]>
git.ipfire.org Git - thirdparty/gnutls.git/log
Nikos Mavrogiannopoulos [Mon, 3 Mar 2003 15:34:51 +0000 (15:34 +0000)]
some fixes in tests
Nikos Mavrogiannopoulos [Fri, 28 Feb 2003 23:05:15 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 27 Feb 2003 23:40:55 +0000 (23:40 +0000)]
Added support for MD2 signature verification in X.509 certificates.
Nikos Mavrogiannopoulos [Tue, 25 Feb 2003 23:05:18 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Tue, 25 Feb 2003 21:39:53 +0000 (21:39 +0000)]
Added option to disable all TLS 1.0 extensions.
Nikos Mavrogiannopoulos [Tue, 25 Feb 2003 21:33:32 +0000 (21:33 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sat, 22 Feb 2003 23:05:15 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sat, 22 Feb 2003 22:26:30 +0000 (22:26 +0000)]
some fixes in makefiles.
Nikos Mavrogiannopoulos [Fri, 21 Feb 2003 10:25:02 +0000 (10:25 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 20 Feb 2003 23:05:08 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 20 Feb 2003 07:40:56 +0000 (07:40 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 20 Feb 2003 07:38:21 +0000 (07:38 +0000)]
Added a small example on how to use the certificate selection callback in client side.
Nikos Mavrogiannopoulos [Wed, 19 Feb 2003 13:02:42 +0000 (13:02 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Tue, 18 Feb 2003 23:05:08 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Tue, 18 Feb 2003 22:55:00 +0000 (22:55 +0000)]
some fixes in types.
Nikos Mavrogiannopoulos [Tue, 18 Feb 2003 06:30:31 +0000 (06:30 +0000)]
The client certificate selection callback is no longer called twice. It is called once if it is set.
Nikos Mavrogiannopoulos [Sun, 16 Feb 2003 23:05:07 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sun, 16 Feb 2003 21:29:13 +0000 (21:29 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sun, 16 Feb 2003 21:29:13 +0000 (21:29 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sun, 16 Feb 2003 17:59:07 +0000 (17:59 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sun, 16 Feb 2003 09:52:31 +0000 (09:52 +0000)]
works better in buggy servers.
Nikos Mavrogiannopoulos [Sun, 16 Feb 2003 09:37:29 +0000 (09:37 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sun, 16 Feb 2003 09:17:09 +0000 (09:17 +0000)]
The RSA and DH parameter handling has been updated.
Nikos Mavrogiannopoulos [Sat, 15 Feb 2003 23:05:13 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sat, 15 Feb 2003 21:48:12 +0000 (21:48 +0000)]
Added a primitive function to load a file into memory, so that no certificate files are truncated. Also fixed a bug in the client certificate callback function.
Nikos Mavrogiannopoulos [Sat, 15 Feb 2003 17:13:07 +0000 (17:13 +0000)]
Null, as the data value, is now an acceptable value in functions that may return the size of the data.
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 23:05:08 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 15:55:48 +0000 (15:55 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 15:48:33 +0000 (15:48 +0000)]
Corrected bugs in gnutls_x509_rdn_get(). Added a test to print the server's trusted CAs in gnutls-cli-debug, and in gnutls-cli.
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 10:32:02 +0000 (10:32 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 10:24:40 +0000 (10:24 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 10:10:00 +0000 (10:10 +0000)]
ported to libtasn1 0.2.x. Also the included minitasn1 was replaced by the 0.2.1 version of libtasn1.
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 08:42:23 +0000 (08:42 +0000)]
gnutls_const_datum was removed from exported types, for the time being.
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 00:58:54 +0000 (00:58 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 14 Feb 2003 00:33:43 +0000 (00:33 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 13 Feb 2003 23:05:13 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 13 Feb 2003 09:23:24 +0000 (09:23 +0000)]
Added option to allow an X.509 server not to send the trusted CA list to the peer.
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 23:05:09 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 19:13:27 +0000 (19:13 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 18:30:07 +0000 (18:30 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 13:50:58 +0000 (13:50 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 13:30:19 +0000 (13:30 +0000)]
Added test which prints the Diffie Hellman prime bits used.
