11-07 00:05:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b98225ebf5 
					 
					
						
						
							
							"copy" perl script to avoid problems with Win32 builtin copy command.  
						
						 
						
						
						
						
					 
					
						2005-11-06 17:54:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						abb0c2bba4 
					 
					
						
						
							
							Update VC++ build engine to include supported engine DLL builds.  
						
						 
						
						
						
						
					 
					
						2005-11-06 17:49:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b3bdb474a9 
					 
					
						
						
							
							fix typo, pointed out by Patrick Guio  
						
						 
						
						
						
						
					 
					
						2005-11-02 22:19:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d796e6acb7 
					 
					
						
						
							
							compile sstrsep only if HAVE_FORK is defined; patch supplied by Johan Gill <johane@lysator.liu.se>  
						
						 
						
						
						
						
					 
					
						2005-11-02 22:13:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d3afc92bc9 
					 
					
						
						
							
							Document it  
						
						 
						
						
						
						
					 
					
						2005-11-01 07:53:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						35a97b4b7b 
					 
					
						
						
							
							Fix numerous bugs in the Win32 path splitter  
						
						 
						
						
						
						
					 
					
						2005-11-01 07:49:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f59463aad3 
					 
					
						
						
							
							A slight change in documentation that makes it so much more comprehensible  
						
						 
						
						
						
						
					 
					
						2005-11-01 04:56:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ed656499c4 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-10-29 12:52:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63533e9a22 
					 
					
						
						
							
							Add -install_name to link_a.darwin rule [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1218 
						
						
					 
					
						2005-10-28 08:11:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						20f7053254 
					 
					
						
						
							
							harmonize with 0.9.7-stable CHANGES  
						
						 
						
						
						
						
					 
					
						2005-10-26 19:26:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8b8ef74d39 
					 
					
						
						
							
							Fix typos in macos x targets [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-10-25 22:08:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3bfe024d8d 
					 
					
						
						
							
							Fix install problems on MacOS X and HP-UX.  
						
						 
						
						... 
						
						
						
						PR: 1218,1185 
						
						
					 
					
						2005-10-25 22:03:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						063333e03d 
					 
					
						
						
							
							Add rudimentary aix64-gcc target [from HEAD].  
						
						 
						
						... 
						
						
						
						Submitted by: Stefan Neis 
						
						
					 
					
						2005-10-19 18:47:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a0918ff38 
					 
					
						
						
							
							util/pl/OS2-EMX.pl sync [from HEAD].  
						
						 
						
						... 
						
						
						
						Submitted by: Stefan Neis, Brian Havard 
						
						
					 
					
						2005-10-19 18:38:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						802c014656 
					 
					
						
						
							
							One time CAN->CVE change  
						
						 
						
						
						
						
					 
					
						2005-10-19 10:51:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						860841794d 
					 
					
						
						
							
							Add in CHANGES for 0.9.7i.  
						
						 
						
						
						
						
					 
					
						2005-10-15 04:27:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a87c31237 
					 
					
						
						
							
							Broaden compatibility amount Win32 headers even further [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-10-13 19:07:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						da5f7fdcee 
					 
					
						
						
							
							The version text wasn't bumoed after tagging...  
						
						 
						
						
						
						
					 
					
						2005-10-11 19:26:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						d8b408b1de 
					 
					
						
						
							
							Bump after tag  
						
						 
						
						
						
						
					 
					
						2005-10-11 10:21:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						64932f9e4a 
					 
					
						
						
							
							Add fixes for CAN-2005-2969  
						
						 
						
						... 
						
						
						
						Bump release ready for OpenSSL_0_9_8a tag 
						
						
					 
					
						2005-10-11 10:16:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5a20efcf17 
					 
					
						
						
							
							Synchronise with Unixly make.  
						
						 
						
						
						
						
					 
					
						2005-10-11 10:15:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2a2857bbc8 
					 
					
						
						
							
							Update ordinals  
						
						 
						
						
						
						
					 
					
						2005-10-10 00:37:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1bef284ab1 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-10-05 17:53:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8d0b6434f 
					 
					
						
						
							
							Documentation update from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1160 
						
						
					 
					
						2005-10-04 06:35:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						416b6fd115 
					 
					
						
						
							
							Make OPENSSL_NO_COMP work on Win32.  
						
						 
						
						
						
						
					 
					
						2005-10-02 12:26:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f685cf920b 
					 
					
						
						
							
							As HEAD.  
						
						 
						
						
						
						
					 
					
						2005-10-01 00:41:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						54f51116b2 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-09-30 23:38:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b0d90958fc 
					 
					
						
						
							
							successfully updating the db shouldn't result in an error message  
						
						 
						
						
						
						
					 
					
						2005-09-30 16:47:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						049ced2c2f 
					 
					
						
						
							
							Fix typo [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-09-29 20:18:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						844b0e603b 
					 
					
						
						
							
							Fix missing applink call [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-09-29 16:59:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						75ef751e23 
					 
					
						
						
							
							Change a comment so it corresponds to reality.  Put back a character that  
						
						 
						
						... 
						
						
						
						was previously replaced with a NUL for parsing purposes.  This seems to
fix a very weird parsing bug involving two variable references in the same
value. 
						
						
					 
					
						2005-09-28 18:03:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c4f6e56fca 
					 
					
						
						
							
							Avoid unused variable warnings.  
						
						 
						
						
						
						
					 
					
						2005-09-26 02:40:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ff86d3d894 
					 
					
						
						
							
							protect BN_BLINDING_invert with a write lock and BN_BLINDING_convert  
						
						 
						
						... 
						
						
						
						with a read lock
Submitted by: Leandro Santi <lesanti@fiuba7504.com.ar > 
						
						
					 
					
						2005-09-22 23:32:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						85b4c03e33 
					 
					
						
						
							
							Fix SunOS 4 building issue [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1196
Submitted by: Russel Ruby 
						
						
					 
					
						2005-09-22 20:39:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						efaf159af6 
					 
					
						
						
							
							Broaden compatibility among Windows SDK versions [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-09-22 20:29:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						daa657fb78 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-09-21 00:57:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4685663d73 
					 
					
						
						
							
							Latest MSVCR80 doesn't tolerate unsupported signal numbers [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1205 
						
						
					 
					
						2005-09-20 20:32:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ed1f716022 
					 
					
						
						
							
							"Overload" SunOS 4.x memcmp, which ruins ASN1_OBJECT table lookups [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1196
Submitted by: Russel Ruby 
						
						
					 
					
						2005-09-20 20:25:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d3205a4898 
					 
					
						
						
							
							Fix typo [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1198 
						
						
					 
					
						2005-09-20 12:16:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						86731ce2c6 
					 
					
						
						
							
							Refine AIX support [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1198 
						
						
					 
					
						2005-09-20 07:44:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1399309624 
					 
					
						
						
							
							BC-32.pl updates [from HEAD].  
						
						 
						
						... 
						
						
						
						Submitted by: Old Wolf, Jon Bright 
						
						
					 
					
						2005-09-20 07:09:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cb59297438 
					 
					
						
						
							
							Proper solution to nasm compilation problems in Borland context.  
						
						 
						
						
						
						
					 
					
						2005-09-20 06:15:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5824f6bc06 
					 
					
						
						
							
							./PROBLEMS update from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1176 [and others] 
						
						
					 
					
						2005-09-19 14:58:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5ce7090d54 
					 
					
						
						
							
							Missing spaces in VC-32.pl.  
						
						 
						
						
						
						
					 
					
						2005-09-19 14:43:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7306ab29bc 
					 
					
						
						
							
							bswapl usage should be masked by I386_ONLY.  
						
						 
						
						... 
						
						
						
						PR: 1195 
						
						
					 
					
						2005-09-19 13:17:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3a8b42f291 
					 
					
						
						
							
							Don't always use issuer serial version of AKID.  
						
						 
						
						
						
						
					 
					
						2005-09-16 12:20:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e4c25383f2 
					 
					
						
						
							
							fix typos  
						
						 
						
						... 
						
						
						
						PR: 1201 
						
						
					 
					
						2005-09-15 19:12:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e734dcc2c7 
					 
					
						
						
							
							bugfix: register engine as default engine in ENGINE_set_default_DSA  
						
						 
						
						... 
						
						
						
						Submitted by: Jonathon Green 
						
						
					 
					
						2005-09-09 07:52:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0fce007b8e 
					 
					
						
						
							
							Add two extra verify flags functions.  
						
						 
						
						
						
						
					 
					
						2005-09-02 22:48:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						5a053a3a07 
					 
					
						
						
							
							fix typo in sbgp names  
						
						 
						
						... 
						
						
						
						PR: 1194 
						
						
					 
					
						2005-09-02 21:22:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3b2ba5f7fb 
					 
					
						
						
							
							don't try to load cert/key when the "-nocert" option is set  
						
						 
						
						
						
						
					 
					
						2005-09-02 12:27:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7f622f6c04 
					 
					
						
						
							
							fix warnings when building openssl with (gcc 3.3.1):  
						
						 
						
						... 
						
						
						
						-Wmissing-prototypes -Wcomment -Wformat -Wimplicit -Wmain -Wmultichar
-Wswitch -Wshadow -Wtrigraphs -Werror -Wchar-subscripts
-Wstrict-prototypes -Wreturn-type -Wpointer-arith  -W -Wunused
-Wno-unused-parameter -Wuninitialized 
						
						
					 
					
						2005-08-28 23:20:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						801136bcc2 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2005-08-27 12:05:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3c0e39c539 
					 
					
						
						
							
							Keep cipher lists sorted in the source instead of sorting them at  
						
						 
						
						... 
						
						
						
						runtime, thus removing the need for a lock. Add a test to ssltest
to verify that the cipher lists are sorted. 
						
						
					 
					
						2005-08-25 07:43:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						19fddebf0e 
					 
					
						
						
							
							recent DH change does not avoid *all* possible small-subgroup attacks;  
						
						 
						
						... 
						
						
						
						let's be clear about that 
						
						
					 
					
						2005-08-23 06:55:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9eaf7e14c7 
					 
					
						
						
							
							avoid potential spurious BN_free()  
						
						 
						
						... 
						
						
						
						Submitted by: David Heine <dlheine@suif.Stanford.EDU > 
						
						
					 
					
						2005-08-23 04:14:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0e441bc103 
					 
					
						
						
							
							Missing arguments.  
						
						 
						
						
						
						
					 
					
						2005-08-22 04:59:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cd9911fdf8 
					 
					
						
						
							
							initialize cipher/digest methods table in SSL_library_init() and hence remove the need for a lock  
						
						 
						
						
						
						
					 
					
						2005-08-21 23:06:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						6086422193 
					 
					
						
						
							
							Missed stuff.  
						
						 
						
						
						
						
					 
					
						2005-08-20 21:30:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						9ddb11f11c 
					 
					
						
						
							
							Avoid weak subgroups in Diffie Hellman.  
						
						 
						
						
						
						
					 
					
						2005-08-20 18:35:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a20cabd03 
					 
					
						
						
							
							Eliminate reference to removed platform line [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-11 09:40:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9dc4ca4507 
					 
					
						
						
							
							Pedantic polish to ectest.c [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-11 08:44:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62fea98b4f 
					 
					
						
						
							
							Fix typo in WCE section in VC-32.pl [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-11 08:19:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7ae4eac5b6 
					 
					
						
						
							
							INSTALL.WCE update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-08-10 08:40:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fcf8ae5e2b 
					 
					
						
						
							
							Suppress "deprecated" warnings introduced in VC8 [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1183 
						
						
					 
					
						2005-08-09 22:45:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						55b9a7938b 
					 
					
						
						
							
							Add support for more recent WCE SDK.  
						
						 
						
						
						
						
					 
					
						2005-08-09 22:20:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cf1546a60e 
					 
					
						
						
							
							a ssl object needs it's own instance of a ecdh key; remove obsolete comment  
						
						 
						
						
						
						
					 
					
						2005-08-08 19:39:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e7eec05af0 
					 
					
						
						
							
							fix typo  
						
						 
						
						
						
						
					 
					
						2005-08-08 19:26:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						98e986141b 
					 
					
						
						
							
							Windows CE update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-08-07 22:29:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d7e35e0371 
					 
					
						
						
							
							avoid infinite recursion if dynamic engine isn't loaded  
						
						 
						
						... 
						
						
						
						Submitted by: Jonathon Green <jonathon_au@yahoo.com > 
						
						
					 
					
						2005-08-06 10:34:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						222f224664 
					 
					
						
						
							
							Initialize SSL_METHOD structures at compile time. This removes the need  
						
						 
						
						... 
						
						
						
						for locking code. The CRYPTO_LOCK_SSL_METHOD lock is now no longer used. 
						
						
					 
					
						2005-08-05 23:52:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						62b6cd007f 
					 
					
						
						
							
							fix potential memory leak + improved error checking  
						
						 
						
						... 
						
						
						
						PR: 1182 
						
						
					 
					
						2005-08-05 09:41:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1682e8fb12 
					 
					
						
						
							
							Allow PKCS7_decrypt() to work if no cert supplied.  
						
						 
						
						
						
						
					 
					
						2005-08-04 22:10:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						984aefe0e8 
					 
					
						
						
							
							3-4 times better RSA/DSA performance on WIN64A target [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-04 17:42:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2d54cc69c9 
					 
					
						
						
							
							WCE update, mostly typos [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-03 20:04:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2dd8278de8 
					 
					
						
						
							
							PIC-ify SPARC assembler in alternative manner to eliminate dependency on  
						
						 
						
						... 
						
						
						
						OPENSSL_PIC macro [from HEAD]. 
						
						
					 
					
						2005-08-03 10:44:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e0d8ac972e 
					 
					
						
						
							
							Abstain from GUI calls in rand_win.c in NT service context [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-02 22:22:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ec03812fb0 
					 
					
						
						
							
							WCE-specific update for VC-32.pl [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-02 22:21:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						93cf2b17bf 
					 
					
						
						
							
							WCE-specific fix for cryptlib.c [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-02 22:21:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						77ef1a989d 
					 
					
						
						
							
							Keep disclaiming 16-bit support [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-08-02 22:20:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						423c7ac6c6 
					 
					
						
						
							
							Optimize for space on embedded WCE. [from HEAD]  
						
						 
						
						
						
						
					 
					
						2005-08-02 14:11:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2c368ef148 
					 
					
						
						
							
							WCE-specific update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-08-02 12:21:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b3c7162fd0 
					 
					
						
						
							
							WCE update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-08-02 12:03:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						67865069eb 
					 
					
						
						
							
							Implement complementary LoadLibraryA shim under WCE. [from HEAD]  
						
						 
						
						
						
						
					 
					
						2005-08-02 11:03:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1896a9be60 
					 
					
						
						
							
							Typo in OSF1 platform name.  
						
						 
						
						
						
						
					 
					
						2005-08-02 10:59:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b5b2c037c1 
					 
					
						
						
							
							Eliminate dependency on 3rd party wcedefs.mak [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-07-30 19:51:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1957924d51 
					 
					
						
						
							
							Fix #if _MSC_VER clause in aes_locl.h [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-07-30 19:49:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						104a66f256 
					 
					
						
						
							
							remove unused variable  
						
						 
						
						
						
						
					 
					
						2005-07-27 20:19:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3de6d65ea3 
					 
					
						
						
							
							improved error checking and some fixes  
						
						 
						
						... 
						
						
						
						PR: 1170
Submitted by: Yair Elharrar
Reviewed and edited by: Nils Larsch 
						
						
					 
					
						2005-07-26 20:55:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fdb0a6e004 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2005-07-26 12:46:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						87b857b6bf 
					 
					
						
						
							
							fix BN_mod_word and give a more reasonable return value if an error occurred  
						
						 
						
						
						
						
					 
					
						2005-07-25 22:55:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b18165301d 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2005-07-25 18:40:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						097e65944a 
					 
					
						
						
							
							Visual C specific update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-07-24 21:55:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0cdd29ea78 
					 
					
						
						
							
							Remove BN_CTX_DEBUG from the normal debug build flags (it's too noisy  
						
						 
						
						... 
						
						
						
						to be really useful for 'normal' debugging).
Disable EC_GROUP_precompute_mult for the nist curves in ectest.c as
it causes problems when libefence is used. 
						
						
					 
					
						2005-07-23 08:46:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7dec24688f 
					 
					
						
						
							
							set correct bn->top value  
						
						 
						
						
						
						
					 
					
						2005-07-21 22:38:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e62fa54811 
					 
					
						
						
							
							the final byte of pkcs7 padded plaintext can never be 0  
						
						 
						
						... 
						
						
						
						Submitted by: K S Sreeram <sreeram@tachyontech.net > 
						
						
					 
					
						2005-07-20 22:02:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1614174e79 
					 
					
						
						
							
							Bug-fix from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1130 
						
						
					 
					
						2005-07-19 23:10:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f95d097359 
					 
					
						
						
							
							fix typo  
						
						 
						
						
						
						
					 
					
						2005-07-17 21:05:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3c6ab9aad9 
					 
					
						
						
							
							bugfix: 0 - w (w != 0) is actually negative  
						
						 
						
						
						
						
					 
					
						2005-07-17 16:08:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						4913b88f70 
					 
					
						
						
							
							make  
						
						 
						
						... 
						
						
						
						./configure no-deprecated [no-dsa] [no-dh] [no-ec] [no-rsa]
	make all test
work again (+ make update)
PR: 1159 
						
						
					 
					
						2005-07-16 11:13:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						273157153c 
					 
					
						
						
							
							add missing entries for "-multivalue-rdn" and "-utf8" in ca.pod and req.pod  
						
						 
						
						... 
						
						
						
						PR: 1158
Submitted by: Michael Bell <michael.bell@cms.hu-berlin.de > 
						
						
					 
					
						2005-07-15 09:50:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fb5156ff38 
					 
					
						
						
							
							the second argument to  d2i_X509, d2i_X509_CRL and d2i_X509_REQ is const  
						
						 
						
						... 
						
						
						
						PR: 1156
Submitted by: Michael Bell <michael.bell@cms.hu-berlin.de > 
						
						
					 
					
						2005-07-13 21:58:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a824402f3 
					 
					
						
						
							
							DES CFB bug-fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-07-08 16:48:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						86a249fe4f 
					 
					
						
						
							
							On case insensitive systems, 'install' gets mixed up with the existing file  
						
						 
						
						... 
						
						
						
						'INSTALL', so we need to put some force into installing 
						
						
					 
					
						2005-07-08 10:13:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6cae8221c9 
					 
					
						
						
							
							Oops, the release date in the FAQ was wrong.  
						
						 
						
						... 
						
						
						
						I'm not retagging it, but I made the same change in the distribution
directory, so the distribution will have a corrected FAQ. 
						
						
					 
					
						2005-07-05 19:20:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						750cb3d248 
					 
					
						
						
							
							Now that 0.9.8 has been tagged, it's time to move on.  
						
						 
						
						
						
						
					 
					
						2005-07-05 19:11:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f254b540b8 
					 
					
						
						
							
							Time to release OpenSSL 0.9.8.  
						
						 
						
						... 
						
						
						
						The tag will be OpenSSL_0_9_8. 
						
						
					 
					
						2005-07-05 18:49:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						11024f252e 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-07-05 18:41:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d5cba17ba 
					 
					
						
						
							
							We don't support no-engine for now.  It's a lot more work than one  
						
						 
						
						... 
						
						
						
						might imagine. 
						
						
					 
					
						2005-07-05 18:32:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1d01c9d43d 
					 
					
						
						
							
							Last additions to the release documentation.  
						
						 
						
						
						
						
					 
					
						2005-07-05 18:32:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e32ea81876 
					 
					
						
						
							
							Mention Win64 support in CHANGES and throw in building instructions.  
						
						 
						
						
						
						
					 
					
						2005-07-05 10:53:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ef8a18f49b 
					 
					
						
						
							
							Add libcrypto.pc and libssl.pc, and install them along with openssl.pc.  
						
						 
						
						... 
						
						
						
						PR: 1143 
						
						
					 
					
						2005-07-05 05:14:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b914049c53 
					 
					
						
						
							
							Get rid of "unary minus applied to unsigned type" warning.  
						
						 
						
						
						
						
					 
					
						2005-07-04 23:30:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dabaea8048 
					 
					
						
						
							
							To secure Win64 API I'm throwing in this minimalistic Win64 support.  
						
						 
						
						
						
						
					 
					
						2005-07-04 23:24:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						09c1a425a9 
					 
					
						
						
							
							Add utf8 options to ca utility.  
						
						 
						
						... 
						
						
						
						PR:1109 
						
						
					 
					
						2005-07-04 23:04:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8c6fed007f 
					 
					
						
						
							
							The private key should never have ended up in newreq.pem.  
						
						 
						
						... 
						
						
						
						Now, it ends up in newkey.pem instead. 
						
						
					 
					
						2005-07-04 21:44:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2e39604021 
					 
					
						
						
							
							Fix bugs in bug-fix to x509/by_dir.c [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1131 
						
						
					 
					
						2005-07-03 13:15:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fbfb947b21 
					 
					
						
						
							
							Bugfix for bn_div_words PPC assembler implementation [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-07-03 09:23:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8b963f4ba4 
					 
					
						
						
							
							initialize newly allocated data  
						
						 
						
						... 
						
						
						
						PR: 1145 
						
						
					 
					
						2005-07-01 16:15:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9152f07eaf 
					 
					
						
						
							
							Check PKCS7 structures in PKCS#12 files are of type data.  
						
						 
						
						
						
						
					 
					
						2005-06-30 11:34:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						35f70c09f5 
					 
					
						
						
							
							Actually, the 64bit format specifier differs between SIXTY_FOUR_BIT and  
						
						 
						
						... 
						
						
						
						SIXTY_FOUR_BIT_LONG 
						
						
					 
					
						2005-06-29 18:48:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cc4cba7b5d 
					 
					
						
						
							
							asn1parse doesn't support any TXT format, so let's stop pretending  
						
						 
						
						... 
						
						
						
						it does. 
						
						
					 
					
						2005-06-28 15:44:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6b695fefd0 
					 
					
						
						
							
							remove OPENSSL_NO_ASM dependency  
						
						 
						
						
						
						
					 
					
						2005-06-28 15:03:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						910d193029 
					 
					
						
						
							
							Did you know it was wrong to use a char as an array index?  
						
						 
						
						
						
						
					 
					
						2005-06-28 13:27:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f18dd687c8 
					 
					
						
						
							
							Nasty fix for another warning, but all I have the patience for right now.  
						
						 
						
						
						
						
					 
					
						2005-06-28 13:07:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						50d5376698 
					 
					
						
						
							
							Replace missing character deleted in error.  
						
						 
						
						
						
						
					 
					
						2005-06-28 12:53:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						5b9b62a7db 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2005-06-28 12:41:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c0e29e5b01 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2005-06-28 12:32:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2f03129d46 
					 
					
						
						
							
							bn.h update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-06-28 11:52:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b44e2d3416 
					 
					
						
						
							
							x86nasm.pl update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-06-28 11:30:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						564915681c 
					 
					
						
						
							
							PROBLEMS update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-06-28 10:00:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a24b7eeb87 
					 
					
						
						
							
							Makefile updates from HEAD [see  http://cvs.openssl.org/chngview?cn=14099  
						
						 
						
						... 
						
						
						
						for further details]. 
						
						
					 
					
						2005-06-28 09:10:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0215c01861 
					 
					
						
						
							
							There are a few showstoppers.  Unfortunately, I only remember one.  Please fill this in.  
						
						 
						
						
						
						
					 
					
						2005-06-28 05:55:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						beae6324e5 
					 
					
						
						
							
							Eliminate dependency on UNICODE macro.  
						
						 
						
						
						
						
					 
					
						2005-06-27 21:21:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						71a61c573e 
					 
					
						
						
							
							Fix typos in apps/apps.c.  
						
						 
						
						
						
						
					 
					
						2005-06-27 15:58:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b3b632767 
					 
					
						
						
							
							Sync libeay.num  
						
						 
						
						
						
						
					 
					
						2005-06-27 00:43:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a2fa04b7b 
					 
					
						
						
							
							Unify some SCO targets [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-06-26 18:10:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						79b81d194b 
					 
					
						
						
							
							Configure/TABLE update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-06-26 17:18:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ef04c9aff8 
					 
					
						
						
							
							IA64 RC4 update from HEAD [see commentary in HEAD for details].  
						
						 
						
						... 
						
						
						
						PR: 1114 
						
						
					 
					
						2005-06-26 16:14:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f85197c10 
					 
					
						
						
							
							Further successes with the latest snapshot.  
						
						 
						
						
						
						
					 
					
						2005-06-24 22:23:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ff0bfe64af 
					 
					
						
						
							
							Replace emms with finit in x86cpuid.  
						
						 
						
						
						
						
					 
					
						2005-06-24 16:34:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						44b3a3a5e6 
					 
					
						
						
							
							Add Argen root CAs.  
						
						 
						
						
						
						
					 
					
						2005-06-24 10:54:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e3033aa93 
					 
					
						
						
							
							Someone did some cutting and pasting and didn't quite finish the job :-).  
						
						 
						
						... 
						
						
						
						Notified by Steffen Pankratz <kratz00@gmx.de > 
						
						
					 
					
						2005-06-24 05:13:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8bdbf50772 
					 
					
						
						
							
							Wrap the inclusion of openssl/engine.h with a protective check for  
						
						 
						
						... 
						
						
						
						the absence of OPENSSL_NO_ENGINE. 
						
						
					 
					
						2005-06-23 22:08:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec33a76641 
					 
					
						
						
							
							Wrap the inclusion of openssl/engine.h with a protective check for  
						
						 
						
						... 
						
						
						
						the absence of OPENSSL_NO_ENGINE.
PR: 1123 
						
						
					 
					
						2005-06-23 21:57:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						00ce9376c7 
					 
					
						
						
							
							Do not defined des_crypt(), since it clashes with Solaris crypt.h.  
						
						 
						
						... 
						
						
						
						PR: 1125 
						
						
					 
					
						2005-06-23 21:53:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						46e7a9797e 
					 
					
						
						
							
							Initialise dir to avoid a compiler warning.  
						
						 
						
						
						
						
					 
					
						2005-06-23 21:49:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7006c4ac88 
					 
					
						
						
							
							The NAME section of a man page is required to have a dash followed by a  
						
						 
						
						... 
						
						
						
						short description, at least according to pod2man.
PR: 1127 
						
						
					 
					
						2005-06-23 21:45:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a50a2126cf 
					 
					
						
						
							
							DCC doesn't like argument names in returned function pointers.  
						
						 
						
						... 
						
						
						
						PR: 1122 
						
						
					 
					
						2005-06-23 21:35:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						07f7b4b470 
					 
					
						
						
							
							Update for Stratus VOS.  
						
						 
						
						... 
						
						
						
						PR: 1130 
						
						
					 
					
						2005-06-23 21:27:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e726e42f4 
					 
					
						
						
							
							Configure update for Stratus VOS.  
						
						 
						
						... 
						
						
						
						PR: 1129 
						
						
					 
					
						2005-06-23 21:20:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						40ba0257de 
					 
					
						
						
							
							Change dir_ctrl to check for the environment variable before using the default  
						
						 
						
						... 
						
						
						
						directory instead of the other way around.
PR: 1131 
						
						
					 
					
						2005-06-23 21:14:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3fbd5f9fea 
					 
					
						
						
							
							Strip the engine shared libraries as well.  
						
						 
						
						... 
						
						
						
						Submitted by Corinna Vinschen <vinschen@redhat.com > 
						
						
					 
					
						2005-06-23 20:55:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						57b2246d35 
					 
					
						
						
							
							Darwin specific update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-06-23 20:47:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a5b22d6f9 
					 
					
						
						
							
							Missed -c in IRIX rule.  
						
						 
						
						
						
						
					 
					
						2005-06-23 20:38:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f247dc7522 
					 
					
						
						
							
							IRIX upadte from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-06-23 16:47:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e6531253e2 
					 
					
						
						
							
							HP-UX specific update to Makefile.shared.  
						
						 
						
						
						
						
					 
					
						2005-06-23 15:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c938babf00 
					 
					
						
						
							
							A number of architectures noted so far.  
						
						 
						
						
						
						
					 
					
						2005-06-23 06:31:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bf3900020f 
					 
					
						
						
							
							no-asm didn't prevent make from compiling assembler modules [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-06-22 23:50:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						586df3bb7f 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-06-22 18:54:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c4b13b0268 
					 
					
						
						
							
							Reorder extensions to account for synced OID table.  
						
						 
						
						
						
						
					 
					
						2005-06-22 17:28:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						daef72316f 
					 
					
						
						
							
							Sync OID database with 0.9.7.  
						
						 
						
						
						
						
					 
					
						2005-06-22 17:26:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1f93c96e63 
					 
					
						
						
							
							Fix extension ordering.  
						
						 
						
						
						
						
					 
					
						2005-06-22 13:25:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8aa9c79276 
					 
					
						
						
							
							Tagging is done, we're moving on.  
						
						 
						
						
						
						
					 
					
						2005-06-21 05:56:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						09a7f2e734 
					 
					
						
						
							
							Prepare for a release of 0.9.8-beta6.  This is supposed to be the  
						
						 
						
						... 
						
						
						
						final beta.
The tag will be OpenSSL_0_9_8-beta6 
						
						
					 
					
						2005-06-21 05:49:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b2d27e376d 
					 
					
						
						
							
							Some new news.  
						
						 
						
						
						
						
					 
					
						2005-06-21 05:46:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						644c4af11e 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-06-21 05:28:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ca3dc3a0a0 
					 
					
						
						
							
							DEVRANDOM, not DEBRANDOM...  
						
						 
						
						
						
						
					 
					
						2005-06-21 04:41:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2b975dfd5b 
					 
					
						
						
							
							Do no try to pretend we're at the end of anything unless we're at the end  
						
						 
						
						... 
						
						
						
						of a 4-character block. 
						
						
					 
					
						2005-06-20 22:11:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0932892278 
					 
					
						
						
							
							Check for 'usage' and 'Usage'.  
						
						 
						
						... 
						
						
						
						Submitted by Tim Rice <tim@multitalents.net >.  His comment is:
I noticed "make report" didn't show the cc version on most of
my System V platforms. This patch corrects this. 
						
						
					 
					
						2005-06-20 20:49:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fe0b3d98c2 
					 
					
						
						
							
							Refine ELF detection on BSD platforms.  
						
						 
						
						
						
						
					 
					
						2005-06-20 17:36:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8d56c8b51c 
					 
					
						
						
							
							Solaris x86_64 /usr/ccs/bin/as support.  
						
						 
						
						
						
						
					 
					
						2005-06-20 14:50:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d8e6409336 
					 
					
						
						
							
							Add crypto/bn/bn_prime.h to the collection of generated files.  In the  
						
						 
						
						... 
						
						
						
						update target, place the dependency on depend last, so all necessary files
are generated *before* the dependencies are figured out.
PR: 1121 
						
						
					 
					
						2005-06-20 04:29:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a4ae746656 
					 
					
						
						
							
							With DJGPP, it seems like the return code from grep, even when in the  
						
						 
						
						... 
						
						
						
						middle of a pipe, is noted.  Counter that by forcing a true return code
when the return code has no importance.
PR: 1085 
						
						
					 
					
						2005-06-19 20:31:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						331a0a7b9b 
					 
					
						
						
							
							Undefine DECRANDOM before redefining it.  
						
						 
						
						... 
						
						
						
						PR: 1110 
						
						
					 
					
						2005-06-19 20:20:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c630a3e8d6 
					 
					
						
						
							
							Add better documentation on how id_function() should be defined and what  
						
						 
						
						... 
						
						
						
						issues there are.
PR: 1096 
						
						
					 
					
						2005-06-18 05:52:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7435d89edf 
					 
					
						
						
							
							Move the definition of DEVRANDOM for DJGPP from Configure to e_os.h.  
						
						 
						
						... 
						
						
						
						That should solve the issues with propagating it through the Makefiles.
PR: 1110 
						
						
					 
					
						2005-06-18 04:42:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						14557c8be4 
					 
					
						
						
							
							Only define ZLIB_SHARED if it hasn't already been defined (on the command  
						
						 
						
						... 
						
						
						
						line, for example).
PR: 1112 
						
						
					 
					
						2005-06-18 04:32:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						98b4995bad 
					 
					
						
						
							
							Have pod2man.pl accept '=for comment ...' before the '=head1 NAME' line.  
						
						 
						
						... 
						
						
						
						PR: 1113 
						
						
					 
					
						2005-06-18 04:27:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3000bdcc3a 
					 
					
						
						
							
							clear dso pointer in case of an error  
						
						 
						
						... 
						
						
						
						PR: 816 
						
						
					 
					
						2005-06-17 21:27:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cbe77a6753 
					 
					
						
						
							
							update for the cswift engine:  
						
						 
						
						... 
						
						
						
						- fix the problem described in bug report 825
- fix a segfault when the engine fails to initialize
- let the engine switch to software when keysize > 2048
PR: 825, 826
Submitted by: Frédéric Giudicelli 
						
						
					 
					
						2005-06-17 20:43:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c58a1f76f8 
					 
					
						
						
							
							Do not undefine _XOPEN_SOURCE.  This is currently experimental, and  
						
						 
						
						... 
						
						
						
						will be firmed up as soon as it's been verified not to break anything. 
						
						
					 
					
						2005-06-16 22:19:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ecf2875ebf 
					 
					
						
						
							
							Don't strip extensions from header filenames in mk1mf.pl.  
						
						 
						
						
						
						
					 
					
						2005-06-16 02:16:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce2c19e357 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2005-06-16 02:05:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1b1081a3ed 
					 
					
						
						
							
							0.9.8-beta5 works on Gentoo/arml but not /armb, and works on Linux AMD64  
						
						 
						
						
						
						
					 
					
						2005-06-14 05:42:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37b200389a 
					 
					
						
						
							
							Data about which Cygwin versions 0.9.8-beta5 work on  
						
						 
						
						
						
						
					 
					
						2005-06-13 17:10:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6b5a8f3a22 
					 
					
						
						
							
							0.9.8-beta5 works on SuSE 9.3  
						
						 
						
						
						
						
					 
					
						2005-06-13 17:03:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b18d8b0c7 
					 
					
						
						
							
							0.9.8-beta5 works on Cygwin  
						
						 
						
						
						
						
					 
					
						2005-06-13 17:00:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3d187ede47 
					 
					
						
						
							
							update FAQ  
						
						 
						
						
						
						
					 
					
						2005-06-13 08:36:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f3b9c34515 
					 
					
						
						
							
							0.9.8-beta5 works on VMS/Alpha  
						
						 
						
						
						
						
					 
					
						2005-06-13 04:17:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c923394924 
					 
					
						
						
							
							Now that beta5 is tagged, lets continue with beta6.  
						
						 
						
						
						
						
					 
					
						2005-06-13 03:48:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d9dbd24db5 
					 
					
						
						
							
							Time to release beta 5.  
						
						 
						
						... 
						
						
						
						The tag will be OpenSSL_0_9_8-beta5 
						
						
					 
					
						2005-06-13 03:36:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b135819d71 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-06-13 03:29:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cbcbd07da2 
					 
					
						
						
							
							Netware patch submitted by Verdon Walker" <VWalker@novell.com> in PR  
						
						 
						
						... 
						
						
						
						1107.  He says:
This is a followup to the NetWare patch that was applied to beta3.  It
does the following:
- Fixes a problem in the CLib build with undefined symbols.
- Adds the ability to use BSD sockets as the default for the OpenSSL
  socket BIO.  NetWare supports 2 flavors of sockets and our Apache
  developers need BSD sockets as a configurable option when building
  OpenSSL.  This adds that for them.
- Updates to the INSTALL.NW file to explain new options.
I have tried very hard to make sure all the changes are in NetWare
specific files or guarded carefully to make sure they only impact
NetWare builds.  I have tested the Windows build to make sure it does
not break that since we have made changes to mk1mf.pl.
We are still working the gcc cross compile for NetWare issue and hope
to have a patch for that before beta 6 is released. 
						
						
					 
					
						2005-06-13 03:21:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						24f6ab73a7 
					 
					
						
						
							
							Show what the offending target was.  
						
						 
						
						... 
						
						
						
						PR: 1108 
						
						
					 
					
						2005-06-13 02:38:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						5e88347e1b 
					 
					
						
						
							
							replace the deprecated "-m486" gcc option with "-march=i486"  
						
						 
						
						... 
						
						
						
						PR: 1049 
						
						
					 
					
						2005-06-12 10:32:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cac0d4ee6f 
					 
					
						
						
							
							- let SSL_CTX_set_cipher_list and SSL_set_cipher_list return an  
						
						 
						
						... 
						
						
						
						error if the cipher list is empty
- fix last commit in ssl_create_cipher_list
- clean up ssl_create_cipher_list 
						
						
					 
					
						2005-06-10 19:51:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						428759b3d4 
					 
					
						
						
							
							Allow for dso load by explicit path on HP-UX.  
						
						 
						
						
						
						
					 
					
						2005-06-09 20:50:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						898d3ecce0 
					 
					
						
						
							
							use "=" instead of "|=", fix typo  
						
						 
						
						
						
						
					 
					
						2005-06-08 22:20:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						004f16f6c4 
					 
					
						
						
							
							Avoid endless loops.  Really, we were using the same variable for two  
						
						 
						
						... 
						
						
						
						different conditions... 
						
						
					 
					
						2005-06-08 21:59:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						4e2a0e58f2 
					 
					
						
						
							
							ssl_create_cipher_list should return an error if no cipher could be  
						
						 
						
						... 
						
						
						
						collected (see SSL_CTX_set_cipher_list manpage). Fix handling of
"cipher1+cipher2" expressions in ssl_cipher_process_rulestr
PR: 836 + 1005 
						
						
					 
					
						2005-06-08 21:13:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						39d29195a7 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2005-06-06 22:41:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						727c9b8027 
					 
					
						
						
							
							Allow BIO_s_file to open and sequentially access files larger than 2GB  
						
						 
						
						... 
						
						
						
						on affected platforms.
PR: 973 
						
						
					 
					
						2005-06-06 12:05:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bd4e9b0512 
					 
					
						
						
							
							FAQ to mention no-sha512 as option for compilers without support for  
						
						 
						
						... 
						
						
						
						64-bit integer type [from HEAD]. 
						
						
					 
					
						2005-06-06 09:33:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7844ff735f 
					 
					
						
						
							
							Pass INSTALL_PREFIX in BUILDENV.  
						
						 
						
						... 
						
						
						
						PR: 1100 
						
						
					 
					
						2005-06-06 08:52:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						49e96badcf 
					 
					
						
						
							
							Skipping all tests just because one algorithm is disabled seems a bit harsch.  
						
						 
						
						... 
						
						
						
						PR: 1089 
						
						
					 
					
						2005-06-06 08:38:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						eb6a81bacc 
					 
					
						
						
							
							Change mention of Makefile.ssl to Makefile.  
						
						 
						
						
						
						
					 
					
						2005-06-06 08:36:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6687f12988 
					 
					
						
						
							
							Now that tagging is done, we can continue working.  
						
						 
						
						
						
						
					 
					
						2005-06-06 00:44:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fcd12fc0f1 
					 
					
						
						
							
							Time to release 0.9.8 beta 4.  
						
						 
						
						... 
						
						
						
						The tag will be OpenSSL_0_9_8-beta4 
						
						
					 
					
						2005-06-06 00:39:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0fb4d54068 
					 
					
						
						
							
							Further change pq_compat.h to generate the flag macros PQ_64BIT_IS_INTEGER  
						
						 
						
						... 
						
						
						
						and PQ_64BIT_IS_BIGNUM with the values 0 (for false) and 1 (for true),
depending on which is true.  Use those flags everywhere else to provide
the correct implementation for handling certain operations in q PQ_64BIT. 
						
						
					 
					
						2005-06-06 00:32:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						830a468a23 
					 
					
						
						
							
							Document the change and update the release number.  
						
						 
						
						
						
						
					 
					
						2005-06-05 23:25:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af3ca7b4a9 
					 
					
						
						
							
							Remove the incorrect installation of '%{openssldir}/lib'.  
						
						 
						
						... 
						
						
						
						PR: 1074 
						
						
					 
					
						2005-06-05 23:15:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7a6bb17255 
					 
					
						
						
							
							Change pq_compat.h to trust the macros defined by bn.h a bit more, and thereby  
						
						 
						
						... 
						
						
						
						provide better generic support for environments that do not have 64-bit
integers.  Among others, this should solve PR 1086 
						
						
					 
					
						2005-06-05 22:43:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bc6d459a6e 
					 
					
						
						
							
							gcc 2.95.3 on Ultrix supports long long.  
						
						 
						
						... 
						
						
						
						PR: 1091 
						
						
					 
					
						2005-06-05 22:19:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ff7f34e353 
					 
					
						
						
							
							Correct typo ia64.o -> bn-ia64.o.  
						
						 
						
						... 
						
						
						
						PR: 1094 
						
						
					 
					
						2005-06-05 22:09:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2e3d79aaec 
					 
					
						
						
							
							Add support for the new Intel compiler, icc.  
						
						 
						
						... 
						
						
						
						Submitted by Keith Thompson <kst@sdsc.edu >
PR: 1095 
						
						
					 
					
						2005-06-05 22:01:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8a41bcc934 
					 
					
						
						
							
							Old typo...  
						
						 
						
						... 
						
						
						
						PR: 1097 
						
						
					 
					
						2005-06-05 21:55:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e2414b41ad 
					 
					
						
						
							
							Updated support for NetWare, submitted by Verdon Walker <VWalker@novell.com>.  
						
						 
						
						... 
						
						
						
						PR: 1098 
						
						
					 
					
						2005-06-05 21:46:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						266958bce7 
					 
					
						
						
							
							PROBLEMS to mention workarounds for ULTRIX build problems.  
						
						 
						
						... 
						
						
						
						PR: 1092 
						
						
					 
					
						2005-06-05 18:07:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bc5354cbf0 
					 
					
						
						
							
							The macro THREADS was changed to OPENSSL_THREADS a long time ago.  
						
						 
						
						... 
						
						
						
						PR: 1096 
						
						
					 
					
						2005-06-04 08:44:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cc4997843e 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2005-06-02 23:17:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ab95eac286 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-06-02 20:30:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1cd76233d1 
					 
					
						
						
							
							Update CHANGES.  
						
						 
						
						
						
						
					 
					
						2005-06-02 20:09:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3d5afc8b83 
					 
					
						
						
							
							PSS update [from 0.9.7].  
						
						 
						
						
						
						
					 
					
						2005-06-02 18:29:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d28b7799dd 
					 
					
						
						
							
							handshake_write_seq is an unsigned short, so treat it like one  
						
						 
						
						
						
						
					 
					
						2005-06-02 17:26:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b0fb889c29 
					 
					
						
						
							
							check return value  
						
						 
						
						
						
						
					 
					
						2005-06-01 22:35:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						460e80bd1d 
					 
					
						
						
							
							Update from 0.9.7-stable  
						
						 
						
						
						
						
					 
					
						2005-06-01 22:14:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bc1e96e942 
					 
					
						
						
							
							Synchronise yet a little more with the Unixly build  
						
						 
						
						
						
						
					 
					
						2005-06-01 16:24:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7ea61df414 
					 
					
						
						
							
							clear error queue on success and return NULL if cert could be read  
						
						 
						
						... 
						
						
						
						PR: 1088 
						
						
					 
					
						2005-06-01 08:31:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						431712293d 
					 
					
						
						
							
							fix assertion  
						
						 
						
						... 
						
						
						
						PR: 1072 
						
						
					 
					
						2005-05-31 20:38:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						335ed97263 
					 
					
						
						
							
							Synchronise more with the Unix build  
						
						 
						
						
						
						
					 
					
						2005-05-31 20:28:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e00b165e9b 
					 
					
						
						
							
							let "make all test" work with "no-aes"  
						
						 
						
						... 
						
						
						
						PR: 1078 
						
						
					 
					
						2005-05-31 17:56:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						5467ddf0e1 
					 
					
						
						
							
							include opensslconf.h if OPENSSL_NO_* is used  
						
						 
						
						
						
						
					 
					
						2005-05-31 17:31:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a37dd92ed 
					 
					
						
						
							
							"Show" more respect to no-sha* config options.  
						
						 
						
						... 
						
						
						
						PR: 1086 
						
						
					 
					
						2005-05-31 16:33:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d0c11e9d72 
					 
					
						
						
							
							Fix warnings.  
						
						 
						
						
						
						
					 
					
						2005-05-31 13:13:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5ec52fee2c 
					 
					
						
						
							
							Mention more GCC bugs in ./PROBLEMS.  
						
						 
						
						
						
						
					 
					
						2005-05-31 12:39:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5026bc13bb 
					 
					
						
						
							
							file fips_rsa_x931g.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:21 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-31 12:38:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c7d27e5247 
					 
					
						
						
							
							file fips_rsagtest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:22 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-31 12:37:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b7d7af7ea9 
					 
					
						
						
							
							file bn_x931p.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 22:54:29 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-31 12:37:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						39663d2c40 
					 
					
						
						
							
							Missing sparcv8.o rule.  
						
						 
						
						... 
						
						
						
						PR: 1082 
						
						
					 
					
						2005-05-31 12:18:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						000299a0e6 
					 
					
						
						
							
							Fix typo in ./config.  
						
						 
						
						
						
						
					 
					
						2005-05-31 11:31:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a47d82b9b 
					 
					
						
						
							
							AMD64 OPENSSL_Uplink update.  
						
						 
						
						
						
						
					 
					
						2005-05-31 11:00:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						198bcece58 
					 
					
						
						
							
							fix warning  
						
						 
						
						
						
						
					 
					
						2005-05-31 09:55:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						053677d124 
					 
					
						
						
							
							Improve ELF detection procedure on BSD targets.  
						
						 
						
						... 
						
						
						
						PR: 1079 
						
						
					 
					
						2005-05-31 09:32:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						804072f014 
					 
					
						
						
							
							Zap sco3.  
						
						 
						
						... 
						
						
						
						Submitted by: Tim Rice 
						
						
					 
					
						2005-05-31 09:08:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e9429b43ce 
					 
					
						
						
							
							Default to no-sse2 no-sha512 on selected platforms.  
						
						 
						
						
						
						
					 
					
						2005-05-31 09:05:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3d37d5e24a 
					 
					
						
						
							
							Forgottent make update.  These files will be retagged.  
						
						 
						
						
						
						
					 
					
						2005-05-30 23:20:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2728a1b4f3 
					 
					
						
						
							
							Forgottent needed changed.  This file will be retagged.  
						
						 
						
						
						
						
					 
					
						2005-05-30 23:19:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						adb040d4cb 
					 
					
						
						
							
							Tagging done, moving up to next beta in development.  
						
						 
						
						
						
						
					 
					
						2005-05-30 23:07:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						479d7934c0 
					 
					
						
						
							
							Not quite right...  
						
						 
						
						
						
						
					 
					
						2005-05-30 22:59:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						22d1acd5ac 
					 
					
						
						
							
							Time to release the next beta (a few days late, sorry about that).  
						
						 
						
						... 
						
						
						
						The tag will be OpenSSL_0_9_8-beta3 
						
						
					 
					
						2005-05-30 22:56:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b257c152c6 
					 
					
						
						
							
							A couple more things were added.  
						
						 
						
						
						
						
					 
					
						2005-05-30 22:51:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						77b97ee0d7 
					 
					
						
						
							
							DJGPP changes.  Contributed by Doug Kaufman <dkaufman@rahul.net>  
						
						 
						
						
						
						
					 
					
						2005-05-30 22:37:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e2ac4732cd 
					 
					
						
						
							
							pqueue and dtls uses 64-bit values.  Unfortunately, OpenSSL doesn't  
						
						 
						
						... 
						
						
						
						have a uniform representation for those over all architectures, so a
little bit of hackery is needed.
Contributed by nagendra modadugu <nagendra@cs.stanford.edu > 
						
						
					 
					
						2005-05-30 22:34:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e8f665b495 
					 
					
						
						
							
							Synchronise with Unixly build  
						
						 
						
						
						
						
					 
					
						2005-05-30 22:26:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						55f3ef29ea 
					 
					
						
						
							
							Change all relevant occurences of 'ncipher' to 'chil'.  That's what nCipher always wanted...  
						
						 
						
						
						
						
					 
					
						2005-05-30 05:17:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2d78c9623 
					 
					
						
						
							
							Copy ordinals from 0.9.7 and update.  
						
						 
						
						
						
						
					 
					
						2005-05-30 00:28:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a4578a5413 
					 
					
						
						
							
							Change the source and output paths for 'chil' and '4758cca' engines so that  
						
						 
						
						... 
						
						
						
						dynamic loading is consistent with respect to engine ids. 
						
						
					 
					
						2005-05-29 19:16:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						e884fcf785 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_8-stable'. 
						
						
					 
					
						2005-05-29 19:14:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a2c32e2d7f 
					 
					
						
						
							
							Change the source and output paths for 'chil' and '4758cca' engines so that  
						
						 
						
						... 
						
						
						
						dynamic loading is consistent with respect to engine ids. 
						
						
					 
					
						2005-05-29 19:14:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						80b168a5a9 
					 
					
						
						
							
							We have some source with \r\n as line ends.  DEC C informs about that,  
						
						 
						
						... 
						
						
						
						and I really can't be bothered... 
						
						
					 
					
						2005-05-29 12:13:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e96025755d 
					 
					
						
						
							
							We have some source with \r\n as line ends.  DEC C informs about that,  
						
						 
						
						... 
						
						
						
						and I really can't be bothered... 
						
						
					 
					
						2005-05-29 12:13:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9426364be9 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2005-05-29 12:11:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c9028b0ab5 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2005-05-29 11:26:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b4d2858f95 
					 
					
						
						
							
							Add PSS prototype to rsa.h  
						
						 
						
						
						
						
					 
					
						2005-05-28 20:50:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dea446d995 
					 
					
						
						
							
							Update from 0.9.7-stable branch.  
						
						 
						
						
						
						
					 
					
						2005-05-28 20:49:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						5cd94f9e9d 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_8-stable'. 
						
						
					 
					
						2005-05-28 20:44:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						429168e7ee 
					 
					
						
						
							
							Add pss/x931 files.  
						
						 
						
						
						
						
					 
					
						2005-05-28 20:44:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						499fca2db3 
					 
					
						
						
							
							Update from 0.9.7-stable. Also repatch and rebuild error codes.  
						
						 
						
						
						
						
					 
					
						2005-05-28 20:44:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cad811fc41 
					 
					
						
						
							
							Use BN_with_flags() in a cleaner way.  
						
						 
						
						
						
						
					 
					
						2005-05-27 15:39:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a28a5d9c62 
					 
					
						
						
							
							Use BN_with_flags() in a cleaner way.  
						
						 
						
						
						
						
					 
					
						2005-05-27 15:38:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f791ca818 
					 
					
						
						
							
							Assing check_{cert,crl}_time to 'ok' variable so it returns errors on  
						
						 
						
						... 
						
						
						
						expiry. 
						
