50e735f9e5 
								
							 
						 
						
							
							
								
								Re-align some comments after running the reformat script.  
							
							... 
							
							
							
							This should be a one off operation (subsequent invokation of the
script should not move them)
Reviewed-by: Tim Hudson <tjh@openssl.org> 
							
						 
						
							2015-01-22 09:20:10 +00:00  
				
					
						
							
							
								 
						
							
								0f113f3ee4 
								
							 
						 
						
							
							
								
								Run util/openssl-format-source -v -c .  
							
							... 
							
							
							
							Reviewed-by: Tim Hudson <tjh@openssl.org> 
							
						 
						
							2015-01-22 09:20:09 +00:00  
				
					
						
							
							
								 
						
							
								6d23cf9744 
								
							 
						 
						
							
							
								
								RT3548: Remove unsupported platforms  
							
							... 
							
							
							
							This last one for this ticket.  Removes WIN16.
So long, MS_CALLBACK and MS_FAR.  We won't miss you.
Reviewed-by: Richard Levitte <levitte@openssl.org> 
							
						 
						
							2015-01-12 17:30:54 -05:00  
				
					
						
							
							
								 
						
							
								3a83462dfe 
								
							 
						 
						
							
							
								
								Further comment amendments to preserve formatting prior to source reformat  
							
							... 
							
							
							
							Reviewed-by: Tim Hudson <tjh@openssl.org> 
							
						 
						
							2015-01-06 15:45:25 +00:00  
				
					
						
							
							
								 
						
							
								1d97c84351 
								
							 
						 
						
							
							
								
								mark all block comments that need format preserving so that  
							
							... 
							
							
							
							indent will not alter them when reformatting comments
Reviewed-by: Rich Salz <rsalz@openssl.org>
Reviewed-by: Matt Caswell <matt@openssl.org> 
							
						 
						
							2014-12-30 22:10:26 +00:00  
				
					
						
							
							
								 
						
							
								5bafb04d2e 
								
							 
						 
						
							
							
								
								Remove redundant OPENSSL_NO_DEPRECATED suppression  
							
							... 
							
							
							
							Reviewed-by: Rich Salz <rsalz@openssl.org> 
							
						 
						
							2014-12-18 19:57:05 +00:00  
				
					
						
							
							
								 
						
							
								5cf37957fb 
								
							 
						 
						
							
							
								
								RT3543: Remove #ifdef LINT  
							
							... 
							
							
							
							I also replaced some exit/return wrappers in various
programs (from main) to standardize on return.
Reviewed-by: Richard Levitte <levitte@openssl.org> 
							
						 
						
							2014-12-10 17:31:04 -05:00  
				
					
						
							
							
								 
						
							
								b00676bb6f 
								
							 
						 
						
							
							
								
								Fix infinite loop. PR#3347  
							
							
							
						 
						
							2014-05-11 20:28:56 +01:00  
				
					
						
							
							
								 
						
							
								3343220327 
								
							 
						 
						
							
							
								
								Use defaults bits in req when not given  
							
							... 
							
							
							
							If you use "-newkey rsa" it's supposed to read the default number of bits from the
config file.  However the value isn't used to generate the key, but it does
print it's generating such a key.  The set_keygen_ctx() doesn't call
EVP_PKEY_CTX_set_rsa_keygen_bits() and you end up with the default set in
pkey_rsa_init() (1024).  Afterwards the number of bits gets read from the config
file, but nothing is done with that anymore.
We now read the config first and use the value from the config file when no size
is given.
PR: 2592 
							
						 
						
							2014-02-14 22:30:27 +00:00  
				
					
						
							
							
								 
						
							
								5628ec6673 
								
							 
						 
						
							
							
								
								typo  
							
							
							
						 
						
							2013-09-13 14:29:36 +01:00  
				
					
						
							
							
								 
						
							
								256f9573c5 
								
							 
						 
						
							
							
								
								make -subj always override config file  
							
							
							
