chrisk%netscape.com
c8e8241728
Fix bug in decoder:
...
When encoding indefinitely & encountering an optional field at the end of
a sequence, right after an IMPLICIT or POINTER template, the decoder
was not propagating the optionalness and the end-of-contents condition
correctly as it hits the end-of-contents octets instead of the optional
field. This is because IMPLICIT and POINTER push TWO states to look
for the next tag, not just one.
(The first state is "afterImplicit" or "afterPointer", the second one
starts with "beforeIdentifier" as usual).
This finally makes decoding envelopedData messages in cmsutil work.
2000-06-20 13:24:01 +00:00
ddrinan%netscape.com
de67b92a1b
We need libnlslocale for unix
2000-06-20 02:43:46 +00:00
cotter%netscape.com
2821055584
Added first draft of PSM 1.2 release notes.
2000-06-19 23:58:25 +00:00
javi%netscape.com
066d8f24d8
Whomping SECURITY_CLIENT_BRANCH onto tip.
2000-06-19 23:05:49 +00:00
javi%netscape.com
a82cfc01fa
Whomping SECURITY_CLIENT_BRANCH onto tip.
2000-06-19 22:58:15 +00:00
thayes%netscape.com
4cd82c9914
Fix double free of item value that is in an arena.
2000-06-16 23:26:16 +00:00
javi%netscape.com
098648d866
Watch out for the case where the user hits Cancel. Don't wanna dead-lock
...
waiting for a message that will never show up.
2000-06-16 23:22:39 +00:00
javi%netscape.com
fba4cd21d3
Work around for Mozilla. If we're told to wait for a resource to shut down
...
that isn't a keygen context, sleep for a second so that the user actually
sees the dialog instead of a window that mysteriously appears and disappears
without ever showing them anything.
2000-06-16 22:45:48 +00:00
ddrinan%netscape.com
9587b38239
Include nslocale component
2000-06-16 22:40:13 +00:00
beard%netscape.com
17a3d47248
bug 19119: export file for PSM[Debug].shlb.
2000-06-16 22:25:43 +00:00
beard%netscape.com
5ff5374817
bug 19119, changes for XP_MAC to allow client to synchronize with server thread. a=ddrinan, r=gordon
2000-06-16 22:21:16 +00:00
beard%netscape.com
bca0804eec
(not part of build) added nlslayer.cpp.
2000-06-16 22:18:38 +00:00
javi%netscape.com
f0e57c08d9
Some tweaks to key gen context and oldfunc.c so that Mozilla can more
...
easily handle the KEYGEN tag.
2000-06-16 22:08:16 +00:00
javi%netscape.com
c8f7ba26ce
Make some API changes so that the Mozilla client can more easily handle
...
the KEYGEN tag.
2000-06-16 22:05:18 +00:00
beard%netscape.com
97d9238830
bug #19119 : Added call to initialize Mac toolbox. (not part of build)
2000-06-16 21:12:27 +00:00
javi%netscape.com
0f84a60c10
Add some attributes to query URL's for setting the password and for
...
choosing which token to use when processing a KEYGEN tag.x
2000-06-16 20:48:25 +00:00
ddrinan%netscape.com
71c92a89ba
Fixed build bustage for linux
2000-06-16 17:17:49 +00:00
cotter%netscape.com
0527c678f9
Updated OSCP help.
2000-06-16 05:45:58 +00:00
ddrinan%netscape.com
38e0c15f88
Fix for bug# 34384
2000-06-16 01:47:18 +00:00
mcgreer%netscape.com
5c4d045072
attempt to add token support for listing certs & keys
2000-06-16 00:38:44 +00:00
mcgreer%netscape.com
1a4bf955be
more cleanup on cert listing
2000-06-16 00:36:43 +00:00
ddrinan%netscape.com
0675702db4
Use M16 version of nlslayer for unix
2000-06-15 21:34:56 +00:00
thayes%netscape.com
adc6554ab2
Change password prompt and retry text.
2000-06-15 21:13:35 +00:00
javi%netscape.com
b9608d0541
Add help targets for cert pretty print and issuer not found when walking
...
the certificate chain.
