1da57d55 | 27-Dec-2022 |
Toomas Soome |
15290 lib: remove pragma ident Reviewed by: Garrett D'Amore <garrett@damore.org> Reviewed by: Igor Kozhukhov <igor@dilos.org> Reviewed by: Dan Cross <cross@oxidecomputer.com> Approved
15290 lib: remove pragma ident Reviewed by: Garrett D'Amore <garrett@damore.org> Reviewed by: Igor Kozhukhov <igor@dilos.org> Reviewed by: Dan Cross <cross@oxidecomputer.com> Approved by: Patrick Mooney <pmooney@pfmooney.com>
show more ...
|
8222814e | 05-Apr-2021 |
Richard Lowe |
13487 want mapfile-based assertions about symbol properties Reviewed by: Robert Mustacchi <rm@fingolfin.org> Reviewed by: Jason King <jason.brian.king@gmail.com> Approved by: Dan McDonald
13487 want mapfile-based assertions about symbol properties Reviewed by: Robert Mustacchi <rm@fingolfin.org> Reviewed by: Jason King <jason.brian.king@gmail.com> Approved by: Dan McDonald <danmcd@joyent.com>
show more ...
|
f810c7e5 | 22-Jan-2019 |
Toomas Soome |
11164 libkmf: NULL pointer errors Reviewed by: C Fraire <cfraire@me.com> Approved by: Richard Lowe <richlowe@richlowe.net> |
856f710c | 09-Feb-2019 |
Andy Fiddaman |
10361 usr/lib - stop lint library generation and packaging Reviewed by: Jason King <jason.king@joyent.com> Reviewed by: Peter Tribble <peter.tribble@gmail.com> Reviewed by: Frederik Wesse
10361 usr/lib - stop lint library generation and packaging Reviewed by: Jason King <jason.king@joyent.com> Reviewed by: Peter Tribble <peter.tribble@gmail.com> Reviewed by: Frederik Wessels <wessels147@gmail.com> Approved by: Dan McDonald <danmcd@joyent.com>
show more ...
|
bdc560ab | 27-Feb-2018 |
Jason King |
5159 ipsec_libssl_setup.c loads libcrypto Reviewed by: Andy Fiddaman <andy@omniosce.org> Reviewed by: Igor Kozhukhov <igor@dilos.org> Reviewed by: Toomas Soome <tsoome@me.com> Approve
5159 ipsec_libssl_setup.c loads libcrypto Reviewed by: Andy Fiddaman <andy@omniosce.org> Reviewed by: Igor Kozhukhov <igor@dilos.org> Reviewed by: Toomas Soome <tsoome@me.com> Approved by: Dan McDonald <danmcd@joyent.com>
show more ...
|
6b35cb3c | 04-Feb-2015 |
Richard PALO |
5591 initialisation inversion of component order in cmd-crypto/elfsign.c 5620 cstyle updates for cmd/cmd-crypto and lib/libkmf Reviewed by: Dan McDonald <danmcd@omniti.com> Reviewed by: D
5591 initialisation inversion of component order in cmd-crypto/elfsign.c 5620 cstyle updates for cmd/cmd-crypto and lib/libkmf Reviewed by: Dan McDonald <danmcd@omniti.com> Reviewed by: David H246;ppner <0xffea@gmail.com> Reviewed by: Josef "Jeff" Sipek <jeffpc@josefsipek.net> Approved by: Dan McDonald <danmcd@omniti.com>
show more ...
|
fc2613b0 | 27-Jul-2010 |
Wyllys Ingersoll |
PSARC 2010/269 KMF Certificate Validation Enhancements 6963018 kmf_validate_cert should put more flags into the output attribute in case of an error 6939226 allow one KMF session to choose fr
PSARC 2010/269 KMF Certificate Validation Enhancements 6963018 kmf_validate_cert should put more flags into the output attribute in case of an error 6939226 allow one KMF session to choose from multiple trusted anchors to validate a certificate
show more ...
