glen.beasley%sun.com
d6d3001dfe
verify certificate in memory method
2002-07-04 00:36:52 +00:00
nicolson%netscape.com
3dcc1ea9ef
Fix 120785: SSLSocket does not throw java.net.BindException.
2002-07-04 00:29:24 +00:00
nicolson%netscape.com
11837bbc04
need to include nspr.h.
2002-07-04 00:25:46 +00:00
glen.beasley%sun.com
1fba049990
verify cert in memory
2002-07-04 00:10:48 +00:00
nicolson%netscape.com
c492307e02
Fix 121710: throw better SSL exceptions.
2002-07-04 00:03:47 +00:00
nicolson%netscape.com
50591b0122
Print subject name instead of issuer name.
2002-07-03 23:58:58 +00:00
nicolson%netscape.com
9ce34687c6
Update documentation for these functions.
2002-07-03 23:57:12 +00:00
nicolson%netscape.com
ea4b451e87
deprecate old classes in favor of the JCA.
2002-07-03 23:51:20 +00:00
nicolson%netscape.com
5c3d6dfdd7
moved JSSSecureRandomSpi into provider/java/security directory.
2002-07-03 23:49:32 +00:00
nicolson%netscape.com
4604a3386c
Provider classes have been moved into the java/security and javax/crypto
...
subdirectories.
2002-07-03 23:48:53 +00:00
nicolson%netscape.com
431701e468
Fix 106846: Version strings in CryptoManager need updating.
2002-07-03 23:46:02 +00:00
javi%netscape.com
1335837b09
Go back to the lower case mechanism for the ocspResponse_* flags.
2002-07-03 20:22:27 +00:00
javi%netscape.com
6ef5342006
Final patch for Bug 155626 which enables 3rd party apps to use the NSS
...
libraries to encode/decode OCSP responses/requests on their own.
2002-07-03 20:18:10 +00:00
javi%netscape.com
5df2b90529
Use the newly exported symbol names.
2002-07-03 00:13:25 +00:00
javi%netscape.com
74cf1db5b9
Break up OCSP so that 3rd party apps can send off an OCSP request and parse
...
it.
2002-07-03 00:02:39 +00:00
relyea%netscape.com
d929569334
Handle the case where we don't get the Token object from NewToken (It gets converted from a session object in handleobjects).
2002-07-02 19:58:49 +00:00
relyea%netscape.com
2691dfaecb
More performance improvements in listing certs:
...
1) reduce more short term memory allocate/frees.
2) remove sha1 hash calculations from critical paths.
3) when listing user certs, skip decoding of non-user certs.
2002-07-02 15:11:29 +00:00
nicolson%netscape.com
a00af9cae3
typo in error message
2002-06-28 20:14:47 +00:00
ssaux%netscape.com
a8b8613277
b=154624 Cannot change master password r=javi sr=mscott
2002-06-28 18:08:19 +00:00
relyea%netscape.com
52a3e39f51
Initialize type fields to supress purify uninitialized reference warnings.
2002-06-28 03:00:10 +00:00
jpierre%netscape.com
f3834c4493
Add VISA root cert - bug 139874
2002-06-28 01:07:37 +00:00
nicolson%netscape.com
0952ef1652
remove spurious println.
2002-06-27 21:16:42 +00:00
wtc%netscape.com
5f1bf71ea2
Bugzilla bug 154656: changed "softoken" to "softokn" to match the file
...
name.
2002-06-27 18:34:17 +00:00
jpierre%netscape.com
34637a1925
Fix for 154212 - make CERT_SaveSMimeProfile copy the cert to the database if it comes from an external source
2002-06-27 00:18:35 +00:00
kaie%netscape.com
b0937b8228
b=154240 security fix
...
r=javi sr=alecf
2002-06-26 14:15:11 +00:00
kaie%netscape.com
cc3cbfef64
b=154084 entering/leaving secure site alert pops up incessantly
...
r=javi sr=alecf
2002-06-25 23:32:42 +00:00
bzbarsky%mit.edu
a5be4d7f1b
Fix stretched icon. Bug 110456, patch by Chris Brien
...
