[openssl-dev] [openssl.org #1518] [PATCH] Securing private RSA keys

2016-05-18 Thread Matt Caswell via RT
After 9 years looks like there is no support for this patch (and it will not apply now anyway). I'd suggest if anyone does support this then a new patch be submitted via GitHub. Closing this ticket. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1518 Please log in as guest wi

[openssl-dev] [openssl.org #1919] Bug in buffer_ctrl in BIO_f_buffer?

2016-05-18 Thread Matt Caswell via RT
This seems to have been fixed at some point. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1919 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #2363] bug: memory allocated by DH_new() may never be free()ed

2016-05-18 Thread Matt Caswell via RT
This appears to be a usage problem where the library is not being de-inited properly. This should be resolved anyway in 1.1.0 with auto-deinit. Closing ticket. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=2363 Please log in as guest with password guest if prompted -- open

[openssl-dev] [openssl.org #2485] Heap walking in RAND_poll causes deadlock in process on Windows Server 2008 R2 (x64) that uses libCurl, OpenSSL and ADO

2016-05-16 Thread Matt Caswell via RT
Closing this ticket in favour of: https://github.com/openssl/openssl/pull/1079 -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=2485 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-de

[openssl-dev] [openssl.org #2459] ecdsa_method declaration prevents use in implementing a dynamic engine

2016-05-16 Thread Matt Caswell via RT
This has been fixed in 1.1.0. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=2459 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4389] [PATCH] The NewSessionTicket message is not optional.

2016-05-13 Thread Matt Caswell via RT
Patch applied in c45d6b2b0, and a test for this added in 5f7267598. Thanks Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4389 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl

[openssl-dev] [openssl.org #3994] make clean leaves extra files

2016-05-12 Thread Matt Caswell via RT
Dmitry reports this as fixed. Closing ticket. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=3994 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4387] [PATCH] Fix V2ClientHello handling

2016-05-11 Thread Matt Caswell via RT
Patch applied in cb21df322. Thanks. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4387 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4379] "arch/async_posix.h:67:24: error: ucontext.h: No such file or directory" under OpenBSD 5.7/64-bit

2016-05-11 Thread Matt Caswell via RT
On Sat Mar 05 02:22:00 2016, noloa...@gmail.com wrote: > cc -I.. -I../.. -I../modes -I../include -I../../include -DDSO_DLFCN > -DHAVE_DLFCN_H -DOPENSSL_THREADS -DOPENSSL_NO_STATIC_ENGINE > -DOPENSSL_PIC -DOPENSSL_IA32_SSE2 -DOPENSSL_BN_ASM_MONT > -DOPENSSL_BN_ASM_MONT5 -DOPENSSL_BN_ASM_GF2m -DSHA1_

[openssl-dev] [openssl.org #4510] SSL certificate problem: unable to get local issuer certificate. Bug?

2016-05-10 Thread Matt Caswell via RT
Does not appear to be an OpenSSL bug. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4510 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4499] ARM32 and "undefined reference to `engine_load_afalg_internal'"

2016-05-10 Thread Matt Caswell via RT
No response from OP. Assuming fixed. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4499 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4497] openssl ciphers app possible bug

2016-05-10 Thread Matt Caswell via RT
Not a bug. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4497 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4494] Fix: check the FD_SETSIZE before the call to select() in speed.c

2016-05-10 Thread Matt Caswell via RT
The referenced pull request was merged. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4494 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4456] Fedora 1, i386: error: field `next_timeout` has incomplete type

2016-05-10 Thread Matt Caswell via RT
Ping Richard Levitte. -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4456 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4455] OpenSUSE 42: undefined reference to `engine_load_afalg_internal'

2016-05-10 Thread Matt Caswell via RT
No response to last message. Assuming fixed. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4455 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4454] openssl-1.1.0-pre4: zlib-dynamic problems

2016-05-10 Thread Matt Caswell via RT
This should be fixed now. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4454 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4451] OS X 10.8, x86_64: 01-test_abort.t... sh: line 1: 71522 Abort trap: 6

2016-05-10 Thread Matt Caswell via RT
Reopened in error. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4451 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4445] Configure does not honor enable-afalgeng