						
					 
					
						2005-05-27 13:19:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						69f6a9f007 
					 
					
						
						
							
							file fips_standalone_sha1.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:23 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-26 21:29:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4eeee0c59f 
					 
					
						
						
							
							file fips_shatest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:23 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-26 21:29:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a5afa6c95f 
					 
					
						
						
							
							file fips_sha1_selftest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:23 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-26 21:29:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						625dacb93d 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:23 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-26 21:29:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						62e9c2e091 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:23 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-26 21:29:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e4106a4e24 
					 
					
						
						
							
							make sure DSA signing exponentiations really are constant-time  
						
						 
						
						
						
						
					 
					
						2005-05-26 04:40:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0ebfcc8f92 
					 
					
						
						
							
							make sure DSA signing exponentiations really are constant-time  
						
						 
						
						
						
						
					 
					
						2005-05-26 04:40:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c61f571ce0 
					 
					
						
						
							
							check BN_copy() return value  
						
						 
						
						
						
						
					 
					
						2005-05-26 04:30:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a506b8c7dd 
					 
					
						
						
							
							check BN_copy() return value  
						
						 
						
						
						
						
					 
					
						2005-05-26 04:30:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e5cd536894 
					 
					
						
						
							
							Some assemblers are too rudimentary to understand dynamic labels.  
						
						 
						
						
						
						
					 
					
						2005-05-25 21:37:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						60192e96b8 
					 
					
						
						
							
							Handle differences between engine IDs and their dynamic library names (and  
						
						 
						
						... 
						
						
						
						source files, for that matter) by tolerating the alternatives. It would be
preferable to also change the generated shared library names, but that will
be taken up separately. 
						
						
					 
					
						2005-05-25 02:54:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						629ea39a88 
					 
					
						
						
							
							Handle differences between engine IDs and their dynamic library names (and  
						
						 
						
						... 
						
						
						
						source files, for that matter) by tolerating the alternatives. It would be
preferable to also change the generated shared library names, but that will
be taken up separately. 
						
						
					 
					
						2005-05-25 02:52:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7d9e1321c7 
					 
					
						
						
							
							Forgot to change the version number itself.  
						
						 
						
						
						
						
					 
					
						2005-05-24 03:57:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						83af7422a0 
					 
					
						
						
							
							Tagging is done, we continue on beta3, which is planned to be released  
						
						 
						
						... 
						
						
						
						on Sunday May 29th. 
						
						
					 
					
						2005-05-24 03:50:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ce8945f35c 
					 
					
						
						
							
							Time to release the next beta.  
						
						 
						
						... 
						
						
						
						The tag will be OpenSSL_0_9_8-beta2. 
						
						
					 
					
						2005-05-24 03:42:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dd890f0776 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-05-24 03:39:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af4ac437ab 
					 
					
						
						
							
							It seems like mkdef.pl couldn't quite understand that #ifdef OPENSSL_NO_SHA512  
						
						 
						
						... 
						
						
						
						was still active when it came down to the functions.  mkdef.pl should really
be corrected, but that'll be another day... 
						
						
					 
					
						2005-05-24 03:39:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						85991994df 
					 
					
						
						
							
							It seems like mkdef.pl couldn't quite understand that #ifdef OPENSSL_NO_SHA512  
						
						 
						
						... 
						
						
						
						was still active when it came down to the functions.  mkdef.pl should really
be corrected, but that'll be another day... 
						
						
					 
					
						2005-05-24 03:39:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						607585fdaf 
					 
					
						
						
							
							Typo correction  
						
						 
						
						
						
						
					 
					
						2005-05-24 03:27:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b325518f45 
					 
					
						
						
							
							Typo correction  
						
						 
						
						
						
						
					 
					
						2005-05-24 03:27:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2f596aeef5 
					 
					
						
						
							
							DEC C complains about bad subscript, but we know better, so let's shut it up.  
						
						 
						
						
						
						
					 
					
						2005-05-24 03:22:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b172dec864 
					 
					
						
						
							
							DEC C complains about bad subscript, but we know better, so let's shut it up.  
						
						 
						
						
						
						
					 
					
						2005-05-24 03:22:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						69762c75fa 
					 
					
						
						
							
							Fix WIN32+KRB5 issues.  
						
						 
						
						
						
						
					 
					
						2005-05-23 00:32:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						61391e2314 
					 
					
						
						
							
							Be more consistent with OPENSSL_NO_SHA256.  
						
						 
						
						
						
						
					 
					
						2005-05-22 10:27:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						36b29660ce 
					 
					
						
						
							
							Be more consistent with OPENSSL_NO_SHA256.  
						
						 
						
						
						
						
					 
					
						2005-05-22 10:26:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4976983f30 
					 
					
						
						
							
							Disseminate BUILDENV even further.  
						
						 
						
						
						
						
					 
					
						2005-05-22 09:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4b23506594 
					 
					
						
						
							
							OPENSSL_NO_SHA512 to mask even SHA512_CTX declaration. This is done to  
						
						 
						
						... 
						
						
						
						make no-sha512 more effective on platforms, which don't support 64-bit
integer type of *any* kind. 
						
						
					 
					
						2005-05-22 08:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31e4ad25ba 
					 
					
						
						
							
							OPENSSL_NO_SHA512 to mask even SHA512_CTX declaration. This is done to  
						
						 
						
						... 
						
						
						
						make no-sha512 more effective on platforms, which don't support 64-bit
integer type of *any* kind. 
						
						
					 
					
						2005-05-22 08:52:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						225f4daf15 
					 
					
						
						
							
							Still SEGV trouble in .init segment under Solaris x86...  
						
						 
						
						
						
						
					 
					
						2005-05-21 17:51:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						82d3dda8a1 
					 
					
						
						
							
							Still SEGV trouble in .init segment under Solaris x86...  
						
						 
						
						
						
						
					 
					
						2005-05-21 17:49:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b9927cfa2d 
					 
					
						
						
							
							When _XOPEN_SOURCE is defined, make sure it's defined to 500.  Required in  
						
						 
						
						... 
						
						
						
						http://www.opengroup.org/onlinepubs/007908799/xsh/compilation.html .
Notified by David Wolfe <dwolfe5272@yahoo.com > 
						
						
					 
					
						2005-05-21 17:39:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fe8bf9560d 
					 
					
						
						
							
							When _XOPEN_SOURCE is defined, make sure it's defined to 500.  Required in  
						
						 
						
						... 
						
						
						
						http://www.opengroup.org/onlinepubs/007908799/xsh/compilation.html .
Notified by David Wolfe <dwolfe5272@yahoo.com > 
						
						
					 
					
						2005-05-21 17:39:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						af6cafc603 
					 
					
						
						
							
							Default to no-sse2 on selected platforms.  
						
						 
						
						
						
						
					 
					
						2005-05-21 16:52:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e4c9b85e65 
					 
					
						
						
							
							Default to no-sse2 on selected platforms.  
						
						 
						
						
						
						
					 
					
						2005-05-21 16:50:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						447aa49007 
					 
					
						
						
							
							Patches for Cygwin, provided by Corinna Vinschen <vinschen@redhat.com>  
						
						 
						
						
						
						
					 
					
						2005-05-21 16:41:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						15da07d436 
					 
					
						
						
							
							Patches for Cygwin, provided by Corinna Vinschen <vinschen@redhat.com>  
						
						 
						
						
						
						
					 
					
						2005-05-21 16:37:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						fe977f7512 
					 
					
						
						
							
							Propagate BUILDENV into subdirectories.  
						
						 
						
						
						
						
					 
					
						2005-05-21 16:13:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						886ed3544b 
					 
					
						
						
							
							Move _WIN32_WINNT definition from command line to e_os.h [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-05-21 13:19:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e476f94212 
					 
					
						
						
							
							Move _WIN32_WINNT definition from command line to e_os.h. The change is  
						
						 
						
						... 
						
						
						
						inspired by VC6 failure report. In addition abstain from taking screen
snapshots when running in NT service context. 
						
						
					 
					
						2005-05-21 13:19:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						aff2922f9a 
					 
					
						
						
							
							fix typo, add prototype  
						
						 
						
						
						
						
					 
					
						2005-05-20 23:01:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						bbbd67108f 
					 
					
						
						
							
							fix typo, add prototype  
						
						 
						
						
						
						
					 
					
						2005-05-20 22:55:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f32e0035a3 
					 
					
						
						
							
							fix potential memory leak  
						
						 
						
						... 
						
						
						
						Submitted by: Goetz Babin-Ebell 
						
						
					 
					
						2005-05-19 22:11:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7f246621b5 
					 
					
						
						
							
							fix potential memory leak  
						
						 
						
						... 
						
						
						
						Submitted by: Goetz Babin-Ebell 
						
						
					 
					
						2005-05-19 22:10:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b67d988915 
					 
					
						
						
							
							update ecdsa doc  
						
						 
						
						
						
						
					 
					
						2005-05-19 20:54:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7b1e7706d8 
					 
					
						
						
							
							update ecdsa doc  
						
						 
						
						
						
						
					 
					
						2005-05-19 20:54:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cd74dda72a 
					 
					
						
						
							
							FAQ to mention no-sse2.  
						
						 
						
						
						
						
					 
					
						2005-05-19 19:57:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						851e31ff07 
					 
					
						
						
							
							FAQ to mention no-sse2.  
						
						 
						
						
						
						
					 
					
						2005-05-19 19:54:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						032bb2a2c5 
					 
					
						
						
							
							Tagging of 0.9.8-beta1 is done, time to update the version numbers to  
						
						 
						
						... 
						
						
						
						the next beta (beta2). 
						
						
					 
					
						2005-05-19 19:45:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						decc9ffc18 
					 
					
						
						
							
							Update status information  
						
						 
						
						
						
						
					 
					
						2005-05-19 19:43:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fa96ed06d2 
					 
					
						
						
							
							Update version information.  
						
						 
						
						
						
						
					 
					
						2005-05-19 19:42:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43133041c9 
					 
					
						
						
							
							'make update' with a default configuration.  
						
						 
						
						
						
						
					 
					
						2005-05-19 19:31:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e0ee5ea962 
					 
					
						
						
							
							Added news items for OpenSSL 0.9.8.  
						
						 
						
						
						
						
					 
					
						2005-05-19 19:12:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3f4657d131 
					 
					
						
						
							
							fix "dereferencing type-punned pointer will break strict-aliasing rules"  
						
						 
						
						... 
						
						
						
						warning when using gcc 4.0 
						
						
					 
					
						2005-05-19 12:01:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f5634286a3 
					 
					
						
						
							
							fix "dereferencing type-punned pointer will break strict-aliasing rules"  
						
						 
						
						... 
						
						
						
						warning when using gcc 4.0 
						
						
					 
					
						2005-05-19 11:59:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						97d37c1c1e 
					 
					
						
						
							
							Recognize new macros.  
						
						 
						
						
						
						
					 
					
						2005-05-19 11:51:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						739b139cb2 
					 
					
						
						
							
							Propogate BUILDENV even in ./engines.  
						
						 
						
						
						
						
					 
					
						2005-05-19 02:13:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0bc9920ad4 
					 
					
						
						
							
							Stringify substitutions [some shells require it].  
						
						 
						
						
						
						
					 
					
						2005-05-19 02:08:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3f516ce837 
					 
					
						
						
							
							SysV make [or least some of them] don't propogate command line macros to  
						
						 
						
						... 
						
						
						
						recursively called make. So let's pass down BUILDENV as value too... 
						
						
					 
					
						2005-05-19 01:48:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						67ffa18cce 
					 
					
						
						
							
							make the type parameter const when ID2_OF_const() is used  
						
						 
						
						
						
						
					 
					
						2005-05-18 22:30:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9f197f9da5 
					 
					
						
						
							
							make the type parameter const when ID2_OF_const() is used  
						
						 
						
						
						
						
					 
					
						2005-05-18 22:29:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3dc2cc36e9 
					 
					
						
						
							
							FAQ update to mention Applink [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-05-18 13:37:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						788e67e227 
					 
					
						
						
							
							FAQ update to mention Applink.  
						
						 
						
						
						
						
					 
					
						2005-05-18 13:35:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ca3e683747 
					 
					
						
						
							
							Don't emit SSE2 instructions unless were asked to [from HEAD].  
						
						 
						
						... 
						
						
						
						PR: 1073 
						
						
					 
					
						2005-05-18 08:45:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c50226594d 
					 
					
						
						
							
							Don't emit SSE2 instructions unless were asked to.  
						
						 
						
						... 
						
						
						
						PR: 1073 
						
						
					 
					
						2005-05-18 08:42:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						38a1757168 
					 
					
						
						
							
							Engage Applink in mingw. [from HEAD]  
						
						 
						
						
						
						
					 
					
						2005-05-18 08:17:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						51ff6bde38 
					 
					
						
						
							
							Engage Applink in mingw. Note that application-side module is not  
						
						 
						
						... 
						
						
						
						compiled into *our* aplpications. That's because mingw is always
consistent with itself. Having library-side code linked into .dll
makes it possible to deploy the .dll with user-code compiled with
another compiler [which is pretty much the whole point behind Applink]. 
						
						
					 
					
						2005-05-18 08:16:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4104a57107 
					 
					
						
						
							
							OpenSSL 0.9.8 has just entered beta status.  Not quite releasing yet,  
						
						 
						
						... 
						
						
						
						since I need to write a NEWS entry.
This means we're in feature freeze.  HEAD is now 0.9.9-dev. 
						
						
					 
					
						2005-05-18 04:14:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28e4fe34e4 
					 
					
						
						
							
							Version changes where needed.  
						
						 
						
						
						
						
					 
					
						2005-05-18 04:04:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c800a070b5 
					 
					
						
						
							
							I just branched 0.9.8, so HEAD needs to be bumped to 0.9.9-dev.  
						
						 
						
						... 
						
						
						
						The 0.9.8 branch is called OpenSSL_0_9_8-stable. 
						
						
					 
					
						2005-05-18 03:58:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						b0c0f20071 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_8-stable'. 
						
						
					 
					
						2005-05-17 16:50:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						53d8996764 
					 
					
						
						
							
							Engage Applink for VC builds.  
						
						 
						
						
						
						
					 
					
						2005-05-17 16:50:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						32b1843ec6 
					 
					
						
						
							
							Keep disclaming 16-bit support.  
						
						 
						
						
						
						
					 
					
						2005-05-17 13:51:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8712009778 
					 
					
						
						
							
							simplify EC_KEY_dup  
						
						 
						
						
						
						
					 
					
						2005-05-17 12:23:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b8994f44e7 
					 
					
						
						
							
							mdc2test is not built by default anymore.  
						
						 
						
						
						
						
					 
					
						2005-05-17 06:57:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f468e3824a 
					 
					
						
						
							
							fix memory leak (BIO_free_all needs pointer to first BIO)  
						
						 
						
						... 
						
						
						
						PR: 1070 
						
						
					 
					
						2005-05-17 05:52:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea1b02db6a 
					 
					
						
						
							
							OPENSSL_Applink update.  
						
						 
						
						
						
						
					 
					
						2005-05-17 00:08:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2c4b354d32 
					 
					
						
						
							
							Disclaim 16-bit support.  
						
						 
						
						
						
						
					 
					
						2005-05-17 00:07:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						25a66ee3cb 
					 
					
						
						
							
							Move cryptlib.h prior bio.h. Actually it makes sense to include cryptlib.h  
						
						 
						
						... 
						
						
						
						first everywhere in crypto and skip stdio.h and string.h [because it
includes them]. 
						
						
					 
					
						2005-05-17 00:01:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0978dec131 
					 
					
						
						
							
							Improve shell portability of new rules in Makefile.shared.  
						
						 
						
						
						
						
					 
					
						2005-05-16 21:05:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						91b17fbad4 
					 
					
						
						
							
							Change wording for BN_mod_exp_mont_consttime() entry  
						
						 
						
						
						
						
					 
					
						2005-05-16 19:14:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ce92b6eb9c 
					 
					
						
						
							
							Further BUILDENV refinement, further fool-proofing of Makefiles and  
						
						 
						
						... 
						
						
						
						[most importantly] put back dependencies accidentaly eliminated in
check-in #13342 . 
						
						
					 
					
						2005-05-16 16:55:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7abbffc3fb 
					 
					
						
						
							
							Further BUILDENV clean-up, 'make depend' is operational again.  
						
						 
						
						
						
						
					 
					
						2005-05-16 14:24:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9dd8405341 
					 
					
						
						
							
							ecc api cleanup; summary:  
						
						 
						
						... 
						
						
						
						- hide the EC_KEY structure definition in ec_lcl.c + add
  some functions to use/access the EC_KEY fields
- change the way how method specific data (ecdsa/ecdh) is
  attached to a EC_KEY
- add ECDSA_sign_ex and ECDSA_do_sign_ex functions with
  additional parameters for pre-computed values
- rebuild libeay.num from 0.9.7 
						
						
					 
					
						2005-05-16 10:11:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						46a643763d 
					 
					
						
						
							
							Implement fixed-window exponentiation to mitigate hyper-threading  
						
						 
						
						... 
						
						
						
						timing attacks.
BN_FLG_EXP_CONSTTIME requests this algorithm, and this done by default for
RSA/DSA/DH private key computations unless
RSA_FLAG_NO_EXP_CONSTTIME/DSA_FLAG_NO_EXP_CONSTTIME/
DH_FLAG_NO_EXP_CONSTTIME is set.
Submitted by: Matthew D Wood
Reviewed by: Bodo Moeller 
						
						
					 
					
						2005-05-16 01:43:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						92c4468572 
					 
					
						
						
							
							rebuild to synchronize with additions to 0.9.7 branch  
						
						 
						
						
						
						
					 
					
						2005-05-16 00:29:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						10cde5010d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-05-16 00:27:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c4cd925cc0 
					 
					
						
						
							
							Make Makefile.shared quiet again.  
						
						 
						
						
						
						
					 
					
						2005-05-16 00:01:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f210eb7b89 
					 
					
						
						
							
							Simplify shared rules, link run-path into applications only.  
						
						 
						
						
						
						
					 
					
						2005-05-15 23:59:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						734540f887 
					 
					
						
						
							
							Consolidate BUILDENV [idea is to keep all variables in one place].  
						
						 
						
						
						
						
					 
					
						2005-05-15 23:53:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						804515425a 
					 
					
						
						
							
							+20% performance improvement of P4-specific RC4_CHAR loop.  
						
						 
						
						
						
						
					 
					
						2005-05-15 22:43:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						81a86fcf17 
					 
					
						
						
							
							Fool-proofing Makefiles  
						
						 
						
						
						
						
					 
					
						2005-05-15 22:23:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a534bb09d3 
					 
					
						
						
							
							Make update.  
						
						 
						
						
						
						
					 
					
						2005-05-15 00:56:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6995add5c 
					 
					
						
						
							
							Make -CSP option work again in pkcs12 utility by checking for  
						
						 
						
						... 
						
						
						
						attribute in EVP_PKEY structure. 
						
						
					 
					
						2005-05-15 00:54:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8ccd06c66c 
					 
					
						
						
							
							openssl_fcast should always be defined, not just with DEBUG_SAFESTACK  
						
						 
						
						
						
						
					 
					
						2005-05-14 12:58:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe86616c72 
					 
					
						
						
							
							Some C compilers produce warnings or compilation errors if an attempt  
						
						 
						
						... 
						
						
						
						is made to directly cast a function of one type to what it considers and
incompatible type. In particular gcc 3.4.2.
Add new openssl_fcast macro to place functions into a form where the compiler
will allow them to be cast.
The current version achives this by casting to: void function(void). 
						
						
					 
					
						2005-05-12 23:01:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba2ba27008 
					 
					
						
						
							
							Avoid warnings.  
						
						 
						
						
						
						
					 
					
						2005-05-12 22:40:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f795123c4a 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-05-12 22:39:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c596c795bf 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-05-12 17:28:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3f19bbf4e3 
					 
					
						
						
							
							fix msg_callback() arguments for SSL 2.0 compatible client hello  
						
						 
						
						... 
						
						
						
						(previous revision got this wrong) 
						
						
					 
					
						2005-05-12 06:24:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b874ce4dc2 
					 
					
						
						
							
							Move another item into ChangeLog.0_9_7-stable_not-in-head_FIPS  
						
						 
						
						
						
						
					 
					
						2005-05-11 18:36:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c6c2e3135d 
					 
					
						
						
							
							Don't use the SSL 2.0 Client Hello format if SSL 2.0 is disabled  
						
						 
						
						... 
						
						
						
						with the SSL_OP_NO_SSLv2 option. 
						
						
					 
					
						2005-05-11 18:25:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4b26fe30de 
					 
					
						
						
							
							There must be an explicit way to build the .o!  
						
						 
						
						
						
						
					 
					
						2005-05-11 16:39:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4a8224b598 
					 
					
						
						
							
							Move some entries from ChangeLog.0_9_7-stable_not-in-head  
						
						 
						
						... 
						
						
						
						to ChangeLog.0_9_7-stable_not-in-head_FIPS. 
						
						
					 
					
						2005-05-11 03:54:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8afca8d9c6 
					 
					
						
						
							
							Fix more error codes.  
						
						 
						
						... 
						
						
						
						(Also improve util/ck_errf.pl script, and occasionally
fix source code formatting.) 
						
						
					 
					
						2005-05-11 03:45:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						35e8510e60 
					 
					
						
						
							
							use 'p' as conversion specifier for printf to avoid truncation of  
						
						 
						
						... 
						
						
						
						pointers on 64 bit platforms. Patch supplied by Daniel Gryniewicz
via Mike Frysinger <vapier@gentoo.org >.
PR: 1064 
						
						
					 
					
						2005-05-10 11:55:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8b15c74018 
					 
					
						
						
							
							give EC_GROUP_new_by_nid a more meanigful name:  
						
						 
						
						... 
						
						
						
						EC_GROUP_new_by_nid -> EC_GROUP_new_by_curve_name 
						
						
					 
					
						2005-05-10 11:37:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						3afa6cf866 
					 
					
						
						
							
							improve command line argument checking  
						
						 
						
						... 
						
						
						
						PR: 1061 
						
						
					 
					
						2005-05-10 09:51:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e19e549041 
					 
					
						
						
							
							Comply with optimization manual (no data should share cache-line with code).  
						
						 
						
						
						
						
					 
					
						2005-05-09 21:48:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d7561ac576 
					 
					
						
						
							
							Allow for 64-bit cache-line alignments in code segment.  
						
						 
						
						
						
						
					 
					
						2005-05-09 21:27:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7870774162 
					 
					
						
						
							
							file fips_hmac_selftest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:17 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-09 19:22:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fbeaa3c47d 
					 
					
						
						
							
							Update util/ck_errf.pl script, and have it run automatically  
						
						 
						
						... 
						
						
						
						during "make errors" and thus during "make update".
Fix lots of bugs that util/ck_errf.pl can detect automatically.
Various others of these are still left to fix; that's why
"make update" will complain loudly when run now. 
						
						
					 
					
						2005-05-09 00:27:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ee2262b8d7 
					 
					
						
						
							
							rebuild (starting with state from 0.9.7-stable branch) to avoid clutter  
						
						 
						
						
						
						
					 
					
						2005-05-09 00:22:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b0ac0a8ef8 
					 
					
						
						
							
							improve comment readability  
						
						 
						
						
						
						
					 
					
						2005-05-09 00:06:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0f4499360e 
					 
					
						
						
							
							give EC_GROUP_*_nid functions a more meaningful name  
						
						 
						
						... 
						
						
						
						EC_GROUP_get_nid -> EC_GROUP_get_curve_name
    EC_GROUP_set_nid -> EC_GROUP_set_curve_name 
						
						
					 
					
						2005-05-09 00:05:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7dc17a6cf0 
					 
					
						
						
							
							give EC_GROUP_*_nid functions a more meaningful name  
						
						 
						
						... 
						
						
						
						EC_GROUP_get_nid -> EC_GROUP_get_curve_name
	EC_GROUP_set_nid -> EC_GROUP_set_curve_name 
						
						
					 
					
						2005-05-08 22:09:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b6223d2f70 
					 
					
						
						
							
							Eliminate "statement with no effect" warning when OPENSSL_assert macro  
						
						 
						
						... 
						
						
						
						is used with constant assertion. 
						
						
					 
					
						2005-05-08 19:54:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4213cdaf5d 
					 
					
						
						
							
							file fips_rngvs.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:18 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-07 22:06:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						39b4c974ee 
					 
					
						
						
							
							file fips_rand_selftest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:18 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-07 22:06:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						256b5d5877 
					 
					
						
						
							
							I was incorrect about VMS/Alpha.  Defining BN_LLONG with  
						
						 
						
						... 
						
						
						
						SIXTY_FOUR_BIT could cause havoc, so don't (it's lucky bn.h undefines
BN_LLONG when SIXTY_FOUR_BIT is defined). 
						
						
					 
					
						2005-05-07 21:21:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						508f56f17c 
					 
					
						
						
							
							file fips_rsastest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:22 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-07 12:50:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5d0d60e2f5 
					 
					
						
						
							
							x86_64 assembler translator update.  
						
						 
						
						
						
						
					 
					
						2005-05-07 08:13:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						57ee007035 
					 
					
						
						
							
							Fix constants.  
						
						 
						
						... 
						
						
						
						PR: 1059 
						
						
					 
					
						2005-05-07 08:11:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						82e8cb403a 
					 
					
						
						
							
							Since BN_LLONG will only be defined for Alpha/VMS and not VAX/VMS,  
						
						 
						
						... 
						
						
						
						there's no need to undefine it here.  Then, let's get a bit paranoid
and not define BN_ULLONG on THIRTY_TWO_BIT machines when BN_LLONG
isn't defined. 
						
						
					 
					
						2005-05-06 13:34:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						abee01c6f8 
					 
					
						
						
							
							Actually, C on VMS/Alpha knows very well what a long long is, and  
						
						 
						
						... 
						
						
						
						knows how to make use of it.  So let's stop pretending the Alpha
doesn't know long long... 
						
						
					 
					
						2005-05-06 13:33:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48665b7c99 
					 
					
						
						
							
							file fips_rsavtest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:22 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-05 21:46:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						2c288b2a7e 
					 
					
						
						
							
							fix compiler warning; pow10 is also in math.h  
						
						 
						
						
						
						
					 
					
						2005-05-05 20:57:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						831721ef49 
					 
					
						
						
							
							A few more fingerprints...  
						
						 
						
						
						
						
					 
					
						2005-05-05 06:38:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0ee883650d 
					 
					
						
						
							
							Commentary update motivating code update in 0.9.7.  
						
						 
						
						
						
						
					 
					
						2005-05-04 14:51:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						70cf309517 
					 
					
						
						
							
							x86_64 assembler translator update.  
						
						 
						
						
						
						
					 
					
						2005-05-04 08:42:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8b5bf52ac2 
					 
					
						
						
							
							Cvs missed adapted module itself, here it goes...  
						
						 
						
						
						
						
					 
					
						2005-05-03 23:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						73a9485081 
					 
					
						
						
							
							Engage md5-x86_64 assembler module.  
						
						 
						
						
						
						
					 
					
						2005-05-03 22:59:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d37a65bc81 
					 
					
						
						
							
							Throw in md5-x86_64 assembler.  
						
						 
						
						
						
						
					 
					
						2005-05-03 22:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34c7ff6dc9 
					 
					
						
						
							
							Cygwin doesn't expose Win32 [not "officially"].  
						
						 
						
						
						
						
					 
					
						2005-05-03 21:20:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						647907918d 
					 
					
						
						
							
							Commentary update.  
						
						 
						
						
						
						
					 
					
						2005-05-03 21:16:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cee73df3bd 
					 
					
						
						
							
							Cpuid modules updates.  
						
						 
						
						
						
						
					 
					
						2005-05-03 21:05:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						07481951f9 
					 
					
						
						
							
							remove false positive  
						
						 
						
						
						
						
					 
					
						2005-05-03 20:58:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f15c448a72 
					 
					
						
						
							
							remove BN_ncopy, it was only used in bn_nist.c and wasn't particular  
						
						 
						
						... 
						
						
						
						useful anyway 
						
						
					 
					
						2005-05-03 20:27:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fcb41c0ee8 
					 
					
						
						
							
							rewrite of bn_nist.c, disable support for some curves on 64 bit platforms  
						
						 
						
						... 
						
						
						
						for now (it was broken anyway) 
						
						
					 
					
						2005-05-03 20:23:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9b62318311 
					 
					
						
						
							
							fix typo  
						
						 
						
						... 
						
						
						
						PR: 1054 
						
						
					 
					
						2005-05-03 18:34:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						51971f7293 
					 
					
						
						
							
							file fips_hmactest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:17 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-03 17:07:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5f1841cdca 
					 
					
						
						
							
							Rename amd64 modules to x86_64 and update RC4 implementation.  
						
						 
						
						
						
						
					 
					
						2005-05-03 15:42:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4b45051902 
					 
					
						
						
							
							x86_64 assembler translator update.  
						
						 
						
						
						
						
					 
					
						2005-05-03 15:35:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9e5790ce21 
					 
					
						
						
							
							backport fix from the stable branch  
						
						 
						
						
						
						
					 
					
						2005-05-03 10:00:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d3addb252 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:17 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-02 23:06:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f8bdd1fdb 
					 
					
						
						
							
							file fips_hmac.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:17 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-02 23:04:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6181fd949f 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:17 +0000  
						
						 
						
						
						
						
					 
					
						2005-05-02 23:04:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						fce8c6cc53 
					 
					
						
						
							
							Redundant changes.  
						
						 
						
						
						
						
					 
					
						2005-05-01 13:55:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0ff469d38d 
					 
					
						
						
							
							Add prototype.  
						
						 
						
						
						
						
					 
					
						2005-05-01 13:49:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05338b58ce 
					 
					
						
						
							
							Support for smime-type MIME parameter.  
						
						 
						
						
						
						
					 
					
						2005-05-01 12:46:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						081057c3ff 
					 
					
						
						
							
							Remove false positives and resolve some of remaining ones.  
						
						 
						
						
						
						
					 
					
						2005-04-30 23:48:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						94c1672ef0 
					 
					
						
						
							
							Cygwin/mingw sync with stable.  
						
						 
						
						
						
						
					 
					
						2005-04-30 23:45:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						405d9761a5 
					 
					
						
						
							
							Allow for ./config no-sha0 [from stable].  
						
						 
						
						
						
						
					 
					
						2005-04-30 21:51:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c3a2d64e4 
					 
					
						
						
							
							Fold rules in test/Makefiles [from stable].  
						
						 
						
						
						
						
					 
					
						2005-04-30 21:39:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98a2fd32a0 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-04-30 18:07:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bdeeb64ac 
					 
					
						
						
							
							Don't attempt to parse nested ASN1 strings by default.  
						
						 
						
						
						
						
					 
					
						2005-04-30 18:02:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43b45a42fd 
					 
					
						
						
							
							Some true positives fixed, toss some false positives.  
						
						 
						
						
						
						
					 
					
						2005-04-30 15:25:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9af1bfb3d5 
					 
					
						
						
							
							From branch OpenSSL_0_9_7-stable, 2004-09-11 11:45:  
						
						 
						
						... 
						
						
						
						Makefile.ssl changed name to Makefile... 
						
						
					 
					
						2005-04-30 15:23:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aed14edd12 
					 
					
						
						
							
							From branch OpenSSL_0_9_7-stable, 2004-08-11 22:34:  
						
						 
						
						... 
						
						
						
						Another missing module in the VMS build files.I believe this is
the last, though... 
						
						
					 
					
						2005-04-30 15:21:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						14a948e6ad 
					 
					
						
						
							
							All kinds of changes from branch OpenSSL_0_9_7-stable  
						
						 
						
						
						
						
					 
					
						2005-04-30 15:17:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af2fcf3a65 
					 
					
						
						
							
							This one deserves a note.  In the change to CHANGES, there's the  
						
						 
						
						... 
						
						
						
						following:
+     NOTE: This is for the 0.9.7 series ONLY.  This hack will never
+     appear in 0.9.8 or later.  We EXPECT application authors to have
+     dealt properly with this when 0.9.8 is released (unless we actually
+     make such changes in the libcrypto locking code that changes will
+     have to be made anyway).
That makes this one a false positive. 
						
						
					 
					
						2005-04-30 14:41:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4a676ac4f8 
					 
					
						
						
							
							Remove a bunch of false positives, and fix some true positives.  
						
						 
						
						
						
						
					 
					
						2005-04-30 14:40:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37e27219f2 
					 
					
						
						
							
							From branch OpenSSL_0_9_7-stable, 2002-11-13 15:30:  
						
						 
						
						... 
						
						
						
						The loading functions should be static if we build a dynamic
engine. 
						
						
					 
					
						2005-04-30 14:34:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d2284ab5d1 
					 
					
						
						
							
							Remove a bunch of false positives, fix one true positive.  
						
						 
						
						
						
						
					 
					
						2005-04-30 13:50:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						78e91e7574 
					 
					
						
						
							
							From branch OpenSSL_0_9_7-stable, revision 1.1.4.1, 2002-05-23 17:25:  
						
						 
						
						... 
						
						
						
						Forgot this file. 
						
						
					 
					
						2005-04-30 13:42:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1cc0671ac 
					 
					
						
						
							
							Use more efficient way to locate end of an ASN1 structure.  
						
						 
						
						
						
						
					 
					
						2005-04-30 13:06:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c1a8a5de13 
					 
					
						
						
							
							don't let BN_CTX_free(NULL) segfault  
						
						 
						
						
						
						
					 
					
						2005-04-29 21:20:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e3d0e0a792 
					 
					
						
						
							
							remove false positive  
						
						 
						
						
						
						
					 
					
						2005-04-29 20:41:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7c7667b86b 
					 
					
						
						
							
							check return value of RAND_pseudo_bytes; backport from the stable branch  
						
						 
						
						
						
						
					 
					
						2005-04-29 20:10:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						38be5db93b 
					 
					
						
						
							
							remove some false positive  
						
						 
						
						
						
						
					 
					
						2005-04-29 19:24:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6a50d0a422 
					 
					
						
						
							
							hide the definition of ECDSA_METHOD and ECDSA_DATA (and mutatis mutandis  
						
						 
						
						... 
						
						
						
						for ecdh) 
						
						
					 
					
						2005-04-29 15:56:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7ab2d30349 
					 
					
						
						
							
							add 192 bit prime curve to the command line options  
						
						 
						
						
						
						
					 
					
						2005-04-29 15:21:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d753c3f582 
					 
					
						
						
							
							add reference to BN_BLINDING_new.pod  
						
						 
						
						
						
						
					 
					
						2005-04-29 15:07:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						1897c89302 
					 
					
						
						
							
							avoid warnings when building on systems where sizeof(void *) > sizeof(int)  
						
						 
						
						
						
						
					 
					
						2005-04-29 14:26:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3cc54008eb 
					 
					
						
						
							
							Pointer to BN_MONT_CTX could be used uninitialized.  
						
						 
						
						
						
						
					 
					
						2005-04-28 08:49:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ff8bcccdd4 
					 
					
						
						
							
							Synchronise with Unix build system.  
						
						 
						
						
						
						
					 
					
						2005-04-28 04:55:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a93b01be57 
					 
					
						
						
							
							Increase offset for BIO_f_enc() to avoid problems with overlapping buffers  
						
						 
						
						... 
						
						
						
						when decrypting data. 
						
						
					 
					
						2005-04-28 00:21:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04b304d346 
					 
					
						
						
							
							Update default dependency flags.  
						
						 
						
						
						
						
					 
					
						2005-04-27 16:32:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6c61726b2a 
					 
					
						
						
							
							Lots of Win32 fixes for DTLS.  
						
						 
						
						... 
						
						
						
						1. "unsigned long long" isn't portable changed: to BN_ULLONG.
2. The LL prefix isn't allowed in VC++ but it isn't needed where it is used.
2. Avoid lots of compiler warnings about signed/unsigned mismatches.
3. Include new library directory pqueue in mk1mf build system.
4. Update symbols. 
						
						
					 
					
						2005-04-27 16:27:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cd202fe2f9 
					 
					
						
						
							
							get rid of Makefile.ssl in util/  
						
						 
						
						
						
						
					 
					
						2005-04-27 08:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						69af4faec1 
					 
					
						
						
							
							no Makefile.ssl anymore  
						
						 
						
						
						
						
					 
					
						2005-04-27 08:48:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						df9e0bf507 
					 
					
						
						
							
							add missing parentheses  
						
						 
						
						
						
						
					 
					
						2005-04-27 07:57:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						879b19801a 
					 
					
						
						
							
							Change method_mont_p from (char *) to (BN_MONT_CTX *) and remove several  
						
						 
						
						... 
						
						
						
						casts. 
						
						
					 
					
						2005-04-27 00:04:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ec8e63af6 
					 
					
						
						
							
							Port BN_MONT_CTX_set_locked() from stable branch.  
						
						 
						
						... 
						
						
						
						The function rsa_eay_mont_helper() has been removed because it is no longer
needed after this change. 
						
						
					 
					
						2005-04-26 23:58:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						465b9f6b26 
					 
					
						
						
							
							Stop unused variable warning.  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:45:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c9c87a76e 
					 
					
						
						
							
							Remove more false positives.  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:33:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a7a90b2f00 
					 
					
						
						
							
							there's no such thing as Makefile.ssl anymore  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:22:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4d6e7733fa 
					 
					
						
						
							
							util/mk1mf.pl issues have been resolved  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:22:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2deadf1672 
					 
					
						
						
							
							Port from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:21:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ea862e0b3 
					 
					
						
						
							
							More false positives and cases covered by port of prime.c  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:19:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						11c9b7cfeb 
					 
					
						
						
							
							"PS" to Steve's commit (Port prime utility across from stable branch).  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:11:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b08868c48a 
					 
					
						
						
							
							Port prime utility across from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:02:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9ca46ff609 
					 
					
						
						
							
							add docu for BN_BLINDING functions  
						
						 
						
						
						
						
					 
					
						2005-04-26 22:33:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						800e400de5 
					 
					
						
						
							
							some updates for the blinding code; summary:  
						
						 
						
						... 
						
						
						
						- possibility of re-creation of the blinding parameters after a
  fixed number of uses (suggested by Bodo)
- calculatition of the rsa::e in case it's absent and p and q
  are present (see bug report #785 )
- improve the performance when if one rsa structure is shared by
  more than a thread (see bug report #555 )
- fix the problem described in bug report #827 
- hide the definition ot the BN_BLINDING structure in bn_blind.c 
						
						
					 
					
						2005-04-26 22:31:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05886a6f77 
					 
					
						
						
							
							Remove more false positives.  
						
						 
						
						
						
						
					 
					
						2005-04-26 22:25:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						667aef4c6a 
					 
					
						
						
							
							Port from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-04-26 22:07:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49e179cc52 
					 
					
						
						
							
							Remove more false positives.  
						
						 
						
						
						
						
					 
					
						2005-04-26 22:05:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						aa4ce7315f 
					 
					
						
						
							
							Fix various incorrect error function codes.  
						
						 
						
						... 
						
						
						
						("perl util/ck_errf.pl */*.c */*/*.c" still reports many more.) 
						
						
					 
					
						2005-04-26 18:53:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c741b83762 
					 
					
						
						
							
							take OPENSSL_NO_DGRAM into account  
						
						 
						
						... 
						
						
						
						(via make update) 
						
						
					 
					
						2005-04-26 18:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						64387788a9 
					 
					
						
						
							
							let mkdef.pl know about OPENSSL_NO_DGRAM  
						
						 
						
						... 
						
						
						
						(which appears in the new file crypto/bio/bss_dgram.c) 
						
						
					 
					
						2005-04-26 18:21:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						480506bd49 
					 
					
						
						
							
							remove some functions from exported headers  
						
						 
						
						
						
						
					 
					
						2005-04-26 18:18:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0d5ea7613e 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-04-26 18:09:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						beb056b303 
					 
					
						
						
							
							fix SSLerr stuff for DTLS1 code;  
						
						 
						
						... 
						
						
						
						move some functions from exported header <openssl/dtl1.h> into "ssl_locl.h";
fix silly indentation (a TAB is *not* always 4 spaces) 
						
						
					 
					
						2005-04-26 18:08:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e321ffaff 
					 
					
						
						
							
							Fixes for signed/unsigned warnings and shadows.  
						
						 
						
						
						
						
					 
					
						2005-04-26 17:43:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ededa42db 
					 
					
						
						
							
							False positive removed.  
						
						 
						
						
						
						
					 
					
						2005-04-26 17:37:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						36d16f8ee0 
					 
					
						
						
							
							Add DTLS support.  
						
						 
						
						
						
						
					 
					
						2005-04-26 16:02:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ab781a0cb6 
					 
					
						
						
							
							make depend.  
						
						 
						
						
						
						
					 
					
						2005-04-26 13:56:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						19c2987eb6 
					 
					
						
						
							
							remove false positive  
						
						 
						
						
						
						
					 
					
						2005-04-26 08:17:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b09af97686 
					 
					
						
						
							
							some more false positives to remove  
						
						 
						
						
						
						
					 
					
						2005-04-25 23:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a7b1c7732f 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-04-25 23:17:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						abc64463af 
					 
					
						
						
							
							move some more entries into FIPS file  
						
						 
						
						
						
						
					 
					
						2005-04-25 23:16:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2e7245f5a3 
					 
					
						
						
							
							Use OPENSSL_NO_CAST, not OPENSSL_NO_CAST5 in e_old.c  
						
						 
						
						... 
						
						
						
						PR: 959 
						
						
					 
					
						2005-04-25 23:09:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f76b062e16 
					 
					
						
						
							
							Remove some more entries that are false positives, or have been  
						
						 
						
						... 
						
						
						
						resolved by recent commits. 
						
						
					 
					
						2005-04-25 23:06:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cc1717eaa4 
					 
					
						
						
							
							Sort out changes in FIPS and other changes, collected in separate files.  
						
						 
						
						... 
						
						
						
						(Also remove another "make update".) 
						
						
					 
					
						2005-04-25 22:55:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c5156d952e 
					 
					
						
						
							
							remove some more false positives  
						
						 
						
						
						
						
					 
					
						2005-04-25 22:08:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0b2d0d7d13 
					 
					
						
						
							
							remove some more false positives  
						
						 
						
						
						
						
					 
					
						2005-04-25 22:02:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b732a8cf5f 
					 
					
						
						
							
							remove some more changes that came from HEAD  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:54:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a7dc451ebe 
					 
					
						
						
							
							fix editing error, and remove a false positive  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:53:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						87357fc0b8 
					 
					
						
						
							
							update  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:42:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a2c96d888d 
					 
					
						
						
							
							remove extra whitespace; fix link  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:36:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9a6c6b99bf 
					 
					
						
						
							
							remove some false positives  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:32:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						033c79dff1 
					 
					
						
						
							
							add recent changes; now this file is up-to-date  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:25:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b362536275 
					 
					
						
						
							
							bring up-to-date  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:22:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						aa16a28631 
					 
					
						
						
							
							first step to melt down ChangeLog.0_9_7-stable_not-in-head :-)  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:06:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2757c67da2 
					 
					
						
						
							
							This is a collection of those CVS change log entries for the 0.9.7  
						
						 
						
						... 
						
						
						
						branch (OpenSSL_0_9_7-stable) that do not appear similarly in
0.9.8-dev (CVS head).
Some obvious false positives have been eliminated: e.g., we do not
care about a simple "make update"; and we don't care about changes
identified to the 0.9.7 branch that were explicitly identified as
backports from head.
Eliminating all other entries (and finally this file), either as false
positives or as things that should go into 0.9.8, remains to be done. 
						
						
					 
					
						2005-04-25 21:01:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3d5fd31280 
					 
					
						
						
							
							Avoid L1 cache aliasing even between key and S-boxes.  
						
						 
						
						
						
						
					 
					
						2005-04-24 21:09:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c7199e62f1 
					 
					
						
						
							
							Flag changes in Configure and config, too.  
						
						 
						
						... 
						
						
						
						Update dependencies. 
						
						
					 
					
						2005-04-24 12:02:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0b3fc6e63b 
					 
					
						
						
							
							update  
						
						 
						
						
						
						
					 
					
						2005-04-24 09:17:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2db9cfb52 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2005-04-24 02:24:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6bc8e6b898 
					 
					
						
						
							
							Recognize zlib and krb5 options in mk1mf.pl  
						
						 
						
						
						
						
					 
					
						2005-04-24 02:21:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9edf4e8157 
					 
					
						
						
							
							make asn.1 field names const  
						
						 
						
						
						
						
					 
					
						2005-04-23 13:45:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						965a1cb92e 
					 
					
						
						
							
							change prototype of the ecdh KDF: make input parameter const and the outlen argument  more flexible  
						
						 
						
						
						
						
					 
					
						2005-04-23 10:11:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e9ad6665a5 
					 
					
						
						
							
							Add debug target, remove cast, note possible bug.  
						
						 
						
						
						
						
					 
					
						2005-04-23 06:05:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b5855b2f32 
					 
					
						
						
							
							Add prototypes.  
						
						 
						
						
						
						
					 
					
						2005-04-22 23:57:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						a0bee97e55 
					 
					
						
						
							
							more const  
						
						 
						
						
						
						
					 
					
						2005-04-22 21:57:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e7076c5a80 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-04-22 20:17:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ff22e913a3 
					 
					
						
						
							
							- use BN_set_negative and BN_is_negative instead of BN_set_sign  
						
						 
						
						... 
						
						
						
						and BN_get_sign
- implement BN_set_negative as a function
- always use "#define BN_is_zero(a) ((a)->top == 0)" 
						
						
					 
					
						2005-04-22 20:02:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						04d0d0accf 
					 
					
						
						
							
							Avoid aliasing between stack frames and S-boxes. Compress prefetch code.  
						
						 
						
						
						
						
					 
					
						2005-04-22 11:49:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						00df894701 
					 
					
						
						
							
							the pointer to the message digest is const  
						
						 
						
						
						
						
					 
					
						2005-04-21 09:43:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						630e4a6e59 
					 
					
						
						
							
							Provide a default OPENSSL_ia32cap_loc for non-Intel platforms where  
						
						 
						
						... 
						
						
						
						util/libeay.num is important when building shared libraries, like
VMS. 
						
						
					 
					
						2005-04-21 09:10:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf2336f478 
					 
					
						
						
							
							Don't use standard kerberos library locations in MK1MF builds.  
						
						 
						
						... 
						
						
						
						Fix typo in mk1mf.pl 
						
						
					 
					
						2005-04-21 00:46:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						384dba6edb 
					 
					
						
						
							
							Make kerberos ciphersuite code compile again.  
						
						 
						
						... 
						
						
						
						Avoid more shadow warnings. 
						
						
					 
					
						2005-04-20 21:48:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c45bf2bc9 
					 
					
						
						
							
							Rename typed version of M_ASN1_get M_ASN1_get_x to avoid conflicts.  
						
						 
						
						... 
						
						
						
						Remove more bogus shadow warnings. 
						
						
					 
					
						2005-04-20 21:48:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						836ec0c764 
					 
					
						
						
							
							Stop compiler warnings about deprecated lvalue casts.  
						
						 
						
						
						
						
					 
					
						2005-04-20 21:39:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e72fb063a 
					 
					
						
						
							
							Stop bogus shadowing warning.  
						
						 
						
						
						
						
					 
					
						2005-04-20 21:34:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2dc08d5f5d 
					 
					
						
						
							
							Process MINFO file earlier in mk1mf.pl so it can modify variables like CFLAGS.  
						
						 
						
						... 
						
						
						
						Process kerberos include and library options. 
						
						
					 
					
						2005-04-20 16:22:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00b8abee61 
					 
					
						
						
							
							Handle similar mk1mf.pl options with a hash table.  
						
						 
						
						
						
						
					 
					
						2005-04-20 16:01:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7efebab9fd 
					 
					
						
						
							
							signed vs. unsigned.  
						
						 
						
						
						
						
					 
					
						2005-04-20 13:21:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a74286d636 
					 
					
						
						
							
							Make sure id2_func is properly cast as well...  
						
						 
						
						
						
						
					 
					
						2005-04-20 13:17:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						254cfe878e 
					 
					
						
						
							
							signed vs. unsigned.  
						
						 
						
						
						
						
					 
					
						2005-04-20 13:12:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ed824195a1 
					 
					
						
						
							
							Avoid compiler complaint about mismatched function signatures  
						
						 
						
						... 
						
						
						
						(void * != char *) 
						
						
					 
					
						2005-04-20 13:09:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						22c3600e4c 
					 
					
						
						
							
							Resolve signed vs. unsigned.  
						
						 
						
						
						
						
					 
					
						2005-04-20 12:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						49f386578e 
					 
					
						
						
							
							Type mismatch detected by DEC C compiler.  void* != void**  
						
						 
						
						
						
						
					 
					
						2005-04-20 12:53:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7c671508bd 
					 
					
						
						
							
							Avoid compiler complaint about mismatched function signatures  
						
						 
						
						... 
						
						
						
						(void * != RSA *) 
						
						
					 
					
						2005-04-20 10:02:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3fdc27aa8 
					 
					
						
						
							
							Fix logic in mkdef.pl function is_valid.  
						
						 
						
						... 
						
						
						
						Update symbols 
						
						
					 
					
						2005-04-19 23:54:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						40e950aed6 
					 
					
						
						
							
							Stop perl warning.  
						
						 
						
						
						
						
					 
					
						2005-04-19 18:57:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						987bebaf8c 
					 
					
						
						
							
							New "algorithm define" OPENSSL_NO_GMP. Update mkdef.pl and Configure script  
						
						 
						
						... 
						
						
						
						to use it. 
						
						
					 
					
						2005-04-19 13:24:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						65f0efe198 
					 
					
						
						
							
							Ignore TYPEDEF_OF in mkdef.pl  
						
						 
						
						
						
						
					 
					
						2005-04-19 11:49:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e77d8f2ecd 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2005-04-19 00:15:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f68854b4c3 
					 
					
						
						
							
							Various Win32 and other fixes for warnings and compilation errors.  
						
						 
						
						... 
						
						
						
						Fix Win32 build system to use 'Makefile' instead of 'Makefile.ssl'. 
						
						
					 
					
						2005-04-19 00:12:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1cfd258ed6 
					 
					
						
						
							
							Throw in x86_64 AT&T to MASM assembler converter to facilitate development  
						
						 
						
						... 
						
						
						
						of dual-ABI Unix/Win64 modules. 
						
						
					 
					
						2005-04-17 21:05:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04d7d51ea2 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-04-17 13:59:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2906dc8601 
					 
					
						
						
							
							Synchronise with ec/Makefile.  
						
						 
						
						
						
						
					 
					
						2005-04-17 09:07:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c8d5c71af5 
					 
					
						
						
							
							Mitigate cache-timing attack in CBC mode. This is done by implementing  
						
						 
						
						... 
						
						
						
						compressed tables (2x compression factor) and by pre-fetching them into
processor cache prior every CBC en-/decryption pass. One can argue why
just CBC? Well, it's commonly used mode in real-life applications and
API allows us to amortize the prefetch costs for larger data chunks... 
						
						
					 
					
						2005-04-16 15:23:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ff990440ee 
					 
					
						
						
							
							const fixes  
						
						 
						
						
						
						
					 
					
						2005-04-15 18:29:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0e304b7f41 
					 
					
						
						
							
							EVP_CIPHER_CTX_init is a void function + fix typo  
						
						 
						
						... 
						
						
						
						PR: 1044 + 1045 
						
						
					 
					
						2005-04-15 16:01:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbe6ba81e9 
					 
					
						
						
							
							Check return values of <Digest>_Init functions in low level digest calls.  
						
						 
						
						
						
						
					 
					
						2005-04-14 22:58:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2b85e23d2e 
					 
					
						
						
							
							Prototype mnemonics in padlock_verify_context for better portability  
						
						 
						
						... 
						
						
						
						[read support for Solaris assembler]. 
						
