summaryrefslogtreecommitdiffstats
path: root/digest-openssl.c (follow)
Commit message (Collapse)AuthorAgeFilesLines
* Remove configure test & compat code for ripemd160.Darren Tucker2020-01-141-3/+0
| | | | | RIPEMD160 support was removed upstream in 2017, however we still had a configure test and compat code for it, so clean those up now.
* Re-apply portability changes to current sha2.{c,h}.Darren Tucker2019-07-231-2/+6
| | | | | | Rather than attempt to apply 14 years' worth of changes to OpenBSD's sha2 I imported the current versions directly then re-applied the portability changes. This also allowed re-syncing digest-libc.c against upstream.
* upstream: hold our collective noses and use the openssl-1.1.x API indjm@openbsd.org2018-09-131-12/+14
| | | | | | OpenSSH; feedback and ok tb@ jsing@ markus@ OpenBSD-Commit-ID: cacbcac87ce5da0d3ca7ef1b38a6f7fb349e4417
* upstream commitdjm@openbsd.org2017-05-101-2/+1
| | | | | | remove hmac-ripemd160; ok dtucker Upstream-ID: 896e737ea0bad6e23327d1c127e02d5e9e9c654d
* upstream commitdtucker@openbsd.org2017-03-101-2/+2
| | | | | | | Validate digest arg in ssh_digest_final; from jjelen at redhat.com via bz#2687, ok djm@ Upstream-ID: dbe5494dfddfe523fab341a3dab5a79e7338f878
* Move OPENSSL_NO_RIPEMD160 to compat.Darren Tucker2016-10-281-2/+1
| | | | | Move OPENSSL_NO_RIPEMD160 to compat and add ifdefs to mac.c around the ripemd160 MACs.
* Check if RIPEMD160 is disabled in OpenSSL.Darren Tucker2016-10-281-1/+2
|
* support --without-openssl at configure timeDamien Miller2015-01-141-0/+3
| | | | | | | | Disables and removes dependency on OpenSSL. Many features don't work and the set of crypto options is greatly restricted. This will only work on system with native arc4random or /dev/urandom. Considered highly experimental for now.
* upstream commitdjm@openbsd.org2014-12-211-1/+21
| | | | | | | | Add FingerprintHash option to control algorithm used for key fingerprints. Default changes from MD5 to SHA256 and format from hex to base64. Feedback and ok naddy@ markus@
* - (djm) [digest-openssl.c] Preserve array order when disabling digests.Damien Miller2014-07-171-4/+11
| | | | Reported by Petr Lautrbach.
* - djm@cvs.openbsd.org 2014/07/03 03:26:43Damien Miller2014-07-031-8/+11
| | | | | | | [digest-openssl.c] use EVP_Digest() for one-shot hash instead of creating, updating, finalising and destroying a context. bz#2231, based on patch from Timo Teras
* - (djm) [digest-openssl.c configure.ac] Disable RIPEMD160 if libcryptoDamien Miller2014-07-031-0/+2
| | | | doesn't support it.
* - djm@cvs.openbsd.org 2014/06/24 01:13:21Damien Miller2014-07-021-16/+20
| | | | | | | | | | | | | | | | | | | | | | | [Makefile.in auth-bsdauth.c auth-chall.c auth-options.c auth-rsa.c [auth2-none.c auth2-pubkey.c authfile.c authfile.h cipher-3des1.c [cipher-chachapoly.c cipher-chachapoly.h cipher.c cipher.h [digest-libc.c digest-openssl.c digest.h dns.c entropy.c hmac.h [hostfile.c key.c key.h krl.c monitor.c packet.c rsa.c rsa.h [ssh-add.c ssh-agent.c ssh-dss.c ssh-ecdsa.c ssh-ed25519.c [ssh-keygen.c ssh-pkcs11-client.c ssh-pkcs11-helper.c ssh-pkcs11.c [ssh-rsa.c sshbuf-misc.c sshbuf.h sshconnect.c sshconnect1.c [sshconnect2.c sshd.c sshkey.c sshkey.h [openbsd-compat/openssl-compat.c openbsd-compat/openssl-compat.h] New key API: refactor key-related functions to be more library-like, existing API is offered as a set of wrappers. with and ok markus@ Thanks also to Ben Hawkes, David Tomaschik, Ivan Fratric, Matthew Dempsky and Ron Bowes for a detailed review a few months ago. NB. This commit also removes portable OpenSSH support for OpenSSL <0.9.8e.
* - djm@cvs.openbsd.org 2014/02/02 03:44:31Damien Miller2014-02-041-2/+2
| | | | | [digest-libc.c digest-openssl.c] convert memset of potentially-private data to explicit_bzero()
* - markus@cvs.openbsd.org 2014/01/27 20:13:46Damien Miller2014-02-041-0/+166
[digest.c digest-openssl.c digest-libc.c Makefile.in] rename digest.c to digest-openssl.c and add libc variant; ok djm@