Still FAILED build of OpenSSL branch master with options -d --strict-warnings no-posix-io

2020-06-29 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-posix-io

Commit log since last time:

9afbb681ec INSTALL.md and NOTES.VALGRIND: Further cleanup of references and 
code/symbol quotation layout
3a0b3cc905 Move test-related info from INSTALL.md to new test/README.md, 
updating references
96e0445195 apps/openssl: clean-up of unused fallback code
c9741726c1 Configurations: drop toolchain from configuration targets
16b0e0fcb3 DOC: Mention Configure consistently
180626159e Configure: pick up options from older 'config'
bfa684622a util/perl/OpenSSL/config.pm: refactor guess_system()
019e3a0b6b util/perl/OpenSSL/config.pm: remove expand() and use eval
2f44c8151e config: Turn into a simple wrapper
e39795af0a util/perl/OpenSSL/config.pm: refactor map_guess()
081436bf73 util/perl/OpenSSL/config.pm, Configure: move check of target with 
compiler
a3310b182c util/perl/OpenSSL/config.pm: Rework determining compiler information
48704cc651 Remove OpenSSL::config::main(), it's not necessary
69aa579e6d util/perl/OpenSSL/config.pm: Prefer POSIX::uname() over piping the 
command
33d5b4a68a util/perl/OpenSSL/config.pm: Don't detect removed directories in
4901b570ba Initial rewrite of config as a Perl module
92db29e5e8 Add a test to make sure ASYNC aware code gets the right default 
libctx
6c689e58f7 Make the ASYNC code default libctx aware
cfbd76c1a9 CORE: Add an internal function to distinguish the global default 
context
e31eda006f TEST: Add test to exercise OPENSSL_CTX_set0_default()
3bd65f9b5b Update NEWS and CHANGES
5a9752756b CORE: Add OPENSSL_CTX_set0_default(), to set a default library 
context
270540fd54 INSTALL.md: Restore $ as command prompt indicator
b1f9db6980 Configuration: do not overwrite BASE_unix ex_libs in AIX
aba03ae571 Reduce the security bits for MD5 and SHA1 based signatures in TLS
526f1f1aca Fix syntax of cipher string
c65b1d0252 TEST: Add TODO segments in test/recipes/15-test_genec.t
0c2bddb76a Test genpkey app for EC keygen with various args
cc63865f33 doc/man3: fix types taken by HMAC(), HMAC_Update()
0d96afd28c Prepare for 3.0 alpha 5
38778b78e0 Prepare for release of 3.0 alpha 4
fbd2ece171 Update copyright year

Build log ended with (last 100 lines):

rm -f doc/html/man1/CA.pl.html doc/html/man1/openssl-asn1parse.html 
doc/html/man1/openssl-ca.html doc/html/man1/openssl-ciphers.html 
doc/html/man1/openssl-cmds.html doc/html/man1/openssl-cmp.html 
doc/html/man1/openssl-cms.html doc/html/man1/openssl-crl.html 
doc/html/man1/openssl-crl2pkcs7.html doc/html/man1/openssl-dgst.html 
doc/html/man1/openssl-dhparam.html doc/html/man1/openssl-dsa.html 
doc/html/man1/openssl-dsaparam.html doc/html/man1/openssl-ec.html 
doc/html/man1/openssl-ecparam.html doc/html/man1/openssl-enc.html 
doc/html/man1/openssl-engine.html doc/html/man1/openssl-errstr.html 
doc/html/man1/openssl-fipsinstall.html doc/html/man1/openssl-gendsa.html 
doc/html/man1/openssl-genpkey.html doc/html/man1/openssl-genrsa.html 
doc/html/man1/openssl-info.html doc/html/man1/openssl-kdf.html 
doc/html/man1/openssl-list.html doc/html/man1/openssl-mac.html 
doc/html/man1/openssl-nseq.html doc/html/man1/openssl-ocsp.html 
doc/html/man1/openssl-passwd.html doc/html/man1/openssl-pkcs12.html doc/h
 tml/man1/openssl-pkcs7.html doc/html/man1/openssl-pkcs8.html 
doc/html/man1/openssl-pkey.html doc/html/man1/openssl-pkeyparam.html 
doc/html/man1/openssl-pkeyutl.html doc/html/man1/openssl-prime.html 
doc/html/man1/openssl-provider.html doc/html/man1/openssl-rand.html 
doc/html/man1/openssl-rehash.html doc/html/man1/openssl-req.html 
doc/html/man1/openssl-rsa.html doc/html/man1/openssl-rsautl.html 
doc/html/man1/openssl-s_client.html doc/html/man1/openssl-s_server.html 
doc/html/man1/openssl-s_time.html doc/html/man1/openssl-sess_id.html 
doc/html/man1/openssl-smime.html doc/html/man1/openssl-speed.html 
doc/html/man1/openssl-spkac.html doc/html/man1/openssl-srp.html 
doc/html/man1/openssl-storeutl.html doc/html/man1/openssl-ts.html 
doc/html/man1/openssl-verify.html doc/html/man1/openssl-version.html 
doc/html/man1/openssl-x509.html doc/html/man1/openssl.html 
doc/html/man1/tsget.html doc/html/man3/ADMISSIONS.html 
doc/html/man3/ASN1_INTEGER_get_int64.html doc/html/man3/ASN1_INTEGER_new.html 
doc
 /html/man3/ASN1_ITEM_lookup.html doc/html/man3/ASN1_OBJECT_new.html 
doc/html/man3/ASN1_STRING_TABLE_add.html doc/html/man3/ASN1_STRING_length.html 
doc/html/man3/ASN1_STRING_new.html doc/html/man3/ASN1_STRING_print_ex.html 
doc/html/man3/ASN1_TIME_set.html doc/html/man3/ASN1_TYPE_get.html 
doc/html/man3/ASN1_generate_nconf.html doc/html/man3/ASYNC_WAIT_CTX_new.html 
doc/html/man3/ASYNC_start_job.html doc/html/man3/BF_encrypt.html 
doc/html/man3/BIO_ADDR.html doc/html/man3/BIO_ADDRINFO.html 
doc/html/man3/BIO_connect.html doc/html/man3/BIO_ctrl.html 
doc/html/man3/BIO_f_base64.html 

