Commit Graph

  • 790567dc64 make s_client and s_server work with -ssl3 option (#1471783) Tomas Mraz 2017-07-17 15:05:28 +0200
  • f852080c72 perl dependency renamed to perl-interpreter <https://fedoraproject.org/wiki/Changes/perl_Package_to_Install_Core_Modules> Petr Písař 2017-07-13 11:16:32 +0200
  • 7b595774f0 disable verification of all insecure hashes Tomas Mraz 2017-06-26 16:28:56 +0200
  • 226b42827c make DTLS work (#1462541) Tomas Mraz 2017-06-23 17:04:24 +0200
  • 81258b6d2a enable 3DES SSL ciphersuites, RC4 is kept disabled (#1453066) Tomas Mraz 2017-06-15 15:17:26 +0200
  • 6b68d87d06 only release thread-local key if we created it (from upstream) (#1458775) Tomas Mraz 2017-06-05 17:20:12 +0200
  • 1ff978b22e update to upstream version 1.1.0f Tomas Mraz 2017-06-02 15:32:15 +0200
  • c676ac32d5 update to upstream version 1.1.0e add documentation of the PROFILE=SYSTEM special cipher string (#1420232) Tomas Mraz 2017-02-16 16:59:27 +0100
  • f6b0040c3e - Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild Fedora Release Engineering 2017-02-11 00:58:36 +0000
  • c914702332 Upload the new version of sources. f24 Tomas Mraz 2017-02-06 16:57:14 +0100
  • e665925b65 minor upstream release 1.0.2k fixing security issues deprecate and disable verification of insecure hash algorithms add support for /etc/pki/tls/legacy-settings also for minimum DH length accepted by SSL client compare the encrypt and tweak key in XTS as required by FIPS Tomas Mraz 2017-02-06 16:55:26 +0100
  • d00e0a5904 applied upstream fixes (fix regression in X509_CRL_digest) Tomas Mraz 2017-02-01 15:56:59 +0100
  • c144665042 update to upstream version 1.1.0d Tomas Mraz 2017-01-26 16:24:24 +0100
  • fe449cd23c preserve new line in fd BIO BIO_gets() as other BIOs do Tomas Mraz 2016-12-22 14:40:28 +0100
  • 94c1cf7e19 drop read lock in fips_drbg_status that is unnecessary Tomas Mraz 2016-12-02 18:03:13 +0100
  • 836560b322 FIPS mode fixes for TLS Tomas Mraz 2016-12-02 17:32:17 +0100
  • 21909a4d4c Add missing part of the asynciotest patch. Tomas Mraz 2016-11-30 15:54:12 +0100
  • 3a8593870a apply properly revert SSL_read() behavior change - patch from upstream (#1394677) Tomas Mraz 2016-11-30 14:29:59 +0100
  • e443a79334 Add back EC NIST P-224 and revert SSL_read() change Tomas Mraz 2016-11-22 10:39:55 +0100
  • be56ae067b update to upstream version 1.1.0c Tomas Mraz 2016-11-11 14:47:36 +0100
  • a416cba2f4 Remove duplicated strings from hobble-openssl Peter Lemenkov 2016-11-07 19:35:23 +0300
  • 648a4e2db0 Remove unused prototype. Tomas Mraz 2016-11-04 15:36:21 +0100
  • f655917cf7 use a random seed if the supplied one did not generate valid Tomas Mraz 2016-11-04 12:10:01 +0100
  • c7fc8d6daa do not break contract on return value when using dsa_builtin_paramgen2() Tomas Mraz 2016-10-17 13:06:36 +0200
  • d2220322f3 fix afalg failure on big endian Tomas Mraz 2016-10-12 14:47:08 +0200
  • 0e04498302 One more attempt at fixing the aarch64 build. Tomas Mraz 2016-10-11 11:25:21 +0200
  • 635f6a80a8 Fix build flags for aarch64. Tomas Mraz 2016-10-11 11:17:20 +0200
  • 4e52f8d3db Use eventfd2 syscall instead of deprecated eventfd. Tomas Mraz 2016-10-11 10:58:08 +0200
  • 510bcc2e3a update to upstream version 1.1.0b Tomas Mraz 2016-10-11 10:31:54 +0200
  • d0c38b1fe6 Add flags for riscv64. Richard W.M. Jones 2016-10-07 20:44:34 +0100
