kaie%kuix.de
9111eebbc0
Bug 348259, "Flag" strings, not shown in UI, stored in properties file
...
r=rrelyea
2006-09-01 19:12:01 +00:00
kaie%kuix.de
b78b66f628
bug 350512, Frequent error message: OCSP server error
...
r=rrelyea
2006-09-01 18:11:50 +00:00
wtchang%redhat.com
c89e1aadf1
Bugzilla Bug 349609: sftk_MACUpdate only works with multi-part operations.
...
r=glen.beasley,relyea.
2006-09-01 17:07:59 +00:00
kaie%kuix.de
26887466a9
Backing out patch for bug 326159, as it causes breakage on mac tinderbox
2006-08-31 23:02:55 +00:00
glen.beasley%sun.com
53cbd62fa5
fix warnins on redhat4
2006-08-31 22:26:58 +00:00
kaie%kuix.de
dce11b028e
Bug 326159, enhance cert request generation using KEYGEN tag and JS function crypto.generateCRMFRequest
...
r=rrelyea
Portions of this patch originally appeared in bug 235773 and were contributed by Sheueling Chang / Vipul Gupta / Douglas Stebila
2006-08-31 21:56:25 +00:00
glen.beasley%sun.com
7883876093
initial checkin of pk11mode.c FIPS test program work in progress
2006-08-31 17:55:18 +00:00
nelson%bolyard.com
39ed376b7a
When verifying a signed digest, ensure that the digest is DER encoded and
...
that there is no extra stuff after the DER encoded digest. Bug 350640.
r=julien.pierre,rrelyea
2006-08-31 03:54:48 +00:00
alexei.volkov.bugs%sun.com
d64e3427a6
337013: OOM crash [@ nssArena_Destroy - nssTrustDomain_TraverseCertificatesBySubject][@ nssArena_Destroy - nssTrustDomain_TraverseCertificatesByNickname] Dereferencing possibly NULL "tmpArena". r=nelson, sr=julien
2006-08-30 17:57:20 +00:00
glen.beasley%sun.com
4e8368c564
349965 added ECDSA key gen to power up self test r=wtc
2006-08-29 16:57:18 +00:00
nelson%bolyard.com
9b9542f673
Correctly zero-fill columns in weaved array. r=julien,wtchang. Bug 348359.
2006-08-29 02:41:38 +00:00
wtchang%redhat.com
531fe85b65
Bugzilla Bug 349632: made C_Verify work for multi-part mechanisms.
...
r=glen.beasley,relyea.
2006-08-26 01:49:48 +00:00
alexei.volkov.bugs%sun.com
f28d70066b
330056: seckey_put_private_key leaks memory. r=nelson, sr=wtc
2006-08-25 23:04:15 +00:00
alexei.volkov.bugs%sun.com
fdc6b5e64b
304361: smime: possible memory corruption when encoding/decoding smime_encryptionkeypref_template. r=nelson, sr=wtc
2006-08-25 22:26:18 +00:00
wtchang%redhat.com
6053e0ef78
Bugzilla bug 336813: do not set the nonstandard flag CKF_THREAD_SAFE. Set
...
CKF_DUAL_CRYPTO_OPERATIONS and the new v2.10 flag CKF_TOKEN_INITIALIZED.
r=relyea.
2006-08-24 22:52:21 +00:00
nelson%bolyard.com
e356cbee97
re-enable SSLTRACE for keys and (pre)master secrets. Bug 349966. r=rrelyea
2006-08-24 22:10:03 +00:00
julien.pierre.bugs%sun.com
a4dde368cc
Back out Slavo's patch for bug 332222 in ssl.sh because tinderbox fails.