Errored: openssl/openssl#35845 (master - 64fdea1)

2020-06-29 Thread Travis CI
Build Update for openssl/openssl
-

Build: #35845
Status: Errored

Duration: 1 hr, 50 mins, and 5 secs
Commit: 64fdea1 (master)
Author: Pauli
Message: rand: include the CPU source in a build.

Reviewed-by: Bernd Edlinger 
(Merged from https://github.com/openssl/openssl/pull/12267)

View the changeset: 
https://github.com/openssl/openssl/compare/312142583092...64fdea12beb7

View the full build log and details: 
https://travis-ci.com/github/openssl/openssl/builds/173564914?utm_medium=notification_source=email

--

You can unsubscribe from build emails from the openssl/openssl repository going 
to 
https://travis-ci.com/account/preferences/unsubscribe?repository=13885459_medium=notification_source=email.
Or unsubscribe from *all* email updating your settings at 
https://travis-ci.com/account/preferences/unsubscribe?utm_medium=notification_source=email.
Or configure specific recipients for build notifications in your .travis.yml 
file. See https://docs.travis-ci.com/user/notifications.



[openssl] master update

2020-06-29 Thread shane . lontis
The branch master has been updated
   via  9beffaf695b7ed5a7198496036b9aed87d598e51 (commit)
  from  2c9ba46c90e9d25040260bbdc43e87921f08c788 (commit)


- Log -
commit 9beffaf695b7ed5a7198496036b9aed87d598e51
Author: Shane Lontis 
Date:   Tue Jun 23 12:30:40 2020 +1000

Fix CID-1464802

Improper use of negative value (It just needs to pass zero instead of -1).

Reviewed-by: Tomas Mraz 
Reviewed-by: Matthias St. Pierre 
(Merged from https://github.com/openssl/openssl/pull/12237)

---

Summary of changes:
 crypto/dsa/dsa_gen.c | 2 +-
 crypto/ffc/ffc_params_generate.c | 8 
 2 files changed, 5 insertions(+), 5 deletions(-)

diff --git a/crypto/dsa/dsa_gen.c b/crypto/dsa/dsa_gen.c
index 9d5e91de29..94b3da8754 100644
--- a/crypto/dsa/dsa_gen.c
+++ b/crypto/dsa/dsa_gen.c
@@ -63,7 +63,7 @@ int DSA_generate_parameters_ex(DSA *dsa, int bits,
 return 0;
 } else {
 if (!dsa_generate_ffc_parameters(dsa, DSA_PARAMGEN_TYPE_FIPS_186_4,
- bits, -1, cb))
+ bits, 0, cb))
 return 0;
 }
 
diff --git a/crypto/ffc/ffc_params_generate.c b/crypto/ffc/ffc_params_generate.c
index b3ab476f3f..325eb6768f 100644
--- a/crypto/ffc/ffc_params_generate.c
+++ b/crypto/ffc/ffc_params_generate.c
@@ -504,7 +504,7 @@ int ffc_params_FIPS186_4_gen_verify(OPENSSL_CTX *libctx, 
FFC_PARAMS *params,
 if (params->mdname != NULL) {
 md = EVP_MD_fetch(libctx, params->mdname, params->mdprops);
 } else {
-if (N <= 0)
+if (N == 0)
 N = (L >= 2048 ? SHA256_DIGEST_LENGTH : SHA_DIGEST_LENGTH) * 8;
 md = EVP_MD_fetch(libctx, default_mdname(N), NULL);
 }
@@ -514,7 +514,7 @@ int ffc_params_FIPS186_4_gen_verify(OPENSSL_CTX *libctx, 
FFC_PARAMS *params,
 if (mdsize <= 0)
 goto err;
 
-if (N <= 0)
+if (N == 0)
 N = mdsize * 8;
 qsize = N >> 3;
 
@@ -790,13 +790,13 @@ int ffc_params_FIPS186_2_gen_verify(OPENSSL_CTX *libctx, 
FFC_PARAMS *params,
 if (params->mdname != NULL) {
 md = EVP_MD_fetch(libctx, params->mdname, params->mdprops);
 } else {
-if (N <= 0)
+if (N == 0)
 N = (L >= 2048 ? SHA256_DIGEST_LENGTH : SHA_DIGEST_LENGTH) * 8;
 md = EVP_MD_fetch(libctx, default_mdname(N), NULL);
 }
 if (md == NULL)
 goto err;
-if (N <= 0)
+if (N == 0)
 N = EVP_MD_size(md) * 8;
 qsize = N >> 3;
 


