Network Security Services

Edit Package mozilla-nss

Network Security Services (NSS) is a set of libraries designed to
support cross-platform development of security-enabled server
applications. Applications built with NSS can support SSL v2 and v3,
TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509 v3
certificates, and other security standards.

Refresh
Refresh
Source Files
Filename Size Changed
add-relro-linker-option.patch 0000000433 433 Bytes
baselibs.conf 0000000319 319 Bytes
bmo-1400603.patch 0000012934 12.6 KB
cert9.db 0000009216 9 KB
key4.db 0000011264 11 KB
malloc.patch 0000000300 300 Bytes
mozilla-nss-rpmlintrc 0000000187 187 Bytes
mozilla-nss.changes 0000104963 103 KB
mozilla-nss.spec 0000012793 12.5 KB
nss-3.43.tar.gz 0023466026 22.4 MB
nss-config.in 0000002408 2.35 KB
nss-no-rpath.patch 0000001040 1.02 KB
nss-opt.patch 0000000739 739 Bytes
nss-sqlitename.patch 0000000891 891 Bytes
nss.pc.in 0000000250 250 Bytes
pkcs11.txt 0000000450 450 Bytes
setup-nsssysinit.sh 0000001255 1.23 KB
system-nspr.patch 0000000793 793 Bytes
Revision 144 (latest revision is 217)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 702840 from Wolfgang Rosenauer's avatar Wolfgang Rosenauer (wrosenauer) (revision 144)
- update to NSS 3.43
  * required by Firefox 67.0
  New functions
  * HASH_GetHashOidTagByHashType - convert type HASH_HashType to type SECOidTag
  * SSL_SendCertificateRequest - allow server to request post-handshake
    client authentication. To use this both peers need to enable the
    SSL_ENABLE_POST_HANDSHAKE_AUTH option. Note that while the mechanism
    is present, post-handshake authentication is currently not TLS 1.3
    compliant due to bug 1532312
  Notable changes
  * The following CA certificates were Added:
    - emSign Root CA - G1
    - emSign ECC Root CA - G3
    - emSign Root CA - C1
    - emSign ECC Root CA - C3
    - Hongkong Post Root CA 3
  Bugs fixed
  * Improve Gyp build system handling (bmo#1528669, bmo#1529308)
  * Improve NSS S/MIME tests for Thunderbird (bmo#1529950, bmo#1521174)
  * If Docker isn't installed, try running a local clang-format as a
    fallback (bmo#1530134)
  * Enable FIPS mode automatically if the system FIPS mode flag is set
    (bmo#1531267)
  * Add a -J option to the strsclnt command to specify sigschemes
    (bmo#1528262)
  * Add manual for nss-policy-check (bmo#1513909)
  * Fix a deref after a null check in SECKEY_SetPublicValue (bmo#1531074)
  * Properly handle ESNI with HRR (bmo#1517714)
  * Expose HKDF-Expand-Label with mechanism (bmo#1529813)
  * Align TLS 1.3 HKDF trace levels (bmo#1535122)
Comments 0
openSUSE Build Service is sponsored by