Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | ERR_load_RAND_strings changed function signature in 1.1.0 (#3093) | Paul Kehrer | 2016-08-16 | 1 | -1/+6 | |
| | | | | | | | | * ERR_load_RAND_strings changed function signature in 1.1.0 Here is a hack to avoid breaking pyOpenSSL. * not sure how I managed that. I blame vim | |||||
* | move functions that were const-ified in 1.1.0-pre6 (#3090) | Paul Kehrer | 2016-08-16 | 3 | -19/+33 | |
| | ||||||
* | OPENSSL_no_config is a macro in 1.1.0 (#3091) | Paul Kehrer | 2016-08-16 | 1 | -1/+2 | |
| | ||||||
* | BIO_set has been removed in 1.1.0 (#3092) | Paul Kehrer | 2016-08-16 | 1 | -1/+0 | |
| | | | Since we aren't using it bye bye | |||||
* | Update example code to use recommended 160 bits (#3088) | Dave Brondsema | 2016-08-16 | 1 | -2/+2 | |
| | | | I found the examples with `os.urandom(16)` generated URIs that Google Authenticator and Duo two-factor apps did not even recognize as supported. This increases the key to the recommended 160 bits, and the URIs now work with both of those apps. | |||||
* | Update installation.rst (#3083) | Akan Brown | 2016-08-08 | 1 | -1/+1 | |
| | ||||||
* | Attempt to debug wacky failures on the docs build on OS X (#3085) | Alex Gaynor | 2016-08-09 | 2 | -0/+8 | |
| | | | | | | | | | | | | | | | | * empty commit * only run this one build * try pinning this * why wasn't this installed? * revert this * english, how does it work? * roll back these changes | |||||
* | Add recommendation about terminology (#3079) | Gabriel Orisaka | 2016-08-02 | 1 | -0/+5 | |
| | ||||||
* | Disallow X509 certificate serial numbers bigger than 159 bits (#3064) (#3067) | Коренберг Марк | 2016-08-02 | 3 | -13/+89 | |
| | ||||||
* | Add code style settings, new excludes, run 'test_x509_ext (Py3)' (#3041) | Marti | 2016-08-02 | 2 | -5/+54 | |
| | | | | | | Fix DNSName wildcard encoding for NameConstraints Previously '.example.com' would get normalised to 'example.com', making it impossible to add wildcard NameConstraints. | |||||
* | Update CHANGELOG.rst with #3063 (#3070) | Maximilian Hils | 2016-07-31 | 1 | -0/+2 | |
| | ||||||
* | Remove provider language from docs (#3072) | Gabriel Orisaka | 2016-07-31 | 9 | -70/+56 | |
| | ||||||
* | Add @mhils to AUTHORS.rst (#3071) | Maximilian Hils | 2016-07-31 | 1 | -0/+1 | |
| | ||||||
* | Clarify what to pass to the sign-function (#3066) | Loy | 2016-07-30 | 1 | -1/+1 | |
| | | | Sign needs an ECDSA instance and from following the link to EllipticCurveSignatureAlgorithm, that wasn't clear directly. | |||||
* | disable static callbacks on Python 3.5 (refs #2970) (#3063) | Maximilian Hils | 2016-07-29 | 1 | -1/+4 | |
| | ||||||
* | Fixed openssl binding if no-cmac (#3062) | Jeffery To | 2016-07-27 | 1 | -2/+2 | |
| | ||||||
* | Removed provider language from asymmetric primitives docs (#3052) | Gabriel Orisaka | 2016-07-26 | 5 | -132/+91 | |
| | | | | | | * Removed provider language from asymmetric primitives docs * Reverted changes to some examples | |||||
* | Unconditional SecureTransport bindings, round 2. (#3059) | Cory Benfield | 2016-07-23 | 2 | -0/+309 | |
| | | | | | | | | | | | | * Add the unconditional SecureTransport bindings * Looks like the PSK cipher suites got removed in 10.8 * Line-length. * Style. * Remove further troublesome bindings. | |||||
* | Revert "Add the unconditional SecureTransport bindings" (#3058) | Alex Gaynor | 2016-07-23 | 2 | -314/+0 | |
| | ||||||
* | Add the unconditional SecureTransport bindings (#3054) | Cory Benfield | 2016-07-23 | 2 | -0/+314 | |
| | | | | | | | | | | * Add the unconditional SecureTransport bindings * Line-length. * Looks like the PSK cipher suites got removed in 10.8 * Style. | |||||
* | Add myself to AUTHORS (#3048) | Dirkjan Ochtman | 2016-07-19 | 1 | -0/+1 | |
| | ||||||
* | Enforce that p > q to improve OpenSSL compatibility (fixes #2990) (#3010) | Dirkjan Ochtman | 2016-07-19 | 3 | -3/+6 | |
| | ||||||
* | Removed provider language from backend interfaces (#3047) | Gabriel Orisaka | 2016-07-18 | 1 | -110/+81 | |
| | ||||||
* | A few small cleanups (#3046) | Alex Gaynor | 2016-07-18 | 2 | -11/+11 | |
| | ||||||
* | Add flag to toggle key length check for HOTP and TOTP. (#3012) | Terry Chia | 2016-07-16 | 5 | -6/+34 | |
| | | | | | | | | | | * Add an enforce_key_length parameter to HOTP and TOTP. * Document changes in docs. * Add some words to the wordlist. * Add versionadded to docs. | |||||
* | Add OPENSSL_config binding (#2972) (#2974) | Anton | 2016-07-13 | 2 | -0/+24 | |
