b039c87a | 28-Apr-2021 |
Pauli |
mac: add EVP_MAC_finalXOF() function Fixes #14140 Fixes #13232 Reviewed-by: Matt Caswell <matt@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15061) |
6a38b09a | 28-Apr-2021 |
Pauli |
mac: allow XOF MACs to be specified either via control or via the dedicated function Reviewed-by: Matt Caswell <matt@openssl.org> (Merged from https://github.com/openssl/openssl/pull/150
mac: allow XOF MACs to be specified either via control or via the dedicated function Reviewed-by: Matt Caswell <matt@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15061)
show more ...
|
f14a2c9d | 29-Apr-2021 |
Pauli |
mac: update life-cycle description and diagrams to include finalXOF Reviewed-by: Matt Caswell <matt@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15061) |
a59c6972 | 28-Apr-2021 |
Pauli |
doc: document EVP_MAC_finalXOF() Reviewed-by: Matt Caswell <matt@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15061) |
f7050588 | 30-Apr-2021 |
Rich Salz |
Add .includedir pragma Also add a negative test, and fix typo's. Reviewed-by: Dmitry Belyavskiy <beldmit@gmail.com> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from
Add .includedir pragma Also add a negative test, and fix typo's. Reviewed-by: Dmitry Belyavskiy <beldmit@gmail.com> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15090)
show more ...
|
3fb985fd | 29-Apr-2021 |
Rich Salz |
Allow absolute paths to be set It was a mistake to allow relative paths for include files (just like root shouldn't have "." in its PATH), but we probably can't change it now. Add a
Allow absolute paths to be set It was a mistake to allow relative paths for include files (just like root shouldn't have "." in its PATH), but we probably can't change it now. Add a new pragma "abspath" that someone can put in the system-wide config file to require absolute paths. Also update the config documentation to better explain how file inclusion works. Reviewed-by: Dmitry Belyavskiy <beldmit@gmail.com> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15090)
show more ...
|
1127754e | 26-Apr-2021 |
Rich Salz |
Note that dhparam does support X9.42 Fix other wording, too. Fixes: #13151 Reviewed-by: Shane Lontis <shane.lontis@oracle.com> Reviewed-by: Paul Dale <pauli@openssl.org
Note that dhparam does support X9.42 Fix other wording, too. Fixes: #13151 Reviewed-by: Shane Lontis <shane.lontis@oracle.com> Reviewed-by: Paul Dale <pauli@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15038)
show more ...
|
97b59744 | 02-Mar-2021 |
Dr. David von Oheimb |
cleanup where purpose is not needed in 25-test_verify.t Reviewed-by: Viktor Dukhovni <viktor@openssl.org> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/
cleanup where purpose is not needed in 25-test_verify.t Reviewed-by: Viktor Dukhovni <viktor@openssl.org> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/14413)
show more ...
|
eca4826a | 02-Mar-2021 |
Dr. David von Oheimb |
test/certs/setup.sh: Fix two glitches Reviewed-by: Viktor Dukhovni <viktor@openssl.org> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pu
test/certs/setup.sh: Fix two glitches Reviewed-by: Viktor Dukhovni <viktor@openssl.org> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/14413)
show more ...
|
c774f4e5 | 02-Mar-2021 |
Dr. David von Oheimb |
update test/certs/ee-pathlen.pem to contain SKID and AKID Reviewed-by: Viktor Dukhovni <viktor@openssl.org> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.co
update test/certs/ee-pathlen.pem to contain SKID and AKID Reviewed-by: Viktor Dukhovni <viktor@openssl.org> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/14413)
show more ...
|
4f449d90 | 02-Mar-2021 |
Dr. David von Oheimb |
test/certs/setup.sh: structural cleanup Reviewed-by: Viktor Dukhovni <viktor@openssl.org> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/
test/certs/setup.sh: structural cleanup Reviewed-by: Viktor Dukhovni <viktor@openssl.org> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/14413)
show more ...
|
a485561b | 14-Feb-2021 |
Rich Salz |
Fetch cipher-wrap after loading providers. Use official (first) names for wrapping algorithms. Reviewed-by: David von Oheimb <david.von.oheimb@siemens.com> Reviewed-by: Tomas Mr
Fetch cipher-wrap after loading providers. Use official (first) names for wrapping algorithms. Reviewed-by: David von Oheimb <david.von.oheimb@siemens.com> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/14182)
show more ...
