Still FAILED build of OpenSSL branch master with options -d --strict-warnings no-posix-io

2020-06-15 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-posix-io

Commit log since last time:

670ff08e77 Fix logic error for building x86 CAST assembly
2edb571b4b Fix nits detected by make cmd-nits
df4c1d80b2 Update and extend NOTES.WIN, adding 'Quick start' subsection
168c595b14 Chunk 12 of CMP contribution to OpenSSL: CLI-based high-level tests
5e7be6e666 Remove extra newline from CMP mock server error and add TODO on 
using request template
c4a9e3ebbb Move part of OSSL_CMP_validate_msg() to ossl_cmp_msg_check_update()
7e8dbb7462 Bug fix in ossl_cmp_hdr_init(): sould not remember recipient as 
expected sender
1a27fe4be2 Bug fix in ossl_cmp_certRep_new(): must allocate empty extraCerts 
stack
8b22c283b8 Improve description of CMP untrusted certs and msg 'sender' field
12bbcee21b Make CMP server use same protection for response as for request
5aed1786fc Fill in transactionID on any error in OSSL_CMP_SRV_process_request()
430efff1b9 Improve ossl_cmp_msg_check_received() and rename to 
ossl_cmp_msg_check_update()
ca6f1ba903 Improve cert checking diagnostics of OSSL_CMP_validate_msg()
7aa70fd5e1 Remove misleading diagnostics on pinned sender cert in 
OSSL_CMP_validate_msg()
032b13c784 Correct error reason of verify_signature() in cmp_vfy.c
f009e37c76 Extend error output of apps/opt_format() to all error cases
2620c38ba8 Remove meanwhile redundant error output of apps/opt_next(void) 
parsing numbers
50e09788d5 Fix use of -no-proxy option of CMP app
5a2ba207ed Add request URL path checking and status responses to HTTP server
1693135564 Allow subject of CMP -oldcert as sender unless protection cert is 
given
7e998a0fdc Correct error output of parse_name() in apps/lib/apps.c and 
apps/cmp.c
6d934add34 Check expected sender not only for signature-protected CMP messages
0d17c2f4bc Improve description of -trusted, -srvcert, -recipient, and 
-expect_sender CMP options
b27ff9b87c Streamline the approach to set CMP message recipient and expected 
sender
ce0465edc7 Fix too strict checks of ossl_cmp_calc_protection()
ffb6c86663 Guard new header mac.h against C++isms.
5ea8afd368 Fix two additional instances of the old EVP_MAC_CTX_ functions being 
used.
7f81aed4bc Use the inherited 'bsd-gcc-shared' config on 32-bit x86 BSDs.

Build log ended with (last 100 lines):

rm -f apps/openssl fuzz/asn1-test fuzz/asn1parse-test fuzz/bignum-test 
fuzz/bndiv-test fuzz/client-test fuzz/cmp-test fuzz/cms-test fuzz/conf-test 
fuzz/crl-test fuzz/ct-test fuzz/server-test fuzz/x509-test test/aborttest 
test/aesgcmtest test/afalgtest test/asn1_decode_test 
test/asn1_dsa_internal_test test/asn1_encode_test test/asn1_internal_test 
test/asn1_string_table_test test/asn1_time_test test/asynciotest test/asynctest 
test/bad_dtls_test test/bftest test/bio_callback_test test/bio_enc_test 
test/bio_memleak_test test/bio_prefix_text test/bioprinttest 
test/bn_internal_test test/bntest test/buildtest_c_aes test/buildtest_c_asn1 
test/buildtest_c_asn1t test/buildtest_c_async test/buildtest_c_bio 
test/buildtest_c_blowfish test/buildtest_c_bn test/buildtest_c_buffer 
test/buildtest_c_camellia test/buildtest_c_cast test/buildtest_c_cmac 
test/buildtest_c_cmp test/buildtest_c_cmp_util test/buildtest_c_cms 
test/buildtest_c_comp test/buildtest_c_conf test/buildtest_c_conf_api 
test/buildtest_
 c_core test/buildtest_c_core_names test/buildtest_c_core_numbers 
test/buildtest_c_crmf test/buildtest_c_crypto test/buildtest_c_ct 
test/buildtest_c_des test/buildtest_c_dh test/buildtest_c_dsa 
test/buildtest_c_dtls1 test/buildtest_c_e_os2 test/buildtest_c_ebcdic 
test/buildtest_c_ec test/buildtest_c_ecdh test/buildtest_c_ecdsa 
test/buildtest_c_engine test/buildtest_c_ess test/buildtest_c_evp 
test/buildtest_c_fips_names test/buildtest_c_hmac test/buildtest_c_http 
test/buildtest_c_idea test/buildtest_c_kdf test/buildtest_c_lhash 
test/buildtest_c_mac test/buildtest_c_macros test/buildtest_c_md4 
test/buildtest_c_md5 test/buildtest_c_mdc2 test/buildtest_c_modes 
test/buildtest_c_obj_mac test/buildtest_c_objects test/buildtest_c_ocsp 
test/buildtest_c_ossl_typ test/buildtest_c_param_build test/buildtest_c_params 
test/buildtest_c_pem test/buildtest_c_pem2 test/buildtest_c_pkcs12 
test/buildtest_c_pkcs7 test/buildtest_c_provider test/buildtest_c_rand 
test/buildtest_c_rand_drbg test/buildtest_c_
 rc2 test/buildtest_c_rc4 test/buildtest_c_ripemd test/buildtest_c_rsa 
test/buildtest_c_safestack test/buildtest_c_seed test/buildtest_c_self_test 
test/buildtest_c_serializer test/buildtest_c_sha test/buildtest_c_srp 
test/buildtest_c_srtp test/buildtest_c_ssl test/buildtest_c_ssl2 
test/buildtest_c_stack test/buildtest_c_store test/buildtest_c_symhacks 
test/buildtest_c_tls1 test/buildtest_c_ts test/buildtest_c_txt_db 
test/buildtest_c_types test/buildtest_c_ui test/buildtest_c_whrlpool 
test/buildtest_c_x509 