<christopher_brien@hotmail.com>, r=bzbarsky,ssaux, sr=alecf
2002-06-25 23:29:48 +00:00
relyea%netscape.com
bf47db16b4
Initialize type field to clear off purify warnings.
2002-06-25 23:00:59 +00:00
relyea%netscape.com
36d3327a4e
Don't force the update if the cert doesn't already exist.
2002-06-25 22:58:13 +00:00
relyea%netscape.com
388eae96fc
Collect the full names of the certs, not just the stan names.
2002-06-25 22:57:22 +00:00
relyea%netscape.com
b68687620e
Add new function which returns the NSS 3.4 style nickname directly from a
...
NSSCertificate structure.
2002-06-25 22:33:37 +00:00
ian.mcgreer%sun.com
77f6bf5223
two more places to dump templates
2002-06-25 19:40:16 +00:00
ian.mcgreer%sun.com
1ac81e9eee
fix AIX builds, 64-bit compiler chokes on large switches in debug builds
2002-06-25 16:57:40 +00:00
relyea%netscape.com
466f850a10
Fix solaris compiler error/warning. Fix prototype to return correct value (PRBool not PRStatus).
2002-06-24 23:54:16 +00:00
kaie%netscape.com
b0a64c5799
b=87902 Cannot reach TLS intolerant servers through SSL proxy.
...
r=javi sr=darin
2002-06-24 23:02:08 +00:00
relyea%netscape.com
acca079eec
Don't decode or extract trust for certs if we are just getting the nicknames -- particularly for user certs.
2002-06-24 22:36:59 +00:00
ian.mcgreer%sun.com
5cbb17c379
fix broken AIX builds
2002-06-24 22:29:12 +00:00
ian.mcgreer%sun.com
6c5c445334
log more mechanisms and templates
2002-06-24 22:22:57 +00:00
relyea%netscape.com
c951743a6e
Copy the type value as well as the rest.
2002-06-24 21:57:27 +00:00
relyea%netscape.com
360a5def46
More performance improvements for PK11ListCerts/ CERT_GetUserCertByUsage().
2002-06-24 21:54:41 +00:00
nelsonb%netscape.com
0ab3e1d86d
Fix bug 135261. Create symbolic names for the values 2 and 3 for the
...
SSL_REQUIRE_CERTIFICATE option. Value 2 has always been the default.
New Value 3 is appropriate for servers that want to re-request, but
still not require, client-auth from a client with whom an SSL session
is already established.
2002-06-22 01:40:32 +00:00
nicolson%netscape.com
2398114330
Fix 128259: Cannot get SSL trust for a CA residing on PKCS#11 module.
2002-06-21 23:53:58 +00:00
relyea%netscape.com
94826d03c3
Need to preserve non-modifiable trustbits.
2002-06-21 22:28:03 +00:00
relyea%netscape.com
8cecf90735
zero structure before we fill it in, not after
2002-06-21 20:25:49 +00:00
nicolson%netscape.com
cc9a198e79
fix a build error in JDK 1.2.
2002-06-21 18:31:36 +00:00
wtc%netscape.com
b57b8df897
Bug 153380: TLS is enabled by default now.
2002-06-21 18:25:46 +00:00
kaie%netscape.com
5eb67585c2
b=90956 Dot (.) instead of localized characters in pipnss module
...
r=ssaux sr=alecf
2002-06-20 23:41:02 +00:00
kaie%netscape.com
2d8dba1be3
https surfing: Clicking on a link early leads to "mixed/broken" lock icon
...
r=javi sr=rpotts
2002-06-20 23:36:48 +00:00
bryner%netscape.com
c4f4e41719
Don't crash if NSSDialogs doesn't implement nsICertificateDialogs (bug 150862). r=kaie, sr=blake.
2002-06-20 23:31:47 +00:00
javi%netscape.com
8e5dba016b
Make the file C++ friendly.
2002-06-20 22:32:38 +00:00
relyea%netscape.com
07e1a10985
Reduce the cost of decoding a certificate.
2002-06-20 18:53:16 +00:00
relyea%netscape.com
5f13750389
reduce the calls to get the login state as these calls seem to be pretty expensive
...
for some tokens.
