<feed xmlns='http://www.w3.org/2005/Atom'>
<title>efi-boot-shim.git/PasswordCrypt.c, branch Release_3.0.0</title>
<subtitle> (mirror of https://github.com/vyos/efi-boot-shim.git)
</subtitle>
<id>https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=Release_3.0.0</id>
<link rel='self' href='https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=Release_3.0.0'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/'/>
<updated>2014-04-11T18:41:22+00:00</updated>
<entry>
<title>additional bounds-checking on section sizes</title>
<updated>2014-04-11T18:41:22+00:00</updated>
<author>
<name>Kees Cook</name>
<email>kees@outflux.net</email>
</author>
<published>2012-12-03T23:52:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=5495694c043de510aaf8ff5dcbe17b6547794083'/>
<id>urn:sha1:5495694c043de510aaf8ff5dcbe17b6547794083</id>
<content type='text'>
This adds additional bounds-checking on the section sizes. Also adds
-Wsign-compare to the Makefile and replaces some signed variables with
unsigned counteparts for robustness.

Signed-off-by: Kees Cook &lt;kees@ubuntu.com&gt;
</content>
</entry>
<entry>
<title>Revert "additional bounds-checking on section sizes"</title>
<updated>2013-10-23T14:50:36+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-23T14:50:36+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=56fb385a172890cf4c20c9daa89bb6cccf9c1b4e'/>
<id>urn:sha1:56fb385a172890cf4c20c9daa89bb6cccf9c1b4e</id>
<content type='text'>
This reverts commit 21e40f0174814b3d91836e38c7cf95c8f2f1f3a4.

In principle I like the idea of what's going on here, but
generate_hash() really does need to have the expected result.
</content>
</entry>
<entry>
<title>additional bounds-checking on section sizes</title>
<updated>2013-10-22T15:23:51+00:00</updated>
<author>
<name>Kees Cook</name>
<email>kees@outflux.net</email>
</author>
<published>2012-12-03T23:52:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=21e40f0174814b3d91836e38c7cf95c8f2f1f3a4'/>
<id>urn:sha1:21e40f0174814b3d91836e38c7cf95c8f2f1f3a4</id>
<content type='text'>
This adds additional bounds-checking on the section sizes. Also adds
-Wsign-compare to the Makefile and replaces some signed variables with
unsigned counteparts for robustness.

Signed-off-by: Kees Cook &lt;kees@ubuntu.com&gt;
</content>
</entry>
<entry>
<title>MokManager: support Tradition DES hash</title>
<updated>2013-09-26T15:58:01+00:00</updated>
<author>
<name>Gary Ching-Pang Lin</name>
<email>glin@suse.com</email>
</author>
<published>2013-01-29T09:10:10+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=be9108a8b9c0433ad1f7a94fd5f8b1a92f4281d0'/>
<id>urn:sha1:be9108a8b9c0433ad1f7a94fd5f8b1a92f4281d0</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MokManager: support MD5-based crypt() hash</title>
<updated>2013-09-26T15:58:01+00:00</updated>
<author>
<name>Gary Ching-Pang Lin</name>
<email>glin@suse.com</email>
</author>
<published>2013-01-29T04:09:34+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=09f6afbe72d662240931564259ffac53b8f12766'/>
<id>urn:sha1:09f6afbe72d662240931564259ffac53b8f12766</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MokManager: support blowfish-based crypt() hash</title>
<updated>2013-09-26T15:58:01+00:00</updated>
<author>
<name>Gary Ching-Pang Lin</name>
<email>glin@suse.com</email>
</author>
<published>2013-05-17T07:10:57+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=83d1c30608d9a7b17763d87327a09810e07b5393'/>
<id>urn:sha1:83d1c30608d9a7b17763d87327a09810e07b5393</id>
<content type='text'>
Conflicts:
	Makefile
</content>
</entry>
<entry>
<title>MokManager: support SHA512-based crypt() hash</title>
<updated>2013-09-26T15:58:01+00:00</updated>
<author>
<name>Gary Ching-Pang Lin</name>
<email>glin@suse.com</email>
</author>
<published>2013-01-24T10:24:49+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=9b41d26597e03af91de22b84c13d82a350d877ec'/>
<id>urn:sha1:9b41d26597e03af91de22b84c13d82a350d877ec</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MokManager: support crypt() password hash</title>
<updated>2013-09-26T15:58:01+00:00</updated>
<author>
<name>Gary Ching-Pang Lin</name>
<email>glin@suse.com</email>
</author>
<published>2013-01-15T10:01:41+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=afb61e79027d2a5de9edfcab8de163609894f930'/>
<id>urn:sha1:afb61e79027d2a5de9edfcab8de163609894f930</id>
<content type='text'>
The password format is introduced for the password hash generated by crypt(),
so that the user can import the password hash from /etc/shadow. The packager,
especially those who packages 3rd party drivers, can utilize this feature to
import a 3rd party certificate without interfering the package installation.

This commit implements the sha256-based crypt() hash function.

Conflicts:
	Makefile
	MokManager.c
</content>
</entry>
</feed>
