aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Collapse)AuthorAgeFilesLines
* Move all the various X509 test data files under src/tests/data/x509Jack Lloyd2017-11-16659-41/+41
|
* Fix a memory leak in the case where certificate extension decoding fails.Jack Lloyd2017-11-162-30/+33
| | | | | | Introduced in #884 Found by OSS-Fuzz (bug 4249)
* Correct CAST-128 decryption with more than 1 blockJack Lloyd2017-11-162-32/+36
|
* Optimizations for CAST-128Jack Lloyd2017-11-161-45/+135
| | | | | Similarly to Blowfish, 2x unrolling produces a 50-60% perf boost due to increased ILP.
* Optimize BlowfishJack Lloyd2017-11-161-41/+82
| | | | | | | Doing two blocks at a time exposes more ILP and substantially improves performance. Idea from http://jultika.oulu.fi/files/nbnfioulu-201305311409.pdf
* Update ASN.1 fuzzerJack Lloyd2017-11-152-12/+12
|
* Correct handling of nested context specificJack Lloyd2017-11-151-4/+3
|
* Move ASN1 printer to the libraryJack Lloyd2017-11-155-382/+418
|
* Encapsulate ASN1 printer logic in a classJack Lloyd2017-11-151-133/+163
|
* Increase the size of an ASN.1 tag enum to 32-bitsJack Lloyd2017-11-151-1/+1
| | | | Fixes GH #751
* Merge GH #884 Refactor X.509 cert/CRL internalsJack Lloyd2017-11-1534-999/+1630
|\
| * Remove debug abort [ci skip]Jack Lloyd2017-11-141-1/+0
| |
| * Consolidate function for testing for ASN.1 string typesJack Lloyd2017-11-144-34/+25
| |
| * Check for keyCertSign on non-CA certificates during validationJack Lloyd2017-11-141-0/+14
| | | | | | | | GH #1089
| * Catch exceptions in NIST validation testsJack Lloyd2017-11-141-33/+41
| |
| * Fix PKCS10 subject alt name usageJack Lloyd2017-11-145-7/+31
| | | | | | | | GH #1010
| * Add a test for GH #1252Jack Lloyd2017-11-144-1/+61
| |
| * Small cleanups in X509 testsJack Lloyd2017-11-141-22/+41
| |
| * Avoid deprecated functions in FFIJack Lloyd2017-11-141-3/+3
| |
| * Use new APIs in path validation and name constraint handlingJack Lloyd2017-11-142-6/+14
| |
| * Store CRL_Entry data in shared_ptrJack Lloyd2017-11-142-41/+81
| |
| * Store X509_CRL data in shared_ptrJack Lloyd2017-11-142-69/+102
| |
| * Store PKCS10 request data in structureJack Lloyd2017-11-142-65/+85
| |
| * Refactor certificate extension handlingJack Lloyd2017-11-142-274/+441
| |
| * Store all data of an X509 certificate in a shared_ptr data struct.Jack Lloyd2017-11-144-364/+567
| |
| * Use new Decoding_Error constructorJack Lloyd2017-11-141-4/+2
| |
| * Require SHA-2 for X.509 moduleJack Lloyd2017-11-141-0/+1
| | | | | | | | The certstore interface assumes it and it's probably not unreasonable...
| * In X509_CA save the hash function usedJack Lloyd2017-11-142-2/+11
| |
| * Move X509_DN and AlternativeName from asn1 to x509Jack Lloyd2017-11-148-81/+118
| |
* | Remove SIMD perf test from speedJack Lloyd2017-11-151-116/+0
|/ | | | As written it is very bogus and produces wildly incorrect results.
* Fix seek test with OpenSSL RC4Jack Lloyd2017-11-141-1/+1
|
* Support seeking in Salsa20Jack Lloyd2017-11-148-9/+61
| | | | Add a test that StreamCipher::seek throws if not keyed.
* Add OIDS::oid2str and str2oidJack Lloyd2017-11-141-0/+10
| | | | Using the name "lookup" for both directions is confusing.
* Add a second constructor to Decoding_Error which takes an exception string.Jack Lloyd2017-11-142-0/+5
|
* Add <functional> include to TLS headers which use std::functionJack Lloyd2017-11-142-0/+2
|
* Compile fixJack Lloyd2017-11-141-2/+2
|
* Correct issuer field of created CRLsJack Lloyd2017-11-142-6/+6
| | | | Fixes GH #1242
* Use jom via botan-ci-tools repoJack Lloyd2017-11-131-2/+2
| | | | download.qt.io seems to be down ...
* Remove duplicated includeJack Lloyd2017-11-131-1/+0
|
* Remove final on TLS policy objects (GH #1292)Jack Lloyd2017-11-131-4/+4
|
* Missing include: #include <cstdlib> is needed for std::free.Yuri2017-11-111-0/+1
|
* rename cert containing UTF8String consistentlyRené Meusel2017-11-102-1/+1
|
* TEST: read (self signed) cert containing BMPString fieldsRené Meusel2017-11-102-0/+52
|
* Switch test code to use big-endian UCS2/UCS4Jack Lloyd2017-11-091-13/+11
| | | | | | Specifications are somewhat unclear but as best I can tell only big-endian codepoints are allowed and that follows OpenSSL and GnuTLS behavior.
* Remove use of transcodeJack Lloyd2017-11-0911-196/+140
|
* FIX: linker error on windows (VSO#143857)René Meusel2017-11-091-2/+14
|
* FIX: test method namespacingRené Meusel2017-11-091-2/+2
|
* FIX: coding styleRene Meusel2017-11-091-94/+92
|
* add tests for UCS-2/4 parsingRene Meusel2017-11-091-0/+65
|
* add conversion from UCS-2/4 to UTF-8Rene Meusel2017-11-092-13/+47
|