Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Enforce that p > q to improve OpenSSL compatibility (fixes #2990) (#3010) | Dirkjan Ochtman | 2016-07-19 | 3 | -3/+6 |
| | |||||
* | Removed provider language from backend interfaces (#3047) | Gabriel Orisaka | 2016-07-18 | 1 | -110/+81 |
| | |||||
* | A few small cleanups (#3046) | Alex Gaynor | 2016-07-18 | 2 | -11/+11 |
| | |||||
* | Add flag to toggle key length check for HOTP and TOTP. (#3012) | Terry Chia | 2016-07-16 | 5 | -6/+34 |
| | | | | | | | | | | * Add an enforce_key_length parameter to HOTP and TOTP. * Document changes in docs. * Add some words to the wordlist. * Add versionadded to docs. | ||||
* | Add OPENSSL_config binding (#2972) (#2974) | Anton | 2016-07-13 | 2 | -0/+24 |
| | | | | | | | >>> lib.EVP_get_digestbyname(b'md_gost94') <cdata 'EVP_MD *' NULL> >>> lib.OPENSSL_config(ffi.NULL) >>> lib.EVP_get_digestbyname(b'md_gost94') <cdata 'EVP_MD *' 0x10adc7440> | ||||
* | Use a series of constants for OpenSSL version checks (#3037) | Alex Gaynor | 2016-07-11 | 20 | -72/+114 |
| | | | | | | | | | | | | | | | | | | | | | | | | * Use a series of constants for OpenSSL version checks. N.B. I removed several qualifiers that were being used to express beta vs. release in OpenSSL version numbers. Reviewers please look closely! * Convert some python as well, also add the file * flake8 * Simplify code, remove functionality that can be expressed more simply * clean up the tests as well * more constants * wrap long lines * reflect feedback * unused * add this back? | ||||
* | disable blowfish in commoncrypto backend for key lengths under 64-bit (#3040) | Paul Kehrer | 2016-07-10 | 2 | -1/+11 |
| | | | | This is due to a bug in CommonCrypto present in 10.11.x. Filed as radar://26636600 | ||||
* | One shot sign/verification ECDSA (#3029) | Aviv Palivoda | 2016-07-02 | 6 | -5/+95 |
| | | | | | | | | | | | | | | * Add sign and verify methods to ECDSA * Documented ECDSA sign/verify methods * Added CHANGELOG entry * Skipping test verify and sign if curve is not supported * Fixed typo in documentation return type * Removed provider language from EllipticCurvePrivateKey and EllipticCurvePublicKey | ||||
* | Mark the minimum pytest version in setup.py. (#3035) | Alex Gaynor | 2016-07-01 | 1 | -1/+1 |
| | | | Fixes #3034 | ||||
* | Remove a few SSL fields which are unused (#3032) | Alex Gaynor | 2016-06-30 | 1 | -5/+0 |
| | |||||
* | one shot verify documentation fix (#3031) | Aviv Palivoda | 2016-06-30 | 2 | -4/+4 |
| | |||||
* | One shot sign/verify DSA (#3003) | Aviv Palivoda | 2016-06-30 | 5 | -0/+100 |
| | | | | | | | | * Add sign and verify methods to DSA * Documented DSA sign/verify methods * Added CHANGELOG entry | ||||
* | Opaque everything else we can of X509 (#3027) | Alex Gaynor | 2016-06-30 | 1 | -11/+1 |
| | |||||
* | change X509V3_EXT_nconf function signature (#3024) | Paul Kehrer | 2016-06-30 | 1 | -1/+2 |
| | |||||
* | Opaque another OpenSSL struct (#3025) | Alex Gaynor | 2016-06-29 | 1 | -8/+1 |
| | |||||
* | Fixed #3008 -- expose calculate max pss salt length (#3014) | Alex Gaynor | 2016-06-27 | 5 | -15/+43 |
| | | | | | | | | | | | | | | * Fixed #3008 -- expose calculate max pss salt length * Fixed a few mistakes in the docs * move all the code around * oops * write a unit test * versionadded + changelog | ||||
* | AES_ctr128_encrypt needs to be in macros as it's a conditional binding (#3023) | Paul Kehrer | 2016-06-27 | 1 | -4/+4 |
| | |||||
* | update RSA opaque getters/setters to latest code from openssl 1.1.0 master ↵ | Paul Kehrer | 2016-06-27 | 1 | -22/+20 |
| | | | | | (#3022) constify + a few small changes to the null checks | ||||
* | update DH opaque getters/setters to latest code from openssl 1.1.0 master ↵ | Paul Kehrer | 2016-06-27 | 1 | -14/+10 |
| | | | | | (#3021) constify + a few small changes to the null checks | ||||
* | update DSA opaque getters/setters to latest code from openssl 1.1.0 master ↵ | Paul Kehrer | 2016-06-27 | 1 | -15/+17 |
| | | | | | (#3020) constify + a few small changes to the null checks | ||||
* | opaque x509 store context (#3019) | Paul Kehrer | 2016-06-27 | 1 | -15/+1 |
| | |||||
* | rest syntax | Alex Gaynor | 2016-06-27 | 1 | -1/+1 |
| | |||||
* | Refs #2826 -- remove a no longer needed DSA binding (#3017) | Alex Gaynor | 2016-06-26 | 1 | -2/+0 |
| | |||||
* | Opaquify RSA and DSA structs in OpenSSL (#3016) | Alex Gaynor | 2016-06-26 | 2 | -24/+2 |
| | |||||
* | Remove some 0.9.8 cruft from the docs (#3015) | Alex Gaynor | 2016-06-26 | 1 | -3/+1 |
| | |||||
* | Fixes #2992 -- clearly link to a key dumping docs in serialization mo… (#3013) | Alex Gaynor | 2016-06-25 | 1 | -0/+10 |