2006-08-24 19:48:08 +00:00
kaie%kuix.de
dccd3d8db7
Bug 340359, SSL Server stalls on v3 hello using TLS hello extensions
...
r=darin
2006-08-24 18:14:40 +00:00
kaie%kuix.de
56009fa348
Bug 86988, Sorting in certificate manager should be case insensitive
...
r=rrelyea
2006-08-24 18:06:43 +00:00
julien.pierre.bugs%sun.com
602921c658
Allow ssl.sh to support mixed ECC/RSA certs. Patch created by Slavomir Katuscak. r=nelson, rrelyea
2006-08-24 17:48:52 +00:00
julien.pierre.bugs%sun.com
f333b2e5a9
Fix for bug 332222 . Allow ssl.sh to support mixed ECC/RSA certs. Patch created by Slavomir Katuscak. r=nelson, rrelyea
2006-08-23 23:32:01 +00:00
julien.pierre.bugs%sun.com
a1e82132f0
Fix for bug 349920 . Don't optimize freebl libraries in debug build on Sparc . r=nelson, neil.williams
2006-08-23 22:56:20 +00:00
glen.beasley%sun.com
54fe81481a
349632 C_VerifyUpdate HMAC fix r=wtc,sr=bobR
2006-08-23 21:46:23 +00:00
julien.pierre.bugs%sun.com
45f5a763d7
Fix for bug 225525 . Resolve race assigning NSSCertificate fields which leaked memory and slot reference. r=nelson
2006-08-22 22:54:11 +00:00
nelson%bolyard.com
80a2861232
Fix race in CERT_NewTempCertificate. Bug 341323. r=julien,rrelyea
2006-08-22 03:30:14 +00:00
wtchang%redhat.com
98f2c3bf81
Bugzilla Bug 342476: backed out the previous checkin. Not sure if it's a
...
good idea.
2006-08-18 23:28:10 +00:00
wtchang%redhat.com
faf581ad29
Backed out the unnecessary change in the previous checkin.
2006-08-18 22:56:18 +00:00
wtchang%redhat.com
894326bb94
Bugzilla Bug 342476: NSS should set and check the pReserved field in the
...
(extended) CK_C_INITIALIZE_ARGS structure. r=nelsonb,relyea.
Modified files: pk11wrap/pk11load.c softoken/pkcs11.c
2006-08-18 22:48:41 +00:00
wtchang%redhat.com
1e8aeab6bb
Bugzilla Bug 349011: marked local functions as static. The patch is
...
contributed by timeless <timeless@bemail.org>. r=wtc.
Modified files: crmfcont.c crmfpop.c crmfreq.c
2006-08-18 22:21:34 +00:00
mrbkap%gmail.com
35e1f424c5
Propagate the exception out. bug 349241, r=kaie sr=jst
2006-08-18 22:07:14 +00:00
wtchang%redhat.com
95ac6854cf
Bugzilla Bug 53427: Added PORT_ArenaZRelease and change secasn1d.c to zero
...
our_pool before releasing or freeing it. r=nelsonb,jpierre.
Modified files: secasn1d.c secport.c secport.h
2006-08-15 23:56:01 +00:00
wtchang%redhat.com
b5aacc0a96
Bugzilla Bug 325148: worked around the change of backslash-newline behavior
...
inside single-quoted strings in GNU make 3.81. The patch is contributed by
Pawel Chmielowski <prefiks@aviary.pl>. r=benjamin.smedberg,wtc.
2006-08-15 21:35:25 +00:00
wtchang%redhat.com
3e79aee9fe
Bugzilla Bug 53427: passed the correct 'zero' argument to PORT_FreeArena.
...
Removed dead code. r=nelsonb,relyea.
Modified Files:
softoken/keydb.c softoken/lowpbe.c softoken/pkcs11c.c
util/secdig.c
2006-08-15 01:34:38 +00:00
wtchang%redhat.com
cf0212dd7a
Bugzilla Bug 336813: Improved NSC_GetTokenInfo and FC_GetTokenInfo. Always
...
set CKF_RNG. Set the utcTime member to 16 zeros "0000000000000000".
Factored out the common flag CKF_RNG and CKF_THREAD_SAFE. r=nelsonb,relyea.