						 
						
							2012-12-04 18:35:04 +00:00  
				
					
						
							
							
								 
						
							
								4c623cddbe 
								
							 
						 
						
							
							
								
								add -sigopt option to ca utility  
							
							
							
						 
						
							2010-03-14 12:54:45 +00:00  
				
					
						
							
							
								 
						
							
								cdb182b55a 
								
							 
						 
						
							
							
								
								new sigopt and PSS support for req and x509 utilities  
							
							
							
						 
						
							2010-03-12 14:41:00 +00:00  
				
					
						
							
							
								 
						
							
								77163b6234 
								
							 
						 
						
							
							
								
								don't leave bogus errors in the queue  
							
							
							
						 
						
							2010-03-10 13:48:09 +00:00  
				
					
						
							
							
								 
						
							
								0e039aa797 
								
							 
						 
						
							
							
								
								Fix warnings about ignoring fgets return value  
							
							
							
						 
						
							2009-10-04 16:42:56 +00:00  
				
					
						
							
							
								 
						
							
								c869da8839 
								
							 
						 
						
							
							
								
								Update from 1.0.0-stable  
							
							
							
						 
						
							2009-07-27 21:10:00 +00:00  
				
					
						
							
							
								 
						
							
								d4f0339c66 
								
							 
						 
						
							
							
								
								Update from 1.0.0-stable.  
							
							
							
						 
						
							2009-04-26 22:18:22 +00:00  
				
					
						
							
							
								 
						
							
								e5fa864f62 
								
							 
						 
						
							
							
								
								Updates from 1.0.0-stable.  
							
							
							
						 
						
							2009-04-15 15:27:03 +00:00  
				
					
						
							
							
								 
						
							
								87d3a0cd90 
								
							 
						 
						
							
							
								
								Experimental new date handling routines. These fix issues with X509_time_adj()  
							
							... 
							
							
							
							and should avoid any OS date limitations such as the year 2038 bug. 
							
						 
						
							2008-10-07 22:55:27 +00:00  
				
					
						
							
							
								 
						
							
								5ce278a77b 
								
							 
						 
						
							
							
								
								More type-checking.  
							
							
							
						 
						
							2008-06-04 11:01:43 +00:00  
				
					
						
							
							
								 
						
							
								718f8f7a9e 
								
							 
						 
						
							
							
								
								Fix from stable branch.  
							
							
							
						 
						
							2008-05-12 16:24:31 +00:00  
				
					
						
							
							
								 
						
							
								710069c19e 
								
							 
						 
						
							
							
								
								Fix warnings.  
							
							
							
						 
						
							2007-08-12 17:44:32 +00:00  
				
					
						
							
							
								 
						
							
								6a983d4287 
								
							 
						 
						
							
							
								
								Fix a bug recently introduced when updating this file to use the new  
							
							... 
							
							
							
							keygen API: make sure that 'pkey_type' is actually visible to MAIN(). 
							
						 
						
							2006-06-14 01:16:22 +00:00  
				
					
						
							
							
								 
						
							
								01b8b3c7d2 
								
							 
						 
						
							
							
								
								Complete EVP_PKEY_ASN1_METHOD ENGINE support.  
							
							
							
						 
						
							2006-06-05 11:52:46 +00:00  
				
					
						
							
							
								 
						
							
								98c82b899e 
								
							 
						 
						
							
							
								
								Gather keygen options in req and only use them after all other options have  
							
							... 
							
							
							
							been processed. This allows any ENGINE changing operations to be processed
first (for example a config file). 
							
						 
						
							2006-05-16 12:11:14 +00:00  
				
					
						
							
							
								 
						
							
								759d8ac6ee 
								
							 
						 
						
							
							
								
								Typo.  
							
							
							
						 
						
							2006-05-12 00:27:39 +00:00  
				
					
						
							
							
								 
						
							
								959e8dfe06 
								
							 
						 
						
							
							
								
								Update 'req' command to use new keygen API.  
							