2000-06-15 21:02:45 +00:00
ddrinan%netscape.com
af2686f4b9
Use the M16 version of nlslayer
2000-06-15 20:22:12 +00:00
ddrinan%netscape.com
507c38bfb2
Use the intl M16 interfaces
2000-06-15 20:02:52 +00:00
chrisk%netscape.com
9f56a873d3
Add generation of SMIMECapabilities
2000-06-14 23:17:52 +00:00
chrisk%netscape.com
fa197d9014
canonicalization step adds CRs to LFs only of there are no CRs present.
2000-06-14 23:15:06 +00:00
chrisk%netscape.com
9cbdb3d252
Make example 5.7 of ietf-smime-examples draft decode correctly
...
(we still cannot look up certs by SubjectKeyID, so it won't verify)
2000-06-14 23:12:48 +00:00
beard%netscape.com
53d28df585
(not part of build) added non-debug target (PSM.shlb)
2000-06-14 03:25:37 +00:00
beard%netscape.com
1712fb7c0e
(not part of build) added mozilla/security/nss/lib/smime to access paths, added nlslayer.cpp directly (rather than building as a separate library).
2000-06-14 03:18:10 +00:00
beard%netscape.com
32dc89c957
(not part of build) added mozilla/security/nss/lib/smime to access paths.
2000-06-14 03:16:41 +00:00
ddrinan%netscape.com
88e79e328c
Move nlslayer from my machine to sbc
2000-06-13 23:54:37 +00:00
cls%seawood.org
7c56b4260d
Applying BeOS fixes for PSM to tip. Bug #39164
2000-06-13 23:13:48 +00:00
chrisk%netscape.com
f7113ab1b2
Merge smimetk_branch to tip...
2000-06-13 21:56:37 +00:00
relyea%netscape.com
d43393b11b
reuse old key structures on a given token rather than building it up and
...
tearing it down every time.
2000-06-13 21:37:28 +00:00
relyea%netscape.com
78671954d3
Reuse old Object structures rather than build and free them every time.
2000-06-13 21:34:52 +00:00
chrisk%netscape.com
67e0b44687
Fix DSA / BLAPI interface by creating stub functions that have the
...
correct signature for being called via context->update or context->verify.
2000-06-12 23:43:42 +00:00
mcgreer%netscape.com
dd3dd4e3e1
added roots.
2000-06-12 22:39:02 +00:00
chrisk%netscape.com
091d437eca
Sorted output for certutil -L
2000-06-12 22:25:40 +00:00
thayes%netscape.com
6106f2cc7c
Change password dialogs to account for expanded capabilities (beyond
...
just certificates)
2000-06-12 20:38:10 +00:00
thayes%netscape.com
8d09de22cf
Fix cleanup code in Decrypt to check for NULL pointers
2000-06-12 20:19:39 +00:00
thayes%netscape.com
d562a12ca9
Add permanent (token) key for supporting Secret Decoder Ring (SDR)
...
Bug 26085
2000-06-10 19:00:45 +00:00
cotter%netscape.com
b9bccd5ac3
Latest fixes re SDR & pswd mgr.
2000-06-06 22:23:50 +00:00
nelsonb%netscape.com
9d2744f5ce
Carry forward fix from NSS 2.8 for servers that don't do ssl2.
2000-06-06 20:32:18 +00:00
javi%netscape.com
cd6d0787cd
Make SendUIEvent take a bit for isModal instead of always hard-coding it
...
to true.
2000-06-05 20:21:23 +00:00
javi%netscape.com
80e2d2ccc8
For optimized builds, we have to link in an extra library to avoid
...
undefined symbols.
2000-06-05 20:10:39 +00:00
javi%netscape.com
1433b98732
Work around for a bug w/ Mozilla where the KEYGEN window blocks forever
...
and prevents PSM from exiting when Mozilla quits.
2000-06-02 23:57:25 +00:00
mcgreer%netscape.com
12b3563350
iterate context creation for all ciphers when doing performance tests.
2000-06-02 23:09:13 +00:00
mcgreer%netscape.com
8afb3c69cf
fork content version between ns-branded builds and mozilla builds.
2000-06-02 22:35:29 +00:00
javi%netscape.com
2bd9d0bc74
Change the name of the OCSP URL from "location" to "ocspLocation" so Mozilla
...
doesn't get confused and try to change the web site we're viewing.
This is a work around because that bug will not be fixed for Beta2 in Mozilla.
