Граф коммитов

7477 Коммитов

Автор SHA1 Сообщение Дата
bent.mozilla@gmail.com 307263b8e8 Bug 397319 - "Add JSAutoRequest to other users of GetArgvPtr". r+sr+a=jst. 2007-09-28 11:15:26 -07:00
dbaron@dbaron.org 1e7b2b0bd2 Fix leak of mPendingHTTPRequest in nsSSLThread::rememberPendingHTTPRequest by converting it to an nsCOMPtr. b=394528 r=kengert sr=bzbarsky a=bsmedberg 2007-09-17 17:31:37 -07:00
reed@reedloden.com 6d1d10a82c Bug 392780 - "nsNSSCertificateDB::FindCertByDBKey() crashes on invalid input" [p=mozbugzilla@velox.ch (Kaspar Brand) r=rrelyea sr=kaie a1.9=bzbarsky] 2007-09-17 13:46:27 -07:00
jag@tty.nl f35dab1ee1 Bug 394139: Replace a bunch of NS_DEFINE_CIDs with CONTRACTIDs. r=/sr=/a=bsmedberg 2007-09-05 06:04:54 -07:00
jwalden@mit.edu d11f5a458e Bug 348748 - Replace a cast that's commented out; I think my script ignored comment contents and thus missed this, but I haven't looked at the source recently enough to be sure. r=bsmedberg on the script, a=no-functionality-change 2007-09-05 00:13:46 -07:00
dtownsend@oxymoronical.com 50c9926ef1 Bug 394778: Unit tests in security/manager/ssl/tests not run. r=kengert, a=mconnor 2007-09-04 08:29:13 -07:00
dtownsend@oxymoronical.com a5f01cfb81 Bug 390615: Add scriptable interface to verify digital signatures. r=kaie, a=blocking-1.9 2007-09-03 10:32:39 -07:00
kaie@kuix.de aada5193cc bug 386654, Implement notification for EV certs r=rrelyea, sr=bzbarsky, a=bzbarsky 2007-08-23 14:28:15 -07:00
bzbarsky@mit.edu 424642319b Make it possible to fastload NSSCertificates. Bug 388128, r=kaie, sr=brendan, a=bzbarsky 2007-08-23 11:59:12 -07:00
kairo@kairo.at 06cbf57b34 bug 385458 - UI strings using "browser" when meaning "application", r=kaie 2007-08-05 04:53:59 -07:00
benjamin@smedbergs.us adbb74115a Bug 389872 - Install NSS headers to dist/include, r=luser and a=blocks approved bug 389673 2007-08-03 07:04:33 -07:00
kaie@kuix.de f0abd74110 Bug 376329, Thunderbird fails on certificate path with circular references
r=nelson
2007-07-25 15:57:51 -07:00
kaie@kuix.de 7218a5b61c Bug 382223, Add support for Camellia to PSM
Patch contributed by okazaki
r=kengert
2007-07-25 15:53:30 -07:00
rrelyea@redhat.com da953c617e Bug 388403 Land NSS 3.12 Alpha r=kai. 2007-07-23 12:02:59 -07:00
kaie@kuix.de 8cdc2fabcd Bug 387011, Crash when importing certificate [@ nsNSSCertificateDB::ImportCertsFromFile]
r=rrelyea
2007-07-23 03:48:51 -07:00
kaie@kuix.de 48b898727b Bug 387613, Crash [@ nsNSSCertificate::GetCert fb3ac2be] on click submit on chrome://pippki/content/editcacert.xul
r=rrelyea
2007-07-23 03:25:23 -07:00
rrelyea@redhat.com 37655943a9 Back out the previous change. Mac Universal failed again (even though Mac PPC
works fine for me ;().
2007-07-19 19:20:12 -07:00
rrelyea@redhat.com db31951331 finally land NSS 3.12 into the trunk bug 388403 2007-07-19 18:33:48 -07:00
jwalden@mit.edu 4ce129205e Bug 388276 - Missing file from previous checkin, still r=cls 2007-07-18 17:19:41 -07:00
kaie@kuix.de 8b9f707716 Bug 380744, Thunderbird reports "unable to decrypt" on truncated decryptable messages
r=relyea, sr=mscott
2007-07-16 23:13:38 -07:00
jwalden@mit.edu 12e960c504 Bug 348748 - Replace all instances of NS_STATIC_CAST and friends with C++ casts (and simultaneously bitrot nearly every patch in existence). r=bsmedberg on the script that did this. Tune in next time for Macro Wars: Episode II: Attack on the LL_* Macros. 2007-07-08 00:08:04 -07:00
kaie@kuix.de 99e6bd17ee Bug 317630, PSM's FIPS token label is truncated
Incremental patch to improve wording
r=rrelyea
2007-07-06 18:20:42 -07:00
kaie@kuix.de fc8c277d34 Bug 373525, "Certificate Manager" opens with wrong tab selected, and inconsistent content displayed
Workaround that disables selected="true" which never worked anyway, r/sr=shaver
Separate improvement: make selected tab in Cert Manager persistent, r=kengert
2007-06-27 15:20:46 -07:00
kaie@kuix.de d33b6e868f Bug 176501, mozilla apps must manage NSS configuration for PKCS#11 shared libs, including nssckbi.dll
Incremental Patch v4, make sure we indeed look in all possible locations.
