]> git.ipfire.org Git - thirdparty/openssl.git/commit
Correct documentation for PKCS5_PBKDF2_HMAC
authorSumitra Sharma <sumitraartsy@gmail.com>
Tue, 3 Oct 2023 03:58:44 +0000 (09:28 +0530)
committerTomas Mraz <tomas@openssl.org>
Wed, 4 Oct 2023 10:19:22 +0000 (12:19 +0200)
commit82496b8663f20ff12f02adbe46a060a94b0cbfc5
treef4de82305a3ef435c4a84ca8e9befdba76e917f3
parent1296c2ec7866a4f2f4d210432c771142e8de33a0
Correct documentation for PKCS5_PBKDF2_HMAC

In OpenSSL 3.x, the documentation for PKCS5_PBKDF2_HMAC incorrectly states
that an iter value less than 1 is treated as a single iteration. Upon further
investigation in providers/implementations/kdfs/pbkdf2.c, it appears that
invalid iter values will result in failure and raise the
PROV_R_INVALID_ITERATION_COUNT error. This commit corrects the documentation
to accurately reflect the behavior in OpenSSL 3.x.

Closes openssl#22168

Signed-off-by: Sumitra Sharma <sumitraartsy@gmail.com>
Reviewed-by: Paul Dale <pauli@openssl.org>
Reviewed-by: Tomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/22252)
doc/man3/PKCS5_PBKDF2_HMAC.pod