Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | remerge local tweaks, update per-arch configuration headers, update | 2008-09-06 | 1 | -12/+8 | ||
| | | | | Makefiles, crank shlib_version | |||||
* | resolve conflicts | 2008-09-06 | 17 | -117/+328 | ||
| | ||||||
* | import of OpenSSL 0.9.8h | 2008-09-06 | 10 | -468/+2914 | ||
| | ||||||
* | fix memory leak (in one case of unaligned buffers); from Markus Kvetter | 2008-02-26 | 1 | -2/+3 | ||
| | | | | ok markus | |||||
* | resolve conflicts | 2006-06-27 | 7 | -125/+244 | ||
| | ||||||
* | potential fd leak (we will fix this before we move to cloning) | 2006-06-08 | 1 | -1/+3 | ||
| | ||||||
* | no need to byteswap for AES_ASM, from tom@ | 2005-05-23 | 1 | -1/+9 | ||
| | ||||||
* | resolve conflicts | 2005-04-29 | 1 | -2/+6 | ||
| | ||||||
* | import of openssl-0.9.7g; tested on platforms from alpha to zaurus, ok deraadt@ | 2005-04-29 | 2 | -1/+537 | ||
| | ||||||
* | adjust comment, open_dev_crypto() returns -1 on error. | 2005-01-29 | 1 | -1/+1 | ||
| | | | | ok markus@ | |||||
* | on error set correct pointer to NULL. | 2005-01-26 | 1 | -2/+2 | ||
| | | | | | | From phk@freebsd.org ok markus@ | |||||
* | machdep.xcrypt now has a different meaning: Instead of > 0 indicating | 2004-06-15 | 1 | -14/+16 | ||
| | | | | | | that AES is there, we now have 3 flag bits: C3_HAS_AES, C3_HAS_SHA (SHA1 & SHA256), and C3_HAS_MM (RSA). Change this code to only look at C3_HAS_AES for now. | |||||
* | merge 0.9.7d | 2004-04-08 | 4 | -23/+29 | ||
| | ||||||
* | remove some debug code and cleanup.. | 2004-02-04 | 1 | -18/+6 | ||
| | ||||||
* | OK, this time the AES soft keys work with ssh and such. I spent over 3 | 2004-02-03 | 1 | -16/+63 | ||
| | | | | | hours learning that OpenSSL's internal functions for AES extended keys generate screwy byte order swapped data.. | |||||
* | oops, software key gen bug | 2004-02-03 | 1 | -35/+10 | ||
| | ||||||
* | Switch to using software generated extended keys (because the cpu cannot | 2004-02-03 | 1 | -10/+35 | ||
| | | | | | | | | | | yet generate 192 & 256 bit keys). Ensure that 192 and 256 are in the nids table. This also accelerates performance for 128 a tiny bit: type 16 bytes 64 bytes 256 bytes 1024 bytes 8192 bytes aes-128-cbc 34921.48k 129617.82k 362059.93k 623649.81k 790397.77k aes-192-cbc 26227.43k 99215.33k 283242.84k 509881.15k 665323.22k aes-256-cbc 26133.22k 97458.06k 265990.84k 457824.69k 579835.09k | |||||
* | If on an i386, detect existance of the VIA C3 xcrypt-* using sysctl of | 2004-02-03 | 1 | -4/+174 | ||
| | | | | | | | | the machdep.xcrypt node. If they exist, use the xcrypt-cbc instruction to accelerate aes-{128,192,256}-cbc, for more than 100x performance increase. This code has no effect on any cpu... Tested thus far using openssl speed command, and of course, ssh. 778MB/sec AES-128-CBC performance at 8192 byte block size. | |||||
* | remove obsolete files | 2003-11-13 | 1 | -594/+0 | ||
| | ||||||
* | merge 0.9.7c; minor bugsfixes; | 2003-11-11 | 2 | -3/+6 | ||
| | | | | | API addition: ERR_release_err_state_table [make includes before you build libssl/libcrypto] | |||||
* | support AES with 192 and 256 bit keys, too. | 2003-08-07 | 1 | -58/+60 | ||
| | | | | tested with kern.cryptodevallowsoft=1; ok deraadt@ | |||||
* | nuke term 3, since we're all in ~deraadt/terms and I clued in now. | 2003-06-03 | 1 | -3/+0 | ||
| | ||||||
* | merge 0.9.7b with local changes; crank majors for libssl/libcrypto | 2003-05-12 | 13 | -95/+248 | ||
