aboutsummaryrefslogtreecommitdiffstats
path: root/cryptography
Commit message (Collapse)AuthorAgeFilesLines
...
| * | More sanity checksAlex Stapleton2014-02-061-0/+9
| | |
| * | Use a version check when counting bit_lengthAlex Stapleton2014-02-051-2/+4
| | |
| * | Sanity check keys.Alex Stapleton2014-02-051-0/+15
| | | | | | | | | | | | Taken from RFC 3447.
| * | RSA keysAlex Stapleton2014-02-052-0/+117
| |/ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | These are implemented such that they don't depend on the backend. This means we don't have to worry about passing an RSA key created with one backend to a different one so much at the expense of having to create a backend specific context on demand. This is slightly non-trivial in (at least) OpenSSL as there are 3 additional derived parameters kept in its RSA struct. They aren't difficult to generate but it requires adding 30-40 lines of BN_* stuff to the backend so I'm leaving that out for now. We'll need to implement that before we can actually do any useful operations with the keys. This also adds a loader for some of the PKCS #1 test vectors. It only extracts the 10 key pairs from pss_vect.txt currently be should be extenable to include the example signatures and other files later.
* | Add support for DTLSv1manuels2014-02-061-0/+4
| |
* | Rewrite this to be more streamlinedAlex Gaynor2014-02-051-3/+6
| |
* | Make the filename matchAlex Gaynor2014-02-051-2/+6
| |
* | Merge pull request #377 from reaperhulk/urandom-engineAlex Gaynor2014-02-053-1/+236
|\ \ | | | | | | Set default RAND engine to urandom/cryptgenrandom
| * | improve commentsPaul Kehrer2014-02-051-5/+5
| | |
| * | get urandom fd flag and bitwise OR it with FD_CLOEXEC. comment updatePaul Kehrer2014-02-051-2/+6
| | |
| * | remove deactivate and replace with activate_builtin_randomPaul Kehrer2014-02-051-27/+6
| | |
| * | Merge branch 'master' into urandom-enginePaul Kehrer2014-02-052-3/+10
| |\| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * master: PKCS #1 RSA test vector loader Removed pointless anchor Docs need virtualenv as well Everything about bash is the worst Some reST markup nonsense Fix for OS X More clearly describe the behavior of constant_time.bytes_eq Run the doc tests under OS X Made OpenSSL's derive_pbkdf2_hmac raise the right exception Document which backends implement which itnerfaces. Fixes #538 pep8 Fixed a typo in the docs Make the default backend be a multi-backend Conflicts: tests/hazmat/backends/test_openssl.py
| * | add some more comments to clarify what the ENGINE_ calls in backend doPaul Kehrer2014-02-041-1/+15
| | |
| * | rename osrand_engine to osrandom_enginePaul Kehrer2014-02-042-1/+1
| | |
| * | forward declaration wooPaul Kehrer2014-02-041-0/+2
| | |
| * | cryptgenrandom returns all requested bytes or errors, so no loop requiredPaul Kehrer2014-02-041-10/+3
| | |
| * | close the fd if fcntl failsPaul Kehrer2014-02-041-0/+1
| | |
| * | Merge branch 'master' into urandom-enginePaul Kehrer2014-02-036-8/+254
| |\ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * master: (66 commits) Chanloge + versionadded Added an example usage Typo fix Added to toctree Rename and document Linkify the things we have that others don't add HKDF to changelog Strings have quote marks at both ends. HKDF example. Properly mark all test cases as dependant on HMAC. Remove language about the separate stages of HKDF until we expose multiple stages of HKDF. Don't forget InvalidKey. Fix typo Import exception classes instead of the exceptions module. Lose the bit about passwords. https a bunch of links. Pseudorandom is a word. Backtick the entire equation. Clarify salt language and link to the paper in addition to the RFC. Don't expose extract and expand on this class yet because we don't know how best to expose verify functionality, continue testing the stages using the private methods. ... Conflicts: docs/hazmat/backends/openssl.rst
| * | | change register/unregister to activate/deactivatePaul Kehrer2014-01-311-6/+6
| | | |
| * | | address review comments on osrandom engine, reorganize some codePaul Kehrer2014-01-301-59/+78
| | | |
| * | | link against advapi32 on windowsPaul Kehrer2014-01-291-1/+1
| | | |
| * | | Merge branch 'master' into urandom-enginePaul Kehrer2014-01-2917-23/+746
| |\ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * master: (108 commits) PBKDF2HMAC requires a PBKDF2HMACBackend provider. one more replacement simplify hmac supported and hash supported calls for commoncrypto simplify check for algorithm a bit more language work + changelog changes for pbkdf2hmac one more style fix a few typo fixes, capitalization, etc switch to private attributes in pbkdf2hmac expand docs to talk more about the purposes of KDFs update docs re: PBKDF2HMAC iterations add test for null char replacement Added installation section to index.rst called -> used quotes inside, diff examples Expose this method because probably someone will need it eventually fix spacing, remove versionadded since HashAlgorithm was in 0.1 document HashAlgorithm Added canonical installation document with details about various platforms, fixes #519 update docs for pbkdf2 Add bindings for X509_REQ_get_extensions. ... Conflicts: cryptography/hazmat/bindings/openssl/binding.py docs/hazmat/backends/openssl.rst
| * \ \ \ Merge branch 'master' into urandom-enginePaul Kehrer2014-01-2018-27/+593
| |\ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * master: (58 commits) Moar backtick. Add to changelog. move some dashes around :) experiment to disable duplicate cc test runs on osx and speed up travis Remove register_cipher_adapter from the interface and the documentation. expand tox backend example On OS X at build time compile the CC bindings remove an extraneous linefeed reformat bindings and remove GCM for the moment add cipher bindings for CommonCrypto doc updates hmac support for commoncrypto added versionadded changelog to note addition of commoncrypto backend with hash support fix docs doc updates update docs for name attribute fix copy mistake in docs increase indent and note the value of the attribute in the docs move HashMethods to top level ...