2016-05-10 Thread Matt Caswell via RT
Working as intended. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4445 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4443] Re: VIA C7-D processor: Hang in 30-test_afalg.t

2016-05-10 Thread Matt Caswell via RT
Ticket appears to have been opened in error. This message should have been against ticket 4411. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4443 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openss

[openssl-dev] [openssl.org #4440] Re: Openssl-SNAP-20160315 issue Re: Openssl-SNAP-20160314 Re: Openssl SNAP 20160313 issue Re: OPenSSL SNAP 20160312 issue

2016-05-10 Thread Matt Caswell via RT
Ticket appears to have been opened in error. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4440 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4434] Gentoo 13, x86_64: 4 failed self tests

2016-05-10 Thread Matt Caswell via RT
Jeff Please can you check this again on latest master. Is this still an issue? Thanks Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4434 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/list

[openssl-dev] [openssl.org #4418] Apple configuration delay does not respond to Ctrl-C, proceeds with configuration

2016-05-10 Thread Matt Caswell via RT
Ping Richard Levitte. Can this be closed? Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4418 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4413] Cygwin x86_64: make: *** No rule to make target '/openssl/Configurations/unix-Makefile.tmpl', needed by 'configdata.pm'.

2016-05-10 Thread Matt Caswell via RT
OP reports this as fixed. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4413 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4409] bug OpenSSL 1.0.1p 9 Jul 2015

2016-05-10 Thread Matt Caswell via RT
Not a bug. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4409 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4405] 1.1.0 compile failure with no-comp

2016-05-10 Thread Matt Caswell via RT
This seems to be working now. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4405 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4404] [PATCH] Missing Sanity Check for OPENSSL_strdup() in OpenSSL-1.1 pre-4

2016-05-10 Thread Matt Caswell via RT
This appears to have been fixed. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4404 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4400] [PATCH] plug potential memory leak in OpenSSL 1.1 pre 4

2016-05-10 Thread Matt Caswell via RT
This patch doesn't look correct. I don't see a memory leak here. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4400 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-

[openssl-dev] [openssl.org #4357] NIST SP800-56A co-factor ECDH KATs

2016-05-10 Thread Matt Caswell via RT
The referenced pull request was merged so closing this ticket. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4357 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4338] master: allocating memory for an unused variable in tls1_export_keying_material

2016-05-10 Thread Matt Caswell via RT
The referenced pull request was merged. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4338 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4328] Cygwin, self test and "./bctest: line 35: bc: command not found"

2016-05-10 Thread Matt Caswell via RT
Richard provided an answer for this. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4328 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4327] SSL_CTX_use_serverinfo_file() causes issues for SSL_CTX with multiple certs

2016-05-10 Thread Matt Caswell via RT
This was fixed in github PR 914. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4327 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4326] Failed to configure for Cygwin-x64

2016-05-10 Thread Matt Caswell via RT
This seems to have been fixed. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4326 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4343] master: EC_KEY_priv2buf (): check parameter sanity

2016-05-10 Thread Matt Caswell via RT
Steve explained how this should be done. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4343 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4321] Re: Missing accessor to the EVP_CIPHER_CTX member oiv

2016-05-10 Thread Matt Caswell via RT
Seems to have been opened in error (reply to ticket 4267). Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4321 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4319] openssl-1.1.0-pre3 Configure does not set cflags correctly on Solaris10 x64

2016-05-10 Thread Matt Caswell via RT
This seems to have been fixed at some point (at least it is working for me on latest master). Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4319 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.o

[openssl-dev] [openssl.org #4317] openssl-1.1.0-pre3 make error with Configure option "zlib-dynamic"

2016-05-10 Thread Matt Caswell via RT
This seems to be working correctly now. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4317 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4311] OpenSSL 1.1.0-pre3: quote PERL=$(PERL) in Makefiles

2016-05-10 Thread Matt Caswell via RT
Makefile.in doesn't exist any more. Ping Richard Levitte - does anything need to be done for the new build system? Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4311 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://m

[openssl-dev] [openssl.org #4306] few cmds help cleanup

2016-05-10 Thread Matt Caswell via RT
This got committed in 6c335b0. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4306 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4301] [BUG] OpenSSL 1.1.0-pre2 fails to parse x509 certificate in DER format

