70 Commits

Author SHA1 Message Date
wtc%google.com
9f9423b165 Bug 807890: don't need to include both secoid.h and secoidt.h.
git-svn-id: svn://10.0.0.236/trunk@264585 18797224-902f-48f8-a5cc-f745e15eee43
2012-12-23 06:25:35 +00:00
emaldona%redhat.com
525797b903 Bug 807890 - Add support for Microsoft Trust List Signing EKU - fix naming, a=Kaspar Brand, r=rrelya
git-svn-id: svn://10.0.0.236/trunk@264576 18797224-902f-48f8-a5cc-f745e15eee43
2012-12-19 19:53:01 +00:00
emaldona%redhat.com
cf9365c1e3 Bug 807890 - Add support for Microsoft Trust List Signing EKU. r=rrelyea, wtc
git-svn-id: svn://10.0.0.236/trunk@264573 18797224-902f-48f8-a5cc-f745e15eee43
2012-12-19 02:10:42 +00:00
kaie%kuix.de
7f44995478 Bug 590364 - By default, stop accepting MD5 as a hash algorithm in certificate signatures
r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@264266 18797224-902f-48f8-a5cc-f745e15eee43
2012-09-27 17:23:33 +00:00
rrelyea%redhat.com
6ac8edb3d9 Bug 475578 - Implement Extended DSA as defined in FIPS 186-3 (DSS)
r = wtc
patch 5 of 7


git-svn-id: svn://10.0.0.236/trunk@263981 18797224-902f-48f8-a5cc-f745e15eee43
2012-06-25 21:48:41 +00:00
gerv%gerv.net
f465fa7d7e Bug 716563 - update license to MPL 2. r=rrelyea.
git-svn-id: svn://10.0.0.236/trunk@263750 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-25 14:50:19 +00:00
kaie%kuix.de
340f49de62 Bug 590364, backout, keep the old MD5 signature default for 3.13.x, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@263694 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-16 14:42:07 +00:00
kaie%kuix.de
f22b18e81d Bug 590364, Stop accepting MD5 as a hash algorithm in certificate signatures, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@263547 18797224-902f-48f8-a5cc-f745e15eee43
2012-03-10 11:15:02 +00:00
kaie%kuix.de
2d50bc73fe Bug 673115 - Add function to obtain version of NSS at runtime, r=wtc, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@262560 18797224-902f-48f8-a5cc-f745e15eee43
2011-08-01 07:08:10 +00:00
nelson%bolyard.com
809830b8b5 Bug 388978: Add EV-defined subject name attributes, r=emaldona
git-svn-id: svn://10.0.0.236/trunk@261231 18797224-902f-48f8-a5cc-f745e15eee43
2010-09-18 21:17:53 +00:00
wtc%google.com
0901e3da32 Bug 586857: Mark SEC_OID_NS_CERT_EXT_SSL_SERVER_NAME as an unsupported
certificate extension.  r=nelson.


git-svn-id: svn://10.0.0.236/trunk@261051 18797224-902f-48f8-a5cc-f745e15eee43
2010-08-16 18:27:24 +00:00
wtc%google.com
70500758a7 Bug 356713: Add the OID for SHA-224. The patch is contributed by
Hanno Boeck <hanno@hboeck.de>.  r=wtc.
Modified Files:
	secoid.c secoidt.h


git-svn-id: svn://10.0.0.236/trunk@260828 18797224-902f-48f8-a5cc-f745e15eee43
2010-07-20 23:53:31 +00:00
wtc%google.com
891b9b1ac8 Bug 158750: use the less precise but more readable name "RSA-PSS" rather
than "RSASSA-PSS".


git-svn-id: svn://10.0.0.236/trunk@260528 18797224-902f-48f8-a5cc-f745e15eee43
2010-06-23 01:39:29 +00:00
wtc%google.com
ce31efb833 Bug 553512: SEC_OID_X509_ANY_POLICY should be INVALID_CERT_EXTENSION rather
than UNSUPPORTED_CERT_EXTENSION.  r=alexei.


