summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
* Add Copyright and license.schwarze2016-12-011-134/+81
| | | | | | | | | | | | Delete explanation of SSL_OP_SINGLE_DH_USE, it is always on now. Delete explanation of obsolete option SSL_OP_EPHEMERAL_RSA. Delete various SSLv2 and SSLv3 remnants. Delete excessive verbiage detailing each obsolete option individually; instead, provide one concise list of obsolete options. Delete HISTORY of individual options; it was incomplete anyway and is not important enough to warrant so much bloat. Garbage collect two useless cross references.
* Add Copyright and license.schwarze2016-12-011-7/+50
| | | | | Delete a sentence explaining exploit mitigation countermeasures that have long been removed.
* Copyright and licenseschwarze2016-12-012-5/+99
|
* various cleanup;jmc2016-11-304-29/+21
|
* Add Copyright and license.schwarze2016-11-301-11/+73
| | | | | Correct prototypes. Drop the useless statement that a void function does not return a value.
* Add Copyright and license.schwarze2016-11-301-35/+58
| | | | | Add markup for the declaration of GEN_SESSION_CB. Garbage collect some remnants of SSLv2 and SSLv3.
* Add Copyright and license.schwarze2016-11-301-21/+60
| | | | | | Fix the declaration of pem_password_cb. Simplify wording, mostly from OpenSSL. Garbage collect the empty RETURN VALUES section.
* Copyright and license.schwarze2016-11-302-12/+101
|
* Add Copyright and license.schwarze2016-11-301-10/+51
| | | | | Stop talking about export ciphers. Remove two irrelevant cross references.
* Add Copyright and license.schwarze2016-11-301-19/+66
| | | | | Rename WARNINGS to CAVEATS and RETURN VALUES to BUGS, the latter from OpenSSL.
* Add Copyright and license.schwarze2016-11-301-7/+51
| | | | Remove the useless statement that a void function does not return a value.
* import SSL_CTX_set_alpn_select_cb(3) from OpenSSLschwarze2016-11-302-1/+266
|
* Copyright and licenseschwarze2016-11-302-6/+101
|
* Add Copyright and license.schwarze2016-11-301-6/+53
| | | | | Correct the description of what happens when the session cache is full, from OpenSSL.
* Add Copyright and license.schwarze2016-11-301-6/+49
| | | | Garbarge collect empty RETURN VALUES section.
* Purge some SSLv2 and SSLv3 stuff that no longer exists.schwarze2016-11-301-57/+11
|
* Add Copyright and license.schwarze2016-11-301-54/+164
| | | | | | | | | Remove the last traces of SSLv3. Add TLS_method(3), TLSv1_2_method(3), DTLSv1_method(3) and friends. Add missing prototypes to the SYNOPSIS. Merge additional information from OpenSSL. Simplify description of TLSv1_method(3) and SSLv23_method(3), from OpenSSL. Some additional minor fixes.
* Add Copyright and license.schwarze2016-11-301-14/+85
| | | | | | | Merge SSL_CTX_set_default_verify_paths(3) documentation from OpenSSL, but do not talk about environment variables, which LibreSSL does not appear to support, judging from the source code. Rename WARNINGS section to CAVEATS.
* Add Copyright and license.schwarze2016-11-301-5/+49
| | | | Garbage collect empty RETURN VALUES section.
* Import the relevant parts of SSL_CTX_get0_param(3) from OpenSSL.schwarze2016-11-302-1/+90
| | | | Call it SSL_set1_param(3) since we don't have these get0 functions.
* Copyright and licenseschwarze2016-11-302-4/+99
|
* Add Copyright and license.schwarze2016-11-301-5/+49
| | | | Garbage collect empty RETURN VALUES section.
* Add Copyright and license.schwarze2016-11-301-4/+51
| | | | Correct two typos while here.
* Add Copyright and license.schwarze2016-11-301-15/+84
| | | | | | | Lots of improvements from OpenSSL: Document SSL_CTX_clear_extra_chain_certs(3). Correct SSL_CTX_add_extra_chain_cert(3) first argument type. Add some new information and improve wording.
* Check return value of tls_config_set_protocols(3) and tls_config_set_ciphers(3)mestre2016-11-301-3/+6
| | | | | | and bail out in case of failure Feedback and OK jsing@
* tweak previous;jmc2016-11-293-14/+12
|
* Replace all of the text by a deprecation notice:schwarze2016-11-291-49/+29
| | | | | | | LibreSSL was decompressed long ago. Mention SSL_COMP_get_compression_methods(3) which is both available in our public interface and documented by OpenSSL.