Errored: openssl/openssl#35476 (master - 0800288)

2020-06-15 Thread Travis CI
Build Update for openssl/openssl
-

Build: #35476
Status: Errored

Duration: 1 hr, 26 mins, and 46 secs
Commit: 0800288 (master)
Author: Richard Levitte
Message: EVP: allow empty strings to EVP_Decode* functions

This is a simple check order correction.

Fixes #12143

Reviewed-by: Ben Kaduk 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/12144)

View the changeset: 
https://github.com/openssl/openssl/compare/670ff08e77c5...0800288e6e1d

View the full build log and details: 
https://travis-ci.com/github/openssl/openssl/builds/171479643?utm_medium=notification_source=email

--

You can unsubscribe from build emails from the openssl/openssl repository going 
to 
https://travis-ci.com/account/preferences/unsubscribe?repository=13885459_medium=notification_source=email.
Or unsubscribe from *all* email updating your settings at 
https://travis-ci.com/account/preferences/unsubscribe?utm_medium=notification_source=email.
Or configure specific recipients for build notifications in your .travis.yml 
file. See https://docs.travis-ci.com/user/notifications.



[openssl] OpenSSL_1_1_1-stable update

2020-06-15 Thread Dr . Paul Dale
The branch OpenSSL_1_1_1-stable has been updated
   via  92cef3f186c20e702b7751c5ef959b4fe816a189 (commit)
  from  ac4f465406ced9601cb8c9cb800ad9a37e61b6da (commit)


- Log -
commit 92cef3f186c20e702b7751c5ef959b4fe816a189
Author: Richard Levitte 
Date:   Sat Jun 13 22:16:14 2020 +0200

EVP: allow empty strings to EVP_Decode* functions

This is a simple check order correction.

Fixes #12143

Reviewed-by: Ben Kaduk 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/12144)

(cherry picked from commit 0800288e6e1d9f44d471043a970ba57743ca8f4c)

---

Summary of changes:
 crypto/evp/encode.c | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/crypto/evp/encode.c b/crypto/evp/encode.c
index 9307ff0464..b178be067a 100644
--- a/crypto/evp/encode.c
+++ b/crypto/evp/encode.c
@@ -423,7 +423,7 @@ static int evp_decodeblock_int(EVP_ENCODE_CTX *ctx, 
unsigned char *t,
 table = data_ascii2bin;
 
 /* trim white space from the start of the line. */
-while ((conv_ascii2bin(*f, table) == B64_WS) && (n > 0)) {
+while ((n > 0) && (conv_ascii2bin(*f, table) == B64_WS)) {
 f++;
 n--;
 }


[openssl] master update

2020-06-15 Thread Dr . Paul Dale
The branch master has been updated
   via  0800288e6e1d9f44d471043a970ba57743ca8f4c (commit)
  from  670ff08e77c5b331443a3ed6d41564d863a47f06 (commit)


- Log -
commit 0800288e6e1d9f44d471043a970ba57743ca8f4c
Author: Richard Levitte 
Date:   Sat Jun 13 22:16:14 2020 +0200

EVP: allow empty strings to EVP_Decode* functions

This is a simple check order correction.

