Commit Graph

4859 Commits

Author SHA1 Message Date
Cosmin Sabou
10f46c9c63 no bug - Correct some typos in the comments. a=typo-fix
UPGRADE_NSS_RELEASE
2024-03-31 22:19:29 +03:00
Dennis Jackson
d66895f2f6 Bug 1882353 - land NSS NSS_3_99_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
2024-03-15  Dennis Jackson  <djackson@mozilla.com>

	* doc/rst/releases/index.rst, doc/rst/releases/nss_3_99.rst:
	Add release notes for 3.99
	[3594a1841f43] [NSS_3_99_RTM] <NSS_3_99_BRANCH>

	* lib/nss/nss.h, lib/softoken/softkver.h, lib/util/nssutil.h:
	Set version numbers to 3.99 Final
	[38cf2279b626] <NSS_3_99_BRANCH>

2024-03-14  Dennis Jackson  <djackson@mozilla.com>

	* .hgtags:
	Added tag NSS_3_99_BETA3 for changeset eea89805bde9
	[16c587b77059] <NSS_3_99_BRANCH>

Differential Revision: https://phabricator.services.mozilla.com/D204796
2024-03-15 18:44:25 +00:00
Dennis Jackson
81d5630102 Bug 1882353 - land NSS NSS_3_99_BETA3 UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
Differential Revision: https://phabricator.services.mozilla.com/D204673
2024-03-14 20:07:05 +00:00
John Schanck
e2bf5de2b0 Bug 1875764 - land NSS NSS_3_98_RTM UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D202013
2024-02-15 22:32:01 +00:00
John Schanck
66afa4a9c7 Bug 1875764 - land NSS NSS_3_98_BETA1 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D201860
2024-02-14 20:58:33 +00:00
John Schanck
2769883d70 Bug 1875764 - land NSS ea8a73b6e1e7 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D200850
2024-02-06 17:58:03 +00:00
John Schanck
231b40421b Bug 1875764 - land NSS 90b2040a0eff UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D200221
2024-01-31 23:55:12 +00:00
Benjamin Beurdouche
24b66e2116 Bug 1870290 - land NSS_3_97_RTM, UPGRADE_NSS_RELEASE, r=nkulatova
Differential Revision: https://phabricator.services.mozilla.com/D199206
2024-01-22 09:26:15 +00:00
John Schanck
8e8e91d1a7 Bug 1870290 - land NSS NSS_3_97_BETA1 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D198471
2024-01-16 16:27:07 +00:00
Benjamin Beurdouche
aed0974223 Bug 1870290 - land 660735996d77, UPGRADE_NSS_RELEASE, r=nss-reviewers,nkulatova
Differential Revision: https://phabricator.services.mozilla.com/D196845
2023-12-19 15:02:11 +00:00
Benjamin Beurdouche
60f8910886 Bug 1868774 - land NSS_3_96_RTM, UPGRADE_NSS_RELEASE, r=nkulatova
Differential Revision: https://phabricator.services.mozilla.com/D196540
2023-12-15 09:28:06 +00:00
Dennis Jackson
bd0d81470e Bug 1856659 - land NSS NSS_3_95_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
Differential Revision: https://phabricator.services.mozilla.com/D193810
2023-11-16 22:58:56 +00:00
Dennis Jackson
d827050eee Bug 1856659 - land NSS NSS_3_95_BETA1 UPGRADE_NSS_RELEASE, r=nss-reviewers,bbeurdouche
Differential Revision: https://phabricator.services.mozilla.com/D193535
2023-11-15 22:53:32 +00:00
Sandor Molnar
53139f761e Backed out 2 changesets (bug 1856658, bug 1856659) for causing doc-generate failures UPGRADE_NSS_RELEASE
Backed out changeset 39ecb02fd8de (bug 1856658)
Backed out changeset d9201f9640a1 (bug 1856659)
2023-11-15 19:35:57 +02:00
Dennis Jackson
c41f07c946 Bug 1856659 - land NSS NSS_3_95_BETA1 UPGRADE_NSS_RELEASE, r=nss-reviewers,bbeurdouche
Differential Revision: https://phabricator.services.mozilla.com/D193535
2023-11-15 13:25:02 +00:00
Natalia Kulatova
d3619cd7e8 Bug 1851092 - land NSS NSS_3_94_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
2023-10-02  Natalia Kulatova  <nkulatova@mozilla.com>