* Add Copyright and license.schwarze2016-11-291-67/+99
| | | | | | | SSLv2 and export ciphers are no longer supported, delete related text. Sync SSL_CIPHER_description(3) return values with the source code. Wording simplifications from OpenSSL. Delete empty RETURN VALUES section.
* seperate these descriptions into seperate files to reduce confusion.deraadt2016-11-294-94/+128
| | | | | discussed with jsing ok schwarze
* Copyright and licenseschwarze2016-11-292-4/+101
|
* Add Copyright and license.schwarze2016-11-291-13/+180
| | | | | | | | | | | Merge SHA2 documentation from OpenSSL. Fix the data type of the "n" argument of SHA1(3) and the return type of SHA1_Update(3). Merge a note about thread safety from OpenSSL. We have two competing implementations of SHA2 in base: in lib/libc/hash and in lib/libcrypto. Both are now documented in their proper manual page.
* Copyright and licenseschwarze2016-11-299-18/+453
|
* Add Copyright and license.schwarze2016-11-291-14/+54
| | | | | | | | Merge various improvements from OpenSSL: Clarify a reference to a standard. Stop advertising ancient hash functions. Remove incorrect statements about error return values. Delete a cross reference to the non-existent page objects(3).
* Add Copyright and license.schwarze2016-11-291-2/+55
| | | | Mention that RSA_free(3) accepts NULL.
* Add Copyright, license, and very minor improvements from OpenSSL.schwarze2016-11-292-8/+107
|
* Copyright and licenseschwarze2016-11-292-4/+100
|
* minor cleanup;jmc2016-11-295-15/+15
|
* Add Copyright and license.schwarze2016-11-291-10/+58
| | | | | Adjust RETURN VALUES to match reality. Delete the useless SEE ALSO section.
* Add Copyright and license.schwarze2016-11-291-5/+56
| | | | | Add deprecation notice. Delete useless cross references.
* No text remains from OpenSSL, so use the standard OpenBSD license.schwarze2016-11-294-28/+48
| | | | | | | | Mention the true author (Miod 2014). Merge the useless page RAND_cleanup(3) into RAND_add(3). Fix the return type of RAND_set_rand_method(3). Mention the constant return values.
* Copyright and licenseschwarze2016-11-286-13/+305
|
* import PKCS12_newpass(3) from OpenSSLschwarze2016-11-282-1/+157
|
* Copyright and licenseschwarze2016-11-282-4/+100
|
* Add Copyright and license.schwarze2016-11-281-21/+295
| | | | | | | | | | Merge the documentation of six additional functions from OpenSSL. There are some differences between OpenSSL and LibreSSL, for example we don't have CRYPTO_free_ex_index(), CRYPTO_EX_INDEX_EC_KEY, and CRYPTO_EX_INDEX_APP. I hope i got the differences right. "if you don;t get any feedback promptly i say just go ahead" jmc@
* Add Copyright and license.schwarze2016-11-281-3/+50
| | | | Remove one needless #include from the SYNOPSIS (from OpenSSL).
* For unknown reasons, this summer, OpenSSL added an additional manualschwarze2016-11-281-2/+235
| | | | | | | | | | | | | | | | | page PEM_read_CMS(3) to document a bunch of functions unrelated among themselves, but very similar to those documented here. Information in that page is scantier than for the functions documented here - and besides, it is mostly wrong. Looks like they lost their way in the vast forest of functions they autogenerated with chains of macros... Document those functions documented there which are relevant to us in the present page instead, and with correct prototypes. Given that i know too little about PEM formats, information about semantics is almost certainly incomplete, but at least better than what OpenSSL provides. While here, add Copyright and license.
* The OpenSSL file doc/man3/PEM_read_CMS.pod contains parts belongingschwarze2016-11-282-1/+137
| | | | | to libcrypto and parts belonging to libssl. Extract the parts relevant for our libssl and import them with some tweaks.
* import from OpenSSL with minor tweaksschwarze2016-11-282-1/+284
|
* Copyright and licenseschwarze2016-11-281-2/+50
|
* Document and discourage those wrappers that we have and that OpenSSLschwarze2016-11-282-1/+174
| | | | | | | | documents, too. There are many additional undocumented ones in our public OpenSSL headers, but advertising those would be a bad idea. Nothing of the text from OPENSSL_malloc.pod remains, so use my own Copyright and license.