r=rrelyea
2007-06-27 06:15:02 -07:00
kaie@kuix.de 4289efca97 Bug 385904, Actually hook up the new NSS error strings
r=rrelyea
2007-06-27 06:12:03 -07:00
kaie@kuix.de 5986b4e533 Bug 372389, Typos in pippki.properties
r=gerv
2007-06-26 07:48:30 -07:00
kaie@kuix.de d97f7e89d3 Bug 370875, "ASSERTION: nsSecureBrowserUIImpl not thread-safe" * 4 loading any https site
Patch contributed by Neil, r=kengert
2007-06-25 14:45:30 -07:00
kairo@kairo.at 86388f94cb bug 385461 - Small improvements to CRL manager window, r=kengert 2007-06-23 07:47:16 -07:00
kairo@kairo.at 7ce8f15545 bug 385460 - remove an unused string from master password prefs, r=kengert 2007-06-23 07:42:16 -07:00
kaie@kuix.de 03d8c62192 Bug 383390, follow up check in, adding a unit Test.
Patch contributed by Nils Maier, comments provided by Jeff Walden
r=kengert
2007-06-21 08:22:43 -07:00
rrelyea@redhat.com 067faa32a1 Backing previous patch because it broke the universal binary Mac build. 2007-06-19 01:41:28 -07:00
rrelyea@redhat.com 640ddfbe2a bug 217538 Check in NSS 3.12 into FF 3.0
r=kaie
2007-06-19 00:32:12 -07:00
kaie@kuix.de 1377fdab94 Bug 384252, Cert viewer: Give feedback that cert verification is pending
r=rrelyea
2007-06-15 15:09:23 -07:00
kaie@kuix.de aa47c68ddb Bug 383969, PSM should not use OCSP while building cert manager display
r=rrelyea
2007-06-15 15:06:54 -07:00
kaie@kuix.de bf4411babc Bug 355643, Review PSM's error message overrides - are NSS errors better?Removing overrides, thereby enabling NSS messages.r=nelson 2007-06-12 19:48:41 -07:00
kaie@kuix.de 96598952e3 Bug 375759, Cert manager showing date strings for "Your Certificates" namesFollow up checkin to improve memory use.r=kengert 2007-06-12 19:46:07 -07:00
kaie@kuix.de a17e57094c Bug 383390, nsICrypto Hash truncates to 32 byte; renders sha384 and sha512 corruptPatch contributed by Nils Maierr=kengert 2007-06-10 18:42:36 -07:00
kaie@kuix.de 8fa0ed3542 Bug 378629, SSL file uploads settle into oscillating pattern with very small packetsr=rrelyea 2007-06-10 16:42:28 -07:00
kaie@kuix.de 1ed61cc981 Bug 375759, Cert manager showing date strings for "Your Certificates" namesPatch contributed by Kaspar Brandr=kengert 2007-06-10 16:24:15 -07:00
kaie@kuix.de 356cca7f24 Bug 110161, enable OCSP by default, follow up checkin,fixing string identifiers. r=marcoos, sr=mconnor 2007-06-05 15:14:39 -07:00
kaie@kuix.de 8859d0b51f Bug 110161, follow up check in to fix SeaMonkey accesskeys in the sameway as done for Firefox. r=me 2007-05-30 16:42:34 -07:00
kaie@kuix.de 485ecbb620 Bug 110161. Code related to the plan to enable OCSP by default.r=rrelyea, toolkit r=mconnor 2007-05-30 16:13:28 -07:00
kaie@kuix.de 7feb615f9d bug 334185, potential crasher fixr=kengert 2007-05-29 18:20:09 -07:00
kaie@kuix.de 3668440242 bug 380558, Some event waiting in PSM make the CPU wake from idle with no reasonPatch contributed by Mike Hommeyr=kengert 2007-05-29 18:14:32 -07:00
bzbarsky@mit.edu 3217746f78 Make PSM make sure to shut down NSS before trying to start it up with theinitial profile on app startup. Fix leak of one of the user modules that waspreventing a clean shutdown. Bug 379582, r=rrelyea, kaie, sr=biesi. 2007-05-14 14:09:58 -07:00
kaie@kuix.de 880a901b7b Bug 379190, crashes when loading chrome urlsr=rrelyea 2007-05-09 16:43:01 -07:00
benjamin@smedbergs.us 0ab7558e7b Bug 376636 - Building with gcc 4.3 and -pendatic fails due to extra semicolons, patch by Art Haas <ahaas@airmail.net>, rs=me 2007-04-23 07:21:53 -07:00
philringnalda@gmail.com 410517bfda Bug 370561 - Make nsIFormSubmitObserver scriptable, patch by Justin Dolske <dolske@mozilla.com>, r+sr=jst 2007-04-16 21:06:12 -07:00
mozilla.mano@sent.com 4c6ccf5a20 Bug 339102 - New Page Info dialog. work done by Florian Queze <f.qu@queze.net>, ui-r=beltzner, r=me. 2007-04-12 18:26:39 -07:00
cbiesinger@web.de 0f57d5fea3 Bug 375878 remove users of Recycle()patch by taras glek r+sr=biesi 2007-03-30 15:44:22 -07:00