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 12:49:28 +0000 (12:49 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 12:48:42 +0000 (12:48 +0000)]
Added some private key handling functions. They are primitive enough for now.
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 12:01:41 +0000 (12:01 +0000)]
some fixes to compile.
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 11:48:04 +0000 (11:48 +0000)]
added new extensions draft.
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 11:46:19 +0000 (11:46 +0000)]
gnutls_x509_certificate_* were renamed gnutls_x509_crt_*.
Nikos Mavrogiannopoulos [Wed, 12 Feb 2003 11:26:18 +0000 (11:26 +0000)]
added gnutls_x509_certificate_get_fingerprint(). Untested yet.
Nikos Mavrogiannopoulos [Mon, 10 Feb 2003 23:05:10 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Mon, 10 Feb 2003 16:51:18 +0000 (16:51 +0000)]
renamed gnutls_x509_fingerprint to gnutls_fingerprint.
Nikos Mavrogiannopoulos [Sun, 9 Feb 2003 23:05:15 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sun, 9 Feb 2003 09:53:04 +0000 (09:53 +0000)]
fixes in pkcs3 DH parameter generation.
Nikos Mavrogiannopoulos [Sun, 9 Feb 2003 09:39:38 +0000 (09:39 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sun, 9 Feb 2003 09:37:35 +0000 (09:37 +0000)]
Several internal changes to use the new certificate API. CRL support is complete.
Nikos Mavrogiannopoulos [Sat, 8 Feb 2003 23:05:11 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sat, 8 Feb 2003 20:25:03 +0000 (20:25 +0000)]
Certificate revocation support is almost complete.
Nikos Mavrogiannopoulos [Sat, 8 Feb 2003 14:46:12 +0000 (14:46 +0000)]
added a crl verification function (untested yet).
Nikos Mavrogiannopoulos [Sat, 8 Feb 2003 11:29:41 +0000 (11:29 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sat, 8 Feb 2003 11:21:33 +0000 (11:21 +0000)]
Added some new certificate verification functions.
Nikos Mavrogiannopoulos [Sat, 8 Feb 2003 07:29:59 +0000 (07:29 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 23:05:12 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 22:20:31 +0000 (22:20 +0000)]
removed the raw part in the gnutls_privkey internal structure..
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 21:03:28 +0000 (21:03 +0000)]
Criticality of an X.509 extension can now be extracted.
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 20:46:59 +0000 (20:46 +0000)]
Added function to extract the key usage extension from an X.509 certificate, and combined some code.
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 19:42:22 +0000 (19:42 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 19:01:00 +0000 (19:01 +0000)]
More stuff for the new certificate API.
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 14:48:57 +0000 (14:48 +0000)]
The old certificate parsing API was reimplemented over the new one. It will stay in the 1.0.0 release for compatibility reasons.
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 13:33:10 +0000 (13:33 +0000)]
Added the new PKCS7 parsing functions.
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 10:22:17 +0000 (10:22 +0000)]
Added the new certificate handling functions.
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 10:15:31 +0000 (10:15 +0000)]
Added the new certificate handling functions.
Nikos Mavrogiannopoulos [Fri, 7 Feb 2003 09:06:51 +0000 (09:06 +0000)]
More improvements in the CRL support, and the X.509 backend. Added a function to get some parts of the DN using an OID.
Nikos Mavrogiannopoulos [Thu, 6 Feb 2003 23:05:12 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 6 Feb 2003 16:49:42 +0000 (16:49 +0000)]
CRL parsing support is almost complete.
Nikos Mavrogiannopoulos [Thu, 6 Feb 2003 10:05:53 +0000 (10:05 +0000)]
Several fixes and improvements in CRL support.
Nikos Mavrogiannopoulos [Wed, 5 Feb 2003 23:05:09 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Wed, 5 Feb 2003 20:20:42 +0000 (20:20 +0000)]
Added preliminary CRL support. This will be under the new X.509 API. Other x509 functions will be updated later.