						
					 
					
						2005-04-14 07:47:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						026bb0b96a 
					 
					
						
						
							
							Fix for bug emerged in openvpn conext.  
						
						 
						
						
						
						
					 
					
						2005-04-14 07:41:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6424498226 
					 
					
						
						
							
							Final touch to mingw shared.  
						
						 
						
						
						
						
					 
					
						2005-04-13 23:54:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ed449e94a 
					 
					
						
						
							
							More cover-ups, removing OPENSSL_GLOBAL/EXTERNS. We can remove more...  
						
						 
						
						
						
						
					 
					
						2005-04-13 21:46:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4f1c33b430 
					 
					
						
						
							
							Addenum to  http://cvs.openssl.org/chngview?cn=13054 .  
						
						 
						
						
						
						
					 
					
						2005-04-13 21:10:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1334462ab3 
					 
					
						
						
							
							Final(?) touches to mingw shared support.  
						
						 
						
						
						
						
					 
					
						2005-04-13 21:08:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e62991a07c 
					 
					
						
						
							
							Zap OPENSSL_EXTERN on symbols, which are not meant to be local to DLL.  
						
						 
						
						
						
						
					 
					
						2005-04-13 20:51:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						52272327f3 
					 
					
						
						
							
							Makefile.ssl -> Makefile  
						
						 
						
						
						
						
					 
					
						2005-04-13 19:09:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1bf955920a 
					 
					
						
						
							
							Fix typos.  
						
						 
						
						
						
						
					 
					
						2005-04-13 15:41:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						51d28013db 
					 
					
						
						
							
							Introduce OPENSSL_NONPIC_relocated to denote relocated DLLs.  
						
						 
						
						
						
						
					 
					
						2005-04-13 08:46:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8861ba355d 
					 
					
						
						
							
							Parameterize do_solaris rules in Makefile.shared.  
						
						 
						
						
						
						
					 
					
						2005-04-13 07:22:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9e88c82703 
					 
					
						
						
							
							Minor cryptlib.c update: compiler warnings in OPENSSL_showfatal and  
						
						 
						
						... 
						
						
						
						OPENSSL_stderr stub. 
						
						
					 
					
						2005-04-13 06:55:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d2f51c086 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2005-04-12 16:38:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad0db060b1 
					 
					
						
						
							
							More overwritten stuff...  
						
						 
						
						
						
						
					 
					
						2005-04-12 16:36:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3547478fc8 
					 
					
						
						
							
							Replace overwritten lines before error codes.  
						
						 
						
						
						
						
					 
					
						2005-04-12 16:17:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29dc350813 
					 
					
						
						
							
							Rebuild error codes.  
						
						 
						
						
						
						
					 
					
						2005-04-12 16:15:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc3cae7e7d 
					 
					
						
						
							
							Include error library value in C error source files instead of fixing up  
						
						 
						
						... 
						
						
						
						at runtime. 
						
						
					 
					
						2005-04-12 13:31:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						37942fab51 
					 
					
						
						
							
							include limits.h for UINT_MAX etc.  
						
						 
						
						
						
						
					 
					
						2005-04-11 20:59:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						36521f0150 
					 
					
						
						
							
							Add a NEWS item for 0.9.7g.  
						
						 
						
						
						
						
					 
					
						2005-04-11 15:05:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4bb61becbb 
					 
					
						
						
							
							Add emacs cache files to .cvsignore.  
						
						 
						
						
						
						
					 
					
						2005-04-11 14:17:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b392e52050 
					 
					
						
						
							
							Move allow_proxy_certs declaration to start of function.  
						
						 
						
						
						
						
					 
					
						2005-04-10 23:41:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0858b71b41 
					 
					
						
						
							
							Make kerberos ciphersuite code work with newer header files  
						
						 
						
						
						
						
					 
					
						2005-04-09 23:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d9bfe4f97c 
					 
					
						
						
							
							Added restrictions on the use of proxy certificates, as they may pose  
						
						 
						
						... 
						
						
						
						a security threat on unexpecting applications.  Document and test. 
						
						
					 
					
						2005-04-09 16:07:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						dc0ed30cfe 
					 
					
						
						
							
							add support for DER encoded private keys to SSL_CTX_use_PrivateKey_file()  
						
						 
						
						... 
						
						
						
						and SSL_use_PrivateKey_file()
PR: 1035
Submitted by: Walter Goulet
Reviewed by:  Nils Larsch 
						
						
					 
					
						2005-04-08 22:52:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e248596bac 
					 
					
						
						
							
							improve docu of SSL_CTX_use_PrivateKey()  
						
						 
						
						
						
						
					 
					
						2005-04-08 22:49:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6049399baf 
					 
					
						
						
							
							get rid of very buggy and very imcomplete DH cert support  
						
						 
						
						... 
						
						
						
						Reviewed by: Bodo Moeller 
						
						
					 
					
						2005-04-07 23:19:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f763e0b5ae 
					 
					
						
						
							
							make sure error queue is totally emptied  
						
						 
						
						... 
						
						
						
						PR: 359 
						
						
					 
					
						2005-04-07 22:53:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						eb3eab20a8 
					 
					
						
						
							
							const fixes  
						
						 
						
						
						
						
					 
					
						2005-04-07 22:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4848cbf1cf 
					 
					
						
						
							
							Recognize MSYS/MINGW environment.  
						
						 
						
						
						
						
					 
					
						2005-04-07 20:24:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9f2027e56d 
					 
					
						
						
							
							Implement OPENSSL_showfatal and make it Win32 GUI and service aware  
						
						 
						
						... 
						
						
						
						[meaning that it will detect in which context application is running
and either write message to stderr, post a dialog or log an event]. 
						
						
					 
					
						2005-04-07 18:39:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e1d51de41f 
					 
					
						
						
							
							Harmonize cygwin/mingw and VC targets.  
						
						 
						
						
						
						
					 
					
						2005-04-07 15:51:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						81ee80ab88 
					 
					
						
						
							
							+45% RC4 performance boost on Intel EM64T core. Unrolled loop providing  
						
						 
						
						... 
						
						
						
						further +35% will follow...
Submitted by: Zou Nanhai 
						
						
					 
					
						2005-04-06 09:45:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7d727231b7 
					 
					
						
						
							
							some const fixes  
						
						 
						
						
						
						
					 
					
						2005-04-05 19:11:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						69740c2b3f 
					 
					
						
						
							
							update progs.pl to reflect changes in progs.h  
						
						 
						
						
						
						
					 
					
						2005-04-05 18:17:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						119d1a1dd4 
					 
					
						
						
							
							fix example in docu  
						
						 
						
						... 
						
						
						
						PR: 800 
						
						
					 
					
						2005-04-05 11:17:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						70f34a5841 
					 
					
						
						
							
							some const fixes and cleanup  
						
						 
						
						
						
						
					 
					
						2005-04-05 10:29:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c2e40d0f9a 
					 
					
						
						
							
							remove unused recp method  
						
						 
						
						
						
						
					 
					
						2005-04-04 18:15:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0abfd60604 
					 
					
						
						
							
							Extend Solaris x86 support to amd64.  
						
						 
						
						
						
						
					 
					
						2005-04-04 17:10:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e5dbccc182 
					 
					
						
						
							
							Solaris x86 linker erroneously pads .init segment with zeros instead of  
						
						 
						
						... 
						
						
						
						nops, which causes SEGV at startup. So I don't align anymore. 
						
						
					 
					
						2005-04-04 17:07:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f8fa22d826 
					 
					
						
						
							
							Some non-GNU compilers (such as Sun C) define __i386.  
						
						 
						
						
						
						
					 
					
						2005-04-04 17:05:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c393222280 
					 
					
						
						
							
							HISTORY section: point out change of default digest  
						
						 
						
						
						
						
					 
					
						2005-04-03 23:53:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						60fd574cdf 
					 
					
						
						
							
							Make bn/asm/x86_64-gcc.c gcc4 savvy. +r is likely to be initially  
						
						 
						
						... 
						
						
						
						introduced for a reason [like bug in initial gcc port], but proposed
=&r is treated correctly by senior 3.2, so we can assume it's safe now.
PR: 1031 
						
						
					 
					
						2005-04-03 18:53:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						73705abc34 
					 
					
						
						
							
							If input is bad, we still need to clear the buffer.  
						
						 
						
						
						
						
					 
					
						2005-04-03 16:38:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						12bdb64375 
					 
					
						
						
							
							use SHA-1 as the default digest for the apps/openssl commands  
						
						 
						
						
						
						
					 
					
						2005-04-02 09:29:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bdf8eed69 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2005-04-01 21:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						48c832b6b7 
					 
					
						
						
							
							really clear the error queue here  
						
						 
						
						... 
						
						
						
						PR: 860 
						
						
					 
					
						2005-04-01 17:50:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f3e427f6f9 
					 
					
						
						
							
							use SSL3_VERSION_MAJOR instead of SSL3_VERSION etc.  
						
						 
						
						... 
						
						
						
						PR: 658 
						
						
					 
					
						2005-04-01 17:35:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8bb826ee53 
					 
					
						
						
							
							Consistency.  
						
						 
						
						
						
						
					 
					
						2005-03-31 13:57:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5d1430f390 
					 
					
						
						
							
							Add a file with fingerprints that have recently been used to sign  
						
						 
						
						... 
						
						
						
						OpenSSL distributions, or are about to.  This has been requested a
little now and then by users, for years :-/... 
						
						
					 
					
						2005-03-31 11:51:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						45d10efc35 
					 
					
						
						
							
							Simplicate and add lightness.  
						
						 
						
						
						
						
					 
					
						2005-03-31 10:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						db3cb0e97a 
					 
					
						
						
							
							Get rid of irritating noise.  
						
						 
						
						
						
						
					 
					
						2005-03-31 10:34:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						41a15c4f0f 
					 
					
						
						
							
							Give everything prototypes (well, everything that's actually used).  
						
						 
						
						
						
						
					 
					
						2005-03-31 09:26:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fea4280a8b 
					 
					
						
						
							
							fix header  
						
						 
						
						
						
						
					 
					
						2005-03-30 21:38:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e852b8533f 
					 
					
						
						
							
							Makefile.ssl doesn't exist anymore  
						
						 
						
						
						
						
					 
					
						2005-03-30 21:37:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						20a3439ea9 
					 
					
						
						
							
							Take account of Makefile.ssl removal.  
						
						 
						
						
						
						
					 
					
						2005-03-30 14:44:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a273a2824c 
					 
					
						
						
							
							Make tags target useful.  
						
						 
						
						
						
						
					 
					
						2005-03-30 14:19:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						24c97c819d 
					 
					
						
						
							
							Don't debug.  
						
						 
						
						
						
						
					 
					
						2005-03-30 14:15:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						42ba5d2329 
					 
					
						
						
							
							Blow away Makefile.ssl.  
						
						 
						
						
						
						
					 
					
						2005-03-30 13:05:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c3e6402857 
					 
					
						
						
							
							update docs (recent constification)  
						
						 
						
						
						
						
					 
					
						2005-03-30 11:50:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0821bcd4de 
					 
					
						
						
							
							Constification.  
						
						 
						
						
						
						
					 
					
						2005-03-30 10:26:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						4a6a2032ed 
					 
					
						
						
							
							the second argument of EVP_SealInit is const  
						
						 
						
						
						
						
					 
					
						2005-03-29 17:50:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c01d2b974e 
					 
					
						
						
							
							when building with OPENSSL_NO_DEPRECATED defined BN_zero is a macro  
						
						 
						
						... 
						
						
						
						which cannot be evaluated in an if statement 
						
						
					 
					
						2005-03-28 15:06:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b0ef321cc8 
					 
					
						
						
							
							Harmonize with CHANGES as distributed in OpenSSL 0.9.7f.  
						
						 
						
						
						
						
					 
					
						2005-03-24 01:37:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						7a8c728860 
					 
					
						
						
							
							undo Cygwin change  
						
						 
						
						
						
						
					 
					
						2005-03-24 00:14:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6141b86a49 
					 
					
						
						
							
							Change the memory leak FAQ entry to describe the levels of thread safety in each function  
						
						 
						
						
						
						
					 
					
						2005-03-23 21:14:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						23fadaa084 
					 
					
						
						
							
							Update FAQ  
						
						 
						
						
						
						
					 
					
						2005-03-22 20:10:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e27a259696 
					 
					
						
						
							
							Doc fixes.  
						
						 
						
						
						
						
					 
					
						2005-03-22 17:55:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						41e455bfc4 
					 
					
						
						
							
							test, remove unnecessary const cast  
						
						 
						
						
						
						
					 
					
						2005-03-22 17:55:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59b6836ab2 
					 
					
						
						
							
							Ensure (SSL_RANDOM_BYTES - 4) of pseudo random data is used for server and  
						
						 
						
						... 
						
						
						
						client random values. 
						
						
					 
					
						2005-03-22 14:11:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9fc9b55237 
					 
					
						
						
							
							There are cases when there are no files left to verify.  Make sure to  
						
						 
						
						... 
						
						
						
						handle that properly. 
						
						
					 
					
						2005-03-21 13:52:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						689c6f2542 
					 
					
						
						
							
							add new curves to the loop (with some cleanup from me)  
						
						 
						
						... 
						
						
						
						Submitted by: Jean-Luc Duval
Reviewed by:  Nils Larsch 
						
						
					 
					
						2005-03-20 23:12:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f4bfd357e5 
					 
					
						
						
							
							some const fixes  
						
						 
						
						
						
						
					 
					
						2005-03-20 22:56:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						130db968b8 
					 
					
						
						
							
							Use Windows randomness code on Cygwin  
						
						 
						
						
						
						
					 
					
						2005-03-19 11:39:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						8d274837e5 
					 
					
						
						
							
							fix breakage for Perl versions that do boolean operations on long words  
						
						 
						
						
						
						
					 
					
						2005-03-19 11:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						5855038049 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2005-03-19 10:19:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d18685d959 
					 
					
						
						
							
							Added HOWTO about proxy certificates.  
						
						 
						
						
						
						
					 
					
						2005-03-14 15:39:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9f6715d4bb 
					 
					
						
						
							
							"make depend".  This takes into account the algorithms that are now  
						
						 
						
						... 
						
						
						
						disabled by default (MDC2 and RC5), which until now were skipped
by "make links" and yet supposedly required by some of the Makefiles,
meaning that the recent snapshots failed to compile.
Problem reported by Nils Larsch. 
						
						
					 
					
						2005-03-13 19:49:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ab185b6038 
					 
					
						
						
							
							It seems that Configure revision 1.404 broke "make depend" by hiding  
						
						 
						
						... 
						
						
						
						from it which algorithms were disabled.  With these new changes,
"make depend" will properly take into account algorithms that are skipped. 
						
						
					 
					
						2005-03-13 19:46:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1642000707 
					 
					
						
						
							
							Cygwin to use DSO_FLFCN and mingw to use DSO_WIN32.  
						
						 
						
						
						
						
					 
					
						2005-03-12 11:28:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f7f2125522 
					 
					
						
						
							
							Avoid re-build avalanches with HP-UX make.  
						
						 
						
						
						
						
					 
					
						2005-03-12 09:12:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2b61034b0b 
					 
					
						
						
							
							fix potential memory leak when allocation fails  
						
						 
						
						... 
						
						
						
						PR: 801
Submitted by: Nils Larsch 
						
						
					 
					
						2005-03-11 09:01:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						80c808b90b 
					 
					
						
						
							
							Fix typo  
						
						 
						
						... 
						
						
						
						PR: 1017
Submitted by: ciresh@yahoo.com 
Reviewed by: Nils Larsch 
						
						
					 
					
						2005-03-09 19:08:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						af1048c25c 
					 
					
						
						
							
							Take MDC2 patent into account.  
						
						 
						
						
						
						
					 
					
						2005-03-02 20:22:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ecc5ef8793 
					 
					
						
						
							
							In addition to RC5, also exclude MDC2 from compilation unless  
						
						 
						
						... 
						
						
						
						the algorithm is explicitly requested. 
						
						
					 
					
						2005-03-02 20:11:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c9a112f540 
					 
					
						
						
							
							Change ./Configure so that certain algorithms can be disabled by default.  
						
						 
						
						... 
						
						
						
						This is now the case for RC5.
As a side effect, the OPTIONS in the Makefile will usually look a
little different now, but they are essentially only for information
anyway. 
						
						
					 
					
						2005-02-22 10:29:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						5286db697f 
					 
					
						
						
							
							Fix typo on blowfish manual page  
						
						 
						
						... 
						
						
						
						PR: 1010
Submitted by: Marc Balmer <mbalmer@openbsd.org > 
						
						
					 
					
						2005-02-19 10:26:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f69a8aebab 
					 
					
						
						
							
							Fix hang in EGD/PRNGD query when communication socket is closed  
						
						 
						
						... 
						
						
						
						prematurely by EGD/PRNGD.
PR: 1014
Submitted by: Darren Tucker <dtucker@zip.com.au > 
						
						
					 
					
						2005-02-19 10:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d10b15ef9 
					 
					
						
						
							
							Fix possible memory leak.  
						
						 
						
						
						
						
					 
					
						2005-02-14 21:53:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da30c74a27 
					 
					
						
						
							
							Remove unused assembler modules.  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:43:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						67ea999d4a 
					 
					
						
						
							
							This patch was "ignited" by OpenBSD 3>=4 support. They've switched to ELF  
						
						 
						
						... 
						
						
						
						and GNU binutils, but kept BSD make... And I took the opportunity to
unify other targets to this common least denominator... 
						
						
					 
					
						2005-02-06 13:23:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e1892f2370 
					 
					
						
						
							
							Reliable BSD-x86-elf detection in ./config.  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:20:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fe28866d71 
					 
					
						
						
							
							Make Makefile.shared BSD make-friendly, remove more redundant -lc, set up  
						
						 
						
						... 
						
						
						
						OBJECT_MODE for AIX. 
						
						
					 
					
						2005-02-06 13:18:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						de4ab1e629 
					 
					
						
						
							
							Make util/shlib_wrap.sh [Open]BSD-friendly.  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:15:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						216ddfaf6b 
					 
					
						
						
							
							Mention no-sse2 option in INSTALL note.  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:10:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8aa36bcac9 
					 
					
						
						
							
							In mkdef.pl ignore trailing whitespace in #ifdef lines  
						
						 
						
						
						
						
					 
					
						2005-02-05 17:22:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						485e30dbe1 
					 
					
						
						
							
							Drop redundant -lc from a number of rules in Makefile.shared. It's  
						
						 
						
						... 
						
						
						
						perfectly safe [compiler driver adds it] and in some situation even
perfectly appropriate [mixing -pthread and -lc on FreeBSD can have
lethal effect on apps/openssl]. I'd say we should get rid of more,
but I remove those I can test myself... 
						
						
					 
					
						2005-02-03 22:40:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						877dbcb8a0 
					 
					
						
						
							
							Shut whiny make's up.  
						
						 
						
						
						
						
					 
					
						2005-02-03 10:19:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62d27939c2 
					 
					
						
						
							
							Address run-time linker problems: LD_PRELOAD issue on multi-ABI platforms  
						
						 
						
						... 
						
						
						
						and SafeDllSearchMode in Windows.
Submitted by: Richard Levitte 
						
						
					 
					
						2005-02-01 23:48:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8c3c570134 
					 
					
						
						
							
							The first argument to load_iv should really be a char ** instead of an  
						
						 
						
						... 
						
						
						
						unsigned char **, since it points at text.
Thanks to Nils Larsch <nils.larsch@cybertrust.com > for pointing out
the inelegance of our code :-) 
						
						
					 
					
						2005-01-27 11:42:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						97a1630e81 
					 
					
						
						
							
							Oops, == should really be = when used with test ([ and ]).  
						
						 
						
						... 
						
						
						
						I guess I use bash too much...
Thanks to Peter Sylvester <Peter.Sylvester@edelweb.fr > for pointing it
out to me. 
						
						
					 
					
						2005-01-27 10:59:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bf746f0f46 
					 
					
						
						
							
							Check for errors from EVP_VerifyInit_ex(), or EVP_VerifyUpdate might  
						
						 
						
						... 
						
						
						
						cause a segfault...  This was uncovered because EVP_VerifyInit() may fail
in FIPS mode if the wrong algorithm is chosen... 
						
						
					 
					
						2005-01-27 01:49:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a229e3038e 
					 
					
						
						
							
							Get rid if the annoying warning  
						
						 
						
						
						
						
					 
					
						2005-01-27 01:47:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4aca9297dc 
					 
					
						
						
							
							The mix of CFLAGS and LDFLAGS is a bit confusing in my opinion, and  
						
						 
						
						... 
						
						
						
						Makefile.shared was a bit overcomplicated.
Make the shell variables LDFLAGS and SHAREDFLAGS in Makefile.shared
get the values of $(CFLAGS) or $(LDFLAGS) as appropriate depending on
the value the shell variables LDCMD and SHAREDCMD get.  That leaves
much less chance of confusion, since those pairs of shell variables
always are defined together. 
						
						
					 
					
						2005-01-26 23:51:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b2c5960935 
					 
					
						
						
							
							Respect the fact that most interactive shells don't restore stty settings  
						
						 
						
						... 
						
						
						
						and make it work in non-interactive mode... 
						
						
					 
					
						2005-01-26 19:58:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fbdce13e5a 
					 
					
						
						
							
							Please BSD make...  
						
						 
						
						
						
						
					 
					
						2005-01-25 22:09:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e532a6c449 
					 
					
						
						
							
							FreeBSD 5 refuses to #include <malloc.h>. Fix compiler warning after  
						
						 
						
						... 
						
						
						
						http://cvs.openssl.org/chngview?cn=12843 . 
						
						
					 
					
						2005-01-25 22:07:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						14bcdb087f 
					 
					
						
						
							
							./Configure to respect $thread_cflag variable.  
						
						 
						
						
						
						
					 
					
						2005-01-24 15:58:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b7efa56a4a 
					 
					
						
						
							
							Fold a bunch of linux and *BSD targets into [linux|BSD]-generic[32|64].  
						
						 
						
						... 
						
						
						
						Idea is to provide unified "fall-down" case for all rare platforms out
there. ./config is free to enable some optimizations, such as endianness
specification, specific -mcpu flags... 
						
						
					 
					
						2005-01-24 14:38:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8359421d90 
					 
					
						
						
							
							Default to AES u32 being unsinged int and not long. This improves cache  
						
						 
						
						... 
						
						
						
						locality on 64-bit platforms (and fixes IA64 assembler-empowered build:-).
The choice is guarded by newly introduced AES_LONG macro, which needs
to be defined only on 16-bit platforms which we don't support (not that
I know of). Meaning that one could as well skip long option altogether. 
						
						
					 
					
						2005-01-24 14:22:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						efde5230f1 
					 
					
						
						
							
							Improve ECB performance (48+14*rounds -> 18+13*rounds) and reserve for  
						
						 
						
						... 
						
						
						
						hand-coded zero-copy AES_cbc_encrypt. 
						
						
					 
					
						2005-01-24 14:14:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f5ffad9d1d 
					 
					
						
						
							
							linux-arm target update.  
						
						 
						
						... 
						
						
						
						PR: 991 
						
						
					 
					
						2005-01-21 10:32:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						57a68b2129 
					 
					
						
						
							
							linux-parisc update.  
						
						 
						
						... 
						
						
						
						PR: 990
Submitted by: Mike Frysinger <vapier@gentoo.org > 
						
						
					 
					
						2005-01-20 17:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bac252a5e3 
					 
					
						
						
							
							Bug-fix in CBC encrypt tail processing and commentary section update.  
						
						 
						
						
						
						
					 
					
						2005-01-20 10:33:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a963395a7b 
					 
					
						
						
							
							Apparently, at least with my VMS C environment, defining _XOPEN_SOURCE  
						
						 
						
						... 
						
						
						
						gets _POSIX_C_SOURC and _ANSI_C_SOURCE defined, which stops u_int from
being defined, and that breaks havock into the rest of the standard
headers...  *sigh* 
						
						
					 
					
						2005-01-19 17:03:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d8863f0bdb 
					 
					
						
						
							
							Small thing.  It seems like we have to defined _XOPEN_SOURCE to get  
						
						 
						
						... 
						
						
						
						isascii() on DEC/Compaq/HP C for VMS. 
						
						
					 
					
						2005-01-18 16:46:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						addb6e16a8 
					 
					
						
						
							
							Throw in AES CBC assembler, up to +40% on aes-128-cbc benchmark.  
						
						 
						
						
						
						
					 
					
						2005-01-18 01:04:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4d27c4c960 
					 
					
						
						
							
							Fix a typo in a.out assembler modules.  
						
						 
						
						
						
						
					 
					
						2005-01-18 00:46:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ed65fab910 
					 
					
						
						
							
							Reserve for AES CBC assembler implementation...  
						
						 
						
						
						
						
					 
					
						2005-01-18 00:43:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						90cc40911b 
					 
					
						
						
							
							Don't zap AES CBC IV, when decrypting truncated content in place.  
						
						 
						
						
						
						
					 
					
						2005-01-18 00:26:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a7201e9a1b 
					 
					
						
						
							
							Changes concering RFC 3820 (proxy certificates) integration:  
						
						 
						
						... 
						
						
						
						- Enforce that there should be no policy settings when the language
   is one of id-ppl-independent or id-ppl-inheritAll.
 - Add functionality to ssltest.c so that it can process proxy rights
   and check that they are set correctly.  Rights consist of ASCII
   letters, and the condition is a boolean expression that includes
   letters, parenthesis, &, | and ^.
 - Change the proxy certificate configurations so they get proxy
   rights that are understood by ssltest.c.
 - Add a script that tests proxy certificates with SSL operations.
Other changes:
 - Change the copyright end year in mkerr.pl.
 - make update. 
						
						
					 
					
						2005-01-17 17:06:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fcd5cca418 
					 
					
						
						
							
							PKCS7_verify() performance optimization. When the content is large and a  
						
						 
						
						... 
						
						
						
						memory BIO (for example from SMIME_read_PKCS7 and detached data) avoid lots
of slow memory copies from the memory BIO by saving the content in a
temporary read only memory BIO. 
						
						
					 
					
						2005-01-14 17:52:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9222bc6b4e 
					 
					
						
						
							
							INSTALL.DJGPP sync.  
						
						 
						
						... 
						
						
						
						PR: 989 
						
						
					 
					
						2005-01-14 16:25:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e6d27baf52 
					 
					
						
						
							
							Rely on e_os.h to appropriately define str[n]casecmp in non-POSIX  
						
						 
						
						... 
						
						
						
						environments. 
						
						
					 
					
						2005-01-13 15:46:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e7e1150706 
					 
					
						
						
							
							"Monolithic" x86 assembler replacement for aes_core.c. Up to +15% better  
						
						 
						
						... 
						
						
						
						performance on recent microarchitectures. 
						
						
					 
					
						2005-01-13 15:35:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5d727078ac 
					 
					
						
						
							
							Fix an "oops" typo! Well, it was a debugging left-over...  
						
						 
						
						
						
						
					 
					
						2005-01-13 15:25:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						108159ffcc 
					 
					
						
						
							
							O_NOFOLLOW is not appropriate when opening /dev/* entries on Solaris.  
						
						 
						
						... 
						
						
						
						PR: 998 
						
						
					 
					
						2005-01-13 15:20:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4d423511a 
					 
					
						
						
							
							Small typo, `mask' got the same value ORed to it twice instead of  
						
						 
						
						... 
						
						
						
						`mask' and `emask' getting that operation done once each.
Patch supplied by Nils Larsch <nils.larsch@cybertrust.com > 
						
						
					 
					
						2005-01-12 16:40:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b15a93a9c5 
					 
					
						
						
							
							Correct a faulty address assignment, and add a length check (not  
						
						 
						
						... 
						
						
						
						really needed now, but may be needed in the future, who knows?). 
						
						
					 
					
						2005-01-12 09:53:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d9248e5780 
					 
					
						
						
							
							FAQ update to mention no-sha0 as possible workaround for Tru64 compiler bug.  
						
						 
						
						... 
						
						
						
						Well, no-options seem to be busted in HEAD currently, which should/will be
fixed one way or another (see PR#989 for a possible alternative). 
						
						
					 
					
						2005-01-09 20:42:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0b52f89b81 
					 
					
						
						
							
							DJGPP documentation note update.  
						
						 
						
						
						
						
					 
					
						2005-01-09 20:14:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7de4b5b060 
					 
					
						
						
							
							Permit "monolithic" AES assembler implementations, i.e. such which would  
						
						 
						
						... 
						
						
						
						replace *whole* aes_core.c, not only AES_[de|en]crypt routines. 
						
						
					 
					
						2005-01-09 16:01:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02a00bb054 
					 
					
						
						
							
							DJGPP update.  
						
						 
						
						... 
						
						
						
						PR: 989
Submitted by: Doug Kaufman 
						
						
					 
					
						2005-01-04 10:28:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b4de6e4cc 
					 
					
						
						
							
							Borrow #include <string[s].h> from e_os.h.  
						
						 
						
						
						
						
					 
					
						2004-12-31 00:00:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bdbc9b4d1a 
					 
					
						
						
							
							Make whiny compilers stop complaining about missing prototype.  
						
						 
						
						
						
						
					 
					
						2004-12-30 23:40:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						09ef94d2c9 
					 
					
						
						
							
							Fix Win32 test-suit.  
						
						 
						
						
						
						
					 
					
						2004-12-30 22:55:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ffb8d42bc 
					 
					
						
						
							
							Remove naming conflict between variable and label.  
						
						 
						
						
						
						
					 
					
						2004-12-30 11:10:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						25866e3982 
					 
					
						
						
							
							Commentary update for AES IA-64 assembler module.  
						
						 
						
						
						
						
					 
					
						2004-12-30 10:55:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b3df98ca6 
					 
					
						
						
							
							Minor AES x86 assembler tune-up.  
						
						 
						
						
						
						
					 
					
						2004-12-30 10:46:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2e4a99f38b 
					 
					
						
						
							
							AES-CFB[18] 2x optimization. Well, I bet nobody cares about AES-CFB1  
						
						 
						
						... 
						
						
						
						performance, but anyway... 
						
						
					 
					
						2004-12-30 10:43:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e90faddaf8 
					 
					
						
						
							
							Prompt for passphrases for PKCS12 input format  
						
						 
						
						
						
						
					 
					
						2004-12-29 01:07:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f1ce306f30 
					 
					
						
						
							
							Oops-kind typos in aes-ia64.S...  
						
						 
						
						
						
						
					 
					
						2004-12-28 17:10:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37b11ca78e 
					 
					
						
						
							
							iv needs to be const because it sometimes takes it's value from a  
						
						 
						
						... 
						
						
						
						const. 
						
						
					 
					
						2004-12-28 10:35:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a17af9e277 
					 
					
						
						
							
							Forgot to synchronise the VMS build scripts.  
						
						 
						
						
						
						
					 
					
						2004-12-28 10:22:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6951c23afd 
					 
					
						
						
							
							Add functionality needed to process proxy certificates.  
						
						 
						
						
						
						
					 
					
						2004-12-28 00:21:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						de421076a5 
					 
					
						
						
							
							Minor cygwin update.  
						
						 
						
						... 
						
						
						
						PR: 949 
						
						
					 
					
						2004-12-27 21:27:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bd16cd6bcc 
					 
					
						
						
							
							As new major IRIX release is highly unlikely to appear [and break following],  
						
						 
						
						... 
						
						
						
						I change from -notall to -none synonym in irix rules to improve backward
compatibility with IRIX 5.x.
PR: 987 
						
						
					 
					
						2004-12-27 14:59:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0c51600203 
					 
					
						
						
							
							Remove CPU detect for IRIX targets. Performance gain is less than 1%,  
						
						 
						
						... 
						
						
						
						it makes more sense to strive for broader binary compatibility... 
						
						
					 
					
						2004-12-27 14:57:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9850f7f6b2 
					 
					
						
						
							
							Remove yet another redundant memcpy. Not at least performance critical,  
						
						 
						
						... 
						
						
						
						essentially cosmetic modification... 
						
						
					 
					
						2004-12-26 13:05:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						131e064e4a 
					 
					
						
						
							
							Eliminate redundant memcpy of IV material. Performance improvement varies  
						
						 
						
						... 
						
						
						
						from platform to platform and can be as large as 20%. 
						
						
					 
					
						2004-12-26 12:31:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						556b8f3f77 
					 
					
						
						
							
							Engage AES x86 assembler module for COFF and a.out targets.  
						
						 
						
						
						
						
					 
					
						2004-12-26 10:58:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						045d3285e2 
					 
					
						
						
							
							Engage AES x86 assembler module on ELF platforms.  
						
						 
						
						
						
						
					 
					
						2004-12-23 21:44:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d1df5b4339 
					 
					
						
						
							
							x86 perlasm update to accomodate aes-586.pl.  
						
						 
						
						
						
						
					 
					
						2004-12-23 21:43:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						25558bf743 
					 
					
						
						
							
							Eliminate copies of TeN and TdN, use those found in assembler module.  
						
						 
						
						
						
						
					 
					
						2004-12-23 21:40:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						713147109c 
					 
					
						
						
							
							AES x86 assembler implementation.  
						
						 
						
						
						
						
					 
					
						2004-12-23 21:32:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						76ef6ac956 
					 
					
						
						
							
							Refine PowerPC platform support.  
						
						 
						
						
						
						
					 
					
						2004-12-20 13:44:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a842df6659 
					 
					
						
						
							
							Remove unused buffer 'buf'.  
						
						 
						
						
						
						
					 
					
						2004-12-20 00:49:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c05a7f5dfd 
					 
					
						
						
							
							Don't use multiple storage types.  
						
						 
						
						
						
						
					 
					
						2004-12-19 01:21:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						627bd6709c 
					 
					
						
						
							
							Fix typos in the ecparam doc.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2004-12-17 05:42:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fbf218b8c3 
					 
					
						
						
							
							make update (oops, missed this file)  
						
						 
						
						
						
						
					 
					
						2004-12-13 22:57:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3c97bd833b 
					 
					
						
						
							
							Change libeay.num so it's synchronised with additions in 0.9.7-stable.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2004-12-13 22:57:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						abbc186bd2 
					 
					
						
						
							
							Fix s_client so it works without a certificate again.  
						
						 
						
						
						
						
					 
					
						2004-12-13 18:02:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						de6859e442 
					 
					
						
						
							
							Propagate a few more variables to Makefile.shared when linking  
						
						 
						
						... 
						
						
						
						programs. 
						
						
					 
					
						2004-12-13 17:28:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e8904f289 
					 
					
						
						
							
							Remove duplicate lines.  
						
						 
						
						
						
						
					 
					
						2004-12-12 13:15:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0c0788ba0a 
					 
					
						
						
							
							Solaris x86 perlasm update.  
						
						 
						
						
						
						
					 
					
						2004-12-10 11:24:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						905fd45b36 
					 
					
						
						
							
							Engage SHA1 IA64 assembler on IA64 platforms.  
						
						 
						
						
						
						
					 
					
						2004-12-09 15:39:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c162b132eb 
					 
					
						
						
							
							Automatically mark the CRL cached encoding as invalid when some operations  
						
						 
						
						... 
						
						
						
						are performed. 
						
						
					 
					
						2004-12-09 13:35:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b4e0ce5165 
					 
					
						
						
							
							SHA1 assembler for IA-64.  
						
						 
						
						
						
						
					 
					
						2004-12-09 11:57:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						17f0e916db 
					 
					
						
						
							
							Extend RC4 test.  
						
						 
						
						
						
						
					 
					
						2004-12-07 11:55:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3dfa23cbc4 
					 
					
						
						
							
							Update 'certs' directory. Move expired certificates to expired directory  
						
						 
						
						... 
						
						
						
						and zero assurance demontrations CAs to 'demo'. 
						
						
					 
					
						2004-12-05 19:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a37e22d866 
					 
					
						
						
							
							Use X509_cmp_time() in -checkend option, to support GeneralizedTime.  
						
						 
						
						
						
						
					 
					
						2004-12-05 18:26:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41c70d47d7 
					 
					
						
						
							
							Remaing bits of PR:620 relevant to 0.9.8.  
						
						 
						
						
						
						
					 
					
						2004-12-05 01:50:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0e7c8eede 
					 
					
						
						
							
							Add lots of checks for memory allocation failure, error codes to indicate  
						
						 
						
						... 
						
						
						
						failure and freeing up memory if a failure occurs.
PR:620 
						
						
					 
					
						2004-12-05 01:03:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a8e00b17ce 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2004-12-05 00:51:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e66ee9f01 
					 
					
						
						
							
							In by_file.c check last error for no start line, not first error.  
						
						 
						
						
						
						
					 
					
						2004-12-04 21:25:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5b40d7dd97 
					 
					
						
						
							
							Add -passin argument to dgst command.  
						
						 
						
						
						
						
					 
					
						2004-12-03 12:26:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f284faaec 
					 
					
						
						
							
							V1 certificates that aren't self signed can't be accepted as CAs.  
						
						 
						
						
						
						
					 
					
						2004-12-03 00:10:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f774accdbf 
					 
					
						
						
							
							Fix rc4-ia64.S to pass more exhaustive regression tests.  
						
						 
						
						
						
						
					 
					
						2004-12-02 10:07:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8544a80776 
					 
					
						
						
							
							Add couple of OIDs. Resync NIDs for consistency with 0.9.7.  
						
						 
						
						
						
						
					 
					
						2004-12-01 18:09:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7c69478064 
					 
					
						
						
							
							I've introduced a bug to i386 RC4 assembler, which would emerge with  
						
						 
						
						... 
						
						
						
						certain mix of calls to RC4 routine not covered by rc4test.c.
It's fixed now. In addition this patch inadvertently fixes minor
performance problem: in 0.9.7 context P4 was performing 12% slower
than the original implementation... 
						
						
					 
					
						2004-12-01 15:28:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1862dae862 
					 
					
						
						
							
							Perform partial comparison of different character types in X509_NAME_cmp().  
						
						 
						
						
						
						
					 
					
						2004-12-01 01:45:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b7b46c9a87 
					 
					
						
						
							
							Add 0.9.7 specific comments to RC4 assembler modules.  
						
						 
						
						
						
						
					 
					
						2004-11-30 15:46:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						e6e1f4cb5e 
					 
					
						
						
							
							Mention that the keys likely to have signed the distribution are now  
						
						 
						
						... 
						
						
						
						listed on the web site for easy finding and downloading 
						
						
					 
					
						2004-11-30 14:34:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5073ff0346 
					 
					
						
						
							
							Split X509_check_ca() into a small self and an internal function  
						
						 
						
						... 
						
						
						
						check_ca(), to resolve constness issue.  check_ca() is called from the
purpose checkers instead of X509_check_ca(), since the stuff done by
the latter (except for calling check_ca()) is also done by
X509_check_purpose(). 
						
						
					 
					
						2004-11-30 12:18:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fc7fc5678f 
					 
					
						
						
							
							sha1_block_asm_data_order can't hash if message crosses 2GB boundary.  
						
						 
						
						
						
						
					 
					
						2004-11-29 21:19:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a3240e319 
					 
					
						
						
							
							Final touches to rc4/asm/rc4-596.pl, +52% better performance on AMD core.  
						
						 
						
						
						
						
					 
					
						2004-11-29 21:12:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5022e4ecdf 
					 
					
						
						
							
							Document the change.  
						
						 
						
						
						
						
					 
					
						2004-11-29 11:57:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						30b415b076 
					 
					
						
						
							
							Make an explicit check during certificate validation to see that the  
						
						 
						
						... 
						
						
						
						CA setting in each certificate on the chain is correct.  As a side-
effect always do the following basic checks on extensions, not just
when there's an associated purpose to the check:
- if there is an unhandled critical extension (unless the user has
  chosen to ignore this fault)
- if the path length has been exceeded (if one is set at all)
- that certain extensions fit the associated purpose (if one has been
  given) 
						
						
					 
					
						2004-11-29 11:28:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						914c2a28c0 
					 
					
						
						
							
							perlasm/x86[ms|nasm] update to accomodate updated RC4 assembler module.  
						
						 
						
						
						
						
					 
					
						2004-11-27 15:14:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea681ba872 
					 
					
						
						
							
							Summarize recent RC4 tune-ups.  
						
						 
						
						
						
						
					 
					
						2004-11-26 15:26:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bc3e7fabe7 
					 
					
						
						
							
							Engage RC4 IA-64 assembler module.  
						
						 
						
						
						
						
					 
					
						2004-11-26 15:12:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d675c74d14 
					 
					
						
						
							
							RC4 IA-64 assembler implementation.  
						
						 
						
						
						
						
					 
					
						2004-11-26 15:07:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59c7029862 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2004-11-26 01:04:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1582a4073e 
					 
					
						
						
							
							Add errstr manual page  
						
						 
						
						
						
						
					 
					
						2004-11-25 18:21:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						401ee37a3e 
					 
					
						
						
							
							Allow alternative manual sections to be embedded in .pod file comments.  
						
						 
						
						
						
						
					 
					
						2004-11-25 17:47:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb26a20cb1 
					 
					
						
						
							
							Update docs  
						
						 
						
						
						
						
					 
					
						2004-11-25 14:14:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82c4674e47 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2004-11-25 14:11:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d2996b82f 
					 
					
						
						
							
							Check return code of EVP_CipherInit() in PKCS#12 code.  
						
						 
						
						
						
						
					 
					
						2004-11-24 01:21:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3fee255102 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2004-11-23 21:40:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16df5f066a 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2004-11-23 21:22:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						959f9b1158 
					 
					
						
						
							
							linux-x86_64 didn't link after EM64T RC4 tune-up...  
						
						 
						
						
						
						
					 
					
						2004-11-23 09:06:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						376729e130 
					 
					
						
						
							
							RC4 tune-up for Intel P4 core, both 32- and 64-bit ones. As it's  
						
						 
						
						... 
						
						
						
						apparently impossible to compose blended code with would perform
satisfactory on all x86 and x86_64 cores, an extra RC4_CHAR
code-path is introduced and P4 core is detected at run-time. This
way we keep original performance on non-P4 implementations and
turbo-charge P4 performance by factor of 2.8x (on 32-bit core). 
						
						
					 
					
						2004-11-21 10:36:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00dd8f6d6e 
					 
					
						
						
							
							In "req" exit immediately if configuration file is needed and it can't  
						
						 
						
						... 
						
						
						
						be loaded instead of giving the misleading:
"unable to find 'distinguised_name' in config"
error message. 
						
						
					 
					
						2004-11-17 18:36:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5dd87981bf 
					 
					
						
						
							
							Update X509v3 doc.  
						
						 
						
						
						
						
					 
					
						2004-11-17 00:55:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37dccd8ff2 
					 
					
						
						
							
							Update X509v3 docs.  
						
						 
						
						
						
						
					 
					
						2004-11-16 17:45:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						826a42a088 
					 
					
						
						
							
							PR: 910  
						
						 
						
						... 
						
						
						
						Add command line options -certform, -keyform and -pass to s_client and
s_server. This supports the use of alternative passphrase sources, key formats
and keys handled by an ENGINE.
Update docs. 
						
						
					 
					
						2004-11-16 17:30:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19f39703f7 
					 
					
						
						
							
							Initial pod documentation of X509V3 config file format.  
						
						 
						
						
						
						
					 
					
						2004-11-16 14:09:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						151368ccba 
					 
					
						
						
							
							PR: 940  
						
						 
						
						... 
						
						
						
						Typo: use prompt_info, not cb_data->prompt_info. 
						
						
					 
					
						2004-11-14 15:40:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4451c2558e 
					 
					
						
						
							
							PR: 923  
						
						 
						
						... 
						
						
						
						Typo. 
						
						
					 
					
						2004-11-14 15:11:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a64f3d665 
					 
					
						
						
							
							PR: 938  
						
						 
						
						... 
						
						
						
						Typo. 
						
						
					 
					
						2004-11-14 13:55:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5fee606442 
					 
					
						
						
							
							Zap obsolete der_chop script.  
						
						 
						
						
						
						
					 
					
						2004-11-14 00:08:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						521aaafc6a 
					 
					
						
						
							
							PR: 969  
						
						 
						
						... 
						
						
						
						Submitted by: David Holmes <davidh@3blackdogs.com > 
						
						
					 
					
						2004-11-13 13:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						78df5a2f1e 
					 
					
						
						
							
							Fix x509.c so it creates serial number file again if no  
						
						 
						
						... 
						
						
						
						serial number is supplied on command line. 
						
						
					 
					
						2004-11-13 13:26:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6c9f57d629 
					 
					
						
						
							
							Cut'n'paste mistake.  All tested OK now...  
						
						 
						
						
						
						
					 
					
						2004-11-11 19:36:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						382342ce1d 
					 
					
						
						
							
							Whoops, syntactic mistake...  
						
						 
						
						
						
						
					 
					
						2004-11-11 18:58:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						69c922f5d2 
					 
					
						
						
							
							Some find it confusing that environment variables are set when shared  
						
						 
						
						... 
						
						
						
						libraries aren't built or used.  I can see the point, so I'm
reorganising a little for clarity. 
						
						
					 
					
						2004-11-11 18:18:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10c8505734 
					 
					
						
						
							
							Use the default_md config file value when signing CRLs.  
						
						 
						
						... 
						
						
						
						PR:662 
						
						
					 
					
						2004-11-11 13:47:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10f92aac33 
					 
					
						
						
							
							Don't return an error with crl -noout.  
						
						 
						
						... 
						
						
						
						PR:917
Sumbmitted by: Michael Konietzka <konietzka@schlund.de > 
						
						
					 
					
						2004-11-11 02:13:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						68d9e764cb 
					 
					
						
						
							
							As was shown by Marc Bevand reordering of couple of load operations  
						
						 
						
						... 
						
						
						
						results in even higher performance gain of 3.3x:-) At least on
Opteron... 
						
						
					 
					
						2004-11-09 17:23:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8de69cf2c6 
					 
					
						
						
							
							Make sure LD_PRELOAD is only set when we build shared libraries (and  
						
						 
						
						... 
						
						
						
						therefore link with them).  Add LD_PRELOAD setting code where it was
still missing.
PR: 966 
						
						
					 
					
						2004-11-05 09:12:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a2ac429da2 
					 
					
						
						
							
							Don't use $(EXHEADER) directly in for loops, as most shells will break  
						
						 
						
						... 
						
						
						
						if $(EXHEADER) is empty.
Notified by many, solution suggested by Carson Gaspar <carson@taltos.org > 
						
						
					 
					
						2004-11-02 23:55:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ffd0f93f14 
					 
					
						
						
							
							Because -rpath/-R may have been used, our settings of LD_LIBRARY_PATH  
						
						 
						
						... 
						
						
						
						and friends may be entirely useless.  In such a case, LD_PRELOAD is
the answer, at least on platforms using LD_LIBRARY_PATH.  There might
be other variables to set on other platforms, please fill us in...
For now, we only do this with the tests, so they won't fail for silly
reasons like getting dynamically linked to older installed libraries
rather than the newly built ones...
PR: 960 
						
						
					 
					
						2004-11-02 01:13:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1a4b8e7cee 
					 
					
						
						
							
							Make sure memmove() is defined, even on SunOS 4.1.4.  
						
						 
						
						... 
						
						
						
						PR: 963 
						
						
					 
					
						2004-11-01 07:58:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						03386677ed 
					 
					
						
						
							
							Update NEWS  
						
						 
						
						
						
						
					 
					
						2004-10-25 17:11:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						559f90ff60 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2004-10-25 12:36:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c284f20f00 
					 
					
						
						
							
							Fix race condition when SSL ciphers are initialized.  
						
						 
						
						
						
						
					 
					
						2004-10-25 11:14:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						58ae65cd1a 
					 
					
						
						
							
							Update ECDSA and ECDH for OPENSSL_NO_ENGINE.  
						
						 
						
						... 
						
						
						
						Reported by: Maxim Masiutin
Submitted by: Nils Larsch 
						
						
					 
					
						2004-10-21 00:06:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b0f1f7d13 
					 
					
						
						
							
							Because libraries on Windows lack useful version information, the zlib  
						
						 
						
						... 
						
						
						
						guys had to change the name to differentiate with older versions when
a backward incompatibility came up.  Of course, we need to adapt.
This change simply tries to load the library through the newer name
(ZLIB1) first, and if that fails, it tries the good old ZLIB. 
						
						
					 
					
						2004-10-14 05:48:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						785e827323 
					 
					
						
						
							
							Oops!  
						
						 
						
						
						
						
					 
					
						2004-10-04 17:28:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f605e8d24 
					 
					
						
						
							
							Fix race condition when CRL checking is enabled.  
						
						 
						
						
						
						
					 
					
						2004-10-04 16:30:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e2216bfa1 
					 
					
						
						
							
							Update debug-steve  
						
						 
						
						
						
						
					 
					
						2004-10-01 11:35:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						175ac6811a 
					 
					
						
						
							
							Don't use C++ reserved work "explicit".  
						
						 
						
						
						
						
					 
					
						2004-10-01 11:21:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						07d488daf6 
					 
					
						
						
							
							Fix Solaris 10_x86 shared build. -Bsymbolic is required to avoid  
						
						 
						
						... 
						
						
						
						"remaining relocations" in assembler modules. The latter seems to
be new behaviour, elder as/ld managed to resolve this relocations
as internal. It's possible to address this problem differently,
but I settle for -Bsymbolic...
PR: 546 
						
						
					 
					
						2004-09-28 20:45:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1360f6ecc 
					 
					
						
						
							
							usr/doc has recently changed to usr/share/doc on Cygwin.  
						
						 
						
						... 
						
						
						
						Notified by Corinna Vinschen <vinschen@redhat.com > 
						
						
					 
					
						2004-09-28 13:10:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c38ff58b6b 
					 
					
						
						
							
							Move the declaration of alloca() so it's ony declared when really  
						
						 
						
						... 
						
						
						
						necessary. 
						
						
					 
					
						2004-09-27 21:59:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c29ef588dc 
					 
					
						
						
							
							SHA1 asm Pentium tune-up. Performance loss is not as bad anymore.  
						
						 
						
						
						
						
					 
					
						2004-09-27 09:37:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						968c31bd84 
					 
					
						
						
							
							sha256_block advances the input pointer double as fast sometimes. Fix the  
						
						 
						
						... 
						
						
						
						bug and test that it's actually gone.
PR: 950 
						
						
					 
					
						2004-09-27 09:35:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c743966156 
					 
					
						
						
							
							Nils Larsch reported that this include is required. Strange that this had  
						
						 
						
						... 
						
						
						
						gone unnoticed ... 
						
						
					 
					
						2004-09-24 23:37:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb09fd2bb6 
					 
					
						
						
							
							Import changed files from LPlib.  The changes are logged as follows  
						
						 
						
						... 
						
						
						
						for LPdir_unix.c in LPlib.  For the other files, only the last log
entry applies.
----------------------------
revision 1.11
date: 2004/09/23 22:07:22;  author: _cvs_levitte;  state: Exp;  lines: +20 -6
Define my own macro LP_ENTRY_SIZE to express the size of my own
buffering of directory entries, and make it depend on whichever comes
first of PATH_MAX and NAME_MAX.  As a fallback, make sure it's set to
255 if neither PATH_MAX or NAME_MAX were defined.  Also, if the size
given from PATH_MAX or NAME_MAX is less than 255, force LP_ENTRY_SIZE
to be 255.
It makes no harm whatsoever if LP_ENTRY_SIZE is larger than the
maximum local path name limit.  It does make a lot of harm if
LP_ENTRY_SIZE is smaller.  255 seemed like a fairly acceptable default
when nothing else is available.
----------------------------
revision 1.10
date: 2004/08/26 13:36:05;  author: _cvs_levitte;  state: Exp;  lines: +13 -13
License correction.  I am not REGENTS, just a COPYRIGHT HOLDER.
---------------------------- 
						
						
					 
					
						2004-09-23 22:11:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						280eb33b59 
					 
					
						
						
							
							Remove distracting comments and code. Thanks to Nils for picking up on the  
						
						 
						
						... 
						
