Age | Commit message (Collapse) | Author | |
---|---|---|---|
2016-09-01 | don't initialize variables with functions | Ted Unangst | |
2016-09-01 | add a -t keytype option for untrusted comment automatic key extraction | Marc Espie | |
(not in VERIFYONLY mode) to be documented and used shortly okay tedu@ | |||
2016-06-08 | use getprogname | Ted Unangst | |
2016-05-11 | signify should refer to the future key | Theo de Raadt | |
2016-01-06 | document the signify command for the next release, so that users can | Sebastian Benoit | |
verify before the netx upgrade. document that signify.1 needs an edit bump once in a while. ok tedu@ florian@ | |||
2016-01-05 | Bump example pubkey filenames for 5.9 | Florian Obser | |
OK benno@ | |||
2015-12-04 | polishing | Ted Unangst | |
2015-11-02 | Make signify's stdout line buffered. This allows to run the verbose | Alexander Bluhm | |
output through a pipe and still see the progress immediately. OK tedu@ | |||
2015-10-30 | mark usage __dead | Ted Unangst | |
2015-10-09 | Change all tame callers to namechange to pledge(2). | Theo de Raadt | |
2015-10-08 | add some tame calls. we may need a bunch of permissions to create files | Ted Unangst | |
and manipulate the tty for readpassphrase, but once we've parsed options and have some idea of what's going to happen next, we can reduce down quite a bit more. particular use case of "signify | patch" is limited to feeding garbage to patch. | |||
2015-07-14 | Bump example pubkey filenames for 5.8 | Florian Obser | |
OK benno@ | |||
2015-02-16 | Declare ge25519_base as extern, to prevent it from becoming a common. Gets us | Miod Vallat | |
rid of ``lignment 4 of symbol `crypto_sign_ed25519_ref_ge25519_base' in mod_ge25519.o is smaller than 16 in mod_ed25519.o'' warnings at link time. | |||
2015-01-20 | i wrote this | Ted Unangst | |
2015-01-16 | improve checksum parsing slightly. now handles filenames with spaces. | Ted Unangst | |
(though not names with ')'; sorry.) | |||
2015-01-16 | just to be careful, add a cpp guard that the sscanf sizes are ok | Ted Unangst | |
2015-01-15 | use PATH_MAX for path buffers. in case, you know... | Ted Unangst | |
2015-01-09 | absurd optimization. reduce initial space by one to avoid leaving one byte | Ted Unangst | |
hanging off on a page by itself. | |||
2015-01-07 | bcallah noticed the ifndef guard for headers was wrong. don't fix, just | Ted Unangst | |
remove it, and put these includes up with their friends. | |||
2015-01-07 | Bump example pubkey filenames for 5.7 | Florian Obser | |
OK benno@ | |||
2014-12-29 | useless change. overwriting the nul byte with a newline means b64_ntop | Ted Unangst | |
can use the whole buffer, even the last byte. | |||
2014-12-29 | rename fingerprint struct field. no longer exposed to users, but since it's | Ted Unangst | |
not technically a fingerprint as others understand the term, pick another. now it's a keynum! after an email from Florian Weimer | |||
2014-12-29 | remove the inspect debug command. should not be used by users, who are not | Ted Unangst | |
supposed to know what fingerprints are or that they exist. | |||
2014-11-20 | Yet more #include de-duplication. | Kenneth R Westerback | |
ok deraadt@ tedu@ | |||
2014-08-22 | don't need this file, only the mod version | Ted Unangst | |
2014-08-07 | Bump example pubkey filenames to /etc/signify/openbsd-56-base.pub for | Lawrence Teo | |
5.6. ok deraadt@ | |||
2014-07-22 | Pull in all the parts. Let's face the facts -- .PATH from other | Theo de Raadt | |
parts of the tree is PAINFUL for basically everyone upstream, not just for us in our own tree. | |||
2014-07-13 | compare snprintf return value with -1. this isn't really necessary because | Ted Unangst | |
int promotion rules guarantee the correct result when compared with sizeof, but it is perhaps easier for some people to understand it this way. from Doug Hogan. | |||
2014-05-30 | don't assign variables in if() that's not error checking | Ted Unangst | |
2014-05-30 | a little style consistency with error checking | Ted Unangst | |
2014-05-16 | save up the failures for the end in the argc == 0. | Ted Unangst | |
help ok espie | |||
2014-05-16 | a few changes for new code to match local style | Ted Unangst | |
2014-05-16 | checksum mode can use magic pubkey finder too | Ted Unangst | |
2014-05-16 | rework -C (perfect candidate for using hash tables, really): | Marc Espie | |
insert files we want to check into a hash, parse SHA256 message on the fly, delete entries whose checksum match, then display entries that failed. This completely avoids allocating temporary storage for file names and checksums and removes the quadratic match (argv[i] vs line[n]). okay tedu@ | |||
2014-05-15 | fix the band-aid error. | Marc Espie | |
tedu was bitten by the RETARDED interface in sha2.h (who names string LENGTH things that are actually buffer SIZES) ? make -C mode work again. okay beck@ | |||
2014-05-14 | let cpp do some of the work | Ted Unangst | |
2014-05-14 | spell out base64 in error messages | Ted Unangst | |
2014-05-14 | save some memory by reducing buffer sizes | Ted Unangst | |
2014-05-14 | recode base64 hashes if necessary | Ted Unangst | |
2014-05-14 | realloc like a boss, so checksum verification doesn't take minutes. | Ted Unangst | |
2014-05-06 | temp variable for a bit of clarity | Ted Unangst | |
2014-05-06 | remove unneeded variable | Ted Unangst | |
2014-05-06 | factor out the safepath | Ted Unangst | |
2014-05-06 | be more explicit about what's a string | Ted Unangst | |
2014-05-06 | better alloc idiom | Ted Unangst | |
2014-05-06 | factor max message size | Ted Unangst | |
2014-04-22 | use reallocarray | Ted Unangst | |
2014-04-22 | errx when errno won't be set. | Ted Unangst | |
2014-04-14 | confirm passwords when generating keys | Ted Unangst | |
2014-03-17 | quiet time is over | Ted Unangst | |