| | | | | | | | >>> lib.EVP_get_digestbyname(b'md_gost94') <cdata 'EVP_MD *' NULL> >>> lib.OPENSSL_config(ffi.NULL) >>> lib.EVP_get_digestbyname(b'md_gost94') <cdata 'EVP_MD *' 0x10adc7440> | |||||
* | Use a series of constants for OpenSSL version checks (#3037) | Alex Gaynor | 2016-07-11 | 20 | -72/+114 | |
| | | | | | | | | | | | | | | | | | | | | | | | | * Use a series of constants for OpenSSL version checks. N.B. I removed several qualifiers that were being used to express beta vs. release in OpenSSL version numbers. Reviewers please look closely! * Convert some python as well, also add the file * flake8 * Simplify code, remove functionality that can be expressed more simply * clean up the tests as well * more constants * wrap long lines * reflect feedback * unused * add this back? | |||||
* | disable blowfish in commoncrypto backend for key lengths under 64-bit (#3040) | Paul Kehrer | 2016-07-10 | 2 | -1/+11 | |
| | | | | This is due to a bug in CommonCrypto present in 10.11.x. Filed as radar://26636600 | |||||
* | One shot sign/verification ECDSA (#3029) | Aviv Palivoda | 2016-07-02 | 6 | -5/+95 | |
| | | | | | | | | | | | | | | * Add sign and verify methods to ECDSA * Documented ECDSA sign/verify methods * Added CHANGELOG entry * Skipping test verify and sign if curve is not supported * Fixed typo in documentation return type * Removed provider language from EllipticCurvePrivateKey and EllipticCurvePublicKey | |||||
* | Mark the minimum pytest version in setup.py. (#3035) | Alex Gaynor | 2016-07-01 | 1 | -1/+1 | |
| | | | Fixes #3034 | |||||
* | Remove a few SSL fields which are unused (#3032) | Alex Gaynor | 2016-06-30 | 1 | -5/+0 | |
| | ||||||
* | one shot verify documentation fix (#3031) | Aviv Palivoda | 2016-06-30 | 2 | -4/+4 | |
| | ||||||
* | One shot sign/verify DSA (#3003) | Aviv Palivoda | 2016-06-30 | 5 | -0/+100 | |
| | | | | | | | | * Add sign and verify methods to DSA * Documented DSA sign/verify methods * Added CHANGELOG entry | |||||
* | Opaque everything else we can of X509 (#3027) | Alex Gaynor | 2016-06-30 | 1 | -11/+1 | |
| | ||||||
* | change X509V3_EXT_nconf function signature (#3024) | Paul Kehrer | 2016-06-30 | 1 | -1/+2 | |
| | ||||||
* | Opaque another OpenSSL struct (#3025) | Alex Gaynor | 2016-06-29 | 1 | -8/+1 | |
| | ||||||
* | Fixed #3008 -- expose calculate max pss salt length (#3014) | Alex Gaynor | 2016-06-27 | 5 | -15/+43 | |
| | | | | | | | | | | | | | | * Fixed #3008 -- expose calculate max pss salt length * Fixed a few mistakes in the docs * move all the code around * oops * write a unit test * versionadded + changelog | |||||
* | AES_ctr128_encrypt needs to be in macros as it's a conditional binding (#3023) | Paul Kehrer | 2016-06-27 | 1 | -4/+4 | |
| | ||||||
* | update RSA opaque getters/setters to latest code from openssl 1.1.0 master ↵ | Paul Kehrer | 2016-06-27 | 1 | -22/+20 | |
| | | | | | (#3022) constify + a few small changes to the null checks | |||||
* | update DH opaque getters/setters to latest code from openssl 1.1.0 master ↵ | Paul Kehrer | 2016-06-27 | 1 | -14/+10 | |
| | | | | | (#3021) constify + a few small changes to the null checks | |||||
* | update DSA opaque getters/setters to latest code from openssl 1.1.0 master ↵ | Paul Kehrer | 2016-06-27 | 1 | -15/+17 | |
| | | | | | (#3020) constify + a few small changes to the null checks | |||||
* | opaque x509 store context (#3019) | Paul Kehrer | 2016-06-27 | 1 | -15/+1 | |
| | ||||||
* | rest syntax | Alex Gaynor | 2016-06-27 | 1 | -1/+1 | |
| | ||||||
* | Refs #2826 -- remove a no longer needed DSA binding (#3017) | Alex Gaynor | 2016-06-26 | 1 | -2/+0 | |
| | ||||||
* | Opaquify RSA and DSA structs in OpenSSL (#3016) | Alex Gaynor | 2016-06-26 | 2 | -24/+2 | |
| | ||||||
* | Remove some 0.9.8 cruft from the docs (#3015) | Alex Gaynor | 2016-06-26 | 1 | -3/+1 | |
| | ||||||
* | Fixes #2992 -- clearly link to a key dumping docs in serialization mo… (#3013) | Alex Gaynor | 2016-06-25 | 1 | -0/+10 | |
| | | | | | | | | * Fixes #2992 -- clearly link to a key dumping docs in serialization module * fixed rest * guh, grammar | |||||
* | Use `d` instead of `private_exponent` for consistency (#2991) | Dirkjan Ochtman | 2016-06-22 | 2 | -6/+6 | |
| | | | | True story: I used `e` instead of `d` because it seemed more closely related to `e`. Should have looked it up, of course... but the docs could be better. | |||||
* | Use DSAparams_dup in yet another please (#3007) | Alex Gaynor | 2016-06-20 | 1 | -27/+2 | |
| | ||||||
* | Complete the removal of the string '0.9.8' (#3005) | Alex Gaynor | 2016-06-20 | 2 | -16/+14 | |
| | | | We have always been at war with OpenSSL 0.9.8 |