Nikos Mavrogiannopoulos [Wed, 5 Feb 2003 07:56:09 +0000 (07:56 +0000)]
some fixes. There wasn't any limitation in libtasn1 code... just my lazyness.
Nikos Mavrogiannopoulos [Mon, 3 Feb 2003 23:05:09 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Mon, 3 Feb 2003 17:41:39 +0000 (17:41 +0000)]
use options to print DH parameters.
Nikos Mavrogiannopoulos [Mon, 3 Feb 2003 17:34:38 +0000 (17:34 +0000)]
* Added gnutls_pkcs3_extract_dh_params() and gnutls_pkcs3_export_dh_params()
which extracts and export parameters from and to PKCS#3 encoded structures.
These were added to read parameters generated using the openssl dhparam tool.
* The prime program was modified to also print the generated prime and generator
using the PKCS#3 format.
Nikos Mavrogiannopoulos [Mon, 3 Feb 2003 16:11:43 +0000 (16:11 +0000)]
* gnutls_dh_params_generate() and gnutls_rsa_params_generate() now use
gnutls_malloc() to allocate the output parameters.
* Added gnutls_pkcs3_extract_dh_params() which extracts parameters from
PKCS#3 encoded structures. This was in order to read parameters generated
using the openssl dhparam tool.
* Several changes in the temporary (DH/RSA) parameter codebase. No DH
parameters are now included in the library. Also a credentials structure
can now hold only one temporary parameter.
Nikos Mavrogiannopoulos [Thu, 30 Jan 2003 23:05:12 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 30 Jan 2003 20:36:44 +0000 (20:36 +0000)]
more doc for the gnutls_set_dh_prime_bits().
Nikos Mavrogiannopoulos [Thu, 30 Jan 2003 09:16:01 +0000 (09:16 +0000)]
removed backward compatibility functions for 0.9.0 version.
Nikos Mavrogiannopoulos [Thu, 30 Jan 2003 09:04:15 +0000 (09:04 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Tue, 28 Jan 2003 09:08:15 +0000 (09:08 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sat, 25 Jan 2003 23:05:13 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sat, 25 Jan 2003 12:07:35 +0000 (12:07 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Sat, 25 Jan 2003 08:57:42 +0000 (08:57 +0000)]
use RECEIVED_ILLEGAL_PARAMETER instead of SRP_PROTOCOL_FAILURE, when
the SRP protocol fails.
Nikos Mavrogiannopoulos [Fri, 24 Jan 2003 23:05:09 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Fri, 24 Jan 2003 12:13:26 +0000 (12:13 +0000)]
The gcrypt log handler is only set when we are in debugging mode.
Nikos Mavrogiannopoulos [Fri, 24 Jan 2003 12:09:59 +0000 (12:09 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 23 Jan 2003 23:05:08 +0000 (23:05 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 23 Jan 2003 20:55:37 +0000 (20:55 +0000)]
Added ability to send some messages back to the application using
the gnutls_global_set_log_function(). This is quite experimental.
Nikos Mavrogiannopoulos [Thu, 23 Jan 2003 18:05:57 +0000 (18:05 +0000)]
some minor bugfixes in the documentation.
Nikos Mavrogiannopoulos [Thu, 23 Jan 2003 15:29:27 +0000 (15:29 +0000)]
Added check and error code for some SRP fatal protocol failures.
Nikos Mavrogiannopoulos [Thu, 23 Jan 2003 15:09:23 +0000 (15:09 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 23 Jan 2003 14:55:28 +0000 (14:55 +0000)]
more cleanups.
Nikos Mavrogiannopoulos [Thu, 23 Jan 2003 10:18:27 +0000 (10:18 +0000)]
*** empty log message ***
Nikos Mavrogiannopoulos [Thu, 23 Jan 2003 10:18:03 +0000 (10:18 +0000)]
The library notifies the application on empty and illegal SRP usernames,
so that proper notification (via an alert) is sent to the peer. Currently when
the SRP ciphersuite is advertized but no username is sent by the peer, the
library returns GNUTLS_E_EMPTY_SRP_USERNAME, and the alert associated with
this is GNUTLS_A_ACCESS_DENIED (to be changed when the srp draft defines something
more appropriate).