| | ||||||
* | import 0.9.7b (without idea and rc5) | 2003-05-11 | 14 | -16/+1897 | ||
| | ||||||
* | remove printf("bar\n"); | 2003-04-08 | 1 | -1/+0 | ||
| | ||||||
* | sprintf->snprintf. deraadt@ suggestions and ok | 2003-04-06 | 1 | -3/+7 | ||
| | ||||||
* | merge with openssl-0.9.7-stable-SNAP-20020911, | 2002-09-14 | 2 | -5/+5 | ||
| | | | | | new minor for libcrypto (_X509_REQ_print_ex) tested by miod@, pb@ | |||||
* | import openssl-0.9.7-stable-SNAP-20020911 (without idea) | 2002-09-12 | 1 | -5/+5 | ||
| | ||||||
* | merge openssl-0.9.7-beta3, tested on vax by miod@ | 2002-09-10 | 6 | -147/+322 | ||
| | ||||||
* | import openssl-0.9.7-beta3 | 2002-09-05 | 5 | -20/+87 | ||
| | ||||||
* | merge with 0.9.7-beta1 | 2002-09-05 | 3 | -4/+5 | ||
| | ||||||
* | sync formatting with 0.9.7 | 2002-09-04 | 1 | -2/+1 | ||
| | ||||||
* | remove whitespace changes (keep diffs to 0.9.7-beta1 minimal) | 2002-09-03 | 2 | -2/+1 | ||
| | ||||||
* | unused files, not part of OpenSSL 0.9.7 | 2002-09-03 | 5 | -1681/+0 | ||
| | ||||||
* | sync with http://www.openssl.org/news/patch_20020730_0_9_7.txt | 2002-07-30 | 1 | -8/+8 | ||
| | | | | | (adds fix for unused kerberos and engine code, and some more assertions, as well as a 64bit integer string fix for conf_mod.c) | |||||
* | correct memset arguments; from Moritz Jodeit <moritz@jodeit.org> via PR/2822. | 2002-07-16 | 1 | -2/+2 | ||
| | ||||||
* | remove support for RC4 via /dev/crypto, suggested by Niels; ok provos@ | 2002-06-20 | 1 | -18/+0 | ||
| | ||||||
* | do not syslog from libraries! | 2002-06-19 | 1 | -10/+1 | ||
| | ||||||
* | KNF, -Wall, and other cleanups. still does not failover 100% correctly | 2002-06-19 | 1 | -22/+52 | ||
| | | | | for operations when /dev/crypto is missing, for instance in chroot | |||||
* | stupid stupid bug ja ja ja ja | 2002-06-19 | 1 | -1/+1 | ||
| | ||||||
* | unbreak sshd with privsep: open /dev/crypto, keep fd, and call | 2002-06-18 | 1 | -5/+20 | ||
| | | | | CRIOGET per EVP_Init(); ok niklas@, miod@ | |||||
* | per-evp state is now sizeof(struct dev_crypto_state) instead sizeof(struct session_op) | 2002-06-18 | 1 | -6/+6 | ||
| | ||||||
* | keep a FD per EVP_init, use a global FD for all asym operations; | 2002-06-13 | 1 | -83/+85 | ||
| | | | | ok beck@ | |||||
* | KNF | 2002-06-11 | 1 | -19/+16 | ||
| | ||||||
* | add "dsa_dsa_mod_exp" - This mimics the software dsa_mod_exp funtion | 2002-06-11 | 1 | -3/+37 | ||
| | | | | | | | using two mod_exp operations - otherwise we use BN_mod_exp2 entirely in software, which makes dsa verifications glacially slow while signatures, (which use mod_exp) are fast. This lets cards that can only do bn_mod_exp decently offload most of dsa. | |||||
* | Make DSA work now... at least for things that can do bn_mod_exp. | 2002-06-11 | 1 | -7/+4 | ||
| | ||||||
* | Make asymmetric crypto work in userland | 2002-06-11 | 1 | -36/+114 | ||
| | | | | | this will only be used if you both have a card that supports it with a working driver and you set sysctl kern.userasymcrypto=1 | |||||
* | Pass the right arguments for RSA, DSA, and modexp operations. Fix the | 2002-06-09 | 1 | -30/+37 | ||
| | | | | translation between the crypto framework's format and the BN structure. | |||||
* | Merge OpenSSL 0.9.7-stable-20020605, | 2002-06-07 | 2 | -15/+15 | ||
| | | | | correctly autogenerate obj_mac.h | |||||
* | do not assume scripts are executable | 2002-05-25 | 1 | -1/+1 | ||
| |