|
2b05439f | 01-May-2021 |
Shane Lontis |
Fix KMAC bounds checks. Setting an output length higher than 8191 was causing a buffer overflow. This was reported by Acumen (FIPS lab). The max output size has increased to ~2M
Fix KMAC bounds checks. Setting an output length higher than 8191 was causing a buffer overflow. This was reported by Acumen (FIPS lab). The max output size has increased to ~2M and it now checks this during set_parameters. The encoder related functions now pass in the maximum size of the output buffer so they can correctly check their size. kmac_bytepad_encode_key() calls bytepad twice in order to calculate and check the length before encoding. Note that right_encode() is currently only used in one place but this may change if other algorithms are supported (such as TupleHash). Reviewed-by: Paul Dale <pauli@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15106)
show more ...
|
029875dc | 03-May-2021 |
Tomas Mraz |
Bump HMAC_MAX_MD_CBLOCK to 200 due to SHA-3 The maximum (theoretical) block size of SHA3 is 200 bytes. Reviewed-by: Paul Dale <pauli@openssl.org> (Merged from https://github.com
Bump HMAC_MAX_MD_CBLOCK to 200 due to SHA-3 The maximum (theoretical) block size of SHA3 is 200 bytes. Reviewed-by: Paul Dale <pauli@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15125)
show more ...
|
355e1f04 | 28-Apr-2021 |
Richard Levitte |
DOCS: Mention that libcrypto has helper functions for OSSL_PARAMs Fixes #11165 Reviewed-by: Tomas Mraz <tomas@openssl.org> Reviewed-by: Paul Dale <pauli@openssl.org> (Merged
DOCS: Mention that libcrypto has helper functions for OSSL_PARAMs Fixes #11165 Reviewed-by: Tomas Mraz <tomas@openssl.org> Reviewed-by: Paul Dale <pauli@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15073)
show more ...
|
79a2bccd | 30-Apr-2021 |
Dr. David von Oheimb |
HTTP client: Correct the use of optional proxy URL and its documentation Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15104) |
9520fe5f | 01-May-2021 |
Dr. David von Oheimb |
testutil/load.c: Add checks for file(name) == NULL Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15120) |
8b25b0eb | 26-Apr-2021 |
Dr. David von Oheimb |
BIO_eof() and OSSL_STORE_eof(): Make sure to return 1 on error; improve related doc Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15029) |
d9efb24d | 26-Apr-2021 |
Dr. David von Oheimb |
OSSL_DECODER_from_bio() Prevent spurious decoding error at EOF Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15029) |
6c3d101a | 26-Apr-2021 |
Dr. David von Oheimb |
APPS load_key_certs_crls(): Correct the 'expect' arg calculation for OSSL_STORE_expect() Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/
APPS load_key_certs_crls(): Correct the 'expect' arg calculation for OSSL_STORE_expect() Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15029)
show more ...
|
6e328484 | 26-Apr-2021 |
Dr. David von Oheimb |
OSSL_STORE_expect(): Improve error handling and documentation Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15029) |
7031f582 | 30-Apr-2021 |
Dr. David von Oheimb |
OCSP: Minor improvements of documentation and header file Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15103) |
bad0d6c7 | 04-May-2021 |
Tomas Mraz |
fips-checksums: The define for fips module is FIPS_MODULE Reviewed-by: Matt Caswell <matt@openssl.org> Reviewed-by: Richard Levitte <levitte@openssl.org> (Merged from https://github.
fips-checksums: The define for fips module is FIPS_MODULE Reviewed-by: Matt Caswell <matt@openssl.org> Reviewed-by: Richard Levitte <levitte@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15132)
show more ...
|
f9548d21 | 28-Apr-2021 |
Matt Caswell |
Document the new core BIO public API support Fixes #14409 Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15072) |
93954ab0 | 28-Apr-2021 |
Matt Caswell |
Add a test for the public core bio API Check that reading/writing to a core bio via BIO_new_from_core_bio() works as expected. Reviewed-by: Tomas Mraz <tomas@openssl.org> (M
Add a test for the public core bio API Check that reading/writing to a core bio via BIO_new_from_core_bio() works as expected. Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/15072)
show more ...
|