| Commit message (Collapse) | Author | Age | Files | Lines |
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
| |
Differential Revision: https://phabricator.services.mozilla.com/D156875
|
|
|
|
|
|
| |
SEC_PKCS12DecoderValidateBags. r=nss-reviewers,bbeurdouche
Differential Revision: https://phabricator.services.mozilla.com/D156731
|
|
|
|
|
|
|
|
| |
r=nss-reviewers,djackson
Depends on D36757
Differential Revision: https://phabricator.services.mozilla.com/D37215
|
|
|
|
|
|
|
|
| |
r=nss-reviewers,djackson
Depends on D36756
Differential Revision: https://phabricator.services.mozilla.com/D36757
|
|
|
|
|
|
|
|
| |
r=nss-reviewers,djackson
Depends on D36755
Differential Revision: https://phabricator.services.mozilla.com/D36756
|
|
|
|
|
|
| |
r=nss-reviewers,djackson
Differential Revision: https://phabricator.services.mozilla.com/D36755
|
|
|
|
|
|
| |
Depends on D156583
Differential Revision: https://phabricator.services.mozilla.com/D156616
|
|
|
|
|
|
| |
Depends on D156582
Differential Revision: https://phabricator.services.mozilla.com/D156583
|
|
|
|
|
|
| |
Depends on D156581
Differential Revision: https://phabricator.services.mozilla.com/D156582
|
|
|
|
|
|
| |
r=KathleenWilson
Differential Revision: https://phabricator.services.mozilla.com/D156581
|
|
|
|
| |
Differential Revision: https://phabricator.services.mozilla.com/D147992
|
| |
|
|
|
|
|
|
| |
*UnsolicitedServerNameAck bogo ECH test. r=djackson
Differential Revision: https://phabricator.services.mozilla.com/D152739
|
|
|
|
|
|
| |
server name. r=djackson
Differential Revision: https://phabricator.services.mozilla.com/D151696
|
|
|
|
|
|
| |
bogo test. r=djackson
Differential Revision: https://phabricator.services.mozilla.com/D151695
|
|
|
|
|
|
| |
CHInner.random on HRR. r=djackson
Differential Revision: https://phabricator.services.mozilla.com/D151692
|
|
|
|
|
|
|
|
|
|
|
|
| |
configs in EncryptedExtensions and if not accepting ECH. Changed config setting behavior to skip configs with unsupported mandatory extensions instead of failing. r=djackson
The following bogo tests test the changed behavior:
- TLS-ECH-GREASE-Client-TLS12-RejectRetryConfigs
- TLS-ECH-Client-TLS12-RejectRetryConfigs - This and above test, test correct rejection of TLS 1.2 server ECH extension with rettry configs (outside EncryptedExtensions)
- TLS-ECH-Client-Accept-RejectRetryConfigs - Test correct rejection of retry configs received even though ECH was acceped by server.
- TLS-ECH-Client-SelectECHConfig - Tests correct skipping of unsupported (mandatory extension) configs.
Differential Revision: https://phabricator.services.mozilla.com/D151607
|
|
|
|
|
|
| |
creation to skip TLS 1.2 only extensions to comply with BoGo. r=djackson
Differential Revision: https://phabricator.services.mozilla.com/D151489
|
|
|
|
|
|
| |
accept_confirmation bugs. r=djackson
Differential Revision: https://phabricator.services.mozilla.com/D153479
|
|
|
|
|
|
|
|
|
|
| |
It was required to update docker-interop image to ubuntu 20.04 since a newer Go release was required for the BoGo tests to run.
See nss/gtests/nss_bogo_shim/config.json for a list of disabled BoGo test, including short descriptions/bug links.
A -loose-local-errors falg was added to Bogo (runner.go) to allow usage of more tests by ignoring differences in local errors on the Go side of test connections, similar to the remote error 'suppression' used. The code is patched to the BoGo runner after cloning in nss/tests/bogo/bogo.sh and can be found in nss/gtests/nss_bogo_shim/nss_loose_local_errors.patch.
Differential Revision: https://phabricator.services.mozilla.com/D147675
|
|
|
|
| |
Differential Revision: https://phabricator.services.mozilla.com/D154994
|
| |
|
| |
|
| |
|
| |
|
|
|
|
|
|
|
|
|
|
| |
r=nss-reviewers,djackson
Some of our dynamic template choosers, e.g. sec_pkcs12_choose_attr_type, can
return NULL. This patch adds some defensive checks to avoid crashes when
they do.
Differential Revision: https://phabricator.services.mozilla.com/D150290
|
|
|
|
|
|
| |
r=nss-reviewers,djackson
Differential Revision: https://phabricator.services.mozilla.com/D148413
|
|
|
|
|
|
| |
TlsConnectTestBase::ConnectAndCheckCipherSuite. r=bbeurdouche,nss-reviewers
Differential Revision: https://phabricator.services.mozilla.com/D154594
|
|
|
|
|
|
|
|
|
|
| |
clang trunk recently added a check for incompatible function pointers,
and now is not happy with a FARPROC being given as a
PRThreadPrivateDTOR, because that's not the same signature. But FARPROC
is the "normal" return type from GetProcAddress, but OTOH, it's not the
actual type signature for PR_Free.
Differential Revision: https://phabricator.services.mozilla.com/D154337
|
| |
|
|
|
|
|
|
|
|
|
|
| |
r=kjacobs,rrelyea
Previously we only used the "object" attribute (mapped to CKA_LABEL) to find certificates by PKCS #11 URI. This updates the logic to match also with "id" (mapped to CKA_ID) and reject the request if a "type" attribute is present with the value other than "cert".
Note: as "id" may not be null-terminated, the PKCS #11 URI API had to be revamped to allow binary blobs. This is still not perfect because PK11URIAttribute doesn't have a length field of value.
Differential Revision: https://phabricator.services.mozilla.com/D98940
|
| |
|
| |
|
|
|
|
|
|
| |
CERT_GetCertNicknameWithValidity. r=rrelyea
Differential Revision: https://phabricator.services.mozilla.com/D150857
|
|
|
|
|
|
| |
code is set. r=mt,nss-reviewers.
Differential Revision: https://phabricator.services.mozilla.com/D151645
|
|
|
|
| |
Differential Revision: https://phabricator.services.mozilla.com/D149931
|
|
|
|
|
|
|
|
| |
r=nss-reviewers,bbeurdouche
Submitted on behalf of Landry Breuil & Christian Weisgerber.
Differential Revision: https://phabricator.services.mozilla.com/D150752
|
| |
|
| |
|
| |
|
|
|
|
| |
Differential Revision: https://phabricator.services.mozilla.com/D149592
|
| |
|