[openssl-dev] [openssl.org #4343] master: EC_KEY_priv2buf (): check parameter sanity

Daniel Kahn Gillmor dkg at fifthhorseman.net
Sun Feb 28 08:32:20 UTC 2016


On Fri 2016-02-26 18:04:43 +0100, Viktor Dukhovni <openssl-users at dukhovni.org> wrote:
> I'd like to propose a policy of no bug fixes to undocumented public
> interfaces.  If the interface is useful enough to fix, it has to be
> documented.

fwiw, i agree with Viktor on this proposal.  Clear, sane APIs require
documentation, and just writing up the documentation can sometimes spur
people to evaluate the functionality differently and look for bugs in
new ways.

If anyone understands a function well enough to fix bugs in it, you should
understand it well enough to write minimal documentation.

    --dkg


More information about the openssl-dev mailing list