summaryrefslogtreecommitdiff
path: root/src/lib/libssl/ssl_sigalgs.c (follow)
Commit message (Expand)AuthorAgeFilesLines
* Forcibly ensure that only PSS may be used with RSA in TLS 1.3.beck2020-05-091-2/+8
* Correct subtle bug in sigalgs, only care about curve_nid if we arebeck2019-04-011-4/+4
* Strip out all of the pkey to sigalg and sigalg to pkey linkages.jsing2019-03-251-21/+1
* Defer sigalgs selection until the certificate is known.jsing2019-03-251-5/+79
* Avoid an internal 2 byte overread in ssl_sigalgs().jsing2019-03-191-7/+2
* Remove SHA224 based sigalgs from use in TLS 1.2 as SHA224 is deprecated.beck2019-01-241-6/+1
* Correct ECDSA_SECP512R1 typo to ECDSA_SECP521R1beck2019-01-231-4/+4
* Modify sigalgs extension processing to accomodate TLS 1.3.beck2019-01-231-2/+19
* revert previous, accidentally contained another diff in additionbeck2019-01-231-19/+2
* Modify sigalgs extension processing for TLS 1.3.beck2019-01-231-2/+19
* Unbreak legacy ciphers for prior to 1.1 by setting having a legacybeck2018-11-161-3/+12
* In TLS1.2 we use evp_sha1 if we fall back this far, not evp_md5_sha1 as in 1.1beck2018-11-141-2/+2
* Temporary workaround for breakage seen in www.videolan.org with curve mismatchbeck2018-11-131-3/+4
* Fix pkey_ok to be less strange, and add cuve checks required for the EC onesbeck2018-11-131-9/+26
* Add check function to verify that pkey is usable with a sigalg.beck2018-11-111-1/+17
* Convert signatures and verifcation to use the EVP_DigestXXX apibeck2018-11-111-3/+1
* Remove dead codebeck2018-11-101-14/+1
* Stop keeping track of sigalgs by guessing it from digest and pkey,beck2018-11-101-16/+5
* Ensure we only choose sigalgs from our prefernce list, not the whole listbeck2018-11-091-4/+11
* Add the ability to have a separate priority list for sigalgs.beck2018-11-091-6/+34
* Reimplement the sigalgs processing code into a new implementationbeck2018-11-091-0/+218