Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3da3c85a3f 
					 
					
						
						
							
							Fix typos and add missing lines in Makefile.  
						
						 
						
						
						
						
					 
					
						2005-06-07 14:08:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d58d546e2d 
					 
					
						
						
							
							Initial support for DSO FIPS fingerprinting.  
						
						 
						
						
						
						
					 
					
						2005-06-07 12:39:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						780b97aba6 
					 
					
						
						
							
							Ad-hoc DSO_pathbyaddr for selected platforms from HEAD in FIPS context.  
						
						 
						
						
						
						
					 
					
						2005-06-07 10:49:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e0ec2d772c 
					 
					
						
						
							
							Set OPENSSL_PIC flags for shared builds [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-06-07 10:48:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5fbf6769fc 
					 
					
						
						
							
							Update from head.  
						
						 
						
						
						
						
					 
					
						2005-06-06 22:42:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bf79446c8 
					 
					
						
						
							
							Delete test error print.  
						
						 
						
						
						
						
					 
					
						2005-06-06 18:05:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bdee60fc1a 
					 
					
						
						
							
							Skipping all tests just because one algorithm is disabled seems a bit harsch.  
						
						 
						
						... 
						
						
						
						PR: 1089 
						
						
					 
					
						2005-06-06 08:38:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0b62d2f4c9 
					 
					
						
						
							
							Don't mention Makefile.ssl and don't mention Solaris x86 ld bug, as it's  
						
						 
						
						... 
						
						
						
						not relevant in 0.9.7 context. 
						
						
					 
					
						2005-06-06 08:38:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4375ca95a4 
					 
					
						
						
							
							Document the change.  
						
						 
						
						
						
						
					 
					
						2005-06-05 23:17:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						acce7b5963 
					 
					
						
						
							
							Remove the incorrect installation of '%{openssldir}/lib'.  
						
						 
						
						... 
						
						
						
						PR: 1074 
						
						
					 
					
						2005-06-05 23:15:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c5098ee16f 
					 
					
						
						
							
							Old typo...  
						
						 
						
						... 
						
						
						
						PR: 1097 
						
						
					 
					
						2005-06-05 21:54:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6d0e43d555 
					 
					
						
						
							
							./PROBLEMS update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-06-05 18:09:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9f32d49de9 
					 
					
						
						
							
							The macro THREADS was changed to OPENSSL_THREADS a long time ago.  
						
						 
						
						... 
						
						
						
						PR: 1096 
						
						
					 
					
						2005-06-04 08:44:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db84c9075b 
					 
					
						
						
							
							Use correct config file environment variable.  
						
						 
						
						
						
						
					 
					
						2005-06-02 23:16:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e96fad9d2d 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-06-02 20:30:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c7b06714e 
					 
					
						
						
							
							Add CHANGES entry for PSS and X9.31 padding.  
						
						 
						
						
						
						
					 
					
						2005-06-02 20:08:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d893001918 
					 
					
						
						
							
							fips/*/Makefile updates to accomodate new VSes.  
						
						 
						
						
						
						
					 
					
						2005-06-02 19:15:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b8bd781b7e 
					 
					
						
						
							
							Synchronise some more with the Unix build.  
						
						 
						
						
						
						
					 
					
						2005-06-02 19:08:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bb792a485a 
					 
					
						
						
							
							Make PSS more flexible, most notably assign special meaning to negative  
						
						 
						
						... 
						
						
						
						sLen values: -1 -> sLen = hLen, -2 -> sLen autochosen/autorecovered. 
						
						
					 
					
						2005-06-02 18:07:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						452421d059 
					 
					
						
						
							
							Comply with .sam[ple].  
						
						 
						
						
						
						
					 
					
						2005-06-02 18:01:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ea8399724e 
					 
					
						
						
							
							Remove redundant reference, which produces a warning (??) in gcc 3.4.2.  
						
						 
						
						
						
						
					 
					
						2005-06-02 01:18:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						26655341fc 
					 
					
						
						
							
							Update symbols. Add #ifdef OPENSSL_FIPS in various places.  
						
						 
						
						
						
						
					 
					
						2005-06-02 00:09:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5858d32a59 
					 
					
						
						
							
							Fixes for unusual key lengths an PSS.  
						
						 
						
						
						
						
					 
					
						2005-06-01 22:06:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0dfe532ea9 
					 
					
						
						
							
							clear error queue on success and return NULL if cert could be read  
						
						 
						
						... 
						
						
						
						PR: 1088 
						
						
					 
					
						2005-06-01 08:36:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						5c567ffd4c 
					 
					
						
						
							
							fix assertion  
						
						 
						
						
						
						
					 
					
						2005-05-31 20:39:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3bc1781994 
					 
					
						
						
							
							Synchronise with the Unix build...  
						
						 
						
						
						
						
					 
					
						2005-05-31 20:29:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						485bcc9cab 
					 
					
						
						
							
							Preliminary support for X9.31 RSA key generation for FIPS.  
						
						 
						
						... 
						
						
						
						Included prime derivation, random prime generation, test program and
new option to genrsa. 
						
						
					 
					
						2005-05-31 12:38:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb1bbb3274 
					 
					
						
						
							
							Synchronise with Unixly build  
						
						 
						
						
						
						
					 
					
						2005-05-30 22:26:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4bd7bc97e8 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-05-29 12:30:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4d4339922c 
					 
					
						
						
							
							Stop warnings.  
						
						 
						
						
						
						
					 
					
						2005-05-29 12:22:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c3d03b70af 
					 
					
						
						
							
							We have some source with \r\n as line ends.  DEC C informs about that,  
						
						 
						
						... 
						
						
						
						and I really can't be bothered... 
						
						
					 
					
						2005-05-29 12:13:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e4c2c550b9 
					 
					
						
						
							
							Add X9.31 signature support, mainly for FIPS140. Add new option to rsautl and  
						
						 
						
						... 
						
						
						
						include options to use X9.31 in tests. 
						
						
					 
					
						2005-05-28 20:15:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						570357b7a8 
					 
					
						
						
							
							Add PSS support to tests.  
						
						 
						
						
						
						
					 
					
						2005-05-28 11:18:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7044d328a2 
					 
					
						
						
							
							Add PSS support. Minimal at this stage for FIPS140.  
						
						 
						
						
						
						
					 
					
						2005-05-27 21:59:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						35d7cc8166 
					 
					
						
						
							
							Error checking.  
						
						 
						
						
						
						
					 
					
						2005-05-27 21:22:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						80790d89ec 
					 
					
						
						
							
							Use BN_with_flags() in a cleaner way.  
						
						 
						
						... 
						
						
						
						Complete previous change:
Constant time DSA [sync with mainstream]. 
						
						
					 
					
						2005-05-27 15:39:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7bad200b49 
					 
					
						
						
							
							Constant-time RSA [sync with mainstream].  
						
						 
						
						... 
						
						
						
						Submitted by: bodo 
						
						
					 
					
						2005-05-27 08:12:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6b6f64da2d 
					 
					
						
						
							
							Constant time DH [sync with mainstream].  
						
						 
						
						... 
						
						
						
						Submitted by: bodo 
						
						
					 
					
						2005-05-27 08:11:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31def5ae59 
					 
					
						
						
							
							Constant-time DSA signing [sync with mainstream].  
						
						 
						
						... 
						
						
						
						Submitted by: bodo 
						
						
					 
					
						2005-05-27 06:42:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						713407a5c7 
					 
					
						
						
							
							fips/sha1 -> fips/sha remains.  
						
						 
						
						
						
						
					 
					
						2005-05-26 23:09:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						db73333585 
					 
					
						
						
							
							Remove fips/sha1/*.  
						
						 
						
						
						
						
					 
					
						2005-05-26 23:01:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						84c9b6edb1 
					 
					
						
						
							
							Throw in SHAmix test vectors.  
						
						 
						
						
						
						
					 
					
						2005-05-26 22:17:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e609c04994 
					 
					
						
						
							
							Rename fips/sha1 to fips/sha.  
						
						 
						
						
						
						
					 
					
						2005-05-26 21:29:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						53cfa36d37 
					 
					
						
						
							
							Allow zero length messages and make format look more like samples.  
						
						 
						
						
						
						
					 
					
						2005-05-26 18:48:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b10bd63df3 
					 
					
						
						
							
							FIPS SHA* test for new format.  
						
						 
						
						
						
						
					 
					
						2005-05-26 18:31:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						44a287747f 
					 
					
						
						
							
							make sure DSA signing exponentiations really are constant-time  
						
						 
						
						
						
						
					 
					
						2005-05-26 04:40:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						20a413620c 
					 
					
						
						
							
							Synchronise with Unix build.  
						
						 
						
						
						
						
					 
					
						2005-05-24 03:50:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e99b588f1b 
					 
					
						
						
							
							Typo correction  
						
						 
						
						
						
						
					 
					
						2005-05-24 03:27:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						48a3f2818e 
					 
					
						
						
							
							When _XOPEN_SOURCE is defined, make sure it's defined to 500.  Required in  
						
						 
						
						... 
						
						
						
						http://www.opengroup.org/onlinepubs/007908799/xsh/compilation.html .
Notified by David Wolfe <dwolfe5272@yahoo.com > 
						
						
					 
					
						2005-05-21 17:39:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fc0e014ca3 
					 
					
						
						
							
							fips_check_rsa update.  
						
						 
						
						
						
						
					 
					
						2005-05-19 22:29:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8baaeba881 
					 
					
						
						
							
							Place #ifdef OPENSSL_FIPS round the SHA-XXX functions in evp.h so mkdef.pl  
						
						 
						
						... 
						
						
						
						knows about it. 
						
						
					 
					
						2005-05-17 19:48:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						150ebacd8a 
					 
					
						
						
							
							SHA-XXX are available in FIPS context only in 0.9.7.  
						
						 
						
						
						
						
					 
					
						2005-05-17 06:57:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bedcd5c0bb 
					 
					
						
						
							
							fix memory leak (BIO_free_all needs pointer to first BIO)  
						
						 
						
						... 
						
						
						
						PR: 1070 
						
						
					 
					
						2005-05-17 05:52:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fd86c390eb 
					 
					
						
						
							
							Change wording for BN_mod_exp_mont_consttime() entry  
						
						 
						
						
						
						
					 
					
						2005-05-16 19:14:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						63453c025f 
					 
					
						
						
							
							Remove redundant test. Add new SHAXXX algorithms to mkdef.pl, update  
						
						 
						
						... 
						
						
						
						symbol info. 
						
						
					 
					
						2005-05-16 17:52:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ecb1445ce2 
					 
					
						
						
							
							Implement fixed-window exponentiation to mitigate hyper-threading  
						
						 
						
						... 
						
						
						
						timing attacks.
BN_FLG_EXP_CONSTTIME requests this algorithm, and this done by default for
RSA/DSA/DH private key computations unless
RSA_FLAG_NO_EXP_CONSTTIME/DSA_FLAG_NO_EXP_CONSTTIME/
DH_FLAG_NO_EXP_CONSTTIME is set.
Submitted by: Matthew D Wood
Reviewed by: Bodo Moeller 
						
						
					 
					
						2005-05-16 01:26:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						64c32bf9eb 
					 
					
						
						
							
							Synchronise with the Unixly build.  
						
						 
						
						
						
						
					 
					
						2005-05-15 09:20:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						775e82c58d 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-05-14 12:59:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						db5cbd8954 
					 
					
						
						
							
							Fixes from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-05-13 00:23:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c6012b252d 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-05-12 23:13:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1ff593dcb 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-05-12 17:27:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c4d9c13a31 
					 
					
						
						
							
							fix msg_callback() arguments for SSL 2.0 compatible client hello  
						
						 
						
						... 
						
						
						
						(previous revision got this wrong) 
						
						
					 
					
						2005-05-12 06:24:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						00c1c6cb28 
					 
					
						
						
							
							PR:Don't use the SSL 2.0 Client Hello format if SSL 2.0 is disabled  
						
						 
						
						... 
						
						
						
						with the SSL_OP_NO_SSLv2 option. 
						
						
					 
					
						2005-05-11 18:26:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						973fbfe3a3 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-05-11 17:49:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9fc1d3f4c4 
					 
					
						
						
							
							Allow AES CFB1 ciphers in FIPS mode.  
						
						 
						
						
						
						
					 
					
						2005-05-11 16:28:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						765863f0bf 
					 
					
						
						
							
							Stop warnings.  
						
						 
						
						
						
						
					 
					
						2005-05-11 00:35:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cbd72088ec 
					 
					
						
						
							
							Tidy up an error code.  
						
						 
						
						
						
						
					 
					
						2005-05-10 22:57:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8aabdf3505 
					 
					
						
						
							
							Fix fips_hmactest.c.  
						
						 
						
						
						
						
					 
					
						2005-05-10 22:54:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fcec494072 
					 
					
						
						
							
							use 'p' as conversion specifier for printf to avoid truncation of  
						
						 
						
						... 
						
						
						
						pointers on 64 bit platforms. Patch supplied by Daniel Gryniewicz
via Mike Frysinger <vapier@gentoo.org >.
PR: 1064 
						
						
					 
					
						2005-05-10 11:57:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						88f62fb98a 
					 
					
						
						
							
							improve command line argument checking  
						
						 
						
						... 
						
						
						
						PR: 1061 
						
						
					 
					
						2005-05-10 09:52:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						69488fa929 
					 
					
						
						
							
							Add algorithm selection command-line option to fips_hmactest  
						
						 
						
						... 
						
						
						
						[and fix typo in fips.h]. 
						
						
					 
					
						2005-05-09 22:35:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b0367dde56 
					 
					
						
						
							
							Comply with optimization manual (no data should share cache-line with code).  
						
						 
						
						
						
						
					 
					
						2005-05-09 21:41:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ad93095f16 
					 
					
						
						
							
							Missing declaration.  
						
						 
						
						
						
						
					 
					
						2005-05-09 20:47:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						82b47955fc 
					 
					
						
						
							
							Void new FIPS tests if configured without FIPS.  
						
						 
						
						
						
						
					 
					
						2005-05-09 19:34:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						95477d36f6 
					 
					
						
						
							
							Add FIPS HMAC power-up test.  
						
						 
						
						
						
						
					 
					
						2005-05-09 19:22:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eb798944b3 
					 
					
						
						
							
							Stop warnings in asserts.  
						
						 
						
						... 
						
						
						
						Add support for SHA-XXX in RSA tests.
Make fips_check_rsa work for key lengths > 2048 bits. 
						
						
					 
					
						2005-05-08 23:48:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b1ca6f2f3d 
					 
					
						
						
							
							Eliminate "statement with no effect" warning when OPENSSL_assert macro  
						
						 
						
						... 
						
						
						
						is used with constant assertion. 
						
						
					 
					
						2005-05-08 19:52:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						102e6481ae 
					 
					
						
						
							
							Remove SSE2 option from fips sha512 [for now].  
						
						 
						
						
						
						
					 
					
						2005-05-08 08:25:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						97949ccfc8 
					 
					
						
						
							
							Move SHA1 selftest input vectors to writable segment.  
						
						 
						
						
						
						
					 
					
						2005-05-07 22:33:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						44e9bc81eb 
					 
					
						
						
							
							Add FIPS RNG tests.  
						
						 
						
						... 
						
						
						
						Submitted by: Steve Marquess 
						
						
					 
					
						2005-05-07 22:06:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4b27a9feb3 
					 
					
						
						
							
							Backport SHA-[224|256|384|512] from HEAD to FIPS.  
						
						 
						
						
						
						
					 
					
						2005-05-07 17:21:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0649b6f0f2 
					 
					
						
						
							
							Add FIPS rsa sign test program.  
						
						 
						
						
						
						
					 
					
						2005-05-07 12:50:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						389ff2e01f 
					 
					
						
						
							
							FIPS RSA sign test.  
						
						 
						
						
						
						
					 
					
						2005-05-07 12:11:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8cf1846857 
					 
					
						
						
							
							Downsync from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1059 
						
						
					 
					
						2005-05-07 08:53:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2dab26339d 
					 
					
						
						
							
							FIPS RSA verify test.  
						
						 
						
						
						
						
					 
					
						2005-05-05 21:46:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						239e31f896 
					 
					
						
						
							
							A few more fingerprints...  
						
						 
						
						
						
						
					 
					
						2005-05-05 06:39:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4bf3222d96 
					 
					
						
						
							
							Delete unused variables.  
						
						 
						
						
						
						
					 
					
						2005-05-04 22:02:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3380c4561e 
					 
					
						
						
							
							Backport of rc4-x86_64 from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-05-04 16:12:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						3f2f0c8892 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2005-05-04 14:51:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0ee883650d 
					 
					
						
						
							
							Commentary update motivating code update in 0.9.7.  
						
						 
						
						
						
						
					 
					
						2005-05-04 14:51:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						70cf309517 
					 
					
						
						
							
							x86_64 assembler translator update.  
						
						 
						
						
						
						
					 
					
						2005-05-04 08:42:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8b5bf52ac2 
					 
					
						
						
							
							Cvs missed adapted module itself, here it goes...  
						
						 
						
						
						
						
					 
					
						2005-05-03 23:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						73a9485081 
					 
					
						
						
							
							Engage md5-x86_64 assembler module.  
						
						 
						
						
						
						
					 
					
						2005-05-03 22:59:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d37a65bc81 
					 
					
						
						
							
							Throw in md5-x86_64 assembler.  
						
						 
						
						
						
						
					 
					
						2005-05-03 22:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9dc4f157bc 
					 
					
						
						
							
							Fix mk1mf.pl and avoid warning in VC++.  
						
						 
						
						
						
						
					 
					
						2005-05-03 22:14:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34c7ff6dc9 
					 
					
						
						
							
							Cygwin doesn't expose Win32 [not "officially"].  
						
						 
						
						
						
						
					 
					
						2005-05-03 21:20:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						647907918d 
					 
					
						
						
							
							Commentary update.  
						
						 
						
						
						
						
					 
					
						2005-05-03 21:16:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						cee73df3bd 
					 
					
						
						
							
							Cpuid modules updates.  
						
						 
						
						
						
						
					 
					
						2005-05-03 21:05:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						07481951f9 
					 
					
						
						
							
							remove false positive  
						
						 
						
						
						
						
					 
					
						2005-05-03 20:58:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f15c448a72 
					 
					
						
						
							
							remove BN_ncopy, it was only used in bn_nist.c and wasn't particular  
						
						 
						
						... 
						
						
						
						useful anyway 
						
						
					 
					
						2005-05-03 20:27:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fcb41c0ee8 
					 
					
						
						
							
							rewrite of bn_nist.c, disable support for some curves on 64 bit platforms  
						
						 
						
						... 
						
						
						
						for now (it was broken anyway) 
						
						
					 
					
						2005-05-03 20:23:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8513320593 
					 
					
						
						
							
							fix typo  
						
						 
						
						... 
						
						
						
						PR: 1054 
						
						
					 
					
						2005-05-03 18:35:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9b62318311 
					 
					
						
						
							
							fix typo  
						
						 
						
						... 
						
						
						
						PR: 1054 
						
						
					 
					
						2005-05-03 18:34:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1efb6705f 
					 
					
						
						
							
							Preliminary FIPS hmac test program.  
						
						 
						
						
						
						
					 
					
						2005-05-03 17:07:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5f1841cdca 
					 
					
						
						
							
							Rename amd64 modules to x86_64 and update RC4 implementation.  
						
						 
						
						
						
						
					 
					
						2005-05-03 15:42:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4b45051902 
					 
					
						
						
							
							x86_64 assembler translator update.  
						
						 
						
						
						
						
					 
					
						2005-05-03 15:35:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f07320eae0 
					 
					
						
						
							
							Remove unnecessary code.  
						
						 
						
						
						
						
					 
					
						2005-05-03 11:56:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9e5790ce21 
					 
					
						
						
							
							backport fix from the stable branch  
						
						 
						
						
						
						
					 
					
						2005-05-03 10:00:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a0724cb261 
					 
					
						
						
							
							Synchronise with Unix build.  
						
						 
						
						
						
						
					 
					
						2005-05-03 08:49:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cdbba1067f 
					 
					
						
						
							
							Add .cvsignore  
						
						 
						
						
						
						
					 
					
						2005-05-02 23:06:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d837ca70f7 
					 
					
						
						
							
							Add fips hmac files  
						
						 
						
						
						
						
					 
					
						2005-05-02 23:04:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb64e17555 
					 
					
						
						
							
							Update dependencies.  
						
						 
						
						
						
						
					 
					
						2005-05-02 23:02:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8f245d243 
					 
					
						
						
							
							Add hmac to fips.  
						
						 
						
						
						
						
					 
					
						2005-05-02 22:59:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						fce8c6cc53 
					 
					
						
						
							
							Redundant changes.  
						
						 
						
						
						
						
					 
					
						2005-05-01 13:55:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0ff469d38d 
					 
					
						
						
							
							Add prototype.  
						
						 
						
						
						
						
					 
					
						2005-05-01 13:49:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						73f3c281ff 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-05-01 12:47:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05338b58ce 
					 
					
						
						
							
							Support for smime-type MIME parameter.  
						
						 
						
						
						
						
					 
					
						2005-05-01 12:46:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						081057c3ff 
					 
					
						
						
							
							Remove false positives and resolve some of remaining ones.  
						
						 
						
						
						
						
					 
					
						2005-04-30 23:48:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						94c1672ef0 
					 
					
						
						
							
							Cygwin/mingw sync with stable.  
						
						 
						
						
						
						
					 
					
						2005-04-30 23:45:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						405d9761a5 
					 
					
						
						
							
							Allow for ./config no-sha0 [from stable].  
						
						 
						
						
						
						
					 
					
						2005-04-30 21:51:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4c3a2d64e4 
					 
					
						
						
							
							Fold rules in test/Makefiles [from stable].  
						
						 
						
						
						
						
					 
					
						2005-04-30 21:39:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6a62b2e54b 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-30 18:16:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						98a2fd32a0 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-04-30 18:07:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bdeeb64ac 
					 
					
						
						
							
							Don't attempt to parse nested ASN1 strings by default.  
						
						 
						
						
						
						
					 
					
						2005-04-30 18:02:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43b45a42fd 
					 
					
						
						
							
							Some true positives fixed, toss some false positives.  
						
						 
						
						
						
						
					 
					
						2005-04-30 15:25:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9af1bfb3d5 
					 
					
						
						
							
							From branch OpenSSL_0_9_7-stable, 2004-09-11 11:45:  
						
						 
						
						... 
						
						
						
						Makefile.ssl changed name to Makefile... 
						
						
					 
					
						2005-04-30 15:23:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aed14edd12 
					 
					
						
						
							
							From branch OpenSSL_0_9_7-stable, 2004-08-11 22:34:  
						
						 
						
						... 
						
						
						
						Another missing module in the VMS build files.I believe this is
the last, though... 
						
						
					 
					
						2005-04-30 15:21:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						14a948e6ad 
					 
					
						
						
							
							All kinds of changes from branch OpenSSL_0_9_7-stable  
						
						 
						
						
						
						
					 
					
						2005-04-30 15:17:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af2fcf3a65 
					 
					
						
						
							
							This one deserves a note.  In the change to CHANGES, there's the  
						
						 
						
						... 
						
						
						
						following:
+     NOTE: This is for the 0.9.7 series ONLY.  This hack will never
+     appear in 0.9.8 or later.  We EXPECT application authors to have
+     dealt properly with this when 0.9.8 is released (unless we actually
+     make such changes in the libcrypto locking code that changes will
+     have to be made anyway).
That makes this one a false positive. 
						
						
					 
					
						2005-04-30 14:41:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4a676ac4f8 
					 
					
						
						
							
							Remove a bunch of false positives, and fix some true positives.  
						
						 
						
						
						
						
					 
					
						2005-04-30 14:40:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37e27219f2 
					 
					
						
						
							
							From branch OpenSSL_0_9_7-stable, 2002-11-13 15:30:  
						
						 
						
						... 
						
						
						
						The loading functions should be static if we build a dynamic
engine. 
						
						
					 
					
						2005-04-30 14:34:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d2284ab5d1 
					 
					
						
						
							
							Remove a bunch of false positives, fix one true positive.  
						
						 
						
						
						
						
					 
					
						2005-04-30 13:50:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						78e91e7574 
					 
					
						
						
							
							From branch OpenSSL_0_9_7-stable, revision 1.1.4.1, 2002-05-23 17:25:  
						
						 
						
						... 
						
						
						
						Forgot this file. 
						
						
					 
					
						2005-04-30 13:42:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c1668fe59d 
					 
					
						
						
							
							Update from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-30 13:08:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1cc0671ac 
					 
					
						
						
							
							Use more efficient way to locate end of an ASN1 structure.  
						
						 
						
						
						
						
					 
					
						2005-04-30 13:06:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c1a8a5de13 
					 
					
						
						
							
							don't let BN_CTX_free(NULL) segfault  
						
						 
						
						
						
						
					 
					
						2005-04-29 21:20:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e3d0e0a792 
					 
					
						
						
							
							remove false positive  
						
						 
						
						
						
						
					 
					
						2005-04-29 20:41:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7c7667b86b 
					 
					
						
						
							
							check return value of RAND_pseudo_bytes; backport from the stable branch  
						
						 
						
						
						
						
					 
					
						2005-04-29 20:10:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						38be5db93b 
					 
					
						
						
							
							remove some false positive  
						
						 
						
						
						
						
					 
					
						2005-04-29 19:24:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6a50d0a422 
					 
					
						
						
							
							hide the definition of ECDSA_METHOD and ECDSA_DATA (and mutatis mutandis  
						
						 
						
						... 
						
						
						
						for ecdh) 
						
						
					 
					
						2005-04-29 15:56:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7ab2d30349 
					 
					
						
						
							
							add 192 bit prime curve to the command line options  
						
						 
						
						
						
						
					 
					
						2005-04-29 15:21:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						d753c3f582 
					 
					
						
						
							
							add reference to BN_BLINDING_new.pod  
						
						 
						
						
						
						
					 
					
						2005-04-29 15:07:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						1897c89302 
					 
					
						
						
							
							avoid warnings when building on systems where sizeof(void *) > sizeof(int)  
						
						 
						
						
						
						
					 
					
						2005-04-29 14:26:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9aa260ab57 
					 
					
						
						
							
							Exclude the option for passing parameters pre-computed in unverified way.  
						
						 
						
						
						
						
					 
					
						2005-04-29 13:36:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c7e7d382d5 
					 
					
						
						
							
							Pointer to BN_MONT_CTX could be used uninitialized.  
						
						 
						
						
						
						
					 
					
						2005-04-28 08:52:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3cc54008eb 
					 
					
						
						
							
							Pointer to BN_MONT_CTX could be used uninitialized.  
						
						 
						
						
						
						
					 
					
						2005-04-28 08:49:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ff8bcccdd4 
					 
					
						
						
							
							Synchronise with Unix build system.  
						
						 
						
						
						
						
					 
					
						2005-04-28 04:55:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81170986ed 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-28 00:22:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a93b01be57 
					 
					
						
						
							
							Increase offset for BIO_f_enc() to avoid problems with overlapping buffers  
						
						 
						
						... 
						
						
						
						when decrypting data. 
						
						
					 
					
						2005-04-28 00:21:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04b304d346 
					 
					
						
						
							
							Update default dependency flags.  
						
						 
						
						
						
						
					 
					
						2005-04-27 16:32:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6c61726b2a 
					 
					
						
						
							
							Lots of Win32 fixes for DTLS.  
						
						 
						
						... 
						
						
						
						1. "unsigned long long" isn't portable changed: to BN_ULLONG.
2. The LL prefix isn't allowed in VC++ but it isn't needed where it is used.
2. Avoid lots of compiler warnings about signed/unsigned mismatches.
3. Include new library directory pqueue in mk1mf build system.
4. Update symbols. 
						
						
					 
					
						2005-04-27 16:27:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						cd202fe2f9 
					 
					
						
						
							
							get rid of Makefile.ssl in util/  
						
						 
						
						
						
						
					 
					
						2005-04-27 08:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						69af4faec1 
					 
					
						
						
							
							no Makefile.ssl anymore  
						
						 
						
						
						
						
					 
					
						2005-04-27 08:48:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						4b21c202ff 
					 
					
						
						
							
							add missing parentheses  
						
						 
						
						
						
						
					 
					
						2005-04-27 07:59:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						df9e0bf507 
					 
					
						
						
							
							add missing parentheses  
						
						 
						
						
						
						
					 
					
						2005-04-27 07:57:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						879b19801a 
					 
					
						
						
							
							Change method_mont_p from (char *) to (BN_MONT_CTX *) and remove several  
						
						 
						
						... 
						
						
						
						casts. 
						
						
					 
					
						2005-04-27 00:04:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ec8e63af6 
					 
					
						
						
							
							Port BN_MONT_CTX_set_locked() from stable branch.  
						
						 
						
						... 
						
						
						
						The function rsa_eay_mont_helper() has been removed because it is no longer
needed after this change. 
						
						
					 
					
						2005-04-26 23:58:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						465b9f6b26 
					 
					
						
						
							
							Stop unused variable warning.  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:45:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c9c87a76e 
					 
					
						
						
							
							Remove more false positives.  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:33:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a7a90b2f00 
					 
					
						
						
							
							there's no such thing as Makefile.ssl anymore  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:22:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4d6e7733fa 
					 
					
						
						
							
							util/mk1mf.pl issues have been resolved  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:22:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2deadf1672 
					 
					
						
						
							
							Port from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:21:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ea862e0b3 
					 
					
						
						
							
							More false positives and cases covered by port of prime.c  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:19:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						11c9b7cfeb 
					 
					
						
						
							
							"PS" to Steve's commit (Port prime utility across from stable branch).  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:11:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b08868c48a 
					 
					
						
						
							
							Port prime utility across from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-04-26 23:02:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9ca46ff609 
					 
					
						
						
							
							add docu for BN_BLINDING functions  
						
						 
						
						
						
						
					 
					
						2005-04-26 22:33:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						800e400de5 
					 
					
						
						
							
							some updates for the blinding code; summary:  
						
						 
						
						... 
						
						
						
						- possibility of re-creation of the blinding parameters after a
  fixed number of uses (suggested by Bodo)
- calculatition of the rsa::e in case it's absent and p and q
  are present (see bug report #785 )
- improve the performance when if one rsa structure is shared by
  more than a thread (see bug report #555 )
- fix the problem described in bug report #827 
- hide the definition ot the BN_BLINDING structure in bn_blind.c 
						
						
					 
					
						2005-04-26 22:31:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						05886a6f77 
					 
					
						
						
							
							Remove more false positives.  
						
						 
						
						
						
						
					 
					
						2005-04-26 22:25:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						667aef4c6a 
					 
					
						
						
							
							Port from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-04-26 22:07:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49e179cc52 
					 
					
						
						
							
							Remove more false positives.  
						
						 
						
						
						
						
					 
					
						2005-04-26 22:05:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						aa4ce7315f 
					 
					
						
						
							
							Fix various incorrect error function codes.  
						
						 
						
						... 
						
						
						
						("perl util/ck_errf.pl */*.c */*/*.c" still reports many more.) 
						
						
					 
					
						2005-04-26 18:53:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c741b83762 
					 
					
						
						
							
							take OPENSSL_NO_DGRAM into account  
						
						 
						
						... 
						
						
						
						(via make update) 
						
						
					 
					
						2005-04-26 18:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						64387788a9 
					 
					
						
						
							
							let mkdef.pl know about OPENSSL_NO_DGRAM  
						
						 
						
						... 
						
						
						
						(which appears in the new file crypto/bio/bss_dgram.c) 
						
						
					 
					
						2005-04-26 18:21:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						480506bd49 
					 
					
						
						
							
							remove some functions from exported headers  
						
						 
						
						
						
						
					 
					
						2005-04-26 18:18:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0d5ea7613e 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-04-26 18:09:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						beb056b303 
					 
					
						
						
							
							fix SSLerr stuff for DTLS1 code;  
						
						 
						
						... 
						
						
						
						move some functions from exported header <openssl/dtl1.h> into "ssl_locl.h";
fix silly indentation (a TAB is *not* always 4 spaces) 
						
						
					 
					
						2005-04-26 18:08:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e321ffaff 
					 
					
						
						
							
							Fixes for signed/unsigned warnings and shadows.  
						
						 
						
						
						
						
					 
					
						2005-04-26 17:43:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ededa42db 
					 
					
						
						
							
							False positive removed.  
						
						 
						
						
						
						
					 
					
						2005-04-26 17:37:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						36d16f8ee0 
					 
					
						
						
							
							Add DTLS support.  
						
						 
						
						
						
						
					 
					
						2005-04-26 16:02:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ab781a0cb6 
					 
					
						
						
							
							make depend.  
						
						 
						
						
						
						
					 
					
						2005-04-26 13:56:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						19c2987eb6 
					 
					
						
						
							
							remove false positive  
						
						 
						
						
						
						
					 
					
						2005-04-26 08:17:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b09af97686 
					 
					
						
						
							
							some more false positives to remove  
						
						 
						
						
						
						
					 
					
						2005-04-25 23:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a7b1c7732f 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-04-25 23:17:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						abc64463af 
					 
					
						
						
							
							move some more entries into FIPS file  
						
						 
						
						
						
						
					 
					
						2005-04-25 23:16:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2e7245f5a3 
					 
					
						
						
							
							Use OPENSSL_NO_CAST, not OPENSSL_NO_CAST5 in e_old.c  
						
						 
						
						... 
						
						
						
						PR: 959 
						
						
					 
					
						2005-04-25 23:09:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f76b062e16 
					 
					
						
						
							
							Remove some more entries that are false positives, or have been  
						
						 
						
						... 
						
						
						
						resolved by recent commits. 
						
						
					 
					
						2005-04-25 23:06:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						cc1717eaa4 
					 
					
						
						
							
							Sort out changes in FIPS and other changes, collected in separate files.  
						
						 
						
						... 
						
						
						
						(Also remove another "make update".) 
						
						
					 
					
						2005-04-25 22:55:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c5156d952e 
					 
					
						
						
							
							remove some more false positives  
						
						 
						
						
						
						
					 
					
						2005-04-25 22:08:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0b2d0d7d13 
					 
					
						
						
							
							remove some more false positives  
						
						 
						
						
						
						
					 
					
						2005-04-25 22:02:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b732a8cf5f 
					 
					
						
						
							
							remove some more changes that came from HEAD  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:54:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a7dc451ebe 
					 
					
						
						
							
							fix editing error, and remove a false positive  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:53:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						1e764f463e 
					 
					
						
						
							
							update  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:42:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						87357fc0b8 
					 
					
						
						
							
							update  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:42:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a2c96d888d 
					 
					
						
						
							
							remove extra whitespace; fix link  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:36:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a7a0af0ca4 
					 
					
						
						
							
							remove extra whitespace; mention MDC2 patent  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:36:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9a6c6b99bf 
					 
					
						
						
							
							remove some false positives  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:32:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						033c79dff1 
					 
					
						
						
							
							add recent changes; now this file is up-to-date  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:25:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b362536275 
					 
					
						
						
							
							bring up-to-date  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:22:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						aa16a28631 
					 
					
						
						
							
							first step to melt down ChangeLog.0_9_7-stable_not-in-head :-)  
						
						 
						
						
						
						
					 
					
						2005-04-25 21:06:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2757c67da2 
					 
					
						
						
							
							This is a collection of those CVS change log entries for the 0.9.7  
						
						 
						
						... 
						
						
						
						branch (OpenSSL_0_9_7-stable) that do not appear similarly in
0.9.8-dev (CVS head).
Some obvious false positives have been eliminated: e.g., we do not
care about a simple "make update"; and we don't care about changes
identified to the 0.9.7 branch that were explicitly identified as
backports from head.
Eliminating all other entries (and finally this file), either as false
positives or as things that should go into 0.9.8, remains to be done. 
						
						
					 
					
						2005-04-25 21:01:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						148111ff0a 
					 
					
						
						
							
							Avoid L1 cache aliasing even between key and S-boxes. From HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-24 21:17:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3d5fd31280 
					 
					
						
						
							
							Avoid L1 cache aliasing even between key and S-boxes.  
						
						 
						
						
						
						
					 
					
						2005-04-24 21:09:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c7199e62f1 
					 
					
						
						
							
							Flag changes in Configure and config, too.  
						
						 
						
						... 
						
						
						
						Update dependencies. 
						
						
					 
					
						2005-04-24 12:02:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0b3fc6e63b 
					 
					
						
						
							
							update  
						
						 
						
						
						
						
					 
					
						2005-04-24 09:17:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2db9cfb52 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2005-04-24 02:24:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6bc8e6b898 
					 
					
						
						
							
							Recognize zlib and krb5 options in mk1mf.pl  
						
						 
						
						
						
						
					 
					
						2005-04-24 02:21:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6eb4958989 
					 
					
						
						
							
							Recognize zlib and krb5 options in mk1mf.pl  
						
						 
						
						
						
						
					 
					
						2005-04-24 02:14:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						9edf4e8157 
					 
					
						
						
							
							make asn.1 field names const  
						
						 
						
						
						
						
					 
					
						2005-04-23 13:45:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						b07a7b5daa 
					 
					
						
						
							
							fix typo  
						
						 
						
						
						
						
					 
					
						2005-04-23 12:46:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						965a1cb92e 
					 
					
						
						
							
							change prototype of the ecdh KDF: make input parameter const and the outlen argument  more flexible  
						
						 
						
						
						
						
					 
					
						2005-04-23 10:11:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e9ad6665a5 
					 
					
						
						
							
							Add debug target, remove cast, note possible bug.  
						
						 
						
						
						
						
					 
					
						2005-04-23 06:05:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b5855b2f32 
					 
					
						
						
							
							Add prototypes.  
						
						 
						
						
						
						
					 
					
						2005-04-22 23:57:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						a0bee97e55 
					 
					
						
						
							
							more const  
						
						 
						
						
						
						
					 
					
						2005-04-22 21:57:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e7076c5a80 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-04-22 20:17:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ff22e913a3 
					 
					
						
						
							
							- use BN_set_negative and BN_is_negative instead of BN_set_sign  
						
						 
						
						... 
						
						
						
						and BN_get_sign
- implement BN_set_negative as a function
- always use "#define BN_is_zero(a) ((a)->top == 0)" 
						
						
					 
					
						2005-04-22 20:02:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						132f25950b 
					 
					
						
						
							
							Update libeay.num  
						
						 
						
						
						
						
					 
					
						2005-04-22 13:21:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ed56cba63 
					 
					
						
						
							
							New function BN_MONT_CTX_set_locked, to set montgomery parameters in a  
						
						 
						
						... 
						
						
						
						threadsafe manner.
Modify or add calls to use it in rsa, dsa and dh algorithms. 
						
						
					 
					
						2005-04-22 13:17:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						145878ca29 
					 
					
						
						
							
							Move some variables to .bss.  
						
						 
						
						
						
						
					 
					
						2005-04-22 12:15:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a36c30136e 
					 
					
						
						
							
							Avoid aliasing between stack frames and S-boxes. Compress prefetch code.  
						
						 
						
						... 
						
						
						
						From HEAD. 
						
						
					 
					
						2005-04-22 11:53:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						04d0d0accf 
					 
					
						
						
							
							Avoid aliasing between stack frames and S-boxes. Compress prefetch code.  
						
						 
						
						
						
						
					 
					
						2005-04-22 11:49:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						92ad8e5c37 
					 
					
						
						
							
							Remove defunct FIPS_allow_md5() and related functions.  
						
						 
						
						
						
						
					 
					
						2005-04-22 01:06:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						00df894701 
					 
					
						
						
							
							the pointer to the message digest is const  
						
						 
						
						
						
						
					 
					
						2005-04-21 09:43:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						630e4a6e59 
					 
					
						
						
							
							Provide a default OPENSSL_ia32cap_loc for non-Intel platforms where  
						
						 
						
						... 
						
						
						
						util/libeay.num is important when building shared libraries, like
VMS. 
						
						
					 
					
						2005-04-21 09:10:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf2336f478 
					 
					
						
						
							
							Don't use standard kerberos library locations in MK1MF builds.  
						
						 
						
						... 
						
						
						
						Fix typo in mk1mf.pl 
						
						
					 
					
						2005-04-21 00:46:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4f6c2bacb1 
					 
					
						
						
							
							Don't use kerberos library locations on windows.  
						
						 
						
						
						
						
					 
					
						2005-04-21 00:42:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						384dba6edb 
					 
					
						
						
							
							Make kerberos ciphersuite code compile again.  
						
						 
						
						... 
						
						
						
						Avoid more shadow warnings. 
						
						
					 
					
						2005-04-20 21:48:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2c45bf2bc9 
					 
					
						
						
							
							Rename typed version of M_ASN1_get M_ASN1_get_x to avoid conflicts.  
						
						 
						
						... 
						
						
						
						Remove more bogus shadow warnings. 
						
						
					 
					
						2005-04-20 21:48:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						836ec0c764 
					 
					
						
						
							
							Stop compiler warnings about deprecated lvalue casts.  
						
						 
						
						
						
						
					 
					
						2005-04-20 21:39:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e72fb063a 
					 
					
						
						
							
							Stop bogus shadowing warning.  
						
						 
						
						
						
						
					 
					
						2005-04-20 21:34:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d9536ccffa 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-20 17:06:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37ce8cffcc 
					 
					
						
						
							
							Ignore zlib related options in mk1mf.pl  
						
						 
						
						
						
						
					 
					
						2005-04-20 16:27:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2dc08d5f5d 
					 
					
						
						
							
							Process MINFO file earlier in mk1mf.pl so it can modify variables like CFLAGS.  
						
						 
						
						... 
						
						
						
						Process kerberos include and library options. 
						
						
					 
					
						2005-04-20 16:22:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00b8abee61 
					 
					
						
						
							
							Handle similar mk1mf.pl options with a hash table.  
						
						 
						
						
						
						
					 
					
						2005-04-20 16:01:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7efebab9fd 
					 
					
						
						
							
							signed vs. unsigned.  
						
						 
						
						
						
						
					 
					
						2005-04-20 13:21:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a74286d636 
					 
					
						
						
							
							Make sure id2_func is properly cast as well...  
						
						 
						
						
						
						
					 
					
						2005-04-20 13:17:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						254cfe878e 
					 
					
						
						
							
							signed vs. unsigned.  
						
						 
						
						
						
						
					 
					
						2005-04-20 13:12:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ed824195a1 
					 
					
						
						
							
							Avoid compiler complaint about mismatched function signatures  
						
						 
						
						... 
						
						
						
						(void * != char *) 
						
						
					 
					
						2005-04-20 13:09:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						22c3600e4c 
					 
					
						
						
							
							Resolve signed vs. unsigned.  
						
						 
						
						
						
						
					 
					
						2005-04-20 12:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						49f386578e 
					 
					
						
						
							
							Type mismatch detected by DEC C compiler.  void* != void**  
						
						 
						
						
						
						
					 
					
						2005-04-20 12:53:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7c671508bd 
					 
					
						
						
							
							Avoid compiler complaint about mismatched function signatures  
						
						 
						
						... 
						
						
						
						(void * != RSA *) 
						
						
					 
					
						2005-04-20 10:02:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76693ca0a3 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-20 00:00:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3fdc27aa8 
					 
					
						
						
							
							Fix logic in mkdef.pl function is_valid.  
						
						 
						
						... 
						
						
						
						Update symbols 
						
						
					 
					
						2005-04-19 23:54:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4182f0ffc7 
					 
					
						
						
							
							Enable shared link on HP-UX.  
						
						 
						
						
						
						
					 
					
						2005-04-19 22:21:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						40e950aed6 
					 
					
						
						
							
							Stop perl warning.  
						
						 
						
						
						
						
					 
					
						2005-04-19 18:57:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0ef4ec4fd4 
					 
					
						
						
							
							Complete the transition C-code hashes.  
						
						 
						
						
						
						
					 
					
						2005-04-19 15:17:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f868b61376 
					 
					
						
						
							
							Maintain fingerprint hashes as C source.  
						
						 
						
						
						
						
					 
					
						2005-04-19 15:11:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						987bebaf8c 
					 
					
						
						
							
							New "algorithm define" OPENSSL_NO_GMP. Update mkdef.pl and Configure script  
						
						 
						
						... 
						
						
						
						to use it. 
						
						
					 
					
						2005-04-19 13:24:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						65f0efe198 
					 
					
						
						
							
							Ignore TYPEDEF_OF in mkdef.pl  
						
						 
						
						
						
						
					 
					
						2005-04-19 11:49:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e77d8f2ecd 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2005-04-19 00:15:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f68854b4c3 
					 
					
						
						
							
							Various Win32 and other fixes for warnings and compilation errors.  
						
						 
						
						... 
						
						
						
						Fix Win32 build system to use 'Makefile' instead of 'Makefile.ssl'. 
						
						
					 
					
						2005-04-19 00:12:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c61a8ad5b0 
					 
					
						
						
							
							Remove obsolete fingerprint.sha1 files and associated scripts. Delete test  
						
						 
						
						... 
						
						
						
						in fips/sha1/Makefile: the top level test checks the same files. 
						
						
					 
					
						2005-04-18 16:34:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						89234b1eed 
					 
					
						
						
							
							Pick up definition of FIPS_mode() in fips.h to avoid warnings.  
						
						 
						
						
						
						
					 
					
						2005-04-18 13:02:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2ec5ebb979 
					 
					
						
						
							
							Minor fips const-ification.  
						
						 
						
						
						
						
					 
					
						2005-04-18 00:22:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						863a155451 
					 
					
						
						
							
							Resolve minor binary compatibility issues in fips.  
						
						 
						
						
						
						
					 
					
						2005-04-17 23:26:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1ddce0bebf 
					 
					
						
						
							
							Throw in fips/aes/asm/fips-ax86-elf.s.  
						
						 
						
						
						
						
					 
					
						2005-04-17 22:54:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4347c0a76d 
					 
					
						
						
							
							Regenerate fips/des/asm/fips-dx86-elf.s with -fPIC flag.  
						
						 
						
						
						
						
					 
					
						2005-04-17 22:35:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f1429a972f 
					 
					
						
						
							
							Return 0 for successful hash check.  
						
						 
						
						
						
						
					 
					
						2005-04-17 22:21:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						45bc841b22 
					 
					
						
						
							
							Rename fips/sha1/sx86-elf.s to fips/sha1/fips-sx86-elf.s.  
						
						 
						
						
						
						
					 
					
						2005-04-17 22:17:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a111bc864 
					 
					
						
						
							
							Bring back fips_standalone_sha1.  
						
						 
						
						
						
						
					 
					
						2005-04-17 22:00:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1cfd258ed6 
					 
					
						
						
							
							Throw in x86_64 AT&T to MASM assembler converter to facilitate development  
						
						 
						
						... 
						
						
						
						of dual-ABI Unix/Win64 modules. 
						
						
					 
					
						2005-04-17 21:05:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						04d7d51ea2 
					 
					
						
						
							
							Fix from stable branch.  
						
						 
						
						
						
						
					 
					
						2005-04-17 13:59:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48d0ba4a1e 
					 
					
						
						
							
							Modify checkhash.pl so it can be run standalone or included as a funtion  
						
						 
						
						... 
						
						
						
						in another perl script. 
						
						
					 
					
						2005-04-17 12:37:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0e23faec0a 
					 
					
						
						
							
							Include user32.lib to import MessageBoxIndirect  
						
						 
						
						
						
						
					 
					
						2005-04-17 12:35:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7590f37fd7 
					 
					
						
						
							
							Apparently, isascii() is an X/Open function, so to get it properly  
						
						 
						
						... 
						
						
						
						declared, we need to define _XOPEN_SOURCE before including ctype.h.
Ported from HEAD. 
						
						
					 
					
						2005-04-17 09:15:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2906dc8601 
					 
					
						
						
							
							Synchronise with ec/Makefile.  
						
						 
						
						
						
						
					 
					
						2005-04-17 09:07:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c8d5c71af5 
					 
					
						
						
							
							Mitigate cache-timing attack in CBC mode. This is done by implementing  
						
						 
						
						... 
						
						
						
						compressed tables (2x compression factor) and by pre-fetching them into
processor cache prior every CBC en-/decryption pass. One can argue why
just CBC? Well, it's commonly used mode in real-life applications and
API allows us to amortize the prefetch costs for larger data chunks... 
						
						
					 
					
						2005-04-16 15:23:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						ff990440ee 
					 
					
						
						
							
							const fixes  
						
						 
						
						
						
						
					 
					
						2005-04-15 18:29:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						0e304b7f41 
					 
					
						
						
							
							EVP_CIPHER_CTX_init is a void function + fix typo  
						
						 
						
						... 
						
						
						
						PR: 1044 + 1045 
						
						
					 
					
						2005-04-15 16:01:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f97b4a776e 
					 
					
						
						
							
							EVP_CIPHER_CTX_init is a void function + fix typo  
						
						 
						
						... 
						
						
						
						PR: 1044 + 1045 
						
						
					 
					
						2005-04-15 16:00:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b99daf76a7 
					 
					
						
						
							
							Update hash checking in makefiles to use new perl script.  
						
						 
						
						
						
						
					 
					
						2005-04-15 11:27:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8fc6cb77c5 
					 
					
						
						
							
							Fix from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-14 22:59:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fbe6ba81e9 
					 
					
						
						
							
							Check return values of <Digest>_Init functions in low level digest calls.  
						
						 
						
						
						
						
					 
					
						2005-04-14 22:58:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b219bb8f62 
					 
					
						
						
							
							Perl script that checks or rebuilds FIPS hash files. This works on  
						
						 
						
						... 
						
						
						
						both Unix and Windows.
Merge all FIPS hash files into a single hash file fips/fips.sha1 
						
						
					 
					
						2005-04-14 20:44:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2b85e23d2e 
					 
					
						
						
							
							Prototype mnemonics in padlock_verify_context for better portability  
						
						 
						
						... 
						
						
						
						[read support for Solaris assembler]. 
						
						
					 
					
						2005-04-14 07:47:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						026bb0b96a 
					 
					
						
						
							
							Fix for bug emerged in openvpn conext.  
						
						 
						
						
						
						
					 
					
						2005-04-14 07:41:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6424498226 
					 
					
						
						
							
							Final touch to mingw shared.  
						
						 
						
						
						
						
					 
					
						2005-04-13 23:54:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0b418c7d51 
					 
					
						
						
							
							Final touch to mingw shared.  
						
						 
						
						
						
						
					 
					
						2005-04-13 23:53:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						13051e9316 
					 
					
						
						
							
							Move cygcrypto.dll above cygwin.dll.  
						
						 
						
						
						
						
					 
					
						2005-04-13 22:47:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0174c56851 
					 
					
						
						
							
							More cover-ups, removing OPENSSL_GLOBAL/EXTERNS.  
						
						 
						
						
						
						
					 
					
						2005-04-13 21:48:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ed449e94a 
					 
					
						
						
							
							More cover-ups, removing OPENSSL_GLOBAL/EXTERNS. We can remove more...  
						
						 
						
						
						
						
					 
					
						2005-04-13 21:46:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4f1c33b430 
					 
					
						
						
							
							Addenum to  http://cvs.openssl.org/chngview?cn=13054 .  
						
						 
						
						
						
						
					 
					
						2005-04-13 21:10:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1334462ab3 
					 
					
						
						
							
							Final(?) touches to mingw shared support.  
						
						 
						
						
						
						
					 
					
						2005-04-13 21:08:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a34f2d42b4 
					 
					
						
						
							
							Final(?) touches to mingw shared support. .dll.a as shared lib extention might  
						
						 
						
						... 
						
						
						
						appear controversial, but that's the only way to avoid relinks... 
						
						
					 
					
						2005-04-13 21:07:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5dc4923359 
					 
					
						
						
							
							Zap OPENSSL_EXTERN on symbols, which are meant to remain local to DLL.  
						
						 
						
						... 
						
						
						
						Comment in HEAD commit was wrong! 
						
						
					 
					
						2005-04-13 20:54:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e62991a07c 
					 
					
						
						
							
							Zap OPENSSL_EXTERN on symbols, which are not meant to be local to DLL.  
						
						 
						
						
						
						
					 
					
						2005-04-13 20:51:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						52272327f3 
					 
					
						
						
							
							Makefile.ssl -> Makefile  
						
						 
						
						
						
						
					 
					
						2005-04-13 19:09:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5820d87a5f 
					 
					
						
						
							
							Fix typos.  
						
						 
						
						
						
						
					 
					
						2005-04-13 15:41:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1bf955920a 
					 
					
						
						
							
							Fix typos.  
						
						 
						
						
						
						
					 
					
						2005-04-13 15:41:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						89b1fd98ac 
					 
					
						
						
							
							Backport OPENSSL_NONPIC_relocated from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-13 08:49:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						51d28013db 
					 
					
						
						
							
							Introduce OPENSSL_NONPIC_relocated to denote relocated DLLs.  
						
						 
						
						
						
						
					 
					
						2005-04-13 08:46:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ee2bf876c2 
					 
					
						
						
							
							Shared support update, rather backport from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-13 07:40:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8861ba355d 
					 
					
						
						
							
							Parameterize do_solaris rules in Makefile.shared.  
						
						 
						
						
						
						
					 
					
						2005-04-13 07:22:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e44f62c2b1 
					 
					
						
						
							
							OPENSSL_showfatal, backport from HEAD.  
						
						 
						
						
						
						
					 
					
						2005-04-13 07:02:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9e88c82703 
					 
					
						
						
							
							Minor cryptlib.c update: compiler warnings in OPENSSL_showfatal and  
						
						 
						
						... 
						
						
						
						OPENSSL_stderr stub. 
						
						
					 
					
						2005-04-13 06:55:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d2f51c086 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2005-04-12 16:38:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ad0db060b1 
					 
					
						
						
							
							More overwritten stuff...  
						
						 
						
						
						
						
					 
					
						2005-04-12 16:36:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3547478fc8 
					 
					
						
						
							
							Replace overwritten lines before error codes.  
						
						 
						
						
						
						
					 
					
						2005-04-12 16:17:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						29dc350813 
					 
					
						
						
							
							Rebuild error codes.  
						
						 
						
						
						
						
					 
					
						2005-04-12 16:15:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						342b7e0458 
					 
					
						
						
							
							Rebuild error codes.  
						
						 
						
						
						
						
					 
					
						2005-04-12 13:47:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc3cae7e7d 
					 
					
						
						
							
							Include error library value in C error source files instead of fixing up  
						
						 
						
						... 
						
						
						
						at runtime. 
						
						
					 
					
						2005-04-12 13:31:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						96534114a3 
					 
					
						
						
							
							Include error library value in C error source files instead of fixing up  
						
						 
						
						... 
						
						
						
						at runtime. 
						
