7284eec11e
redbear-ci / check (push) Has been cancelled
kf6-kwallet's ksecretd daemon (the org.freedesktop.secrets Secret Service provider) requires Qca-qt6 2.3.1. Vendor QCA 2.3.10 under the full-fork model and build the gcrypt provider plugin (backed by the vendored libgcrypt) so QCA has a working SymmetricCipher/Hash/PBKDF2 backend on Redox. External-toolkit providers (ossl/nss/botan/gnupg/pkcs11/cyrus-sasl) are disabled — those libraries are not part of the Redox userland; logger + softstore (pure-Qt) are kept. Source edit: the top-level Qt6 find_package required the Test component unconditionally; gate it on BUILD_TESTS so a tools/tests-off build configures without Qt6Test. Install via DESTDIR since QCA anchors its install dirs to the absolute Qt prefix (/usr), which ignores cmake --install --prefix. Build libgpg-error + libgcrypt with --with-pic so their static archives can be linked into the qca-gcrypt shared plugin. Add qca to kf6-kwallet deps.
114 lines
4.1 KiB
Plaintext
114 lines
4.1 KiB
Plaintext
Qt Cryptographic Architecture (QCA)
|
|
-----------------------------------
|
|
|
|
Description
|
|
-----------
|
|
|
|
QCA is a library that provides an easy API for a range of cryptographic
|
|
features, including SSL/TLS, X.509 certificates, SASL, OpenPGP, smartcards,
|
|
and much more.
|
|
|
|
Functionality is supplied via plugins. This is useful for avoiding
|
|
dependence on a particular crypto library and makes upgrading easier,
|
|
as there is no need to recompile your application when adding or
|
|
upgrading a crypto plugin.
|
|
|
|
In order for QCA to be of much use, you'll want to install some plugins.
|
|
|
|
|
|
Install
|
|
-------
|
|
For installation or compiling instructions, see the INSTALL file.
|
|
|
|
|
|
License
|
|
-------
|
|
This library is licensed under the Lesser GNU General Public License. See
|
|
the COPYING file for more information.
|
|
|
|
|
|
History
|
|
-------
|
|
|
|
QCA was originally created to support the security needs of the
|
|
Psi XMPP/Jabber client project ( http://psi-im.org/ ).
|
|
|
|
|
|
Old Changes list
|
|
----------------
|
|
|
|
New in 2.1.0
|
|
- Ported to Qt5 (Qt4 also supported)
|
|
- New building system. CMake instead of qmake
|
|
- Added CTR symetric cipher support to qca core
|
|
- Added no padding encryption algorithm to qca core
|
|
- qcatool2 renamed to qcatool
|
|
- fixed crash in qcatool when only options provided on command line without any commands
|
|
- Use plugins installation path as hard-coded runtime plugins search path
|
|
- Added new functiion pluginPaths
|
|
- Added functions to get runtime QCA version
|
|
- Fixed 'no watch file' warnings in FileWatch
|
|
- Added EME_PKCS1v15_SSL Encryption Algorithm
|
|
- New implementation of SafeTimer to prevent crashes
|
|
- Updated certificates for unittests
|
|
- RSA Keys are permutable, can encrypt with private and decrypt with public
|
|
- Add unloadProvider() function for symmetry with insertProvider()
|
|
- Overloaded "makeKey" to derive a password depending on a time factor
|
|
- Remove pointer to deinit() routine from QCoreApplication at deinitialization
|
|
- Fix a couple of crashes where all plugins might not be available
|
|
- Fix operating on keys with unrelated expired subkeys
|
|
- Fixed timers in Synchronizer class
|
|
- Dropped randomunittest
|
|
- Fixed many unittests
|
|
- qca-gnupg: internal refactoring
|
|
- qca-gnupg: try both gpg and gpg2 to find gnupg executable
|
|
- qca-gnupg: fixed some encodings problem
|
|
- qca-ossl: no DSA_* dl groups in FIPS specification
|
|
- qca-ossl: added missed signatures to CRLContext
|
|
- qca-ossl: fixed certs time zone
|
|
- qca-nss: fixed KeyLenght for Cipher
|
|
- qca-botan: fixed getting result size for ciphers
|
|
|
|
New in 2.0.3
|
|
- Bugfix release, forward and backward compatible with 2.0.x
|
|
- Fix compilation when using Qt/Windows SDK
|
|
|
|
New in 2.0.2
|
|
- Bugfix release, forward and backward compatible with 2.0.x
|
|
- Fix compatibility with Qt 4.5 when QCA::Initializer appears before QApp
|
|
- Don't convert to secure memory when Hash::update(QByteArray) is used
|
|
- Use configure.exe instead of configwin.bat
|
|
|
|
New in 2.0.1
|
|
- Bugfix release, forward and backward compatible with 2.0.x
|
|
- Ability to build as a Mac framework (and build this way by default)
|
|
- On non-Mac Unix, the pkgconfig file is always qca2.pc, even in debug mode
|
|
- Certificates containing wildcards are now matched properly
|
|
- DirWatch/FileWatch now work
|
|
- Keystore writes now work
|
|
- Don't delete objects in their event handler (prevents Qt 4.4 warnings)
|
|
- Fix potential hang with TLS in server mode
|
|
- Windows version can be configured/installed using paths with spaces
|
|
|
|
|
|
Old Developer list
|
|
------------------
|
|
|
|
Project Lead/Maintainer (2003-2012):
|
|
Justin Karneges <justin@affinix.com>
|
|
(March 2007 - August 2007 under Barracuda Networks employment)
|
|
|
|
Development, Documentation, Unittests (2004-2009):
|
|
Brad Hards <bradh@frogmouth.net>
|
|
|
|
Development (2013-2017)
|
|
Ivan Romanov <drizt@land.ru>
|
|
|
|
Special Thanks:
|
|
Portugal Telecom (SAPO division), for sponsorship
|
|
Alon Bar-Lev, for smart card and design assistance
|
|
Jack Lloyd, for Botan and X.509 mentoring
|
|
L. Peter Deutsch, for the public domain MD5 implementation
|
|
Steve Reid, for the public domain SHA1 implementation
|
|
Jason Kim, for the CMS Signer graphics
|