From owner-svn-ports-all@FreeBSD.ORG Sat Mar 21 10:53:17 2015 Return-Path: Delivered-To: svn-ports-all@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D43CEE01; Sat, 21 Mar 2015 10:53:17 +0000 (UTC) Received: from svn.freebsd.org (svn.freebsd.org [IPv6:2001:1900:2254:2068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id BD1B9786; Sat, 21 Mar 2015 10:53:17 +0000 (UTC) Received: from svn.freebsd.org ([127.0.1.70]) by svn.freebsd.org (8.14.9/8.14.9) with ESMTP id t2LArHck041069; Sat, 21 Mar 2015 10:53:17 GMT (envelope-from dinoex@FreeBSD.org) Received: (from dinoex@localhost) by svn.freebsd.org (8.14.9/8.14.9/Submit) id t2LArEMw041053; Sat, 21 Mar 2015 10:53:14 GMT (envelope-from dinoex@FreeBSD.org) Message-Id: <201503211053.t2LArEMw041053@svn.freebsd.org> X-Authentication-Warning: svn.freebsd.org: dinoex set sender to dinoex@FreeBSD.org using -f From: Dirk Meyer Date: Sat, 21 Mar 2015 10:53:14 +0000 (UTC) To: ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org Subject: svn commit: r381789 - in head/security/openssl: . files X-SVN-Group: ports-head MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-BeenThere: svn-ports-all@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: SVN commit messages for the ports tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 21 Mar 2015 10:53:17 -0000 Author: dinoex Date: Sat Mar 21 10:53:13 2015 New Revision: 381789 URL: https://svnweb.freebsd.org/changeset/ports/381789 QAT: https://qat.redports.org/buildarchive/r381789/ Log: - Security update to 1.0.2a - termios.h now default - fix patches - fix manpage generation - option ZLIB removed from default - restore padlock support - restore RFC-5705 - restore patch history - restore build on older FreeBSD - restore soname Security: https://www.openssl.org/news/secadv_20150319.txt Security: CVE-2015-0291 Security: CVE-2015-0204 Security: CVE-2015-0290 Security: CVE-2015-0207 Security: CVE-2015-0286 Security: CVE-2015-0208 Security: CVE-2015-0287 Security: CVE-2015-0289 Security: CVE-2015-0292 Security: CVE-2015-0293 Security: CVE-2015-1787 Security: CVE-2015-0285 Security: CVE-2015-0209 Security: CVE-2015-0288 Added: head/security/openssl/files/patch-RFC-5705 (contents, props changed) head/security/openssl/files/patch-SSL_CTX_use_serverinfo.pod (contents, props changed) head/security/openssl/files/patch-md5.c - copied, changed from r381695, head/security/openssl/files/patch-crypto_md5_md5.c head/security/openssl/files/patch-openbsd__hw.c - copied, changed from r381786, head/security/openssl/files/patch-crypto_evp_openbsd__hw.c head/security/openssl/files/patch-srtp.h - copied, changed from r381695, head/security/openssl/files/patch-ssl-srtp.h Deleted: head/security/openssl/files/patch-crypto_bio_bss__dgram.c head/security/openssl/files/patch-crypto_evp_openbsd__hw.c head/security/openssl/files/patch-crypto_md5_md5.c head/security/openssl/files/patch-ssl-srtp.h Modified: head/security/openssl/Makefile head/security/openssl/distinfo head/security/openssl/files/patch-Configure head/security/openssl/files/patch-config head/security/openssl/pkg-plist Modified: head/security/openssl/Makefile ============================================================================== --- head/security/openssl/Makefile Sat Mar 21 10:40:50 2015 (r381788) +++ head/security/openssl/Makefile Sat Mar 21 10:53:13 2015 (r381789) @@ -2,9 +2,9 @@ # $FreeBSD$ PORTNAME= openssl -PORTVERSION= 1.0.1 -DISTVERSIONSUFFIX= m -PORTREVISION= 19 +PORTVERSION= 1.0.2 +DISTVERSIONSUFFIX= a +PORTREVISION= 0 CATEGORIES= security devel MASTER_SITES= http://www.openssl.org/%SUBDIR%/ \ ftp://ftp.openssl.org/%SUBDIR%/ \ @@ -22,7 +22,7 @@ COMMENT= SSL and crypto library CONFLICTS?= libressl-* OPTIONS_DEFINE= SHARED THREADS I386 SSE2 ASM PADLOCK ZLIB GMP SCTP SSL2 SSL3 RFC3779 MD2 RC5 EXPCIPHERS DOCS -OPTIONS_DEFAULT=SHARED THREADS SSE2 ASM ZLIB SCTP SSL2 SSL3 MD2 +OPTIONS_DEFAULT=SHARED THREADS SSE2 ASM SCTP SSL2 SSL3 MD2 .for a in amd64 ia64 OPTIONS_DEFINE_${a}= EC OPTIONS_DEFAULT_${a}= EC @@ -64,26 +64,6 @@ SUB_FILES= pkg-message CPE_VERSION= ${PORTVERSION}${DISTVERSIONSUFFIX} -FIX_POD=apps/cms.pod \ - apps/smime.pod \ - ssl/SSL_COMP_add_compression_method.pod \ - ssl/SSL_CTX_add_session.pod \ - ssl/SSL_CTX_load_verify_locations.pod \ - ssl/SSL_CTX_set_client_CA_list.pod \ - ssl/SSL_CTX_set_session_id_context.pod \ - ssl/SSL_CTX_set_ssl_version.pod \ - ssl/SSL_CTX_use_psk_identity_hint.pod \ - ssl/SSL_accept.pod \ - ssl/SSL_clear.pod \ - ssl/SSL_connect.pod \ - ssl/SSL_do_handshake.pod \ - ssl/SSL_read.pod \ - ssl/SSL_session_reused.pod \ - ssl/SSL_set_fd.pod \ - ssl/SSL_set_session.pod \ - ssl/SSL_shutdown.pod \ - ssl/SSL_write.pod - .include .if ${PREFIX} == /usr @@ -165,13 +145,12 @@ EXTRACONFIGURE+= no-rc5 .endif .if ${PORT_OPTIONS:MPADLOCK} -BROKEN= unfetchable do to rushed security update PATCH_DIST_STRIP= -p1 PATCH_SITES+= http://git.alpinelinux.org/cgit/aports/plain/main/openssl/:padlock -PATCHFILES+= 0001-crypto-hmac-support-EVP_MD_CTX_FLAG_ONESHOT-and-set-.patch:padlock \ - 0002-engines-e_padlock-backport-cvs-head-changes.patch:padlock \ - 0003-engines-e_padlock-implement-sha1-sha224-sha256-accel.patch:padlock \ - 0004-crypto-engine-autoload-padlock-dynamic-engine.patch:padlock +PATCHFILES+= 0009-crypto-hmac-support-EVP_MD_CTX_FLAG_ONESHOT-and-set-.patch:padlock \ + 0010-backport-changes-from-upstream-padlock-module.patch:padlock \ + 0011-engines-e_padlock-implement-sha1-sha224-sha256-accel.patch:padlock \ + 0012-crypto-engine-autoload-padlock-dynamic-engine.patch:padlock .endif .if ${PORT_OPTIONS:MGMP} @@ -205,12 +184,12 @@ pre-everything:: .endif post-patch: - ${REINPLACE_CMD} -E -e 's|^=item ([0-9])[[:blank:]]*$$|=item Z<>\1|' \ - ${FIX_POD:S,^,${WRKSRC}/doc/,} ${REINPLACE_CMD} -e 's|m4 -B 8192|m4|g' \ ${WRKSRC}/crypto/des/Makefile ${REINPLACE_CMD} -e 's|SHLIB_VERSION_NUMBER "1.0.0"|SHLIB_VERSION_NUMBER "${OPENSSL_SHLIBVER}"|' \ ${WRKSRC}/crypto/opensslv.h + ${REINPLACE_CMD} -e 's|ERR_R_MALLOC_ERROR|ERR_R_MALLOC_FAILURE|' \ + ${WRKSRC}/crypto/bio/bss_dgram.c .if ${PORT_OPTIONS:MEXPCIPHERS} ${REINPLACE_CMD} -e 's|TLS1_ALLOW_EXPERIMENTAL_CIPHERSUITES 0|TLS1_ALLOW_EXPERIMENTAL_CIPHERSUITES 1|' \ ${WRKSRC}/ssl/tls1.h Modified: head/security/openssl/distinfo ============================================================================== --- head/security/openssl/distinfo Sat Mar 21 10:40:50 2015 (r381788) +++ head/security/openssl/distinfo Sat Mar 21 10:53:13 2015 (r381789) @@ -1,10 +1,10 @@ -SHA256 (openssl-1.0.1m/openssl-1.0.1m.tar.gz) = 095f0b7b09116c0c5526422088058dc7e6e000aa14d22acca6a4e2babcdfef74 -SIZE (openssl-1.0.1m/openssl-1.0.1m.tar.gz) = 4533406 -SHA256 (openssl-1.0.1m/0001-crypto-hmac-support-EVP_MD_CTX_FLAG_ONESHOT-and-set-.patch) = 18dd81fefb39b3328a444774ed10871ed50348ca171d2da9f826f916127b2dae -SIZE (openssl-1.0.1m/0001-crypto-hmac-support-EVP_MD_CTX_FLAG_ONESHOT-and-set-.patch) = 3512 -SHA256 (openssl-1.0.1m/0002-engines-e_padlock-backport-cvs-head-changes.patch) = 30fbadf31dc13d9bcc758741f5560f6e13dd66c067f62d1b9066fb656f6aaaf2 -SIZE (openssl-1.0.1m/0002-engines-e_padlock-backport-cvs-head-changes.patch) = 5415 -SHA256 (openssl-1.0.1m/0003-engines-e_padlock-implement-sha1-sha224-sha256-accel.patch) = cbb2493ec9157e78035e9cc02be17655996ee9cd0a71b79507fc19f3862f452b -SIZE (openssl-1.0.1m/0003-engines-e_padlock-implement-sha1-sha224-sha256-accel.patch) = 20625 -SHA256 (openssl-1.0.1m/0004-crypto-engine-autoload-padlock-dynamic-engine.patch) = 157ec6d17add25b96956abc7c44259c91eebe8a6c1026cdb976b895bf42ec56f -SIZE (openssl-1.0.1m/0004-crypto-engine-autoload-padlock-dynamic-engine.patch) = 777 +SHA256 (openssl-1.0.2a/openssl-1.0.2a.tar.gz) = 15b6393c20030aab02c8e2fe0243cb1d1d18062f6c095d67bca91871dc7f324a +SIZE (openssl-1.0.2a/openssl-1.0.2a.tar.gz) = 5262089 +SHA256 (openssl-1.0.2a/0009-crypto-hmac-support-EVP_MD_CTX_FLAG_ONESHOT-and-set-.patch) = 2eddcb7ab342285cb637ce6b6be143cca835f449f35dd9bb8c7b9167ba2117a7 +SIZE (openssl-1.0.2a/0009-crypto-hmac-support-EVP_MD_CTX_FLAG_ONESHOT-and-set-.patch) = 3717 +SHA256 (openssl-1.0.2a/0010-backport-changes-from-upstream-padlock-module.patch) = aee88a24622ce9d71e38deeb874e58435dcf8ff5690f56194f0e4a00fb09b260 +SIZE (openssl-1.0.2a/0010-backport-changes-from-upstream-padlock-module.patch) = 5770 +SHA256 (openssl-1.0.2a/0011-engines-e_padlock-implement-sha1-sha224-sha256-accel.patch) = c10b8aaf56a4f4f79ca195fc587e0bb533f643e777d7a3e6fb0350399a6060ea +SIZE (openssl-1.0.2a/0011-engines-e_padlock-implement-sha1-sha224-sha256-accel.patch) = 20935 +SHA256 (openssl-1.0.2a/0012-crypto-engine-autoload-padlock-dynamic-engine.patch) = 2f7c850af078a3ae71b2dd38d5d0b3964ea4262e52673e36ff33498cc6223e6c +SIZE (openssl-1.0.2a/0012-crypto-engine-autoload-padlock-dynamic-engine.patch) = 809 Modified: head/security/openssl/files/patch-Configure ============================================================================== --- head/security/openssl/files/patch-Configure Sat Mar 21 10:40:50 2015 (r381788) +++ head/security/openssl/files/patch-Configure Sat Mar 21 10:53:13 2015 (r381789) @@ -1,16 +1,16 @@ ---- Configure.orig 2015-03-19 13:37:10 UTC -+++ Configure -@@ -150,7 +150,7 @@ my $no_asm=":::::::::::::::void"; +--- Configure.orig 2015-03-19 14:30:36.000000000 +0100 ++++ Configure 2015-03-19 21:12:51.000000000 +0100 +@@ -153,7 +153,7 @@ # which has to be accompanied by explicit -D_THREAD_SAFE and # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which # seems to be sufficient? -my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT"; +my $BSDthreads="$ENV{'PTHREAD_LIBS'} -D_REENTRANT $ENV{'PTHREAD_CFLAGS'}"; - #config-string $cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $wp_obj : $cmll_obj : $modes_obj : $engines_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags : $multilib + #config-string $cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $ec_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $wp_obj : $cmll_obj : $modes_obj : $engines_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags : $multilib -@@ -409,19 +409,19 @@ my %table=( - "android-armv7","gcc:-march=armv7-a -mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${armv4_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", +@@ -450,19 +450,20 @@ + "android-mips","gcc:-mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips32_asm}:o32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", #### *BSD [do see comment about ${BSDthreads} above!] -"BSD-generic32","gcc:-O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", @@ -35,10 +35,11 @@ +"BSD-sparc64", "$ENV{'FREEBSDCC'}:-DB_ENDIAN -O3 -DMD32_REG_T=int -Wall $ENV{'CFLAGS'}::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC2 BF_PTR:${sparcv9_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIBVER)", +"BSD-ia64", "$ENV{'FREEBSDCC'}:-DL_ENDIAN -O3 -Wall $ENV{'CFLAGS'}::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIBVER)", +"BSD-x86_64", "$ENV{'FREEBSDCC'}:-DL_ENDIAN -O3 -Wall $ENV{'CFLAGS'}::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIBVER)", ++"BSD-alpha", "$ENV{'FREEBSDCC'}:-DL_ENDIAN -O -Wall $ENV{'CFLAGS'}::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_RISC1:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIBVER)", "bsdi-elf-gcc", "gcc:-DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall::(unknown)::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", -@@ -1934,10 +1934,12 @@ EOF +@@ -1992,10 +1993,12 @@ if ( $perl =~ m@^/@) { &dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";', '^my \$prefix;$', 'my $prefix = "' . $prefix . '";'); &dofile("apps/CA.pl",$perl,'^#!/', '#!%s'); Added: head/security/openssl/files/patch-RFC-5705 ============================================================================== --- /dev/null 00:00:00 1970 (empty, because file is newly added) +++ head/security/openssl/files/patch-RFC-5705 Sat Mar 21 10:53:13 2015 (r381789) @@ -0,0 +1,38 @@ +--- ssl/ssl.h 6 Jan 2010 17:37:38 -0000 1.221.2.24 ++++ ssl/ssl.h 17 Jun 2010 12:25:35 -0000 +@@ -1806,6 +1806,10 @@ + /* Pre-shared secret session resumption functions */ + int SSL_set_session_secret_cb(SSL *s, tls_session_secret_cb_fn tls_session_secret_cb, void *arg); + ++void SSL_tls1_key_exporter(SSL *s, unsigned char *label, int label_len, ++ unsigned char *context, int context_len, ++ unsigned char *out, int olen); ++ + /* BEGIN ERROR CODES */ + /* The following lines are auto generated by the script mkerr.pl. Any changes + * made after this point may be overwritten when the script is next run. + +--- ssl/t1_enc.c.orig 2015-01-22 15:58:32.000000000 +0100 ++++ ssl/t1_enc.c 2015-03-10 07:21:12.000000000 +0100 +@@ -1261,6 +1261,21 @@ + return (rv); + } + ++void SSL_tls1_key_exporter(SSL *s, unsigned char *label, int label_len, ++ unsigned char *context, int context_len, ++ unsigned char *out, int olen) ++ { ++ unsigned char tmp[olen]; ++ ++ tls1_PRF(s->s3->tmp.new_cipher->algorithm2, ++ label, label_len, ++ s->s3->client_random,SSL3_RANDOM_SIZE, ++ s->s3->server_random,SSL3_RANDOM_SIZE, ++ context, context_len, NULL, 0, ++ s->session->master_key, s->session->master_key_length, ++ out, tmp, olen); ++ } ++ + int tls1_alert_code(int code) + { + switch (code) { Added: head/security/openssl/files/patch-SSL_CTX_use_serverinfo.pod ============================================================================== --- /dev/null 00:00:00 1970 (empty, because file is newly added) +++ head/security/openssl/files/patch-SSL_CTX_use_serverinfo.pod Sat Mar 21 10:53:13 2015 (r381789) @@ -0,0 +1,11 @@ +--- doc/ssl/SSL_CTX_use_serverinfo.pod.orig 2015-01-22 15:58:06.000000000 +0100 ++++ doc/ssl/SSL_CTX_use_serverinfo.pod 2015-03-10 21:47:25.000000000 +0100 +@@ -2,7 +2,7 @@ + + =head1 NAME + +-SSL_CTX_use_serverinfo, SSL_CTX_use_serverinfo_file ++SSL_CTX_use_serverinfo, SSL_CTX_use_serverinfo_file - loads one or more serverinfo extensions + + =head1 SYNOPSIS + Modified: head/security/openssl/files/patch-config ============================================================================== --- head/security/openssl/files/patch-config Sat Mar 21 10:40:50 2015 (r381788) +++ head/security/openssl/files/patch-config Sat Mar 21 10:53:13 2015 (r381789) @@ -1,6 +1,6 @@ ---- config.orig 2015-03-19 13:37:10 UTC -+++ config -@@ -734,14 +734,8 @@ case "$GUESSOS" in +--- config.orig 2013-06-16 07:01:13.038797248 -0500 ++++ config 2013-06-16 07:01:18.138794838 -0500 +@@ -734,14 +734,8 @@ sparc64-*-*bsd*) OUT="BSD-sparc64" ;; ia64-*-*bsd*) OUT="BSD-ia64" ;; amd64-*-*bsd*) OUT="BSD-x86_64" ;; Copied and modified: head/security/openssl/files/patch-md5.c (from r381695, head/security/openssl/files/patch-crypto_md5_md5.c) ============================================================================== --- head/security/openssl/files/patch-crypto_md5_md5.c Thu Mar 19 21:55:02 2015 (r381695, copy source) +++ head/security/openssl/files/patch-md5.c Sat Mar 21 10:53:13 2015 (r381789) @@ -1,6 +1,6 @@ ---- crypto/md5/md5.c.orig 2015-03-19 13:19:00 UTC -+++ crypto/md5/md5.c -@@ -83,7 +83,7 @@ int main(int argc, char **argv) +--- crypto/md5/md5.c.orig 2015-01-22 15:58:32.000000000 +0100 ++++ crypto/md5/md5.c 2015-03-10 07:02:19.000000000 +0100 +@@ -83,7 +83,7 @@ err++; continue; } Copied and modified: head/security/openssl/files/patch-openbsd__hw.c (from r381786, head/security/openssl/files/patch-crypto_evp_openbsd__hw.c) ============================================================================== --- head/security/openssl/files/patch-crypto_evp_openbsd__hw.c Sat Mar 21 02:13:06 2015 (r381786, copy source) +++ head/security/openssl/files/patch-openbsd__hw.c Sat Mar 21 10:53:13 2015 (r381789) @@ -1,6 +1,6 @@ ---- crypto/evp/openbsd_hw.c.orig 2015-03-19 13:19:00 UTC -+++ crypto/evp/openbsd_hw.c -@@ -108,7 +108,10 @@ static int dev_crypto_init(session_op *s +--- crypto/evp/openbsd_hw.c.orig 2015-01-22 15:58:32.000000000 +0100 ++++ crypto/evp/openbsd_hw.c 2015-03-10 07:08:45.000000000 +0100 +@@ -108,7 +108,10 @@ dev_failed = 1; return 0; } Copied and modified: head/security/openssl/files/patch-srtp.h (from r381695, head/security/openssl/files/patch-ssl-srtp.h) ============================================================================== --- head/security/openssl/files/patch-ssl-srtp.h Thu Mar 19 21:55:02 2015 (r381695, copy source) +++ head/security/openssl/files/patch-srtp.h Sat Mar 21 10:53:13 2015 (r381789) @@ -1,7 +1,7 @@ ---- ssl/srtp.h.orig 2015-03-19 13:37:10 UTC -+++ ssl/srtp.h -@@ -137,7 +137,6 @@ int SSL_set_tlsext_use_srtp(SSL *ctx, co - SRTP_PROTECTION_PROFILE *SSL_get_selected_srtp_profile(SSL *s); +--- ssl/srtp.h.orig 2015-03-19 14:30:36.000000000 +0100 ++++ ssl/srtp.h 2015-03-19 21:12:51.000000000 +0100 +@@ -136,7 +136,6 @@ + int SSL_set_tlsext_use_srtp(SSL *ctx, const char *profiles); STACK_OF(SRTP_PROTECTION_PROFILE) *SSL_get_srtp_profiles(SSL *ssl); -SRTP_PROTECTION_PROFILE *SSL_get_selected_srtp_profile(SSL *s); Modified: head/security/openssl/pkg-plist ============================================================================== --- head/security/openssl/pkg-plist Sat Mar 21 10:40:50 2015 (r381788) +++ head/security/openssl/pkg-plist Sat Mar 21 10:53:13 2015 (r381789) @@ -165,11 +165,20 @@ man/man3/ASN1_STRING_free.3.gz man/man3/ASN1_STRING_length.3.gz man/man3/ASN1_STRING_length_set.3.gz man/man3/ASN1_STRING_new.3.gz +man/man3/ASN1_STRING_print.3.gz man/man3/ASN1_STRING_print_ex.3.gz man/man3/ASN1_STRING_print_ex_fp.3.gz man/man3/ASN1_STRING_set.3.gz +man/man3/ASN1_STRING_to_UTF8.3.gz man/man3/ASN1_STRING_type.3.gz man/man3/ASN1_STRING_type_new.3.gz +man/man3/ASN1_TIME_adj.3.gz +man/man3/ASN1_TIME_check.3.gz +man/man3/ASN1_TIME_diff.3.gz +man/man3/ASN1_TIME_print.3.gz +man/man3/ASN1_TIME_set.3.gz +man/man3/ASN1_TIME_set_string.3.gz +man/man3/ASN1_add_oid_module.3.gz man/man3/ASN1_generate_nconf.3.gz man/man3/ASN1_generate_v3.3.gz man/man3/BF_cbc_encrypt.3.gz @@ -231,10 +240,13 @@ man/man3/BIO_get_write_guarantee.3.gz man/man3/BIO_gets.3.gz man/man3/BIO_int_ctrl.3.gz man/man3/BIO_make_bio_pair.3.gz +man/man3/BIO_method_type.3.gz man/man3/BIO_new.3.gz man/man3/BIO_new_CMS.3.gz +man/man3/BIO_new_accept.3.gz man/man3/BIO_new_bio_pair.3.gz man/man3/BIO_new_buffer_ssl_connect.3.gz +man/man3/BIO_new_connect.3.gz man/man3/BIO_new_fd.3.gz man/man3/BIO_new_file.3.gz man/man3/BIO_new_fp.3.gz @@ -310,6 +322,7 @@ man/man3/BN_BLINDING_invert_ex.3.gz man/man3/BN_BLINDING_new.3.gz man/man3/BN_BLINDING_set_flags.3.gz man/man3/BN_BLINDING_set_thread_id.3.gz +man/man3/BN_BLINDING_thread_id.3.gz man/man3/BN_BLINDING_update.3.gz man/man3/BN_CTX_end.3.gz man/man3/BN_CTX_free.3.gz @@ -317,6 +330,9 @@ man/man3/BN_CTX_get.3.gz man/man3/BN_CTX_init.3.gz man/man3/BN_CTX_new.3.gz man/man3/BN_CTX_start.3.gz +man/man3/BN_GENCB_call.3.gz +man/man3/BN_GENCB_set.3.gz +man/man3/BN_GENCB_set_old.3.gz man/man3/BN_MONT_CTX_copy.3.gz man/man3/BN_MONT_CTX_free.3.gz man/man3/BN_MONT_CTX_init.3.gz @@ -348,6 +364,7 @@ man/man3/BN_free.3.gz man/man3/BN_from_montgomery.3.gz man/man3/BN_gcd.3.gz man/man3/BN_generate_prime.3.gz +man/man3/BN_generate_prime_ex.3.gz man/man3/BN_get_word.3.gz man/man3/BN_hex2bn.3.gz man/man3/BN_init.3.gz @@ -355,7 +372,9 @@ man/man3/BN_is_bit_set.3.gz man/man3/BN_is_odd.3.gz man/man3/BN_is_one.3.gz man/man3/BN_is_prime.3.gz +man/man3/BN_is_prime_ex.3.gz man/man3/BN_is_prime_fasttest.3.gz +man/man3/BN_is_prime_fasttest_ex.3.gz man/man3/BN_is_word.3.gz man/man3/BN_is_zero.3.gz man/man3/BN_lshift.3.gz @@ -383,7 +402,9 @@ man/man3/BN_one.3.gz man/man3/BN_print.3.gz man/man3/BN_print_fp.3.gz man/man3/BN_pseudo_rand.3.gz +man/man3/BN_pseudo_rand_range.3.gz man/man3/BN_rand.3.gz +man/man3/BN_rand_range.3.gz man/man3/BN_rshift.3.gz man/man3/BN_rshift1.3.gz man/man3/BN_set_bit.3.gz @@ -403,6 +424,7 @@ man/man3/BUF_strdup.3.gz man/man3/CMS_ReceiptRequest_create0.3.gz man/man3/CMS_ReceiptRequest_get0_values.3.gz man/man3/CMS_RecipientInfo_decrypt.3.gz +man/man3/CMS_RecipientInfo_encrypt.3.gz man/man3/CMS_RecipientInfo_kekri_get0_id.3.gz man/man3/CMS_RecipientInfo_kekri_id_cmp.3.gz