2000-06-02 19:03:48 +00:00
mcgreer%netscape.com
0307d81230
Allow for building with internal roots.
2000-06-02 18:37:53 +00:00
mcgreer%netscape.com
883e025f3d
Allow for building with internal root certs.
2000-06-02 18:37:14 +00:00
mcgreer%netscape.com
10d32a14b9
more performance testing
...
* timing of context creation for ciphers
* provide system information
2000-06-02 01:40:29 +00:00
thayes%netscape.com
b2aa68c6fe
Use PK11 fixed key lookup to locate the key value. Fix ENCRYPT/DECRYPT bug in
...
SDR_Decrypt.
2000-05-31 23:06:02 +00:00
relyea%netscape.com
d6dd1b2540
Return to using the thread safe version. The non-thread safe version can double free memory
2000-05-31 22:37:17 +00:00
relyea%netscape.com
2900921f0d
Fix bug which would have bypassed mac checking in TLS
2000-05-31 22:36:02 +00:00
relyea%netscape.com
30767104df
Set up code that allows you to run only some of the SSL tests in a single run.
2000-05-31 22:35:00 +00:00
relyea%netscape.com
5243fc1acd
Fix Environment variable overrides.
2000-05-31 22:34:07 +00:00
mcgreer%netscape.com
e771f6a310
fix static array (found with solaris 2.7 build)
2000-05-31 22:17:47 +00:00
javi%netscape.com
01054862c6
Need to make in the ui directory as well.
2000-05-31 00:20:30 +00:00
javi%netscape.com
cc03ad8c56
Use nlslayer as the library name instead of strres to avoid any potential
...
confusion.
2000-05-30 21:54:07 +00:00
thayes%netscape.com
bbed546e6b
Initial version of header for SDR wrappers
2000-05-27 03:31:51 +00:00
nelsonb%netscape.com
51de4ce7a6
Fix build on NT. Correct link order in PKCS11 directory.
2000-05-27 01:30:29 +00:00
nelsonb%netscape.com
211a572ab0
Add new implementation of the algorithm from RFC 2268. Fix some comments.
2000-05-27 01:29:35 +00:00
mcgreer%netscape.com
23966b8923
fix up file handling.
2000-05-26 23:19:17 +00:00
mcgreer%netscape.com
308ca1e370
break off mode list when next option is reached
2000-05-26 23:09:09 +00:00
mcgreer%netscape.com
9fdfa1ad70
fix dsa self-test
2000-05-26 23:05:05 +00:00
mcgreer%netscape.com
746aedde1f
* allow a directory for tests to be specified
...
* separate pqg generation for dsa test
* fix dsa self-test
2000-05-26 23:04:47 +00:00
thayes%netscape.com
1c2a9791e8
Put SDR changes on the tip. These changes include:
...
+ support for generic handling of messages on threads (msgthread.*)
+ add set_db_password form handling to control connection (temporary)
+ add SDR functions (Encrypt and Decrypt) and Changepassword to MISC category
+ checkin prototypes for trigger.js and install.js (parts of PSM installation)
2000-05-26 22:34:36 +00:00
thayes%netscape.com
27d1adc752
Initial version of the PK11 wrappers for SDR. This version uses a fixed key id (0)
...
and and 3DES key value.
2000-05-26 22:24:01 +00:00
mcgreer%netscape.com
d5c80d5666
self-test
2000-05-26 07:53:38 +00:00
mcgreer%netscape.com
0b167f4b76
self-test
2000-05-26 07:48:19 +00:00
mcgreer%netscape.com
8fef6c639b
Fix up the hashes to only use one mode. Add self-test capability to bltest (test each of the BLAPI functions). DSA self-test not working at this time.
2000-05-26 07:41:22 +00:00
mcgreer%netscape.com
6a074fdf4a
Allow any build to use moz_import rule. mozilla dbm uses different lib name, so copy it over.
2000-05-25 23:10:35 +00:00
nelsonb%netscape.com
bdcd27c9cb
Use the -g keysize value, instead of DES_KEY_LENGTH, for all crypto
...
algorithms except DES and 3DES.
2000-05-25 22:42:23 +00:00
nelsonb%netscape.com
34ae72b37f
Simplify and speed up client cache expiration detection.