2016-05-10 Thread Matt Caswell via RT
This is intended behaviour for the certificate in question, so closing this ticket. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4301 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo

[openssl-dev] [openssl.org #4287] Option -attime for "openssl ts -verify"

2016-05-10 Thread Matt Caswell via RT
This got fixed as part of GitHub pull request 870, so closing this. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4287 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4282] Re: [PATCH] Allow downgrading when reusing sessions on client

2016-05-10 Thread Matt Caswell via RT
On Sun Jan 31 01:20:30 2016, fe...@indutny.com wrote: > This actually sounds like a lovely idea. > > See: https://github.com/openssl/openssl/pull/603 The referenced pull got closed and replaced by https://github.com/openssl/openssl/pull/852 which has been merged. Therefore closing this ticket. Ma

[openssl-dev] [openssl.org #4280] OpenSSL 1.1.0 pre 2: feature request: ECDSA_SIG_set0(const ECDSA_SIG*, BIGNUM *, BIGNUM *) is needed

2016-05-10 Thread Matt Caswell via RT
Steve explained how to achieve what was wanted. Also the DSA_SIG_set0() function also mentioned in this ticket seems to have been added. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4280 Please log in as guest with password guest if prompted -- openssl-dev mailin

[openssl-dev] [openssl.org #4275] Test all built-in curves and let the library choose the EC_METHOD

2016-05-10 Thread Matt Caswell via RT
Looks like this got merged so closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4275 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4272] [BUG/PATCH] Unit tests fail when DTLS is disabled

2016-05-10 Thread Matt Caswell via RT
Looks like this pull request was merged so closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4272 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4255] OpenSSL-1.1.0-pre2 failures using MinGW-W64

2016-05-10 Thread Matt Caswell via RT
Re-opening. OP reports there are still issues with "make test" hanging. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4255 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4262] Fwd: Configure script warns when no configurations changes occur

2016-05-10 Thread Matt Caswell via RT
Fixed differently in d20bb611d. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4262 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4257] Fix BN_gcd errors for curves with even order that do not play nicely with Montgomery arithmetic

2016-05-10 Thread Matt Caswell via RT
This was merged in 3a6a4a9. Closing Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4257 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4255] OpenSSL-1.1.0-pre2 failures using MinGW-W64

2016-05-10 Thread Matt Caswell via RT
This doesn't seem to be a problem with OpenSSL so closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4255 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4254] PR for BLAKE2 support

2016-05-10 Thread Matt Caswell via RT
This was merged previously. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4254 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4248] Link error under Windows

2016-05-10 Thread Matt Caswell via RT
Appears to have been reopened in error. Closing again. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4248 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4227] openssl rand 10000000000 does not produce 10000000000 random bytes

2016-05-10 Thread Matt Caswell via RT
The issue as originally described in this ticket has been fixed. A comment was added at one point to this ticket: "May I suggest the bug also becomes a wish for support for > 2GB numbers, as that is what the user originally wanted?" It's not clear that that is desirable and is unlikely to be adde

[openssl-dev] [openssl.org #4217] Fixing DJGPP port of openssl master branch.

2016-05-10 Thread Matt Caswell via RT
Ping Richard Levitte. -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4217 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4212] Compilation of master branch fails with 's_nbio' undeclared (first use in this function).

2016-05-10 Thread Matt Caswell via RT
Looks like this was fixed by ba8108154d. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4212 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4207] engine key format in 1.1

2016-05-10 Thread Matt Caswell via RT
Seems to have been mostly fixed by dd9589740d, but it looks like there may be a few things in this patch not covered by that commit. Keeping this open for now. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4207 Please log in as guest with password guest if prompted -- opens

[openssl-dev] [openssl.org #4201] Feature Request: Support dumping session keys in NSS key log format

2016-05-10 Thread Matt Caswell via RT
Github pull 570 which was associated with this ticket has been closed, so closing this too. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4201 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/

[openssl-dev] [openssl.org #4185] Bug in EVP_MD_CTX_copy_ex's malloc failure handling

2016-05-10 Thread Matt Caswell via RT
Seems to have been fixed by 6aa0ba4bb28. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4185 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4178] [patch] OpenSSL 1.1.0 fails when configure with no-nextproto