[openssl] OpenSSL_1_1_1-stable update

2020-06-29 Thread Dr . Paul Dale
The branch OpenSSL_1_1_1-stable has been updated
   via  943c6daa491cb248750da1625d3f65b73bc77130 (commit)
  from  c437fc2d481ab62b76b11270293392649dd092d3 (commit)


- Log -
commit 943c6daa491cb248750da1625d3f65b73bc77130
Author: Benny Baumann 
Date:   Wed Jun 24 21:54:05 2020 +0200

Force ssl/tls protocol flags to use stream sockets

Prior to this patch doing something like
  openssl s_client -dtls1 -tls1 ...
could cause s_client to speak TLS on a UDP socket
which does not normally make much sense.

Reviewed-by: Matt Caswell 
Reviewed-by: Tomas Mraz 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/12266)

(cherry picked from commit 2c9ba46c90e9d25040260bbdc43e87921f08c788)

---

Summary of changes:
 apps/s_client.c | 20 
 1 file changed, 20 insertions(+)

diff --git a/apps/s_client.c b/apps/s_client.c
index 26a6789d81..4fc0af4ab6 100644
--- a/apps/s_client.c
+++ b/apps/s_client.c
@@ -1283,22 +1283,42 @@ int s_client_main(int argc, char **argv)
 case OPT_SSL3:
 min_version = SSL3_VERSION;
 max_version = SSL3_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_TLS1_3:
 min_version = TLS1_3_VERSION;
 max_version = TLS1_3_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_TLS1_2:
 min_version = TLS1_2_VERSION;
 max_version = TLS1_2_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_TLS1_1:
 min_version = TLS1_1_VERSION;
 max_version = TLS1_1_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_TLS1:
 min_version = TLS1_VERSION;
 max_version = TLS1_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_DTLS:
 #ifndef OPENSSL_NO_DTLS


[openssl] master update

2020-06-29 Thread Dr . Paul Dale
The branch master has been updated
   via  2c9ba46c90e9d25040260bbdc43e87921f08c788 (commit)
  from  64fdea12beb7fa0a1c2d2c67ee998e3e5d895b0b (commit)


- Log -
commit 2c9ba46c90e9d25040260bbdc43e87921f08c788
Author: Benny Baumann 
Date:   Wed Jun 24 21:54:05 2020 +0200

Force ssl/tls protocol flags to use stream sockets

Prior to this patch doing something like
  openssl s_client -dtls1 -tls1 ...
could cause s_client to speak TLS on a UDP socket
which does not normally make much sense.

Reviewed-by: Matt Caswell 
Reviewed-by: Tomas Mraz 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/12266)

---

Summary of changes:
 apps/s_client.c | 20 
 1 file changed, 20 insertions(+)

diff --git a/apps/s_client.c b/apps/s_client.c
index 886b2cd8d6..5a5a40c927 100644
--- a/apps/s_client.c
+++ b/apps/s_client.c
@@ -1319,22 +1319,42 @@ int s_client_main(int argc, char **argv)
 case OPT_SSL3:
 min_version = SSL3_VERSION;
 max_version = SSL3_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_TLS1_3:
 min_version = TLS1_3_VERSION;
 max_version = TLS1_3_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_TLS1_2:
 min_version = TLS1_2_VERSION;
 max_version = TLS1_2_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_TLS1_1:
 min_version = TLS1_1_VERSION;
 max_version = TLS1_1_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_TLS1:
 min_version = TLS1_VERSION;
 max_version = TLS1_VERSION;
+socket_type = SOCK_STREAM;
+#ifndef OPENSSL_NO_DTLS
+isdtls = 0;
+#endif
 break;
 case OPT_DTLS:
 #ifndef OPENSSL_NO_DTLS


[openssl] master update

2020-06-29 Thread Dr . Paul Dale
The branch master has been updated
   via  64fdea12beb7fa0a1c2d2c67ee998e3e5d895b0b (commit)
   via  7f791b25eb092ec78ff62e944ac3096c8d2f9311 (commit)
  from  31214258309251aff297da67a60a6b60bf4ef27e (commit)


- Log -
commit 64fdea12beb7fa0a1c2d2c67ee998e3e5d895b0b
Author: Pauli 
Date:   Thu Jun 25 07:55:47 2020 +1000

rand: include the CPU source in a build.

Reviewed-by: Bernd Edlinger 
(Merged from https://github.com/openssl/openssl/pull/12267)

commit 7f791b25eb092ec78ff62e944ac3096c8d2f9311
Author: Pauli 
Date:   Thu Jun 25 07:46:36 2020 +1000

rand: fix CPU and timer sources.