|
cd3e9333 | 25-Jun-2010 |
Ali Bahrami |
6916796 OSnet mapfiles should use version 2 link-editor syntax --HG-- rename : usr/src/cmd/sgs/libelf/common/mapfile-common => usr/src/cmd/sgs/libelf/common/mapfile-vers rename : usr
6916796 OSnet mapfiles should use version 2 link-editor syntax --HG-- rename : usr/src/cmd/sgs/libelf/common/mapfile-common => usr/src/cmd/sgs/libelf/common/mapfile-vers rename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-bindings => usr/src/cmd/sgs/link_audit/common/mapfile-vers-bindings rename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-perfcnt => usr/src/cmd/sgs/link_audit/common/mapfile-vers-perfcnt rename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-symbindrep => usr/src/cmd/sgs/link_audit/common/mapfile-vers-symbindrep rename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-truss => usr/src/cmd/sgs/link_audit/common/mapfile-vers-truss rename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-who => usr/src/cmd/sgs/link_audit/common/mapfile-vers-who rename : usr/src/common/mapfiles/i386/map.noexdata => usr/src/common/mapfiles/common/map.noexdata rename : usr/src/lib/libaio/sparc/mapfile-vers => usr/src/lib/libaio/common/mapfile-vers rename : usr/src/lib/libelfsign/common/mapfile.map => usr/src/lib/libelfsign/common/mapfile-vers rename : usr/src/lib/libpthread/sparc/mapfile-vers => usr/src/lib/libpthread/common/mapfile-vers rename : usr/src/lib/librt/amd64/mapfile-vers => usr/src/lib/librt/common/mapfile-vers rename : usr/src/lib/libsys/sparc/mapfile-vers => usr/src/lib/libsys/common/mapfile-vers rename : usr/src/lib/libthread/sparc/mapfile-vers => usr/src/lib/libthread/common/mapfile-vers
show more ...
|
f5880f73 | 21-Jun-2010 |
Wyllys Ingersoll |
6961704 KMF generates certificates with bad signatures |
269e59f9 | 11-Jun-2010 |
Jan Pechanec |
PSARC/2010/177 KMF Certificate Name mapping extensions PSARC/2010/178 KMF Common Name Mapper 6942888 KMF should provide certificate to name mapping capabilities 6949176 KMF cert-to-name m
PSARC/2010/177 KMF Certificate Name mapping extensions PSARC/2010/178 KMF Common Name Mapper 6942888 KMF should provide certificate to name mapping capabilities 6949176 KMF cert-to-name mapping framework needs a CN mapper
show more ...
|
2c9a247f | 23-Apr-2010 |
Wyllys Ingersoll |
6944179 kmf_sign_cert needs more info about signing algorithm 6944121 KMF should add Basic-Constraint when keyCertSign EKU is set 6943253 pktool should ask to overwrite a CSR file if it alrea
6944179 kmf_sign_cert needs more info about signing algorithm 6944121 KMF should add Basic-Constraint when keyCertSign EKU is set 6943253 pktool should ask to overwrite a CSR file if it already exists 6943234 pktool online help wrongly suggests we can delete a key based on its subject-DN 6940180 certClass should be called privClass (or just class) in KMFPK11_FindPrikeyByCert() 6940146 kmf_sign_data() returns KMF_ERR_INTERNAL but the PKCS#11 plugin returns KMF_ERR_MISSING_ERRCODE 6938522 kmf_openssl.so.1 clobbers OpenSSL locking callbacks
show more ...
|
e65e5c2d | 22-Mar-2010 |
Wyllys Ingersoll |
PSARC 2010/032 EC and SHA2 for KMF 6902640 pktool/KMF needs to support ECDSA keys and certificates 6787016 pktool can offer the ability to generate RSA keypairs |
9f0bc604 | 09-Jan-2010 |
Wyllys Ingersoll |
6914632 libkmf has unused functions that should be removed 6914613 libelfsign still uses deprecated libkmf API |
5ad42b1b | 31-Dec-2009 |
Surya Prakki |
6894056 libc is not clean 6894060 libnsl is not lint clean 6894068 libpool is not lint clean 6894073 some zone libs are not lint clean 6913623 some user land components of ON are not
6894056 libc is not clean 6894060 libnsl is not lint clean 6894068 libpool is not lint clean 6894073 some zone libs are not lint clean 6913623 some user land components of ON are not ss12u1 lint clean
show more ...
