summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
...
* Avoid an out-of-bounds array access in the s_server.tb2020-05-231-1/+3
* Do not assume that server_group != 0 or tlsext_supportedgroups != NULLtb2020-05-232-9/+15
* sockaddr should be sockaddr_storage, otherwise "openssl s_client -6 -dtls1"deraadt2020-05-221-3/+4
* Ensure we only attach an ocsp staple to a leaf certificate, becausebeck2020-05-222-5/+16
* Simplify: transform a dangling else into an early return andtb2020-05-211-20/+20
* Make ssl_set_cert_masks() more consistent and closer to readable.jsing2020-05-211-44/+27
* Avoid a shadowing issue by renaming cbs and cbb to cbb_hs and cbb_hs,tb2020-05-211-8/+7
* A failure of tls13_handshake_msg_new() could lead to a NULL dereftb2020-05-211-11/+15
* beck fixed most of the keyupdate tests. update annotationtb2020-05-211-3/+8
* Actually set the hrr flag when sending a HelloRetryRequest.jsing2020-05-211-1/+3
* hook tlsfuzzer to regresstb2020-05-211-1/+2
* Add a harness that runs tests from tlsfuzzertb2020-05-212-0/+781
* Revert 1.43 - this fix for PHH in blocking mode breaks SSL_accept andbeck2020-05-201-2/+2
* new manual page for PKCS7_set_content(3) and PKCS7_content_new(3);schwarze2020-05-204-5/+127
* Replace SSL_PKEY_RSA_ENC/SSL_PKEY_RSA_SIGN with SSL_PKEY_RSA.jsing2020-05-198-46/+31
* Add -status and -servername test for s_server and s_client in appstest.shinoguchi2020-05-191-1/+3
* Add -groups test for s_server and s_client in appstest.shinoguchi2020-05-191-3/+17
* Only send ocsp staples if the client asked for ocsp certificate status.beck2020-05-191-1/+2
* Add support for TLS 1.3 server to send certificate statusbeck2020-05-195-15/+38
* Add client certificate test in appstest.shinoguchi2020-05-181-2/+89
* Rename variables for key, csr, pass, certinoguchi2020-05-181-85/+85
* Send alerts back correctly when handling key shares, includingbeck2020-05-171-8/+19
* Free handshake message correctly, noticed by tb@beck2020-05-171-2/+2
* As done everywhere else, use a local version of MINIMUM() and avoidderaadt2020-05-175-21/+21
* Send a decode error alert if a server provides an empty certificate list.jsing2020-05-171-2/+2
* Add GOST certificate test in appstest.shinoguchi2020-05-171-26/+107
* Suppress display output and reduce s_time to 1 sec in appstest.shinoguchi2020-05-171-28/+38
* Fix server client test with TLSv1.3 in appstest.shinoguchi2020-05-171-20/+27
* Return TLS13_IO_WANT_POLLIN after processing post-handshake messages.jsing2020-05-161-2/+2
* Ensure that a TLSv1.3 server has provided a certificate.jsing2020-05-161-1/+9
* Add TLS13_ERR_NO_CERTIFICATE.jsing2020-05-162-3/+7
* Avoid sending an empty certificate list from the TLSv1.3 server.jsing2020-05-161-5/+8
* document PKCS7_set_type(3);schwarze2020-05-163-3/+123
* Factor out session reuse test and verification testinoguchi2020-05-151-56/+74
* Factor out the test for all available ciphers and add TLSv1.3 caseinoguchi2020-05-151-46/+61
* Add ECDSA certificate test in appstest.shinoguchi2020-05-151-8/+71
* go fmt whitespace nittb2020-05-141-3/+3
* reinstate an error check that was commented out while waiting for armtb2020-05-141-5/+4
* move a #define after the last #include linetb2020-05-141-3/+3
* Skip protocol version message check in appstest.shinoguchi2020-05-141-10/+15
* Factor out the protocol version test in appstest.shinoguchi2020-05-141-49/+26
* Add TLS versioning tests.jsing2020-05-131-2/+96
* Fix pesky whitespace.jsing2020-05-131-2/+2
* Remove a no longer relevant XXX comment.jsing2020-05-131-3/+1
* Switch back to the legacy stack where the maximum is less than TLSv1.3.jsing2020-05-131-2/+2
* Switch the legacy version to TLS1_2_VERSION when processing server hello.jsing2020-05-131-2/+2
* Add description for -tls1_3 and -no_tls1_3 options to openssl(1) s_serverinoguchi2020-05-131-6/+8
* Add -tls1_3 and -no_tls1_3 options to openssl(1) s_serverinoguchi2020-05-131-6/+28
* there should only be one i in gratuitoustb2020-05-121-3/+3
* Revise regress for TLSv1.3 server being enabled.jsing2020-05-114-14/+17