dbaron@dbaron.org 4d961c5c49 Remove unused getKey callback from PLDHashTableOps/JSDHashTableOps. b=374906 r=bsmedberg 2007-03-27 08:33:38 -07:00
roc+@cs.cmu.edu 0054412272 Bug 374866. Reftests for text-transform. r=dbaron 2007-03-22 16:01:14 -07:00
alexei.volkov.bugs%sun.com 655919b614 448324 - ocsp checker returns incorrect error code on request with invalid signing cert. r=nelson 2008-08-12 00:46:47 +00:00
christophe.ravel.bugs%sun.com f7bd02836a Remove Beta flag for NSS 3.12.1 RC1 build. 2008-08-11 20:50:49 +00:00
christophe.ravel.bugs%sun.com bdb964a5e4 Prepare NSS 3.12.1 RC1. 2008-08-11 20:48:30 +00:00
nelson%bolyard.com 8d314a664d Backout last checkin to tstclnt.c, which appears to have broken some
tinderboxes.  /Sheriff Nelson
2008-08-11 19:29:44 +00:00
nelson%bolyard.com d8dc8ad7ea Bug 427479: Include file case changes for mingw cross compilation on a linux host
patch by Mook <mook.moz+mozbz@gmail.com>, r=nelson
2008-08-11 08:14:10 +00:00
alexei.volkov.bugs%sun.com faeeb25710 430380 - policies : explicit trust anchor results in false positives with vfychain. r=nelson 2008-08-11 05:00:48 +00:00
alexei.volkov.bugs%sun.com 38fc33cb24 Fix to memleak tinderbox: make sure the real error get propagated to a caller function. 2008-08-11 02:29:43 +00:00
alexei.volkov.bugs%sun.com a249160bad 444404 - libpkix reports "unknown issuer" for nearly all certificate errors. r=nelson 2008-08-10 23:34:37 +00:00
nelson%bolyard.com bde4029bc9 Bug 444850 � NSS misbehaves badly in the presence of a disabled PKCS#11 slot
r=julien.pierre, rrelyea
2008-08-09 01:26:05 +00:00
nelson%bolyard.com 530e53a295 Bug 330622: certutil's usage messages incorrectly document certain options, r=kaie
Bug 448323: certutil -K doesn't report the token and slot names for found keys, r=julien
2008-08-09 00:03:43 +00:00
julien.pierre.boogz%sun.com dc9bbef2e3 Fix for bug 423839 . Add multiple PKCS#11 token password command-line option to NSS tools. r=nelson 2008-08-08 23:48:12 +00:00
julien.pierre.boogz%sun.com 8c12f3e1cf Fix for bug 449146 . remove dead libsec function declarations. r=nelson 2008-08-07 00:00:09 +00:00
julien.pierre.boogz%sun.com 4d860ae8bd Fix for bug 423839 . Add multiple PKCS#11 token password command line options to crmftest, modutil, p7sign, p7content . r=nelson 2008-08-04 22:58:31 +00:00
julien.pierre.boogz%sun.com 110e38bff1 Fix for bug 129303 . Add missing declaration for PK11_GetAllSlotsForCert. r=nelson 2008-08-04 22:44:17 +00:00
nelson%bolyard.com 2d55242a3f Bug 448200. fix systemic misspellings of deprecated and function, r=julien.pierre 2008-08-04 22:32:17 +00:00
slavomir.katuscak%sun.com 09c59f9978 Bug 401877: Moved noise file generation to separate function. r=julien 2008-07-28 07:27:58 +00:00
nelson%bolyard.com 5b37883388 Don't abort search for certs when a slot reports error, v2
bug 444850, r=julien,wtc
2008-07-26 02:52:03 +00:00
alexei.volkov.bugs%sun.com ad464da6d0 Bug 430859 ��� PKIX: Policy mapping fails verification with error "invalid arguments". r=nelson 2008-07-23 23:02:25 +00:00
nelson%bolyard.com 9102251942 Bug 444850. Don't ask the module to use an invalid session handle in
find_objects.  r=alexei,julien sr=wtc.
2008-07-22 04:34:02 +00:00
nelson%bolyard.com b148fe7244 bug 444850. Don't crash when CERT_CreateSubjectCertList fails to find any
certs that match the subject name of a cert that NSS has just found.
r=alexei.volkov,wtc
2008-07-22 04:27:47 +00:00
nelson%bolyard.com 5f6b469029 Bug 384459, ignore issuer and serial number components of authority key ID
extension when they don't match.  Don't report them in certutil either.
r=rrelyea, sr=wtc
2008-07-22 02:40:11 +00:00
julien.pierre.boogz%sun.com 597ef54edf Fix for bug 442618 . Eliminate dead function CERT_CertPackageType . r=nelson 2008-07-21 20:09:48 +00:00
wtc%google.com 79a155a1dc Bug 436806: On FreeBSD, assume elf instead of a.out if the objformat
utility is not available.  The patch is contributed by Marco Perez
<bugmail@millibyte.net>.  r=wtc.
