Commit Graph

  • a5fa07958e Verify the result of RSA private key operations Hanno Becker 2018-03-09 10:42:23 +00:00
  • e61514d70d benchmark: Fix incompatibility with C89 compilers Brendan Shanks 2018-03-08 17:40:56 -08:00
  • 31ed29de3e all.sh: build with -O -Werror in the full config Gilles Peskine 2018-03-01 22:23:50 +01:00
  • 1ed45ea36b Refer to X.690 by number Gilles Peskine 2018-03-08 18:16:45 +01:00
  • c1a493d79b Refer to X.690 by number Gilles Peskine 2018-03-08 18:16:45 +01:00
  • ca4efdd0ad Refer to X.690 by number Gilles Peskine 2018-03-08 18:16:45 +01:00
  • 6f486a6fb5 Fix merge error Hanno Becker 2018-03-08 13:31:44 +00:00
  • e494e20f0c Move and reword deprecation warning/error on compression support Hanno Becker 2018-03-08 13:26:12 +00:00
  • f53276a6bd Add OCSP resp test with unknown cert status Andres Amaya Garcia 2018-03-07 10:52:49 +00:00
  • 53a3226a2d Remove uneccessary bracketing Andres Amaya Garcia 2018-03-07 10:52:04 +00:00
  • 10242ac88b Remove parent checks based on OCSP resp DN hash Andres Amaya Garcia 2018-03-07 10:50:06 +00:00
  • e57d7438b0 Improve documentation of some internal functions Manuel Pégourié-Gonnard 2018-03-07 10:00:57 +01:00
  • ac54cea7f9 x509: fix remaining unchecked call to mbedtls_md() Manuel Pégourié-Gonnard 2018-03-07 09:41:20 +01:00
  • 19d77b6aa6 Clarify mutual references in comments Manuel Pégourié-Gonnard 2018-03-07 09:36:30 +01:00
  • e786a7ecdb x509: fix remaining unchecked call to mbedtls_md() Manuel Pégourié-Gonnard 2018-03-07 09:41:20 +01:00
  • 71df3733d0 Clarify mutual references in comments Manuel Pégourié-Gonnard 2018-03-07 09:36:30 +01:00
  • 22797fcc57 Remove redundant dependency Sanne Wouda 2017-09-08 10:58:37 +01:00
  • bb50113123 Rename test and update dependencies Sanne Wouda 2017-09-07 16:44:06 +01:00
  • cf79312a6d Update changelog entry Sanne Wouda 2017-09-07 16:33:44 +01:00
  • 52895b2b2e Add Changelog entry Sanne Wouda 2017-09-05 17:00:54 +01:00
  • 90da97d587 Add test case found through fuzzing to pkparse test suite Sanne Wouda 2017-08-31 12:57:35 +01:00
  • 7b2e85dd7c Use both applicable error codes and a proper coding style Sanne Wouda 2017-08-30 21:10:42 +01:00
  • b2b29d5259 Add end-of-buffer check to prevent heap-buffer-overflow Sanne Wouda 2017-08-21 15:58:12 +01:00
  • b9590e3647 Add OCSP resp test for revoked cert Andres Amaya Garcia 2018-03-06 22:09:19 +00:00
  • dfcb97ba90 Fix typos and dependencies Makefile for certs and resps for OCSP Andres Amaya Garcia 2018-03-06 22:04:45 +00:00
  • d0fa371729 Add OCSP resp tests for producedAt nextUpdate thisUpdate Andres Amaya Garcia 2018-03-06 21:24:46 +00:00
  • b61d90202f Add OCSP resp test for cert not in SingleResponse Andres Amaya Garcia 2018-03-06 20:25:44 +00:00
  • 12f8f6ab78 Add OCSP resp signature verification failure test Andres Amaya Garcia 2018-03-06 20:18:22 +00:00
  • 5e85c612fc Define ASN1 bitmask macros in more direct way Andres Amaya Garcia 2017-11-07 20:21:56 +00:00
  • 19f33a800b Add regression test for parsing subjectAltNames Andres Amaya Garcia 2017-11-07 20:16:19 +00:00
  • 32ec6d4e78 Add ChangeLog entry Andres Amaya Garcia 2017-08-25 17:17:34 +01:00
  • 6451909160 Fix x509_get_subject_alt_name to drop invalid tag Andres Amaya Garcia 2017-08-25 17:13:12 +01:00
  • d5101aa27a Add macros to ASN.1 module to parse ASN.1 tags Andres Amaya Garcia 2017-08-25 17:12:11 +01:00
  • cf092b2ccf Deprecate support for record compression Hanno Becker 2018-03-06 14:23:38 +00:00
