| Commit message (Expand) | Author | Age | Files | Lines |
* | When building standalone, include stand.h rather than the kernel | Warner Losh | 2017-12-05 | 1 | -0/+2 |
* | We don't need both _STAND and _STANDALONE. There's more places that | Warner Losh | 2017-12-02 | 1 | -2/+2 |
* | sys/geom: adoption of SPDX licensing ID tags. | Pedro F. Giffuni | 2017-11-27 | 10 | -0/+20 |
* | Fix information leak in geli(8) integrity mode | Conrad Meyer | 2017-09-09 | 1 | -1/+9 |
* | Hide length of geli passphrase during boot. | Mariusz Zaborski | 2017-08-26 | 3 | -2/+41 |
* | Dump md_iterations as signed, which it really is. | Alexander Motin | 2017-04-21 | 1 | -1/+1 |
* | Always allow setting number of iterations for the first time. | Alexander Motin | 2017-04-21 | 1 | -1/+3 |
* | Implement boot-time encryption key passing (keybuf) | Allan Jude | 2017-04-01 | 2 | -94/+145 |
* | sys/geom/eli: Switch bzero() to explicit_bzero() for sensitive data | Allan Jude | 2017-03-31 | 3 | -60/+56 |
* | improve PBKDF2 performance | Allan Jude | 2017-02-19 | 3 | -28/+35 |
* | Fix alignment issues on MIPS: align the pointers properly. | Ruslan Bukin | 2016-10-31 | 2 | -3/+14 |
* | Removal of Giant droping wrappers for GEOM classes. | Konstantin Belousov | 2016-05-20 | 1 | -2/+0 |
* | Add support for managing Shingled Magnetic Recording (SMR) drives. | Kenneth D. Merry | 2016-05-19 | 1 | -0/+2 |
* | Add an EARLY_AP_STARTUP option to start APs earlier during boot. | John Baldwin | 2016-05-14 | 1 | -1/+3 |
* | Create the GELIBOOT GEOM_ELI flag | Allan Jude | 2016-04-08 | 3 | -1/+35 |
* | Make additional parts of sys/geom/eli more usable in userspace | Allan Jude | 2016-01-07 | 6 | -184/+251 |
* | Replace sys/crypto/sha2/sha2.c with lib/libmd/sha512c.c | Allan Jude | 2015-12-27 | 1 | -1/+2 |
* | Fix g_eli error loss conditions | Steven Hartland | 2015-11-05 | 1 | -9/+9 |
* | Enable BIO_DELETE passthru in GELI, so TRIM/UNMAP can work as expected when | Pawel Jakub Dawidek | 2015-08-08 | 3 | -35/+92 |
* | After crypto_dispatch() bio might be already delivered and destroyed, | Pawel Jakub Dawidek | 2015-08-06 | 2 | -14/+8 |
* | Spoil even can happen for some time now even on providers opened exclusively | Pawel Jakub Dawidek | 2015-07-10 | 1 | -3/+3 |
* | Properly propagate errors in metadata reading. | Pawel Jakub Dawidek | 2015-07-02 | 1 | -1/+4 |
* | Allow to omit keyfile number for the first keyfile. | Pawel Jakub Dawidek | 2015-07-02 | 1 | -0/+7 |
* | Add some new modes to OpenCrypto. These modes are AES-ICM (can be used | John-Mark Gurney | 2014-12-12 | 3 | -3/+3 |
* | Populate the GELI passphrase cache with the kern.geom.eli.passphrase | Colin Percival | 2014-10-22 | 1 | -0/+19 |
* | Cache GELI passphrases entered at the console during the boot process, | Colin Percival | 2014-09-16 | 1 | -7/+38 |
* | use a straight buffer instead of an iov w/ 1 segment... The aesni | John-Mark Gurney | 2014-09-04 | 3 | -56/+10 |
* | Pull in r267961 and r267973 again. Fix for issues reported will follow. | Hans Petter Selasky | 2014-06-28 | 2 | -13/+6 |
* | Revert r267961, r267973: | Glen Barber | 2014-06-27 | 2 | -6/+13 |
* | Extend the meaning of the CTLFLAG_TUN flag to automatically check if | Hans Petter Selasky | 2014-06-27 | 2 | -13/+6 |
* | - Fix the keyfile being cleared prematurely after r259428 | Brad Davis | 2014-06-06 | 1 | -1/+1 |
* | In g_eli_crypto_hmac_init(), zero out after using the ipad buffer, | Xin LI | 2014-02-08 | 1 | -0/+1 |
* | Clear some more places with potentially sensitive data. | Pawel Jakub Dawidek | 2013-12-15 | 1 | -0/+2 |
* | Clear content of keyfiles loaded by the loader after processing them. | Pawel Jakub Dawidek | 2013-12-15 | 1 | -0/+1 |
* | Add missing line breaks. | Andrey V. Elsukov | 2013-11-11 | 1 | -2/+2 |
* | When zero'ing out a buffer, make sure we are using right size. | Xin LI | 2013-11-02 | 1 | -4/+4 |
* | Make ELI destruction (including orphanization) less aggressive, making it | Alexander Motin | 2013-09-02 | 1 | -10/+12 |
* | Always initialize sc_ekey, because as of r238116 it is always used. | Pawel Jakub Dawidek | 2012-08-10 | 1 | -12/+13 |
* | Use correct part of the Master-Key for generating encryption keys. | Pawel Jakub Dawidek | 2012-07-04 | 4 | -6/+27 |
* | Correct comment. | Pawel Jakub Dawidek | 2012-07-04 | 1 | -1/+1 |
* | Correct a comment and correct style of a flag check. | Pawel Jakub Dawidek | 2012-07-04 | 1 | -2/+2 |
* | Add missing period at the end of the error message | Eitan Adler | 2012-05-13 | 1 | -2/+2 |
* | Clarify error that geli generates | Eitan Adler | 2012-05-09 | 1 | -3/+4 |
* | replace uses of libkern gets with cngets | Andriy Gapon | 2011-12-17 | 1 | -1/+2 |
* | Before this change when GELI detected hardware crypto acceleration it will | Pawel Jakub Dawidek | 2011-10-27 | 2 | -12/+5 |
* | Add support for creating GELI devices with older metadata version for use | Pawel Jakub Dawidek | 2011-10-25 | 2 | -5/+56 |
* | When decoding metadata, check magic string, so we know this is not GELI device | Pawel Jakub Dawidek | 2011-10-25 | 1 | -0/+2 |
* | Prefer G_ELI_VERSION_* defines for version numbers over plain digits. | Pawel Jakub Dawidek | 2011-10-25 | 1 | -3/+5 |
* | Fit lines into 80 chars. | Pawel Jakub Dawidek | 2011-10-25 | 1 | -4/+6 |
* | When metadata is at newer version than the highest supported, return | Pawel Jakub Dawidek | 2011-10-25 | 1 | -1/+1 |