2008-07-12 14:28:59 +00:00
alexei.volkov.bugs%sun.com 9d25bddcee Bug 418544 ��� Pathological OCSP inefficiency with libPKIX. Part two. r=nelson 2008-07-11 22:06:23 +00:00
alexei.volkov.bugs%sun.com b0b6a2e3a5 Bug 418544 ��� Pathological OCSP inefficiency with libPKIX. Part one. r=nelson 2008-07-11 20:42:46 +00:00
alexei.volkov.bugs%sun.com a14c3f6852 430405 - Error log is not produced by CERT_PKIXVerifyCert. Patch part two. r=nelson 2008-07-11 19:12:31 +00:00
nelson%bolyard.com 77fe4e6e20 Backing out previous commit, which turned tinderbox red. sheriff Nelson. 2008-07-11 04:49:03 +00:00
alexei.volkov.bugs%sun.com 17c64eacc9 430405 - Error log is not produced by CERT_PKIXVerifyCert. Patch part two. r=nelson 2008-07-10 22:52:28 +00:00
slavomir.katuscak%sun.com 35793fb18e Bug 444308: Fixed certs validity in IOPR tests. r=alexei 2008-07-10 10:22:11 +00:00
alexei.volkov.bugs%sun.com 88ced7e852 Additional fix for 430405. Previous patch leaked PKIX_Error object. 2008-07-09 18:42:26 +00:00
glen.beasley%sun.com 63beea0332 443755 remove extra semicolon patch from Jesse Ruderman r=nelson and myself glenb 2008-07-09 18:07:44 +00:00
alexei.volkov.bugs%sun.com ab8040de74 Bug 430405 - Error log is not produced by CERT_PKIXVerifyCert. r=nelson 2008-07-09 00:22:20 +00:00
alexei.volkov.bugs%sun.com a0910b3ea0 436599 - PKIX: AIA extension is not used in some Bridge CA / known certs configuration. r=nelson 2008-07-09 00:02:50 +00:00
alexei.volkov.bugs%sun.com 4f79327427 408847 - pkix_OcspChecker_Check does not support specified responder (and given signercert). r=nelson 2008-07-08 21:34:53 +00:00
kaie%kuix.de 04c5217cbd Bug 431819, IMAP/POP/SMTP/LDAP with SSL client auth, Thunderbird repeatedly prompts for client certificate
r=rrelyea, r=dveditz, a1.9.0.2=shaver
Bug 426555, nsClientAuthRememberService must be refcounted and implement nsISupportsWeakReference
r/sr=mrbkap, a1.9.0.2=shaver
2008-07-08 20:34:40 +00:00
rrelyea%redhat.com 7b267a5be3 Bug 436417 ��� PK11_ImportDERPrivateKeyInfoAndReturnKey fails when RSA priv key already exists in softoken (edit) 2008-07-04 00:02:33 +00:00
slavomir.katuscak%sun.com e89b29391f Bug 440617: Checking back outed patch back to CVS. (problem was not in this patch) 2008-07-01 12:26:07 +00:00
reed%reedloden.com 9e1f933e36 Bug 442561 - "Change PSM to enable Entrust Root Certification Authority for EV" [p=kaie@kuix.de (Kai Engert [kaie]) r=rrelyea a=beltzner] 2008-07-01 06:10:34 +00:00
dcamp%mozilla.com 3875d7ced8 Bug 436870: FF3 RC1 loses SSL certificate exceptions. r=kaie, a=beltzner, patch by Jan Bambas <honzab@allpeers.com> 2008-07-01 03:46:55 +00:00
nelson%bolyard.com 12fa24ec1c Bug 438876: signtool is still using static libraries, patch part 2.
r=rrelyea
Modified Files:
	certgen.c manifest.mn
2008-06-30 21:26:58 +00:00
nelson%bolyard.com 6e2b14b13e Restore USE_STATIC_LIBS = 1 to manifest.mn to get signtool building on
Windows again.  This is a partial backout of the previous checkin for
manifest.mn.  Also, don't include unnecessary private header files.
Related to bug 438876.  Sheriff Nelson
2008-06-30 20:33:40 +00:00
slavomir.katuscak%sun.com 2716d4a40e Bug 440617: Backing out last patch, caused problems in Windows. 2008-06-30 14:50:17 +00:00
rrelyea%redhat.com b5a2e583e6 Bug 438876
signtool is still using static libraries

r=wtc
also addresses review comments 2 and 3.