	* doc/rst/releases/nss_3_94.rst:
	Documentation: Release notes for NSS 3.94
	[8c67d6c2d718] [NSS_3_94_RTM] <NSS_3_94_BRANCH>

	* .hgtags:
	Added tag NSS_3_94_RTM for changeset a4d8f6ff9c3b
	[18307440cfb0] <NSS_3_94_BRANCH>

	* doc/rst/releases/index.rst:
	Release notes for NSS 3.94
	[a4d8f6ff9c3b] <NSS_3_94_BRANCH>

	* lib/nss/nss.h, lib/softoken/softkver.h, lib/util/nssutil.h:
	Set version numbers to 3.94 final
	[0af23c222caf] <NSS_3_94_BRANCH>

2023-09-21  Benjamin Beurdouche  <beurdouche@mozilla.com>

	* .hgtags:
	Removed tag NSS_3_94_BETA1
	[1a3ea35e31a2]

2023-09-20  Karthikeyan Bhargavan  <karthik.bhargavan@gmail.com>

	* automation/taskcluster/scripts/run_hacl.sh,
	lib/freebl/verified/Hacl_Hash_SHA3.c,
	lib/freebl/verified/Hacl_IntTypes_Intrinsics.h,
	lib/freebl/verified/Hacl_IntTypes_Intrinsics_128.h,
	lib/freebl/verified/Hacl_Krmllib.h, lib/freebl/verified/Hacl_P256.c,
	lib/freebl/verified/internal/Hacl_Bignum_Base.h,
	lib/freebl/verified/internal/Hacl_Hash_SHA1.h,
	lib/freebl/verified/internal/Hacl_Hash_SHA2.h,
	lib/freebl/verified/internal/Hacl_IntTypes_Intrinsics.h,
	lib/freebl/verified/internal/Hacl_IntTypes_Intrinsics_128.h,
	lib/freebl/verified/internal/Hacl_Krmllib.h,
	lib/freebl/verified/internal/Hacl_P256.h,
	lib/freebl/verified/internal/lib_intrinsics.h,
	lib/freebl/verified/karamel/include/krml/internal/target.h, lib/free
	bl/verified/karamel/krmllib/dist/minimal/FStar_UInt_8_16_32_64.h,
	lib/freebl/verified/karamel/krmllib/dist/minimal/Makefile.basic,
	lib/freebl/verified/lib_intrinsics.h:
	Bug 1853737 - Updated code and commit ID for HACL*. r=jschanck

	[3501ba1860c3]

2023-09-20  Iaroslav Gridin  <iaroslav.gridin@tuni.fi>

	* tests/acvp/fuzzed/ecdsa.json:
	Bug 1840510: update ACVP fuzzed test vector: refuzzed with current
	NSS r=jschanck

	[da1cde22e844]

2023-09-15  Robert Relyea  <rrelyea@redhat.com>

	* automation/abi-check/expected-report-libnssutil3.so.txt,
	lib/freebl/nsslowhash.c, lib/freebl/stubs.c, lib/freebl/stubs.h,
	lib/pk11wrap/pk11util.c, lib/softoken/pkcs11.c,
	lib/util/nssutil.def, lib/util/secport.c, lib/util/secport.h:
	Bug 1827303 Softoken C_ calls should use system FIPS setting to
	select NSC_ or FC_ variants.

	NSS softoken presents a PKCS #11 API to the NSS low level crypto.
	This allows NSS to have native support for replacement PKCS #11
	libraries, and is also the FIPS boundary, allowing the rest of NSS
	to change without affecting any FIPS validations.

	Some applications that need crypto, but have their own higher level
	implementations of SSL or S/MIME use NSS softoken. Softoken has 2
	general APIs: NSC_xxxx calls which implement the normal NSS
	interface, but does not include any FIPS restrictions, The FC_xxx
	interfaces which implements FIPS restrictions on the semantics of
	the calls and additional FIPS requirements (like self-tests and
	software integrity checks). The official PKCS #11 APIs are C_xxx
	interfaces, and NSS exports those as aliases for NSC_xxxx calls.

	Right now applications that use softoken have to know the NSS names
	if they want to access the FIPS api. This bugs removes this
	restriction and causes calls to C_xxxx to alias to FC_xxxxx if the
	system is in FIPS mode. If the system has no system FIPS indicator,
	or the that indicator is off, the C_xxxx will continue to call
	NSC_xxxxx. NSS itself will continue to use NSC_xxxx or FC_xxxx
	according to the NSS internal FIPS settings.

