1667 pkcs11 may deadlock when multi-threaded consumers forkReviewed by: Garrett D'Amore <garrett@damore.org>Reviewed by: Saso Kiselkov <skiselkov.ml@gmail.com>Approved by: Gordon Ross <gordon.ross
1667 pkcs11 may deadlock when multi-threaded consumers forkReviewed by: Garrett D'Amore <garrett@damore.org>Reviewed by: Saso Kiselkov <skiselkov.ml@gmail.com>Approved by: Gordon Ross <gordon.ross@nexenta.com>
show more ...
3882 Remove xmod & friendsReviewed by: Dan McDonald <danmcd@nexenta.com>Reviewed by: Richard Lowe <richlowe@richlowe.net>Approved by: Richard Lowe <richlowe@richlowe.net>
2077 lots of unreachable breaks in illumos gateReviewed by: Dan McDonald <danmcd@nexenta.com>Reviewed by: Garrett D'Amore <garrett@damore.org>Approved by: Richard Lowe <richlowe@richlowe.net>
289 invalid padding when using java pkcs11 providerReviewed by: garrett@nexenta.com, gordon.w.ross@gmail.comApproved by: richlowe@richlowe.net
6 Need open kcfdReviewed by: gwr@nexenta.com, richlowe@richlowe.net, matt@greenviolet.netApproved by: richlowe@richlowe.net
6916796 OSnet mapfiles should use version 2 link-editor syntax--HG--rename : usr/src/cmd/sgs/libelf/common/mapfile-common => usr/src/cmd/sgs/libelf/common/mapfile-versrename : usr/src/cmd/sgs/lin
6916796 OSnet mapfiles should use version 2 link-editor syntax--HG--rename : usr/src/cmd/sgs/libelf/common/mapfile-common => usr/src/cmd/sgs/libelf/common/mapfile-versrename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-bindings => usr/src/cmd/sgs/link_audit/common/mapfile-vers-bindingsrename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-perfcnt => usr/src/cmd/sgs/link_audit/common/mapfile-vers-perfcntrename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-symbindrep => usr/src/cmd/sgs/link_audit/common/mapfile-vers-symbindreprename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-truss => usr/src/cmd/sgs/link_audit/common/mapfile-vers-trussrename : usr/src/cmd/sgs/link_audit/i386/mapfile-vers-who => usr/src/cmd/sgs/link_audit/common/mapfile-vers-whorename : usr/src/common/mapfiles/i386/map.noexdata => usr/src/common/mapfiles/common/map.noexdatarename : usr/src/lib/libaio/sparc/mapfile-vers => usr/src/lib/libaio/common/mapfile-versrename : usr/src/lib/libelfsign/common/mapfile.map => usr/src/lib/libelfsign/common/mapfile-versrename : usr/src/lib/libpthread/sparc/mapfile-vers => usr/src/lib/libpthread/common/mapfile-versrename : usr/src/lib/librt/amd64/mapfile-vers => usr/src/lib/librt/common/mapfile-versrename : usr/src/lib/libsys/sparc/mapfile-vers => usr/src/lib/libsys/common/mapfile-versrename : usr/src/lib/libthread/sparc/mapfile-vers => usr/src/lib/libthread/common/mapfile-vers
6875651 move asymmetric crypto to libsoftcrypto6816864 collect together padding methods used by PKCS#116917508 bignum library needs big random number function6249983 softtoken based RSA/DSA slow o
6875651 move asymmetric crypto to libsoftcrypto6816864 collect together padding methods used by PKCS#116917508 bignum library needs big random number function6249983 softtoken based RSA/DSA slow on Niagara6917506 arcfour lint check missing from usr/src/uts/sun4v/Makefile6917513 move softFipsDSAUtil.c to common/crypto/fips/fips_dsa_util.c6834849 dsa_sign() produces invalid signature when pkcs11 engine is used via openssl(1) for certain keys
6949306 soft_slot.authenticated not getting properly set anymore, confusing C_Logout & friends6953950 $s and %s look similar, but $s breaks keystore creation
6443649 softtoken should honor $HOME, avoid getpwuid6884140 softtoken touches $HOME too soon
6918510 softtoken does not save EC key data correctly
6905996 arcfour should return failure on invalid key (instead of dumping core)
6900477 libpkcs11 needs to be friendlier6903648 pInfo->libraryVersion.minor left uninitialized in pkcs11_softtoken
6897371 cryptoadm needs changes in order to support fips-140 mode in local zones6897374 Memory leaking in kernel algorithm modules and softtoken dsa with fips enabled
