38379e9254628617dd4995589f23b06c84ffe16e |
|
03-Mar-2016 |
Dan McDonald <danmcd@omniti.com> |
6715 Remove MD2 from libkmf
Reviewed by: Peter Tribble <peter.tribble@gmail.com>
Reviewed by: Igor Kozhukhov <ikozhukhov@gmail.com>
Reviewed by: Saso Kiselkov <skiselkov.ml@gmail.com>
Approved by: Garrett D'Amore <garrett@damore.org> |
37bbd7cc85ebfd31fbf68569b8b098e5448c9ce9 |
|
05-May-2015 |
Richard Lowe <richlowe@richlowe.net> |
5878 Additional lint fixes for sunstudio12.1 and more modern OpenSSL
Reviewed by: Dan McDonald <danmcd@omniti.com>
Reviewed by: Hans Rosenfeld <rosenfeld@grumpf.hope-2000.org>
Approved by: Gordon Ross <gordon.w.ross@gmail.com> |
6b35cb3cf158584a9408d44b9b6796564e8e1882 |
|
17-Feb-2015 |
Richard PALO <richard@NetBSD.org> |
5591 initialisation inversion of component order in cmd-crypto/elfsign.c
5620 cstyle updates for cmd/cmd-crypto and lib/libkmf
Reviewed by: Dan McDonald <danmcd@omniti.com>
Reviewed by: David Höppner <0xffea@gmail.com>
Reviewed by: Josef "Jeff" Sipek <jeffpc@josefsipek.net>
Approved by: Dan McDonald <danmcd@omniti.com> |
d7141854234c22ab8fe0547bf51a2f3a30781870 |
|
21-May-2014 |
Robert Mustacchi <rm@joyent.com> |
backout 4853: breaks lint |
a65cd518c5d0f30c53594a7022eb0f7d04c98cef |
|
19-May-2014 |
Alexander Pyhalov <apyhalov@gmail.com> |
4853 illumos-gate is not lint-clean when built with openssl 1.0
Reviewed by: Keith Wesolowski <keith.wesolowski@joyent.com>
Reviewed by: Alexander Eremin <alexander.eremin@nexenta.com>
Approved by: Robert Mustacchi <rm@joyent.com> |
70f9559bd0c02885d84a425eaafc8c280df10efb |
|
25-Apr-2012 |
Theo Schlossnagle <jesus@omniti.com> |
1665 Illumos wont build against openssl 1.0.0
Reviewed by: Robert Mustacchi <rm@joyent.com>
Reviewed by: Keith Wesolowski <keith.wesolowski@joyent.com>
Reviewed by: Joshua M. Clulow <josh@sysmgr.org>
Approved by: Albert Lee <trisk@nexenta.com> |
2c9a247fb01631b3eb3b85a1127e72f0b60ae108 |
|
23-Apr-2010 |
Wyllys Ingersoll <wyllys.ingersoll@sun.com> |
6944179 kmf_sign_cert needs more info about signing algorithm
6944121 KMF should add Basic-Constraint when keyCertSign EKU is set
6943253 pktool should ask to overwrite a CSR file if it already exists
6943234 pktool online help wrongly suggests we can delete a key based on its subject-DN
6940180 certClass should be called privClass (or just class) in KMFPK11_FindPrikeyByCert()
6940146 kmf_sign_data() returns KMF_ERR_INTERNAL but the PKCS#11 plugin returns KMF_ERR_MISSING_ERRCODE
6938522 kmf_openssl.so.1 clobbers OpenSSL locking callbacks |
e65e5c2d2f32a99e8c5f740cabae9075dab03ce7 |
|
22-Mar-2010 |
Wyllys Ingersoll <wyllys.ingersoll@sun.com> |
PSARC 2010/032 EC and SHA2 for KMF
6902640 pktool/KMF needs to support ECDSA keys and certificates
6787016 pktool can offer the ability to generate RSA keypairs |
a2d4930d8e20c711535bea8fe88a53eeba789d2d |
|
18-Feb-2010 |
Dan OpenSolaris Anderson <opensolaris@drydog.com> |
6864896 libkmf leaks memory |
d00756ccb34596a328f8a15d1965da5412d366d0 |
|
21-Feb-2008 |
wyllys <none@none> |
PSARC 2008/037 new EKU support for pktool and kmfcfg
6648052 pktool(1) could allow certificate signing and verification
6652751 kmf_get_kmf_error_str() doesn't know about KMF_ERR_ATTR_NOT_FOUND
6654080 kmf_verify_data() should use algorithm from the cert if KMF_ALGORITHM_INDEX_ATTR is missing
