Ssduhangkaidongfeat(apps): refine enc command output and fixes
| 文件 | 最后提交记录 | 最后更新时间 |
|---|---|---|
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
feat(apps): add crl issuer/hash/text output | 2 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
fix:Refactor some functions in app module. Co-authored-by: hs6246<zhengzeyang@huawei.com> # message auto-generated for no-merge-commit merge: !887 merge main into main fix:Refactor some functions in app module. Created-by: hs6246 Commit-by: hs6246 Merged-by: liwei3013 Description: fix:Refactor some functions in app module. See merge request: openHiTLS/openhitls!887 | 6 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
New command line added Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/415 | 10 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
fix:Refactor some functions in app module. Co-authored-by: hs6246<zhengzeyang@huawei.com> # message auto-generated for no-merge-commit merge: !887 merge main into main fix:Refactor some functions in app module. Created-by: hs6246 Commit-by: hs6246 Merged-by: liwei3013 Description: fix:Refactor some functions in app module. See merge request: openHiTLS/openhitls!887 | 6 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
fix:Refactor some functions in app module. Co-authored-by: hs6246<zhengzeyang@huawei.com> # message auto-generated for no-merge-commit merge: !887 merge main into main fix:Refactor some functions in app module. Created-by: hs6246 Commit-by: hs6246 Merged-by: liwei3013 Description: fix:Refactor some functions in app module. See merge request: openHiTLS/openhitls!887 | 6 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
fix:Refactor some functions in app module. Co-authored-by: hs6246<zhengzeyang@huawei.com> # message auto-generated for no-merge-commit merge: !887 merge main into main fix:Refactor some functions in app module. Created-by: hs6246 Commit-by: hs6246 Merged-by: liwei3013 Description: fix:Refactor some functions in app module. See merge request: openHiTLS/openhitls!887 | 6 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
New command line added Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/415 | 10 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
fix:Refactor some functions in app module. Co-authored-by: hs6246<zhengzeyang@huawei.com> # message auto-generated for no-merge-commit merge: !887 merge main into main fix:Refactor some functions in app module. Created-by: hs6246 Commit-by: hs6246 Merged-by: liwei3013 Description: fix:Refactor some functions in app module. See merge request: openHiTLS/openhitls!887 | 6 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
Fix the error that occurs when the app parses standardized input Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/673 | 7 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
App SM2 key exchange adds temporary private key encryption. Signed-off-by: dny <duanningyan@huawei.com> Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/666 | 7 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
feat(app): add prime command line with prime number generation and testing - Implement prime number generation and primality testing - Support decimal and hexadecimal input/output formats - Add safe prime generation option - Include 15 comprehensive test cases with cross-platform support - Add command-line interface with options: -generate, -bits, -safe, -hex, -checks Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/856 | 6 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
New command line added Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/415 | 10 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
New command line added Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/415 | 10 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
fix: harden app command security handling Harden newly added app command paths and keep command-line behavior aligned with supported functionality. - restrict enc output files and SM key-store files to owner-only permissions - fail closed for explicitly configured CA files and enforce s_client host identity checks - keep TLS app mode TLS-only and require client certificates when server verification is enabled - validate SM key UUID inputs and preserve IPv4 split allocation bases during SAN parsing - apply stdin size limits, cast ctype inputs safely, and honor errdecode -hex parsing - reject unsupported GMAC/AES-WRAP/prime -safe command paths and update documentation - apply pkcs12 algorithm options and add focused SDV coverage for the fixed paths Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1422 | 1 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
New command line added Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/415 | 10 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
fix:Fixing some APP and AUTH bugs fix app and auth module bugs from ai report,mainly involves the erasure of sensitive information and a few other issues. Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1377 | 1 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
Fix app digest errors Co-authored-by: xuzhengyi<xuzhengyi1@h-partners.com> # message auto-generated for no-merge-commit merge: !891 merge FIX_BUG into main Fix app digest errors Created-by: libiaoliang Commit-by: xuzhengyi Merged-by: liwei3013 Description: Fix app digest errors See merge request: openHiTLS/openhitls!891 | 6 个月前 | |
feat(apps): refine enc command output and fixes Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1024 | 26 天前 | |
feat(apps): refine enc command output and fixes Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1024 | 26 天前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
fix: Standardize function naming and error handling in the apps module Co-authored-by: Ooohui<zhanghui160@huawei.com> # message auto-generated for no-merge-commit merge: !921 merge main into main fix: Standardize function naming and error handling in the apps module Created-by: Ooohui Commit-by: Ooohui Merged-by: liwei3013 Description: fix: Standardize function naming and error handling in the apps module See merge request: openHiTLS/openhitls!921 | 6 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
New command line added Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/415 | 10 个月前 | |
Remove libboundscheck (securec) dependency and harden sensitive data cleansing Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/1086 | 2 个月前 | |
App adds SM function. Cherry-picked from: https://gitcode.com/openHiTLS/openhitls/merge_requests/477 | 9 个月前 |