2016-05-10 Thread Matt Caswell via RT
This seems to be working now. Closing ticket. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4178 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4177] opaque X509 struct issues

2016-05-10 Thread Matt Caswell via RT
Stephen answered this issue. The X509_get0_extensions() function does now seem to be documented. Closing this ticket. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4177 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https

[openssl-dev] [openssl.org #4176] Add support for async jobs in OpenSSL speed

2016-05-10 Thread Matt Caswell via RT
Added in commit 8b0b80d923. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4176 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #1298] OpenSSL bug in libcrypto.so:RAND_poll() crashes apache2 @ startup

2016-05-09 Thread Matt Caswell via RT
On Mon May 09 15:05:32 2016, rs...@akamai.com wrote: > It's probably not an issue because the number of file descriptors has > increased on the native O/S's. But "file descriptor exhaustion" is > still an issue for RNG's (google it) and we should keep it in mind for > the future. What's the best wa

[openssl-dev] [openssl.org #1215] Bug Report for OpenSSL

2016-05-09 Thread Matt Caswell via RT
Fixed in commit 3105d69. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1215 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #1916] [PATCH] Fix for memleaks, use after free and optimizations

2016-05-09 Thread Matt Caswell via RT
These patches no longer apply and are no longer relevant to the latest codebase. Closing Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1916 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/li

[openssl-dev] [openssl.org #1912] BIO_printf/BIO_vprintf error in 0.9.8k

2016-05-09 Thread Matt Caswell via RT
I don't believe this is an issue any more as the maxlen increases along with the dynamic buffer so no truncation should take place. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1912 Please log in as guest with password guest if prompted -- openssl-dev mailing lis

[openssl-dev] [openssl.org #1875] Fwd: [PATCH] Small bug fixes and coding style corrections

2016-05-09 Thread Matt Caswell via RT
These patches no longer apply and are no longer relevant. Closing Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1875 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #1873] SMIME_write_PKCS7 and CRLF in base64 signature

2016-05-09 Thread Matt Caswell via RT
This doesn't seem to match up in any way with current code so I guess it is no longer relevant. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1873 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openss

[openssl-dev] [openssl.org #1833] [PATCH] Abbreviated Renegotiations

2016-05-09 Thread Matt Caswell via RT
This doesn't seem to be the case any more. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1833 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #1769] bug report: Array overruns

2016-05-09 Thread Matt Caswell via RT
At some in the intervening period since this was raised these issues have been fixed. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1769 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mail

[openssl-dev] [openssl.org #1298] OpenSSL bug in libcrypto.so:RAND_poll() crashes apache2 @ startup

2016-05-09 Thread Matt Caswell via RT
Due to the elapsed time I am assuming this is no longer a problem for apache. Please create a new ticket if this is still a problem! Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1298 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsu

[openssl-dev] [openssl.org #1241] apps/s_client.c: 2 changes in initial handshake

2016-05-09 Thread Matt Caswell via RT
These no longer apply due to the elapsed time. The verify patch doesn't quite make sense (maybe it did when this was written) because SSL_VERIFY_FAIL_IF_NO_PEER_CERT is a server side only option. The "manual" option to starttls is quite a neat idea, but will not be applied in its current state. A

[openssl-dev] [openssl.org #4534] Re: [PATCH] Add missing NULL check in i2d_PrivateKey()

2016-05-05 Thread Matt Caswell via RT
Closing this ticket at request of submitter. Erroneous duplicate of #4533 Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4534 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-d

[openssl-dev] [openssl.org #4524] [BUG] TLS 1.2 handshake hangs for TLS 1.0 only hosts

2016-04-30 Thread Matt Caswell via RT
On Sat Apr 30 19:51:51 2016, hen...@newdawn.dk wrote: > Hi there > > I've recently come across what looks to be an internal bug in openssl: > > Original symptoms was that neither "curl" or "wget" could access the > following site: > > https://coverage.tre.se - this site is using TLS 1.0 (only) and

[openssl-dev] [openssl.org #4499] ARM32 and "undefined reference to `engine_load_afalg_internal'"

2016-04-14 Thread Matt Caswell via RT
Please try again from latest master. Possibly fixed by 627537ddf379. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4499 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4455] OpenSUSE 42: undefined reference to `engine_load_afalg_internal'

2016-04-14 Thread Matt Caswell via RT
Please can you try this again on latest master. Possibly fixed by 627537ddf379. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4455 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/ope

Re: [openssl-dev] [openssl.org #4495] After upgrade openssl to 1.0.2g, it cause core accidently, please help me !

