Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | add "dsa_dsa_mod_exp" - This mimics the software dsa_mod_exp funtion | 2002-06-11 | 1 | -3/+37 | ||
| | | | | | | | using two mod_exp operations - otherwise we use BN_mod_exp2 entirely in software, which makes dsa verifications glacially slow while signatures, (which use mod_exp) are fast. This lets cards that can only do bn_mod_exp decently offload most of dsa. | |||||
* | Make DSA work now... at least for things that can do bn_mod_exp. | 2002-06-11 | 1 | -7/+4 | ||
| | ||||||
* | Make asymmetric crypto work in userland | 2002-06-11 | 1 | -36/+114 | ||
| | | | | | this will only be used if you both have a card that supports it with a working driver and you set sysctl kern.userasymcrypto=1 | |||||
* | Pass the right arguments for RSA, DSA, and modexp operations. Fix the | 2002-06-09 | 1 | -30/+37 | ||
| | | | | translation between the crypto framework's format and the BN structure. | |||||
* | After much horrible and painful slogging through asn1 code, | 2002-06-08 | 1 | -0/+1 | ||
| | | | | | | | | | | this fixes the source of connection problems with ssl/tls connections between sparc64 and other things. The punchline, we just found a bug in floating point emulation on sparc64 when this script produces off-by-one output on sparc64. This fix is annoyingly easy for the effort expended. | |||||
* | do not propose IDEA cipher on SSL connection. tested by beck | 2002-06-07 | 3 | -0/+10 | ||
| | | | | noticed by Sverre Froyen <sverre@viewmark.com> | |||||
* | Merge OpenSSL 0.9.7-stable-20020605, | 2002-06-07 | 59 | -2540/+670 | ||
| | | | | correctly autogenerate obj_mac.h | |||||
* | sig_atomic_t type must also be volatile | 2002-06-03 | 1 | -1/+1 | ||
| | ||||||
* | do not assume scripts are executable | 2002-05-25 | 6 | -6/+6 | ||
| | ||||||
* | Merge openssl-0.9.7-stable-SNAP-20020519 | 2002-05-21 | 24 | -198/+141 | ||
| | ||||||
* | add aes/bf/cast; ok deraadt@ | 2002-05-16 | 1 | -2/+50 | ||
| | ||||||
* | use hw_cryptodev | 2002-05-16 | 1 | -24/+24 | ||
| | ||||||
* | Damn my rush to make it build again. | 2002-05-15 | 1 | -2842/+0 | ||
| | ||||||
* | god these guys have low quality control | 2002-05-15 | 1 | -1/+1 | ||
| | ||||||
* | OpenSSL 0.9.7 stable 2002 05 08 merge | 2002-05-15 | 910 | -22757/+98343 | ||
| | ||||||
* | Remove references to nonexistent man pages. Ok theo, millert. | 2002-02-12 | 1 | -2/+1 | ||
| | ||||||
* | fix to match documented behaviour. RAND_file_name must return a pointer to | 2001-12-20 | 1 | -9/+13 | ||
| | | | | buf, not something else. | |||||
* | understand sparc64 | 2001-09-18 | 1 | -6/+10 | ||
| | ||||||
* | merge openssl 0.9.6b-engine | 2001-08-01 | 55 | -333/+877 | ||
| | | | | | Note that this is a maintenence release, API's appear *not* to have changed. As such, I have only increased the minor number on these libraries | |||||
* | http://www.openssl.org/news/secadv_prng.txt; ok beck@ | 2001-08-01 | 1 | -8/+17 | ||
| | ||||||
* | openssl-engine-0.9.6a merge | 2001-06-22 | 230 | -1076/+5225 | ||
| | ||||||
* | typo | 2001-06-16 | 1 | -1/+0 | ||
| | ||||||
* | import DSA changes from 0.9.6a (Bleichenbacher attack), ok provos@/deraadt@ | 2001-04-23 | 3 | -21/+66 | ||
| | ||||||
* | CRT and DH+SSL fix from 0.9.6a, ok provos@/deraadt@ | 2001-04-22 | 2 | -1/+12 | ||
| | ||||||
* | add OpenBSD-m68k target, turning BN_LLONG off, for performance on 060 | 2001-03-09 | 1 | -0/+1 | ||