						
					 
					
						2005-04-12 13:30:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ecd7d2b7e 
					 
					
						
						
							
							Ooops, shoudln't have deleted this line.  
						
						 
						
						
						
						
					 
					
						2005-04-12 11:34:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d728b8d10 
					 
					
						
						
							
							Not sure what this is doing here...  
						
						 
						
						
						
						
					 
					
						2005-04-11 22:22:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						37942fab51 
					 
					
						
						
							
							include limits.h for UINT_MAX etc.  
						
						 
						
						
						
						
					 
					
						2005-04-11 20:59:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d060fc9ff2 
					 
					
						
						
							
							Now that things have been tagged properly, make preparations for the  
						
						 
						
						... 
						
						
						
						next version in the 0.9.7 branch. 
						
						
					 
					
						2005-04-11 15:15:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						22e5a7935f 
					 
					
						
						
							
							Prepare to release 0.9.7g.  
						
						 
						
						... 
						
						
						
						The tag till be OpenSSL_0_9_7g. 
						
						
					 
					
						2005-04-11 15:10:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						01671ab2df 
					 
					
						
						
							
							Add a NEWS item for 0.9.7g.  
						
						 
						
						
						
						
					 
					
						2005-04-11 15:05:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						36521f0150 
					 
					
						
						
							
							Add a NEWS item for 0.9.7g.  
						
						 
						
						
						
						
					 
					
						2005-04-11 15:05:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						93aeac64ce 
					 
					
						
						
							
							Merge RFC3820 source into mainstream 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2005-04-11 15:03:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9addd9b6fb 
					 
					
						
						
							
							Add emacs cache files to .cvsignore.  
						
						 
						
						
						
						
					 
					
						2005-04-11 14:18:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						0231911dec 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2005-04-11 14:17:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4bb61becbb 
					 
					
						
						
							
							Add emacs cache files to .cvsignore.  
						
						 
						
						
						
						
					 
					
						2005-04-11 14:17:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b392e52050 
					 
					
						
						
							
							Move allow_proxy_certs declaration to start of function.  
						
						 
						
						
						
						
					 
					
						2005-04-10 23:41:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0858b71b41 
					 
					
						
						
							
							Make kerberos ciphersuite code work with newer header files  
						
						 
						
						
						
						
					 
					
						2005-04-09 23:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						657129f748 
					 
					
						
						
							
							Typo..  
						
						 
						
						
						
						
					 
					
						2005-04-09 23:52:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c710c7b3a3 
					 
					
						
						
							
							Make kerberos ciphersuites work with newer headers.  
						
						 
						
						
						
						
					 
					
						2005-04-09 23:32:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						ff731ae3db 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2005-04-09 16:07:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d9bfe4f97c 
					 
					
						
						
							
							Added restrictions on the use of proxy certificates, as they may pose  
						
						 
						
						... 
						
						
						
						a security threat on unexpecting applications.  Document and test. 
						
						
					 
					
						2005-04-09 16:07:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						dc0ed30cfe 
					 
					
						
						
							
							add support for DER encoded private keys to SSL_CTX_use_PrivateKey_file()  
						
						 
						
						... 
						
						
						
						and SSL_use_PrivateKey_file()
PR: 1035
Submitted by: Walter Goulet
Reviewed by:  Nils Larsch 
						
						
					 
					
						2005-04-08 22:52:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e248596bac 
					 
					
						
						
							
							improve docu of SSL_CTX_use_PrivateKey()  
						
						 
						
						
						
						
					 
					
						2005-04-08 22:49:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						6049399baf 
					 
					
						
						
							
							get rid of very buggy and very imcomplete DH cert support  
						
						 
						
						... 
						
						
						
						Reviewed by: Bodo Moeller 
						
						
					 
					
						2005-04-07 23:19:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f763e0b5ae 
					 
					
						
						
							
							make sure error queue is totally emptied  
						
						 
						
						... 
						
						
						
						PR: 359 
						
						
					 
					
						2005-04-07 22:53:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						eb3eab20a8 
					 
					
						
						
							
							const fixes  
						
						 
						
						
						
						
					 
					
						2005-04-07 22:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6d69d74bb8 
					 
					
						
						
							
							Recognize MSYS/MINGW environment.  
						
						 
						
						
						
						
					 
					
						2005-04-07 20:26:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4848cbf1cf 
					 
					
						
						
							
							Recognize MSYS/MINGW environment.  
						
						 
						
						
						
						
					 
					
						2005-04-07 20:24:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9f2027e56d 
					 
					
						
						
							
							Implement OPENSSL_showfatal and make it Win32 GUI and service aware  
						
						 
						
						... 
						
						
						
						[meaning that it will detect in which context application is running
and either write message to stderr, post a dialog or log an event]. 
						
						
					 
					
						2005-04-07 18:39:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4d2b407ba2 
					 
					
						
						
							
							Engage DllMain on Windows. Partial backport from HEAD. Unlike HEAD,  
						
						 
						
						... 
						
						
						
						it doesn't get engaged on __CYGWIN__, because I'm not sure is *all*
Cygwin installations are equipped with windows.h... 
						
						
					 
					
						2005-04-07 16:06:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e1d51de41f 
					 
					
						
						
							
							Harmonize cygwin/mingw and VC targets.  
						
						 
						
						
						
						
					 
					
						2005-04-07 15:51:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						81ee80ab88 
					 
					
						
						
							
							+45% RC4 performance boost on Intel EM64T core. Unrolled loop providing  
						
						 
						
						... 
						
						
						
						further +35% will follow...
Submitted by: Zou Nanhai 
						
						
					 
					
						2005-04-06 09:45:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						7d727231b7 
					 
					
						
						
							
							some const fixes  
						
						 
						
						
						
						
					 
					
						2005-04-05 19:11:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						69740c2b3f 
					 
					
						
						
							
							update progs.pl to reflect changes in progs.h  
						
						 
						
						
						
						
					 
					
						2005-04-05 18:17:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						119d1a1dd4 
					 
					
						
						
							
							fix example in docu  
						
						 
						
						... 
						
						
						
						PR: 800 
						
						
					 
					
						2005-04-05 11:17:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						afe01cd3f6 
					 
					
						
						
							
							fix example in docu  
						
						 
						
						... 
						
						
						
						PR: 800 
						
						
					 
					
						2005-04-05 11:16:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						70f34a5841 
					 
					
						
						
							
							some const fixes and cleanup  
						
						 
						
						
						
						
					 
					
						2005-04-05 10:29:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c2e40d0f9a 
					 
					
						
						
							
							remove unused recp method  
						
						 
						
						
						
						
					 
					
						2005-04-04 18:15:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0abfd60604 
					 
					
						
						
							
							Extend Solaris x86 support to amd64.  
						
						 
						
						
						
						
					 
					
						2005-04-04 17:10:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e5dbccc182 
					 
					
						
						
							
							Solaris x86 linker erroneously pads .init segment with zeros instead of  
						
						 
						
						... 
						
						
						
						nops, which causes SEGV at startup. So I don't align anymore. 
						
						
					 
					
						2005-04-04 17:07:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f8fa22d826 
					 
					
						
						
							
							Some non-GNU compilers (such as Sun C) define __i386.  
						
						 
						
						
						
						
					 
					
						2005-04-04 17:05:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c393222280 
					 
					
						
						
							
							HISTORY section: point out change of default digest  
						
						 
						
						
						
						
					 
					
						2005-04-03 23:53:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						631bae4723 
					 
					
						
						
							
							Extend Solaris x86 support to amd64. Note that if both gcc and Sun C  
						
						 
						
						... 
						
						
						
						are installed, it defaults to gcc, because it beats Sun C on every
benchmark. Also note that gcc shared build was verified to work woth
Sun C... 
						
						
					 
					
						2005-04-03 19:16:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f6bfb559f7 
					 
					
						
						
							
							Downsync from HEAD.  
						
						 
						
						... 
						
						
						
						PR: 1031 
						
						
					 
					
						2005-04-03 18:54:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						60fd574cdf 
					 
					
						
						
							
							Make bn/asm/x86_64-gcc.c gcc4 savvy. +r is likely to be initially  
						
						 
						
						... 
						
						
						
						introduced for a reason [like bug in initial gcc port], but proposed
=&r is treated correctly by senior 3.2, so we can assume it's safe now.
PR: 1031 
						
						
					 
					
						2005-04-03 18:53:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						73705abc34 
					 
					
						
						
							
							If input is bad, we still need to clear the buffer.  
						
						 
						
						
						
						
					 
					
						2005-04-03 16:38:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						12bdb64375 
					 
					
						
						
							
							use SHA-1 as the default digest for the apps/openssl commands  
						
						 
						
						
						
						
					 
					
						2005-04-02 09:29:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7bdf8eed69 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2005-04-01 21:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bbc0ac37b0 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2005-04-01 21:55:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						48c832b6b7 
					 
					
						
						
							
							really clear the error queue here  
						
						 
						
						... 
						
						
						
						PR: 860 
						
						
					 
					
						2005-04-01 17:50:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						8298632d14 
					 
					
						
						
							
							really clear the error queue here  
						
						 
						
						... 
						
						
						
						PR: 860 
						
						
					 
					
						2005-04-01 17:49:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f3e427f6f9 
					 
					
						
						
							
							use SSL3_VERSION_MAJOR instead of SSL3_VERSION etc.  
						
						 
						
						... 
						
						
						
						PR: 658 
						
						
					 
					
						2005-04-01 17:35:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						62a25c6129 
					 
					
						
						
							
							use SSL3_VERSION_MAJOR instead of SSL3_VERSION etc.  
						
						 
						
						... 
						
						
						
						PR: 658 
						
						
					 
					
						2005-04-01 17:33:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8bb826ee53 
					 
					
						
						
							
							Consistency.  
						
						 
						
						
						
						
					 
					
						2005-03-31 13:57:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ce53d920fb 
					 
					
						
						
							
							Add a file with fingerprints that have recently been used to sign  
						
						 
						
						... 
						
						
						
						OpenSSL distributions, or are about to.  This has been requested a
little now and then by users, for years :-/... 
						
						
					 
					
						2005-03-31 12:26:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						884b3fc23c 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2005-03-31 11:51:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5d1430f390 
					 
					
						
						
							
							Add a file with fingerprints that have recently been used to sign  
						
						 
						
						... 
						
						
						
						OpenSSL distributions, or are about to.  This has been requested a
little now and then by users, for years :-/... 
						
						
					 
					
						2005-03-31 11:51:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						45d10efc35 
					 
					
						
						
							
							Simplicate and add lightness.  
						
						 
						
						
						
						
					 
					
						2005-03-31 10:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						db3cb0e97a 
					 
					
						
						
							
							Get rid of irritating noise.  
						
						 
						
						
						
						
					 
					
						2005-03-31 10:34:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						41a15c4f0f 
					 
					
						
						
							
							Give everything prototypes (well, everything that's actually used).  
						
						 
						
						
						
						
					 
					
						2005-03-31 09:26:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						fea4280a8b 
					 
					
						
						
							
							fix header  
						
						 
						
						
						
						
					 
					
						2005-03-30 21:38:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e852b8533f 
					 
					
						
						
							
							Makefile.ssl doesn't exist anymore  
						
						 
						
						
						
						
					 
					
						2005-03-30 21:37:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						20a3439ea9 
					 
					
						
						
							
							Take account of Makefile.ssl removal.  
						
						 
						
						
						
						
					 
					
						2005-03-30 14:44:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a273a2824c 
					 
					
						
						
							
							Make tags target useful.  
						
						 
						
						
						
						
					 
					
						2005-03-30 14:19:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						24c97c819d 
					 
					
						
						
							
							Don't debug.  
						
						 
						
						
						
						
					 
					
						2005-03-30 14:15:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						42ba5d2329 
					 
					
						
						
							
							Blow away Makefile.ssl.  
						
						 
						
						
						
						
					 
					
						2005-03-30 13:05:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c3e6402857 
					 
					
						
						
							
							update docs (recent constification)  
						
						 
						
						
						
						
					 
					
						2005-03-30 11:50:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0821bcd4de 
					 
					
						
						
							
							Constification.  
						
						 
						
						
						
						
					 
					
						2005-03-30 10:26:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c3e28480d7 
					 
					
						
						
							
							update docs (recent constification)  
						
						 
						
						
						
						
					 
					
						2005-03-30 09:47:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						4a6a2032ed 
					 
					
						
						
							
							the second argument of EVP_SealInit is const  
						
						 
						
						
						
						
					 
					
						2005-03-29 17:50:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						e72b9658f8 
					 
					
						
						
							
							the second argument of EVP_SealInit is const  
						
						 
						
						
						
						
					 
					
						2005-03-29 17:48:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						c01d2b974e 
					 
					
						
						
							
							when building with OPENSSL_NO_DEPRECATED defined BN_zero is a macro  
						
						 
						
						... 
						
						
						
						which cannot be evaluated in an if statement 
						
						
					 
					
						2005-03-28 15:06:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c04994bfe 
					 
					
						
						
							
							Allow 'null' cipher and appropriate Kerberos ciphersuites in FIPS mode.  
						
						 
						
						
						
						
					 
					
						2005-03-27 03:36:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						989c0f8215 
					 
					
						
						
							
							Resolve "operation size not specified" in NASM modules.  
						
						 
						
						
						
						
					 
					
						2005-03-26 19:32:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b0ef321cc8 
					 
					
						
						
							
							Harmonize with CHANGES as distributed in OpenSSL 0.9.7f.  
						
						 
						
						
						
						
					 
					
						2005-03-24 01:37:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						7a8c728860 
					 
					
						
						
							
							undo Cygwin change  
						
						 
						
						
						
						
					 
					
						2005-03-24 00:14:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						4cf8f9369c 
					 
					
						
						
							
							undo Cygwin change  
						
						 
						
						
						
						
					 
					
						2005-03-23 22:01:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6141b86a49 
					 
					
						
						
							
							Change the memory leak FAQ entry to describe the levels of thread safety in each function  
						
						 
						
						
						
						
					 
					
						2005-03-23 21:14:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2950db5995 
					 
					
						
						
							
							Change the memory leak FAQ entry to describe the levels of thread safety in each function  
						
						 
						
						
						
						
					 
					
						2005-03-23 21:13:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						801fea5f11 
					 
					
						
						
							
							Constification.  
						
						 
						
						
						
						
					 
					
						2005-03-23 08:21:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da26bcb5de 
					 
					
						
						
							
							Update CHANGES, opensslv.h  
						
						 
						
						
						
						
					 
					
						2005-03-22 21:27:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						23fadaa084 
					 
					
						
						
							
							Update FAQ  
						
						 
						
						
						
						
					 
					
						2005-03-22 20:10:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d99382039c 
					 
					
						
						
							
							Use right date in FAQ too :-)  
						
						 
						
						
						
						
					 
					
						2005-03-22 19:15:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9c29e781a8 
					 
					
						
						
							
							Oops, use right date!  
						
						 
						
						
						
						
					 
					
						2005-03-22 19:14:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						93acf33440 
					 
					
						
						
							
							Update README  
						
						 
						
						
						
						
					 
					
						2005-03-22 18:43:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5c1fd5e316 
					 
					
						
						
							
							Update files ready for release.  
						
						 
						
						
						
						
					 
					
						2005-03-22 18:17:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f42a82777d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-03-22 18:15:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c7ceb3748 
					 
					
						
						
							
							Docs fix.  
						
						 
						
						
						
						
					 
					
						2005-03-22 17:57:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e27a259696 
					 
					
						
						
							
							Doc fixes.  
						
						 
						
						
						
						
					 
					
						2005-03-22 17:55:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						41e455bfc4 
					 
					
						
						
							
							test, remove unnecessary const cast  
						
						 
						
						
						
						
					 
					
						2005-03-22 17:55:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e54e4bcf1f 
					 
					
						
						
							
							PR: 931  
						
						 
						
						
						
						
					 
					
						2005-03-22 17:54:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fe8b77753c 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2005-03-22 17:29:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d5c2bc4bff 
					 
					
						
						
							
							Oops...  
						
						 
						
						
						
						
					 
					
						2005-03-22 14:31:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59b6836ab2 
					 
					
						
						
							
							Ensure (SSL_RANDOM_BYTES - 4) of pseudo random data is used for server and  
						
						 
						
						... 
						
						
						
						client random values. 
						
						
					 
					
						2005-03-22 14:11:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						61823b6a74 
					 
					
						
						
							
							Ensure (SSL_RANDOM_BYTES - 4) of pseudo random data is used for server and  
						
						 
						
						... 
						
						
						
						client random values. 
						
						
					 
					
						2005-03-22 14:10:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9fc9b55237 
					 
					
						
						
							
							There are cases when there are no files left to verify.  Make sure to  
						
						 
						
						... 
						
						
						
						handle that properly. 
						
						
					 
					
						2005-03-21 13:52:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ab0def8152 
					 
					
						
						
							
							There are cases when there are no files left to verify.  Make sure to  
						
						 
						
						... 
						
						
						
						handle that properly. 
						
						
					 
					
						2005-03-21 13:49:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						689c6f2542 
					 
					
						
						
							
							add new curves to the loop (with some cleanup from me)  
						
						 
						
						... 
						
						
						
						Submitted by: Jean-Luc Duval
Reviewed by:  Nils Larsch 
						
						
					 
					
						2005-03-20 23:12:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Nils Larsch 
							
						 
					 
					
						
						
							
						
						f4bfd357e5 
					 
					
						
						
							
							some const fixes  
						
						 
						
						
						
						
					 
					
						2005-03-20 22:56:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						6d2a7098d6 
					 
					
						
						
							
							Cygwin randomness  
						
						 
						
						
						
						
					 
					
						2005-03-19 11:40:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						130db968b8 
					 
					
						
						
							
							Use Windows randomness code on Cygwin  
						
						 
						
						
						
						
					 
					
						2005-03-19 11:39:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						8d274837e5 
					 
					
						
						
							
							fix breakage for Perl versions that do boolean operations on long words  
						
						 
						
						
						
						
					 
					
						2005-03-19 11:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						5855038049 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2005-03-19 10:19:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b43b9de9e4 
					 
					
						
						
							
							Real Bourne shell doesn't accept ! as in "if ! grep ..." Fix this in  
						
						 
						
						... 
						
						
						
						crypto/Makefile and make Makefile.org and fips/Makefile more discreet. 
						
						
					 
					
						2005-03-15 09:46:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d18685d959 
					 
					
						
						
							
							Added HOWTO about proxy certificates.  
						
						 
						
						
						
						
					 
					
						2005-03-14 15:39:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9f6715d4bb 
					 
					
						
						
							
							"make depend".  This takes into account the algorithms that are now  
						
						 
						
						... 
						
						
						
						disabled by default (MDC2 and RC5), which until now were skipped
by "make links" and yet supposedly required by some of the Makefiles,
meaning that the recent snapshots failed to compile.
Problem reported by Nils Larsch. 
						
						
					 
					
						2005-03-13 19:49:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ab185b6038 
					 
					
						
						
							
							It seems that Configure revision 1.404 broke "make depend" by hiding  
						
						 
						
						... 
						
						
						
						from it which algorithms were disabled.  With these new changes,
"make depend" will properly take into account algorithms that are skipped. 
						
						
					 
					
						2005-03-13 19:46:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6286bbecef 
					 
					
						
						
							
							Fold rules in test/Makefile and provide hooks for updated FIPS build procedures.  
						
						 
						
						
						
						
					 
					
						2005-03-12 12:15:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1642000707 
					 
					
						
						
							
							Cygwin to use DSO_FLFCN and mingw to use DSO_WIN32.  
						
						 
						
						
						
						
					 
					
						2005-03-12 11:28:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9d14506f29 
					 
					
						
						
							
							Cygwin to use DSO_FLFCN and mingw to use DSO_WIN32 (required for FIPS).  
						
						 
						
						
						
						
					 
					
						2005-03-12 11:28:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7ec40a480b 
					 
					
						
						
							
							Add mingw shared support [backport from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-03-12 09:33:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						aa0d4ed5fa 
					 
					
						
						
							
							Move copying of .dll to apps/ and test/ to more appropriate place.  
						
						 
						
						
						
						
					 
					
						2005-03-12 09:28:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2cf68c0b1a 
					 
					
						
						
							
							Avoid re-build avalanches with HP-UX make.  
						
						 
						
						
						
						
					 
					
						2005-03-12 09:13:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f7f2125522 
					 
					
						
						
							
							Avoid re-build avalanches with HP-UX make.  
						
						 
						
						
						
						
					 
					
						2005-03-12 09:12:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2b61034b0b 
					 
					
						
						
							
							fix potential memory leak when allocation fails  
						
						 
						
						... 
						
						
						
						PR: 801
Submitted by: Nils Larsch 
						
						
					 
					
						2005-03-11 09:01:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						97d49cdd6f 
					 
					
						
						
							
							fix potential memory leak when allocation fails  
						
						 
						
						... 
						
						
						
						PR: 801
Submitted by: Nils Larsch 
						
						
					 
					
						2005-03-11 09:00:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						80c808b90b 
					 
					
						
						
							
							Fix typo  
						
						 
						
						... 
						
						
						
						PR: 1017
Submitted by: ciresh@yahoo.com 
Reviewed by: Nils Larsch 
						
						
					 
					
						2005-03-09 19:08:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						af1048c25c 
					 
					
						
						
							
							Take MDC2 patent into account.  
						
						 
						
						
						
						
					 
					
						2005-03-02 20:22:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ecc5ef8793 
					 
					
						
						
							
							In addition to RC5, also exclude MDC2 from compilation unless  
						
						 
						
						... 
						
						
						
						the algorithm is explicitly requested. 
						
						
					 
					
						2005-03-02 20:11:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c9a112f540 
					 
					
						
						
							
							Change ./Configure so that certain algorithms can be disabled by default.  
						
						 
						
						... 
						
						
						
						This is now the case for RC5.
As a side effect, the OPTIONS in the Makefile will usually look a
little different now, but they are essentially only for information
anyway. 
						
						
					 
					
						2005-02-22 10:29:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						5286db697f 
					 
					
						
						
							
							Fix typo on blowfish manual page  
						
						 
						
						... 
						
						
						
						PR: 1010
Submitted by: Marc Balmer <mbalmer@openbsd.org > 
						
						
					 
					
						2005-02-19 10:26:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						126179aad0 
					 
					
						
						
							
							Fix type on blowfish manual page  
						
						 
						
						... 
						
						
						
						PR: 1010
Submitted by: Marc Balmer <mbalmer@openbsd.org > 
						
						
					 
					
						2005-02-19 10:25:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f69a8aebab 
					 
					
						
						
							
							Fix hang in EGD/PRNGD query when communication socket is closed  
						
						 
						
						... 
						
						
						
						prematurely by EGD/PRNGD.
PR: 1014
Submitted by: Darren Tucker <dtucker@zip.com.au > 
						
						
					 
					
						2005-02-19 10:19:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						e22e6bf0be 
					 
					
						
						
							
							Fix hang in EGD/PRNGD query when communication socket is closed  
						
						 
						
						... 
						
						
						
						prematurely by EGD/PRNGD.
PR: 1014
Submitted by: Darren Tucker <dtucker@zip.com.au > 
						
						
					 
					
						2005-02-19 10:17:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2ecf923286 
					 
					
						
						
							
							Avoid possible memory leak.  
						
						 
						
						
						
						
					 
					
						2005-02-14 21:54:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d10b15ef9 
					 
					
						
						
							
							Fix possible memory leak.  
						
						 
						
						
						
						
					 
					
						2005-02-14 21:53:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da30c74a27 
					 
					
						
						
							
							Remove unused assembler modules.  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:43:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						67ea999d4a 
					 
					
						
						
							
							This patch was "ignited" by OpenBSD 3>=4 support. They've switched to ELF  
						
						 
						
						... 
						
						
						
						and GNU binutils, but kept BSD make... And I took the opportunity to
unify other targets to this common least denominator... 
						
						
					 
					
						2005-02-06 13:23:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e1892f2370 
					 
					
						
						
							
							Reliable BSD-x86-elf detection in ./config.  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:20:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fe28866d71 
					 
					
						
						
							
							Make Makefile.shared BSD make-friendly, remove more redundant -lc, set up  
						
						 
						
						... 
						
						
						
						OBJECT_MODE for AIX. 
						
						
					 
					
						2005-02-06 13:18:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b7fd453675 
					 
					
						
						
							
							Make util/shlib_wrap.sh [Open]BSD-friendly. [from HEAD].  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:16:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						de4ab1e629 
					 
					
						
						
							
							Make util/shlib_wrap.sh [Open]BSD-friendly.  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:15:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						216ddfaf6b 
					 
					
						
						
							
							Mention no-sse2 option in INSTALL note.  
						
						 
						
						
						
						
					 
					
						2005-02-06 13:10:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						086dd3032f 
					 
					
						
						
							
							"Backport"  http://cvs.openssl.org/chngview?cn=12841  from HEAD. For reference.  
						
						 
						
						... 
						
						
						
						In HEAD this approach was taken one step further. There is linux-generic32
target which is used as unified Linux target for ARM, PA-RISC, SPARCv7, S390... 
						
						
					 
					
						2005-02-06 13:09:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						20e5177105 
					 
					
						
						
							
							In FIPS mode use SHA1 as default digest in x509 and req  
						
						 
						
						... 
						
						
						
						utilities. 
						
						
					 
					
						2005-02-05 18:24:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8aa36bcac9 
					 
					
						
						
							
							In mkdef.pl ignore trailing whitespace in #ifdef lines  
						
						 
						
						
						
						
					 
					
						2005-02-05 17:22:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb987c73a9 
					 
					
						
						
							
							In mkdef.pl ignore trailing whitespace in #ifdef lines  
						
						 
						
						
						
						
					 
					
						2005-02-05 17:19:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						485e30dbe1 
					 
					
						
						
							
							Drop redundant -lc from a number of rules in Makefile.shared. It's  
						
						 
						
						... 
						
						
						
						perfectly safe [compiler driver adds it] and in some situation even
perfectly appropriate [mixing -pthread and -lc on FreeBSD can have
lethal effect on apps/openssl]. I'd say we should get rid of more,
but I remove those I can test myself... 
						
						
					 
					
						2005-02-03 22:40:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						515ac3debb 
					 
					
						
						
							
							Final HP-UX specific touches to "cope with run-time linker on multi-ABI  
						
						 
						
						... 
						
						
						
						platforms." 
						
						
					 
					
						2005-02-03 11:09:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						877dbcb8a0 
					 
					
						
						
							
							Shut whiny make's up.  
						
						 
						
						
						
						
					 
					
						2005-02-03 10:19:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						43509de33d 
					 
					
						
						
							
							Shut whiny make's up.  
						
						 
						
						
						
						
					 
					
						2005-02-03 10:19:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62d27939c2 
					 
					
						
						
							
							Address run-time linker problems: LD_PRELOAD issue on multi-ABI platforms  
						
						 
						
						... 
						
						
						
						and SafeDllSearchMode in Windows.
Submitted by: Richard Levitte 
						
						
					 
					
						2005-02-01 23:48:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dbaa6f91aa 
					 
					
						
						
							
							Address run-time linker problems: LD_PRELOAD issue on multi-ABI platforms  
						
						 
						
						... 
						
						
						
						and SafeDllSearchMode in Windows. 
						
						
					 
					
						2005-02-01 23:45:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						01b62dca25 
					 
					
						
						
							
							Use SHA1 for test certificates so FIPS SSL/TLS tests work.  
						
						 
						
						
						
						
					 
					
						2005-01-31 01:46:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						66d68327cb 
					 
					
						
						
							
							Avoid memory leak.  
						
						 
						
						
						
						
					 
					
						2005-01-31 01:40:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ecc3d2734d 
					 
					
						
						
							
							Only allow TLS is FIPS mode.  
						
						 
						
						... 
						
						
						
						Remove old FIPS_allow_md5() calls. 
						
						
					 
					
						2005-01-31 01:33:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						11536fbac8 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2005-01-31 01:28:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7cfcca8ba3 
					 
					
						
						
							
							Further FIPS algorithm blocking.  
						
						 
						
						... 
						
						
						
						Fixes to cipher blocking and enabling code.
Add option -non-fips-allow to 'enc' and update testenc. 
						
						
					 
					
						2005-01-28 14:03:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8c3c570134 
					 
					
						
						
							
							The first argument to load_iv should really be a char ** instead of an  
						
						 
						
						... 
						
						
						
						unsigned char **, since it points at text.
Thanks to Nils Larsch <nils.larsch@cybertrust.com > for pointing out
the inelegance of our code :-) 
						
						
					 
					
						2005-01-27 11:42:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0cae19f5ef 
					 
					
						
						
							
							The first argument to load_iv should really be a char ** instead of an  
						
						 
						
						... 
						
						
						
						unsigned char **, since it points at text.
Thanks to Nils Larsch <nils.larsch@cybertrust.com > for pointing out
the inelegance of our code :-) 
						
						
					 
					
						2005-01-27 11:42:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						97a1630e81 
					 
					
						
						
							
							Oops, == should really be = when used with test ([ and ]).  
						
						 
						
						... 
						
						
						
						I guess I use bash too much...
Thanks to Peter Sylvester <Peter.Sylvester@edelweb.fr > for pointing it
out to me. 
						
						
					 
					
						2005-01-27 10:59:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6be00c7e16 
					 
					
						
						
							
							More FIPS algorithm blocking.  
						
						 
						
						... 
						
						
						
						Catch attempted use of non FIPS algorithms with HMAC.
Give an assertion error for applications that ignore FIPS digest errors.
Make -non-fips-allow work with dgst and HMAC. 
						
						
					 
					
						2005-01-27 01:49:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bf746f0f46 
					 
					
						
						
							
							Check for errors from EVP_VerifyInit_ex(), or EVP_VerifyUpdate might  
						
						 
						
						... 
						
						
						
						cause a segfault...  This was uncovered because EVP_VerifyInit() may fail
in FIPS mode if the wrong algorithm is chosen... 
						
						
					 
					
						2005-01-27 01:49:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						532d936be8 
					 
					
						
						
							
							Check for errors from EVP_VerifyInit_ex(), or EVP_VerifyUpdate might  
						
						 
						
						... 
						
						
						
						cause a segfault...  This was uncovered because EVP_VerifyInit() may fail
in FIPS mode if the wrong algorithm is chosen... 
						
						
					 
					
						2005-01-27 01:49:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a229e3038e 
					 
					
						
						
							
							Get rid if the annoying warning  
						
						 
						
						
						
						
					 
					
						2005-01-27 01:47:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d88edf1447 
					 
					
						
						
							
							Get rid if the annoying warning  
						
						 
						
						
						
						
					 
					
						2005-01-27 01:47:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4aca9297dc 
					 
					
						
						
							
							The mix of CFLAGS and LDFLAGS is a bit confusing in my opinion, and  
						
						 
						
						... 
						
						
						
						Makefile.shared was a bit overcomplicated.
Make the shell variables LDFLAGS and SHAREDFLAGS in Makefile.shared
get the values of $(CFLAGS) or $(LDFLAGS) as appropriate depending on
the value the shell variables LDCMD and SHAREDCMD get.  That leaves
much less chance of confusion, since those pairs of shell variables
always are defined together. 
						
						
					 
					
						2005-01-26 23:51:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f60fc19a69 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-01-26 20:05:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d0edffc7da 
					 
					
						
						
							
							FIPS algorithm blocking.  
						
						 
						
						... 
						
						
						
						Non FIPS algorithms are not normally allowed in FIPS mode.
Any attempt to use them via high level functions will return an error.
The low level non-FIPS algorithm functions cannot return errors so they
produce assertion failures. HMAC also has to give an assertion error because
it (erroneously) can't return an error either.
There are exceptions (such as MD5 in TLS and non cryptographic use of
algorithms) and applications can override the blocking and use non FIPS
algorithms anyway.
For low level functions the override is perfomed by prefixing the algorithm
initalization function with "private_" for example private_MD5_Init().
For high level functions an override is performed by setting a flag in
the context. 
						
						
					 
					
						2005-01-26 20:00:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b2c5960935 
					 
					
						
						
							
							Respect the fact that most interactive shells don't restore stty settings  
						
						 
						
						... 
						
						
						
						and make it work in non-interactive mode... 
						
						
					 
					
						2005-01-26 19:58:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						12dfa84310 
					 
					
						
						
							
							Respect the fact that most interactive shells don't restore stty settings  
						
						 
						
						... 
						
						
						
						and make it work in non-interactive mode... 
						
						
					 
					
						2005-01-26 19:58:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fbdce13e5a 
					 
					
						
						
							
							Please BSD make...  
						
						 
						
						
						
						
					 
					
						2005-01-25 22:09:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e532a6c449 
					 
					
						
						
							
							FreeBSD 5 refuses to #include <malloc.h>. Fix compiler warning after  
						
						 
						
						... 
						
						
						
						http://cvs.openssl.org/chngview?cn=12843 . 
						
						
					 
					
						2005-01-25 22:07:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						14bcdb087f 
					 
					
						
						
							
							./Configure to respect $thread_cflag variable.  
						
						 
						
						
						
						
					 
					
						2005-01-24 15:58:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b7efa56a4a 
					 
					
						
						
							
							Fold a bunch of linux and *BSD targets into [linux|BSD]-generic[32|64].  
						
						 
						
						... 
						
						
						
						Idea is to provide unified "fall-down" case for all rare platforms out
there. ./config is free to enable some optimizations, such as endianness
specification, specific -mcpu flags... 
						
						
					 
					
						2005-01-24 14:38:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8359421d90 
					 
					
						
						
							
							Default to AES u32 being unsinged int and not long. This improves cache  
						
						 
						
						... 
						
						
						
						locality on 64-bit platforms (and fixes IA64 assembler-empowered build:-).
The choice is guarded by newly introduced AES_LONG macro, which needs
to be defined only on 16-bit platforms which we don't support (not that
I know of). Meaning that one could as well skip long option altogether. 
						
						
					 
					
						2005-01-24 14:22:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						efde5230f1 
					 
					
						
						
							
							Improve ECB performance (48+14*rounds -> 18+13*rounds) and reserve for  
						
						 
						
						... 
						
						
						
						hand-coded zero-copy AES_cbc_encrypt. 
						
						
					 
					
						2005-01-24 14:14:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f5ffad9d1d 
					 
					
						
						
							
							linux-arm target update.  
						
						 
						
						... 
						
						
						
						PR: 991 
						
						
					 
					
						2005-01-21 10:32:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						57a68b2129 
					 
					
						
						
							
							linux-parisc update.  
						
						 
						
						... 
						
						
						
						PR: 990
Submitted by: Mike Frysinger <vapier@gentoo.org > 
						
						
					 
					
						2005-01-20 17:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bac252a5e3 
					 
					
						
						
							
							Bug-fix in CBC encrypt tail processing and commentary section update.  
						
						 
						
						
						
						
					 
					
						2005-01-20 10:33:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a963395a7b 
					 
					
						
						
							
							Apparently, at least with my VMS C environment, defining _XOPEN_SOURCE  
						
						 
						
						... 
						
						
						
						gets _POSIX_C_SOURC and _ANSI_C_SOURCE defined, which stops u_int from
being defined, and that breaks havock into the rest of the standard
headers...  *sigh* 
						
						
					 
					
						2005-01-19 17:03:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d8863f0bdb 
					 
					
						
						
							
							Small thing.  It seems like we have to defined _XOPEN_SOURCE to get  
						
						 
						
						... 
						
						
						
						isascii() on DEC/Compaq/HP C for VMS. 
						
						
					 
					
						2005-01-18 16:46:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						addb6e16a8 
					 
					
						
						
							
							Throw in AES CBC assembler, up to +40% on aes-128-cbc benchmark.  
						
						 
						
						
						
						
					 
					
						2005-01-18 01:04:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4d27c4c960 
					 
					
						
						
							
							Fix a typo in a.out assembler modules.  
						
						 
						
						
						
						
					 
					
						2005-01-18 00:46:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ed65fab910 
					 
					
						
						
							
							Reserve for AES CBC assembler implementation...  
						
						 
						
						
						
						
					 
					
						2005-01-18 00:43:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						90cc40911b 
					 
					
						
						
							
							Don't zap AES CBC IV, when decrypting truncated content in place.  
						
						 
						
						
						
						
					 
					
						2005-01-18 00:26:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						134d6a44ec 
					 
					
						
						
							
							Don't zap AES CBC IV, when decrypting truncated content in place.  
						
						 
						
						
						
						
					 
					
						2005-01-18 00:24:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a7201e9a1b 
					 
					
						
						
							
							Changes concering RFC 3820 (proxy certificates) integration:  
						
						 
						
						... 
						
						
						
						- Enforce that there should be no policy settings when the language
   is one of id-ppl-independent or id-ppl-inheritAll.
 - Add functionality to ssltest.c so that it can process proxy rights
   and check that they are set correctly.  Rights consist of ASCII
   letters, and the condition is a boolean expression that includes
   letters, parenthesis, &, | and ^.
 - Change the proxy certificate configurations so they get proxy
   rights that are understood by ssltest.c.
 - Add a script that tests proxy certificates with SSL operations.
Other changes:
 - Change the copyright end year in mkerr.pl.
 - make update. 
						
						
					 
					
						2005-01-17 17:06:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						420eb6a306 
					 
					
						
						
							
							PKCS7_verify() performance optimization. When the content is large and a  
						
						 
						
						... 
						
						
						
						memory BIO (for example from SMIME_read_PKCS7 and detached data) avoid lots
of slow memory copies from the memory BIO by saving the content in a
temporary read only memory BIO. 
						
						
					 
					
						2005-01-14 17:53:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fcd5cca418 
					 
					
						
						
							
							PKCS7_verify() performance optimization. When the content is large and a  
						
						 
						
						... 
						
						
						
						memory BIO (for example from SMIME_read_PKCS7 and detached data) avoid lots
of slow memory copies from the memory BIO by saving the content in a
temporary read only memory BIO. 
						
						
					 
					
						2005-01-14 17:52:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9222bc6b4e 
					 
					
						
						
							
							INSTALL.DJGPP sync.  
						
						 
						
						... 
						
						
						
						PR: 989 
						
						
					 
					
						2005-01-14 16:25:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e9ddd85965 
					 
					
						
						
							
							INSTALL.DJGPP update.  
						
						 
						
						... 
						
						
						
						PR: 989 
						
						
					 
					
						2005-01-14 16:24:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea28f93c2d 
					 
					
						
						
							
							Rely on e_os.h to appropriately define str[n]casecmp in non-POSIX  
						
						 
						
						... 
						
						
						
						environments. 
						
						
					 
					
						2005-01-14 16:22:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						adeb20b6b7 
					 
					
						
						
							
							O_NOFOLLOW is not appropriate when opening /dev/* entries on Solaris.  
						
						 
						
						... 
						
						
						
						PR: 998 
						
						
					 
					
						2005-01-14 16:19:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						086b64d0d3 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2005-01-14 00:16:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e6d27baf52 
					 
					
						
						
							
							Rely on e_os.h to appropriately define str[n]casecmp in non-POSIX  
						
						 
						
						... 
						
						
						
						environments. 
						
						
					 
					
						2005-01-13 15:46:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e7e1150706 
					 
					
						
						
							
							"Monolithic" x86 assembler replacement for aes_core.c. Up to +15% better  
						
						 
						
						... 
						
						
						
						performance on recent microarchitectures. 
						
						
					 
					
						2005-01-13 15:35:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5d727078ac 
					 
					
						
						
							
							Fix an "oops" typo! Well, it was a debugging left-over...  
						
						 
						
						
						
						
					 
					
						2005-01-13 15:25:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						108159ffcc 
					 
					
						
						
							
							O_NOFOLLOW is not appropriate when opening /dev/* entries on Solaris.  
						
						 
						
						... 
						
						
						
						PR: 998 
						
						
					 
					
						2005-01-13 15:20:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4d423511a 
					 
					
						
						
							
							Small typo, `mask' got the same value ORed to it twice instead of  
						
						 
						
						... 
						
						
						
						`mask' and `emask' getting that operation done once each.
Patch supplied by Nils Larsch <nils.larsch@cybertrust.com > 
						
						
					 
					
						2005-01-12 16:40:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b15a93a9c5 
					 
					
						
						
							
							Correct a faulty address assignment, and add a length check (not  
						
						 
						
						... 
						
						
						
						really needed now, but may be needed in the future, who knows?). 
						
						
					 
					
						2005-01-12 09:53:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						47c88d7413 
					 
					
						
						
							
							Correct a faulty address assignment, and add a length check (not  
						
						 
						
						... 
						
						
						
						really needed now, but may be needed in the future, who knows?). 
						
						
					 
					
						2005-01-12 09:51:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						630b9d70fb 
					 
					
						
						
							
							Use EXIT() instead of exit().  
						
						 
						
						
						
						
					 
					
						2005-01-11 18:25:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4929fb841 
					 
					
						
						
							
							Clear signed vs. unsigned conflicts.  
						
						 
						
						... 
						
						
						
						Change the fingerprint accordingly. 
						
						
					 
					
						2005-01-11 16:54:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						97c2c819b3 
					 
					
						
						
							
							Remove VMS_strcasecmp() from apps.c, it's not used any more.  And  
						
						 
						
						... 
						
						
						
						besides, the implementation is bogus. 
						
						
					 
					
						2005-01-11 06:53:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						954f3c3126 
					 
					
						
						
							
							FAQ update to mention no-sha0 as possible workaround for Tru64 compiler bug.  
						
						 
						
						
						
						
					 
					
						2005-01-09 20:43:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d9248e5780 
					 
					
						
						
							
							FAQ update to mention no-sha0 as possible workaround for Tru64 compiler bug.  
						
						 
						
						... 
						
						
						
						Well, no-options seem to be busted in HEAD currently, which should/will be
fixed one way or another (see PR#989 for a possible alternative). 
						
						
					 
					
						2005-01-09 20:42:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0b52f89b81 
					 
					
						
						
							
							DJGPP documentation note update.  
						
						 
						
						
						
						
					 
					
						2005-01-09 20:14:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						528584c595 
					 
					
						
						
							
							DJGPP documentation note update.  
						
						 
						
						
						
						
					 
					
						2005-01-09 20:13:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5cdf5e3308 
					 
					
						
						
							
							Allow for ./config no-sha0.  
						
						 
						
						... 
						
						
						
						PR: 993 
						
						
					 
					
						2005-01-09 17:58:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7de4b5b060 
					 
					
						
						
							
							Permit "monolithic" AES assembler implementations, i.e. such which would  
						
						 
						
						... 
						
						
						
						replace *whole* aes_core.c, not only AES_[de|en]crypt routines. 
						
						
					 
					
						2005-01-09 16:01:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02a00bb054 
					 
					
						
						
							
							DJGPP update.  
						
						 
						
						... 
						
						
						
						PR: 989
Submitted by: Doug Kaufman 
						
						
					 
					
						2005-01-04 10:28:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b58560b915 
					 
					
						
						
							
							DJGPP update.  
						
						 
						
						... 
						
						
						
						PR: 989
Submitted by: Doug Kaufman 
						
						
					 
					
						2005-01-04 10:21:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						76d088046c 
					 
					
						
						
							
							RSA KAT.  
						
						 
						
						
						
						
					 
					
						2005-01-03 17:46:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						83f69163fd 
					 
					
						
						
							
							Borrow #include <string[s].h> from e_os.h.  
						
						 
						
						
						
						
					 
					
						2004-12-31 00:01:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b4de6e4cc 
					 
					
						
						
							
							Borrow #include <string[s].h> from e_os.h.  
						
						 
						
						
						
						
					 
					
						2004-12-31 00:00:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bdbc9b4d1a 
					 
					
						
						
							
							Make whiny compilers stop complaining about missing prototype.  
						
						 
						
						
						
						
					 
					
						2004-12-30 23:40:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5ca3a0aa86 
					 
					
						
						
							
							Make whiny compilers stop complaining about missing prototype.  
						
						 
						
						
						
						
					 
					
						2004-12-30 23:39:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						702be727c0 
					 
					
						
						
							
							AES CBC and CFB performance tune-up from HEAD.  
						
						 
						
						
						
						
					 
					
						2004-12-30 22:57:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						09ef94d2c9 
					 
					
						
						
							
							Fix Win32 test-suit.  
						
						 
						
						
						
						
					 
					
						2004-12-30 22:55:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8336cec34d 
					 
					
						
						
							
							Fix Win32 test-suit.  
						
						 
						
						
						
						
					 
					
						2004-12-30 22:53:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ffb8d42bc 
					 
					
						
						
							
							Remove naming conflict between variable and label.  
						
						 
						
						
						
						
					 
					
						2004-12-30 11:10:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1c8415fdf3 
					 
					
						
						
							
							Remove naming conflict between variable and label.  
						
						 
						
						
						
						
					 
					
						2004-12-30 11:08:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						25866e3982 
					 
					
						
						
							
							Commentary update for AES IA-64 assembler module.  
						
						 
						
						
						
						
					 
					
						2004-12-30 10:55:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3b3df98ca6 
					 
					
						
						
							
							Minor AES x86 assembler tune-up.  
						
						 
						
						
						
						
					 
					
						2004-12-30 10:46:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2e4a99f38b 
					 
					
						
						
							
							AES-CFB[18] 2x optimization. Well, I bet nobody cares about AES-CFB1  
						
						 
						
						... 
						
						
						
						performance, but anyway... 
						
						
					 
					
						2004-12-30 10:43:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e90faddaf8 
					 
					
						
						
							
							Prompt for passphrases for PKCS12 input format  
						
						 
						
						
						
						
					 
					
						2004-12-29 01:07:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						370d418a7b 
					 
					
						
						
							
							Prompt for passphrases with PKCS12 input format.  
						
						 
						
						
						
						
					 
					
						2004-12-29 01:05:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f1ce306f30 
					 
					
						
						
							
							Oops-kind typos in aes-ia64.S...  
						
						 
						
						
						
						
					 
					
						2004-12-28 17:10:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37b11ca78e 
					 
					
						
						
							
							iv needs to be const because it sometimes takes it's value from a  
						
						 
						
						... 
						
						
						
						const. 
						
						
					 
					
						2004-12-28 10:35:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a17af9e277 
					 
					
						
						
							
							Forgot to synchronise the VMS build scripts.  
						
						 
						
						
						
						
					 
					
						2004-12-28 10:22:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6951c23afd 
					 
					
						
						
							
							Add functionality needed to process proxy certificates.  
						
						 
						
						
						
						
					 
					
						2004-12-28 00:21:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4aaa4f267d 
					 
					
						
						
							
							Cosmetic mingw update.  
						
						 
						
						... 
						
						
						
						PR: 924 
						
						
					 
					
						2004-12-27 23:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						de421076a5 
					 
					
						
						
							
							Minor cygwin update.  
						
						 
						
						... 
						
						
						
						PR: 949 
						
						
					 
					
						2004-12-27 21:27:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f709ffe832 
					 
					
						
						
							
							Minor cygwin update.  
						
						 
						
						... 
						
						
						
						PR: 949 
						
						
					 
					
						2004-12-27 21:26:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bd16cd6bcc 
					 
					
						
						
							
							As new major IRIX release is highly unlikely to appear [and break following],  
						
						 
						
						... 
						
						
						
						I change from -notall to -none synonym in irix rules to improve backward
compatibility with IRIX 5.x.
PR: 987 
						
						
					 
					
						2004-12-27 14:59:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0c51600203 
					 
					
						
						
							
							Remove CPU detect for IRIX targets. Performance gain is less than 1%,  
						
						 
						
						... 
						
						
						
						it makes more sense to strive for broader binary compatibility... 
						
						
					 
					
						2004-12-27 14:57:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9e34e806a2 
					 
					
						
						
							
							Remove CPU detect for IRIX targets. Performance gain is less than 1%, it  
						
						 
						
						... 
						
						
						
						doesn't pay off... 
						
						
					 
					
						2004-12-27 14:55:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2d16a957e0 
					 
					
						
						
							
							As new major IRIX release is highly unlikely to appear [and break following],  
						
						 
						
						... 
						
						
						
						I change from -notall to -none synonym in do_irix-shared to improve backward
compatibility with IRIX 5.x.
PR: 987 
						
						
					 
					
						2004-12-27 14:51:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9850f7f6b2 
					 
					
						
						
							
							Remove yet another redundant memcpy. Not at least performance critical,  
						
						 
						
						... 
						
						
						
						essentially cosmetic modification... 
						
						
					 
					
						2004-12-26 13:05:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						131e064e4a 
					 
					
						
						
							
							Eliminate redundant memcpy of IV material. Performance improvement varies  
						
						 
						
						... 
						
						
						
						from platform to platform and can be as large as 20%. 
						
						
					 
					
						2004-12-26 12:31:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						556b8f3f77 
					 
					
						
						
							
							Engage AES x86 assembler module for COFF and a.out targets.  
						
						 
						
						
						
						
					 
					
						2004-12-26 10:58:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						045d3285e2 
					 
					
						
						
							
							Engage AES x86 assembler module on ELF platforms.  
						
						 
						
						
						
						
					 
					
						2004-12-23 21:44:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d1df5b4339 
					 
					
						
						
							
							x86 perlasm update to accomodate aes-586.pl.  
						
						 
						
						
						
						
					 
					
						2004-12-23 21:43:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						25558bf743 
					 
					
						
						
							
							Eliminate copies of TeN and TdN, use those found in assembler module.  
						
						 
						
						
						
						
					 
					
						2004-12-23 21:40:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						713147109c 
					 
					
						
						
							
							AES x86 assembler implementation.  
						
						 
						
						
						
						
					 
					
						2004-12-23 21:32:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						76ef6ac956 
					 
					
						
						
							
							Refine PowerPC platform support.  
						
						 
						
						
						
						
					 
					
						2004-12-20 13:44:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fe707c3260 
					 
					
						
						
							
							Summarize recent backports in CHANGES.  
						
						 
						
						
						
						
					 
					
						2004-12-20 13:21:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fb39cd850c 
					 
					
						
						
							
							Improved PowerPC platform support.  
						
						 
						
						
						
						
					 
					
						2004-12-20 13:20:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						560f01fff9 
					 
					
						
						
							
							When re-linking files, really relink them. In other words, emulate ln -f.  
						
						 
						
						
						
						
					 
					
						2004-12-20 13:18:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						15bbc1574f 
					 
					
						
						
							
							Backport of PPC BN module from HEAD.  
						
						 
						
						
						
						
					 
					
						2004-12-20 13:15:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1acf071cd0 
					 
					
						
						
							
							Backport of  http://cvs.openssl.org/chngview?cn=12323 , as well as eliminate  
						
						 
						
						... 
						
						
						
						message size limitations on 64-bit platforms. 
						
						
					 
					
						2004-12-20 13:13:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3ae613e34f 
					 
					
						
						
							
							Backport of  http://cvs.openssl.org/chngview?cn=12449 , essentially  
						
						 
						
						... 
						
						
						
						a bug-fix for Win64/ia64. 
						
						
					 
					
						2004-12-20 13:10:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a842df6659 
					 
					
						
						
							
							Remove unused buffer 'buf'.  
						
						 
						
						
						
						
					 
					
						2004-12-20 00:49:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c05a7f5dfd 
					 
					
						
						
							
							Don't use multiple storage types.  
						
						 
						
						
						
						
					 
					
						2004-12-19 01:21:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						627bd6709c 
					 
					
						
						
							
							Fix typos in the ecparam doc.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2004-12-17 05:42:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fbf218b8c3 
					 
					
						
						
							
							make update (oops, missed this file)  
						
						 
						
						
						
						
					 
					
						2004-12-13 22:57:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3c97bd833b 
					 
					
						
						
							
							Change libeay.num so it's synchronised with additions in 0.9.7-stable.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2004-12-13 22:57:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37ece6156a 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-12-13 22:48:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						abbc186bd2 
					 
					
						
						
							
							Fix s_client so it works without a certificate again.  
						
						 
						
						
						
						
					 
					
						2004-12-13 18:02:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						de6859e442 
					 
					
						
						
							
							Propagate a few more variables to Makefile.shared when linking  
						
						 
						
						... 
						
						
						
						programs. 
						
						
					 
					
						2004-12-13 17:28:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						965574039b 
					 
					
						
						
							
							Remove duplicate lines.  
						
						 
						
						
						
						
					 
					
						2004-12-12 13:18:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e8904f289 
					 
					
						
						
							
							Remove duplicate lines.  
						
						 
						
						
						
						
					 
					
						2004-12-12 13:15:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						535178f415 
					 
					
						
						
							
							Adapt FIPS sub-tree for mingw.  
						
						 
						
						
						
						
					 
					
						2004-12-10 16:30:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a4a88eea03 
					 
					
						
						
							
							Solaris x86 assembler update.  
						
						 
						
						
						
						
					 
					
						2004-12-10 13:15:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a661c1728f 
					 
					
						
						
							
							Respect no-asm with fips option and disable FIPS DES assembler in  
						
						 
						
						... 
						
						
						
						shared context [because it's not PIC]. 
						
						
					 
					
						2004-12-10 11:37:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						13e387c3fe 
					 
					
						
						
							
							olaris x86 perlasm update [from HEAD].  
						
						 
						
						
						
						
					 
					
						2004-12-10 11:27:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0c0788ba0a 
					 
					
						
						
							
							Solaris x86 perlasm update.  
						
						 
						
						
						
						
					 
					
						2004-12-10 11:24:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3dd16fb7fd 
					 
					
						
						
							
							Eliminate false dependency on 386 config option is FIPS context.  
						
						 
						
						... 
						
						
						
						At the same time limit assembler support to ELF platforms [that's
what is there, ELF modules]. 
						
						
					 
					
						2004-12-09 22:43:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ab09133881 
					 
					
						
						
							
							Engage SHA1 IA64 assembler on IA64 platforms [from HEAD].  
						
						 
						
						
						
						
					 
					
						2004-12-09 21:05:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						90ec459be0 
					 
					
						
						
							
							SHA1 assember for IA64 [from HEAD].  
						
						 
						
						
						
						
					 
					
						2004-12-09 20:55:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3d5d6f9658 
					 
					
						
						
							
							Cygwin specific FIPS fix-ups.  
						
						 
						
						
						
						
					 
					
						2004-12-09 18:13:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bd5a2195de 
					 
					
						
						
							
							Postpone linking of shared libcrypto in FIPS build.  
						
						 
						
						
						
						
					 
					
						2004-12-09 18:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5868130e7a 
					 
					
						
						
							
							Eliminate dependency on UNICODE macro.  
						
						 
						
						
						
						
					 
					
						2004-12-09 18:00:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						905fd45b36 
					 
					
						
						
							
							Engage SHA1 IA64 assembler on IA64 platforms.  
						