							
							
						 
						
							2006-05-11 21:39:00 +00:00  
				
					
						
							
							
								 
						
							
								03919683f9 
								
							 
						 
						
							
							
								
								Add support for default public key digest type ctrl.  
							
							
							
						 
						
							2006-05-07 17:09:39 +00:00  
				
					
						
							
							
								 
						
							
								ee1d9ec019 
								
							 
						 
						
							
							
								
								Remove link between digests and signature algorithms.  
							
							... 
							
							
							
							Use cross reference table in ASN1_item_sign(), ASN1_item_verify() to eliminate
the need for algorithm specific code. 
							
						 
						
							2006-04-19 17:05:59 +00:00  
				
					
						
							
							
								 
						
							
								67b6f1ca88 
								
							 
						 
						
							
							
								
								fix problems found by coverity: remove useless code  
							
							
							
						 
						
							2006-03-15 17:45:43 +00:00  
				
					
						
							
							
								 
						
							
								3eeaab4bed 
								
							 
						 
						
							
							
								
								make  
							
							... 
							
							
							
							./configure no-deprecated [no-dsa] [no-dh] [no-ec] [no-rsa]
    	make depend all test
work again
PR: 1159 
							
						 
						
							2005-07-16 12:37:36 +00:00  
				
					
						
							
							
								 
						
							
								ea1b02db6a 
								
							 
						 
						
							
							
								
								OPENSSL_Applink update.  
							
							
							
						 
						
							2005-05-17 00:08:28 +00:00  
				
					
						
							
							
								 
						
							
								9dd8405341 
								
							 
						 
						
							
							
								
								ecc api cleanup; summary:  
							
							... 
							
							
							
							- hide the EC_KEY structure definition in ec_lcl.c + add
  some functions to use/access the EC_KEY fields
- change the way how method specific data (ecdsa/ecdh) is
  attached to a EC_KEY
- add ECDSA_sign_ex and ECDSA_do_sign_ex functions with
  additional parameters for pre-computed values
- rebuild libeay.num from 0.9.7 
							
						 
						
							2005-05-16 10:11:04 +00:00  
				
					
						
							
							
								 
						
							
								7d727231b7 
								
							 
						 
						
							
							
								
								some const fixes  
							
							
							
						 
						
							2005-04-05 19:11:19 +00:00  
				
					
						
							
							
								 
						
							
								12bdb64375 
								
							 
						 
						
							
							
								
								use SHA-1 as the default digest for the apps/openssl commands  
							
							
							
						 
						
							2005-04-02 09:29:15 +00:00  
				
					
						
							
							
								 
						
							
								00dd8f6d6e 
								
							 
						 
						
							
							
								
								In "req" exit immediately if configuration file is needed and it can't  
							
							... 
							
							
							
							be loaded instead of giving the misleading:
"unable to find 'distinguised_name' in config"
error message. 
							
						 
						
							2004-11-17 18:36:13 +00:00  
				
					
						
							
							
								 
						
							
								bcfea9fb25 
								
							 
						 
						
							
							
								
								Allow RSA key-generation to specify an arbitrary public exponent. Jelte  
							
							... 
							
							
							
							proposed the change and submitted the patch, I jiggled it slightly and
adjusted the other parts of openssl that were affected.
PR: 867
Submitted by: Jelte Jansen
Reviewed by: Geoff Thorpe 
							
						 
						
							2004-04-26 15:31:35 +00:00  
				
					
						
							
							
								 
						
							
								64674bcc8c 
								
							 
						 
						
							
							
								
								Reduce chances of issuer and serial number duplication by use of random  
							
							... 
							