Fixes #12143

Reviewed-by: Ben Kaduk 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/12144)

---

Summary of changes:
 crypto/evp/encode.c | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/crypto/evp/encode.c b/crypto/evp/encode.c
index fb657d1499..01552ac098 100644
--- a/crypto/evp/encode.c
+++ b/crypto/evp/encode.c
@@ -423,7 +423,7 @@ static int evp_decodeblock_int(EVP_ENCODE_CTX *ctx, 
unsigned char *t,
 table = data_ascii2bin;
 
 /* trim white space from the start of the line. */
-while ((conv_ascii2bin(*f, table) == B64_WS) && (n > 0)) {
+while ((n > 0) && (conv_ascii2bin(*f, table) == B64_WS)) {
 f++;
 n--;
 }


FAILED build of OpenSSL branch master with options -d enable-fuzz-afl no-shared no-module

2020-06-15 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=afl-clang-fast ../openssl/config -d enable-fuzz-afl no-shared no-module

Commit log since last time:

670ff08e77 Fix logic error for building x86 CAST assembly
2edb571b4b Fix nits detected by make cmd-nits
df4c1d80b2 Update and extend NOTES.WIN, adding 'Quick start' subsection
168c595b14 Chunk 12 of CMP contribution to OpenSSL: CLI-based high-level tests
5e7be6e666 Remove extra newline from CMP mock server error and add TODO on 
using request template
c4a9e3ebbb Move part of OSSL_CMP_validate_msg() to ossl_cmp_msg_check_update()
7e8dbb7462 Bug fix in ossl_cmp_hdr_init(): sould not remember recipient as 
expected sender
1a27fe4be2 Bug fix in ossl_cmp_certRep_new(): must allocate empty extraCerts 
stack
8b22c283b8 Improve description of CMP untrusted certs and msg 'sender' field
12bbcee21b Make CMP server use same protection for response as for request
5aed1786fc Fill in transactionID on any error in OSSL_CMP_SRV_process_request()
430efff1b9 Improve ossl_cmp_msg_check_received() and rename to 
ossl_cmp_msg_check_update()
ca6f1ba903 Improve cert checking diagnostics of OSSL_CMP_validate_msg()
7aa70fd5e1 Remove misleading diagnostics on pinned sender cert in 
OSSL_CMP_validate_msg()
032b13c784 Correct error reason of verify_signature() in cmp_vfy.c
f009e37c76 Extend error output of apps/opt_format() to all error cases
2620c38ba8 Remove meanwhile redundant error output of apps/opt_next(void) 
parsing numbers
50e09788d5 Fix use of -no-proxy option of CMP app
5a2ba207ed Add request URL path checking and status responses to HTTP server
1693135564 Allow subject of CMP -oldcert as sender unless protection cert is 
given
7e998a0fdc Correct error output of parse_name() in apps/lib/apps.c and 
apps/cmp.c
6d934add34 Check expected sender not only for signature-protected CMP messages
0d17c2f4bc Improve description of -trusted, -srvcert, -recipient, and 
-expect_sender CMP options
b27ff9b87c Streamline the approach to set CMP message recipient and expected 
sender
ce0465edc7 Fix too strict checks of ossl_cmp_calc_protection()
ffb6c86663 Guard new header mac.h against C++isms.
5ea8afd368 Fix two additional instances of the old EVP_MAC_CTX_ functions being 
used.
7f81aed4bc Use the inherited 'bsd-gcc-shared' config on 32-bit x86 BSDs.