Reviewed-by: Bernd Edlinger 
(Merged from https://github.com/openssl/openssl/pull/12267)

---

Summary of changes:
 .travis.yml| 2 +-
 providers/implementations/rands/seeding/rand_cpu_x86.c | 1 +
 providers/implementations/rands/seeding/rand_tsc.c | 1 +
 providers/implementations/rands/seeding/rand_unix.c| 4 ++--
 providers/implementations/rands/seeding/rand_win.c | 4 ++--
 5 files changed, 7 insertions(+), 5 deletions(-)

diff --git a/.travis.yml b/.travis.yml
index bc28ac7adf..be9ba1e68f 100644
--- a/.travis.yml
+++ b/.travis.yml
@@ -41,7 +41,7 @@ jobs:
   env: CONFIG_OPTS="" DESTDIR="_install"
 - os: linux
   compiler: clang
-  env: CONFIG_OPTS="no-asm no-makedepend enable-buildtest-c++ 
--strict-warnings -D_DEFAULT_SOURCE" BUILDONLY="yes" CHECKDOCS="yes" 
CPPFLAGS="-ansi"
+  env: CONFIG_OPTS="no-asm no-makedepend enable-buildtest-c++ 
--strict-warnings --with-rand-seed=rdcpu,os -D_DEFAULT_SOURCE" BUILDONLY="yes" 
CHECKDOCS="yes" CPPFLAGS="-ansi"
 - os: osx
   compiler: gcc
 - os: osx
diff --git a/providers/implementations/rands/seeding/rand_cpu_x86.c 
b/providers/implementations/rands/seeding/rand_cpu_x86.c
index ba0f716426..fd47de9ad0 100644
--- a/providers/implementations/rands/seeding/rand_cpu_x86.c
+++ b/providers/implementations/rands/seeding/rand_cpu_x86.c
@@ -10,6 +10,7 @@
 #include "internal/cryptlib.h"
 #include 
 #include "prov/rand_pool.h"
+#include "prov/seeding.h"
 
 #ifdef OPENSSL_RAND_SEED_RDCPU
 size_t OPENSSL_ia32_rdseed_bytes(unsigned char *buf, size_t len);
diff --git a/providers/implementations/rands/seeding/rand_tsc.c 
b/providers/implementations/rands/seeding/rand_tsc.c
index dd69aa438f..520f140fdf 100644
--- a/providers/implementations/rands/seeding/rand_tsc.c
+++ b/providers/implementations/rands/seeding/rand_tsc.c
@@ -10,6 +10,7 @@
 #include "internal/cryptlib.h"
 #include 
 #include "prov/rand_pool.h"
+#include "prov/seeding.h"
 
 #ifdef OPENSSL_RAND_SEED_RDTSC
 /*
diff --git a/providers/implementations/rands/seeding/rand_unix.c 
b/providers/implementations/rands/seeding/rand_unix.c
index 77c5d26142..69fa3f841e 100644
--- a/providers/implementations/rands/seeding/rand_unix.c
+++ b/providers/implementations/rands/seeding/rand_unix.c
@@ -684,13 +684,13 @@ size_t prov_pool_acquire_entropy(RAND_POOL *pool)
 #   endif
 
 #   if defined(OPENSSL_RAND_SEED_RDTSC)
-entropy_available = rand_acquire_entropy_from_tsc(pool);
+entropy_available = prov_acquire_entropy_from_tsc(pool);
 if (entropy_available > 0)
 return entropy_available;
 #   endif
 
 #   if defined(OPENSSL_RAND_SEED_RDCPU)
-entropy_available = rand_acquire_entropy_from_cpu(pool);
+entropy_available = prov_acquire_entropy_from_cpu(pool);
 if (entropy_available > 0)
 return entropy_available;
 #   endif
diff --git a/providers/implementations/rands/seeding/rand_win.c 
b/providers/implementations/rands/seeding/rand_win.c
index a576109f6c..d820d3e395 100644
--- a/providers/implementations/rands/seeding/rand_win.c
+++ b/providers/implementations/rands/seeding/rand_win.c
@@ -53,13 +53,13 @@ size_t prov_pool_acquire_entropy(RAND_POOL *pool)
 
 
 # ifdef OPENSSL_RAND_SEED_RDTSC
-entropy_available = rand_acquire_entropy_from_tsc(pool);
+entropy_available = prov_acquire_entropy_from_tsc(pool);
 if (entropy_available > 0)
 return entropy_available;
 # endif
 
 # ifdef OPENSSL_RAND_SEED_RDCPU
-entropy_available = rand_acquire_entropy_from_cpu(pool);
+entropy_available = prov_acquire_entropy_from_cpu(pool);
 if (entropy_available > 0)
 return entropy_available;
 # endif


Still FAILED build of OpenSSL branch master with options -d --strict-warnings no-ui-console

2020-06-29 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-ui-console

Commit log since last time:

9afbb681ec INSTALL.md and NOTES.VALGRIND: Further cleanup of references and 
code/symbol quotation layout
3a0b3cc905 Move test-related info from INSTALL.md to new test/README.md, 
updating references
96e0445195 apps/openssl: clean-up of unused fallback code
c9741726c1 Configurations: drop toolchain from configuration targets
16b0e0fcb3 DOC: Mention Configure consistently
180626159e Configure: pick up options from older 'config'
bfa684622a util/perl/OpenSSL/config.pm: refactor guess_system()
019e3a0b6b util/perl/OpenSSL/config.pm: remove expand() and use eval
2f44c8151e config: Turn into a simple wrapper
e39795af0a util/perl/OpenSSL/config.pm: refactor map_guess()
081436bf73 util/perl/OpenSSL/config.pm, Configure: move check of target with 
compiler
a3310b182c util/perl/OpenSSL/config.pm: Rework determining compiler information
48704cc651 Remove OpenSSL::config::main(), it's not necessary
69aa579e6d util/perl/OpenSSL/config.pm: Prefer POSIX::uname() over piping the 
command
33d5b4a68a util/perl/OpenSSL/config.pm: Don't detect removed directories in
4901b570ba Initial rewrite of config as a Perl module
92db29e5e8 Add a test to make sure ASYNC aware code gets the right default 
libctx
6c689e58f7 Make the ASYNC code default libctx aware
cfbd76c1a9 CORE: Add an internal function to distinguish the global default 
context
e31eda006f TEST: Add test to exercise OPENSSL_CTX_set0_default()
3bd65f9b5b Update NEWS and CHANGES
5a9752756b CORE: Add OPENSSL_CTX_set0_default(), to set a default library 
context
270540fd54 INSTALL.md: Restore $ as command prompt indicator
b1f9db6980 Configuration: do not overwrite BASE_unix ex_libs in AIX
aba03ae571 Reduce the security bits for MD5 and SHA1 based signatures in TLS
526f1f1aca Fix syntax of cipher string
c65b1d0252 TEST: Add TODO segments in test/recipes/15-test_genec.t
0c2bddb76a Test genpkey app for EC keygen with various args
cc63865f33 doc/man3: fix types taken by HMAC(), HMAC_Update()
0d96afd28c Prepare for 3.0 alpha 5
38778b78e0 Prepare for release of 3.0 alpha 4
fbd2ece171 Update copyright year

Build log ended with (last 100 lines):

65-test_cmp_status.t ... ok
65-test_cmp_vfy.t .. ok
70-test_asyncio.t .. ok
70-test_bad_dtls.t . ok
70-test_clienthello.t .. ok
70-test_comp.t . ok
70-test_key_share.t  ok
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  ok
70-test_servername.t ... ok
70-test_sslcbcpadding.t  ok
70-test_sslcertstatus.t  ok
70-test_sslextension.t . ok
70-test_sslmessages.t .. ok
70-test_sslrecords.t ... ok
70-test_sslsessiontick.t ... ok
70-test_sslsigalgs.t ... ok
70-test_sslsignature.t . ok
70-test_sslskewith0p.t . ok
70-test_sslversions.t .. ok
70-test_sslvertol.t  ok
70-test_tls13alerts.t .. ok
70-test_tls13cookie.t .. ok
70-test_tls13downgrade.t ... ok
70-test_tls13hrr.t . ok
70-test_tls13kexmodes.t  ok
70-test_tls13messages.t  ok
70-test_tls13psk.t . ok
70-test_tlsextms.t . ok
70-test_verify_extra.t . ok
70-test_wpacket.t .. ok
71-test_ssl_ctx.t .. ok
80-test_ca.t ... ok
80-test_cipherbytes.t .. ok
80-test_cipherlist.t ... ok
80-test_ciphername.t ... ok
80-test_cms.t .. ok
80-test_cmsapi.t ... ok
80-test_ct.t ... ok
80-test_dane.t . ok
80-test_dtls.t . ok
80-test_dtls_mtu.t . ok
80-test_dtlsv1listen.t . ok
80-test_http.t . ok
80-test_ocsp.t . ok
80-test_pkcs12.t ... ok
80-test_ssl_new.t .. ok
80-test_ssl_old.t .. ok
80-test_ssl_test_ctx.t . ok
80-test_sslcorrupt.t ... ok
80-test_tsa.t .. ok
80-test_x509aux.t .. ok
81-test_cmp_cli.t .. 
Dubious, test returned 5 (wstat 1280, 0x500)
Failed 5/7 subtests 
90-test_asn1_time.t  ok
90-test_async.t  ok
90-test_bio_enc.t .. ok
90-test_bio_memleak.t .. ok
90-test_constant_time.t  ok
90-test_fatalerr.t . ok
90-test_gmdiff.t ... ok
90-test_gost.t . ok
90-test_ige.t .. ok
90-test_includes.t . ok
90-test_memleak.t 

Still FAILED build of OpenSSL branch master with options -d --strict-warnings no-err

2020-06-29 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-err

Commit log since last time:

