2822 Commits

Author SHA1 Message Date
nelson%bolyard.com
520b6e4542 Bug 377542. Eliminate duplicate implementation of cert validity time checking.
r=neil.williams,alexei.volkov


git-svn-id: svn://10.0.0.236/trunk@225065 18797224-902f-48f8-a5cc-f745e15eee43
2007-04-26 02:01:12 +00:00
julien.pierre.bugs%sun.com
76fd6b9c29 Fix for bug 377362 . Export DER_GeneralizedDayToAscii, DER_TimeChoiceDayToAscii, DER_TimeToGeneralizedTime, DER_TimeToGeneralizedTimeArena . r=nelson, alexei
git-svn-id: svn://10.0.0.236/trunk@225052 18797224-902f-48f8-a5cc-f745e15eee43
2007-04-25 23:28:46 +00:00
kaie%kuix.de
41d4d556ef Bug 205406, Need a local OCSP cache
Follow up checkin.
Sync the list of exported functions after a 3.11 branch checkin.


git-svn-id: svn://10.0.0.236/trunk@224978 18797224-902f-48f8-a5cc-f745e15eee43
2007-04-25 01:10:48 +00:00
julien.pierre.bugs%sun.com
a368a1c6f7 Fix for bug 378104 - certutil crashes creating certs with very long validity. r=alexei.volkov
git-svn-id: svn://10.0.0.236/trunk@224963 18797224-902f-48f8-a5cc-f745e15eee43
2007-04-24 21:01:35 +00:00
kaie%kuix.de
1fd8e4c8b2 Bug 205406, Need a local OCSP cache
Incremental patch to address reviewer comments.
r=nelson, r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@224636 18797224-902f-48f8-a5cc-f745e15eee43
2007-04-17 17:17:17 +00:00
rrelyea%redhat.com
7eef91ddc1 Retry login if token was reset in while the user was entering a password.
Bug 376422 r=nelsonb


git-svn-id: svn://10.0.0.236/trunk@224112 18797224-902f-48f8-a5cc-f745e15eee43
2007-04-04 00:05:22 +00:00
kaie%kuix.de
27d73314a3 Bug 205406, Need a local OCSP cache
Second checkin attempt after fixing win tinderbox breakage.


git-svn-id: svn://10.0.0.236/trunk@222241 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-23 06:57:57 +00:00
kaie%kuix.de
8913ebd372 bug 205406
Backing out my previous checkin, to address windows build failures.


git-svn-id: svn://10.0.0.236/trunk@222232 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-23 06:09:58 +00:00
kaie%kuix.de
fe20076fa4 Bug 205406, Need a local OCSP cache
Patch v6/v7. r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@222231 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-23 05:35:15 +00:00
alexei.volkov.bugs%sun.com
3362ecc93f 338986 - Unauthorized OCSP response error from user's default OCSP responder. r=nelson
git-svn-id: svn://10.0.0.236/trunk@221121 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-01 00:30:19 +00:00
rrelyea%redhat.com
5e97cf8097 Add Camilla cipher suites TLS RFC4132 bug 361025
code supplied by okazaki@kick.gr.jp


git-svn-id: svn://10.0.0.236/trunk@221086 18797224-902f-48f8-a5cc-f745e15eee43
2007-02-28 19:47:40 +00:00
wtchang%redhat.com
7248e633ec Bugzilla Bug 115951: backed out the previous checkin because the test
program bltest could not locate and load libfreebl3.dylib.


git-svn-id: svn://10.0.0.236/trunk@220156 18797224-902f-48f8-a5cc-f745e15eee43
2007-02-15 01:13:39 +00:00
alexei.volkov.bugs%sun.com
434416d9ea Bug 348882 - addbuiltin command ignores "c" trust arg (and probably others). r=kengert, r=neil.williams
git-svn-id: svn://10.0.0.236/trunk@220095 18797224-902f-48f8-a5cc-f745e15eee43
2007-02-14 00:35:53 +00:00
nelson%bolyard.com
5b3a170bba Bug 366803 - Improve SSL tracing, make it work in browsers, to help with
debugging bug 356470.  r=neil.williams,alexei.volkov


git-svn-id: svn://10.0.0.236/trunk@219222 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-31 04:20:26 +00:00
alexei.volkov.bugs%sun.com
23216a4680 Bug 301496: NSS_Shutdown failure in p7sign. r=nelson
git-svn-id: svn://10.0.0.236/trunk@218874 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-25 00:52:26 +00:00
alexei.volkov.bugs%sun.com
b5633697ae wrong place for assertions committed in previous revision. fixed now.
git-svn-id: svn://10.0.0.236/trunk@218560 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-17 23:15:46 +00:00
nelson%bolyard.com
0f063ff8ea Bug 335019. When importing certs from PKCS12 files, and the cert and the
private key both have different nicknames, import the cert with the
nickname from the file's cert, not from the file's private key.
Also, fix an infinite loop and certain other bugs.  r=neil.williams.