2008-06-27 21:01:48 +00:00
rrelyea%redhat.com 7e8673ef2f bug 438878
r=wtc (address review comment 4)
2008-06-27 20:56:03 +00:00
slavomir.katuscak%sun.com 63a7ae8f74 Bug 440617: Fixed reporting of certificate extensions tests. r=nelson 2008-06-27 08:36:32 +00:00
alexei.volkov.bugs%sun.com 93e08ea450 Bug 430859 ��� PKIX: Policy mapping fails verification with error "invalid arguments". Initial fix. r=nelson 2008-06-27 00:16:15 +00:00
rrelyea%redhat.com e2f798b263 export PK11_FindCertFromDERCertItem()
bug 438876 r=wtc
2008-06-26 20:50:04 +00:00
alexei.volkov.bugs%sun.com 8e644a6a4e Bug 417399 ��� Arena Allocation results are not checked in pkix_pl_InfoAccess_ParseLocation. r=nelson 2008-06-25 18:49:49 +00:00
kaie%kuix.de 32a183e300 Dummy whitespace checkin for bug 433444, no review 2008-06-25 16:29:02 +00:00
kaie%kuix.de 48353cdf9c Dummy whitespace change to test bug 433444, no review 2008-06-25 16:09:59 +00:00
slavomir.katuscak%sun.com 54829b8098 Bug 401877: Using separate HOSTDIR for Upgrade DB test cycle. r=julien 2008-06-24 08:38:10 +00:00
slavomir.katuscak%sun.com b6e174f4e9 Bug 367384: Updating ignored stacks. 2008-06-23 13:17:55 +00:00
nelson%bolyard.com cb2e1cc4ba Bug 436957: Fix decoding in CERT_DecodeCRLDistributionPoints, r=julien.pierre
Modified Files:
	cmd/lib/secutil.c cmd/lib/secutil.h tests/cert/certext.txt
 	lib/certhigh/xcrldist.c
2008-06-20 21:14:27 +00:00
nelson%bolyard.com 05aab7f9d8 Bug 372241: Need more versatile form of CERT_NameToAscii, r=julien 2008-06-20 16:57:03 +00:00
nelson%bolyard.com 45095a2db7 Back out last revision, which failed a tinderbox test. 2008-06-19 03:21:35 +00:00
alexei.volkov.bugs%sun.com 09c765c29c Bug 430135 ��� Need improvement to pkix object leak testing. Adding missing certs. 2008-06-19 03:05:12 +00:00
nelson%bolyard.com af1239f772 Bug 436957: Fix decoding in CERT_DecodeCRLDistributionPoints, r=julien.pierre 2008-06-19 01:41:22 +00:00
alexei.volkov.bugs%sun.com 91f14ec21a Bug 440062 ��� incorrect list element count in PKIX_List_AppendItem function. r=nelson 2008-06-18 19:57:08 +00:00
alexei.volkov.bugs%sun.com 71bd8c3cd2 Bug 438685 ��� libpkix doesn't try all the issuers in a bridge with multiple certs. additional fix. r=nelson 2008-06-18 19:33:18 +00:00
wtc%google.com 0e21e202a7 Bug 436430: changed "UNIX time" to "NSPR time" in the comments. r=nelson. 2008-06-18 01:04:23 +00:00
wtc%google.com 243ad319b8 Bug 436430: removed the declarations of unimplemented functions
CERT_CreateNicknameCertList and CERT_CreateEmailAddrCertList.  r=nelson.
2008-06-18 01:02:32 +00:00
wtc%google.com 81fa027d03 Bug 436430: the |time| parameter of cert_VerifyCertChainPkix should be
PRTime instead of PRUint64.  r=nelson.
Modified Files:
	certdb/certi.h certhigh/certvfypkix.c
2008-06-18 01:00:47 +00:00
alexei.volkov.bugs%sun.com a9ab78ed9b Bug 430135 ��� Need improvement to pkix object leak testing. r=nelson 2008-06-17 22:29:09 +00:00
julien.pierre.boogz%sun.com 06fc3394b0 Fix for bug 423839 . Add multiple PKCS#11 token password command line option to NSS tools . r=nelson 2008-06-16 20:23:00 +00:00
wtc%google.com 530a221337 Bug 436430: Start to build the cmd/tests directory. Added the test program
nonspr10.c for verifying that NSS public headers can be compiled with
-DNO_NSPR_10_SUPPORT.  Do not release the test programs in cmd/tests in our
binary distribution.  r=nelson.
Modified Files:
	manifest.mn tests/manifest.mn
Added Files:
	tests/nonspr10.c
2008-06-14 19:37:03 +00:00
wtc%google.com a1bc3d8acb Bug 436430: NSS public headers should not use NSPR 1.0 compatibility types
and macros.  Replaced PRArenaPool by PLArenaPool and int64 by PRTime.  The
patch is generated by Nelson Bolyard <nelson@bolyard.com>.  r=wtc
Modified Files:
	certdb/cert.h certdb/certdb.h certdb/certt.h certhigh/ocsp.h
	cryptohi/cryptohi.h cryptohi/keyhi.h cryptohi/keythi.h
	freebl/blapit.h pk11wrap/pk11priv.h pk11wrap/pk11pub.h
	pk11wrap/secmodt.h pkcs12/p12.h pkcs12/p12t.h pkcs12/pkcs12t.h
	pkcs7/pkcs7t.h pkcs7/secpkcs7.h smime/cms.h util/nssb64.h
	util/secasn1.h util/secder.h util/secdig.h util/secitem.h
	util/secoid.h
2008-06-14 14:20:38 +00:00
nelson%bolyard.com 87409df236 Bug 434398: libPKIX cannot find issuer cert immediately after checking it with OCSP
Ensure that parsed certificates go into trust domain's cert cache.
Plug two leaks of certificate objects.   r=julien,Alexei
Eliminate dependence on old NSPR 1.0 symbol PRArenaPool, which is now PLArenaPool.