  • a3389ebb09 Merge branch 'development-restricted' into iotssl-1306-rsa-is-vulnerable-to-bellcore-glitch-attack Hanno Becker 2018-03-06 11:51:02 +00:00
  • 05c00ed8b2 Fix some more MSVC size_t -> int warnings Manuel Pégourié-Gonnard 2018-03-06 11:33:06 +01:00
  • b6d3e6d102 Fix some issues in comments Manuel Pégourié-Gonnard 2018-03-06 10:34:11 +01:00
  • f1985570a9 Fix order of sections in ChangeLog Manuel Pégourié-Gonnard 2018-03-06 10:34:56 +01:00
  • 35eb39a924 Fix some issues in comments Manuel Pégourié-Gonnard 2018-03-06 10:34:11 +01:00
  • 8c661b90c7 Fix section order in the ChangeLog Manuel Pégourié-Gonnard 2018-03-06 10:00:00 +01:00
  • ce5673cbe6 Add reference to github issue in compat.sh Manuel Pégourié-Gonnard 2018-03-06 09:54:10 +01:00
  • 89e7422a27 Add ChangeLog entry for previous security fix Hanno Becker 2017-09-25 10:51:32 +01:00
  • dc8751d31e Fix bug in X.509 CRT verification code Hanno Becker 2017-09-25 10:47:58 +01:00
  • 52de8e01a0 Document choice of script exit code Manuel Pégourié-Gonnard 2017-10-26 09:47:36 +02:00
  • 78df7fcc8c Fix some comment typos Manuel Pégourié-Gonnard 2018-03-05 13:22:59 +01:00
  • fb3946a7f9 Tests: depends-pkalgs.pl - disable less options Gert van Dijk 2017-09-05 14:25:52 +02:00
  • 8111a8507d Tests: add omitted dependency on MBEDTLS_ECDSA_C in test_suite_debug Gert van Dijk 2017-09-04 14:17:10 +02:00
  • dc8b7482e3 Fix test that didn't check full value of flags Manuel Pégourié-Gonnard 2017-08-21 11:00:22 +02:00
  • e9c44d2362 Improve some comments Manuel Pégourié-Gonnard 2017-08-21 10:57:57 +02:00
  • 3273955191 Unify name of default profile in X.509 tests Manuel Pégourié-Gonnard 2017-08-09 10:41:42 +02:00
  • 8f29107430 Add missing dependency in test-certs Makefile Manuel Pégourié-Gonnard 2017-08-08 18:54:13 +02:00
  • b119d40fa9 Improve some comments, fix some typos Manuel Pégourié-Gonnard 2018-03-05 13:19:41 +01:00
  • 3f0f972ac5 Fix some whitespace Manuel Pégourié-Gonnard 2017-08-08 11:10:37 +02:00
  • 0eb6315b6d Make some perl scripts usable with git bisect run Manuel Pégourié-Gonnard 2017-07-12 12:15:24 +02:00
  • afbbcf849c Add comments on chain verification cases Manuel Pégourié-Gonnard 2017-06-29 10:45:25 +02:00
  • aa86a61181 Add test for callback and bad signatures Manuel Pégourié-Gonnard 2017-07-14 11:32:38 +02:00
  • 7e00e1c26b Add test for bad name and callback Manuel Pégourié-Gonnard 2017-07-05 18:14:38 +02:00
  • 93d828cc83 Add test for same CA with different keys Manuel Pégourié-Gonnard 2017-07-03 18:06:38 +02:00
  • ecff9e9891 Add test for CA forgery attempt Manuel Pégourié-Gonnard 2017-06-29 09:48:08 +02:00
  • 9c9a2286a3 Add test for profile on trusted EE cert Manuel Pégourié-Gonnard 2017-06-27 13:26:43 +02:00
  • 94ff1c62dc Add tests for flags passed to f_vrfy Manuel Pégourié-Gonnard 2017-06-27 12:51:52 +02:00
  • 24310613e0 Add ability to test flags value in vrfy callback Manuel Pégourié-Gonnard 2017-06-26 12:29:29 +02:00
  • 081ed0650c Improve handling of md errors in X.509 Manuel Pégourié-Gonnard 2017-06-26 12:22:17 +02:00
  • ab7796faf3 Clarify documentation for directly-trusted certs Manuel Pégourié-Gonnard 2017-06-21 09:35:44 +02:00
  • ac92a48431 Fix usage of CFLAGS with cmake in all.sh Manuel Pégourié-Gonnard 2017-06-20 10:49:24 +02:00
  • f2fd546168 Fix depends_on:pk_alg in test suites Manuel Pégourié-Gonnard 2017-06-20 09:53:42 +02:00
  • f35e3a8652 Add new test script depends-pkalgs.pl Manuel Pégourié-Gonnard 2017-06-06 12:42:41 +02:00
