2
0
mirror of https://github.com/mozilla/cipherscan.git synced 2026-02-05 22:55:15 +01:00

Commit Graph

  • d773b73e45 don't divide by zero on empty results folder Hubert Kario 2015-03-31 23:22:37 +02:00
  • b9b3a221ce add Firefox 35 cipher settings Hubert Kario 2015-03-31 21:52:52 +02:00
  • 82f643244e don't count export grade ciphers towards PFS Hubert Kario 2015-01-30 23:45:24 +01:00
  • 1b360153a0 sum servers that support SSL3 or TLS1 as the highest protocol Hubert Kario 2014-11-24 13:21:35 +01:00
  • 341f657e83 better detection for EXP and low grade ciphers in stats Hubert Kario 2014-11-11 03:05:54 +01:00
  • 8bde9c4d03 do fallback scan in case of problems Hubert Kario 2014-11-11 02:30:38 +01:00
  • 3bc8dc5583 one big readme update Julien Vehent 2015-04-03 10:59:22 -04:00
  • d4441cf2bc update sample output in readme to show curves Julien Vehent 2015-04-03 10:42:07 -04:00
  • 02d555bf9d update openssl binary for darwin Julien Vehent 2015-04-03 10:41:41 -04:00
  • 1a26e09c7b Merge pull request #54 from jvehent/jvehent-rework-tomato42-curves-tolerance-5 Julien Vehent 2015-04-02 09:50:46 -04:00
  • 4a6ff56b81 Add back support for old curve json format in parse results Julien Vehent 2015-04-02 04:39:59 -04:00
  • a966574edc Fix curve fallback detection Julien Vehent 2015-04-01 14:51:01 -04:00
  • b2a399617f Use new JSON format in parse_results Julien Vehent 2015-04-01 14:50:49 -04:00
  • 4d7e1cb05a Re-add curve fallback detection Julien Vehent 2015-04-01 12:50:01 -04:00
  • 04314bffdc Updated openssl linux amd64 binary Julien Vehent 2015-04-01 11:18:41 -04:00
  • c90e5c59d7 Improve output of curves Julien Vehent 2015-04-01 11:18:31 -04:00
  • cc014f085d test curve for each ECDH cipher, change PFS output to use curve name Julien Vehent 2015-03-27 19:03:27 -04:00
  • 224227cc5e force at least TLSv1.0 in curves tolerance test Hubert Kario 2014-11-07 02:21:29 +01:00
  • c52e008347 add support for testing supported curves Hubert Kario 2014-11-06 01:43:05 +01:00
  • 089f9e04c2 Merge pull request #50 from firstbanco/busybox_fix Julien Vehent 2015-03-26 12:58:48 -04:00
  • 800eff19ce Merge branch 'master' of github.com:jvehent/cipherscan Julien Vehent 2015-03-19 13:52:38 -04:00
  • 7bf35cb02a rebuild openssl binaries with better config flags Julien Vehent 2015-03-19 13:52:18 -04:00
  • 3ff415a338 Merge pull request #53 from tomato42/how-to-compile-2 Julien Vehent 2015-03-19 12:32:21 -04:00
  • 2f0f906dbf how to compile the openssl with all features Hubert Kario 2015-03-19 17:25:47 +01:00
  • 8b38f8fad9 Merge branch 'master' of github.com:jvehent/cipherscan Julien Vehent 2015-03-19 11:30:46 -04:00
  • aee4d8f109 Update openssl binary to 1.0.2a Julien Vehent 2015-03-19 11:30:07 -04:00
  • 6db82374b4 Fix for busybox timeout binary Samuel Kleiner 2015-03-13 11:58:23 +00:00
  • 606d7626db Merge pull request #44 from genodeftest/patch-1 Julien Vehent 2015-01-26 11:10:55 -05:00
  • 3e4b86eedd Merge pull request #47 from ScriptFanix/master Julien Vehent 2015-01-26 11:09:54 -05:00
  • 3915164430 Use custom darwin openssl bin in analyze.py Julien Vehent 2015-01-18 12:26:59 -05:00
  • 9ecc3f7164 New bash version info test using $BASH_VERSINFO Christian Stadelmann 2015-01-12 16:46:18 +01:00
  • d1a8604a2a fix silent TypeError on sigalg md5WithRSAEncryption Vincent Riquer 2015-01-10 03:51:26 +01:00
  • 54ec2aca99 fix: ignore case in bash version string Christian Stadelmann 2015-01-02 22:47:28 +01:00