Build log ended with (last 100 lines):

70-test_bad_dtls.t . ok
70-test_clienthello.t .. ok
70-test_comp.t . skipped: test_comp needs the dynamic 
engine feature enabled
70-test_key_share.t  skipped: test_key_share needs the dynamic 
engine feature enabled
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  skipped: test_renegotiation needs the 
dynamic engine feature enabled
70-test_servername.t ... ok
70-test_sslcbcpadding.t  skipped: test_sslcbcpadding needs the 
dynamic engine feature enabled
70-test_sslcertstatus.t  skipped: test_sslcertstatus needs the 
dynamic engine feature enabled
70-test_sslextension.t . skipped: test_sslextension needs the 
dynamic engine feature enabled
70-test_sslmessages.t .. skipped: test_sslmessages needs the 
dynamic engine feature enabled
70-test_sslrecords.t ... skipped: test_sslrecords needs the dynamic 
engine feature enabled
70-test_sslsessiontick.t ... skipped: test_sslsessiontick needs the 
dynamic engine feature enabled
70-test_sslsigalgs.t ... skipped: test_sslsigalgs needs the dynamic 
engine feature enabled
70-test_sslsignature.t . skipped: test_sslsignature needs the 
dynamic engine feature enabled
70-test_sslskewith0p.t . skipped: test_sslskewith0p needs the 
dynamic engine feature enabled
70-test_sslversions.t .. skipped: test_sslversions needs the 
dynamic engine feature enabled
70-test_sslvertol.t  skipped: test_sslextension needs the 
dynamic engine feature enabled
70-test_tls13alerts.t .. skipped: test_tls13alerts needs the 
dynamic engine feature enabled
70-test_tls13cookie.t .. skipped: test_tls13cookie needs the 
dynamic engine feature enabled
70-test_tls13downgrade.t ... skipped: test_tls13downgrade needs the 
dynamic engine feature enabled
70-test_tls13hrr.t . skipped: test_tls13hrr needs the dynamic 
engine feature enabled
70-test_tls13kexmodes.t  skipped: test_tls13kexmodes needs the 
dynamic engine feature enabled
70-test_tls13messages.t  skipped: test_tls13messages needs the 
dynamic engine feature enabled
70-test_tls13psk.t . skipped: test_tls13psk needs the dynamic 
engine feature enabled
70-test_tlsextms.t . skipped: test_tlsextms needs the dynamic 
engine feature enabled
70-test_verify_extra.t 

FAILED build of OpenSSL branch master with options -d --strict-warnings no-ui-console

2020-06-15 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-ui-console

Commit log since last time:

670ff08e77 Fix logic error for building x86 CAST assembly
2edb571b4b Fix nits detected by make cmd-nits
df4c1d80b2 Update and extend NOTES.WIN, adding 'Quick start' subsection
168c595b14 Chunk 12 of CMP contribution to OpenSSL: CLI-based high-level tests
5e7be6e666 Remove extra newline from CMP mock server error and add TODO on 
using request template
c4a9e3ebbb Move part of OSSL_CMP_validate_msg() to ossl_cmp_msg_check_update()
7e8dbb7462 Bug fix in ossl_cmp_hdr_init(): sould not remember recipient as 
expected sender
1a27fe4be2 Bug fix in ossl_cmp_certRep_new(): must allocate empty extraCerts 
stack
8b22c283b8 Improve description of CMP untrusted certs and msg 'sender' field
12bbcee21b Make CMP server use same protection for response as for request
5aed1786fc Fill in transactionID on any error in OSSL_CMP_SRV_process_request()
430efff1b9 Improve ossl_cmp_msg_check_received() and rename to 
ossl_cmp_msg_check_update()
ca6f1ba903 Improve cert checking diagnostics of OSSL_CMP_validate_msg()
7aa70fd5e1 Remove misleading diagnostics on pinned sender cert in 
OSSL_CMP_validate_msg()
032b13c784 Correct error reason of verify_signature() in cmp_vfy.c
f009e37c76 Extend error output of apps/opt_format() to all error cases
2620c38ba8 Remove meanwhile redundant error output of apps/opt_next(void) 
parsing numbers
50e09788d5 Fix use of -no-proxy option of CMP app
5a2ba207ed Add request URL path checking and status responses to HTTP server
1693135564 Allow subject of CMP -oldcert as sender unless protection cert is 
given
7e998a0fdc Correct error output of parse_name() in apps/lib/apps.c and 
apps/cmp.c
6d934add34 Check expected sender not only for signature-protected CMP messages
0d17c2f4bc Improve description of -trusted, -srvcert, -recipient, and 
-expect_sender CMP options
b27ff9b87c Streamline the approach to set CMP message recipient and expected 
sender
ce0465edc7 Fix too strict checks of ossl_cmp_calc_protection()
ffb6c86663 Guard new header mac.h against C++isms.
5ea8afd368 Fix two additional instances of the old EVP_MAC_CTX_ functions being 
used.
7f81aed4bc Use the inherited 'bsd-gcc-shared' config on 32-bit x86 BSDs.