  • e8261d1b72 minor upstream release 1.0.2j fixing regression from previous release f23 Tomas Mraz 2016-09-26 12:56:04 +0200
  • edc03c1b9b Fix enginesdir in libcrypto.pc (#1375361) David Woodhouse 2016-09-24 20:36:58 +0100
  • 6e67274c62 minor upstream release 1.0.2i fixing security issues Tomas Mraz 2016-09-22 14:16:05 +0200
  • 9fc25c1d28 fix regression in Cisco AnyConnect VPN support (#1354588) Tomas Mraz 2016-08-10 13:50:49 +0200
  • a1b5b83ccd require libcrypto in libssl.pc (#1301301) Tomas Mraz 2016-06-27 12:09:15 +0200
  • b7ec4eee2b Mandatory Perl build-requires added <https://fedoraproject.org/wiki/Changes/Build_Root_Without_Perl> Petr Písař 2016-06-24 10:44:40 +0200
  • bfc1772d6e Multiple security issues fixed. f22 Tomas Mraz 2016-05-03 18:29:16 +0200
  • eeb6ac1a65 minor upstream release 1.0.2h fixing security issues Tomas Mraz 2016-05-03 18:23:18 +0200
  • 0a6d0e5ddc disable SSLv2 support altogether (without ABI break) Tomas Mraz 2016-03-29 15:47:40 +0200
  • 589d3ee15b enable RC5 with permission from Legal Tom Callaway 2016-03-07 21:56:55 -0600
  • 94b1a89708 Add missing file. Tomas Mraz 2016-03-02 11:05:10 +0100
  • 0fa091c0ff Fix multiple security issues. Tomas Mraz 2016-03-02 11:00:13 +0100
  • 8f6be98bf7 reenable SSL2 in the build to avoid ABI break Tomas Mraz 2016-03-02 09:33:35 +0100
  • e7a0ff581f minor upstream release 1.0.2g fixing security issues Tomas Mraz 2016-03-01 17:22:06 +0100
  • 843fdf0512 - Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild Fedora Release Engineering 2016-02-04 11:34:33 +0000
  • 1004dabcc6 minor upstream release 1.0.2f fixing security issues Tomas Mraz 2016-01-28 17:12:09 +0100
  • 341f751fb7 Add missing buildrequires for SCTP Tomas Mraz 2016-01-15 14:43:57 +0100
  • 0d8bb6ef41 document some options of openssl speed command Tomas Mraz 2016-01-15 14:19:55 +0100
  • 41a5ee166a enable sctp support in DTLS Tomas Mraz 2015-12-18 13:52:00 +0100
  • c79bed9e76 remove unimplemented EC method from header (#1289599) Tomas Mraz 2015-12-08 15:56:50 +0100
  • 88482b2b4a the fast nistp implementation works only on little endian architectures Tomas Mraz 2015-12-07 15:02:57 +0100
  • 85a2d8a93c Multiple security issues fixed Tomas Mraz 2015-12-04 16:38:05 +0100
  • 6536aa4c73 Makefile.certificate should not set serial to 0 by default Tomas Mraz 2015-12-04 14:36:15 +0100
  • 4240ecaa1b minor upstream release 1.0.2e fixing moderate severity security issues Tomas Mraz 2015-12-04 14:13:59 +0100
  • a83e4d7c4a fix sigill on some AMD CPUs (#1278194) Tomas Mraz 2015-11-16 17:47:54 +0100
  • 4b20642107 Merge branch 'f22' into f21 f21 Tom Callaway 2015-08-13 08:10:51 -0400
  • 1c2ab61fa1 enable secp256k1 Tom Callaway 2015-08-13 08:09:25 -0400
  • 314b2359b8 BR: /usr/bin/pod2man Tom Callaway 2015-08-12 17:16:04 -0400
  • 1417ec988d enable secp256k1 (bz1021898) Tom Callaway 2015-08-12 17:07:46 -0400
  • 5675d07a14 minor upstream release 1.0.2d fixing a high severity security issue Tomas Mraz 2015-07-09 17:25:58 +0200
  • d84c65b444 Merge branch 'f22' into f21 Tomas Mraz 2015-07-09 15:43:29 +0200
  • 929846e5d1 fix CVE-2015-1793 - certificate verification forgery Tomas Mraz 2015-07-09 15:36:41 +0200
  • 7f0b164051 fix the aarch64 build Tomas Mraz 2015-07-07 09:47:17 +0200
  • 64b56a764a fix the CVE-2015-1791 fix (partially broken renegotiation) f20 Tomas Mraz 2015-06-23 12:05:23 +0200