						 
						
						
						
						
					 
					
						2004-12-09 15:39:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c162b132eb 
					 
					
						
						
							
							Automatically mark the CRL cached encoding as invalid when some operations  
						
						 
						
						... 
						
						
						
						are performed. 
						
						
					 
					
						2004-12-09 13:35:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4c9668f3c 
					 
					
						
						
							
							Automatically mark the CRL cached encoding as invalid when some operations  
						
						 
						
						... 
						
						
						
						are performed. 
						
						
					 
					
						2004-12-09 13:34:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						f1ca15dd69 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2004-12-09 11:57:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b4e0ce5165 
					 
					
						
						
							
							SHA1 assembler for IA-64.  
						
						 
						
						
						
						
					 
					
						2004-12-09 11:57:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						17f0e916db 
					 
					
						
						
							
							Extend RC4 test.  
						
						 
						
						
						
						
					 
					
						2004-12-07 11:55:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3d4c78e7f5 
					 
					
						
						
							
							More CA updates.  
						
						 
						
						
						
						
					 
					
						2004-12-05 19:53:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						95f5b1fdae 
					 
					
						
						
							
							Update 'certs' directory. Move expired certificates to expired directory  
						
						 
						
						... 
						
						
						
						and zero assurance demontrations CAs to 'demo'. 
						
						
					 
					
						2004-12-05 19:51:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						c78b389cb3 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2004-12-05 19:48:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3dfa23cbc4 
					 
					
						
						
							
							Update 'certs' directory. Move expired certificates to expired directory  
						
						 
						
						... 
						
						
						
						and zero assurance demontrations CAs to 'demo'. 
						
						
					 
					
						2004-12-05 19:48:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b0ab906524 
					 
					
						
						
							
							Use X509_cmp_time() in -checkend option, to support GeneralizedTime.  
						
						 
						
						
						
						
					 
					
						2004-12-05 18:26:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a37e22d866 
					 
					
						
						
							
							Use X509_cmp_time() in -checkend option, to support GeneralizedTime.  
						
						 
						
						
						
						
					 
					
						2004-12-05 18:26:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41c70d47d7 
					 
					
						
						
							
							Remaing bits of PR:620 relevant to 0.9.8.  
						
						 
						
						
						
						
					 
					
						2004-12-05 01:50:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec46cd8bb8 
					 
					
						
						
							
							Remaining parts of PR:620  
						
						 
						
						
						
						
					 
					
						2004-12-05 01:46:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da8534693c 
					 
					
						
						
							
							Add lots of checks for memory allocation failure, error codes to indicate  
						
						 
						
						... 
						
						
						
						failure and freeing up memory if a failure occurs.
PR:620 
						
						
					 
					
						2004-12-05 01:04:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0e7c8eede 
					 
					
						
						
							
							Add lots of checks for memory allocation failure, error codes to indicate  
						
						 
						
						... 
						
						
						
						failure and freeing up memory if a failure occurs.
PR:620 
						
						
					 
					
						2004-12-05 01:03:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b56b02dc75 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2004-12-05 00:52:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a8e00b17ce 
					 
					
						
						
							
							Update year.  
						
						 
						
						
						
						
					 
					
						2004-12-05 00:51:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c98175bf88 
					 
					
						
						
							
							In by_file.c check last error for no start line, not first error.  
						
						 
						
						
						
						
					 
					
						2004-12-04 21:26:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3e66ee9f01 
					 
					
						
						
							
							In by_file.c check last error for no start line, not first error.  
						
						 
						
						
						
						
					 
					
						2004-12-04 21:25:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3384bdd6fe 
					 
					
						
						
							
							Add -passin argument to dgst command.  
						
						 
						
						
						
						
					 
					
						2004-12-03 12:29:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5b40d7dd97 
					 
					
						
						
							
							Add -passin argument to dgst command.  
						
						 
						
						
						
						
					 
					
						2004-12-03 12:26:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8db8893cd7 
					 
					
						
						
							
							V1 certificates that aren't self signed can't be accepted as CAs.  
						
						 
						
						
						
						
					 
					
						2004-12-03 00:10:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f284faaec 
					 
					
						
						
							
							V1 certificates that aren't self signed can't be accepted as CAs.  
						
						 
						
						
						
						
					 
					
						2004-12-03 00:10:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3010b1730e 
					 
					
						
						
							
							sha1_block_asm_data_order can't hash if message crosses 2GB boundary.  
						
						 
						
						... 
						
						
						
						[back-port from HEAD branch] 
						
						
					 
					
						2004-12-02 17:05:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f670069a19 
					 
					
						
						
							
							Back-port of RC4 assembler support for IA-64 from HEAD branch.  
						
						 
						
						
						
						
					 
					
						2004-12-02 10:54:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						575dbdc965 
					 
					
						
						
							
							Downstream update from HEAD  
						
						 
						
						
						
						
					 
					
						2004-12-02 10:09:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f774accdbf 
					 
					
						
						
							
							Fix rc4-ia64.S to pass more exhaustive regression tests.  
						
						 
						
						
						
						
					 
					
						2004-12-02 10:07:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8544a80776 
					 
					
						
						
							
							Add couple of OIDs. Resync NIDs for consistency with 0.9.7.  
						
						 
						
						
						
						
					 
					
						2004-12-01 18:09:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2e1366366e 
					 
					
						
						
							
							Add two OIDs, make update  
						
						 
						
						
						
						
					 
					
						2004-12-01 17:55:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fda344ece8 
					 
					
						
						
							
							Complete backport of i386 RC4 assembler module from HEAD.  
						
						 
						
						
						
						
					 
					
						2004-12-01 15:45:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						280e3bd2c9 
					 
					
						
						
							
							Downstream update from HEAD.  
						
						 
						
						
						
						
					 
					
						2004-12-01 15:30:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7c69478064 
					 
					
						
						
							
							I've introduced a bug to i386 RC4 assembler, which would emerge with  
						
						 
						
						... 
						
						
						
						certain mix of calls to RC4 routine not covered by rc4test.c.
It's fixed now. In addition this patch inadvertently fixes minor
performance problem: in 0.9.7 context P4 was performing 12% slower
than the original implementation... 
						
						
					 
					
						2004-12-01 15:28:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						41191d14ce 
					 
					
						
						
							
							Perform partial comparison of different character types in X509_NAME_cmp().  
						
						 
						
						
						
						
					 
					
						2004-12-01 01:45:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1862dae862 
					 
					
						
						
							
							Perform partial comparison of different character types in X509_NAME_cmp().  
						
						 
						
						
						
						
					 
					
						2004-12-01 01:45:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						62c19d2dd9 
					 
					
						
						
							
							Back-port of RC4 assembler support for AMD64 from HEAD branch.  
						
						 
						
						
						
						
					 
					
						2004-11-30 18:00:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2d1a37bc9f 
					 
					
						
						
							
							Downsync new and updated RC4 assembler modules from HEAD.  
						
						 
						
						
						
						
					 
					
						2004-11-30 17:53:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						24e85c3dee 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2004-11-30 15:46:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b7b46c9a87 
					 
					
						
						
							
							Add 0.9.7 specific comments to RC4 assembler modules.  
						
						 
						
						
						
						
					 
					
						2004-11-30 15:46:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						e6e1f4cb5e 
					 
					
						
						
							
							Mention that the keys likely to have signed the distribution are now  
						
						 
						
						... 
						
						
						
						listed on the web site for easy finding and downloading 
						
						
					 
					
						2004-11-30 14:34:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5073ff0346 
					 
					
						
						
							
							Split X509_check_ca() into a small self and an internal function  
						
						 
						
						... 
						
						
						
						check_ca(), to resolve constness issue.  check_ca() is called from the
purpose checkers instead of X509_check_ca(), since the stuff done by
the latter (except for calling check_ca()) is also done by
X509_check_purpose(). 
						
						
					 
					
						2004-11-30 12:18:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fa032a6941 
					 
					
						
						
							
							Split X509_check_ca() into a small self and an internal function  
						
						 
						
						... 
						
						
						
						check_ca(), to resolve constness issue.  check_ca() is called from the
purpose checkers instead of X509_check_ca(), since the stuff done by
the latter (except for calling check_ca()) is also done by
X509_check_purpose(). 
						
						
					 
					
						2004-11-30 12:18:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fc7fc5678f 
					 
					
						
						
							
							sha1_block_asm_data_order can't hash if message crosses 2GB boundary.  
						
						 
						
						
						
						
					 
					
						2004-11-29 21:19:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7a3240e319 
					 
					
						
						
							
							Final touches to rc4/asm/rc4-596.pl, +52% better performance on AMD core.  
						
						 
						
						
						
						
					 
					
						2004-11-29 21:12:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5022e4ecdf 
					 
					
						
						
							
							Document the change.  
						
						 
						
						
						
						
					 
					
						2004-11-29 11:57:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d133618ce2 
					 
					
						
						
							
							Document the change.  
						
						 
						
						
						
						
					 
					
						2004-11-29 11:56:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						30b415b076 
					 
					
						
						
							
							Make an explicit check during certificate validation to see that the  
						
						 
						
						... 
						
						
						
						CA setting in each certificate on the chain is correct.  As a side-
effect always do the following basic checks on extensions, not just
when there's an associated purpose to the check:
- if there is an unhandled critical extension (unless the user has
  chosen to ignore this fault)
- if the path length has been exceeded (if one is set at all)
- that certain extensions fit the associated purpose (if one has been
  given) 
						
						
					 
					
						2004-11-29 11:28:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cd52956357 
					 
					
						
						
							
							Make an explicit check during certificate validation to see that the  
						
						 
						
						... 
						
						
						
						CA setting in each certificate on the chain is correct.  As a side-
effect always do the following basic checks on extensions, not just
when there's an associated purpose to the check:
- if there is an unhandled critical extension (unless the user has
  chosen to ignore this fault)
- if the path length has been exceeded (if one is set at all)
- that certain extensions fit the associated purpose (if one has been
  given) 
						
						
					 
					
						2004-11-29 11:18:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						914c2a28c0 
					 
					
						
						
							
							perlasm/x86[ms|nasm] update to accomodate updated RC4 assembler module.  
						
						 
						
						
						
						
					 
					
						2004-11-27 15:14:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6826d26ea7 
					 
					
						
						
							
							Remove unnecessary check and call BIO_free_all() on bio_out to avoid a  
						
						 
						
						... 
						
						
						
						leak on VMS. 
						
						
					 
					
						2004-11-27 13:02:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						18ad97bbe7 
					 
					
						
						
							
							Fix leaks and give an error if no argument specified in prime.c  
						
						 
						
						
						
						
					 
					
						2004-11-27 12:55:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ea681ba872 
					 
					
						
						
							
							Summarize recent RC4 tune-ups.  
						
						 
						
						
						
						
					 
					
						2004-11-26 15:26:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bc3e7fabe7 
					 
					
						
						
							
							Engage RC4 IA-64 assembler module.  
						
						 
						
						
						
						
					 
					
						2004-11-26 15:12:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d675c74d14 
					 
					
						
						
							
							RC4 IA-64 assembler implementation.  
						
						 
						
						
						
						
					 
					
						2004-11-26 15:07:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee3f520276 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2004-11-26 01:06:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59c7029862 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2004-11-26 01:04:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9199bd0cd7 
					 
					
						
						
							
							errstr manual page.  
						
						 
						
						
						
						
					 
					
						2004-11-25 18:22:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						4443f44012 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2004-11-25 18:21:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1582a4073e 
					 
					
						
						
							
							Add errstr manual page  
						
						 
						
						
						
						
					 
					
						2004-11-25 18:21:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						401ee37a3e 
					 
					
						
						
							
							Allow alternative manual sections to be embedded in .pod file comments.  
						
						 
						
						
						
						
					 
					
						2004-11-25 17:47:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cb26a20cb1 
					 
					
						
						
							
							Update docs  
						
						 
						
						
						
						
					 
					
						2004-11-25 14:14:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82c4674e47 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2004-11-25 14:11:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dfcf822c65 
					 
					
						
						
							
							Check return code of EVP_CipherInit() in PKCS#12 code.  
						
						 
						
						
						
						
					 
					
						2004-11-24 01:21:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d2996b82f 
					 
					
						
						
							
							Check return code of EVP_CipherInit() in PKCS#12 code.  
						
						 
						
						
						
						
					 
					
						2004-11-24 01:21:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14c8986f75 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2004-11-23 21:40:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3fee255102 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2004-11-23 21:40:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6237528c82 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2004-11-23 21:22:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16df5f066a 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2004-11-23 21:22:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						959f9b1158 
					 
					
						
						
							
							linux-x86_64 didn't link after EM64T RC4 tune-up...  
						
						 
						
						
						
						
					 
					
						2004-11-23 09:06:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						376729e130 
					 
					
						
						
							
							RC4 tune-up for Intel P4 core, both 32- and 64-bit ones. As it's  
						
						 
						
						... 
						
						
						
						apparently impossible to compose blended code with would perform
satisfactory on all x86 and x86_64 cores, an extra RC4_CHAR
code-path is introduced and P4 core is detected at run-time. This
way we keep original performance on non-P4 implementations and
turbo-charge P4 performance by factor of 2.8x (on 32-bit core). 
						
						
					 
					
						2004-11-21 10:36:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2b354390b8 
					 
					
						
						
							
							In "req" exit immediately if configuration file is needed and it can't  
						
						 
						
						... 
						
						
						
						be loaded instead of giving the misleading:
"unable to find 'distinguised_name' in config"
error message. 
						
						
					 
					
						2004-11-17 18:36:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00dd8f6d6e 
					 
					
						
						
							
							In "req" exit immediately if configuration file is needed and it can't  
						
						 
						
						... 
						
						
						
						be loaded instead of giving the misleading:
"unable to find 'distinguised_name' in config"
error message. 
						
						
					 
					
						2004-11-17 18:36:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5dd87981bf 
					 
					
						
						
							
							Update X509v3 doc.  
						
						 
						
						
						
						
					 
					
						2004-11-17 00:55:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37dccd8ff2 
					 
					
						
						
							
							Update X509v3 docs.  
						
						 
						
						
						
						
					 
					
						2004-11-16 17:45:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						826a42a088 
					 
					
						
						
							
							PR: 910  
						
						 
						
						... 
						
						
						
						Add command line options -certform, -keyform and -pass to s_client and
s_server. This supports the use of alternative passphrase sources, key formats
and keys handled by an ENGINE.
Update docs. 
						
						
					 
					
						2004-11-16 17:30:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						19f39703f7 
					 
					
						
						
							
							Initial pod documentation of X509V3 config file format.  
						
						 
						
						
						
						
					 
					
						2004-11-16 14:09:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1ec0d15e54 
					 
					
						
						
							
							PR: 940  
						
						 
						
						... 
						
						
						
						Typo: use prompt_info, not cb_data->prompt_info. 
						
						
					 
					
						2004-11-14 15:40:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						151368ccba 
					 
					
						
						
							
							PR: 940  
						
						 
						
						... 
						
						
						
						Typo: use prompt_info, not cb_data->prompt_info. 
						
						
					 
					
						2004-11-14 15:40:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4451c2558e 
					 
					
						
						
							
							PR: 923  
						
						 
						
						... 
						
						
						
						Typo. 
						
						
					 
					
						2004-11-14 15:11:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce165addd2 
					 
					
						
						
							
							PR: 923  
						
						 
						
						... 
						
						
						
						Typo. 
						
						
					 
					
						2004-11-14 15:11:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b207a73ca6 
					 
					
						
						
							
							PR: 938  
						
						 
						
						... 
						
						
						
						Typo. 
						
						
					 
					
						2004-11-14 13:55:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4a64f3d665 
					 
					
						
						
							
							PR: 938  
						
						 
						
						... 
						
						
						
						Typo. 
						
						
					 
					
						2004-11-14 13:55:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5fee606442 
					 
					
						
						
							
							Zap obsolete der_chop script.  
						
						 
						
						
						
						
					 
					
						2004-11-14 00:08:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						22a7a3b91b 
					 
					
						
						
							
							Zap obsolete der_chop script.  
						
						 
						
						
						
						
					 
					
						2004-11-13 23:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ced27cc681 
					 
					
						
						
							
							PR: 959  
						
						 
						
						... 
						
						
						
						Use OPENSSL_NO_CAST, not OPENSSL_NO_CAST5 in e_old.c 
						
						
					 
					
						2004-11-13 13:52:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ffec31f1ac 
					 
					
						
						
							
							PR: 969  
						
						 
						
						... 
						
						
						
						Submitted by: David Holmes <davidh@3blackdogs.com > 
						
						
					 
					
						2004-11-13 13:38:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						521aaafc6a 
					 
					
						
						
							
							PR: 969  
						
						 
						
						... 
						
						
						
						Submitted by: David Holmes <davidh@3blackdogs.com > 
						
						
					 
					
						2004-11-13 13:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e510c62a38 
					 
					
						
						
							
							Fix x509.c so it creates serial number file again if no  
						
						 
						
						... 
						
						
						
						serial number is supplied on command line. 
						
						
					 
					
						2004-11-13 13:26:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						78df5a2f1e 
					 
					
						
						
							
							Fix x509.c so it creates serial number file again if no  
						
						 
						
						... 
						
						
						
						serial number is supplied on command line. 
						
						
					 
					
						2004-11-13 13:26:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						671c1bcfce 
					 
					
						
						
							
							Cut'n'paste mistake.  All tested OK now...  
						
						 
						
						
						
						
					 
					
						2004-11-11 19:36:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6c9f57d629 
					 
					
						
						
							
							Cut'n'paste mistake.  All tested OK now...  
						
						 
						
						
						
						
					 
					
						2004-11-11 19:36:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						382342ce1d 
					 
					
						
						
							
							Whoops, syntactic mistake...  
						
						 
						
						
						
						
					 
					
						2004-11-11 18:58:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28a896f7fe 
					 
					
						
						
							
							Whoops, syntactic mistake...  
						
						 
						
						
						
						
					 
					
						2004-11-11 18:57:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						69c922f5d2 
					 
					
						
						
							
							Some find it confusing that environment variables are set when shared  
						
						 
						
						... 
						
						
						
						libraries aren't built or used.  I can see the point, so I'm
reorganising a little for clarity. 
						
						
					 
					
						2004-11-11 18:18:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6549efa61 
					 
					
						
						
							
							Some find it confusing that environment variables are set when shared  
						
						 
						
						... 
						
						
						
						libraries aren't built or used.  I can see the point, so I'm
reorganising a little for clarity. 
						
						
					 
					
						2004-11-11 18:18:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10c8505734 
					 
					
						
						
							
							Use the default_md config file value when signing CRLs.  
						
						 
						
						... 
						
						
						
						PR:662 
						
						
					 
					
						2004-11-11 13:47:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ae135eb0d 
					 
					
						
						
							
							Use the default_md config file value when signing CRLs.  
						
						 
						
						... 
						
						
						
						PR:662 
						
						
					 
					
						2004-11-11 13:46:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10f92aac33 
					 
					
						
						
							
							Don't return an error with crl -noout.  
						
						 
						
						... 
						
						
						
						PR:917
Sumbmitted by: Michael Konietzka <konietzka@schlund.de > 
						
						
					 
					
						2004-11-11 02:13:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9262f5a3fa 
					 
					
						
						
							
							Don't return an error with crl -noout.  
						
						 
						
						... 
						
						
						
						PR:917
Sumbmitted by: Michael Konietzka <konietzka@schlund.de > 
						
						
					 
					
						2004-11-11 02:12:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f94481196c 
					 
					
						
						
							
							The use of "exp" as a variable name in a prototype causes a conflict with FC2  
						
						 
						
						... 
						
						
						
						headers. 
						
						
					 
					
						2004-11-11 01:18:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						68d9e764cb 
					 
					
						
						
							
							As was shown by Marc Bevand reordering of couple of load operations  
						
						 
						
						... 
						
						
						
						results in even higher performance gain of 3.3x:-) At least on
Opteron... 
						
						
					 
					
						2004-11-09 17:23:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						17f847af21 
					 
					
						
						
							
							Make sure LD_PRELOAD is only set when we build shared libraries (and  
						
						 
						
						... 
						
						
						
						therefore link with them).  Add LD_PRELOAD setting code where it was
still missing.
PR: 966 
						
						
					 
					
						2004-11-05 09:12:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8de69cf2c6 
					 
					
						
						
							
							Make sure LD_PRELOAD is only set when we build shared libraries (and  
						
						 
						
						... 
						
						
						
						therefore link with them).  Add LD_PRELOAD setting code where it was
still missing.
PR: 966 
						
						
					 
					
						2004-11-05 09:12:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a2ac429da2 
					 
					
						
						
							
							Don't use $(EXHEADER) directly in for loops, as most shells will break  
						
						 
						
						... 
						
						
						
						if $(EXHEADER) is empty.
Notified by many, solution suggested by Carson Gaspar <carson@taltos.org > 
						
						
					 
					
						2004-11-02 23:55:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a2617f727d 
					 
					
						
						
							
							Don't use $(EXHEADER) directly in for loops, as most shells will break  
						
						 
						
						... 
						
						
						
						if $(EXHEADER) is empty.
Notified by many, solution suggested by Carson Gaspar <carson@taltos.org > 
						
						
					 
					
						2004-11-02 23:53:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ffd0f93f14 
					 
					
						
						
							
							Because -rpath/-R may have been used, our settings of LD_LIBRARY_PATH  
						
						 
						
						... 
						
						
						
						and friends may be entirely useless.  In such a case, LD_PRELOAD is
the answer, at least on platforms using LD_LIBRARY_PATH.  There might
be other variables to set on other platforms, please fill us in...
For now, we only do this with the tests, so they won't fail for silly
reasons like getting dynamically linked to older installed libraries
rather than the newly built ones...
PR: 960 
						
						
					 
					
						2004-11-02 01:13:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						15aa44d230 
					 
					
						
						
							
							Because -rpath/-R may have been used, our settings of LD_LIBRARY_PATH  
						
						 
						
						... 
						
						
						
						and friends may be entirely useless.  In such a case, LD_PRELOAD is
the answer, at least on platforms using LD_LIBRARY_PATH.  There might
be other variables to set on other platforms, please fill us in...
For now, we only do this with the tests, so they won't fail for silly
reasons like getting dynamically linked to older installed libraries
rather than the newly built ones...
PR: 960 
						
						
					 
					
						2004-11-02 01:13:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3955a76946 
					 
					
						
						
							
							Make sure _XOPEN_SOURCE_EXTENDED is correctly defined, and only if not  
						
						 
						
						... 
						
						
						
						already defined. 
						
						
					 
					
						2004-11-01 08:20:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ee478901b0 
					 
					
						
						
							
							Make sure memmove() is defined, even on SunOS 4.1.4.  
						
						 
						
						... 
						
						
						
						PR: 963 
						
						
					 
					
						2004-11-01 07:58:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1a4b8e7cee 
					 
					
						
						
							
							Make sure memmove() is defined, even on SunOS 4.1.4.  
						
						 
						
						... 
						
						
						
						PR: 963 
						
						
					 
					
						2004-11-01 07:58:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a28e18219b 
					 
					
						
						
							
							Only add fips/dh once...  
						
						 
						
						
						
						
					 
					
						2004-10-26 13:01:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						871080b94b 
					 
					
						
						
							
							fips/dh was missing in mkfiles.pl.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2004-10-26 12:17:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c133cb8974 
					 
					
						
						
							
							Add fips/dh directory to mkfiles.pl  
						
						 
						
						
						
						
					 
					
						2004-10-26 11:47:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						03386677ed 
					 
					
						
						
							
							Update NEWS  
						
						 
						
						
						
						
					 
					
						2004-10-25 17:11:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						559f90ff60 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2004-10-25 12:36:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f547d2c1c 
					 
					
						
						
							
							Change version numbers to 0.9.7f-dev  
						
						 
						
						
						
						
					 
					
						2004-10-25 11:31:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bfb7bac83b 
					 
					
						
						
							
							Updates for 0.9.7e release.  
						
						 
						
						
						
						
					 
					
						2004-10-25 11:24:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ac4fb4a138 
					 
					
						
						
							
							Fix race condition.  
						
						 
						
						
						
						
					 
					
						2004-10-25 11:15:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c284f20f00 
					 
					
						
						
							
							Fix race condition when SSL ciphers are initialized.  
						
						 
						
						
						
						
					 
					
						2004-10-25 11:14:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75f7141ab4 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-10-25 00:04:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						58ae65cd1a 
					 
					
						
						
							
							Update ECDSA and ECDH for OPENSSL_NO_ENGINE.  
						
						 
						
						... 
						
						
						
						Reported by: Maxim Masiutin
Submitted by: Nils Larsch 
						
						
					 
					
						2004-10-21 00:06:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						23a6dd83b5 
					 
					
						
						
							
							Stop VC++ complaining...  
						
						 
						
						
						
						
					 
					
						2004-10-20 17:24:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						450b38c05b 
					 
					
						
						
							
							Update NEWS file.  
						
						 
						
						
						
						
					 
					
						2004-10-20 00:54:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0286cccbc1 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2004-10-20 00:48:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dc26d1193a 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-10-14 05:52:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						64892df03e 
					 
					
						
						
							
							We need to check for OPENSSL_FIPS when building shared libraries, so  
						
						 
						
						... 
						
						
						
						we get correct transfer vectors for those functions when required. 
						
						
					 
					
						2004-10-14 05:51:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9e57ab615c 
					 
					
						
						
							
							Because libraries on Windows lack useful version information, the zlib  
						
						 
						
						... 
						
						
						
						guys had to change the name to differentiate with older versions when
a backward incompatibility came up.  Of course, we need to adapt.
This change simply tries to load the library through the newer name
(ZLIB1) first, and if that fails, it tries the good old ZLIB. 
						
						
					 
					
						2004-10-14 05:49:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b0f1f7d13 
					 
					
						
						
							
							Because libraries on Windows lack useful version information, the zlib  
						
						 
						
						... 
						
						
						
						guys had to change the name to differentiate with older versions when
a backward incompatibility came up.  Of course, we need to adapt.
This change simply tries to load the library through the newer name
(ZLIB1) first, and if that fails, it tries the good old ZLIB. 
						
						
					 
					
						2004-10-14 05:48:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b16fee0aa7 
					 
					
						
						
							
							Update fingerprints.  
						
						 
						
						
						
						
					 
					
						2004-10-08 10:03:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						70bfcc895e 
					 
					
						
						
							
							Oops..  
						
						 
						
						
						
						
					 
					
						2004-10-04 17:28:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						785e827323 
					 
					
						
						
							
							Oops!  
						
						 
						
						
						
						
					 
					
						2004-10-04 17:28:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2f605e8d24 
					 
					
						
						
							
							Fix race condition when CRL checking is enabled.  
						
						 
						
						
						
						
					 
					
						2004-10-04 16:30:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8de8bcbe2c 
					 
					
						
						
							
							Fix race condition when CRL checking is enabled.  
						
						 
						
						
						
						
					 
					
						2004-10-04 16:27:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5e2216bfa1 
					 
					
						
						
							
							Update debug-steve  
						
						 
						
						
						
						
					 
					
						2004-10-01 11:35:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14e21742d5 
					 
					
						
						
							
							Update debug-steve  
						
						 
						
						
						
						
					 
					
						2004-10-01 11:34:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						175ac6811a 
					 
					
						
						
							
							Don't use C++ reserved work "explicit".  
						
						 
						
						
						
						
					 
					
						2004-10-01 11:21:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						44963e4af7 
					 
					
						
						
							
							Fix Solaris 10_x86 shared build. -Bsymbolic is required to avoid  
						
						 
						
						... 
						
						
						
						"remaining relocations" in assembler modules. The latter seems to
be new behaviour, elder as/ld managed to resolve this relocations
as internal. It's possible to address this problem differently,
but I settle for -Bsymbolic...
PR: 946 
						
						
					 
					
						2004-09-28 20:52:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						07d488daf6 
					 
					
						
						
							
							Fix Solaris 10_x86 shared build. -Bsymbolic is required to avoid  
						
						 
						
						... 
						
						
						
						"remaining relocations" in assembler modules. The latter seems to
be new behaviour, elder as/ld managed to resolve this relocations
as internal. It's possible to address this problem differently,
but I settle for -Bsymbolic...
PR: 546 
						
						
					 
					
						2004-09-28 20:45:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1360f6ecc 
					 
					
						
						
							
							usr/doc has recently changed to usr/share/doc on Cygwin.  
						
						 
						
						... 
						
						
						
						Notified by Corinna Vinschen <vinschen@redhat.com > 
						
						
					 
					
						2004-09-28 13:10:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						125a86113f 
					 
					
						
						
							
							usr/doc has recently changed to usr/share/doc on Cygwin.  
						
						 
						
						... 
						
						
						
						Notified by Corinna Vinschen <vinschen@redhat.com > 
						
						
					 
					
						2004-09-28 11:25:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c38ff58b6b 
					 
					
						
						
							
							Move the declaration of alloca() so it's ony declared when really  
						
						 
						
						... 
						
						
						
						necessary. 
						
						
					 
					
						2004-09-27 21:59:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c29ef588dc 
					 
					
						
						
							
							SHA1 asm Pentium tune-up. Performance loss is not as bad anymore.  
						
						 
						
						
						
						
					 
					
						2004-09-27 09:37:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						968c31bd84 
					 
					
						
						
							
							sha256_block advances the input pointer double as fast sometimes. Fix the  
						
						 
						
						... 
						
						
						
						bug and test that it's actually gone.
PR: 950 
						
						
					 
					
						2004-09-27 09:35:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c743966156 
					 
					
						
						
							
							Nils Larsch reported that this include is required. Strange that this had  
						
						 
						
						... 
						
						
						
						gone unnoticed ... 
						
						
					 
					
						2004-09-24 23:37:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb09fd2bb6 
					 
					
						
						
							
							Import changed files from LPlib.  The changes are logged as follows  
						
						 
						
						... 
						
						
						
						for LPdir_unix.c in LPlib.  For the other files, only the last log
entry applies.
----------------------------
revision 1.11
date: 2004/09/23 22:07:22;  author: _cvs_levitte;  state: Exp;  lines: +20 -6
Define my own macro LP_ENTRY_SIZE to express the size of my own
buffering of directory entries, and make it depend on whichever comes
first of PATH_MAX and NAME_MAX.  As a fallback, make sure it's set to
255 if neither PATH_MAX or NAME_MAX were defined.  Also, if the size
given from PATH_MAX or NAME_MAX is less than 255, force LP_ENTRY_SIZE
to be 255.
It makes no harm whatsoever if LP_ENTRY_SIZE is larger than the
maximum local path name limit.  It does make a lot of harm if
LP_ENTRY_SIZE is smaller.  255 seemed like a fairly acceptable default
when nothing else is available.
----------------------------
revision 1.10
date: 2004/08/26 13:36:05;  author: _cvs_levitte;  state: Exp;  lines: +13 -13
License correction.  I am not REGENTS, just a COPYRIGHT HOLDER.
---------------------------- 
						
						
					 
					
						2004-09-23 22:11:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						280eb33b59 
					 
					
						
						
							
							Remove distracting comments and code. Thanks to Nils for picking up on the  
						
						 
						
						... 
						
						
						
						outstanding ticket.
PR: 926 
						
						
					 
					
						2004-09-19 04:55:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f79110c633 
					 
					
						
						
							
							Two TODO comments taken care of. Nils pointed out that one of them had already  
						
						 
						
						... 
						
						
						
						been done, and took care of the other one (which hadn't).
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-09-19 04:43:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6ef2ff62fc 
					 
					
						
						
							
							Make -Werror happy again.  
						
						 
						
						
						
						
					 
					
						2004-09-18 01:32:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						980aea7860 
					 
					
						
						
							
							Check ASN1_TYPE structure type is a SEQUENCE in PKCS7_get_smimecap().  
						
						 
						
						
						
						
					 
					
						2004-09-15 23:47:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d06db8ad9e 
					 
					
						
						
							
							Check ASN1_TYPE structure type is a SEQUENCE in PKCS7_get_smimecap().  
						
						 
						
						
						
						
					 
					
						2004-09-15 23:38:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ffa8e7b74c 
					 
					
						
						
							
							Oops, forgot to reorder extension request nids.  
						
						 
						
						
						
						
					 
					
						2004-09-13 22:39:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd9327baa9 
					 
					
						
						
							
							Change values of MBSTRING_* to the form MBSTRING_FLAG|nbyte as assumed  
						
						 
						
						... 
						
						
						
						in ASN1_STRING_to_UTF8(). 
						
						
					 
					
						2004-09-13 22:33:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						85e8decc16 
					 
					
						
						
							
							ASN1_STRING_to_UTF8() assumed that the MBSTRING_* flags were of  
						
						 
						
						... 
						
						
						
						the form MBSTRING_FLAG|nbyte where "nbyte" is the number of
bytes per character.
Unfortunately this isn't so and we can't change the #defines because
this would break binary compatibility, so for 0.9.7X only translate
between the two. 
						
						
					 
					
						2004-09-13 22:30:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6f9bafafa3 
					 
					
						
						
							
							- There's no more need for the snprintf macro.  
						
						 
						
						... 
						
						
						
						- Move the inclusion of malloc.h until after all other includes, so we
  can do proper tests of system macros.
- Make sure the correct header file is included to get the builtin
  "alloca" under VMS, and define a macro to map the symbol 'alloca' to
  it. 
						
						
					 
					
						2004-09-13 09:15:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						422a4a33a5 
					 
					
						
						
							
							Synchronise with Unix build.  
						
						 
						
						
						
						
					 
					
						2004-09-12 13:02:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3216de1ee5 
					 
					
						
						
							
							Makefile.ssl changed name to Makefile...  
						
						 
						
						
						
						
					 
					
						2004-09-11 09:45:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f349c58f7 
					 
					
						
						
							
							Stop warning.  
						
						 
						
						
						
						
					 
					
						2004-09-10 20:27:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cfafb6a73d 
					 
					
						
						
							
							When looking for request extensions in a certificate look first  
						
						 
						
						... 
						
						
						
						for the PKCS#9 OID then the non standard MS OID. 
						
						
					 
					
						2004-09-10 20:26:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						58606421ae 
					 
					
						
						
							
							When looking for request extensions in a certificate look first  
						
						 
						
						... 
						
						
						
						for the PKCS#9 OID then the non standard MS OID. 
						
						
					 
					
						2004-09-10 20:20:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d813ff2ac1 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-09-10 10:30:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						36734b2bab 
					 
					
						
						
							
							Make VIA Padlock engine more platform friendly and eliminate compiler  
						
						 
						
						... 
						
						
						
						warning.
Submitted by: Doug Kaufman <dkaufman@rahul.net > 
						
						
					 
					
						2004-09-09 14:54:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c85c5c408a 
					 
					
						
						
							
							x86 assembler updates: more instructions, new OPENSSL_instrument_halt  
						
						 
						
						... 
						
						
						
						[for DJGPP]... 
						
						
					 
					
						2004-09-09 14:50:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2c1677d703 
					 
					
						
						
							
							Synchronise VMS build files with Unixly Makefiles.  
						
						 
						
						
						
						
					 
					
						2004-09-08 08:13:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						72348cbb8d 
					 
					
						
						
							
							Another symbol longer than 31 characters...  
						
						 
						
						
						
						
					 
					
						2004-09-08 08:13:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c431798e82 
					 
					
						
						
							
							Reformat smime utility.  
						
						 
						
						... 
						
						
						
						Add support for policy checking in verify utility. 
						
						
					 
					
						2004-09-07 18:38:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fb80794568 
					 
					
						
						
							
							Don't use 'explicit' for variable name.  
						
						 
						
						
						
						
					 
					
						2004-09-07 00:31:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4ec3d785e5 
					 
					
						
						
							
							Reformat smime.c  
						
						 
						
						
						
						
					 
					
						2004-09-07 00:28:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d7c222db8 
					 
					
						
						
							
							New X509_VERIFY_PARAM structure and associated functionality.  
						
						 
						
						... 
						
						
						
						This tidies up verify parameters and adds support for integrated policy
checking.
Add support for policy related command line options. Currently only in smime
application.
WARNING: experimental code subject to change. 
						
						
					 
					
						2004-09-06 18:43:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d993addbed 
					 
					
						
						
							
							Stop compiler warnings.  
						
						 
						
						
						
						
					 
					
						2004-09-06 18:37:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						818c0b2e42 
					 
					
						
						
							
							num is an unsigned long, but since it was transfered from  
						
						 
						
						... 
						
						
						
						crypto/sha/sha_locl.h, where it is in fact an int, we need to check
for less-than-zero as if it was an int... 
						
						
					 
					
						2004-09-06 14:21:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aef8807e76 
					 
					
						
						
							
							Replace the bogus checks of n with proper uses of feof(), ferror() and  
						
						 
						
						... 
						
						
						
						clearerr(). 
						
						
					 
					
						2004-09-06 14:19:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						476b6ab541 
					 
					
						
						
							
							TABLE OpenBSD-i386 update  
						
						 
						
						
						
						
					 
					
						2004-08-29 22:05:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						16760a3089 
					 
					
						
						
							
							Proper support for OpenBSD-i386 shared build, including assember modules!  
						
						 
						
						... 
						
						
						
						"Proper" means "compiles and passes test." Versioning is broken (I think). 
						
						
					 
					
						2004-08-29 21:36:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2b247cf81f 
					 
					
						
						
							
							OPENSSL_ia32cap final touches. Note that OPENSSL_ia32cap is no longer a  
						
						 
						
						... 
						
						
						
						symbol, but a macro expanded as (*(OPENSSL_ia32cap_loc())). The latter
is the only one to be exported to application. 
						
						
					 
					
						2004-08-29 16:36:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						746fc2526f 
					 
					
						
						
							
							Fix compiler warnings in crypto/evp/bio_ok.c as pointed out by Geoff.  
						
						 
						
						
						
						
					 
					
						2004-08-29 16:19:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a8c65b400c 
					 
					
						
						
							
							crypto/perlasm update primarily to unify Netware modules. Once it's verified  
						
						 
						
						... 
						
						
						
						x86*_nw.pl will be deleted. In addition this update implements initseg
on several additional [in addition to ELF] platforms. Functions registered
with initseg are supposed to be called prior main(). 
						
						
					 
					
						2004-08-29 16:10:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						526975906b 
					 
					
						
						
							
							Minor VIA Padlock engine update: eliminate -Wunused warning when *not*  
						
						 
						
						... 
						
						
						
						compiling the engine and inline memcpy in performance critical pathes. 
						
						
					 
					
						2004-08-24 09:01:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4157fae6fe 
					 
					
						
						
							
							Sync aes_ctr.c with HEAD.  
						
						 
						
						
						
						
					 
					
						2004-08-23 22:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						14fa6ad9f9 
					 
					
						
						
							
							Make aes_ctr.c 64-bit savvy.  
						
						 
						
						
						
						
					 
					
						2004-08-23 22:19:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e544b0dc2a 
					 
					
						
						
							
							'compatibility', not 'computability' :-)...  
						
						 
						
						
						
						
					 
					
						2004-08-18 15:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						15902f8341 
					 
					
						
						
							
							'compatibility', not 'computability' :-)...  
						
						 
						
						
						
						
					 
					
						2004-08-18 15:48:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2549564009 
					 
					
						
						
							
							On systems that use case-insensitive symbol names (i.e. they're all  
						
						 
						
						... 
						
						
						
						converted to upper case or something like that), the application-
level bio_dump_cb() has a name clash with the new library function
BIO_dump_cb().  The easiest fix is to rename the function at the
application level. 
						
						
					 
					
						2004-08-12 08:58:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb1a915c24 
					 
					
						
						
							
							Basically, I wanted to be able to make a dump to a FILE*, and not have  
						
						 
						
						... 
						
						
						
						to bother creating a BIO around it.  So here's a few more functions to
make it possible to make the dump using a printing callback, and to
print to a FILE* (based on the callback variant), done in the same
style as the functions in crypto/err/err_prn.c. 
						
						
					 
					
						2004-08-11 21:13:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8bcd746e84 
					 
					
						
						
							
							Another missing module in the VMS build files.  I believe this is the  
						
						 
						
						... 
						
						
						
						last, though... 
						
						
					 
					
						2004-08-11 20:34:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						56fe40191d 
					 
					
						
						
							
							Stupid casts...  
						
						 
						
						
						
						
					 
					
						2004-08-11 17:41:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b94f886b22 
					 
					
						
						
							
							Stupid casts...  
						
						 
						
						
						
						
					 
					
						2004-08-11 17:41:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						97c802588c 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2004-08-11 17:24:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ef7b78e7c 
					 
					
						
						
							
							Update FAQ.  
						
						 
						
						
						
						
					 
					
						2004-08-11 17:22:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c172bce1c 
					 
					
						
						
							
							Make ASN1_INTEGER_cmp() work as expected with negative integers.  
						
						 
						
						
						
						
					 
					
						2004-08-10 17:40:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e08aad1d14 
					 
					
						
						
							
							Make ASN1_INTEGER_cmp() work as expected with negative integers.  
						
						 
						
						
						
						
					 
					
						2004-08-10 17:40:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4fa9664f5e 
					 
					
						
						
							
							With DEC C in ANSI C mode, we need to define _XOPEN_SOURCE_EXTENDED to  
						
						 
						
						... 
						
						
						
						get struct timeval and gettimeofday(). 
						
						
					 
					
						2004-08-10 10:04:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						483b312391 
					 
					
						
						
							
							Update the VMS fips library builder with the DH library.  
						
						 
						
						
						
						
					 
					
						2004-08-10 09:11:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1033449613 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-08-10 09:09:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f992081682 
					 
					
						
						
							
							Correct typos and include directory specifications.  
						
						 
						
						
						
						
					 
					
						2004-08-09 12:14:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5ad93a12b2 
					 
					
						
						
							
							In the fips directory, we use FIPS-LIB.COM, not CRYPTO-LIB.COM...  
						
						 
						
						
						
						
					 
					
						2004-08-09 12:13:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b5a93e2250 
					 
					
						
						
							
							Call setup_engine after autoconfig.  
						
						 
						
						
						
						
					 
					
						2004-08-06 12:44:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						efeb352163 
					 
					
						
						
							
							In ca.c setup engine after autoconfig so any dynamic engines are visible.  
						
						 
						
						
						
						
					 
					
						2004-08-06 12:43:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						44dd6865b9 
					 
					
						
						
							
							Stop compiler giving bogus shadow warning.  
						
						 
						
						
						
						
					 
					
						2004-08-05 18:11:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb82123707 
					 
					
						
						
							
							Don't ignore return values of EVP_DigestInit_ex() in md BIOs and dgst.  
						
						 
						
						
						
						
					 
					
						2004-08-05 18:10:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c128bb0fa2 
					 
					
						
						
							
							Don't ignore return value of EVP_DigestInit_ex() in md BIOs and dgst utility.  
						
						 
						
						
						
						
					 
					
						2004-08-05 18:09:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						30fe028f07 
					 
					
						
						
							
							Make a note of the new engine.  
						
						 
						
						
						
						
					 
					
						2004-08-04 22:42:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b88606c28e 
					 
					
						
						
							
							Padlock engine update to fix a typo in MSC assembler and to address  
						
						 
						
						... 
						
						
						
						potential corruption problem if user manages to inter-leave aligined
and misaligned requests [as well as some MSC-specific tweaks]. 
						
						
					 
					
						2004-08-04 12:58:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2ea6abf6e5 
					 
					
						
						
							
							DJGPP has opendir() and friends, according to Gisle Vanem <giva@bgnett.no>.  
						
						 
						
						
						
						
					 
					
						2004-08-03 19:15:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f8c469de73 
					 
					
						
						
							
							If they ask for 386, keep it as 386 as possible...  
						
						 
						
						
						
						
					 
					
						2004-08-02 22:41:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						42096e05f7 
					 
					
						
						
							
							Avoid a.out name table pollition.  
						
						 
						
						
						
						
					 
					
						2004-08-02 22:02:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7d15a556f8 
					 
					
						
						
							
							Minor clean-up to make Microsoft compiler shut up.  
						
						 
						
						
						
						
					 
					
						2004-08-02 21:54:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5b17246324 
					 
					
						
						
							
							VIA C3 processor extends IA-32 instruction set with instuctions  
						
						 
						
						... 
						
						
						
						performing AES encryption in hardware, as well as one accessing
hardware RNG. As you surely imagine this engine access this
extended instruction set. Well, only AES for the moment, support
for RNG is to be added later on...
PR: 889
Submitted by: Michal Ludvig <michal@logix.cz >
Obtained from: http://www.logix.cz/michal/devel/padlock/  
						
						
					 
					
						2004-08-02 21:48:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						eb7bb58471 
					 
					
						
						
							
							Let's lock a write lock when changing values, shall we?  
						
						 
						
						... 
						
						
						
						Thanks to Dr Stephen Henson <shenson@drh-consultancy.co.uk > for making
me aware of this error. 
						
						
					 
					
						2004-08-02 14:15:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c77094415f 
					 
					
						
						
							
							Cygwin fix-up for shared build.  
						
						 
						
						
						
						
					 
					
						2004-08-01 21:24:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						34413fca84 
					 
					
						
						
							
							OpenBSD fix-up for new a.out targets. OpenBSD .s.o rule is busted...  
						
						 
						
						
						
						
					 
					
						2004-08-01 21:16:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ec38ddc765 
					 
					
						
						
							
							Clean-up GAS targets: get rid of "cpp" stuff and replace it with "purified"  
						
						 
						
						... 
						
						
						
						COFF and a.out targets [similar to ELF targets]. You might notice some
rudementary support for shared mingw builds under cygwin. It works (it
produces cryptoeay32.dll and ssleay32.dll with everything exported by
name), but it's primarily for testing/debugging purposes, at least for
now... 
						
						
					 
					
						2004-08-01 17:33:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8aae01e223 
					 
					
						
						
							
							Deprecate cpp and gaswin targets. New coff fills in for gaswin, but cpp is  
						
						 
						
						... 
						
						
						
						going out... 
						
						
					 
					
						2004-08-01 17:03:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						00555c2f2f 
					 
					
						
						
							
							DLLEntryPoint is a collective name, not what linker looks for. However,  
						
						 
						
						... 
						
						
						
						if we explicitly intruct the linker to set entry point, then we become
obliged to initialize run-time library. Instead we can pick name run-time
will call and such name is DllMain. Note that this applies to both
"native" Win32 environment and Cygwin:-) 
						
						
					 
					
						2004-08-01 14:27:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f9c37457a 
					 
					
						
						
							
							To protect FIPS-related global variables, add locking mechanisms  
						
						 
						
						... 
						
						
						
						around them.
NOTE: because two new locks are added, this adds potential binary
incompatibility with earlier versions in the 0.9.7 series.  However,
those locks will only ever be touched when FIPS_mode_set() is called
and after, thanks to a variable that's only changed from 0 to 1 once
(when FIPS_mode_set() is called).  So basically, as long as FIPS mode
hasn't been engaged explicitely by the calling application, the new
locks are treated as if they didn't exist at all, thus not becoming a
problem.  Applications that are built or rebuilt to use FIPS
functionality will need to be recompiled in any case, thus not being a
problem either. 
						
						
					 
					
						2004-07-30 14:38:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						86022a79a5 
					 
					
						
						
							
							We're building crypto stuff, not ssl stuff.  Additionally, we're in  
						
						 
						
						... 
						
						
						
						the fips subdirectory, not the crypto one... 
						
						
					 
					
						2004-07-29 22:26:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						88a8ae6aee 
					 
					
						
						
							
							We build the crypto stuff, not the ssl stuff, in this command procedure...  
						
						 
						
						
						
						
					 
					
						2004-07-29 22:26:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						07d80f6f35 
					 
					
						
						
							
							We build the crypto stuff, not the ssl stuff, in this command procedure...  
						
						 
						
						
						
						
					 
					
						2004-07-29 22:25:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b58e24ac57 
					 
					
						
						
							
							Define OPENSSL_FIPS in opensslconf.h if a logical name with the same  
						
						 
						
						... 
						
						
						
						name is defined.
Go up one directory level before dealing with FIPS stuff. 
						
						
					 
					
						2004-07-28 13:47:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						496c4e1033 
					 
					
						
						
							
							From the FIPS directory, darnit!  
						
						 
						
						
						
						
					 
					
						2004-07-28 02:24:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b948f3677 
					 
					
						
						
							
							New cipher "strength" FIPS which specifies that a  
						
						 
						
						... 
						
						
						
						cipher suite is FIPS compatible.
New cipherstring "FIPS" is all FIPS compatible ciphersuites except eNULL.
Only allow FIPS ciphersuites in FIPS mode. 
						
						
					 
					
						2004-07-27 18:28:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f911c668d 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2004-07-27 14:09:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4591850561 
					 
					
						
						
							
							The compiler may complain about what looks like a double definition of a  
						
						 
						
						... 
						
						
						
						static variable 
						
						
					 
					
						2004-07-27 13:58:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e81ef01a0a 
					 
					
						
						
							
							The compiler may complain about what looks like a double definition of a  
						
						 
						
						... 
						
						
						
						static variable 
						
						
					 
					
						2004-07-27 13:58:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d2033156c5 
					 
					
						
						
							
							Rename libcrypto.sha1 to libcrypto.a.sha1  
						
						 
						
						
						
						
					 
					
						2004-07-27 12:22:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e4c1c03c5b 
					 
					
						
						
							
							Add FIPS name to error library.  
						
						 
						
						
						
						
					 
					
						2004-07-27 00:20:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a25aca2943 
					 
					
						
						
							
							Oops, wrong version...  
						
						 
						
						
						
						
					 
					
						2004-07-27 00:19:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						48c524827b 
					 
					
						
						
							
							Add FIPS library name to error routines.  
						
						 
						
						
						
						
					 
					
						2004-07-27 00:19:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5edd0f51e3 
					 
					
						
						
							
							Stop compiler warnings.  
						
						 
						
						
						
						
					 
					
						2004-07-27 00:17:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ebaec63e3e 
					 
					
						
						
							
							This is so to say "damage control" for jumbo "cpuid" patch, see  
						
						 
						
						... 
						
						
						
						http://cvs.openssl.org/chngview?cn=12493 . Now all platform should
be operational, while SSE2 code pathes get engaged on ELF platforms
only. 
						
						
					 
					
						2004-07-26 22:01:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						14e21f863a 
					 
					
						
						
							
							Add framework for yet another assembler module dubbed "cpuid." Idea  
						
						 
						
						... 
						
						
						
						is to have a placeholder to small routines, which can be written only
in assembler. In IA-32 case this includes processor capability
identification and access to Time-Stamp Counter. As discussed earlier
OPENSSL_ia32cap is introduced to control recently added SSE2 code
pathes (see docs/crypto/OPENSSL_ia32cap.pod). For the moment the
code is operational on ELF platforms only. I haven't checked it yet,
but I have all reasons to believe that Windows build should fail to
link too. I'll be looking into it shortly... 
						
						
					 
					
						2004-07-26 20:18:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f10725a6e1 
					 
					
						
						
							
							Zero key-length for HMAC is apparently OK.  
						
						 
						
						
						
						
					 
					
						2004-07-25 20:24:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0f71b77d5c 
					 
					
						
						
							
							Make bio_ok.c Microsoft compiler savvy.  
						
						 
						
						
						
						
					 
					
						2004-07-25 20:13:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d6bb6a88be 
					 
					
						
						
							
							Typos, typos...  
						
						 
						
						
						
						
					 
					
						2004-07-25 20:09:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3205db2bfe 
					 
					
						
						
							
							Make bio_ok.c 64-bit savvy.  
						
						 
						
						
						
						
					 
					
						2004-07-25 19:37:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6f86850eec 
					 
					
						
						
							
							Stricter boundary condition check in HMAC_Init_ex.  
						
						 
						
						
						
						
					 
					
						2004-07-25 19:25:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						16ab8a93bc 
					 
					
						
						
							
							Minor 64-bit md32_common.h update and minor unsignification of digests.  
						
						 
						
						
						
						
					 
					
						2004-07-25 19:10:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c88f8f76b5 
					 
					
						
						
							
							'apps/openssl dgst -help' update and minor apps/speed.c update.  
						
						 
						
						
						
						
					 
					
						2004-07-25 18:57:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						fbf96849e9 
					 
					
						
						
							
							Make SHA-256/-512 optional. Note that no-sha switches off *all* SHA.  
						
						 
						
						
						
						
					 
					
						2004-07-25 18:25:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d70e2507f8 
					 
					
						
						
							
							Some compilers are just too whiny. Nothing makes Microsoft compiler  
						
						 
						
						... 
						
						
						
						stop complaining about loss of precision, but explicit cast. 
						
						
					 
					
						2004-07-25 17:00:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2fcf435d73 
					 
					
						
						
							
							Some compilers are just too whiny. DEC C doesn't like long long...  
						
						 
						
						
						
						
					 
					
						2004-07-25 16:54:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da2ee71de5 
					 
					
						
						
							
							Typos and due casts. As for the latter. It's "safe" to cast as below,  
						
						 
						
						... 
						
						
						
						because "wrong" casts will either be optimized away or never performed. 
						
						
					 
					
						2004-07-25 16:48:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8611934352 
					 
					
						
						
							
							Minor HP-UX make update. IA-64-based HP-UX favor .so extension for shared  
						
						 
						
						... 
						
						
						
						libraries. Old .sl extension works just fine, but it .so which is default. 
						
						
					 
					
						2004-07-24 14:17:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1ecb88b95a 
					 
					
						
						
							
							Add casts where casts due. It's "safe" to cast, because "wrong" casts  
						
						 
						
						... 
						
						
						
						will either be optimized away or never performed. The trouble is that
compiler first parses code, then optimizes, not both at once... 
						
						
					 
					
						2004-07-24 13:40:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						01e94efd46 
					 
					
						
						
							
							TABLE update.  
						
						 
						
						
						
						
					 
					
						2004-07-23 23:29:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						33c3ecf741 
					 
					
						
						
							
							Build-n-link new IA-64 modules on Linux and HP-UX.  
						
						 
						
						
						
						
					 
					
						2004-07-23 23:27:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						5bd4c26057 
					 
					
						
						
							
							Various IA-64 assembler fix-ups.  
						
						 
						
						
						
						
					 
					
						2004-07-23 22:54:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4aa5889e1a 
					 
					
						
						
							
							VC-NT was taken away by mistake, putting it back...  
						
						 
						
						
						
						
					 
					
						2004-07-23 20:46:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bafcc7e060 
					 
					
						
						
							
							Win64 placeholder targets. This is merely naming suggestion. As we know  
						
						 
						
						... 
						