						
						
						outstanding ticket.
PR: 926 
						
						
					 
					
						2004-09-19 04:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f79110c633 
					 
					
						
						
							
							Two TODO comments taken care of. Nils pointed out that one of them had already  
						
						 
						
						... 
						
						
						
						been done, and took care of the other one (which hadn't).
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-09-19 04:43:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6ef2ff62fc 
					 
					
						
						
							
							Make -Werror happy again.  
						
						 
						
						
						
						
					 
					
						2004-09-18 01:32:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						980aea7860 
					 
					
						
						
							
							Check ASN1_TYPE structure type is a SEQUENCE in PKCS7_get_smimecap().  
						
						 
						
						
						
						
					 
					
						2004-09-15 23:47:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd9327baa9 
					 
					
						
						
							
							Change values of MBSTRING_* to the form MBSTRING_FLAG|nbyte as assumed  
						
						 
						
						... 
						
						
						
						in ASN1_STRING_to_UTF8(). 
						
						
					 
					
						2004-09-13 22:33:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6f9bafafa3 
					 
					
						
						
							
							- There's no more need for the snprintf macro.  
						
						 
						
						... 
						
						
						
						- Move the inclusion of malloc.h until after all other includes, so we
  can do proper tests of system macros.
- Make sure the correct header file is included to get the builtin
  "alloca" under VMS, and define a macro to map the symbol 'alloca' to
  it. 
						
						
					 
					
						2004-09-13 09:15:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						422a4a33a5 
					 
					
						
						
							
							Synchronise with Unix build.  
						
						 
						
						
						
						
					 
					
						2004-09-12 13:02:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						58606421ae 
					 
					
						
						
							
							When looking for request extensions in a certificate look first  
						
						 
						
						... 
						
						
						
						for the PKCS#9 OID then the non standard MS OID. 
						
						
					 
					
						2004-09-10 20:20:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d813ff2ac1 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-09-10 10:30:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						36734b2bab 
					 
					
						
						
							
							Make VIA Padlock engine more platform friendly and eliminate compiler  
						
						 
						
						... 
						
						
						
						warning.
Submitted by: Doug Kaufman <dkaufman@rahul.net > 
						
						
					 
					
						2004-09-09 14:54:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c85c5c408a 
					 
					
						
						
							
							x86 assembler updates: more instructions, new OPENSSL_instrument_halt  
						
						 
						
						... 
						
						
						
						[for DJGPP]... 
						
						
					 
					
						2004-09-09 14:50:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2c1677d703 
					 
					
						
						
							
							Synchronise VMS build files with Unixly Makefiles.  
						
						 
						
						
						
						
					 
					
						2004-09-08 08:13:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						72348cbb8d 
					 
					
						
						
							
							Another symbol longer than 31 characters...  
						
						 
						
						
						
						
					 
					
						2004-09-08 08:13:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c431798e82 
					 
					
						
						
							
							Reformat smime utility.  
						
						 
						
						... 
						
						
						
						Add support for policy checking in verify utility. 
						
						
					 
					
						2004-09-07 18:38:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb80794568 
					 
					
						
						
							
							Don't use 'explicit' for variable name.  
						
						 
						
						
						
						
					 
					
						2004-09-07 00:31:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ec3d785e5 
					 
					
						
						
							
							Reformat smime.c  
						
						 
						
						
						
						
					 
					
						2004-09-07 00:28:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d7c222db8 
					 
					
						
						
							
							New X509_VERIFY_PARAM structure and associated functionality.  
						
						 
						
						... 
						
						
						
						This tidies up verify parameters and adds support for integrated policy
checking.
Add support for policy related command line options. Currently only in smime
application.
WARNING: experimental code subject to change. 
						
						
					 
					
						2004-09-06 18:43:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d993addbed 
					 
					
						
						
							
							Stop compiler warnings.  
						
						 
						
						
						
						
					 
					
						2004-09-06 18:37:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						476b6ab541 
					 
					
						
						
							
							TABLE OpenBSD-i386 update  
						
						 
						
						
						
						
					 
					
						2004-08-29 22:05:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						16760a3089 
					 
					
						
						
							
							Proper support for OpenBSD-i386 shared build, including assember modules!  
						
						 
						
						... 
						
						
						
						"Proper" means "compiles and passes test." Versioning is broken (I think). 
						
						
					 
					
						2004-08-29 21:36:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2b247cf81f 
					 
					
						
						
							
							OPENSSL_ia32cap final touches. Note that OPENSSL_ia32cap is no longer a  
						
						 
						
						... 
						
						
						
						symbol, but a macro expanded as (*(OPENSSL_ia32cap_loc())). The latter
is the only one to be exported to application. 
						
						
					 
					
						2004-08-29 16:36:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						746fc2526f 
					 
					
						
						
							
							Fix compiler warnings in crypto/evp/bio_ok.c as pointed out by Geoff.  
						
						 
						
						
						
						
					 
					
						2004-08-29 16:19:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a8c65b400c 
					 
					
						
						
							
							crypto/perlasm update primarily to unify Netware modules. Once it's verified  
						
						 
						
						... 
						
						
						
						x86*_nw.pl will be deleted. In addition this update implements initseg
on several additional [in addition to ELF] platforms. Functions registered
with initseg are supposed to be called prior main(). 
						
						
					 
					
						2004-08-29 16:10:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						526975906b 
					 
					
						
						
							
							Minor VIA Padlock engine update: eliminate -Wunused warning when *not*  
						
						 
						
						... 
						
						
						
						compiling the engine and inline memcpy in performance critical pathes. 
						
						
					 
					
						2004-08-24 09:01:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						14fa6ad9f9 
					 
					
						
						
							
							Make aes_ctr.c 64-bit savvy.  
						
						 
						
						
						
						
					 
					
						2004-08-23 22:19:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e544b0dc2a 
					 
					
						
						
							
							'compatibility', not 'computability' :-)...  
						
						 
						
						
						
						
					 
					
						2004-08-18 15:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2549564009 
					 
					
						
						
							
							On systems that use case-insensitive symbol names (i.e. they're all  
						
						 
						
						... 
						
						
						
						converted to upper case or something like that), the application-
level bio_dump_cb() has a name clash with the new library function
BIO_dump_cb().  The easiest fix is to rename the function at the
application level. 
						
						
					 
					
						2004-08-12 08:58:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb1a915c24 
					 
					
						
						
							
							Basically, I wanted to be able to make a dump to a FILE*, and not have  
						
						 
						
						... 
						
						
						
						to bother creating a BIO around it.  So here's a few more functions to
make it possible to make the dump using a printing callback, and to
print to a FILE* (based on the callback variant), done in the same
style as the functions in crypto/err/err_prn.c. 
						
						
					 
					
						2004-08-11 21:13:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b94f886b22 
					 
					
						
						
							
							Stupid casts...  
						
						 
						
						
						
						
					 
					
						2004-08-11 17:41:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ef7b78e7c 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2004-08-11 17:22:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e08aad1d14 
					 
					
						
						
							
							Make ASN1_INTEGER_cmp() work as expected with negative integers.  
						
						 
						
						
						
						
					 
					
						2004-08-10 17:40:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b5a93e2250 
					 
					
						
						
							
							Call setup_engine after autoconfig.  
						
						 
						
						
						
						
					 
					
						2004-08-06 12:44:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c128bb0fa2 
					 
					
						
						
							
							Don't ignore return value of EVP_DigestInit_ex() in md BIOs and dgst utility.  
						
						 
						
						
						
						
					 
					
						2004-08-05 18:09:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						30fe028f07 
					 
					
						
						
							
							Make a note of the new engine.  
						
						 
						
						
						
						
					 
					
						2004-08-04 22:42:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b88606c28e 
					 
					
						
						
							
							Padlock engine update to fix a typo in MSC assembler and to address  
						
						 
						
						... 
						
						
						
						potential corruption problem if user manages to inter-leave aligined
and misaligned requests [as well as some MSC-specific tweaks]. 
						
						
					 
					
						2004-08-04 12:58:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2ea6abf6e5 
					 
					
						
						
							
							DJGPP has opendir() and friends, according to Gisle Vanem <giva@bgnett.no>.  
						
						 
						
						
						
						
					 
					
						2004-08-03 19:15:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f8c469de73 
					 
					
						
						
							
							If they ask for 386, keep it as 386 as possible...  
						
						 
						
						
						
						
					 
					
						2004-08-02 22:41:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						42096e05f7 
					 
					
						
						
							
							Avoid a.out name table pollition.  
						
						 
						
						
						
						
					 
					
						2004-08-02 22:02:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7d15a556f8 
					 
					
						
						
							
							Minor clean-up to make Microsoft compiler shut up.  
						
						 
						
						
						
						
					 
					
						2004-08-02 21:54:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5b17246324 
					 
					
						
						
							
							VIA C3 processor extends IA-32 instruction set with instuctions  
						
						 
						
						... 
						
						
						
						performing AES encryption in hardware, as well as one accessing
hardware RNG. As you surely imagine this engine access this
extended instruction set. Well, only AES for the moment, support
for RNG is to be added later on...
PR: 889
Submitted by: Michal Ludvig <michal@logix.cz >
Obtained from: http://www.logix.cz/michal/devel/padlock/  
						
						
					 
					
						2004-08-02 21:48:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c77094415f 
					 
					
						
						
							
							Cygwin fix-up for shared build.  
						
						 
						
						
						
						
					 
					
						2004-08-01 21:24:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34413fca84 
					 
					
						
						
							
							OpenBSD fix-up for new a.out targets. OpenBSD .s.o rule is busted...  
						
						 
						
						
						
						
					 
					
						2004-08-01 21:16:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ec38ddc765 
					 
					
						
						
							
							Clean-up GAS targets: get rid of "cpp" stuff and replace it with "purified"  
						
						 
						
						... 
						
						
						
						COFF and a.out targets [similar to ELF targets]. You might notice some
rudementary support for shared mingw builds under cygwin. It works (it
produces cryptoeay32.dll and ssleay32.dll with everything exported by
name), but it's primarily for testing/debugging purposes, at least for
now... 
						
						
					 
					
						2004-08-01 17:33:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8aae01e223 
					 
					
						
						
							
							Deprecate cpp and gaswin targets. New coff fills in for gaswin, but cpp is  
						
						 
						
						... 
						
						
						
						going out... 
						
						
					 
					
						2004-08-01 17:03:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						00555c2f2f 
					 
					
						
						
							
							DLLEntryPoint is a collective name, not what linker looks for. However,  
						
						 
						
						... 
						
						
						
						if we explicitly intruct the linker to set entry point, then we become
obliged to initialize run-time library. Instead we can pick name run-time
will call and such name is DllMain. Note that this applies to both
"native" Win32 environment and Cygwin:-) 
						
						
					 
					
						2004-08-01 14:27:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						07d80f6f35 
					 
					
						
						
							
							We build the crypto stuff, not the ssl stuff, in this command procedure...  
						
						 
						
						
						
						
					 
					
						2004-07-29 22:25:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4591850561 
					 
					
						
						
							
							The compiler may complain about what looks like a double definition of a  
						
						 
						
						... 
						
						
						
						static variable 
						
						
					 
					
						2004-07-27 13:58:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a25aca2943 
					 
					
						
						
							
							Oops, wrong version...  
						
						 
						
						
						
						
					 
					
						2004-07-27 00:19:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48c524827b 
					 
					
						
						
							
							Add FIPS library name to error routines.  
						
						 
						
						
						
						
					 
					
						2004-07-27 00:19:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ebaec63e3e 
					 
					
						
						
							
							This is so to say "damage control" for jumbo "cpuid" patch, see  
						
						 
						
						... 
						
						
						
						http://cvs.openssl.org/chngview?cn=12493 . Now all platform should
be operational, while SSE2 code pathes get engaged on ELF platforms
only. 
						
						
					 
					
						2004-07-26 22:01:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						14e21f863a 
					 
					
						
						
							
							Add framework for yet another assembler module dubbed "cpuid." Idea  
						
						 
						
						... 
						
						
						
						is to have a placeholder to small routines, which can be written only
in assembler. In IA-32 case this includes processor capability
identification and access to Time-Stamp Counter. As discussed earlier
OPENSSL_ia32cap is introduced to control recently added SSE2 code
pathes (see docs/crypto/OPENSSL_ia32cap.pod). For the moment the
code is operational on ELF platforms only. I haven't checked it yet,
but I have all reasons to believe that Windows build should fail to
link too. I'll be looking into it shortly... 
						
						
					 
					
						2004-07-26 20:18:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f10725a6e1 
					 
					
						
						
							
							Zero key-length for HMAC is apparently OK.  
						
						 
						
						
						
						
					 
					
						2004-07-25 20:24:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0f71b77d5c 
					 
					
						
						
							
							Make bio_ok.c Microsoft compiler savvy.  
						
						 
						
						
						
						
					 
					
						2004-07-25 20:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d6bb6a88be 
					 
					
						
						
							
							Typos, typos...  
						
						 
						
						
						
						
					 
					
						2004-07-25 20:09:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3205db2bfe 
					 
					
						
						
							
							Make bio_ok.c 64-bit savvy.  
						
						 
						
						
						
						
					 
					
						2004-07-25 19:37:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6f86850eec 
					 
					
						
						
							
							Stricter boundary condition check in HMAC_Init_ex.  
						
						 
						
						
						
						
					 
					
						2004-07-25 19:25:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						16ab8a93bc 
					 
					
						
						
							
							Minor 64-bit md32_common.h update and minor unsignification of digests.  
						
						 
						
						
						
						
					 
					
						2004-07-25 19:10:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c88f8f76b5 
					 
					
						
						
							
							'apps/openssl dgst -help' update and minor apps/speed.c update.  
						
						 
						
						
						
						
					 
					
						2004-07-25 18:57:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fbf96849e9 
					 
					
						
						
							
							Make SHA-256/-512 optional. Note that no-sha switches off *all* SHA.  
						
						 
						
						
						
						
					 
					
						2004-07-25 18:25:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d70e2507f8 
					 
					
						
						
							
							Some compilers are just too whiny. Nothing makes Microsoft compiler  
						
						 
						
						... 
						
						
						
						stop complaining about loss of precision, but explicit cast. 
						
						
					 
					
						2004-07-25 17:00:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2fcf435d73 
					 
					
						
						
							
							Some compilers are just too whiny. DEC C doesn't like long long...  
						
						 
						
						
						
						
					 
					
						2004-07-25 16:54:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da2ee71de5 
					 
					
						
						
							
							Typos and due casts. As for the latter. It's "safe" to cast as below,  
						
						 
						
						... 
						
						
						
						because "wrong" casts will either be optimized away or never performed. 
						
						
					 
					
						2004-07-25 16:48:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8611934352 
					 
					
						
						
							
							Minor HP-UX make update. IA-64-based HP-UX favor .so extension for shared  
						
						 
						
						... 
						
						
						
						libraries. Old .sl extension works just fine, but it .so which is default. 
						
						
					 
					
						2004-07-24 14:17:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						01e94efd46 
					 
					
						
						
							
							TABLE update.  
						
						 
						
						
						
						
					 
					
						2004-07-23 23:29:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						33c3ecf741 
					 
					
						
						
							
							Build-n-link new IA-64 modules on Linux and HP-UX.  
						
						 
						
						
						
						
					 
					
						2004-07-23 23:27:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5bd4c26057 
					 
					
						
						
							
							Various IA-64 assembler fix-ups.  
						
						 
						
						
						
						
					 
					
						2004-07-23 22:54:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4aa5889e1a 
					 
					
						
						
							
							VC-NT was taken away by mistake, putting it back...  
						
						 
						
						
						
						
					 
					
						2004-07-23 20:46:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bafcc7e060 
					 
					
						
						
							
							Win64 placeholder targets. This is merely naming suggestion. As we know  
						
						 
						
						... 
						
						
						
						Win64 comes in two flavors, IA-64/Itanium and AMD64/Opteron. The
suggestion is to refer to former as WIN64I and latter - WIN64A 
						
						
					 
					
						2004-07-23 19:18:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						afe67fb28e 
					 
					
						
						
							
							Adapt rc4-amd64.pl for Win64/AMD64 assembler.  
						
						 
						
						
						
						
					 
					
						2004-07-23 17:51:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f744f92adb 
					 
					
						
						
							
							From LPlib:  
						
						 
						
						... 
						
						
						
						Apparently, the length *including* the NUL byte should be used.
Contributed by Andy Polyakov <appro@fy.chalmers.se > 
						
						
					 
					
						2004-07-22 18:34:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						75f134c077 
					 
					
						
						
							
							From LPlib:  
						
						 
						
						... 
						
						
						
						Make a nicer comment, as we don't really know for sure that it's
really needed, and just want to play on the safe side.
Suggest by Andy Polyakov <appro@fy.chalmers.se > 
						
						
					 
					
						2004-07-22 13:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8d25c9603 
					 
					
						
						
							
							WinCE should always be compiled as UNICODE, even debugging version...  
						
						 
						
						
						
						
					 
					
						2004-07-22 11:08:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f1bdf1d518 
					 
					
						
						
							
							#include <limits.h> is required at least on HP-UX and IRIX. And what's  
						
						 
						
						... 
						
						
						
						with HP-UX offering 14 for NAME_MAX? 
						
						
					 
					
						2004-07-22 10:53:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d58caee734 
					 
					
						
						
							
							EVP_Digest is size_t-fied, clean up test programs accordingly.  
						
						 
						
						
						
						
					 
					
						2004-07-22 10:25:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e39c2548f5 
					 
					
						
						
							
							Run SHA-256/-512 tests through EVP...  
						
						 
						
						
						
						
					 
					
						2004-07-22 10:21:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8169dd73f9 
					 
					
						
						
							
							All SIXTY_FOUR_BIT platforms (mind the difference between SIXTY_FOUR_BIT and  
						
						 
						
						... 
						
						
						
						SIXTY_FOUR_BIT_LONG) were failing to pass 'cd test; make test_bn'. 
						
						
					 
					
						2004-07-22 09:32:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						765e231a7c 
					 
					
						
						
							
							From LPlib:  
						
						 
						
						... 
						
						
						
						Some code beautification.
Change the macro CP_THREAD_ACP to CP_ACP, because the latter is more
widely defined.
Add a conditional macro definition in case FindFirstFile and
FindNextFile aren't properly defined (might happen on WinCE).
Suggested by Andy Polyakov <appro@fy.chalmers.se > 
						
						
					 
					
						2004-07-21 21:16:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						89c53672c2 
					 
					
						
						
							
							Make rand_win.c UNICODE savvy.  
						
						 
						
						
						
						
					 
					
						2004-07-21 17:17:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						64ba6cf222 
					 
					
						
						
							
							From LPlib:  
						
						 
						
						... 
						
						
						
						Windows changes that detects if multibyte characters are available and
deals with them properly.
Contributed by Andy Polyakov <appro@fy.chalmers.se > 
						
						
					 
					
						2004-07-20 21:24:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						210a4f78ae 
					 
					
						
						
							
							Imported from LPlib, making sure the entry name (at least on Unix) is  
						
						 
						
						... 
						
						
						
						NUL-teminated at all times, and that we don't make unneeded calls to
free(). 
						
						
					 
					
						2004-07-19 16:36:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						334ef04949 
					 
					
						
						
							
							Since version 7.0, The C RTL in VMS handles time in terms of UTC  
						
						 
						
						... 
						
						
						
						instead of local time. 
						
						
					 
					
						2004-07-19 07:50:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						859ceeeb51 
					 
					
						
						
							
							Anchor AES and SHA-256/-512 assembler from C.  
						
						 
						
						
						
						
					 
					
						2004-07-18 17:26:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						22edcae7fa 
					 
					
						
						
							
							Type in Configure and TABLE update.  
						
						 
						
						
						
						
					 
					
						2004-07-18 16:22:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d0590fe6b2 
					 
					
						
						
							
							Add anchors for AES, SHA-256/-512 assembler modules and SSE2 code pathes.  
						
						 
						
						... 
						
						
						
						I also used this opportunity to clean up some out-of-date targets and
re-group targets by OS. 
						
						
					 
					
						2004-07-18 16:19:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2232b10f5a 
					 
					
						
						
							
							Add licensing terms.  
						
						 
						
						
						
						
					 
					
						2004-07-17 13:24:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e34794dd1b 
					 
					
						
						
							
							IA-64 is intolerant to misaligned access. It was a problem on Win64 as  
						
						 
						
						... 
						
						
						
						we were mislead by _MSC_VER macro, which is defined by *all* Windows
Microsoft compilers. 
						
						
					 
					
						2004-07-17 12:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0210065bbd 
					 
					
						
						
							
							Quick fix.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2004-07-16 03:24:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7f5b4dd1e8 
					 
					
						
						
							
							Using Horner's algorithm to evaluate the ec polynomial  
						
						 
						
						... 
						
						
						
						(suggested by Adam Young <ayoung@cigital.com >)
Submitted by: Nils Larsch 
						
						
					 
					
						2004-07-16 03:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5906e8d5fe 
					 
					
						
						
							
							I think it could be a good thing to know what went wrong with the tests...  
						
						 
						
						
						
						
					 
					
						2004-07-12 12:25:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5545607c4f 
					 
					
						
						
							
							make update  
						
						 
						
						... 
						
						
						
						(incidently, this also tells VMS that there exists a new symbol in the
SSL library) 
						
						
					 
					
						2004-07-12 11:25:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6ac1571296 
					 
					
						
						
							
							Because it's one of our libraries calling new functions in the other,  
						
						 
						
						... 
						
						
						
						we need to have them among the symbols that should appear in the
transfer table, at least on VMS (and it wouldn't surprise me if
Windows would whine as well). 
						
						
					 
					
						2004-07-12 11:24:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ca74b76f3e 
					 
					
						
						
							
							improve wording  
						
						 
						
						
						
						
					 
					
						2004-07-12 06:23:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2b6174c478 
					 
					
						
						
							
							Some test programs in crypto/sha were named differently than usual...  
						
						 
						
						
						
						
					 
					
						2004-07-11 20:30:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2b002273f3 
					 
					
						
						
							
							'SSL_add_dir_cert_subjects_to_stack' is longer than 31 characters.  
						
						 
						
						... 
						
						
						
						Lucky me, I had prepared for this :-). 
						
						
					 
					
						2004-07-11 20:22:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						15d155e45a 
					 
					
						
						
							
							o_dir needs to be compiler with the warnings about dollar signs in  
						
						 
						
						... 
						
						
						
						identities disabled. 
						
						
					 
					
						2004-07-11 20:21:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b0841348b6 
					 
					
						
						
							
							In some cases, EVMSERR isn't visible (that's fairly new...).  
						
						 
						
						... 
						
						
						
						Don't have a constant that you're going to assign to, that's just
plain stupid (I was the stupidhead here...). 
						
						
					 
					
						2004-07-11 20:21:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						090e81d4aa 
					 
					
						
						
							
							Integration of RC4 AMD64 module.  
						
						 
						
						
						
						
					 
					
						2004-07-11 16:49:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e4528e48e3 
					 
					
						
						
							
							RC4 tune-up for AMD64. Performance improvement of 2.22x is measured for  
						
						 
						
						... 
						
						
						
						linux-x86_64 target. 
						
						
					 
					
						2004-07-11 16:44:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						235dee1421 
					 
					
						
						
							
							BIS correction/addition  
						
						 
						
						
						
						
					 
					
						2004-07-11 08:58:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d28f7bc74d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-07-10 13:18:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4083a229b4 
					 
					
						
						
							
							Use the new directory reading functions.  
						
						 
						
						
						
						
					 
					
						2004-07-10 13:17:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a2400fcab8 
					 
					
						
						
							
							Copy a few files from LPlib (a new project of mine), add a wrapper.  
						
						 
						
						... 
						
						
						
						Now we have directory reading capabilities for VMS as well, and all
of it in a fairly general manner. 
						
						
					 
					
						2004-07-10 13:16:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dc56eb5079 
					 
					
						
						
							
							o_str.c: Windows doesn't have <strings.h>, and since we use _strnicmp() and  
						
						 
						
						... 
						
						
						
						_stricmp() on that platform, use the appropriate header file for it,
<string.h>.
o_str.h: we only want to get size_t, which is defined in <stddef.h>.
Philippe Bougeret <philippe.bougeret@freesbee.fr > notified us about Windows
not having a <strings.h> 
						
						
					 
					
						2004-07-08 08:32:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						637ff35ef6 
					 
					
						
						
							
							Delta CRL support in extension code.  
						
						 
						
						
						
						
					 
					
						2004-07-06 17:16:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ace3ebd661 
					 
					
						
						
							
							Improve error handling if decompression of an ec point fails, and cleanup  
						
						 
						
						... 
						
						
						
						ec_curve.c (unify comments, etc).
Submitted by: Nils Larsch
Reviewed by: Bodo Moeller, Geoff Thorpe 
						
						
					 
					
						2004-07-06 15:50:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eea674567c 
					 
					
						
						
							
							Delete non-POSIX header file.  
						
						 
						
						
						
						
					 
					
						2004-07-04 16:48:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c39c32dd65 
					 
					
						
						
							
							PKCS#8 fixes from stable branch.  
						
						 
						
						
						
						
					 
					
						2004-07-04 16:44:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0efea28dcb 
					 
					
						
						
							
							Don't try to parse non string types.  
						
						 
						
						
						
						
					 
					
						2004-07-01 18:15:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4bab9b763d 
					 
					
						
						
							
							Stop compiler warnings with debug-steve  
						
						 
						
						
						
						
					 
					
						2004-07-01 18:14:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						70696f4525 
					 
					
						
						
							
							Explain a little better what BN_num_bits() and BN_num_bits_word() do.  
						
						 
						
						... 
						
						
						
						Add a note as to how these functions do not always return the key size, and
how one can deal with that.
PR: 907 
						
						
					 
					
						2004-07-01 12:33:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						80bbc9ceaf 
					 
					
						
						
							
							Minor (+12% on P4) performance tweak for sha512_block_sse2.  
						
						 
						
						
						
						
					 
					
						2004-07-01 11:29:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						51ce5230cd 
					 
					
						
						
							
							AES assembler implementation for IA-64. Note that there is no anchor from  
						
						 
						
						... 
						
						
						
						C code yet... 
						
						
					 
					
						2004-07-01 11:15:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b6d8ba11e9 
					 
					
						
						
							
							New SHA algorithms  assembler implementation for IA-64. Note that despite  
						
						 
						
						... 
						
						
						
						module name both SHA-256 and SHA-512 are supported. 
						
						
					 
					
						2004-07-01 11:13:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e2f2a9af2c 
					 
					
						
						
							
							New scalable bn_mul_add_words loop, which provides up to >20% overall  
						
						 
						
						... 
						
						
						
						performance improvement. Make module more gcc friendly and clarify
copyright issues for division routine. 
						
						
					 
					
						2004-07-01 11:10:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28a8003467 
					 
					
						
						
							
							Changes for VOS, submitted by Paul Green <Paul.Green@stratus.com>.  
						
						 
						
						... 
						
						
						
						PR: 499 
						
						
					 
					
						2004-06-28 22:01:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						563cd0f2b0 
					 
					
						
						
							
							Make the tests of EVP operations without padding.  As a consequence,  
						
						 
						
						... 
						
						
						
						there's no need for a larger BUFSIZE any more...
PR: 904 
						
						
					 
					
						2004-06-28 16:32:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3ac0f28837 
					 
					
						
						
							
							Make sure that the buffers are large enough to contain padding.  
						
						 
						
						... 
						
						
						
						PR: 904 
						
						
					 
					
						2004-06-28 12:23:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						47c1735acd 
					 
					
						
						
							
							NetWare fixes provided by Verdon Walker for OpenSSL 0.9.8-dev.  
						
						 
						
						... 
						
						
						
						The changes have been mailed to <crypt@bis.doc.gov > as well.
PR: 903 
						
						
					 
					
						2004-06-28 11:55:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7d3932e8cf 
					 
					
						
						
							
							Linux on ARM needs -ldl  
						
						 
						
						... 
						
						
						
						PR: 905 
						
						
					 
					
						2004-06-28 10:31:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8a60547896 
					 
					
						
						
							
							Reformat pkcs8 source.  
						
						 
						
						
						
						
					 
					
						2004-06-24 13:10:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d459e39012 
					 
					
						
						
							
							Tidy up, including;  
						
						 
						
						... 
						
						
						
						- Remove unused and unuseful debug cruft.
- Remove unnecessary 'top' fudging from BN_copy().
- Fix a potential memory leak and simplify the expansion logic in
  BN_bin2bn().
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-06-20 04:16:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						afd61c63c2 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:14 +0000  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:18:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9a2073b4cd 
					 
					
						
						
							
							file fips_dh_key.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:14 +0000  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:16:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f28468188b 
					 
					
						
						
							
							file fips_dh_gen.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:14 +0000  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:16:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8871d87512 
					 
					
						
						
							
							file fips_dh_check.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:14 +0000  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:16:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a2b81188be 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:14 +0000  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:16:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						340f5856ec 
					 
					
						
						
							
							Incomplete initial sweep over the engine code. Mainly reducing some  
						
						 
						
						... 
						
						
						
						comment-noise to managable levels and inverting the sense of the "uptodate"
boolean (which was counter-intuitive the way I'd left it). 
						
						
					 
					
						2004-06-19 03:58:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						df11e1e921 
					 
					
						
						
							
							Deprecate unused cruft, and "make update".  
						
						 
						
						
						
						
					 
					
						2004-06-17 23:50:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6a6592962c 
					 
					
						
						
							
							Attempt to bring the 'engine' documentation up to date w.r.t missing  
						
						 
						
						... 
						
						
						
						prototypes, etc. Also, some fairly significant edits were made to the text
(who wrote this crap anyway? oh wait ...), removing stuff which is
overkill, rewriting stuff that was opaque, correcting things that were just
downright false, etc. 
						
						
					 
					
						2004-06-17 23:40:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						1275c4569e 
					 
					
						
						
							
							Minor change to group like functions together.  
						
						 
						
						
						
						
					 
					
						2004-06-17 23:35:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						afbe74d386 
					 
					
						
						
							
							Actually, that last change to BN_get_word() was a little too simple.  
						
						 
						
						
						
						
					 
					
						2004-06-17 22:05:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f18ea6cae9 
					 
					
						
						
							
							Get rid of signed/unsigned warnings, and teach CVS about new things to  
						
						 
						
						... 
						
						
						
						ignore. 
						
						
					 
					
						2004-06-17 20:28:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c9ff40cecd 
					 
					
						
						
							
							Tweak my debug target flags.  
						
						 
						
						
						
						
					 
					
						2004-06-17 20:26:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9088d5f24f 
					 
					
						
						
							
							As Nils put it;  
						
						 
						
						... 
						
						
						
						Yet another question: some time ago you changed BN_set_word.
    Why didn't you change BN_get_word as well?
Quite. I'm also removing the older commented-out implementations to improve
readability. This complex stuff seems to date from a time when the types
didn't match up well.
Submitted by: Nils Larsch, Geoff Thorpe 
						
						
					 
					
						2004-06-17 20:13:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						cf9056cfda 
					 
					
						
						
							
							BN_div_word() was breaking when called from BN_bn2dec() (actually, this is  
						
						 
						
						... 
						
						
						
						the only function that uses it) because it would trip up an assertion in
bn_div_words() when first invoked. This also adds BN_div_word() testing to
bntest.
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-06-17 20:03:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f7fc4ca1dd 
					 
					
						
						
							
							Making some values explicitely unsigned was derived from ongoing work  
						
						 
						
						... 
						
						
						
						that isn't yet committed.  It wasn't meant to be committed already, so
I'm removing it for now. 
						
						
					 
					
						2004-06-15 12:52:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						132fc53223 
					 
					
						
						
							
							Typo, setting the first element of nids[] to NULL instead of setting  
						
						 
						
						... 
						
						
						
						*cnids. 
						
						
					 
					
						2004-06-15 11:45:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b3b6720944 
					 
					
						
						
							
							Correct the return codes for ecdsatest.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-06-14 23:37:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						9f6ea7163b 
					 
					
						
						
							
							More precise explanation of session id context requirements.  
						
						 
						
						
						
						
					 
					
						2004-06-14 13:27:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						385c8e89f4 
					 
					
						
						
							
							SHA fails to compile on x86_64 if compiled with custom flags, without  
						
						 
						
						... 
						
						
						
						recommended -DMD32_REG_T=int in particular.
PR: 893
Submitted by: Michal Ludvig <michal-list@logix.cz > 
						
						
					 
					
						2004-06-11 17:50:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						263e3151e2 
					 
					
						
						
							
							"no-engine" was being ignored, so remove it from the advertised syntax.  
						
						 
						
						... 
						
						
						
						Also remove some commented-out lines of code that deny CVS its purpose. 
						
						
					 
					
						2004-06-03 03:34:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9081980565 
					 
					
						
						
							
							This fixes the installation target for dynamic engines, which was trying to  
						
						 
						
						... 
						
						
						
						install to a different location than it had created. (BTW, VMS will need a
matching fix in eng_list.c.) Note, these aren't ssl-specific, so I'm
putting "engines/" into the libs directory rather than at the "--prefix"
level or inside "ssl/". 
						
						
					 
					
						2004-06-01 03:18:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						393b704d28 
					 
					
						
						
							
							Minimal work-around for ./engine shared builds. "Minimal" means that I  
						
						 
						
						... 
						
						
						
						think that proper Makefile clean-up is required. 
						
						
					 
					
						2004-05-31 22:29:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bef26f1158 
					 
					
						
						
							
							32-bit PA-RISC requires -Bsymbolic when linking libcrypto.sl. Without  
						
						 
						
						... 
						
						
						
						this flag RAND_poll ends up in end-less loop calling RAND_add. But
don't ask me why... 
						
						
					 
					
						2004-05-31 17:10:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bc1ca8605c 
					 
					
						
						
							
							Working on HP-UX shared support...  
						
						 
						
						
						
						
					 
					
						2004-05-31 14:50:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ad5003409d 
					 
					
						
						
							
							Mention new SHA algorithms in CHANGES. This completes the integration.  
						
						 
						
						
						
						
					 
					
						2004-05-31 14:03:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						057cfaf2f8 
					 
					
						
						
							
							Extend HMAC_MAX_MD_CBLOCK to accomodate SHA-512.  
						
						 
						
						
						
						
					 
					
						2004-05-31 13:28:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						914d36ba19 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-31 13:16:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31c2ac1cdc 
					 
					
						
						
							
							EVP bindings to new SHA algorithms.  
						
						 
						
						
						
						
					 
					
						2004-05-31 13:14:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6bca8e3886 
					 
					
						
						
							
							objects.txt update for SHA-224/-256/-384/-512. SHA-224 ids still appear  
						
						 
						
						... 
						
						
						
						"draft," but we have to start somewhere...
Submitted by: Nils Larsch <nlarsch@compuserve.de > 
						
						
					 
					
						2004-05-31 13:07:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63ba7e293f 
					 
					
						
						
							
							Make sha-256/-512 naming in speed.c consistent with their names as they  
						
						 
						
						... 
						
						
						
						will appear at EVP leyer. 
						
						
					 
					
						2004-05-31 12:40:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31e9b9b2e9 
					 
					
						
						
							
							Typo in commentary section.  
						
						 
						
						
						
						
					 
					
						2004-05-31 12:30:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7997b13aa3 
					 
					
						
						
							
							Final SHA-256/-512 touches. Extra md_len field in SHA[256|512]_CTX  
						
						 
						
						... 
						
						
						
						reserves for truncated hash function output mode and makes SHA224
thread-safe. Next stop is integration with EVP and we're done... 
						
						
					 
					
						2004-05-31 12:26:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a2eb9688a4 
					 
					
						
						
							
							Kill unused macro and reimplement it for that single context it can  
						
						 
						
						... 
						
						
						
						actually be used, namely x86* platforms [because they don't bomb on
unaligned access]. This resulted in 30-40% [depending on message
length] improvement for SHA-256 compiled with gcc and running on P4.
In the lack of assembler implementation I give the compiler all the
help it can possibly get:-) 
						
						
					 
					
						2004-05-31 12:06:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af2bf07404 
					 
					
						
						
							
							SHA224_Update() and SHA224_Final() aren't implemented, and since  
						
						 
						
						... 
						
						
						
						SHA224() uses SHA256_Update() and SHA256_Final() instead, let's just
create aliases in form of macros.
make update 
						
						
					 
					
						2004-05-30 16:58:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8c5dfa4c99 
					 
					
						
						
							
							Typo in linux-ppc64 target.  
						
						 
						
						
						
						
					 
					
						2004-05-29 20:32:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8d9fb0f04a 
					 
					
						
						
							
							gcc -Wcast-qual clean-up.  
						
						 
						
						
						
						
					 
					
						2004-05-29 19:11:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						15fd2de37c 
					 
					
						
						
							
							hpux-shared rules to cover even for GNU ld.  
						
						 
						
						
						
						
					 
					
						2004-05-28 22:38:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a83c37294 
					 
					
						
						
							
							Unified hpux-shared rule. Verified with both 32- and 64-bit builds and  
						
						 
						
						... 
						
						
						
						both vendor and GNU compilers. ./engine shared build are still busted.
I mean always were... 
						
						
					 
					
						2004-05-28 22:18:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						674ee8b72d 
					 
					
						
						
							
							Make sure we return 0 if test passed.  
						
						 
						
						
						
						
					 
					
						2004-05-28 21:42:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1809e858bb 
					 
					
						
						
							
							Eliminate compiler warnings and throw in performance table.  
						
						 
						
						
						
						
					 
					
						2004-05-28 10:15:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2bbc970e10 
					 
					
						
						
							
							Attempt to unify hpux-shared rules. More adjustments might be required  
						
						 
						
						... 
						
						
						
						after more tests... 
						
						
					 
					
						2004-05-27 22:23:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da8348e938 
					 
					
						
						
							
							SHA-224 test vectors added.  
						
						 
						
						
						
						
					 
					
						2004-05-27 19:46:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f91f6cd5e4 
					 
					
						
						
							
							file install.com was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2004-05-27 10:07:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd923a7bac 
					 
					
						
						
							
							file fips-lib.com was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:09 +0000  
						
						 
						
						
						
						
					 
					
						2004-05-27 10:04:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ef16f45081 
					 
					
						
						
							
							Since num is now a size_t, it's not necssary to check for less than 0,  
						
						 
						
						... 
						
						
						
						AND it avoids warnings on certain systems. 
						
						
					 
					
						2004-05-27 09:20:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d692e1ba0 
					 
					
						
						
							
							Synchronise VMS with the Unixly Malefiles.  
						
						 
						
						
						
						
					 
					
						2004-05-26 17:05:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6577e16920 
					 
					
						
						
							
							Documentation note for Win32 glue between BIO layer and compiler run-time.  
						
						 
						
						
						
						
					 
					
						2004-05-25 20:32:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3fc378aa0b 
					 
					
						
						
							
							Framework for glueing BIO layer and Win32 compiler run-time. Goal is to  
						
						 
						
						... 
						
						
						
						make it possible to produce for a unified binary build, which can be
used with a variety of Win32 compilers. 
						
						
					 
					
						2004-05-25 20:31:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f2bfbcef76 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-25 09:41:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6713a4835f 
					 
					
						
						
							
							Move some COMP functions to be inside the #ifndef OPENSSL_NO_COMP  
						
						 
						
						... 
						
						
						
						wrapping preprocessor directive.  This also removes a duplicate
declaration. 
						
						
					 
					
						2004-05-20 23:47:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						46ceb15c39 
					 
					
						
						
							
							SHA-256/-512 test and benchmark.  
						
						 
						
						
						
						
					 
					
						2004-05-20 21:49:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						109d3123c3 
					 
					
						
						
							
							While size_t-fying let's not forget to update documentation:-)  
						
						 
						
						
						
						
					 
					
						2004-05-20 21:39:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63077bd40c 
					 
					
						
						
							
							SHA-256/-512 update. A bug fix, SHA-512 tune-up for AMD64, hook for SSE2  
						
						 
						
						... 
						
						
						
						code, Makefile update. 
						
						
					 
					
						2004-05-20 21:24:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						df364f1b00 
					 
					
						
						
							
							Stress collector/padding function.  
						
						 
						
						
						
						
					 
					
						2004-05-20 21:20:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bc767216d9 
					 
					
						
						
							
							Final API adaptation. Final, "all openssl" performance numbers [not mixture  
						
						 
						
						... 
						
						
						
						of different implementations]. Real-life performance improvement is rated
at 2-3x, not 6x as preliminary announced. 
						
						
					 
					
						2004-05-20 21:18:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cacd830f02 
					 
					
						
						
							
							Delete unused function from libeay.num, replace with one  
						
						 
						
						... 
						
						
						
						that does exist. 
						
						
					 
					
						2004-05-19 17:08:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eda52e175a 
					 
					
						
						
							
							Delete obsolete and unimplemented function.  
						
						 
						
						
						
						
					 
					
						2004-05-19 17:05:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						665560e9a4 
					 
					
						
						
							
							Add SHA256 and SHA512 algorithms to mkdef.pl.  
						
						 
						
						... 
						
						
						
						Fix mkdef.pl script to avoid infinite loop when
parsing sha.h. 
						
						
					 
					
						2004-05-19 17:03:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4fc8b5bf4 
					 
					
						
						
							
							X509_policy_lib_init is declared but not defined, so it raises havoc  
						
						 
						
						... 
						
						
						
						when trying to build a shared library on VMS or Windows... 
						
						
					 
					
						2004-05-19 14:19:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9c52d2cc75 
					 
					
						
						
							
							After the latest round of header-hacking, regenerate the dependencies in  
						
						 
						
						... 
						
						
						
						the Makefiles. NB: this commit is probably going to generate a huge posting
and it is highly uninteresting to read. 
						
						
					 
					
						2004-05-17 19:26:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0f814687b9 
					 
					
						
						
							
							Deprecate the recursive includes of bn.h from various API headers (asn1.h,  
						
						 
						
						... 
						
						
						
						dh.h, dsa.h, ec.h, ecdh.h, ecdsa.h, rsa.h), as the opaque bignum types are
already declared in ossl_typ.h. Add explicit includes for bn.h in those C
files that need access to structure internals or API functions+macros. 
						
						
					 
					
						2004-05-17 19:14:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f0eae953e2 
					 
					
						
						
							
							Remove some unnecessary recursive includes from the internal apps.h header,  
						
						 
						
						... 
						
						
						
						and include bn.h in those C files that need bignum functionality. 
						
						
					 
					
						2004-05-17 19:05:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						298a2f9e58 
					 
					
						
						
							
							Because of recent reductions in header interdependencies, these files need  
						
						 
						
						... 
						
						
						
						to include crypto.h directly. 
						
						
					 
					
						2004-05-17 19:01:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ac0d0a5ecd 
					 
					
						
						
							
							I can't verify this directly, but recent changes will probably require that  
						
						 
						
						... 
						
						
						
						the cryptodev implementation include bn.h directly (when building with
OPENSSL_NO_DEPRECATED that is). 
						
						
					 
					
						2004-05-17 18:58:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f15390bdb4 
					 
					
						
						
							
							The inclusion of bn.h from the engine.h API header has been deprecated, so  
						
						 
						
						... 
						
						
						
						the engine implementations need to include bn.h to manipulate bignums. 
						
						
					 
					
						2004-05-17 18:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d095b68d63 
					 
					
						
						
							
							Deprecate quite a few recursive includes from the ssl.h API header and  
						
						 
						
						... 
						
						
						
						remove some unnecessary includes from the internal header ssl_locl.h. This
then requires adding includes for bn.h in four C files. 
						
						
					 
					
						2004-05-17 18:53:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						508999fa7d 
					 
					
						
						
							
							Deprecate some recursive includes from the store.h API header, and put back  
						
						 
						
						... 
						
						
						
						required includes back via the internal header and str_lib.c. 
						
						
					 
					
						2004-05-17 18:49:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						210a21bc8d 
					 
					
						
						
							
							Reduce dependencies on crypto.h by moving the opaque definition of  
						
						 
						
						... 
						
						
						
						CRYPTO_EX_DATA and the new/free/dup callback prototypes to ossl_typ.h. 
						
						
					 
					
						2004-05-17 18:39:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						678c1e025b 
					 
					
						
						
							
							Moving opaque definitions to ossl_typ.h lets us reduce header dependencies.  
						
						 
						
						... 
						
						
						
						Deprecate inclusion of crypto.h from ui.h. 
						
						
					 
					
						2004-05-17 18:01:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1ab61a9179 
					 
					
						
						
							
							Make reservations for FIPS code in HEAD branch, so that the moment FIPS  
						
						 
						
						... 
						
						
						
						comes in we have required macros in place. 
						
						
					 
					
						2004-05-17 15:49:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d6dda126b7 
					 
					
						
						
							
							Make some more API types opaquely available from ossl_typ.h, meaning the  
						
						 
						
						... 
						
						
						
						corresponding headers are only required for API functions or structure
details. This now includes the bignum types and BUF_MEM. Subsequent commits
will remove various dependencies on bn.h and buffer.h and update the
makefile dependencies. 
						
						
					 
					
						2004-05-15 18:32:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7771b6c5b5 
					 
					
						
						
							
							This file implements various functions that have since been redefined as  
						
						 
						
						... 
						
						
						
						macros. I'm removing this from the NO_DEPRECATED build. 
						
						
					 
					
						2004-05-15 18:26:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4843acc868 
					 
					
						
						
							
							Fixes so alerts are sent properly in s3_pkt.c  
						
						 
						
						... 
						
						
						
						PR: 851 
						
						
					 
					
						2004-05-15 17:55:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9e0aad9fd6 
					 
					
						
						
							
							size_t-fication of message digest APIs. We should size_t-fy more APIs...  
						
						 
						
						
						
						
					 
					
						2004-05-15 11:29:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1c7a0e2856 
					 
					
						
						
							
							Reimplement old functions, so older software that link to libcrypto  
						
						 
						
						... 
						
						
						
						don't crash and burn. 
						
						
					 
					
						2004-05-14 17:56:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						abd23881c1 
					 
					
						
						
							
							Synchronise o_str.c between 0.9.8-dev and 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2004-05-13 22:39:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1739eb2d6 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-13 21:38:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2faa930bb0 
					 
					
						
						
							
							Let's make life easier and have the VMS version of the configuration be  
						
						 
						
						... 
						
						
						
						generated from the Unixly configuration file. 
						
						
					 
					
						2004-05-13 21:38:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e14f4aab0a 
					 
					
						
						
							
							CHANGES to mention improved PowerPC platform support.  
						
						 
						
						
						
						
					 
					
						2004-05-13 13:58:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c842261b1b 
					 
					
						
						
							
							SHA-224/-256/-384/-512 implementation. This is just sheer code commit.  
						
						 
						
						... 
						
						
						
						Makefile modifications, make test, etc. will appear later... 
						
						
					 
					
						2004-05-13 13:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df368ecce4 
					 
					
						
						
							
							Make self signing option of 'x509' use random serial numbers too.  
						
						 
						
						
						
						
					 
					
						2004-05-12 18:20:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1e6bccc240 
					 
					
						
						
							
							SSE2 SHA512_Transform implementation. No, it's not used anywhere yet and  
						
						 
						
						... 
						
						
						
						is subject to change as C implementation is added... 
						
						
					 
					
						2004-05-06 10:41:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d3adc3d3ed 
					 
					
						
						
							
							SSE2 accelerated bn_mul_add_words. Code is currently disabled till proper  
						
						 
						
						... 
						
						
						
						config and run-time support is added.
PR: 788
Submitted by: <dean@arctic.org >
Reviewed by: <appro>
Obtained from: http://arctic.org/~dean/crypto/rsa.html  
						
						
					 
					
						2004-05-06 10:36:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						10e7d6d526 
					 
					
						
						
							
							Support for IA-32 SSE2 instruction set.  
						
						 
						
						
						
						
					 
					
						2004-05-06 10:31:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d472bdd84 
					 
					
						
						
							
							Remove the creation of $(INSTALL_PREFIX)$(OPENSSLDIR)/lib, since we don't  
						
						 
						
						... 
						
						
						
						use it.
Notified by Frédéric L. W. Meunier <0@pervalidus.tk > in PR 713 
						
						
					 
					
						2004-05-06 09:46:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						430d7afd80 
					 
					
						
						
							
							When the pointer 'from' changes, it's stored length needs to change as  
						
						 
						
						... 
						
						
						
						well.
Notified by Frank Kardel <kardel@acm.org > in PR 879. 
						
						
					 
					
						2004-05-06 09:33:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ca982e4870 
					 
					
						
						
							
							Fix realloc usage in ec_curve.c  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-05-04 20:08:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d5f686d808 
					 
					
						
						
							
							- update from current 0.9.6-stable CHANGES file  
						
						 
						
						... 
						
						
						
						- update from current 0.9.7-stable CHANGES file:
  Now here we have "CHANGES between 0.9.7e and 0.9.8", and I hope
  that all patches mentioned for 0.9.7d and 0.9.7e actually are
  in the CVS HEAD, i.e. what is to become 0.9.8.
  I have rewritten the 'openssl ca -create_serial' entry (0.9.8)
  so that it explains the earlier change that is now listed (0.9.7e).
  The ENGINE_set_default typo bug entry has been moved from 0.9.8
  to 0.9.7b, which is where it belongs. 
						
						
					 
					
						2004-05-04 01:15:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						08e1cbc62c 
					 
					
						
						
							
							The new BN_CTX code makes this sort of abuse unnecessary.  
						
						 
						
						
						
						
					 
					
						2004-04-28 18:34:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b6b4fdc9e2 
					 
					
						
						
							
							Oops! Typo in ./config...  
						
						 
						
						
						
						
					 
					
						2004-04-27 22:17:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dd55880644 
					 
					
						
						
							
							Improved PowerPC support. Proper ./config support for ppc targets,  
						
						 
						
						... 
						
						
						
						especially for AIX. But most important BIGNUM assembler implementation
submitted by IBM.
Submitted by: Peter Waltenberg <pwalten@au1.ibm.com >
Reviewed by: appro 
						
						
					 
					
						2004-04-27 22:05:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd1640bb01 
					 
					
						
						
							
							Make ASN1 code work again...  
						
						 
						
						
						
						
					 
					
						2004-04-27 18:33:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						081991ac01 
					 
					
						
						
							
							With the new dynamic BN_CTX implementation, there should be no need for  
						
						 
						
						... 
						
						
						
						additional contexts. 
						
						
					 
					
						2004-04-27 13:24:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8a85c341fe 
					 
					
						
						
							
							The problem of rsa key-generation getting stuck in a loop for (pointlessly)  
						
						 
						
						... 
						
						
						
						small key sizes seems to result from the code continually regenerating the
same prime value once the range is small enough. From my tests, this change
fixes the problem by setting an escape velocity of 3 repeats for the second
of the two primes.
PR: 874 
						
						
					 
					
						2004-04-26 15:38:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bcfea9fb25 
					 
					
						
						
							
							Allow RSA key-generation to specify an arbitrary public exponent. Jelte  
						
						 
						
						... 
						