2008-06-14 05:05:23 +00:00
nelson%bolyard.com 0f8e270aa8 Bug 434099: NSS relies on unchecked PKCS#11 object attribute values, r=rrelyea 2008-06-14 04:38:32 +00:00
alexei.volkov.bugs%sun.com 499cf9ca30 Bug 438685 ��� libpkix doesn't try all the issuers in a bridge with multiple certs. r=nelson 2008-06-13 19:12:21 +00:00
nelson%bolyard.com 515683b406 Back out last checkin, which introduced crashes in pk12util. Sheriff Nelson 2008-06-13 05:28:55 +00:00
julien.pierre.boogz%sun.com bcbfe42ea5 Fix for bug 423839 . Add multiple PKCS#11 token password command line option to NSS tools. r=nelson 2008-06-12 21:16:58 +00:00
alexei.volkov.bugs%sun.com 968302570f Bug 432303 ��� Replace PKIX_PL_Memcpy with memcpy. r=nelson 2008-06-12 17:22:45 +00:00
nelson%bolyard.com 9354e429d0 fix assertion failures and other crashes for bug 401928. r=rrelyea 2008-06-11 18:56:13 +00:00
alexei.volkov.bugs%sun.com bf34f33d7e 430369 - vfychain -o succeeds even if -pp is not specified. Bug 430368 ��� vfychain -t option is undocumented. r=nelson 2008-06-11 18:02:17 +00:00
kaie%kuix.de 268991314f bug 423511, Test failure because make prints CWD
r=wtc
2008-06-11 15:56:12 +00:00
nelson%bolyard.com 14a2c68a33 Bug 436577: uninitialized variable in sec_pkcs5CreateAlgorithmID
Patch by Bob Relyea <rrelyea@redhat.com>, r=wtc
2008-06-10 02:53:27 +00:00
wtc%google.com d112c7ab8b Bug 434187: merged nssCertificateStore_Check into
nssCertificateStore_Unlock because these two functions were always called
together.  r=julien.pierre
2008-06-06 01:19:31 +00:00
wtc%google.com 414905bd32 Bug 434187: fixed compiler warnings reported by GCC on Mac OS X.
r=julien.pierre
2008-06-06 01:16:31 +00:00
wtc%google.com a2b9272750 Bug 434187: assign PR_TRUE to a PRBool variable. r=nelson 2008-06-04 01:28:48 +00:00
wtc%google.com e90981a03e Bug 434187: fixed a MSVC compiler warning about signed/unsigned comparison.
r=nelson
2008-06-04 01:27:36 +00:00
glen.beasley%sun.com e1774e4e70 263544 support HmacSHA256, HmacSHA384, and HmacSHA512 r=Wan-Teh 2008-06-02 20:07:11 +00:00
wtc%google.com d428403a9d Bug 302416: remove the unused file nsprstub.c from CVS. r=rrelyea. 2008-05-31 04:38:16 +00:00
nelson%bolyard.com 7b577516d4 Bug 436428: remove unneeded assert from sec_PKCS7EncryptLength
Patch by Justin Dolske <dolske@mozilla.com>, r=nelson
2008-05-30 03:39:46 +00:00
rrelyea%redhat.com 8dcf58a640 Bug 427706 resolve regression from bug 427706.
This also includes reapplying the patch from 427706
r=kaie
2008-05-29 21:45:07 +00:00
kaie%kuix.de fbf0294d03 Bug 426886, Use "const" char* in PK11_ImportCertForKey
r=wtc, r=julien.pierre
2008-05-29 17:24:23 +00:00
kaie%kuix.de f959e8578b Bug 415167, Memory leak in certutil
Follow up patch to fix a deadlock regression, bug 434808
Patch contributed by Julien Pierre
r=kaie, r=nelson
2008-05-29 17:17:59 +00:00
kaie%kuix.de 8f34f63b58 Bug 433386, when system clock is off by more than two days, OSCP check fails, can result in crash if user tries to view
certificate
landing (cleaner) Patch v2
r=nelson
2008-05-29 17:11:00 +00:00
christophe.ravel.bugs%sun.com 08db9f3020 Move version to 4.3 Beta on the trunk.
JSS 4.3 requires NSS 3.12 or above.
2008-05-23 17:51:42 +00:00
glen.beasley%sun.com 5c32b3e856 435091 add support for JSS to init NSS with more options r=wtc 2008-05-22 04:28:10 +00:00
nelson%bolyard.com dae5e98dfe Bug 67890: create self-signed cert with existing key that signed CSR
Patch by Alexei.volkov, r=julien.pierre,rrelyea
2008-05-21 21:58:07 +00:00
nelson%bolyard.com ac511107c1 Bug 433594: Crash destroying OCSP Cert ID, r=julien.pierre 2008-05-21 00:08:33 +00:00
julien.pierre.boogz%sun.com 244b9485f9 Fix for bug 434860 . Dead code in ocsp_CreateCertID . r=nelson 2008-05-20 23:34:03 +00:00
wtc%google.com 3fab89a7c2 Bug 431929: Fixed a memory leak on an error path in
get_token_objects_for_cache .  r=nelson.
2008-05-18 01:51:45 +00:00
wtc%google.com be8510e449 Bug 431805: initialize error_stack_index to an invalid TPD index instead of
0, which is a valid TPD index.  Improved comments.  r=nelson.
Modified Files:
	base/error.c nss/nssinit.c
2008-05-17 03:44:41 +00:00
wtc%google.com 15849b0b06 Bug 431929: Refactored duplicate code into common subroutines. 1. Replaced
nssToken_Find{Certificates,TrustObjects,CRLs} by nssToken_FindObjects.
2. Replaced get_token_{certs,trust,crls}_for_cache by
get_token_objects_for_cache.  r=nelson.
Modified Files:
	dev/dev.h dev/devtoken.c dev/devutil.c pk11wrap/pk11cert.c
2008-05-17 00:13:39 +00:00
nelson%bolyard.com 9773f2cc23 Bug 390296: NSS ignores subject CN even when SAN contains no dNSName
r=wtc
2008-05-16 03:38:39 +00:00
nelson%bolyard.com ab2a61ed7d Bug 429716: debug builds of libPKIX unconditionally dump socket traffic to stdout
r=alexei.volkov
2008-05-15 23:48:13 +00:00
julien.pierre.boogz%sun.com ad0b6c7e71 Fix for bug 317848 . Prevent forking in Solaris shell. 1) switch to bash 2) use exec to redirect stdin before entering a while loop 2008-05-14 22:57:52 +00:00
nelson%bolyard.com d6cc970bac [Bug 433437] vfychain ignores the -a option, r=julien.pierre 2008-05-13 02:19:27 +00:00
wtc%google.com c212d6ec7a Bug 431929: Release the lock before returning. Acquire the lock after
null checks.  r=nelson.
