- 21 Apr, 2017 1 commit
-
-
Mukund Sivaraman authored
Reject incorrect RSA key lengths during key generation and and sign/verify context creation (#45043)
-
- 13 Jan, 2017 2 commits
-
-
Tinderbox User authored
-
Mark Andrews authored
-
- 01 Nov, 2016 2 commits
-
-
Mark Andrews authored
-
Mark Andrews authored
-
- 30 Oct, 2016 1 commit
-
-
Mark Andrews authored
-
- 18 Aug, 2016 1 commit
-
-
Mark Andrews authored
the specific PKCS11 providers capabilities. [RT #42458]
-
- 27 Jun, 2016 1 commit
-
-
Mark Andrews authored
-
- 06 Dec, 2015 1 commit
-
-
Mark Andrews authored
-
- 20 Nov, 2015 1 commit
-
-
Mark Andrews authored
argument's const status. [RT #41150]
-
- 18 Oct, 2015 1 commit
-
-
Mark Andrews authored
-
- 18 Aug, 2015 2 commits
-
-
Mark Andrews authored
-
Evan Hunt authored
4183. [cleanup] Use timing-safe memory comparisons in cryptographic code. Also, the timing-safe comparison functions have been renamed to avoid possible confusion with memcmp(). [RT #40148]
-
- 07 Aug, 2015 1 commit
-
-
Evan Hunt authored
4168. [security] A buffer accounting error could trigger an assertion failure when parsing certain malformed DNSSEC keys. (CVE-2015-5722) [RT #40212]
-
- 30 May, 2015 1 commit
-
-
Mark Andrews authored
-
- 28 May, 2015 2 commits
-
-
Mark Andrews authored
-
Mark Andrews authored
-
- 17 Apr, 2015 1 commit
-
-
Francis Dupont authored
-
- 31 Jan, 2014 1 commit
-
-
Evan Hunt authored
3723. [cleanup] Imported keys are now handled the same way regardless of DNSSEC algorithm. [RT #35215]
-
- 14 Jan, 2014 1 commit
-
-
Evan Hunt authored
3705. [func] "configure --enable-native-pkcs11" enables BIND to use the PKCS#11 API for all cryptographic functions, so that it can drive a hardware service module directly without the need to use a modified OpenSSL as intermediary (so long as the HSM's vendor provides a complete-enough implementation of the PKCS#11 interface). This has been tested successfully with the Thales nShield HSM and with SoftHSMv2 from the OpenDNSSEC project. [RT #29031]
-
- 09 Jan, 2014 2 commits
-
-
Tinderbox User authored
-
Evan Hunt authored
3698. [cleanup] Replaced all uses of memcpy() with memmove(). [RT #35120]
-
- 05 Sep, 2013 1 commit
-
-
Tinderbox User authored
-
- 04 Sep, 2013 1 commit
-
-
Mark Andrews authored
into the DNSKEY management framework. A new tool dnssec-importkey is used to this. [RT #34698]
-
- 24 Oct, 2012 1 commit
-
-
Evan Hunt authored
3402. [bug] Correct interface numbers for IPv4 and IPv6 interfaces.
-
- 24 Jul, 2012 1 commit
-
-
Mark Andrews authored
-
- 23 Jul, 2012 1 commit
-
-
Mark Andrews authored
-
- 15 Jun, 2012 1 commit
-
-
Mark Andrews authored
-
- 14 Jun, 2012 1 commit
-
-
Mark Andrews authored
3339. [func] Allow the maximum supported rsa exponent size to be specified: "max-rsa-exponent-size <value>;" [RT #29228]
-
- 10 Mar, 2012 1 commit
-
-
Tinderbox User authored
-
- 07 Mar, 2012 1 commit
-
-
Mark Andrews authored
-
- 11 Mar, 2011 2 commits
-
-
Mark Andrews authored
-
Mark Andrews authored
support. [RT #23473]
-
- 11 Jan, 2011 1 commit
-
-
Automatic Updater authored
-
- 10 Jan, 2011 1 commit
-
-
Mark Andrews authored
across restarts of named. Initially this is for TSIG keys generated using GSSAPI. [RT #22639]
-
- 30 Oct, 2009 1 commit
-
-
Mark Andrews authored
-
- 28 Oct, 2009 1 commit
-
-
Mark Andrews authored
-
- 27 Oct, 2009 2 commits
-
-
Automatic Updater authored
-
Mark Andrews authored
test. [RT #20453]
-
- 24 Oct, 2009 1 commit
-
-
Francis Dupont authored
-