| Commit message (Expand) | Author | Files | Lines |
2020-04-10 | sync cert.pem with Mozilla's root ca list, ok beck@ | sthen | 1 | -276/+343 |
2020-04-10 | When printing the serialNumber, fall back to the colon separated hex | tb | 1 | -2/+4 |
2020-04-09 | Revise test to handle the fact that TLSv1.3 cipher suites are now being | jsing | 1 | -2/+4 |
2020-04-09 | Include TLSv1.3 cipher suites unless cipher string references TLSv1.3. | jsing | 1 | -6/+19 |
2020-04-09 | Test both SSLv3 (aka pre-TLSv1.2) and TLSv1.2 cipher suites with TLS. | jsing | 1 | -1/+1 |
2020-04-09 | Tidy line wrapping and remove an extra blank line. | jsing | 1 | -4/+3 |
2020-04-09 | ssl_aes_is_accelerated() returns a boolean - treat it as such, rather than | jsing | 1 | -2/+2 |
2020-04-08 | Ensure legacy session ID is persistent during client TLS session. | jsing | 1 | -9/+14 |
2020-04-06 | Re-enable the client test now that it passes again. | jsing | 1 | -2/+2 |
2020-04-06 | Minor code improvements. | jsing | 1 | -3/+3 |
2020-04-06 | Add tests that cover TLSv1.2 and disable those that trigger TLSv1.3. | jsing | 1 | -3/+32 |
2020-04-06 | Zero the client random field in the TLSv1.2 golden value. | jsing | 1 | -5/+5 |
2020-04-06 | Improve comparision with test data. | jsing | 1 | -7/+9 |
2020-04-06 | Dump the test data when the lengths differ in order to aid debugging. | jsing | 1 | -0/+3 |
2020-04-06 | Use errx() if we fail to build the client hello. | jsing | 1 | -1/+1 |
2020-04-06 | Send a zero-length session identifier if TLSv1.3 is not enabled. | jsing | 1 | -4/+7 |
2020-03-30 | "eventually" came and went back in 2004.libressl-v3.1.0 | martijn | 1 | -3/+1 |
2020-03-30 | Void functions obviously do not return values; no need to elaborate. | schwarze | 5 | -31/+10 |
2020-03-29 | Void functions obviously do not return values; no need to elaborate. | schwarze | 5 | -28/+10 |
2020-03-28 | Be concise: do not say that void functions return no values, that's obvious. | schwarze | 3 | -22/+6 |
2020-03-24 | Fix ASN1 print functions | inoguchi | 1 | -6/+13 |
2020-03-23 | Add a test program for getopt(3) that is adequate for manual testing | schwarze | 4 | -2/+174 |
2020-03-16 | Consistently spell 'unsigned' as 'unsigned int', as style(9) seems | tb | 7 | -44/+45 |
2020-03-16 | Adapt to tls13_record_layer.c r1.30 (the sequence number shouldn't wrap). | tb | 1 | -2/+2 |
2020-03-16 | The RFC is clear (section 5.3) that sequence number should never wrap. | tb | 1 | -5/+12 |
2020-03-13 | Increment a few more sequence numbers where the carry is close to | tb | 1 | -1/+41 |
2020-03-13 | Remove dtls1_enc(). | jsing | 5 | -222/+11 |
2020-03-13 | Add regress for TLSv1.3 sequence number handling. | jsing | 3 | -1/+135 |
2020-03-13 | Correct TLSv1.3 sequence number increment and wrapping check. | jsing | 1 | -3/+3 |
2020-03-13 | Add missing $OpenBSD$ tag. | jsing | 1 | -0/+1 |
2020-03-13 | Add regress for CBB_add_space(). | jsing | 1 | -1/+41 |
2020-03-13 | Ensure that CBB_add_space() always provides zeroed memory. | jsing | 1 | -1/+2 |
2020-03-12 | Use calloc() rather than malloc() when allocating initial CBB buffer. | jsing | 1 | -4/+3 |
2020-03-12 | Use calloc() rather than malloc() when allocating buffers. | jsing | 1 | -3/+3 |
2020-03-12 | Stop overloading the record type for padding length. | jsing | 5 | -13/+10 |
2020-03-12 | Use internal versions of SSL3_BUFFER, SSL3_RECORD and DTLS1_RECORD_DATA. | jsing | 9 | -53/+83 |
2020-03-10 | Use ctx->hs->secrets rather than the S3I(s) version. | jsing | 2 | -4/+4 |
2020-03-10 | Update to follow handshake enum removal. | jsing | 1 | -7/+1 |
2020-03-10 | Remove some unnecessary handshake enums/functions. | jsing | 4 | -26/+4 |
2020-03-10 | Add a return value check to tls13_buffer_extend(). | jsing | 1 | -1/+4 |
2020-03-10 | Remove the enc function pointers. | jsing | 6 | -22/+12 |
2020-03-10 | Import openssl-1.1.1d test data to base64test.c | inoguchi | 1 | -1/+97 |
2020-03-10 | Modify regress base64test.c | inoguchi | 1 | -11/+14 |
2020-03-09 | cstyle in illumos noticed some weird syntax, which this fixes. | dlg | 1 | -4/+4 |
2020-03-06 | RFC 8446, section 4.1.3: If a TLSv1.2 client receives a ServerHello for | tb | 1 | -1/+27 |
2020-03-06 | TLSv1.3 servers that intend to downgrade are required to set the last | tb | 1 | -4/+8 |
2020-03-04 | Check high bit for base64 decode | inoguchi | 1 | -2/+10 |
2020-03-03 | Fix base64 processing of long lines | inoguchi | 1 | -99/+66 |
2020-02-23 | The decryption_failed alert must not be sent by compliant implementations. | tb | 1 | -2/+2 |
2020-02-23 | According to RFC 8446, Section 4.4.4, recipients of incorrect Finished | tb | 2 | -4/+4 |