Age | Commit message (Collapse) | Author | Files | Lines |
|
6787364 Administration and policy configuration changes to support FIPS 140-2
6867384 Solaris Crypto Framework needs to implement self tests for FIPS 140-2 compliance
|
|
6831413 multiple SCF providers advertise wrong boundaries for CKM_DES3_{CBC,ECB}{,_PAD} key lengths
|
|
6862268 C_Initialize() does not correctly cleans resources when fails
6862202 token_session mutexes are not covered by at_fork handler
6862207 PKCS11 softtoken:C_Initialize() sets softtoken_initialized to TRUE also when it fails
|
|
6865428 pkcs11_tpm should be installed by default, or it won't be used
|
|
|
|
6865428 pkcs11_tpm should be installed by default, or it won't be used
|
|
|
|
|
|
Portions contributed by Rich Lowe
|
|
|
|
FIPS-140 integrity checking
6851814 tools elfsign is unnecessarily linked against pkcs11_softtoken
|
|
libumem
|
|
6847226 session reference counter is not thread safe in pkcs11_kernel
|
|
|
|
must to be handled after fork
6828366 pkcs11_kernel/softtoken atfork handler should acquire session objects mutex too
|
|
|
|
6834645 DEBUG tpm driver scares me on boot
6829606 TPM failure codes should not be part of the general fail_value message list.
|
|
for RSA keys
6820888 CKA_MODULUS_BITS attribute is sometimes missing in pkcs11_softtoken
|
|
|
|
6824692 C_SeedRandom() should not suceed with null seed
6824700 C_DigestInit() should not fail if mech->ulParameterLen != 0
6824077 C_Login fails because of error codes being returned and incorrect error checking
6827617 C_SignRecover() & C_VerifyRecover() with mechanism RSA_PKCS fail in pk11asymmetrictest_test
6830264 pkcs11 TPM provider does not load on 64-bit
6831335 pkcs11_tpm provider does not handle forks and mutexes correctly.
|
|
6747587 Remove redundant code in ccm.c
--HG--
rename : usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE => usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE.gladman
rename : usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE.descrip => usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE.gladman.descrip
|
|
6282064 C_GetSlotInfo returns CKR_SLOT_ID_INVALID when the logical provider is the only slot on the system
6177650 Wrong error code returned when key does not allow requested operation
6437677 C_GenerateKey with missing CKA_VALUE_LEN attr should fail with CKR_TEMPLATE_INCOMPLETE
6499687 softDSA.c should use a meaningful #define rather than a hard coded number
6773550 Crypto Framework is too strict when checking DSA key parameters
6815120 C_Logout with metaslot can leave metaslot object info in memory
6606384 SCF consumers crash after mechanisms are disabled using cryptoadm when using libumem
6636169 softtoken is confused by .nfs files
6636960 C_GetOperationState should fail if there is no active digest operation
6627939 functional test failure - got CKR_UNWRAPPING_KEY_TYPE_INCONSISTENT
|
|
6722460 finish moving /dev/random and /dev/urandom seeding and usage to libcryptoutil
|
|
6771298 Solaris needs a PKCS11 provider for the TPM
6771289 Solaris needs TCG support
|
|
|
|
5016936 bignumimpl:big_mul: potential memory leak
6810280 panic from bignum module: vmem_xalloc(): size == 0
|
|
libcryptoutil
|
|
Contributed by Richard Lowe
6785284 Mapfile versioning rules need to be more visible to gatelings
6800164 Standard file exclusion mechanism needed for Cadmium tools
|
|
6782907 Certificate signing request (CSR) using certutil fails on T1/T2 based systems
6609549 Sun Metaslot erroneously reports CKR_SESSION_READ_ONLY for C_DestroyObject on RW session
6728680 T2000 SoftToken slot reports absent but non-removable token when .sunw directory inaccessible