git-svn-id: svn://10.0.0.236/trunk@218281 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-14 00:02:36 +00:00
nelson%bolyard.com
1d5fdadabc Bug 366405. Fix PK11_DeleteTokenPrivateKey to not leak the cert when
force is true.  r=alexei.volkov,wtchang


git-svn-id: svn://10.0.0.236/trunk@218280 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-13 23:41:21 +00:00
neil.williams%sun.com
62339b0bfb Bug 353745, r=nelson, Patch to fix 7 Klocwork bugs, submitted by Ryan Jones
git-svn-id: svn://10.0.0.236/trunk@218254 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-13 00:24:34 +00:00
nelson%bolyard.com
afd3149000 Bug 364684. Fix session object handle counter overflows. r=rrelyea,wtchang
git-svn-id: svn://10.0.0.236/trunk@218100 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-10 04:47:57 +00:00
alexei.volkov.bugs%sun.com
a3ba9072c1 This patch incorporates additional suggestions to 342461 fix from Wan-Teh review.
git-svn-id: svn://10.0.0.236/trunk@218093 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-09 23:39:08 +00:00
alexei.volkov.bugs%sun.com
35d51963b5 365966: infinite recursive call in VFY_VerifyDigestDirect. r=nelson
git-svn-id: svn://10.0.0.236/trunk@218037 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-09 00:37:20 +00:00
nelson%bolyard.com
80a8e751f8 Bug 321584. When importing a PKCS#12 file that has no friendly names,
construct new friendly names, so the import will succeed. r=neil.williams


git-svn-id: svn://10.0.0.236/trunk@217884 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-06 06:05:50 +00:00
wtchang%redhat.com
deb589b720 Bug 51429: in safe_pclose, we may call kill + waitpid(WNOHANG) 1000 times
without giving the child any time to receive the SIGKILL signal and
terminate, break out of the while loop, and leave the child behind as a
zombie process.  The patch is contributed by John G. Myers
<jgmyers@speakeasy.net> and Tomas Mraz of Red Hat. r=neil.williams,relyea


git-svn-id: svn://10.0.0.236/trunk@217877 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-06 01:45:56 +00:00
wtchang%redhat.com
d398cd2cd1 Bug 51429: make sure that safe_popen cannot fail (in the parent process)
after fork succeeded.  r=neil.williams


git-svn-id: svn://10.0.0.236/trunk@217876 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-06 01:18:24 +00:00
nelson%bolyard.com
0badc62ed6 Fix crash when importing (unwrapping) private key with no label.
Bug 335481. r=julien,rrelyea


git-svn-id: svn://10.0.0.236/trunk@217812 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-05 09:46:55 +00:00
nelson%bolyard.com
8ea6267f90 When storing new CRL, Find old CRL and if it can be decoded, delete it.
Bug 363749. r=wtchang,alexei.volkov


git-svn-id: svn://10.0.0.236/trunk@217798 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-05 01:32:18 +00:00
alexei.volkov.bugs%sun.com
8e4aef2827 353895: klocwork Null ptr derefs in pki/pkibase.c. r=nelson
git-svn-id: svn://10.0.0.236/trunk@217794 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-05 00:25:05 +00:00
alexei.volkov.bugs%sun.com
cf01bc82c1 353912: Misc klocwork bugs in lib/ckfw. r=nelson
git-svn-id: svn://10.0.0.236/trunk@217793 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-05 00:23:14 +00:00
alexei.volkov.bugs%sun.com
85697cdac7 353780: Klocwork NULL ptr dereferences in pkcs11.c. r=nelson
git-svn-id: svn://10.0.0.236/trunk@217790 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-05 00:21:45 +00:00
alexei.volkov.bugs%sun.com
60253eab1a 340218: Coverity 910, memory leaks in CRMF code. r=nelson
git-svn-id: svn://10.0.0.236/trunk@217787 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-05 00:00:50 +00:00
alexei.volkov.bugs%sun.com
25c1501389 342461 - verify signature on an OCSP response without intermediate decoding and encoding. r=nelson
git-svn-id: svn://10.0.0.236/trunk@217777 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-04 20:38:29 +00:00
alexei.volkov.bugs%sun.com
2a5c39463b Bug 158242: PK11_PutCRL is very memory inefficient. r=nelson, julien
git-svn-id: svn://10.0.0.236/trunk@217774 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-04 20:25:41 +00:00
neil.williams%sun.com
cf6970b3e9 Bug 339906, r=nelson, sec_pkcs12_install_bags passes uninitialized variables
git-svn-id: svn://10.0.0.236/trunk@217700 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-03 23:02:12 +00:00
nelson%bolyard.com
c4995ca9fc Bug 353904. Fix potential NULL ptr deref. Klocwork. r=alexei.volkov
git-svn-id: svn://10.0.0.236/trunk@217683 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-03 12:57:41 +00:00
nelson%bolyard.com
e14af33a7a Improve checking of received SSL2 records.
Bug 364319, bug 364323. r=rrelyea, wtchang


