[openssl/openssl] 3431dd: Improve FIPS RSA keygen performance.

2022-11-22 Thread Shane
  Branch: refs/heads/openssl-3.1
  Home:   https://github.com/openssl/openssl
  Commit: 3431dd4b3ee7933822586aab62972de4d8c0e9e5
  
https://github.com/openssl/openssl/commit/3431dd4b3ee7933822586aab62972de4d8c0e9e5
  Author: slontis 
  Date:   2022-11-23 (Wed, 23 Nov 2022)

  Changed paths:
M crypto/bn/bn_prime.c
M crypto/bn/bn_rsa_fips186_4.c
M include/crypto/bn.h

  Log Message:
  ---
  Improve FIPS RSA keygen performance.

Reduce the Miller Rabin counts to the values specified by FIPS 186-5.
The old code was using a fixed value of 64.

Reviewed-by: Paul Dale 
Reviewed-by: Tomas Mraz 
(Merged from https://github.com/openssl/openssl/pull/19579)

(cherry picked from commit d2f6e66d2837bff1f5f7636bb2118e3a45c9df61)




[openssl/openssl] d2f6e6: Improve FIPS RSA keygen performance.

2022-11-22 Thread Shane
  Branch: refs/heads/master
  Home:   https://github.com/openssl/openssl
  Commit: d2f6e66d2837bff1f5f7636bb2118e3a45c9df61
  
https://github.com/openssl/openssl/commit/d2f6e66d2837bff1f5f7636bb2118e3a45c9df61
  Author: slontis 
  Date:   2022-11-23 (Wed, 23 Nov 2022)

  Changed paths:
M crypto/bn/bn_prime.c
M crypto/bn/bn_rsa_fips186_4.c
M include/crypto/bn.h

  Log Message:
  ---
  Improve FIPS RSA keygen performance.

Reduce the Miller Rabin counts to the values specified by FIPS 186-5.
The old code was using a fixed value of 64.

Reviewed-by: Paul Dale 
Reviewed-by: Tomas Mraz 
(Merged from https://github.com/openssl/openssl/pull/19579)




[openssl/openssl] f5e602: Fix version mistake in some HISTORY sections

2022-11-22 Thread Tomáš Mráz
  Branch: refs/heads/master
  Home:   https://github.com/openssl/openssl
  Commit: f5e602b5500cc736fe774b114dc66180341a5ce7
  
https://github.com/openssl/openssl/commit/f5e602b5500cc736fe774b114dc66180341a5ce7
  Author: Tomas Mraz 
  Date:   2022-11-23 (Wed, 23 Nov 2022)

  Changed paths:
M doc/man7/EVP_KDF-PVKKDF.pod
M doc/man7/EVP_KEM-X25519.pod

  Log Message:
  ---
  Fix version mistake in some HISTORY sections

Follow up of PR#19690

Reviewed-by: Shane Lontis 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/19725)




Coverity Scan: Analysis completed for openssl/openssl

2022-11-22 Thread scan-admin


Your request for analysis of openssl/openssl has been completed 
successfully.
The results are available at 
https://u15810271.ct.sendgrid.net/ls/click?upn=HRESupC-2F2Czv4BOaCWWCy7my0P0qcxCbhZ31OYv50yoN-2BQSVjTtaSz8wS4wOr7HlekBtV1P4YRtWclMVkCdvAA-3D-3DfW7O_MulOTlHne1IxTRELXXnGni8d68xSVF-2BUCe3a7Ux-2BjeGp-2BUeGyeR0qxdXI6FwZNJ6LAa0iEY26yFw4zXgsFlg-2FZBpIu-2FNKC7ukkmBXSLNQDfyPiI-2FuSVK5RmQ2E3-2FtsFPRV30eqNTdlDw9EthxF1nyy-2F2zqJYugIwBSsgwCnT-2F8vCFyWJLDXi3Mp5-2FMINIH8D9NFEVG9UkPgSDNa69RVdYFYUX8sWgJHxeWOcMPSEmnw-3D

Build ID: 495765

Analysis Summary:
   New defects found: 0
   Defects eliminated: 0



[openssl/openssl] 864796: params_api_test.c: Fix mistake in backported test fix

2022-11-22 Thread Tomáš Mráz
  Branch: refs/heads/openssl-3.1
  Home:   https://github.com/openssl/openssl
  Commit: 86479643a4ba682aaf596782addd915a4922503e
  
https://github.com/openssl/openssl/commit/86479643a4ba682aaf596782addd915a4922503e
  Author: Tomas Mraz 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
M test/params_api_test.c

  Log Message:
  ---
  params_api_test.c: Fix mistake in backported test fix

Fixup for e8f1d76b50204d87a0ef7f6879eb1dd507a54368.