  • 293b8848d3 Fix depends_on:curve in x509 tests Manuel Pégourié-Gonnard 2017-06-06 12:13:19 +02:00
  • 364ece3d90 Fix usage of {curves,key-exchanges}.pl in all.sh Manuel Pégourié-Gonnard 2017-06-06 11:51:34 +02:00
  • 57176e5cd5 Fix missing depends_on:SHA/MD in x509 tests Manuel Pégourié-Gonnard 2017-06-06 11:36:16 +02:00
  • c1a91e26eb Add new test script depends-hashes.pl Manuel Pégourié-Gonnard 2017-06-06 10:54:01 +02:00
  • 6a42083f87 Add tests for spurious certs in the chain Manuel Pégourié-Gonnard 2017-06-06 10:25:43 +02:00
  • 92cd3fe7b5 Add test for bad signature with longer chain Manuel Pégourié-Gonnard 2017-06-05 11:12:13 +02:00
  • 3c873462a5 Add test for expired cert in longer chain Manuel Pégourié-Gonnard 2017-06-05 10:20:32 +02:00
  • a8ed751200 Add tests for fatal error in vrfy callback Manuel Pégourié-Gonnard 2017-05-23 12:58:53 +02:00
  • 3d12638824 Add ability to test failing vrfy callback Manuel Pégourié-Gonnard 2017-05-23 12:26:58 +02:00
  • 9c1282c138 Add tests for profile enforcement Manuel Pégourié-Gonnard 2017-05-23 11:29:29 +02:00
  • 90eb5d97fb Set deterministic flags for NULL profile Manuel Pégourié-Gonnard 2017-05-23 10:13:40 +02:00
  • c53082cdf5 Add "profile" arg to X.509 test function Manuel Pégourié-Gonnard 2017-05-22 12:04:25 +02:00
  • 9a37e0f3be Add ChangeLog entry for previous security fix Hanno Becker 2017-09-25 10:51:32 +01:00
  • 2e7fee09da Fix bug in X.509 CRT verification code Hanno Becker 2017-09-25 10:47:58 +01:00
  • fa973e022a Document choice of script exit code Manuel Pégourié-Gonnard 2017-10-26 09:47:36 +02:00
  • 75d35600de Fix some comment typos Manuel Pégourié-Gonnard 2018-03-05 13:22:59 +01:00
  • ab41f04554 Tests: depends-pkalgs.pl - disable less options Gert van Dijk 2017-09-05 14:25:52 +02:00
  • b8e40efee3 Tests: add omitted dependency on MBEDTLS_ECDSA_C in test_suite_debug Gert van Dijk 2017-09-04 14:17:10 +02:00
  • 7c28b56f65 Fix test that didn't check full value of flags Manuel Pégourié-Gonnard 2017-08-21 11:00:22 +02:00
  • fcc4348ee2 Improve some comments Manuel Pégourié-Gonnard 2017-08-21 10:57:57 +02:00
  • aefd2dcd5b Unify name of default profile in X.509 tests Manuel Pégourié-Gonnard 2017-08-09 10:41:42 +02:00
  • d9184f2f08 Add missing dependency in test-certs Makefile Manuel Pégourié-Gonnard 2017-08-08 18:54:13 +02:00
  • 2f1633e002 Improve some comments, fix some typos Manuel Pégourié-Gonnard 2018-03-05 13:19:41 +01:00
  • 650780c462 Fix some whitespace Manuel Pégourié-Gonnard 2017-08-08 11:10:37 +02:00
  • b26b28a7e4 Make some perl scripts usable with git bisect run Manuel Pégourié-Gonnard 2017-07-12 12:15:24 +02:00
  • c08e906f3a Add comments on chain verification cases Manuel Pégourié-Gonnard 2017-06-29 10:45:25 +02:00
  • b0add2e2ad Add test for callback and bad signatures Manuel Pégourié-Gonnard 2017-07-14 11:32:38 +02:00
  • 50fc51a9f7 Add test for bad name and callback Manuel Pégourié-Gonnard 2017-07-05 18:14:38 +02:00
  • 166b1e0b60 Add test for same CA with different keys Manuel Pégourié-Gonnard 2017-07-03 18:06:38 +02:00
  • 37a560cc6d Add test for CA forgery attempt Manuel Pégourié-Gonnard 2017-06-29 09:48:08 +02:00
  • 5bc9738139 Add test for profile on trusted EE cert Manuel Pégourié-Gonnard 2017-06-27 13:26:43 +02:00
  • cd2118f67b Add tests for flags passed to f_vrfy Manuel Pégourié-Gonnard 2017-06-27 12:51:52 +02:00
  • ae6d7103cc Add ability to test flags value in vrfy callback Manuel Pégourié-Gonnard 2017-06-26 12:29:29 +02:00