  • a90fc8bc58 Merge pull request #43 from ScriptFanix/master Julien Vehent 2014-12-30 15:36:11 -05:00
  • b457951f5f don't expect openssl to be in cwd Vincent Riquer 2014-12-26 09:49:52 +01:00
  • ac15fc738d Update README.md Julien Vehent 2014-12-25 13:50:10 -05:00
  • 051f927fcd Merge branch 'master' of github.com:jvehent/cipherscan Julien Vehent 2014-12-25 13:26:04 -05:00
  • 904e311124 Fix OSX: require bash4, add openssl-darwin64 binary Julien Vehent 2014-12-25 13:25:29 -05:00
  • b04cbc6b85 Merge pull request #42 from ScriptFanix/master Julien Vehent 2014-12-25 12:34:34 -05:00
  • 4e74308c37 Merge pull request #41 from MikeDawg/master Julien Vehent 2014-12-25 12:27:35 -05:00
  • 008bd6af2b Merge pull request #38 from PeterMosmans/changeorder Julien Vehent 2014-12-25 12:15:11 -05:00
  • 726ef22552 Merge pull request #35 from PeterMosmans/openssl Julien Vehent 2014-12-25 12:11:01 -05:00
  • 2d030775c4 Merge pull request #36 from PeterMosmans/symlinks Julien Vehent 2014-12-25 12:08:00 -05:00
  • 0e7996181a Don't expect scripts to be in working directory Vincent Riquer 2014-12-24 11:26:24 +01:00
  • 983f85d2d4 --nagios: run as a nagios plugin Vincent Riquer 2014-12-23 14:51:50 +01:00
  • c019ecd493 Added usage print and exit if no options are given Mike 2014-12-17 13:06:06 -07:00
  • 81c1809463 corrected flow when number of ciphers was shown Peter Mosmans 2014-11-22 18:36:24 +10:00
  • 558bf7c9e2 Make sure that custom openssl gets selected Peter Mosmans 2014-11-14 10:49:16 +11:00
  • c71828dc09 Updated 64-bit OpenSSL binary (1.0.2 beta 4) Peter Mosmans 2014-11-11 17:46:23 +11:00
  • 818bf29b02 Merge pull request #33 from tomato42/cipherscan-fixes-3 Julien Vehent 2014-11-05 12:36:33 -05:00
  • c4a8495a54 limit number of forks needed to speed up execution Hubert Kario 2014-10-18 17:20:20 +02:00
  • 9f06829486 make handling of self signed certs more robust Hubert Kario 2014-08-04 17:22:53 +02:00
  • 4c22d50f0c few less forks in the script Hubert Kario 2014-07-12 14:54:33 +02:00
  • 0f576c1fbc don't calculate sha sums for the certificates over and over Hubert Kario 2014-07-12 14:17:52 +02:00
  • 1eae0cc71b use CApath for certificates and store certificates (v2) Hubert Kario 2014-10-11 14:15:59 +02:00
  • d9b718be12 clean up the extracted certificate Hubert Kario 2014-07-11 17:29:57 +02:00
  • 3e37517c96 add ability to also save leaf certificates and untrusted ones Hubert Kario 2014-10-11 15:18:48 +02:00
  • 826f7b5541 add caching of intermediate CA certificates Hubert Kario 2014-10-11 15:18:11 +02:00
  • 3b14cd914f no need to grep the input when we're using awk (v2) Hubert Kario 2014-10-11 13:42:48 +02:00
  • dca3457d5a Merge pull request #28 from tomato42/certificate-stats Julien Vehent 2014-11-03 22:15:44 -05:00
  • 5a6eaaac41 parse_CAs.c - implement error checking, remove magic numbers, compile fix Hubert Kario 2014-10-30 23:37:43 +01:00
  • aac3e9a9db parse_CAs.py - add few comments Hubert Kario 2014-10-30 01:41:46 +01:00
  • edab545f3e add Makefile for the C utility Hubert Kario 2014-10-30 01:33:58 +01:00
  • ebc6939299 Merge pull request #29 from tomato42/client-handshake-simulation Julien Vehent 2014-10-29 19:22:52 -04:00
  • 334c3118e2 Merge pull request #30 from tomato42/timeouts Julien Vehent 2014-10-29 17:34:18 -04:00
  • 11ce6187de small fixes for delay Hubert Kario 2014-10-28 16:44:43 +01:00
