[Help-gnutls] GnuTLS 1.7.9

Simon Josefsson simon at josefsson.org
Sat May 12 15:43:08 CEST 2007


I'm posting this announcement of a development version here because I
can't post to gnutls-dev at gnupg.org right now (it rejects messages sent
From hosts with no reverse-DNS information).  Note that the GnuTLS 1.7.x
branch is NOT what you want for your stable system.  It is intended for
developers and experienced users.

* Version 1.7.9 (released 2007-05-12)

** X.509 certificates are preferred over OpenPGP keys.
This is a change in the semantics of gnutls_set_default_priority.

** The included copy of OpenCDK has been updated to 0.6.1.
There has been some API changes in OpenCDK, and the GnuTLS layer have
been modified as well.  Note that while there are API/ABI incompatible
changes in OpenCDK, this does not influence GnuTLS's API/ABI because
its API/ABI have not changed.  From this version on, GnuTLS requires
OpenCDK 0.6.0 or later.

** Fix build failure caused by missing doc/gnutls-logo.pdf.

** Change certtool's default serial number from 0 to a time-based value.

** Fix X.509 signing with RSA-PKCS#1 to set a NULL parameters fields.
Before, we remove the parameters field, which resulted in a slightly
different DER encoding which in turn caused signature verification
failures of GnuTLS-generated RSA certificates in some other
implementations (e.g., GnuPG 2.x's gpgsm).  Depending on which RFCs
you read, this may or may not be correct, but our new behaviour appear
to be consistent with other widely used implementations.

** Fix mem leaks in gnutls_x509_crt_print.

** API and ABI modifications:
No changes since last version.

Here are the compressed sources (4.3MB):
  ftp://ftp.gnutls.org/pub/gnutls/gnutls-1.7.9.tar.bz2
  http://josefsson.org/gnutls/releases/gnutls-1.7.9.tar.bz2

Here are GPG detached signatures signed using key 0xB565716F:
  ftp://ftp.gnutls.org/pub/gnutls/gnutls-1.7.9.tar.bz2.sig
  http://josefsson.org/gnutls/releases/gnutls-1.7.9.tar.bz2.sig

Here are the SHA-1 and SHA-224 checksums:

fb54ad79207cf859b823d9fdf51e1d31d22a7d93  gnutls-1.7.9.tar.bz2
ca57b5f46869983f240f9866f6c2149ee51fb88c  gnutls-1.7.9.tar.bz2.sig

070cf68633cb8c5445c3448e5b47b753ebc12ea4c11a13a09e46e6c2  gnutls-1.7.9.tar.bz2
dd6542ee03a29a96cff54d46c167c7c265c154e2be3ba2f1ff017853  gnutls-1.7.9.tar.bz2.sig

Improving GnuTLS is costly, but you can help!  We are looking for
organizations that find GnuTLS useful and wish to contribute back.
You can contribute by reporting bugs, improve the software, or donate
money or equipment.

Commercial support contracts for GnuTLS are available, and they help
finance continued maintenance.  Simon Josefsson Datakonsult, a
Stockholm based privately held company, is currently funding GnuTLS
maintenance.  We are always looking for interesting development
projects.  See http://josefsson.org/ for more details.

/Simon
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 419 bytes
Desc: not available
URL: </pipermail/attachments/20070512/f1ade6eb/attachment.pgp>


More information about the Gnutls-help mailing list