9afbb681ec INSTALL.md and NOTES.VALGRIND: Further cleanup of references and 
code/symbol quotation layout
3a0b3cc905 Move test-related info from INSTALL.md to new test/README.md, 
updating references
96e0445195 apps/openssl: clean-up of unused fallback code
c9741726c1 Configurations: drop toolchain from configuration targets
16b0e0fcb3 DOC: Mention Configure consistently
180626159e Configure: pick up options from older 'config'
bfa684622a util/perl/OpenSSL/config.pm: refactor guess_system()
019e3a0b6b util/perl/OpenSSL/config.pm: remove expand() and use eval
2f44c8151e config: Turn into a simple wrapper
e39795af0a util/perl/OpenSSL/config.pm: refactor map_guess()
081436bf73 util/perl/OpenSSL/config.pm, Configure: move check of target with 
compiler
a3310b182c util/perl/OpenSSL/config.pm: Rework determining compiler information
48704cc651 Remove OpenSSL::config::main(), it's not necessary
69aa579e6d util/perl/OpenSSL/config.pm: Prefer POSIX::uname() over piping the 
command
33d5b4a68a util/perl/OpenSSL/config.pm: Don't detect removed directories in
4901b570ba Initial rewrite of config as a Perl module
92db29e5e8 Add a test to make sure ASYNC aware code gets the right default 
libctx
6c689e58f7 Make the ASYNC code default libctx aware
cfbd76c1a9 CORE: Add an internal function to distinguish the global default 
context
e31eda006f TEST: Add test to exercise OPENSSL_CTX_set0_default()
3bd65f9b5b Update NEWS and CHANGES
5a9752756b CORE: Add OPENSSL_CTX_set0_default(), to set a default library 
context
270540fd54 INSTALL.md: Restore $ as command prompt indicator
b1f9db6980 Configuration: do not overwrite BASE_unix ex_libs in AIX
aba03ae571 Reduce the security bits for MD5 and SHA1 based signatures in TLS
526f1f1aca Fix syntax of cipher string
c65b1d0252 TEST: Add TODO segments in test/recipes/15-test_genec.t
0c2bddb76a Test genpkey app for EC keygen with various args
cc63865f33 doc/man3: fix types taken by HMAC(), HMAC_Update()
0d96afd28c Prepare for 3.0 alpha 5
38778b78e0 Prepare for release of 3.0 alpha 4
fbd2ece171 Update copyright year

Build log ended with (last 100 lines):

65-test_cmp_protect.t .. ok
65-test_cmp_server.t ... ok
65-test_cmp_status.t ... ok
65-test_cmp_vfy.t .. ok
70-test_asyncio.t .. ok
70-test_bad_dtls.t . ok
70-test_clienthello.t .. ok
70-test_comp.t . ok
70-test_key_share.t  ok
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  ok
70-test_servername.t ... ok
70-test_sslcbcpadding.t  ok
70-test_sslcertstatus.t  ok
70-test_sslextension.t . ok
70-test_sslmessages.t .. ok
70-test_sslrecords.t ... ok
70-test_sslsessiontick.t ... ok
70-test_sslsigalgs.t ... ok
70-test_sslsignature.t . ok
70-test_sslskewith0p.t . ok
70-test_sslversions.t .. ok
70-test_sslvertol.t  ok
70-test_tls13alerts.t .. ok
70-test_tls13cookie.t .. ok
70-test_tls13downgrade.t ... ok
70-test_tls13hrr.t . ok
70-test_tls13kexmodes.t  ok
70-test_tls13messages.t  ok
70-test_tls13psk.t . ok
70-test_tlsextms.t . ok
70-test_verify_extra.t . ok
70-test_wpacket.t .. ok
71-test_ssl_ctx.t .. ok
80-test_ca.t ... ok
80-test_cipherbytes.t .. ok
80-test_cipherlist.t ... ok
80-test_ciphername.t ... ok
80-test_cms.t .. ok
80-test_cmsapi.t ... ok
80-test_ct.t ... ok
80-test_dane.t . ok
80-test_dtls.t . ok
80-test_dtls_mtu.t . ok
80-test_dtlsv1listen.t . ok
80-test_http.t . ok
80-test_ocsp.t . ok
80-test_pkcs12.t ... ok
80-test_ssl_new.t .. ok
80-test_ssl_old.t .. ok
80-test_ssl_test_ctx.t . ok
80-test_sslcorrupt.t ... ok
80-test_tsa.t .. ok
80-test_x509aux.t .. ok
81-test_cmp_cli.t .. ok
90-test_asn1_time.t  ok
90-test_async.t  ok
90-test_bio_enc.t .. ok
90-test_bio_memleak.t .. ok
90-test_constant_time.t  ok
90-test_fatalerr.t . ok
90-test_gmdiff.t ... ok
90-test_gost.t . ok
90-test_ige.t .. ok
90-test_includes.t . ok

Still FAILED build of OpenSSL branch master with options -d --strict-warnings no-dgram

2020-06-29 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-dgram

Commit log since last time:

9afbb681ec INSTALL.md and NOTES.VALGRIND: Further cleanup of references and 
code/symbol quotation layout
3a0b3cc905 Move test-related info from INSTALL.md to new test/README.md, 
updating references
96e0445195 apps/openssl: clean-up of unused fallback code
c9741726c1 Configurations: drop toolchain from configuration targets
16b0e0fcb3 DOC: Mention Configure consistently
180626159e Configure: pick up options from older 'config'
bfa684622a util/perl/OpenSSL/config.pm: refactor guess_system()
019e3a0b6b util/perl/OpenSSL/config.pm: remove expand() and use eval
2f44c8151e config: Turn into a simple wrapper
e39795af0a util/perl/OpenSSL/config.pm: refactor map_guess()
081436bf73 util/perl/OpenSSL/config.pm, Configure: move check of target with 
compiler
a3310b182c util/perl/OpenSSL/config.pm: Rework determining compiler information
48704cc651 Remove OpenSSL::config::main(), it's not necessary
69aa579e6d util/perl/OpenSSL/config.pm: Prefer POSIX::uname() over piping the 
command
33d5b4a68a util/perl/OpenSSL/config.pm: Don't detect removed directories in
4901b570ba Initial rewrite of config as a Perl module
92db29e5e8 Add a test to make sure ASYNC aware code gets the right default 
libctx
6c689e58f7 Make the ASYNC code default libctx aware
cfbd76c1a9 CORE: Add an internal function to distinguish the global default 
context
e31eda006f TEST: Add test to exercise OPENSSL_CTX_set0_default()
3bd65f9b5b Update NEWS and CHANGES
5a9752756b CORE: Add OPENSSL_CTX_set0_default(), to set a default library 
context
270540fd54 INSTALL.md: Restore $ as command prompt indicator
b1f9db6980 Configuration: do not overwrite BASE_unix ex_libs in AIX
aba03ae571 Reduce the security bits for MD5 and SHA1 based signatures in TLS
526f1f1aca Fix syntax of cipher string
c65b1d0252 TEST: Add TODO segments in test/recipes/15-test_genec.t
0c2bddb76a Test genpkey app for EC keygen with various args
cc63865f33 doc/man3: fix types taken by HMAC(), HMAC_Update()
0d96afd28c Prepare for 3.0 alpha 5
38778b78e0 Prepare for release of 3.0 alpha 4
fbd2ece171 Update copyright year