Reviewed-by: Paul Dale 
Reviewed-by: Dmitry Belyavskiy 
(Merged from https://github.com/openssl/openssl/pull/19675)




[openssl/openssl] e0fbaf: Update CHANGES.md and NEWS.md from 3.0.7

2022-11-22 Thread Tomáš Mráz
  Branch: refs/heads/master
  Home:   https://github.com/openssl/openssl
  Commit: e0fbaf2a4add8dd012b92923b0f23e87b1d28482
  
https://github.com/openssl/openssl/commit/e0fbaf2a4add8dd012b92923b0f23e87b1d28482
  Author: Tomas Mraz 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
M CHANGES.md
M NEWS.md

  Log Message:
  ---
  Update CHANGES.md and NEWS.md from 3.0.7

Reviewed-by: Richard Levitte 
Reviewed-by: Hugo Landau 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/19565)




[openssl/openssl] 872dd0: Add a test case for the engine crash with AES-256-CTR

2022-11-22 Thread Tomáš Mráz
  Branch: refs/heads/openssl-3.1
  Home:   https://github.com/openssl/openssl
  Commit: 872dd0a21f22724abe4a02808c3dfbb0abf661a2
  
https://github.com/openssl/openssl/commit/872dd0a21f22724abe4a02808c3dfbb0abf661a2
  Author: Bernd Edlinger 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
M engines/e_dasync.c
M test/recipes/05-test_rand.t

  Log Message:
  ---
  Add a test case for the engine crash with AES-256-CTR

Implement the AES-256-CTR cipher in the dasync engine.

Use that to reproduce the reported problems with the
devcrypto engine in our normal test environment.

See #17995 and #17532 for details.

Reviewed-by: Paul Dale 
Reviewed-by: Tomas Mraz 
(Merged from https://github.com/openssl/openssl/pull/19386)

(cherry picked from commit bd363ef32403d58a8b41553b5abd602b30073b10)


  Commit: d5c02e2de86a28ab2c06e866f0db858c43d00355
  
https://github.com/openssl/openssl/commit/d5c02e2de86a28ab2c06e866f0db858c43d00355
  Author: Tomas Mraz 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
M crypto/context.c
M crypto/rand/rand_lib.c
M include/crypto/context.h

  Log Message:
  ---
  Release the drbg in the global default context before engines

Fixes #17995
Fixes #18578

Reviewed-by: Paul Dale 
Reviewed-by: Bernd Edlinger 
(Merged from https://github.com/openssl/openssl/pull/19386)

(cherry picked from commit a88e97fcace01ecf557b207f04328a72df5110df)


Compare: https://github.com/openssl/openssl/compare/e4d8eaac7e2a...d5c02e2de86a


[openssl/openssl] e4d8ea: Add an EVP signature demo using DSA

2022-11-22 Thread faramir-dev
  Branch: refs/heads/openssl-3.1
  Home:   https://github.com/openssl/openssl
  Commit: e4d8eaac7e2af4719adfc58397b7c7115d45b0bb
  
https://github.com/openssl/openssl/commit/e4d8eaac7e2af4719adfc58397b7c7115d45b0bb
  Author: Daniel Fiala 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
A demos/signature/EVP_DSA_Signature_demo.c
A demos/signature/EVP_EC_Signature_demo.c
A demos/signature/EVP_EC_Signature_demo.h
R demos/signature/EVP_Signature_demo.c
R demos/signature/EVP_Signature_demo.h
M demos/signature/Makefile

  Log Message:
  ---
  Add an EVP signature demo using DSA

Fixes openssl#14114

Reviewed-by: Paul Dale 
Reviewed-by: Shane Lontis 
Reviewed-by: Tomas Mraz 
(Merged from https://github.com/openssl/openssl/pull/19492)

(cherry picked from commit 858b5d12b85b0639519d21206c9da7e1bb976a00)




