1
0
mirror of https://github.com/openbsd/src.git synced 2024-12-21 23:18:00 -08:00
openbsd-src/lib/libkeynote
2024-10-22 22:33:06 +00:00
..
Misc
testsuite
assertion.h remove prototypes with no matching function 2024-05-21 11:13:08 +00:00
auxil.c libkeynote: fix build with opaque RSA and DSA 2022-01-14 09:08:03 +00:00
base64.c remove duplicate rcs id 2024-10-22 22:33:06 +00:00
environment.c remove a few NULL-checks before free() 2015-12-23 20:28:15 +00:00
header.h Move sessid definition to keynote-verify.c to avoid issues with -fno-common 2021-01-18 00:53:20 +00:00
HOWTO.add.crypto
keynote-keygen.c libkeynote: use DSA_generate_parameters_ex() 2024-02-07 17:22:01 +00:00
keynote-main.c
keynote-sign.c For open/openat, if the flags parameter does not contain O_CREAT, the 2021-10-24 21:24:15 +00:00
keynote-sigver.c For open/openat, if the flags parameter does not contain O_CREAT, the 2021-10-24 21:24:15 +00:00
keynote-ver.l Add %option noinput to suppress an unused function warning. 2017-08-28 17:07:19 +00:00
keynote-ver.y
keynote-verify.c For open/openat, if the flags parameter does not contain O_CREAT, the 2021-10-24 21:24:15 +00:00
keynote.1 prefer https links in man pages 2022-02-18 10:24:32 +00:00
keynote.3 prefer https links in man pages 2022-02-18 10:24:32 +00:00
keynote.4 man pages: add missing commas between subordinate and main clauses 2022-03-31 17:27:13 +00:00
keynote.5 prefer https links in man pages 2022-02-18 10:24:32 +00:00
keynote.h
keynote.l Add %option noinput to suppress an unused function warning. 2017-08-28 17:07:19 +00:00
keynote.y spelling fixes; from paul tagliamonte 2022-12-27 17:10:05 +00:00
LICENSE
Makefile repair the tree, make sure y.tab.h is there before compiling yacc files. 2017-07-02 18:11:28 +00:00
parse_assertion.c spelling fixes; from paul tagliamonte 2022-12-27 17:10:05 +00:00
README
sample-app.c
signature.c Passing preallocated keys to d2i_RSAPublicKey() does not work anymore 2022-11-30 10:40:23 +00:00
signature.h

# $OpenBSD: README,v 1.10 2000/09/26 23:28:45 angelos Exp $

This is release 2.3 of the KeyNote trust management library reference
implementation (in case you are wondering, there was never an official 1.0
release).

For details on the KeyNote spec, read RFC 2704, included in this distribution
(in the doc/ directory).

To build the distribution, just type "./configure" and then "make" or
"make crypt". To test the distribution, type "make test". The query should
evaluate to "true" (look at the last line of output). To build without
crypto support, use "make nocrypto" instead (you still need to run
"configure"). If you have built crypto support, "make test-sig" will run
some more tests on the cryptographic algorithms.

A sample application is provided in sample-app.c. To build it, use
"make test-sample".

Compile tips:
- You need the SSLeay/OpenSSL library if you compile with crypto
  (default), version 0.8.1b or later.  OpenSSL can be found at:
	   http://www.openssl.org/

The Makefile creates the libkeynote.a library and the keynote program.
*** Notice that the 4 programs of previous releases have been folded into one

There is a man page for the library calls (keynote.3) and one for the command
line tool (keynote.1), in the man/ directory. There is also a man page
about KeyNote itself (keynote.4) and one about assertion syntax
(keynote.5) which contain some text from the spec.

To view them, use:

  nroff -mandoc keynote.1 | more
  nroff -mandoc keynote.3 | more
  nroff -mandoc keynote.4 | more
  nroff -mandoc keynote.5 | more

Alternatively, you can just install them in your manpath. If your
nroff does not support the -mandoc flag, use -man instead. For those
systems that do not have nroff, the text version of the man pages are
provided as well (the files with .cat? suffixes in the same directory).

The "keynote verify" function can be used to verify a request, given a
set of assertions and an environment file. The directory testsuite/
has some examples assertions. The "keynote keygen" function can
be used to generate keys. The "keynote sign" and "keynote sigver" can be
used to sign assertions, and verify signed assertions respectively.

The file base64.c was taken from the OpenBSD libc and was slightly
modified.

Read the TODO file to see what's missing (and eventually coming).

When in doubt on how to use a library call (despite the man pages),
consult the implementation of the various utilities.

For any questions, comments, bug reports, praise, or anything else,
contact us at keynote@research.att.com

There is also a users mailing list at keynote-users@nsa.research.att.com
To subscribe, send a message to majordomo@nsa.research.att.com with the word
"subscribe keynote-users" (without the quotes) in the message body.

Finally, there is a web page for KeyNote at
  http://www.cis.upenn.edu/~keynote

Angelos D. Keromytis