PSARC 2009/347 cryptoadm(1M) enhancement for FIPS-140 mode6787364 Administration and policy configuration changes to support FIPS 140-26867384 Solaris Crypto Framework needs to implement self tests
PSARC 2009/347 cryptoadm(1M) enhancement for FIPS-140 mode6787364 Administration and policy configuration changes to support FIPS 140-26867384 Solaris Crypto Framework needs to implement self tests for FIPS 140-2 compliance
6786946 kcf should check the key sizes before passing a job to a provider6831413 multiple SCF providers advertise wrong boundaries for CKM_DES3_{CBC,ECB}{,_PAD} key lengths
6842872 Race condition in fork() and C_Initialize() causes deadlock in pkcs116862268 C_Initialize() does not correctly cleans resources when fails6862202 token_session mutexes are not covered by at
6842872 Race condition in fork() and C_Initialize() causes deadlock in pkcs116862268 C_Initialize() does not correctly cleans resources when fails6862202 token_session mutexes are not covered by at_fork handler6862207 PKCS11 softtoken:C_Initialize() sets softtoken_initialized to TRUE also when it fails
6859220 pkcs11_softoken.so crashes in RC4 when doing a java benchmark
6837738 ssh and javaws dump core in libsoftcrypto when freeing memory under libumem
6823591 pkcs11_kernel and pkcs11_softtoken object session reference counter must to be handled after fork6828366 pkcs11_kernel/softtoken atfork handler should acquire session objects mutex too
6820466 CKA_PUBLIC_EXPONENT is inconsistently optional for C_GenerateKeyPair for RSA keys6820888 CKA_MODULUS_BITS attribute is sometimes missing in pkcs11_softtoken
6439989 CKM_CMS_SIG & WTLS missing from pkcs11_mech2str mapping6282064 C_GetSlotInfo returns CKR_SLOT_ID_INVALID when the logical provider is the only slot on the system6177650 Wrong error code ret
6439989 CKM_CMS_SIG & WTLS missing from pkcs11_mech2str mapping6282064 C_GetSlotInfo returns CKR_SLOT_ID_INVALID when the logical provider is the only slot on the system6177650 Wrong error code returned when key does not allow requested operation6437677 C_GenerateKey with missing CKA_VALUE_LEN attr should fail with CKR_TEMPLATE_INCOMPLETE6499687 softDSA.c should use a meaningful #define rather than a hard coded number6773550 Crypto Framework is too strict when checking DSA key parameters6815120 C_Logout with metaslot can leave metaslot object info in memory6606384 SCF consumers crash after mechanisms are disabled using cryptoadm when using libumem6636169 softtoken is confused by .nfs files6636960 C_GetOperationState should fail if there is no active digest operation6627939 functional test failure - got CKR_UNWRAPPING_KEY_TYPE_INCONSISTENT
6666204 meta slot opens and closes /dev/urandom needlessly for every read6722460 finish moving /dev/random and /dev/urandom seeding and usage to libcryptoutil
6784451 consolidate duplicative looping_read() and looping_write() code into libcryptoutil
6798660 Cadmium .NOT file processing problem with CWD relative file pathsContributed by Richard Lowe6785284 Mapfile versioning rules need to be more visible to gatelings6800164 Standard file exclu
6798660 Cadmium .NOT file processing problem with CWD relative file pathsContributed by Richard Lowe6785284 Mapfile versioning rules need to be more visible to gatelings6800164 Standard file exclusion mechanism needed for Cadmium tools
6796952 bignum sparc not using optimizations in libsoftcrypto6782907 Certificate signing request (CSR) using certutil fails on T1/T2 based systems6609549 Sun Metaslot erroneously reports CKR_SESSIO
6796952 bignum sparc not using optimizations in libsoftcrypto6782907 Certificate signing request (CSR) using certutil fails on T1/T2 based systems6609549 Sun Metaslot erroneously reports CKR_SESSION_READ_ONLY for C_DestroyObject on RW session6728680 T2000 SoftToken slot reports absent but non-removable token when .sunw directory inaccessible
123