6103 Commits

Author SHA1 Message Date
kaie%kuix.de
2ab5491ff8 Backing out patch for bug 326159, as it causes breakage on mac tinderbox
git-svn-id: svn://10.0.0.236/trunk@208949 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-31 23:02:55 +00:00
glen.beasley%sun.com
011c2c2e73 fix warnins on redhat4
git-svn-id: svn://10.0.0.236/trunk@208948 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-31 22:29:18 +00:00
kaie%kuix.de
2f77d625e9 Bug 326159, enhance cert request generation using KEYGEN tag and JS function crypto.generateCRMFRequest
r=rrelyea
Portions of this patch originally appeared in bug 235773 and were contributed by Sheueling Chang / Vipul Gupta / Douglas Stebila


git-svn-id: svn://10.0.0.236/trunk@208947 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-31 21:56:25 +00:00
glen.beasley%sun.com
d068b1c946 initial checkin of pk11mode.c FIPS test program work in progress
git-svn-id: svn://10.0.0.236/trunk@208919 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-31 17:55:18 +00:00
nelson%bolyard.com
eb20cf28ec When verifying a signed digest, ensure that the digest is DER encoded and
that there is no extra stuff after the DER encoded digest.  Bug 350640.
r=julien.pierre,rrelyea


git-svn-id: svn://10.0.0.236/trunk@208876 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-31 03:57:56 +00:00
alexei.volkov.bugs%sun.com
8896a565f3 337013: OOM crash [@ nssArena_Destroy - nssTrustDomain_TraverseCertificatesBySubject][@ nssArena_Destroy - nssTrustDomain_TraverseCertificatesByNickname] Dereferencing possibly NULL "tmpArena". r=nelson, sr=julien
git-svn-id: svn://10.0.0.236/trunk@208821 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-30 17:57:20 +00:00
glen.beasley%sun.com
b633117140 349965 added ECDSA key gen to power up self test r=wtc
git-svn-id: svn://10.0.0.236/trunk@208709 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-29 16:57:18 +00:00
nelson%bolyard.com
22c6440a01 Correctly zero-fill columns in weaved array. r=julien,wtchang. Bug 348359.
git-svn-id: svn://10.0.0.236/trunk@208688 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-29 02:46:20 +00:00
wtchang%redhat.com
7f16637e0a Bugzilla Bug 349632: made C_Verify work for multi-part mechanisms.
r=glen.beasley,relyea.


git-svn-id: svn://10.0.0.236/trunk@208487 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-26 01:49:48 +00:00
alexei.volkov.bugs%sun.com
5713865408 330056: seckey_put_private_key leaks memory. r=nelson, sr=wtc
git-svn-id: svn://10.0.0.236/trunk@208478 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-25 23:04:56 +00:00
alexei.volkov.bugs%sun.com
d950fbfb9c 304361: smime: possible memory corruption when encoding/decoding smime_encryptionkeypref_template. r=nelson, sr=wtc
git-svn-id: svn://10.0.0.236/trunk@208470 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-25 22:26:18 +00:00
wtchang%redhat.com
82cc75d438 Bugzilla bug 336813: do not set the nonstandard flag CKF_THREAD_SAFE. Set
CKF_DUAL_CRYPTO_OPERATIONS and the new v2.10 flag CKF_TOKEN_INITIALIZED.
r=relyea.


git-svn-id: svn://10.0.0.236/trunk@208362 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-24 22:52:21 +00:00
nelson%bolyard.com
5bc47a3fed re-enable SSLTRACE for keys and (pre)master secrets. Bug 349966. r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@208358 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-24 22:10:03 +00:00
julien.pierre.bugs%sun.com
240d7965b8 Back out Slavo's patch for bug 332222 in ssl.sh because tinderbox fails.
git-svn-id: svn://10.0.0.236/trunk@208322 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-24 19:48:08 +00:00
kaie%kuix.de
da6cd31639 Bug 340359, SSL Server stalls on v3 hello using TLS hello extensions
r=darin