git-svn-id: svn://10.0.0.236/trunk@260464 18797224-902f-48f8-a5cc-f745e15eee43
2010-06-12 01:56:15 +00:00
wtc%google.com
1baefe772d Bug 158750: Add OIDs from PKCS #1 (RFC 4055) for RSA PSS and OAEP and
SHA-224 with RSA encryption.  The patch is contributed by Hanno Boeck
<hanno@hboeck.de>.  r=wtc.
Modified Files:
	secoid.c secoidt.h


git-svn-id: svn://10.0.0.236/trunk@260386 18797224-902f-48f8-a5cc-f745e15eee43
2010-05-28 01:26:07 +00:00
wtc%google.com
fe86a63c90 Bug 506804: Add SCCS and RCS version strings to libnssutil3.so. r=emaldona.
git-svn-id: svn://10.0.0.236/trunk@259673 18797224-902f-48f8-a5cc-f745e15eee43
2010-02-10 17:48:01 +00:00
alexei.volkov.bugs%sun.com
819d921423 back out patch for bug 517615: this patch requires a parallel fix to be made in softoken.
git-svn-id: svn://10.0.0.236/trunk@258979 18797224-902f-48f8-a5cc-f745e15eee43
2009-11-11 23:24:33 +00:00
alexei.volkov.bugs%sun.com
2c8296e0d6 Bug 517615 - Crash in secoid code, trying to reinitialize after failed NSS shutdown. r=nelson,wtc,bob
git-svn-id: svn://10.0.0.236/trunk@258946 18797224-902f-48f8-a5cc-f745e15eee43
2009-11-09 23:04:29 +00:00
alexei.volkov.bugs%sun.com
eed434c379 391434 - avoid multiple encoding/decoding of PKIX_PL_OID to and from ascii string. r=nelson.
git-svn-id: svn://10.0.0.236/trunk@256908 18797224-902f-48f8-a5cc-f745e15eee43
2009-04-14 02:04:08 +00:00
nelson%bolyard.com
07dd47ce82 Bug 483113: Make OID description strings use consistent names for algorithms.
Use ';' as separator in environment variable.  r=Julien.pierre


git-svn-id: svn://10.0.0.236/trunk@256615 18797224-902f-48f8-a5cc-f745e15eee43
2009-03-21 02:03:05 +00:00
nelson%bolyard.com
4b2207833f Bug 483113: add environment variable to disable/enable hash algorithms in
cert/CRL signatures.  Patch suggested and reviewed by Julien.Pierre.


git-svn-id: svn://10.0.0.236/trunk@256610 18797224-902f-48f8-a5cc-f745e15eee43
2009-03-21 00:45:50 +00:00
nelson%bolyard.com
6abd313ebb Bug 483113: add environment variable to disable/enable hash algorithms
in cert/CRL signatures.  r=julien.pierre


git-svn-id: svn://10.0.0.236/trunk@256609 18797224-902f-48f8-a5cc-f745e15eee43
2009-03-21 00:06:52 +00:00
wtc%google.com
e16a5f482e Bug 482742: replaced the deprecated CKM_NETSCAPE_AES_KEY_WRAP by
CKM_NSS_AES_KEY_WRAP.  r=rrelyea.


git-svn-id: svn://10.0.0.236/trunk@256607 18797224-902f-48f8-a5cc-f745e15eee43
2009-03-20 23:41:24 +00:00
nelson%bolyard.com
91e491800f Bug 471539: create a means to Stop honoring digital signatures in
certificates and CRLs based on weak hashes. r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@256527 18797224-902f-48f8-a5cc-f745e15eee43
2009-03-13 02:59:04 +00:00
julien.pierre.boogz%sun.com
c60c10b0b0 Fix for bug 473505 . softoken's C_Initialize and C_Finalize should succeed after a fork in a child process. r=relyea, nelson
git-svn-id: svn://10.0.0.236/trunk@256055 18797224-902f-48f8-a5cc-f745e15eee43
2009-02-03 05:34:47 +00:00
nelson%bolyard.com
3bf81e175c Bug 453234: Support for SEED Cipher Suites to TLS RFC 4010
patch by Yeonjung Kang <kang.yeonjung@gmail.com>, r=nelson


