Commit Graph

23 Commits

Author SHA256 Message Date
Dominique Leuenberger
b21715c33b Accepting request 1189604 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/1189604
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=11
2024-07-25 13:40:12 +00:00
e0c16f8f32 - Update to version 3.0.9
* Fix bash 5 issue when encountering a short server key extension
  * Fix HTML issue when using bash 5
  * CAA DNS records are now not being queried when nodns is set
  * MongoDB identification fix
  * Sanity check when user has broken umask to avoid runtime errors
  * Fix for newer grep versions
  * Address weird globbing in bash 3.0
  * Fix regexp in STARTTLS detection
  * Secure renegotiation fix: SNI
  * Ensure control chars from HTTP header don't end up in html,csv
    or json
  * Add sha1WithRSA to sha1WithRSAEncryption for certificates
  * Fix potential infinite loop in run_pfs()

OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=21
2024-07-25 11:46:35 +00:00
Ana Guerrero
cacf300d89 Accepting request 1151915 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/1151915
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=10
2024-02-27 21:47:32 +00:00
Martin Hauke
30262d7f04 Accepting request 1151452 from home:pgajdos:t
- Use %autosetup macro. Allows to eliminate the usage of deprecated
  %patchN

OBS-URL: https://build.opensuse.org/request/show/1151452
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=19
2024-02-26 18:25:20 +00:00
Richard Brown
03597bd0ab Accepting request 1007161 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/1007161
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=9
2022-09-30 15:58:27 +00:00
Martin Hauke
bb2edacdba Accepting request 1006790 from home:jfkw:branches:network:utilities
- Update to version 3.0.8
  * Fix grep 3.8 warnings on fgrep and unneeded escapes of hyphen, slash, space (Geert)
  * Fix alignment for cipher output (David)
  * News binaries (Darwin from Barry), carry now the appendix -bad and fixes a security problem.
  * Backport from higher OpenSSL version to support xmpp-server
  * Fix CT (David)
  * Fix decryption of TLS 1.3 response (David)
  * Upgrade Dockerfile to Alpine to 3.15
  * Fix pretty JSON formatting when warning is issued (David)
  * Update of certificate stores
  * Major update of client simulation (9 new simulations , >4 removed in default run)
  * Fix CRIME output on servers only supporting TLS 1.3 (Tomasz)
  * Fix censys link
  * Fix ome handshake problems w $OPENSSL ciphers, extend determine_optimal_sockets_params() to more
  * ciphers, fix PROTOS_OFFERED (David)
  * Relax STARTTLS FTP requirement so that it doesn't require TLS after AUTH
  * Fix run_server_preference() with no default protocol (David)
  * Fix getting CRL / NO_SESSION_ID under some circumstances (David)
  * Improve/fix OpenSSL 3.0 compatibility (David)
  * Fix formatting to documentation
  * Add FFDHE groups to supported_groups (David)
  * Include RSA-PSS in ClientHello (David)
- Requires: bind-utils for required tools dig, host and nslookup

OBS-URL: https://build.opensuse.org/request/show/1006790
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=17
2022-09-30 06:41:13 +00:00
Dominique Leuenberger
8c70a61222 Accepting request 999880 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/999880
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=8
2022-08-30 12:48:52 +00:00
dd0777158f Accepting request 994910 from home:jfkw:branches:network:utilities
- Update to version 3.0.7
  * Fix "ID resumption test failed" bug under Darwin
  * Fix "locale error message when en_US.UTF-8 isn't available" bug
  * Fix "Darwin / LibreSSL startup problem" which leads to a question upfront
  * Make upfront handshake tests more compatible by adding </dev/null
  * Take 'HTTP Age' HTTP header into account when determine HTTP time
  * Fix JSON header (structured JSON output) name
  * Robustness: Update reset_hostdepended_vars() for mass tests
  * Simplify determination of git stuff
  * Fix "newline to spaces" in JSON and CSV findings
  * Fix "Bad file descriptor with --connect-timeout option"
  * SSLv2 fixes, OpenSSL fixes 3.X
  * Improve cipher_pref_check() for detecting prioritization of ChaCha ciphers
  * Simplify + speed up pre-check
  * Addressing lame DNS responses on WSL
  * Fix big serial # issue in certs
  * Fix invalid JSON when certificate issuer containing non-ASCII chars

OBS-URL: https://build.opensuse.org/request/show/994910
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=15
2022-08-29 08:23:24 +00:00
Dominique Leuenberger
2e661f343f Accepting request 923654 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/923654
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=7
2021-10-07 22:06:02 +00:00
9dc148e9bb Accepting request 922880 from home:mnhauke
- Update to version 3.0.6
  * Bugfix: Remove DST x3 Root CA which lead to trust issues for
    servers using a Letsencrypt certificate (Miguel Jacq)
  * Bugfix: Newer openssl.cnf break detection of openssl binary
  * Documenation update to reflect renaming standard ciphers to
    cipher categories
  * Ignore usage of ~/.digrc where possible
  * Fixing host information in JSON output when using STARTTLS
    XMPP
  * TLS 1.3 improvements wrt server certificates
  * Bugfix: Order of -U --ids-friendly doesn't matter anymore
  * Disable ANSI codes when TERM=screen
  * Improved SSL/TLS port detection in nmap greppable files
    using as input to testssl.sh
  * Bugfix when nmap files had .txt extension
  * Display certficate time in UTC
  * Use _uname -n`` instead of hostname --> POSIX
  * Few output fixes

