summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
...
* Move a large part of ssl_st into internal, so we can see what squeals.beck2017-01-2322-888/+892
* Move ex_data, next and prev from SSL_SESSION to internal.jsing2017-01-233-31/+32
* Move most of the fields in SSL_CTX to internal - the ones that remain arejsing2017-01-2311-202/+209
* move the callbacks from ssl_st to internalbeck2017-01-2319-230/+237
* Move callback function pointers and argument pointers from SSL_CTX tojsing2017-01-2316-200/+210
* Move not_resumable and sess_cert from SSL_SESSION to internal.jsing2017-01-237-47/+50
* Remove heartbeat related fields from the SSL_CTX, which are unusedjsing2017-01-231-9/+1
* Move the stats struct from SSL_CTX to internal.jsing2017-01-2310-65/+64
* Move most of the SSL3_STATE fields to internal - the ones that remain arejsing2017-01-2218-681/+690
* Disable session cache and tickets by default.claudio2017-01-221-1/+5
* Update the TLS ALPN unit tests to work with internal/opaque data.jsing2017-01-222-13/+11
* Move most of DTLS1_STATE to internal.beck2017-01-2211-273/+272
* Move ALPN and NPN fields from SSL/SSL_CTX to internal.jsing2017-01-227-125/+129
* Move internal parts of ssl_session_st to internalbeck2017-01-224-40/+40
* Move recently added min_version/max_version from SSL and SSL_CTX to theirjsing2017-01-222-10/+6
* Wrap long lines.jsing2017-01-221-4/+7
* Bump majors for libssl and libtls following the translucent struct change.jsing2017-01-222-2/+2
* Convert publically visible structs to translucent structs.jsing2017-01-228-29/+111
* Clean up ssl3_new() - in particular, we do not need to zero fields thatjsing2017-01-221-11/+4
* There is no point in setting struct fields to zero, when you've alreadyjsing2017-01-221-5/+2
* use BN_div_nonct where it is safe to do so.beck2017-01-211-2/+2
* Add ct and nonct versions of BN_mod_inverse for internal usebeck2017-01-2113-36/+67
* Split out BN_div and BN_mod into ct and nonct versions for Internal use.beck2017-01-2117-58/+92
* Make explicit _ct and _nonct versions of bn_mod_exp funcitons thatbeck2017-01-2119-47/+249
* whitespacederaadt2017-01-212-5/+5
* 1. When shrinking a chunk allocation, compare the size of the currentotto2017-01-211-46/+87
* Specify minimum and maximum protocol version for each method. This isjsing2017-01-216-6/+36
* Place {DECLARE,IMPLEMENT}_OBJ_BSEARCH{_GLOBAL,}_CMP_FN macros undefjsing2017-01-211-1/+5
* Expand DECLARE_OBJ_BSEARCH_CMP_FN and IMPLEMENT_OBJ_BSEARCH_CMP_FN macros.jsing2017-01-216-28/+168
* /usr/bin/unifdef -D MONT_MUL_MOD -D MONT_EXP_WORD -D RECP_MUL_MOD -m bn_exp.cbeck2017-01-211-23/+2
* Expand DECLARE_OBJ_BSEARCH_CMP_FN and IMPLEMENT_OBJ_BSEARCH_CMP_FN macros.jsing2017-01-212-8/+38
* Expand DECLARE_OBJ_BSEARCH_GLOBAL_CMP_FN macro.jsing2017-01-211-2/+2
* Expand IMPLEMENT_OBJ_BSEARCH_GLOBAL_CMP_FN macro.jsing2017-01-211-2/+16
* fix bogus commentbeck2017-01-211-2/+2
* Make return value of X509_verify_cert be consistent with the error code,beck2017-01-211-2/+10
* rearrange pledge promises into the canonical order; easier to eyeballderaadt2017-01-2039-77/+77
* fix pledge for openssl ocsp - we will need tty to ask for a cert pwbeck2017-01-201-2/+2
* Rework internal_verify, mostly from OpenSSL. so we can progressbeck2017-01-201-102/+102
* fix openssl ocsp to not report sucess when the ocsp responder rejects usbeck2017-01-191-3/+3
* unhook ocsp test from the default since it currently requires network access andbeck2017-01-181-2/+1
* Correctly tls_config_set_ca_file() return value (no effective change).jsing2017-01-171-2/+2
* whitespacederaadt2017-01-131-3/+3
* Inline strlen() call to reduce/simplify code.jsing2017-01-121-5/+2
* Inline tls_get_new_cb_bio() from the only place that it gets called,jsing2017-01-121-22/+11
* If tls_set_cbs() fails an error will already be specified, so do notjsing2017-01-122-8/+4
* change two trailing Xr to Fn; ok schwarzejmc2017-01-122-6/+6
* Simplify the TLS callback BIO code - a pointer to the tls context can bejsing2017-01-121-66/+7
* If tls_get_new_cb_bio() fails, an error will already be set.jsing2017-01-121-5/+2
* If no callbacks are specified, return after setting an error rather thanjsing2017-01-121-2/+4
* Add regress tests for libtls, which currently cover handshakes and closesjsing2017-01-123-1/+356