	---------------- Currently there are 3 layers in NSS with code that
	identifies the whether the system is in NSS: nss proper (which is
	also exported to applications), and freebl for the Freebl hash
	direct case. This code would add a 3rd (in softoken). Rather than
	adding a third, this patch relocates the main function to nssutil
	where softoken, nss, and freebl can all access it. The exception is
	when building freebl with 'NODEPEND' (freebl can provide hashing
	without dependencies on NSPR or NSSUTIL), there needs to be a stub
	implementation. In most platforms and cases this stub is never
	compiled.

	[762cb673ca8c]

	* .hgignore, automation/taskcluster/scripts/split.sh, cmd/Makefile,
	cmd/dbtool/Makefile, cmd/dbtool/dbtool.c, cmd/dbtool/dbtool.gyp,
	cmd/dbtool/manifest.mn, cmd/manifest.mn, lib/softoken/sdb.h,
	nss.gyp:
	Bug 1774659 NSS needs a database tool that can dump the low level
	representation of the database. r=jschanck

	When debugging the database, it would be helpful to know what is in
	the database is a nicely formated way. certutil dumps a high level
	view of the certs and keys, sqlite3 can dump the low level tables
	and raw entries. It would be useful to dump the database as softoken
	sees the database.

	This code grabs a copy of the latest sdb.c from softoken and uses it
	to fetch the database entries, then parses them as necessary. It
	uses the pkcs11 table in libsec to format the result data into human
	readable strings.

	[e52240a4bc62]

2023-09-08  John Schanck  <jschanck@mozilla.com>

	* gtests/mozpkix_gtest/pkixnames_tests.cpp:
	Bug 1852179 - declare string literals using char in
	pkixnames_tests.cpp. r=nss-reviewers,nkulatova

	[dbed9fc0522a]

Differential Revision: https://phabricator.services.mozilla.com/D189815
2023-10-02 20:43:59 +00:00
John Schanck
c2229f0ab0 Bug 1851092 - land NSS ffcd992581 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D187729
2023-09-08 17:54:17 +00:00
John Schanck
9f2d976706 Bug 1845711 - land NSS NSS_3_93_RTM UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D186856
2023-08-25 16:32:05 +00:00
John Schanck
ae9ae9b8c9 Bug 1845711 - land NSS NSS_3_93_BETA1 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D186738
2023-08-23 22:56:22 +00:00
Natalia Kulatova
ec5057c133 Bug 1841111 - land NSS NSS_3_92_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,bbeurdouche
Differential Revision: https://phabricator.services.mozilla.com/D184676
2023-07-27 14:08:08 +00:00
Natalia Kulatova
e2b607f89a Bug 1841111 - land NSS NSS_3_92_BETA1 UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
Differential Revision: https://phabricator.services.mozilla.com/D184127
2023-07-20 18:39:05 +00:00
Dennis Jackson
29991df32d Bug 1840365 - land NSS NSS_3_91_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,nkulatova
Differential Revision: https://phabricator.services.mozilla.com/D182477
2023-06-29 15:41:21 +00:00
Dennis Jackson
0e01bdd4fd Bug 1840365 - land NSS NSS_3_91_BETA1 UPGRADE_NSS_RELEASE, r=nss-reviewers,nkulatova
Differential Revision: https://phabricator.services.mozilla.com/D182043
2023-06-28 09:05:08 +00:00
Benjamin Beurdouche
7c0f6b69bf Bug 1821434 - land NSS NSS_3_90_RTM UPGRADE_NSS_RELEASE, r=beurdouche
Differential Revision: https://phabricator.services.mozilla.com/D179888
2023-06-04 12:13:17 +00:00
Benjamin Beurdouche
3b5631e630 Bug 1821434 - land NSS NSS_3_90_BETA1 UPGRADE_NSS_RELEASE, r=nkulatova
Differential Revision: https://phabricator.services.mozilla.com/D179063
2023-05-25 12:00:46 +00:00
Dennis Jackson
94259a5334 Bug 1831621 - land NSS NSS_3_89_1_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
2023-05-05  Dennis Jackson  <djackson@mozilla.com>

	* lib/nss/nss.h, lib/softoken/softkver.h, lib/util/nssutil.h:
	Update version numbers for 3.89.1
	[c8e02a52aa19] [NSS_3_89_1_RTM] <NSS_3_89_BRANCH>

