Commit Graph

45 Commits

Author SHA1 Message Date
Fedor f4ea1dde41 Update to a later NSS version. 2021-02-04 16:54:22 +02:00
Fedor bc522afa28 [NSS] Version and build bump. 2021-02-04 16:52:55 +02:00
Fedor 88e204f922 [NSS] Update root certificates. 2021-02-04 16:52:49 +02:00
Fedor 2290a2a266 Get rid of HPKP pinning mode. 2021-02-04 16:50:21 +02:00
Fedor 75fc2843ab Nuke vim lines. 2021-02-04 16:48:36 +02:00
Fedor 6fde4f6686 Remove hostname parameter to trust domain. 2020-09-17 08:56:43 +03:00
Fedor 1fc83062d7 [NSS] Version and build bump. 2020-09-17 08:23:49 +03:00
Fedor 529ffe459e [NSS] Prevent slotLock race in NSC_GetTokenInfo. 2020-09-17 08:23:37 +03:00
Fedor 2e4f33ecc3 [NSS] Version and build bump. 2020-07-16 03:55:08 +03:00
Fedor f643d20002 [NSS] Implement constant-time GCD and modular inversion. 2020-07-16 03:54:46 +03:00
Fedor 1b4a31b5d9 Remove, fix and clean up automated tests. 2020-07-16 02:40:15 +03:00
Fedor c1d93cc39c [NSS] Bump NSS version. 2020-07-16 02:39:24 +03:00
Fedor 905ba19715 [NSS] Force a fixed length for DSA exponentiation. 2020-07-16 02:39:11 +03:00
Fedor c4bf507959 Un-bust building of NSS after update to 3.48 on Solaris. 2020-07-16 02:16:05 +03:00
Fedor a9e1a524b7 Remove HPKP. 2020-07-16 02:15:34 +03:00
Fedor 985b37fae7 Consider not using HSTS preload lists any longer. 2020-07-16 02:15:13 +03:00
Fedor d4d48edc48 NSS db back-end flexibility. 2020-07-16 02:15:06 +03:00
Fedor b9103cf06e Update HSTS preload list & reduce debug spew. 2020-04-03 20:48:13 +03:00
Fedor 83bd605c57 Update NSS to a Goldilocks version. 2020-04-03 20:44:39 +03:00
Fedor 6b9ec91973 Align document.open() with overhauled spec. 2020-04-03 20:44:14 +03:00
Fedor a82f9cb265 Be more consistent about decoding IP addresses in PSM. 2020-04-03 20:42:36 +03:00
Fedor 8407e5818c Update NSS version. 2019-12-25 15:48:04 +03:00
Fedor 6ba30e77c9 [NSS] Bug 1586176 - EncryptUpdate should use maxout not block size. 2019-12-25 15:47:55 +03:00
Fedor 8dcdaebcf8 [NSS] Bug 1508776 - Remove unneeded refcounting from SFTKSession. 2019-12-25 15:47:47 +03:00
Fedor 41d0dc16ca Update in-tree Brotli, Woff2 and OTS components. 2019-12-25 15:45:57 +03:00
Fedor bcf5aeb47d Improve HSTS preload list generation. 2019-12-25 15:45:44 +03:00
Fedor fe1c660000 Fix Certificate Exception dialog logic. 2019-12-25 15:45:17 +03:00
Fedor f92331676b Clean up `exceptionDialog.js`. 2019-12-25 15:45:14 +03:00
Fedor 889bac8bac Update NSS version. 2019-12-25 15:44:49 +03:00
Fedor 1f21ea295c Add length checks for cryptographic primitives. 2019-12-25 15:44:43 +03:00
Fedor 1bbe3e8972 Support longer (up to RFC maximum) HKDF outputs. 2019-12-25 15:44:37 +03:00
Fedor ec5b99da7e Support modern Solaris. 2019-12-25 15:43:27 +03:00
Fedor 34eb8aadc5 Properly implement various HSTS states. 2019-12-25 15:42:00 +03:00
Fedor c1704fb4fd Update NSS to 3.41.2 (custom) 2019-09-05 20:08:53 +03:00
Fedor 0c4242dd71 Prohibit the use of RSASSA-PKCS1-v1_5 algorithms in TLS 1.3. 2019-09-05 20:04:34 +03:00
Fedor 37978cf0a2 Don't unnecessarily strip leading 0's from key material during PKCS11 import. 2019-09-05 20:04:32 +03:00
Fedor 86f2db3d82 Apply better input checking discipline. 2019-09-05 20:04:29 +03:00
Fedor 6efd685a17 Change softoken password rounds to a more conservative number. 2019-09-05 20:03:23 +03:00
Fedor adee55a072 Update HSTS preload list 2019-07-08 13:09:56 +03:00
Fedor c9b1d75076 Update NSS to 3.41.1 (custom) 2019-07-08 13:09:49 +03:00
Fedor adfc767c2f Remove SecurityUI telemetry. 2019-07-08 13:07:10 +03:00
Fedor bec3f9ab93 Update HSTS preload list 2019-06-12 13:44:19 +03:00
Fedor 971a7a8048 Fix order of member variables in a couple of initializer lists 2019-05-20 09:00:58 +03:00
Fedor 277045c132 ooops, some files where missed 2019-03-12 18:31:25 +03:00
Fedor 454d000db6 basic source 2019-03-11 13:26:37 +03:00