pgsql: Change SHA2 implementation based on OpenSSL to use EVP digest ro - Mailing list pgsql-committers

From Michael Paquier
Subject pgsql: Change SHA2 implementation based on OpenSSL to use EVP digest ro
Date
Msg-id E1kMk96-0008Gm-7c@gemulon.postgresql.org
Whole thread Raw
List pgsql-committers
Change SHA2 implementation based on OpenSSL to use EVP digest routines

The use of low-level hash routines is not recommended by upstream
OpenSSL since 2000, and pgcrypto already switched to EVP as of 5ff4a67.
Note that this also fixes a failure with SCRAM authentication when using
FIPS in OpenSSL, but as there have been few complaints about this
problem and as this causes an ABI breakage, no backpatch is done.

Author: Michael Paquier, Alessandro Gherardi
Reviewed-by: Daniel Gustafsson
Discussion: https://postgr.es/m/20200924025314.GE7405@paquier.xyz
Discussion: https://postgr.es/m/20180911030250.GA27115@paquier.xyz

Branch
------
master

Details
-------
https://git.postgresql.org/pg/commitdiff/e21cbb4b893b85b5f1cf203b9a77ca0d9ee671d1

Modified Files
--------------
src/common/sha2_openssl.c | 63 ++++++++++++++++++++++++++++++++++++-----------
src/include/common/sha2.h | 10 ++++----
2 files changed, 54 insertions(+), 19 deletions(-)


pgsql-committers by date:

Previous
From: Tom Lane
Date:
Subject: pgsql: Minor mop-up for List improvements.
Next
From: Tom Lane
Date:
Subject: pgsql: Cache the result of converting now() to a struct pg_tm.