Build log ended with (last 100 lines):

65-test_cmp_status.t ... ok
65-test_cmp_vfy.t .. ok
70-test_asyncio.t .. ok
70-test_bad_dtls.t . ok
70-test_clienthello.t .. ok
70-test_comp.t . ok
70-test_key_share.t  ok
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  ok
70-test_servername.t ... ok
70-test_sslcbcpadding.t  ok
70-test_sslcertstatus.t  ok
70-test_sslextension.t . ok
70-test_sslmessages.t .. ok
70-test_sslrecords.t ... ok
70-test_sslsessiontick.t ... ok
70-test_sslsigalgs.t ... ok
70-test_sslsignature.t . ok
70-test_sslskewith0p.t . ok
70-test_sslversions.t .. ok
70-test_sslvertol.t  ok
70-test_tls13alerts.t .. ok
70-test_tls13cookie.t .. ok
70-test_tls13downgrade.t ... ok
70-test_tls13hrr.t . ok
70-test_tls13kexmodes.t  ok
70-test_tls13messages.t  ok
70-test_tls13psk.t . ok
70-test_tlsextms.t . ok
70-test_verify_extra.t . ok
70-test_wpacket.t .. ok
71-test_ssl_ctx.t .. ok
80-test_ca.t ... ok
80-test_cipherbytes.t .. ok
80-test_cipherlist.t ... ok
80-test_ciphername.t ... ok
80-test_cms.t .. ok
80-test_cmsapi.t ... ok
80-test_ct.t ... ok
80-test_dane.t . ok
80-test_dtls.t . ok
80-test_dtls_mtu.t . ok
80-test_dtlsv1listen.t . ok
80-test_http.t . ok
80-test_ocsp.t . ok
80-test_pkcs12.t ... ok
80-test_ssl_new.t .. ok
80-test_ssl_old.t .. ok
80-test_ssl_test_ctx.t . ok
80-test_sslcorrupt.t ... ok
80-test_tsa.t .. ok
80-test_x509aux.t .. ok
81-test_cmp_cli.t .. 
Dubious, test returned 5 (wstat 1280, 0x500)
Failed 5/7 subtests 
90-test_asn1_time.t  ok
90-test_async.t  ok
90-test_bio_enc.t .. ok
90-test_bio_memleak.t .. ok
90-test_constant_time.t  ok
90-test_fatalerr.t . ok
90-test_gmdiff.t ... ok
90-test_gost.t . ok

Still FAILED build of OpenSSL branch master with options -d --strict-warnings no-err

2020-06-15 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-err

Commit log since last time:

670ff08e77 Fix logic error for building x86 CAST assembly
2edb571b4b Fix nits detected by make cmd-nits
df4c1d80b2 Update and extend NOTES.WIN, adding 'Quick start' subsection
168c595b14 Chunk 12 of CMP contribution to OpenSSL: CLI-based high-level tests
5e7be6e666 Remove extra newline from CMP mock server error and add TODO on 
using request template
c4a9e3ebbb Move part of OSSL_CMP_validate_msg() to ossl_cmp_msg_check_update()
7e8dbb7462 Bug fix in ossl_cmp_hdr_init(): sould not remember recipient as 
expected sender
1a27fe4be2 Bug fix in ossl_cmp_certRep_new(): must allocate empty extraCerts 
stack
8b22c283b8 Improve description of CMP untrusted certs and msg 'sender' field
12bbcee21b Make CMP server use same protection for response as for request
5aed1786fc Fill in transactionID on any error in OSSL_CMP_SRV_process_request()
430efff1b9 Improve ossl_cmp_msg_check_received() and rename to 
ossl_cmp_msg_check_update()
ca6f1ba903 Improve cert checking diagnostics of OSSL_CMP_validate_msg()
7aa70fd5e1 Remove misleading diagnostics on pinned sender cert in 
OSSL_CMP_validate_msg()
032b13c784 Correct error reason of verify_signature() in cmp_vfy.c
f009e37c76 Extend error output of apps/opt_format() to all error cases
2620c38ba8 Remove meanwhile redundant error output of apps/opt_next(void) 
parsing numbers
50e09788d5 Fix use of -no-proxy option of CMP app
5a2ba207ed Add request URL path checking and status responses to HTTP server
1693135564 Allow subject of CMP -oldcert as sender unless protection cert is 
given
7e998a0fdc Correct error output of parse_name() in apps/lib/apps.c and 
apps/cmp.c
6d934add34 Check expected sender not only for signature-protected CMP messages
0d17c2f4bc Improve description of -trusted, -srvcert, -recipient, and 
-expect_sender CMP options
b27ff9b87c Streamline the approach to set CMP message recipient and expected 
sender
ce0465edc7 Fix too strict checks of ossl_cmp_calc_protection()
ffb6c86663 Guard new header mac.h against C++isms.
5ea8afd368 Fix two additional instances of the old EVP_MAC_CTX_ functions being 
used.
7f81aed4bc Use the inherited 'bsd-gcc-shared' config on 32-bit x86 BSDs.