2016-03-31 Thread Matt Caswell via RT
On 31/03/16 14:00, Hejian via RT wrote: > Hello, when upgrade openssl to 1.0.2g, If multi thread call the corba > interface, it will cause core accidently. Please help analyze why the > core is generated. > > There are two kinds of core stack list below. > > > #0 0x7f97729ad324 in RSA_ver

Re: [openssl-dev] [openssl.org #4437] invalid free() by ENGINE_cleanup()

2016-03-19 Thread Matt Caswell via RT
On 17/03/16 10:49, Daniel Stenberg via RT wrote: > Hey, > > In curl we call ENGINE_cleanup() as part of our OpenSSL specific cleanup > function. When I do this with OpenSSL from git master as of right now > (OpenSSL_1_1_0-pre4-7-ga717738) valgrind catches an illegal free: Auto deinit automatica

Re: [openssl-dev] [openssl.org #4445] Configure does not honor enable-afalgeng

2016-03-19 Thread Matt Caswell via RT
On 18/03/16 12:52, noloa...@gmail.com via RT wrote: > I've configured with: > > ./config enable-afalgeng > > When I run the self tests, I see: > > ../test/recipes/30-test_afalg.t ... skipped: test_afalg not > supported for this build You should not need to use enable-afalgeng at

Re: [openssl-dev] [openssl.org #4445] Configure does not honor enable-afalgeng

2016-03-19 Thread Matt Caswell via RT
On 18/03/16 22:59, Kurt Roeckx via RT wrote: > On Fri, Mar 18, 2016 at 01:18:04PM +, Matt Caswell wrote: >> >> >> On 18/03/16 12:52, noloa...@gmail.com via RT wrote: >>> I've configured with: >>> >>> ./config enable-afalgeng >>> >>> When I run the self tests, I see: >>> >>> ../test/reci

Re: [openssl-dev] [openssl.org #4434] Gentoo 13, x86_64: 4 failed self tests

2016-03-19 Thread Matt Caswell via RT
What happens if you run the afalgtest directly? $ cd test $ ./afalgtest Matt On 16/03/16 13:52, noloa...@gmail.com via RT wrote: > Working from Master on a Gentoo 13 machine, x86_64. The test was run > as root which explains one of the failures (I don't have users or SSH > set up yet). > > Ker

Re: [openssl-dev] [openssl.org #4366] OS X 10.5, 64-bit PPC, no-asm, and "Failed test 'running asynctest'"

2016-03-16 Thread Matt Caswell via RT
On 14/03/16 15:21, Matt Caswell via RT wrote: > > > On 14/03/16 15:05, Andy Polyakov via RT wrote: >>>>> Bump... The issue is still present as of b36a2ef for OS X 10.6 64-bit. >>>>> 32-bit tests OK. >>>>> >>>>> The relevant

Re: [openssl-dev] [openssl.org #4366] OS X 10.5, 64-bit PPC, no-asm, and "Failed test 'running asynctest'"

2016-03-14 Thread Matt Caswell via RT
On 14/03/16 15:05, Andy Polyakov via RT wrote: Bump... The issue is still present as of b36a2ef for OS X 10.6 64-bit. 32-bit tests OK. The relevant snippets are: $ make test ... ../test/recipes/90-test_async.t ... 1/1 # Failed test 'running a

Re: [openssl-dev] [openssl.org #4366] OS X 10.5, 64-bit PPC, no-asm, and "Failed test 'running asynctest'"

2016-03-14 Thread Matt Caswell via RT
On 14/03/16 14:57, Andy Polyakov via RT wrote: >> Bump... The issue is still present as of b36a2ef for OS X 10.6 64-bit. >> 32-bit tests OK. >> >> The relevant snippets are: >> >> $ make test >> ... >> ../test/recipes/90-test_async.t ... 1/1 >> # Failed test 'running asynctest' >> # a