						
						
						proposed the change and submitted the patch, I jiggled it slightly and
adjusted the other parts of openssl that were affected.
PR: 867
Submitted by: Jelte Jansen
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-04-26 15:31:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3f52d7f45 
					 
					
						
						
							
							More ASN1 reformat/tidy.  
						
						 
						
						
						
						
					 
					
						2004-04-25 12:46:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8845420f4e 
					 
					
						
						
							
							Reformat/tidy some of the ASN1 code.  
						
						 
						
						
						
						
					 
					
						2004-04-24 17:02:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d735c64905 
					 
					
						
						
							
							Fix leak.  
						
						 
						
						... 
						
						
						
						PR:870 
						
						
					 
					
						2004-04-22 12:37:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						955d465c2c 
					 
					
						
						
							
							As far as I can tell, the bugfix this comment refers to was committed to  
						
						 
						
						... 
						
						
						
						0.9.7-stable as well as HEAD (and doesn't apply to the 0.9.6-engine
variant). 
						
						
					 
					
						2004-04-21 15:12:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8c521c7a34 
					 
					
						
						
							
							Extend the index parameter checking from sk_value to sk_set(). Also tidy up  
						
						 
						
						... 
						
						
						
						some similar code elsewhere.
Thanks to Francesco Petruzzi for bringing this to my attention. 
						
						
					 
					
						2004-04-21 15:08:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77475142ec 
					 
					
						
						
							
							New option to 'x509' -next_serial. This outputs the certificate  
						
						 
						
						... 
						
						
						
						serial number plus 1 to the output file. Its purpose is to allow
serial number files to be initialized when random serial numbers
are used. 
						
						
					 
					
						2004-04-21 12:46:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90fac84066 
					 
					
						
						
							
							Use X509_get_serialNumber() instead of accessing internals in x509.c  
						
						 
						
						
						
						
					 
					
						2004-04-21 12:43:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64674bcc8c 
					 
					
						
						
							
							Reduce chances of issuer and serial number duplication by use of random  
						
						 
						
						... 
						
						
						
						initial serial numbers.
PR: 842 
						
						
					 
					
						2004-04-20 12:05:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1dc2d655ad 
					 
					
						
						
							
							Whooaaaaa, the BN_CTX_DEBUG macro really produces output these  
						
						 
						
						... 
						
						
						
						days...  A little too much for my tests, currently... 
						
						
					 
					
						2004-04-20 11:53:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						863d2b196f 
					 
					
						
						
							
							Print the debug thingies on stderr instead of stdout.  If for nothing  
						
						 
						
						... 
						
						
						
						else then at least so bc doesn't have problems parsing the output from
bntest :-). 
						
						
					 
					
						2004-04-20 10:57:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c57bc2dc51 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-04-19 18:33:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6c0dcdc211 
					 
					
						
						
							
							"make update" noticed a new function.  
						
						 
						
						
						
						
					 
					
						2004-04-19 18:32:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						28ded31b97 
					 
					
						
						
							
							More updates for the header cleanups (and apologies, again, for not having  
						
						 
						
						... 
						
						
						
						consolidated these prior to committing). 
						
						
					 
					
						2004-04-19 18:30:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0fc07a0f9c 
					 
					
						
						
							
							When generating dependencies in the makefiles, generate the reduced  
						
						 
						
						... 
						
						
						
						dependencies of the OPENSSL_NO_DEPRECATED mode. This prevents dependencies
being reproduced for "deprecated" header behaviour when a developer doesn't
define the symbol (with the subsequent CVS wars that can ensue). 
						
						
					 
					
						2004-04-19 18:19:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						823a67b0a9 
					 
					
						
						
							
							header cleanup in apps/  
						
						 
						
						
						
						
					 
					
						2004-04-19 18:13:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						60a938c6bc 
					 
					
						
						
							
							(oops) Apologies all, that last header-cleanup commit was from the wrong  
						
						 
						
						... 
						
						
						
						tree. This further reduces header interdependencies, and makes some
associated cleanups. 
						
						
					 
					
						2004-04-19 18:09:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						3a87a9b9db 
					 
					
						
						
							
							Reduce header interdependencies, initially in engine.h (the rest of the  
						
						 
						
						... 
						
						
						
						changes are the fallout). As this could break source code that doesn't
directly include headers for interfaces it uses, changes to recursive
includes are covered by the OPENSSL_NO_DEPRECATED symbol. It's better to
define this when building and using openssl, and then adapt code where
necessary - this is how to stay current. However the mechanism exists for
the lethargic. 
						
						
					 
					
						2004-04-19 17:46:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae44fc1ec4 
					 
					
						
						
							
							Clear error if unique_subject lookup fails.  
						
						 
						
						
						
						
					 
					
						2004-04-15 00:32:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						28722cf212 
					 
					
						
						
							
							Add some root CAs.  
						
						 
						
						
						
						
					 
					
						2004-04-13 17:47:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2749276b95 
					 
					
						
						
							
							Avoid undefined results when the parameter is out of range.  
						
						 
						
						
						
						
					 
					
						2004-04-02 06:25:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6a5fdb8a7 
					 
					
						
						
							
							Don't use C++ reserved word.  
						
						 
						
						
						
						
					 
					
						2004-04-01 22:23:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf5773fa2d 
					 
					
						
						
							
							Oops forgot CHANGES entry.  
						
						 
						
						
						
						
					 
					
						2004-03-31 12:55:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ecf139917d 
					 
					
						
						
							
							New function X509_POLICY_NODE_print()  
						
						 
						
						
						
						
					 
					
						2004-03-31 12:17:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ab23d5ffda 
					 
					
						
						
							
							Add symbol hacks for some long names.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2004-03-29 08:13:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a979201d5 
					 
					
						
						
							
							This is essentially Intel 32-bit compiler tune-up. To start with all  
						
						 
						
						... 
						
						
						
						available compiler versions generated bogus machine code trying to
compile new crypto/des/cfb_enc.c. Secondly, 8th version defines
__GNUC__ macro, but fails to compile *some* inline assembler correctly.
Note that all versions of icc implement MSC-like _lrot[rl] intrinsic,
which is used now instead of offensive asm. Finally, unnecessary linker
dependencies are eliminated. Most notably dependency from libirc.a
caused trouble at application start-up, if libcrypto.so is linked with
-Bsymbolic (which it is). 
						
						
					 
					
						2004-03-28 21:27:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						216659eb87 
					 
					
						
						
							
							Enhance EVP code to generate random symmetric keys of the  
						
						 
						
						... 
						
						
						
						appropriate form, for example correct DES parity.
Update S/MIME code and EVP_SealInit to use new functions.
PR: 700 
						
						
					 
					
						2004-03-28 17:38:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d6383c83f 
					 
					
						
						
							
							Make {i2v,v2i}_ASN1_BIT_STRING global.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2004-03-28 12:40:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e07d3a021d 
					 
					
						
						
							
							Remove obsolete files.  
						
						 
						
						
						
						
					 
					
						2004-03-28 12:29:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1a27eb34a 
					 
					
						
						
							
							Allow CRLs to be passed into X509_STORE_CTX. This is useful when the  
						
						 
						
						... 
						
						
						
						verified structure can contain its own CRLs (such as PKCS#7 signedData).
Tidy up some of the verify code. 
						
						
					 
					
						2004-03-27 22:49:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6446e0c3c8 
					 
					
						
						
							
							Extend OID config module format.  
						
						 
						
						
						
						
					 
					
						2004-03-27 13:30:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						beedea2fef 
					 
					
						
						
							
							Free up BIO properly when using streaming S/MIME sign.  
						
						 
						
						
						
						
					 
					
						2004-03-26 00:24:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						34be34fdd0 
					 
					
						
						
							
							Remove BN_CTX debug from debug-steve  
						
						 
						
						
						
						
					 
					
						2004-03-25 23:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0020502a07 
					 
					
						
						
							
							SSL_COMP_get_compression_method is a typo (a missing 's' at the end of  
						
						 
						
						... 
						
						
						
						the symbol name). 
						
						
					 
					
						2004-03-25 21:32:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d530017c00 
					 
					
						
						
							
							Move the definition of Win32_rename(), since the macro rename gets undefined  
						
						 
						
						... 
						
						
						
						in the middle of the code on Windows, and that disrupts operations in functions
later that use rename()...
PR: 853 
						
						
					 
					
						2004-03-25 20:09:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fd9fa844e2 
					 
					
						
						
							
							Wrap code starting with a definition.  
						
						 
						
						... 
						
						
						
						PR: 854 
						
						
					 
					
						2004-03-25 20:01:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c2dc3ee8d9 
					 
					
						
						
							
							Change spaces to symbols in names.  
						
						 
						
						... 
						
						
						
						PR: 856 
						
						
					 
					
						2004-03-25 19:52:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						482c2acf02 
					 
					
						
						
							
							Make prototypes for some callback pointers.  
						
						 
						
						
						
						
					 
					
						2004-03-25 16:21:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a481b4b52c 
					 
					
						
						
							
							A couple more cases where RAND_add() gets an integer instead of a  
						
						 
						
						... 
						
						
						
						doule as last argument. 
						
						
					 
					
						2004-03-25 16:04:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a87228031f 
					 
					
						
						
							
							RAND_add() wants a double as it's last argument.  
						
						 
						
						
						
						
					 
					
						2004-03-25 15:52:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b79c82eaab 
					 
					
						
						
							
							Fix loads of warnings in policy code.  
						
						 
						
						... 
						
						
						
						I'll remember to try to compile this with warnings enabled next time :-) 
						
						
					 
					
						2004-03-25 13:45:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						69d1d5e6ce 
					 
					
						
						
							
							Fix ASN1 warnings.  
						
						 
						
						
						
						
					 
					
						2004-03-25 13:37:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c86f2054f3 
					 
					
						
						
							
							Adjust various bignum functions to use BN_CTX for variables instead of  
						
						 
						
						... 
						
						
						
						locally initialising their own.
NB: I've removed the "BN_clear_free()" loops for the exit-paths in some of
these functions, and that may be a major part of the performance
improvements we're seeing. The "free" part can be removed because we're
using BN_CTX. The "clear" part OTOH can be removed because BN_CTX
destruction automatically performs this task, so performing it inside
functions that may be called repeatedly is wasteful. This is currently safe
within openssl due to the fact that BN_CTX objects are never created for
longer than a single high-level operation. However, that is only because
there's currently no mechanism in openssl for thread-local storage. Beyond
that, this might be an issue for applications using the bignum API directly
and caching their own BN_CTX objects. The solution is to introduce a flag
to BN_CTX_start() that allows its variables to be automatically sanitised
on release during BN_CTX_end(). This way any higher-level function (and
perhaps the application) can specify this flag in its own
BN_CTX_start()/BN_CTX_end() pair, and this will cause inner-loop functions
specifying the flag to be ignored so that sanitisation is handled only once
back out at the higher level. I will be implementing this in the near
future. 
						
						
					 
					
						2004-03-25 04:32:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5c98b2caf5 
					 
					
						
						
							
							Replace the BN_CTX implementation with my current work. I'm leaving the  
						
						 
						
						... 
						
						
						
						little TODO list in there as well as the debugging code (only enabled if
BN_CTX_DEBUG is defined).
I'd appreciate as much review and testing as can be spared for this. I'll
commit some changes to other parts of the bignum code shortly to make
better use of this implementation (no more fixed size limitations). Note
also that under identical optimisations, I'm seeing a noticable speed
increase over openssl-0.9.7 - so any feedback to confirm/deny this on other
systems would also be most welcome. 
						
						
					 
					
						2004-03-25 04:16:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5148710994 
					 
					
						
						
							
							Adds warnings about two curves and fixes the "seed" value for two other  
						
						 
						
						... 
						
						
						
						curves.
Submitted by: Nils Larsch 
						
						
					 
					
						2004-03-25 03:03:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ea77fc3380 
					 
					
						
						
							
							... and this should likewise fix up those RSA implementations that weren't  
						
						 
						
						... 
						
						
						
						already built and tested. 
						
						
					 
					
						2004-03-25 02:55:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						46ef873f0b 
					 
					
						
						
							
							By adding a BN_CTX parameter to the 'rsa_mod_exp' callback, private key  
						
						 
						
						... 
						
						
						
						operations no longer require two distinct BN_CTX structures. This may put
more "strain" on the current BN_CTX implementation (which has a fixed limit
to the number of variables it will hold), but so far this limit is not
triggered by any of the tests pass and I will be changing BN_CTX in the
near future to avoid this problem anyway.
This also changes the default RSA implementation code to use the BN_CTX in
favour of initialising some of its variables locally in each function. 
						
						
					 
					
						2004-03-25 02:52:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2d2a5ba32a 
					 
					
						
						
							
							Damn, I was a bit hasty with my fix and hadn't spotted the linker  
						
						 
						
						... 
						
						
						
						dependency from asn1. 
						
						
					 
					
						2004-03-25 02:41:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2bd4e3379f 
					 
					
						
						
							
							Remove some warnings.  
						
						 
						
						
						
						
					 
					
						2004-03-25 02:24:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						032c3ecb18 
					 
					
						
						
							
							Protect against gcc's "warning: cast does not match function type".  
						
						 
						
						
						
						
					 
					
						2004-03-25 02:19:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e703b46598 
					 
					
						
						
							
							Don't define fd for platforms that do not use it, as some may not declare fileno() properly  
						
						 
						
						
						
						
					 
					
						2004-03-24 10:55:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0fa793bc7b 
					 
					
						
						
							
							Correct constness problems.  
						
						 
						
						
						
						
					 
					
						2004-03-24 10:50:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ba5477eb1a 
					 
					
						
						
							
							Make it easier to buld test applications...  
						
						 
						
						
						
						
					 
					
						2004-03-24 10:50:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5c42f62e48 
					 
					
						
						
							
							Only build the PKCS#7 test applications if "pkcs7" is present in  
						
						 
						
						... 
						
						
						
						SDIRS. 
						
						
					 
					
						2004-03-24 10:48:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a08e05d1be 
					 
					
						
						
							
							Add store.h among the exported headers on VMS.  
						
						 
						
						
						
						
					 
					
						2004-03-24 09:52:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d342ec3335 
					 
					
						
						
							
							o_str.h isn't a public header file, so make sure it will still be  
						
						 
						
						... 
						
						
						
						included. 
						
						
					 
					
						2004-03-24 09:43:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3d8b8860cf 
					 
					
						
						
							
							o_str.h isn't a public header file.  
						
						 
						
						
						
						
					 
					
						2004-03-24 09:41:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a0b5ebeac6 
					 
					
						
						
							
							Typo...  
						
						 
						
						
						
						
					 
					
						2004-03-24 09:40:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8ee18dd520 
					 
					
						
						
							
							Make sure toupper() is properly declared.  
						
						 
						
						
						
						
					 
					
						2004-03-24 09:40:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f46e76ef50 
					 
					
						
						
							
							Make it clear that for RSA_NO_PADDING, flen must be RSA_size(rsa)  
						
						 
						
						
						
						
					 
					
						2004-03-23 21:01:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e725a9660b 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-03-23 15:06:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d7eed1929b 
					 
					
						
						
							
							Sync the VMS build with Unix.  
						
						 
						
						
						
						
					 
					
						2004-03-23 14:50:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4acc3e907d 
					 
					
						
						
							
							Initial support for certificate policy checking and evaluation.  
						
						 
						
						... 
						
						
						
						This is currently *very* experimental and needs to be more fully integrated
with the main verification code. 
						
						
					 
					
						2004-03-23 14:14:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9449e38504 
					 
					
						
						
							
							Correct minor spelling error.  
						
						 
						
						... 
						
						
						
						PR: 845 
						
						
					 
					
						2004-03-21 23:03:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b8b0b5d856 
					 
					
						
						
							
							Change \t to real tab in echo argument.  
						
						 
						
						... 
						
						
						
						PR: 847 
						
						
					 
					
						2004-03-21 22:50:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec5d8a54e9 
					 
					
						
						
							
							Remove a warning for conversion double->long.  This has impacts on Windows.  
						
						 
						
						... 
						
						
						
						PR: 849 
						
						
					 
					
						2004-03-21 22:39:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						18a6333180 
					 
					
						
						
							
							Make sure fd is defined where it should.  
						
						 
						
						... 
						
						
						
						PR: 849 
						
						
					 
					
						2004-03-21 22:36:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7f663ce430 
					 
					
						
						
							
							Note my bignum hijinx in case app maintainers are using CHANGES for their  
						
						 
						
						... 
						
						
						
						porting efforts. Also, add Richard's name to the prior change. 
						
						
					 
					
						2004-03-17 18:30:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e042540f6b 
					 
					
						
						
							
							Variety of belt-tightenings in the bignum code. (Please help test this!)  
						
						 
						
						... 
						
						
						
						- Remove some unnecessary "+1"-like fudges. Sizes should be handled
  exactly, as enlarging size parameters causes needless bloat and may just
  make bugs less likely rather than fixing them: bn_expand() macro,
  bn_expand_internal(), and BN_sqr().
- Deprecate bn_dup_expand() - it's new since 0.9.7, unused, and not that
  useful.
- Remove unnecessary zeroing of unused bytes in bn_expand2().
- Rewrite BN_set_word() - it should be much simpler, the previous
  complexities probably date from old mismatched type issues.
- Add missing bn_check_top() macros in bn_word.c
- Improve some degenerate case handling in BN_[add|sub]_word(), add
  comments, and avoid a bignum expansion if an overflow isn't possible. 
						
						
					 
					
						2004-03-17 17:36:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e8172d6da 
					 
					
						
						
							
							Avoid warnings.  
						
						 
						
						
						
						
					 
					
						2004-03-16 13:51:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						875a644a90 
					 
					
						
						
							
							Constify d2i, s2i, c2i and r2i functions and other associated  
						
						 
						
						... 
						
						
						
						functions and macros.
This change has associated tags: LEVITTE_before_const and
LEVITTE_after_const.  Those will be removed when this change has been
properly reviewed. 
						
						
					 
					
						2004-03-15 23:15:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec37635c94 
					 
					
						
						
							
							It was just pointed out to me that it's better to cast to double...  
						
						 
						
						
						
						
					 
					
						2004-03-15 23:02:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fd836aeee0 
					 
					
						
						
							
							Make sure that the last argument to RAND_add() is a float, or some  
						
						 
						
						... 
						
						
						
						compilers may complain. 
						
						
					 
					
						2004-03-15 22:37:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						560f7abb7e 
					 
					
						
						
							
							Make sure we use unsigned constants, or come compilers may complain.  
						
						 
						
						
						
						
					 
					
						2004-03-15 22:33:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b6358c89a1 
					 
					
						
						
							
							Convert openssl code not to assume the deprecated form of BN_zero().  
						
						 
						
						... 
						
						
						
						Remove certain redundant BN_zero() initialisations, because BN_CTX_get(),
BN_init(), [etc] already initialise to zero.
Correct error checking in bn_sqr.c, and be less wishy-wash about how/why
the result's 'top' value is set (note also, 'max' is always > 0 at this
point). 
						
						
					 
					
						2004-03-13 23:57:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5d735465d1 
					 
					
						
						
							
							The efforts to eliminate the dual-representation of zero and to ensure  
						
						 
						
						... 
						
						
						
						bignums are passed in and out of functions and APIs in a consistent form
has highlighted that zero-valued bignums don't need any allocated word
data. The use of BN_set_word() to initialise a bignum to zero causes
needless allocation and gives it a return value that must be checked. This
change converts BN_zero() to a self-contained macro that has no
return/expression value and does not cause any expansion of bignum data.
Note, it would be tempting to rewrite the deprecated version as a
success-valued comma expression, such as;
   #define BN_zero(a) ((a)->top = (a)->neg = 0, 1)
However, this evaluates 'a' twice and would confuse initialisation loops
(eg. while(..) { BN_zero(bn++) } ). As such, the deprecated version
continues to use BN_set_word(). 
						
						
					 
					
						2004-03-13 23:04:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9e051bac13 
					 
					
						
						
							
							Document a change I'd already made, and at the same time, correct the  
						
						 
						
						... 
						
						
						
						change to work properly; BN_zero() should set 'neg' to zero as well as
'top' to match the behaviour of BN_new(). 
						
						
					 
					
						2004-03-13 22:10:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						30fbcaa213 
					 
					
						
						
							
							IRIX 6.x shared build fix-up.  
						
						 
						
						... 
						
						
						
						For reference. Note that both cc and gcc support -Wl flag, but we can't
use -Wl,-[not]all with both drivers, because cc rearranges options
passed through -Wl. We can't use -Wl,-all,libcrypto.a,-notall with cc
either, because it refuses to start with "no input" error. 
						
						
					 
					
						2004-03-12 21:52:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						373c88faef 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:21 +0000  
						
						 
						
						
						
						
					 
					
						2004-03-10 09:23:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14813d8123 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:18 +0000  
						
						 
						
						
						
						
					 
					
						2004-03-10 09:23:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92f2437f48 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:15 +0000  
						
						 
						
						
						
						
					 
					
						2004-03-10 09:23:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da959761ff 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:13 +0000  
						
						 
						
						
						
						
					 
					
						2004-03-10 09:23:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d8cd25aa0d 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:12 +0000  
						
						 
						
						
						
						
					 
					
						2004-03-10 09:23:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d63d4f46fc 
					 
					
						
						
							
							file Makefile was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:09 +0000  
						
						 
						
						
						
						
					 
					
						2004-03-10 09:23:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						93825dddad 
					 
					
						
						
							
							static  
						
						 
						
						
						
						
					 
					
						2004-03-10 01:20:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a8aa764d3c 
					 
					
						
						
							
							Minimise the amount of code dependent on BN_DEBUG_RAND. In particular,  
						
						 
						
						... 
						
						
						
						redefine bn_clear_top2max() to be a NOP in the non-debugging case, and
remove some unnecessary usages in bn_nist.c.
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe, Ulf Möller 
						
						
					 
					
						2004-03-09 03:53:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e7716b7a19 
					 
					
						
						
							
							More changes coming out of the bignum auditing. BN_CTX_get() should ideally  
						
						 
						
						... 
						
						
						
						return a "zero" bignum as BN_new() does - so reset 'top'. During
BN_CTX_end(), released bignums should be consistent so enforce this in
debug builds. Also, reduce the number of wasted BN_clear_free() calls from
BN_CTX_end() (typically by 75% or so).
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe, Ulf Möller 
						
						
					 
					
						2004-03-09 03:47:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4e3150f00 
					 
					
						
						
							
							Fix policy constraints syntax.  
						
						 
						
						
						
						
					 
					
						2004-03-08 18:15:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						edec614efd 
					 
					
						
						
							
							Support for inhibitAnyPolicy extension.  
						
						 
						
						
						
						
					 
					
						2004-03-08 13:56:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						2457c19df1 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2004-03-06 08:43:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5fa5eb71a4 
					 
					
						
						
							
							Cleanup ASN1 OID module when it exits.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:47:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f39976da3 
					 
					
						
						
							
							Call autoconfig code in pkcs7 utility.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:46:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						216ad9ef58 
					 
					
						
						
							
							Memory leak fix.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:39:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc50157010 
					 
					
						
						
							
							Various X509 fixes. Disable broken certificate workarounds  
						
						 
						
						... 
						
						
						
						when X509_V_FLAG_X509_STRICT is set. Check for CRLSign in
CRL issuer certificates. Reject CRLs with unhandled (any)
critical extensions. 
						
						
					 
					
						2004-03-05 17:16:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						91180d45f9 
					 
					
						
						
							
							Typos.  
						
						 
						
						... 
						
						
						
						Reported by: Jose Castejon-Amenedo <Jose.Castejon-Amenedo@hp.com > 
						
						
					 
					
						2004-03-04 21:44:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d9f40bbe55 
					 
					
						
						
							
							Make our page with pointers to binary distributions visible in the FAQ  
						
						 
						
						
						
						
					 
					
						2004-03-04 07:47:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec7c9ee8b8 
					 
					
						
						
							
							Indent some of the code examples.  
						
						 
						
						
						
						
					 
					
						2004-03-02 13:39:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f82bb9cb9c 
					 
					
						
						
							
							Config docs.  
						
						 
						
						
						
						
					 
					
						2004-03-02 13:31:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5a8922aed5 
					 
					
						
						
							
							Documentation of the KISS autoconfig functions.  
						
						 
						
						
						
						
					 
					
						2004-03-02 01:01:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f2c1812560 
					 
					
						
						
							
							More autoconfig docs.  
						
						 
						
						
						
						
					 
					
						2004-03-01 19:15:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4cfa4ae820 
					 
					
						
						
							
							Avoid a memory leak in OCSP_parse_url().  
						
						 
						
						... 
						
						
						
						Notified by Paul Siegel <psiegel@corestreet.com > 
						
						
					 
					
						2004-03-01 14:58:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a30af36c77 
					 
					
						
						
							
							Initial docs for the OpenSSL library configuration via openssl.cnf  
						
						 
						
						
						
						
					 
					
						2004-03-01 01:04:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5075521e75 
					 
					
						
						
							
							Add ECDSA documentation.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2004-02-27 23:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ee3a47a994 
					 
					
						
						
							
							AES is spelled AES, not ASE.  Oops...  
						
						 
						
						
						
						
					 
					
						2004-02-27 02:24:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f727266ae8 
					 
					
						
						
							
							Make sure the given EVP_PKEY is updated in the PEM_STRING_PKCS8INF case also.  
						
						 
						
						... 
						
						
						
						PR: 833 
						
						
					 
					
						2004-02-26 22:07:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8bb0c8522a 
					 
					
						
						
							
							Document the AES options for 'openssl smime'.  
						
						 
						
						... 
						
						
						
						PR: 834 
						
						
					 
					
						2004-02-26 21:44:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c6700d2746 
					 
					
						
						
							
							A cleanup of the ecs_ossl.c code and some (doxygen) comments for ecdsa.h  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-02-22 19:32:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						1b06804491 
					 
					
						
						
							
							When adding positive elements, we can use BN_uadd() instead of BN_add().  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-02-22 19:30:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc90f64d56 
					 
					
						
						
							
							Use an OCTET STRING for the encoding of an OCSP nonce value.  
						
						 
						
						... 
						
						
						
						The old raw format can't be handled by some implementations
and updates to RFC2560 will make this mandatory. 
						
						
					 
					
						2004-02-19 18:16:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52161e090d 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:21 +0000  
						
						 
						
						
						
						
					 
					
						2004-02-13 21:56:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6c43032121 
					 
					
						
						
							
							minor signed/unsigned warning fixes  
						
						 
						
						
						
						
					 
					
						2004-02-10 18:46:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37ead9be0b 
					 
					
						
						
							
							Fix handling of -offset and -length in asn1parse tool.  
						
						 
						
						... 
						
						
						
						If -offset exceeds -length of data available exit with an error.
Don't read past end of total data available when -offset supplied.
If -length exceeds total available truncate it. 
						
						
					 
					
						2004-02-08 13:30:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1751034669 
					 
					
						
						
							
							Typo in crypto/bn/asm/x86_64.c, bn_div_words().  
						
						 
						
						... 
						
						
						
						PR: 821 
						
						
					 
					
						2004-02-07 09:51:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4575825f1 
					 
					
						
						
							
							Add flag to avoid continuous  
						
						 
						
						... 
						
						
						
						memory allocate when calling EVP_MD_CTX_copy_ex().
Without this HMAC is several times slower than
< 0.9.7. 
						
						
					 
					
						2004-02-01 13:39:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9e55e06501 
					 
					
						
						
							
							file fips_test_suite.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2004-01-30 19:22:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d04b1b4656 
					 
					
						
						
							
							Typo in PA-RISC 2 rules in crypto/bn/Makefile.ssl  
						
						 
						
						
						
						
					 
					
						2004-01-30 05:41:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1247092776 
					 
					
						
						
							
							HP/UX PA-RISC 2 targets update.  
						
						 
						
						
						
						
					 
					
						2004-01-29 22:16:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e22a1df55 
					 
					
						
						
							
							Remove typos  
						
						 
						
						
						
						
					 
					
						2004-01-29 11:24:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb5810d21d 
					 
					
						
						
							
							-Wtraditional was a little too much...  
						
						 
						
						
						
						
					 
					
						2004-01-29 10:56:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						61a88c31c0 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2004-01-29 02:55:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b86ed8d18f 
					 
					
						
						
							
							In the development branch, it feels quite all right to warn on a lot  
						
						 
						
						... 
						
						
						
						more stuff. 
						
						
					 
					
						2004-01-29 00:05:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e5886a2388 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-01-28 19:07:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d1ebe0bd1 
					 
					
						
						
							
							Add the missing parts for DES CFB1 and CFB8.  
						
						 
						
						... 
						
						
						
						Add the corresponding AES parts while I'm at it.
make update 
						
						
					 
					
						2004-01-28 19:05:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1fb724449d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-01-28 18:38:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						721a5e83f9 
					 
					
						
						
							
							Unsigned vs. signed problem removed  
						
						 
						
						
						
						
					 
					
						2004-01-28 08:48:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6df617a59d 
					 
					
						
						
							
							#undef _POSIX_C_SOURCE in ui_openssl.c ruined IRIX builds. Comment on why  
						
						 
						
						... 
						
						
						
						_POSIX_C_SOURCE needed in first place. 
						
						
					 
					
						2004-01-27 22:06:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8c6336b0aa 
					 
					
						
						
							
							CFB DES sync-up with FIPS branch.  
						
						 
						
						
						
						
					 
					
						2004-01-27 21:47:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						87203dc99a 
					 
					
						
						
							
							Avoid signed vs. unsigned warnings (which are treated like errors on  
						
						 
						
						... 
						
						
						
						Windows). 
						
						
					 
					
						2004-01-27 01:16:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4de65cbc06 
					 
					
						
						
							
							S_IFBLK and S_IFCHR may not exist in some places (like Windows), so  
						
						 
						
						... 
						
						
						
						let's check for those macros, and if they aren't defined, let's assume
there aren't Unixly devices on this platform. 
						
						
					 
					
						2004-01-26 23:45:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						27b2b78f90 
					 
					
						
						
							
							Even though C specification explicitly says that constant type "stretches"  
						
						 
						
						... 
						
						
						
						automatically to accomodate the value, some compilers fail to do so. Most
notably 0x0123456789ABCDEF should come out as long long in 32-bit context,
but HP compiler truncates it to 32-bit value. Which in turn breaks GF(2^m)
arithmetics in hpux-parisc2-cc build. Therefore this fix... 
						
						
					 
					
						2004-01-25 10:53:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3a160f1dc6 
					 
					
						
						
							
							Fix declaration inconsistency in ecparam.c.  
						
						 
						
						
						
						
					 
					
						2004-01-24 16:51:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7f24b1c3e9 
					 
					
						
						
							
							Get rid of bogus warning when compiling with Sun vendor compiler.  
						
						 
						
						
						
						
					 
					
						2004-01-24 16:31:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a5e8bcfb7b 
					 
					
						
						
							
							We're passed p, so let's use p instead of making assumptions.  
						
						 
						
						
						
						
					 
					
						2004-01-24 01:16:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d5c3c1939 
					 
					
						
						
							
							Typo...  
						
						 
						
						
						
						
					 
					
						2004-01-22 22:36:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						815d7057be 
					 
					
						
						
							
							Replace expired certificate.  
						
						 
						
						
						
						
					 
					
						2004-01-21 13:08:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						30cb9ec715 
					 
					
						
						
							
							SHA-1 assembler tune-up for Intel P4  
						
						 
						
						
						
						
					 
					
						2004-01-21 08:17:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af6dab9b00 
					 
					
						
						
							
							Adding a slash between the directoryt and the file is a problem with  
						
						 
						
						... 
						
						
						
						VMS.  The C RTL can handle it well if the "directory" is a logical
name with no colon, therefore ending being 'logname/file'.  However,
if the given logical names actually has a colon, or if you use a full
VMS-syntax directory, you end up with 'logname:/file' or
'dev:[dir1.dir2]/file', and that isn't handled in any good way.
So, on VMS, we need to check if the directory string ends with a
separator (one of ':', ']' or '>' (< and > can be used instead [ and
])), and handle that by not inserting anything between the directory
spec and the file name.  In all other cases, it's assumed the
directory spec is a logical name, so we need to place a colon between
it and the file.
Notified by Kevin Greaney <kevin.greaney@hp.com >. 
						
						
					 
					
						2004-01-10 18:04:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						cdb42bcf0c 
					 
					
						
						
							
							Cover all DSA setups when running tests  
						
						 
						
						... 
						
						
						
						PR: #748 
Submitted by: Kirill Kochetkov <kochet@ixbt.com > 
						
						
					 
					
						2004-01-08 07:46:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						fc56b52924 
					 
					
						
						
							
							Updates to s_time manual page  
						
						 
						
						... 
						
						
						
						PR: #570 
Submitted by: Martin Witzel <MWITZEL@de.ibm.com > 
						
						
					 
					
						2004-01-08 07:38:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a32fc687de 
					 
					
						
						
							
							Add s_time manual page  
						
						 
						
						... 
						
						
						
						Submitted by: "Martin Witzel" <MWITZEL@de.ibm.com >
PR: #570  
						
						
					 
					
						2004-01-04 18:59:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						c0017a5a65 
					 
					
						
						
							
							Update URI  
						
						 
						
						... 
						
						
						
						Submitted by: Gertjan van Oosten <gertjan@West.NL >
PR: #804  
						
						
					 
					
						2004-01-04 18:05:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						344e86645d 
					 
					
						
						
							
							unintptr_t and <inttypes.h> are not strictly portable with respect to  
						
						 
						
						... 
						
						
						
						ANSI C 89.
Undo change to maintain compatibility. 
						
						
					 
					
						2004-01-04 17:53:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						075521725d 
					 
					
						
						
							
							Fix Perl problems on sparc64.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:13:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5fdf06666c 
					 
					
						
						
							
							Avoid including cryptlib.h, it's not really needed.  
						
						 
						
						... 
						
						
						
						Check if IDEA is being built or not.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:10:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f28e8bd300 
					 
					
						
						
							
							Only use environment variables if uid and gid are the same as euid and egid.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:07:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						de02ec2767 
					 
					
						
						
							
							Check if a random "file" is really a device file, and treat it  
						
						 
						
						... 
						
						
						
						specially if it is.
Add a few OpenBSD-specific cases.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:02:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						112341031b 
					 
					
						
						
							
							Correct documentation typos.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 15:04:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7cf803230b 
					 
					
						
						
							
							OpenBSD-internal changes.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 15:02:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						79b42e7654 
					 
					
						
						
							
							Use sh explicitely to run point.sh  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 14:59:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f0c5db92f7 
					 
					
						
						
							
							Include strings.h so strcasecmp() and strncasecmp() get properly declared.  
						
						 
						
						
						
						
					 
					
						2003-12-27 14:54:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d420ac2c7d 
					 
					
						
						
							
							Use BUF_strlcpy() instead of strcpy().  
						
						 
						
						... 
						
						
						
						Use BUF_strlcat() instead of strcat().
Use BIO_snprintf() instead of sprintf().
In some cases, keep better track of buffer lengths.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 14:40:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b79aa47a0c 
					 
					
						
						
							
							Add a newline at the end of the last line.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 14:26:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e88c577738 
					 
					
						
						
							
							Typos.  
						
						 
						
						
						
						
					 
					
						2003-12-20 22:48:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a2b0de98af 
					 
					
						
						
							
							To figure out if we're going outside the buffer, use the size of the buffer,  
						
						 
						
						... 
						
						
						
						not the size of the integer used to index in said buffer.
PR: 794
Notified by: Rhett Garber <rhett_garber@hp.com > 
						
						
					 
					
						2003-12-11 18:01:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4775944f81 
					 
					
						
						
							
							Document that you need to include x509.h (to get [i2d|d2i]_RSA_PUBKEY()).  
						
						 
						
						... 
						
						
						
						Correct the typo PUKEY... 
						
						
					 
					
						2003-12-10 14:31:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2abd5b7aa0 
					 
					
						
						
							
							Document that you need to include x509.h (to get [i2d|d2i]_DSA_PUBKEY()).  
						
						 
						
						... 
						
						
						
						Correct the typo PUKEY... 
						
						
					 
					
						2003-12-10 13:57:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						380e145daf 
					 
					
						
						
							
							Add "dif" variable to clean up the loop implementations.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-12-06 11:55:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						a9f2330f43 
					 
					
						
						
							
							Skip a curve with generator of non-prime order.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-12-06 11:41:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						ce38bb1a8c 
					 
					
						
						
							
							Avoid segfault if ret==0.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-12-06 11:39:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						919f8bcd21 
					 
					
						
						
							
							Restructure make targets to allow parallel make.  
						
						 
						
						... 
						
						
						
						Submitted by: Witold Filipczyk <witekfl@poczta.gazeta.pl >
PR: #513  
						
						
					 
					
						2003-12-03 16:29:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2bfd2c74d2 
					 
					
						
						
							
							Incremental cleanups to bn_lib.c.  
						
						 
						
						... 
						
						
						
						- Add missing bn_check_top() calls and relocate some others
- Use BN_is_zero() where appropriate
- Remove assert()s that bn_check_top() is already covering
- Simplify the code in places (esp. bn_expand2())
- Only keep ambiguous zero handling if BN_STRICT isn't defined
- Remove some white-space and make some other aesthetic tweaks 
						
						
					 
					
						2003-12-02 20:01:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						82b2f57e30 
					 
					
						
						
							
							Use the BN_is_odd() macro in place of code that (inconsistently) does much  
						
						 
						
						... 
						
						
						
						the same thing.
Also, I have some stuff on the back-burner related to some BN_CTX notes
from Peter Gutmann about his cryptlib hacks to the bignum code. The BN_CTX
comments are there to remind me of some relevant points in the code. 
						
						
					 
					
						2003-12-02 03:28:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2ae1ea3788 
					 
					
						
						
							
							BN_FLG_FREE is of extremely dubious usefulness, and is only referred to  
						
						 
						
						... 
						
						
						
						once in the source (where it is set for the benefit of no other code
whatsoever). I've deprecated the declaration in the header and likewise
made the use of the flag conditional in bn_lib.c. Note, this change also
NULLs the 'd' pointer in a BIGNUM when it is reset but not deallocated. 
						
						
					 
					
						2003-12-02 03:16:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						34066d741a 
					 
					
						
						
							
							Declare the static BIGNUM "BN_value_one()" more carefully.  
						
						 
						
						
						
						
					 
					
						2003-12-01 23:13:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b74cc0776b 
					 
					
						
						
							
							Add missing bn_check_top()s to bn_kron.c, remove some miscellaneous  
						
						 
						
						... 
						
						
						
						white-space, and include extra headers to satisfy debugging builds. 
						
						
					 
					
						2003-12-01 23:11:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e7e5fe4705 
					 
					
						
						
							
							Add missing bn_check_top()s to bn_gf2m.c and remove some miscellaneous  
						
						 
						
						... 
						
						
						
						white-space. 
						
						
					 
					
						2003-12-01 23:10:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						998ae048e7 
					 
					
						
						
							
							The bn_set_max() macro is only "used" by the bn_set_[low|high]() macros  
						
						 
						
						... 
						
						
						
						which, in turn, are used nowhere at all. This is a good thing because
bn_set_max() would currently generate code that wouldn't compile (BIGNUM
has no 'max' element).
The only apparent use for bn_set_[low|high] would be for implementing
windowing algorithms, and all of openssl's seem to use bn_***_words()
helpers instead (including the BN_div() that Nils fixed recently, which had
been using independently-coded versions of what these unused macros are
intended for). I'm therefore consigning these macros to cvs oblivion in the
name of readability. 
						
						
					 
					
						2003-12-01 22:11:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e65c2b9872 
					 
					
						
						
							
							bn_fix_top() exists for compatibility's sake and is mapped to  
						
						 
						
						... 
						
						
						
						bn_correct_top() or bn_check_top() depending on debug settings. For
internal source, all bn_fix_top()s should be converted one way or the other
depending on whether the use of bn_correct_top() is justified.
For BN_div_recp(), these cases should not require correction if the other
bignum functions are doing their jobs properly, so convert to
bn_check_top(). 
						
						
					 
					
						2003-12-01 21:59:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2fe9ab8e20 
					 
					
						
						
							
							It was pointed out to me that if the requested size is 0, we shouldn't  
						
						 
						
						... 
						
						
						
						ty to allocate anything at all.  This will allow eNULL to still work.
PR: 751
Notified by: Lutz Jaenicke 
						
						
					 
					
						2003-12-01 13:25:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1145e03870 
					 
					
						
						
							
							Check that OPENSSL_malloc() really returned some memory.  
						
						 
						
						... 
						
						
						
						PR: 751
Notified by: meder@mcs.anl.gov 
Reviewed by: Lutz Jaenicke, Richard Levitte 
						
						
					 
					
						2003-12-01 12:11:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6781efb92f 
					 
					
						
						
							
							CRYPTO_malloc(), CRYPTO_realloc() and variants of them should return NULL  
						
						 
						
						... 
						
						
						
						if the give size is 0.
This is a thought that came up in PR 751. 
						
						
					 
					
						2003-12-01 12:06:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						0bf1c1d80d 
					 
					
						
						
							
							Some more ASFLAGS settings required  
						
						 
						
						... 
						
						
						
						PR: #735 
Submitted by: Tim Rice <tim@multitalents.net > 
						
						
					 
					
						2003-12-01 08:12:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6ed474ca66 
					 
					
						
						
							
							Add more debugging to my Configure target, and "make update" to incorporate  
						
						 
						
						... 
						
						
						
						this and a few other changes. 
						
						
					 
					
						2003-11-30 23:29:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						46cb8d3689 
					 
					
						
						
							
							If BN_STRICT is defined, don't accept an ambiguous representation of zero  
						
						 
						
						... 
						
						
						
						(ie. where top may be zero, or it may be one if the corresponding word is
set to zero). Note, this only affects the macros in bn.h, there are probably
similar corrections required in some c files.
Also, clarify the audit-related macros at the top of the header. Mental
note: I must not forget to clean all this out before 0.9.8 is released ... 
						
						
					 
					
						2003-11-30 22:23:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						23fc5ac646 
					 
					
						
						
							
							Improve a couple of the bignum macros. Note, this doesn't eliminate  
						
						 
						
						... 
						
						
						
						tolerance of ambiguous zero-representation, it just improves
BN_abs_is_word() and simplifies other macros that depend on it. 
						
						
					 
					
						2003-11-30 22:02:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5734bebe05 
					 
					
						
						
							
							Make BN_DEBUG_RAND less painfully slow by only consuming one byte of  
						
						 
						
						... 
						
						
						
						pseudo-random data for each bn_pollute(). 
						
						
					 
					
						2003-11-30 21:21:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						657a919598 
					 
					
						
						
							
							This improves the placement of check_top() macros in a couple of bn_lib  
						
						 
						
						... 
						
						
						
						functions. 
						
						
					 
					
						2003-11-29 20:34:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6859bb1a22 
					 
					
						
						
							
							Make sure the documentation matches reality.  
						
						 
						
						... 
						
						
						
						PR: 755
Notified by: Jakub Bogusz <qboosh@pld-linux.org > 
						
						
					 
					
						2003-11-29 10:33:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3822740ce3 
					 
					
						
						
							
							We're getting a clash with C++ because it has a type called 'list'.  
						
						 
						
						... 
						
						
						
						Therefore, change all instances of the symbol 'list' to something else.
PR: 758
Submitted by: Frédéric Giudicelli <groups@newpki.org > 
						
						
					 
					
						2003-11-29 10:25:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0d78bc3356 
					 
					
						
						
							
							Add IPSec/IKE/Oakley curves.  
						
						 
						
						... 
						
						
						
						PR: 768
Submitted by: Vadim Fedukovich <vf@unity.net > 
						
						
					 
					
						2003-11-29 09:25:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d87b79bf31 
					 
					
						
						
							
							Damnit, I'm sick of having to do something special every time a module  
						
						 
						
						... 
						
						
						
						that gets built before objects barfs all over the place because it
uses a new NID that hasn't had a chance of getting defined yet (in
this case, it was about a couple of new EC curves, and therefore a
couple of new corresponding NIDs).
I'm placing objects first in SDIRS!  There. 
						
						
					 
					
						2003-11-29 09:19:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						70ef9c5a3d 
					 
					
						
						
							
							RSA_size() and DH_size() return the amount of bytes in a key, and we  
						
						 
						
						... 
						
						
						
						compared it to the amount of bits required...
PR: 770
Submitted by: c zhang <czhang2005@hotmail.com > 
						
						
					 
					
						2003-11-28 23:03:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b727907ae8 
					 
					
						
						
							
							1024 is the export key bits limit according to current regulations, not 512.  
						
						 
						
						... 
						
						
						
						PR: 771
Submitted by: c zhang <czhang2005@hotmail.com > 
						
						
					 
					
						2003-11-28 22:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						444c3a8492 
					 
					
						
						
							
							Get rid of some signed/unsigned comparison warnings.  
						
						 
						
						
						
						
					 
					
						2003-11-28 16:39:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b352c58db 
					 
					
						
						
							
							Make a number of changes to the OS/2 build.  Submitter's comment below.  
						
						 
						
						... 
						
						
						
						PR: 732
Submitted by: Ilya Zakharevich <nospam-abuse@ilyaz.org >
Submitter's comment:
This patch:
a) Introduces a new file os2/backwardify.pl.
b) Introduces a new mk1mf.pl variable $preamble.  As you can see, it may
   be used also to move some OS-specific code to VC-CE too (the the
   first chunk of the patch);
c) The DESCRIPTION specifier of the .def file is made more informative:
   now it contains the version number too.  On OS/2 it is made conformant
   to OS/2 conventions; in particular, when one runs the standard command
	BLDLEVEL this.DLL
   one can see:
   Vendor:      www.openssl.org/
   Revision:    0.9.7c
   Description: OpenSSL: implementation of Secure Socket Layer; DLL for library crypto.  Build for EMX -Zmtd
   [I did not make Win32 descriptions as informative as this - I'm afraid to
    break something.  Be welcome to fix this.]
d) On OS/2 the generated DLL was hardly usable (it had a shared initialized
   data segment).
e) On OS/2 the generated DLLs had names like ssl.dll.  However, DLL names on
   OS/2 are "global data".  It is hard to have several DLLs with the same
   name on the system.  Thus this precluded coexistence of OpenSSL with DLLs
   for other SLL implementations - or other name clashes.  I transparently
   changed the names of the DLLs to open_ssl.dll and cryptssl.dll.
f) The file added in (a) is used to create "forwarder" DLLs, so the
   applications expecting the "old" DLL names may use the new DLLs
   transparently.  (A presence of these DLLs on the system nullifies (e),
   but makes old applications work.  This is a stopgap measure until the
   old applications are relinked.  Systems with no old applications do not
   need these DLLs, so may enjoy all the benefits of (e).)
   The new DLLs are placed in os2/ and os2/noname subdirectories.
g) The makefiles created with os2/OS2-EMX.cmd did not work (some mysterious
   meaningless failures).  The change to util/pl/OS2-EMX.pl uses the
   variable introduced in (b) to switch the Makefiles to SHELL=sh syntax.
   All these backslashes are removed, and the generated Makefiles started to
   work.
h) Running os2/OS2-EMX.cmd now prints out what to do next. 
						
						
					 
					
						2003-11-28 14:51:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						03ddbdd9b9 
					 
					
						
						
							
							Move another common functionality (reproduced so far with cut'n'paste)  
						
						 
						
						... 
						
						
						
						to apps.c, and give it the hopefully descriptive name parse_yesno(). 
						
						
					 
					
						2003-11-28 14:45:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5ebdb39084 
					 
					
						
						
							
							Let's use text/plain in the example instead of crapy HTML.  
						
						 
						
						... 
						
						
						
						PR: 777
Submitted by: Michael Shields <mshields@sunblocksystems.com > 
						
						
					 
					
						2003-11-28 14:32:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d45a098472 
					 
					
						
						
							
							Forgot to change the declaration of do_subject() to one of parse_name()...  
						
						 
						
						
						
						
					 
					
						2003-11-28 14:18:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6d5ffb591b 
					 
					
						
						
							
							Move do_subject() to apps.c and rename it to parse_name().  The  
						
						 
						
						... 
						
						
						
						rationale behind the move is that it's use by several applications.
The rationale behind the name change is that it describes what the
function does a bit better. 
						
						
					 
					
						2003-11-28 14:07:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7ce9e425bc 
					 
					
						
						
							
							Allow multi-valued rdns in subjects.  This adds the -multivalue-rdn option  
						
						 
						
						... 
						
						
						
						to 'openssl req' and 'openssl ca'.
PR: 779
Submitted by: Michael Bell <michael.bell@cms.hu-berlin.de >
Reviewed by: Richard Levitte
(there will be some follow-up changes) 
						
						
					 
					
						2003-11-28 14:04:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d8743f490 
					 
					
						
						
							
							Netware-specific changes,  
						
						 
						
						... 
						
						
						
						PR: 780
Submitted by: Verdon Walker <VWalker@novell.com >
Reviewed by: Richard Levitte 
						
						
					 
					
						2003-11-28 13:10:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4c8b4f9d03 
					 
					
						
						
							
							Change my debugging entries to do fierce BIGNUM debugging.  
						
						 
						
						
						
						
					 
					
						2003-11-28 12:54:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						81ba5f6713 
					 
					
						
						
							
							Due to recent debugging bursts, openssl should be more or less solid  
						
						 
						
						... 
						
						
						
						against inconsistent BIGNUMs coming out of any of its API functions. So
this change no longer "fixes" the bn_print.c functions, but it makes for
cleaner code. This patch was a part of ticket 697.
PR: 697
Submitted by: Otto Moerbeek
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-25 21:07:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6defae04f3 
					 
					
						
						
							
							Fix some handling in bn_word. This also resolves the issues observed in  
						
						 
						
						... 
						
						
						
						ticket 697 (though uses a different solution than the proposed one). This
problem was initially raised by Otto Moerbeek.
PR: 697
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-25 20:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e1064adfd3 
					 
					
						
						
							
							Some changes for bn_gf2m.c: better error checking plus some minor  
						
						 
						
						... 
						
						
						
						optimizations.
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-25 03:41:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						d7559f16cd 
					 
					
						
						
							
							Free "engine" resource in case of failure to prevent memory leak  
						
						 
						
						... 
						
						
						
						PR: #778 
Submitted by: George Mitchell <george@m5p.com > 
						
						
					 
					
						2003-11-24 16:48:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9e989810ba 
					 
					
						
						
							
							BN_div() cleanup: replace the use of BN_sub and BN_add with bn_sub_words  
						
						 
						
						... 
						
						
						
						and bn_add_words to avoid using fake bignums to window other bignums that
can lead to corruption. This change allows all bignum tests to pass with
BN_DEBUG and BN_DEBUG_RAND debugging and valgrind. NB: This should be
tested on a few different architectures and configuration targets, as the
bignum code this deals with is quite preprocessor (and assembly) sensitive.
Submitted by: Nils Narsch
Reviewed by: Geoff Thorpe, Ulf Moeller 
						
						
					 
					
						2003-11-22 20:23:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ec2179cf81 
					 
					
						
						
							
							Fix a small bug in str_copy: if more than one variable is replaced, make  
						
						 
						
						... 
						
						
						
						sure the current length is used to calculate the new buffer length instead
of using the old length (prior to any variable substitution).
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-21 21:42:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a8287a90ea 
					 
					
						
						
							
							Give CRLDP its standard name.  
						