						
						
						Win64 comes in two flavors, IA-64/Itanium and AMD64/Opteron. The
suggestion is to refer to former as WIN64I and latter - WIN64A 
						
						
					 
					
						2004-07-23 19:18:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						afe67fb28e 
					 
					
						
						
							
							Adapt rc4-amd64.pl for Win64/AMD64 assembler.  
						
						 
						
						
						
						
					 
					
						2004-07-23 17:51:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						03ecfadf3d 
					 
					
						
						
							
							Convert to X9.31.  
						
						 
						
						
						
						
					 
					
						2004-07-23 13:20:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f744f92adb 
					 
					
						
						
							
							From LPlib:  
						
						 
						
						... 
						
						
						
						Apparently, the length *including* the NUL byte should be used.
Contributed by Andy Polyakov <appro@fy.chalmers.se > 
						
						
					 
					
						2004-07-22 18:34:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						64c6865427 
					 
					
						
						
							
							Proper WinCE support for listing files. "Backported" from HEAD.  
						
						 
						
						
						
						
					 
					
						2004-07-22 16:39:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						75f134c077 
					 
					
						
						
							
							From LPlib:  
						
						 
						
						... 
						
						
						
						Make a nicer comment, as we don't really know for sure that it's
really needed, and just want to play on the safe side.
Suggest by Andy Polyakov <appro@fy.chalmers.se > 
						
						
					 
					
						2004-07-22 13:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d8d25c9603 
					 
					
						
						
							
							WinCE should always be compiled as UNICODE, even debugging version...  
						
						 
						
						
						
						
					 
					
						2004-07-22 11:08:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						f1bdf1d518 
					 
					
						
						
							
							#include <limits.h> is required at least on HP-UX and IRIX. And what's  
						
						 
						
						... 
						
						
						
						with HP-UX offering 14 for NAME_MAX? 
						
						
					 
					
						2004-07-22 10:53:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d58caee734 
					 
					
						
						
							
							EVP_Digest is size_t-fied, clean up test programs accordingly.  
						
						 
						
						
						
						
					 
					
						2004-07-22 10:25:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e39c2548f5 
					 
					
						
						
							
							Run SHA-256/-512 tests through EVP...  
						
						 
						
						
						
						
					 
					
						2004-07-22 10:21:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8169dd73f9 
					 
					
						
						
							
							All SIXTY_FOUR_BIT platforms (mind the difference between SIXTY_FOUR_BIT and  
						
						 
						
						... 
						
						
						
						SIXTY_FOUR_BIT_LONG) were failing to pass 'cd test; make test_bn'. 
						
						
					 
					
						2004-07-22 09:32:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						765e231a7c 
					 
					
						
						
							
							From LPlib:  
						
						 
						
						... 
						
						
						
						Some code beautification.
Change the macro CP_THREAD_ACP to CP_ACP, because the latter is more
widely defined.
Add a conditional macro definition in case FindFirstFile and
FindNextFile aren't properly defined (might happen on WinCE).
Suggested by Andy Polyakov <appro@fy.chalmers.se > 
						
						
					 
					
						2004-07-21 21:16:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						43894f9c0d 
					 
					
						
						
							
							When in FIPS mode write private keys in PKCS#8 and PBES2 format to  
						
						 
						
						... 
						
						
						
						avoid use of prohibited MD5 algorithm. 
						
						
					 
					
						2004-07-21 17:41:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						40007ad24d 
					 
					
						
						
							
							Avoid compiler warnings.  
						
						 
						
						
						
						
					 
					
						2004-07-21 17:35:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c6e27dcf31 
					 
					
						
						
							
							Make rand_win.c UNICODE savvy. "Backport" from HEAD.  
						
						 
						
						
						
						
					 
					
						2004-07-21 17:18:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						89c53672c2 
					 
					
						
						
							
							Make rand_win.c UNICODE savvy.  
						
						 
						
						
						
						
					 
					
						2004-07-21 17:17:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						64ba6cf222 
					 
					
						
						
							
							From LPlib:  
						
						 
						
						... 
						
						
						
						Windows changes that detects if multibyte characters are available and
deals with them properly.
Contributed by Andy Polyakov <appro@fy.chalmers.se > 
						
						
					 
					
						2004-07-20 21:24:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						210a4f78ae 
					 
					
						
						
							
							Imported from LPlib, making sure the entry name (at least on Unix) is  
						
						 
						
						... 
						
						
						
						NUL-teminated at all times, and that we don't make unneeded calls to
free(). 
						
						
					 
					
						2004-07-19 16:36:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						334ef04949 
					 
					
						
						
							
							Since version 7.0, The C RTL in VMS handles time in terms of UTC  
						
						 
						
						... 
						
						
						
						instead of local time. 
						
						
					 
					
						2004-07-19 07:50:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a47e836efe 
					 
					
						
						
							
							Since version 7.0, The C RTL in VMS handles time in terms of UTC  
						
						 
						
						... 
						
						
						
						instead of local time. 
						
						
					 
					
						2004-07-19 07:49:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						859ceeeb51 
					 
					
						
						
							
							Anchor AES and SHA-256/-512 assembler from C.  
						
						 
						
						
						
						
					 
					
						2004-07-18 17:26:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						22edcae7fa 
					 
					
						
						
							
							Type in Configure and TABLE update.  
						
						 
						
						
						
						
					 
					
						2004-07-18 16:22:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d0590fe6b2 
					 
					
						
						
							
							Add anchors for AES, SHA-256/-512 assembler modules and SSE2 code pathes.  
						
						 
						
						... 
						
						
						
						I also used this opportunity to clean up some out-of-date targets and
re-group targets by OS. 
						
						
					 
					
						2004-07-18 16:19:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						370358dfb4 
					 
					
						
						
							
							Sync with HEAD. Up to >20% overall performance improvement.  
						
						 
						
						
						
						
					 
					
						2004-07-17 13:27:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2232b10f5a 
					 
					
						
						
							
							Add licensing terms.  
						
						 
						
						
						
						
					 
					
						2004-07-17 13:24:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e34794dd1b 
					 
					
						
						
							
							IA-64 is intolerant to misaligned access. It was a problem on Win64 as  
						
						 
						
						... 
						
						
						
						we were mislead by _MSC_VER macro, which is defined by *all* Windows
Microsoft compilers. 
						
						
					 
					
						2004-07-17 12:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a77b16abd4 
					 
					
						
						
							
							IA-64 is intolerant to misaligned access. It was a problem on Win64 as  
						
						 
						
						... 
						
						
						
						we were mislead by _MSC_VER macro, which is defined by *all* Windows
Microsoft compilers. 
						
						
					 
					
						2004-07-17 12:54:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						061c8f977d 
					 
					
						
						
							
							Eliminate enforced -g from CFLAGS. It switches off optimization with some  
						
						 
						
						... 
						
						
						
						compilers, e.g. DEC C. 
						
						
					 
					
						2004-07-17 12:48:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0210065bbd 
					 
					
						
						
							
							Quick fix.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2004-07-16 03:24:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7f5b4dd1e8 
					 
					
						
						
							
							Using Horner's algorithm to evaluate the ec polynomial  
						
						 
						
						... 
						
						
						
						(suggested by Adam Young <ayoung@cigital.com >)
Submitted by: Nils Larsch 
						
						
					 
					
						2004-07-16 03:24:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d70f5891da 
					 
					
						
						
							
							Corrected test program.  
						
						 
						
						
						
						
					 
					
						2004-07-12 17:59:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						901959c945 
					 
					
						
						
							
							I think it could be a good thing to know what went wrong with the tests...  
						
						 
						
						
						
						
					 
					
						2004-07-12 12:25:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5906e8d5fe 
					 
					
						
						
							
							I think it could be a good thing to know what went wrong with the tests...  
						
						 
						
						
						
						
					 
					
						2004-07-12 12:25:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5545607c4f 
					 
					
						
						
							
							make update  
						
						 
						
						... 
						
						
						
						(incidently, this also tells VMS that there exists a new symbol in the
SSL library) 
						
						
					 
					
						2004-07-12 11:25:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6ac1571296 
					 
					
						
						
							
							Because it's one of our libraries calling new functions in the other,  
						
						 
						
						... 
						
						
						
						we need to have them among the symbols that should appear in the
transfer table, at least on VMS (and it wouldn't surprise me if
Windows would whine as well). 
						
						
					 
					
						2004-07-12 11:24:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a857495d17 
					 
					
						
						
							
							improve wording  
						
						 
						
						
						
						
					 
					
						2004-07-12 06:24:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ca74b76f3e 
					 
					
						
						
							
							improve wording  
						
						 
						
						
						
						
					 
					
						2004-07-12 06:23:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2b6174c478 
					 
					
						
						
							
							Some test programs in crypto/sha were named differently than usual...  
						
						 
						
						
						
						
					 
					
						2004-07-11 20:30:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2b002273f3 
					 
					
						
						
							
							'SSL_add_dir_cert_subjects_to_stack' is longer than 31 characters.  
						
						 
						
						... 
						
						
						
						Lucky me, I had prepared for this :-). 
						
						
					 
					
						2004-07-11 20:22:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						15d155e45a 
					 
					
						
						
							
							o_dir needs to be compiler with the warnings about dollar signs in  
						
						 
						
						... 
						
						
						
						identities disabled. 
						
						
					 
					
						2004-07-11 20:21:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b0841348b6 
					 
					
						
						
							
							In some cases, EVMSERR isn't visible (that's fairly new...).  
						
						 
						
						... 
						
						
						
						Don't have a constant that you're going to assign to, that's just
plain stupid (I was the stupidhead here...). 
						
						
					 
					
						2004-07-11 20:21:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						090e81d4aa 
					 
					
						
						
							
							Integration of RC4 AMD64 module.  
						
						 
						
						
						
						
					 
					
						2004-07-11 16:49:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e4528e48e3 
					 
					
						
						
							
							RC4 tune-up for AMD64. Performance improvement of 2.22x is measured for  
						
						 
						
						... 
						
						
						
						linux-x86_64 target. 
						
						
					 
					
						2004-07-11 16:44:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						b1640e47e4 
					 
					
						
						
							
							BIS correction/addition  
						
						 
						
						
						
						
					 
					
						2004-07-11 09:29:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						235dee1421 
					 
					
						
						
							
							BIS correction/addition  
						
						 
						
						
						
						
					 
					
						2004-07-11 08:58:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d28f7bc74d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-07-10 13:18:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4083a229b4 
					 
					
						
						
							
							Use the new directory reading functions.  
						
						 
						
						
						
						
					 
					
						2004-07-10 13:17:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a2400fcab8 
					 
					
						
						
							
							Copy a few files from LPlib (a new project of mine), add a wrapper.  
						
						 
						
						... 
						
						
						
						Now we have directory reading capabilities for VMS as well, and all
of it in a fairly general manner. 
						
						
					 
					
						2004-07-10 13:16:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5358bc44f4 
					 
					
						
						
							
							o_str.c: Windows doesn't have <strings.h>, and since we use _strnicmp() and  
						
						 
						
						... 
						
						
						
						_stricmp() on that platform, use the appropriate header file for it,
<string.h>.
o_str.h: we only want to get size_t, which is defined in <stddef.h>.
Philippe Bougeret <philippe.bougeret@freesbee.fr > notified us about Windows
not having a <strings.h> 
						
						
					 
					
						2004-07-08 08:32:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dc56eb5079 
					 
					
						
						
							
							o_str.c: Windows doesn't have <strings.h>, and since we use _strnicmp() and  
						
						 
						
						... 
						
						
						
						_stricmp() on that platform, use the appropriate header file for it,
<string.h>.
o_str.h: we only want to get size_t, which is defined in <stddef.h>.
Philippe Bougeret <philippe.bougeret@freesbee.fr > notified us about Windows
not having a <strings.h> 
						
						
					 
					
						2004-07-08 08:32:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a7f14cb4c6 
					 
					
						
						
							
							Delta CRL support in extension code.  
						
						 
						
						
						
						
					 
					
						2004-07-06 17:26:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						531b538df5 
					 
					
						
						
							
							Ooops, missed part of PKCS#8 patch.  
						
						 
						
						
						
						
					 
					
						2004-07-06 17:25:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						637ff35ef6 
					 
					
						
						
							
							Delta CRL support in extension code.  
						
						 
						
						
						
						
					 
					
						2004-07-06 17:16:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ace3ebd661 
					 
					
						
						
							
							Improve error handling if decompression of an ec point fails, and cleanup  
						
						 
						
						... 
						
						
						
						ec_curve.c (unify comments, etc).
Submitted by: Nils Larsch
Reviewed by: Bodo Moeller, Geoff Thorpe 
						
						
					 
					
						2004-07-06 15:50:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eea674567c 
					 
					
						
						
							
							Delete non-POSIX header file.  
						
						 
						
						
						
						
					 
					
						2004-07-04 16:48:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c39c32dd65 
					 
					
						
						
							
							PKCS#8 fixes from stable branch.  
						
						 
						
						
						
						
					 
					
						2004-07-04 16:44:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						49ede900fa 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2004-07-04 16:36:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7c6cf1b176 
					 
					
						
						
							
							Don't try to parse none string types.  
						
						 
						
						
						
						
					 
					
						2004-07-01 18:50:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0efea28dcb 
					 
					
						
						
							
							Don't try to parse non string types.  
						
						 
						
						
						
						
					 
					
						2004-07-01 18:15:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4bab9b763d 
					 
					
						
						
							
							Stop compiler warnings with debug-steve  
						
						 
						
						
						
						
					 
					
						2004-07-01 18:14:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fa5cea169a 
					 
					
						
						
							
							Explain a little better what BN_num_bits() and BN_num_bits_word() do.  
						
						 
						
						... 
						
						
						
						Add a note as to how these functions do not always return the key size, and
how one can deal with that.
PR: 907 
						
						
					 
					
						2004-07-01 12:33:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						70696f4525 
					 
					
						
						
							
							Explain a little better what BN_num_bits() and BN_num_bits_word() do.  
						
						 
						
						... 
						
						
						
						Add a note as to how these functions do not always return the key size, and
how one can deal with that.
PR: 907 
						
						
					 
					
						2004-07-01 12:33:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						80bbc9ceaf 
					 
					
						
						
							
							Minor (+12% on P4) performance tweak for sha512_block_sse2.  
						
						 
						
						
						
						
					 
					
						2004-07-01 11:29:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						51ce5230cd 
					 
					
						
						
							
							AES assembler implementation for IA-64. Note that there is no anchor from  
						
						 
						
						... 
						
						
						
						C code yet... 
						
						
					 
					
						2004-07-01 11:15:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b6d8ba11e9 
					 
					
						
						
							
							New SHA algorithms  assembler implementation for IA-64. Note that despite  
						
						 
						
						... 
						
						
						
						module name both SHA-256 and SHA-512 are supported. 
						
						
					 
					
						2004-07-01 11:13:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e2f2a9af2c 
					 
					
						
						
							
							New scalable bn_mul_add_words loop, which provides up to >20% overall  
						
						 
						
						... 
						
						
						
						performance improvement. Make module more gcc friendly and clarify
copyright issues for division routine. 
						
						
					 
					
						2004-07-01 11:10:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28a8003467 
					 
					
						
						
							
							Changes for VOS, submitted by Paul Green <Paul.Green@stratus.com>.  
						
						 
						
						... 
						
						
						
						PR: 499 
						
						
					 
					
						2004-06-28 22:01:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						83f22920c2 
					 
					
						
						
							
							Changes for VOS, submitted by Paul Green <Paul.Green@stratus.com>.  
						
						 
						
						... 
						
						
						
						PR: 499 
						
						
					 
					
						2004-06-28 22:01:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bec15f2109 
					 
					
						
						
							
							Make sure the FIPS stuff is only really compiled when in FIPS mode.  
						
						 
						
						
						
						
					 
					
						2004-06-28 20:33:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43c0d77296 
					 
					
						
						
							
							Make the tests of EVP operations without padding.  As a consequence,  
						
						 
						
						... 
						
						
						
						there's no need for a larger BUFSIZE any more...
PR: 904 
						
						
					 
					
						2004-06-28 16:32:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						563cd0f2b0 
					 
					
						
						
							
							Make the tests of EVP operations without padding.  As a consequence,  
						
						 
						
						... 
						
						
						
						there's no need for a larger BUFSIZE any more...
PR: 904 
						
						
					 
					
						2004-06-28 16:32:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						46b7624b8e 
					 
					
						
						
							
							Make sure that the buffers are large enough to contain padding.  
						
						 
						
						... 
						
						
						
						PR: 904 
						
						
					 
					
						2004-06-28 12:23:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3ac0f28837 
					 
					
						
						
							
							Make sure that the buffers are large enough to contain padding.  
						
						 
						
						... 
						
						
						
						PR: 904 
						
						
					 
					
						2004-06-28 12:23:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						47c1735acd 
					 
					
						
						
							
							NetWare fixes provided by Verdon Walker for OpenSSL 0.9.8-dev.  
						
						 
						
						... 
						
						
						
						The changes have been mailed to <crypt@bis.doc.gov > as well.
PR: 903 
						
						
					 
					
						2004-06-28 11:55:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9e356100d0 
					 
					
						
						
							
							Linux on ARM needs -ldl  
						
						 
						
						... 
						
						
						
						PR: 905 
						
						
					 
					
						2004-06-28 10:31:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7d3932e8cf 
					 
					
						
						
							
							Linux on ARM needs -ldl  
						
						 
						
						... 
						
						
						
						PR: 905 
						
						
					 
					
						2004-06-28 10:31:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8a60547896 
					 
					
						
						
							
							Reformat pkcs8 source.  
						
						 
						
						
						
						
					 
					
						2004-06-24 13:10:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7ca482062f 
					 
					
						
						
							
							Memory leak fixes from main branch.  
						
						 
						
						
						
						
					 
					
						2004-06-24 13:05:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef4c5802ec 
					 
					
						
						
							
							Reformat source for pkcs8.c  
						
						 
						
						
						
						
					 
					
						2004-06-24 12:54:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						fee38dcb9a 
					 
					
						
						
							
							Return an error if an attempt is made to encode or decode  
						
						 
						
						... 
						
						
						
						cipher ASN1 parameters and the cipher doesn't support it. 
						
						
					 
					
						2004-06-24 12:31:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c116de76ad 
					 
					
						
						
							
							Include <string.h> to get definition of strcmp.  
						
						 
						
						
						
						
					 
					
						2004-06-24 12:12:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6069bdbe27 
					 
					
						
						
							
							Standard sh doesn't tolerate ! as part of the conditional command.  
						
						 
						
						... 
						
						
						
						PR: 900 
						
						
					 
					
						2004-06-21 18:05:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						871fe9107d 
					 
					
						
						
							
							Make sure we don't try to loop over an empty EXHEADER.  In the  
						
						 
						
						... 
						
						
						
						Makefiles where this was fixed by commenting away code, change it to
check for an empty EXHEADER instead, so we have less hassle in a
future where EXHEADER changes.
PR: 900 
						
						
					 
					
						2004-06-21 09:07:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d459e39012 
					 
					
						
						
							
							Tidy up, including;  
						
						 
						
						... 
						
						
						
						- Remove unused and unuseful debug cruft.
- Remove unnecessary 'top' fudging from BN_copy().
- Fix a potential memory leak and simplify the expansion logic in
  BN_bin2bn().
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-06-20 04:16:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2663f39ff9 
					 
					
						
						
							
							Add primality tester.  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:54:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						9f0856208b 
					 
					
						
						
							
							Make make tags make tags.  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:32:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						fb4de3deed 
					 
					
						
						
							
							Update ignores.  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:18:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						4d4716dc03 
					 
					
						
						
							
							Add Diffie-Hellman to FIPS.  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:16:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						b5e4469150 
					 
					
						
						
							
							The version that was actually submitted for FIPS testing.  
						
						 
						
						
						
						
					 
					
						2004-06-19 13:15:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						340f5856ec 
					 
					
						
						
							
							Incomplete initial sweep over the engine code. Mainly reducing some  
						
						 
						
						... 
						
						
						
						comment-noise to managable levels and inverting the sense of the "uptodate"
boolean (which was counter-intuitive the way I'd left it). 
						
						
					 
					
						2004-06-19 03:58:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						df11e1e921 
					 
					
						
						
							
							Deprecate unused cruft, and "make update".  
						
						 
						
						
						
						
					 
					
						2004-06-17 23:50:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6a6592962c 
					 
					
						
						
							
							Attempt to bring the 'engine' documentation up to date w.r.t missing  
						
						 
						
						... 
						
						
						
						prototypes, etc. Also, some fairly significant edits were made to the text
(who wrote this crap anyway? oh wait ...), removing stuff which is
overkill, rewriting stuff that was opaque, correcting things that were just
downright false, etc. 
						
						
					 
					
						2004-06-17 23:40:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						1275c4569e 
					 
					
						
						
							
							Minor change to group like functions together.  
						
						 
						
						
						
						
					 
					
						2004-06-17 23:35:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						afbe74d386 
					 
					
						
						
							
							Actually, that last change to BN_get_word() was a little too simple.  
						
						 
						
						
						
						
					 
					
						2004-06-17 22:05:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f18ea6cae9 
					 
					
						
						
							
							Get rid of signed/unsigned warnings, and teach CVS about new things to  
						
						 
						
						... 
						
						
						
						ignore. 
						
						
					 
					
						2004-06-17 20:28:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c9ff40cecd 
					 
					
						
						
							
							Tweak my debug target flags.  
						
						 
						
						
						
						
					 
					
						2004-06-17 20:26:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9088d5f24f 
					 
					
						
						
							
							As Nils put it;  
						
						 
						
						... 
						
						
						
						Yet another question: some time ago you changed BN_set_word.
    Why didn't you change BN_get_word as well?
Quite. I'm also removing the older commented-out implementations to improve
readability. This complex stuff seems to date from a time when the types
didn't match up well.
Submitted by: Nils Larsch, Geoff Thorpe 
						
						
					 
					
						2004-06-17 20:13:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						cf9056cfda 
					 
					
						
						
							
							BN_div_word() was breaking when called from BN_bn2dec() (actually, this is  
						
						 
						
						... 
						
						
						
						the only function that uses it) because it would trip up an assertion in
bn_div_words() when first invoked. This also adds BN_div_word() testing to
bntest.
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-06-17 20:03:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f7fc4ca1dd 
					 
					
						
						
							
							Making some values explicitely unsigned was derived from ongoing work  
						
						 
						
						... 
						
						
						
						that isn't yet committed.  It wasn't meant to be committed already, so
I'm removing it for now. 
						
						
					 
					
						2004-06-15 12:52:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3e00d6c4bb 
					 
					
						
						
							
							Typo, setting the first element of nids[] to NULL instead of setting  
						
						 
						
						... 
						
						
						
						*cnids. 
						
						
					 
					
						2004-06-15 11:46:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						132fc53223 
					 
					
						
						
							
							Typo, setting the first element of nids[] to NULL instead of setting  
						
						 
						
						... 
						
						
						
						*cnids. 
						
						
					 
					
						2004-06-15 11:45:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b3b6720944 
					 
					
						
						
							
							Correct the return codes for ecdsatest.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-06-14 23:37:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						9f6ea7163b 
					 
					
						
						
							
							More precise explanation of session id context requirements.  
						
						 
						
						
						
						
					 
					
						2004-06-14 13:27:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						5e86220660 
					 
					
						
						
							
							More precise explanation of session id context requirements.  
						
						 
						
						
						
						
					 
					
						2004-06-14 13:26:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						385c8e89f4 
					 
					
						
						
							
							SHA fails to compile on x86_64 if compiled with custom flags, without  
						
						 
						
						... 
						
						
						
						recommended -DMD32_REG_T=int in particular.
PR: 893
Submitted by: Michal Ludvig <michal-list@logix.cz > 
						
						
					 
					
						2004-06-11 17:50:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						263e3151e2 
					 
					
						
						
							
							"no-engine" was being ignored, so remove it from the advertised syntax.  
						
						 
						
						... 
						
						
						
						Also remove some commented-out lines of code that deny CVS its purpose. 
						
						
					 
					
						2004-06-03 03:34:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9081980565 
					 
					
						
						
							
							This fixes the installation target for dynamic engines, which was trying to  
						
						 
						
						... 
						
						
						
						install to a different location than it had created. (BTW, VMS will need a
matching fix in eng_list.c.) Note, these aren't ssl-specific, so I'm
putting "engines/" into the libs directory rather than at the "--prefix"
level or inside "ssl/". 
						
						
					 
					
						2004-06-01 03:18:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						393b704d28 
					 
					
						
						
							
							Minimal work-around for ./engine shared builds. "Minimal" means that I  
						
						 
						
						... 
						
						
						
						think that proper Makefile clean-up is required. 
						
						
					 
					
						2004-05-31 22:29:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bef26f1158 
					 
					
						
						
							
							32-bit PA-RISC requires -Bsymbolic when linking libcrypto.sl. Without  
						
						 
						
						... 
						
						
						
						this flag RAND_poll ends up in end-less loop calling RAND_add. But
don't ask me why... 
						
						
					 
					
						2004-05-31 17:10:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bc1ca8605c 
					 
					
						
						
							
							Working on HP-UX shared support...  
						
						 
						
						
						
						
					 
					
						2004-05-31 14:50:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ad5003409d 
					 
					
						
						
							
							Mention new SHA algorithms in CHANGES. This completes the integration.  
						
						 
						
						
						
						
					 
					
						2004-05-31 14:03:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						057cfaf2f8 
					 
					
						
						
							
							Extend HMAC_MAX_MD_CBLOCK to accomodate SHA-512.  
						
						 
						
						
						
						
					 
					
						2004-05-31 13:28:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						914d36ba19 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-31 13:16:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31c2ac1cdc 
					 
					
						
						
							
							EVP bindings to new SHA algorithms.  
						
						 
						
						
						
						
					 
					
						2004-05-31 13:14:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6bca8e3886 
					 
					
						
						
							
							objects.txt update for SHA-224/-256/-384/-512. SHA-224 ids still appear  
						
						 
						
						... 
						
						
						
						"draft," but we have to start somewhere...
Submitted by: Nils Larsch <nlarsch@compuserve.de > 
						
						
					 
					
						2004-05-31 13:07:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63ba7e293f 
					 
					
						
						
							
							Make sha-256/-512 naming in speed.c consistent with their names as they  
						
						 
						
						... 
						
						
						
						will appear at EVP leyer. 
						
						
					 
					
						2004-05-31 12:40:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						31e9b9b2e9 
					 
					
						
						
							
							Typo in commentary section.  
						
						 
						
						
						
						
					 
					
						2004-05-31 12:30:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7997b13aa3 
					 
					
						
						
							
							Final SHA-256/-512 touches. Extra md_len field in SHA[256|512]_CTX  
						
						 
						
						... 
						
						
						
						reserves for truncated hash function output mode and makes SHA224
thread-safe. Next stop is integration with EVP and we're done... 
						
						
					 
					
						2004-05-31 12:26:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						a2eb9688a4 
					 
					
						
						
							
							Kill unused macro and reimplement it for that single context it can  
						
						 
						
						... 
						
						
						
						actually be used, namely x86* platforms [because they don't bomb on
unaligned access]. This resulted in 30-40% [depending on message
length] improvement for SHA-256 compiled with gcc and running on P4.
In the lack of assembler implementation I give the compiler all the
help it can possibly get:-) 
						
						
					 
					
						2004-05-31 12:06:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af2bf07404 
					 
					
						
						
							
							SHA224_Update() and SHA224_Final() aren't implemented, and since  
						
						 
						
						... 
						
						
						
						SHA224() uses SHA256_Update() and SHA256_Final() instead, let's just
create aliases in form of macros.
make update 
						
						
					 
					
						2004-05-30 16:58:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8c5dfa4c99 
					 
					
						
						
							
							Typo in linux-ppc64 target.  
						
						 
						
						
						
						
					 
					
						2004-05-29 20:32:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8d9fb0f04a 
					 
					
						
						
							
							gcc -Wcast-qual clean-up.  
						
						 
						
						
						
						
					 
					
						2004-05-29 19:11:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						15fd2de37c 
					 
					
						
						
							
							hpux-shared rules to cover even for GNU ld.  
						
						 
						
						
						
						
					 
					
						2004-05-28 22:38:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a83c37294 
					 
					
						
						
							
							Unified hpux-shared rule. Verified with both 32- and 64-bit builds and  
						
						 
						
						... 
						
						
						
						both vendor and GNU compilers. ./engine shared build are still busted.
I mean always were... 
						
						
					 
					
						2004-05-28 22:18:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						674ee8b72d 
					 
					
						
						
							
							Make sure we return 0 if test passed.  
						
						 
						
						
						
						
					 
					
						2004-05-28 21:42:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1809e858bb 
					 
					
						
						
							
							Eliminate compiler warnings and throw in performance table.  
						
						 
						
						
						
						
					 
					
						2004-05-28 10:15:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						2bbc970e10 
					 
					
						
						
							
							Attempt to unify hpux-shared rules. More adjustments might be required  
						
						 
						
						... 
						
						
						
						after more tests... 
						
						
					 
					
						2004-05-27 22:23:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						da8348e938 
					 
					
						
						
							
							SHA-224 test vectors added.  
						
						 
						
						
						
						
					 
					
						2004-05-27 19:46:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4313847660 
					 
					
						
						
							
							Make sure o_str.h is reachable.  
						
						 
						
						
						
						
					 
					
						2004-05-27 10:19:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3844adbf58 
					 
					
						
						
							
							Run an installation of FIPS stuff as well.  
						
						 
						
						
						
						
					 
					
						2004-05-27 10:07:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d8e2073449 
					 
					
						
						
							
							Compile the FIPS directory on VMS as well.  fips-lib.com is  
						
						 
						
						... 
						
						
						
						essentially a copy of crypto-lib.com, with just a few edits. 
						
						
					 
					
						2004-05-27 10:04:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e9f7ebd674 
					 
					
						
						
							
							Copy the FIPS files to the temporary openssl include directory.  
						
						 
						
						
						
						
					 
					
						2004-05-27 09:33:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ef16f45081 
					 
					
						
						
							
							Since num is now a size_t, it's not necssary to check for less than 0,  
						
						 
						
						... 
						
						
						
						AND it avoids warnings on certain systems. 
						
						
					 
					
						2004-05-27 09:20:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d692e1ba0 
					 
					
						
						
							
							Synchronise VMS with the Unixly Malefiles.  
						
						 
						
						
						
						
					 
					
						2004-05-26 17:05:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6577e16920 
					 
					
						
						
							
							Documentation note for Win32 glue between BIO layer and compiler run-time.  
						
						 
						
						
						
						
					 
					
						2004-05-25 20:32:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3fc378aa0b 
					 
					
						
						
							
							Framework for glueing BIO layer and Win32 compiler run-time. Goal is to  
						
						 
						
						... 
						
						
						
						make it possible to produce for a unified binary build, which can be
used with a variety of Win32 compilers. 
						
						
					 
					
						2004-05-25 20:31:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f2bfbcef76 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-25 09:41:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6713a4835f 
					 
					
						
						
							
							Move some COMP functions to be inside the #ifndef OPENSSL_NO_COMP  
						
						 
						
						... 
						
						
						
						wrapping preprocessor directive.  This also removes a duplicate
declaration. 
						
						
					 
					
						2004-05-20 23:47:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						46ceb15c39 
					 
					
						
						
							
							SHA-256/-512 test and benchmark.  
						
						 
						
						
						
						
					 
					
						2004-05-20 21:49:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						109d3123c3 
					 
					
						
						
							
							While size_t-fying let's not forget to update documentation:-)  
						
						 
						
						
						
						
					 
					
						2004-05-20 21:39:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						63077bd40c 
					 
					
						
						
							
							SHA-256/-512 update. A bug fix, SHA-512 tune-up for AMD64, hook for SSE2  
						
						 
						
						... 
						
						
						
						code, Makefile update. 
						
						
					 
					
						2004-05-20 21:24:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						df364f1b00 
					 
					
						
						
							
							Stress collector/padding function.  
						
						 
						
						
						
						
					 
					
						2004-05-20 21:20:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						bc767216d9 
					 
					
						
						
							
							Final API adaptation. Final, "all openssl" performance numbers [not mixture  
						
						 
						
						... 
						
						
						
						of different implementations]. Real-life performance improvement is rated
at 2-3x, not 6x as preliminary announced. 
						
						
					 
					
						2004-05-20 21:18:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cacd830f02 
					 
					
						
						
							
							Delete unused function from libeay.num, replace with one  
						
						 
						
						... 
						
						
						
						that does exist. 
						
						
					 
					
						2004-05-19 17:08:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						eda52e175a 
					 
					
						
						
							
							Delete obsolete and unimplemented function.  
						
						 
						
						
						
						
					 
					
						2004-05-19 17:05:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						665560e9a4 
					 
					
						
						
							
							Add SHA256 and SHA512 algorithms to mkdef.pl.  
						
						 
						
						... 
						
						
						
						Fix mkdef.pl script to avoid infinite loop when
parsing sha.h. 
						
						
					 
					
						2004-05-19 17:03:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4fc8b5bf4 
					 
					
						
						
							
							X509_policy_lib_init is declared but not defined, so it raises havoc  
						
						 
						
						... 
						
						
						
						when trying to build a shared library on VMS or Windows... 
						
						
					 
					
						2004-05-19 14:19:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5affe206e1 
					 
					
						
						
							
							Define FIPS_*_SIZE_T for AES, DSA and RSA as well, in preparation for  
						
						 
						
						... 
						
						
						
						size_t-ification of those algorithms in future version of OpenSSL... 
						
						
					 
					
						2004-05-19 14:16:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9c52d2cc75 
					 
					
						
						
							
							After the latest round of header-hacking, regenerate the dependencies in  
						
						 
						
						... 
						
						
						
						the Makefiles. NB: this commit is probably going to generate a huge posting
and it is highly uninteresting to read. 
						
						
					 
					
						2004-05-17 19:26:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0f814687b9 
					 
					
						
						
							
							Deprecate the recursive includes of bn.h from various API headers (asn1.h,  
						
						 
						
						... 
						
						
						
						dh.h, dsa.h, ec.h, ecdh.h, ecdsa.h, rsa.h), as the opaque bignum types are
already declared in ossl_typ.h. Add explicit includes for bn.h in those C
files that need access to structure internals or API functions+macros. 
						
						
					 
					
						2004-05-17 19:14:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f0eae953e2 
					 
					
						
						
							
							Remove some unnecessary recursive includes from the internal apps.h header,  
						
						 
						
						... 
						
						
						
						and include bn.h in those C files that need bignum functionality. 
						
						
					 
					
						2004-05-17 19:05:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						298a2f9e58 
					 
					
						
						
							
							Because of recent reductions in header interdependencies, these files need  
						
						 
						
						... 
						
						
						
						to include crypto.h directly. 
						
						
					 
					
						2004-05-17 19:01:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ac0d0a5ecd 
					 
					
						
						
							
							I can't verify this directly, but recent changes will probably require that  
						
						 
						
						... 
						
						
						
						the cryptodev implementation include bn.h directly (when building with
OPENSSL_NO_DEPRECATED that is). 
						
						
					 
					
						2004-05-17 18:58:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f15390bdb4 
					 
					
						
						
							
							The inclusion of bn.h from the engine.h API header has been deprecated, so  
						
						 
						
						... 
						
						
						
						the engine implementations need to include bn.h to manipulate bignums. 
						
						
					 
					
						2004-05-17 18:56:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d095b68d63 
					 
					
						
						
							
							Deprecate quite a few recursive includes from the ssl.h API header and  
						
						 
						
						... 
						
						
						
						remove some unnecessary includes from the internal header ssl_locl.h. This
then requires adding includes for bn.h in four C files. 
						
						
					 
					
						2004-05-17 18:53:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						508999fa7d 
					 
					
						
						
							
							Deprecate some recursive includes from the store.h API header, and put back  
						
						 
						
						... 
						
						
						
						required includes back via the internal header and str_lib.c. 
						
						
					 
					
						2004-05-17 18:49:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						210a21bc8d 
					 
					
						
						
							
							Reduce dependencies on crypto.h by moving the opaque definition of  
						
						 
						
						... 
						
						
						
						CRYPTO_EX_DATA and the new/free/dup callback prototypes to ossl_typ.h. 
						
						
					 
					
						2004-05-17 18:39:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						678c1e025b 
					 
					
						
						
							
							Moving opaque definitions to ossl_typ.h lets us reduce header dependencies.  
						
						 
						
						... 
						
						
						
						Deprecate inclusion of crypto.h from ui.h. 
						
						
					 
					
						2004-05-17 18:01:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1ab61a9179 
					 
					
						
						
							
							Make reservations for FIPS code in HEAD branch, so that the moment FIPS  
						
						 
						
						... 
						
						
						
						comes in we have required macros in place. 
						
						
					 
					
						2004-05-17 15:49:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1f4eccaaa5 
					 
					
						
						
							
							Make reservations in FIPS code for upcoming size_t-fication of OpenSSL API.  
						
						 
						
						... 
						
						
						
						And couple of bug-fixes in fips/rand code [return without lock release and
incorrect return value in fips_rand_bytes]. 
						
						
					 
					
						2004-05-17 15:37:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						07bf82a71d 
					 
					
						
						
							
							Typo corretced.  
						
						 
						
						
						
						
					 
					
						2004-05-17 04:47:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43d6233a22 
					 
					
						
						
							
							Rewrite the usage to avoid confusion.  
						
						 
						
						
						
						
					 
					
						2004-05-17 04:40:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						736ce650c6 
					 
					
						
						
							
							Make it possible for the user to choose the digest used to create the  
						
						 
						
						... 
						
						
						
						key. 
						
						
					 
					
						2004-05-17 04:39:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a8bb3d0e15 
					 
					
						
						
							
							When in FIPS mode, use SHA1 to digest the key, rather than MD5, as MD5  
						
						 
						
						... 
						
						
						
						isn't a FIPS-approved algorithm.
Note: this means the user needs to keep track of this, and we need to
add support for that... 
						
						
					 
					
						2004-05-17 04:31:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f27a152f69 
					 
					
						
						
							
							Make sure the applications know when we are running in FIPS mode.  We  
						
						 
						
						... 
						
						
						
						can't use the variable in libcrypto, since it's supposedly unknown.
Note: currently only supported in MONOLITH mode. 
						
						
					 
					
						2004-05-17 04:30:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						63d494b22c 
					 
					
						
						
							
							Generate SHA1 files on Windows and other platforms supported by  
						
						 
						
						... 
						
						
						
						mk1mf.pl, when building in FIPS mode.
Note: UNTESTED! 
						
						
					 
					
						2004-05-17 04:28:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d6dda126b7 
					 
					
						
						
							
							Make some more API types opaquely available from ossl_typ.h, meaning the  
						
						 
						
						... 
						
						
						
						corresponding headers are only required for API functions or structure
details. This now includes the bignum types and BUF_MEM. Subsequent commits
will remove various dependencies on bn.h and buffer.h and update the
makefile dependencies. 
						
						
					 
					
						2004-05-15 18:32:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7771b6c5b5 
					 
					
						
						
							
							This file implements various functions that have since been redefined as  
						
						 
						
						... 
						
						
						
						macros. I'm removing this from the NO_DEPRECATED build. 
						
						
					 
					
						2004-05-15 18:26:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4843acc868 
					 
					
						
						
							
							Fixes so alerts are sent properly in s3_pkt.c  
						
						 
						
						... 
						
						
						
						PR: 851 
						
						
					 
					
						2004-05-15 17:55:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						9ac9a29407 
					 
					
						
						
							
							Fix self-tests, ban some things in FIPS mode, fix copyrights.  
						
						 
						
						
						
						
					 
					
						2004-05-15 17:51:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bdb4a7e092 
					 
					
						
						
							
							Fixes so alerts are sent properly in s3_pkt.c  
						
						 
						
						... 
						
						
						
						PR: 851 
						
						
					 
					
						2004-05-15 17:46:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0163602573 
					 
					
						
						
							
							Check error returns.  
						
						 
						
						
						
						
					 
					
						2004-05-15 16:39:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9e0aad9fd6 
					 
					
						
						
							
							size_t-fication of message digest APIs. We should size_t-fy more APIs...  
						
						 
						
						
						
						
					 
					
						2004-05-15 11:29:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1c7a0e2856 
					 
					
						
						
							
							Reimplement old functions, so older software that link to libcrypto  
						
						 
						
						... 
						
						
						
						don't crash and burn. 
						
						
					 
					
						2004-05-14 17:56:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bac2e26a9e 
					 
					
						
						
							
							Reimplement old functions, so older software that link to libcrypto  
						
						 
						
						... 
						
						
						
						don't crash and burn. 
						
						
					 
					
						2004-05-14 17:55:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						10eae14f9b 
					 
					
						
						
							
							All EVP_*_cfb functions have changed names to EVP_*_cfb64 or  
						
						 
						
						... 
						
						
						
						EVP_*_cfb128. 
						
						
					 
					
						2004-05-14 17:54:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						745c7356c2 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-13 22:41:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e31c121315 
					 
					
						
						
							
							o_str.h is not an exported header.  
						
						 
						
						
						
						
					 
					
						2004-05-13 22:40:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dbf2ac31c9 
					 
					
						
						
							
							Synchronise o_str.c between 0.9.8-dev and 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2004-05-13 22:40:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						abd23881c1 
					 
					
						
						
							
							Synchronise o_str.c between 0.9.8-dev and 0.9.7-stable.  
						
						 
						
						
						
						
					 
					
						2004-05-13 22:39:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1739eb2d6 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-13 21:38:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4108d365bf 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-13 21:38:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2faa930bb0 
					 
					
						
						
							
							Let's make life easier and have the VMS version of the configuration be  
						
						 
						
						... 
						
						
						
						generated from the Unixly configuration file. 
						
						
					 
					
						2004-05-13 21:38:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						03ef2c333c 
					 
					
						
						
							
							Let's make life easier and have the VMS version of the configuration be  
						
						 
						
						... 
						
						
						
						generated from the Unixly configuration file. 
						
						
					 
					
						2004-05-13 21:38:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						e14f4aab0a 
					 
					
						
						
							
							CHANGES to mention improved PowerPC platform support.  
						
						 
						
						
						
						
					 
					
						2004-05-13 13:58:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c842261b1b 
					 
					
						
						
							
							SHA-224/-256/-384/-512 implementation. This is just sheer code commit.  
						
						 
						
						... 
						
						
						
						Makefile modifications, make test, etc. will appear later... 
						
						
					 
					
						2004-05-13 13:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7922ba2feb 
					 
					
						
						
							
							Make self signing option of 'x509' use random serial numbers too.  
						
						 
						
						
						
						
					 
					
						2004-05-12 18:20:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						df368ecce4 
					 
					
						
						
							
							Make self signing option of 'x509' use random serial numbers too.  
						
						 
						
						
						
						
					 
					
						2004-05-12 18:20:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d94b22235f 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						
						
						
					 
					
						2004-05-12 17:53:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						72d75ee206 
					 
					
						
						
							
							Blow up in people's faces if they don't reseed.  
						
						 
						
						
						
						
					 
					
						2004-05-12 14:11:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						49bc4c1023 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-05-12 10:17:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0e92f7738a 
					 
					
						
						
							
							Forgot to update the Makefile with the o_str stuff...  
						
						 
						
						
						
						
					 
					
						2004-05-12 10:17:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d529f2a8f7 
					 
					
						
						
							
							The functions OPENSSL_strcasen?cmp() were forgotten when merging the  
						
						 
						
						... 
						
						
						
						FIPS branch into this.  It's needed at least for certain OpenVMS
versions, and should really be used in a more general way. 
						
						
					 
					
						2004-05-12 10:09:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						141a64faff 
					 
					
						
						
							
							Ignore 'Makefile.save'  
						
						 
						
						
						
						
					 
					
						2004-05-12 10:07:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						035dcd3724 
					 
					
						
						
							
							Ignore the 'lib' timestamp file.  
						
						 
						
						
						
						
					 
					
						2004-05-12 08:46:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3e9c37a386 
					 
					
						
						
							
							I forgot to modify the signature for fips_rand.c...  
						
						 
						
						
						
						
					 
					
						2004-05-12 08:42:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						00a59641ee 
					 
					
						
						
							
							Only really build this file when OPENSSL_FIPS is defined.  And oh,  
						
						 
						
						... 
						
						
						
						let's keep internal variables static. 
						
						
					 
					
						2004-05-12 08:28:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						90cce79346 
					 
					
						
						
							
							Makefile.ssl changed name to Makefile.  
						
						 
						
						
						
						
					 
					
						2004-05-12 08:28:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4eeaf52ed9 
					 
					
						
						
							
							Only check for FIPS signatures when FIPS is enabled.  
						
						 
						
						
						
						
					 
					
						2004-05-12 08:27:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						3642f632d3 
					 
					
						
						
							
							Pull FIPS back into stable.  
						
						 
						
						
						
						
					 
					
						2004-05-11 12:46:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1e6bccc240 
					 
					
						
						
							
							SSE2 SHA512_Transform implementation. No, it's not used anywhere yet and  
						
						 
						
						... 
						
						
						
						is subject to change as C implementation is added... 
						
						
					 
					
						2004-05-06 10:41:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d3adc3d3ed 
					 
					
						
						
							
							SSE2 accelerated bn_mul_add_words. Code is currently disabled till proper  
						
						 
						
						... 
						
						
						
						config and run-time support is added.
PR: 788
Submitted by: <dean@arctic.org >
Reviewed by: <appro>
Obtained from: http://arctic.org/~dean/crypto/rsa.html  
						
						
					 
					
						2004-05-06 10:36:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						10e7d6d526 
					 
					
						
						
							
							Support for IA-32 SSE2 instruction set.  
						
						 
						
						
						
						
					 
					
						2004-05-06 10:31:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aaa16d0001 
					 
					
						
						
							
							Remove the creation of $(INSTALL_PREFIX)$(OPENSSLDIR)/lib, since we don't  
						
						 
						
						... 
						
						
						
						use it.
Notified by Frédéric L. W. Meunier <0@pervalidus.tk > in PR 713 
						
						
					 
					
						2004-05-06 09:46:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d472bdd84 
					 
					
						
						
							
							Remove the creation of $(INSTALL_PREFIX)$(OPENSSLDIR)/lib, since we don't  
						
						 
						
						... 
						
						
						
						use it.
Notified by Frédéric L. W. Meunier <0@pervalidus.tk > in PR 713 
						
						
					 
					
						2004-05-06 09:46:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						430d7afd80 
					 
					
						
						
							
							When the pointer 'from' changes, it's stored length needs to change as  
						
						 
						
						... 
						
						
						
						well.
Notified by Frank Kardel <kardel@acm.org > in PR 879. 
						
						
					 
					
						2004-05-06 09:33:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3b8ba6b610 
					 
					
						
						
							
							When the pointer 'from' changes, it's stored length needs to change as  
						
						 
						
						... 
						
						
						
						well.
Notified by Frank Kardel <kardel@acm.org > in PR 879. 
						
						
					 
					
						2004-05-06 09:31:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ca982e4870 
					 
					
						
						
							
							Fix realloc usage in ec_curve.c  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-05-04 20:08:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d5f686d808 
					 
					
						
						
							
							- update from current 0.9.6-stable CHANGES file  
						
						 
						
						... 
						
						
						
						- update from current 0.9.7-stable CHANGES file:
  Now here we have "CHANGES between 0.9.7e and 0.9.8", and I hope
  that all patches mentioned for 0.9.7d and 0.9.7e actually are
  in the CVS HEAD, i.e. what is to become 0.9.8.
  I have rewritten the 'openssl ca -create_serial' entry (0.9.8)
  so that it explains the earlier change that is now listed (0.9.7e).
  The ENGINE_set_default typo bug entry has been moved from 0.9.8
  to 0.9.7b, which is where it belongs. 
						
						
					 
					
						2004-05-04 01:15:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						535aef9def 
					 
					
						
						
							
							update from current 0.9.6-stable CHANGES file  
						
						 
						
						
						
						
					 
					
						2004-05-04 01:08:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						08e1cbc62c 
					 
					
						
						
							
							The new BN_CTX code makes this sort of abuse unnecessary.  
						
						 
						
						
						
						
					 
					
						2004-04-28 18:34:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						b6b4fdc9e2 
					 
					
						
						
							
							Oops! Typo in ./config...  
						
						 
						
						
						
						
					 
					
						2004-04-27 22:17:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						dd55880644 
					 
					
						
						
							
							Improved PowerPC support. Proper ./config support for ppc targets,  
						
						 
						
						... 
						
						
						
						especially for AIX. But most important BIGNUM assembler implementation
submitted by IBM.
Submitted by: Peter Waltenberg <pwalten@au1.ibm.com >
Reviewed by: appro 
						
						
					 
					
						2004-04-27 22:05:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd1640bb01 
					 
					
						
						
							
							Make ASN1 code work again...  
						
						 
						
						
						
						
					 
					
						2004-04-27 18:33:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						081991ac01 
					 
					
						
						
							
							With the new dynamic BN_CTX implementation, there should be no need for  
						
						 
						
						... 
						
						
						
						additional contexts. 
						
						
					 
					
						2004-04-27 13:24:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8a85c341fe 
					 
					
						
						
							
							The problem of rsa key-generation getting stuck in a loop for (pointlessly)  
						
						 
						
						... 
						
						
						
						small key sizes seems to result from the code continually regenerating the
same prime value once the range is small enough. From my tests, this change
fixes the problem by setting an escape velocity of 3 repeats for the second
of the two primes.
PR: 874 
						
						
					 
					
						2004-04-26 15:38:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bcfea9fb25 
					 
					
						
						
							
							Allow RSA key-generation to specify an arbitrary public exponent. Jelte  
						
						 
						
						... 
						
						
						
						proposed the change and submitted the patch, I jiggled it slightly and
adjusted the other parts of openssl that were affected.
PR: 867
Submitted by: Jelte Jansen
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-04-26 15:31:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f3f52d7f45 
					 
					
						
						
							
							More ASN1 reformat/tidy.  
						
						 
						
						
						
						
					 
					
						2004-04-25 12:46:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8845420f4e 
					 
					
						
						
							
							Reformat/tidy some of the ASN1 code.  
						
						 
						
						
						
						
					 
					
						2004-04-24 17:02:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d735c64905 
					 
					
						
						
							
							Fix leak.  
						
						 
						
						... 
						
						
						
						PR:870 
						
						
					 
					
						2004-04-22 12:37:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6e308baf5a 
					 
					
						
						
							
							Fix memory leak.  
						
						 
						
						... 
						
						
						
						PR:870 
						
						
					 
					
						2004-04-22 12:33:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5a9d2d9081 
					 
					
						
						
							
							Port the random serial number generation to 0.9.7-stable.  
						
						 
						
						... 
						
						
						
						Due to the changes in CA.pl in 0.9.8 (use of -self_sign) a slightly different
technique is used to ensure that 'ca' uses the next serial number. It
now initializes the serial number using 'openssl x509 -next_serial'. 
						
						
					 
					
						2004-04-22 12:19:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						955d465c2c 
					 
					
						
						
							
							As far as I can tell, the bugfix this comment refers to was committed to  
						
						 
						
						... 
						
						
						
						0.9.7-stable as well as HEAD (and doesn't apply to the 0.9.6-engine
variant). 
						
						
					 
					
						2004-04-21 15:12:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						688791b22b 
					 
					
						
						
							
							Extend the index parameter checking from sk_value to sk_set(). Also tidy up  
						
						 
						
						... 
						
						
						
						some similar code elsewhere.
Thanks to Francesco Petruzzi for bringing this to my attention. 
						
						
					 
					
						2004-04-21 15:09:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8c521c7a34 
					 
					
						
						
							
							Extend the index parameter checking from sk_value to sk_set(). Also tidy up  
						
						 
						
						... 
						
						
						
						some similar code elsewhere.
Thanks to Francesco Petruzzi for bringing this to my attention. 
						
						
					 
					
						2004-04-21 15:08:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77475142ec 
					 
					
						
						
							
							New option to 'x509' -next_serial. This outputs the certificate  
						
						 
						
						... 
						
						
						
						serial number plus 1 to the output file. Its purpose is to allow
serial number files to be initialized when random serial numbers
are used. 
						
						
					 
					
						2004-04-21 12:46:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90fac84066 
					 
					
						
						
							
							Use X509_get_serialNumber() instead of accessing internals in x509.c  
						
						 
						
						
						
						
					 
					
						2004-04-21 12:43:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						64674bcc8c 
					 
					
						
						
							
							Reduce chances of issuer and serial number duplication by use of random  
						
						 
						
						... 
						
						
						
						initial serial numbers.
PR: 842 
						
						
					 
					
						2004-04-20 12:05:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1dc2d655ad 
					 
					
						
						
							
							Whooaaaaa, the BN_CTX_DEBUG macro really produces output these  
						
						 
						
						... 
						
						
						
						days...  A little too much for my tests, currently... 
						
						
					 
					
						2004-04-20 11:53:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						863d2b196f 
					 
					
						
						
							
							Print the debug thingies on stderr instead of stdout.  If for nothing  
						
						 
						
						... 
						
						
						
						else then at least so bc doesn't have problems parsing the output from
bntest :-). 
						
						
					 
					
						2004-04-20 10:57:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c57bc2dc51 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-04-19 18:33:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6c0dcdc211 
					 
					
						
						
							
							"make update" noticed a new function.  
						
						 
						
						
						
						
					 
					
						2004-04-19 18:32:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						28ded31b97 
					 
					
						
						
							
							More updates for the header cleanups (and apologies, again, for not having  
						
						 
						
						... 
						
						
						
						consolidated these prior to committing). 
						
						
					 
					
						2004-04-19 18:30:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0fc07a0f9c 
					 
					
						
						
							
							When generating dependencies in the makefiles, generate the reduced  
						
						 
						
						... 
						
						
						
						dependencies of the OPENSSL_NO_DEPRECATED mode. This prevents dependencies
being reproduced for "deprecated" header behaviour when a developer doesn't
define the symbol (with the subsequent CVS wars that can ensue). 
						
						
					 
					
						2004-04-19 18:19:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						823a67b0a9 
					 
					
						
						
							
							header cleanup in apps/  
						
						 
						
						
						
						
					 
					
						2004-04-19 18:13:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						60a938c6bc 
					 
					
						
						
							
							(oops) Apologies all, that last header-cleanup commit was from the wrong  
						
						 
						
						... 
						
						
						
						tree. This further reduces header interdependencies, and makes some
associated cleanups. 
						
						
					 
					
						2004-04-19 18:09:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						3a87a9b9db 
					 
					
						
						
							
							Reduce header interdependencies, initially in engine.h (the rest of the  
						
						 
						
						... 
						