git-svn-id: svn://10.0.0.236/trunk@255547 18797224-902f-48f8-a5cc-f745e15eee43
2008-12-17 06:09:22 +00:00
julien.pierre.boogz%sun.com
2b62961592 Fix for bug 303457 . Undo changes to the OID table that were made for libpkix, since it doesn't rely on the OID table to determine critical extensions. r=nelson
git-svn-id: svn://10.0.0.236/trunk@249082 18797224-902f-48f8-a5cc-f745e15eee43
2008-04-04 00:01:43 +00:00
nelson%bolyard.com
19e5b361e5 Bug 405966: Unknown signature OID 1.3.14.3.2.29 causes sec_error_bad_signature
3.11 ignores it. r=julien.pierre


git-svn-id: svn://10.0.0.236/trunk@246703 18797224-902f-48f8-a5cc-f745e15eee43
2008-02-28 04:27:36 +00:00
julien.pierre.boogz%sun.com
5a999728f2 Fix for 403240 . threads hanging in nss_InitLock. More cleanup of secoid based on Wan-Teh's feedback.
git-svn-id: svn://10.0.0.236/trunk@246018 18797224-902f-48f8-a5cc-f745e15eee43
2008-02-19 23:53:30 +00:00
julien.pierre.boogz%sun.com
29443dfc70 Fix for bug 403240 - threads hanging in nss_InitLock . r=wtc,nelson
git-svn-id: svn://10.0.0.236/trunk@245810 18797224-902f-48f8-a5cc-f745e15eee43
2008-02-16 04:38:09 +00:00
wtc%google.com
fa56338784 Bug 402777: Two changes to make lib/util more stand-alone. Moved
CKM_INVALID_MECHANISM from secmodt.h to pkcs11n.h.  Moved the three
CERTValidity functions from lib/util/sectime.c to lib/certdb/certdb.c.
r=rrelyea.
Modified Files:
	lib/certdb/certdb.c lib/nss/utilwrap.c lib/pk11wrap/secmodt.h
	lib/softoken/pkcs11n.h lib/util/nssutil.def lib/util/secoid.c
	lib/util/sectime.c lib/util/utilrename.h


git-svn-id: svn://10.0.0.236/trunk@238930 18797224-902f-48f8-a5cc-f745e15eee43
2007-11-07 21:43:28 +00:00
neil.williams%sun.com
d23a220b27 Bug 324744, add gen of policy extns to certutil, second of 3 patches
r=julien


git-svn-id: svn://10.0.0.236/trunk@235372 18797224-902f-48f8-a5cc-f745e15eee43
2007-09-07 18:45:53 +00:00
rrelyea%redhat.com
557cb6151c Bug 391291 Implement Shared Database Integrity checks.
r=nelson (plus review from kengert)


git-svn-id: svn://10.0.0.236/trunk@231760 18797224-902f-48f8-a5cc-f745e15eee43
2007-08-09 22:36:20 +00:00
alexei.volkov.bugs%sun.com
110431be3e Bug 358785: Merge NSS_LIBPKIX_BRANCH back to trunk. r=julien, r=alexei
git-svn-id: svn://10.0.0.236/trunk@226998 18797224-902f-48f8-a5cc-f745e15eee43
2007-05-25 07:28:38 +00:00
nelson%bolyard.com
201dc777a8 Bug 371160 – eliminate bogus PKCS12_KEY_USAGE in secoid table . r=rrelyea,alexei
git-svn-id: svn://10.0.0.236/trunk@225972 18797224-902f-48f8-a5cc-f745e15eee43
2007-05-05 22:45:16 +00:00
nelson%bolyard.com
874bd204fc Bug 371685 – allow unsupported critical extensions in special builds.
r=rrelyea,wtc


git-svn-id: svn://10.0.0.236/trunk@225562 18797224-902f-48f8-a5cc-f745e15eee43
2007-05-04 05:15:43 +00:00
rrelyea%redhat.com
5e97cf8097 Add Camilla cipher suites TLS RFC4132 bug 361025
code supplied by okazaki@kick.gr.jp


git-svn-id: svn://10.0.0.236/trunk@221086 18797224-902f-48f8-a5cc-f745e15eee43
2007-02-28 19:47:40 +00:00
wtchang%redhat.com
a5700b389e Bugzilla Bug 358785: fixed incorrect x509PolicyConstraints OID and typos in
a comment. r=relyea


