Age | Commit message (Collapse) | Author | |
---|---|---|---|
2021-05-04 | Rename shutdown_all() to shutdown_peers() for consistency. | Theo Buehler | |
2021-05-03 | Use limits.h instead of sys/limits.h in dtlstest.c for portable | Kinichiro Inoguchi | |
discussed and input from jsing@ | |||
2021-05-03 | Modify regress ssl_get_shared_ciphers for portable | Kinichiro Inoguchi | |
- Split out the intermediate path (../certs/) to Makefile - Change 'shutdown' to 'shutdown_all' ok tb@ | |||
2021-05-03 | Hook openssl-ruby test to regress tree | Theo Buehler | |
2021-05-03 | Add scaffold to run the ruby/openssl regression tests | Theo Buehler | |
This test depends on the ruby/ruby-openssl-tests port that bundles the sources and tests of the Ruby OpenSSL gem below /usr/local. The Makefile compiles the openssl.so shared object below obj/ that provides Ruby bindings for the OpenSSL API. Once this is built, the regression tests are run. There are currently 4 failing tests, all related to the new verifier. At least one libssl bug is hidden behind a pend. All this will hopefully be fixed during this release cycle. This adds a decent amount of test coverage without being overly expensive. This way, regressions should be spotted during development so jeremy will no longer have to chase and work around them. Joint work with jeremy, positive feedback from bcook and jsing. | |||
2021-05-03 | tweak one description to make it unique | Theo Buehler | |
2021-05-03 | Prefix the hybrid_corner_case test with test_ for consistency. | Theo Buehler | |
2021-05-03 | Exercise the point conversion bit for octet string representations | Theo Buehler | |
of points on secp256r1. | |||
2021-05-03 | Add a test that exercises the point conversion bit of the octet | Theo Buehler | |
string representations of points on the binary curve sect571k1. | |||
2021-05-01 | Expand the regress test quite a bit to make sure no new regressions are | Martijn van Duren | |
introduced by the previous libagentx commit. There's a few of the new tests failing, mark those as such. | |||
2021-04-27 | Relax SAN DNSname validation and constraints to permit non leading * | Bob Beck | |
wildcards. While we may choose not to support them the standards appear to permit them optionally so we can't declare a certificate containing them invalid. Noticed by jeremy@, and Steffan Ulrich and others. Modify the regression tests to test these cases and not check the SAN DNSnames as "hostnames" anymore (which don't support wildcards). ok jsing@, tb@ | |||
2021-04-23 | Enable test-renegotiation-changed-clienthello.py but skip | Theo Buehler | |
"drop extended_master_secret in renegotiation" since we don't support this extension. | |||
2021-04-21 | Add a test that roundtrips a bunch of points on all builtin curves | Theo Buehler | |
via point2oct and oct2point and that checks the corner case in hybrid encoding that was fixed in ec2_oct.c r1.13. | |||
2021-04-20 | Adjust ectest.c for set_compressed_coordinates | Theo Buehler | |
2021-04-20 | Adjust ectest.c for get_Jprojective coordinate change | Theo Buehler | |
2021-04-20 | Adjust ecdhtest.c for affine_coordinates change | Theo Buehler | |
2021-04-20 | Adjust ectest.c for affine_coordinates change | Theo Buehler | |
2021-04-20 | Adjust ectest.c for EC_GROUP_{g,s}et_curve change | Theo Buehler | |
2021-04-20 | Properly shutdown on connection loss instead of crashing. | Martijn van Duren | |
Found by bluhm@ while playing with setting noclose to 1 for daemon(3): Also included in this commit OK bluhm@ | |||
2021-04-20 | Don't overwrite environment CFLAGS. | Martijn van Duren | |
OK bluhm@ | |||
2021-04-19 | The powerpc64 ELFv2 ABI explicitly states that exception enable bits | Mark Kettenis | |
and rounding control bits are not restored by longjmp(3). So expect the some failures on that platform. ok bluhm@ | |||
2021-04-14 | revert previous. some of the keyupdate tests still fail occasionally | Theo Buehler | |
2021-04-14 | Enable test-tls13-keyupdate.py | Theo Buehler | |
2021-04-14 | move test-record-size-limit.py to unsupported | Theo Buehler | |
2021-04-14 | enable test-record-layer-fragmentation.py | Theo Buehler | |
2021-04-14 | factor argument to catch an alert mismatch into a helper function | Theo Buehler | |
2021-04-13 | enable test-tlsfuzzer-invalid-compression-methods.py | Theo Buehler | |
2021-04-13 | enable test-large-hello.py as a slow test | Theo Buehler | |
2021-04-13 | with new defaults, test-fuzzed-plaintext.py is no longer slow | Theo Buehler | |
2021-04-13 | move a few tests to the unsupported group and fix two comments | Theo Buehler | |
2021-04-13 | annotate test-ecdhe-rsa-key-exchange-with-bad-messages.py with expected | Theo Buehler | |
alerts and where to add them. | |||
2021-04-08 | Enable test-cve-2016-6309.py | Theo Buehler | |
2021-04-07 | Use ERR_print_error_fp() to avoid leaking a BIO in fatal() | Theo Buehler | |
2021-04-06 | use errx() instead of err() | Theo Buehler | |
2021-04-06 | spaces -> tabs | Theo Buehler | |
2021-04-06 | minor style tweaks | Theo Buehler | |
2021-04-04 | Add missing error check for AES_unwrap_key(). | Theo Buehler | |
2021-04-04 | Fix two copy paste errors in error messages | Theo Buehler | |
2021-04-04 | Add tests for DTLSv1_2{,_client,_server}_method() | Theo Buehler | |
2021-04-04 | Use correct type for tmp in test_write_bytes() | Theo Buehler | |
2021-04-04 | Explicitly NULL pointers to avoid a double free. | Theo Buehler | |
2021-04-04 | Don't leak key and dh in the error path. | Theo Buehler | |
2021-04-04 | Clean up client and server tls{,_config} contexts in tls_test(). | Theo Buehler | |
Leaks reported by Ilya Shipitsin. | |||
2021-04-03 | Run the CMAC tests through EVP_PKEY_new_CMAC_key(). | Theo Buehler | |
2021-04-02 | Two cases of BRE involving counts and backrefs that go wrong and | Otto Moerbeek | |
similar that have no isssues. Reported by Michael Paoli. Failing cases commented out for now. | |||
2021-03-31 | Remove workaround for missing d2i_DSAPrivateKey_fp prototype | Theo Buehler | |
2021-03-29 | Add regress coverage for TLSv1.2 record number increment. | Joel Sing | |
2021-03-28 | The failure mode of test-tls13-version-negotiation.py has changed. | Theo Buehler | |
Update comment. | |||
2021-03-27 | Enable test-sig-algs-renegotiation-resumption.py. | Theo Buehler | |
This test covers various scenarios with renegotiation and session resumption. In particular it crashes the OpenSSL 1.1.1j server due to the sigalg NULL deref fixed this week. We need --sig-algs-drop-ok since we do not currently implement signature_algorithms_cert. | |||
2021-03-27 | Handle dynamic definition of SIGSTKSZ as of glibc 2.34 on Linux. | Brent Cook | |
ok bluhm@, inoguchi@, tb@, deraadt@ |