						
						
						changes are the fallout). As this could break source code that doesn't
directly include headers for interfaces it uses, changes to recursive
includes are covered by the OPENSSL_NO_DEPRECATED symbol. It's better to
define this when building and using openssl, and then adapt code where
necessary - this is how to stay current. However the mechanism exists for
the lethargic. 
						
						
					 
					
						2004-04-19 17:46:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e94e99ccb 
					 
					
						
						
							
							Clear error if unique_subject lookup fails.  
						
						 
						
						
						
						
					 
					
						2004-04-15 00:33:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae44fc1ec4 
					 
					
						
						
							
							Clear error if unique_subject lookup fails.  
						
						 
						
						
						
						
					 
					
						2004-04-15 00:32:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e20db94948 
					 
					
						
						
							
							Add some root CAs.  
						
						 
						
						
						
						
					 
					
						2004-04-13 17:49:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						462a286eeb 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2004-04-13 17:47:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						28722cf212 
					 
					
						
						
							
							Add some root CAs.  
						
						 
						
						
						
						
					 
					
						2004-04-13 17:47:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a110d01771 
					 
					
						
						
							
							Typo.  "pa-rics2W" corrected to "pa-risc2W".  
						
						 
						
						... 
						
						
						
						PR: 868 
						
						
					 
					
						2004-04-02 12:39:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7ef7a1b3de 
					 
					
						
						
							
							Avoid undefined results when the parameter is out of range.  
						
						 
						
						
						
						
					 
					
						2004-04-02 06:25:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2749276b95 
					 
					
						
						
							
							Avoid undefined results when the parameter is out of range.  
						
						 
						
						
						
						
					 
					
						2004-04-02 06:25:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b6a5fdb8a7 
					 
					
						
						
							
							Don't use C++ reserved word.  
						
						 
						
						
						
						
					 
					
						2004-04-01 22:23:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bf5773fa2d 
					 
					
						
						
							
							Oops forgot CHANGES entry.  
						
						 
						
						
						
						
					 
					
						2004-03-31 12:55:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ecf139917d 
					 
					
						
						
							
							New function X509_POLICY_NODE_print()  
						
						 
						
						
						
						
					 
					
						2004-03-31 12:17:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ab23d5ffda 
					 
					
						
						
							
							Add symbol hacks for some long names.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2004-03-29 08:13:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1a979201d5 
					 
					
						
						
							
							This is essentially Intel 32-bit compiler tune-up. To start with all  
						
						 
						
						... 
						
						
						
						available compiler versions generated bogus machine code trying to
compile new crypto/des/cfb_enc.c. Secondly, 8th version defines
__GNUC__ macro, but fails to compile *some* inline assembler correctly.
Note that all versions of icc implement MSC-like _lrot[rl] intrinsic,
which is used now instead of offensive asm. Finally, unnecessary linker
dependencies are eliminated. Most notably dependency from libirc.a
caused trouble at application start-up, if libcrypto.so is linked with
-Bsymbolic (which it is). 
						
						
					 
					
						2004-03-28 21:27:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						216659eb87 
					 
					
						
						
							
							Enhance EVP code to generate random symmetric keys of the  
						
						 
						
						... 
						
						
						
						appropriate form, for example correct DES parity.
Update S/MIME code and EVP_SealInit to use new functions.
PR: 700 
						
						
					 
					
						2004-03-28 17:38:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5d6383c83f 
					 
					
						
						
							
							Make {i2v,v2i}_ASN1_BIT_STRING global.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2004-03-28 12:40:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f36f469430 
					 
					
						
						
							
							Obsolete files.  
						
						 
						
						
						
						
					 
					
						2004-03-28 12:29:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e07d3a021d 
					 
					
						
						
							
							Remove obsolete files.  
						
						 
						
						
						
						
					 
					
						2004-03-28 12:29:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e1a27eb34a 
					 
					
						
						
							
							Allow CRLs to be passed into X509_STORE_CTX. This is useful when the  
						
						 
						
						... 
						
						
						
						verified structure can contain its own CRLs (such as PKCS#7 signedData).
Tidy up some of the verify code. 
						
						
					 
					
						2004-03-27 22:49:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6446e0c3c8 
					 
					
						
						
							
							Extend OID config module format.  
						
						 
						
						
						
						
					 
					
						2004-03-27 13:30:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						beedea2fef 
					 
					
						
						
							
							Free up BIO properly when using streaming S/MIME sign.  
						
						 
						
						
						
						
					 
					
						2004-03-26 00:24:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						34be34fdd0 
					 
					
						
						
							
							Remove BN_CTX debug from debug-steve  
						
						 
						
						
						
						
					 
					
						2004-03-25 23:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0020502a07 
					 
					
						
						
							
							SSL_COMP_get_compression_method is a typo (a missing 's' at the end of  
						
						 
						
						... 
						
						
						
						the symbol name). 
						
						
					 
					
						2004-03-25 21:32:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5cf7908a86 
					 
					
						
						
							
							Move the definition of Win32_rename(), since the macro rename gets undefined  
						
						 
						
						... 
						
						
						
						in the middle of the code on Windows, and that disrupts operations in functions
later that use rename()...
PR: 853 
						
						
					 
					
						2004-03-25 20:09:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d530017c00 
					 
					
						
						
							
							Move the definition of Win32_rename(), since the macro rename gets undefined  
						
						 
						
						... 
						
						
						
						in the middle of the code on Windows, and that disrupts operations in functions
later that use rename()...
PR: 853 
						
						
					 
					
						2004-03-25 20:09:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b7e3c73d7c 
					 
					
						
						
							
							Wrap code starting with a definition.  
						
						 
						
						... 
						
						
						
						PR: 854 
						
						
					 
					
						2004-03-25 20:01:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fd9fa844e2 
					 
					
						
						
							
							Wrap code starting with a definition.  
						
						 
						
						... 
						
						
						
						PR: 854 
						
						
					 
					
						2004-03-25 20:01:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e6784a47e9 
					 
					
						
						
							
							Change spaces to symbols in names.  
						
						 
						
						... 
						
						
						
						PR: 856 
						
						
					 
					
						2004-03-25 19:52:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c2dc3ee8d9 
					 
					
						
						
							
							Change spaces to symbols in names.  
						
						 
						
						... 
						
						
						
						PR: 856 
						
						
					 
					
						2004-03-25 19:52:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						482c2acf02 
					 
					
						
						
							
							Make prototypes for some callback pointers.  
						
						 
						
						
						
						
					 
					
						2004-03-25 16:21:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a481b4b52c 
					 
					
						
						
							
							A couple more cases where RAND_add() gets an integer instead of a  
						
						 
						
						... 
						
						
						
						doule as last argument. 
						
						
					 
					
						2004-03-25 16:04:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a87228031f 
					 
					
						
						
							
							RAND_add() wants a double as it's last argument.  
						
						 
						
						
						
						
					 
					
						2004-03-25 15:52:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b79c82eaab 
					 
					
						
						
							
							Fix loads of warnings in policy code.  
						
						 
						
						... 
						
						
						
						I'll remember to try to compile this with warnings enabled next time :-) 
						
						
					 
					
						2004-03-25 13:45:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						69d1d5e6ce 
					 
					
						
						
							
							Fix ASN1 warnings.  
						
						 
						
						
						
						
					 
					
						2004-03-25 13:37:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c86f2054f3 
					 
					
						
						
							
							Adjust various bignum functions to use BN_CTX for variables instead of  
						
						 
						
						... 
						
						
						
						locally initialising their own.
NB: I've removed the "BN_clear_free()" loops for the exit-paths in some of
these functions, and that may be a major part of the performance
improvements we're seeing. The "free" part can be removed because we're
using BN_CTX. The "clear" part OTOH can be removed because BN_CTX
destruction automatically performs this task, so performing it inside
functions that may be called repeatedly is wasteful. This is currently safe
within openssl due to the fact that BN_CTX objects are never created for
longer than a single high-level operation. However, that is only because
there's currently no mechanism in openssl for thread-local storage. Beyond
that, this might be an issue for applications using the bignum API directly
and caching their own BN_CTX objects. The solution is to introduce a flag
to BN_CTX_start() that allows its variables to be automatically sanitised
on release during BN_CTX_end(). This way any higher-level function (and
perhaps the application) can specify this flag in its own
BN_CTX_start()/BN_CTX_end() pair, and this will cause inner-loop functions
specifying the flag to be ignored so that sanitisation is handled only once
back out at the higher level. I will be implementing this in the near
future. 
						
						
					 
					
						2004-03-25 04:32:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5c98b2caf5 
					 
					
						
						
							
							Replace the BN_CTX implementation with my current work. I'm leaving the  
						
						 
						
						... 
						
						
						
						little TODO list in there as well as the debugging code (only enabled if
BN_CTX_DEBUG is defined).
I'd appreciate as much review and testing as can be spared for this. I'll
commit some changes to other parts of the bignum code shortly to make
better use of this implementation (no more fixed size limitations). Note
also that under identical optimisations, I'm seeing a noticable speed
increase over openssl-0.9.7 - so any feedback to confirm/deny this on other
systems would also be most welcome. 
						
						
					 
					
						2004-03-25 04:16:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5148710994 
					 
					
						
						
							
							Adds warnings about two curves and fixes the "seed" value for two other  
						
						 
						
						... 
						
						
						
						curves.
Submitted by: Nils Larsch 
						
						
					 
					
						2004-03-25 03:03:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ea77fc3380 
					 
					
						
						
							
							... and this should likewise fix up those RSA implementations that weren't  
						
						 
						
						... 
						
						
						
						already built and tested. 
						
						
					 
					
						2004-03-25 02:55:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						46ef873f0b 
					 
					
						
						
							
							By adding a BN_CTX parameter to the 'rsa_mod_exp' callback, private key  
						
						 
						
						... 
						
						
						
						operations no longer require two distinct BN_CTX structures. This may put
more "strain" on the current BN_CTX implementation (which has a fixed limit
to the number of variables it will hold), but so far this limit is not
triggered by any of the tests pass and I will be changing BN_CTX in the
near future to avoid this problem anyway.
This also changes the default RSA implementation code to use the BN_CTX in
favour of initialising some of its variables locally in each function. 
						
						
					 
					
						2004-03-25 02:52:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2d2a5ba32a 
					 
					
						
						
							
							Damn, I was a bit hasty with my fix and hadn't spotted the linker  
						
						 
						
						... 
						
						
						
						dependency from asn1. 
						
						
					 
					
						2004-03-25 02:41:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2bd4e3379f 
					 
					
						
						
							
							Remove some warnings.  
						
						 
						
						
						
						
					 
					
						2004-03-25 02:24:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						032c3ecb18 
					 
					
						
						
							
							Protect against gcc's "warning: cast does not match function type".  
						
						 
						
						
						
						
					 
					
						2004-03-25 02:19:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a0cac0ff75 
					 
					
						
						
							
							Make S/MIME encrypt work again.  
						
						 
						
						
						
						
					 
					
						2004-03-25 00:57:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						817089b66d 
					 
					
						
						
							
							Don't define fd for platforms that do not use it, as some may not declare fileno() properly  
						
						 
						
						
						
						
					 
					
						2004-03-24 10:55:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e703b46598 
					 
					
						
						
							
							Don't define fd for platforms that do not use it, as some may not declare fileno() properly  
						
						 
						
						
						
						
					 
					
						2004-03-24 10:55:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0fa793bc7b 
					 
					
						
						
							
							Correct constness problems.  
						
						 
						
						
						
						
					 
					
						2004-03-24 10:50:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ba5477eb1a 
					 
					
						
						
							
							Make it easier to buld test applications...  
						
						 
						
						
						
						
					 
					
						2004-03-24 10:50:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5c42f62e48 
					 
					
						
						
							
							Only build the PKCS#7 test applications if "pkcs7" is present in  
						
						 
						
						... 
						
						
						
						SDIRS. 
						
						
					 
					
						2004-03-24 10:48:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a08e05d1be 
					 
					
						
						
							
							Add store.h among the exported headers on VMS.  
						
						 
						
						
						
						
					 
					
						2004-03-24 09:52:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d342ec3335 
					 
					
						
						
							
							o_str.h isn't a public header file, so make sure it will still be  
						
						 
						
						... 
						
						
						
						included. 
						
						
					 
					
						2004-03-24 09:43:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3d8b8860cf 
					 
					
						
						
							
							o_str.h isn't a public header file.  
						
						 
						
						
						
						
					 
					
						2004-03-24 09:41:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a0b5ebeac6 
					 
					
						
						
							
							Typo...  
						
						 
						
						
						
						
					 
					
						2004-03-24 09:40:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8ee18dd520 
					 
					
						
						
							
							Make sure toupper() is properly declared.  
						
						 
						
						
						
						
					 
					
						2004-03-24 09:40:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						50f482374d 
					 
					
						
						
							
							Make it clear that for RSA_NO_PADDING, flen must be RSA_size(rsa)  
						
						 
						
						
						
						
					 
					
						2004-03-23 21:01:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f46e76ef50 
					 
					
						
						
							
							Make it clear that for RSA_NO_PADDING, flen must be RSA_size(rsa)  
						
						 
						
						
						
						
					 
					
						2004-03-23 21:01:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ff60944b28 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-03-23 17:52:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e725a9660b 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-03-23 15:06:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d7eed1929b 
					 
					
						
						
							
							Sync the VMS build with Unix.  
						
						 
						
						
						
						
					 
					
						2004-03-23 14:50:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4acc3e907d 
					 
					
						
						
							
							Initial support for certificate policy checking and evaluation.  
						
						 
						
						... 
						
						
						
						This is currently *very* experimental and needs to be more fully integrated
with the main verification code. 
						
						
					 
					
						2004-03-23 14:14:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						00294d0df7 
					 
					
						
						
							
							Correct minor spelling error.  
						
						 
						
						... 
						
						
						
						PR: 845 
						
						
					 
					
						2004-03-21 23:03:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9449e38504 
					 
					
						
						
							
							Correct minor spelling error.  
						
						 
						
						... 
						
						
						
						PR: 845 
						
						
					 
					
						2004-03-21 23:03:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fba03c479f 
					 
					
						
						
							
							Change \t to real tab in echo argument.  
						
						 
						
						... 
						
						
						
						PR: 847 
						
						
					 
					
						2004-03-21 22:50:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b8b0b5d856 
					 
					
						
						
							
							Change \t to real tab in echo argument.  
						
						 
						
						... 
						
						
						
						PR: 847 
						
						
					 
					
						2004-03-21 22:50:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27bf518087 
					 
					
						
						
							
							Remove a warning for conversion double->long.  This has impacts on Windows.  
						
						 
						
						... 
						
						
						
						PR: 849 
						
						
					 
					
						2004-03-21 22:39:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec5d8a54e9 
					 
					
						
						
							
							Remove a warning for conversion double->long.  This has impacts on Windows.  
						
						 
						
						... 
						
						
						
						PR: 849 
						
						
					 
					
						2004-03-21 22:39:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						96a99d63c2 
					 
					
						
						
							
							Make sure fd is defined where it should.  
						
						 
						
						... 
						
						
						
						PR: 849 
						
						
					 
					
						2004-03-21 22:36:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						18a6333180 
					 
					
						
						
							
							Make sure fd is defined where it should.  
						
						 
						
						... 
						
						
						
						PR: 849 
						
						
					 
					
						2004-03-21 22:36:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a9d9b07167 
					 
					
						
						
							
							Merge from HEAD:  
						
						 
						
						... 
						
						
						
						2003-04-03 22:03  levitte
	* apps/apps.c (1.70): Don't try to free NULL values...
Notified by "Steven Reddie" <smr@essemer.com.au > 
						
						
					 
					
						2004-03-19 00:20:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						7f663ce430 
					 
					
						
						
							
							Note my bignum hijinx in case app maintainers are using CHANGES for their  
						
						 
						
						... 
						
						
						
						porting efforts. Also, add Richard's name to the prior change. 
						
						
					 
					
						2004-03-17 18:30:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e042540f6b 
					 
					
						
						
							
							Variety of belt-tightenings in the bignum code. (Please help test this!)  
						
						 
						
						... 
						
						
						
						- Remove some unnecessary "+1"-like fudges. Sizes should be handled
  exactly, as enlarging size parameters causes needless bloat and may just
  make bugs less likely rather than fixing them: bn_expand() macro,
  bn_expand_internal(), and BN_sqr().
- Deprecate bn_dup_expand() - it's new since 0.9.7, unused, and not that
  useful.
- Remove unnecessary zeroing of unused bytes in bn_expand2().
- Rewrite BN_set_word() - it should be much simpler, the previous
  complexities probably date from old mismatched type issues.
- Add missing bn_check_top() macros in bn_word.c
- Improve some degenerate case handling in BN_[add|sub]_word(), add
  comments, and avoid a bignum expansion if an overflow isn't possible. 
						
						
					 
					
						2004-03-17 17:36:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						494593845c 
					 
					
						
						
							
							After tagging  
						
						 
						
						
						
						
					 
					
						2004-03-17 12:03:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Mark J. Cox 
							
						 
					 
					
						
						
							
						
						82d63d3028 
					 
					
						
						
							
							Fix null-pointer assignment in do_change_cipher_spec() revealed  
						
						 
						
						... 
						
						
						
						by using the Codenomicon TLS Test Tool (CAN-2004-0079)
Fix flaw in SSL/TLS handshaking when using Kerberos ciphersuites
(CAN-2004-0112)
Ready for 0.9.7d build
Submitted by: Steven Henson
Reviewed by: Joe Orton
Approved by: Mark Cox 
						
						
					 
					
						2004-03-17 12:01:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e8172d6da 
					 
					
						
						
							
							Avoid warnings.  
						
						 
						
						
						
						
					 
					
						2004-03-16 13:51:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8e6a84e730 
					 
					
						
						
							
							Avoid warnings.  
						
						 
						
						
						
						
					 
					
						2004-03-16 13:50:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						875a644a90 
					 
					
						
						
							
							Constify d2i, s2i, c2i and r2i functions and other associated  
						
						 
						
						... 
						
						
						
						functions and macros.
This change has associated tags: LEVITTE_before_const and
LEVITTE_after_const.  Those will be removed when this change has been
properly reviewed. 
						
						
					 
					
						2004-03-15 23:15:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						95475b1c7a 
					 
					
						
						
							
							As in 0.9.8-dev, make sure we use unsigned constants, or some  
						
						 
						
						... 
						
						
						
						compilers may complain. 
						
						
					 
					
						2004-03-15 23:06:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec37635c94 
					 
					
						
						
							
							It was just pointed out to me that it's better to cast to double...  
						
						 
						
						
						
						
					 
					
						2004-03-15 23:02:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fd836aeee0 
					 
					
						
						
							
							Make sure that the last argument to RAND_add() is a float, or some  
						
						 
						
						... 
						
						
						
						compilers may complain. 
						
						
					 
					
						2004-03-15 22:37:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						560f7abb7e 
					 
					
						
						
							
							Make sure we use unsigned constants, or come compilers may complain.  
						
						 
						
						
						
						
					 
					
						2004-03-15 22:33:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b6358c89a1 
					 
					
						
						
							
							Convert openssl code not to assume the deprecated form of BN_zero().  
						
						 
						
						... 
						
						
						
						Remove certain redundant BN_zero() initialisations, because BN_CTX_get(),
BN_init(), [etc] already initialise to zero.
Correct error checking in bn_sqr.c, and be less wishy-wash about how/why
the result's 'top' value is set (note also, 'max' is always > 0 at this
point). 
						
						
					 
					
						2004-03-13 23:57:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5d735465d1 
					 
					
						
						
							
							The efforts to eliminate the dual-representation of zero and to ensure  
						
						 
						
						... 
						
						
						
						bignums are passed in and out of functions and APIs in a consistent form
has highlighted that zero-valued bignums don't need any allocated word
data. The use of BN_set_word() to initialise a bignum to zero causes
needless allocation and gives it a return value that must be checked. This
change converts BN_zero() to a self-contained macro that has no
return/expression value and does not cause any expansion of bignum data.
Note, it would be tempting to rewrite the deprecated version as a
success-valued comma expression, such as;
   #define BN_zero(a) ((a)->top = (a)->neg = 0, 1)
However, this evaluates 'a' twice and would confuse initialisation loops
(eg. while(..) { BN_zero(bn++) } ). As such, the deprecated version
continues to use BN_set_word(). 
						
						
					 
					
						2004-03-13 23:04:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9e051bac13 
					 
					
						
						
							
							Document a change I'd already made, and at the same time, correct the  
						
						 
						
						... 
						
						
						
						change to work properly; BN_zero() should set 'neg' to zero as well as
'top' to match the behaviour of BN_new(). 
						
						
					 
					
						2004-03-13 22:10:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						30fbcaa213 
					 
					
						
						
							
							IRIX 6.x shared build fix-up.  
						
						 
						
						... 
						
						
						
						For reference. Note that both cc and gcc support -Wl flag, but we can't
use -Wl,-[not]all with both drivers, because cc rearranges options
passed through -Wl. We can't use -Wl,-all,libcrypto.a,-notall with cc
either, because it refuses to start with "no input" error. 
						
						
					 
					
						2004-03-12 21:52:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						86f941c936 
					 
					
						
						
							
							Fix typo in "IRIX 6.x shared build fix-up."  
						
						 
						
						
						
						
					 
					
						2004-03-12 21:33:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						387fd00c47 
					 
					
						
						
							
							IRIX 6.x shared build fix-up.  
						
						 
						
						
						
						
					 
					
						2004-03-12 21:24:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						93825dddad 
					 
					
						
						
							
							static  
						
						 
						
						
						
						
					 
					
						2004-03-10 01:20:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a8aa764d3c 
					 
					
						
						
							
							Minimise the amount of code dependent on BN_DEBUG_RAND. In particular,  
						
						 
						
						... 
						
						
						
						redefine bn_clear_top2max() to be a NOP in the non-debugging case, and
remove some unnecessary usages in bn_nist.c.
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe, Ulf Möller 
						
						
					 
					
						2004-03-09 03:53:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e7716b7a19 
					 
					
						
						
							
							More changes coming out of the bignum auditing. BN_CTX_get() should ideally  
						
						 
						
						... 
						
						
						
						return a "zero" bignum as BN_new() does - so reset 'top'. During
BN_CTX_end(), released bignums should be consistent so enforce this in
debug builds. Also, reduce the number of wasted BN_clear_free() calls from
BN_CTX_end() (typically by 75% or so).
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe, Ulf Möller 
						
						
					 
					
						2004-03-09 03:47:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a4e3150f00 
					 
					
						
						
							
							Fix policy constraints syntax.  
						
						 
						
						
						
						
					 
					
						2004-03-08 18:15:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						edec614efd 
					 
					
						
						
							
							Support for inhibitAnyPolicy extension.  
						
						 
						
						
						
						
					 
					
						2004-03-08 13:56:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00b9c1be7d 
					 
					
						
						
							
							Incorporate crlNumber functionality from 0.9.8 except it is commented out  
						
						 
						
						... 
						
						
						
						in openssl.cnf . 
						
						
					 
					
						2004-03-08 13:07:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						051bb5c457 
					 
					
						
						
							
							Incorporate the following changes from 0.9.8-dev:  
						
						 
						
						... 
						
						
						
						2003-04-04 17:10  levitte
	* apps/: apps.c (1.72), apps.h (1.56), ca.c (1.135), x509.c (1.82):
	  Convert save_serial() to work like save_index(), and add a
	  rotate_serial() that works like rotate_index().
2003-04-03 20:07  levitte
	* apps/: apps.c (1.69), ca.c (1.130): Conditionalise all debug
	  strings.
2003-04-03 18:33  levitte
	* apps/apps.c (1.68), apps/apps.h (1.55), apps/ca.c (1.129),
	  apps/ocsp.c (1.31), apps/openssl.cnf (1.24), apps/x509.c (1.80),
	  CHANGES (1.1139): Make it possible to have multiple active
	  certificates with the same subject. 
						
						
					 
					
						2004-03-08 02:53:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						2457c19df1 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2004-03-06 08:43:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5fa5eb71a4 
					 
					
						
						
							
							Cleanup ASN1 OID module when it exits.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:47:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						931a031916 
					 
					
						
						
							
							Cleanup ASN1 OID module when it exits.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:47:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f39976da3 
					 
					
						
						
							
							Call autoconfig code in pkcs7 utility.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:46:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						be21fe59aa 
					 
					
						
						
							
							Call autoconfig code in pkcs7 utility.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:45:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						216ad9ef58 
					 
					
						
						
							
							Memory leak fix.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:39:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ef3565aed2 
					 
					
						
						
							
							Memory leak fix.  
						
						 
						
						
						
						
					 
					
						2004-03-05 23:39:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc50157010 
					 
					
						
						
							
							Various X509 fixes. Disable broken certificate workarounds  
						
						 
						
						... 
						
						
						
						when X509_V_FLAG_X509_STRICT is set. Check for CRLSign in
CRL issuer certificates. Reject CRLs with unhandled (any)
critical extensions. 
						
						
					 
					
						2004-03-05 17:16:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						01fc051e8a 
					 
					
						
						
							
							Various X509 fixes. Disable broken certificate workarounds  
						
						 
						
						... 
						
						
						
						when X509_V_FLAG_X509_STRICT is set. Check for CRLSign in
CRL issuer certificates. Reject CRLs with unhandled (any)
critical extensions. 
						
						
					 
					
						2004-03-05 17:16:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ae43f344af 
					 
					
						
						
							
							-passin argument to rsautl  
						
						 
						
						
						
						
					 
					
						2004-03-04 21:58:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						91180d45f9 
					 
					
						
						
							
							Typos.  
						
						 
						
						... 
						
						
						
						Reported by: Jose Castejon-Amenedo <Jose.Castejon-Amenedo@hp.com > 
						
						
					 
					
						2004-03-04 21:44:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0902c559fb 
					 
					
						
						
							
							Typos.  
						
						 
						
						... 
						
						
						
						Reported by: Jose Castejon-Amenedo <Jose.Castejon-Amenedo@hp.com > 
						
						
					 
					
						2004-03-04 21:41:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						58b6a165a5 
					 
					
						
						
							
							Make our page with pointers to binary distributions visible in the FAQ  
						
						 
						
						
						
						
					 
					
						2004-03-04 07:48:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d9f40bbe55 
					 
					
						
						
							
							Make our page with pointers to binary distributions visible in the FAQ  
						
						 
						
						
						
						
					 
					
						2004-03-04 07:47:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ec7c9ee8b8 
					 
					
						
						
							
							Indent some of the code examples.  
						
						 
						
						
						
						
					 
					
						2004-03-02 13:39:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f82bb9cb9c 
					 
					
						
						
							
							Config docs.  
						
						 
						
						
						
						
					 
					
						2004-03-02 13:31:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						641c55342b 
					 
					
						
						
							
							More configuration docs.  
						
						 
						
						
						
						
					 
					
						2004-03-02 12:46:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5a8922aed5 
					 
					
						
						
							
							Documentation of the KISS autoconfig functions.  
						
						 
						
						
						
						
					 
					
						2004-03-02 01:01:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e390f5d684 
					 
					
						
						
							
							Documentation of the KISS autoconfig functions.  
						
						 
						
						
						
						
					 
					
						2004-03-02 01:00:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						078a97791d 
					 
					
						
						
							
							More autoconfig docs.  
						
						 
						
						
						
						
					 
					
						2004-03-01 19:15:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f2c1812560 
					 
					
						
						
							
							More autoconfig docs.  
						
						 
						
						
						
						
					 
					
						2004-03-01 19:15:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d6b383680 
					 
					
						
						
							
							Avoid a memory leak in OCSP_parse_url().  
						
						 
						
						... 
						
						
						
						Notified by Paul Siegel <psiegel@corestreet.com > 
						
						
					 
					
						2004-03-01 14:58:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4cfa4ae820 
					 
					
						
						
							
							Avoid a memory leak in OCSP_parse_url().  
						
						 
						
						... 
						
						
						
						Notified by Paul Siegel <psiegel@corestreet.com > 
						
						
					 
					
						2004-03-01 14:58:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						489885cf84 
					 
					
						
						
							
							Fix from head.  
						
						 
						
						
						
						
					 
					
						2004-03-01 13:23:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						850be8f18d 
					 
					
						
						
							
							Initial docs for the OpenSSL library configuration via openssl.cnf  
						
						 
						
						
						
						
					 
					
						2004-03-01 01:04:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a30af36c77 
					 
					
						
						
							
							Initial docs for the OpenSSL library configuration via openssl.cnf  
						
						 
						
						
						
						
					 
					
						2004-03-01 01:04:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5075521e75 
					 
					
						
						
							
							Add ECDSA documentation.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2004-02-27 23:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a22d40dde2 
					 
					
						
						
							
							AES is spelled AES, not ASE.  Oops...  
						
						 
						
						
						
						
					 
					
						2004-02-27 02:24:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ee3a47a994 
					 
					
						
						
							
							AES is spelled AES, not ASE.  Oops...  
						
						 
						
						
						
						
					 
					
						2004-02-27 02:24:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ee121033dc 
					 
					
						
						
							
							Make sure the given EVP_PKEY is updated in the PEM_STRING_PKCS8INF case also.  
						
						 
						
						... 
						
						
						
						PR: 833 
						
						
					 
					
						2004-02-26 22:07:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f727266ae8 
					 
					
						
						
							
							Make sure the given EVP_PKEY is updated in the PEM_STRING_PKCS8INF case also.  
						
						 
						
						... 
						
						
						
						PR: 833 
						
						
					 
					
						2004-02-26 22:07:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4090b56b4d 
					 
					
						
						
							
							Document the AES options for 'openssl smime'.  
						
						 
						
						... 
						
						
						
						PR: 834 
						
						
					 
					
						2004-02-26 21:44:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8bb0c8522a 
					 
					
						
						
							
							Document the AES options for 'openssl smime'.  
						
						 
						
						... 
						
						
						
						PR: 834 
						
						
					 
					
						2004-02-26 21:44:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c6700d2746 
					 
					
						
						
							
							A cleanup of the ecs_ossl.c code and some (doxygen) comments for ecdsa.h  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-02-22 19:32:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						1b06804491 
					 
					
						
						
							
							When adding positive elements, we can use BN_uadd() instead of BN_add().  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2004-02-22 19:30:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33ad6eca7a 
					 
					
						
						
							
							Use an OCTET STRING for the encoding of an OCSP nonce value.  
						
						 
						
						... 
						
						
						
						The old raw format can't be handled by some implementations
and updates to RFC2560 will make the OCTET STRING mandatory. 
						
						
					 
					
						2004-02-19 18:17:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dc90f64d56 
					 
					
						
						
							
							Use an OCTET STRING for the encoding of an OCSP nonce value.  
						
						 
						
						... 
						
						
						
						The old raw format can't be handled by some implementations
and updates to RFC2560 will make this mandatory. 
						
						
					 
					
						2004-02-19 18:16:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6c43032121 
					 
					
						
						
							
							minor signed/unsigned warning fixes  
						
						 
						
						
						
						
					 
					
						2004-02-10 18:46:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dd10343e75 
					 
					
						
						
							
							Fix handling of -offset and -length in asn1parse tool.  
						
						 
						
						... 
						
						
						
						If -offset exceeds -length of data available exit with an error.
Don't read past end of total data available when -offset supplied.
If -length exceeds total available truncate it. 
						
						
					 
					
						2004-02-08 13:30:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						37ead9be0b 
					 
					
						
						
							
							Fix handling of -offset and -length in asn1parse tool.  
						
						 
						
						... 
						
						
						
						If -offset exceeds -length of data available exit with an error.
Don't read past end of total data available when -offset supplied.
If -length exceeds total available truncate it. 
						
						
					 
					
						2004-02-08 13:30:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1751034669 
					 
					
						
						
							
							Typo in crypto/bn/asm/x86_64.c, bn_div_words().  
						
						 
						
						... 
						
						
						
						PR: 821 
						
						
					 
					
						2004-02-07 09:51:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ad55502092 
					 
					
						
						
							
							Typo in crypto/bn/asm/x86_64.c, bn_div_words().  
						
						 
						
						... 
						
						
						
						PR: 821 
						
						
					 
					
						2004-02-07 09:46:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d4575825f1 
					 
					
						
						
							
							Add flag to avoid continuous  
						
						 
						
						... 
						
						
						
						memory allocate when calling EVP_MD_CTX_copy_ex().
Without this HMAC is several times slower than
< 0.9.7. 
						
						
					 
					
						2004-02-01 13:39:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						31edde3edc 
					 
					
						
						
							
							Add flag to avoid continuous  
						
						 
						
						... 
						
						
						
						memory allocate when calling EVP_MD_CTX_copy_ex().
Without this HMAC is several times slower than
< 0.9.7. 
						
						
					 
					
						2004-02-01 13:37:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d04b1b4656 
					 
					
						
						
							
							Typo in PA-RISC 2 rules in crypto/bn/Makefile.ssl  
						
						 
						
						
						
						
					 
					
						2004-01-30 05:41:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						1247092776 
					 
					
						
						
							
							HP/UX PA-RISC 2 targets update.  
						
						 
						
						
						
						
					 
					
						2004-01-29 22:16:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e22a1df55 
					 
					
						
						
							
							Remove typos  
						
						 
						
						
						
						
					 
					
						2004-01-29 11:24:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb5810d21d 
					 
					
						
						
							
							-Wtraditional was a little too much...  
						
						 
						
						
						
						
					 
					
						2004-01-29 10:56:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						381a693c39 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-01-29 10:23:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						86cb571e28 
					 
					
						
						
							
							Have the declarations match the definitions.  
						
						 
						
						
						
						
					 
					
						2004-01-29 09:41:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						319a2c5f65 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2004-01-29 02:55:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						61a88c31c0 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2004-01-29 02:55:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d0e895120 
					 
					
						
						
							
							Make n unsigned, to avoid signed vs. unsigned conflicts.  
						
						 
						
						
						
						
					 
					
						2004-01-29 00:05:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b86ed8d18f 
					 
					
						
						
							
							In the development branch, it feels quite all right to warn on a lot  
						
						 
						
						... 
						
						
						
						more stuff. 
						
						
					 
					
						2004-01-29 00:05:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						44ee32ed30 
					 
					
						
						
							
							-Wstrict-prototypes is too much for 0.9.7-stable (there are tons of  
						
						 
						
						... 
						
						
						
						non-strict prototypes, all right?  Kind of shadows the few other
warnings so I keep missing them :-)). 
						
						
					 
					
						2004-01-29 00:03:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5922128732 
					 
					
						
						
							
							0.9.7-stable is in freeze.  That means we do bug fixes only, not new  
						
						 
						
						... 
						
						
						
						functionality.  Therefore, I'm backing out most of the "CFB DES
sync-up with FIPS branch" commit (I'm keeping the corrections of
DES_cfb_encrypt()). 
						
						
					 
					
						2004-01-28 23:31:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e5886a2388 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-01-28 19:07:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d1ebe0bd1 
					 
					
						
						
							
							Add the missing parts for DES CFB1 and CFB8.  
						
						 
						
						... 
						
						
						
						Add the corresponding AES parts while I'm at it.
make update 
						
						
					 
					
						2004-01-28 19:05:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1fb724449d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2004-01-28 18:38:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cb37947a71 
					 
					
						
						
							
							Unsigned vs. signed problem removed  
						
						 
						
						
						
						
					 
					
						2004-01-28 08:48:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						721a5e83f9 
					 
					
						
						
							
							Unsigned vs. signed problem removed  
						
						 
						
						
						
						
					 
					
						2004-01-28 08:48:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						6df617a59d 
					 
					
						
						
							
							#undef _POSIX_C_SOURCE in ui_openssl.c ruined IRIX builds. Comment on why  
						
						 
						
						... 
						
						
						
						_POSIX_C_SOURCE needed in first place. 
						
						
					 
					
						2004-01-27 22:06:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						8c6336b0aa 
					 
					
						
						
							
							CFB DES sync-up with FIPS branch.  
						
						 
						
						
						
						
					 
					
						2004-01-27 21:47:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						4668056fc9 
					 
					
						
						
							
							CFB DES sync-up with FIPS branch.  
						
						 
						
						
						
						
					 
					
						2004-01-27 21:46:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						87203dc99a 
					 
					
						
						
							
							Avoid signed vs. unsigned warnings (which are treated like errors on  
						
						 
						
						... 
						
						
						
						Windows). 
						
						
					 
					
						2004-01-27 01:16:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						de23af982a 
					 
					
						
						
							
							Avoid signed vs. unsigned warnings (which are treated like errors on  
						
						 
						
						... 
						
						
						
						Windows). 
						
						
					 
					
						2004-01-27 01:16:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3a5a176ea0 
					 
					
						
						
							
							S_IFBLK and S_IFCHR may not exist in some places (like Windows), so  
						
						 
						
						... 
						
						
						
						let's check for those macros, and if they aren't defined, let's assume
there aren't Unixly devices on this platform. 
						
						
					 
					
						2004-01-26 23:46:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4de65cbc06 
					 
					
						
						
							
							S_IFBLK and S_IFCHR may not exist in some places (like Windows), so  
						
						 
						
						... 
						
						
						
						let's check for those macros, and if they aren't defined, let's assume
there aren't Unixly devices on this platform. 
						
						
					 
					
						2004-01-26 23:45:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						27b2b78f90 
					 
					
						
						
							
							Even though C specification explicitly says that constant type "stretches"  
						
						 
						
						... 
						
						
						
						automatically to accomodate the value, some compilers fail to do so. Most
notably 0x0123456789ABCDEF should come out as long long in 32-bit context,
but HP compiler truncates it to 32-bit value. Which in turn breaks GF(2^m)
arithmetics in hpux-parisc2-cc build. Therefore this fix... 
						
						
					 
					
						2004-01-25 10:53:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						3a160f1dc6 
					 
					
						
						
							
							Fix declaration inconsistency in ecparam.c.  
						
						 
						
						
						
						
					 
					
						2004-01-24 16:51:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7f24b1c3e9 
					 
					
						
						
							
							Get rid of bogus warning when compiling with Sun vendor compiler.  
						
						 
						
						
						
						
					 
					
						2004-01-24 16:31:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a5e8bcfb7b 
					 
					
						
						
							
							We're passed p, so let's use p instead of making assumptions.  
						
						 
						
						
						
						
					 
					
						2004-01-24 01:16:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a1d37a96df 
					 
					
						
						
							
							Typo...  
						
						 
						
						
						
						
					 
					
						2004-01-22 22:36:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d5c3c1939 
					 
					
						
						
							
							Typo...  
						
						 
						
						
						
						
					 
					
						2004-01-22 22:36:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						815d7057be 
					 
					
						
						
							
							Replace expired certificate.  
						
						 
						
						
						
						
					 
					
						2004-01-21 13:08:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6bff79629e 
					 
					
						
						
							
							Replace expired certificate.  
						
						 
						
						
						
						
					 
					
						2004-01-21 13:04:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						db452cdba0 
					 
					
						
						
							
							TABLE update for hpux64-paric2-gcc, addenum for HPUX64 gcc build update.  
						
						 
						
						
						
						
					 
					
						2004-01-21 10:07:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						d435752b0a 
					 
					
						
						
							
							Proper support for HP-UX64 gcc build.  
						
						 
						
						... 
						
						
						
						PR: 772 
						
						
					 
					
						2004-01-21 09:58:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						c8b14ca177 
					 
					
						
						
							
							SHA-1 assembler tune-up for Intel P4  
						
						 
						
						
						
						
					 
					
						2004-01-21 08:19:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						30cb9ec715 
					 
					
						
						
							
							SHA-1 assembler tune-up for Intel P4  
						
						 
						
						
						
						
					 
					
						2004-01-21 08:17:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af6dab9b00 
					 
					
						
						
							
							Adding a slash between the directoryt and the file is a problem with  
						
						 
						
						... 
						
						
						
						VMS.  The C RTL can handle it well if the "directory" is a logical
name with no colon, therefore ending being 'logname/file'.  However,
if the given logical names actually has a colon, or if you use a full
VMS-syntax directory, you end up with 'logname:/file' or
'dev:[dir1.dir2]/file', and that isn't handled in any good way.
So, on VMS, we need to check if the directory string ends with a
separator (one of ':', ']' or '>' (< and > can be used instead [ and
])), and handle that by not inserting anything between the directory
spec and the file name.  In all other cases, it's assumed the
directory spec is a logical name, so we need to place a colon between
it and the file.
Notified by Kevin Greaney <kevin.greaney@hp.com >. 
						
						
					 
					
						2004-01-10 18:04:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8ba5c63de9 
					 
					
						
						
							
							Adding a slash between the directoryt and the file is a problem with  
						
						 
						
						... 
						
						
						
						VMS.  The C RTL can handle it well if the "directory" is a logical
name with no colon, therefore ending being 'logname/file'.  However,
if the given logical names actually has a colon, or if you use a full
VMS-syntax directory, you end up with 'logname:/file' or
'dev:[dir1.dir2]/file', and that isn't handled in any good way.
So, on VMS, we need to check if the directory string ends with a
separator (one of ':', ']' or '>' (< and > can be used instead [ and
])), and handle that by not inserting anything between the directory
spec and the file name.  In all other cases, it's assumed the
directory spec is a logical name, so we need to place a colon between
it and the file.
Notified by Kevin Greaney <kevin.greaney@hp.com >. 
						
						
					 
					
						2004-01-10 18:04:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						cdb42bcf0c 
					 
					
						
						
							
							Cover all DSA setups when running tests  
						
						 
						
						... 
						
						
						
						PR: #748 
Submitted by: Kirill Kochetkov <kochet@ixbt.com > 
						
						
					 
					
						2004-01-08 07:46:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						3a0ede0ffd 
					 
					
						
						
							
							Cover all DSA setups when running tests  
						
						 
						
						... 
						
						
						
						PR: #748 
Submitted by: Kirill Kochetkov <kochet@ixbt.com > 
						
						
					 
					
						2004-01-08 07:46:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						9cde81c2dd 
					 
					
						
						
							
							Updates to s_time manual page  
						
						 
						
						... 
						
						
						
						PR: #570 
Submitted by: Martin Witzel <MWITZEL@de.ibm.com > 
						
						
					 
					
						2004-01-08 07:39:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						fc56b52924 
					 
					
						
						
							
							Updates to s_time manual page  
						
						 
						
						... 
						
						
						
						PR: #570 
Submitted by: Martin Witzel <MWITZEL@de.ibm.com > 
						
						
					 
					
						2004-01-08 07:38:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						62bd487421 
					 
					
						
						
							
							One more change to merge from -dev.  
						
						 
						
						
						
						
					 
					
						2004-01-04 19:03:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						4ef740a632 
					 
					
						
						
							
							Add s_time manual page  
						
						 
						
						... 
						
						
						
						Submitted by: "Martin Witzel" <MWITZEL@de.ibm.com >
PR: #570  
						
						
					 
					
						2004-01-04 19:00:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								cvs2svn 
							
						 
					 
					
						
						
							
						
						7f36acd8fe 
					 
					
						
						
							
							This commit was manufactured by cvs2svn to create branch  
						
						 
						
						... 
						
						
						
						'OpenSSL_0_9_7-stable'. 
						
						
					 
					
						2004-01-04 18:59:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a32fc687de 
					 
					
						
						
							
							Add s_time manual page  
						
						 
						
						... 
						
						
						
						Submitted by: "Martin Witzel" <MWITZEL@de.ibm.com >
PR: #570  
						
						
					 
					
						2004-01-04 18:59:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						09d7c42a7c 
					 
					
						
						
							
							Update URI  
						
						 
						
						... 
						
						
						
						Submitted by: Gertjan van Oosten <gertjan@West.NL >
PR: #804  
						
						
					 
					
						2004-01-04 18:06:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						c0017a5a65 
					 
					
						
						
							
							Update URI  
						
						 
						
						... 
						
						
						
						Submitted by: Gertjan van Oosten <gertjan@West.NL >
PR: #804  
						
						
					 
					
						2004-01-04 18:05:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						3fbbd1e1d7 
					 
					
						
						
							
							unintptr_t and <inttypes.h> are not strictly portable with respect to  
						
						 
						
						... 
						
						
						
						ANSI C 89.
Undo change to maintain compatibility. 
						
						
					 
					
						2004-01-04 17:54:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						344e86645d 
					 
					
						
						
							
							unintptr_t and <inttypes.h> are not strictly portable with respect to  
						
						 
						
						... 
						
						
						
						ANSI C 89.
Undo change to maintain compatibility. 
						
						
					 
					
						2004-01-04 17:53:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						075521725d 
					 
					
						
						
							
							Fix Perl problems on sparc64.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:13:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						faa9c5cbdc 
					 
					
						
						
							
							Fix Perl problems on sparc64.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:13:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5fdf06666c 
					 
					
						
						
							
							Avoid including cryptlib.h, it's not really needed.  
						
						 
						
						... 
						
						
						
						Check if IDEA is being built or not.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:10:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d2c786db37 
					 
					
						
						
							
							Avoid including cryptlib.h, it's not really needed.  
						
						 
						
						... 
						
						
						
						Check if IDEA is being built or not.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:09:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f28e8bd300 
					 
					
						
						
							
							Only use environment variables if uid and gid are the same as euid and egid.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:07:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3e786f4b0d 
					 
					
						
						
							
							Only use environment variables if uid and gid are the same as euid and egid.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:07:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						de02ec2767 
					 
					
						
						
							
							Check if a random "file" is really a device file, and treat it  
						
						 
						
						... 
						
						
						
						specially if it is.
Add a few OpenBSD-specific cases.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:02:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4b66e713de 
					 
					
						
						
							
							Check if a random "file" is really a device file, and treat it  
						
						 
						
						... 
						
						
						
						specially if it is.
Add a few OpenBSD-specific cases.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 16:01:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						90dd4d34bb 
					 
					
						
						
							
							Correct documentation typos.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 15:05:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						112341031b 
					 
					
						
						
							
							Correct documentation typos.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 15:04:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7cf803230b 
					 
					
						
						
							
							OpenBSD-internal changes.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 15:02:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2d6452cdf9 
					 
					
						
						
							
							OpenBSD-internal changes.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 15:02:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cc056d6395 
					 
					
						
						
							
							Use sh explicitely to run point.sh  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 15:00:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						79b42e7654 
					 
					
						
						
							
							Use sh explicitely to run point.sh  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 14:59:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f0c5db92f7 
					 
					
						
						
							
							Include strings.h so strcasecmp() and strncasecmp() get properly declared.  
						
						 
						
						
						
						
					 
					
						2003-12-27 14:54:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						394178c94c 
					 
					
						
						
							
							Use BUF_strlcpy() instead of strcpy().  
						
						 
						
						... 
						
						
						
						Use BUF_strlcat() instead of strcat().
Use BIO_snprintf() instead of sprintf().
In some cases, keep better track of buffer lengths.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 14:40:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d420ac2c7d 
					 
					
						
						
							
							Use BUF_strlcpy() instead of strcpy().  
						
						 
						
						... 
						
						
						
						Use BUF_strlcat() instead of strcat().
Use BIO_snprintf() instead of sprintf().
In some cases, keep better track of buffer lengths.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 14:40:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						61590d8945 
					 
					
						
						
							
							Add a newline at the end of the last line.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 14:26:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b79aa47a0c 
					 
					
						
						
							
							Add a newline at the end of the last line.  
						
						 
						
						... 
						
						
						
						This is part of a large change submitted by Markus Friedl <markus@openbsd.org > 
						
						
					 
					
						2003-12-27 14:26:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec2a595627 
					 
					
						
						
							
							Change 'exp' to something else, as 'exp' is predefined by GNU C.  This  
						
						 
						
						... 
						
						
						
						was already done in HEAD, but not in this branch (I wonder why...). 
						
						
					 
					
						2003-12-27 14:24:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8f5c833f3c 
					 
					
						
						
							
							Typos.  
						
						 
						
						
						
						
					 
					
						2003-12-20 22:49:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e88c577738 
					 
					
						
						
							
							Typos.  
						
						 
						
						
						
						
					 
					
						2003-12-20 22:48:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ffe966b0fa 
					 
					
						
						
							
							To figure out if we're going outside the buffer, use the size of the buffer,  
						
						 
						
						... 
						
						
						
						not the size of the integer used to index in said buffer.
PR: 794
Notified by: Rhett Garber <rhett_garber@hp.com > 
						
						
					 
					
						2003-12-11 18:01:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a2b0de98af 
					 
					
						
						
							
							To figure out if we're going outside the buffer, use the size of the buffer,  
						
						 
						
						... 
						
						
						
						not the size of the integer used to index in said buffer.
PR: 794
Notified by: Rhett Garber <rhett_garber@hp.com > 
						
						
					 
					
						2003-12-11 18:01:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb3de147b3 
					 
					
						
						
							
							Document that you need to include x509.h (to get [i2d|d2i]_RSA_PUBKEY()).  
						
						 
						
						... 
						
						
						
						Correct the typo PUKEY... 
						
						
					 
					
						2003-12-10 14:31:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4775944f81 
					 
					
						
						
							
							Document that you need to include x509.h (to get [i2d|d2i]_RSA_PUBKEY()).  
						
						 
						
						... 
						
						
						
						Correct the typo PUKEY... 
						
						
					 
					
						2003-12-10 14:31:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						95ec1a717b 
					 
					
						
						
							
							Document that you need to include x509.h (to get [i2d|d2i]_DSA_PUBKEY()).  
						
						 
						
						... 
						
						
						
						Correct the typo PUKEY... 
						
						
					 
					
						2003-12-10 13:57:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2abd5b7aa0 
					 
					
						
						
							
							Document that you need to include x509.h (to get [i2d|d2i]_DSA_PUBKEY()).  
						
						 
						
						... 
						
						
						
						Correct the typo PUKEY... 
						
						
					 
					
						2003-12-10 13:57:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						380e145daf 
					 
					
						
						
							
							Add "dif" variable to clean up the loop implementations.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-12-06 11:55:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						a9f2330f43 
					 
					
						
						
							
							Skip a curve with generator of non-prime order.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-12-06 11:41:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						ce38bb1a8c 
					 
					
						
						
							
							Avoid segfault if ret==0.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-12-06 11:39:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						919f8bcd21 
					 
					
						
						
							
							Restructure make targets to allow parallel make.  
						
						 
						
						... 
						
						
						
						Submitted by: Witold Filipczyk <witekfl@poczta.gazeta.pl >
PR: #513  
						
						
					 
					
						2003-12-03 16:29:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						325829a9bc 
					 
					
						
						
							
							Restructure make targets to allow parallel make.  
						
						 
						
						... 
						
						
						
						Submitted by: Witold Filipczyk <witekfl@poczta.gazeta.pl >
PR: #513  
						
						
					 
					
						2003-12-03 16:29:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2bfd2c74d2 
					 
					
						
						
							
							Incremental cleanups to bn_lib.c.  
						
						 
						
						... 
						
						
						
						- Add missing bn_check_top() calls and relocate some others
- Use BN_is_zero() where appropriate
- Remove assert()s that bn_check_top() is already covering
- Simplify the code in places (esp. bn_expand2())
- Only keep ambiguous zero handling if BN_STRICT isn't defined
- Remove some white-space and make some other aesthetic tweaks 
						
						
					 
					
						2003-12-02 20:01:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						82b2f57e30 
					 
					
						
						
							
							Use the BN_is_odd() macro in place of code that (inconsistently) does much  
						
						 
						
						... 
						
						
						
						the same thing.
Also, I have some stuff on the back-burner related to some BN_CTX notes
from Peter Gutmann about his cryptlib hacks to the bignum code. The BN_CTX
comments are there to remind me of some relevant points in the code. 
						
						
					 
					
						2003-12-02 03:28:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2ae1ea3788 
					 
					
						
						
							
							BN_FLG_FREE is of extremely dubious usefulness, and is only referred to  
						
						 
						
						... 
						
						
						
						once in the source (where it is set for the benefit of no other code
whatsoever). I've deprecated the declaration in the header and likewise
made the use of the flag conditional in bn_lib.c. Note, this change also
NULLs the 'd' pointer in a BIGNUM when it is reset but not deallocated. 
						
						
					 
					
						2003-12-02 03:16:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						34066d741a 
					 
					
						
						
							
							Declare the static BIGNUM "BN_value_one()" more carefully.  
						
						 
						
						
						
						
					 
					
						2003-12-01 23:13:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b74cc0776b 
					 
					
						
						
							
							Add missing bn_check_top()s to bn_kron.c, remove some miscellaneous  
						
						 
						
						... 
						
						
						
						white-space, and include extra headers to satisfy debugging builds. 
						
						
					 
					
						2003-12-01 23:11:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e7e5fe4705 
					 
					
						
						
							
							Add missing bn_check_top()s to bn_gf2m.c and remove some miscellaneous  
						
						 
						
						... 
						
						
						
						white-space. 
						
						
					 
					
						2003-12-01 23:10:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						998ae048e7 
					 
					
						
						
							
							The bn_set_max() macro is only "used" by the bn_set_[low|high]() macros  
						
						 
						
						... 
						
						
						
						which, in turn, are used nowhere at all. This is a good thing because
bn_set_max() would currently generate code that wouldn't compile (BIGNUM
has no 'max' element).
The only apparent use for bn_set_[low|high] would be for implementing
windowing algorithms, and all of openssl's seem to use bn_***_words()
helpers instead (including the BN_div() that Nils fixed recently, which had
been using independently-coded versions of what these unused macros are
intended for). I'm therefore consigning these macros to cvs oblivion in the
name of readability. 
						
						
					 
					
						2003-12-01 22:11:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e65c2b9872 
					 
					
						
						
							
							bn_fix_top() exists for compatibility's sake and is mapped to  
						
						 
						
						... 
						
						
						
						bn_correct_top() or bn_check_top() depending on debug settings. For
internal source, all bn_fix_top()s should be converted one way or the other
depending on whether the use of bn_correct_top() is justified.
For BN_div_recp(), these cases should not require correction if the other
bignum functions are doing their jobs properly, so convert to
bn_check_top(). 
						
						
					 
					
						2003-12-01 21:59:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b0ea8b160c 
					 
					
						
						
							
							It was pointed out to me that if the requested size is 0, we shouldn't  
						
						 
						
						... 
						
						
						
						ty to allocate anything at all.  This will allow eNULL to still work.
PR: 751
Notified by: Lutz Jaenicke 
						
						
					 
					
						2003-12-01 13:25:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2fe9ab8e20 
					 
					
						
						
							
							It was pointed out to me that if the requested size is 0, we shouldn't  
						
						 
						
						... 
						
						
						
						ty to allocate anything at all.  This will allow eNULL to still work.
PR: 751
Notified by: Lutz Jaenicke 
						
						
					 
					
						2003-12-01 13:25:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bb569f97b9 
					 
					
						
						
							
							Check that OPENSSL_malloc() really returned some memory.  
						
						 
						
						... 
						
