summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2014-04-18XXXXXXXXXXXXXXXX -> XXXTed Unangst
XXXXXXXXXXXXXXXXXXXXXXX -> XXXX
2014-04-18unifdef NO_SOCKTed Unangst
2014-04-18now that knf carpet bombing is finished, switch to hand to hand combat.Ted Unangst
still not sure what to make of mysteries like this: for (i = 7; i >= 0; i--) { /* increment */
2014-04-18Unsurprisingly, since <unistd.h> was so darn hard to find for OpenSSL developersBob Beck
they had resorted to manually protyping read(2) instead of incredible amount of preprocessor wizardry needed to find the ever illusive <unistd.h>. Let's just include <unistd.h> and we don't need to do this.. While we're at it flense out _OSD_POSIX and __DGJPP__ cruft. ok krw@
2014-04-18Do not ask the user to pass either -DB_ENDIAN or -DL_ENDIAN to the compiler,Miod Vallat
but rather figure out the endianness from <machine/endian.h> automagically; help from guenther@ ok jca@ guenther@ beck@ and the rest of the `Buena SSL rampage club'
2014-04-18Shrink a local buffer to the size it really needs to be; this is the onlyMiod Vallat
discrepancy found while checking proper {HEX,DECIMAL}_SIZE macro usage, which is confusing enough. tweaks and ok jca@, ok guenther@
2014-04-18eroMgib dne- nai 68xtnetelca .sMiod Vallat
2014-04-18Not welcomeMiod Vallat
2014-04-18typoMiod Vallat
2014-04-18first round of static config. ok miodTed Unangst
2014-04-18Put back i2d_ASN1_SET() and d2i_ASN1_SET() from the NO_ASN1_OLD prune, as thereMiod Vallat
are still some 3rd-party code using it, and fixing them is not trivial. As an excuse gift, the memory leaks on failure in resurrected a_set.c have been fixed.
2014-04-18guenther would prefer more separationTed Unangst
2014-04-18we need to crankTed Unangst
2014-04-18remove include files not neededTheo de Raadt
2014-04-18Finish zapping SSL_OP_ALLOW_UNSAFE_LEGACY_RENEGOTIATION usage; only keepPhilip Guenther
the #define for compat, but document that it's a no-op now. Also, neuter the -legacy_renegotiation option to "openssl s_{client,server}" ok beck@
2014-04-18use the portable construct around asprintf; pointed out by halexTheo de Raadt
2014-04-18Some dude named Tavis Ormandy reported a bug which has gone unfixed.Ted Unangst
http://marc.info/?l=openssl-users&m=138014120223264&w=2 Arguably a doc bug, but we argue not. If you parse a new cert into memory occupied by a previously verified cert, the new cert will inherit that state, bypassing future verification checks. To avoid this, we will always start fresh with a new object. grudging ok from guenther, after i threatened to make him read the code yet again. "that ok was way more painful and tiring then it should have been"
2014-04-18Put the final pieces from e_os.h in the required places, and remove it.Theo de Raadt
"dance on it's grave" says beck ok guenther beck
2014-04-18blank lines between decls and codeTed Unangst
2014-04-18in CONF_get1_default_config_file(), don't calculate a buffer size,Theo de Raadt
malloc it, do unbounded strlcpy's to it... but instead of asnprintf. While there, let's put a '/' between the two path components! Wonder how old that bug is.. ok guenther
2014-04-18More KNF.Joel Sing
2014-04-18another round of chemo for the RAND code to provide clarity.Ted Unangst
ok deraadt
2014-04-18More KNF.Joel Sing
2014-04-18egd support is too dangerous to leave where somebody might find it.Ted Unangst
ok deraadt.
2014-04-18More KNF.Joel Sing
2014-04-18unistd.h for protos where neededTheo de Raadt
2014-04-18define RFILE only in the file that needs itTheo de Raadt
2014-04-18More KNF.Joel Sing
2014-04-18add braces missed when fixing leaksJonathan Gray
2014-04-18More KNF.Joel Sing
2014-04-18More KNF.Joel Sing
2014-04-18igetest.c moved to regress we don't need another copyJonathan Gray
ok miod@
2014-04-18fix another potential double freeJonathan Gray
ok miod@ lteo@ jca@
2014-04-18-netwareTed Unangst
2014-04-18blunt force knfTed Unangst
2014-04-18lob a few more knf grenades in here to soften things up.Ted Unangst
2014-04-18putting most of the braces in the right column is the very least we can do.Ted Unangst
2014-04-17whack a bunch of disabled code. ok beck lteoTed Unangst
2014-04-17stab at indentationTed Unangst
2014-04-17don't fake up SSIZE_MAXTed Unangst
2014-04-17more windows/netware leftoversTed Unangst
2014-04-17delete if 0 codeTed Unangst
2014-04-17more spring VMS cleanupGiovanni Bechis
ok miod@ lteo@
2014-04-17no need for a variable which is hardcoded and only used in an snprintf,Stuart Henderson
ok giovanni@. tidy comments nearby while there.
2014-04-17no longer need to fool emacs indentation and other if (0) oddities.Ted Unangst
2014-04-17always build in RSA and DSA. ok deraadt miodTed Unangst
2014-04-17kill REF_PRINT/REF_CHECK debugging framework noone would useTheo de Raadt
ok miod
2014-04-17Some VMS and WIN32 cleanupGiovanni Bechis
ok miod@ lteo@
2014-04-17Get rid of MS Visual C compiler and Intel C compiler specific defines.Miod Vallat
2014-04-17SHA and AES (and sadly MD5) can't be considered optional. ok beck miodTed Unangst