git-svn-id: svn://10.0.0.236/trunk@208312 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-24 18:14:40 +00:00
kaie%kuix.de
1b2955219d Bug 86988, Sorting in certificate manager should be case insensitive
r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@208310 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-24 18:06:43 +00:00
julien.pierre.bugs%sun.com
36c1797540 Allow ssl.sh to support mixed ECC/RSA certs. Patch created by Slavomir Katuscak. r=nelson, rrelyea
git-svn-id: svn://10.0.0.236/trunk@208306 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-24 17:48:52 +00:00
julien.pierre.bugs%sun.com
17896bcb9b Fix for bug 332222 . Allow ssl.sh to support mixed ECC/RSA certs. Patch created by Slavomir Katuscak. r=nelson, rrelyea
git-svn-id: svn://10.0.0.236/trunk@208256 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-23 23:32:01 +00:00
julien.pierre.bugs%sun.com
b5ffbeb496 Fix for bug 349920 . Don't optimize freebl libraries in debug build on Sparc . r=nelson, neil.williams
git-svn-id: svn://10.0.0.236/trunk@208254 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-23 22:57:26 +00:00
glen.beasley%sun.com
d877dec7ab 349632 C_VerifyUpdate HMAC fix r=wtc,sr=bobR
git-svn-id: svn://10.0.0.236/trunk@208246 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-23 21:46:23 +00:00
julien.pierre.bugs%sun.com
600a141f4c Fix for bug 225525 . Resolve race assigning NSSCertificate fields which leaked memory and slot reference. r=nelson
git-svn-id: svn://10.0.0.236/trunk@208124 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-22 22:54:11 +00:00
nelson%bolyard.com
7aa683b767 Fix race in CERT_NewTempCertificate. Bug 341323. r=julien,rrelyea
git-svn-id: svn://10.0.0.236/trunk@208087 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-22 03:30:14 +00:00
wtchang%redhat.com
4d8af14fe3 Bugzilla Bug 342476: backed out the previous checkin. Not sure if it's a
good idea.


git-svn-id: svn://10.0.0.236/trunk@207893 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-18 23:28:10 +00:00
wtchang%redhat.com
694e83662f Backed out the unnecessary change in the previous checkin.
git-svn-id: svn://10.0.0.236/trunk@207886 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-18 22:56:18 +00:00
wtchang%redhat.com
34808440e4 Bugzilla Bug 342476: NSS should set and check the pReserved field in the
(extended) CK_C_INITIALIZE_ARGS structure.  r=nelsonb,relyea.
Modified files: pk11wrap/pk11load.c softoken/pkcs11.c


git-svn-id: svn://10.0.0.236/trunk@207885 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-18 22:48:41 +00:00
wtchang%redhat.com
8bf92cd8a2 Bugzilla Bug 349011: marked local functions as static. The patch is
contributed by timeless <timeless@bemail.org>. r=wtc.
Modified files: crmfcont.c crmfpop.c crmfreq.c


git-svn-id: svn://10.0.0.236/trunk@207880 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-18 22:21:34 +00:00
mrbkap%gmail.com
8231d5c121 Propagate the exception out. bug 349241, r=kaie sr=jst
git-svn-id: svn://10.0.0.236/trunk@207876 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-18 22:07:14 +00:00
wtchang%redhat.com
58f5aca997 Bugzilla Bug 53427: Added PORT_ArenaZRelease and change secasn1d.c to zero
our_pool before releasing or freeing it. r=nelsonb,jpierre.
Modified files: secasn1d.c secport.c secport.h


git-svn-id: svn://10.0.0.236/trunk@207510 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-15 23:56:01 +00:00
wtchang%redhat.com
2497818b9e Bugzilla Bug 325148: worked around the change of backslash-newline behavior
inside single-quoted strings in GNU make 3.81.  The patch is contributed by
Pawel Chmielowski <prefiks@aviary.pl>. r=benjamin.smedberg,wtc.


git-svn-id: svn://10.0.0.236/trunk@207494 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-15 21:35:25 +00:00
wtchang%redhat.com
a0998099c1 Bugzilla Bug 53427: passed the correct 'zero' argument to PORT_FreeArena.
Removed dead code. r=nelsonb,relyea.
Modified Files:
	softoken/keydb.c softoken/lowpbe.c softoken/pkcs11c.c
	util/secdig.c


git-svn-id: svn://10.0.0.236/trunk@207406 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-15 01:34:38 +00:00
wtchang%redhat.com
de69a1296b Bugzilla Bug 336813: Improved NSC_GetTokenInfo and FC_GetTokenInfo. Always
set CKF_RNG. Set the utcTime member to 16 zeros "0000000000000000".
Factored out the common flag CKF_RNG and CKF_THREAD_SAFE. r=nelsonb,relyea.
Modified files: fipstokn.c pkcs11.c


git-svn-id: svn://10.0.0.236/trunk@207330 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-14 17:52:31 +00:00
wtchang%redhat.com
9caa55b430 Bugzilla Bug 347409: removed the on-demand initiation of the FIPS power-up
self-tests from FC_Login. We now require the user to shut down and restart
the softoken to initiate the power-up tests on demand. r=nelsonb.


git-svn-id: svn://10.0.0.236/trunk@207321 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-14 17:05:31 +00:00
wtchang%redhat.com
2a4003f6cc Bugzilla Bug 53427: PORT_FreeArena should zero memory before freeing it if
the 'zero' argument is true. r=nelsonb.