						
						
						PR: 751
Notified by: meder@mcs.anl.gov 
Reviewed by: Lutz Jaenicke, Richard Levitte 
						
						
					 
					
						2003-12-01 12:11:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1145e03870 
					 
					
						
						
							
							Check that OPENSSL_malloc() really returned some memory.  
						
						 
						
						... 
						
						
						
						PR: 751
Notified by: meder@mcs.anl.gov 
Reviewed by: Lutz Jaenicke, Richard Levitte 
						
						
					 
					
						2003-12-01 12:11:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						31670c94bc 
					 
					
						
						
							
							CRYPTO_malloc(), CRYPTO_realloc() and variants of them should return NULL  
						
						 
						
						... 
						
						
						
						if the give size is 0.
This is a thought that came up in PR 751. 
						
						
					 
					
						2003-12-01 12:06:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6781efb92f 
					 
					
						
						
							
							CRYPTO_malloc(), CRYPTO_realloc() and variants of them should return NULL  
						
						 
						
						... 
						
						
						
						if the give size is 0.
This is a thought that came up in PR 751. 
						
						
					 
					
						2003-12-01 12:06:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						0bf1c1d80d 
					 
					
						
						
							
							Some more ASFLAGS settings required  
						
						 
						
						... 
						
						
						
						PR: #735 
Submitted by: Tim Rice <tim@multitalents.net > 
						
						
					 
					
						2003-12-01 08:12:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						67e5d33dd7 
					 
					
						
						
							
							Some more ASFLAGS settings required  
						
						 
						
						... 
						
						
						
						PR: #735 
Submitted by: Tim Rice <tim@multitalents.net > 
						
						
					 
					
						2003-12-01 08:12:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6ed474ca66 
					 
					
						
						
							
							Add more debugging to my Configure target, and "make update" to incorporate  
						
						 
						
						... 
						
						
						
						this and a few other changes. 
						
						
					 
					
						2003-11-30 23:29:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						46cb8d3689 
					 
					
						
						
							
							If BN_STRICT is defined, don't accept an ambiguous representation of zero  
						
						 
						
						... 
						
						
						
						(ie. where top may be zero, or it may be one if the corresponding word is
set to zero). Note, this only affects the macros in bn.h, there are probably
similar corrections required in some c files.
Also, clarify the audit-related macros at the top of the header. Mental
note: I must not forget to clean all this out before 0.9.8 is released ... 
						
						
					 
					
						2003-11-30 22:23:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						23fc5ac646 
					 
					
						
						
							
							Improve a couple of the bignum macros. Note, this doesn't eliminate  
						
						 
						
						... 
						
						
						
						tolerance of ambiguous zero-representation, it just improves
BN_abs_is_word() and simplifies other macros that depend on it. 
						
						
					 
					
						2003-11-30 22:02:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5734bebe05 
					 
					
						
						
							
							Make BN_DEBUG_RAND less painfully slow by only consuming one byte of  
						
						 
						
						... 
						
						
						
						pseudo-random data for each bn_pollute(). 
						
						
					 
					
						2003-11-30 21:21:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						657a919598 
					 
					
						
						
							
							This improves the placement of check_top() macros in a couple of bn_lib  
						
						 
						
						... 
						
						
						
						functions. 
						
						
					 
					
						2003-11-29 20:34:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						da17495b65 
					 
					
						
						
							
							Make sure the documentation matches reality.  
						
						 
						
						... 
						
						
						
						PR: 755
Notified by: Jakub Bogusz <qboosh@pld-linux.org > 
						
						
					 
					
						2003-11-29 10:33:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6859bb1a22 
					 
					
						
						
							
							Make sure the documentation matches reality.  
						
						 
						
						... 
						
						
						
						PR: 755
Notified by: Jakub Bogusz <qboosh@pld-linux.org > 
						
						
					 
					
						2003-11-29 10:33:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b64614adfe 
					 
					
						
						
							
							We're getting a clash with C++ because it has a type called 'list'.  
						
						 
						
						... 
						
						
						
						Therefore, change all instances of the symbol 'list' to something else.
PR: 758
Submitted by: Frédéric Giudicelli <groups@newpki.org > 
						
						
					 
					
						2003-11-29 10:25:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3822740ce3 
					 
					
						
						
							
							We're getting a clash with C++ because it has a type called 'list'.  
						
						 
						
						... 
						
						
						
						Therefore, change all instances of the symbol 'list' to something else.
PR: 758
Submitted by: Frédéric Giudicelli <groups@newpki.org > 
						
						
					 
					
						2003-11-29 10:25:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0d78bc3356 
					 
					
						
						
							
							Add IPSec/IKE/Oakley curves.  
						
						 
						
						... 
						
						
						
						PR: 768
Submitted by: Vadim Fedukovich <vf@unity.net > 
						
						
					 
					
						2003-11-29 09:25:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d87b79bf31 
					 
					
						
						
							
							Damnit, I'm sick of having to do something special every time a module  
						
						 
						
						... 
						
						
						
						that gets built before objects barfs all over the place because it
uses a new NID that hasn't had a chance of getting defined yet (in
this case, it was about a couple of new EC curves, and therefore a
couple of new corresponding NIDs).
I'm placing objects first in SDIRS!  There. 
						
						
					 
					
						2003-11-29 09:19:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6a6a08cbea 
					 
					
						
						
							
							RSA_size() and DH_size() return the amount of bytes in a key, and we  
						
						 
						
						... 
						
						
						
						compared it to the amount of bits required...
PR: 770
Submitted by: c zhang <czhang2005@hotmail.com > 
						
						
					 
					
						2003-11-28 23:03:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						70ef9c5a3d 
					 
					
						
						
							
							RSA_size() and DH_size() return the amount of bytes in a key, and we  
						
						 
						
						... 
						
						
						
						compared it to the amount of bits required...
PR: 770
Submitted by: c zhang <czhang2005@hotmail.com > 
						
						
					 
					
						2003-11-28 23:03:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						753cbc2857 
					 
					
						
						
							
							1024 is the export key bits limit according to current regulations, not 512.  
						
						 
						
						... 
						
						
						
						PR: 771
Submitted by: c zhang <czhang2005@hotmail.com > 
						
						
					 
					
						2003-11-28 22:39:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b727907ae8 
					 
					
						
						
							
							1024 is the export key bits limit according to current regulations, not 512.  
						
						 
						
						... 
						
						
						
						PR: 771
Submitted by: c zhang <czhang2005@hotmail.com > 
						
						
					 
					
						2003-11-28 22:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						444c3a8492 
					 
					
						
						
							
							Get rid of some signed/unsigned comparison warnings.  
						
						 
						
						
						
						
					 
					
						2003-11-28 16:39:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b352c58db 
					 
					
						
						
							
							Make a number of changes to the OS/2 build.  Submitter's comment below.  
						
						 
						
						... 
						
						
						
						PR: 732
Submitted by: Ilya Zakharevich <nospam-abuse@ilyaz.org >
Submitter's comment:
This patch:
a) Introduces a new file os2/backwardify.pl.
b) Introduces a new mk1mf.pl variable $preamble.  As you can see, it may
   be used also to move some OS-specific code to VC-CE too (the the
   first chunk of the patch);
c) The DESCRIPTION specifier of the .def file is made more informative:
   now it contains the version number too.  On OS/2 it is made conformant
   to OS/2 conventions; in particular, when one runs the standard command
	BLDLEVEL this.DLL
   one can see:
   Vendor:      www.openssl.org/
   Revision:    0.9.7c
   Description: OpenSSL: implementation of Secure Socket Layer; DLL for library crypto.  Build for EMX -Zmtd
   [I did not make Win32 descriptions as informative as this - I'm afraid to
    break something.  Be welcome to fix this.]
d) On OS/2 the generated DLL was hardly usable (it had a shared initialized
   data segment).
e) On OS/2 the generated DLLs had names like ssl.dll.  However, DLL names on
   OS/2 are "global data".  It is hard to have several DLLs with the same
   name on the system.  Thus this precluded coexistence of OpenSSL with DLLs
   for other SLL implementations - or other name clashes.  I transparently
   changed the names of the DLLs to open_ssl.dll and cryptssl.dll.
f) The file added in (a) is used to create "forwarder" DLLs, so the
   applications expecting the "old" DLL names may use the new DLLs
   transparently.  (A presence of these DLLs on the system nullifies (e),
   but makes old applications work.  This is a stopgap measure until the
   old applications are relinked.  Systems with no old applications do not
   need these DLLs, so may enjoy all the benefits of (e).)
   The new DLLs are placed in os2/ and os2/noname subdirectories.
g) The makefiles created with os2/OS2-EMX.cmd did not work (some mysterious
   meaningless failures).  The change to util/pl/OS2-EMX.pl uses the
   variable introduced in (b) to switch the Makefiles to SHELL=sh syntax.
   All these backslashes are removed, and the generated Makefiles started to
   work.
h) Running os2/OS2-EMX.cmd now prints out what to do next. 
						
						
					 
					
						2003-11-28 14:51:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d68b289a0 
					 
					
						
						
							
							Make a number of changes to the OS/2 build.  Submitter's comment below.  
						
						 
						
						... 
						
						
						
						PR: 732
Submitted by: Ilya Zakharevich <nospam-abuse@ilyaz.org >
Submitter's comment:
This patch:
a) Introduces a new file os2/backwardify.pl.
b) Introduces a new mk1mf.pl variable $preamble.  As you can see, it may
   be used also to move some OS-specific code to VC-CE too (the the
   first chunk of the patch);
c) The DESCRIPTION specifier of the .def file is made more informative:
   now it contains the version number too.  On OS/2 it is made conformant
   to OS/2 conventions; in particular, when one runs the standard command
	BLDLEVEL this.DLL
   one can see:
   Vendor:      www.openssl.org/
   Revision:    0.9.7c
   Description: OpenSSL: implementation of Secure Socket Layer; DLL for library crypto.  Build for EMX -Zmtd
   [I did not make Win32 descriptions as informative as this - I'm afraid to
    break something.  Be welcome to fix this.]
d) On OS/2 the generated DLL was hardly usable (it had a shared initialized
   data segment).
e) On OS/2 the generated DLLs had names like ssl.dll.  However, DLL names on
   OS/2 are "global data".  It is hard to have several DLLs with the same
   name on the system.  Thus this precluded coexistence of OpenSSL with DLLs
   for other SLL implementations - or other name clashes.  I transparently
   changed the names of the DLLs to open_ssl.dll and cryptssl.dll.
f) The file added in (a) is used to create "forwarder" DLLs, so the
   applications expecting the "old" DLL names may use the new DLLs
   transparently.  (A presence of these DLLs on the system nullifies (e),
   but makes old applications work.  This is a stopgap measure until the
   old applications are relinked.  Systems with no old applications do not
   need these DLLs, so may enjoy all the benefits of (e).)
   The new DLLs are placed in os2/ and os2/noname subdirectories.
g) The makefiles created with os2/OS2-EMX.cmd did not work (some mysterious
   meaningless failures).  The change to util/pl/OS2-EMX.pl uses the
   variable introduced in (b) to switch the Makefiles to SHELL=sh syntax.
   All these backslashes are removed, and the generated Makefiles started to
   work.
h) Running os2/OS2-EMX.cmd now prints out what to do next. 
						
						
					 
					
						2003-11-28 14:51:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						03ddbdd9b9 
					 
					
						
						
							
							Move another common functionality (reproduced so far with cut'n'paste)  
						
						 
						
						... 
						
						
						
						to apps.c, and give it the hopefully descriptive name parse_yesno(). 
						
						
					 
					
						2003-11-28 14:45:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						eb5f555ffb 
					 
					
						
						
							
							Let's use text/plain in the example instead of crapy HTML.  
						
						 
						
						... 
						
						
						
						PR: 777
Submitted by: Michael Shields <mshields@sunblocksystems.com > 
						
						
					 
					
						2003-11-28 14:32:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5ebdb39084 
					 
					
						
						
							
							Let's use text/plain in the example instead of crapy HTML.  
						
						 
						
						... 
						
						
						
						PR: 777
Submitted by: Michael Shields <mshields@sunblocksystems.com > 
						
						
					 
					
						2003-11-28 14:32:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d45a098472 
					 
					
						
						
							
							Forgot to change the declaration of do_subject() to one of parse_name()...  
						
						 
						
						
						
						
					 
					
						2003-11-28 14:18:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6d5ffb591b 
					 
					
						
						
							
							Move do_subject() to apps.c and rename it to parse_name().  The  
						
						 
						
						... 
						
						
						
						rationale behind the move is that it's use by several applications.
The rationale behind the name change is that it describes what the
function does a bit better. 
						
						
					 
					
						2003-11-28 14:07:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7ce9e425bc 
					 
					
						
						
							
							Allow multi-valued rdns in subjects.  This adds the -multivalue-rdn option  
						
						 
						
						... 
						
						
						
						to 'openssl req' and 'openssl ca'.
PR: 779
Submitted by: Michael Bell <michael.bell@cms.hu-berlin.de >
Reviewed by: Richard Levitte
(there will be some follow-up changes) 
						
						
					 
					
						2003-11-28 14:04:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d8743f490 
					 
					
						
						
							
							Netware-specific changes,  
						
						 
						
						... 
						
						
						
						PR: 780
Submitted by: Verdon Walker <VWalker@novell.com >
Reviewed by: Richard Levitte 
						
						
					 
					
						2003-11-28 13:10:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4c8b4f9d03 
					 
					
						
						
							
							Change my debugging entries to do fierce BIGNUM debugging.  
						
						 
						
						
						
						
					 
					
						2003-11-28 12:54:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						04dc4edb44 
					 
					
						
						
							
							If dynamically-loadable ENGINEs are linked against a shared-library version  
						
						 
						
						... 
						
						
						
						of libcrypto, then it is possible that when they are loaded they will share
the same static data as the loading application/library. This means it will
be too late to set memory/ERR/ex_data/[etc] callbacks, but entirely
unnecessary to try.
This change (and a great part of this comment) was implemented in
0.9.8-dev a long time ago, but slightly differently.  In 0.9.8-dev, a
specific function that just returns a pointer to some static object is
used. For 0.9.7x, we couldn't do that, since the way we handle feature
freezes is, among other, to not add any more non-static functions.
Instead, we use the function ERR_get_implementation() and compare the
returned value with fns->err_fns, a member of fns that already is
there, and which therefore can safely be used in this manner.
What happens is that if the loaded ENGINE's return value from this
function matches the loading application/library's return value - they
share static data. If they don't match, the loaded ENGINE has its own
copy of libcrypto's static data and so the callbacks need to be set. 
						
						
					 
					
						2003-11-27 16:41:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						81ba5f6713 
					 
					
						
						
							
							Due to recent debugging bursts, openssl should be more or less solid  
						
						 
						
						... 
						
						
						
						against inconsistent BIGNUMs coming out of any of its API functions. So
this change no longer "fixes" the bn_print.c functions, but it makes for
cleaner code. This patch was a part of ticket 697.
PR: 697
Submitted by: Otto Moerbeek
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-25 21:07:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6defae04f3 
					 
					
						
						
							
							Fix some handling in bn_word. This also resolves the issues observed in  
						
						 
						
						... 
						
						
						
						ticket 697 (though uses a different solution than the proposed one). This
problem was initially raised by Otto Moerbeek.
PR: 697
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-25 20:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						e1064adfd3 
					 
					
						
						
							
							Some changes for bn_gf2m.c: better error checking plus some minor  
						
						 
						
						... 
						
						
						
						optimizations.
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-25 03:41:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						d7559f16cd 
					 
					
						
						
							
							Free "engine" resource in case of failure to prevent memory leak  
						
						 
						
						... 
						
						
						
						PR: #778 
Submitted by: George Mitchell <george@m5p.com > 
						
						
					 
					
						2003-11-24 16:48:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						d161f5a9b2 
					 
					
						
						
							
							Free "engine" resource in case of failure to prevent memory leak  
						
						 
						
						... 
						
						
						
						PR: #778 
Submitted by: George Mitchell <george@m5p.com > 
						
						
					 
					
						2003-11-24 16:47:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9e989810ba 
					 
					
						
						
							
							BN_div() cleanup: replace the use of BN_sub and BN_add with bn_sub_words  
						
						 
						
						... 
						
						
						
						and bn_add_words to avoid using fake bignums to window other bignums that
can lead to corruption. This change allows all bignum tests to pass with
BN_DEBUG and BN_DEBUG_RAND debugging and valgrind. NB: This should be
tested on a few different architectures and configuration targets, as the
bignum code this deals with is quite preprocessor (and assembly) sensitive.
Submitted by: Nils Narsch
Reviewed by: Geoff Thorpe, Ulf Moeller 
						
						
					 
					
						2003-11-22 20:23:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						28474e26f4 
					 
					
						
						
							
							bn_sub_part_words() is unused in 0.9.7.  
						
						 
						
						... 
						
						
						
						Spotted by Markus Friedl. 
						
						
					 
					
						2003-11-22 10:42:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						ec2179cf81 
					 
					
						
						
							
							Fix a small bug in str_copy: if more than one variable is replaced, make  
						
						 
						
						... 
						
						
						
						sure the current length is used to calculate the new buffer length instead
of using the old length (prior to any variable substitution).
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-21 21:42:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a8287a90ea 
					 
					
						
						
							
							Give CRLDP its standard name.  
						
						 
						
						... 
						
						
						
						Max req -x509 use V1 if extensions section absent. 
						
						
					 
					
						2003-11-20 22:45:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						85421c7148 
					 
					
						
						
							
							Give CRLDP its standard name.  
						
						 
						
						... 
						
						
						
						Max req -x509 use V1 if extensions section absent. 
						
						
					 
					
						2003-11-20 22:43:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						ad5f0ed509 
					 
					
						
						
							
							hpux64-parisc2-gcc target added. Once it is verified, ./config should  
						
						 
						
						... 
						
						
						
						be modified to choose it instead of hpux64-parisc-gcc, which should
then be removed. hpux64-parisc-cc is removed already now as redundant
[in case you wonder, 64-bit HP-UX ABI *implies* PA-RISC2.0]. 
						
						
					 
					
						2003-11-20 19:10:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						0a4c8baf5e 
					 
					
						
						
							
							./config failed to correctly detect if gcc uses 64-bit ABI on HP-UX.  
						
						 
						
						... 
						
						
						
						PR: 772 
						
						
					 
					
						2003-11-20 18:33:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						77cc150b61 
					 
					
						
						
							
							Remove duplicate prototypes have already been (correctly) added to rsa.h,  
						
						 
						
						... 
						
						
						
						as this is already included by x509.h anyway. 
						
						
					 
					
						2003-11-19 05:18:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						95de3d204f 
					 
					
						
						
							
							Make sure to initialize AES counters to obtain proper results.  
						
						 
						
						... 
						
						
						
						Submitted by: Kirill Kochetkov <kochet@ixbt.com >
PR: #748  
						
						
					 
					
						2003-11-18 18:27:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						890b2abf19 
					 
					
						
						
							
							Make sure to initialize AES counters to obtain proper results.  
						
						 
						
						... 
						
						
						
						Submitted by: Kirill Kochetkov <kochet@ixbt.com >
PR: #748  
						
						
					 
					
						2003-11-18 18:26:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						31182ad39b 
					 
					
						
						
							
							re-enable the test, keeping the original method for RAND_pseudo_bytes  
						
						 
						
						... 
						
						
						
						which is used by BN_DEBUG_RAND
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-16 19:33:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						6b051c4ebc 
					 
					
						
						
							
							Catch error condition to prevent NULL pointer dereference.  
						
						 
						
						... 
						
						
						
						Submitted by: Goetz Babin-Ebell <babin-ebell@trustcenter.de >
PR: #766  
						
						
					 
					
						2003-11-16 16:31:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f35232e6f3 
					 
					
						
						
							
							Catch error condition to prevent NULL pointer dereference.  
						
						 
						
						... 
						
						
						
						Submitted by: Goetz Babin-Ebell <babin-ebell@trustcenter.de >
PR: #766  
						
						
					 
					
						2003-11-16 16:30:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						fda5e38551 
					 
					
						
						
							
							Provide ASFLAGS in the subdirectories handling assembler code.  
						
						 
						
						... 
						
						
						
						Submitted by: Tim Rice <tim@multitalents.net >
PR: #735 , #765  
						
						
					 
					
						2003-11-16 14:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a601df36f3 
					 
					
						
						
							
							Provide ASFLAGS in the subdirectories handling assembler code.  
						
						 
						
						... 
						
						
						
						Submitted by: Tim Rice <tim@multitalents.net >
PR: #735 , #765  
						
						
					 
					
						2003-11-16 14:37:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						ac9c6e10a4 
					 
					
						
						
							
							The x9.62 tests replace the PRNG with specific numbers,  
						
						 
						
						... 
						
						
						
						so don't run them if BN_DEBUG_RAND is defined.
Also, fix another small bug.
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-16 12:24:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						1a01733047 
					 
					
						
						
							
							BN_set_bit() etc should use "unsigned int".  
						
						 
						
						... 
						
						
						
						Keep it as is to avoid an API change, but check for negativ values.
Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-15 08:37:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d2cd46127c 
					 
					
						
						
							
							Less restrictive debugging build.  
						
						 
						
						
						
						
					 
					
						2003-11-14 14:06:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9dde17e8b4 
					 
					
						
						
							
							This rewrites two "for" loops in BN_rshift() - equality with zero is  
						
						 
						
						... 
						
						
						
						generally a more efficient comparison than comparing two integers, and the
first of these two loops was off-by-one (copying one too many values). This
change also removes a superfluous assignment that would set an unused word
to zero (and potentially allow an overrun in some cases).
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-13 15:03:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						37af03d311 
					 
					
						
						
							
							General improvements to the ec_asn1.c code. This squashes at least one bug  
						
						 
						
						... 
						
						
						
						(where it was impossible to create an EC certificate with a compressed
public key), and has some style improvements based on some comments from
Steve Henson about use of the ASN1 macros.
Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-10 18:09:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f7a397cc8d 
					 
					
						
						
							
							Avoid possible memory leaks in error-handling.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Geoff Thorpe 
						
						
					 
					
						2003-11-10 18:05:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cd2e8a6f2d 
					 
					
						
						
							
							Print out GeneralizedTime and UTCTime in ASN1_STRING_print_ex().  
						
						 
						
						
						
						
					 
					
						2003-11-10 01:37:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2d4b834926 
					 
					
						
						
							
							Oops!  
						
						 
						
						
						
						
					 
					
						2003-11-10 01:29:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c22e6753ef 
					 
					
						
						
							
							Print out GeneralizedTime and UTCTime in ASN1_STRING_print_ex().  
						
						 
						
						
						
						
					 
					
						2003-11-10 01:25:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						d18b993c43 
					 
					
						
						
							
							Geoff suggested a more succinct description for "top".  
						
						 
						
						
						
						
					 
					
						2003-11-07 01:33:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						e6e81c5894 
					 
					
						
						
							
							oops... the description of ->top was inaccurate (the example is correct though)  
						
						 
						
						
						
						
					 
					
						2003-11-07 00:07:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f75abcefed 
					 
					
						
						
							
							This extends the debugging macros to use "pollution" during  
						
						 
						
						... 
						
						
						
						bn_correct_top(), previously only bn_check_top() did this. 
						
						
					 
					
						2003-11-06 23:24:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						18f62d4b82 
					 
					
						
						
							
							Add debug-screening of input parameters to some functions I'd missed  
						
						 
						
						... 
						
						
						
						before. 
						
						
					 
					
						2003-11-06 23:13:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5c0c22803e 
					 
					
						
						
							
							Put more debug screening in BN_div() and correct a comment.  
						
						 
						
						
						
						
					 
					
						2003-11-06 23:11:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0ef85c7f45 
					 
					
						
						
							
							This is a revert of my previous commit to "improve" the declaration of  
						
						 
						
						... 
						
						
						
						constant BIGNUMs. It turns out that this trips up different but equally
useful compiler warnings to -Wcast-qual, and so wasn't worth the ugliness
it created. (Thanks to Ulf for the forehead-slap.) 
						
						
					 
					
						2003-11-05 19:30:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						078dd1a0f9 
					 
					
						
						
							
							typo in comment  
						
						 
						
						
						
						
					 
					
						2003-11-05 17:28:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						2b96c95197 
					 
					
						
						
							
							cleanup as discussed with Geoff  
						
						 
						
						
						
						
					 
					
						2003-11-05 17:28:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c5f1c7b4d8 
					 
					
						
						
							
							Cygwin debugging  
						
						 
						
						
						
						
					 
					
						2003-11-05 17:27:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d870740cd7 
					 
					
						
						
							
							Put the first stage of my bignum debugging adventures into CVS. This code  
						
						 
						
						... 
						
						
						
						is itself experimental, and in addition may cause execution to break on
existing openssl "bugs" that previously were harmless or at least
invisible. 
						
						
					 
					
						2003-11-04 22:54:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d8ec0dcf45 
					 
					
						
						
							
							Avoid some shadowed variable names.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-11-04 00:51:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c465e7941e 
					 
					
						
						
							
							This is the least unacceptable way I've found for declaring the bignum data  
						
						 
						
						... 
						
						
						
						and structures as constant without having to cast away const at any point.
There is still plenty of other code that makes gcc's "-Wcast-qual" unhappy,
but crypto/bn/ is now ok. Purists are welcome to suggest alternatives. 
						
						
					 
					
						2003-11-04 00:29:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						933398f110 
					 
					
						
						
							
							Engines are usually binary, and should therefore be in INSTALLTOP  
						
						 
						
						... 
						
						
						
						rather than OPENSSLDIR. 
						
						
					 
					
						2003-10-31 10:48:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cfd06a6223 
					 
					
						
						
							
							Let exit codes propagate from within for loops.  
						
						 
						
						
						
						
					 
					
						2003-10-31 06:58:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a9fd78f9da 
					 
					
						
						
							
							bn_div() does some pretty nasty things with temporary variables,  
						
						 
						
						... 
						
						
						
						constructing BIGNUM structures with pointers offset into other bignums
(among other things). This corrects some of it that is too plainly insane,
and tries to ensure that bignums are normalised when passed to other
functions. 
						
						
					 
					
						2003-10-31 01:35:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						5f747c7f4b 
					 
					
						
						
							
							When a BN_CTX is used for temporary workspace, the variables are sometimes  
						
						 
						
						... 
						
						
						
						left in an inconsistent state when they are released for later reuse. This
change resets the BIGNUMs when they are released back to the context. 
						
						
					 
					
						2003-10-30 01:07:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						c4db1a8b5c 
					 
					
						
						
							
							This fixes a couple of cases where an inconsistent BIGNUM could be passed as  
						
						 
						
						... 
						
						
						
						input to a function. 
						
						
					 
					
						2003-10-30 01:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f7939fcd9a 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-10-29 23:25:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						d531c9014d 
					 
					
						
						
							
							Tighten up my compiler settings.  
						
						 
						
						
						
						
					 
					
						2003-10-29 23:25:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						aca95e0b2f 
					 
					
						
						
							
							Remove a line that was causing redundant declarations.  
						
						 
						
						... 
						
						
						
						Obtained from: Stephen Henson <steve@openssl.org > 
						
						
					 
					
						2003-10-29 22:55:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bc3c578208 
					 
					
						
						
							
							Copy-n-paste bug (don't mix variable declarations and code). This sets the  
						
						 
						
						... 
						
						
						
						callback structure just before it is needed. 
						
						
					 
					
						2003-10-29 22:30:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						06e4024d98 
					 
					
						
						
							
							Oops, this file already had the "empty source file" workaround but it  
						
						 
						
						... 
						
						
						
						requires -DPEDANTIC and was hidden at the bottom of the file. This moves it
to the top and removes the redundant declaration. 
						
						
					 
					
						2003-10-29 22:25:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8087d8f7ea 
					 
					
						
						
							
							Make md32_common.h friendlier to compiler warnings.  
						
						 
						
						... 
						
						
						
						Obtained from: Andy Polyakov <appro@openssl.org > 
						
						
					 
					
						2003-10-29 20:55:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						31166ec8f3 
					 
					
						
						
							
							Some provisional bignum debugging has begun to detect inconsistent BIGNUM  
						
						 
						
						... 
						
						
						
						structures being passed in to or out of API functions, and this corrects a
couple of cases found so far.
Also, lop off a couple of bytes of white-space. 
						
						
					 
					
						2003-10-29 20:47:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2754597013 
					 
					
						
						
							
							A general spring-cleaning (in autumn) to fix up signed/unsigned warnings.  
						
						 
						
						... 
						
						
						
						I have tried to convert 'len' type variable declarations to unsigned as a
means to address these warnings when appropriate, but when in doubt I have
used casts in the comparisons instead. The better solution (that would get
us all lynched by API users) would be to go through and convert all the
function prototypes and structure definitions to use unsigned variables
except when signed is necessary. The proliferation of (signed) "int" for
strictly non-negative uses is unfortunate. 
						
						
					 
					
						2003-10-29 20:24:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2ce90b9b74 
					 
					
						
						
							
							BN_CTX is opaque and the static initialiser BN_CTX_init() is not used  
						
						 
						
						... 
						
						
						
						except internally to the allocator BN_CTX_new(), as such this deprecates
the use of BN_CTX_init() in the API. Moreover, the structure definition of
BN_CTX is taken out of bn_lcl.h and moved into bn_ctx.c itself.
NDEBUG should probably only be "forced" in the top-level configuration, but
until it is I will avoid removing it from bn_ctx.c which might surprise
people with massive slow-downs in their keygens. So I've left it in
bn_ctx.c but tidied up the preprocessor logic a touch and made it more
tolerant of debugging efforts. 
						
						
					 
					
						2003-10-29 18:04:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						db5b10fab5 
					 
					
						
						
							
							Removing those memcpy()s also took away the possibility for in and out to  
						
						 
						
						... 
						
						
						
						be the same.  Therefore, the removed memcpy()s need to be restored. 
						
						
					 
					
						2003-10-29 06:21:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e952ae4fc 
					 
					
						
						
							
							Removing those memcpy()s also took away the possibility for in and out to  
						
						 
						
						... 
						
						
						
						be the same.  Therefore, the removed memcpy()s need to be restored. 
						
						
					 
					
						2003-10-29 06:21:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						db59141467 
					 
					
						
						
							
							remove accidentally committed debugging cruft.  
						
						 
						
						
						
						
					 
					
						2003-10-29 05:35:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8a66d17899 
					 
					
						
						
							
							Remove an unnecessary cast that causes certain compilers (eg. mine) some  
						
						 
						
						... 
						
						
						
						confusion. Also silence a couple of signed/unsigned warnings. 
						
						
					 
					
						2003-10-29 05:00:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2eeaa0261e 
					 
					
						
						
							
							Remove redundant declaration.  
						
						 
						
						
						
						
					 
					
						2003-10-29 04:58:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8dc344ccbf 
					 
					
						
						
							
							Relax some over-zealous constification that gave some lhash-based code no  
						
						 
						
						... 
						
						
						
						choice but to have to cast away "const" qualifiers from their prototypes.
This does not remove constification restrictions from hash/compare
callbacks, but allows destructor commands to be run over a tables' elements
without bad casts. 
						
						
					 
					
						2003-10-29 04:57:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6bcd3f903a 
					 
					
						
						
							
							Comments out some unimplemented functions instead of redeclaring them.  
						
						 
						
						
						
						
					 
					
						2003-10-29 04:42:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						40f935f5b4 
					 
					
						
						
							
							Avoid "empty source file" warnings.  
						
						 
						
						
						
						
					 
					
						2003-10-29 04:41:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0991f07034 
					 
					
						
						
							
							For whatever reason (compiler or header bugs), at least one commonly-used  
						
						 
						
						... 
						
						
						
						linux system (namely mine) chokes on our definitions and uses of the "HZ"
symbol in crypto/tmdiff.[ch] and apps/speed.c as a "bad function cast"
(when in fact there is no function casting involved at all). In both cases,
it is easily worked around by not defining a cast into the macro and
jiggling the expressions slightly.
In addition - this highlights some cruft in openssl that needs sorting out.
The tmdiff.h header is exported as part of the openssl API despite the fact
that it is ugly as the driven sludge and not used anywhere in the library,
applications, or utilities. More weird still, almost identical code exists
in apps/speed.c though it looks to be slightly tweaked - so either tmdiff
should be updated and used by speed.c, or it should be dumped because it's
obviously not useful enough.
Rather than removing it for now, I've changed the API for tmdiff to at
least make sense. This involves taking the object type (MS_TM) from the
implementation and using it in the header rather than using "char *" in the
API and casting mercilessly in the code (ugh). If someone doesn't like
"MS_TM" and the "ms_time_***" naming, by all means change it. This should
be a harmless improvement, because the existing API is clearly not very
useful (eg. we reimplement it rather than using it in our own utils).
However, someone still needs to take a hack at consolidating speed.c and
tmdiff.[ch] somehow. 
						
						
					 
					
						2003-10-29 04:40:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2aaec9cced 
					 
					
						
						
							
							Update any code that was using deprecated functions so that everything builds  
						
						 
						
						... 
						
						
						
						and links with OPENSSL_NO_DEPRECATED defined. 
						
						
					 
					
						2003-10-29 04:14:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9d473aa2e4 
					 
					
						
						
							
							When OPENSSL_NO_DEPRECATED is defined, deprecated functions are (or should  
						
						 
						
						... 
						
						
						
						be) precompiled out in the API headers. This change is to ensure that if
it is defined when compiling openssl, the deprecated functions aren't
implemented either. 
						
						
					 
					
						2003-10-29 04:06:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						6145b0b183 
					 
					
						
						
							
							The "cryptodev" engine preprocessor logic used undefined symbols in  
						
						 
						
						... 
						
						
						
						comparisons. It's better not to allow this, because it gives false
positives when using compiler warnings that detect mistyped symbols. 
						
						
					 
					
						2003-10-29 04:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						2a85f77146 
					 
					
						
						
							
							Add my own debug config target.  
						
						 
						
						
						
						
					 
					
						2003-10-28 22:57:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						66b82f5aad 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-10-28 22:10:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						12bdceac8a 
					 
					
						
						
							
							Ignore derived file.  
						
						 
						
						
						
						
					 
					
						2003-10-28 17:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						aea293e3bc 
					 
					
						
						
							
							crypto/evp/evptests.txt is copied to tests/ rather than symlinked because  
						
						 
						
						... 
						
						
						
						of windows (see checkin 1.75 of crypto/evp/Makefile.ssl), so quiet cvs
noise for the copied version. 
						
						
					 
					
						2003-10-28 17:24:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						8ad7e3ad2a 
					 
					
						
						
							
							Remove duplicate prototypes have already been (correctly) added to rsa.h,  
						
						 
						
						... 
						
						
						
						as this is already included by x509.h anyway. 
						
						
					 
					
						2003-10-24 16:17:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fa5846e58b 
					 
					
						
						
							
							Correct serious bug in AES-CBC decryption when the message length isn't  
						
						 
						
						... 
						
						
						
						a multiple of AES_BLOCK_SIZE.
Optimize decryption of all complete blocks in AES-CBC by removing an
unnecessary memcpy().
The error was notified by James Fernandes <jf210032@exchange.DAYTONOH.NCR.com >.
The unnecessary memcpy() was found as an effect of investigating that error. 
						
						
					 
					
						2003-10-15 09:00:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b6956b474 
					 
					
						
						
							
							Correct serious bug in AES-CBC decryption when the message length isn't  
						
						 
						
						... 
						
						
						
						a multiple of AES_BLOCK_SIZE.
Optimize decryption of all complete blocks in AES-CBC by removing an
unnecessary memcpy().
The error was notified by James Fernandes <jf210032@exchange.DAYTONOH.NCR.com >.
The unnecessary memcpy() was found as an effect of investigating that error. 
						
						
					 
					
						2003-10-15 09:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0bb6187e71 
					 
					
						
						
							
							The object file is o_str.o, not o_str.c.  
						
						 
						
						... 
						
						
						
						Thanks to Peter Sylvester <Peter.Sylvester@EdelWeb.fr > for the notification. 
						
						
					 
					
						2003-10-13 11:34:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c5a5546389 
					 
					
						
						
							
							Add support for digested data PKCS#7 type.  
						
						 
						
						
						
						
					 
					
						2003-10-11 22:11:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						79e4022a33 
					 
					
						
						
							
							Simplify cipher and digest lookup in PKCS#7 code.  
						
						 
						
						
						
						
					 
					
						2003-10-11 16:47:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						77fe058c10 
					 
					
						
						
							
							Simplify cipher and digest lookup in PKCS#7 code.  
						
						 
						
						
						
						
					 
					
						2003-10-11 16:46:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8d9086dfa2 
					 
					
						
						
							
							New function to initialize a PKCS7 structure of type other.  
						
						 
						
						
						
						
					 
					
						2003-10-10 23:40:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0602abf5bd 
					 
					
						
						
							
							Initialize digested data type in PKCS7_set_type().  
						
						 
						
						
						
						
					 
					
						2003-10-10 23:31:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						caf044cb3e 
					 
					
						
						
							
							Retrieve correct content to sign when the  
						
						 
						
						... 
						
						
						
						type is "other". 
						
						
					 
					
						2003-10-10 23:25:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						80986c9ced 
					 
					
						
						
							
							Retrieve correct content to sign when the  
						
						 
						
						... 
						
						
						
						type is "other". 
						
						
					 
					
						2003-10-10 23:24:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a08ced78c8 
					 
					
						
						
							
							Avoid warnings: add missing prototype, don't shadow.  
						
						 
						
						
						
						
					 
					
						2003-10-10 23:07:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ede7c28eb7 
					 
					
						
						
							
							In realloc, don't destroy the old memory area if a new one couldn't be  
						
						 
						
						... 
						
						
						
						allocated.
Notified by Daniel Lucq <daniel@lucq.org > 
						
						
					 
					
						2003-10-07 12:09:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						83eb412da8 
					 
					
						
						
							
							In realloc, don't destroy the old memory area if a new one couldn't be  
						
						 
						
						... 
						
						
						
						allocated.
Notified by Daniel Lucq <daniel@lucq.org > 
						
						
					 
					
						2003-10-07 12:09:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d1c443123 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-10-06 12:22:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f44e184ec6 
					 
					
						
						
							
							s_client should inform the user of any compression/expansion methods used.  
						
						 
						
						
						
						
					 
					
						2003-10-06 12:19:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						377dcdba44 
					 
					
						
						
							
							Add functionality to get information on compression methods (not quite complete).  
						
						 
						
						
						
						
					 
					
						2003-10-06 12:18:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8242354952 
					 
					
						
						
							
							Make sure int SSL_COMP_add_compression_method() checks if a certain  
						
						 
						
						... 
						
						
						
						compression identity is already present among the registered
compression methods, and if so, reject the addition request.
Declare SSL_COMP_get_compression_method() so it can be used properly.
Change ssltest.c so it checks what compression methods are available
and enumerates them.  As a side-effect, built-in compression methods
will be automagically loaded that way.  Additionally, change the
identities for ZLIB and RLE to be conformant to
draft-ietf-tls-compression-05.txt.
Finally, make update.
Next on my list: have the built-in compression methods added
"automatically" instead of requiring that the author call
SSL_COMP_add_compression_method() or
SSL_COMP_get_compression_methods(). 
						
						
					 
					
						2003-10-06 11:00:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c40b9bdefb 
					 
					
						
						
							
							Setting the ex_data index is unsafe in a threaded environment, so  
						
						 
						
						... 
						
						
						
						let's wrap it with a lock. 
						
						
					 
					
						2003-10-06 09:09:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6895cca89d 
					 
					
						
						
							
							Remove unused code, don't use zlib functions that are really macros  
						
						 
						
						... 
						
						
						
						and provide missing prototypes. 
						
						
					 
					
						2003-10-04 09:09:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c9d3957986 
					 
					
						
						
							
							Check for errors from SSL_COMP_add_compression_method().  
						
						 
						
						... 
						
						
						
						Notified by Andrew Marlow <AMARLOW1@bloomberg.net > 
						
						
					 
					
						2003-10-02 10:41:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f82ab534c6 
					 
					
						
						
							
							Check for errors from SSL_COMP_add_compression_method().  
						
						 
						
						... 
						
						
						
						Notified by Andrew Marlow <AMARLOW1@bloomberg.net > 
						
						
					 
					
						2003-10-02 10:41:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						05e962ddf8 
					 
					
						
						
							
							Correct a mixup of return values  
						
						 
						
						
						
						
					 
					
						2003-10-02 10:38:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6e8c19ed1 
					 
					
						
						
							
							Correct a mixup of return values  
						
						 
						
						
						
						
					 
					
						2003-10-02 10:38:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cf89b40584 
					 
					
						
						
							
							Include e_os.h to get a proper definition of memmove on the platforms  
						
						 
						
						... 
						
						
						
						that do not have it. 
						
						
					 
					
						2003-10-01 20:43:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d680c13060 
					 
					
						
						
							
							Include e_os.h to get a proper definition for memmove() for the  
						
						 
						
						... 
						
						
						
						platforms that don't have it. 
						
						
					 
					
						2003-10-01 20:41:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c076599c18 
					 
					
						
						
							
							Corrected misplacement of one of the greps...  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:06:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a510e9e4fc 
					 
					
						
						
							
							Remove leading and trailing spaces and tabs  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:04:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4d8148fa98 
					 
					
						
						
							
							Remove leading and trailing spaces and tabs  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:04:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1a9e663b20 
					 
					
						
						
							
							Avoid 'file names' with spaces  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:03:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aed29ce5ea 
					 
					
						
						
							
							Avoid 'file names' with spaces  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:03:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0dd675509c 
					 
					
						
						
							
							Use correct case for manual page references  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:02:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ad82c123a 
					 
					
						
						
							
							Use correct case for manual page references  
						
						 
						
						
						
						
					 
					
						2003-10-01 15:02:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						144aa3c56e 
					 
					
						
						
							
							Correct incorrect mode bits change.  
						
						 
						
						
						
						
					 
					
						2003-09-30 17:31:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						eeff6bb6b3 
					 
					
						
						
							
							Correct incorrect mode bits change.  
						
						 
						
						
						
						
					 
					
						2003-09-30 17:31:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						202892dfd6 
					 
					
						
						
							
							Correct buggy PODs (missing commas and a prepended space).  
						
						 
						
						
						
						
					 
					
						2003-09-30 17:22:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d90e74c50c 
					 
					
						
						
							
							Correct buggy PODs (missing commas and a prepended space).  
						
						 
						
						
						
						
					 
					
						2003-09-30 17:22:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2990244980 
					 
					
						
						
							
							ASN1 parse fix and release file changes.  
						
						 
						
						
						
						
					 
					
						2003-09-30 16:47:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0c6fa13fee 
					 
					
						
						
							
							In order to get the expected self signed error when  
						
						 
						
						... 
						
						
						
						calling X509_verify_cert() in x509.c the cert should
not be added to the trusted store. 
						
						
					 
					
						2003-09-30 13:10:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						68f0bcfbc3 
					 
					
						
						
							
							Changes for release  
						
						 
						
						
						
						
					 
					
						2003-09-30 12:08:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						662ede2370 
					 
					
						
						
							
							Fix for ASN1 parsing bugs.  
						
						 
						
						
						
						
					 
					
						2003-09-30 12:05:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d0edf6e593 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-09-29 20:17:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c93f908f7f 
					 
					
						
						
							
							Fix to make it compile under Win32.  
						
						 
						
						
						
						
					 
					
						2003-09-29 17:10:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						16d2a7caef 
					 
					
						
						
							
							Further VxWorks changes from Bob Bradley <bob@chaoticsoftware.com>, this  
						
						 
						
						... 
						
						
						
						time involving VxWorks on MIPS 
						
						
					 
					
						2003-09-28 14:07:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c798868d96 
					 
					
						
						
							
							Further VxWorks changes from Bob Bradley <bob@chaoticsoftware.com>, this  
						
						 
						
						... 
						
						
						
						time involving VxWorks on MIPS 
						
						
					 
					
						2003-09-28 14:06:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						057a04398d 
					 
					
						
						
							
							Synchronise util/libeay.num with the 0.9.7-stable one.  
						
						 
						
						... 
						
						
						
						make update 
						
						
					 
					
						2003-09-28 09:34:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b7b5cd6132 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-09-28 09:25:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						71583fb0d7 
					 
					
						
						
							
							Uhmm, It seem to have forgotten one file when I committed the MSDOS  
						
						 
						
						... 
						
						
						
						change yesterday.
PR: 669 
						
						
					 
					
						2003-09-28 07:11:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f3ba9428f 
					 
					
						
						
							
							Uhmm, It seem to have forgotten one file when I committed the MSDOS  
						
						 
						
						... 
						
						
						
						change yesterday.
PR: 669 
						
						
					 
					
						2003-09-28 07:11:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						058f86e9e0 
					 
					
						
						
							
							Change the indentation from 12 to indent+4.  
						
						 
						
						... 
						
						
						
						PR: 657 
						
						
					 
					
						2003-09-27 22:48:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3c02e24bb3 
					 
					
						
						
							
							Change the indentation from 12 to indent+4.  
						
						 
						
						... 
						
						
						
						PR: 657 
						
						
					 
					
						2003-09-27 22:48:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4509102cb9 
					 
					
						
						
							
							Make MD5 assembler code able to handle messages larger than 2GB on 32-bit  
						
						 
						
						... 
						
						
						
						systems and above.
PR: 664 
						
						
					 
					
						2003-09-27 22:14:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1be02dd842 
					 
					
						
						
							
							Make MD5 assembler code able to handle messages larger than 2GB on 32-bit  
						
						 
						
						... 
						
						
						
						systems and above.
PR: 664 
						
						
					 
					
						2003-09-27 22:14:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						87c99c59bd 
					 
					
						
						
							
							Selected changes for MSDOS, contributed by Gisle Vanem <giva@bgnett.no>.  
						
						 
						
						... 
						
						
						
						PR: 669 
						
						
					 
					
						2003-09-27 21:56:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3d7c4a5a6d 
					 
					
						
						
							
							Selected changes for MSDOS, contributed by Gisle Vanem <giva@bgnett.no>.  
						
						 
						
						... 
						
						
						
						PR: 669 
						
						
					 
					
						2003-09-27 21:56:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						732d1bf43a 
					 
					
						
						
							
							Add reference counting around the thread state hash table.  
						
						 
						
						... 
						
						
						
						Unfortunately, this means that the dynamic ENGINE version just went up, and
isn't backward compatible.
PR: 678 
						
						
					 
					
						2003-09-27 20:29:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						11171f3c74 
					 
					
						
						
							
							Add reference counting around the thread state hash table.  
						
						 
						
						... 
						
						
						
						Unfortunately, this means that the dynamic ENGINE version just went up, and
isn't backward compatible.
PR: 678 
						
						
					 
					
						2003-09-27 20:29:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						88fd7424f6 
					 
					
						
						
							
							Have ssl3_ssl3_send_client_verify() change the state to SSL3_ST_SW_CERT_VRFY_B.  
						
						 
						
						... 
						
						
						
						PR: 679 
						
						
					 
					
						2003-09-27 19:32:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ba9f80c5d5 
					 
					
						
						
							
							Have ssl3_ssl3_send_client_verify() change the state to SSL3_ST_SW_CERT_VRFY_B.  
						
						 
						
						... 
						
						
						
						PR: 679 
						
						
					 
					
						2003-09-27 19:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						30a452ab32 
					 
					
						
						
							
							Have ssl3_send_certificate_request() change the state to SSL3_ST_SW_CERT_REQ_B.  
						
						 
						
						... 
						
						
						
						PR: 680 
						
						
					 
					
						2003-09-27 19:27:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e59659dc41 
					 
					
						
						
							
							Have ssl3_send_certificate_request() change the state to SSL3_ST_SW_CERT_REQ_B.  
						
						 
						
						... 
						
						
						
						PR: 680 
						
						
					 
					
						2003-09-27 19:27:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9c90f27dac 
					 
					
						
						
							
							Remove extra argument to BIO_printf().  
						
						 
						
						... 
						
						
						
						PR: 685 
						
						
					 
					
						2003-09-27 18:31:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ec4e600da6 
					 
					
						
						
							
							Include the instance in the Kerberos ticket information.  
						
						 
						
						... 
						
						
						
						In s_server, print the received Kerberos information.
PR: 693 
						
						
					 
					
						2003-09-27 17:55:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						253e893c2b 
					 
					
						
						
							
							Include the instance in the Kerberos ticket information.  
						
						 
						
						... 
						
						
						
						In s_server, print the received Kerberos information.
PR: 693 
						
						
					 
					
						2003-09-27 17:55:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4097dce455 
					 
					
						
						
							
							Correct small documentation error.  
						
						 
						
						... 
						
						
						
						PR: 698 
						
						
					 
					
						2003-09-27 10:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0ad2c4f85b 
					 
					
						
						
							
							Correct small documentation error.  
						
						 
						
						... 
						
						
						
						PR: 698 
						
						
					 
					
						2003-09-27 10:39:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0e6c20da46 
					 
					
						
						
							
							Free the Kerberos context upon freeing the SSL.  
						
						 
						
						... 
						
						
						
						Contributed by Andrew Mann <amann@tccgi.com > 
						
						
					 
					
						2003-09-27 07:35:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6b659cba4 
					 
					
						
						
							
							Add necessary changes to be able to build on VxWorks for PPC860.  
						
						 
						
						... 
						
						
						
						Contributed by Bob Bradley <bob@chaoticsoftware.com > 
						
						
					 
					
						2003-09-27 07:34:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c9b552534e 
					 
					
						
						
							
							Free the Kerberos context upon freeing the SSL.  
						
						 
						
						... 
						
						
						
						Contributed by Andrew Mann <amann@tccgi.com > 
						
						
					 
					
						2003-09-27 07:33:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f0ad5fc2ab 
					 
					
						
						
							
							Add necessary changes to be able to build on VxWorks for PPC860.  
						
						 
						
						... 
						
						
						
						Contributed by Bob Bradley <bob@chaoticsoftware.com > 
						
						
					 
					
						2003-09-27 07:24:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ralf S. Engelschall 
							
						 
					 
					
						
						
							
						
						6bd27f8644 
					 
					
						
						
							
							Fix prime generation loop in crypto/bn/bn_prime.pl by making  
						
						 
						
						... 
						
						
						
						sure the loop does correctly stop and breaking ("division by zero")
modulus operations are not performed. The (pre-generated) prime
table crypto/bn/bn_prime.h was already correct, but it could not be
re-generated on some platforms because of the "division by zero"
situation in the script. 
						
						
					 
					
						2003-09-25 13:57:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						dfe399e7d9 
					 
					
						
						
							
							Add -passin support to rsautl  
						
						 
						
						
						
						
					 
					
						2003-09-21 02:20:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						7068c8b1a6 
					 
					
						
						
							
							In order to get the expected self signed error when  
						
						 
						
						... 
						
						
						
						calling X509_verify_cert() in x509.c the cert should
not be added to the trusted store. 
						
						
					 
					
						2003-09-21 02:18:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5f444c8fcd 
					 
					
						
						
							
							In order to get the expected self signed error when  
						
						 
						
						... 
						
						
						
						calling X509_verify_cert() in x509.c the cert should
not be added to the trusted store. 
						
						
					 
					
						2003-09-21 02:15:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						82384690e2 
					 
					
						
						
							
							Typos.  
						
						 
						
						
						
						
					 
					
						2003-09-09 23:44:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e6fa67fa93 
					 
					
						
						
							
							Generalise the definition of strcasecmp() and strncasecmp() for  
						
						 
						
						... 
						
						
						
						platforms that don't (necessarely) have it.  In the case of VMS, this
means moving a couple of functions from apps/ to crypto/ and make them
general (although only used privately). 
						
						
					 
					
						2003-09-09 14:48:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						62afa8bd58 
					 
					
						
						
							
							These should be write-locks, not read-locks.  
						
						 
						
						
						
						
					 
					
						2003-09-08 16:00:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						9ea72d3705 
					 
					
						
						
							
							These should be write-locks, not read-locks.  
						
						 
						
						
						
						
					 
					
						2003-09-08 15:47:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						a907751350 
					 
					
						
						
							
							certain changes have to be listed twice in this file because OpenSSL  
						
						 
						
						... 
						
						
						
						0.9.6h forked into 0.9.6i and 0.9.7 ... 
						
						
					 
					
						2003-09-04 12:52:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2689b8f326 
					 
					
						
						
							
							certain changes have to be listed twice in this file because OpenSSL  
						
						 
						
						... 
						
						
						
						0.9.6h forked into 0.9.6i and 0.9.7 ... 
						
						
					 
					
						2003-09-04 12:52:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						560dfd2a02 
					 
					
						
						
							
							New -ignore_err option in ocsp application to stop the server  
						
						 
						
						... 
						
						
						
						exiting on the first error in a request. 
						
						
					 
					
						2003-09-03 23:56:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bd69ac5c93 
					 
					
						
						
							
							New -ignore_err option in ocsp application to stop the server  
						
						 
						
						... 
						
						
						
						exiting on the first error in a request. 
						
						
					 
					
						2003-09-03 23:54:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						14f3d7c5cc 
					 
					
						
						
							
							Only accept a client certificate if the server requests  
						
						 
						
						... 
						
						
						
						one, as required by SSL/TLS specs. 
						
						
					 
					
						2003-09-03 23:47:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33ed371ec9 
					 
					
						
						
							
							Only accept a client certificate if the server requests  
						
						 
						
						... 
						
						
						
						one, as required by SSL/TLS specs. 
						
						
					 
					
						2003-09-03 23:42:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						510dc1ecd0 
					 
					
						
						
							
							outlen should be int * in out_utf8.  
						
						 
						
						
						
						
					 
					
						2003-08-21 12:32:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3b07c32fe7 
					 
					
						
						
							
							outlen should be int * in out_utf8.  
						
						 
						
						
						
						
					 
					
						2003-08-21 12:31:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						563c05e2dc 
					 
					
						
						
							
							fix out-of-bounds check in lock_dbg_cb (was too lose to detect all  
						
						 
						
						... 
						
						
						
						invalid cases)
PR: 674 
						
						
					 
					
						2003-08-14 10:33:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9cc513a000 
					 
					
						
						
							
							fix out-of-bounds check in lock_dbg_cb (was too lose to detect all  
						
						 
						
						... 
						
						
						
						invalid cases)
PR: 674 
						
						
					 
					
						2003-08-14 10:33:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cac32e5acd 
					 
					
						
						
							
							Undo the change that left LD_LIBRARY_PATH unchanged.  The errors I saw  
						
						 
						
						... 
						
						
						
						weren't due to that, but to a change on the SCO machines I used for
testing, where my $PATH was suddenly incorrect. 
						