Re: [openssl-dev] [openssl.org #4411] VIA C7-D processor: Hang in 30-test_afalg.t

2016-03-11 Thread Matt Caswell via RT
On 11/03/16 19:38, noloa...@gmail.com via RT wrote: > On Thu, Mar 10, 2016 at 2:29 PM, noloa...@gmail.com via RT > wrote: >> Working from Master: >> > > It looks like the hang is still present as of 603358d. > > When the following runs: > > ../test/recipes/30-test_afalg.t > > What is act

[openssl-dev] [openssl.org #4411] VIA C7-D processor: Hang in 30-test_afalg.t

2016-03-11 Thread Matt Caswell via RT
Hi Jeff On Thu Mar 10 19:29:21 2016, noloa...@gmail.com wrote: > Working from Master: > > $ git reset --hard HEAD && git pull > HEAD is now at fb04434 In the recipe using "makedepend", make sure the > object file extension is there > Already up-to-date. > > $ ./config > ... > $ make depend && make

[openssl-dev] [openssl.org #4396] OS X 10-5, 64-bit PowerPC, error: 'split_send_fragment' undeclared (first use in this function)

2016-03-08 Thread Matt Caswell via RT
On Mon Mar 07 23:02:26 2016, noloa...@gmail.com wrote: > This just showed up on OS X 10-5, 64-bit PowerPC. Its not present > under Linux. > > $ git reset --hard HEAD > HEAD is now at e1d9f1a Remove kinv/r fields from DSA structure. > $ git pull > Already up-to-date. > > $ ./config && make depend &&

Re: [openssl-dev] [openssl.org #4396]: OS X 10-5, 64-bit PowerPC, error: 'split_send_fragment' undeclared (first use in this function)

2016-03-07 Thread Matt Caswell via RT
On 07/03/16 23:43, noloa...@gmail.com via RT wrote: > On Mon, Mar 7, 2016 at 6:29 PM, Matt Caswell via RT wrote: >> Fix already on the way. >> > > Thanks. I'm not sure what's triggering it on OS X because those > defines don't se

Re: [openssl-dev] [openssl.org #4396]: OS X 10-5, 64-bit PowerPC, error: 'split_send_fragment' undeclared (first use in this function)

2016-03-07 Thread Matt Caswell via RT
Fix already on the way. Matt On 07/03/16 23:28, noloa...@gmail.com via RT wrote: > On Mon, Mar 7, 2016 at 6:02 PM, Jeffrey Walton wrote: >> This just showed up on OS X 10-5, 64-bit PowerPC. Its not present under >> Linux. >> >> $ git reset --hard HEAD >> HEAD is now at e1d9f1a Remove kinv/r fie

[openssl-dev] [openssl.org #4322] SSL_shutdown:shutdown while in init (1.0.2f)

2016-02-19 Thread Matt Caswell via RT
On Fri Feb 19 13:58:34 2016, i...@ecsystems.nl wrote: > openssl 1.0.2f static build with nginx 1.9.12 (development version) > > about > https://github.com/openssl/openssl/commit/64193c8218540499984cd63cda41f3cd491f3f59 > > This may solve the initial issue but creates a new one: > SSL_shutdown() fai

[openssl-dev] [openssl.org #1736] Enhancement Request: do away with error in chil engine in absence of dynamic locks

2016-02-19 Thread Matt Caswell via RT
Looks like the last suggested patch against this ticket was applied. No further activity since 2008, so assuming this is resolved. Closing. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=1736 Please log in as guest with password guest if prompted -- openssl-dev mailing list

[openssl-dev] [openssl.org #3824] FEATURE: Please provide a function to unintialize the library

2016-02-09 Thread Matt Caswell via RT
On Wed Apr 29 05:10:28 2015, noloa...@gmail.com wrote: > This question crops up on occasion: How do you shutdown the OpenSSL > library. See, for example: > > * "How to properly uninitialize OpenSSL", > http://stackoverflow.com/questions/29845527/how-to-properly- > uninitialize-openssl. > * "Order o