git-svn-id: svn://10.0.0.236/trunk@207318 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-14 16:56:39 +00:00
tony%ponderer.org
48f4b86760 fix bustage
git-svn-id: svn://10.0.0.236/trunk@207210 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-12 07:08:36 +00:00
tony%ponderer.org
3208957317 bug 337733: implement an rc4 xpcom interface and key object
patch: nsIKeyObject and nsIKeyObjectFactory and nsIStreamCipher
r=darin,sr=rrelyea


git-svn-id: svn://10.0.0.236/trunk@207209 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-12 06:39:47 +00:00
kaie%kuix.de
40926db14c Bug 316837, crash in [@ strchr - nsNSSCertificateDB::getCertNames] on cert without nickname
r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@207077 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-10 19:26:06 +00:00
julien.pierre.bugs%sun.com
1e0735f5b0 Fix for bug 178894 . Unbreak build.
git-svn-id: svn://10.0.0.236/trunk@206750 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-07 20:48:04 +00:00
kaie%kuix.de
0172cc4df1 Bug 342646, Trunk crashes while opening HTTPS links with Ad Muncher running
r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@206749 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-07 20:15:45 +00:00
kaie%kuix.de
bb1a2e592b Bug 346551, init SECItem derTemp in crmf_encode_popoprivkey
r=wtchang


git-svn-id: svn://10.0.0.236/trunk@206745 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-07 20:02:59 +00:00
julien.pierre.bugs%sun.com
a48ba8324d Fix for bug 178894 . Quick decoder updates for lib/certdb and lib/certhigh . r=nelson .
git-svn-id: svn://10.0.0.236/trunk@206742 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-07 19:09:41 +00:00
wtchang%redhat.com
fb9a9278b8 Bugzilla Bug 316369: support building JSS on Mac OS X. The patch is
contributed by Nathin Kinder <nkinder@redhat.com>. r=wtc.
Modified files: coreconf/jdk.mk jss/lib/config.mk


git-svn-id: svn://10.0.0.236/trunk@206633 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-05 01:27:41 +00:00
julien.pierre.bugs%sun.com
3d5bc5fab1 Fix for bug 177184 . NSS_CMSDecoder_Cancel might have a leak . And this patch might fix it, or not. But this bug needs to be put to rest.
git-svn-id: svn://10.0.0.236/trunk@206632 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-05 01:19:23 +00:00
wtchang%redhat.com
c3319980a8 Bugzilla Bug 347024: Moved the software integrity test from
nsc_CommonInitialize to the new function sftk_fipsSoftwareIntegrityTest
and have sftk_fipsPowerUpSelfTest call sftk_fipsSoftwareIntegrityTest.
Updated the audit logging code.  Removed an extraneous comma between two
string literals in fipstokn.c. r=relyea,nelsonb.
Modified files: fipstest.c fipstokn.c pkcs11.c


git-svn-id: svn://10.0.0.236/trunk@206520 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-03 21:50:51 +00:00
wtchang%redhat.com
1e048e0321 Bugzilla Bug 336509: put the FIPS token in the Error state only when the
continuous RNG test fails.


git-svn-id: svn://10.0.0.236/trunk@206178 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-31 18:31:07 +00:00
wtchang%redhat.com
305f77214d Bugzilla Bug 336509: check for continuous RNG test failure after direct and
indirect uses of the RNG. r=relyea,nelsonb.
Modified files: fipstokn.c keydb.c pkcs11.c pkcs11c.c pkcs11i.h rsawrapr.c
                softoken.h


git-svn-id: svn://10.0.0.236/trunk@206166 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-31 18:10:17 +00:00
gavin%gavinsharp.com
df811a31b5 Bug 343253: Improve unknown cert issuer dialog, r=kaie, sr=neil, ui-r=beltzner
git-svn-id: svn://10.0.0.236/trunk@206156 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-31 17:37:50 +00:00
wtchang%redhat.com
3f56585bc9 Bugzilla bug 336509: Made prng_GenerateGlobalRandomBytes static because
it's only used in this file. r=neil.williams.


git-svn-id: svn://10.0.0.236/trunk@205108 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-29 00:28:12 +00:00
wtchang%redhat.com
9372a674a6 Bugzilla Bug 345502: C89 doesn't allow initializing a local array. Fixed
some array sizes.  The patch is contributed by Glen Beasley of Sun. r=wtc.


git-svn-id: svn://10.0.0.236/trunk@205082 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-28 20:45:01 +00:00
wtchang%redhat.com
6f4cbeded7 Bugzilla Bug 345941: fixed another bug that we might pass uninitialized
'req' to fclose(). Thanks to Wolfgang Rosenauer <mozilla@rosenauer.org> for
reporting the bug and reviewing the patch.


git-svn-id: svn://10.0.0.236/trunk@205078 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-28 20:19:02 +00:00
wtchang%redhat.com
f42d8691f1 Bugzilla Bug 345941: fixed the bug that we might pass uninitialized 'req'
to fclose(). r=glen.beasley.  Thanks to Wolfgang Rosenauer
<mozilla@rosenauer.org> for the bug report.


git-svn-id: svn://10.0.0.236/trunk@204934 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-27 16:56:56 +00:00