| * \ \ \ \ Merge branch 'master' into urandom-enginePaul Kehrer2014-01-1116-104/+505
| |\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * master: (169 commits) Make just one call to ffi.cdef for most of the definitions Use pytest.fixture for backends drop to >= 0.8 to make pypy happy change to anonymous enum require cffi >= 0.8.1 remove extraneous spaces add hmac to commoncrypto binding bytes byte back add check to confirm we've loaded error strings Bind all the PEM errors Spelling! oops, bytes plz don't leak a context in the test add tests to the openssl backend to verify that we've registered Nonsense I think we need. This is a dep init the ssl library in the backend Actuall install a thing Try to run the spellchecker on travis Use a normal quote here, not sure where the smart quote came from ... Conflicts: cryptography/hazmat/bindings/openssl/binding.py tests/hazmat/backends/test_openssl.py
| * | | | | | handle lib/ffi on backend becoming privatePaul Kehrer2014-01-021-21/+21
| | | | | | |
| * | | | | | Merge branch 'master' into urandom-enginePaul Kehrer2014-01-021-95/+107
| |\ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * master: Revert "Travis now has an up to date pypy" Make capitalization in the glossary consistent and sort it Make lib and ffi be private on backend
| * \ \ \ \ \ \ Merge branch 'master' into urandom-enginePaul Kehrer2014-01-0131-144/+208
| |\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * master: Split OpenSSL binding Fixed test for earlier exceptino Rearrange Move GCM tag size/value validation farther forward -- this makes it easier by not requiring future backends to implement the same checks expose num_locks and {get,set}_{id,locking}_callback Make the PyPy tox job consistent with the main one. THis should be a seperate PR Typo fix This page has been subsumed by the index Bump the copyright year Document compiling OpenSSL to avoid conflicts Conflicts: cryptography/hazmat/backends/openssl/backend.py
| * | | | | | | | remove stray break, add FD_CLOEXEC, reset fd var even if close failsPaul Kehrer2014-01-011-1/+4
| | | | | | | | |
| * | | | | | | | rename urandom engine to osrandom enginePaul Kehrer2013-12-312-35/+35
| | | | | | | | |
| * | | | | | | | remove inaccurate commentPaul Kehrer2013-12-311-2/+0
| | | | | | | | |
| * | | | | | | | check if the fd is available via engine statusPaul Kehrer2013-12-311-2/+10
| | | | | | | | |
| * | | | | | | | improve init/finish engine funcs, do a better job inc/dec struct/func refsPaul Kehrer2013-12-312-5/+19
| | | | | | | | |
| * | | | | | | | Add dummy engine to tests and test other engine scenariosPaul Kehrer2013-12-311-16/+19
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Modify register_urandom_engine to fix a leak
| * | | | | | | | additional check to verify the ENGINE_new doesn't return nullPaul Kehrer2013-12-301-0/+3
| | | | | | | | |
| * | | | | | | | remove unneeded INT_MAX checkPaul Kehrer2013-12-301-1/+1
| | | | | | | | |
| * | | | | | | | fix fd int check, remove stray comedy printf()Paul Kehrer2013-12-301-3/+2
| | | | | | | | |
| * | | | | | | | add urandom engine register/unregister testsPaul Kehrer2013-12-302-20/+23
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | also rename some variables in the urandom engine for easier comparison
| * | | | | | | | allow the backend to register/unregister the engine via methodsPaul Kehrer2013-12-302-5/+34
| | | | | | | | |
| * | | | | | | | add urandom engine and set it as default RAND method.Paul Kehrer2013-12-302-0/+165
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This is a proposed solution to the OpenSSL fork problem.
* | | | | | | | | Write comments as complete sentencesAlex Gaynor2014-02-051-6/+8
| |_|_|_|_|_|_|/ |/| | | | | | |
* | | | | | | | Made OpenSSL's derive_pbkdf2_hmac raise the right exceptionAlex Gaynor2014-02-041-2/+5
| | | | | | | |
* | | | | | | | pep8Alex Gaynor2014-02-031-0/+1
| | | | | | | |
* | | | | | | | Make the default backend be a multi-backendAlex Gaynor2014-02-031-1/+4
| |_|_|_|_|_|/ |/| | | | | |
* | | | | | | Added an example usageAlex Gaynor2014-02-031-5/+1
| | | | | | |
* | | | | | | Merge branch 'master' into prioritized-multi-backendAlex Gaynor2014-02-034-6/+149
|\ \ \ \ \ \ \
| * | | | | | | Fix typoDavid Reid2014-02-031-1/+1
| | | | | | | |
| * | | | | | | Import exception classes instead of the exceptions module.David Reid2014-02-031-7/+4
| | | | | | | |
| * | | | | | | Don't expose extract and expand on this class yet because we don't know how ↵David Reid2014-02-031-16/+0
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | best to expose verify functionality, continue testing the stages using the private methods.
| * | | | | | | Remove redundant type checks per @alex and @reaperhulk.David Reid2014-02-031-12/+0
| | | | | | | |
| * | | | | | | Consistently use double quotes.David Reid2014-02-031-1/+1
| | | | | | | |