Modified files: fipstokn.c pkcs11.c
2006-08-14 17:52:31 +00:00
wtchang%redhat.com
a480328757
Bugzilla Bug 347409: removed the on-demand initiation of the FIPS power-up
...
self-tests from FC_Login. We now require the user to shut down and restart
the softoken to initiate the power-up tests on demand. r=nelsonb.
2006-08-14 17:05:31 +00:00
wtchang%redhat.com
a99d5c47c1
Bugzilla Bug 53427: PORT_FreeArena should zero memory before freeing it if
...
the 'zero' argument is true. r=nelsonb.
2006-08-14 16:56:39 +00:00
tony%ponderer.org
88af674fb3
fix bustage
2006-08-12 07:08:36 +00:00
tony%ponderer.org
26ad79b5fb
bug 337733: implement an rc4 xpcom interface and key object
...
patch: nsIKeyObject and nsIKeyObjectFactory and nsIStreamCipher
r=darin,sr=rrelyea
2006-08-12 06:39:47 +00:00
kaie%kuix.de
e7f6dd96e7
Bug 316837, crash in [@ strchr - nsNSSCertificateDB::getCertNames] on cert without nickname
...
r=rrelyea
2006-08-10 19:26:06 +00:00
julien.pierre.bugs%sun.com
e75f2dc686
Fix for bug 178894 . Unbreak build.
2006-08-07 20:48:04 +00:00
kaie%kuix.de
881d9c2167
Bug 342646, Trunk crashes while opening HTTPS links with Ad Muncher running
...
r=rrelyea
2006-08-07 20:15:45 +00:00
kaie%kuix.de
7b36815896
Bug 346551, init SECItem derTemp in crmf_encode_popoprivkey
...
r=wtchang
2006-08-07 20:02:59 +00:00
julien.pierre.bugs%sun.com
76317a1b0e
Fix for bug 178894 . Quick decoder updates for lib/certdb and lib/certhigh . r=nelson .
2006-08-07 19:09:41 +00:00
wtchang%redhat.com
1c8293b7fb
Bugzilla Bug 316369: support building JSS on Mac OS X. The patch is
...
contributed by Nathin Kinder <nkinder@redhat.com>. r=wtc.
Modified files: coreconf/jdk.mk jss/lib/config.mk
2006-08-05 01:27:41 +00:00
julien.pierre.bugs%sun.com
6d267dce80
Fix for bug 177184 . NSS_CMSDecoder_Cancel might have a leak . And this patch might fix it, or not. But this bug needs to be put to rest.
2006-08-05 01:19:23 +00:00
wtchang%redhat.com
fed6abf266
Bugzilla Bug 347024: Moved the software integrity test from
...
nsc_CommonInitialize to the new function sftk_fipsSoftwareIntegrityTest
and have sftk_fipsPowerUpSelfTest call sftk_fipsSoftwareIntegrityTest.
Updated the audit logging code. Removed an extraneous comma between two
string literals in fipstokn.c. r=relyea,nelsonb.
Modified files: fipstest.c fipstokn.c pkcs11.c
2006-08-03 21:50:51 +00:00
wtchang%redhat.com
acaeb20a50
Bugzilla Bug 336509: put the FIPS token in the Error state only when the
...
continuous RNG test fails.
2006-07-31 18:31:07 +00:00
wtchang%redhat.com
48090e59a8
Bugzilla Bug 336509: check for continuous RNG test failure after direct and
...
indirect uses of the RNG. r=relyea,nelsonb.
Modified files: fipstokn.c keydb.c pkcs11.c pkcs11c.c pkcs11i.h rsawrapr.c
softoken.h
2006-07-31 18:10:17 +00:00
gavin%gavinsharp.com
233fb74755
Bug 343253: Improve unknown cert issuer dialog, r=kaie, sr=neil, ui-r=beltzner
2006-07-31 17:37:50 +00:00
wtchang%redhat.com
adfb2d0b34
Bugzilla bug 336509: Made prng_GenerateGlobalRandomBytes static because
...
it's only used in this file. r=neil.williams.