						 
						
						... 
						
						
						
						Max req -x509 use V1 if extensions section absent. 
						
						
					 
					
						2003-11-20 22:45:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ad5f0ed509 
					 
					
						
						
							
							hpux64-parisc2-gcc target added. Once it is verified, ./config should  
						
						 
						
						... 
						
						
						
						be modified to choose it instead of hpux64-parisc-gcc, which should
then be removed. hpux64-parisc-cc is removed already now as redundant
[in case you wonder, 64-bit HP-UX ABI *implies* PA-RISC2.0]. 
						
						
					 
					
						2003-11-20 19:10:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a4c8baf5e 
					 
					
						
						
							
							./config failed to correctly detect if gcc uses 64-bit ABI on HP-UX.  
						
						 
						
						... 
						
						
						
						PR: 772 
						
						
					 
					
						2003-11-20 18:33:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						95de3d204f 
					 
					
						
						
							
							Make sure to initialize AES counters to obtain proper results.  
						
						 
						
						... 
						
						
						
						Submitted by: Kirill Kochetkov <kochet@ixbt.com >
PR: #748  
						
						
					 
					
						2003-11-18 18:27:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						31182ad39b 
					 
					
						
						
							
							re-enable the test, keeping the original method for RAND_pseudo_bytes  
						
						 
						
						... 
						
						
						
						which is used by BN_DEBUG_RAND
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-16 19:33:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f35232e6f3 
					 
					
						
						
							
							Catch error condition to prevent NULL pointer dereference.  
						
						 
						
						... 
						
						
						
						Submitted by: Goetz Babin-Ebell <babin-ebell@trustcenter.de >
PR: #766  
						
						
					 
					
						2003-11-16 16:30:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						fda5e38551 
					 
					
						
						
							
							Provide ASFLAGS in the subdirectories handling assembler code.  
						
						 
						
						... 
						
						
						
						Submitted by: Tim Rice <tim@multitalents.net >
PR: #735 , #765  
						
						
					 
					
						2003-11-16 14:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						ac9c6e10a4 
					 
					
						
						
							
							The x9.62 tests replace the PRNG with specific numbers,  
						
						 
						
						... 
						
						
						
						so don't run them if BN_DEBUG_RAND is defined.
Also, fix another small bug.
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-16 12:24:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						1a01733047 
					 
					
						
						
							
							BN_set_bit() etc should use "unsigned int".  
						
						 
						
						... 
						
						
						
						Keep it as is to avoid an API change, but check for negativ values.
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-15 08:37:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d2cd46127c 
					 
					
						
						
							
							Less restrictive debugging build.  
						
						 
						
						
						
						
					 
					
						2003-11-14 14:06:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9dde17e8b4 
					 
					
						
						
							
							This rewrites two "for" loops in BN_rshift() - equality with zero is  
						
						 
						
						... 
						
						
						
						generally a more efficient comparison than comparing two integers, and the
first of these two loops was off-by-one (copying one too many values). This
change also removes a superfluous assignment that would set an unused word
to zero (and potentially allow an overrun in some cases).
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-13 15:03:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						37af03d311 
					 
					
						
						
							
							General improvements to the ec_asn1.c code. This squashes at least one bug  
						
						 
						
						... 
						
						
						
						(where it was impossible to create an EC certificate with a compressed
public key), and has some style improvements based on some comments from
Steve Henson about use of the ASN1 macros.
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-10 18:09:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f7a397cc8d 
					 
					
						
						
							
							Avoid possible memory leaks in error-handling.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-10 18:05:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cd2e8a6f2d 
					 
					
						
						
							
							Print out GeneralizedTime and UTCTime in ASN1_STRING_print_ex().  
						
						 
						
						
						
						
					 
					
						2003-11-10 01:37:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						d18b993c43 
					 
					
						
						
							
							Geoff suggested a more succinct description for "top".  
						
						 
						
						
						
						
					 
					
						2003-11-07 01:33:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						e6e81c5894 
					 
					
						
						
							
							oops... the description of ->top was inaccurate (the example is correct though)  
						
						 
						
						
						
						
					 
					
						2003-11-07 00:07:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f75abcefed 
					 
					
						
						
							
							This extends the debugging macros to use "pollution" during  
						
						 
						
						... 
						
						
						
						bn_correct_top(), previously only bn_check_top() did this. 
						
						
					 
					
						2003-11-06 23:24:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						18f62d4b82 
					 
					
						
						
							
							Add debug-screening of input parameters to some functions I'd missed  
						
						 
						
						... 
						
						
						
						before. 
						
						
					 
					
						2003-11-06 23:13:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5c0c22803e 
					 
					
						
						
							
							Put more debug screening in BN_div() and correct a comment.  
						
						 
						
						
						
						
					 
					
						2003-11-06 23:11:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0ef85c7f45 
					 
					
						
						
							
							This is a revert of my previous commit to "improve" the declaration of  
						
						 
						
						... 
						
						
						
						constant BIGNUMs. It turns out that this trips up different but equally
useful compiler warnings to -Wcast-qual, and so wasn't worth the ugliness
it created. (Thanks to Ulf for the forehead-slap.) 
						
						
					 
					
						2003-11-05 19:30:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						078dd1a0f9 
					 
					
						
						
							
							typo in comment  
						
						 
						
						
						
						
					 
					
						2003-11-05 17:28:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						2b96c95197 
					 
					
						
						
							
							cleanup as discussed with Geoff  
						
						 
						
						
						
						
					 
					
						2003-11-05 17:28:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c5f1c7b4d8 
					 
					
						
						
							
							Cygwin debugging  
						
						 
						
						
						
						
					 
					
						2003-11-05 17:27:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d870740cd7 
					 
					
						
						
							
							Put the first stage of my bignum debugging adventures into CVS. This code  
						
						 
						
						... 
						
						
						
						is itself experimental, and in addition may cause execution to break on
existing openssl "bugs" that previously were harmless or at least
invisible. 
						
						
					 
					
						2003-11-04 22:54:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d8ec0dcf45 
					 
					
						
						
							
							Avoid some shadowed variable names.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-04 00:51:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c465e7941e 
					 
					
						
						
							
							This is the least unacceptable way I've found for declaring the bignum data  
						
						 
						
						... 
						
						
						
						and structures as constant without having to cast away const at any point.
There is still plenty of other code that makes gcc's "-Wcast-qual" unhappy,
but crypto/bn/ is now ok. Purists are welcome to suggest alternatives. 
						
						
					 
					
						2003-11-04 00:29:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						933398f110 
					 
					
						
						
							
							Engines are usually binary, and should therefore be in INSTALLTOP  
						
						 
						
						... 
						
						
						
						rather than OPENSSLDIR. 
						
						
					 
					
						2003-10-31 10:48:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cfd06a6223 
					 
					
						
						
							
							Let exit codes propagate from within for loops.  
						
						 
						
						
						
						
					 
					
						2003-10-31 06:58:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a9fd78f9da 
					 
					
						
						
							
							bn_div() does some pretty nasty things with temporary variables,  
						
						 
						
						... 
						
						
						
						constructing BIGNUM structures with pointers offset into other bignums
(among other things). This corrects some of it that is too plainly insane,
and tries to ensure that bignums are normalised when passed to other
functions. 
						
						
					 
					
						2003-10-31 01:35:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5f747c7f4b 
					 
					
						
						
							
							When a BN_CTX is used for temporary workspace, the variables are sometimes  
						
						 
						
						... 
						
						
						
						left in an inconsistent state when they are released for later reuse. This
change resets the BIGNUMs when they are released back to the context. 
						
						
					 
					
						2003-10-30 01:07:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c4db1a8b5c 
					 
					
						
						
							
							This fixes a couple of cases where an inconsistent BIGNUM could be passed as  
						
						 
						
						... 
						
						
						
						input to a function. 
						
						
					 
					
						2003-10-30 01:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f7939fcd9a 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-10-29 23:25:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d531c9014d 
					 
					
						
						
							
							Tighten up my compiler settings.  
						
						 
						
						
						
						
					 
					
						2003-10-29 23:25:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						aca95e0b2f 
					 
					
						
						
							
							Remove a line that was causing redundant declarations.  
						
						 
						
						... 
						
						
						
						Obtained from: Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2003-10-29 22:55:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bc3c578208 
					 
					
						
						
							
							Copy-n-paste bug (don't mix variable declarations and code). This sets the  
						
						 
						
						... 
						
						
						
						callback structure just before it is needed. 
						
						
					 
					
						2003-10-29 22:30:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						06e4024d98 
					 
					
						
						
							
							Oops, this file already had the "empty source file" workaround but it  
						
						 
						
						... 
						
						
						
						requires -DPEDANTIC and was hidden at the bottom of the file. This moves it
to the top and removes the redundant declaration. 
						
						
					 
					
						2003-10-29 22:25:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8087d8f7ea 
					 
					
						
						
							
							Make md32_common.h friendlier to compiler warnings.  
						
						 
						
						... 
						
						
						
						Obtained from: Andy Polyakov <appro@openssl.org > 
						
						
					 
					
						2003-10-29 20:55:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						31166ec8f3 
					 
					
						
						
							
							Some provisional bignum debugging has begun to detect inconsistent BIGNUM  
						
						 
						
						... 
						
						
						
						structures being passed in to or out of API functions, and this corrects a
couple of cases found so far.
Also, lop off a couple of bytes of white-space. 
						
						
					 
					
						2003-10-29 20:47:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2754597013 
					 
					
						
						
							
							A general spring-cleaning (in autumn) to fix up signed/unsigned warnings.  
						
						 
						
						... 
						
						
						
						I have tried to convert 'len' type variable declarations to unsigned as a
means to address these warnings when appropriate, but when in doubt I have
used casts in the comparisons instead. The better solution (that would get
us all lynched by API users) would be to go through and convert all the
function prototypes and structure definitions to use unsigned variables
except when signed is necessary. The proliferation of (signed) "int" for
strictly non-negative uses is unfortunate. 
						
						
					 
					
						2003-10-29 20:24:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2ce90b9b74 
					 
					
						
						
							
							BN_CTX is opaque and the static initialiser BN_CTX_init() is not used  
						
						 
						
						... 
						
						
						
						except internally to the allocator BN_CTX_new(), as such this deprecates
the use of BN_CTX_init() in the API. Moreover, the structure definition of
BN_CTX is taken out of bn_lcl.h and moved into bn_ctx.c itself.
NDEBUG should probably only be "forced" in the top-level configuration, but
until it is I will avoid removing it from bn_ctx.c which might surprise
people with massive slow-downs in their keygens. So I've left it in
bn_ctx.c but tidied up the preprocessor logic a touch and made it more
tolerant of debugging efforts. 
						
						
					 
					
						2003-10-29 18:04:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e952ae4fc 
					 
					
						
						
							
							Removing those memcpy()s also took away the possibility for in and out to  
						
						 
						
						... 
						
						
						
						be the same.  Therefore, the removed memcpy()s need to be restored. 
						
						
					 
					
						2003-10-29 06:21:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						db59141467 
					 
					
						
						
							
							remove accidentally committed debugging cruft.  
						
						 
						
						
						
						
					 
					
						2003-10-29 05:35:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8a66d17899 
					 
					
						
						
							
							Remove an unnecessary cast that causes certain compilers (eg. mine) some  
						
						 
						
						... 
						
						
						
						confusion. Also silence a couple of signed/unsigned warnings. 
						
						
					 
					
						2003-10-29 05:00:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2eeaa0261e 
					 
					
						
						
							
							Remove redundant declaration.  
						
						 
						
						
						
						
					 
					
						2003-10-29 04:58:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8dc344ccbf 
					 
					
						
						
							
							Relax some over-zealous constification that gave some lhash-based code no  
						
						 
						
						... 
						
						
						
						choice but to have to cast away "const" qualifiers from their prototypes.
This does not remove constification restrictions from hash/compare
callbacks, but allows destructor commands to be run over a tables' elements
without bad casts. 
						
						
					 
					
						2003-10-29 04:57:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6bcd3f903a 
					 
					
						
						
							
							Comments out some unimplemented functions instead of redeclaring them.  
						
						 
						
						
						
						
					 
					
						2003-10-29 04:42:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						40f935f5b4 
					 
					
						
						
							
							Avoid "empty source file" warnings.  
						
						 
						
						
						
						
					 
					
						2003-10-29 04:41:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0991f07034 
					 
					
						
						
							
							For whatever reason (compiler or header bugs), at least one commonly-used  
						
						 
						
						... 
						
						
						
						linux system (namely mine) chokes on our definitions and uses of the "HZ"
symbol in crypto/tmdiff.[ch] and apps/speed.c as a "bad function cast"
(when in fact there is no function casting involved at all). In both cases,
it is easily worked around by not defining a cast into the macro and
jiggling the expressions slightly.
In addition - this highlights some cruft in openssl that needs sorting out.
The tmdiff.h header is exported as part of the openssl API despite the fact
that it is ugly as the driven sludge and not used anywhere in the library,
applications, or utilities. More weird still, almost identical code exists
in apps/speed.c though it looks to be slightly tweaked - so either tmdiff
should be updated and used by speed.c, or it should be dumped because it's
obviously not useful enough.
Rather than removing it for now, I've changed the API for tmdiff to at
least make sense. This involves taking the object type (MS_TM) from the
implementation and using it in the header rather than using "char *" in the
API and casting mercilessly in the code (ugh). If someone doesn't like
"MS_TM" and the "ms_time_***" naming, by all means change it. This should
be a harmless improvement, because the existing API is clearly not very
useful (eg. we reimplement it rather than using it in our own utils).
However, someone still needs to take a hack at consolidating speed.c and
tmdiff.[ch] somehow. 
						
						
					 
					
						2003-10-29 04:40:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2aaec9cced 
					 
					
						
						
							
							Update any code that was using deprecated functions so that everything builds  
						
						 
						
						... 
						
						
						
						and links with OPENSSL_NO_DEPRECATED defined. 
						
						
					 
					
						2003-10-29 04:14:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9d473aa2e4 
					 
					
						
						
							
							When OPENSSL_NO_DEPRECATED is defined, deprecated functions are (or should  
						
						 
						
						... 
						
						
						
						be) precompiled out in the API headers. This change is to ensure that if
it is defined when compiling openssl, the deprecated functions aren't
implemented either. 
						
						
					 
					
						2003-10-29 04:06:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6145b0b183 
					 
					
						
						
							
							The "cryptodev" engine preprocessor logic used undefined symbols in  
						
						 
						
						... 
						
						
						
						comparisons. It's better not to allow this, because it gives false
positives when using compiler warnings that detect mistyped symbols. 
						
						
					 
					
						2003-10-29 04:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2a85f77146 
					 
					
						
						
							
							Add my own debug config target.  
						
						 
						
						
						
						
					 
					
						2003-10-28 22:57:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						66b82f5aad 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-10-28 22:10:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						12bdceac8a 
					 
					
						
						
							
							Ignore derived file.  
						
						 
						
						
						
						
					 
					
						2003-10-28 17:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						aea293e3bc 
					 
					
						
						
							
							crypto/evp/evptests.txt is copied to tests/ rather than symlinked because  
						
						 
						
						... 
						
						
						
						of windows (see checkin 1.75 of crypto/evp/Makefile.ssl), so quiet cvs
noise for the copied version. 
						
						
					 
					
						2003-10-28 17:24:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8ad7e3ad2a 
					 
					
						
						
							
							Remove duplicate prototypes have already been (correctly) added to rsa.h,  
						
						 
						
						... 
						
						
						
						as this is already included by x509.h anyway. 
						
						
					 
					
						2003-10-24 16:17:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b6956b474 
					 
					
						
						
							
							Correct serious bug in AES-CBC decryption when the message length isn't  
						
						 
						
						... 
						
						
						
						a multiple of AES_BLOCK_SIZE.
Optimize decryption of all complete blocks in AES-CBC by removing an
unnecessary memcpy().
The error was notified by James Fernandes <jf210032@exchange.DAYTONOH.NCR.com >.
The unnecessary memcpy() was found as an effect of investigating that error. 
						
						
					 
					
						2003-10-15 09:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0bb6187e71 
					 
					
						
						
							
							The object file is o_str.o, not o_str.c.  
						
						 
						
						... 
						
						
						
						Thanks to Peter Sylvester <Peter.Sylvester@EdelWeb.fr > for the notification. 
						
						
					 
					
						2003-10-13 11:34:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c5a5546389 
					 
					
						
						
							
							Add support for digested data PKCS#7 type.  
						
						 
						
						
						
						
					 
					
						2003-10-11 22:11:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77fe058c10 
					 
					
						
						
							
							Simplify cipher and digest lookup in PKCS#7 code.  
						
						 
						
						
						
						
					 
					
						2003-10-11 16:46:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d9086dfa2 
					 
					
						
						
							
							New function to initialize a PKCS7 structure of type other.  
						
						 
						
						
						
						
					 
					
						2003-10-10 23:40:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0602abf5bd 
					 
					
						
						
							
							Initialize digested data type in PKCS7_set_type().  
						
						 
						
						
						
						
					 
					
						2003-10-10 23:31:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						caf044cb3e 
					 
					
						
						
							
							Retrieve correct content to sign when the  
						
						 
						
						... 
						
						
						
						type is "other". 
						
						
					 
					
						2003-10-10 23:25:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a08ced78c8 
					 
					
						
						
							
							Avoid warnings: add missing prototype, don't shadow.  
						
						 
						
						
						
						
					 
					
						2003-10-10 23:07:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						83eb412da8 
					 
					
						
						
							
							In realloc, don't destroy the old memory area if a new one couldn't be  
						
						 
						
						... 
						
						
						
						allocated.
Notified by Daniel Lucq <daniel@lucq.org > 
						
						
					 
					
						2003-10-07 12:09:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d1c443123 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-10-06 12:22:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f44e184ec6 
					 
					
						
						
							
							s_client should inform the user of any compression/expansion methods used.  
						
						 
						
						
						
						
					 
					
						2003-10-06 12:19:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						377dcdba44 
					 
					
						
						
							
							Add functionality to get information on compression methods (not quite complete).  
						
						 
						
						
						
						
					 
					
						2003-10-06 12:18:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8242354952 
					 
					
						
						
							
							Make sure int SSL_COMP_add_compression_method() checks if a certain  
						
						 
						
						... 
						
						
						
						compression identity is already present among the registered
compression methods, and if so, reject the addition request.
Declare SSL_COMP_get_compression_method() so it can be used properly.
Change ssltest.c so it checks what compression methods are available
and enumerates them.  As a side-effect, built-in compression methods
will be automagically loaded that way.  Additionally, change the
identities for ZLIB and RLE to be conformant to
draft-ietf-tls-compression-05.txt.
Finally, make update.
Next on my list: have the built-in compression methods added
"automatically" instead of requiring that the author call
SSL_COMP_add_compression_method() or
SSL_COMP_get_compression_methods(). 
						
						
					 
					
						2003-10-06 11:00:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c40b9bdefb 
					 
					
						
						
							
							Setting the ex_data index is unsafe in a threaded environment, so  
						
						 
						
						... 
						
						
						
						let's wrap it with a lock. 
						
						
					 
					
						2003-10-06 09:09:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6895cca89d 
					 
					
						
						
							
							Remove unused code, don't use zlib functions that are really macros  
						
						 
						
						... 
						
						
						
						and provide missing prototypes. 
						
						
					 
					
						2003-10-04 09:09:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f82ab534c6 
					 
					
						
						
							
							Check for errors from SSL_COMP_add_compression_method().  
						
						 
						
						... 
						
						
						
						Notified by Andrew Marlow <AMARLOW1@bloomberg.net > 
						
						
					 
					
						2003-10-02 10:41:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6e8c19ed1 
					 
					
						
						
							
							Correct a mixup of return values  
						
						 
						
						
						
						
					 
					
						2003-10-02 10:38:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cf89b40584 
					 
					
						
						
							
							Include e_os.h to get a proper definition of memmove on the platforms  
						
						 
						
						... 
						
						
						
						that do not have it. 
						
						
					 
					
						2003-10-01 20:43:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c076599c18 
					 
					
						
						
							
							Corrected misplacement of one of the greps...  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:06:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d8148fa98 
					 
					
						
						
							
							Remove leading and trailing spaces and tabs  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:04:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aed29ce5ea 
					 
					
						
						
							
							Avoid 'file names' with spaces  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:03:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ad82c123a 
					 
					
						
						
							
							Use correct case for manual page references  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:02:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						eeff6bb6b3 
					 
					
						
						
							
							Correct incorrect mode bits change.  
						
						 
						
						
						
						
					 
					
						2003-09-30 17:31:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d90e74c50c 
					 
					
						
						
							
							Correct buggy PODs (missing commas and a prepended space).  
						
						 
						
						
						
						
					 
					
						2003-09-30 17:22:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2990244980 
					 
					
						
						
							
							ASN1 parse fix and release file changes.  
						
						 
						
						
						
						
					 
					
						2003-09-30 16:47:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c798868d96 
					 
					
						
						
							
							Further VxWorks changes from Bob Bradley <bob@chaoticsoftware.com>, this  
						
						 
						
						... 
						
						
						
						time involving VxWorks on MIPS 
						
						
					 
					
						2003-09-28 14:06:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						057a04398d 
					 
					
						
						
							
							Synchronise util/libeay.num with the 0.9.7-stable one.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2003-09-28 09:34:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f3ba9428f 
					 
					
						
						
							
							Uhmm, It seem to have forgotten one file when I committed the MSDOS  
						
						 
						
						... 
						
						
						
						change yesterday.
PR: 669 
						
						
					 
					
						2003-09-28 07:11:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3c02e24bb3 
					 
					
						
						
							
							Change the indentation from 12 to indent+4.  
						
						 
						
						... 
						
						
						
						PR: 657 
						
						
					 
					
						2003-09-27 22:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1be02dd842 
					 
					
						
						
							
							Make MD5 assembler code able to handle messages larger than 2GB on 32-bit  
						
						 
						
						... 
						
						
						
						systems and above.
PR: 664 
						
						
					 
					
						2003-09-27 22:14:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3d7c4a5a6d 
					 
					
						
						
							
							Selected changes for MSDOS, contributed by Gisle Vanem <giva@bgnett.no>.  
						
						 
						
						... 
						
						
						
						PR: 669 
						
						
					 
					
						2003-09-27 21:56:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						11171f3c74 
					 
					
						
						
							
							Add reference counting around the thread state hash table.  
						
						 
						
						... 
						
						
						
						Unfortunately, this means that the dynamic ENGINE version just went up, and
isn't backward compatible.
PR: 678 
						
						
					 
					
						2003-09-27 20:29:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b6df67fb1 
					 
					
						
						
							
							file fips_dsa_selftest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:16 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-27 20:07:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ba9f80c5d5 
					 
					
						
						
							
							Have ssl3_ssl3_send_client_verify() change the state to SSL3_ST_SW_CERT_VRFY_B.  
						
						 
						
						... 
						
						
						
						PR: 679 
						
						
					 
					
						2003-09-27 19:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e59659dc41 
					 
					
						
						
							
							Have ssl3_send_certificate_request() change the state to SSL3_ST_SW_CERT_REQ_B.  
						
						 
						
						... 
						
						
						
						PR: 680 
						
						
					 
					
						2003-09-27 19:27:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						253e893c2b 
					 
					
						
						
							
							Include the instance in the Kerberos ticket information.  
						
						 
						
						... 
						
						
						
						In s_server, print the received Kerberos information.
PR: 693 
						
						
					 
					
						2003-09-27 17:55:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf087e1ea1 
					 
					
						
						
							
							file fips_rsa_selftest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:21 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-27 15:54:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0ad2c4f85b 
					 
					
						
						
							
							Correct small documentation error.  
						
						 
						
						... 
						
						
						
						PR: 698 
						
						
					 
					
						2003-09-27 10:39:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0e6c20da46 
					 
					
						
						
							
							Free the Kerberos context upon freeing the SSL.  
						
						 
						
						... 
						
						
						
						Contributed by Andrew Mann <amann@tccgi.com > 
						
						
					 
					
						2003-09-27 07:35:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6b659cba4 
					 
					
						
						
							
							Add necessary changes to be able to build on VxWorks for PPC860.  
						
						 
						
						... 
						
						
						
						Contributed by Bob Bradley <bob@chaoticsoftware.com > 
						
						
					 
					
						2003-09-27 07:34:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ralf S. Engelschall 
							
						 
					 
					
						
						
							
						
						6bd27f8644 
					 
					
						
						
							
							Fix prime generation loop in crypto/bn/bn_prime.pl by making  
						
						 
						
						... 
						
						
						
						sure the loop does correctly stop and breaking ("division by zero")
modulus operations are not performed. The (pre-generated) prime
table crypto/bn/bn_prime.h was already correct, but it could not be
re-generated on some platforms because of the "division by zero"
situation in the script. 
						
						
					 
					
						2003-09-25 13:57:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dfe399e7d9 
					 
					
						
						
							
							Add -passin support to rsautl  
						
						 
						
						
						
						
					 
					
						2003-09-21 02:20:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7068c8b1a6 
					 
					
						
						
							
							In order to get the expected self signed error when  
						
						 
						
						... 
						
						
						
						calling X509_verify_cert() in x509.c the cert should
not be added to the trusted store. 
						
						
					 
					
						2003-09-21 02:18:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						885818fb7c 
					 
					
						
						
							
							file fips_locl.h was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-14 13:01:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f370048cb 
					 
					
						
						
							
							file testfipsssl was added on branch OpenSSL_0_9_8-stable on 2008-09-17 16:27:50 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-13 17:03:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						28dc02a9d8 
					 
					
						
						
							
							file fips_rsa_gen.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:21 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-11 21:36:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						54ebaca535 
					 
					
						
						
							
							file fips_rsa_eay.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:21 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-11 21:36:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82384690e2 
					 
					
						
						
							
							Typos.  
						
						 
						
						
						
						
					 
					
						2003-09-09 23:44:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e6fa67fa93 
					 
					
						
						
							
							Generalise the definition of strcasecmp() and strncasecmp() for  
						
						 
						
						... 
						
						
						
						platforms that don't (necessarely) have it.  In the case of VMS, this
means moving a couple of functions from apps/ to crypto/ and make them
general (although only used privately). 
						
						
					 
					
						2003-09-09 14:48:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9ea72d3705 
					 
					
						
						
							
							These should be write-locks, not read-locks.  
						
						 
						
						
						
						
					 
					
						2003-09-08 15:47:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fedc91a4a 
					 
					
						
						
							
							file openssl_fips_fingerprint was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:10 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-07 11:13:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f734aaa413 
					 
					
						
						
							
							file fips_des_selftest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:13 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-04 16:46:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a575d4b9ee 
					 
					
						
						
							
							file fips_aes_selftest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:12 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-04 16:46:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a907751350 
					 
					
						
						
							
							certain changes have to be listed twice in this file because OpenSSL  
						
						 
						
						... 
						
						
						
						0.9.6h forked into 0.9.6i and 0.9.7 ... 
						
						
					 
					
						2003-09-04 12:52:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						560dfd2a02 
					 
					
						
						
							
							New -ignore_err option in ocsp application to stop the server  
						
						 
						
						... 
						
						
						
						exiting on the first error in a request. 
						
						
					 
					
						2003-09-03 23:56:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14f3d7c5cc 
					 
					
						
						
							
							Only accept a client certificate if the server requests  
						
						 
						
						... 
						
						
						
						one, as required by SSL/TLS specs. 
						
						
					 
					
						2003-09-03 23:47:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77a87ded3a 
					 
					
						
						
							
							file fips_dsa_gen.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:15 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-03 14:11:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b958d2c298 
					 
					
						
						
							
							file fips_dssvs.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:16 +0000  
						
						 
						
						
						
						
					 
					
						2003-09-03 14:11:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						510dc1ecd0 
					 
					
						
						
							
							outlen should be int * in out_utf8.  
						
						 
						
						
						
						
					 
					
						2003-08-21 12:32:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						563c05e2dc 
					 
					
						
						
							
							fix out-of-bounds check in lock_dbg_cb (was too lose to detect all  
						
						 
						
						... 
						
						
						
						invalid cases)
PR: 674 
						
						
					 
					
						2003-08-14 10:33:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						643ecd2ed6 
					 
					
						
						
							
							make sure no error is left in the queue that is intentionally ignored  
						
						 
						
						
						
						
					 
					
						2003-08-11 18:56:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						88401ed449 
					 
					
						
						
							
							Correct two problems, found by Martin Kochanski <cardbox@easynet.co.uk>:  
						
						 
						
						... 
						
						
						
						1. CreateToolhelp32Snapshot returns INVALID_HANDLE_VALUE, not NULL, on error.
2. On Windows CE, a snapshot handle is closed with CloseToolhelp32Snapshot,
   not CloseHandle. 
						
						
					 
					
						2003-08-07 11:57:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3aa8d3a7f1 
					 
					
						
						
							
							add OpenSSL license  
						
						 
						
						... 
						
						
						
						fix typo 
						
						
					 
					
						2003-08-06 10:36:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b6e7c8c65 
					 
					
						
						
							
							Inclusion of openssl/engine.h should always be wrapped with a check that  
						
						 
						
						... 
						
						
						
						OPENSSL_NO_ENGINE is not defined. 
						
						
					 
					
						2003-08-04 10:12:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc72a195c2 
					 
					
						
						
							
							file fips_desmovs.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:13 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-30 18:30:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e2812ff61f 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:13 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-30 18:30:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c2e34e27f 
					 
					
						
						
							
							file fips_randtest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:18 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31f3950fbf 
					 
					
						
						
							
							file fips_rand.h was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:18 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75b3654d18 
					 
					
						
						
							
							file fips_rand.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:18 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						418f9ac5e3 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:18 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad4afe4edf 
					 
					
						
						
							
							file fips_dsa_ossl.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:15 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c844b971cb 
					 
					
						
						
							
							file fips_dsatest.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:16 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca9b1c47af 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:15 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						86039d2751 
					 
					
						
						
							
							file fips_aesavs.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:12 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						420a692f04 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:12 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1d2a464fe0 
					 
					
						
						
							
							file fips.h was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:09 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7735dd0750 
					 
					
						
						
							
							file fips.c was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:09 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf7b075f0c 
					 
					
						
						
							
							file .cvsignore was added on branch OpenSSL_0_9_8-stable on 2008-09-16 10:12:09 +0000  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f96d1af449 
					 
					
						
						
							
							Avoid clashes with Win32 names in WinCrypt.h  
						
						 
						
						
						
						
					 
					
						2003-07-23 00:10:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						968766cad8 
					 
					
						
						
							
							updates for draft-ietf-tls-ecc-03.txt  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila
Reviewed by: Bodo Moeller 
						
						
					 
					
						2003-07-22 12:34:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						652ae06bad 
					 
					
						
						
							
							add test for secp160r1  
						
						 
						
						... 
						
						
						
						add code for kP+lQ timings
Submitted by: Douglas Stebila <douglas.stebila@sun.com >
Reviewed by: Bodo Moeller 
						
						
					 
					
						2003-07-22 10:39:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ddc38679ce 
					 
					
						
						
							
							tolerate extra data at end of client hello for SSL 3.0  
						
						 
						
						... 
						
						
						
						PR: 659 
						
						
					 
					
						2003-07-21 15:17:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						02e0559477 
					 
					
						
						
							
							fix: 0.9.7 is based on 0.9.6h, not on 0.9.6k  
						
						 
						
						... 
						
						
						
						typo in 0.9.6k section 
						
						
					 
					
						2003-07-21 15:08:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ada0e717fa 
					 
					
						
						
							
							new function EC_GROUP_cmp() (used by EVP_PKEY_cmp())  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-07-21 13:43:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2c789c82be 
					 
					
						
						
							
							manpages for 'openssl ec' and 'openssl ecparam'  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-07-21 13:40:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d143dce03c 
					 
					
						
						
							
							A document that has a very rough description of the X509  
						
						 
						
						... 
						
						
						
						functionality.  This is mostly so there's a way to get from the
crypto.html page to the function descriptions. 
						
						
					 
					
						2003-07-10 08:49:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f9d183c209 
					 
					
						
						
							
							Replace CCITT with ITU-T.  Keep CCITT around as an alias.  
						
						 
						
						... 
						
						
						
						make update
PR: 80 
						
						
					 
					
						2003-07-04 15:45:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						182cd19dea 
					 
					
						
						
							
							Make sure openssl.pc is readable by everyone.  
						
						 
						
						... 
						
						
						
						PR: 654 
						
						
					 
					
						2003-07-04 11:41:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						61f00386ab 
					 
					
						
						
							
							The counter is big-endian.  Since it comes as an array of char,  
						
						 
						
						... 
						
						
						
						there's absolutely no need to special-case it on little-endian
machines.
Notified by Thierry Boivin <Thierry.Boivin@celsecat.com > 
						
						
					 
					
						2003-07-04 11:37:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2ae0352b0f 
					 
					
						
						
							
							Oops, I forgot to replace 'counter' with 'ivec' when used...  
						
						 
						
						
						
						
					 
					
						2003-07-03 20:50:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						94805c84d1 
					 
					
						
						
							
							Add -issuer_hash and make -subject_hash the default way to get the  
						
						 
						
						... 
						
						
						
						subject hash, with -hash a synonym kept around for backward
compatibility reasons.
PR: 650 
						
						
					 
					
						2003-07-03 20:45:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6f2f534b58 
					 
					
						
						
							
							The convenience argumetn for -nameopt and -certopt is ca_default, not  
						
						 
						
						... 
						
						
						
						default_ca.
PR: 653 
						
						
					 
					
						2003-07-03 07:46:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						da6c44fc97 
					 
					
						
						
							
							The 'counter' is really the IV.  
						
						 
						
						
						
						
					 
					
						2003-07-03 06:42:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						da0d33560f 
					 
					
						
						
							
							Change AES-CTR to increment the IV by 1 instead of 2^64.  
						
						 
						
						
						
						
					 
					
						2003-07-03 06:41:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						9d19fbc4fc 
					 
					
						
						
							
							Clarify wording of verify_callback() behaviour.  
						
						 
						
						
						
						
					 
					
						2003-06-26 14:03:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aa5ae4841e 
					 
					
						
						
							
							Only remove old files if they exist.  [Maing32].  
						
						 
						
						... 
						
						
						
						Notified by Michael Gerdau <mgd@technosis.de > 
						
						
					 
					
						2003-06-26 11:58:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						eb3d68c454 
					 
					
						
						
							
							Nils Larsch told me I could remove that variable entirely.  
						
						 
						
						
						
						
					 
					
						2003-06-26 11:52:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c89f31def0 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-06-26 10:27:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ed5fae580e 
					 
					
						
						
							
							Implement missing functions.  
						
						 
						
						... 
						
						
						
						Have the f parameter to _ctrl functions have the prototype (*)(void)
rather than (*)(), for the sake of C++ compilers.
Disable unimplemented functionality. 
						
						
					 
					
						2003-06-26 10:26:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d55141ed7a 
					 
					
						
						
							
							"Remove" unused variable  
						
						 
						
						
						
						
					 
					
						2003-06-26 10:23:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a99ce1a574 
					 
					
						
						
							
							Conform with the standard prototype for engine control functions.  
						
						 
						
						
						
						
					 
					
						2003-06-26 07:10:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c687a3d5d5 
					 
					
						
						
							
							Scan through the engines directory as well.  
						
						 
						
						
						
						
					 
					
						2003-06-26 07:05:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dfc3151925 
					 
					
						
						
							
							The definition of dynamic_ctrl() should change along with the  
						
						 
						
						... 
						
						
						
						declaration :-). 
						
						
					 
					
						2003-06-26 07:03:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0fbffe7a71 
					 
					
						
						
							
							implement PKCS  #8  / SEC1 private key format for ECC  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-06-25 21:35:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						037f6e73f1 
					 
					
						
						
							
							Return EOF when an S/MIME part have been read.  
						
						 
						
						
						
						
					 
					
						2003-06-24 17:11:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cf82439de8 
					 
					
						
						
							
							Make sure the compiler knows we run with pedantic settings.  
						
						 
						
						
						
						
					 
					
						2003-06-20 00:57:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37fcd48f86 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-06-19 23:00:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cf9a88cad7 
					 
					
						
						
							
							Document the last change.  
						
						 
						
						... 
						
						
						
						PR: 587 
						
						
					 
					
						2003-06-19 19:04:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4f1cd8324c 
					 
					
						
						
							
							Prepare for changes in the 0.9.6 branch  
						
						 
						
						
						
						
					 
					
						2003-06-19 19:01:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ed7f1d0bc6 
					 
					
						
						
							
							Prepare for changes in the 0.9.6 branch  
						
						 
						
						
						
						
					 
					
						2003-06-19 18:59:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6b9cd7f82 
					 
					
						
						
							
							We set the export flag for 512 *bit* keys, not 512 *byte* ones.  
						
						 
						
						... 
						
						
						
						PR: 587 
						
						
					 
					
						2003-06-19 18:55:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8fbb2af392 
					 
					
						
						
							
							Add documentation for the new crlnumber configuration option.  
						
						 
						
						
						
						
					 
					
						2003-06-19 17:52:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c5aba56c5b 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-06-19 17:50:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fd4ef69913 
					 
					
						
						
							
							Implement CRL numbers.  
						
						 
						
						... 
						
						
						
						Contributed in whole by Laurent Genier <Laurent.Genier@intrinsec.com >
PR: 644 
						
						
					 
					
						2003-06-19 17:40:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						834ac33a37 
					 
					
						
						
							
							dynamic_ctrl() didn't have exactly the same prototype as defined by  
						
						 
						
						... 
						
						
						
						ENGINE_CTRL_FUNC_PTR. 
						
						
					 
					
						2003-06-19 16:57:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e9023f4d2 
					 
					
						
						
							
							Unsigned vs. signed fixed.  
						
						 
						
						
						
						
					 
					
						2003-06-19 16:56:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d3a28e8b8d 
					 
					
						
						
							
							EXIT() should mainly be exit(n), not return(n).  OPENSSL_EXIT() will  
						
						 
						
						... 
						
						
						
						take care of returning if necessary. 
						
						
					 
					
						2003-06-19 16:56:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0bd71d3b7e 
					 
					
						
						
							
							Add the application data type to the README.  
						
						 
						
						
						
						
					 
					
						2003-06-18 07:14:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d97322f0e6 
					 
					
						
						
							
							Missing string and potential memory leaks.  
						
						 
						
						... 
						
						
						
						Notified by Goetz Babin-Ebell <goetz@shomitefo.de > 
						
						
					 
					
						2003-06-18 07:12:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b52d512dfa 
					 
					
						
						
							
							Slightly better check of attributes.  Now, mem_list_next can actually stop when the searched for key doesn't have it's attributes within the range of the checked key.  
						
						 
						
						
						
						
					 
					
						2003-06-12 21:32:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a3a2ff4cd9 
					 
					
						
						
							
							Beautify  
						
						 
						
						
						
						
					 
					
						2003-06-12 18:13:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5a1fd87ec1 
					 
					
						
						
							
							Typo.  
						
						 
						
						... 
						
						
						
						PR: 584 
						
						
					 
					
						2003-06-12 01:04:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8645c415cf 
					 
					
						
						
							
							Do not try to use non-existent gmtime_r() on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:57:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						700d86ea18 
					 
					
						
						
							
							Make sure ssize_t is defined on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:56:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54bbde3c3f 
					 
					
						
						
							
							Make sure DSO-dlfcn works properly on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:51:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c14b337570 
					 
					
						
						
							
							Typo.  
						
						 
						
						... 
						
						
						
						PR: 593 
						
						
					 
					
						2003-06-11 22:45:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e666c4599f 
					 
					
						
						
							
							Add the possibility to have symbols loaded globally with DSO.  
						
						 
						
						
						
						
					 
					
						2003-06-11 22:42:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						98cec7fc7b 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-06-11 22:27:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fadd2246a0 
					 
					
						
						
							
							Avoid warnings saying that the format takes a void*.  
						
						 
						
						
						
						
					 
					
						2003-06-11 22:26:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c78b4f1d3d 
					 
					
						
						
							
							Remove unused variable  
						
						 
						
						
						
						
					 
					
						2003-06-11 21:47:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						33862b90bb 
					 
					
						
						
							
							Add an entry for X509_TRUST_OBJECT_SIGN in trstandard[].  
						
						 
						
						... 
						
						
						
						PR: 617 
						
						
					 
					
						2003-06-11 21:22:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						36bad5cdfd 
					 
					
						
						
							
							Add documentation for ERR_set_mark() and ERR_pop_to_mark().  
						
						 
						
						
						
						
					 
					
						2003-06-11 20:51:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54f6451670 
					 
					
						
						
							
							Add functionality to set marks on the error stack and to pop all errors to the next mark.  
						
						 
						
						
						
						
					 
					
						2003-06-11 20:49:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						490967195a 
					 
					
						
						
							
							Handle des_modes.pod properly.  
						
						 
						
						... 
						
						
						
						PR: 634 
						
						
					 
					
						2003-06-11 19:44:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						606c8048a0 
					 
					
						
						
							
							Make sure to NUL-terminate the string on end-of-file (and error)  
						
						 
						
						... 
						
						
						
						PR: 643 
						
						
					 
					
						2003-06-11 18:43:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e66d863cd0 
					 
					
						
						
							
							Add crypto/store to the directories to look through.  
						
						 
						
						
						
						
					 
					
						2003-06-11 04:46:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a069460015 
					 
					
						
						
							
							Document the AES_cbc_encrypt() change  
						
						 
						
						
						
						
					 
					
						2003-06-10 04:42:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						55b12f8641 
					 
					
						
						
							
							The output from AES_cbc_encrypt() should be exact multiple blocks when encrypting  
						
						 
						
						
						
						
					 
					
						2003-06-10 04:11:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						40e5b9abeb 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2003-06-09 07:56:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						dcfb57c736 
					 
					
						
						
							
							This memset() in the ubsec ENGINE is a bug. Zeroing out the result array  
						
						 
						
						... 
						
						
						
						should not be necessary in any case, but more importantly the result and
input BIGNUMs could be the same, in which case this is clearly a problem.
Submitted by: Jonathan Hersch
Reviewed by: Joe Orton
Approved by: Geoff Thorpe 
						
						
					 
					
						2003-06-06 17:51:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2ee67f1dad 
					 
					
						
						
							
							Make sure the sigaction structure and fileno function are properly declared with an ANSI compiler on Solaris (and possibly others).  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:13:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4af3184662 
					 
					
						
						
							
							Remove extra ;  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:11:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e31047744a 
					 
					
						
						
							
							Make sure the function definitions match their declaration.  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:11:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6eba601b0 
					 
					
						
						
							
							Make sure that size_t matches size_t.  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:10:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f796dc5c06 
					 
					
						
						
							
							Make sure debug-solaris-sparcv9-gcc is consistent with solaris-sparcv9-gcc.  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:10:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						50078051bd 
					 
					
						
						
							
							Really get X509_CRL_CHECK_ALL right this time...  
						
						 
						
						
						
						
					 
					
						2003-06-04 00:40:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						db01746978 
					 
					
						
						
							
							Clarify return value of SSL_connect() and SSL_accept() in case of the  
						
						 
						
						... 
						
						
						
						WANT_READ and WANT_WRITE conditions. 
						
						
					 
					
						2003-06-03 09:59:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						63b815583b 
					 
					
						
						
							
							Update CHANGES to reflect base64 fix added to 0.9.7  
						
						 
						
						
						
						
					 
					
						2003-06-03 00:16:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca82ac1fee 
					 
					
						
						
							
							Only count 'LF' as EOL in pk7_mime.c, this avoids incorrect  
						
						 
						
						... 
						
						
						
						results if CR+LF straddles the line buffer. 
						
						
					 
					
						2003-06-02 17:53:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aff0542844 
					 
					
						
						
							
							Stop checking for CRLF when start of buffer is reached.  
						
						 
						
						... 
						
						
						
						Add rest of long line fix which got missed before 
						
						
					 
					
						2003-06-02 01:12:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						beab098d53 
					 
					
						
						
							
							Various S/MIME bug and compatibility fixes.  
						
						 
						
						
						
						
					 
					
						2003-06-01 20:51:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						02b95b7499 
					 
					
						
						
							
							Clarify ordering of certificates when using certificate chains  
						
						 
						
						
						
						
					 
					
						2003-05-30 07:45:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4d471552f 
					 
					
						
						
							
							Include openssl/e_os.h so OPENSSL_SYSNAME_ULTRASPARC and other configuration  
						
						 
						
						... 
						
						
						
						macros get properly defined. 
						
						
					 
					
						2003-05-29 22:22:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						01fc834bc9 
					 
					
						
						
							
							Have ASFLAGS be defined the same way as CFLAGS  
						
						 
						
						
						
						
					 
					
						2003-05-29 22:20:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f7f8d82aaa 
					 
					
						
						
							
							PR: 630  
						
						 
						
						... 
						
						
						
						Avoid looking outside the key_data array. 
						
						
					 
					
						2003-05-29 20:59:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						4f17dfcd75 
					 
					
						
						
							
							Add minimum POP3 STLS hack to s_client.c (as was provided for STARTTLS before)  
						
						 
						
						... 
						
						
						
						Submitted by: dg@sunet.ru  (Daniel Ginsburg)
PR: #613  
						
						
					 
					
						2003-05-28 20:24:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						83b4f49c0a 
					 
					
						
						
							
							Move header file inclusion to prevent irritation of users forgetting to  
						
						 
						
						... 
						
						
						
						call "make depend" after enabling or disabling ciphers...
Submitted by: Tal Mozes <talm@cyber-ark.com >
PR: #628  
						
						
					 
					
						2003-05-28 19:56:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						60790aff6f 
					 
					
						
						
							
							PR: 627  
						
						 
						
						... 
						
						
						
						Allocate certificatePolicies correctly if CPS field is absent.
Fix various memory leaks in certificatePolicies. 
						
						
					 
					
						2003-05-28 17:28:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e19d0ef068 
					 
					
						
						
							
							PR: 631  
						
						 
						
						... 
						
						
						
						Submitted by: Doug Sauder <dws+001@hunnysoft.com >
Fix bug in X509V3_get_d2i() when idx in not NULL. 
						
						
					 
					
						2003-05-28 16:57:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f5f7dffdd1 
					 
					
						
						
							
							Make sure to compare unsigned against unsigned.  
						
						 
						
						
						
						
					 
					
						2003-05-28 10:34:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						edd55d08f5 
					 
					
						
						
							
							Brackets are now allowed, after a small hack in the processing of the  
						
						 
						
						... 
						
						
						
						docs-on-web. 
						
						
					 
					
						2003-05-23 09:08:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						83743ad039 
					 
					
						
						
							
							Fix sign bugs.  
						
						 
						
						... 
						
						
						
						PR: 621 
						
						
					 
					
						2003-05-21 14:29:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						163f5b236c 
					 
					
						
						
							
							Correct signedness  
						
						 
						
						
						
						
					 
					
						2003-05-21 14:21:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						513c01a591 
					 
					
						
						
							
							Make sure EC_window_bits_for_scalar_size() returns a size_t  
						
						 
						
						
						
						
					 
					
						2003-05-21 08:40:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d9a2a89a17 
					 
					
						
						
							
							I have no idea how I cut away that piece of text...  
						
						 
						
						
						
						
					 
					
						2003-05-21 06:50:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						31939f1544 
					 
					
						
						
							
							I don't remember what my thinking was with str_compat.h.  Maybe it'll  
						
						 
						
						... 
						
						
						
						come back to me... 
						
						
					 
					
						2003-05-20 09:00:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						11ce33a71d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-05-20 08:59:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9acef3bbd7 
					 
					
						
						
							
							Misspelled functions.  
						
						 
						
						
						
						
					 
					
						2003-05-20 08:50:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						164bc7dae8 
					 
					
						
						
							
							Some misspelled function names.  
						
						 
						
						
						
						
					 
					
						2003-05-20 08:49:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f59c941950 
					 
					
						
						
							
							Make the function STORE_new_engine() public.  
						
						 
						
						
						
						
					 
					
						2003-05-19 23:06:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0239876511 
					 
					
						
						
							
							Remove certain functions  
						
						 
						
						
						
						
					 
					
						2003-05-19 23:03:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						93c929e411 
					 
					
						
						
							
							The square brackets in BIO_s_bio.pod for some  
						
						 
						
						... 
						
						
						
						reason cause wml to bomb out with the error
message:
** Slice:Error: Some slices were not closed:
** WML:Break: Error in Pass 9 (rc=1).
** WMK:Error: Error in WML (rc=256)
As a workaround delete them for now. 
						
						
					 
					
						2003-05-19 21:28:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2dac35a02 
					 
					
						
						
							
							Fix docs.  
						
						 
						
						
						
						
					 
					
						2003-05-18 23:10:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						727ef76ebd 
					 
					
						
						
							
							Add correct DN entry for serialNumber.  
						
						 
						
						
						
						
					 
					
						2003-05-07 23:20:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bca52f7d4e 
					 
					
						
						
							
							Define the two authentication parameter types for passphrase and  
						
						 
						
						... 
						
						
						
						Kerberos 5 authentications. 
						
						
					 
					
						2003-05-07 21:17:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						48c36fdb2a 
					 
					
						
						
							
							Add the possibility to hand execution parameters (for example  
						
						 
						
						... 
						
						
						
						authentication material) to the STORE functions.
Suggested by Götz Babin-Ebell <babin-ebell@trustcenter.de >. 
						
						
					 
					
						2003-05-07 21:06:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9b2042fac3 
					 
					
						
						
							
							/usr/lib/pkgconfig/openssl.pc was never installed in the RPM.  
						
						 
						
						... 
						
						
						
						Notified by Bennett Todd <bet@rahul.net >. 
						
						
					 
					
						2003-05-07 12:02:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						816d785721 
					 
					
						
						
							
							DO NOT constify RSA* in RSA_sign() and RSA_verify(), since there are function  
						
						 
						
						... 
						
						
						
						called downstream that need it to be non-const.  The fact that the RSA_METHOD
functions take the RSA* as a const doesn't matter, it just expresses that
*they* won't touch it.
PR: 602 
						
						
					 
					
						2003-05-07 11:38:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						742b139f54 
					 
					
						
						
							
							Add the possibility to store arbitrary data in a STORE.  
						
						 
						
						... 
						
						
						
						Suggested by Götz Babin-Ebell <babin-ebell@trustcenter.de >. 
						
						
					 
					
						2003-05-06 08:02:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3b30121bd9 
					 
					
						
						
							
							Constify RSA_sign() and RSA_verify().  
						
						 
						
						... 
						
						
						
						PR: 602 
						
						
					 
					
						2003-05-05 13:55:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ee789e6c3 
					 
					
						
						
							
							Yeah, right, an object file ending with .c, that'll work!  
						
						 
						
						
						
						
					 
					
						2003-05-03 06:58:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b9d2d20086 
					 
					
						
						
							
							Make DER option work again.  
						
						 
						
						... 
						
						
						
						Fix typo. 
						
						
					 
					
						2003-05-02 11:41:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b9d7ca9748 
					 
					
						
						
							
							It's usually best if the function name matches everywhere...  
						
						 
						
						
						
						
					 
					
						2003-05-02 07:25:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b194dfbd5 
					 
					
						
						
							
							STORE was created 2003, darnit!  
						
						 
						
						
						
						
					 
					
						2003-05-01 20:44:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f6af7d9db 
					 
					
						
						
							
							Get the year right...  
						