						
					 
					
						2003-08-14 06:54:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						643ecd2ed6 
					 
					
						
						
							
							make sure no error is left in the queue that is intentionally ignored  
						
						 
						
						
						
						
					 
					
						2003-08-11 18:56:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0e9edc98d4 
					 
					
						
						
							
							make sure no error is left in the queue that is intentionally ignored  
						
						 
						
						
						
						
					 
					
						2003-08-11 18:56:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27bd937cc0 
					 
					
						
						
							
							Don't fiddle with LD_LIBRARY_PATH when building non-static.  
						
						 
						
						
						
						
					 
					
						2003-08-11 11:46:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f56c451143 
					 
					
						
						
							
							Oops, removed a little too much.  
						
						 
						
						
						
						
					 
					
						2003-08-11 09:56:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						05a1f76093 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-08-11 09:53:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4ed9388e5d 
					 
					
						
						
							
							A new branch for FIPS-related changes has been created with the name  
						
						 
						
						... 
						
						
						
						OpenSSL-fips-0_9_7-stable.
Since the 0.9.7-stable branch is supposed to be in freeze and should
only contain bug corrections, this change removes the FIPS changes
from that branch. 
						
						
					 
					
						2003-08-11 09:37:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						94a1183fab 
					 
					
						
						
							
							Avoid clashing with the regular DES functions when not compiling with  
						
						 
						
						... 
						
						
						
						-DFIPS.  This is basically only visible when building with shared
library supoort... 
						
						
					 
					
						2003-08-08 10:08:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						88401ed449 
					 
					
						
						
							
							Correct two problems, found by Martin Kochanski <cardbox@easynet.co.uk>:  
						
						 
						
						... 
						
						
						
						1. CreateToolhelp32Snapshot returns INVALID_HANDLE_VALUE, not NULL, on error.
2. On Windows CE, a snapshot handle is closed with CloseToolhelp32Snapshot,
   not CloseHandle. 
						
						
					 
					
						2003-08-07 11:57:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						30e4269241 
					 
					
						
						
							
							Correct two problems, found by Martin Kochanski <cardbox@easynet.co.uk>:  
						
						 
						
						... 
						
						
						
						1. CreateToolhelp32Snapshot returns INVALID_HANDLE_VALUE, not NULL, on error.
2. On Windows CE, a snapshot handle is closed with CloseToolhelp32Snapshot,
   not CloseHandle. 
						
						
					 
					
						2003-08-07 11:57:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						59315df637 
					 
					
						
						
							
							add OpenSSL license  
						
						 
						
						... 
						
						
						
						fix typo 
						
						
					 
					
						2003-08-06 10:38:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						3aa8d3a7f1 
					 
					
						
						
							
							add OpenSSL license  
						
						 
						
						... 
						
						
						
						fix typo 
						
						
					 
					
						2003-08-06 10:36:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3659df7d15 
					 
					
						
						
							
							make update  
						
						 
						
						... 
						
						
						
						(I'm quite worried about what this will do to compatibility with
earlier 0.9.7 versions) 
						
						
					 
					
						2003-08-04 13:26:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						16f1fdbc8b 
					 
					
						
						
							
							Add an empty list of AES tests.  At least, the test suite will pass,  
						
						 
						
						... 
						
						
						
						and perhaps the conflict this generates on the person that hasn't yet
committed the real file will prompt him to do so :-). 
						
						
					 
					
						2003-08-04 12:03:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						98c1a4900c 
					 
					
						
						
							
							Inclusion of openssl/engine.h should always be wrapped with a check that  
						
						 
						
						... 
						
						
						
						OPENSSL_NO_ENGINE is not defined. 
						
						
					 
					
						2003-08-04 10:12:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b6e7c8c65 
					 
					
						
						
							
							Inclusion of openssl/engine.h should always be wrapped with a check that  
						
						 
						
						... 
						
						
						
						OPENSSL_NO_ENGINE is not defined. 
						
						
					 
					
						2003-08-04 10:12:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2541f58309 
					 
					
						
						
							
							Make tests work (CFB1 still doesn't produce the right answers, strangely).  
						
						 
						
						
						
						
					 
					
						2003-08-03 12:22:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6b063f32d9 
					 
					
						
						
							
							Make the EFB NIDs have empty OIDs aliased to the real EFB OID.  
						
						 
						
						
						
						
					 
					
						2003-08-01 17:06:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						693f2e3625 
					 
					
						
						
							
							Replace C++ style comments.  
						
						 
						
						
						
						
					 
					
						2003-08-01 13:07:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						afab06d3f5 
					 
					
						
						
							
							DES CFB8 test.  
						
						 
						
						
						
						
					 
					
						2003-08-01 10:31:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						8fb97c9acd 
					 
					
						
						
							
							Fix DES CFB-r.  
						
						 
						
						
						
						
					 
					
						2003-08-01 10:25:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7312a38d9e 
					 
					
						
						
							
							No C++ comments in C programs!  
						
						 
						
						
						
						
					 
					
						2003-07-31 21:41:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						475e8d3d1d 
					 
					
						
						
							
							If FDIRS is to be treated like SDIRS, let's not forget to initialize  
						
						 
						
						... 
						
						
						
						it in Makefile.org. 
						
						
					 
					
						2003-07-31 21:30:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c5f070d5d5 
					 
					
						
						
							
							Whoops, forgot FIPS DES, also add EVPs for DES CFB1 and 8.  
						
						 
						
						
						
						
					 
					
						2003-07-30 18:30:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						1b9e855744 
					 
					
						
						
							
							Test vectors and useless samples.  
						
						 
						
						
						
						
					 
					
						2003-07-29 17:53:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						f3b2ea53e2 
					 
					
						
						
							
							AES CFB8.  
						
						 
						
						
						
						
					 
					
						2003-07-29 17:05:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						ed71769948 
					 
					
						
						
							
							Missing files.  
						
						 
						
						
						
						
					 
					
						2003-07-29 15:17:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e1c0a9c416 
					 
					
						
						
							
							MMT for CFB1  
						
						 
						
						
						
						
					 
					
						2003-07-29 14:34:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						0b8c5413a4 
					 
					
						
						
							
							Reformat.  
						
						 
						
						
						
						
					 
					
						2003-07-29 14:06:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						c473d53898 
					 
					
						
						
							
							The rest of the keysizes for CFB1, working AES AVS test for CFB1.  
						
						 
						
						
						
						
					 
					
						2003-07-29 13:24:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e8f8249319 
					 
					
						
						
							
							Working CFB1 and test vectors.  
						
						 
						
						
						
						
					 
					
						2003-07-29 10:56:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						e2ced802b4 
					 
					
						
						
							
							Add support for partial CFB modes, make tests work, update dependencies.  
						
						 
						
						
						
						
					 
					
						2003-07-28 15:08:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						9163658aa8 
					 
					
						
						
							
							New fingerprints.  
						
						 
						
						
						
						
					 
					
						2003-07-28 09:56:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						d3a15e132d 
					 
					
						
						
							
							Build when not FIPS.  
						
						 
						
						
						
						
					 
					
						2003-07-27 21:13:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						47954f114c 
					 
					
						
						
							
							Build in non-FIPS mode.  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:23:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						3ef747c8b6 
					 
					
						
						
							
							Use unified diff.  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:19:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						75622f1ece 
					 
					
						
						
							
							Unfinished FIPS stuff for review/improvement.  
						
						 
						
						
						
						
					 
					
						2003-07-27 17:00:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						a052dd6532 
					 
					
						
						
							
							Add untested CFB-r mode. Will be tested soon.  
						
						 
						
						
						
						
					 
					
						2003-07-27 13:46:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f96d1af449 
					 
					
						
						
							
							Avoid clashes with Win32 names in WinCrypt.h  
						
						 
						
						
						
						
					 
					
						2003-07-23 00:10:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						968766cad8 
					 
					
						
						
							
							updates for draft-ietf-tls-ecc-03.txt  
						
						 
						
						... 
						
						
						
						Submitted by: Douglas Stebila
Reviewed by: Bodo Moeller 
						
						
					 
					
						2003-07-22 12:34:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						652ae06bad 
					 
					
						
						
							
							add test for secp160r1  
						
						 
						
						... 
						
						
						
						add code for kP+lQ timings
Submitted by: Douglas Stebila <douglas.stebila@sun.com >
Reviewed by: Bodo Moeller 
						
						
					 
					
						2003-07-22 10:39:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5cc2658cff 
					 
					
						
						
							
							tolerate extra data at end of client hello for SSL 3.0  
						
						 
						
						... 
						
						
						
						PR: 659 
						
						
					 
					
						2003-07-21 15:17:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ddc38679ce 
					 
					
						
						
							
							tolerate extra data at end of client hello for SSL 3.0  
						
						 
						
						... 
						
						
						
						PR: 659 
						
						
					 
					
						2003-07-21 15:17:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2f4335ec2b 
					 
					
						
						
							
							fix: 0.9.7 is based on 0.9.6h, not on 0.9.6k  
						
						 
						
						... 
						
						
						
						typo in 0.9.6k section 
						
						
					 
					
						2003-07-21 15:08:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						02e0559477 
					 
					
						
						
							
							fix: 0.9.7 is based on 0.9.6h, not on 0.9.6k  
						
						 
						
						... 
						
						
						
						typo in 0.9.6k section 
						
						
					 
					
						2003-07-21 15:08:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ada0e717fa 
					 
					
						
						
							
							new function EC_GROUP_cmp() (used by EVP_PKEY_cmp())  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-07-21 13:43:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						2c789c82be 
					 
					
						
						
							
							manpages for 'openssl ec' and 'openssl ecparam'  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-07-21 13:40:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d143dce03c 
					 
					
						
						
							
							A document that has a very rough description of the X509  
						
						 
						
						... 
						
						
						
						functionality.  This is mostly so there's a way to get from the
crypto.html page to the function descriptions. 
						
						
					 
					
						2003-07-10 08:49:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f9d183c209 
					 
					
						
						
							
							Replace CCITT with ITU-T.  Keep CCITT around as an alias.  
						
						 
						
						... 
						
						
						
						make update
PR: 80 
						
						
					 
					
						2003-07-04 15:45:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2ab0740785 
					 
					
						
						
							
							Make sure openssl.pc is readable by everyone.  
						
						 
						
						... 
						
						
						
						PR: 654 
						
						
					 
					
						2003-07-04 11:41:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						182cd19dea 
					 
					
						
						
							
							Make sure openssl.pc is readable by everyone.  
						
						 
						
						... 
						
						
						
						PR: 654 
						
						
					 
					
						2003-07-04 11:41:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						61f00386ab 
					 
					
						
						
							
							The counter is big-endian.  Since it comes as an array of char,  
						
						 
						
						... 
						
						
						
						there's absolutely no need to special-case it on little-endian
machines.
Notified by Thierry Boivin <Thierry.Boivin@celsecat.com > 
						
						
					 
					
						2003-07-04 11:37:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						82f676c633 
					 
					
						
						
							
							Add a slash so grep doesn't return both ./crypto/bio/bss_mem.o and  
						
						 
						
						... 
						
						
						
						./crypto/mem.o when we're looking for mem.o. 
						
						
					 
					
						2003-07-03 21:43:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5f24adda77 
					 
					
						
						
							
							Oops, I forgot to replace 'counter' with 'ivec' when used...  
						
						 
						
						
						
						
					 
					
						2003-07-03 20:50:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2ae0352b0f 
					 
					
						
						
							
							Oops, I forgot to replace 'counter' with 'ivec' when used...  
						
						 
						
						
						
						
					 
					
						2003-07-03 20:50:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						94805c84d1 
					 
					
						
						
							
							Add -issuer_hash and make -subject_hash the default way to get the  
						
						 
						
						... 
						
						
						
						subject hash, with -hash a synonym kept around for backward
compatibility reasons.
PR: 650 
						
						
					 
					
						2003-07-03 20:45:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						900f062d1f 
					 
					
						
						
							
							The convenience argumetn for -nameopt and -certopt is ca_default, not  
						
						 
						
						... 
						
						
						
						default_ca.
PR: 653 
						
						
					 
					
						2003-07-03 07:46:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6f2f534b58 
					 
					
						
						
							
							The convenience argumetn for -nameopt and -certopt is ca_default, not  
						
						 
						
						... 
						
						
						
						default_ca.
PR: 653 
						
						
					 
					
						2003-07-03 07:46:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ba64c2cc8f 
					 
					
						
						
							
							The 'counter' is really the IV.  
						
						 
						
						
						
						
					 
					
						2003-07-03 06:42:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						da6c44fc97 
					 
					
						
						
							
							The 'counter' is really the IV.  
						
						 
						
						
						
						
					 
					
						2003-07-03 06:42:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						29e62e487f 
					 
					
						
						
							
							Change AES-CTR to increment the IV by 1 instead of 2^64.  
						
						 
						
						
						
						
					 
					
						2003-07-03 06:41:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						da0d33560f 
					 
					
						
						
							
							Change AES-CTR to increment the IV by 1 instead of 2^64.  
						
						 
						
						
						
						
					 
					
						2003-07-03 06:41:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						ec28f9c12c 
					 
					
						
						
							
							Clarify wording of verify_callback() behaviour.  
						
						 
						
						
						
						
					 
					
						2003-06-26 14:03:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						9d19fbc4fc 
					 
					
						
						
							
							Clarify wording of verify_callback() behaviour.  
						
						 
						
						
						
						
					 
					
						2003-06-26 14:03:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e6480faf8 
					 
					
						
						
							
							Only remove old files if they exist.  [Maing32].  
						
						 
						
						... 
						
						
						
						Notified by Michael Gerdau <mgd@technosis.de > 
						
						
					 
					
						2003-06-26 11:58:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aa5ae4841e 
					 
					
						
						
							
							Only remove old files if they exist.  [Maing32].  
						
						 
						
						... 
						
						
						
						Notified by Michael Gerdau <mgd@technosis.de > 
						
						
					 
					
						2003-06-26 11:58:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						eb3d68c454 
					 
					
						
						
							
							Nils Larsch told me I could remove that variable entirely.  
						
						 
						
						
						
						
					 
					
						2003-06-26 11:52:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c89f31def0 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-06-26 10:27:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ed5fae580e 
					 
					
						
						
							
							Implement missing functions.  
						
						 
						
						... 
						
						
						
						Have the f parameter to _ctrl functions have the prototype (*)(void)
rather than (*)(), for the sake of C++ compilers.
Disable unimplemented functionality. 
						
						
					 
					
						2003-06-26 10:26:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d55141ed7a 
					 
					
						
						
							
							"Remove" unused variable  
						
						 
						
						
						
						
					 
					
						2003-06-26 10:23:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a99ce1a574 
					 
					
						
						
							
							Conform with the standard prototype for engine control functions.  
						
						 
						
						
						
						
					 
					
						2003-06-26 07:10:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c687a3d5d5 
					 
					
						
						
							
							Scan through the engines directory as well.  
						
						 
						
						
						
						
					 
					
						2003-06-26 07:05:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dfc3151925 
					 
					
						
						
							
							The definition of dynamic_ctrl() should change along with the  
						
						 
						
						... 
						
						
						
						declaration :-). 
						
						
					 
					
						2003-06-26 07:03:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0fbffe7a71 
					 
					
						
						
							
							implement PKCS  #8  / SEC1 private key format for ECC  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-06-25 21:35:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						00dc2d7551 
					 
					
						
						
							
							Return EOF when an S/MIME part have been read.  
						
						 
						
						
						
						
					 
					
						2003-06-24 17:12:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						037f6e73f1 
					 
					
						
						
							
							Return EOF when an S/MIME part have been read.  
						
						 
						
						
						
						
					 
					
						2003-06-24 17:11:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cf82439de8 
					 
					
						
						
							
							Make sure the compiler knows we run with pedantic settings.  
						
						 
						
						
						
						
					 
					
						2003-06-20 00:57:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						37fcd48f86 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-06-19 23:00:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27346c53b1 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-06-19 22:26:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e2491c45ab 
					 
					
						
						
							
							Document the last change.  
						
						 
						
						... 
						
						
						
						PR: 587 
						
						
					 
					
						2003-06-19 19:04:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cf9a88cad7 
					 
					
						
						
							
							Document the last change.  
						
						 
						
						... 
						
						
						
						PR: 587 
						
						
					 
					
						2003-06-19 19:04:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						398cd7276f 
					 
					
						
						
							
							Prepare for changes in the 0.9.6 branch  
						
						 
						
						
						
						
					 
					
						2003-06-19 19:01:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4f1cd8324c 
					 
					
						
						
							
							Prepare for changes in the 0.9.6 branch  
						
						 
						
						
						
						
					 
					
						2003-06-19 19:01:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						873ddf7c0c 
					 
					
						
						
							
							Prepare for changes in the 0.9.6 branch  
						
						 
						
						
						
						
					 
					
						2003-06-19 18:59:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ed7f1d0bc6 
					 
					
						
						
							
							Prepare for changes in the 0.9.6 branch  
						
						 
						
						
						
						
					 
					
						2003-06-19 18:59:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4aae637f6c 
					 
					
						
						
							
							We set the export flag for 512 *bit* keys, not 512 *byte* ones.  
						
						 
						
						... 
						
						
						
						PR: 587 
						
						
					 
					
						2003-06-19 18:55:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6b9cd7f82 
					 
					
						
						
							
							We set the export flag for 512 *bit* keys, not 512 *byte* ones.  
						
						 
						
						... 
						
						
						
						PR: 587 
						
						
					 
					
						2003-06-19 18:55:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8fbb2af392 
					 
					
						
						
							
							Add documentation for the new crlnumber configuration option.  
						
						 
						
						
						
						
					 
					
						2003-06-19 17:52:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c5aba56c5b 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-06-19 17:50:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						705d0f5c8d 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-06-19 17:50:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fd4ef69913 
					 
					
						
						
							
							Implement CRL numbers.  
						
						 
						
						... 
						
						
						
						Contributed in whole by Laurent Genier <Laurent.Genier@intrinsec.com >
PR: 644 
						
						
					 
					
						2003-06-19 17:40:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						844df66895 
					 
					
						
						
							
							EXIT() should mainly be exit(n), not return(n).  OPENSSL_EXIT() will  
						
						 
						
						... 
						
						
						
						take care of returning if necessary. 
						
						
					 
					
						2003-06-19 17:01:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						834ac33a37 
					 
					
						
						
							
							dynamic_ctrl() didn't have exactly the same prototype as defined by  
						
						 
						
						... 
						
						
						
						ENGINE_CTRL_FUNC_PTR. 
						
						
					 
					
						2003-06-19 16:57:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e9023f4d2 
					 
					
						
						
							
							Unsigned vs. signed fixed.  
						
						 
						
						
						
						
					 
					
						2003-06-19 16:56:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d3a28e8b8d 
					 
					
						
						
							
							EXIT() should mainly be exit(n), not return(n).  OPENSSL_EXIT() will  
						
						 
						
						... 
						
						
						
						take care of returning if necessary. 
						
						
					 
					
						2003-06-19 16:56:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0bd71d3b7e 
					 
					
						
						
							
							Add the application data type to the README.  
						
						 
						
						
						
						
					 
					
						2003-06-18 07:14:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d97322f0e6 
					 
					
						
						
							
							Missing string and potential memory leaks.  
						
						 
						
						... 
						
						
						
						Notified by Goetz Babin-Ebell <goetz@shomitefo.de > 
						
						
					 
					
						2003-06-18 07:12:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b52d512dfa 
					 
					
						
						
							
							Slightly better check of attributes.  Now, mem_list_next can actually stop when the searched for key doesn't have it's attributes within the range of the checked key.  
						
						 
						
						
						
						
					 
					
						2003-06-12 21:32:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a3a2ff4cd9 
					 
					
						
						
							
							Beautify  
						
						 
						
						
						
						
					 
					
						2003-06-12 18:13:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0d5b4f594d 
					 
					
						
						
							
							Typo.  
						
						 
						
						... 
						
						
						
						PR: 584 
						
						
					 
					
						2003-06-12 01:04:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5a1fd87ec1 
					 
					
						
						
							
							Typo.  
						
						 
						
						... 
						
						
						
						PR: 584 
						
						
					 
					
						2003-06-12 01:04:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8c2786fff7 
					 
					
						
						
							
							Do not try to use non-existent gmtime_r() on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:57:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8645c415cf 
					 
					
						
						
							
							Do not try to use non-existent gmtime_r() on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:57:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						66ce343361 
					 
					
						
						
							
							Make sure ssize_t is defined on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:56:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						700d86ea18 
					 
					
						
						
							
							Make sure ssize_t is defined on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:56:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1b9f21fdc8 
					 
					
						
						
							
							Make sure DSO-dlfcn works properly on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:51:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54bbde3c3f 
					 
					
						
						
							
							Make sure DSO-dlfcn works properly on SunOS4.  
						
						 
						
						... 
						
						
						
						PR: 585 
						
						
					 
					
						2003-06-12 00:51:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f3031b106d 
					 
					
						
						
							
							Typo.  
						
						 
						
						... 
						
						
						
						PR: 593 
						
						
					 
					
						2003-06-11 22:45:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c14b337570 
					 
					
						
						
							
							Typo.  
						
						 
						
						... 
						
						
						
						PR: 593 
						
						
					 
					
						2003-06-11 22:45:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e666c4599f 
					 
					
						
						
							
							Add the possibility to have symbols loaded globally with DSO.  
						
						 
						
						
						
						
					 
					
						2003-06-11 22:42:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						98cec7fc7b 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-06-11 22:27:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fadd2246a0 
					 
					
						
						
							
							Avoid warnings saying that the format takes a void*.  
						
						 
						
						
						
						
					 
					
						2003-06-11 22:26:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c78b4f1d3d 
					 
					
						
						
							
							Remove unused variable  
						
						 
						
						
						
						
					 
					
						2003-06-11 21:47:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6e260c4093 
					 
					
						
						
							
							Add an entry for X509_TRUST_OBJECT_SIGN in trstandard[].  
						
						 
						
						... 
						
						
						
						PR: 617 
						
						
					 
					
						2003-06-11 21:22:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						33862b90bb 
					 
					
						
						
							
							Add an entry for X509_TRUST_OBJECT_SIGN in trstandard[].  
						
						 
						
						... 
						
						
						
						PR: 617 
						
						
					 
					
						2003-06-11 21:22:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						36bad5cdfd 
					 
					
						
						
							
							Add documentation for ERR_set_mark() and ERR_pop_to_mark().  
						
						 
						
						
						
						
					 
					
						2003-06-11 20:51:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54f6451670 
					 
					
						
						
							
							Add functionality to set marks on the error stack and to pop all errors to the next mark.  
						
						 
						
						
						
						
					 
					
						2003-06-11 20:49:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f19d064087 
					 
					
						
						
							
							Handle des_modes.pod properly.  
						
						 
						
						... 
						
						
						
						PR: 634 
						
						
					 
					
						2003-06-11 19:44:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						490967195a 
					 
					
						
						
							
							Handle des_modes.pod properly.  
						
						 
						
						... 
						
						
						
						PR: 634 
						
						
					 
					
						2003-06-11 19:44:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						25a1259911 
					 
					
						
						
							
							Make sure to NUL-terminate the string on end-of-file (and error)  
						
						 
						
						... 
						
						
						
						PR: 643 
						
						
					 
					
						2003-06-11 18:43:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						606c8048a0 
					 
					
						
						
							
							Make sure to NUL-terminate the string on end-of-file (and error)  
						
						 
						
						... 
						
						
						
						PR: 643 
						
						
					 
					
						2003-06-11 18:43:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e66d863cd0 
					 
					
						
						
							
							Add crypto/store to the directories to look through.  
						
						 
						
						
						
						
					 
					
						2003-06-11 04:46:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f63f51dc22 
					 
					
						
						
							
							Document the AES_cbc_encrypt() change  
						
						 
						
						
						
						
					 
					
						2003-06-10 04:42:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a069460015 
					 
					
						
						
							
							Document the AES_cbc_encrypt() change  
						
						 
						
						
						
						
					 
					
						2003-06-10 04:42:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4eebab0d22 
					 
					
						
						
							
							The output from AES_cbc_encrypt() should be exact multiple blocks when encrypting  
						
						 
						
						
						
						
					 
					
						2003-06-10 04:11:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						55b12f8641 
					 
					
						
						
							
							The output from AES_cbc_encrypt() should be exact multiple blocks when encrypting  
						
						 
						
						
						
						
					 
					
						2003-06-10 04:11:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						40e5b9abeb 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2003-06-09 07:56:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bc63a2ee0e 
					 
					
						
						
							
							This memset() in the ubsec ENGINE is a bug. Zeroing out the result array  
						
						 
						
						... 
						
						
						
						should not be necessary in any case, but more importantly the result and
input BIGNUMs could be the same, in which case this is clearly a problem.
Submitted by: Jonathan Hersch
Reviewed by: Joe Orton
Approved by: Geoff Thorpe 
						
						
					 
					
						2003-06-06 17:53:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						dcfb57c736 
					 
					
						
						
							
							This memset() in the ubsec ENGINE is a bug. Zeroing out the result array  
						
						 
						
						... 
						
						
						
						should not be necessary in any case, but more importantly the result and
input BIGNUMs could be the same, in which case this is clearly a problem.
Submitted by: Jonathan Hersch
Reviewed by: Joe Orton
Approved by: Geoff Thorpe 
						
						
					 
					
						2003-06-06 17:51:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2ee67f1dad 
					 
					
						
						
							
							Make sure the sigaction structure and fileno function are properly declared with an ANSI compiler on Solaris (and possibly others).  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:13:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4af3184662 
					 
					
						
						
							
							Remove extra ;  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:11:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e31047744a 
					 
					
						
						
							
							Make sure the function definitions match their declaration.  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:11:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f6eba601b0 
					 
					
						
						
							
							Make sure that size_t matches size_t.  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:10:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f796dc5c06 
					 
					
						
						
							
							Make sure debug-solaris-sparcv9-gcc is consistent with solaris-sparcv9-gcc.  
						
						 
						
						
						
						
					 
					
						2003-06-04 09:10:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						476f09712c 
					 
					
						
						
							
							Really get X509_CRL_CHECK_ALL right this time...  
						
						 
						
						
						
						
					 
					
						2003-06-04 00:40:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						50078051bd 
					 
					
						
						
							
							Really get X509_CRL_CHECK_ALL right this time...  
						
						 
						
						
						
						
					 
					
						2003-06-04 00:40:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						db01746978 
					 
					
						
						
							
							Clarify return value of SSL_connect() and SSL_accept() in case of the  
						
						 
						
						... 
						
						
						
						WANT_READ and WANT_WRITE conditions. 
						
						
					 
					
						2003-06-03 09:59:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						fe0444b17e 
					 
					
						
						
							
							Clarify return value of SSL_connect() and SSL_accept() in case of the  
						
						 
						
						... 
						
						
						
						WANT_READ and WANT_WRITE conditions. 
						
						
					 
					
						2003-06-03 09:59:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						63b815583b 
					 
					
						
						
							
							Update CHANGES to reflect base64 fix added to 0.9.7  
						
						 
						
						
						
						
					 
					
						2003-06-03 00:16:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						16c9148220 
					 
					
						
						
							
							Move the base64 BIO fixes to 0.9.7-stable  
						
						 
						
						
						
						
					 
					
						2003-06-03 00:11:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ca82ac1fee 
					 
					
						
						
							
							Only count 'LF' as EOL in pk7_mime.c, this avoids incorrect  
						
						 
						
						... 
						
						
						
						results if CR+LF straddles the line buffer. 
						
						
					 
					
						2003-06-02 17:53:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9d92486cfb 
					 
					
						
						
							
							Only count 'LF' as EOL in pk7_mime.c, this avoids incorrect  
						
						 
						
						... 
						
						
						
						results if CR+LF straddles the line buffer. 
						
						
					 
					
						2003-06-02 17:52:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						aff0542844 
					 
					
						
						
							
							Stop checking for CRLF when start of buffer is reached.  
						
						 
						
						... 
						
						
						
						Add rest of long line fix which got missed before 
						
						
					 
					
						2003-06-02 01:12:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bb41fdb5ec 
					 
					
						
						
							
							Stop checking for CRLF when start of buffer is reached.  
						
						 
						
						
						
						
					 
					
						2003-06-02 01:03:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						beab098d53 
					 
					
						
						
							
							Various S/MIME bug and compatibility fixes.  
						
						 
						
						
						
						
					 
					
						2003-06-01 20:51:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3410aa1aa8 
					 
					
						
						
							
							Various S/MIME bug and compatibility fixes.  
						
						 
						
						
						
						
					 
					
						2003-06-01 20:45:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f50b911a3f 
					 
					
						
						
							
							Clarify ordering of certificates when using certificate chains  
						
						 
						
						
						
						
					 
					
						2003-05-30 07:45:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						02b95b7499 
					 
					
						
						
							
							Clarify ordering of certificates when using certificate chains  
						
						 
						
						
						
						
					 
					
						2003-05-30 07:45:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2a948bd306 
					 
					
						
						
							
							Include openssl/e_os.h so OPENSSL_SYSNAME_ULTRASPARC and other configuration  
						
						 
						
						... 
						
						
						
						macros get properly defined. 
						
						
					 
					
						2003-05-29 22:22:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4d471552f 
					 
					
						
						
							
							Include openssl/e_os.h so OPENSSL_SYSNAME_ULTRASPARC and other configuration  
						
						 
						
						... 
						
						
						
						macros get properly defined. 
						
						
					 
					
						2003-05-29 22:22:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d4e35514ba 
					 
					
						
						
							
							Have ASFLAGS be defined the same way as CFLAGS  
						
						 
						
						
						
						
					 
					
						2003-05-29 22:20:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						01fc834bc9 
					 
					
						
						
							
							Have ASFLAGS be defined the same way as CFLAGS  
						
						 
						
						
						
						
					 
					
						2003-05-29 22:20:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f7f8d82aaa 
					 
					
						
						
							
							PR: 630  
						
						 
						
						... 
						
						
						
						Avoid looking outside the key_data array. 
						
						
					 
					
						2003-05-29 20:59:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3fd6b9f6d4 
					 
					
						
						
							
							PR: 630  
						
						 
						
						... 
						
						
						
						Avoid looking outside the key_data array. 
						
						
					 
					
						2003-05-29 20:59:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						4f17dfcd75 
					 
					
						
						
							
							Add minimum POP3 STLS hack to s_client.c (as was provided for STARTTLS before)  
						
						 
						
						... 
						
						
						
						Submitted by: dg@sunet.ru  (Daniel Ginsburg)
PR: #613  
						
						
					 
					
						2003-05-28 20:24:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a598524ad6 
					 
					
						
						
							
							Add minimum POP3 STLS hack to s_client.c (as was provided for STARTTLS before)  
						
						 
						
						... 
						
						
						
						Submitted by: dg@sunet.ru  (Daniel Ginsburg)
PR: #613  
						
						
					 
					
						2003-05-28 20:24:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						83b4f49c0a 
					 
					
						
						
							
							Move header file inclusion to prevent irritation of users forgetting to  
						
						 
						
						... 
						
						
						
						call "make depend" after enabling or disabling ciphers...
Submitted by: Tal Mozes <talm@cyber-ark.com >
PR: #628  
						
						
					 
					
						2003-05-28 19:56:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						828ce10ce7 
					 
					
						
						
							
							Move header file inclusion to prevent irritation of users forgetting to  
						
						 
						
						... 
						
						
						
						call "make depend" after enabling or disabling ciphers...
Submitted by: Tal Mozes <talm@cyber-ark.com >
PR: #628  
						
						
					 
					
						2003-05-28 19:56:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8939adbad9 
					 
					
						
						
							
							PR: 627  
						
						 
						
						... 
						
						
						
						Allocate certificatePolicies correctly if CPS field is absent.
Fix various memory leaks in certificatePolicies. 
						
						
					 
					
						2003-05-28 17:28:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						60790aff6f 
					 
					
						
						
							
							PR: 627  
						
						 
						
						... 
						
						
						
						Allocate certificatePolicies correctly if CPS field is absent.
Fix various memory leaks in certificatePolicies. 
						
						
					 
					
						2003-05-28 17:28:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ff160dba54 
					 
					
						
						
							
							PR: 631  
						
						 
						
						... 
						
						
						
						Submitted by: Doug Sauder <dws+001@hunnysoft.com >
Fix bug in X509V3_get_d2i() when idx in not NULL. 
						
						
					 
					
						2003-05-28 16:57:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e19d0ef068 
					 
					
						
						
							
							PR: 631  
						
						 
						
						... 
						
						
						
						Submitted by: Doug Sauder <dws+001@hunnysoft.com >
Fix bug in X509V3_get_d2i() when idx in not NULL. 
						
						
					 
					
						2003-05-28 16:57:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f5f7dffdd1 
					 
					
						
						
							
							Make sure to compare unsigned against unsigned.  
						
						 
						
						
						
						
					 
					
						2003-05-28 10:34:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fb5b7317a7 
					 
					
						
						
							
							Make sure to compare unsigned against unsigned.  
						
						 
						
						
						
						
					 
					
						2003-05-28 10:34:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						edd55d08f5 
					 
					
						
						
							
							Brackets are now allowed, after a small hack in the processing of the  
						
						 
						
						... 
						
						
						
						docs-on-web. 
						
						
					 
					
						2003-05-23 09:08:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						457f692eab 
					 
					
						
						
							
							Fix sign bugs.  
						
						 
						
						... 
						
						
						
						PR: 621 
						
						
					 
					
						2003-05-21 14:29:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						83743ad039 
					 
					
						
						
							
							Fix sign bugs.  
						
						 
						
						... 
						
						
						
						PR: 621 
						
						
					 
					
						2003-05-21 14:29:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						163f5b236c 
					 
					
						
						
							
							Correct signedness  
						
						 
						
						
						
						
					 
					
						2003-05-21 14:21:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e077b5452f 
					 
					
						
						
							
							Make sure EC_window_bits_for_scalar_size() returns a size_t  
						
						 
						
						
						
						
					 
					
						2003-05-21 08:40:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						513c01a591 
					 
					
						
						
							
							Make sure EC_window_bits_for_scalar_size() returns a size_t  
						
						 
						
						
						
						
					 
					
						2003-05-21 08:40:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d9a2a89a17 
					 
					
						
						
							
							I have no idea how I cut away that piece of text...  
						
						 
						
						
						
						
					 
					
						2003-05-21 06:50:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						31939f1544 
					 
					
						
						
							
							I don't remember what my thinking was with str_compat.h.  Maybe it'll  
						
						 
						
						... 
						
						
						
						come back to me... 
						
						
					 
					
						2003-05-20 09:00:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						11ce33a71d 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-05-20 08:59:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9acef3bbd7 
					 
					
						
						
							
							Misspelled functions.  
						
						 
						
						
						
						
					 
					
						2003-05-20 08:50:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						164bc7dae8 
					 
					
						
						
							
							Some misspelled function names.  
						
						 
						
						
						
						
					 
					
						2003-05-20 08:49:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f59c941950 
					 
					
						
						
							
							Make the function STORE_new_engine() public.  
						
						 
						
						
						
						
					 
					
						2003-05-19 23:06:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0239876511 
					 
					
						
						
							
							Remove certain functions  
						
						 
						
						
						
						
					 
					
						2003-05-19 23:03:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						93c929e411 
					 
					
						
						
							
							The square brackets in BIO_s_bio.pod for some  
						
						 
						
						... 
						
						
						
						reason cause wml to bomb out with the error
message:
** Slice:Error: Some slices were not closed:
** WML:Break: Error in Pass 9 (rc=1).
** WMK:Error: Error in WML (rc=256)
As a workaround delete them for now. 
						
						
					 
					
						2003-05-19 21:28:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c2dac35a02 
					 
					
						
						
							
							Fix docs.  
						
						 
						
						
						
						
					 
					
						2003-05-18 23:10:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a9cfd20da7 
					 
					
						
						
							
							Fix docs.  
						
						 
						
						
						
						
					 
					
						2003-05-18 23:10:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						727ef76ebd 
					 
					
						
						
							
							Add correct DN entry for serialNumber.  
						
						 
						
						
						
						
					 
					
						2003-05-07 23:20:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						22e6c2524e 
					 
					
						
						
							
							Add correct DN entry for serialNumber.  
						
						 
						
						
						
						
					 
					
						2003-05-07 23:20:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bca52f7d4e 
					 
					
						
						
							
							Define the two authentication parameter types for passphrase and  
						
						 
						
						... 
						
						
						
						Kerberos 5 authentications. 
						
						
					 
					
						2003-05-07 21:17:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						48c36fdb2a 
					 
					
						
						
							
							Add the possibility to hand execution parameters (for example  
						
						 
						
						... 
						
						
						
						authentication material) to the STORE functions.
Suggested by Götz Babin-Ebell <babin-ebell@trustcenter.de >. 
						
						
					 
					
						2003-05-07 21:06:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6d8cbdcb53 
					 
					
						
						
							
							/usr/lib/pkgconfig/openssl.pc was never installed in the RPM.  
						
						 
						
						... 
						
						
						
						Notified by Bennett Todd <bet@rahul.net >. 
						
						
					 
					
						2003-05-07 12:02:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9b2042fac3 
					 
					
						
						
							
							/usr/lib/pkgconfig/openssl.pc was never installed in the RPM.  
						
						 
						
						... 
						
						
						
						Notified by Bennett Todd <bet@rahul.net >. 
						
						
					 
					
						2003-05-07 12:02:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54a7ea6f36 
					 
					
						
						
							
							DO NOT constify RSA* in RSA_sign() and RSA_verify(), since there are function  
						
						 
						
						... 
						
						
						
						called downstream that need it to be non-const.  The fact that the RSA_METHOD
functions take the RSA* as a const doesn't matter, it just expresses that
*they* won't touch it.
PR: 602 
						
						
					 
					
						2003-05-07 11:38:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						816d785721 
					 
					
						
						
							
							DO NOT constify RSA* in RSA_sign() and RSA_verify(), since there are function  
						
						 
						
						... 
						
						
						
						called downstream that need it to be non-const.  The fact that the RSA_METHOD
functions take the RSA* as a const doesn't matter, it just expresses that
*they* won't touch it.
PR: 602 
						
						
					 
					
						2003-05-07 11:38:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						742b139f54 
					 
					
						
						
							
							Add the possibility to store arbitrary data in a STORE.  
						
						 
						
						... 
						
						
						
						Suggested by Götz Babin-Ebell <babin-ebell@trustcenter.de >. 
						
						
					 
					
						2003-05-06 08:02:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0e2f5ec2d2 
					 
					
						
						
							
							Constify RSA_sign() and RSA_verify().  
						
						 
						
						... 
						
						
						
						PR: 602 
						
						
					 
					
						2003-05-05 13:55:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3b30121bd9 
					 
					
						
						
							
							Constify RSA_sign() and RSA_verify().  
						
						 
						
						... 
						
						
						
						PR: 602 
						
						
					 
					
						2003-05-05 13:55:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ee789e6c3 
					 
					
						
						
							
							Yeah, right, an object file ending with .c, that'll work!  
						
						 
						
						
						
						
					 
					
						2003-05-03 06:58:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8c5e375c8e 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-05-02 11:42:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b9d2d20086 
					 
					
						
						
							
							Make DER option work again.  
						
						 
						
						... 
						
						
						
						Fix typo. 
						
						
					 
					
						2003-05-02 11:41:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b9d7ca9748 
					 
					
						
						
							
							It's usually best if the function name matches everywhere...  
						
						 
						
						
						
						
					 
					
						2003-05-02 07:25:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b194dfbd5 
					 
					
						
						
							
							STORE was created 2003, darnit!  
						
						 
						
						
						
						
					 
					
						2003-05-01 20:44:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f6af7d9db 
					 
					
						
						
							
							Get the year right...  
						
						 
						
						
						
						
					 
					
						2003-05-01 20:15:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						42b2b6a2d5 
					 
					
						
						
							
							Provide some extra comments about the STORE_Memory STORE method.  
						
						 
						
						
						
						
					 
					
						2003-05-01 04:31:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1465bac90 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-05-01 04:10:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3bbb0212f3 
					 
					
						
						
							
							Add STORE support in ENGINE.  
						
						 
						
						
						
						
					 
					
						2003-05-01 03:57:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a5db6fa576 
					 
					
						
						
							
							Define a STORE type.  For documentation, read the entry in CHANGES,  
						
						 
						
						... 
						
						
						
						crypto/store/README, crypto/store/store.h and crypto/store/str_locl.h. 
						
						
					 
					
						2003-05-01 03:53:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9236b5b013 
					 
					
						
						
							
							Define a STORE lock (the STORE type will be committed later).  
						
						 
						
						
						
						
					 
					
						2003-05-01 03:46:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						535fba4907 
					 
					
						
						
							
							Define the OPENSSL_ITEM structure.  
						
						 
						
						
						
						
					 
					
						2003-05-01 03:45:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e4140f73f 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-29 22:24:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1ae0a83bdd 
					 
					
						
						
							
							Add BUF_strndup() and BUF_memdup().  Not currently used, but I've code  
						
						 
						
						... 
						
						
						
						that uses them that I'll commit in a few days. 
						
						
					 
					
						2003-04-29 22:08:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7ae46c6761 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-29 21:35:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d584fd6b66 
					 
					
						
						
							
							Include objects.h to get a correct declaration of OBJ_bsearch_ex(),  
						
						 
						
						... 
						
						
						
						not to mention the OBJ_BSEARCH_* macros. 
						
						
					 
					
						2003-04-29 20:46:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54dbdd9837 
					 
					
						
						
							
							Some variables were uninitialised...  
						
						 
						
						
						
						
					 
					
						2003-04-29 20:45:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d6c32d6d1 
					 
					
						
						
							
							Correct documentation.  sk_find_ex() doesn't return a pointer, it  
						
						 
						
						... 
						
						
						
						returns an index. 
						
						
					 
					
						2003-04-29 20:31:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						26851b6b42 
					 
					
						
						
							
							Add an extended variant of sk_find() which returns a non-NULL pointer  
						
						 
						
						... 
						
						
						
						even if an exact match wasn't found. 
						
						
					 
					
						2003-04-29 20:30:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ea5240a5ed 
					 
					
						
						
							
							Add an extended variant of OBJ_bsearch() that can be given a few  
						
						 
						
						... 
						
						
						
						flags. 
						
						
					 
					
						2003-04-29 20:25:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ce8a202831 
					 
					
						
						
							
							fix typo  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-04-22 12:44:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						eec7968f18 
					 
					
						
						
							
							fix typo  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-04-22 08:29:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0ece1d304d 
					 
					
						
						
							
							Make it possible to affect the extension of man pages.  
						
						 
						
						... 
						
						
						
						PR: 578 
						
						
					 
					
						2003-04-21 22:00:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1cc087fe4f 
					 
					
						
						
							
							Make it possible to affect the extension of man pages.  
						
						 
						
						... 
						
						
						
						PR: 578 
						
						
					 
					
						2003-04-21 22:00:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7f0f9f1934 
					 
					
						
						
							
							Memory leak fix: RSA_blinding_on() didn't free Ai under certain circumstances.  
						
						 
						
						... 
						
						
						
						Memory leak fix: RSA_blinding_on() would leave a dangling pointer in
                 rsa->blinding under certain circumstances.
Double definition fix: RSA_FLAG_NO_BLINDING was defined twice. 
						
						
					 
					
						2003-04-16 06:25:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						040c687ce4 
					 
					
						
						
							
							Memory leak fix: RSA_blinding_on() didn't free Ai under certain circumstances.  
						
						 
						
						... 
						
						
						
						Memory leak fix: RSA_blinding_on() would leave a dangling pointer in
                 rsa->blinding under certain circumstances.
Double definition fix: RSA_FLAG_NO_BLINDING was defined twice. 
						
						
					 
					
						2003-04-16 06:25:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8f09a154e3 
					 
					
						
						
							
							Memory leak fix: local blinding structure not freed in rsa_eay_private_decrypt()  
						
						 
						
						
						
						
					 
					
						2003-04-15 13:01:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cd1226bc6a 
					 
					
						
						
							
							Memory leak fix: local blinding structure not freed in rsa_eay_private_decrypt()  
						
						 
						
						
						
						
					 
					
						2003-04-15 13:01:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						7a04fdd87f 
					 
					
						
						
							
							include 'Changes between 0.9.6i and 0.9.6j'  
						
						 
						
						
						
						
					 
					
						2003-04-11 15:03:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						4e7566579e 
					 
					
						
						
							
							include 'Changes between 0.9.6i and 0.9.6j'  
						
						 
						
						
						
						
					 
					
						2003-04-11 15:01:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fba1cfa06d 
					 
					
						
						
							
							The release is tagged, time to work on 0.9.7c.  
						
						 
						
						
						
						
					 
					
						2003-04-10 20:40:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						138f970e6e 
					 
					
						
						
							
							Add the 0.9.6j news.  
						
						 
						
						
						
						
					 
					
						2003-04-10 20:38:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						110c6f72ec 
					 
					
						
						
							
							Include the 0.9.6j news.  
						
						 
						
						... 
						
						
						
						This file will be retagged. 
						
						
					 
					
						2003-04-10 20:37:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27f7d430ce 
					 
					
						
						
							
							Forgot to code the status bits for release.  This file will be  
						
						 
						
						... 
						
						
						
						retagged. 
						
						
					 
					
						2003-04-10 20:29:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5964e95c0a 
					 
					
						
						
							
							Time to release 0.9.7b.  
						
						 
						
						... 
						
						
						
						The tag will be OpenSSL_0_9_7b. 
						
						
					 
					
						2003-04-10 20:22:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1a0c1f9052 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-10 20:11:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f78ae9c0f2 
					 
					
						
						
							
							make update.  
						
						 
						
						
						
						
					 
					
						2003-04-10 20:10:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e072e16e92 
					 
					
						
						
							
							New NEWS  
						
						 
						
						
						
						
					 
					
						2003-04-10 19:33:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1774e22d6f 
					 
					
						
						
							
							New NEWS  
						
						 
						
						
						
						
					 
					
						2003-04-10 19:33:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7a79b5601a 
					 
					
						
						
							
							Remove all those infernal stupid CR characters  
						
						 
						
						
						
						
					 
					
						2003-04-10 19:11:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						26abc8f01a 
					 
					
						
						
							
							Remove all those infernal stupid CR characters  
						
						 
						
						
						
						
					 
					
						2003-04-10 19:11:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						74b0c41e47 
					 
					
						
						
							
							There's a problem building shared libraries on the sco5-gcc target.  However,  
						
						 
						
						... 
						
						
						
						it's time for a release, so I'm just adding an enty in PROBLEMS, and will
hopefully solve this for a later release 
						
						
					 
					
						2003-04-10 18:36:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5924c21608 
					 
					
						
						
							
							There's a problem building shared libraries on the sco5-gcc target.  However,  
						
						 
						
						... 
						
						
						
						it's time for a release, so I'm just adding an enty in PROBLEMS, and will
hopefully solve this for a later release 
						
						
					 
					
						2003-04-10 18:36:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bbfbd4b270 
					 
					
						
						
							
							Explicitely tell the compiler we're mips3 for the target irix-mips3-cc.  
						
						 
						
						
						
						
					 
					
						2003-04-10 05:46:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c93fbfaebc 
					 
					
						
						
							
							Explicitely tell the compiler we're mips3 for the target irix-mips3-cc.  
						
						 
						
						
						
						
					 
					
						2003-04-10 05:46:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						88ec5a637f 
					 
					
						
						
							
							Only call redirected rsa_sign or rsa_verify if the pointer is set.  
						
						 
						
						... 
						
						
						
						This allows, for example, a smart card to redirect rsa_sign and keep
the default rsa_verify. 
						
						
					 
					
						2003-04-10 01:13:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0b1c00abeb 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-04-10 00:04:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						75fcbb43a7 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-04-10 00:03:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e4e049e489 
					 
					
						
						
							
							Dont forget req.  
						
						 
						
						
						
						
					 
					
						2003-04-09 06:50:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						225e35bd36 
					 
					
						
						
							
							Typo  
						
						 
						
						
						
						
					 
					
						2003-04-09 05:25:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9f81f23742 
					 
					
						
						
							
							Set LD_LIBRARY_PATH when linking, since OpenUnix' ld uses it to create  
						
						 
						
						... 
						
						
						
						a library search path.
Correct typos. 
						
						
					 
					
						2003-04-08 11:54:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0ae4ad9e9f 
					 
					
						
						
							
							Include rand.h, so RAND_status() and friends get properly declared.  
						
						 
						
						
						
						
					 
					
						2003-04-08 11:07:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						721688c2f8 
					 
					
						
						
							
							Include rand.h, so RAND_status() and friends get properly declared.  
						
						 
						
						
						
						
					 
					
						2003-04-08 11:07:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a109220107 
					 
					
						
						
							
							Correct a few typos.  
						
						 
						
						... 
						
						
						
						It seems that svr3 and svr5 differ, after all. 
						
						
					 
					
						2003-04-08 09:27:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4a4a04622e 
					 
					
						
						
							
							A single quote too many.  
						
						 
						
						
						
						
					 
					
						2003-04-08 08:58:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d6fd88fffd 
					 
					
						
						
							
							I forgot to continuation mark.  
						
						 
						
						
						
						
					 
					
						2003-04-08 08:57:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e96133e4cf 
					 
					
						
						
							
							It seems like OpenUnix's ld uses LD_LIBRARY_PATH to search for  
						
						 
						
						... 
						
						
						
						libraries.  What's worse, the directories given in LD_LIBRARY_PATH are
checked first!  Therefore, we need a hack to prepend all the
directories we give with -L to the current value of LD_LIBRARY_PATH,
thereby temporarly forming a hacked value.
Only copy LIBEXTRAS if they are given.
Svr5 doesn't use -z allextract... 
						
						
					 
					
						2003-04-08 08:36:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						f65a75786b 
					 
					
						
						
							
							Fix ordering of compare functions: strncmp() must be used first, a  
						
						 
						
						... 
						
						
						
						the cipher name in the list is not guaranteed to be at least "buflen"
long.
PR: 567
Submitted by: "Matt Harren" <matth@cs.berkeley.edu > 
						
						
					 
					
						2003-04-08 06:31:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a157379adc 
					 
					
						
						
							
							Fix ordering of compare functions: strncmp() must be used first, as it  
						
						 
						
						... 
						
						
						
						the cipher name in the list is not guaranteed to be at least "buflen"
long.
PR: 567
Submitted by: "Matt Harren" <matth@cs.berkeley.edu > 
						
						
					 
					
						2003-04-08 06:28:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1ed3815650 
					 
					
						
						
							
							We seem to carry some rests of the 0.9.6 [engine] ENGINE framework, here in  
						
						 
						
						... 
						
						
						
						form of unneeded direct calls through the engine pointer.. 
						
						
					 
					
						2003-04-08 06:02:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b55368306 
					 
					
						
						
							
							We seem to carry some rests of the 0.9.6 [engine] ENGINE framework, here in  
						
						 
						
						... 
						
						
						
						form of unneeded direct calls through the engine pointer.. 
						
						
					 
					
						2003-04-08 06:01:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27310553b1 
					 
					
						
						
							
							We seem to carry some rests of the 0.9.6 [engine] ENGINE framework in form  
						
						 
						
						... 
						
						
						
						of unneeded includes of openssl/engine.h. 
						
						
					 
					
						2003-04-08 06:00:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						43eb3b0130 
					 
					
						
						
							
							We seem to carry some rests of the 0.9.6 [engine] ENGINE framework in form  
						
						 
						
						... 
						
						
						
						of unneeded includes of openssl/engine.h. 
						
						
					 
					
						2003-04-08 06:00:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						78490b9cc2 
					 
					
						
						
							
							RSA_FLAG_SIGN_VER indicates the special rsa_sign and rsa_verify function  
						
						 
						
						... 
						
						
						
						pointers should be used.  It doesn't necessarely mean it should go through
the ENGINE framework. 
						
						
					 
					
						2003-04-07 19:15:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0a861ab7f3 
					 
					
						
						
							
							RSA_FLAG_SIGN_VER indicates the special rsa_sign and rsa_verify function  
						
						 
						
						... 
						
						
						
						pointers should be used.  It doesn't necessarely mean it should go through
the ENGINE framework. 
						
						
					 
					
						2003-04-07 19:15:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7b36590b17 
					 
					
						
						
							
							What was I smoking?  EVP_PKEY_cmp() should return with 0 if  
						
						 
						
						... 
						
						
						
						EVP_PKEY_cmp_parameters() returned 0, otherwise it should
go on processing the public key component.  Thia has nothing
to do with the proper handling of EC parameters or not. 
						
						
					 
					
						2003-04-07 10:15:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a8b728445c 
					 
					
						
						
							
							Correct a typo.  
						
						 
						
						... 
						
						
						
						Have EVP_PKEY_cmp() call EVP_PKEY_cmp_parameters(), and make a note
about the lack of parameter comparison for EC. 
						
						
					 
					
						2003-04-07 10:09:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						af0f0f3e8f 
					 
					
						
						
							
							Constify  
						
						 
						
						
						
						
					 
					
						2003-04-06 15:31:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						86ccb91ddb 
					 
					
						
						
							
							Do not call ENGINE_setup_bsd_cryptodev() when OPENSSL_NO_ENGINE is defined.  
						
						 
						
						... 
						
						
						
						PR: 564 
						
						
					 
					
						2003-04-05 21:21:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8d570498a2 
					 
					
						
						
							
							Do not call ENGINE_setup_bsd_cryptodev() when OPENSSL_NO_ENGINE is defined.  
						
						 
						
						... 
						
						
						
						PR: 564 
						
						
					 
					
						2003-04-05 21:21:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4c771796d5 
					 
					
						
						
							
							Convert save_serial() to work like save_index(), and add a  
						
						 
						
						... 
						
						
						
						rotate_serial() that works like rotate_index(). 
						
						
					 
					
						2003-04-04 15:10:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8e4552ed30 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-04 14:41:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d6df2b281f 
					 
					
						
						
							
							Add documentation on the added functionality in 'openssl ca'.  
						
						 
						
						
						
						
					 
					
						2003-04-04 14:39:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bc4a5ed341 
					 
					
						
						
							
							Transfer the changes to detect multiline comments and the GCC  
						
						 
						
						... 
						
						
						
						extension __attribute__. 
						
						
					 
					
						2003-04-04 14:21:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6fcf735497 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-04-04 14:19:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b5f96e8818 
					 
					
						
						
							
							There's no need to check for __attribute__ with ANSI functions, since  
						
						 
						
						... 
						
						
						
						we only check to the opening parenthesis anyway... 
						
