3310 root CA certs should be removed from illumos-gateReviewed by: Garrett D'Amore <garrett@damore.org>Approved by: Dan McDonald <danmcd@nexenta.com>
1665 Illumos wont build against openssl 1.0.0Reviewed by: Robert Mustacchi <rm@joyent.com>Reviewed by: Keith Wesolowski <keith.wesolowski@joyent.com>Reviewed by: Joshua M. Clulow <josh@sysmgr.org>
1665 Illumos wont build against openssl 1.0.0Reviewed by: Robert Mustacchi <rm@joyent.com>Reviewed by: Keith Wesolowski <keith.wesolowski@joyent.com>Reviewed by: Joshua M. Clulow <josh@sysmgr.org>Approved by: Albert Lee <trisk@nexenta.com>
show more ...
1445 Stop trusting the diginotar certReviewed by: Gordon Ross <gwr@nexenta.com>Reviewed by: Dan McDonald <danmcd@nexenta.com>Approved by: Garrett D'Amore <garrett@nexenta.com>
PSARC 2009/430 Default system CA (X.509) Certificates6661895 /etc/sfw/openssl/certs has no well known CA certificates
6857427 remove the unused key and certificate files from the gate
6855414 Deliver SPARC support for TPM6865428 pkcs11_tpm should be installed by default, or it won't be used
backout 6855414: breaks build
6864230 hiho, hiho, it'ch chtime for CH to goPortions contributed by Rich Lowe
6414175 kcf.conf's supportedlist not providing much usefulness
PSARC 2007/446 Elliptic-Curve Cryptography for Solaris5066901 Offer the PKCS#11 Elliptic Curve based mechanisms in Solaris6562402 kernel software provider for Elliptic Curve mechanisms
PSARC 2007/604 KMF Pluggability Enhancements6621224 KMF Dynamic Plugin Support6621231 pktool list keystore=file dir=/tmp/test prints out incorrect output
6549126 elfsign text-format trust roots need to be un-CDDLed, un-SCMed--HG--rename : usr/src/cmd/cmd-crypto/etc/certs/SUNWObjectCA => usr/src/cmd/cmd-crypto/etc/certs/SUNWObjectCA.annot
PSARC/2007/139 Kernel Crypto support for MD46354305 Kernel Crypto support for MD46533491 libmd's MD4 produces invalid message digests in 64-bit mode6539262 MD4/MD5/SHA1/SHA2 Final functions not co
PSARC/2007/139 Kernel Crypto support for MD46354305 Kernel Crypto support for MD46533491 libmd's MD4 produces invalid message digests in 64-bit mode6539262 MD4/MD5/SHA1/SHA2 Final functions not consistent
6391249 elfsign needs to support Verisign certificate chain
FWARC/2006/175 MD definition for N2 CWQFWARC/2006/201 sun4v error handling updateFWARC/2006/425 NCS HV API Update 2FWARC/2006/429 Niagara2 Perf Regs HV APIFWARC/2006/474 pci io hv iommu attribute
FWARC/2006/175 MD definition for N2 CWQFWARC/2006/201 sun4v error handling updateFWARC/2006/425 NCS HV API Update 2FWARC/2006/429 Niagara2 Perf Regs HV APIFWARC/2006/474 pci io hv iommu attributes updateFWARC/2006/481 Niagara-2 Random Number Generator APIFWARC/2006/524 Niagara2 Network Interface Unit Hypervisor APIFWARC/2006/556 NIU/SIU Device Tree Bindings and Machine Description DefinitionsFWARC/2006/567 Niagara Crypto & RNG compatible property updatePSARC/2006/459 Huron 1u/2u Platform SupportPSARC/2006/520 Niagara 2 Random Number GeneratorPSARC/2006/521 Niagara 2 Cryptographic ProviderPSARC/2006/645 Niagara II NIU 10Gbit Ethernet Driver6477049 ON support for UltraSPARC-T2 processor6375797 Add support for SUN4V IOMMU extensions6480942 Crypto support for UltraSPARC-T2 processor6480959 NIU support for UltraSPARC-T2 processor6483040 ON platform support for Huron (SPARC-Enterprise-T5120 & SPARC-Enterprise-T5220)
6289535 build_cscope complains a bit on x866303550 xencrypt, xdecrypt no longer mangled6316770 split the tree into open and closed trees6321333 Install.sh is over-zealous looking for kmods
PSARC 2005/576 Support for complex cryptographic mechanismsPSARC 2005/630 session, object, and key management kernel crypto APIPSARC 2005/656 AES CTR mode for KCFPSARC 2005/659 Hiding members of K
PSARC 2005/576 Support for complex cryptographic mechanismsPSARC 2005/630 session, object, and key management kernel crypto APIPSARC 2005/656 AES CTR mode for KCFPSARC 2005/659 Hiding members of KCF logical providers4721729 Support AES Counter mode for encryption6243992 dprov stores attributes based on data model of application6203141 Sessions and objects management kernel crypto API6253484 Support mechanisms with complex mech_param structures across the EF stack6314217 Hide underlying providers of logical providers
6331488 OID with NO parameter for RSA sigs using SHA-1 missing from softtoken6336131 CKM_TLS_PRF support6336150 gcc and softMAC.c don't get along anymore6347073 kcf missing some rsa mechs
6336517 kernel blowfish no longer works.
OpenSolaris Launch