Re: [openssl-dev] [openssl.org #3528] [PATCH] ssl: SSL_MODE_ASYNC_KEY_EX

2016-02-06 Thread Matt Caswell via RT
On 06/02/16 04:24, Fedor Indutny via RT wrote: > On Fri, Feb 5, 2016 at 7:14 PM, Matt Caswell wrote: > >> >> >> On 05/02/16 22:42, Fedor Indutny wrote: >>> Matt, >>> >>> I have looked through the APIs. Will have to experiment with them >>> somewhen later to see how well they will perform, but f

[openssl-dev] [openssl.org #4214] [GitHub PR] RFC 7714 DTLS-SRTP profiles

2016-02-06 Thread Matt Caswell via RT
Patch applied to master. Closing ticket. Matt -- Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4214 Please log in as guest with password guest if prompted -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

Re: [openssl-dev] [openssl.org #3528] [PATCH] ssl: SSL_MODE_ASYNC_KEY_EX

2016-02-05 Thread Matt Caswell via RT
> On Thu, Feb 4, 2016 at 4:56 AM, Fedor Indutny via RT <mailto:r...@openssl.org>> wrote: > > Thank you very much, Matt, Rich. > > I will read through these docs tomorrow. > > On Thu, Feb 4, 2016 at 4:29 AM, Matt Caswell via RT <mailto:r...@o

[openssl-dev] [openssl.org #2256] CVS HEAD: question: must this be hardcoded '8' or is it 'md_len' in disguise? :-S

2016-02-04 Thread Matt Caswell via RT
The length is specified by the standards and is less than the digest length. Closing this ticket. Matt - http://rt.openssl.org/Ticket/Display.html?id=2256 Please log in as guest with password guest if prompted _

[openssl-dev] [openssl.org #4290] HMAC_Init_ex() return bug

2016-02-04 Thread Matt Caswell via RT
On Wed Feb 03 18:32:20 2016, mikkrat...@gmail.com wrote: > I built it using cocoapods, the OpenSSL headers show 1.0.2f. > I’ll try to make some sample program tomorrow. > > > > On 3 veebr 2016, at 18:27, Salz, Rich via RT wrote: > > > >> I’m running OS X 10.11.3 and OpenSSL 1.0.206 > > > > I canno

Re: [openssl-dev] [openssl.org #3528] [PATCH] ssl: SSL_MODE_ASYNC_KEY_EX

2016-02-04 Thread Matt Caswell via RT
On 04/02/16 06:34, Salz, Rich via RT wrote: > It’s late and my response was incomplete. > The other part has already landed in master, and that's the "async engine" > support. See: https://www.openssl.org/docs/manmaster/crypto/ASYNC_start_job.html https://www.openssl.org/docs/manmaster/ssl/SSL

Re: [openssl-dev] [openssl.org #3003] Enhancement Request - RFC6698 (DANE) TLSA Support

2016-02-04 Thread Matt Caswell via RT
On 04/02/16 05:49, Rich Salz via RT wrote: > currently in master, planned for 1.1 scheculed for april 2017 That would be April 2016!! Matt ___ openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

Re: [openssl-dev] [openssl.org #4289] OpenSSL 1.0.2f serious bug in Win32 makefiles, easy to fix, solution provided

2016-02-03 Thread Matt Caswell via RT
On 03/02/16 19:43, Salz, Rich via RT wrote: >> The diff works perfectly on master, but exposed a new bug (bare snprintf). >> The following patch fixes it. I can make a PR (or add it to my existing PR >> #512) >> if you'd like. > > Please do as a separate PR. Thanks. I think Richard is alread

[openssl-dev] [openssl.org #3600] When compiling with enable-ec_nistp_64_gcc_128, then EC_GROUP_have_precompute_mult always returns 0

2016-01-29 Thread Matt Caswell via RT
Fixed in master and 1.0.2. Thanks for the report. Matt ___ openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #4278] DH_CHECK_PUBKEY_INVALID should be 0x4, not 0x3

2016-01-29 Thread Matt Caswell via RT
Thanks David - fixed. Matt ___ openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] [openssl.org #3863] [PATCH] ECC: Add missing NULL check. Set a flag.

2016-01-21 Thread Matt Caswell via RT
Patch applied. Thanks Matt ___ openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

<    1   2   3   4   5   6   >