						
					 
					
						2003-04-04 14:19:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3ae70939ba 
					 
					
						
						
							
							Correct a lot of printing calls.  Remove extra arguments...  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:39:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d5157a6244 
					 
					
						
						
							
							Make %p and %# work properly, at least with pointers and floats.  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:35:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c433d72593 
					 
					
						
						
							
							Make %p and %# work properly, at least with pointers and floats.  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:35:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						68b42986cb 
					 
					
						
						
							
							Add GCC attributes when compiled with gcc.  This helps find out if  
						
						 
						
						... 
						
						
						
						we're using the printing functions correctly or not.
I used the corresponding attributes found in the header files of my
Linux installation. 
						
						
					 
					
						2003-04-03 23:06:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						57544ee224 
					 
					
						
						
							
							Counter for GCC attributes.  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:04:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						83b23ed967 
					 
					
						
						
							
							One more debug line to conditionalise.  
						
						 
						
						
						
						
					 
					
						2003-04-03 23:01:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4342c5c1a0 
					 
					
						
						
							
							Add a CA section, to make sure the test will work with the changes in  
						
						 
						
						... 
						
						
						
						CA.sh. 
						
						
					 
					
						2003-04-03 22:38:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						16b1b03543 
					 
					
						
						
							
							Implement self-signing in 'openssl ca'.  This makes it easier to have  
						
						 
						
						... 
						
						
						
						the CA certificate part of the CA database, and combined with
'unique_subject=no', it should make operations like CA certificate
roll-over easier. 
						
						
					 
					
						2003-04-03 22:33:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e6526fbf4d 
					 
					
						
						
							
							Add functionality to help making self-signed certificate.  
						
						 
						
						
						
						
					 
					
						2003-04-03 22:27:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d07e7c32c2 
					 
					
						
						
							
							It's recommended to use req rather than x509 to create self-signed certificates  
						
						 
						
						
						
						
					 
					
						2003-04-03 22:12:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8152d88799 
					 
					
						
						
							
							It's recommended to use req rather than x509 to create self-signed certificates  
						
						 
						
						
						
						
					 
					
						2003-04-03 22:12:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8f35294c1b 
					 
					
						
						
							
							Typo correction  
						
						 
						
						
						
						
					 
					
						2003-04-03 21:55:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4ce4884a5b 
					 
					
						
						
							
							Typo correction  
						
						 
						
						
						
						
					 
					
						2003-04-03 21:55:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						db598fbce2 
					 
					
						
						
							
							Don't try to free NULL values...  
						
						 
						
						
						
						
					 
					
						2003-04-03 20:03:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8382ec5d37 
					 
					
						
						
							
							Reindent for readability.  
						
						 
						
						
						
						
					 
					
						2003-04-03 19:10:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0998cfaadd 
					 
					
						
						
							
							Remove unused variable.  
						
						 
						
						
						
						
					 
					
						2003-04-03 19:07:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2bdcfbd7a3 
					 
					
						
						
							
							Reset the version number of the issuer certificate?  I believe this  
						
						 
						
						... 
						
						
						
						hasn't been tested in a long while... 
						
						
					 
					
						2003-04-03 18:50:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4448f60d6 
					 
					
						
						
							
							Reset the version number of the issuer certificate?  I believe this  
						
						 
						
						... 
						
						
						
						hasn't been tested in a long while... 
						
						
					 
					
						2003-04-03 18:50:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						63b6fe2bf6 
					 
					
						
						
							
							Conditionalise all debug strings.  
						
						 
						
						
						
						
					 
					
						2003-04-03 18:07:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f85b68cd49 
					 
					
						
						
							
							Make it possible to have multiple active certificates with the same  
						
						 
						
						... 
						
						
						
						subject. 
						
						
					 
					
						2003-04-03 16:33:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						46b695d850 
					 
					
						
						
							
							make RSA blinding thread-safe  
						
						 
						
						
						
						
					 
					
						2003-04-02 09:50:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5679bcce07 
					 
					
						
						
							
							make RSA blinding thread-safe  
						
						 
						
						
						
						
					 
					
						2003-04-02 09:50:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6076f21f5e 
					 
					
						
						
							
							It seems like gcc-drivven shared library building on OpenUnix 8 requires  
						
						 
						
						... 
						
						
						
						-shared rather than -G. 
						
						
					 
					
						2003-04-01 10:59:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						24692fc5d7 
					 
					
						
						
							
							It seems like gcc-drivven shared library building on OpenUnix 8 requires  
						
						 
						
						... 
						
						
						
						-shared rather than -G. 
						
						
					 
					
						2003-04-01 10:59:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4390d66179 
					 
					
						
						
							
							Update from stable branch.  
						
						 
						
						
						
						
					 
					
						2003-03-31 22:29:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						be34231656 
					 
					
						
						
							
							No need to test -setalias twice.  
						
						 
						
						... 
						
						
						
						PR: 556 
						
						
					 
					
						2003-03-31 13:56:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d678cc07ed 
					 
					
						
						
							
							No need to test -setalias twice.  
						
						 
						
						... 
						
						
						
						PR: 556 
						
						
					 
					
						2003-03-31 13:56:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						54e73364f1 
					 
					
						
						
							
							Don't feil when indent is 0.  
						
						 
						
						... 
						
						
						
						PR: 559 
						
						
					 
					
						2003-03-31 13:24:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						6dd6da6005 
					 
					
						
						
							
							Don't feil when indent is 0.  
						
						 
						
						... 
						
						
						
						PR: 559 
						
						
					 
					
						2003-03-31 13:24:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c6b220d933 
					 
					
						
						
							
							Add usage string for -fingerprint.  
						
						 
						
						... 
						
						
						
						PR: 560 
						
						
					 
					
						2003-03-31 13:06:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						03eeb07152 
					 
					
						
						
							
							Add usage string for -fingerprint.  
						
						 
						
						... 
						
						
						
						PR: 560 
						
						
					 
					
						2003-03-31 13:06:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1a15c89988 
					 
					
						
						
							
							Multi valued AVA support.  
						
						 
						
						
						
						
					 
					
						2003-03-30 01:51:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d1c5c168b5 
					 
					
						
						
							
							OpenUNIX 8 has some problems using -G with gcc.  Maybe using gnu-shared works better (will be tested tonight).  
						
						 
						
						
						
						
					 
					
						2003-03-28 08:57:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d0a4bd00b6 
					 
					
						
						
							
							OpenUNIX 8 has some problems using -G with gcc.  Maybe using gnu-shared works better (will be tested tonight).  
						
						 
						
						
						
						
					 
					
						2003-03-28 08:57:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						423b1a840c 
					 
					
						
						
							
							Add warning about unwanted side effect when calling SSL_CTX_free():  
						
						 
						
						... 
						
						
						
						sessions in the external session cache might be removed.
Submitted by: "Nadav Har'El" <nyh@math.technion.ac.il >
PR: 547 
						
						
					 
					
						2003-03-27 22:04:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						931756b833 
					 
					
						
						
							
							Add warning about unwanted side effect when calling SSL_CTX_free():  
						
						 
						
						... 
						
						
						
						sessions in the external session cache might be removed.
Submitted by: "Nadav Har'El" <nyh@math.technion.ac.il >
PR: 547 
						
						
					 
					
						2003-03-27 22:03:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a47789e849 
					 
					
						
						
							
							Update VMS building system  
						
						 
						
						
						
						
					 
					
						2003-03-26 14:34:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						39e76bc454 
					 
					
						
						
							
							Update ocsp usage message and docs.  
						
						 
						
						
						
						
					 
					
						2003-03-26 00:47:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e5b0508a14 
					 
					
						
						
							
							Update ocsp usage message and docs.  
						
						 
						
						
						
						
					 
					
						2003-03-26 00:46:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						961b565690 
					 
					
						
						
							
							Let's limit the extent of the definition of _XOPEN_SOURCE.  
						
						 
						
						
						
						
					 
					
						2003-03-25 21:17:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c4d00669a0 
					 
					
						
						
							
							Let's limit the extent of the definition of _XOPEN_SOURCE.  
						
						 
						
						
						
						
					 
					
						2003-03-25 21:17:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						142cdf5ec9 
					 
					
						
						
							
							Missed a few dollars.  
						
						 
						
						... 
						
						
						
						PR: 528 
						
						
					 
					
						2003-03-25 20:56:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d6cab100fa 
					 
					
						
						
							
							Missed a few dollars.  
						
						 
						
						... 
						
						
						
						PR: 528 
						
						
					 
					
						2003-03-25 20:56:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						81bd0446a9 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-24 17:06:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						520b76ffd9 
					 
					
						
						
							
							Support for name constraints.  
						
						 
						
						
						
						
					 
					
						2003-03-24 17:04:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1e2b14e9ca 
					 
					
						
						
							
							Get X509_V_FLAG_CRL_CHECK_ALL logic the right way round.  
						
						 
						
						... 
						
						
						
						PR:544 
						
						
					 
					
						2003-03-24 16:58:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fe70c7812 
					 
					
						
						
							
							Get X509_V_FLAG_CRL_CHECK_ALL logic the right way round.  
						
						 
						
						... 
						
						
						
						PR:544 
						
						
					 
					
						2003-03-24 16:57:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						1c2d141238 
					 
					
						
						
							
							Name Constraints OID.  
						
						 
						
						
						
						
					 
					
						2003-03-24 00:56:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						32e75dd3f0 
					 
					
						
						
							
							Add SCO5 shared library scripts.  
						
						 
						
						... 
						
						
						
						Upate SVR5 scripts for the upcoming 0.9.7b.
Submitted by: Boyd Lynn Gerber <gerberb@zenez.com > 
						
						
					 
					
						2003-03-23 10:18:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						21eb91c79e 
					 
					
						
						
							
							Add SCO5 shared library scripts.  
						
						 
						
						... 
						
						
						
						Upate SVR5 scripts for the upcoming 0.9.7b.
Submitted by: Boyd Lynn Gerber <gerberb@zenez.com > 
						
						
					 
					
						2003-03-23 10:16:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						abfc6a3a9b 
					 
					
						
						
							
							To define OPENSSL_NO_FP_API for all MSDOS type targets was unfair  
						
						 
						
						... 
						
						
						
						against DJGPP, and much more restricted than previous definitions. 
						
						
					 
					
						2003-03-22 22:33:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5cc5ec1bba 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-21 16:28:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f80153e20b 
					 
					
						
						
							
							Support for policy constraints.  
						
						 
						
						
						
						
					 
					
						2003-03-21 16:26:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						33b34a9d8f 
					 
					
						
						
							
							remove patch ID (which is supposed to appear in patched variants of  
						
						 
						
						... 
						
						
						
						old OpenSSL releases, but not in new releases) 
						
						
					 
					
						2003-03-21 13:11:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9b94f215b1 
					 
					
						
						
							
							Define COMP method function prototypes properly.  
						
						 
						
						
						
						
					 
					
						2003-03-21 00:05:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8b5bcef798 
					 
					
						
						
							
							Make sure to declare mem*() properly.  
						
						 
						
						
						
						
					 
					
						2003-03-21 00:04:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						ea17e1f00f 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:54:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						543105ac17 
					 
					
						
						
							
							Don't put configuration macro definitions on the command line, we're  
						
						 
						
						... 
						
						
						
						just fooling ourselves and then screwing up for other applications. 
						
						
					 
					
						2003-03-20 23:52:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3789284807 
					 
					
						
						
							
							Sometimes, we have partial comments on the same line as other stuff we  
						
						 
						
						... 
						
						
						
						parse.  Make sure to read in the whole comment, so it can be entirely
removed. 
						
						
					 
					
						2003-03-20 23:51:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						be9bec9bc7 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RSA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:34:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9c35452842 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_HMAC and OPENSSL_NO_SHA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:34:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						69104cdf34 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_SHA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:32:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dfefdb41f7 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RIPEMD.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:31:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						cd6ab56da0 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MDC2.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:31:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c988c9b839 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MD5.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:31:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bff8e1dddb 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MD4.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:31:24 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						641e6ef2cb 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MD2.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:30:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9e9e8cb6a8 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_DES.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:29:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f118514501 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RC5.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:29:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						39c4b7092c 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RC4.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:29:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c7e7fc3ee4 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_RC2.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:29:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						786b0075d5 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_IDEA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:28:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						fb10590910 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_CAST.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:28:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						abf21308d2 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_BF.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:28:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8c84b677e2 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_AES.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:28:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d5ef144222 
					 
					
						
						
							
							Make sure we get the definition of a number of OPENSSL_NO_* macros.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:27:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						741dae576f 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_BIO.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:26:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						59ade20500 
					 
					
						
						
							
							Include e_os.h correctly.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:26:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c11b9af75e 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_MD2.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:24:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						08a54f6e6a 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_FP_API.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:24:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8305477157 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_IDEA and IDEA_INT.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:24:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e8cc7de4f4 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_HMAC.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:23:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3b6aa36c77 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_ECDSA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:22:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						03829b2b47 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_ECDH.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:22:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						87c9c659de 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_EC.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:22:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						751ff1d376 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_DSA and OPENSSL_NO_SHA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:21:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d3ae5b1c8a 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_DH.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:21:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0f3879455b 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_EXTERN, OPENSSL_NO_DES,  
						
						 
						
						... 
						
						
						
						DES_LONG and OPENSSL_NO_DESCBCM. 
						
						
					 
					
						2003-03-20 23:21:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0c7d61ee0e 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_CAST.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:20:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						78951e7711 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_ERR.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:19:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ba4cc007b 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_SOCK.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:18:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7b5a6c7a62 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_FP_API.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:17:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						44deca977d 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_BF.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:17:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						536b73e78e 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_BIO and OPENSSL_NO_RSA.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:16:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						940767b03f 
					 
					
						
						
							
							Make sure we get the definition of OPENSSL_NO_AES.  
						
						 
						
						
						
						
					 
					
						2003-03-20 23:15:51 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d4a47a5778 
					 
					
						
						
							
							Because it may be needed in public header files, move the definition  
						
						 
						
						... 
						
						
						
						of OPENSSL_NO_FP_API on existence of OPENSSL_SYS_MSDOS to e_os2.h. 
						
						
					 
					
						2003-03-20 23:14:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b24668626e 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-20 17:59:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ea3675b5b6 
					 
					
						
						
							
							New ASN1 macros to just implement and declare the new and free functions  
						
						 
						
						... 
						
						
						
						and changes to mkdef.pl so it recognises them.
Use these in policyMappings extension. 
						
						
					 
					
						2003-03-20 17:58:33 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c554155b58 
					 
					
						
						
							
							make sure RSA blinding works when the PRNG is not properly seeded;  
						
						 
						
						... 
						
						
						
						enable it automatically for the built-in engine 
						
						
					 
					
						2003-03-20 17:31:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a1d12daed2 
					 
					
						
						
							
							Support for policyMappings  
						
						 
						
						
						
						
					 
					
						2003-03-20 17:26:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6f528cac5a 
					 
					
						
						
							
							Typo: OID should be policyMappings  
						
						 
						
						
						
						
					 
					
						2003-03-20 17:14:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						10a66ad389 
					 
					
						
						
							
							Avoid warning.  
						
						 
						
						
						
						
					 
					
						2003-03-20 17:09:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9d80973ea1 
					 
					
						
						
							
							Add documentation for -starttls (s_client) and -id_prefix (s_server).  
						
						 
						
						... 
						
						
						
						PR: 542 
						
						
					 
					
						2003-03-20 16:34:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e986704d24 
					 
					
						
						
							
							Add documentation for -starttls (s_client) and -id_prefix (s_server).  
						
						 
						
						... 
						
						
						
						PR: 542 
						
						
					 
					
						2003-03-20 16:34:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ce06265a37 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-03-20 14:21:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e4fb312330 
					 
					
						
						
							
							Some shells (ksh in this case) don't say 'command not found'.  
						
						 
						
						... 
						
						
						
						PR: 540 
						
						
					 
					
						2003-03-20 11:44:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						439909a068 
					 
					
						
						
							
							Some shells (ksh in this case) don't say 'command not found'.  
						
						 
						
						... 
						
						
						
						PR: 540 
						
						
					 
					
						2003-03-20 11:44:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						1296e72d1d 
					 
					
						
						
							
							Spelling errors.  
						
						 
						
						... 
						
						
						
						PR: 538 
						
						
					 
					
						2003-03-20 11:42:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d177e6180d 
					 
					
						
						
							
							Spelling errors.  
						
						 
						
						... 
						
						
						
						PR: 538 
						
						
					 
					
						2003-03-20 11:41:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						f077cf68af 
					 
					
						
						
							
							Make sure that all the library paths are modified in prepend mode, not  
						
						 
						
						... 
						
						
						
						replace mode.
PR: 528 
						
						
					 
					
						2003-03-20 11:37:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						48f1fa7482 
					 
					
						
						
							
							Make sure that all the library paths are modified in prepend mode, not  
						
						 
						
						... 
						
						
						
						replace mode.
PR: 528 
						
						
					 
					
						2003-03-20 11:37:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a69cc10af1 
					 
					
						
						
							
							hinv may generate more than one line (1 line per CPU).  
						
						 
						
						... 
						
						
						
						PR: 520 
						
						
					 
					
						2003-03-20 11:15:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						aa9d896b0d 
					 
					
						
						
							
							hinv may generate more than one line (1 line per CPU).  
						
						 
						
						... 
						
						
						
						PR: 520 
						
						
					 
					
						2003-03-20 11:15:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2dd060d94e 
					 
					
						
						
							
							Shut up an ANSI compiler about uninitialised variables.  
						
						 
						
						... 
						
						
						
						PR: 517 
						
						
					 
					
						2003-03-20 10:57:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						42a559163d 
					 
					
						
						
							
							Shut up an ANSI compiler about uninitialised variables.  
						
						 
						
						... 
						
						
						
						PR: 517 
						
						
					 
					
						2003-03-20 10:57:09 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						546490c00e 
					 
					
						
						
							
							Add the target linux-ia64-ecc, suggested by Keith Thompson <kst@sdsc.edu>.  
						
						 
						
						... 
						
						
						
						PR: 516 
						
						
					 
					
						2003-03-20 10:50:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3285eb336c 
					 
					
						
						
							
							Add the target linux-ia64-ecc, suggested by Keith Thompson <kst@sdsc.edu>.  
						
						 
						
						... 
						
						
						
						PR: 516 
						
						
					 
					
						2003-03-20 10:50:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						409a5de586 
					 
					
						
						
							
							countermeasure against new Klima-Pokorny-Rosa atack  
						
						 
						
						
						
						
					 
					
						2003-03-19 19:19:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						02da5bcd83 
					 
					
						
						
							
							countermeasure against new Klima-Pokorny-Rosa atack  
						
						 
						
						
						
						
					 
					
						2003-03-19 19:19:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						84b1e84af1 
					 
					
						
						
							
							make sure RSA blinding works when the PRNG is not properly seeded;  
						
						 
						
						... 
						
						
						
						enable it automatically only for the built-in engine 
						
						
					 
					
						2003-03-19 18:58:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5250725ba5 
					 
					
						
						
							
							Fix Certificate and CRL adding in X509_load_cert_crl_file:  
						
						 
						
						... 
						
						
						
						an X509_INFO structure can contain more than one object,
for example a certififcate and a CRL. 
						
						
					 
					
						2003-03-19 13:56:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						9ed1fa4813 
					 
					
						
						
							
							Fix Certificate and CRL adding in X509_load_cert_crl_file:  
						
						 
						
						... 
						
						
						
						an X509_INFO structure can contain more than one object,
for example a certififcate and a CRL. 
						
						
					 
					
						2003-03-19 13:55:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						500df82a96 
					 
					
						
						
							
							fix formatting  
						
						 
						
						
						
						
					 
					
						2003-03-18 12:52:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						84d5ad6181 
					 
					
						
						
							
							fix formatting  
						
						 
						
						
						
						
					 
					
						2003-03-18 12:50:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						96c15b8aad 
					 
					
						
						
							
							Turn on RSA blinding by default.  
						
						 
						
						
						
						
					 
					
						2003-03-18 12:12:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4fc2bf07b5 
					 
					
						
						
							
							Fix for no-ec on Windows.  
						
						 
						
						
						
						
					 
					
						2003-03-15 01:29:18 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e8e0e3716a 
					 
					
						
						
							
							Fix for no-ec on Windows.  
						
						 
						
						
						
						
					 
					
						2003-03-15 01:28:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						bc441b739b 
					 
					
						
						
							
							Don't give an error if response reason absent in OCSP HTTP.  
						
						 
						
						
						
						
					 
					
						2003-03-14 23:38:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						2007fe63f8 
					 
					
						
						
							
							Don't give an error if response reason absent in OCSP HTTP.  
						
						 
						
						
						
						
					 
					
						2003-03-14 23:37:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ee435c0d9c 
					 
					
						
						
							
							Add entry for domainComponent so it is treated correctly.  
						
						 
						
						... 
						
						
						
						Add table order test to end of a_strnid.c 
						
						
					 
					
						2003-03-14 01:45:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e6539fe22d 
					 
					
						
						
							
							Add entry for domainComponent so it is treated correctly.  
						
						 
						
						... 
						
						
						
						Add table order test to end of a_strnid.c 
						
						
					 
					
						2003-03-14 01:44:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						ba5df66a8b 
					 
					
						
						
							
							Add some OIDs.  
						
						 
						
						
						
						
					 
					
						2003-03-13 23:37:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						12d4e7b8c8 
					 
					
						
						
							
							Fix PEDANTIC stuff...  
						
						 
						
						
						
						
					 
					
						2003-03-13 21:28:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						3f691235da 
					 
					
						
						
							
							Get the PEDANTIC stuff right this time...  
						
						 
						
						
						
						
					 
					
						2003-03-13 21:26:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bba2cb3ada 
					 
					
						
						
							
							Fix a bone-head bug. This warrants a CHANGES entry because it could affect  
						
						 
						
						... 
						
						
						
						applications if they were passing a bogus 'flags' parameter yet having
things work as they wanted anyway. 
						
						
					 
					
						2003-03-13 20:28:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						86a925b27e 
					 
					
						
						
							
							Fix a bone-head bug. This warrants a CHANGES entry because it could affect  
						
						 
						
						... 
						
						
						
						applications if they were passing a bogus 'flags' parameter yet having
things work as they wanted anyway. 
						
						
					 
					
						2003-03-13 20:23:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						52c4c51f02 
					 
					
						
						
							
							Return an error if gmtime returns NULL.  
						
						 
						
						
						
						
					 
					
						2003-03-13 14:13:53 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						954d8e4f79 
					 
					
						
						
							
							Return an error if gmtime returns NULL.  
						
						 
						
						
						
						
					 
					
						2003-03-13 14:10:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						767712fa62 
					 
					
						
						
							
							Avoid warnings for no-engine and PEDANTIC  
						
						 
						
						
						
						
					 
					
						2003-03-12 02:38:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b575dff21a 
					 
					
						
						
							
							Avoid warnings for no-engine and PEDANTIC  
						
						 
						
						
						
						
					 
					
						2003-03-12 02:38:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						90e8a3102b 
					 
					
						
						
							
							Fixes for EVP_DigestInit_ex() and OPENSSL_NO_ENGINE.  
						
						 
						
						
						
						
					 
					
						2003-03-12 02:31:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b35ca7b257 
					 
					
						
						
							
							Fixes for EVP_DigestInit_ex() and OPENSSL_NO_ENGINE.  
						
						 
						
						
						
						
					 
					
						2003-03-12 02:31:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						879650b866 
					 
					
						
						
							
							The default implementation of DSA_METHOD has an interdependence on the  
						
						 
						
						... 
						
						
						
						dsa_mod_exp() and bn_mod_exp() handlers from dsa_do_verify() and
dsa_sign_setup(). When another DSA_METHOD implementation does not define
these lower-level handlers, it becomes impossible to do a fallback to
software on errors using a simple DSA_OpenSSL()->fn(key).
This change allows the default DSA_METHOD to function in such circumstances
by only using dsa_mod_exp() and bn_mod_exp() handlers if they exist,
otherwise using BIGNUM implementations directly (which is what those
handlers did before this change). There should be no noticable difference
for the software case, or indeed any custom case that didn't already
segfault, except perhaps that there is now one less level of indirection in
all cases.
PR: 507 
						
						
					 
					
						2003-03-11 01:49:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						176f31ddec 
					 
					
						
						
							
							- new ECDH_compute_key interface (KDF is no longer a fixed built-in)  
						
						 
						
						... 
						
						
						
						- bugfix: in ECDH_compute_key, pad x coordinate with leading zeros if necessary 
						
						
					 
					
						2003-02-28 15:37:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fe14ee96db 
					 
					
						
						
							
							memset problem has been handled  
						
						 
						
						... 
						
						
						
						PR: 343 
						
						
					 
					
						2003-02-28 15:17:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0102bb94cb 
					 
					
						
						
							
							memset problem has been handled  
						
						 
						
						... 
						
						
						
						PR: 343 
						
						
					 
					
						2003-02-28 15:16:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						57376542a0 
					 
					
						
						
							
							use tabs for indentation, not spaces  
						
						 
						
						
						
						
					 
					
						2003-02-28 15:07:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						57bc7769b7 
					 
					
						
						
							
							Encryption BIOs misbehave when used with non blocking I/O.  
						
						 
						
						... 
						
						
						
						Two fixes:
1. If BIO_write() fails inside enc_write() it should return the
   total number of bytes successfully written.
2. If BIO_write() fails during BIO_flush() it should return immediately
   with the error code: previously it would fall through to the final
   encrypt, corrupting the buffer. 
						
						
					 
					
						2003-02-27 14:08:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						b8dc9693a7 
					 
					
						
						
							
							Encryption BIOs misbehave when used with non blocking I/O.  
						
						 
						
						... 
						
						
						
						Two fixes:
1. If BIO_write() fails inside enc_write() it should return the
   total number of bytes successfully written.
2. If BIO_write() fails during BIO_flush() it should return immediately
   with the error code: previously it would fall through to the final
   encrypt, corrupting the buffer. 
						
						
					 
					
						2003-02-27 14:07:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						0461b8c90b 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-02-27 13:03:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						6ac26a5ce5 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-02-27 13:02:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						155bd1137e 
					 
					
						
						
							
							add Certicom licensing e-mail address  
						
						 
						
						
						
						
					 
					
						2003-02-27 12:25:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						f0dc08e656 
					 
					
						
						
							
							Support for dirName from config files in GeneralName extensions.  
						
						 
						
						
						
						
					 
					
						2003-02-27 01:54:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						e9ec63961b 
					 
					
						
						
							
							Fix indefinite length encoding so EOC correctly updates  
						
						 
						
						... 
						
						
						
						the buffer pointer.
Rename PKCS7_PARTSIGN to PKCS7_STREAM.
Guess what that's for :-) 
						
						
					 
					
						2003-02-25 19:03:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0185803cc2 
					 
					
						
						
							
							year 2003  
						
						 
						
						
						
						
					 
					
						2003-02-24 17:18:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bd8e228d60 
					 
					
						
						
							
							year 2003  
						
						 
						
						
						
						
					 
					
						2003-02-24 17:16:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						5c9a9c9c33 
					 
					
						
						
							
							include OpenSSL license (in addition to EAY license)  
						
						 
						
						
						
						
					 
					
						2003-02-24 17:15:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						bad99f6a9d 
					 
					
						
						
							
							get rid of a bad character  
						
						 
						
						
						
						
					 
					
						2003-02-22 23:13:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						63ff3e83fc 
					 
					
						
						
							
							Add instructions for building the MinGW target in Cygwin, and  
						
						 
						
						... 
						
						
						
						rearrange some of the other text for better readability. 
						
						
					 
					
						2003-02-22 23:03:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						5600a9cba1 
					 
					
						
						
							
							Add instructions for building the MinGW target in Cygwin, and  
						
						 
						
						... 
						
						
						
						rearrange some of the other text for better readability. 
						
						
					 
					
						2003-02-22 23:00:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						607ae30be8 
					 
					
						
						
							
							replace symlink with copy, as in head  
						
						 
						
						
						
						
					 
					
						2003-02-22 22:59:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						b4f43344d5 
					 
					
						
						
							
							Copy rather than symlink the test data.  
						
						 
						
						... 
						
						
						
						This is needed because Windows doesn't support symlinks.
The Cygwin/MinGW build now passes "make test". 
						
						
					 
					
						2003-02-22 22:19:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c8c5cec1f9 
					 
					
						
						
							
							remove some more useless code. The mingw target can now be built  
						
						 
						
						... 
						
						
						
						under cygwin. 
						
						
					 
					
						2003-02-22 22:15:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						37d9503a67 
					 
					
						
						
							
							mingw related cleanups, as in head  
						
						 
						
						
						
						
					 
					
						2003-02-22 18:02:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						66ecdf3bfb 
					 
					
						
						
							
							more mingw related cleanups.  
						
						 
						
						
						
						
					 
					
						2003-02-22 18:00:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a1033894d7 
					 
					
						
						
							
							Remove duplication and have clean depend on libclean  
						
						 
						
						
						
						
					 
					
						2003-02-22 15:04:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7841edc9c1 
					 
					
						
						
							
							Remove duplication and have clean depend on libclean  
						
						 
						
						
						
						
					 
					
						2003-02-22 15:04:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						132eaa59da 
					 
					
						
						
							
							Allow building applications against static libraries with Makefile.shared.  
						
						 
						
						
						
						
					 
					
						2003-02-22 14:41:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5562cfaca4 
					 
					
						
						
							
							Base64 bio fixes. The base64 bio was seriously broken  
						
						 
						
						... 
						
						
						
						when reading from a non blocking BIO.
It would incorrectly interpret retries as EOF, incorrectly
buffer initial data and have no buffering at all after initial
data (data would be sent one byte at a time to EVP_DecodeUpdate). 
						
						
					 
					
						2003-02-22 02:12:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						0480574310 
					 
					
						
						
							
							mingw related changes as in head  
						
						 
						
						
						
						
					 
					
						2003-02-22 01:25:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						c8252b71b5 
					 
					
						
						
							
							add test  
						
						 
						
						
						
						
					 
					
						2003-02-22 01:20:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						94949a50aa 
					 
					
						
						
							
							avoid duplicate definiton of bn_sub_part_words  
						
						 
						
						
						
						
					 
					
						2003-02-21 23:19:50 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						0214893e6a 
					 
					
						
						
							
							clean up MinGW build. MinGW make now supports the Windows path name  
						
						 
						
						... 
						
						
						
						conventions. 
						
						
					 
					
						2003-02-21 22:59:20 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ulf Möller 
							
						 
					 
					
						
						
							
						
						5be4a42e99 
					 
					
						
						
							
							update mingw info  
						
						 
						
						
						
						
					 
					
						2003-02-21 22:09:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						f2aa055ec6 
					 
					
						
						
							
							treat 'out' like i2d functions do; cf. asn1_item_flags_i2d (crypto/asn/tasn_enc.c)  
						
						 
						
						
						
						
					 
					
						2003-02-21 16:06:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						62e3163b1b 
					 
					
						
						
							
							ECPublicKey_set_octet_string and ECPublicKey_get_octet_string  
						
						 
						
						... 
						
						
						
						behaviour was not quite consistent with the conventions
for d2i and i2d functions as far as handling of the 'out'
or 'in' pointer is concerned.
This patch changes this behaviour, and renames the functions to
o2i_ECPublicKey and i2o_ECPublicKey (not 'd2i' and 'i2d' because the
external encoding is just a raw object string without any DER icing).
Submitted by: Nils Larsch 
						
						
					 
					
						2003-02-21 13:58:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						8214e74f76 
					 
					
						
						
							
							Ooops forgot to recognise V_ASN1_GENERALSTRING.  
						
						 
						
						
						
						
					 
					
						2003-02-20 17:13:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						542a1b1a2e 
					 
					
						
						
							
							Re enable the read side non blocking test BIO code.  
						
						 
						
						... 
						
						
						
						For some reason it was disabled... 
						
						
					 
					
						2003-02-20 13:39:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						5672e3a321 
					 
					
						
						
							
							Fix bug in base64 bios during write an non blocking I/O:  
						
						 
						
						... 
						
						
						
						if the write fails when flushing the buffer return the
value to the application so it can retry. 
						
						
					 
					
						2003-02-20 13:37:48 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						fbbfd86b67 
					 
					
						
						
							
							typo  
						
						 
						
						... 
						
						
						
						PR: 511
Submitted by: Eric Cronin 
						
						
					 
					
						2003-02-19 16:29:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d8cbc93585 
					 
					
						
						
							
							Update release information  
						
						 
						
						
						
						
					 
					
						2003-02-19 14:02:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						dab0aaa612 
					 
					
						
						
							
							Let's move on to development of 0.9.7b.  
						
						 
						
						
						
						
					 
					
						2003-02-19 12:55:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5b0b0e98ce 
					 
					
						
						
							
							Security fix: Vaudenay timing attack on CBC.  
						
						 
						
						... 
						
						
						
						An advisory will be posted to the web.  Expect a release within the hour. 
						
						
					 
					
						2003-02-19 12:03:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						d5234c7b3a 
					 
					
						
						
							
							Make sure the memory allocation routines check for negative sizes  
						
						 
						
						
						
						
					 
					
						2003-02-19 11:54:42 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						77e270d10e 
					 
					
						
						
							
							Borland C++ Builder 5 complains about unreachable statements.  
						
						 
						
						
						
						
					 
					
						2003-02-19 11:22:15 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						c893bffae7 
					 
					
						
						
							
							Update debub-steve* entries.  
						
						 
						
						
						
						
					 
					
						2003-02-19 01:04:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						988e8458ad 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-02-18 12:46:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						758f942b88 
					 
					
						
						
							
							Make the no-err option work properly  
						
						 
						
						
						
						
					 
					
						2003-02-18 12:14:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						26e9724458 
					 
					
						
						
							
							Remove "+Olibcalls" option from HPUX targets.  
						
						 
						
						... 
						
						
						
						Reportedly this option is deprecated, and on some systems
"make test" fails if it is included.
PR: 495 
						
						
					 
					
						2003-02-16 20:10:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						4879ec7bf3 
					 
					
						
						
							
							Session cache implementations shouldn't have to access SSL_SESSION  
						
						 
						
						... 
						
						
						
						elements directly, so this missing functionality is required.
PR: 276 
						
						
					 
					
						2003-02-15 20:38:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b653327d47 
					 
					
						
						
							
							Declare prototypes for function pointer types, even if they are likely to  
						
						 
						
						... 
						
						
						
						be cast later on. 
						
						
					 
					
						2003-02-15 20:32:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4cadedef57 
					 
					
						
						
							
							Update docs.  
						
						 
						
						
						
						
					 
					
						2003-02-15 01:09:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						27068df7e0 
					 
					
						
						
							
							Single pass processing to cleartext S/MIME signing.  
						
						 
						
						
						
						
					 
					
						2003-02-15 00:50:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						b12753dffc 
					 
					
						
						
							
							We cache a montgomery form for 'n' if the PUBLIC flag is set, not PRIVATE.  
						
						 
						
						... 
						
						
						
						Also, I've added handling for other mod_exp calls that were not using any
cached montgomery forms. These cases matter only for special RSA keys (eg.
ones that are missing information) so are unlikely to be used in normal
circumstances. 
						
						
					 
					
						2003-02-15 00:18:38 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						79221bc265 
					 
					
						
						
							
							David Brumley <dbrumley@stanford.edu> noted and corrected a case in the  
						
						 
						
						... 
						
						
						
						verification step of CRT private key operations in the RSA code -
previously no montgomery form was checked or used for 'n', and so it would
be generated on the fly each time. As a result, private key operations are
now a percent or two faster.
Rather than adding this as another repetition of the nearly-identical
montgomery "check for first-use" initialisation code blocks, I've taken
this chance to create a helper function and macro-wrapper to replace them.
PR: 475 
						
						
					 
					
						2003-02-14 23:21:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ffa49dc3d9 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-02-14 14:21:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b7bbac72c4 
					 
					
						
						
							
							Add support for IA64.  
						
						 
						
						... 
						
						
						
						PR: 454 
						
						
					 
					
						2003-02-14 13:30:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c1269c81fd 
					 
					
						
						
							
							Handle krb5 libraries separately and make sure only libssl.so depends  
						
						 
						
						... 
						
						
						
						on it. 
						
						
					 
					
						2003-02-14 13:12:00 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						794a386af3 
					 
					
						
						
							
							Update linux-mips and linux-mipsel to support threads and shared libraries.  
						
						 
						
						... 
						
						
						
						I also updated the bn_ops field with values taken from OpenBSD-mips.
PR: 498 
						
						
					 
					
						2003-02-14 08:56:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e270cf9c5e 
					 
					
						
						
							
							Pay attention to disabled SSL versions.  
						
						 
						
						... 
						
						
						
						PR: 500 
						
						
					 
					
						2003-02-14 05:24:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						7e38616d1f 
					 
					
						
						
							
							Change no_rmd160 to no_ripemd for consistency.  
						
						 
						
						... 
						
						
						
						PR: 500 
						
						
					 
					
						2003-02-14 05:20:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						85d686e723 
					 
					
						
						
							
							Make it possible to disable OCSP, the speed application, and the use of sockets.  
						
						 
						
						... 
						
						
						
						PR: 358 
						
						
					 
					
						2003-02-14 01:02:58 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2d3de726c5 
					 
					
						
						
							
							Add full support for -rpath/-R, both in shared libraries and  
						
						 
						
						... 
						
						
						
						applications, at least on the platforms where it's known how
to do it.
Note: this has only been tested on GNU-based platforms (Linux), and
needs to be tested on all others.  Additionally, it's not yet
supported on the following platforms, for lack of information:
Darwin (MacOS X)
Cygwin
OSF1/Alpha
SVR3
ReliantUNIX
Please help out with testing and the platforms we don't yet know well
enough. 
						
						
					 
					
						2003-02-13 23:52:54 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4989f0599f 
					 
					
						
						
							
							Another long name to deal with  
						
						 
						
						
						
						
					 
					
						2003-02-13 13:21:13 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						e4b52ac353 
					 
					
						
						
							
							Oh, the destest program did look at the return value...  
						
						 
						
						
						
						
					 
					
						2003-02-13 08:53:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						abd22c9c46 
					 
					
						
						
							
							new lock for EC_PRE_COMP structures  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-02-12 22:01:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ba729265a8 
					 
					
						
						
							
							Allow EC_GROUP objects to share precomputation for improved memory  
						
						 
						
						... 
						
						
						
						efficiency (EC_PRE_COMP objects are now constant once completed).
Extend 'extra_data' API to support arbitrarily many slots (although we
need only one at the moment).
Modify EC internal 'extra_data' API: EC_GROUP_[clear_]free_extra_data
now frees only a single slot (the previous functions are available as
EC_GROUP_[clear_]free_all_extra_data).
Submitted by: Nils Larsch
Reviewed by: Bodo Moeller 
						
						
					 
					
						2003-02-12 18:30:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						9ec1d35f29 
					 
					
						
						
							
							Adjust DES_cbc_cksum() so the returned value is the same as MIT's  
						
						 
						
						... 
						
						
						
						mit_des_cbc_cksum().  The difference was first observed, then verified by
looking at the MIT source. 
						
						
					 
					
						2003-02-12 17:20:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						cf56663fb7 
					 
					
						
						
							
							Option to disable SSL auto chain build  
						
						 
						
						
						
						
					 
					
						2003-02-12 17:06:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						ea513641d0 
					 
					
						
						
							
							comments  
						
						 
						
						
						
						
					 
					
						2003-02-12 14:17:41 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						8537943e8b 
					 
					
						
						
							
							first section is now "Changes between 0.9.7a and 0.9.8", not "... 0.9.7 and 0.9.8"  
						
						 
						
						
						
						
					 
					
						2003-02-11 16:42:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						a8f5b2ed50 
					 
					
						
						
							
							GeneralString support in mini-ASN1 compiler  
						
						 
						
						
						
						
					 
					
						2003-02-11 14:06:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						33075f229e 
					 
					
						
						
							
							Typo.  
						
						 
						
						
						
						
					 
					
						2003-02-10 17:52:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28f573a28d 
					 
					
						
						
							
							Make sure memcpy() is properly declared by including string.h.  
						
						 
						
						
						
						
					 
					
						2003-02-10 11:14:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						e2c9c91b5b 
					 
					
						
						
							
							fix EC_GROUP_copy for EC_GFp_nist_method()  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-02-08 19:51:37 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d42d2d1ab6 
					 
					
						
						
							
							avoid coredump  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-02-08 19:49:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						65b254e8c0 
					 
					
						
						
							
							remove debugging leftovers  
						
						 
						
						
						
						
					 
					
						2003-02-08 15:56:05 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						82871eaa17 
					 
					
						
						
							
							comment  
						
						 
						
						
						
						
					 
					
						2003-02-07 11:54:57 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						24893ca999 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2003-02-06 19:32:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						27a9bf17c7 
					 
					
						
						
							
							PKCS#1 has a new RFC, which we do implement  
						
						 
						
						
						
						
					 
					
						2003-02-06 19:30:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						37c660ff9b 
					 
					
						
						
							
							implement fast point multiplication with precomputation  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch
Reviewed by: Bodo Moeller 
						
						
					 
					
						2003-02-06 19:25:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						772ec4135c 
					 
					
						
						
							
							typo in WIN16 section  
						
						 
						
						... 
						
						
						
						Submitted by: Toni Andjelkovic <toni@soth.at > 
						
						
					 
					
						2003-02-05 16:54:10 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						0e9035ac98 
					 
					
						
						
							
							SSL_add_dir_cert_subjects_to_stack now exists for WIN32  
						
						 
						
						
						
						
					 
					
						2003-02-05 16:40:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						4e5d3a7f98 
					 
					
						
						
							
							IPv6 display and input support for extensions usingh GeneralName.  
						
						 
						
						
						
						
					 
					
						2003-02-05 00:34:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						379e568950 
					 
					
						
						
							
							typo  
						
						 
						
						
						
						
					 
					
						2003-02-04 12:57:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c09a297892 
					 
					
						
						
							
							Update PRNG entry:  
						
						 
						
						... 
						
						
						
						- OpenSSL version differences
- Sun /dev/urandom patch information 
						
						
					 
					
						2003-02-04 12:28:11 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						2619676256 
					 
					
						
						
							
							Old-style callbacks can be NULL!  
						
						 
						
						
						
						
					 
					
						2003-02-01 20:58:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ben Laurie 
							
						 
					 
					
						
						
							
						
						33cc07f79a 
					 
					
						
						
							
							Fix warning.  
						
						 
						
						
						
						
					 
					
						2003-02-01 20:55:29 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c029841e36 
					 
					
						
						
							
							We can't say in advance what the argument to BIO_socket_ioctl() should be, so  
						
						 
						
						... 
						
						
						
						let's make that a void *.  Also, BIO_socket_nbio() should send it an int
argument, not a long.
PR: 457 
						
						
					 
					
						2003-01-31 12:20:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						bfa3555081 
					 
					
						
						
							
							Document -engine where missing.  
						
						 
						
						... 
						
						
						
						PR: 424 
						
						
					 
					
						2003-01-30 22:02:27 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5d780babe3 
					 
					
						
						
							
							A few small bugs with BIO popping.  
						
						 
						
						... 
						
						
						
						PR: 364 
						
						
					 
					
						2003-01-30 21:49:12 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5cd48abf9f 
					 
					
						
						
							
							The util scripts need to handled no-hw.  
						
						 
						
						... 
						
						
						
						PR: 327 
						
						
					 
					
						2003-01-30 20:03:45 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						db5006df04 
					 
					
						
						
							
							The MASM situation is more difficult than described so far.  It is part of VC++ 7.  
						
						 
						
						... 
						
						
						
						PR: 327 
						
						
					 
					
						2003-01-30 19:05:25 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						3d6a84c42a 
					 
					
						
						
							
							For VC++7 and up, the file is VSVARS32.BAT.  
						
						 
						
						... 
						
						
						
						PR: 327 
						
						
					 
					
						2003-01-30 19:01:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						5fe11c7533 
					 
					
						
						
							
							The OPENSSL_NO_ENGINE has small problem: it changes certain structures.  That's  
						
						 
						
						... 
						
						
						
						bad, so let's not check OPENSSL_NO_ENGINE in those places.  Fortunately, all
the header files where the problem existed include ossl_typ.h, which makes
a 'forward declaration' of the ENGINE type. 
						
						
					 
					
						2003-01-30 18:52:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						a1d57849b3 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-01-30 17:53:02 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0b13e9f055 
					 
					
						
						
							
							Add the possibility to build without the ENGINE framework.  
						
						 
						
						... 
						
						
						
						PR: 287 
						
						
					 
					
						2003-01-30 17:39:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						96f7065f63 
					 
					
						
						
							
							Summarise the last couple of commits.  
						
						 
						
						
						
						
					 
					
						2003-01-30 15:52:40 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						f3c22ef10d 
					 
					
						
						
							
							This glues the GMP wrapper ENGINE into OpenSSL if it is being built (ie. if  
						
						 
						
						... 
						
						
						
						the OPENSSL_USE_GMP symbol is defined). Also, I've re-ordered the listing
of other builtin ENGINEs to be alphabetical (though "dynamic" will still
come first). 
						
						
					 
					
						2003-01-30 15:49:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						a85bef1899 
					 
					
						
						
							
							Commit a slightly modified version of an old experiment to do RSA private  
						
						 
						
						... 
						
						
						
						key operations using the GMP library. The default is not to build (or use)
this code unless OPENSSL_USE_GMP is defined (because it will impose header
and linker dependencies that might need specifying too). 
						
						
					 
					
						2003-01-30 15:43:07 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						bb3e67f315 
					 
					
						
						
							
							"openssl engine" will not display ENGINE/DSO load failure errors when  
						
						 
						
						... 
						
						
						
						testing availability of engines with "-t" - the old behaviour of is
produced by increasing the feature's verbosity with "-tt". 
						
						
					 
					
						2003-01-30 14:58:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c0a93e31ab 
					 
					
						
						
							
							Small typo, OENSSL should really be spelled OPENSSL.  
						
						 
						
						... 
						
						
						
						PR: 476 
						
						
					 
					
						2003-01-30 11:08:44 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2e60ea7634 
					 
					
						
						
							
							Fix a memory leak in SSL.  
						
						 
						
						... 
						
						
						
						PR: 477 
						
						
					 
					
						2003-01-30 11:00:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e78074b39 
					 
					
						
						
							
							cert_sk isn't always allocated, so freeing it may cause a crash.  
						
						 
						
						... 
						
						
						
						PR: 481 
						
						
					 
					
						2003-01-30 10:27:43 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						b637670f03 
					 
					
						
						
							
							DVCS (see RFC 3029) was missing among the possible purposes.  
						
						 
						
						... 
						
						
						
						Notified privately to me by Peter Sylvester <Peter.Sylvester@EdelWeb.fr >,
one of the authors of said RFC 
						
						
					 
					
						2003-01-29 15:06:35 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						bd1217a176 
					 
					
						
						
							
							simplify  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-28 13:08:21 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						da45180de4 
					 
					
						
						
							
							Correct EVP_SealInit() documentation, iv is an output  
						
						 
						
						... 
						
						
						
						parameter. 
						
						
					 
					
						2003-01-26 13:38:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						82516e3baf 
					 
					
						
						
							
							cofactor is optional in parameter encodings  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-25 15:28:49 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						c1862f9136 
					 
					
						
						
							
							consistency  
						
						 
						
						
						
						
					 
					
						2003-01-24 22:28:32 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9048c7245b 
					 
					
						
						
							
							For ecdsa-with-SHA1, as for id-dsa-with-sha1, omit 'parameters'  
						
						 
						
						... 
						
						
						
						in AlgorithmIdentifier
Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-24 21:43:08 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						02bf9a151a 
					 
					
						
						
							
							Provide "dummy" &main::picmeup even in Windows perlasm modules.  
						
						 
						
						
						
						
					 
					
						2003-01-24 09:39:31 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						d3b5cb5343 
					 
					
						
						
							
							Check return value of gmtime() and add error codes  
						
						 
						
						... 
						
						
						
						where it fails in ASN1_TIME_set().
Edit asn1.h so the new error code is the same in 0.9.7
and 0.9.8, rebuild new error codes.
Clear error queue in req.c if *_min or *_max is absent. 
						
						
					 
					
						2003-01-24 01:12:01 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						97e6bf6b22 
					 
					
						
						
							
							Workaround for lame compiler bug introduced in "CPU pack" for MSVC6SP5.  
						
						 
						
						
						
						
					 
					
						2003-01-23 10:05:39 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						04da4558dd 
					 
					
						
						
							
							The patch speaks for itself.  
						
						 
						
						
						
						
					 
					
						2003-01-23 09:52:34 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0c3426da86 
					 
					
						
						
							
							Missing 0 broke FreeBSD build.  
						
						 
						
						... 
						
						
						
						PR: 470 
						
						
					 
					
						2003-01-23 08:10:04 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						9b3f03d5a2 
					 
					
						
						
							
							fix warnings  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-21 09:53:14 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						9abff96b2f 
					 
					
						
						
							
							Suggestion was to change ${MACHINE} to i586 in lines in question. Well,  
						
						 
						
						... 
						
						
						
						"whatever" doesn't the same (avoids 386 being passed to ./Configure),
consistent with other elder SCO targets and denotes that we probably
shouldn't care much about every out-of-date platform. 
						
						
					 
					
						2003-01-19 21:47:06 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						722d17cbac 
					 
					
						
						
							
							This is an *initial* tune-up. This update puts Itanium2 back on par with  
						
						 
						
						... 
						
						
						
						Itanium. I mean if overall performance improvement over C version was X
for Itanium, it's X even for Itanium2. 
						
						
					 
					
						2003-01-19 21:29:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						59b846c515 
					 
					
						
						
							
							Oops! Missed closing quote... Didn't have time to verify before a snapshot  
						
						 
						
						... 
						
						
						
						was cut... 
						
						
					 
					
						2003-01-19 11:39:19 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						42bf2a5cdc 
					 
					
						
						
							
							SCO target missed .so suffix.  
						
						 
						
						
						
						
					 
					
						2003-01-18 21:57:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						80bcbaa02f 
					 
					
						
						
							
							-lresolv is not present on SCO Unix, RT#460.  
						
						 
						
						
						
						
					 
					
						2003-01-18 18:12:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						7c4e24af38 
					 
					
						
						
							
							Caldera/SCO targets erroneously limit themselves to 386. See RT#464.  
						
						 
						
						
						
						
					 
					
						2003-01-18 15:17:26 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andy Polyakov 
							
						 
					 
					
						
						
							
						
						726c223143 
					 
					
						
						
							
							Fix for AIX shared build, see RT#463.  
						
						 
						
						
						
						
					 
					
						2003-01-18 15:13:03 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						59ae8c9419 
					 
					
						
						
							
							EVP_DecryptInit() should call EVP_CipherInit() not EVP_CipherInit_ex().  
						
						 
						
						
						
						
					 
					
						2003-01-17 00:48:47 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						0bdd2da5d2 
					 
					
						
						
							
							Ingore the correct flag file.  
						
						 
						
						
						
						
					 
					
						2003-01-16 21:36:17 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						2f09524501 
					 
					
						
						
							
							A few more files to ignore  
						
						 
						
						
						
						
					 
					
						2003-01-16 21:32:56 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						06492aef01 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-01-16 21:20:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						c00cee00fd 
					 
					
						
						
							
							FreeBSD has /dev/crypto as well.  
						
						 
						
						... 
						
						
						
						PR: 462 
						
						
					 
					
						2003-01-16 18:29:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						8228f302dd 
					 
					
						
						
							
							Add some debugging output.  
						
						 
						
						
						
						
					 
					
						2003-01-16 17:28:46 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						018c56fdca 
					 
					
						
						
							
							Armor against systems without ranlib...  
						
						 
						
						... 
						
						
						
						Submitted by: Thierry Lelegard <thierry.lelegard@canal-plus.fr >
PR: 461 
						
						
					 
					
						2003-01-16 17:22:30 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						d745af4b0c 
					 
					
						
						
							
							avoid potential confusion about curves (prime192v1 and prime256v1 are  
						
						 
						
						... 
						
						
						
						also known as secp192r1 and secp256r1, respectively)
Submitted by: Nils Larsch, Bodo Moeller 
						
						
					 
					
						2003-01-16 16:05:23 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						44ea41cfff 
					 
					
						
						
							
							make update  
						
						 
						
						
						
						
					 
					
						2003-01-16 13:01:36 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						acad5755a2 
					 
					
						
						
							
							ncr-scde target needs -lc89 for strcasecmp() and ftime() (Tim Rice, Martin  
						
						 
						
						... 
						
						
						
						Megele).
PR: 450 
						
						
					 
					
						2003-01-16 07:54:52 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						28b958f732 
					 
					
						
						
							
							Fix possible NULL dereferencial.  
						
						 
						
						... 
						
						
						
						Notified by Verdon Walker <VWalker@novell.com > 
						
						
					 
					
						2003-01-16 06:00:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Richard Levitte 
							
						 
					 
					
						
						
							
						
						4e59cd3bb6 
					 
					
						
						
							
							Add verbosity  
						
						 
						
						
						
						
					 
					
						2003-01-15 17:23:16 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						a74333f905 
					 
					
						
						
							
							Fix initialization sequence to prevent freeing of unitialized objects.  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch <nla@trustcenter.de >
PR: 459 
						
						
					 
					
						2003-01-15 14:54:59 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Bodo Möller 
							
						 
					 
					
						
						
							
						
						365e14622a 
					 
					
						
						
							
							update error library for EC... changes  
						
						 
						
						... 
						
						
						
						Submitted by: Nils Larsch 
						
						
					 
					
						2003-01-15 11:47:28 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Lutz Jänicke 
							
						 
					 
					
						
						
							
						
						8ec16ce711 
					 
					
						
						
							
							Really fix SSLv2 session ID handling  
						
						 
						
						... 
						
						
						
						PR: 377 
						
						
					 
					
						2003-01-15 09:51:22 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Geoff Thorpe 
							
						 
					 
					
						
						
							
						
						0e4aa0d2d2 
					 
					
						
						
							
							As with RSA, which was modified recently, this change makes it possible to  
						
						 
						
						... 
						
						
						
						override key-generation implementations by placing handlers in the methods
for DSA and DH. Also, parameter generation for DSA and DH is possible by
another new handler for each method. 
						
						
					 
					
						2003-01-15 02:01:55 +00:00  
					
					
						 
						
						
							
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Dr. Stephen Henson 
							
						 
					 
					
						
						
							
						
						08cb96bba2 
					 
					
						
						
							
							Set EXPORT_VAR_AS_FN for BC-32 to work around a compiler bug,  
						
						 
						
						
						
						
					 
					
						2003-01-14 20:54:18 +00:00