2006-07-29 00:28:12 +00:00
wtchang%redhat.com
b843464eb3
Bugzilla Bug 345502: C89 doesn't allow initializing a local array. Fixed
...
some array sizes. The patch is contributed by Glen Beasley of Sun. r=wtc.
2006-07-28 20:45:01 +00:00
wtchang%redhat.com
40a16f74c9
Bugzilla Bug 345941: fixed another bug that we might pass uninitialized
...
'req' to fclose(). Thanks to Wolfgang Rosenauer <mozilla@rosenauer.org> for
reporting the bug and reviewing the patch.
2006-07-28 20:19:02 +00:00
wtchang%redhat.com
97881e483f
Bugzilla Bug 345941: fixed the bug that we might pass uninitialized 'req'
...
to fclose(). r=glen.beasley. Thanks to Wolfgang Rosenauer
<mozilla@rosenauer.org> for the bug report.
2006-07-27 16:56:56 +00:00
wtchang%redhat.com
ee588c0e0d
Bugzilla Bug 345775: use SECITEM_FreeItem(..., PR_TRUE) to completely free
...
the SECItem allocated in getECParams. r=alexei.volkov.
2006-07-27 00:33:23 +00:00
wtchang%redhat.com
fcc85009ca
Bugzilla Bug 345779: removed two useless assignments and fixed an error in
...
the comment. r=douglas.stebila.
2006-07-26 23:17:46 +00:00
glen.beasley%sun.com
c240d4542b
345502 RNG power up selftest r=wtc
2006-07-24 03:54:09 +00:00
nelson%bolyard.com
e923291d6e
Correct ifdefs so that non-ECC builds will continue to build correctly.
...
r=wtchang bug 341707.
2006-07-20 00:17:23 +00:00
martijn.martijn%gmail.com
f066730c4e
Bug 344689 - CertViewer is missing some accesskeys, patch by Giacomo Magnini, r=kengert, sr=neil
2006-07-19 10:22:56 +00:00
nelson%bolyard.com
aa48d36259
Curve-limited clients must not negotiate ECC ciphersuites unless they send the supported curve extension. This means that when they are nogotiating SSL 3.0
...
and not TLS, they should not negotiate ECC ciphersuites at all.
Bug 341707. r=rrelyea.
2006-07-19 01:40:17 +00:00
nelson%bolyard.com
7cb9a6798d
Workaround bogus assertion failure in MSVC 8 (Express, 2005) RTL by switching
...
from the old _findfirst, _findnext file enumeration API to the newer
FindFirstFile, FindNextFile API. Might be slower, but won't crash if it finds
files older than 1970. Bug 331404. r=julien.pierre
2006-07-19 01:33:41 +00:00
nelson%bolyard.com
916abfcc17
Coverity bug 340217. Fix leak, crash, and failure to set error codes in
...
CMMF_POPODecKeyChallContDecryptChallenge. r=alexei.volkov
2006-07-19 00:44:02 +00:00
nelson%bolyard.com
4fde45d139
Remove FORTEZZA code from this file. Coverity CID 874. r=rrelyea.
2006-07-19 00:36:38 +00:00
nelson%bolyard.com
29bf58a380
Remove dead function SECU_GetPBEPassword from nss/cmd/lib/secutil.*
...
Patch contributed by Jon Smirl <jonsmirl@gmail.com>
Coverity CID 516. Bug 337081. r=nelson@bolyard.com
2006-07-19 00:21:12 +00:00
douglas%stebila.ca
3e2150fc10
Bugzilla Bug 338367: Turn GF2M_POPULATE and GFP_POPULATE macros into functions. r+=wtchang
2006-07-19 00:14:31 +00:00
nelson%bolyard.com
4769c68bf6
Stop using EXTENSION_NOT_FOUND error in OCSP code. r=julien. bug 287850.
