8688e7005afed694ca129d00d3cd73b32828804b |
|
20-Sep-2017 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
b5252fcde512405a68dd4becfe683d9763bd0fea |
|
19-Sep-2017 |
Mukund Sivaraman <muks@isc.org> |
Don't use memset() to wipe memory (#45947)
(cherry picked from commit d5707676e45551d1ceb600a674f3f13351fd3105) |
395fe33465223315125d018c1215d908c61630fe |
|
31-Oct-2016 |
Mark Andrews <marka@isc.org> |
add more LIBRESSL_VERSION_NUMBER checks
(cherry picked from commit 3d38cfaf8a05fe272173fdea4d747de70f67ad5d) |
76af83c9adb772f7b045c62cf8b411165bfaa5ef |
|
31-Oct-2016 |
Mark Andrews <marka@isc.org> |
4497. [port] Add support for OpenSSL 1.1.0. [RT #41284]
(cherry picked from commit 1fce0951ed172fc3834a3a379c4e00b78224cc5d) |
e51ba2650025460b26092fb2500e0b6dfbf6d548 |
|
07-Sep-2016 |
Mark Andrews <marka@isc.org> |
4461. [bug] win32: not all external data was properly marked
as external data for windows dll. [RT #43161]
(cherry picked from commit 8eceb0bffe4ab4ccf72f71bb69d2b8106743af5d) |
0c27b3fe77ac1d5094ba3521e8142d9e7973133f |
|
27-Jun-2016 |
Mark Andrews <marka@isc.org> |
4401. [misc] Change LICENSE to MPL 2.0. |
161b5249b9277b95479ae933387ae9de65fbad30 |
|
20-Aug-2015 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
420a43c8d8028992a4e9c170022f97bfac689025 |
|
18-Aug-2015 |
Evan Hunt <each@isc.org> |
[master] timing safe memory comparisons
4183. [cleanup] Use timing-safe memory comparisons in cryptographic
code. Also, the timing-safe comparison functions have
been renamed to avoid possible confusion with
memcmp(). [RT #40148] |
80169c379dd4e0a6e164b7cac4bf5fa013c91138 |
|
29-Sep-2014 |
Mark Andrews <marka@isc.org> |
3957. [bug] "dnssec-keygen -S" failed for ECCGOST, ECDSAP256SHA256
and ECDSAP384SHA384. [RT #37183] |
83bb42c635951826825584fc9ee933496f5c8f3a |
|
08-Mar-2014 |
Francis Dupont <fdupont@isc.org> |
fix opensslgost_link.c when OPENSSL is not defined |
3249da26fc28297265d444a1f3647f1e6700a2a0 |
|
31-Jan-2014 |
Evan Hunt <each@isc.org> |
[master] rationalize external key handling
3723. [cleanup] Imported keys are now handled the same way
regardless of DNSSEC algorithm. [RT #35215] |
12bf5d4796505b4c20680531da96a31e6c2c1144 |
|
18-Jan-2014 |
Evan Hunt <each@isc.org> |
[master] address several issues with native pkcs11 |
6972eaffdbb7bb83c1b8565adfc6778430f80c8c |
|
17-Jan-2014 |
Francis Dupont <fdupont@isc.org> |
fix external key handling |
bf0266f286c9350f6579d03cc74429433d8e6381 |
|
15-Jan-2014 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
ba751492fcc4f161a18b983d4f018a1a52938cb9 |
|
15-Jan-2014 |
Evan Hunt <each@isc.org> |
[master] native PKCS#11 support
3705. [func] "configure --enable-native-pkcs11" enables BIND
to use the PKCS#11 API for all cryptographic
functions, so that it can drive a hardware service
module directly without the need to use a modified
OpenSSL as intermediary (so long as the HSM's vendor
provides a complete-enough implementation of the
PKCS#11 interface). This has been tested successfully
with the Thales nShield HSM and with SoftHSMv2 from
the OpenDNSSEC project. [RT #29031] |
431a83fb29482c5170b3e4026e59bb14849a6707 |
|
10-Jan-2014 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
e851ea826066ac5a5b01c2c23218faa0273a12e8 |
|
09-Jan-2014 |
Evan Hunt <each@isc.org> |
[master] replace memcpy() with memmove().
3698. [cleanup] Replaced all uses of memcpy() with memmove().
[RT #35120] |
63737247d167ffa7151bc3d228ca5c0875751818 |
|
06-Sep-2013 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
0c91911b4d1e872b87eaf6431ed47fe24d18dd43 |
|
04-Sep-2013 |
Mark Andrews <marka@isc.org> |
3642. [func] Allow externally generated DNSKEY to be imported
into the DNSKEY management framework. A new tool
dnssec-importkey is used to this. [RT #34698] |
0e37e9e3d7f6de7d93212bd4596d16ebc809492e |
|
24-Oct-2012 |
Evan Hunt <each@isc.org> |
[master] silence noisy OpenSSL logging
3402. [bug] Correct interface numbers for IPv4 and IPv6 interfaces. |
6eb6af6732194157224e2b8d81a02a9e80c4530a |
|
23-Jul-2012 |
Mark Andrews <marka@isc.org> |
3354. [func] Improve OpenSSL error logging. [RT #29932] |
ef1963d83d69d03a006a882afcddbff48cd747d0 |
|
16-Jun-2012 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
7865ea9545f28f12f046b32d24c989e8441b9812 |
|
14-Jun-2012 |
Mark Andrews <marka@isc.org> |
3339. [func] Allow the maximum supported rsa exponent size to be specified: "max-rsa-exponent-size <value>;" [RT #29228] |
c674aacfd655b89f171c61c0a9683cf82af4b3d4 |
|
20-Jan-2011 |
Automatic Updater <source@isc.org> |
update copyright notice |
f862994cbd7c09fc9034a64fb2d4d63f60314cc0 |
|
19-Jan-2011 |
Mark Andrews <marka@isc.org> |
explicitly initialise dump and restore |
a094c46640de70bb03a9351211fb17c41b6fbbb5 |
|
24-Dec-2010 |
Automatic Updater <source@isc.org> |
update copyright notice |
37dee1ff94960a61243f611c0f87f8c316815c53 |
|
23-Dec-2010 |
Mark Andrews <marka@isc.org> |
2999. [func] Add GOST support (RFC 5933). [RT #20639] |