Page MenuHomeFreeBSD

dumpon: update OpenSSL initialization call

Authored by emaste on May 31 2023, 4:32 PM.
Referenced Files
Unknown Object (File)
Sat, Sep 30, 7:33 PM
Unknown Object (File)
Tue, Sep 19, 3:39 PM
Unknown Object (File)
Wed, Sep 6, 10:45 PM
Unknown Object (File)
Aug 25 2023, 8:21 AM
Unknown Object (File)
Aug 8 2023, 12:24 AM
Unknown Object (File)
Jul 31 2023, 10:11 PM
Unknown Object (File)
Jul 29 2023, 12:38 PM
Unknown Object (File)
Jul 16 2023, 11:04 PM


Test Plan
ERR_load_crypto_strings() was deprecated in OpenSSL 1.1.0, and explicit
initialization is generally not reqiured.  In the case of dumpon however
we need to initialize prior to entering capability mode, so replace with
an OPENSSL_init_crypto call.

Sponsored by:   The FreeBSD Foundation

Diff Detail

rG FreeBSD src repository
Lint Not Applicable
Tests Not Applicable

Event Timeline

emaste created this revision.
emaste added reviewers: ngie,

This is a minimal change to avoid calling the deprecated interface; @ngie's D40296 is the full update for dumpon.

emaste added a reviewer: def.
  • Incorporate D40355 (I mixed up the dumpon and decryptcore changes and thought I had already submitted D40353)
This revision is now accepted and ready to land.May 31 2023, 5:06 PM

Some of the comments I found elsewhere suggested this is unnecessary with OpenSSL 1.1+. Is this truly needed?

Is this truly needed?

For applications that enter capability mode I'm opting to err on the side of caution.

This revision was automatically updated to reflect the committed changes.