| Commit message (Expand) | Author | Age | Files | Lines |
* | Make the symbol for ASN1_time_tm_clamp_notafter visible so libtls | beck | 2017-08-27 | 1 | -1/+3 |
* | Add ability to clamp a notafter to values representable in a 32 bit time_t | beck | 2017-08-13 | 1 | -5/+21 |
* | Revert previous change that forced consistency between return value and | beck | 2017-04-28 | 1 | -10/+2 |
* | revert previous accidental commit | beck | 2017-04-28 | 1 | -2/+10 |
* | *** empty log message *** | beck | 2017-04-28 | 1 | -10/+2 |
* | Kill leak introduced with refactor | beck | 2017-02-05 | 1 | -3/+6 |
* | Send the function codes from the error functions to the bit bucket, | beck | 2017-01-29 | 15 | -178/+98 |
* | fix bogus comment | beck | 2017-01-21 | 1 | -2/+2 |
* | Make return value of X509_verify_cert be consistent with the error code, | beck | 2017-01-21 | 1 | -2/+10 |
* | Rework internal_verify, mostly from OpenSSL. so we can progress | beck | 2017-01-20 | 1 | -102/+102 |
* | Add and remove some blank lines, in order to make X509_verify_cert() | jsing | 2017-01-07 | 1 | -6/+4 |
* | Revert part of r1.54 as there are at least two situations where we are still | jsing | 2017-01-07 | 1 | -4/+2 |
* | Add a small bit of belt and suspenders around ERR_V_OK with X509_STORE_ctx | beck | 2017-01-03 | 1 | -2/+20 |
* | bring in boring's internal check_trust function to fix a bug introduced | beck | 2017-01-03 | 1 | -24/+79 |
* | Expand ASN1_ITEM_rptr macros - no change in generated assembly. | jsing | 2016-12-30 | 2 | -55/+55 |
* | Remove all DECLARE_ASN1_SET_OF macro usage - since 2000 these have been | jsing | 2016-12-27 | 1 | -8/+1 |
* | Explicitly export a list of symbols from libcrypto. | jsing | 2016-12-21 | 2 | -1/+9 |
* | Remove prototypes from the public header for X509_VERIFY_PARAM functions | jsing | 2016-12-21 | 2 | -6/+7 |
* | Fix previous change to X509_STORE_add_{cert,crl} to not free the input | miod | 2016-11-13 | 1 | -3/+7 |
* | Check for stack push failure, and correctly destroy the object we failed | miod | 2016-11-08 | 1 | -20/+47 |
* | Rework X509_verify_cert to support alt chains on certificate verification, | beck | 2016-11-06 | 1 | -117/+265 |
* | The upcoming x509 alt chains diff tightens the trust requirements | beck | 2016-11-06 | 1 | -1/+17 |
* | Commit a reminder that the default is not the default. This needs to | beck | 2016-11-06 | 1 | -1/+2 |
* | use the correct function for free | bcook | 2016-11-06 | 1 | -2/+2 |
* | Part one of the alt chains changes, bring in newer modifications to | beck | 2016-11-05 | 3 | -73/+411 |
* | make public ASN1_time_parse and ASN1_time_tm_cmp to replace former hidden | beck | 2016-11-04 | 3 | -5/+3 |
* | Add X509_up_ref, from boring | beck | 2016-11-04 | 2 | -2/+11 |
* | In X509_cmp_time(), pass asn1_time_parse() the tag of the field being | guenther | 2016-10-02 | 1 | -2/+3 |
* | Expand DECLARE_ASN1_.*FUNCTIONS macros. | jsing | 2016-09-04 | 1 | -33/+133 |
* | Return zero from two functions on allocation failure instead of always | mmcc | 2016-03-21 | 2 | -4/+4 |
* | X509_free(3) is NULL-safe, so remove NULL checks before its calls. | mmcc | 2016-03-11 | 2 | -6/+4 |
* | initialize ok to 0 | beck | 2015-12-14 | 1 | -2/+2 |
* | Stop supporing "legcay" time formats that OpenSSL supports. Rewrite the | beck | 2015-10-19 | 2 | -22/+24 |
* | Convert a number of the old ASN1_{d2i,i2d}_{bio,fp}_of() macros to | jsing | 2015-10-13 | 1 | -19/+19 |
* | Flense the greasy black guts of unreadble string parsing code out of three areas | beck | 2015-10-02 | 2 | -92/+37 |
* | s/M_ASN1_TIME_free/ASN1_TIME_free/ | jsing | 2015-09-30 | 2 | -7/+7 |
* | Replace M_ASN1_INTEGER_(new|free) with ASN1_INTEGER_(new|free) - this is | jsing | 2015-09-30 | 4 | -12/+12 |
* | Add support for disabling certificate and CRL validity checking. | jsing | 2015-09-14 | 2 | -11/+15 |
* | Reorder functions for readability/consistency. | jsing | 2015-09-13 | 1 | -235/+228 |
* | Expand obsolete M_ASN1.*(cmp|dup|print|set) macros - no change in generated | jsing | 2015-07-29 | 4 | -13/+13 |
* | Now that it is safe to invoke X509_STORE_CTX_cleanup() if X509_STORE_CTX_init() | miod | 2015-07-19 | 1 | -3/+5 |
* | Simplify X509_STORE_CTX_init and make it safe with stack variables. | doug | 2015-07-19 | 1 | -58/+55 |
* | Fix bad indenting in LibreSSL. | doug | 2015-06-13 | 1 | -4/+4 |
* | Avoid a potential out-of-bounds read in X509_cmp_time(), due to missing | jsing | 2015-06-11 | 1 | -4/+27 |
* | Don't ignore the reference count in X509_STORE_free. | doug | 2015-04-25 | 1 | -1/+5 |
* | Remove d2i_X509_PKEY and i2d_X509_PKEY from the SSLeay days. | doug | 2015-04-12 | 1 | -3/+1 |
* | Remove all getenv() calls, especially those wrapped by issetugid(). | deraadt | 2015-04-11 | 3 | -28/+8 |
* | Avoid a NULL pointer deref when X509_get_pubkey() returns NULL. | doug | 2015-03-15 | 1 | -2/+4 |
* | If you do not support POSIX I/O then you're not tall enough to ride... | jsing | 2015-02-12 | 1 | -5/+1 |
* | More unifdef OPENSSL_NO_RFC3779 that got missed last time around. | jsing | 2015-02-11 | 2 | -16/+2 |