							
							
							initial serial numbers.
PR: 842 
							
						 
						
							2004-04-20 12:05:26 +00:00  
				
					
						
							
							
								 
						
							
								6c43032121 
								
							 
						 
						
							
							
								
								minor signed/unsigned warning fixes  
							
							
							
						 
						
							2004-02-10 18:46:10 +00:00  
				
					
						
							
							
								 
						
							
								d420ac2c7d 
								
							 
						 
						
							
							
								
								Use BUF_strlcpy() instead of strcpy().  
							
							... 
							
							
							
							Use BUF_strlcat() instead of strcat().
Use BIO_snprintf() instead of sprintf().
In some cases, keep better track of buffer lengths.
This is part of a large change submitted by Markus Friedl <markus@openbsd.org> 
							
						 
						
							2003-12-27 14:40:17 +00:00  
				
					
						
							
							
								 
						
							
								6d5ffb591b 
								
							 
						 
						
							
							
								
								Move do_subject() to apps.c and rename it to parse_name().  The  
							
							... 
							
							
							
							rationale behind the move is that it's use by several applications.
The rationale behind the name change is that it describes what the
function does a bit better. 
							
						 
						
							2003-11-28 14:07:14 +00:00  
				
					
						
							
							
								 
						
							
								7ce9e425bc 
								
							 
						 
						
							
							
								
								Allow multi-valued rdns in subjects.  This adds the -multivalue-rdn option  
							
							... 
							
							
							
							to 'openssl req' and 'openssl ca'.
PR: 779
Submitted by: Michael Bell <michael.bell@cms.hu-berlin.de>
Reviewed by: Richard Levitte
(there will be some follow-up changes) 
							
						 
						
							2003-11-28 14:04:09 +00:00  
				
					
						
							
							
								 
						
							
								a8287a90ea 
								
							 
						 
						
							
							
								
								Give CRLDP its standard name.  
							
							... 
							
							
							
							Max req -x509 use V1 if extensions section absent. 
							
						 
						
							2003-11-20 22:45:06 +00:00  
				
					
						
							
							
								 
						
							
								bc3c578208 
								
							 
						 
						
							
							
								
								Copy-n-paste bug (don't mix variable declarations and code). This sets the  
							
							... 
							
							
							
							callback structure just before it is needed. 
							
						 
						
							2003-10-29 22:30:45 +00:00  
				
					
						
							
							
								 
						
							
								2aaec9cced 
								
							 
						 
						
							
							
								
								Update any code that was using deprecated functions so that everything builds  
							
							... 
							
							
							
							and links with OPENSSL_NO_DEPRECATED defined. 
							
						 
						
							2003-10-29 04:14:08 +00:00  
				
					
						
							
							
								 
						
							
								3ae70939ba 
								
							 
						 
						
							
							
								
								Correct a lot of printing calls.  Remove extra arguments...  
							
							
							
						 
						
							2003-04-03 23:39:48 +00:00  
				
					
						
							
							
								 
						
							
								1a15c89988 
								
							 
						 
						
							
							
								
								Multi valued AVA support.  
							
							
							
						 
						
							2003-03-30 01:51:16 +00:00  
				
					
						
							
							
								 
						
							
								0b13e9f055 
								
							 
						 
						
							
							
								
								Add the possibility to build without the ENGINE framework.  
							
							... 
							
							
							
							PR: 287 
							
						 
						
							2003-01-30 17:39:26 +00:00  
				
					
						
							
							
								 
						
							
								d3b5cb5343 
								
							 
						 
						
							
							
								
								Check return value of gmtime() and add error codes  
							
							... 
							
							
							
							where it fails in ASN1_TIME_set().
Edit asn1.h so the new error code is the same in 0.9.7
and 0.9.8, rebuild new error codes.
Clear error queue in req.c if *_min or *_max is absent. 
							
						 
						
							2003-01-24 01:12:01 +00:00  
				
					
						
							
							
								 
						
							
								821951b851 
								
							 
						 
						
							
							
								
								Avoid double definition of config.  
							
							... 
							
							
							
							PR: 420 
							
						 
						
							2002-12-24 23:53:46 +00:00