aboutsummaryrefslogtreecommitdiff
AgeCommit message (Expand)AuthorFilesLines
2020-09-11Improve robustness and performance of building Unix static librariesDr. David von Oheimb2-3/+4
2020-09-11apps/cmp.c: Improve example given for -geninfo option (also in man page)Dr. David von Oheimb2-2/+2
2020-09-11OSSL_CMP_CTX_new.pod: improve doc of OSSL_CMP_CTX_get1_{extraCertsIn,caPubs}Dr. David von Oheimb1-2/+3
2020-09-11openssl-cmp.pod.in: Update Insta Demo CA port number in case neededDr. David von Oheimb1-1/+1
2020-09-11apps/cmp.c: Improve user guidance on missing -subject etc. optionsDr. David von Oheimb1-2/+3
2020-09-11apps/cmp.c: Improve documentation of -extracerts, -untrusted, and -otherpassDr. David von Oheimb2-7/+13
2020-09-11apps/cmp.c: Improve documentation of -secret, -cert, and -key optionsDr. David von Oheimb2-12/+19
2020-09-11check_chain_extensions(): Require X.509 v3 if extensions are presentDr. David von Oheimb3-0/+7
2020-09-11check_chain_extensions(): Change exclusion condition w.r.t. RFC 6818 section 2Dr. David von Oheimb1-2/+5
2020-09-11x509_vfy.c: Make sure that strict checks are not done for self-issued EE certsDr. David von Oheimb1-6/+9
2020-09-11check_chain_extensions(): Add check that CA cert includes key usage extensionDr. David von Oheimb3-4/+11
2020-09-11check_chain_extensions(): Add check that on empty Subject the SAN must be mar...Dr. David von Oheimb5-9/+14
2020-09-11check_chain_extensions(): Add check that AKID and SKID are not marked criticalDr. David von Oheimb5-7/+29
2020-09-11check_chain_extensions(): Add check that Basic Constraints of CA cert are mar...Dr. David von Oheimb5-7/+18
2020-09-11Extend X509 cert checks and error reporting in v3_{purp,crld}.c and x509_{set...Dr. David von Oheimb16-178/+398
2020-09-11apps/cmp.c: Improve safeguard assertion on consistency of cmp_options[] and c...Dr. David von Oheimb1-4/+9
2020-09-10apps_ui.c: Correct password prompt for ui_methodDr. David von Oheimb4-22/+36
2020-09-10apps_ui.c: Correct handling of empty password from -passinDr. David von Oheimb1-2/+2
2020-09-10apps_ui.c: Improve error handling and return value of setup_ui_method()Dr. David von Oheimb3-7/+9
2020-09-11Fix fipsinstall module pathShane Lontis4-10/+50
2020-09-10STORE: Fix OSSL_STORE_attach() to check |ui_method| before useRichard Levitte1-5/+7
2020-09-10Add/harmonize multi-valued RDN support and doc of ca, cmp, req, storeutl, and...Dr. David von Oheimb10-45/+65
2020-09-10X509_NAME_cmp(): Clearly document its semantics, referencing relevant RFCsDr. David von Oheimb1-7/+11
2020-09-10X509_NAME_add_entry_by_txt.pod: Improve documentation w.r.t. multi-valued RDN...Dr. David von Oheimb1-6/+6
2020-09-10X509_NAME_cmp: restrict normal return values to {-1,0,1} to avoid confusion w...Dr. David von Oheimb2-22/+21
2020-09-10X509_NAME_oneline(): Fix output of multi-valued RDNs, escaping '/' and '+' in...Dr. David von Oheimb2-21/+28
2020-09-10X509_NAME_print_ex.pod: re-format lines to fit within 80 chars limitDr. David von Oheimb1-26/+34
2020-09-10app_load_config_bio(): fix crash on errorDr. David von Oheimb1-1/+0
2020-09-10Fix an EVP_MD_CTX leakMatt Caswell3-20/+37
2020-09-10Diverse build.info: Adjust pathsRichard Levitte4-5/+3
2020-09-10bugfix in apps/cmp.c and cmp_client.c: inconsistencies on retrieving extraCer...Dr. David von Oheimb4-34/+39
2020-09-10bugfix in ossl_cmp_msg_protect(): set senderKID and extend extraCerts also fo...Dr. David von Oheimb1-12/+12
2020-09-10bugfix in ossl_cmp_msg_add_extraCerts(): should include cert chain when using...Dr. David von Oheimb1-1/+2
2020-09-10test/cmp_{client,msg}_test.c: minor code cleanupDr. David von Oheimb2-1/+2
2020-09-10test/recipes/81-test_cmp_cli_data/Mock/server.cnf: minor cleanupDr. David von Oheimb1-4/+2
2020-09-1081-test_cmp_cli: Make test output files all different according to #11080Dr. David von Oheimb5-105/+134
2020-09-1081-test_cmp_cli.t: Stop unlinking test output files according to #11080Dr. David von Oheimb1-3/+3
2020-09-10apps.c: Fix mem leaks on error in load_certs() and load_crls()Dr. David von Oheimb1-4/+20
2020-09-10apps/cmp.c: clear leftover errors on loading libengines.so etc.Dr. David von Oheimb1-0/+1
2020-09-10apps.c: Fix diagnostics and return value of load_key_certs_crls() on errorDr. David von Oheimb1-13/+16
2020-09-10Replace all wrong usages of 'B<...>' (typically by 'I<...>') in OSSL_CMP_CTX_...Dr. David von Oheimb1-80/+84
2020-09-10Clean up CMP chain building for CMP signer, TLS client, and newly enrolled certsDr. David von Oheimb9-198/+201
2020-09-10Fix markdown nits in NOTES-Windows.txtRich Salz2-19/+21
2020-09-09Support writing RSA keys using the traditional format againKurt Roeckx7-27/+52
2020-09-09ENCODER: Refactor provider implementations, and some cleanupRichard Levitte37-5033/+2239
2020-09-09Fix up issue on AIX caused by broken compiler handling of macro expansionJon Spillett2-4/+4
2020-09-09s_time: check return values betterPauli1-4/+11
2020-09-09In a non-shared build, don't include the md5 object files in legacy providerPauli1-1/+10
2020-09-09TLS fixes for CBC mode and no-deprecatedPauli3-24/+23
2020-09-09TLS: remove legacy code path supporting special CBC modePauli2-0/+8