|
56664548 | 20-Oct-2009 |
Wyllys Ingersoll |
6889197 libkmf uses realloc incorrectly 6889730 pktool fails to add EKUs to CSR and Cert requests 6889224 pktool incorrectly generates SAN |
4165f465 | 08-Oct-2009 |
Wyllys Ingersoll |
6887337 pktool gencert should use SHA1 instead of MD5 |
2225707c | 18-Jul-2009 |
Valerie Bubb Fenwick |
6852240 libelfsign should use pkcs11_softtoken instead of OpenSSL for FIPS-140 integrity checking 6851814 tools elfsign is unnecessarily linked against pkcs11_softtoken |
47e946e7 | 20-Mar-2009 |
Wyllys Ingersoll |
PSARC 2008/725 TPM Support 6771298 Solaris needs a PKCS11 provider for the TPM 6771289 Solaris needs TCG support |
bfed486a | 10-Feb-2009 |
Ali Bahrami |
6798660 Cadmium .NOT file processing problem with CWD relative file paths Contributed by Richard Lowe 6785284 Mapfile versioning rules need to be more visible to gatelings 6800164 Standar
6798660 Cadmium .NOT file processing problem with CWD relative file paths Contributed by Richard Lowe 6785284 Mapfile versioning rules need to be more visible to gatelings 6800164 Standard file exclusion mechanism needed for Cadmium tools
show more ...
|
72ca8cc9 | 17-Nov-2008 |
Wyllys Ingersoll |
6756692 ugly prompt for pkcs11 token pin when using pktool 6763087 pktool signcsr dumps core in some conditions due to uninitialized variables. 6744183 pktool doesn't accept "KPClientAuth", "
6756692 ugly prompt for pkcs11 token pin when using pktool 6763087 pktool signcsr dumps core in some conditions due to uninitialized variables. 6744183 pktool doesn't accept "KPClientAuth", "KPKdc" or "scLogon" as valid ekus
show more ...
|
0fb5f8a6 | 29-Aug-2008 |
Wyllys Ingersoll |
6737647 token name matching logic in KMF is broken |
448b8615 | 20-May-2008 |
wyllys |
PSARC 2008/306 pktool CLI update (dir option correction) 6670712 cert of dsa type with key pair can not signcsr of rsa type, viceversa. 6670714 pktool gencert keystore=nss and keytype=dsa FAI
PSARC 2008/306 pktool CLI update (dir option correction) 6670712 cert of dsa type with key pair can not signcsr of rsa type, viceversa. 6670714 pktool gencert keystore=nss and keytype=dsa FAIL, parameter error 6670715 pktool gencsr keystore=nss and token="install" (something not "internal") core dumped 6670725 pktool signcsr command fails to update the keyusage values. 6699535 pktool operations should not have "dir" option for file-based keystore 6700175 fix for 6654080 is not complete
show more ...
|
d00756cc | 21-Feb-2008 |
wyllys |
PSARC 2008/037 new EKU support for pktool and kmfcfg 6648052 pktool(1) could allow certificate signing and verification 6652751 kmf_get_kmf_error_str() doesn't know about KMF_ERR_ATTR_NOT_FOU
PSARC 2008/037 new EKU support for pktool and kmfcfg 6648052 pktool(1) could allow certificate signing and verification 6652751 kmf_get_kmf_error_str() doesn't know about KMF_ERR_ATTR_NOT_FOUND 6654080 kmf_verify_data() should use algorithm from the cert if KMF_ALGORITHM_INDEX_ATTR is missing 6654205 kmf_find_prikey_by_cert() should be public 6654910 kmf_validate_cert() won't get over non-existent x509v3 extensions in TA 6660235 Command summary on pktool help should be localizable. 6660622 KMF needs API to determine format of raw data
show more ...
|
85b5e720 | 11-Jan-2008 |
wyllys |
6643119 kmf_validate_cert() should download CRL only when the previous one has expired (fix lint) |
646cf3c6 | 11-Jan-2008 |
wyllys |
6630137 Un-initialized variable caused a wrong branch in KMFPK11_StoreKey 6643119 kmf_validate_cert() should download CRL only when the previous one has expired |