aboutsummaryrefslogtreecommitdiffstats
path: root/src/_cffi_src/openssl
Commit message (Collapse)AuthorAgeFilesLines
* Merge pull request #2782 from reaperhulk/110-patch-6Alex Gaynor2016-03-091-3/+35
|\ | | | | SSLeay begone
| * SSLeay begonePaul Kehrer2016-03-091-3/+35
| | | | | | | | | | | | | | In OpenSSL 1.1.0 SSLeay is no longer a thing. Farewell Except not really farewell because we define them all again because old versions of pyOpenSSL will choke otherwise
* | Merge pull request #2789 from reaperhulk/110-patch-11Alex Gaynor2016-03-091-2/+0
|\ \ | | | | | | error loading strings that no longer exist and are unused
| * | error loading strings that no longer exist and are unusedPaul Kehrer2016-03-091-2/+0
| | |
* | | Merge pull request #2788 from reaperhulk/110-patch-9Alex Gaynor2016-03-091-16/+0
|\ \ \ | | | | | | | | ECDSA functions we don't use that aren't in 1.1.0
| * | | ECDSA functions we don't use that aren't in 1.1.0Paul Kehrer2016-03-091-16/+0
| |/ /
* | | Merge pull request #2787 from reaperhulk/110-patch-8Alex Gaynor2016-03-091-14/+0
|\ \ \ | | | | | | | | some ECDH functions we don't use that are no longer present in 1.1.0
| * | | some ECDH functions we don't use that are no longer present in 1.1.0Paul Kehrer2016-03-091-14/+0
| |/ /
* / / DH_generate_parameters was deprecated in 0.9.8 and we don't use itPaul Kehrer2016-03-091-1/+0
|/ /
* | Merge pull request #2778 from reaperhulk/110-patch-2Alex Gaynor2016-03-091-0/+6
|\ \ | |/ |/| handle removal of M_ASN1_TIME_dup
| * nicer formatting for the macroPaul Kehrer2016-03-091-2/+1
| |
| * handle removal of M_ASN1_TIME_dupPaul Kehrer2016-03-081-0/+7
| | | | | | | | OpenSSL 1.1.0 compat work
* | Merge pull request #2781 from reaperhulk/110-patch-5Alex Gaynor2016-03-092-24/+1
|\ \ | | | | | | config header changes for 1.1.0
| * | config header changes for 1.1.0Paul Kehrer2016-03-082-24/+1
| |/ | | | | | | | | | | OPENSSL_config is deprecated in 1.1.0 and OPENSSL_no_config is a macro provided solely for compatibility. We don't use either of these and the only thing we actually need is an opaque typedef for CONF.
* | Merge pull request #2777 from reaperhulk/110-patch-1Alex Gaynor2016-03-091-1/+10
|\ \ | | | | | | In OpenSSL 1.1.0 AES_ctr128_encrypt no longer exists
| * | In OpenSSL 1.1.0 AES_ctr128_encrypt no longer existsPaul Kehrer2016-03-081-1/+10
| |/ | | | | | | This is OpenSSL 1.1.0 compatibility patch 1 of n
* | Merge pull request #2780 from reaperhulk/110-patch-4Alex Gaynor2016-03-081-1/+0
|\ \ | | | | | | BIO_ptr_ctrl's ret type changed from char to void...but we don't use it
| * | BIO_ptr_ctrl's ret type changed from char to void...but we don't use itPaul Kehrer2016-03-081-1/+0
| |/ | | | | | | So let's reduce our exposure to this sort of thing and remove it.
* / ASN1_TIME is actually an ASN1_STRING so typedef itPaul Kehrer2016-03-081-3/+1
|/ | | | | This will be useful in OpenSSL 1.1.0 since you sometimes need to duplicate a time.
