Commit Graph

168 Commits (ba8edd5ea8fe43152980b7ce1fcc082db3325395)
 

Author SHA1 Message Date
Dmitry Belyavskiy ea9f0a5726 OpenSSL will generate keys with prime192v1 curve if it is provided using explicit parameters 3 years ago
Peter Robinson 849a9965ee Support KBKDF (NIST SP800-108) with an R value of 8bits Resolves: rhbz#2027261 3 years ago
Clemens Lang 53f53fedec Allow SHA1 usage in MGF1 for RSASSA-PSS signatures 3 years ago
Dmitry Belyavskiy b33dfd3fc3 Spec bump 3 years ago
Clemens Lang 5a9ab1160e Allow SHA1 usage in HMAC in TLS 3 years ago
Dmitry Belyavskiy 53b85f538c OpenSSL will generate keys with prime192v1 curve if it is provided using explicit parameters 3 years ago
Dmitry Belyavskiy d79f404164 Allows non-fips KDF for PKCS#12 3 years ago
Clemens Lang 78fb78d307 Disable SHA1 signature creation and verification by default 3 years ago
Sahana Prasad 0a5c81da78 s_server: correctly handle 2^14 byte long records 3 years ago
Dmitry Belyavskiy 922b5301ea Adjust FIPS provider version 3 years ago
Dmitry Belyavskiy 8c3b745547 On the s390x, zeroize all the copies of TLS premaster secret 3 years ago
Dmitry Belyavskiy 92e721fa5d Rebuild 3 years ago
Dmitry Belyavskiy 691c22b61c Remove volatile attribute from HMAC to make annocheck happy 3 years ago
Dmitry Belyavskiy d237e7f301 Restoring fips=yes to SHA-1 3 years ago
Dmitry Belyavskiy 9df33eabbe KATS self-tests should run before HMAC verifcation 3 years ago
Sahana Prasad f5421022ee Adds enable-buildtest-c++ to the configure options. 3 years ago
Sahana Prasad 78a467efcc Rebase to upstream version 3.0.1 3 years ago
Dmitry Belyavskiy e63c4b68b2 Update spec file, remove fipsmodule.cnf 3 years ago
Dmitry Belyavskiy 6cdaa527d8 Explicitly permit SHA1 HMAC 3 years ago
Dmitry Belyavskiy cc37486d86 Minimize the list of services allowed for FIPS 3 years ago
Dmitry Belyavskiy 225b6d37b9 openssl speed should run in FIPS mode 3 years ago
Dmitry Belyavskiy 13dc3794cb Make rpminspect happy 3 years ago
Dmitry Belyavskiy 4c1c00d6af Updated spec, some cleanup done 3 years ago
Dmitry Belyavskiy 9422ae52de Always activate default provider via config 3 years ago
Dmitry Belyavskiy 210c37e906 Disable fipsinstall application 3 years ago
Dmitry Belyavskiy 3ff0db7558 Embed correct HMAC into fips provider 3 years ago
Dmitry Belyavskiy 5c4e10ac26 FIPS provider auto activation 3 years ago
Dmitry Belyavskiy 694c426faf Fix memory leak in s_client 3 years ago
Dmitry Belyavskiy b76c2316a3 KTLS and FIPS may interfere, so tests need to be tuned 3 years ago
Dmitry Belyavskiy 3edf474b5d Avoid double-free on error seeding the RNG. 3 years ago
Sahana Prasad 34d46544a5 Rebase to upstream version 3.0.0 3 years ago
Sahana Prasad 07de966235 - Removes the dual-abi build as it not required anymore. The mass rebuild 4 years ago
Dmitry Belyavskiy ddd1eb3708 Correctly processing CMS reading from /dev/stdin 4 years ago
Sahana Prasad 49de59749c Add instruction for loading legacy provider in openssl.cnf 4 years ago
Sahana Prasad 03899fca38 Adds support for IDEA encryption. 4 years ago
Sahana Prasad 0c6f4a599c - Fixes core dump in openssl req -modulus 4 years ago
Mohan Boddu 2862adca42 Rebuilt for IMA sigs, glibc 2.34, aarch64 flags 4 years ago
Dmitry Belyavskiy ecb6630fd3 When signature_algorithm extension is omitted, use more relevant alerts 4 years ago
Sahana Prasad c5d8025ca8 Remove tier 0 functional test from gating.yaml. 4 years ago
Sahana Prasad fe7445d93d Rebase to upstream version beta2 4 years ago
Sahana Prasad 0b6afca185 - Prevents creation of duplicate cert entries in PKCS files 4 years ago
Aleksandra Fedorova b7c6b85c95 Add RHEL gating configuration 4 years ago
Sahana Prasad e3d0ba4f1e NVR Bump to Update to OpenSSL 3.0 Beta1 version 4 years ago
Sahana Prasad 529b968a17 Update patch dual-abi.patch to add the #define macros in implementation 4 years ago
Sahana Prasad a3158ae4f7 Removes unused patch dual-abi.patch 4 years ago
Sahana Prasad d4e97b3110 Update to Beta1 version 4 years ago
Sahana Prasad 90bf702df6 - Fixes override of openssl_conf in openssl.cnf 4 years ago
Sahana Prasad 4f728a9f3f Fixes override of openssl_conf in openssl.cnf 4 years ago
Sahana Prasad 826e7990ea Adds FIPS mode compatibility patch 4 years ago
Sahana Prasad 240131b9eb - Fixes system hang issue when booted in FIPS mode 4 years ago