[openssl/openssl] 858b5d: Add an EVP signature demo using DSA

2022-11-22 Thread faramir-dev
  Branch: refs/heads/master
  Home:   https://github.com/openssl/openssl
  Commit: 858b5d12b85b0639519d21206c9da7e1bb976a00
  
https://github.com/openssl/openssl/commit/858b5d12b85b0639519d21206c9da7e1bb976a00
  Author: Daniel Fiala 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
A demos/signature/EVP_DSA_Signature_demo.c
A demos/signature/EVP_EC_Signature_demo.c
A demos/signature/EVP_EC_Signature_demo.h
R demos/signature/EVP_Signature_demo.c
R demos/signature/EVP_Signature_demo.h
M demos/signature/Makefile

  Log Message:
  ---
  Add an EVP signature demo using DSA

Fixes openssl#14114

Reviewed-by: Paul Dale 
Reviewed-by: Shane Lontis 
Reviewed-by: Tomas Mraz 
(Merged from https://github.com/openssl/openssl/pull/19492)




[openssl/openssl] 122ea8: test/recipes/80-test_cms.t: Fix the "CAdES ko" test

2022-11-22 Thread Richard Levitte
  Branch: refs/heads/master
  Home:   https://github.com/openssl/openssl
  Commit: 122ea851de77f761d7bc0ec5f3a7fc23e3a5d8be
  
https://github.com/openssl/openssl/commit/122ea851de77f761d7bc0ec5f3a7fc23e3a5d8be
  Author: Richard Levitte 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
M test/recipes/80-test_cms.t

  Log Message:
  ---
  test/recipes/80-test_cms.t: Fix the "CAdES ko" test

This test had commands that assumes that runner_loop() is used to perform
the tests.  These tests still run fine because Unix accepts braces in file
names, but other operating systems might not.

Reviewed-by: Dmitry Belyavskiy 
Reviewed-by: Tomas Mraz 
(Merged from https://github.com/openssl/openssl/pull/19731)

(cherry picked from commit 20d3731006c9d29cbe17c2aedeba5e2abccfcd57)




[openssl/openssl] 20d373: test/recipes/80-test_cms.t: Fix the "CAdES ko" test

2022-11-22 Thread Richard Levitte
  Branch: refs/heads/openssl-3.1
  Home:   https://github.com/openssl/openssl
  Commit: 20d3731006c9d29cbe17c2aedeba5e2abccfcd57
  
https://github.com/openssl/openssl/commit/20d3731006c9d29cbe17c2aedeba5e2abccfcd57
  Author: Richard Levitte 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
M test/recipes/80-test_cms.t

  Log Message:
  ---
  test/recipes/80-test_cms.t: Fix the "CAdES ko" test

This test had commands that assumes that runner_loop() is used to perform
the tests.  These tests still run fine because Unix accepts braces in file
names, but other operating systems might not.

Reviewed-by: Dmitry Belyavskiy 
Reviewed-by: Tomas Mraz 
(Merged from https://github.com/openssl/openssl/pull/19731)




[openssl/openssl] f5a366: Add functions supporting thread pool only when it ...

2022-11-22 Thread Tomáš Mráz
  Branch: refs/heads/master
  Home:   https://github.com/openssl/openssl
  Commit: f5a3669c8bc9cd1ea00f2bb7d058a752e6d2f152
  
https://github.com/openssl/openssl/commit/f5a3669c8bc9cd1ea00f2bb7d058a752e6d2f152
  Author: Tomas Mraz 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
M crypto/context.c
M crypto/thread/arch.c
M crypto/thread/build.info
M crypto/thread/internal.c

  Log Message:
  ---
  Add functions supporting thread pool only when it is enabled

Fixes #19691

Reviewed-by: Hugo Landau 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/19695)


  Commit: c48c32807f2d945a9672c48b59bff4083885a5bc
  
https://github.com/openssl/openssl/commit/c48c32807f2d945a9672c48b59bff4083885a5bc
  Author: Tomas Mraz 
  Date:   2022-11-22 (Tue, 22 Nov 2022)

  Changed paths:
M test/build.info
M test/recipes/90-test_threads.t
A test/threadpool_test.c
M test/threadstest.c

  Log Message:
  ---
  Split out thread pool tests into threadpool_test

Reviewed-by: Hugo Landau 
Reviewed-by: Paul Dale 
(Merged from https://github.com/openssl/openssl/pull/19695)


Compare: https://github.com/openssl/openssl/compare/26cfa4cd85f6...c48c32807f2d