git-svn-id: svn://10.0.0.236/trunk@216127 18797224-902f-48f8-a5cc-f745e15eee43
2006-11-30 00:27:28 +00:00
rrelyea%redhat.com
0a3bb0e619 Bug 320583 Support for SHA256/384/512 with ECC signing
git-svn-id: svn://10.0.0.236/trunk@189396 18797224-902f-48f8-a5cc-f745e15eee43
2006-02-08 06:14:31 +00:00
wtchang%redhat.com
b1be2b7064 Bugzilla Bug 263779: update the comment to reflect the new code.
Modified Files: secoid.c secoidt.h


git-svn-id: svn://10.0.0.236/trunk@170303 18797224-902f-48f8-a5cc-f745e15eee43
2005-03-07 18:34:48 +00:00
neil.williams%sun.com
66557be85d Bug 263779 r=nelson@bolyard.com
This patch adds a new OID which is needed for the certutil patch which will follow.


git-svn-id: svn://10.0.0.236/trunk@170071 18797224-902f-48f8-a5cc-f745e15eee43
2005-03-02 02:54:54 +00:00
wtchang%redhat.com
45856c0285 Bugzilla Bug 282370: Added OID for PKIX_CA_ISSUERS. The patch is
contributed by Martin v. Löwis <martin@v.loewis.de>. r=nelson,wtc.
Modified Files: secoid.c secoidt.h


git-svn-id: svn://10.0.0.236/trunk@169662 18797224-902f-48f8-a5cc-f745e15eee43
2005-02-23 19:43:02 +00:00
gerv%gerv.net
43cb9e1492 Bug 236613: change to MPL/LGPL/GPL tri-license.
git-svn-id: svn://10.0.0.236/trunk@155484 18797224-902f-48f8-a5cc-f745e15eee43
2004-04-25 15:03:26 +00:00
nelsonb%netscape.com
a27747ac5b Change some comments and one variable as suggested in review comments.
r=relyea,wtc.  Bug 124923.


git-svn-id: svn://10.0.0.236/trunk@152043 18797224-902f-48f8-a5cc-f745e15eee43
2004-01-29 21:57:41 +00:00
nelsonb%netscape.com
e67ef64ae6 Make SECOID_AddEntry be thread safe. Export it. Bug 124923. r=relyea.
git-svn-id: svn://10.0.0.236/trunk@152036 18797224-902f-48f8-a5cc-f745e15eee43
2004-01-29 21:23:36 +00:00
wchang0222%aol.com
ea1452940c Return a value of the correct type.
git-svn-id: svn://10.0.0.236/trunk@150652 18797224-902f-48f8-a5cc-f745e15eee43
2003-12-23 01:03:39 +00:00
nelsonb%netscape.com
f834fdbace Add new OIDs for directory name attribute types. Bug 207711.
git-svn-id: svn://10.0.0.236/trunk@143384 18797224-902f-48f8-a5cc-f745e15eee43
2003-06-06 04:48:45 +00:00
nelsonb%netscape.com
05066e8aa0 Report the right error code for unrecognized OIDs.
git-svn-id: svn://10.0.0.236/trunk@142748 18797224-902f-48f8-a5cc-f745e15eee43
2003-05-22 05:20:02 +00:00
nelsonb%netscape.com
faa5b981f5 Changes to enable ECC over characteristic 2^m fields.
Contribution from Vipul Gupta <Vipul.Gupta@Sun.COM>
Modified Files:
 nss/cmd/strsclnt/strsclnt.c nss/lib/cryptohi/seckey.c
 nss/lib/freebl/blapit.h nss/lib/freebl/ec.c
 nss/lib/freebl/manifest.mn nss/lib/freebl/mpi/Makefile
 nss/lib/softoken/ecdecode.c nss/lib/softoken/pkcs11.c
 nss/lib/ssl/ssl3con.c nss/lib/util/secoid.c
 nss/lib/util/secoidt.h


git-svn-id: svn://10.0.0.236/trunk@140430 18797224-902f-48f8-a5cc-f745e15eee43
2003-03-29 00:18:30 +00:00
relyea%netscape.com
9d821ec867 Add OID Definition for AOL screenname attribute.
git-svn-id: svn://10.0.0.236/trunk@139873 18797224-902f-48f8-a5cc-f745e15eee43
2003-03-20 23:53:39 +00:00