						 
						
						
						
						
					 
					
						2003-05-01 20:15:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						42b2b6a2d5 
					 
					
						
						
							
							Provide some extra comments about the STORE_Memory STORE method.  
						
						 
						
						
						
						
					 
					
						2003-05-01 04:31:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1465bac90 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-05-01 04:10:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3bbb0212f3 
					 
					
						
						
							
							Add STORE support in ENGINE.  
						
						 
						
						
						
						
					 
					
						2003-05-01 03:57:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a5db6fa576 
					 
					
						
						
							
							Define a STORE type.  For documentation, read the entry in CHANGES,  
						
						 
						
						... 
						
						
						
						crypto/store/README, crypto/store/store.h and crypto/store/str_locl.h. 
						
						
					 
					
						2003-05-01 03:53:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9236b5b013 
					 
					
						
						
							
							Define a STORE lock (the STORE type will be committed later).  
						
						 
						
						
						
						
					 
					
						2003-05-01 03:46:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						535fba4907 
					 
					
						
						
							
							Define the OPENSSL_ITEM structure.  
						
						 
						
						
						
						
					 
					
						2003-05-01 03:45:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e4140f73f 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-29 22:24:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1ae0a83bdd 
					 
					
						
						
							
							Add BUF_strndup() and BUF_memdup().  Not currently used, but I've code  
						
						 
						
						... 
						
						
						
						that uses them that I'll commit in a few days. 
						
						
					 
					
						2003-04-29 22:08:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7ae46c6761 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-29 21:35:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d584fd6b66 
					 
					
						
						
							
							Include objects.h to get a correct declaration of OBJ_bsearch_ex(),  
						
						 
						
						... 
						
						
						
						not to mention the OBJ_BSEARCH_* macros. 
						
						
					 
					
						2003-04-29 20:46:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54dbdd9837 
					 
					
						
						
							
							Some variables were uninitialised...  
						
						 
						
						
						
						
					 
					
						2003-04-29 20:45:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d6c32d6d1 
					 
					
						
						
							
							Correct documentation.  sk_find_ex() doesn't return a pointer, it  
						
						 
						
						... 
						
						
						
						returns an index. 
						
						
					 
					
						2003-04-29 20:31:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						26851b6b42 
					 
					
						
						
							
							Add an extended variant of sk_find() which returns a non-NULL pointer  
						
						 
						
						... 
						
						
						
						even if an exact match wasn't found. 
						
						
					 
					
						2003-04-29 20:30:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ea5240a5ed 
					 
					
						
						
							
							Add an extended variant of OBJ_bsearch() that can be given a few  
						
						 
						
						... 
						
						
						
						flags. 
						
						
					 
					
						2003-04-29 20:25:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						eec7968f18 
					 
					
						
						
							
							fix typo  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-04-22 08:29:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1cc087fe4f 
					 
					
						
						
							
							Make it possible to affect the extension of man pages.  
						
						 
						
						... 
						
						
						
						PR: 578 
						
						
					 
					
						2003-04-21 22:00:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						040c687ce4 
					 
					
						
						
							
							Memory leak fix: RSA_blinding_on() didn't free Ai under certain circumstances.  
						
						 
						
						... 
						
						
						
						Memory leak fix: RSA_blinding_on() would leave a dangling pointer in
                 rsa->blinding under certain circumstances.
Double definition fix: RSA_FLAG_NO_BLINDING was defined twice. 
						
						
					 
					
						2003-04-16 06:25:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cd1226bc6a 
					 
					
						
						
							
							Memory leak fix: local blinding structure not freed in rsa_eay_private_decrypt()  
						
						 
						
						
						
						
					 
					
						2003-04-15 13:01:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7a04fdd87f 
					 
					
						
						
							
							include 'Changes between 0.9.6i and 0.9.6j'  
						
						 
						
						
						
						
					 
					
						2003-04-11 15:03:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						138f970e6e 
					 
					
						
						
							
							Add the 0.9.6j news.  
						
						 
						
						
						
						
					 
					
						2003-04-10 20:38:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1a0c1f9052 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-10 20:11:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1774e22d6f 
					 
					
						
						
							
							New NEWS  
						
						 
						
						
						
						
					 
					
						2003-04-10 19:33:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						26abc8f01a 
					 
					
						
						
							
							Remove all those infernal stupid CR characters  
						
						 
						
						
						
						
					 
					
						2003-04-10 19:11:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5924c21608 
					 
					
						
						
							
							There's a problem building shared libraries on the sco5-gcc target.  However,  
						
						 
						
						... 
						
						
						
						it's time for a release, so I'm just adding an enty in PROBLEMS, and will
hopefully solve this for a later release 
						
						
					 
					
						2003-04-10 18:36:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c93fbfaebc 
					 
					
						
						
							
							Explicitely tell the compiler we're mips3 for the target irix-mips3-cc.  
						
						 
						
						
						
						
					 
					
						2003-04-10 05:46:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b1c00abeb 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-04-10 00:04:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						721688c2f8 
					 
					
						
						
							
							Include rand.h, so RAND_status() and friends get properly declared.  
						
						 
						
						
						
						
					 
					
						2003-04-08 11:07:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a109220107 
					 
					
						
						
							
							Correct a few typos.  
						
						 
						
						... 
						
						
						
						It seems that svr3 and svr5 differ, after all. 
						
						
					 
					
						2003-04-08 09:27:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4a4a04622e 
					 
					
						
						
							
							A single quote too many.  
						
						 
						
						
						
						
					 
					
						2003-04-08 08:58:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d6fd88fffd 
					 
					
						
						
							
							I forgot to continuation mark.  
						
						 
						
						
						
						
					 
					
						2003-04-08 08:57:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e96133e4cf 
					 
					
						
						
							
							It seems like OpenUnix's ld uses LD_LIBRARY_PATH to search for  
						
						 
						
						... 
						
						
						
						libraries.  What's worse, the directories given in LD_LIBRARY_PATH are
checked first!  Therefore, we need a hack to prepend all the
directories we give with -L to the current value of LD_LIBRARY_PATH,
thereby temporarly forming a hacked value.
Only copy LIBEXTRAS if they are given.
Svr5 doesn't use -z allextract... 
						
						
					 
					
						2003-04-08 08:36:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f65a75786b 
					 
					
						
						
							
							Fix ordering of compare functions: strncmp() must be used first, a  
						
						 
						
						... 
						
						
						
						the cipher name in the list is not guaranteed to be at least "buflen"
long.
PR: 567
Submitted by: "Matt Harren" <matth@cs.berkeley.edu > 
						
						
					 
					
						2003-04-08 06:31:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b55368306 
					 
					
						
						
							
							We seem to carry some rests of the 0.9.6 [engine] ENGINE framework, here in  
						
						 
						
						... 
						
						
						
						form of unneeded direct calls through the engine pointer.. 
						
						
					 
					
						2003-04-08 06:01:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43eb3b0130 
					 
					
						
						
							
							We seem to carry some rests of the 0.9.6 [engine] ENGINE framework in form  
						
						 
						
						... 
						
						
						
						of unneeded includes of openssl/engine.h. 
						
						
					 
					
						2003-04-08 06:00:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0a861ab7f3 
					 
					
						
						
							
							RSA_FLAG_SIGN_VER indicates the special rsa_sign and rsa_verify function  
						
						 
						
						... 
						
						
						
						pointers should be used.  It doesn't necessarely mean it should go through
the ENGINE framework. 
						
						
					 
					
						2003-04-07 19:15:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7b36590b17 
					 
					
						
						
							
							What was I smoking?  EVP_PKEY_cmp() should return with 0 if  
						
						 
						
						... 
						
						
						
						EVP_PKEY_cmp_parameters() returned 0, otherwise it should
go on processing the public key component.  Thia has nothing
to do with the proper handling of EC parameters or not. 
						
						
					 
					
						2003-04-07 10:15:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a8b728445c 
					 
					
						
						
							
							Correct a typo.  
						
						 
						
						... 
						
						
						
						Have EVP_PKEY_cmp() call EVP_PKEY_cmp_parameters(), and make a note
about the lack of parameter comparison for EC. 
						
						
					 
					
						2003-04-07 10:09:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af0f0f3e8f 
					 
					
						
						
							
							Constify  
						
						 
						
						
						
						
					 
					
						2003-04-06 15:31:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d570498a2 
					 
					
						
						
							
							Do not call ENGINE_setup_bsd_cryptodev() when OPENSSL_NO_ENGINE is defined.  
						
						 
						
						... 
						
						
						
						PR: 564 
						
						
					 
					
						2003-04-05 21:21:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4c771796d5 
					 
					
						
						
							
							Convert save_serial() to work like save_index(), and add a  
						
						 
						
						... 
						
						
						
						rotate_serial() that works like rotate_index(). 
						
						
					 
					
						2003-04-04 15:10:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d6df2b281f 
					 
					
						
						
							
							Add documentation on the added functionality in 'openssl ca'.  
						
						 
						
						
						
						
					 
					
						2003-04-04 14:39:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6fcf735497 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-04 14:19:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b5f96e8818 
					 
					
						
						
							
							There's no need to check for __attribute__ with ANSI functions, since  
						
						 
						
						... 
						
						
						
						we only check to the opening parenthesis anyway... 
						
						
					 
					
						2003-04-04 14:19:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3ae70939ba 
					 
					
						
						
							
							Correct a lot of printing calls.  Remove extra arguments...  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:39:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c433d72593 
					 
					
						
						
							
							Make %p and %# work properly, at least with pointers and floats.  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:35:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						68b42986cb 
					 
					
						
						
							
							Add GCC attributes when compiled with gcc.  This helps find out if  
						
						 
						
						... 
						
						
						
						we're using the printing functions correctly or not.
I used the corresponding attributes found in the header files of my
Linux installation. 
						
						
					 
					
						2003-04-03 23:06:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						57544ee224 
					 
					
						
						
							
							Counter for GCC attributes.  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:04:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						83b23ed967 
					 
					
						
						
							
							One more debug line to conditionalise.  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:01:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4342c5c1a0 
					 
					
						
						
							
							Add a CA section, to make sure the test will work with the changes in  
						
						 
						
						... 
						
						
						
						CA.sh. 
						
						
					 
					
						2003-04-03 22:38:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						16b1b03543 
					 
					
						
						
							
							Implement self-signing in 'openssl ca'.  This makes it easier to have  
						
						 
						
						... 
						
						
						
						the CA certificate part of the CA database, and combined with
'unique_subject=no', it should make operations like CA certificate
roll-over easier. 
						
						
					 
					
						2003-04-03 22:33:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e6526fbf4d 
					 
					
						
						
							
							Add functionality to help making self-signed certificate.  
						
						 
						
						
						
						
					 
					
						2003-04-03 22:27:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8152d88799 
					 
					
						
						
							
							It's recommended to use req rather than x509 to create self-signed certificates  
						
						 
						
						
						
						
					 
					
						2003-04-03 22:12:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4ce4884a5b 
					 
					
						
						
							
							Typo correction  
						
						 
						
						
						
						
					 
					
						2003-04-03 21:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						db598fbce2 
					 
					
						
						
							
							Don't try to free NULL values...  
						
						 
						
						
						
						
					 
					
						2003-04-03 20:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8382ec5d37 
					 
					
						
						
							
							Reindent for readability.  
						
						 
						
						
						
						
					 
					
						2003-04-03 19:10:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0998cfaadd 
					 
					
						
						
							
							Remove unused variable.  
						
						 
						
						
						
						
					 
					
						2003-04-03 19:07:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4448f60d6 
					 
					
						
						
							
							Reset the version number of the issuer certificate?  I believe this  
						
						 
						
						... 
						
						
						
						hasn't been tested in a long while... 
						
						
					 
					
						2003-04-03 18:50:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						63b6fe2bf6 
					 
					
						
						
							
							Conditionalise all debug strings.  
						
						 
						
						
						
						
					 
					
						2003-04-03 18:07:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f85b68cd49 
					 
					
						
						
							
							Make it possible to have multiple active certificates with the same  
						
						 
						
						... 
						
						
						
						subject. 
						
						
					 
					
						2003-04-03 16:33:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5679bcce07 
					 
					
						
						
							
							make RSA blinding thread-safe  
						
						 
						
						
						
						
					 
					
						2003-04-02 09:50:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						24692fc5d7 
					 
					
						
						
							
							It seems like gcc-drivven shared library building on OpenUnix 8 requires  
						
						 
						
						... 
						
						
						
						-shared rather than -G. 
						
						
					 
					
						2003-04-01 10:59:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4390d66179 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2003-03-31 22:29:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d678cc07ed 
					 
					
						
						
							
							No need to test -setalias twice.  
						
						 
						
						... 
						
						
						
						PR: 556 
						
						
					 
					
						2003-03-31 13:56:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6dd6da6005 
					 
					
						
						
							
							Don't feil when indent is 0.  
						
						 
						
						... 
						
						
						
						PR: 559 
						
						
					 
					
						2003-03-31 13:24:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						03eeb07152 
					 
					
						
						
							
							Add usage string for -fingerprint.  
						
						 
						
						... 
						
						
						
						PR: 560 
						
						
					 
					
						2003-03-31 13:06:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1a15c89988 
					 
					
						
						
							
							Multi valued AVA support.  
						
						 
						
						
						
						
					 
					
						2003-03-30 01:51:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d0a4bd00b6 
					 
					
						
						
							
							OpenUNIX 8 has some problems using -G with gcc.  Maybe using gnu-shared works better (will be tested tonight).  
						
						 
						
						
						
						
					 
					
						2003-03-28 08:57:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						423b1a840c 
					 
					
						
						
							
							Add warning about unwanted side effect when calling SSL_CTX_free():  
						
						 
						
						... 
						
						
						
						sessions in the external session cache might be removed.
Submitted by: "Nadav Har'El" <nyh@math.technion.ac.il >
PR: 547 
						
						
					 
					
						2003-03-27 22:04:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a47789e849 
					 
					
						
						
							
							Update VMS building system  
						
						 
						
						
						
						
					 
					
						2003-03-26 14:34:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e5b0508a14 
					 
					
						
						
							
							Update ocsp usage message and docs.  
						
						 
						
						
						
						
					 
					
						2003-03-26 00:46:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4d00669a0 
					 
					
						
						
							
							Let's limit the extent of the definition of _XOPEN_SOURCE.  
						
						 
						
						
						
						
					 
					
						2003-03-25 21:17:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d6cab100fa 
					 
					
						
						
							
							Missed a few dollars.  
						
						 
						
						... 
						
						
						
						PR: 528 
						
						
					 
					
						2003-03-25 20:56:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81bd0446a9 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-24 17:06:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						520b76ffd9 
					 
					
						
						
							
							Support for name constraints.  
						
						 
						
						
						
						
					 
					
						2003-03-24 17:04:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1c2d141238 
					 
					
						
						
							
							Name Constraints OID.  
						
						 
						
						
						
						
					 
					
						2003-03-24 00:56:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						32e75dd3f0 
					 
					
						
						
							
							Add SCO5 shared library scripts.  
						
						 
						
						... 
						
						
						
						Upate SVR5 scripts for the upcoming 0.9.7b.
Submitted by: Boyd Lynn Gerber <gerberb@zenez.com > 
						
						
					 
					
						2003-03-23 10:18:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						abfc6a3a9b 
					 
					
						
						
							
							To define OPENSSL_NO_FP_API for all MSDOS type targets was unfair  
						
						 
						
						... 
						
						
						
						against DJGPP, and much more restricted than previous definitions. 
						
						
					 
					
						2003-03-22 22:33:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5cc5ec1bba 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-21 16:28:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f80153e20b 
					 
					
						
						
							
							Support for policy constraints.  
						
						 
						
						
						
						
					 
					
						2003-03-21 16:26:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						33b34a9d8f 
					 
					
						
						
							
							remove patch ID (which is supposed to appear in patched variants of  
						
						 
						
						... 
						
						
						
						old OpenSSL releases, but not in new releases) 
						
						
					 
					
						2003-03-21 13:11:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9b94f215b1 
					 
					
						
						
							
							Define COMP method function prototypes properly.  
						
						 
						
						
						
						
					 
					
						2003-03-21 00:05:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8b5bcef798 
					 
					
						
						
							
							Make sure to declare mem*() properly.  
						
						 
						
						
						
						
					 
					
						2003-03-21 00:04:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ea17e1f00f 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:54:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						543105ac17 
					 
					
						
						
							
							Don't put configuration macro definitions on the command line, we're  
						
						 
						
						... 
						
						
						
						just fooling ourselves and then screwing up for other applications. 
						
						
					 
					
						2003-03-20 23:52:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3789284807 
					 
					
						
						
							
							Sometimes, we have partial comments on the same line as other stuff we  
						
						 
						
						... 
						
						
						
						parse.  Make sure to read in the whole comment, so it can be entirely
removed. 
						
						
					 
					
						2003-03-20 23:51:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						be9bec9bc7 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RSA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:34:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9c35452842 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_HMAC and OPENSSL_NO_SHA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:34:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						69104cdf34 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_SHA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:32:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dfefdb41f7 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RIPEMD.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:31:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cd6ab56da0 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MDC2.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:31:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c988c9b839 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MD5.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:31:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bff8e1dddb 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MD4.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:31:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						641e6ef2cb 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MD2.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:30:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9e9e8cb6a8 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_DES.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:29:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f118514501 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RC5.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:29:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						39c4b7092c 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RC4.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:29:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c7e7fc3ee4 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RC2.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:29:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						786b0075d5 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_IDEA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:28:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fb10590910 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_CAST.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						abf21308d2 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_BF.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:28:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8c84b677e2 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_AES.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:28:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d5ef144222 
					 
					
						
						
							
							Make sure we get the definition of a number of OPENSSL_NO_* macros.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:27:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						741dae576f 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_BIO.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						59ade20500 
					 
					
						
						
							
							Include e_os.h correctly.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:26:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c11b9af75e 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MD2.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:24:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						08a54f6e6a 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_FP_API.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:24:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8305477157 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_IDEA and IDEA_INT.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:24:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e8cc7de4f4 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_HMAC.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:23:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3b6aa36c77 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_ECDSA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:22:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						03829b2b47 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_ECDH.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:22:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						87c9c659de 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_EC.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:22:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						751ff1d376 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_DSA and OPENSSL_NO_SHA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:21:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d3ae5b1c8a 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_DH.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:21:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0f3879455b 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_EXTERN, OPENSSL_NO_DES,  
						
						 
						
						... 
						
						
						
						DES_LONG and OPENSSL_NO_DESCBCM. 
						
						
					 
					
						2003-03-20 23:21:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0c7d61ee0e 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_CAST.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:20:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						78951e7711 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_ERR.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:19:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ba4cc007b 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_SOCK.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:18:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7b5a6c7a62 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_FP_API.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:17:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						44deca977d 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_BF.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:17:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						536b73e78e 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_BIO and OPENSSL_NO_RSA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:16:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						940767b03f 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_AES.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:15:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d4a47a5778 
					 
					
						
						
							
							Because it may be needed in public header files, move the definition  
						
						 
						
						... 
						
						
						
						of OPENSSL_NO_FP_API on existence of OPENSSL_SYS_MSDOS to e_os2.h. 
						
						
					 
					
						2003-03-20 23:14:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b24668626e 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-20 17:59:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ea3675b5b6 
					 
					
						
						
							
							New ASN1 macros to just implement and declare the new and free functions  
						
						 
						
						... 
						
						
						
						and changes to mkdef.pl so it recognises them.
Use these in policyMappings extension. 
						
						
					 
					
						2003-03-20 17:58:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c554155b58 
					 
					
						
						
							
							make sure RSA blinding works when the PRNG is not properly seeded;  
						
						 
						
						... 
						
						
						
						enable it automatically for the built-in engine 
						
						
					 
					
						2003-03-20 17:31:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1d12daed2 
					 
					
						
						
							
							Support for policyMappings  
						
						 
						
						
						
						
					 
					
						2003-03-20 17:26:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f528cac5a 
					 
					
						
						
							
							Typo: OID should be policyMappings  
						
						 
						
						
						
						
					 
					
						2003-03-20 17:14:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10a66ad389 
					 
					
						
						
							
							Avoid warning.  
						
						 
						
						
						
						
					 
					
						2003-03-20 17:09:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e986704d24 
					 
					
						
						
							
							Add documentation for -starttls (s_client) and -id_prefix (s_server).  
						
						 
						
						... 
						
						
						
						PR: 542 
						
						
					 
					
						2003-03-20 16:34:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce06265a37 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-20 14:21:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						439909a068 
					 
					
						
						
							
							Some shells (ksh in this case) don't say 'command not found'.  
						
						 
						
						... 
						
						
						
						PR: 540 
						
						
					 
					
						2003-03-20 11:44:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d177e6180d 
					 
					
						
						
							
							Spelling errors.  
						
						 
						
						... 
						
						
						
						PR: 538 
						
						
					 
					
						2003-03-20 11:41:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						48f1fa7482 
					 
					
						
						
							
							Make sure that all the library paths are modified in prepend mode, not  
						
						 
						
						... 
						
						
						
						replace mode.
PR: 528 
						
						
					 
					
						2003-03-20 11:37:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aa9d896b0d 
					 
					
						
						
							
							hinv may generate more than one line (1 line per CPU).  
						
						 
						
						... 
						
						
						
						PR: 520 
						
						
					 
					
						2003-03-20 11:15:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						42a559163d 
					 
					
						
						
							
							Shut up an ANSI compiler about uninitialised variables.  
						
						 
						
						... 
						
						
						
						PR: 517 
						
						
					 
					
						2003-03-20 10:57:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3285eb336c 
					 
					
						
						
							
							Add the target linux-ia64-ecc, suggested by Keith Thompson <kst@sdsc.edu>.  
						
						 
						
						... 
						
						
						
						PR: 516 
						
						
					 
					
						2003-03-20 10:50:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						02da5bcd83 
					 
					
						
						
							
							countermeasure against new Klima-Pokorny-Rosa atack  
						
						 
						
						
						
						
					 
					
						2003-03-19 19:19:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ed1fa4813 
					 
					
						
						
							
							Fix Certificate and CRL adding in X509_load_cert_crl_file:  
						
						 
						
						... 
						
						
						
						an X509_INFO structure can contain more than one object,
for example a certififcate and a CRL. 
						
						
					 
					
						2003-03-19 13:55:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						500df82a96 
					 
					
						
						
							
							fix formatting  
						
						 
						
						
						
						
					 
					
						2003-03-18 12:52:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8e0e3716a 
					 
					
						
						
							
							Fix for no-ec on Windows.  
						
						 
						
						
						
						
					 
					
						2003-03-15 01:28:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc441b739b 
					 
					
						
						
							
							Don't give an error if response reason absent in OCSP HTTP.  
						
						 
						
						
						
						
					 
					
						2003-03-14 23:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e6539fe22d 
					 
					
						
						
							
							Add entry for domainComponent so it is treated correctly.  
						
						 
						
						... 
						
						
						
						Add table order test to end of a_strnid.c 
						
						
					 
					
						2003-03-14 01:44:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba5df66a8b 
					 
					
						
						
							
							Add some OIDs.  
						
						 
						
						
						
						
					 
					
						2003-03-13 23:37:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						12d4e7b8c8 
					 
					
						
						
							
							Fix PEDANTIC stuff...  
						
						 
						
						
						
						
					 
					
						2003-03-13 21:28:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bba2cb3ada 
					 
					
						
						
							
							Fix a bone-head bug. This warrants a CHANGES entry because it could affect  
						
						 
						
						... 
						
						
						
						applications if they were passing a bogus 'flags' parameter yet having
things work as they wanted anyway. 
						
						
					 
					
						2003-03-13 20:28:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52c4c51f02 
					 
					
						
						
							
							Return an error if gmtime returns NULL.  
						
						 
						
						
						
						
					 
					
						2003-03-13 14:13:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						767712fa62 
					 
					
						
						
							
							Avoid warnings for no-engine and PEDANTIC  
						
						 
						
						
						
						
					 
					
						2003-03-12 02:38:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90e8a3102b 
					 
					
						
						
							
							Fixes for EVP_DigestInit_ex() and OPENSSL_NO_ENGINE.  
						
						 
						
						
						
						
					 
					
						2003-03-12 02:31:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						879650b866 
					 
					
						
						
							
							The default implementation of DSA_METHOD has an interdependence on the  
						
						 
						
						... 
						
						
						
						dsa_mod_exp() and bn_mod_exp() handlers from dsa_do_verify() and
dsa_sign_setup(). When another DSA_METHOD implementation does not define
these lower-level handlers, it becomes impossible to do a fallback to
software on errors using a simple DSA_OpenSSL()->fn(key).
This change allows the default DSA_METHOD to function in such circumstances
by only using dsa_mod_exp() and bn_mod_exp() handlers if they exist,
otherwise using BIGNUM implementations directly (which is what those
handlers did before this change). There should be no noticable difference
for the software case, or indeed any custom case that didn't already
segfault, except perhaps that there is now one less level of indirection in
all cases.
PR: 507 
						
						
					 
					
						2003-03-11 01:49:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						176f31ddec 
					 
					
						
						
							
							- new ECDH_compute_key interface (KDF is no longer a fixed built-in)  
						
						 
						
						... 
						
						
						
						- bugfix: in ECDH_compute_key, pad x coordinate with leading zeros if necessary 
						
						
					 
					
						2003-02-28 15:37:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fe14ee96db 
					 
					
						
						
							
							memset problem has been handled  
						
						 
						
						... 
						
						
						
						PR: 343 
						
						
					 
					
						2003-02-28 15:17:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						57376542a0 
					 
					
						
						
							
							use tabs for indentation, not spaces  
						
						 
						
						
						
						
					 
					
						2003-02-28 15:07:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8dc9693a7 
					 
					
						
						
							
							Encryption BIOs misbehave when used with non blocking I/O.  
						
						 
						
						... 
						
						
						
						Two fixes:
1. If BIO_write() fails inside enc_write() it should return the
   total number of bytes successfully written.
2. If BIO_write() fails during BIO_flush() it should return immediately
   with the error code: previously it would fall through to the final
   encrypt, corrupting the buffer. 
						
						
					 
					
						2003-02-27 14:07:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ac26a5ce5 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-02-27 13:02:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						155bd1137e 
					 
					
						
						
							
							add Certicom licensing e-mail address  
						
						 
						
						
						
						
					 
					
						2003-02-27 12:25:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f0dc08e656 
					 
					
						
						
							
							Support for dirName from config files in GeneralName extensions.  
						
						 
						
						
						
						
					 
					
						2003-02-27 01:54:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e9ec63961b 
					 
					
						
						
							
							Fix indefinite length encoding so EOC correctly updates  
						
						 
						
						... 
						
						
						
						the buffer pointer.
Rename PKCS7_PARTSIGN to PKCS7_STREAM.
Guess what that's for :-) 
						
						
					 
					
						2003-02-25 19:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0185803cc2 
					 
					
						
						
							
							year 2003  
						
						 
						
						
						
						
					 
					
						2003-02-24 17:18:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5c9a9c9c33 
					 
					
						
						
							
							include OpenSSL license (in addition to EAY license)  
						
						 
						
						
						
						
					 
					
						2003-02-24 17:15:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						63ff3e83fc 
					 
					
						
						
							
							Add instructions for building the MinGW target in Cygwin, and  
						
						 
						
						... 
						
						
						
						rearrange some of the other text for better readability. 
						
						
					 
					
						2003-02-22 23:03:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						b4f43344d5 
					 
					
						
						
							
							Copy rather than symlink the test data.  
						
						 
						
						... 
						
						
						
						This is needed because Windows doesn't support symlinks.
The Cygwin/MinGW build now passes "make test". 
						
						
					 
					
						2003-02-22 22:19:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c8c5cec1f9 
					 
					
						
						
							
							remove some more useless code. The mingw target can now be built  
						
						 
						
						... 
						
						
						
						under cygwin. 
						
						
					 
					
						2003-02-22 22:15:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						66ecdf3bfb 
					 
					
						
						
							
							more mingw related cleanups.  
						
						 
						
						
						
						
					 
					
						2003-02-22 18:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7841edc9c1 
					 
					
						
						
							
							Remove duplication and have clean depend on libclean  
						
						 
						
						
						
						
					 
					
						2003-02-22 15:04:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						132eaa59da 
					 
					
						
						
							
							Allow building applications against static libraries with Makefile.shared.  
						
						 
						
						
						
						
					 
					
						2003-02-22 14:41:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5562cfaca4 
					 
					
						
						
							
							Base64 bio fixes. The base64 bio was seriously broken  
						
						 
						
						... 
						
						
						
						when reading from a non blocking BIO.
It would incorrectly interpret retries as EOF, incorrectly
buffer initial data and have no buffering at all after initial
data (data would be sent one byte at a time to EVP_DecodeUpdate). 
						
						
					 
					
						2003-02-22 02:12:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c8252b71b5 
					 
					
						
						
							
							add test  
						
						 
						
						
						
						
					 
					
						2003-02-22 01:20:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						94949a50aa 
					 
					
						
						
							
							avoid duplicate definiton of bn_sub_part_words  
						
						 
						
						
						
						
					 
					
						2003-02-21 23:19:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						0214893e6a 
					 
					
						
						
							
							clean up MinGW build. MinGW make now supports the Windows path name  
						
						 
						
						... 
						
						
						
						conventions. 
						
						
					 
					
						2003-02-21 22:59:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						5be4a42e99 
					 
					
						
						
							
							update mingw info  
						
						 
						
						
						
						
					 
					
						2003-02-21 22:09:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f2aa055ec6 
					 
					
						
						
							
							treat 'out' like i2d functions do; cf. asn1_item_flags_i2d (crypto/asn/tasn_enc.c)  
						
						 
						
						
						
						
					 
					
						2003-02-21 16:06:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						62e3163b1b 
					 
					
						
						
							
							ECPublicKey_set_octet_string and ECPublicKey_get_octet_string  
						
						 
						
						... 
						
						
						
						behaviour was not quite consistent with the conventions
for d2i and i2d functions as far as handling of the 'out'
or 'in' pointer is concerned.
This patch changes this behaviour, and renames the functions to
o2i_ECPublicKey and i2o_ECPublicKey (not 'd2i' and 'i2d' because the
external encoding is just a raw object string without any DER icing).
Submitted by: Nils Larsch 
						
						
					 
					
						2003-02-21 13:58:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8214e74f76 
					 
					
						
						
							
							Ooops forgot to recognise V_ASN1_GENERALSTRING.  
						
						 
						
						
						
						
					 
					
						2003-02-20 17:13:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						542a1b1a2e 
					 
					
						
						
							
							Re enable the read side non blocking test BIO code.  
						
						 
						
						... 
						
						
						
						For some reason it was disabled... 
						
						
					 
					
						2003-02-20 13:39:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5672e3a321 
					 
					
						
						
							
							Fix bug in base64 bios during write an non blocking I/O:  
						
						 
						
						... 
						
						
						
						if the write fails when flushing the buffer return the
value to the application so it can retry. 
						
						
					 
					
						2003-02-20 13:37:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fbbfd86b67 
					 
					
						
						
							
							typo  
						
						 
						
						... 
						
						
						
						PR: 511
Submitted by: Eric Cronin 
						
						
					 
					
						2003-02-19 16:29:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d8cbc93585 
					 
					
						
						
							
							Update release information  
						
						 
						
						
						
						
					 
					
						2003-02-19 14:02:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b0b0e98ce 
					 
					
						
						
							
							Security fix: Vaudenay timing attack on CBC.  
						
						 
						
						... 
						
						
						
						An advisory will be posted to the web.  Expect a release within the hour. 
						
						
					 
					
						2003-02-19 12:03:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d5234c7b3a 
					 
					
						
						
							
							Make sure the memory allocation routines check for negative sizes  
						
						 
						
						
						
						
					 
					
						2003-02-19 11:54:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						77e270d10e 
					 
					
						
						
							
							Borland C++ Builder 5 complains about unreachable statements.  
						
						 
						
						
						
						
					 
					
						2003-02-19 11:22:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c893bffae7 
					 
					
						
						
							
							Update debub-steve* entries.  
						
						 
						
						
						
						
					 
					
						2003-02-19 01:04:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						988e8458ad 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-02-18 12:46:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						758f942b88 
					 
					
						
						
							
							Make the no-err option work properly  
						
						 
						
						
						
						
					 
					
						2003-02-18 12:14:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						26e9724458 
					 
					
						
						
							
							Remove "+Olibcalls" option from HPUX targets.  
						
						 
						
						... 
						
						
						
						Reportedly this option is deprecated, and on some systems
"make test" fails if it is included.
PR: 495 
						
						
					 
					
						2003-02-16 20:10:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						4879ec7bf3 
					 
					
						
						
							
							Session cache implementations shouldn't have to access SSL_SESSION  
						
						 
						
						... 
						
						
						
						elements directly, so this missing functionality is required.
PR: 276 
						
						
					 
					
						2003-02-15 20:38:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b653327d47 
					 
					
						
						
							
							Declare prototypes for function pointer types, even if they are likely to  
						
						 
						
						... 
						
						
						
						be cast later on. 
						
						
					 
					
						2003-02-15 20:32:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4cadedef57 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2003-02-15 01:09:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						27068df7e0 
					 
					
						
						
							
							Single pass processing to cleartext S/MIME signing.  
						
						 
						
						
						
						
					 
					
						2003-02-15 00:50:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b12753dffc 
					 
					
						
						
							
							We cache a montgomery form for 'n' if the PUBLIC flag is set, not PRIVATE.  
						
						 
						
						... 
						
						
						
						Also, I've added handling for other mod_exp calls that were not using any
cached montgomery forms. These cases matter only for special RSA keys (eg.
ones that are missing information) so are unlikely to be used in normal
circumstances. 
						
						
					 
					
						2003-02-15 00:18:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						79221bc265 
					 
					
						
						
							
							David Brumley <dbrumley@stanford.edu> noted and corrected a case in the  
						
						 
						
						... 
						
						
						
						verification step of CRT private key operations in the RSA code -
previously no montgomery form was checked or used for 'n', and so it would
be generated on the fly each time. As a result, private key operations are
now a percent or two faster.
Rather than adding this as another repetition of the nearly-identical
montgomery "check for first-use" initialisation code blocks, I've taken
this chance to create a helper function and macro-wrapper to replace them.
PR: 475 
						
						
					 
					
						2003-02-14 23:21:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ffa49dc3d9 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-02-14 14:21:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b7bbac72c4 
					 
					
						
						
							
							Add support for IA64.  
						
						 
						
						... 
						
						
						
						PR: 454 
						
						
					 
					
						2003-02-14 13:30:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c1269c81fd 
					 
					
						
						
							
							Handle krb5 libraries separately and make sure only libssl.so depends  
						
						 
						
						... 
						
						
						
						on it. 
						
						
					 
					
						2003-02-14 13:12:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						794a386af3 
					 
					
						
						
							
							Update linux-mips and linux-mipsel to support threads and shared libraries.  
						
						 
						
						... 
						
						
						
						I also updated the bn_ops field with values taken from OpenBSD-mips.
PR: 498 
						
						
					 
					
						2003-02-14 08:56:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e270cf9c5e 
					 
					
						
						
							
							Pay attention to disabled SSL versions.  
						
						 
						
						... 
						
						
						
						PR: 500 
						
						
					 
					
						2003-02-14 05:24:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e38616d1f 
					 
					
						
						
							
							Change no_rmd160 to no_ripemd for consistency.  
						
						 
						
						... 
						
						
						
						PR: 500 
						
						
					 
					
						2003-02-14 05:20:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						85d686e723 
					 
					
						
						
							
							Make it possible to disable OCSP, the speed application, and the use of sockets.  
						
						 
						
						... 
						
						
						
						PR: 358 
						
						
					 
					
						2003-02-14 01:02:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2d3de726c5 
					 
					
						
						
							
							Add full support for -rpath/-R, both in shared libraries and  
						
						 
						
						... 
						
						
						
						applications, at least on the platforms where it's known how
to do it.
Note: this has only been tested on GNU-based platforms (Linux), and
needs to be tested on all others.  Additionally, it's not yet
supported on the following platforms, for lack of information:
Darwin (MacOS X)
Cygwin
OSF1/Alpha
SVR3
ReliantUNIX
Please help out with testing and the platforms we don't yet know well
enough. 
						
						
					 
					
						2003-02-13 23:52:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4989f0599f 
					 
					
						
						
							
							Another long name to deal with  
						
						 
						
						
						
						
					 
					
						2003-02-13 13:21:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e4b52ac353 
					 
					
						
						
							
							Oh, the destest program did look at the return value...  
						
						 
						
						
						
						
					 
					
						2003-02-13 08:53:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						abd22c9c46 
					 
					
						
						
							
							new lock for EC_PRE_COMP structures  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-02-12 22:01:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ba729265a8 
					 
					
						
						
							
							Allow EC_GROUP objects to share precomputation for improved memory  
						
						 
						
						... 
						
						
						
						efficiency (EC_PRE_COMP objects are now constant once completed).
Extend 'extra_data' API to support arbitrarily many slots (although we
need only one at the moment).
Modify EC internal 'extra_data' API: EC_GROUP_[clear_]free_extra_data
now frees only a single slot (the previous functions are available as
EC_GROUP_[clear_]free_all_extra_data).
Submitted by: Nils Larsch
Reviewed by: Bodo Moeller 
						
						
					 
					
						2003-02-12 18:30:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ec1d35f29 
					 
					
						
						
							
							Adjust DES_cbc_cksum() so the returned value is the same as MIT's  
						
						 
						
						... 
						
						
						
						mit_des_cbc_cksum().  The difference was first observed, then verified by
looking at the MIT source. 
						
						
					 
					
						2003-02-12 17:20:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf56663fb7 
					 
					
						
						
							
							Option to disable SSL auto chain build  
						
						 
						
						
						
						
					 
					
						2003-02-12 17:06:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ea513641d0 
					 
					
						
						
							
							comments  
						
						 
						
						
						
						
					 
					
						2003-02-12 14:17:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8537943e8b 
					 
					
						
						
							
							first section is now "Changes between 0.9.7a and 0.9.8", not "... 0.9.7 and 0.9.8"  
						
						 
						
						
						
						
					 
					
						2003-02-11 16:42:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a8f5b2ed50 
					 
					
						
						
							
							GeneralString support in mini-ASN1 compiler  
						
						 
						
						
						
						
					 
					
						2003-02-11 14:06:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33075f229e 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-02-10 17:52:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28f573a28d 
					 
					
						
						
							
							Make sure memcpy() is properly declared by including string.h.  
						
						 
						
						
						
						
					 
					
						2003-02-10 11:14:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e2c9c91b5b 
					 
					
						
						
							
							fix EC_GROUP_copy for EC_GFp_nist_method()  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-02-08 19:51:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d42d2d1ab6 
					 
					
						
						
							
							avoid coredump  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-02-08 19:49:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						65b254e8c0 
					 
					
						
						
							
							remove debugging leftovers  
						
						 
						
						
						
						
					 
					
						2003-02-08 15:56:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						82871eaa17 
					 
					
						
						
							
							comment  
						
						 
						
						
						
						
					 
					
						2003-02-07 11:54:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						24893ca999 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2003-02-06 19:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27a9bf17c7 
					 
					
						
						
							
							PKCS#1 has a new RFC, which we do implement  
						
						 
						
						
						
						
					 
					
						2003-02-06 19:30:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						37c660ff9b 
					 
					
						
						
							
							implement fast point multiplication with precomputation  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Bodo Moeller 
						
						
					 
					
						2003-02-06 19:25:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						772ec4135c 
					 
					
						
						
							
							typo in WIN16 section  
						
						 
						
						... 
						
						
						
						Submitted by: Toni Andjelkovic <toni@soth.at > 
						
						
					 
					
						2003-02-05 16:54:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0e9035ac98 
					 
					
						
						
							
							SSL_add_dir_cert_subjects_to_stack now exists for WIN32  
						
						 
						
						
						
						
					 
					
						2003-02-05 16:40:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e5d3a7f98 
					 
					
						
						
							
							IPv6 display and input support for extensions usingh GeneralName.  
						
						 
						
						
						
						
					 
					
						2003-02-05 00:34:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						379e568950 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2003-02-04 12:57:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c09a297892 
					 
					
						
						
							
							Update PRNG entry:  
						
						 
						
						... 
						
						
						
						- OpenSSL version differences
- Sun /dev/urandom patch information 
						
						
					 
					
						2003-02-04 12:28:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2619676256 
					 
					
						
						
							
							Old-style callbacks can be NULL!  
						
						 
						
						
						
						
					 
					
						2003-02-01 20:58:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						33cc07f79a 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2003-02-01 20:55:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c029841e36 
					 
					
						
						
							
							We can't say in advance what the argument to BIO_socket_ioctl() should be, so  
						
						 
						
						... 
						
						
						
						let's make that a void *.  Also, BIO_socket_nbio() should send it an int
argument, not a long.
PR: 457 
						
						
					 
					
						2003-01-31 12:20:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bfa3555081 
					 
					
						
						
							
							Document -engine where missing.  
						
						 
						
						... 
						
						
						
						PR: 424 
						
						
					 
					
						2003-01-30 22:02:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5d780babe3 
					 
					
						
						
							
							A few small bugs with BIO popping.  
						
						 
						
						... 
						
						
						
						PR: 364 
						
						
					 
					
						2003-01-30 21:49:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5cd48abf9f 
					 
					
						
						
							
							The util scripts need to handled no-hw.  
						
						 
						
						... 
						
						
						
						PR: 327 
						
						
					 
					
						2003-01-30 20:03:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						db5006df04 
					 
					
						
						
							
							The MASM situation is more difficult than described so far.  It is part of VC++ 7.  
						
						 
						
						... 
						
						
						
						PR: 327 
						
						
					 
					
						2003-01-30 19:05:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3d6a84c42a 
					 
					
						
						
							
							For VC++7 and up, the file is VSVARS32.BAT.  
						
						 
						
						... 
						
						
						
						PR: 327 
						
						
					 
					
						2003-01-30 19:01:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5fe11c7533 
					 
					
						
						
							
							The OPENSSL_NO_ENGINE has small problem: it changes certain structures.  That's  
						
						 
						
						... 
						
						
						
						bad, so let's not check OPENSSL_NO_ENGINE in those places.  Fortunately, all
the header files where the problem existed include ossl_typ.h, which makes
a 'forward declaration' of the ENGINE type. 
						
						
					 
					
						2003-01-30 18:52:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a1d57849b3 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-01-30 17:53:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b13e9f055 
					 
					
						
						
							
							Add the possibility to build without the ENGINE framework.  
						
						 
						
						... 
						
						
						
						PR: 287 
						
						
					 
					
						2003-01-30 17:39:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						96f7065f63 
					 
					
						
						
							
							Summarise the last couple of commits.  
						
						 
						
						
						
						
					 
					
						2003-01-30 15:52:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f3c22ef10d 
					 
					
						
						
							
							This glues the GMP wrapper ENGINE into OpenSSL if it is being built (ie. if  
						
						 
						
						... 
						
						
						
						the OPENSSL_USE_GMP symbol is defined). Also, I've re-ordered the listing
of other builtin ENGINEs to be alphabetical (though "dynamic" will still
come first). 
						
						
					 
					
						2003-01-30 15:49:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a85bef1899 
					 
					
						
						
							
							Commit a slightly modified version of an old experiment to do RSA private  
						
						 
						
						... 
						
						
						
						key operations using the GMP library. The default is not to build (or use)
this code unless OPENSSL_USE_GMP is defined (because it will impose header
and linker dependencies that might need specifying too). 
						
						
					 
					
						2003-01-30 15:43:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bb3e67f315 
					 
					
						
						
							
							"openssl engine" will not display ENGINE/DSO load failure errors when  
						
						 
						
						... 
						
						
						
						testing availability of engines with "-t" - the old behaviour of is
produced by increasing the feature's verbosity with "-tt". 
						
						
					 
					
						2003-01-30 14:58:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c0a93e31ab 
					 
					
						
						
							
							Small typo, OENSSL should really be spelled OPENSSL.  
						
						 
						
						... 
						
						
						
						PR: 476 
						
						
					 
					
						2003-01-30 11:08:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2e60ea7634 
					 
					
						
						
							
							Fix a memory leak in SSL.  
						
						 
						
						... 
						
						
						
						PR: 477 
						
						
					 
					
						2003-01-30 11:00:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e78074b39 
					 
					
						
						
							
							cert_sk isn't always allocated, so freeing it may cause a crash.  
						
						 
						
						... 
						
						
						
						PR: 481 
						
						
					 
					
						2003-01-30 10:27:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b637670f03 
					 
					
						
						
							
							DVCS (see RFC 3029) was missing among the possible purposes.  
						
						 
						
						... 
						
						
						
						Notified privately to me by Peter Sylvester <Peter.Sylvester@EdelWeb.fr >,
one of the authors of said RFC 
						
						
					 
					
						2003-01-29 15:06:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bd1217a176 
					 
					
						
						
							
							simplify  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-28 13:08:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da45180de4 
					 
					
						
						
							
							Correct EVP_SealInit() documentation, iv is an output  
						
						 
						
						... 
						
						
						
						parameter. 
						
						
					 
					
						2003-01-26 13:38:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						82516e3baf 
					 
					
						
						
							
							cofactor is optional in parameter encodings  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-25 15:28:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c1862f9136 
					 
					
						
						
							
							consistency  
						
						 
						
						
						
						
					 
					
						2003-01-24 22:28:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9048c7245b 
					 
					
						
						
							
							For ecdsa-with-SHA1, as for id-dsa-with-sha1, omit 'parameters'  
						
						 
						
						... 
						
						
						
						in AlgorithmIdentifier
Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-24 21:43:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02bf9a151a 
					 
					
						
						
							
							Provide "dummy" &main::picmeup even in Windows perlasm modules.  
						
						 
						
						
						
						
					 
					
						2003-01-24 09:39:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3b5cb5343 
					 
					
						
						
							
							Check return value of gmtime() and add error codes  
						
						 
						
						... 
						
						
						
						where it fails in ASN1_TIME_set().
Edit asn1.h so the new error code is the same in 0.9.7
and 0.9.8, rebuild new error codes.
Clear error queue in req.c if *_min or *_max is absent. 
						
						
					 
					
						2003-01-24 01:12:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						97e6bf6b22 
					 
					
						
						
							
							Workaround for lame compiler bug introduced in "CPU pack" for MSVC6SP5.  
						
						 
						
						
						
						
					 
					
						2003-01-23 10:05:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						04da4558dd 
					 
					
						
						
							
							The patch speaks for itself.  
						
						 
						
						
						
						
					 
					
						2003-01-23 09:52:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0c3426da86 
					 
					
						
						
							
							Missing 0 broke FreeBSD build.  
						
						 
						
						... 
						
						
						
						PR: 470 
						
						
					 
					
						2003-01-23 08:10:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9b3f03d5a2 
					 
					
						
						
							
							fix warnings  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-21 09:53:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9abff96b2f 
					 
					
						
						
							
							Suggestion was to change ${MACHINE} to i586 in lines in question. Well,  
						
						 
						
						... 
						
						
						
						"whatever" doesn't the same (avoids 386 being passed to ./Configure),
consistent with other elder SCO targets and denotes that we probably
shouldn't care much about every out-of-date platform. 
						
						
					 
					
						2003-01-19 21:47:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						722d17cbac 
					 
					
						
						
							
							This is an *initial* tune-up. This update puts Itanium2 back on par with  
						
						 
						
						... 
						
						
						
						Itanium. I mean if overall performance improvement over C version was X
for Itanium, it's X even for Itanium2. 
						
						
					 
					
						2003-01-19 21:29:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						59b846c515 
					 
					
						
						
							
							Oops! Missed closing quote... Didn't have time to verify before a snapshot  
						
						 
						
						... 
						
						
						
						was cut... 
						
						
					 
					
						2003-01-19 11:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						42bf2a5cdc 
					 
					
						
						
							
							SCO target missed .so suffix.  
						
						 
						
						
						
						
					 
					
						2003-01-18 21:57:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						80bcbaa02f 
					 
					
						
						
							
							-lresolv is not present on SCO Unix, RT#460.  
						
						 
						
						
						
						
					 
					
						2003-01-18 18:12:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7c4e24af38 
					 
					
						
						
							
							Caldera/SCO targets erroneously limit themselves to 386. See RT#464.  
						
						 
						
						
						
						
					 
					
						2003-01-18 15:17:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						726c223143 
					 
					
						
						
							
							Fix for AIX shared build, see RT#463.  
						
						 
						
						
						
						
					 
					
						2003-01-18 15:13:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59ae8c9419 
					 
					
						
						
							
							EVP_DecryptInit() should call EVP_CipherInit() not EVP_CipherInit_ex().  
						
						 
						
						
						
						
					 
					
						2003-01-17 00:48:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0bdd2da5d2 
					 
					
						
						
							
							Ingore the correct flag file.  
						
						 
						
						
						
						
					 
					
						2003-01-16 21:36:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2f09524501 
					 
					
						
						
							
							A few more files to ignore  
						
						 
						
						
						
						
					 
					
						2003-01-16 21:32:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						06492aef01 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-01-16 21:20:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c00cee00fd 
					 
					
						
						
							
							FreeBSD has /dev/crypto as well.  
						
						 
						
						... 
						
						
						
						PR: 462 
						
						
					 
					
						2003-01-16 18:29:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8228f302dd 
					 
					
						
						
							
							Add some debugging output.  
						
						 
						
						
						
						
					 
					
						2003-01-16 17:28:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						018c56fdca 
					 
					
						
						
							
							Armor against systems without ranlib...  
						
						 
						
						... 
						
						
						
						Submitted by: Thierry Lelegard <thierry.lelegard@canal-plus.fr >
PR: 461 
						
						
					 
					
						2003-01-16 17:22:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d745af4b0c 
					 
					
						
						
							
							avoid potential confusion about curves (prime192v1 and prime256v1 are  
						
						 
						
						... 
						
						
						
						also known as secp192r1 and secp256r1, respectively)
Submitted by: Nils Larsch, Bodo Moeller 
						
						
					 
					
						2003-01-16 16:05:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						44ea41cfff 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-01-16 13:01:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						acad5755a2 
					 
					
						
						
							
							ncr-scde target needs -lc89 for strcasecmp() and ftime() (Tim Rice, Martin  
						
						 
						
						... 
						
						
						
						Megele).
PR: 450 
						
						
					 
					
						2003-01-16 07:54:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28b958f732 
					 
					
						
						
							
							Fix possible NULL dereferencial.  
						
						 
						
						... 
						
						
						
						Notified by Verdon Walker <VWalker@novell.com > 
						
						
					 
					
						2003-01-16 06:00:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e59cd3bb6 
					 
					
						
						
							
							Add verbosity  
						
						 
						
						
						
						
					 
					
						2003-01-15 17:23:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a74333f905 
					 
					
						
						
							
							Fix initialization sequence to prevent freeing of unitialized objects.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch <nla@trustcenter.de >
PR: 459 
						
						
					 
					
						2003-01-15 14:54:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						365e14622a 
					 
					
						
						
							
							update error library for EC... changes  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-15 11:47:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						8ec16ce711 
					 
					
						
						
							
							Really fix SSLv2 session ID handling  
						
						 
						
						... 
						
						
						
						PR: 377 
						
						
					 
					
						2003-01-15 09:51:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0e4aa0d2d2 
					 
					
						
						
							
							As with RSA, which was modified recently, this change makes it possible to  
						
						 
						
						... 
						