2006-07-19 00:08:52 +00:00
wtchang%redhat.com
49af285a1d
Bugzilla bug 295291: regenerated using the new certdata.perl script.
2006-07-18 23:38:14 +00:00
gavin%gavinsharp.com
fc3ede786a
Bug 174699: hot key for Tool-Page Info-Security tab doesn't work, patch by Giacomo Magnini <giacomo.magnini@portalis.it>, r=iann/kaie
2006-07-18 16:28:16 +00:00
alexei.volkov.bugs%sun.com
664d338da2
334459: Variable "(cache)->sharedCache" tracked as NULL was passed to a function that dereferences it. [@ CloseCache - InitCache]. r=nelson
2006-07-17 22:14:48 +00:00
alexei.volkov.bugs%sun.com
9ea0404651
341291: Coverity 689 - potential NULL ptr crash in ssl3_SendCertificate. r=nelson
2006-07-17 22:08:03 +00:00
alexei.volkov.bugs%sun.com
4d331091de
341120: Coverity 541 nss_cms_recipients_traverse leaks "rle". r=nelson
2006-07-17 21:57:35 +00:00
alexei.volkov.bugs%sun.com
8191f90940
341115: Multiple NULL ptr dereferences in nss/lib/base/arena.c. r=nelson
2006-07-17 21:51:32 +00:00
wtchang%redhat.com
f656732765
Bugzilla Bug 295291: removed the unused variable 'a' and sort the
...
definitions of constants in certdata.c. r=nelsonb.
2006-07-17 16:50:45 +00:00
kaie%kuix.de
1ea9ecb85c
Bug 343682, crash in libcrmf with ecc
...
patch=rrelyea, r=kengert, r=nelson
2006-07-13 20:59:51 +00:00
bugzilla%standard8.demon.co.uk
6561bbcbf8
Bug 343395 Help buttons not displayed on SeaMonkey when build as an xul application (MOZ_XUL_APP=1). r=kaie,sr=Neil
2006-07-13 18:59:37 +00:00
richm%stanfordalumni.org
44c9f4a25e
Bump spec rev to 3
...
Remove unneeded buildrequires perl, gawk, sed
Remove leading / from path macros
Remove provides for package name - done automatically
Move pkgconfig file stuff under install
Added LICENSE and README under docs
2006-07-13 18:10:21 +00:00
darin%meer.net
7a6fd67f05
fixes bug 343223 "On Mozilla trunk (1.9 +) cert viewer does no longer display verification info" r=kengert
2006-07-11 19:13:59 +00:00
kaie%kuix.de
323c869df4
bug 236933, add on patch to address l10n review comments, renames string ids
...
r=l10n
2006-07-04 10:48:48 +00:00
hwaara%gmail.com
d8a4a0fe32
Make newserver.js be preprocessed. Fixes bug 343223 and bug 343318. Patch by Regis Caspar <regis.caspar+bz@gmail.com>. r=Mano
2006-07-01 12:55:37 +00:00
kaie%kuix.de
170e16936d
Follow up checkin for bug 336944,
...
address Darin's additional review comments.
2006-07-01 03:33:43 +00:00
kaie%kuix.de
627bde6367
Additional checkin for bug 236933, Patch 5 - strings,
...
in order to improve the error messages on weak crypto sites.
ui-r=beltzner, r=rrelyea
2006-07-01 03:18:34 +00:00
kaie%kuix.de
d1d616ab33
Bug 343230, When retrying on TLS intolerance sites, use SSL v2 compatible hellos
...
r=rrelyea
2006-07-01 03:11:21 +00:00
kaie%kuix.de
e6dde96640
Bug 324474, Revoked S/MIME certificate difficult to detect in received messages
...
r=rrelyea
2006-07-01 02:46:44 +00:00
kaie%kuix.de
ca09c146e6
Bug 335859, "<site> has received an incorrect or unexpected message. Error Code: -12229" when visiting site with SSL2
...
