summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
...
* Add a unit test for tls1_PRF().jsing2017-03-102-1/+257
* Make tls1_PRF() non-static so it can be regress tested.jsing2017-03-101-2/+7
* The netcat server did not print the correct TLS error message ifbluhm2017-03-091-2/+2
* remove bogus variable expansioneric2017-03-092-4/+4
* missing includeeric2017-03-091-1/+2
* Correctly handle TLS PRF with MD5+SHA1 - the secret has to be partitionedjsing2017-03-071-5/+26
* Add a test that covers a libtls client talking to a Go TLS server withjsing2017-03-071-5/+107
* Allow ciphers to be set on the TLS config.jsing2017-03-071-0/+10
* Provide support for libtls protocols and allow for protocols to be set onjsing2017-03-071-3/+47
* Add handling for errors on the TLS config and properly check/handlejsing2017-03-072-6/+23
* libtls errors are much more descriptive these days - return them directlyjsing2017-03-071-9/+8
* We no longer need to keep pointers following tls_config_set_*() calls.jsing2017-03-071-6/+3
* Some tweaks from jmc@ and describe better what recallocarray does;otto2017-03-071-7/+16
* Use an unsigned loop variable to avoid a comparison between signedbluhm2017-03-061-1/+1
* Introducing recallocarray(3), a blend of calloc(3) and reallocarray(3)otto2017-03-063-7/+147
* size is unsigned so using ==0 not <=0 when checking for buffer exhaustionmillert2017-03-061-4/+4
* Pull in a change from the bind 8 resolver that fixes a potentialmillert2017-03-061-10/+16
* Clean up and simplify the tls1_PRF() implementation now that we have ajsing2017-03-061-48/+19
* Correctly convert an SSLv2 challenge into an SSLv3/TLS client random byjsing2017-03-051-9/+27
* Provide a rolling handshake hash that commences as soon as the cipherjsing2017-03-058-54/+193
* Convert various handshake message generation functions to CBB.jsing2017-03-054-56/+113
* Add an initial regress test that covers the server-side of libssl, byjsing2017-03-053-1/+220
* Drop the second argument of dtls1_set_message_header() and make it a voidjsing2017-03-043-13/+10
* Call ssl3_handshake_write() instead of ssl3_do_write() - this was missedjsing2017-03-041-2/+2
* Treat "ERROR in STARTUP" as an actual error, rather than failing withoutjsing2017-03-041-2/+2
* Remove commented out code and fix indentation of surrounding statements.jsing2017-03-041-12/+5
* Remove handling for SSLv2.jsing2017-03-041-14/+3
* Ensure MD and key initialized before processing HMACinoguchi2017-03-032-35/+224
* fix error in Dt; from robert kleinjmc2017-03-021-3/+3
* Convert ssl3_{get,send}_server_key_exchange() to EVP_md5_sha1().jsing2017-03-013-44/+29
* Add EVP test for MD5-SHA1.jsing2017-03-011-0/+3
* Include EVP_md5_sha1() via OpenSSL_add_all_digests().jsing2017-03-011-1/+2
* Bump minors due to symbol addition.jsing2017-02-283-3/+3
* Document EVP_md5_sha1().jsing2017-02-281-2/+11
* Add an EVP interface that provides concatenated MD5+SHA1 hashes, which arejsing2017-02-284-2/+88
* Fix typo in issuingDistributionPoint description.jsing2017-02-281-1/+1
* Stop pretending that MD5 and SHA1 might not exist - rather than locatingjsing2017-02-284-20/+8
* Add support for RES_USE_DNSSECjca2017-02-271-5/+2
* pledge stdio before parsing the http responsebeck2017-02-251-9/+11
* Add missing includes to avoid implicit function declarations.jsg2017-02-254-3/+7
* Add the following root CAs, from SECOM Trust Systems / Security Communicationsthen2017-02-241-1/+126
* Check return value of every BN_* functions in bntestinoguchi2017-02-231-393/+426
* Remove STREEBOG 512 as a TLS MAC since there are currently no cipher suitesjsing2017-02-212-26/+6
* don;t end Nd with a full stop;jmc2017-02-211-3/+3
* Add missing $OpenBSD$beck2017-02-201-0/+1
* Mark ERR_add_error_data and ERR_add_error_vdata as not for internal use,beck2017-02-205-14/+81
* spelling fix;jmc2017-02-201-2/+2
* document tls_config_error(3) RETURN VALUES, improve what is saidschwarze2017-02-202-6/+59
* Add EDNS0 support.jca2017-02-181-4/+3
* Avoid dereferencing a pointer when reporting an error about the samejsing2017-02-151-2/+2