|
|
4911870 pkcs11_softtoken crypto should be factored out into a new library to support $PLATFORM & $HWCAP
|
|
soft_remove_object_from_session()
|
|
system with HW crypto provider
6745244 inconsistent locking of soft_session_t mutex in soft_{get,set}_operationstate()
6748371 memcpy() wastes cycles in soft_get_operationstate()/soft_set_operationstate()
|
|
|
|
6445288 ssh needs to be OpenSSL engine aware
6709963 SunSSH server leaks memory during initialization
6687401 ssh monitor shouldn't try to log remote IP when child closed the pipe
6696629 sshd should remove alarm signal handler after authentication
6674088 userland threshold for hw offloading makes it difficult for SSL and SSH protocols
6728450 6708125 prevents parent to use the Crypto Framework after the fork(2)
6742247 ssh debug output with PACKET_DEBUG code could be more readable
|
|
Contributed by Deepthi Devaki A R <deepthi_05cse14@students.amrita.ac.in> and R Vidya Lakshmi <vidyalakshmi_05cse56@students.amrita.ac.in>
|
|
the right error msg
|
|
|
|
|
|
Contributed by Derek Morr <derekmorr@psu.edu>
|
|
6731694 CCM unnecessarily allocates output buffers for uio data
6731818 sparc/kcf/Makefile has commented out linkage dependency
|
|
6637487 put algorithm mode code and other common code into kcf module
6648214 need CKM_AES_CTR for softtoken
--HG--
rename : usr/src/common/crypto/aes/aes_cbc_crypt.c => deleted_files/usr/src/common/crypto/aes/aes_cbc_crypt.c
rename : usr/src/common/crypto/aes/aes_cbc_crypt.h => deleted_files/usr/src/common/crypto/aes/aes_cbc_crypt.h
rename : usr/src/common/crypto/blowfish/blowfish_cbc_crypt.c => deleted_files/usr/src/common/crypto/blowfish/blowfish_cbc_crypt.c
rename : usr/src/common/crypto/blowfish/blowfish_cbc_crypt.h => deleted_files/usr/src/common/crypto/blowfish/blowfish_cbc_crypt.h
rename : usr/src/common/crypto/des/des_cbc_crypt.c => deleted_files/usr/src/common/crypto/des/des_cbc_crypt.c
rename : usr/src/common/crypto/des/des_cbc_crypt.h => deleted_files/usr/src/common/crypto/des/des_cbc_crypt.h
|
|
C_Initialize()/C_GetMechanismInfo() (fix core dump)
|
|
C_Initialize()/C_GetMechanismInfo()
|
|
of marker CKM_VENDOR_DEFINED)
|
|
no operation is active
|
|
|
|
5031131 perf: pkcs11_kernel can benefit from a more efficient pkcs11_mech2str()
|
|
6699938 CCM max payload computation is off by one
6704653 THIRDPARTYLICENSE fixes for open source crypto source
--HG--
rename : usr/src/common/crypto/arcfour/amd64/THIRDPARTYLICENSE => deleted_files/usr/src/common/crypto/arcfour/amd64/THIRDPARTYLICENSE
rename : usr/src/common/crypto/arcfour/amd64/THIRDPARTYLICENSE.descrip => deleted_files/usr/src/common/crypto/arcfour/amd64/THIRDPARTYLICENSE.descrip
rename : usr/src/common/crypto/sha1/amd64/THIRDPARTYLICENSE => deleted_files/usr/src/common/crypto/sha1/amd64/THIRDPARTYLICENSE
rename : usr/src/common/crypto/sha1/amd64/THIRDPARTYLICENSE.descrip => deleted_files/usr/src/common/crypto/sha1/amd64/THIRDPARTYLICENSE.descrip
rename : usr/src/common/crypto/sha2/amd64/THIRDPARTYLICENSE => deleted_files/usr/src/common/crypto/sha2/amd64/THIRDPARTYLICENSE
rename : usr/src/common/crypto/sha2/amd64/THIRDPARTYLICENSE.descrip => deleted_files/usr/src/common/crypto/sha2/amd64/THIRDPARTYLICENSE.descrip
|
|
|
|
--HG--
rename : usr/src/uts/sun4u/rsa/Makefile => deleted_files/usr/src/uts/sun4u/rsa/Makefile
rename : usr/src/uts/sun4u/rsa/mont_mulf.s => usr/src/common/bignum/sun4u/mont_mulf_kernel_v9.s
rename : usr/src/uts/intel/rsa/Makefile.32 => usr/src/uts/intel/bignum/Makefile.32
rename : usr/src/uts/intel/rsa/Makefile.64 => usr/src/uts/intel/bignum/Makefile.64
|