6654205 kmf_find_prikey_by_cert() should be public
6654910 kmf_validate_cert() won't get over non-existent x509v3 extensions in TA
6660235 Command summary on pktool help should be localizable.
6660622 KMF needs API to determine format of raw data |
73cc0e021f4115db3085cd78083c42c8be4559e3 |
|
07-Dec-2007 |
wyllys <none@none> |
6634339 kmf_find_key returns error when searching for raw (RSA) public key |
5b3e1433c6213363bcb6387e66fc84ee9ff21a5d |
|
28-Nov-2007 |
wyllys <none@none> |
6620497 KMF does not build proper PKCS12 PDUs
6624214 kmf_get_cert_extn can leak memory
6629477 libkmf is crashed in OpenSSL_StoreKey if keytype is not KMF_RSA or KMF_DSA |
30a5e8fa1253cb33980ee4514743cf683f584b4e |
|
14-Sep-2007 |
wyllys <none@none> |
PSARC 2007/426 KMFAPI Interface Taxonomy Change
PSARC 2007/465 pktool symmetric key enhancements
6546405 KMF Interfaces need to be extensible
6547894 pktool should be more detailed
6590232 pktool should import and export generic keys |
34acef6775bd2319a3708b750f10ccc4f1292562 |
|
25-May-2007 |
wyllys <none@none> |
6558467 memory leak in kcfd |
b4058258308bb6a33809f15962013af85f890c36 |
|
24-Apr-2007 |
wyllys <none@none> |
6549186 OpenSSL_FindCert incorrectly tracks matched certificates |
6adaf03e130142c9de7b6c050f0d0b1df4e73044 |
|
19-Apr-2007 |
wyllys <none@none> |
6547594 KMF incorrectly processes pkcs12 files
6547853 KMF is too strict about KeyUsage |
f482c776bc557f0256e776932c7842b9db390de1 |
|
13-Apr-2007 |
wyllys <none@none> |
6542973 KMF_FindCert is racy |
6567ca1aac57c9007c8182e91a4294693794092b |
|
03-Apr-2007 |
krishna <none@none> |
6512691 kssladm dumps core when given invalid input |
9b37d29632d2cb262ba42f1d804f85fcb0aa3709 |
|
15-Mar-2007 |
wyllys <none@none> |
6531818 libkmf has too many dependencies on libpkcs11
6534811 KMF openssl verify routine should test for NULL hash method.
6534827 KMF_ReadInputFile should not require a handle |
c197cb9db36685d2808c057fdbe5700734483ab2 |
|
14-Mar-2007 |
hylee <none@none> |
PSARC 2007/094 encrypt(1) / mac(1) token key support
4868006 encrypt(1) and mac(1) needs to support token objects
6517162 pktool genkey needs to support generic secret key |
02744e811b15322c5f109827a116c33bfe3438b5 |
|
03-Mar-2007 |
wyllys <none@none> |
6523959 KMF needs keystore specific Verify operations
--HG--
rename : usr/src/lib/libkmf/include/oidsalg.h => deleted_files/usr/src/lib/libkmf/include/oidsalg.h |
9a7670889e9c36ec355371e6b02f2d9084f040dc |
|
17-Jan-2007 |
haimay <none@none> |
6509342 Code licenses for KMF need to be cleaned up. |
71593db26bb6ef7b739cffe06d53bf990cac112c |
|
12-Jan-2007 |
wyllys <none@none> |
6501154 kssladm could use KMF
--HG--
rename : usr/src/cmd/cmd-inet/usr.sbin/kssl/kssladm/openssl_util.c => usr/src/cmd/cmd-inet/usr.sbin/kssl/kssladm/ksslutil.c |
31558a356540225e286233d63c122a35e4a4bd22 |
|
27-Nov-2006 |
wyllys <none@none> |
6495595 KMF incorrectly checks the CA constraint
6495596 KMF_OpenSSL plugin incorrectly clears memory from returned cert list. |
99ebb4ca412cb0a19d77a3899a87c055b9c30fa8 |
|
11-Nov-2006 |
wyllys <none@none> |
PSARC 2005/074 Solaris Key Management Framework
6224192 Solaris needs unified key management interfaces
--HG--
rename : usr/src/cmd/cmd-crypto/pktool/biginteger.h => deleted_files/usr/src/cmd/cmd-crypto/pktool/biginteger.h
rename : usr/src/cmd/cmd-crypto/pktool/derparse.c => deleted_files/usr/src/cmd/cmd-crypto/pktool/derparse.c
rename : usr/src/cmd/cmd-crypto/pktool/derparse.h => deleted_files/usr/src/cmd/cmd-crypto/pktool/derparse.h
rename : usr/src/cmd/cmd-crypto/pktool/osslcommon.c => deleted_files/usr/src/cmd/cmd-crypto/pktool/osslcommon.c
rename : usr/src/cmd/cmd-crypto/pktool/osslcommon.h => deleted_files/usr/src/cmd/cmd-crypto/pktool/osslcommon.h
rename : usr/src/cmd/cmd-crypto/pktool/p12common.c => deleted_files/usr/src/cmd/cmd-crypto/pktool/p12common.c
rename : usr/src/cmd/cmd-crypto/pktool/p12common.h => deleted_files/usr/src/cmd/cmd-crypto/pktool/p12common.h |