2002-06-20 18:49:45 +00:00
relyea%netscape.com
74259157e1
Patches to reduce the cost of getting attributes on certs or finding certs in lists.
2002-06-20 18:46:47 +00:00
nicolson%netscape.com
f6d9041eac
catch a null pointer and throw it back to Java, instead of crashing in C.
2002-06-19 22:59:08 +00:00
nicolson%netscape.com
19ed977293
upgrade to NSS 3.4.2.
2002-06-19 22:58:40 +00:00
nicolson%netscape.com
80da6ed3a6
add SSLClientAuth test.
...
remove obsolete socketTest.
Get passwords from a file so we can run in batch mode.
2002-06-19 22:50:47 +00:00
nicolson%netscape.com
64de9139f6
Fix 112227: set SSL server without nickname
...
Specify the certificate to use for both server and client auth directly,
rather than by nickname.
2002-06-19 20:33:28 +00:00
stephend%netscape.com
97e151dbf5
Bug 151418. Polish Page Info & Certificate Details. Patch by Stephen Walker <walk84@yahoo.com> r=kaie@netscape.com, sr=jaggernaut@netscape.com
2002-06-19 20:32:54 +00:00
ian.mcgreer%sun.com
818326aebc
bug 98926, PKCS#11 session logging
2002-06-19 18:32:57 +00:00
rangansen%netscape.com
987e670221
exporting CERT_VerifyCertChain. r=relyea
2002-06-19 15:58:51 +00:00
ian.mcgreer%sun.com
72c56dfde5
missed part of last patch (bug 145322)
2002-06-19 15:26:55 +00:00
ian.mcgreer%sun.com
a230a74e47
bug 145322, second patch, clean up pk11_saveContextHelper
2002-06-19 15:22:54 +00:00
ian.mcgreer%sun.com
84f44c2426
bug 145322, reduce the number of PKCS#11 sessions used in SSL connections, implement new function PK11_SaveContextAlloc
...
r=relyea
2002-06-19 15:21:37 +00:00
ian.mcgreer%sun.com
41ebe0592b
bug 150704, PK11_Finalize can crash because softoken does not implement C_XXXFinal correctly
2002-06-19 14:59:24 +00:00
bishakhabanerjee%netscape.com
e5b3ecac7a
correcting init_mcom function to enable "nssqa" to run at Netscape - 150752
2002-06-18 21:45:31 +00:00
relyea%netscape.com
a9c4b2875a
1) Map flags both coming and going.
...
2) Finish transaction of the target database not the source database.
2002-06-18 16:41:41 +00:00
kaie%netscape.com
34144c21e7
b=145730 Avoid unnecessary repeated "encrypted page" alerts on JavaScript links.
...
r=jst sr=darin
2002-06-18 14:17:10 +00:00
wtc%netscape.com
bf909b356a
Bug 151940: SEC_PKCS12DecoderVerify should call SEC_ASN1DecoderFinish first
...
to detect insufficient input data error.
2002-06-18 05:00:39 +00:00
relyea%netscape.com
3b0169836f
Standardize the open flags as 'enums' when using multiaccess databases, no matter
...
if we are using PR_ versions of the flags or O_ versions of the flags.
2002-06-17 18:46:27 +00:00
kaie%netscape.com
ea34611103
b=148610 Lock icon should be updated as early as possible.
...
r=javi sr=rpotts
2002-06-17 09:56:14 +00:00
stephend%netscape.com
b48fd8f9a9
Bug145409. JS strict warnings in certManager.js. Patch by Stephen Walker <walk84@yahoo.com> r=kaie@netscape.com, sr=jaggernaut@netscape.com
2002-06-16 21:19:25 +00:00
nicolson%netscape.com
0700feee32
add new tests.
2002-06-14 18:15:45 +00:00
nicolson%netscape.com
6d11aafe59
remove broken code until bug is fixed.
2002-06-14 18:15:21 +00:00
nicolson%netscape.com
ba0e5da12c
remove bogus comment.
