| Commit message (Expand) | Author | Age | Files | Lines |
* | Move to an AEAD nonce allocated in the TLSv1.2 record layer. | jsing | 2021-08-30 | 1 | -45/+36 |
* | sync with OpenSSL 1.1.1, which is still under a free license; | schwarze | 2021-08-30 | 1 | -15/+107 |
* | Remove tests that are now covered by regress/lib/libssl/verify | tb | 2021-08-30 | 1 | -65/+2 |
* | hook verify regress test to build | tb | 2021-08-30 | 1 | -1/+2 |
* | Revert accidental commit | tb | 2021-08-30 | 7 | -35/+18 |
* | link verify regress tests to build | tb | 2021-08-30 | 7 | -18/+35 |
* | Reimplement part of the openssl/x509 regress tests in C | tb | 2021-08-30 | 3 | -0/+521 |
* | Ignore warning alert returns from servername callback in TLSv1.3 | tb | 2021-08-30 | 1 | -3/+7 |
* | Clean up end of do_body in openssl(1) ca | inoguchi | 2021-08-30 | 1 | -6/+8 |
* | Remove NULL check before free in openssl(1) ca | inoguchi | 2021-08-30 | 1 | -41/+25 |
* | Admit that we return error 20 in the failure case here. Changing | beck | 2021-08-30 | 1 | -5/+5 |
* | Revert previous change that changed our default return for unable to | beck | 2021-08-30 | 1 | -11/+5 |
* | Fix Jan's regress in openssl/x509 to do what it says it does, | beck | 2021-08-30 | 2 | -13/+15 |
* | Do not call X509_alias_get0(3) with NULL as the second argument. | schwarze | 2021-08-29 | 1 | -5/+7 |
* | Don't call the verify callback twice on success. | beck | 2021-08-29 | 1 | -2/+1 |
* | Pass the -quiet option to openssl s_server to make it ignore EOF. | tb | 2021-08-29 | 1 | -6/+6 |
* | Add back the echo Q thing. | tb | 2021-08-29 | 1 | -5/+5 |
* | Start naccept .desc with a capital | tb | 2021-08-29 | 1 | -2/+2 |
* | Use s_server -naccept 1 and remove echo "Q" | openssl s_client hack. | tb | 2021-08-29 | 1 | -12/+11 |
* | Implement -naccept in the s_server. | tb | 2021-08-29 | 4 | -11/+29 |
* | Get rid of historical code to extract the roots in the legacy case. | beck | 2021-08-28 | 3 | -78/+33 |
* | Clean up and simplify ssl3_dispatch_alert() and ssl3_send_alert(). | jsing | 2021-08-28 | 1 | -30/+32 |
* | Only remove the directories if there's an obj/ or obj@ | tb | 2021-08-28 | 1 | -2/+4 |
* | Add a pass using the modern vfy with by_dir roots, code by me, script to | beck | 2021-08-28 | 3 | -15/+106 |
* | Zap blanks before tabs. | tb | 2021-08-28 | 1 | -4/+4 |
* | Add RCS marker | tb | 2021-08-28 | 1 | -0/+1 |
* | Add case 2c to the go side. Don't tell jsing I touched go. | beck | 2021-08-28 | 1 | -0/+1 |
* | Remove the "dump_chain" flag and code. This was a workaround for a problem where | beck | 2021-08-28 | 2 | -16/+4 |
* | Check X509_get_notAfter return value in openssl(1) ca.c | inoguchi | 2021-08-28 | 1 | -3/+5 |
* | Use strndup instead of malloc, memcpy and NULL termination in openssl(1) ca.c | inoguchi | 2021-08-28 | 1 | -11/+4 |
* | Remove ASN1_TIME_new and use NULL for X509_gmtime_adj, free tmptm in err path | inoguchi | 2021-08-28 | 1 | -15/+7 |
* | Unwrap lines in openssl(1) ca.c | inoguchi | 2021-08-28 | 1 | -5/+3 |
* | Avoid leak with X509_REVOKED variable in openssl(1) ca.c | inoguchi | 2021-08-28 | 1 | -1/+3 |
* | Checking the return value in openssl(1) ca.c | inoguchi | 2021-08-28 | 1 | -41/+127 |
* | Add regress test testing having the root cert in the intermediate bundle | beck | 2021-08-27 | 5 | -1/+96 |
* | Remove unused #include <assert.h>. | tb | 2021-08-27 | 1 | -2/+1 |
* | Fix various read buffer overflow when printing ASN.1 strings (which are | tb | 2021-08-24 | 4 | -14/+20 |
* | Pull roots out of the trust store in the legacy xsc when building chains | beck | 2021-08-19 | 3 | -8/+26 |
* | Import regress tests for SM2. Not yet linked to the build. | tb | 2021-08-18 | 4 | -0/+640 |
* | Import initial code for the SM2 cipher | tb | 2021-08-18 | 7 | -0/+1870 |
* | Add a check_trust call to the legacy chain validation on chain add, remembering | beck | 2021-08-18 | 1 | -2/+10 |
* | Refactor the legacy chain validation from the chain adding code into its | beck | 2021-08-18 | 1 | -52/+70 |
* | typo in comment | tb | 2021-08-16 | 1 | -2/+2 |
* | add new (unsupported) eddsa in certificate verify tests | tb | 2021-08-11 | 1 | -1/+3 |
* | link X509_STORE_get_by_subject(3) and X509_ocspid_print(3) to the build, | schwarze | 2021-08-06 | 1 | -1/+3 |
* | new manual page X509_ocspid_print(3) | schwarze | 2021-08-06 | 3 | -6/+66 |
* | add a roff(7) comment marking the API function X509_get_default_private_dir() | schwarze | 2021-08-06 | 1 | -2/+5 |
* | SSL_CTX_remove_session() checks for a NULL session, avoid doing it twice. | jsing | 2021-08-04 | 1 | -2/+2 |
* | Document X509_get_default_cert_dir_env(3) | schwarze | 2021-08-03 | 1 | -8/+35 |
* | Document X509_get_default_cert_area(3). | schwarze | 2021-08-03 | 1 | -7/+41 |