Build log ended with (last 100 lines):

65-test_cmp_protect.t .. ok
65-test_cmp_server.t ... ok
65-test_cmp_status.t ... ok
65-test_cmp_vfy.t .. ok
70-test_asyncio.t .. ok
70-test_bad_dtls.t . ok
70-test_clienthello.t .. ok
70-test_comp.t . ok
70-test_key_share.t  ok
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  ok
70-test_servername.t ... ok
70-test_sslcbcpadding.t  ok
70-test_sslcertstatus.t  ok
70-test_sslextension.t . ok
70-test_sslmessages.t .. ok
70-test_sslrecords.t ... ok
70-test_sslsessiontick.t ... ok
70-test_sslsigalgs.t ... ok
70-test_sslsignature.t . ok
70-test_sslskewith0p.t . ok
70-test_sslversions.t .. ok
70-test_sslvertol.t  ok
70-test_tls13alerts.t .. ok
70-test_tls13cookie.t .. ok
70-test_tls13downgrade.t ... ok
70-test_tls13hrr.t . ok
70-test_tls13kexmodes.t  ok
70-test_tls13messages.t  ok
70-test_tls13psk.t . ok
70-test_tlsextms.t . ok
70-test_verify_extra.t . ok
70-test_wpacket.t .. ok
71-test_ssl_ctx.t .. ok
80-test_ca.t ... ok
80-test_cipherbytes.t .. ok
80-test_cipherlist.t ... ok
80-test_ciphername.t ... ok
80-test_cms.t .. ok
80-test_cmsapi.t ... ok
80-test_ct.t ... ok
80-test_dane.t . ok
80-test_dtls.t . ok
80-test_dtls_mtu.t . ok
80-test_dtlsv1listen.t . ok
80-test_http.t . ok
80-test_ocsp.t . ok
80-test_pkcs12.t ... ok
80-test_ssl_new.t .. ok
80-test_ssl_old.t .. ok
80-test_ssl_test_ctx.t . ok
80-test_sslcorrupt.t ... ok
80-test_tsa.t .. ok
80-test_x509aux.t .. ok
81-test_cmp_cli.t .. ok
90-test_asn1_time.t  ok
90-test_async.t  ok
90-test_bio_enc.t .. ok
90-test_bio_memleak.t .. ok
90-test_constant_time.t  ok
90-test_fatalerr.t . ok
90-test_gmdiff.t ... ok
90-test_gost.t . ok

Still FAILED build of OpenSSL branch master with options -d --strict-warnings no-dgram

2020-06-15 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-dgram

Commit log since last time:

