summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
...
* Sync cert.pem with Mozilla NSS root CAs, except "GeoTrust Global CA", ok tb@sthen2021-02-121-659/+417
* A few more flag combo's to testotto2021-02-121-2/+14
* KNFtb2021-02-111-4/+7
* Walk over all results from getaddrinfo() instead of giving up after theclaudio2021-02-091-2/+1
* Update DTLS client hello due to ECC changes.jsing2021-02-081-5/+8
* Remove bogus DTLS checks to disable ECC and OCSP.jsing2021-02-082-10/+3
* Enforce read ahead with DTLS.jsing2021-02-081-5/+5
* Use dtls1_retrieve_buffered_record() to load buffered application data.jsing2021-02-081-11/+3
* Absorb ssl3_get_algorithm2() into ssl_get_handshake_evp_md().jsing2021-02-074-22/+19
* Correct handshake MAC/PRF for various TLSv1.2 cipher suites.jsing2021-02-071-8/+8
* Factor out the legacy stack version checks.jsing2021-02-074-28/+24
* Enable auto DHE and disable session tickets for some tests.jsing2021-02-071-12/+13
* Only hexdump packets/messages on higher debug levels.jsing2021-02-061-3/+4
* Test reads and writes between the client and server.jsing2021-02-061-3/+49
* Fail early in legacy exporter if master secret is not availabletb2021-02-031-1/+6
* Add OID for draft-ietf-opsawg-finding-geofeedsjob2021-02-032-0/+2
* Add a bunch of RPKI OIDsjob2021-02-022-1/+26
* Use "EC/RSA key setup failure" to align error with otherstb2021-02-011-3/+3
* missing word in commenttb2021-01-301-3/+3
* Remove direct assignment of aead_ctx.jsing2021-01-281-13/+7
* Move AEAD handling into the new TLSv1.2 record layer.jsing2021-01-284-134/+102
* wrap an overlong linetb2021-01-271-2/+3
* Link SSL_get_finished.3 to build.tb2021-01-271-1/+2
* Write SSL_get_finished() documentation from scratch.tb2021-01-271-0/+77
* Merge SSL_set_hostflags documentation from OpenSSL 1.1.1i andtb2021-01-271-3/+20
* Rewrap a comment line to fit into 80 columns.tb2021-01-261-3/+3
* zap a tabtb2021-01-261-2/+2
* Prepare to provide SSL_set_hostflags()tb2021-01-262-2/+9
* Move sequence numbers into the new TLSv1.2 record layer.jsing2021-01-267-84/+38
* Move private key setup to a helper function with proper erroreric2021-01-261-10/+47
* Avoid NULL deref on BIO_new{_mem_buf,}() failure.tb2021-01-222-7/+11
* when using fake keys, skip the private key checkeric2021-01-211-1/+2
* return -1 on error for consistencyeric2021-01-211-2/+2
* minor bump after symbol additioneric2021-01-211-1/+1
* Allow setting a keypair on a tls context without specifying the privateeric2021-01-214-26/+77
* Mop up unused dtls1_build_sequence_number() function.jsing2021-01-212-25/+2
* don't set AUTO_RETRY. it's a remnant of an experiment.tb2021-01-211-3/+1
* Drop unneeded cast in seal_record_protected_ciphertb2021-01-201-2/+2
* Add code to handle change of cipher state in the new TLSv1.2 record layer.jsing2021-01-195-17/+137
* Provide functions to determine if TLSv1.2 record protection is engaged.jsing2021-01-195-18/+37
* Provide record layer overhead for DTLS.jsing2021-01-193-17/+38
* Factor out code for explicit IV length, block size and MAC length.jsing2021-01-191-21/+77
* Prevent an overflow in inet_net_pton(3) when the passed in buffer isflorian2021-01-191-11/+18
* Clean up dtls1_reset_seq_numbers()jsing2021-01-131-10/+7
* Clean up read sequence handling in DTLS.jsing2021-01-131-19/+21
* Clean up sequence number handing in the new TLSv1.2 record layer.jsing2021-01-133-69/+89
* A few minor tweaks to make my OCD happy.tb2021-01-121-12/+9
* Split the record protection from the TLSv1.2 record layer.jsing2021-01-121-75/+101
* Print error if SSL_{connect,accept,shutdown}(3) don't run to completion.tb2021-01-111-3/+13
* Shut down the TLS connections properly.tb2021-01-111-3/+28