man/man3/CMS_RecipientInfo_ktri_cert_cmp.3.gz @@ -411,6 +433,7 @@ man/man3/CMS_RecipientInfo_set0_key.3.gz man/man3/CMS_RecipientInfo_set0_pkey.3.gz man/man3/CMS_RecipientInfo_type.3.gz man/man3/CMS_SignerInfo_cert_cmp.3.gz +man/man3/CMS_SignerInfo_get0_signature.3.gz man/man3/CMS_SignerInfo_get0_signer_id.3.gz man/man3/CMS_SignerInfo_sign.3.gz man/man3/CMS_add0_cert.3.gz @@ -418,6 +441,7 @@ man/man3/CMS_add0_crl.3.gz man/man3/CMS_add0_recipient_key.3.gz man/man3/CMS_add1_ReceiptRequest.3.gz man/man3/CMS_add1_cert.3.gz +man/man3/CMS_add1_crl.3.gz man/man3/CMS_add1_recipient_cert.3.gz man/man3/CMS_add1_signer.3.gz man/man3/CMS_compress.3.gz @@ -428,12 +452,13 @@ man/man3/CMS_get0_RecipientInfos.3.gz man/man3/CMS_get0_SignerInfos.3.gz man/man3/CMS_get0_content.3.gz man/man3/CMS_get0_eContentType.3.gz +man/man3/CMS_get0_signers.3.gz man/man3/CMS_get0_type.3.gz man/man3/CMS_get1_ReceiptRequest.3.gz man/man3/CMS_get1_certs.3.gz man/man3/CMS_get1_crls.3.gz man/man3/CMS_set1_eContentType.3.gz -man/man3/CMS_set1_signer_certs.3.gz +man/man3/CMS_set1_signer_cert.3.gz man/man3/CMS_sign.3.gz man/man3/CMS_sign_receipt.3.gz man/man3/CMS_uncompress.3.gz @@ -498,6 +523,7 @@ man/man3/DH_compute_key.3.gz man/man3/DH_free.3.gz man/man3/DH_generate_key.3.gz man/man3/DH_generate_parameters.3.gz +man/man3/DH_generate_parameters_ex.3.gz man/man3/DH_get_default_method.3.gz man/man3/DH_get_ex_data.3.gz man/man3/DH_get_ex_new_index.3.gz @@ -518,6 +544,7 @@ man/man3/DSA_dup_DH.3.gz man/man3/DSA_free.3.gz man/man3/DSA_generate_key.3.gz man/man3/DSA_generate_parameters.3.gz +man/man3/DSA_generate_parameters_ex.3.gz man/man3/DSA_get_default_method.3.gz man/man3/DSA_get_ex_data.3.gz man/man3/DSA_get_ex_new_index.3.gz @@ -534,6 +561,120 @@ man/man3/DSA_size.3.gz man/man3/DSA_verify.3.gz man/man3/DSAparams_print.3.gz man/man3/DSAparams_print_fp.3.gz +man/man3/ECDSA_SIG_free.3.gz +man/man3/ECDSA_SIG_new.3.gz +man/man3/ECDSA_do_sign.3.gz +man/man3/ECDSA_do_sign_ex.3.gz +man/man3/ECDSA_do_verify.3.gz +man/man3/ECDSA_sign.3.gz +man/man3/ECDSA_sign_ex.3.gz +man/man3/ECDSA_sign_setup.3.gz +man/man3/ECDSA_size.3.gz +man/man3/ECDSA_verify.3.gz +man/man3/ECPKParameters_print.3.gz +man/man3/ECPKParameters_print_fp.3.gz +man/man3/EC_GF2m_simple_method.3.gz +man/man3/EC_GFp_mont_method.3.gz +man/man3/EC_GFp_nist_method.3.gz +man/man3/EC_GFp_nistp224_method.3.gz +man/man3/EC_GFp_nistp256_method.3.gz +man/man3/EC_GFp_nistp521_method.3.gz +man/man3/EC_GFp_simple_method.3.gz +man/man3/EC_GROUP_check.3.gz +man/man3/EC_GROUP_check_discriminant.3.gz +man/man3/EC_GROUP_clear_free.3.gz +man/man3/EC_GROUP_cmp.3.gz +man/man3/EC_GROUP_copy.3.gz +man/man3/EC_GROUP_dup.3.gz +man/man3/EC_GROUP_free.3.gz +man/man3/EC_GROUP_get0_generator.3.gz +man/man3/EC_GROUP_get0_seed.3.gz +man/man3/EC_GROUP_get_asn1_flag.3.gz +man/man3/EC_GROUP_get_basis_type.3.gz +man/man3/EC_GROUP_get_cofactor.3.gz +man/man3/EC_GROUP_get_curve_GF2m.3.gz +man/man3/EC_GROUP_get_curve_GFp.3.gz +man/man3/EC_GROUP_get_curve_name.3.gz +man/man3/EC_GROUP_get_degree.3.gz +man/man3/EC_GROUP_get_order.3.gz +man/man3/EC_GROUP_get_pentanomial_basis.3.gz +man/man3/EC_GROUP_get_point_conversion_form.3.gz +man/man3/EC_GROUP_get_seed_len.3.gz +man/man3/EC_GROUP_get_trinomial_basis.3.gz +man/man3/EC_GROUP_have_precompute_mult.3.gz +man/man3/EC_GROUP_method_of.3.gz +man/man3/EC_GROUP_new.3.gz +man/man3/EC_GROUP_new_by_curve_name.3.gz +man/man3/EC_GROUP_new_curve_GF2m.3.gz +man/man3/EC_GROUP_new_curve_GFp.3.gz +man/man3/EC_GROUP_precompute_mult.3.gz +man/man3/EC_GROUP_set_asn1_flag.3.gz +man/man3/EC_GROUP_set_curve_GF2m.3.gz +man/man3/EC_GROUP_set_curve_GFp.3.gz +man/man3/EC_GROUP_set_curve_name.3.gz +man/man3/EC_GROUP_set_generator.3.gz +man/man3/EC_GROUP_set_point_conversion_form.3.gz +man/man3/EC_GROUP_set_seed.3.gz +man/man3/EC_KEY_check_key.3.gz +man/man3/EC_KEY_clear_flags.3.gz +man/man3/EC_KEY_copy.3.gz +man/man3/EC_KEY_dup.3.gz +man/man3/EC_KEY_free.3.gz +man/man3/EC_KEY_generate_key.3.gz +man/man3/EC_KEY_get0_group.3.gz +man/man3/EC_KEY_get0_private_key.3.gz +man/man3/EC_KEY_get0_public_key.3.gz +man/man3/EC_KEY_get_conv_form.3.gz +man/man3/EC_KEY_get_enc_flags.3.gz +man/man3/EC_KEY_get_flags.3.gz +man/man3/EC_KEY_get_key_method_data.3.gz +man/man3/EC_KEY_insert_key_method_data.3.gz +man/man3/EC_KEY_new.3.gz +man/man3/EC_KEY_new_by_curve_name.3.gz +man/man3/EC_KEY_precompute_mult.3.gz +man/man3/EC_KEY_set_asn1_flag.3.gz +man/man3/EC_KEY_set_conv_form.3.gz +man/man3/EC_KEY_set_enc_flags.3.gz +man/man3/EC_KEY_set_flags.3.gz +man/man3/EC_KEY_set_group.3.gz +man/man3/EC_KEY_set_private_key.3.gz +man/man3/EC_KEY_set_public_key.3.gz +man/man3/EC_KEY_set_public_key_affine_coordinates.3.gz +man/man3/EC_KEY_up_ref.3.gz +man/man3/EC_METHOD_get_field_type.3.gz +man/man3/EC_POINT_add.3.gz +man/man3/EC_POINT_bn2point.3.gz +man/man3/EC_POINT_clear_free.3.gz +man/man3/EC_POINT_cmp.3.gz +man/man3/EC_POINT_copy.3.gz +man/man3/EC_POINT_dbl.3.gz +man/man3/EC_POINT_dup.3.gz +man/man3/EC_POINT_free.3.gz +man/man3/EC_POINT_get_Jprojective_coordinates_GFp.3.gz +man/man3/EC_POINT_get_affine_coordinates_GF2m.3.gz +man/man3/EC_POINT_get_affine_coordinates_GFp.3.gz +man/man3/EC_POINT_hex2point.3.gz +man/man3/EC_POINT_invert.3.gz +man/man3/EC_POINT_is_at_infinity.3.gz +man/man3/EC_POINT_is_on_curve.3.gz +man/man3/EC_POINT_make_affine.3.gz +man/man3/EC_POINT_method_of.3.gz +man/man3/EC_POINT_mul.3.gz +man/man3/EC_POINT_new.3.gz +man/man3/EC_POINT_oct2point.3.gz +man/man3/EC_POINT_point2bn.3.gz +man/man3/EC_POINT_point2hex.3.gz +man/man3/EC_POINT_point2oct.3.gz +man/man3/EC_POINT_set_Jprojective_coordinates.3.gz +man/man3/EC_POINT_set_affine_coordinates_GF2m.3.gz +man/man3/EC_POINT_set_affine_coordinates_GFp.3.gz +man/man3/EC_POINT_set_compressed_coordinates_GF2m.3.gz +man/man3/EC_POINT_set_compressed_coordinates_GFp.3.gz +man/man3/EC_POINT_set_to_infinity.3.gz +man/man3/EC_POINTs_make_affine.3.gz +man/man3/EC_POINTs_mul.3.gz +man/man3/EC_get_builtin_curves.3.gz +man/man3/ENGINE_add_conf_module.3.gz man/man3/ERR_GET_FUNC.3.gz man/man3/ERR_GET_LIB.3.gz man/man3/ERR_GET_REASON.3.gz @@ -564,6 +705,7 @@ man/man3/ERR_print_errors_fp.3.gz man/man3/ERR_put_error.3.gz man/man3/ERR_reason_error_string.3.gz man/man3/ERR_remove_state.3.gz +man/man3/ERR_remove_thread_state.3.gz man/man3/ERR_set_mark.3.gz man/man3/EVP_BytesToKey.3.gz man/man3/EVP_CIPHER_CTX_block_size.3.gz @@ -600,6 +742,7 @@ man/man3/EVP_DecryptFinal_ex.3.gz man/man3/EVP_DecryptInit.3.gz man/man3/EVP_DecryptInit_ex.3.gz man/man3/EVP_DecryptUpdate.3.gz +man/man3/EVP_DigestFinal.3.gz man/man3/EVP_DigestFinal_ex.3.gz man/man3/EVP_DigestInit.3.gz man/man3/EVP_DigestInit_ex.3.gz @@ -635,6 +778,7 @@ man/man3/EVP_OpenInit.3.gz man/man3/EVP_OpenUpdate.3.gz man/man3/EVP_PKEVP_PKEY_CTX_set_app_data.3.gz man/man3/EVP_PKEY_CTX_ctrl.3.gz +man/man3/EVP_PKEY_CTX_ctrl_str.3.gz man/man3/EVP_PKEY_CTX_dup.3.gz man/man3/EVP_PKEY_CTX_free.3.gz man/man3/EVP_PKEY_CTX_get_app_data.3.gz @@ -643,6 +787,15 @@ man/man3/EVP_PKEY_CTX_get_keygen_info.3. man/man3/EVP_PKEY_CTX_new.3.gz man/man3/EVP_PKEY_CTX_new_id.3.gz man/man3/EVP_PKEY_CTX_set_cb.3.gz +man/man3/EVP_PKEY_CTX_set_dh_paramgen_generator.3.gz +man/man3/EVP_PKEY_CTX_set_dh_paramgen_prime_len.3.gz +man/man3/EVP_PKEY_CTX_set_dsa_paramgen_bits.3.gz +man/man3/EVP_PKEY_CTX_set_ec_paramgen_curve_nid.3.gz +man/man3/EVP_PKEY_CTX_set_rsa_keygen_pubexp.3.gz +man/man3/EVP_PKEY_CTX_set_rsa_padding.3.gz +man/man3/EVP_PKEY_CTX_set_rsa_pss_saltlen.3.gz +man/man3/EVP_PKEY_CTX_set_rsa_rsa_keygen_bits.3.gz +man/man3/EVP_PKEY_CTX_set_signature_md.3.gz man/man3/EVP_PKEY_assign_DH.3.gz man/man3/EVP_PKEY_assign_DSA.3.gz man/man3/EVP_PKEY_assign_EC_KEY.3.gz @@ -650,8 +803,6 @@ man/man3/EVP_PKEY_assign_RSA.3.gz man/man3/EVP_PKEY_cmp.3.gz man/man3/EVP_PKEY_cmp_parameters.3.gz man/man3/EVP_PKEY_copy_parameters.3.gz -man/man3/EVP_PKEY_ctrl.3.gz -man/man3/EVP_PKEY_ctrl_str.3.gz man/man3/EVP_PKEY_decrypt.3.gz man/man3/EVP_PKEY_decrypt_init.3.gz man/man3/EVP_PKEY_derive.3.gz @@ -695,18 +846,63 @@ man/man3/EVP_SignUpdate.3.gz man/man3/EVP_VerifyFinal.3.gz man/man3/EVP_VerifyInit.3.gz man/man3/EVP_VerifyUpdate.3.gz +man/man3/EVP_aes_128_ccm.3.gz +man/man3/EVP_aes_128_gcm.3.gz +man/man3/EVP_aes_192_ccm.3.gz +man/man3/EVP_aes_192_gcm.3.gz +man/man3/EVP_aes_256_ccm.3.gz +man/man3/EVP_aes_256_gcm.3.gz +man/man3/EVP_bf_cbc.3.gz +man/man3/EVP_bf_cfb.3.gz +man/man3/EVP_bf_ecb.3.gz +man/man3/EVP_bf_ofb.3.gz +man/man3/EVP_cast5_cbc.3.gz +man/man3/EVP_cast5_cfb.3.gz +man/man3/EVP_cast5_ecb.3.gz +man/man3/EVP_cast5_ofb.3.gz +man/man3/EVP_cleanup.3.gz +man/man3/EVP_des_cbc.3.gz +man/man3/EVP_des_cfb.3.gz +man/man3/EVP_des_ecb.3.gz +man/man3/EVP_des_ede.3.gz +man/man3/EVP_des_ede3.3.gz +man/man3/EVP_des_ede3_cbc.3.gz +man/man3/EVP_des_ede3_cfb.3.gz +man/man3/EVP_des_ede3_ofb.3.gz +man/man3/EVP_des_ede_cbc.3.gz +man/man3/EVP_des_ede_cfb.3.gz +man/man3/EVP_des_ede_ofb.3.gz +man/man3/EVP_des_ofb.3.gz +man/man3/EVP_desx_cbc.3.gz man/man3/EVP_dss.3.gz man/man3/EVP_dss1.3.gz +man/man3/EVP_enc_null.3.gz man/man3/EVP_get_cipherbyname.3.gz man/man3/EVP_get_cipherbynid.3.gz man/man3/EVP_get_cipherbyobj.3.gz man/man3/EVP_get_digestbyname.3.gz man/man3/EVP_get_digestbynid.3.gz man/man3/EVP_get_digestbyobj.3.gz +man/man3/EVP_idea_cbc.3.gz +man/man3/EVP_idea_cfb.3.gz +man/man3/EVP_idea_ecb.3.gz +man/man3/EVP_idea_ofb.3.gz man/man3/EVP_md2.3.gz man/man3/EVP_md5.3.gz man/man3/EVP_md_null.3.gz man/man3/EVP_mdc2.3.gz +man/man3/EVP_rc2_40_cbc.3.gz +man/man3/EVP_rc2_64_cbc.3.gz +man/man3/EVP_rc2_cbc.3.gz +man/man3/EVP_rc2_cfb.3.gz +man/man3/EVP_rc2_ecb.3.gz +man/man3/EVP_rc2_ofb.3.gz +man/man3/EVP_rc4.3.gz +man/man3/EVP_rc4_40.3.gz +man/man3/EVP_rc5_32_12_16_cbc.3.gz +man/man3/EVP_rc5_32_12_16_cfb.3.gz +man/man3/EVP_rc5_32_12_16_ecb.3.gz +man/man3/EVP_rc5_32_12_16_ofb.3.gz man/man3/EVP_ripemd160.3.gz man/man3/EVP_sha.3.gz man/man3/EVP_sha1.3.gz @@ -715,8 +911,11 @@ man/man3/EVP_sha256.3.gz man/man3/EVP_sha384.3.gz man/man3/EVP_sha512.3.gz man/man3/HMAC.3.gz +man/man3/HMAC_CTX_cleanup.3.gz +man/man3/HMAC_CTX_init.3.gz man/man3/HMAC_Final.3.gz man/man3/HMAC_Init.3.gz +man/man3/HMAC_Init_ex.3.gz man/man3/HMAC_Update.3.gz man/man3/HMAC_cleanup.3.gz man/man3/MD2.3.gz @@ -752,6 +951,9 @@ man/man3/OPENSSL_Applink.3.gz man/man3/OPENSSL_VERSION_NUMBER.3.gz man/man3/OPENSSL_config.3.gz man/man3/OPENSSL_ia32cap.3.gz +man/man3/OPENSSL_ia32cap_loc.3.gz +man/man3/OPENSSL_instrument_bus.3.gz +man/man3/OPENSSL_instrument_bus2.3.gz man/man3/OPENSSL_load_builtin_modules.3.gz man/man3/OPENSSL_no_config.3.gz man/man3/OpenSSL_add_all_algorithms.3.gz @@ -831,6 +1033,7 @@ man/man3/PKCS12_create.3.gz man/man3/PKCS12_parse.3.gz man/man3/PKCS7_decrypt.3.gz man/man3/PKCS7_encrypt.3.gz +man/man3/PKCS7_get0_signers.3.gz man/man3/PKCS7_sign.3.gz man/man3/PKCS7_sign_add_signer.3.gz man/man3/PKCS7_verify.3.gz @@ -839,11 +1042,13 @@ man/man3/RAND_add.3.gz man/man3/RAND_bytes.3.gz man/man3/RAND_cleanup.3.gz man/man3/RAND_egd.3.gz +man/man3/RAND_egd_bytes.3.gz man/man3/RAND_event.3.gz man/man3/RAND_file_name.3.gz man/man3/RAND_get_rand_method.3.gz man/man3/RAND_load_file.3.gz man/man3/RAND_pseudo_bytes.3.gz +man/man3/RAND_query_egd_bytes.3.gz man/man3/RAND_screen.3.gz man/man3/RAND_seed.3.gz man/man3/RAND_set_rand_method.3.gz @@ -862,6 +1067,7 @@ man/man3/RSA_check_key.3.gz man/man3/RSA_flags.3.gz man/man3/RSA_free.3.gz man/man3/RSA_generate_key.3.gz +man/man3/RSA_generate_key_ex.3.gz man/man3/RSA_get_default_method.3.gz man/man3/RSA_get_ex_data.3.gz man/man3/RSA_get_ex_new_index.3.gz @@ -897,6 +1103,22 @@ man/man3/SHA1.3.gz man/man3/SHA1_Final.3.gz man/man3/SHA1_Init.3.gz man/man3/SHA1_Update.3.gz +man/man3/SHA224.3.gz +man/man3/SHA224_Final.3.gz +man/man3/SHA224_Init.3.gz +man/man3/SHA224_Update.3.gz +man/man3/SHA256.3.gz +man/man3/SHA256_Final.3.gz +man/man3/SHA256_Init.3.gz +man/man3/SHA256_Update.3.gz +man/man3/SHA384.3.gz +man/man3/SHA384_Final.3.gz +man/man3/SHA384_Init.3.gz +man/man3/SHA384_Update.3.gz +man/man3/SHA512.3.gz +man/man3/SHA512_Final.3.gz +man/man3/SHA512_Init.3.gz +man/man3/SHA512_Update.3.gz man/man3/SMIME_read_CMS.3.gz man/man3/SMIME_read_PKCS7.3.gz man/man3/SMIME_write_CMS.3.gz @@ -907,15 +1129,31 @@ man/man3/SSL_CIPHER_get_bits.3.gz man/man3/SSL_CIPHER_get_name.3.gz man/man3/SSL_CIPHER_get_version.3.gz man/man3/SSL_COMP_add_compression_method.3.gz +man/man3/SSL_CONF_CTX_clear_flags.3.gz +man/man3/SSL_CONF_CTX_free.3.gz +man/man3/SSL_CONF_CTX_new.3.gz +man/man3/SSL_CONF_CTX_set1_prefix.3.gz +man/man3/SSL_CONF_CTX_set_flags.3.gz +man/man3/SSL_CONF_CTX_set_ssl.3.gz +man/man3/SSL_CONF_CTX_set_ssl_ctx.3.gz +man/man3/SSL_CONF_cmd.3.gz +man/man3/SSL_CONF_cmd_argv.3.gz +man/man3/SSL_CTX_add0_chain_cert.3.gz +man/man3/SSL_CTX_add1_chain_cert.3.gz man/man3/SSL_CTX_add_client_CA.3.gz +man/man3/SSL_CTX_add_client_custom_ext.3.gz man/man3/SSL_CTX_add_extra_chain_cert.3.gz man/man3/SSL_CTX_add_session.3.gz +man/man3/SSL_CTX_add_server_custom_ext.3.gz +man/man3/SSL_CTX_build_cert_chain.3.gz man/man3/SSL_CTX_callback_ctrl.3.gz man/man3/SSL_CTX_check_private_key.3.gz +man/man3/SSL_CTX_clear_chain_certs.3.gz man/man3/SSL_CTX_clear_options.3.gz man/man3/SSL_CTX_ctrl.3.gz man/man3/SSL_CTX_flush_sessions.3.gz man/man3/SSL_CTX_free.3.gz +man/man3/SSL_CTX_get0_chain_certs.3.gz man/man3/SSL_CTX_get_cert_store.3.gz man/man3/SSL_CTX_get_client_CA_list.3.gz man/man3/SSL_CTX_get_client_cert_cb.3.gz @@ -937,6 +1175,7 @@ man/man3/SSL_CTX_load_verify_locations.3 man/man3/SSL_CTX_need_tmp_rsa.3.gz man/man3/SSL_CTX_new.3.gz man/man3/SSL_CTX_remove_session.3.gz +man/man3/SSL_CTX_select_current_cert.3.gz man/man3/SSL_CTX_sess_accept.3.gz man/man3/SSL_CTX_sess_accept_good.3.gz man/man3/SSL_CTX_sess_accept_renegotiate.3.gz @@ -958,14 +1197,26 @@ man/man3/SSL_CTX_sess_set_new_cb.3.gz man/man3/SSL_CTX_sess_set_remove_cb.3.gz man/man3/SSL_CTX_sess_timeouts.3.gz man/man3/SSL_CTX_sessions.3.gz +man/man3/SSL_CTX_set0_chain.3.gz +man/man3/SSL_CTX_set0_chain_cert_store.3.gz +man/man3/SSL_CTX_set0_verify_cert_store.3.gz +man/man3/SSL_CTX_set1_chain.3.gz +man/man3/SSL_CTX_set1_chain_cert_store.3.gz +man/man3/SSL_CTX_set1_curves.3.gz +man/man3/SSL_CTX_set1_curves_list.3.gz +man/man3/SSL_CTX_set1_verify_cert_store.3.gz +man/man3/SSL_CTX_set_cert_cb.3.gz man/man3/SSL_CTX_set_cert_store.3.gz man/man3/SSL_CTX_set_cert_verify_callback.3.gz man/man3/SSL_CTX_set_cipher_list.3.gz man/man3/SSL_CTX_set_client_CA_list.3.gz man/man3/SSL_CTX_set_client_cert_cb.3.gz +man/man3/SSL_CTX_set_current_cert.3.gz +man/man3/SSL_CTX_set_custom_cli_ext.3.gz man/man3/SSL_CTX_set_default_passwd_cb.3.gz man/man3/SSL_CTX_set_default_passwd_cb_userdata.3.gz man/man3/SSL_CTX_set_default_read_ahead.3.gz +man/man3/SSL_CTX_set_ecdh_auto.3.gz man/man3/SSL_CTX_set_ex_data.3.gz man/man3/SSL_CTX_set_generate_session_id.3.gz man/man3/SSL_CTX_set_info_callback.3.gz @@ -1000,6 +1251,8 @@ man/man3/SSL_CTX_use_certificate_ASN1.3. man/man3/SSL_CTX_use_certificate_chain_file.3.gz man/man3/SSL_CTX_use_certificate_file.3.gz man/man3/SSL_CTX_use_psk_identity_hint.3.gz +man/man3/SSL_CTX_use_serverinfo.3.gz +man/man3/SSL_CTX_use_serverinfo_file.3.gz man/man3/SSL_SESSION_free.3.gz man/man3/SSL_SESSION_get_ex_data.3.gz man/man3/SSL_SESSION_get_ex_new_index.3.gz @@ -1009,21 +1262,27 @@ man/man3/SSL_SESSION_set_ex_data.3.gz man/man3/SSL_SESSION_set_time.3.gz man/man3/SSL_SESSION_set_timeout.3.gz man/man3/SSL_accept.3.gz +man/man3/SSL_add0_chain_cert.3.gz +man/man3/SSL_add1_chain_cert.3.gz man/man3/SSL_add_client_CA.3.gz man/man3/SSL_add_session.3.gz man/man3/SSL_alert_desc_string.3.gz man/man3/SSL_alert_desc_string_long.3.gz man/man3/SSL_alert_type_string.3.gz man/man3/SSL_alert_type_string_long.3.gz +man/man3/SSL_build_cert_chain.3.gz man/man3/SSL_callback_ctrl.3.gz man/man3/SSL_check_private_key.3.gz man/man3/SSL_clear.3.gz +man/man3/SSL_clear_chain_certs.3.gz man/man3/SSL_clear_options.3.gz man/man3/SSL_connect.3.gz man/man3/SSL_ctrl.3.gz man/man3/SSL_do_handshake.3.gz man/man3/SSL_flush_sessions.3.gz man/man3/SSL_free.3.gz +man/man3/SSL_get0_chain_certs.3.gz +man/man3/SSL_get1_curves.3.gz man/man3/SSL_get_SSL_CTX.3.gz man/man3/SSL_get_accept_state.3.gz man/man3/SSL_get_cipher.3.gz @@ -1054,6 +1313,7 @@ man/man3/SSL_get_rbio.3.gz man/man3/SSL_get_read_ahead.3.gz man/man3/SSL_get_secure_renegotiation_support.3.gz man/man3/SSL_get_session.3.gz +man/man3/SSL_get_shared_curve.3.gz man/man3/SSL_get_shutdown.3.gz man/man3/SSL_get_ssl_method.3.gz man/man3/SSL_get_verify_callback.3.gz @@ -1072,11 +1332,23 @@ man/man3/SSL_read.3.gz man/man3/SSL_remove_session.3.gz man/man3/SSL_rstate_string.3.gz man/man3/SSL_rstate_string_long.3.gz +man/man3/SSL_select_current_cert.3.gz man/man3/SSL_session_reused.3.gz +man/man3/SSL_set0_chain.3.gz +man/man3/SSL_set0_chain_cert_store.3.gz +man/man3/SSL_set0_verify_cert_store.3.gz +man/man3/SSL_set1_chain.3.gz +man/man3/SSL_set1_chain_cert_store.3.gz +man/man3/SSL_set1_curves.3.gz +man/man3/SSL_set1_curves_list.3.gz +man/man3/SSL_set1_verify_cert_store.3.gz man/man3/SSL_set_bio.3.gz +man/man3/SSL_set_cert_cb.3.gz man/man3/SSL_set_cipher_list.3.gz man/man3/SSL_set_client_CA_list.3.gz man/man3/SSL_set_connect_state.3.gz +man/man3/SSL_set_current_cert.3.gz +man/man3/SSL_set_ecdh_auto.3.gz man/man3/SSL_set_ex_data.3.gz man/man3/SSL_set_fd.3.gz man/man3/SSL_set_generate_session_id.3.gz @@ -1191,15 +1463,26 @@ man/man3/X509_STORE_CTX_trusted_stack.3. man/man3/X509_STORE_set_verify_cb.3.gz man/man3/X509_STORE_set_verify_cb_func.3.gz man/man3/X509_VERIFY_PARAM_add0_policy.3.gz +man/man3/X509_VERIFY_PARAM_add1_host.3.gz man/man3/X509_VERIFY_PARAM_clear_flags.3.gz +man/man3/X509_VERIFY_PARAM_get0_peername.3.gz man/man3/X509_VERIFY_PARAM_get_depth.3.gz man/man3/X509_VERIFY_PARAM_get_flags.3.gz +man/man3/X509_VERIFY_PARAM_set1_email.3.gz +man/man3/X509_VERIFY_PARAM_set1_host.3.gz +man/man3/X509_VERIFY_PARAM_set1_ip.3.gz +man/man3/X509_VERIFY_PARAM_set1_ip_asc.3.gz man/man3/X509_VERIFY_PARAM_set1_policies.3.gz man/man3/X509_VERIFY_PARAM_set_depth.3.gz man/man3/X509_VERIFY_PARAM_set_flags.3.gz +man/man3/X509_VERIFY_PARAM_set_hostflags.3.gz man/man3/X509_VERIFY_PARAM_set_purpose.3.gz man/man3/X509_VERIFY_PARAM_set_time.3.gz man/man3/X509_VERIFY_PARAM_set_trust.3.gz +man/man3/X509_check_email.3.gz +man/man3/X509_check_host.3.gz +man/man3/X509_check_ip.3.gz +man/man3/X509_check_ip_asc.3.gz man/man3/X509_free.3.gz man/man3/X509_new.3.gz man/man3/X509_verify_cert.3.gz @@ -1239,14 +1522,18 @@ man/man3/bn_sub_words.3.gz man/man3/bn_wexpand.3.gz man/man3/buffer.3.gz man/man3/crypto.3.gz -man/man3/d2i_509_CRL_fp.3.gz man/man3/d2i_ASN1_OBJECT.3.gz man/man3/d2i_CMS_ContentInfo.3.gz man/man3/d2i_DHparams.3.gz man/man3/d2i_DSAPrivateKey.3.gz man/man3/d2i_DSAPublicKey.3.gz man/man3/d2i_DSA_PUBKEY.3.gz +man/man3/d2i_DSAparams.3.gz man/man3/d2i_DSA_SIG.3.gz +man/man3/d2i_ECDSA_SIG.3.gz +man/man3/d2i_ECPKParameters.3.gz +man/man3/d2i_ECPKParameters_bio.3.gz +man/man3/d2i_ECPKParameters_fp.3.gz man/man3/d2i_ECPrivateKey.3.gz man/man3/d2i_ECPrivate_key.3.gz man/man3/d2i_Netscape_RSA.3.gz @@ -1261,6 +1548,7 @@ man/man3/d2i_X509.3.gz man/man3/d2i_X509_ALGOR.3.gz man/man3/d2i_X509_CRL.3.gz man/man3/d2i_X509_CRL_bio.3.gz +man/man3/d2i_X509_CRL_fp.3.gz man/man3/d2i_X509_NAME.3.gz man/man3/d2i_X509_REQ.3.gz man/man3/d2i_X509_REQ_bio.3.gz @@ -1275,19 +1563,25 @@ man/man3/des_read_pw.3.gz man/man3/des_read_pw_string.3.gz man/man3/dh.3.gz man/man3/dsa.3.gz +man/man3/ec.3.gz man/man3/ecdsa.3.gz man/man3/engine.3.gz man/man3/err.3.gz man/man3/evp.3.gz man/man3/hmac.3.gz man/man3/i2d_ASN1_OBJECT.3.gz -man/man3/i2d_CMS_ContentInfo.3.gz man/man3/i2d_CMS_bio_stream.3.gz +man/man3/i2d_CMS_ContentInfo.3.gz man/man3/i2d_DHparams.3.gz man/man3/i2d_DSAPrivateKey.3.gz man/man3/i2d_DSAPublicKey.3.gz man/man3/i2d_DSA_PUBKEY.3.gz man/man3/i2d_DSA_SIG.3.gz +man/man3/i2d_DSAparams.3.gz +man/man3/i2d_ECDSA_SIG.3.gz +man/man3/i2d_ECPKParameters.3.gz +man/man3/i2d_ECPKParameters_bio.3.gz +man/man3/i2d_ECPKParameters_fp.3.gz man/man3/i2d_ECPrivateKey.3.gz man/man3/i2d_Netscape_RSA.3.gz man/man3/i2d_PKCS7_bio_stream.3.gz