Subject: CVS commit: pkgsrc/security/gnutls
From: Thomas Klausner
Date: 2014-01-16 11:14:09
Message id: 20140116101409.4115996@cvs.netbsd.org

Log Message:
Update to 3.2.8.1.

Changes in 3.2.8.1:
Note, that I've realized that this release has issues with the
assembly files in win32 and macosx systems. In these systems
use gnutls 3.2.8.1.

3.2.8:

* Version 3.2.8 (released 2013-12-20)

** libgnutls: Updated code for AES-NI. That prevents an uninitialized
variable complaint from valgrind.

** libgnutls: Enforce a maximum size for DH primes.

** libgnutls: Added SSSE3 optimized SHA1, and SHA256, using Andy Polyakov's
code.

** libgnutls: Added SSSE3 optimized AES using Mike Hamburg's code.

** libgnutls: It only links to librt if the required functions are
not present in libc. This also prevents an indirect linking to libpthread.

** libgnutls: Fixed issue with gnulib strerror replacement by adding
the strerror gnulib module.

** libgnutls: The time provided in the TLS random values is only precise
on its first 3 bytes. That prevents leakage of the precise system
time (at least on the client side when only few connections are
done on a single server).

** certtool: The --verify option will use the system CAs if the
load-ca-certificate option is not provided.

** configure: Added option --with-default-blacklist-file to allow
specifying a certificate blacklist file.

** configure: Added --disable-non-suiteb-curves option. This option
restricts the supported curves to SuiteB curves.

** API and ABI modifications:
gnutls_record_check_corked: Added

Files:
RevisionActionfile
1.137modifypkgsrc/security/gnutls/Makefile
1.50modifypkgsrc/security/gnutls/PLIST
1.101modifypkgsrc/security/gnutls/distinfo
1.3modifypkgsrc/security/gnutls/libgnutls-config.mk
1.1addpkgsrc/security/gnutls/patches/patch-tests_Makefile.in
1.1addpkgsrc/security/gnutls/patches/patch-tests_openpgp-certs_Makefile.in
1.1removepkgsrc/security/gnutls/patches/patch-configure
1.2removepkgsrc/security/gnutls/patches/patch-lib_nettle_egd.c