	* doc/rst/releases/index.rst, doc/rst/releases/nss_3_89_1.rst:
	Release notes for NSS 3.89.1
	[a307f96a6393] <NSS_3_89_BRANCH>

	* lib/certdb/genname.c:
	Bug 1804505 - Update the technical constraints for KamuSM. r=nss-
	reviewers,jschanck

	Depends on D177241

	[8ecf3800477c] <NSS_3_89_BRANCH>

	* lib/ckfw/builtins/certdata.txt:
	Bug 1822921 - Add BJCA Global Root CA1 and CA2 root certificates
	r=nss-reviewers,jschanck

	[867cbe6fe3dc] <NSS_3_89_BRANCH>

2023-03-09  John M. Schanck  <jschanck@mozilla.com>

	* .hgtags:
	Added tag NSS_3_89_RTM for changeset 4e4ebb9ad0d4
	[10f62eeede42] <NSS_3_89_BRANCH>

Differential Revision: https://phabricator.services.mozilla.com/D177296
2023-05-05 23:38:42 +00:00
John Schanck
c738d5a247 Bug 1815435 - land NSS NSS_3_89_RTM UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D172164
2023-03-09 23:07:34 +00:00
John Schanck
4728b65771 Bug 1815435 - land NSS NSS_3_89_BETA4 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D171916
2023-03-08 00:15:30 +00:00
Cristian Tuns
260d13ed8e Backed out changeset 48c77e0f9262 (bug 1815435) for causing xpcshell failures in test_cert_overrides.js CLOSED TREE UPGRADE_NSS_RELEASE 2023-03-06 16:33:38 -05:00
John Schanck
7800d03501 Bug 1815435 - land NSS NSS_3_89_BETA3 UPGRADE_NSS_RELEASE, r=djackson
Differential Revision: https://phabricator.services.mozilla.com/D171757
2023-03-06 20:17:40 +00:00
Sandor Molnar
d5d3dff294 Backed out changeset 692727a38d4d (bug 1815435) for causing build bustage in /security/nss/lib/ssl/ssl3ext.c UPGRADE_NSS_RELEASE CLOSED TREE 2023-03-03 01:54:42 +02:00
John Schanck
4008eb15f1 Bug 1815435 - land NSS NSS_3_89_BETA1 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D171511
2023-03-02 23:31:19 +00:00
John Schanck
661316289a Bug 1815978 - land NSS NSS_3_88_1_RTM UPGRADE_NSS_RELEASE, r=keeler
2023-02-09  John M. Schanck  <jschanck@mozilla.com>

	* doc/rst/releases/nss_3_88_1.rst:
	Documentation: release notes for NSS 3.88.1
	[35df50f6b615] [NSS_3_88_1_RTM] <NSS_3_88_1_BRANCH>

	* lib/nss/nss.h, lib/softoken/softkver.h, lib/util/nssutil.h:
	Set version numbers to 3.88.1 final
	[3f59586e1b37] <NSS_3_88_1_BRANCH>

	* lib/pkcs12/p12d.c, lib/pkcs12/p12t.h, lib/pkcs12/p12tmpl.c:
	Bug 1804640 - improve handling of unknown PKCS#12 safe bag types.
	r=rrelyea

	[684586ec163a] <NSS_3_88_1_BRANCH>

2023-02-09  Anna Weine  <anna.weine@mozilla.com>

	* .hgtags:
	Added tag NSS_3_88_RTM for changeset da9f14b8cc9d
	[58d7a8a55aea] <NSS_3_88_BRANCH>