2008-05-13 01:22:35 +00:00
wtc%google.com 95ac0e5e43 Bug 433177: fixed GCC compiler warnings. r=julien.pierre
Modified Files:
	freebl/ec.c freebl/genload.c freebl/ldvector.c util/dertime.c
	util/oidstring.c
2008-05-13 01:20:05 +00:00
reed%reedloden.com 6c8ead6d5e Bug 433025 - "Still using windows icon in Security Exception dialog" [p=reed r=kaie a1.9=schrep] 2008-05-10 03:43:48 +00:00
wtc%google.com 52654fad56 Bug 431805: fixed the leak of the primordial thread's error stack. The
patch is contributed by Boying Lu <brian.lu@sun.com>.  r=wtc.
Modified files: base/base.h base/error.c nss/nssinit.c
2008-05-10 01:03:18 +00:00
wtc%google.com 81652fc8ad Bug 367664: added RISC OS support. The patch is contributed by
Peter Naulls <peter@chocky.org>.  r=wtc.
Modified Files:
	coreconf/config.mk coreconf/rules.mk
	coreconf/nsinstall/nsinstall.c nss/lib/freebl/unix_rand.c
Added Files:
	coreconf/RISCOS.mk
2008-05-09 23:56:02 +00:00
wtc%google.com 176ee3da35 Bug 430875: Documented the policy for the order of cipher suites in
SSL_ImplementedCiphers.  r=nelson.
2008-05-07 20:45:53 +00:00
wtc%google.com 0df21bee75 Bug 430743: Added the GET_32 macro for reading uint32. Use {...} (with
three dots) for consistency.  Parse the NewSessionTicket handshake message.
r=nelson.
2008-05-07 15:42:59 +00:00
kaie%kuix.de 73c691b462 Bug 431384, Enable Network Solutions Certificate Authority for EV
r=rrelyea, a1.9=beltzner
2008-05-04 01:36:46 +00:00
kaie%kuix.de 2e47261781 Bug 431772, add network solutions and diginotar root certs to NSS
r=nelson, r=rrelyea
2008-05-03 03:08:01 +00:00
nelson%bolyard.com 07e62d457e Backing out changes that turned Tinderbox orange. /Sheriff Nelson 2008-05-02 18:37:55 +00:00
julien.pierre.boogz%sun.com 9a12f3aa9b Fix for bug 348198 . Use bash with all.sh and ssl.sh to prevent forking and ensure that we always wait for selfserv. 2008-05-02 01:28:43 +00:00
julien.pierre.boogz%sun.com cb56b00041 Bug 430916 : add sustaining asserts. r=nelson 2008-05-02 01:27:11 +00:00
johnath%mozilla.com e1e2eed1a1 SSL Error page for domain mismatch should hyperlink to correct site (sometimes). b=402210 r=gavin r=kengert r=axel ui-r=beltzner moa/sr=biesi a=beltzner Significant chunks of p=timeless 2008-04-30 20:10:23 +00:00
nelson%bolyard.com f7ad359b14 Bug 391903: nssSlot object for nssckbi leaked when loaded by PSM.
r=rrelyea
2008-04-27 02:13:52 +00:00
nelson%bolyard.com 463abfd4c2 Bug 414003: don't scan past end of certitiface header and trailer strings.
r=rrelyea, sr=alexei.volkov
2008-04-27 02:08:58 +00:00
nelson%bolyard.com 303d22e86c Bug 420644: Improve SSL tracing of key derivation, r=julien.pierre 2008-04-27 02:06:05 +00:00
nelson%bolyard.com d3a26020b5 Bug 430399: initialize output arguments before calling CERT_PKIXVieryCert.
r=Alexei.volkov
2008-04-27 02:02:29 +00:00
julien.pierre.boogz%sun.com df357b35b6 Fix for bug 428103. Define CERT_EncodeSubjectKeyID in a public header. r=nelson 2008-04-26 00:49:15 +00:00
julien.pierre.boogz%sun.com b24a3e99a5 Fix for AIX5.1 build (extraneous comma). 2008-04-26 00:47:50 +00:00
julien.pierre.boogz%sun.com 3a6f6840e6 Fix build on AIX5.1 . Remove extraneous comma 2008-04-26 00:20:19 +00:00
wtc%google.com 48b2708d11 Bug 430743: enhanced ssltap to understand the TLS session ticket extension.
The NewSessionTicket handshake message is not parsed yet.  r=nelson.
2008-04-25 16:58:18 +00:00
kaie%kuix.de fde6d84e85 Bug 406954, Unable to add exception for server certificates with empty subject names
r=rrelyea, a1.9=shaver
2008-04-24 02:05:37 +00:00
rrelyea%redhat.com d1203dd0e8 Back out patch to bug 391903.
Windows tinderboxen are failing.