OBS-URL: https://build.opensuse.org/request/show/922880
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=14
2021-10-07 08:00:16 +00:00
Dominique Leuenberger
388396e908 Accepting request 892526 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/892526
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=6
2021-05-12 17:32:50 +00:00
Lars Vogdt
13124945dd Accepting request 892123 from home:mnhauke
- Update to version 3.0.5
  * Fix off by one error in HSTS (now: 180 instead of 179 days)
  * Fix minor output inconsistency in JSON output (Chad)
  * Improve compatibility for OpenSSL 3.0 (David Cooper)
  * Fix localization issue for ciphers where e.g. in Swedish W is
    being treated as a variant of V so that the W in
    TLS_ECDHE_RSA_WITH* didn't match the bash pattern
  * Fixes in file openssl-iana.mapping.html (Elfranne)
  * Fix quoting for CVE+JSON output in run_heartbleed()
  * Fix trailing dot issue in hostnames
  * Fix improper proper halving of the dates for Let's Encrypt
    certificates

OBS-URL: https://build.opensuse.org/request/show/892123
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=12
2021-05-12 15:05:05 +00:00
Dominique Leuenberger
3688bd7e97 Accepting request 851161 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/851161
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=5
2020-11-29 11:28:31 +00:00
Martin Hauke
a50a2f56c3 Accepting request 851098 from home:buschmann23:branches:network:utilities
- Update to version 3.0.4
  * This version is a quick fix for a regression of detecting SSLv2
    ciphers in a basic function.
- Update to version 3.0.3
  * Update certificate stores
  * manpage fix (Karl)
  * minor speedups for some vulnerability tests
  * bash 5.1 fix
  * Secure Client-Initiated Renegotiation false positive fix
  * BREACH is now medium
  * invalid JSON fix and other JSON improvements (David)
  * Adding native Android 7 handshake instead of Chrome which has
    TLS 1.3 (Christoph)
  * Header flag X-XSS-Protection is now labled as INFO
  * No cyan colors in HHHTP header flags anymore, colons added

OBS-URL: https://build.opensuse.org/request/show/851098
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=10
2020-11-26 19:39:27 +00:00
Dominique Leuenberger
a7dde1f96f Accepting request 822701 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/822701
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=4
2020-07-27 15:41:54 +00:00
Martin Hauke
09a7713ef9 Accepting request 822571 from home:buschmann23:branches:network:utilities
- Update to version 3.0.2
  * Remove potential licensing conflicts
  * Fix situations when TLS 1.3 is used for Ticketbleed check
  * Improved compatibility with LibreSSL 3.0
  * Add brotil compression to BREACH
  * Faster and more robust XMPP STARTTLS handshakes
  * More robust STARTTLS handshakes
  * Fix outputs, sometimes misleading

OBS-URL: https://build.opensuse.org/request/show/822571
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=8
2020-07-24 18:54:13 +00:00
Dominique Leuenberger
17afbd80fb Accepting request 795500 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/795500
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=3
2020-04-22 18:54:04 +00:00
7eb22d05a0 Accepting request 794132 from home:mnhauke
- Update to version 3.0.1
  * Fix hang in BEAST check when there are ciphers starting with
    SSL_* but which are no SSLv2 cipher
  * Fix bug in setting DISPLAY_CIPHERNAMES when
    $CIPHERS_BY_STRENGTH_FILE is not a/v.
  * Fix basic auth LF problem
  * Fix printing percent chars
  * Fix minor HTML generation bug
  * Fix security bug: sanitizing DNS input
  * make --ids-friendly work again
  * Update sneaky user agent
  * Update links in code comments
  * Cosmetic code updates
  * Fix output bug when >1 PTR records returned
  * More output fixes

OBS-URL: https://build.opensuse.org/request/show/794132
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=6
2020-04-19 12:36:06 +00:00
Dominique Leuenberger
ac04d71326 Accepting request 791270 from network:utilities
OBS-URL: https://build.opensuse.org/request/show/791270
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=2
2020-04-04 10:27:09 +00:00
Martin Hauke
0b160e9984 Accepting request 791269 from home:cboltz:branches:network:utilities
- fix bash path for Leap 15.x (where bash still is /bin/bash)

This was reported on the factory ML, and since it's an easy fix, I did this quick SR instead of recommending the bugzilla paperwork ;-)

Please also re-submit the updated package to Leap 15.2 - the current submission is blocked by the installcheck which (rightfully) complains that /usr/bin/bash doesn't exist in Leap 15.2

OBS-URL: https://build.opensuse.org/request/show/791269
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=4
2020-04-03 20:15:49 +00:00
Dominique Leuenberger
066ab4a932 Accepting request 766885 from network:utilities
I want to maintain testssl.sh in Factory

OBS-URL: https://build.opensuse.org/request/show/766885
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/testssl.sh?expand=0&rev=1
2020-01-28 09:54:26 +00:00
Martin Hauke
50b3ec7f29 Accepting request 766884 from home:mnhauke
fix name of the rpmlintrc file

OBS-URL: https://build.opensuse.org/request/show/766884
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=2
2020-01-24 12:36:16 +00:00
4eb0b0bf7a Accepting request 766707 from home:mnhauke:branches:home:buschmann23
Initial package for testssl.sh

OBS-URL: https://build.opensuse.org/request/show/766707
OBS-URL: https://build.opensuse.org/package/show/network:utilities/testssl.sh?expand=0&rev=1
2020-01-24 10:01:15 +00:00