2002-06-14 18:13:27 +00:00
relyea%netscape.com
8ecce17ba5
check version of the existing DB, not the updatedb.
2002-06-14 17:29:56 +00:00
kaie%netscape.com
4c4d965cce
b=119394 Support fetching certificates from LDAP servers.
...
r=javi/dmose sr=mscott
2002-06-14 02:10:02 +00:00
kaie%netscape.com
0651ac578a
b=150863 Fix lock icon state for low/high crypto mix.
...
r=javi sr=alecf
2002-06-13 23:59:01 +00:00
relyea%netscape.com
65efceafe9
Add transactions to the database update portion of the code.
2002-06-13 23:25:37 +00:00
relyea%netscape.com
b73e72fecf
Update cert handle on token insertion/removal.
2002-06-13 21:43:30 +00:00
relyea%netscape.com
5af6761fdf
Add series to keep track of object handle value validity.
2002-06-13 21:42:41 +00:00
relyea%netscape.com
c4f501ea84
Reset the cert cache and clobber cert handles on token insertion an removal
2002-06-13 21:40:43 +00:00
jpierre%netscape.com
35d427682d
Add missing AOL root CA certs
2002-06-13 10:14:50 +00:00
nicolson%netscape.com
ee3a5ab4b0
add javadoc target.
2002-06-12 22:54:16 +00:00
nicolson%netscape.com
73767e2c4b
remove these files--there's no C code in this directory.
2002-06-12 20:18:10 +00:00
nicolson%netscape.com
162f234bdc
Grab NSS headers from directory "nss" instead of directory "security".
2002-06-12 20:11:22 +00:00
nicolson%netscape.com
6432d07503
remove makefiles for this directory, since it's only Java files.
2002-06-12 20:08:39 +00:00
kaie%netscape.com
0afcb51180
b=126944 Handle NSS error codes within PSM.
...
r=ssaux sr=darin
2002-06-12 16:44:22 +00:00
wtc%netscape.com
c82952da17
Bug 150143: use map file to limit exported symbols on Mac OS X. The patch
...
is contributed by Brian Ryner <bryner@netscape.com>.
Modified files: Darwin.mk rules.mk
2002-06-12 00:21:19 +00:00
relyea%netscape.com
c5df5f929f
When checking NeedInit status, go back and check the token in case the token
...
has been initialized offline.
2002-06-11 23:33:25 +00:00
jpierre%netscape.com
ab061f96db
Update for root certs - bug 139874
2002-06-11 23:16:25 +00:00
kirk.erickson%sun.com
81f890d48e
Fixed indentation caught by Wan-Teh (66606).
2002-06-11 22:41:45 +00:00
kirk.erickson%sun.com
936600b550
Resolves 66606. Added -O (enable OCSP checking).
2002-06-11 16:29:28 +00:00
ddrinan%netscape.com
ef961ea641
Bug 150708. Incorrect keysize when finding bulk alg. r=wtc.
2002-06-10 22:00:32 +00:00
relyea%netscape.com
fb5d7b49ac
Return public and private keys in the order specified by the PKCS #11 spec.
2002-06-10 20:33:31 +00:00
leaf%mozilla.org
0034658953
updating locale version string for impending release, bug 149802
2002-06-07 07:45:38 +00:00
alecf%netscape.com
f0263ddf07
fix for bug 101761 - REQUIRES update - remove all REQUIRES that are no longer necessary.. r=cls, a=asa (build-only changes)
2002-06-06 20:28:14 +00:00
jpierre%netscape.com
35ae180053
Fix for 141256 - rewrite OCSP HTTP download code to fix error handling
2002-06-06 01:05:40 +00:00
jpierre%netscape.com
b497f3d9d4
Fix for 139874 - Inject Latest CA Root Certs
2002-06-06 00:12:56 +00:00
cathleen%netscape.com
12e47be3cf
clean up last traces of nsCRT::strlen(char* s), bug 124536 r=dp, sr=brendan
2002-06-04 23:05:39 +00:00
thayes%netscape.com
9ff40a4655
Reserve OID (netscape_name_components 2) - see 605437
2002-06-04 21:46:05 +00:00