670ff08e77 Fix logic error for building x86 CAST assembly
2edb571b4b Fix nits detected by make cmd-nits
df4c1d80b2 Update and extend NOTES.WIN, adding 'Quick start' subsection
168c595b14 Chunk 12 of CMP contribution to OpenSSL: CLI-based high-level tests
5e7be6e666 Remove extra newline from CMP mock server error and add TODO on 
using request template
c4a9e3ebbb Move part of OSSL_CMP_validate_msg() to ossl_cmp_msg_check_update()
7e8dbb7462 Bug fix in ossl_cmp_hdr_init(): sould not remember recipient as 
expected sender
1a27fe4be2 Bug fix in ossl_cmp_certRep_new(): must allocate empty extraCerts 
stack
8b22c283b8 Improve description of CMP untrusted certs and msg 'sender' field
12bbcee21b Make CMP server use same protection for response as for request
5aed1786fc Fill in transactionID on any error in OSSL_CMP_SRV_process_request()
430efff1b9 Improve ossl_cmp_msg_check_received() and rename to 
ossl_cmp_msg_check_update()
ca6f1ba903 Improve cert checking diagnostics of OSSL_CMP_validate_msg()
7aa70fd5e1 Remove misleading diagnostics on pinned sender cert in 
OSSL_CMP_validate_msg()
032b13c784 Correct error reason of verify_signature() in cmp_vfy.c
f009e37c76 Extend error output of apps/opt_format() to all error cases
2620c38ba8 Remove meanwhile redundant error output of apps/opt_next(void) 
parsing numbers
50e09788d5 Fix use of -no-proxy option of CMP app
5a2ba207ed Add request URL path checking and status responses to HTTP server
1693135564 Allow subject of CMP -oldcert as sender unless protection cert is 
given
7e998a0fdc Correct error output of parse_name() in apps/lib/apps.c and 
apps/cmp.c
6d934add34 Check expected sender not only for signature-protected CMP messages
0d17c2f4bc Improve description of -trusted, -srvcert, -recipient, and 
-expect_sender CMP options
b27ff9b87c Streamline the approach to set CMP message recipient and expected 
sender
ce0465edc7 Fix too strict checks of ossl_cmp_calc_protection()
ffb6c86663 Guard new header mac.h against C++isms.
5ea8afd368 Fix two additional instances of the old EVP_MAC_CTX_ functions being 
used.
7f81aed4bc Use the inherited 'bsd-gcc-shared' config on 32-bit x86 BSDs.

Build log ended with (last 100 lines):

65-test_cmp_status.t ... ok
65-test_cmp_vfy.t .. ok
70-test_asyncio.t .. ok
70-test_bad_dtls.t . skipped: DTLSv1 is not supported by this 
OpenSSL build
70-test_clienthello.t .. ok
70-test_comp.t . ok
70-test_key_share.t  ok
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  ok
70-test_servername.t ... ok
70-test_sslcbcpadding.t  ok
70-test_sslcertstatus.t  ok
70-test_sslextension.t . ok
70-test_sslmessages.t .. ok
70-test_sslrecords.t ... ok
70-test_sslsessiontick.t ... ok
70-test_sslsigalgs.t ... ok
70-test_sslsignature.t . ok
70-test_sslskewith0p.t . ok
70-test_sslversions.t .. ok
70-test_sslvertol.t  ok
70-test_tls13alerts.t .. ok
70-test_tls13cookie.t .. ok
70-test_tls13downgrade.t ... ok
70-test_tls13hrr.t . ok
70-test_tls13kexmodes.t  ok
70-test_tls13messages.t  ok
70-test_tls13psk.t . ok
70-test_tlsextms.t . ok
70-test_verify_extra.t . ok
70-test_wpacket.t .. ok
71-test_ssl_ctx.t .. ok
80-test_ca.t ... ok
80-test_cipherbytes.t .. ok
80-test_cipherlist.t ... ok
80-test_ciphername.t ... ok
80-test_cms.t .. ok
80-test_cmsapi.t ... ok
80-test_ct.t ... ok
80-test_dane.t . ok
80-test_dtls.t . skipped: No DTLS protocols are supported 
by this OpenSSL build
80-test_dtls_mtu.t . skipped: test_dtls_mtu needs DTLS and PSK 
support enabled
80-test_dtlsv1listen.t . ok
80-test_http.t . ok
80-test_ocsp.t . ok
80-test_pkcs12.t ... ok
80-test_ssl_new.t .. 
Dubious, test returned 1 (wstat 256, 0x100)
Failed 1/31 subtests 
80-test_ssl_old.t .. ok
80-test_ssl_test_ctx.t . ok
80-test_sslcorrupt.t ... ok
80-test_tsa.t .. ok
80-test_x509aux.t .. ok
81-test_cmp_cli.t .. ok
90-test_asn1_time.t  ok
90-test_async.t  ok
90-test_bio_enc.t .. ok
90-test_bio_memleak.t .. ok

FAILED build of OpenSSL branch master with options -d --strict-warnings no-des

2020-06-15 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-des

Commit log since last time:

670ff08e77 Fix logic error for building x86 CAST assembly
2edb571b4b Fix nits detected by make cmd-nits
df4c1d80b2 Update and extend NOTES.WIN, adding 'Quick start' subsection
168c595b14 Chunk 12 of CMP contribution to OpenSSL: CLI-based high-level tests
5e7be6e666 Remove extra newline from CMP mock server error and add TODO on 
using request template
c4a9e3ebbb Move part of OSSL_CMP_validate_msg() to ossl_cmp_msg_check_update()
7e8dbb7462 Bug fix in ossl_cmp_hdr_init(): sould not remember recipient as 
expected sender
1a27fe4be2 Bug fix in ossl_cmp_certRep_new(): must allocate empty extraCerts 
stack
8b22c283b8 Improve description of CMP untrusted certs and msg 'sender' field
12bbcee21b Make CMP server use same protection for response as for request
5aed1786fc Fill in transactionID on any error in OSSL_CMP_SRV_process_request()
430efff1b9 Improve ossl_cmp_msg_check_received() and rename to 
ossl_cmp_msg_check_update()
ca6f1ba903 Improve cert checking diagnostics of OSSL_CMP_validate_msg()
7aa70fd5e1 Remove misleading diagnostics on pinned sender cert in 
OSSL_CMP_validate_msg()
032b13c784 Correct error reason of verify_signature() in cmp_vfy.c
f009e37c76 Extend error output of apps/opt_format() to all error cases
2620c38ba8 Remove meanwhile redundant error output of apps/opt_next(void) 
parsing numbers
50e09788d5 Fix use of -no-proxy option of CMP app
5a2ba207ed Add request URL path checking and status responses to HTTP server
1693135564 Allow subject of CMP -oldcert as sender unless protection cert is 
given
7e998a0fdc Correct error output of parse_name() in apps/lib/apps.c and 
apps/cmp.c
6d934add34 Check expected sender not only for signature-protected CMP messages
0d17c2f4bc Improve description of -trusted, -srvcert, -recipient, and 
-expect_sender CMP options
b27ff9b87c Streamline the approach to set CMP message recipient and expected 
sender
ce0465edc7 Fix too strict checks of ossl_cmp_calc_protection()
ffb6c86663 Guard new header mac.h against C++isms.
5ea8afd368 Fix two additional instances of the old EVP_MAC_CTX_ functions being 
used.
7f81aed4bc Use the inherited 'bsd-gcc-shared' config on 32-bit x86 BSDs.

Build log ended with (last 100 lines):

65-test_cmp_status.t ... ok
65-test_cmp_vfy.t .. ok
70-test_asyncio.t .. ok
70-test_bad_dtls.t . ok
70-test_clienthello.t .. ok
70-test_comp.t . ok
70-test_key_share.t  ok
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  ok
70-test_servername.t ... ok
70-test_sslcbcpadding.t  ok
70-test_sslcertstatus.t  ok
70-test_sslextension.t . ok
70-test_sslmessages.t .. ok
70-test_sslrecords.t ... ok
70-test_sslsessiontick.t ... ok
70-test_sslsigalgs.t ... ok
70-test_sslsignature.t . ok
70-test_sslskewith0p.t . ok
70-test_sslversions.t .. ok
70-test_sslvertol.t  ok
70-test_tls13alerts.t .. ok
70-test_tls13cookie.t .. ok
70-test_tls13downgrade.t ... ok
70-test_tls13hrr.t . ok
70-test_tls13kexmodes.t  ok
70-test_tls13messages.t  ok
70-test_tls13psk.t . ok
70-test_tlsextms.t . ok
70-test_verify_extra.t . ok
70-test_wpacket.t .. ok
71-test_ssl_ctx.t .. ok
80-test_ca.t ... ok
80-test_cipherbytes.t .. ok
80-test_cipherlist.t ... ok
80-test_ciphername.t ... ok
80-test_cms.t .. ok
80-test_cmsapi.t ... ok
80-test_ct.t ... ok
80-test_dane.t . ok
80-test_dtls.t . ok
80-test_dtls_mtu.t . ok
80-test_dtlsv1listen.t . ok
80-test_http.t . ok
80-test_ocsp.t . ok
80-test_pkcs12.t ... skipped: The PKCS12 command line utility 
is not supported by this OpenSSL build
80-test_ssl_new.t .. ok
80-test_ssl_old.t .. ok
80-test_ssl_test_ctx.t . ok
80-test_sslcorrupt.t ... ok
80-test_tsa.t .. ok
80-test_x509aux.t .. ok
81-test_cmp_cli.t .. 
Dubious, test returned 5 (wstat 1280, 0x500)
Failed 5/7 subtests 
90-test_asn1_time.t  ok
90-test_async.t  ok
90-test_bio_enc.t .. ok
90-test_bio_memleak.t .. ok
90-test_constant_time.t  ok
90-test_fatalerr.t . ok
90-test_gmdiff.t