Build log ended with (last 100 lines):

65-test_cmp_status.t ... ok
65-test_cmp_vfy.t .. ok
70-test_asyncio.t .. ok
70-test_bad_dtls.t . skipped: DTLSv1 is not supported by this 
OpenSSL build
70-test_clienthello.t .. ok
70-test_comp.t . ok
70-test_key_share.t  ok
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  ok
70-test_servername.t ... ok
70-test_sslcbcpadding.t  ok
70-test_sslcertstatus.t  ok
70-test_sslextension.t . ok
70-test_sslmessages.t .. ok
70-test_sslrecords.t ... ok
70-test_sslsessiontick.t ... ok
70-test_sslsigalgs.t ... ok
70-test_sslsignature.t . ok
70-test_sslskewith0p.t . ok
70-test_sslversions.t .. ok
70-test_sslvertol.t  ok
70-test_tls13alerts.t .. ok
70-test_tls13cookie.t .. ok
70-test_tls13downgrade.t ... ok
70-test_tls13hrr.t . ok
70-test_tls13kexmodes.t  ok
70-test_tls13messages.t  ok
70-test_tls13psk.t . ok
70-test_tlsextms.t . ok
70-test_verify_extra.t . ok
70-test_wpacket.t .. ok
71-test_ssl_ctx.t .. ok
80-test_ca.t ... ok
80-test_cipherbytes.t .. ok
80-test_cipherlist.t ... ok
80-test_ciphername.t ... ok
80-test_cms.t .. ok
80-test_cmsapi.t ... ok
80-test_ct.t ... ok
80-test_dane.t . ok
80-test_dtls.t . skipped: No DTLS protocols are supported 
by this OpenSSL build
80-test_dtls_mtu.t . skipped: test_dtls_mtu needs DTLS and PSK 
support enabled
80-test_dtlsv1listen.t . ok
80-test_http.t . ok
80-test_ocsp.t . ok
80-test_pkcs12.t ... ok
80-test_ssl_new.t .. 
Dubious, test returned 1 (wstat 256, 0x100)
Failed 1/31 subtests 
80-test_ssl_old.t .. ok
80-test_ssl_test_ctx.t . ok
80-test_sslcorrupt.t ... ok
80-test_tsa.t .. ok
80-test_x509aux.t .. ok
81-test_cmp_cli.t .. ok
90-test_asn1_time.t  ok
90-test_async.t  ok
90-test_bio_enc.t .. ok
90-test_bio_memleak.t .. ok
90-test_constant_time.t  ok
90-test_fatalerr.t . ok

Errored: openssl/openssl#35810 (master - 3121425)

2020-06-29 Thread Travis CI
Build Update for openssl/openssl
-

Build: #35810
Status: Errored

Duration: 1 hr, 48 mins, and 59 secs
Commit: 3121425 (master)
Author: Rich Salz
Message: Add --fips-key configuration parameter to fipsinstall application.

Change default FIPS HMAC KEY from all-zero's
Use default FIPSKEY if not given on command line.
Make all -macopt in fipsinstall optional
Make all tests, except fipsinstall, use the default -macopt and
-mac_name flags.
Define and use FIPSDIR variable on VMS/MMS.
Also use SRCDIR/BLDDIR in SRCTOP/BLDTOP.

Reviewed-by: Matthias St. Pierre 
Reviewed-by: Shane Lontis 
(Merged from https://github.com/openssl/openssl/pull/12235)

View the changeset: 
https://github.com/openssl/openssl/compare/9afbb681ecd4...312142583092

View the full build log and details: 
https://travis-ci.com/github/openssl/openssl/builds/173396295?utm_medium=notification_source=email

--

You can unsubscribe from build emails from the openssl/openssl repository going 
to 
https://travis-ci.com/account/preferences/unsubscribe?repository=13885459_medium=notification_source=email.
Or unsubscribe from *all* email updating your settings at 
https://travis-ci.com/account/preferences/unsubscribe?utm_medium=notification_source=email.
Or configure specific recipients for build notifications in your .travis.yml 
file. See https://docs.travis-ci.com/user/notifications.