disabled
r=nelson
2006-06-30 21:35:28 +00:00
kaie%kuix.de
cd68486f24
Bug 336944, 100% CPU and delays with https/ssl activity
...
r=rrelyea, sr=darin
2006-06-30 21:26:31 +00:00
kaie%kuix.de
e88e2b934e
Bug 331977, No error dialog is presented if an SSL rehandshake fails
...
r=rrelyea
2006-06-30 21:22:22 +00:00
hwaara%gmail.com
0996d4ce53
bug 342862, Security mismatch dialog hardcodes focusing (which breaks default focus behavior on OS X). r=kengert, sr=neil
2006-06-30 08:43:53 +00:00
kaie%kuix.de
11aa2b0a5d
Bug 334293, nextUpdate used uninitialized in nsCRLInfo::nsCRLInfo if crl->nextUpdate.len == 0
...
r=rrelyea
2006-06-30 03:04:10 +00:00
kaie%kuix.de
a967c15213
Bug 337345, Leak in nsCrypto::GenerateCRMFRequest
...
r=rrelyea
2006-06-30 02:59:19 +00:00
nelson%bolyard.com
b8434c2963
Remove ndbm.* files from dbm. r=wtchang, bug 175741.
2006-06-29 04:53:59 +00:00
julien.pierre.bugs%sun.com
1bf725b1cb
Fix for bug 341708 . Have client send alert if it detects an invalid server key exchange. r=nelson
2006-06-28 21:15:04 +00:00
wtchang%redhat.com
1360e00abe
Bugzilla Bug 338798: use PR_FindFunctionSymbol to look up function
...
symbols. r=alexei.volkov,nelson.
Modified files: freebl/loader.c softoken/dbinit.c
2006-06-26 23:42:59 +00:00
wtchang%redhat.com
ab411b37bd
Bugzilla Bug 338798: in C89, local struct variables can only be initialized
...
by constant expressions. HP C compiler version B.11.11.08 generates
incorrect code silently if the initializers are non-constant expressions.
r=alexei.volkov,julien.pierre.
Modified files: cmd/crmftest/testcrmf.c lib/ssl/ssl3con.c
2006-06-26 23:32:19 +00:00
kaie%kuix.de
189631b3b1
Bug 337486, mismatch between PK11_FindCertFromNickname and FindCerts
...
r=rrelyea, r=julien.pierre
2006-06-26 23:21:07 +00:00
julien.pierre.bugs%sun.com
8f96879c1e
Fix for bug 335748 . Add NSS_ENABLE_ECC and NSS_ECC_MORE_THAN_SUITE_B build macros. r=nelson, rrelyea
2006-06-26 21:16:54 +00:00
kaie%kuix.de
1b1f520e94
Bug 310446, Add a user feedback message when certs for import are being ignored
...
also fixes
Bug 176507, Certificates added without warning or confirmation
r=rrelyea, string-review=beltzner
2006-06-26 17:13:13 +00:00
richm%stanfordalumni.org
cdb2569d80
bump spec revision to 2
2006-06-26 15:16:39 +00:00
timeless%mozdev.org
a64f704309
Bug 309877 PSM/NSS init (thus SSL/https) fails when no profile exists
...
original patch by benb r=rrelyea moa=kaie
2006-06-25 07:12:44 +00:00
mrbkap%gmail.com
7b1e11248b
Keep a strong reference to the context that we're operating on. This involves
...
giving the sandbox context an nsISupports private data that controls its
lifetime. bug 337462, r+sr=jst
2006-06-24 04:33:24 +00:00
christophe.ravel.bugs%sun.com
4678ca662e
JSS 4.2.4 release candidate.
2006-06-23 22:32:51 +00:00
rrelyea%redhat.com
3f13baf101
bug 335748 ECC support for Mozilla. r=wtc
2006-06-23 17:01:38 +00:00