| | ||||||
* | Use correct interpreters | 2001-01-26 | 2 | -3/+3 | ||
| | ||||||
* | make sure s always has enough from for trailing \0. even though strlcpy will | 2001-01-12 | 1 | -1/+1 | ||
| | | | | truncate, thanks to itojun@ | |||||
* | do not honour environment variables if issetugid, and even more strongly support the random device | 2001-01-02 | 2 | -18/+19 | ||
| | ||||||
* | fix util script runs to not assume they are executable. | 2000-12-18 | 3 | -3/+3 | ||
| | ||||||
* | openssl-engine0.9.6 merge | 2000-12-15 | 115 | -0/+0 | ||
| | | | | Again, be sure to whack an old /usr/obj/lib/libssl if you are doing builds | |||||
* | openssl-engine-0.9.6 merge | 2000-12-15 | 628 | -15406/+46338 | ||
| | ||||||
* | fix missing closedir() that could allow apacheSSL to leak fd's, | 2000-10-16 | 1 | -0/+1 | ||
| | | | | from netbsd (taca) credited to TAKANO Yuji <takachan@running-dog.net> | |||||
* | vax support; checked by beck. | 2000-10-13 | 2 | -0/+2 | ||
| | ||||||
* | Fix typo; claudio@core-sdi.com. | 2000-10-10 | 1 | -1/+1 | ||
| | ||||||
* | des_modes(7) not des_modes(7); jmd@turbogeek.org | 2000-09-05 | 1 | -1/+1 | ||
| | ||||||
* | $HOME paranoia: never use getenv("HOME") w/o checking for NULL and non-zero | 2000-08-02 | 1 | -1/+1 | ||
| | ||||||
* | use %s with fprintf | 2000-07-07 | 1 | -1/+1 | ||
| | ||||||
* | RSA goes in tree for next our next release, as it will be after | 2000-06-15 | 2 | -33/+322 | ||
| | | | | | | Sept 21. Note: This means you shouldn't really be running -current for anything in the United States. Either wait for Sept 21, or for the next release, or move to the free world :) | |||||
* | another annoying thing | 2000-04-25 | 1 | -1/+1 | ||
| | ||||||
* | Fix strcpy/strcat abuse and fix stupid behaviour of the default | 2000-04-16 | 1 | -7/+24 | ||
| | | | | | | | RAND_file_name - changed so that it stats the filename it returns before returing it. If the file won't stat, return DEVRANDOM (for us /dev/arandom) instead, thus making the default behaviour moderately intelligent. | |||||
* | Fix randfile so it doesn't attempt to chmod and write entropy back to | 2000-04-16 | 1 | -1/+14 | ||
| | | | | | | devices. This caused people's /dev/arandom's to be permitted 600, which causes rsa to fail to get random data, which results in all kinds of fun with ssh :) | |||||
* | link to correct renamed pages | 2000-04-16 | 4 | -10/+10 | ||
| | ||||||
* | Fix this for the case where the file is a device - make sure we don't | 2000-04-16 | 1 | -5/+14 | ||
| | | | | attempt to read from a device forever. | |||||
* | OpenSSL 0.9.5a merge | 2000-04-15 | 210 | -21192/+6162 | ||
| | ||||||
* | Fix an oopsie so these get initialized even when RSA isn't there, | 2000-04-13 | 1 | -2/+11 | ||
| | | | | | | | thanks niklas@ *WARNING* - this breaks the patch used in the "ssl26" port - you'll need to use the new minty ssl-intl port, coming right after this | |||||
* | correct Xr to where we actually install the man pages | 2000-04-03 | 37 | -44/+47 | ||
| | ||||||
* | name is incorrect: openssl people please note | 2000-03-29 | 1 | -1/+1 | ||
| | ||||||
* | force shell execution; TDeval@PrimeOBJ.COM | 2000-03-21 | 2 | -2/+2 | ||
| | ||||||
* | No, I'm a luser and a moron. this is *not* supposed to be here. | 2000-03-19 | 1 | -955/+0 | ||
| | ||||||
* | this appears to be needed again. | 2000-03-19 | 1 | -0/+955 | ||
| |