| | | | | | | | | * Fixes #2992 -- clearly link to a key dumping docs in serialization module * fixed rest * guh, grammar | ||||
* | Use `d` instead of `private_exponent` for consistency (#2991) | Dirkjan Ochtman | 2016-06-22 | 2 | -6/+6 |
| | | | | True story: I used `e` instead of `d` because it seemed more closely related to `e`. Should have looked it up, of course... but the docs could be better. | ||||
* | Use DSAparams_dup in yet another please (#3007) | Alex Gaynor | 2016-06-20 | 1 | -27/+2 |
| | |||||
* | Complete the removal of the string '0.9.8' (#3005) | Alex Gaynor | 2016-06-20 | 2 | -16/+14 |
| | | | We have always been at war with OpenSSL 0.9.8 | ||||
* | use DSAparams_dup now that we no longer support 0.9.8 (#3006) | Paul Kehrer | 2016-06-20 | 2 | -35/+4 |
| | |||||
* | Rewrite a comment. (#3004) | Alex Gaynor | 2016-06-20 | 1 | -4/+4 |
| | | | d2i_AutoPrivateKey is less useful than we thought | ||||
* | Added function to access and alter opaque DH struct (#2976) | Aviv Palivoda | 2016-06-20 | 1 | -0/+82 |
| | |||||
* | Remove some more 0.9.8isms from the ssl code (#3001) | Alex Gaynor | 2016-06-20 | 1 | -8/+4 |
| | |||||
* | More cleanup of the EVP module for 0.9.8isms (#3000) | Alex Gaynor | 2016-06-20 | 2 | -32/+11 |
| | |||||
* | first pass removing 0.9.8 things from the ssl bindings (#2986) | Paul Kehrer | 2016-06-20 | 2 | -74/+2 |
| | |||||
* | Remove a few 0.9.8isms from the ssl bindings (#2998) | Alex Gaynor | 2016-06-19 | 2 | -33/+0 |
| | |||||
* | Remove some 0.9.8 code in x509 extension land (#2999) | Alex Gaynor | 2016-06-19 | 2 | -49/+14 |
| | |||||
* | Simplify and remove some 0.9.8 code from the EVP bindings (#2996) | Alex Gaynor | 2016-06-19 | 2 | -14/+8 |
| | | | | | | | | * Simplify and remove some 0.9.8 code from the EVP bindings The Cryptography_ symbol remains because pyOpenSSL uses. There's still other 0.9.8isms in this file. * only eclare this once | ||||
* | Remove 0.9.8isms from CMS code. (#2997) | Alex Gaynor | 2016-06-19 | 2 | -15/+2 |
| | | | CMS is 'cryptographic message syntax', and not 'centers for medicaid and medicare', fyi | ||||
* | Removed 0.9.8 specific hmac code (#2995) | Alex Gaynor | 2016-06-19 | 2 | -70/+9 |
| | |||||
* | Remove 0.9.8 isms from the DSA and x509 verify bindings (#2993) | Alex Gaynor | 2016-06-19 | 3 | -58/+1 |
| | | | | | | | | * Remove 0.9.8 isms from the DSA and x509 verify bindings * fixed syntax and remove more gunk * remove some obscure flags | ||||
* | Remove a few more 0.9.8 bindings (#2994) | Alex Gaynor | 2016-06-18 | 4 | -19/+2 |
| | |||||
* | Simplify control flow now that the 0.9.8 branches are gone (#2989) | Alex Gaynor | 2016-06-18 | 1 | -10/+0 |
| | |||||
* | 0.9.8 error code conditionals no longer required (#2987) | Paul Kehrer | 2016-06-18 | 2 | -67/+9 |
| | | | | | | * 0.9.8 error code conditionals no longer required * move the error codes to be with their brethren | ||||
* | remove 0.9.8 support from nid bindings (#2988) | Paul Kehrer | 2016-06-18 | 2 | -18/+0 |
| | |||||
* | remove unneeded AES conditionals now that we no longer support 0.9.8 (#2985) | Paul Kehrer | 2016-06-18 | 2 | -23/+6 |
| | | | | | | | | * remove unneeded AES conditionals now that we no longer support 0.9.8 * This comment was inaccurate. EVP AES CTR is available in 1.0.1+, not 1.0.0. * update function definition to match 1.0.0 and move to functions | ||||
* | Remove a binding and comments that reference 0.9.8 (#2984) | Alex Gaynor | 2016-06-18 | 4 | -12/+6 |
| | |||||
* | Removed some code that existed for OpenSSL 0.9.8 (#2983) | Alex Gaynor | 2016-06-18 | 3 | -22/+6 |
| | | | Refs #2982 | ||||
* | Drop OpenSSL 0.9.8 (#2978) | Alex Gaynor | 2016-06-18 | 13 | -394/+44 |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Drop OpenSSL 0.9.8 * Drop this test, it's not relevant any longer * unused import * Remove CRYPTOGRAPHY_ALLOW_OPENSSL_098=1 from our tox * removed unused code for Cryptography_HAS_PKEY_CTX * return unused code for _AESCTRCipherContext * syntax :-( * remove some unused tests and skips * remove unused code for Cryptography_HAS_PBKDF2_HMAC * Revert "return unused code for _AESCTRCipherContext" This reverts commit 7d149729205aa4c9735eb322414b167a75b302df. * Remove unused RSA code * Remove unused test code for conditional bindings * Remove unused dsa code * unused import * Remove unused x509 extension code * Remove unused EC code * Attempt to remove unused DER key loading code * document this * grammar * Added back this paragraph * Update docs | ||||
* | Small cleanup (#2979) | Alex Gaynor | 2016-06-15 | 1 | -6/+1 |
| |