  • 71ba3c88b0 increase timeout Hubert Kario 2014-10-28 13:03:46 +01:00
  • 29c739faa9 count EDH-DES as PFS too in general stats Hubert Kario 2014-10-25 16:23:41 +02:00
  • af2e25ec89 fix EDH checking Hubert Kario 2014-10-25 16:11:18 +02:00
  • d11d5e9f36 update old and intermediate ciphersuites Julien Vehent 2014-10-18 08:31:53 -04:00
  • a17cfe373e make 2048 DHE key optional in intermediate level Julien Vehent 2014-10-18 08:20:00 -04:00
  • ebf4f8bcc7 fix ECC size in fubar pfs analysis Julien Vehent 2014-10-18 07:23:24 -04:00
  • 244e9ca9f2 refactor pfs evaluation in separate function Julien Vehent 2014-10-17 11:58:19 -04:00
  • ddfaa6722d display target level compliance in text output Julien Vehent 2014-10-17 11:58:05 -04:00
  • 551255f8b4 detect fubar dh parameters Julien Vehent 2014-10-17 11:20:25 -04:00
  • a4f573195e update intermediate ciphersuite to accept 3des Julien Vehent 2014-10-17 11:10:01 -04:00
  • df0b5d8d3f fix wrong failure flag Julien Vehent 2014-10-17 11:09:42 -04:00
  • a11b594ab4 Fix dhparam size detection in inter and modern levels Julien Vehent 2014-10-17 11:09:28 -04:00
  • 28c6c2488b Accept sha384 and sha512 signatures as well as sha256 Julien Vehent 2014-10-17 11:08:32 -04:00
  • 5b32afaa1f Add target to text output Julien Vehent 2014-10-17 10:48:59 -04:00
  • 76d791fcbe make cipher selection simulation generic Hubert Kario 2014-10-12 20:24:56 +02:00
  • c82bc44558 report cipher ordering in scanning stats, use it to simulate handshakes Hubert Kario 2014-07-01 00:01:32 +02:00
  • 42fa7d9ecb report what ciphers Firefox would select while connecting to server Hubert Kario 2014-06-30 21:34:56 +02:00
  • 1b4dcc4393 report ciphers causing incompatibility for Firefox Hubert Kario 2014-06-30 10:42:53 +02:00
  • 142726c4fd count ECDH-RSA ciphers as ECDSA Hubert Kario 2014-06-24 15:34:44 +02:00
  • ac18195b21 process-certificate-statistics.sh - the script HOWTO to turn results to CA stats Hubert Kario 2014-10-04 13:41:40 +02:00
  • 3cfd7b76cc collect statistics about found certificates Hubert Kario 2014-07-25 17:49:44 +02:00
  • 3699acfc2d helper application for finding cert chains Hubert Kario 2014-08-03 02:15:36 +02:00
  • 26c7b0e0d7 fix target level verification check Julien Vehent 2014-10-11 23:08:35 -04:00
  • a749742ff3 make sha-256 cert an optional requirement to the intermediate level Julien Vehent 2014-10-11 23:08:21 -04:00
  • b009c71321 add operator flag to analyze.py Julien Vehent 2014-10-11 20:52:18 -04:00
  • cdd34fce03 fix bug in status detection of analyze.py Julien Vehent 2014-10-11 20:45:14 -04:00
  • b846ac9d5b add json output to analyze.py via the -j flag Julien Vehent 2014-10-11 19:37:08 -04:00
  • 0da92f25b7 verify server side ordering is used in analyze.py Julien Vehent 2014-10-11 00:34:07 -04:00
  • 1c9d52c94c First shot at ordering analysis. Not yet perfect, but somewhat useful... Julien Vehent 2014-10-10 20:30:27 -04:00
  • a46e474337 add some fubar recommentations Julien Vehent 2014-10-10 19:07:31 -04:00
  • f4d0d598c7 analyze.py add option to give path to specific openssl Julien Vehent 2014-10-10 18:56:44 -04:00
  • 37f04054f8 fix json date to use UTC Julien Vehent 2014-10-10 18:16:22 -04:00
  • 86edd481f6 analyze.py uses provided openssl only on linux 64 Julien Vehent 2014-10-10 18:00:10 -04:00
  • 81ef37c593 gitignore update Julien Vehent 2014-10-10 17:31:44 -04:00