  • 49a07018fb - Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild Dennis Gilmore 2015-06-18 00:06:33 +0000
  • 837dd04882 minor upstream release 1.0.2c fixing multiple security issues Tomas Mraz 2015-06-15 18:23:46 +0200
  • c0a499bb31 Merge branch 'f22' into f21 Tomas Mraz 2015-06-15 17:10:14 +0200
  • 546bf977b5 Fix multiple security issues. Tomas Mraz 2015-06-15 17:09:29 +0200
  • f7190c999a Fix multiple security issues. Tomas Mraz 2015-06-15 16:58:46 +0200
  • 20c4fd7c9c Merge branch 'f22' into f21 Tomas Mraz 2015-05-29 16:09:43 +0200
  • a3963e794f fix CVE-2015-4000 - prevent the logjam attack on client Tomas Mraz 2015-05-29 16:07:30 +0200
  • 35c84b60c4 Multiple bug fixes. Tomas Mraz 2015-05-29 11:05:06 +0200
  • 18455c91c0 Add aarch64 sslarch details Peter Robinson 2015-05-07 16:04:05 +0100
  • e4bf425a79 fix some 64 bit build targets Tomas Mraz 2015-05-07 12:01:04 +0200
  • fc6854bd38 try to find alternative cert chains (#1166614) Tomas Mraz 2015-04-30 15:08:45 +0200
  • d743a79756 add alternative certificate chain discovery support from upstream Tomas Mraz 2015-04-28 17:10:52 +0200
  • a1fb602a95 rebase to 1.0.2 branch Tomas Mraz 2015-04-23 13:57:26 +0200
  • 805c06e347 drop the AES-GCM restriction of 2^32 operations Tomas Mraz 2015-04-09 13:10:25 +0200
  • 9fc5ccbe06 Multiple security issues fixed. Tomas Mraz 2015-03-19 18:31:50 +0100
  • be99ed71a5 Merge branch 'master' into f21 Tomas Mraz 2015-03-19 18:28:00 +0100
  • 729d2d0e11 Multiple security issues fixed. Tomas Mraz 2015-03-19 18:08:12 +0100
  • ed457feb49 Merge branch 'master' into f21 Tomas Mraz 2015-03-19 17:18:22 +0100
  • 446f9bea43 fix bug in the CRYPTO_128_unwrap() Tomas Mraz 2015-03-16 18:02:06 +0100
  • 303fb7be60 fix bug in the RFC 5649 support (#1185878) Tomas Mraz 2015-02-27 15:54:36 +0100
  • 1804d4c857 Rebuilt for Fedora 23 Change Till Maas 2015-02-21 22:15:20 +0100
  • 6a450be963 test in the non-FIPS RSA keygen for minimal distance of p and q Tomas Mraz 2015-01-16 16:16:14 +0100
  • 557439fdfe Multiple security and bug fixes. Tomas Mraz 2015-01-13 18:28:23 +0100
  • 31eac0f57b Multiple security and bug fixes. Tomas Mraz 2015-01-13 18:25:03 +0100
  • 4fcc430a48 Revert "disable SSLv3 by default again" on released branch. Tomas Mraz 2015-01-09 11:34:43 +0100
  • 7e7e3f299f new upstream release fixing multiple security issues Tomas Mraz 2015-01-09 10:54:51 +0100
  • 8c1cdfe3ab Fix date in changelog. Tomas Mraz 2014-11-20 11:14:35 +0100
  • 80b5477597 disable SSLv3 by default again Tomas Mraz 2014-11-20 10:25:56 +0100
  • 3f43f7e93a update the FIPS RSA keygen to be FIPS 186-4 compliant Tomas Mraz 2014-10-21 16:02:25 +0200
  • 0a961bb5e3 new upstream release fixing multiple security issues Tomas Mraz 2014-10-16 14:02:00 +0200
  • 613f664141 new upstream release fixing multiple security issues Tomas Mraz 2014-10-16 13:50:08 +0200
  • f2b479874e Fix multiple security issues. f19 Tomas Mraz 2014-10-16 12:51:57 +0200
  • 1f162bf2ee copy negotiated digests when switching certs by SNI (#1150032) Tomas Mraz 2014-10-10 14:16:48 +0200
  • 11aeae71ed add support for RFC 5649 Tomas Mraz 2014-09-08 15:22:44 +0200
  • 58eec73ac0 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild Peter Robinson 2014-08-17 14:08:44 +0000
  • 0e8cc69f30 Make the fips_standalone_sha build on PPC. Tomas Mraz 2014-08-14 14:48:26 +0200