2008-04-23 16:37:19 +00:00
kaie%kuix.de 348b0bef75 Bug 429110, Random crashing ( [@ PR_AtomicIncrement] ?) ( [@ nsIOService::NewURI] ?)
r=rrelyea, a1.9=shaver
2008-04-22 22:46:44 +00:00
gavin%gavinsharp.com f2d1dc6606 Bug 413909: nsCertOverrideService IDN handling is broken, and its port handling is also quite cumbersome, patch by Honza Bambas <honzab@allpeers.com>, r=kaie, a=shaver 2008-04-22 20:03:21 +00:00
slavomir.katuscak%sun.com 17523125a7 Bug 427706 - Test case. r=rrelyea 2008-04-22 16:39:05 +00:00
kaie%kuix.de 653d62e674 Bug 428105, CERT_SetOCSPTimeout is not defined in any public header file
r=nelson
2008-04-22 15:59:26 +00:00
rrelyea%redhat.com 25876106da Bug 391903 r=nelson.
leak objects from nssSlot_Create
2008-04-21 23:54:49 +00:00
alexei.volkov.bugs%sun.com 59c6360b6d 403543 - pkix: need a way to enable/disable AIA cert fetching. r=nelson 2008-04-21 22:38:35 +00:00
alexei.volkov.bugs%sun.com 156cbb3c32 397832 - libpkix leaks memory if a macro calls a function that returns an error. attachment 316504. r=nelson. 2008-04-21 19:36:42 +00:00
glen.beasley%sun.com 86049f2823 428491 identity changed to identify request by serge gautherie r=wan-teh 2008-04-21 15:32:28 +00:00
mnyromyr%tprac.de 1ab3d07ec4 Bug 428491: typo in ssl exceptions dialog; p=Serge Gautherie <sgautherie.bz@free.fr>, r=kaie, a1.9=dsicore 2008-04-20 18:14:30 +00:00
dtownsend%oxymoronical.com f55333092d Bug 429133: Parts of NSS are not in the SDK. r=bsmedberg, a=damons 2008-04-19 10:37:41 +00:00
christophe.ravel.bugs%sun.com abc806d7d0 Set version to NSS 3.12.1 Beta on NSS trunk.
Note: NSS 3.12.0 RTM will be delivered from NSS_3_12_0_BRANCH.
2008-04-17 20:22:45 +00:00
alexei.volkov.bugs%sun.com c7f691584e 429388 - vfychain.main leaks memory. r=nelson 2008-04-16 23:25:32 +00:00
alexei.volkov.bugs%sun.com 36b6a7ef66 429230 - memory leak in pkix_CheckCert function. r=nelson 2008-04-16 18:47:03 +00:00
alexei.volkov.bugs%sun.com 1379abcaee 397832 - libpkix leaks memory if a macro calls a function that returns an error. Object leak test changes for tinderbox (attachment 315629). r=nelson 2008-04-15 22:41:13 +00:00
kaie%kuix.de bcdd4be3d4 Single patch for 3 overlapping fixes.
Bug 420187, hang in nsNSSHttpRequestSession::internal_send_receive_attempt
r=rrelyea
Bug 383369, fixing a regression from 335801
r=rrelyea
Bug 358438, fix proposed by and portions contributed by Honza Bambas
r=honzab, r=rrelyea
approval1.9 for combined patch = beltzner
2008-04-12 04:47:24 +00:00
kaie%kuix.de dec369a658 Bug 423002, Incorrect error message with certificates which contain subjectAltName
r=rrelyea, a1.9=beltzner
2008-04-11 01:28:09 +00:00
kaie%kuix.de 0d7489b5cf Bug 428415, Don't pass uninitialized values to NSS CERT_PKIXVerifyCert
r=rrelyea, a1.9=dsicore
2008-04-11 01:26:19 +00:00
glen.beasley%sun.com 2efc5150e6 408644 override keyword does not work with jdk 1.4.2 r=self JSS tests only 2008-04-10 20:53:18 +00:00
glen.beasley%sun.com 29db602476 408644 improve error messages for timeout and removed unused imports r=self JSS tests only 2008-04-10 15:31:24 +00:00
alexei.volkov.bugs%sun.com c1f79daa1a 397832 - libpkix leaks memory if a macro calls a function that returns an error. r=nelson 2008-04-09 22:29:05 +00:00
kaie%kuix.de 3c015e5003 Bug 327181, follow up checkin to fix IDL comment
r=rrelyea, approval1.9=beltzner
2008-04-09 05:25:44 +00:00
kaie%kuix.de e06bb2b59e Bug 406755, EV certs not recognized as EV with some cross-certification scenarios
second landing attempt, earlier EV verification, patch 9
r=rrelyea
also landing a regression fix, which applies to debug mode compilation code, only
r=rrelyea
blocking1.9=dsicore
2008-04-09 01:48:02 +00:00
kaie%kuix.de 87a8289e26 Bug 425518, Enable multiple roots for EV (and remove 1): Geotrust, Thawte, Verisign, Trustwave, Comodo
r=rrelyea, r=nelson, blocking1.9=dsicore
2008-04-09 00:28:48 +00:00
rrelyea%redhat.com b5ae54b676 Update release number 2008-04-08 18:48:50 +00:00
rrelyea%redhat.com ad51e90bb8 backing out revision 1.20 as per bug 427706 2008-04-08 18:33:18 +00:00
kaie%kuix.de 625ef93d17 Backing out the "early ev verification" patch from bug 406755, as an attempt to fix a tinderbox test failure (crash). 2008-04-08 02:22:26 +00:00