Still FAILED build of OpenSSL branch master with options -d --strict-warnings no-des

2020-06-29 Thread OpenSSL run-checker
Platform and configuration command:

$ uname -a
Linux run 4.15.0-54-generic #58-Ubuntu SMP Mon Jun 24 10:55:24 UTC 2019 x86_64 
x86_64 x86_64 GNU/Linux
$ CC=clang ../openssl/config -d --strict-warnings no-des

Commit log since last time:

9afbb681ec INSTALL.md and NOTES.VALGRIND: Further cleanup of references and 
code/symbol quotation layout
3a0b3cc905 Move test-related info from INSTALL.md to new test/README.md, 
updating references
96e0445195 apps/openssl: clean-up of unused fallback code
c9741726c1 Configurations: drop toolchain from configuration targets
16b0e0fcb3 DOC: Mention Configure consistently
180626159e Configure: pick up options from older 'config'
bfa684622a util/perl/OpenSSL/config.pm: refactor guess_system()
019e3a0b6b util/perl/OpenSSL/config.pm: remove expand() and use eval
2f44c8151e config: Turn into a simple wrapper
e39795af0a util/perl/OpenSSL/config.pm: refactor map_guess()
081436bf73 util/perl/OpenSSL/config.pm, Configure: move check of target with 
compiler
a3310b182c util/perl/OpenSSL/config.pm: Rework determining compiler information
48704cc651 Remove OpenSSL::config::main(), it's not necessary
69aa579e6d util/perl/OpenSSL/config.pm: Prefer POSIX::uname() over piping the 
command
33d5b4a68a util/perl/OpenSSL/config.pm: Don't detect removed directories in
4901b570ba Initial rewrite of config as a Perl module
92db29e5e8 Add a test to make sure ASYNC aware code gets the right default 
libctx
6c689e58f7 Make the ASYNC code default libctx aware
cfbd76c1a9 CORE: Add an internal function to distinguish the global default 
context
e31eda006f TEST: Add test to exercise OPENSSL_CTX_set0_default()
3bd65f9b5b Update NEWS and CHANGES
5a9752756b CORE: Add OPENSSL_CTX_set0_default(), to set a default library 
context
270540fd54 INSTALL.md: Restore $ as command prompt indicator
b1f9db6980 Configuration: do not overwrite BASE_unix ex_libs in AIX
aba03ae571 Reduce the security bits for MD5 and SHA1 based signatures in TLS
526f1f1aca Fix syntax of cipher string
c65b1d0252 TEST: Add TODO segments in test/recipes/15-test_genec.t
0c2bddb76a Test genpkey app for EC keygen with various args
cc63865f33 doc/man3: fix types taken by HMAC(), HMAC_Update()
0d96afd28c Prepare for 3.0 alpha 5
38778b78e0 Prepare for release of 3.0 alpha 4
fbd2ece171 Update copyright year

Build log ended with (last 100 lines):

65-test_cmp_status.t ... ok
65-test_cmp_vfy.t .. ok
70-test_asyncio.t .. ok
70-test_bad_dtls.t . ok
70-test_clienthello.t .. ok
70-test_comp.t . ok
70-test_key_share.t  ok
70-test_packet.t ... ok
70-test_recordlen.t  ok
70-test_renegotiation.t  ok
70-test_servername.t ... ok
70-test_sslcbcpadding.t  ok
70-test_sslcertstatus.t  ok
70-test_sslextension.t . ok
70-test_sslmessages.t .. ok
70-test_sslrecords.t ... ok
70-test_sslsessiontick.t ... ok
70-test_sslsigalgs.t ... ok
70-test_sslsignature.t . ok
70-test_sslskewith0p.t . ok
70-test_sslversions.t .. ok
70-test_sslvertol.t  ok
70-test_tls13alerts.t .. ok
70-test_tls13cookie.t .. ok
70-test_tls13downgrade.t ... ok
70-test_tls13hrr.t . ok
70-test_tls13kexmodes.t  ok
70-test_tls13messages.t  ok
70-test_tls13psk.t . ok
70-test_tlsextms.t . ok
70-test_verify_extra.t . ok
70-test_wpacket.t .. ok
71-test_ssl_ctx.t .. ok
80-test_ca.t ... ok
80-test_cipherbytes.t .. ok
80-test_cipherlist.t ... ok
80-test_ciphername.t ... ok
80-test_cms.t .. ok
80-test_cmsapi.t ... ok
80-test_ct.t ... ok
80-test_dane.t . ok
80-test_dtls.t . ok
80-test_dtls_mtu.t . ok
80-test_dtlsv1listen.t . ok
80-test_http.t . ok
80-test_ocsp.t . ok
80-test_pkcs12.t ... skipped: The PKCS12 command line utility 
is not supported by this OpenSSL build
80-test_ssl_new.t .. ok
80-test_ssl_old.t .. ok
80-test_ssl_test_ctx.t . ok
80-test_sslcorrupt.t ... ok
80-test_tsa.t .. ok
80-test_x509aux.t .. ok
81-test_cmp_cli.t .. 
Dubious, test returned 5 (wstat 1280, 0x500)
Failed 5/7 subtests 
90-test_asn1_time.t  ok
90-test_async.t  ok
90-test_bio_enc.t .. ok
90-test_bio_memleak.t .. ok
90-test_constant_time.t  ok
90-test_fatalerr.t . ok
90-test_gmdiff.t ... ok
90-test_gost.t . ok
90-test_ige.t