* added the correct error handling for the failing testAlex Gaynor2016-03-051-0/+1
|
* move BIO_new_mem_buf to macros to handle 1.0.2g signature changePaul Kehrer2016-03-011-1/+2
|
* drop this for nowAlex Gaynor2016-02-271-1/+0
|
* voidAlex Gaynor2016-02-271-1/+1
|
* More policy constraint bindingsAlex Gaynor2016-02-271-0/+4
|
* Added policy constraint struct bindingAlex Gaynor2016-02-261-0/+5
|
* one more functionAlex Gaynor2016-01-311-0/+2
|
* Added an addition binding that PyOpenSSL might wantAlex Gaynor2016-01-311-0/+2
|
* add initial OCSP bindingsPaul Kehrer2016-01-181-0/+67
|
* consolidate the windows specific header trickery we need to doPaul Kehrer2016-01-181-5/+0
|
* Merge pull request #2646 from reaperhulk/static-callbacksAlex Gaynor2016-01-081-0/+50
|\ | | | | Static callbacks
| * remove the callbacks we don't use in cryptographyPaul Kehrer2016-01-071-61/+0
| |
| * Port callbacks to new static callbackChristian Heimes2016-01-071-0/+111
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | cffi 1.4.0 will introduce a new API to create static callbacks. Contrary to the old callback API, static callbacks no longer depend on libffi's dynamic code generation for closures. Static code has some benefits over dynamic generation. For example the code is faster. Also it doesn't need writeable and executable memory mappings, which makes it compatible with SELinux's deny execmem policy. The branch depends on PR #2488. https://bitbucket.org/cffi/cffi/issues/232/static-callbacks Closes: #2477 Signed-off-by: Christian Heimes <cheimes@redhat.com>
* | use EVP_PKEY_id where we canPaul Kehrer2016-01-071-2/+7
| |
* | add Cryptography_EVP_PKEY_idPaul Kehrer2016-01-071-0/+6
| |
* | opaque EVP_PKEY since EVP_PKEY_id existsPaul Kehrer2016-01-071-4/+1
|/
* RSA_R_OAEP_DECODING_ERROR is pretty ubiquitousPaul Kehrer2015-12-271-8/+0
|
* Add support for RSA_R_OAEP_DECODING_ERROR error flag.Christopher Grebs2015-12-271-0/+9
|
* Simplify code slightly by adding a new bindingAlex Gaynor2015-12-261-0/+2
|
* new asn1 bindings needed for #2582Paul Kehrer2015-12-261-0/+3
|
* X509_REVOKED_dup isn't available everywhere, we get to define our ownPaul Kehrer2015-12-251-1/+10
|
* support revoked certificates in CertificateRevocationListBuilderPaul Kehrer2015-12-251-0/+1
|
* a different approach to refactoring the x509 extension additionPaul Kehrer2015-12-241-0/+1
|
* Add PEM_write_bio_DHparams bindingevilaliv32015-12-241-0/+1
|
* add binding for setting the revocation date of an X509_REVOKEDPaul Kehrer2015-12-231-0/+2
|
* Comment lingering SSLv2 symbol.Cory Benfield2015-12-141-0/+4
|
* Remove SSLv2 bindings.Cory Benfield2015-12-141-16/+1
| | | | | | | | | This commit removes bindings that allow users to set SSLv2 handshake methods. These are regarded as unnecessary and out-of-date: see #2527. This commit does leave in a few options that refer to SSLv2 in order to avoid breaking deployments that rely on them, and in order to allow users to continue to request that SSLv2 not be enabled at all in their OpenSSL.
* Merge pull request #2515 from reaperhulk/sigbusAlex Gaynor2015-12-091-16/+0
|\ | | | | remove the bindings for these x86_64 specific EC functions
| * remove the bindings for these x86_64 specific EC functionsPaul Kehrer2015-12-091-16/+0
| | | | | | | | | | | | | | | | We have no need to invoke them directly and their presence triggers a bug related to Fedora 23's hobbling of openssl EC functions (uugh) This also fixes the SIGBUS issue in #2503, although that is more appropriately resolved via header fixes for universal libraries on OS X.
* | expose tbs_certrequest_bytes and signature on CertificateSigningRequestPaul Kehrer2015-12-031-0/+4
| |
* | Merge pull request #2504 from reaperhulk/encode-name-constraintsAlex Gaynor2015-12-031-0/+12
|\ \ | | | | | | implement support for encoding name constraints