git-svn-id: svn://10.0.0.236/trunk@217670 18797224-902f-48f8-a5cc-f745e15eee43
2007-01-03 05:32:33 +00:00
wtchang%redhat.com
79bcd9fcd8 Bug 236613: added newline at end of file.
git-svn-id: svn://10.0.0.236/trunk@216914 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-12 23:26:40 +00:00
gerv%gerv.net
a54c420f30 Bug 236613: change to MPL/LGPL/GPL tri-license.
git-svn-id: svn://10.0.0.236/trunk@216839 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-11 09:45:41 +00:00
wtchang%redhat.com
e045e318b7 Bugzilla Bug 358785: merged the mozilla/security/nss/lib/libpkix from the
NSS_LIBPKIX_BRANCH onto the NSS trunk.  Approved by rrelyea and nelsonb.


git-svn-id: svn://10.0.0.236/trunk@216782 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-09 00:27:38 +00:00
wtchang%redhat.com
1cb5d3ccbb Bugzilla Bug 363073: verify that the peer's ephemeral public key is the
type we expect before using it.  r=nelsonb
Modified Files: ssl3con.c ssl3ecc.c


git-svn-id: svn://10.0.0.236/trunk@216773 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-08 22:37:29 +00:00
wtchang%redhat.com
ee9615098b Bugzilla Bug 357197: a small but subtle change to reject a hash algorithm
identifier with bogus 'parameters', and a large but straightforward change
of renaming function arguments and improving comments to clarify the
asymmetry between the two certID arguments. r=nelsonb


git-svn-id: svn://10.0.0.236/trunk@216772 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-08 22:10:52 +00:00
wtchang%redhat.com
0c3b792433 Bugzilla Bug 345482: changed abspath to core_abspath to avoid conflict with
the built-in abspath function of GNU make 3.81.  The patch is contributed
by Benjamin Smedberg <benjamin@smedbergs.us>. r=wtc,christophe.ravel
Modified Files:
	coreconf/rules.mk nss/cmd/shlibsign/Makefile
	nss/lib/freebl/Makefile nss/lib/pk11wrap/Makefile


git-svn-id: svn://10.0.0.236/trunk@216626 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-07 01:57:18 +00:00
wtchang%redhat.com
cb167e11ec Bug 332350: fixed a typo in the comment.
git-svn-id: svn://10.0.0.236/trunk@216614 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-06 23:00:17 +00:00
wtchang%redhat.com
a26a68193b Bugzilla Bug 342795: the call-once functions need to store the error code
on failure so that the error code can be retrieved later. r=nelsonb and
alexei.volkov.


git-svn-id: svn://10.0.0.236/trunk@216601 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-06 21:50:40 +00:00
wtchang%redhat.com
521bf20b5a Bugzilla Bug 362857: simplified the NSS and softoken version string
definition.  r=christophe.ravel,nelsonb.
Modified files: nss/nss.h softoken/softkver.h


git-svn-id: svn://10.0.0.236/trunk@216592 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-06 19:51:30 +00:00
kaie%kuix.de
a6585ba30d Bug 362967, export SECMOD_DeleteModuleEx
r=rrelyea, r=wtchang


git-svn-id: svn://10.0.0.236/trunk@216574 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-06 17:56:04 +00:00
kaie%kuix.de
8f45191b4b follow up checkin, make sure entries in nss.def are sorted
git-svn-id: svn://10.0.0.236/trunk@216571 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-06 17:32:47 +00:00
kaie%kuix.de
85ee992791 Export two NSS functions, required for:
Bug 307319, Certificate details show incorrect public key information
r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@216569 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-06 17:12:41 +00:00
wtchang%redhat.com
b9d0822fe3 Bugzilla Bug 357197: when we compare hash algorithm identifiers, allow the
'parameters' to be either NULL or missing.  r=nelsonb,relyea


git-svn-id: svn://10.0.0.236/trunk@216531 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-06 02:25:52 +00:00
wtchang%redhat.com
ed4b8e9aeb Bugzilla Bug 358248: SSL_ShutdownServerSessionIDCache should stop the
LockPoller thread.  r=nelsonb,relyea


git-svn-id: svn://10.0.0.236/trunk@216528 18797224-902f-48f8-a5cc-f745e15eee43
2006-12-06 01:36:08 +00:00