						
						
						override key-generation implementations by placing handlers in the methods
for DSA and DH. Also, parameter generation for DSA and DH is possible by
another new handler for each method. 
						
						
					 
					
						2003-01-15 02:01:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						08cb96bba2 
					 
					
						
						
							
							Set EXPORT_VAR_AS_FN for BC-32 to work around a compiler bug,  
						
						 
						
						
						
						
					 
					
						2003-01-14 20:54:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cdc5b4a41e 
					 
					
						
						
							
							Extend the HOWTO on creating certificates, and add a HOWTO in creating keys.  
						
						 
						
						... 
						
						
						
						PR: 422 
						
						
					 
					
						2003-01-14 15:42:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						52e5e5c2ba 
					 
					
						
						
							
							Document hpux-parisc2-cc problems, probably due to optimizer bug.  
						
						 
						
						... 
						
						
						
						PR: 426 
						
						
					 
					
						2003-01-14 13:57:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c653b56937 
					 
					
						
						
							
							Correct an example that has a few typos.  
						
						 
						
						... 
						
						
						
						PR: 458 
						
						
					 
					
						2003-01-14 13:56:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						04aff67de4 
					 
					
						
						
							
							Merge from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2003-01-13 17:16:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a6356b2ca 
					 
					
						
						
							
							Minor FAQ update  
						
						 
						
						
						
						
					 
					
						2003-01-13 16:34:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b05645902a 
					 
					
						
						
							
							"!Cname surname" has now become redundant ...  
						
						 
						
						
						
						
					 
					
						2003-01-13 15:57:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						54d4f8c320 
					 
					
						
						
							
							undo part of a recent change: it's "surname", not "surName"  
						
						 
						
						... 
						
						
						
						(see X.520 aka ISO/IEC 9594-6) 
						
						
					 
					
						2003-01-13 15:52:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c76153f31d 
					 
					
						
						
							
							Make sure not to declare a clashing read() for DJGPP.  
						
						 
						
						... 
						
						
						
						PR: 440 
						
						
					 
					
						2003-01-13 15:35:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8cbb91c857 
					 
					
						
						
							
							DJGPP doesn't have DLLs, so skip adding to %PATH% in that environment.  
						
						 
						
						... 
						
						
						
						PR: 453 
						
						
					 
					
						2003-01-13 15:16:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						aaae0aa48b 
					 
					
						
						
							
							add something to the '$no_shared_warn' text  
						
						 
						
						
						
						
					 
					
						2003-01-13 14:58:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0535d3b25f 
					 
					
						
						
							
							Correct a misleading comment.  
						
						 
						
						... 
						
						
						
						PR: 456 
						
						
					 
					
						2003-01-13 14:53:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						62be003150 
					 
					
						
						
							
							Revert: the names of the cygwin distribution will not be named openssl2-*.  
						
						 
						
						... 
						
						
						
						Requested by Corinna Vinschen <vinschen@redhat.com > 
						
						
					 
					
						2003-01-13 14:47:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						364c7cd621 
					 
					
						
						
							
							UI_UTIL_read_pw() misinterpreted the values returned from UI functions.  
						
						 
						
						... 
						
						
						
						PR: 456 
						
						
					 
					
						2003-01-13 14:17:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9d5390a049 
					 
					
						
						
							
							document BN_GENCB API by adding an example  
						
						 
						
						
						
						
					 
					
						2003-01-13 13:44:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bda2fa364d 
					 
					
						
						
							
							Typo.  
						
						 
						
						... 
						
						
						
						NB: This and other manual pages should be updated for the new
BN_GENCB interface. 
						
						
					 
					
						2003-01-13 13:18:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						caa7b2ad4f 
					 
					
						
						
							
							tty_in will never be stderr, so it will always be closed, which means stdin  
						
						 
						
						... 
						
						
						
						might get closed...
Reported by Mark Daniel <Mark.Daniel@wasd.vsm.com.au > 
						
						
					 
					
						2003-01-13 13:15:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c14b4d6b38 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2003-01-13 12:52:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0382c95e4d 
					 
					
						
						
							
							OpenBSD FAQ update. Apparently gas from binutils-2.x makes it impossible to  
						
						 
						
						... 
						
						
						
						use gcc -fPIC ... on OpenBSD-i386. Alternative solution is provided. 
						
						
					 
					
						2003-01-12 21:39:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fda20f08d0 
					 
					
						
						
							
							Just an extra comment.  
						
						 
						
						
						
						
					 
					
						2003-01-12 15:50:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						afd41c9fc7 
					 
					
						
						
							
							Add better support for FreeBSD on non-x86 machines.  
						
						 
						
						... 
						
						
						
						Add specific support for FreeBSD on sparc64.
PR: 427 
						
						
					 
					
						2003-01-12 04:43:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2964ba8c6a 
					 
					
						
						
							
							If the user said 'shared' and we haven't included support for shared libraries,  
						
						 
						
						... 
						
						
						
						warn him or her.
Reminder by Andrew Marlow <apm35@student.open.ac.uk > 
						
						
					 
					
						2003-01-11 11:40:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c0cc5c3059 
					 
					
						
						
							
							Double the dollars that are intended for the command line.  
						
						 
						
						... 
						
						
						
						PR: 423 
						
						
					 
					
						2003-01-10 16:32:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e68cb95d84 
					 
					
						
						
							
							Add documentation on how to handle the shared libaries.  
						
						 
						
						... 
						
						
						
						PR: 423 
						
						
					 
					
						2003-01-10 16:14:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						448666239c 
					 
					
						
						
							
							Name the flag file correctly  
						
						 
						
						
						
						
					 
					
						2003-01-10 16:04:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c0ac323360 
					 
					
						
						
							
							CFLAG, not CFLAGS  
						
						 
						
						
						
						
					 
					
						2003-01-10 11:30:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a0cd3ca62b 
					 
					
						
						
							
							It's recommended to do 'make clean' after having prepared a new build tree.  
						
						 
						
						... 
						
						
						
						PR: 437 
						
						
					 
					
						2003-01-10 11:00:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4a9476dd8d 
					 
					
						
						
							
							When preparing a separate build tree, don't make softlinks to softlinks.  
						
						 
						
						... 
						
						
						
						Add instructions in INSTALL, for easy access.
PR: 437 
						
						
					 
					
						2003-01-10 10:56:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d2511688d 
					 
					
						
						
							
							Force the removal.  
						
						 
						
						... 
						
						
						
						PR: 437 
						
						
					 
					
						2003-01-10 10:54:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						969511d2cb 
					 
					
						
						
							
							Certain files must be removed before generating them, in case they point  
						
						 
						
						... 
						
						
						
						into a read-only source tree.
PR: 437 
						
						
					 
					
						2003-01-10 10:54:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						989f48d8c1 
					 
					
						
						
							
							Avoid unnecessary pollution of object module name table. Cygwin shared  
						
						 
						
						... 
						
						
						
						build workaround (DJGPP swallows it too). One probably should do same
as with ELF calling it COFF, but I'm very short in COFF platforms, so
I just go for easy ad-hoc solution. I'll take care of merge to 0.9.7
later. 
						
						
					 
					
						2003-01-10 10:16:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f8ea5cb579 
					 
					
						
						
							
							Make sure everything that may be freed is allocated or initiated.  
						
						 
						
						... 
						
						
						
						PR: 446 
						
						
					 
					
						2003-01-10 08:59:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						360e506710 
					 
					
						
						
							
							Typos corrected.  
						
						 
						
						... 
						
						
						
						PR: 445 
						
						
					 
					
						2003-01-10 08:54:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						09ad2458b8 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-01-09 16:54:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ad200a864e 
					 
					
						
						
							
							The naming scheme wasn't quite correct for Cygwin  
						
						 
						
						
						
						
					 
					
						2003-01-09 16:15:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9d1b5614f9 
					 
					
						
						
							
							At least OpenBSD implements PIC in the same way ELF does.  
						
						 
						
						
						
						
					 
					
						2003-01-09 16:06:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						416b19c6fc 
					 
					
						
						
							
							gcc wants character constants to be correct.  Before this change, the  
						
						 
						
						... 
						
						
						
						following would happen on Solaris:
  m4 -B 8192 asm/des_enc.m4 > asm/des_enc-sparc.S
  gcc -DOPENSSL_SYSNAME_ULTRASPARC -DOPENSSL_NO_STATIC_ENGINE -fPIC -DOPENSSL_PIC -DOPENSSL_THREADS -D_REENTRANT -DDSO_DLFCN -DHAVE_DLFCN_H -DOPENSSL_NO_KRB5 -m32 -mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W -DMD5_ASM   -c -o asm/des_enc-sparc.o asm/des_enc-sparc.S
  asm/des_enc-sparc.S:2007: unterminated character constant
  asm/des_enc-sparc.S:2008: unterminated character constant 
						
						
					 
					
						2003-01-09 13:25:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5b7249f302 
					 
					
						
						
							
							NULL tofree when it is freed to avoid double free.  
						
						 
						
						... 
						
						
						
						Make sure key is not NULL before freeing it. 
						
						
					 
					
						2003-01-09 13:06:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						699543e4a2 
					 
					
						
						
							
							Finalizing asm support for UnixWare, SCO, OpenUnix... Note that I've  
						
						 
						
						... 
						
						
						
						replaced #if logic around bn_sub_part_words in bn_mul.c. I rely upon
OPENSSL_BN_ASM_PART_WORDS being added by ./Configure script. Would it
still work on non-Unix platforms? 
						
						
					 
					
						2003-01-09 08:42:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						4309c4ad46 
					 
					
						
						
							
							Third argument to shl_load() is "long address", not a pointer.  
						
						 
						
						... 
						
						
						
						(Didn't influence functionality, as on HP-UX 32bit the NULL pointer
is a 32bit 0-value and thus is identical to the required 0L.)
PR: 443 
						
						
					 
					
						2003-01-08 08:27:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						4ebb5293fc 
					 
					
						
						
							
							RSA_METHOD now supports key-generation, but (for now) none of these  
						
						 
						
						... 
						
						
						
						ENGINEs implement it. 
						
						
					 
					
						2003-01-07 05:53:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2814c62915 
					 
					
						
						
							
							This is the first step in allowing RSA_METHODs to implement their own key  
						
						 
						
						... 
						
						
						
						generation. This prototype matches the new API function
RSA_generate_key_ex(), though both may be subject to change during
development before 0.9.8. 
						
						
					 
					
						2003-01-07 05:51:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						876e96fdbf 
					 
					
						
						
							
							Fix leak.  
						
						 
						
						
						
						
					 
					
						2003-01-04 18:25:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f68843e3d7 
					 
					
						
						
							
							Fix a typo.  
						
						 
						
						
						
						
					 
					
						2003-01-04 15:18:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						19a97a1df0 
					 
					
						
						
							
							Another GAS fix-up and some commentary...  
						
						 
						
						
						
						
					 
					
						2003-01-04 14:41:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						72997517b0 
					 
					
						
						
							
							GAS can't stand stub, which is stb's synonym.  
						
						 
						
						
						
						
					 
					
						2003-01-04 12:49:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2a9fca82d2 
					 
					
						
						
							
							Oops! I've toasted Cygwin! Fixed now.  
						
						 
						
						
						
						
					 
					
						2003-01-03 21:49:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						55b1516770 
					 
					
						
						
							
							Redundant now as it's moved to ./Makefile.org.  
						
						 
						
						
						
						
					 
					
						2003-01-03 20:45:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3cc9a89dda 
					 
					
						
						
							
							Unified targets for ELF assembler modules. Tested on Linux, Solaris and  
						
						 
						
						... 
						
						
						
						FreeBSD. Goal is to extend support even to SCO5, UnixWare/OpenUnix... 
						
						
					 
					
						2003-01-03 17:37:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						46a0d4fbcb 
					 
					
						
						
							
							Support for ILP32 on HPUX-IA64.  
						
						 
						
						
						
						
					 
					
						2003-01-03 15:10:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						04945fda66 
					 
					
						
						
							
							pa-risc2.s was not PIC, see RT#426. I strip call to fprintf as it's  
						
						 
						
						... 
						
						
						
						never called anyway (it's a debugging assertion). If pa-risc2W.s is
PIC remains to be seen... 
						
						
					 
					
						2003-01-03 10:52:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						97e2e71ef9 
					 
					
						
						
							
							HP/UX 11i make gets upset by this line containing nothing but a Tab  
						
						 
						
						
						
						
					 
					
						2003-01-03 10:32:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c8a647846c 
					 
					
						
						
							
							Rijndael should be called AES everywhere  
						
						 
						
						
						
						
					 
					
						2003-01-03 08:51:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						90ce14cd84 
					 
					
						
						
							
							Support for Intel compiler. More details will be provided in closing note  
						
						 
						
						... 
						
						
						
						for RT#17 as snapshot becomes available for download. 
						
						
					 
					
						2003-01-02 23:32:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						28e276f139 
					 
					
						
						
							
							Complete integration of SPARC assembler DES implementation. Tested on Solaris  
						
						 
						
						... 
						
						
						
						only. I'll keep my eyes open for Linux and OpenBSD targets. 
						
						
					 
					
						2003-01-02 23:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f22e1e4dd2 
					 
					
						
						
							
							UltraSPARC assembler DES implementation tune-up. The code can be  
						
						 
						
						... 
						
						
						
						compiled for any SPARC CPU (UltraSPARC performance is *not* affected),
can be compiled for 64-bit ABI and is position-independent. 
						
						
					 
					
						2003-01-02 17:40:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e0d769caa2 
					 
					
						
						
							
							Very old submission (from 2000) of UltraSPARC assembler DES implementation.  
						
						 
						
						... 
						
						
						
						It was not accepted because code is not PIC, too UltraSPARC-specific when
it doesn't have to and 32-bit only. I'm committing the original version
mostly for reference purposes. 64, PIC, blended CPU tune-up follows shortly.
Obtained from: http://inet.uni2.dk/~svolaf/des.htm  
						
						
					 
					
						2003-01-02 17:36:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4a37c48789 
					 
					
						
						
							
							I implemented this when troubleshooting performance problem on SPARC Solaris.  
						
						 
						
						... 
						
						
						
						As there is an apparent interest for optimization for footprint, I figured
that this can eventually become useful. 
						
						
					 
					
						2003-01-02 17:19:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ad492c3601 
					 
					
						
						
							
							Link engines against libcrypto, even when a TCP/IP implementation is  
						
						 
						
						... 
						
						
						
						specified... 
						
						
					 
					
						2003-01-02 00:26:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0c055b201e 
					 
					
						
						
							
							Adjust the parameter lists in some not commonly used files.  
						
						 
						
						... 
						
						
						
						PR: 428 
						
						
					 
					
						2003-01-01 23:41:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7eed0fc041 
					 
					
						
						
							
							Make sure the last character of the ASN.1 time string (the 'Z') is copied.  
						
						 
						
						... 
						
						
						
						PR: 429 
						
						
					 
					
						2003-01-01 03:40:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7a1c6aa2a3 
					 
					
						
						
							
							It's rather silly to believe we'd release 0.9.7a in 2002 :-).  
						
						 
						
						... 
						
						
						
						It's even more silly to pretend we know which year 0.9.8 will be
released. 
						
						
					 
					
						2002-12-31 01:00:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						948dcdb81b 
					 
					
						
						
							
							Merge in changes from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2002-12-31 00:02:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						08101d72ce 
					 
					
						
						
							
							Merge in changes from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2002-12-30 23:56:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						75c4028585 
					 
					
						
						
							
							My English is definitely not good as my assembly skills:-) And it looks like  
						
						 
						
						... 
						
						
						
						titles can't be multi-line... 
						
						
					 
					
						2002-12-30 20:17:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						85f258d1c2 
					 
					
						
						
							
							It probably belongs in PROBLEMS, but it's more likely to be a FAQ.  
						
						 
						
						
						
						
					 
					
						2002-12-30 11:10:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						49be7042dc 
					 
					
						
						
							
							Since we're including Kerberos 5 headers in our exported header files (when  
						
						 
						
						... 
						
						
						
						OpenSSL is configured to use Kerberos), we'd better tell pkg-config users
where they can be found.
PR: 421 
						
						
					 
					
						2002-12-29 23:03:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						44fcd3ef3e 
					 
					
						
						
							
							Add information about AES cipher suites to ciphers manual page.  
						
						 
						
						... 
						
						
						
						If no authentication method is mentioned in the cipher suite name (e.g.
AES128-SHA), RSA authentication is used (PR #396 ). 
						
						
					 
					
						2002-12-29 21:24:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						21cde7a41c 
					 
					
						
						
							
							Fix wrong handling of session ID in SSLv2 client code.  
						
						 
						
						... 
						
						
						
						PR: 377 
						
						
					 
					
						2002-12-29 20:59:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8598289936 
					 
					
						
						
							
							Correct asm exclusions.  
						
						 
						
						
						
						
					 
					
						2002-12-29 17:57:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						35dde7480f 
					 
					
						
						
							
							OS/2 does binary by default, apparently.  
						
						 
						
						... 
						
						
						
						Reported by Brian Havard <brianh@kheldar.apana.org.au >. 
						
						
					 
					
						2002-12-29 10:19:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5e42f9ab46 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2002-12-29 01:38:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7acf00a633 
					 
					
						
						
							
							Finally get rid of all the algorithm inclusions that were done from  
						
						 
						
						... 
						
						
						
						evp.h.
Application authors BEWARE!  If you have had the habit to count on
evp.h to provide all those lower-level algorithm functions, you need
to think again!  Please change your programs NOW, or you will be sorry
when 0.9.8 gets release (it's quite some time away...). 
						
						
					 
					
						2002-12-29 01:37:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						69339d254b 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2002-12-28 02:42:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec517d25e8 
					 
					
						
						
							
							Merge from 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2002-12-28 02:41:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ce9b1b0573 
					 
					
						
						
							
							I can't confirm the claim being removed and nobody seems to speak up for it.  
						
						 
						
						
						
						
					 
					
						2002-12-27 15:04:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a2407a851 
					 
					
						
						
							
							UltraSPARC performance "tune-up."  
						
						 
						
						
						
						
					 
					
						2002-12-27 14:51:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						76a03d568e 
					 
					
						
						
							
							FAQ addenum as discussed in RT#417.  
						
						 
						
						
						
						
					 
					
						2002-12-27 14:27:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7c03f26393 
					 
					
						
						
							
							Kenneth R. Robinette just told me the latest snapshot works well with  
						
						 
						
						... 
						
						
						
						MIT Kerberos. 
						
						
					 
					
						2002-12-27 14:01:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ff9e406ea 
					 
					
						
						
							
							Can't find the referense to errors on XP with Kerberos  
						
						 
						
						
						
						
					 
					
						2002-12-27 08:09:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b5beb13abb 
					 
					
						
						
							
							Add SPKM among the related stanrds.  
						
						 
						
						
						
						
					 
					
						2002-12-26 22:35:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ceb12d3074 
					 
					
						
						
							
							Updates  
						
						 
						
						
						
						
					 
					
						2002-12-26 22:25:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						59c0dd56ab 
					 
					
						
						
							
							Update our list of implemented and related standards.  
						
						 
						
						
						
						
					 
					
						2002-12-26 00:21:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dcf19c173c 
					 
					
						
						
							
							Update our list of implemented and related standards.  
						
						 
						
						
						
						
					 
					
						2002-12-26 00:17:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e235000169 
					 
					
						
						
							
							Spelling error.  
						
						 
						
						... 
						
						
						
						This patch was taken from the OpenBSD copy of OpenSSL 0.9.7 beta3 with patches 
						
						
					 
					
						2002-12-25 22:16:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						821951b851 
					 
					
						
						
							
							Avoid double definition of config.  
						
						 
						
						... 
						
						
						
						PR: 420 
						
						
					 
					
						2002-12-24 23:53:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						35ba1f17dc 
					 
					
						
						
							
							Updates  
						
						 
						
						
						
						
					 
					
						2002-12-24 23:52:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						ea8e0cc7c2 
					 
					
						
						
							
							Some more adjustments  
						
						 
						
						... 
						
						
						
						Submitted by: Jeffrey Altman <jaltman@columbia.edu >, "Kenneth R. Robinette" <support@securenetterm.com > 
						
						
					 
					
						2002-12-24 21:55:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cb661c56b0 
					 
					
						
						
							
							Cygwin needs the library locatin for .DLLs to be set in PATH.  Unfortunately,  
						
						 
						
						... 
						
						
						
						the conditional was set to add the library directory to PATH when the
platform is NOT Cygwin.  Corrected.
PR: 404 
						
						
					 
					
						2002-12-24 10:50:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e904bd0ddc 
					 
					
						
						
							
							All VMS-specific problems have been solved.  
						
						 
						
						... 
						
						
						
						Confirmed by Mark Daniel <Mark.Daniel@wasd.vsm.com.au > 
						
						
					 
					
						2002-12-24 10:38:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e9883d285d 
					 
					
						
						
							
							Finally, a bn_div_words() in VAX assembler that goes through all tests.  
						
						 
						
						... 
						
						
						
						PR: 413 
						
						
					 
					
						2002-12-23 11:25:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d6ad9e39d 
					 
					
						
						
							
							Stop a possible memory leak.  
						
						 
						
						... 
						
						
						
						(I wonder why s2_connect() handles the initial buffer allocation slightly
differently...)
PR: 416 
						
						
					 
					
						2002-12-21 23:49:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aa18245f7e 
					 
					
						
						
							
							Make AES_ENCRYPT and AES_DECRYPT macros instead of static constants.  
						
						 
						
						... 
						
						
						
						PR: 411 
						
						
					 
					
						2002-12-20 18:21:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						316bfb77b5 
					 
					
						
						
							
							Fix for "shift count too large" when compiling for hpux-parisc2 and  
						
						 
						
						... 
						
						
						
						irix-mips. The bug was introduced with accelerated support for x86_64.
My fault! Fixed now. 
						
						
					 
					
						2002-12-20 18:11:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9b58214e4a 
					 
					
						
						
							
							More accurate comments.  
						
						 
						
						
						
						
					 
					
						2002-12-20 16:38:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3c801fa460 
					 
					
						
						
							
							A little debugging.  
						
						 
						
						
						
						
					 
					
						2002-12-20 16:38:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1c9202004b 
					 
					
						
						
							
							Propagate MAKEDEPPROG to the subdirs under crypto/.  
						
						 
						
						
						
						
					 
					
						2002-12-20 15:28:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						1004c99c29 
					 
					
						
						
							
							Fix Kerberos5/SSL interaction  
						
						 
						
						... 
						
						
						
						Submitted by: "Kenneth R. Robinette" <support@securenetterm.com >
Reviewed by:
PR: 
						
						
					 
					
						2002-12-20 12:48:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c9ecb1edd8 
					 
					
						
						
							
							Keep the internal lowercase 'surname', for programmer's sake.  
						
						 
						
						
						
						
					 
					
						2002-12-20 09:39:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8baf5fdca0 
					 
					
						
						
							
							Be consistent with capitalisation of object names.  
						
						 
						
						
						
						
					 
					
						2002-12-20 09:24:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aafafa314d 
					 
					
						
						
							
							Be consistent with capitalisation of object names.  
						
						 
						
						
						
						
					 
					
						2002-12-20 09:18:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						49e42a1f60 
					 
					
						
						
							
							There was a mixup between INSTALLTOP and OPENSSLDIR...  
						
						 
						
						
						
						
					 
					
						2002-12-20 07:51:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9cd16b1dea 
					 
					
						
						
							
							We stupidly had a separate LIBKRB5 variable for KRB5 library dependencies,  
						
						 
						
						... 
						
						
						
						and then didn't support it very well.  And that when there already is a
useful variable for exactly this kind of thing; EX_LIBS... 
						
						
					 
					
						2002-12-19 22:10:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						12cd28258d 
					 
					
						
						
							
							Because the contents of openssl.pc may have to change when a configuration  
						
						 
						
						... 
						
						
						
						has been performed (and possibly changed), have it depend on Makefile.ssl. 
						
						
					 
					
						2002-12-19 21:56:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9564997222 
					 
					
						
						
							
							Small tweaks for code consistency.  
						
						 
						
						
						
						
					 
					
						2002-12-19 21:55:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f968059c67 
					 
					
						
						
							
							To avoid any future programming glitches, let's make each and every  
						
						 
						
						... 
						
						
						
						assignment (modulo those I missed) individual statements. 
						
						
					 
					
						2002-12-19 21:13:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b900a5e93 
					 
					
						
						
							
							I have no idea what possesed me to compile s_socket.c as POSIXly code.  
						
						 
						
						... 
						
						
						
						Incidently, it now compiles so much better without _POSIX_C_SOURCE. 
						
						
					 
					
						2002-12-19 19:42:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						09867a47a4 
					 
					
						
						
							
							If _XOPEN_SOURCE_EXTENDED or _XOPEN_SOURCE are defined, _POSIX_C_SOURCE gets  
						
						 
						
						... 
						
						
						
						defined in DECC$TYPES.H.  If _POSIX_C_SOURCE is defined, certain types do
not get defined (u_char, u_int, ...).  DECC.H gets included by assert.h
and others.  Now, in6.h uses the types u_char, u_int and so on, and gets
included as part of other header inclusions, and will of course fail because
of the missing types.
On the other hand, _XOPEN_SOURCE_EXTENDED is needed to get gethostname()
properly declared...
Solution: define _XOPEN_SOURCE_EXTENDED much later, so DECC$TYPES.H has
a chance to be included *first*, so the otherwise missing types get defined
properly.
Personal: *mumble* *mumble* 
						
						
					 
					
						2002-12-19 19:39:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d5c42b61b 
					 
					
						
						
							
							It was pointed out to me that .pc files are normally stored in  
						
						 
						
						... 
						
						
						
						${prefix}/lib/pkgconfig, not ${prefix}/lib/pkginfo. 
						
						
					 
					
						2002-12-19 17:44:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8e7a8b68d2 
					 
					
						
						
							
							It was pointed out to me that .pc files are normally stored in  
						
						 
						
						... 
						
						
						
						${prefix}/lib/pkgconfig, not ${prefix}/lib/pkginfo. 
						
						
					 
					
						2002-12-19 17:42:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d625031a5 
					 
					
						
						
							
							Update the current status  
						
						 
						
						
						
						
					 
					
						2002-12-18 10:24:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						26a60b2eb0 
					 
					
						
						
							
							Better wording?  
						
						 
						
						
						
						
					 
					
						2002-12-18 09:42:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						07d09fdb66 
					 
					
						
						
							
							Fix for RT#405, Solaris refuses to invoke preprocessor if egrep returns 1.  
						
						 
						
						... 
						
						
						
						Linux for example doesn't exhibit this behaviour, but I add "exit 0" to all
potentially affected rules, just to be on the safe side. 
						
						
					 
					
						2002-12-18 09:03:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4553ed276b 
					 
					
						
						
							
							Make "perl des-586.pl a.out" work, see RT#402  
						
						 
						
						
						
						
					 
					
						2002-12-17 08:05:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62966f3829 
					 
					
						
						
							
							'a=b c=$a; echo $c' doesn't necessarily prints "b", '' vs. "", $s in  
						
						 
						
						... 
						
						
						
						Makefiles... I suppose it wasn't tested very much... 
						
						
					 
					
						2002-12-16 23:35:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c445142505 
					 
					
						
						
							
							Transfer the Solaris shared library building changes from  
						
						 
						
						... 
						
						
						
						0.9.7-stable. 
						
						
					 
					
						2002-12-16 20:33:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f70ddce761 
					 
					
						
						
							
							Protect loading routines with a lock.  
						
						 
						
						... 
						
						
						
						PR: 373 
						
						
					 
					
						2002-12-16 06:06:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e29246cb17 
					 
					
						
						
							
							Synchronise with Makefiles.  
						
						 
						
						
						
						
					 
					
						2002-12-15 20:59:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						146e6776f5 
					 
					
						
						
							
							Always forget this one...  
						
						 
						
						
						
						
					 
					
						2002-12-15 16:01:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a45051fbfc 
					 
					
						
						
							
							DES PIC-ification. "Cygwin" companion. Problem was that preprocessor macro  
						
						 
						
						... 
						
						
						
						is not expanded if prepended with a $-sign. 
						
						
					 
					
						2002-12-15 10:06:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec9f67f610 
					 
					
						
						
							
							Make sure manual pages are properly linked to on systems that have case  
						
						 
						
						... 
						
						
						
						insensitive file names, as well as those that do not have symlinks.
Incidently, both these cases apply on DOS/Windows... 
						
						
					 
					
						2002-12-15 06:45:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						30c08f2e3d 
					 
					
						
						
							
							Update the make system for installations:  
						
						 
						
						... 
						
						
						
						- define a HERE variable to indicate where the source tree is (used
  very little right now)
- make more use of copying and making attribute changes to {file}.new,
  and then move it to {file}
- use 'mv -f' to avoid all those questions to the user when the file
  in question doesn't have write attributes for that user. 
						
						
					 
					
						2002-12-15 05:59:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9f100cf344 
					 
					
						
						
							
							Don't define macros in terms of asm() when __STRICT_ANSI is defined.  
						
						 
						
						
						
						
					 
					
						2002-12-15 05:54:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a5a01e9051 
					 
					
						
						
							
							Bring des_locl.h at the same level as in the 0.9.7 branch.  
						
						 
						
						... 
						
						
						
						Don't define macros in terms of asm() when __STRICT_ANSI is defined. 
						
						
					 
					
						2002-12-15 05:54:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6be4688bdc 
					 
					
						
						
							
							Ooops! No ROTATE on some platforms after x86_64 performance patch...  
						
						 
						
						
						
						
					 
					
						2002-12-15 00:47:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						717c5cdcc7 
					 
					
						
						
							
							As you might have noticed I tried to change for . prefix, because it's  
						
						 
						
						... 
						
						
						
						the one to be used to denote local labels in single function scope.
Problem is that SHA uses same label set across functions, therefore I
have to switch back to $ prefix. 
						
						
					 
					
						2002-12-14 23:14:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0654bba39f 
					 
					
						
						
							
							Solaris shared build fix-ups. See RT#238,239 for details.  
						
						 
						
						
						
						
					 
					
						2002-12-14 21:46:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4d77d5b316 
					 
					
						
						
							
							New DETECT_GNU_LD procedure.  
						
						 
						
						
						
						
					 
					
						2002-12-14 20:52:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2f98abbcb6 
					 
					
						
						
							
							x86_64 performance patch.  
						
						 
						
						
						
						
					 
					
						2002-12-14 20:42:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						270fa8aeda 
					 
					
						
						
							
							DES PIC-ification. Windows companion.  
						
						 
						
						
						
						
					 
					
						2002-12-14 17:54:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						4329db3726 
					 
					
						
						
							
							The ampersand is not required in these constructs, and was giving AIX  
						
						 
						
						... 
						
						
						
						warnings.
Reported by: Bernhard Simon. 
						
						
					 
					
						2002-12-13 22:01:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6f7ac8e1b0 
					 
					
						
						
							
							IA-32 assembler modules (primarily DES) PIC-ification. Idea is to keep  
						
						 
						
						... 
						
						
						
						shared libraries shared. 
						
						
					 
					
						2002-12-13 17:56:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a1457874c6 
					 
					
						
						
							
							OK, there's at least one application author who has provided dynamic locking  
						
						 
						
						... 
						
						
						
						callbacks 
						
						
					 
					
						2002-12-13 07:30:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						18be6c4116 
					 
					
						
						
							
							BIO_new_bio_pair() was unnecessarily described in it's own page as well as in  
						
						 
						
						... 
						
						
						
						BIO_s_bio.pod.  The most logical is to move everything needed from
BIO_new_bio_pair.pod to BIO_s_bio.pod (including the nice example)
and toss BIO_new_bio_pair.pod.  I hope I got all the info over properly.
PR: 370 
						
						
					 
					
						2002-12-12 22:12:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dad1535f7a 
					 
					
						
						
							
							BIO_set_nbio() is enumerated, but not explained.  Remove it from enumeration  
						
						 
						
						... 
						
						
						
						since it's both enumerated and explained in BIO_s_connect.pod.
PR: 370 
						
						
					 
					
						2002-12-12 22:08:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f60e6604b8 
					 
					
						
						
							
							I forgot one item I intend to work on.  
						
						 
						
						
						
						
					 
					
						2002-12-12 19:40:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0d3f2ccb62 
					 
					
						
						
							
							Skip DH-specific tests when no-dh has been configured.  
						
						 
						
						... 
						
						
						
						PR: 353 
						
						
					 
					
						2002-12-12 18:43:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						14676ffcd6 
					 
					
						
						
							
							Document the modifications in 0.9.7 that will make the hw_ncipher.c  
						
						 
						
						... 
						
						
						
						engine work properly even in bad situations. 
						
						
					 
					
						2002-12-12 17:40:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e5a08ce44d 
					 
					
						
						
							
							Make 'tunala' link with zlib if possible (so it works if openssl was  
						
						 
						
						... 
						
						
						
						configured with zlib support). 
						
						
					 
					
						2002-12-11 19:07:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b9b6e14b4a 
					 
					
						
						
							
							In CRYPTO_lock(), check that the application cares about locking (provided  
						
						 
						
						... 
						
						
						
						callbacks) before attempting to lock. 
						
						
					 
					
						2002-12-11 08:56:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						442d42300b 
					 
					
						
						
							
							sk_*_push() returns the number of items on the stack, not the index of the  
						
						 
						
						... 
						
						
						
						pushed item.  The index is the number of items - 1.  And if a NULL item was
found, actually use it.
Finally, provide a little bit of safety in CRYPTO_lock() by asserting the a
requested dynamic lock really must exist, instead of just being silent about it 
						
						
					 
					
						2002-12-11 08:33:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						75e1c74724 
					 
					
						
						
							
							Let's not forget the other places where HEADER_DES_H and HEADER_DES_OLD_H  
						
						 
						
						... 
						
						
						
						were defined. 
						
						
					 
					
						2002-12-11 07:37:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5db2b5e573 
					 
					
						
						
							
							Let's not forget the other places where HEADER_DES_H and HEADER_DES_OLD_H  
						
						 
						
						... 
						
						
						
						were defined. 
						
						
					 
					
						2002-12-11 07:24:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						005ef84c5d 
					 
					
						
						
							
							Since HEADER_DES_H has been the protector of des.h since libdes  
						
						 
						
						... 
						
						
						
						(before SSLeay, maybe?), it's better to have that macro protect
the compatibility header des_old.h.  In the new des.h, let's use
a slightly different protecting macro.
The rationale is that there are application that might include (via
other header files, perhaps) both an old libdes des.h and OpenSSL's
des.h.  Whichever comes first would overshadow the other because of
the clash in protecting macro.  This fix solves that problem. 
						
						
					 
					
						2002-12-11 06:59:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f92570f00a 
					 
					
						
						
							
							This stops a compiler warning from -Wmissing-prototypes.  
						
						 
						
						... 
						
						
						
						(Noticed by Nils Larsch) 
						
						
					 
					
						2002-12-11 03:34:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						9314e366c8 
					 
					
						
						
							
							Update -Olimit setting.  
						
						 
						
						... 
						
						
						
						Submitted by: Bernhard Simon <simon@zid.tuwien.ac.at >
Reviewed by:
PR: 
						
						
					 
					
						2002-12-10 18:48:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ralf S. Engelschall 
							
						 
					 
					
						
						
							
						
						b22c7a1cfb 
					 
					
						
						
							
							test commit (just removing tailing blanks)  #2  after migration  
						
						 
						
						
						
						
					 
					
						2002-12-10 12:01:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ralf S. Engelschall 
							
						 
					 
					
						
						
							
						
						99efc0f50f 
					 
					
						
						
							
							test commit (removing trailing blanks) after migration  
						
						 
						
						
						
						
					 
					
						2002-12-10 10:51:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ralf S. Engelschall 
							
						 
					 
					
						
						
							
						
						d979d09ccc 
					 
					
						
						
							
							test blank-line commit after migration -- just ignore  
						
						 
						
						
						
						
					 
					
						2002-12-10 10:49:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c17810b087 
					 
					
						
						
							
							A memset() too many got converted into a OPENSSL_cleanse().  
						
						 
						
						... 
						
						
						
						PR: 393 
						
						
					 
					
						2002-12-10 08:26:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e0b2073fd4 
					 
					
						
						
							
							BN_sqr test failure entry.  
						
						 
						
						
						
						
					 
					
						2002-12-09 13:43:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						123e5dfc3a 
					 
					
						
						
							
							Fix wrong URI.  
						
						 
						
						... 
						
						
						
						Submitted by: assar@kth.se 
Reviewed by:
PR: 390 
						
						
					 
					
						2002-12-09 08:49:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0edad88a31 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2002-12-09 02:19:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4ccfe5f49b 
					 
					
						
						
							
							Hmm, Geoff's change made things quite interesting.  We can now give  
						
						 
						
						... 
						
						
						
						users the option of disabling deprecated functions, which should of
course be reflected in libeay.num and .def files.  Quite nice,
actually. 
						
						
					 
					
						2002-12-09 02:18:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e189872486 
					 
					
						
						
							
							Nils Larsch submitted;  
						
						 
						
						... 
						
						
						
						- a patch to fix a memory leak in rsa_gen.c
  - a note about compiler warnings with unions
  - a note about improving structure element names
This applies his patch and implements a solution to the notes. 
						
						
					 
					
						2002-12-08 16:45:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fdaea9ed2e 
					 
					
						
						
							
							Since it's defined in draft-ietf-tls-compression-04.txt, let's make  
						
						 
						
						... 
						
						
						
						ZLIB a known compression method, with the identity 1. 
						
						
					 
					
						2002-12-08 09:31:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5daec7ea0e 
					 
					
						
						
							
							Undefine OPENSSL_NO_DEPRECATED inside openssl application code if we are  
						
						 
						
						... 
						
						
						
						being built with it defined - it is not a symbol to affect how openssl
itself builds, but to alter the way openssl headers can be used from an API
point of view. The "deprecated" function wrappers will always remain inside
OpenSSL at least as long as they're still being used internally. :-)
The exception is dsaparam which has been updated to the BN_GENCB-based
functions to test the new functionality. If GENCB_TEST is defined, dsaparam
will support a "-timebomb <n>" switch to cancel parameter-generation if it
gets as far as 'n' seconds without completion. 
						
						
					 
					
						2002-12-08 05:38:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e9224c7177 
					 
					
						
						
							
							This is a first-cut at improving the callback mechanisms used in  
						
						 
						
						... 
						
						
						
						key-generation and prime-checking functions. Rather than explicitly passing
callback functions and caller-defined context data for the callbacks, a new
structure BN_GENCB is defined that encapsulates this; a pointer to the
structure is passed to all such functions instead.
This wrapper structure allows the encapsulation of "old" and "new" style
callbacks - "new" callbacks return a boolean result on the understanding
that returning FALSE should terminate keygen/primality processing.  The
BN_GENCB abstraction will allow future callback modifications without
needing to break binary compatibility nor change the API function
prototypes. The new API functions have been given names ending in "_ex" and
the old functions are implemented as wrappers to the new ones.  The
OPENSSL_NO_DEPRECATED symbol has been introduced so that, if defined,
declaration of the older functions will be skipped. NB: Some
openssl-internal code will stick with the older callbacks for now, so
appropriate "#undef" logic will be put in place - this is in case the user
is *building* openssl (rather than *including* its headers) with this
symbol defined.
There is another change in the new _ex functions; the key-generation
functions do not return key structures but operate on structures passed by
the caller, the return value is a boolean. This will allow for a smoother
transition to having key-generation as "virtual function" in the various
***_METHOD tables. 
						
						
					 
					
						2002-12-08 05:24:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e90e719739 
					 
					
						
						
							
							Fix a warning, and do some constification as a lucky side-effect :-)  
						
						 
						
						
						
						
					 
					
						2002-12-08 05:19:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7ba666fa0e 
					 
					
						
						
							
							Since it's defined in draft-ietf-tls-compression-04.txt, let's make  
						
						 
						
						... 
						
						
						
						ZLIB a known compression method, with the identity 1. 
						
						
					 
					
						2002-12-08 02:41:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						86a62cf15c 
					 
					
						
						
							
							Implement a stateful variant if the ZLIB compression method.  The old  
						
						 
						
						... 
						
						
						
						stateless variant is kept, but isn't used anywhere. 
						
						
					 
					
						2002-12-08 02:39:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b11405723d 
					 
					
						
						
							
							Forgot one.  
						
						 
						
						
						
						
					 
					
						2002-12-07 20:03:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4c3a2b4f8a 
					 
					
						
						
							
							Add a few items I intend to work on for 0.9.8 and on.  
						
						 
						
						
						
						
					 
					
						2002-12-07 20:02:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bbf8198feb 
					 
					
						
						
							
							Workaround for GCC-ia64 compiler bug.  
						
						 
						
						... 
						
						
						
						Submitted by: <appro>
Reviewed by:
PR: 
						
						
					 
					
						2002-12-06 17:18:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3dda0dd2a2 
					 
					
						
						
							
							Some compilers are quite picky about non-void functions that don't return  
						
						 
						
						... 
						
						
						
						anything. 
						
						
					 
					
						2002-12-06 08:50:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fa63a98ad8 
					 
					
						
						
							
							Apparently, bash is more forgiving than sh.  To be backward  
						
						 
						
						... 
						
						
						
						compatible, don't use ==, use = instead... 
						
						
					 
					
						2002-12-06 08:43:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1fc73fef48 
					 
					
						
						
							
							Keep NEWS in HEAD up to date.  
						
						 
						
						
						
						
					 
					
						2002-12-06 00:39:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						90543bd07a 
					 
					
						
						
							
							Keep STATUS in HEAD up to date.  
						
						 
						
						
						
						
					 
					
						2002-12-05 23:01:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43ecece595 
					 
					
						
						
							
							Merge in relevant changes from the OpenSSL 0.9.6h release.  
						
						 
						
						
						
						
					 
					
						2002-12-05 21:50:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4ba8cabf62 
					 
					
						
						
							
							SSL_CERT_FILE should be used in place of the system default file, not as  
						
						 
						
						... 
						
						
						
						a first alternative to try 
						
						
					 
					
						2002-12-05 21:07:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f68bb3c51f 
					 
					
						
						
							
							Corrected DJGPP patch  
						
						 
						
						
						
						
					 
					
						2002-12-05 20:50:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6d4ac67ac1 
					 
					
						
						
							
							linux64-sparcv9 support finally debugged and tested.  
						
						 
						
						... 
						
						
						
						Submitted by:
Reviewed by:
PR: 
						
						
					 
					
						2002-12-05 13:17:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b84d5b72f1 
					 
					
						
						
							
							Make sure to implement the cryptodev engine only when /dev/crypto exists.  
						
						 
						
						
						
						
					 
					
						2002-12-05 10:16:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8cbccedf7c 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2002-12-05 01:55:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1c24347062 
					 
					
						
						
							
							Declare another general file.  
						
						 
						
						
						
						
					 
					
						2002-12-05 01:42:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ef888130d 
					 
					
						
						
							
							Allow users to modify /MD to /MT.  
						
						 
						
						... 
						
						
						
						PR: 380 
						
						
					 
					
						2002-12-05 01:35:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4387f47832 
					 
					
						
						
							
							Make sure using SSL_CERT_FILE actually works, and has priority over system defaults.  
						
						 
						
						... 
						
						
						
						PR: 376 
						
						
					 
					
						2002-12-05 01:20:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						38d6e4bb50 
					 
					
						
						
							
							If an application supports static locks, it MUST support dynamic locks as  
						
						 
						
						... 
						
						
						
						well to be able to use the CHIL engine.
PR: 281 
						
						
					 
					
						2002-12-05 00:56:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ced621e3c2 
					 
					
						
						
							
							PR: 381  
						
						 
						
						
						
						
					 
					
						2002-12-05 00:05:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						85940ea8ea 
					 
					
						
						
							
							Only check for a result buffer if the allocated string is a prompt string.  
						
						 
						
						... 
						
						
						
						PR: 381 
						
						
					 
					
						2002-12-05 00:04:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						439ae4d398 
					 
					
						
						
							
							Do not implement RC4 stuff if RC4 is disabled.  Concequently, apply the same  
						
						 
						
						... 
						
						
						
						rule for SHA stuff.
PR: 381 
						
						
					 
					
						2002-12-04 22:54:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4fbe40c54f 
					 
					
						
						
							
							gethostname() is more a BSD feature than an XOPEN one.  
						
						 
						
						... 
						
						
						
						PR: 379 
						
						
					 
					
						2002-12-04 22:48:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						578ca7e4cd 
					 
					
						
						
							
							Correct a few typos that I introduced after applying DJGPP patches.  
						
						 
						
						
						
						
					 
					
						2002-12-04 19:13:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7e8c30b589 
					 
					
						
						
							
							In ECPKParameters_print, output the private key length correctly  
						
						 
						
						... 
						
						
						
						(length of the order of the group, not length of the actual key, which
will be shorter in some cases).
Submitted by: Nils Larsch 
						
						
					 
					
						2002-12-04 17:43:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2b32b28191 
					 
					
						
						
							
							Don't compute timings here, we can do this elsewhere.  
						
						 
						
						... 
						
						
						
						Include X9.62 signature examples.
Submitted by: Nils Larsch 
						
						
					 
					
						2002-12-04 17:38:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						532215f2db 
					 
					
						
						
							
							Missing ")"  
						
						 
						
						... 
						
						
						
						Submitted by: Christian Hohnstaedt <chohnstaedt@innominate.com >
Reviewed by:
PR: 
						
						
					 
					
						2002-12-04 13:30:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5319be4438 
					 
					
						
						
							
							DJGPP patches.  
						
						 
						
						... 
						
						
						
						PR: 347 
						
						
					 
					
						2002-12-04 09:54:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f7a3e73ef6 
					 
					
						
						
							
							Add support for x86_64.  
						
						 
						
						... 
						
						
						
						PR: 348 
						
						
					 
					
						2002-12-04 09:17:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ff3345cb72 
					 
					
						
						
							
							A gcc 3.0 bug is triggered by our code.  Add a section about it in PROBLEMS.  
						
						 
						
						... 
						
						
						
						PR: 375 
						
						
					 
					
						2002-12-04 08:24:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						716b2079dc 
					 
					
						
						
							
							Make ASN1_TYPE_get() work for V_ASN1_NULL type.  
						
						 
						
						
						
						
					 
					
						2002-12-04 00:49:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e7b6228fd3 
					 
					
						
						
							
							Typo in X509v3_get_ext_by_critical  
						
						 
						
						
						
						
					 
					
						2002-12-04 00:16:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2053c43de2 
					 
					
						
						
							
							In asn1_d2i_read_bio, don't assume BIO_read will  
						
						 
						
						... 
						
						
						
						return the requested number of bytes when reading
content. 
						
						
					 
					
						2002-12-03 23:50:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1c3e4a3660 
					 
					
						
						
							
							EXIT() may mean return().  That's confusing, so let's have it really mean  
						
						 
						
						... 
						
						
						
						exit() in whatever way works for the intended platform, and define
OPENSSL_EXIT() to have the old meaning (the name is of course because
it's only used in the openssl program) 
						
						
					 
					
						2002-12-03 16:33:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4707991520 
					 
					
						
						
							
							Make CRYPTO_cleanse() independent of endianness.  
						
						 
						
						
						
						
					 
					
						2002-12-03 16:06:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7a1f92fdc3 
					 
					
						
						
							
							Windows CE updates, contributed by Steven Reddie <smr@essemer.com.au>  
						
						 
						
						
						
						
					 
					
						2002-12-03 14:20:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e7a285694e 
					 
					
						
						
							
							define USE_SOCKETS so sys/param.h gets included (and thusly, MAXHOSTNAMELEN  
						
						 
						
						... 
						
						
						
						gets defined).
PR: 371 
						
						
					 
					
						2002-12-02 22:49:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6ab285bf4c 
					 
					
						
						
							
							I think I got it now.  Apparently, the case of having to shift down  
						
						 
						
						... 
						
						
						
						the divisor was a bit more complex than I first saw.  The lost bit
can't just be discarded, as there are cases where it is important.
For example, look at dividing 320000 with 80000 vs. 80001 (all
decimals), the difference is crucial.  The trick here is to check if
that lost bit was 1, and in that case, do the following:
1. subtract the quotient from the remainder
2. as long as the remainder is negative, add the divisor (the whole
   divisor, not the shofted down copy) to it, and decrease the
   quotient by one.
There's probably a nice mathematical proof for this already, but I
won't bother with that, unless someone requests it from me. 
						
						
					 
					
						2002-12-02 21:31:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1d3159bcca 
					 
					
						
						
							
							Make some names consistent.  
						
						 
						
						
						
						
					 
					
						2002-12-02 02:40:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f60ceb54eb 
					 
					
						
						
							
							Through some experimentation and thinking, I think I finally got the  
						
						 
						
						... 
						
						
						
						proper implementation of bn_div_words() for VAX.
If the tests go through well, the next step will be to test on Alpha. 
						
						
					 
					
						2002-12-02 02:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0f995b2f40 
					 
					
						
						
							
							Small bugfix: even when r == d, we need to adjust r and q.  
						
						 
						
						... 
						
						
						
						PR: 366 
						
						
					 
					
						2002-12-01 02:17:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						848f735ae4 
					 
					
						
						
							
							EXIT() needs to be in a function that returns int.  
						
						 
						
						
						
						
					 
					
						2002-12-01 01:23:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a678430602 
					 
					
						
						
							
							Redo the VAX assembler version of bn_div_words().  
						
						 
						
						... 
						
						
						
						PR: 366 
						
						
					 
					
						2002-12-01 00:49:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e9b553dac1 
					 
					
						
						
							
							Remove incorrect assert.  
						
						 
						
						... 
						
						
						
						PR: 360 
						
						
					 
					
						2002-11-29 15:18:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						db3758923b 
					 
					
						
						
							
							Make it so all names mentioned in the NAME section of each manpage becomes a  
						
						 
						
						... 
						
						
						
						symlink to said manpage.
PR: 242 
						
						
					 
					
						2002-11-29 15:00:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5e4a75e79f 
					 
					
						
						
							
							Correct some names.  
						
						 
						
						
						
						
					 
					
						2002-11-29 14:21:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43d601641f 
					 
					
						
						
							
							A few more memset()s converted to OPENSSL_cleanse().  
						
						 
						
						... 
						
						
						
						I *think* I got them all covered by now, bu please, if you find any more,
tell me and I'll correct it.
PR: 343 
						
						
					 
					
						2002-11-29 11:30:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						55f78baf32 
					 
					
						
						
							
							Have all tests use EXIT() to exit rather than exit(), since the latter doesn't  
						
						 
						
						... 
						
						
						
						always give the expected result on some platforms. 
						
						
					 
					
						2002-11-28 18:54:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6c359479d7 
					 
					
						
						
							
							Make sure EXIT() can always be used as one statement.  
						
						 
						
						
						
						
					 
					
						2002-11-28 18:52:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4579924b7e 
					 
					
						
						
							
							Cleanse memory using the new OPENSSL_cleanse() function.  
						
						 
						
						... 
						
						
						
						I've covered all the memset()s I felt safe modifying, but may have missed some. 
						
						
					 
					
						2002-11-28 08:04:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2047bda6fb 
					 
					
						
						
							
							Unused variable removed.  
						
						 
						
						
						
						
					 
					
						2002-11-27 13:40:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						406c6f6962 
					 
					
						
						
							
							Extra ; removed.  
						
						 
						
						
						
						
					 
					
						2002-11-27 13:40:11 +00:00