1. 19 Sep, 2000 3 commits
    • Bodo Möller's avatar
      Totally remove the supposedly 'faster' variant in · fe035197
      Bodo Möller authored
      BN_mod_mul_montgomery, which calls bn_sqr_recursive
      without much preparation.
      
      bn_sqr_recursive requires the length of its argument to be
      a power of 2, which is not always the case here.
      There's no reason for not using BN_sqr -- if a simpler
      approach to squaring made sense, then why not change
      BN_sqr?  (Using BN_sqr should also speed up DH where g is chosen
      such that it becomes small [e.g., 2] when converted
      to Montgomery representation.)
      
      Case closed :-)
      fe035197
    • Bodo Möller's avatar
      Clarification about Montgomery problem · cb1fbf8e
      Bodo Möller authored
      cb1fbf8e
    • Bodo Möller's avatar
      Document BN_mod_mul_montgomery bug; · a45bd295
      Bodo Möller authored
      make disabled code slightly more correct (this does not solve
      the problem though).
      a45bd295
  2. 18 Sep, 2000 1 commit
  3. 17 Sep, 2000 1 commit
  4. 15 Sep, 2000 1 commit
  5. 14 Sep, 2000 4 commits
  6. 13 Sep, 2000 2 commits
  7. 12 Sep, 2000 1 commit
  8. 11 Sep, 2000 1 commit
  9. 10 Sep, 2000 1 commit
  10. 07 Sep, 2000 3 commits
  11. 05 Sep, 2000 4 commits
    • Dr. Stephen Henson's avatar
      Fix typo in rsautl. · bbb72003
      Dr. Stephen Henson authored
      Add support for settable verify time in X509_verify_cert().
      
      Document rsautl utility.
      bbb72003
    • Dr. Stephen Henson's avatar
      *BIG* verify code reorganisation. · 2f043896
      Dr. Stephen Henson authored
      The old code was painfully primitive and couldn't handle
      distinct certificates using the same subject name.
      
      The new code performs several tests on a candidate issuer
      certificate based on certificate extensions.
      
      It also adds several callbacks to X509_VERIFY_CTX so its
      behaviour can be customised.
      
      Unfortunately some hackery was needed to persuade X509_STORE
      to tolerate this. This should go away when X509_STORE is
      replaced, sometime...
      
      This must have broken something though :-(
      2f043896
    • Dr. Stephen Henson's avatar
      Keep a not of original encoding in certificate requests. · 34216c04
      Dr. Stephen Henson authored
      Add new option to PKCS7_sign to exclude S/MIME capabilities.
      34216c04
    • Bodo Möller's avatar
      Mention fix in bio_lib.c. · 22c7ea40
      Bodo Möller authored
      22c7ea40
  12. 04 Sep, 2000 2 commits
  13. 03 Sep, 2000 1 commit
  14. 01 Sep, 2000 1 commit
  15. 30 Aug, 2000 2 commits
  16. 22 Aug, 2000 2 commits
  17. 21 Aug, 2000 1 commit
    • Dr. Stephen Henson's avatar
      Various fixes... · eaa28181
      Dr. Stephen Henson authored
      initialize ex_pathlen to -1 so it isn't checked if pathlen
      is not present.
      
      set ucert to NULL in apps/pkcs12.c otherwise it gets freed
      twice.
      
      remove extraneous '\r' in MIME encoder.
      
      Allow a NULL to be passed to X509_gmtime_adj()
      
      
      Make PKCS#7 code use definite length encoding rather then
      the indefinite stuff it used previously.
      eaa28181
  18. 18 Aug, 2000 2 commits
  19. 17 Aug, 2000 2 commits
  20. 14 Aug, 2000 1 commit
  21. 11 Aug, 2000 1 commit
  22. 06 Aug, 2000 1 commit
  23. 04 Aug, 2000 1 commit
  24. 29 Jul, 2000 1 commit