Differential Revision: https://phabricator.services.mozilla.com/D169387
2023-02-09 22:09:46 +00:00
Natalia Kulatova
d75ae44888 Bug 1808725 - land NSS NSS_3_88_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
Differential Revision: https://phabricator.services.mozilla.com/D169333
2023-02-09 17:25:14 +00:00
Natalia Kulatova
6940237fdb Bug 1808725 - land NSS NSS_3_88_BETA1 UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
Differential Revision: https://phabricator.services.mozilla.com/D167294
2023-01-19 19:22:53 +00:00
Dennis Jackson
d5b0265d37 Bug 1805486 - land NSS NSS_3_87_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,bbeurdouche
Differential Revision: https://phabricator.services.mozilla.com/D166083
2023-01-05 16:31:20 +00:00
Dennis Jackson
93d4366b2d Bug 1805486 - land NSS NSS_3_87_BETA1 UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
Differential Revision: https://phabricator.services.mozilla.com/D164919
2022-12-16 18:33:28 +00:00
John Schanck
7f3ed4068d Bug 1802996 - land NSS NSS_3_86_RTM UPGRADE_NSS_RELEASE, r=bbeurdouche
Differential Revision: https://phabricator.services.mozilla.com/D164263
2022-12-08 20:51:52 +00:00
John Schanck
282382a80f Bug 1802996 - land NSS NSS_3_86_BETA1 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D163641
2022-12-03 21:47:31 +00:00
Cristian Tuns
5eaed27bd7 Backed out changeset 4534fc16cb5c (bug 1802996) for causing multiple failures UPGRADE_NSS_RELEASE CLOSED TREE 2022-12-01 18:47:20 -05:00
John Schanck
399c57a914 Bug 1802996 - land NSS NSS_3_86_BETA1 UPGRADE_NSS_RELEASE, r=keeler
Differential Revision: https://phabricator.services.mozilla.com/D163641
2022-12-01 21:41:21 +00:00
Natalia Kulatova
629bf33150 Bug 1795087 - land NSS NSS_3_85_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
Differential Revision: https://phabricator.services.mozilla.com/D161765
2022-11-10 18:18:29 +00:00
Natalia Kulatova
c101e3d2ac Bug 1795087 - land NSS NSS_3_85_BETA1 UPGRADE_NSS_RELEASE, r=nss-reviewers,djackson DONTBUILD
Differential Revision: https://phabricator.services.mozilla.com/D161145
2022-11-03 15:38:32 +00:00
John Schanck
d11dd7596d Bug 1795087 - land NSS 4684102858e2 UPGRADE_NSS_RELEASE, r=nss-reviewers,nkulatova
2022-10-31  John M. Schanck  <jschanck@mozilla.com>

	* lib/util/secoid.c:
	Bug 1798150 - on-demand initialization of OID tables. r=nss-
	reviewers,nkulatova

	[4684102858e2] [tip]

2022-10-31  Anna Weine  <anna.weine@mozilla.com>

	* lib/freebl/mpi/primes.c, lib/ssl/dhe-param.c:
	Bug 1792821 - Modification of the primes.c and dhe-params.c in order
	to have better looking tables r=jschanck

	[e512213db1c6]

2022-10-25  John M. Schanck  <jschanck@mozilla.com>

	* doc/rst/releases/index.rst, doc/rst/releases/nss_3_79_2.rst:
	Documentation: Release notes for NSS 3.79.2
	[ea50dc1087db]

Differential Revision: https://phabricator.services.mozilla.com/D160812
2022-10-31 16:41:42 +00:00
John Schanck
968bd89420 Bug 1795087 - land NSS bed3afeff7fd UPGRADE_NSS_RELEASE, r=nss-reviewers,bbeurdouche
Differential Revision: https://phabricator.services.mozilla.com/D160258
2022-10-27 18:15:15 +00:00
Dennis Jackson
0e750e0b2e Bug 1792135 - land NSS NSS_3_84_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,jschanck
Differential Revision: https://phabricator.services.mozilla.com/D159278
2022-10-13 15:29:32 +00:00
Dennis Jackson
7da0562237 Bug 1792135 - land NSS NSS_3_84_BETA1 UPGRADE_NSS_RELEASE, r=nss-reviewers,nkulatova
Differential Revision: https://phabricator.services.mozilla.com/D158772
2022-10-06 22:47:02 +00:00
John Schanck
ef80532ec8 Bug 1787505 - land NSS NSS_3_83_RTM UPGRADE_NSS_RELEASE, r=nss-reviewers,bbeurdouche
Differential Revision: https://phabricator.services.mozilla.com/D157510
2022-09-15 19:24:37 +00:00
John Schanck
262ca63d8f Bug 1787505 - land NSS NSS_3_83_BETA2 UPGRADE_NSS_RELEASE, r=nss-reviewers,djackson
Differential Revision: https://phabricator.services.mozilla.com/D156982
2022-09-13 16:39:55 +00:00
Cosmin Sabou
ecfd7cff79 Backed out changeset 7dd0bcf1eeed (bug 1787505) for causing mass mochitest failures. r=land NSS NSS_3_83_BETA1 UPGRADE_NSS_RELEASE CLOSED TREE 2022-09-09 01:53:53 +03:00