2000-05-24 19:28:27 +00:00
nelsonb%netscape.com
a57f63746a
Correct the implementation of the options for disabling SSL2, SSL3 and TLS.
...
Add a new -R option to selfserv, which disables detection of rollback from
TLS to SSL3.0. This is necessary for testing with broken TLS clients.
2000-05-24 03:44:50 +00:00
nelsonb%netscape.com
0ea2ec3f99
Fix the logic in client and server to detect version roll-back attack,
...
rolling back from TLS (SSL 3.1) to SSL 3.0. Provide a new SSL socket
option to disable roll-back detection in servers, since certain TLS
clients are doing it incorrectly.
2000-05-24 03:35:23 +00:00
nelsonb%netscape.com
d14a82cbb8
Changes in support of corrected TLS rollback detection.
2000-05-24 03:31:44 +00:00
nelsonb%netscape.com
a113e9ad8a
Fix a transcription error that caused a crash.
2000-05-24 02:22:18 +00:00
mcgreer%netscape.com
1f8008ee85
Added calls for BSAFE 5.0
2000-05-23 22:15:25 +00:00
mcgreer%netscape.com
5d1cd52439
break a long rsa message into key-sized blocks for testing.
2000-05-23 20:01:31 +00:00
javi%netscape.com
9ccc1d638c
Look for libnecko_res.so instead of libnecko_resource.so on UNIX platforms.
2000-05-23 16:45:01 +00:00
javi%netscape.com
63c73ce255
Trick xpcom world into treating psm just as it would mozilla.
2000-05-23 01:14:39 +00:00
javi%netscape.com
db923c030e
Don't link against libraries we don't need.
2000-05-22 17:34:42 +00:00
chrisk%netscape.com
cc9a75cd14
Added RFC2630 OID values:
...
SEC_OID_CMS_EPHEMERAL_STATIC_DIFFIE_HELLMAN = id-alg-ESDH
SEC_OID_CMS_3DES_KEY_WRAP = id-alg-CMS3DESwrap
SEC_OID_CMS_RC2_KEY_WRAP = id-alg-CMSRC2wrap
2000-05-22 15:28:22 +00:00
chrisk%netscape.com
8a40c748ac
Added SEC_ASN1DecodeInteger function
2000-05-22 15:24:20 +00:00
cotter%netscape.com
cb9767f89b
Revised section on Personal Security Password w/ SDR info, plus related glossary items.
2000-05-20 01:23:34 +00:00
mcgreer%netscape.com
ebf9115175
hash performance functions now look the same as the other ciphers. add a zerobuffer option to avoid creating random buffers when performance testing.
2000-05-19 22:50:48 +00:00
nelsonb%netscape.com
7e2567dffc
Performance enhancement. Takes only 70% as long as previous version.
2000-05-19 22:14:38 +00:00
mcgreer%netscape.com
be99cf056a
fix up the mode arrays.
2000-05-19 21:02:05 +00:00
ddrinan%netscape.com
c240cfe275
Fixed server_cert_view_buttons. Bugzilla 36129
2000-05-19 20:39:06 +00:00
mcgreer%netscape.com
2e902ef580
work on making test program more usable.
...
* added usage
* chaining modes and stream ciphers reset contexts when doing multiple iterations for performance testing
2000-05-19 20:34:05 +00:00
javi%netscape.com
f0aa5464ee
Have the current directory in the LD_LIBRARY_PATH first so that the shared
...
objects in the current directory are loaded before others that may be in
the LD_LIBRARY_PATH
2000-05-19 20:14:03 +00:00
nelsonb%netscape.com
5875fc4cc5
Add support for sha1. Add repetition count argument to -p.
2000-05-19 18:35:53 +00:00
javi%netscape.com
bc8642ed53
Use the correct type of comments for the start-psm script.
2000-05-19 17:19:59 +00:00
javi%netscape.com
a63c7ba265
Make sure the strings we get for configuring PKCS11 are the correct length.
...
This way the names we provide for the token name and such will stick.
2000-05-19 17:13:05 +00:00
nelsonb%netscape.com
b486d9d3d5
Fix sha_fast for 64-bit solaris and 64-bit Alpha.
2000-05-19 02:10:33 +00:00
ddrinan%netscape.com
661c50b256
Remove reference to NLS library
2000-05-19 00:16:20 +00:00