| Commit message (Expand) | Author | Age | Files | Lines |
* | Set alpn_selected_len = 0 when alpn_selected is NULL | inoguchi | 2020-09-09 | 1 | -1/+4 |
* | Only parse a client's status_request in the CH | tb | 2020-08-03 | 1 | -1/+4 |
* | Ensure clients only send a status_request in the CH | tb | 2020-08-03 | 1 | -3/+7 |
* | Correctly handle server requests for an OCSP response | tb | 2020-08-03 | 1 | -1/+12 |
* | zap trailing whitespace on one line | tb | 2020-07-03 | 1 | -2/+2 |
* | Make the message type available to the extension functions | tb | 2020-07-03 | 1 | -85/+89 |
* | Improve argument order for the internal tlsext API | tb | 2020-07-03 | 1 | -11/+11 |
* | Implement a rolling hash of the ClientHello message, Enforce RFC 8446 | beck | 2020-06-06 | 1 | -1/+35 |
* | Mop up servername_done, which is unused. | jsing | 2020-05-29 | 1 | -2/+1 |
* | Fix some stylistic nits from jsing. | tb | 2020-05-24 | 1 | -8/+11 |
* | Enforce that SNI hostnames be correct as per rfc 6066 and 5980. | beck | 2020-05-23 | 1 | -16/+78 |
* | Do not assume that server_group != 0 or tlsext_supportedgroups != NULL | tb | 2020-05-23 | 1 | -8/+12 |
* | Only send ocsp staples if the client asked for ocsp certificate status. | beck | 2020-05-19 | 1 | -1/+2 |
* | Add support for TLS 1.3 server to send certificate status | beck | 2020-05-19 | 1 | -1/+23 |
* | Fix pesky whitespace. | jsing | 2020-05-13 | 1 | -2/+2 |
* | Use size_t for OCSP response length. | jsing | 2020-05-10 | 1 | -5/+2 |
* | Only reset TLS extension state when parsing client hello or server hello. | jsing | 2020-05-10 | 1 | -5/+7 |
* | Add support for certificate status requests in TLS 1.3 client | beck | 2020-05-09 | 1 | -6/+37 |
* | Add support for HelloRetryRequests in the TLSv1.3 server. | jsing | 2020-05-09 | 1 | -2/+32 |
* | Handle TLSv1.3 key shares other than X25519 on the server side. | jsing | 2020-04-21 | 1 | -5/+19 |
* | drop unused include <openssl/curve25519.h> | tb | 2020-02-18 | 1 | -2/+1 |
* | Avoid potential NULL dereference when parsing a server keyshare extension. | jsing | 2020-02-16 | 1 | -1/+4 |
* | Correctly handle key share extensions in a hello retry request. | jsing | 2020-02-06 | 1 | -3/+9 |
* | Correctly unpack client key shares. | jsing | 2020-02-01 | 1 | -4/+9 |
* | Provide struct/functions for handling TLSv1.3 key shares. | jsing | 2020-01-30 | 1 | -92/+17 |
* | Add sigalgs for server side to enable client certificate processing | beck | 2020-01-26 | 1 | -5/+34 |
* | Only discard the extension block for client hello and server hello | jsing | 2020-01-25 | 1 | -2/+3 |
* | Only send an RI extension for pre-TLSv1.3 versions. | jsing | 2020-01-25 | 1 | -2/+2 |
* | Rename failure into alert_desc in tlsext_ocsp_server_parse(). | tb | 2020-01-22 | 1 | -5/+5 |
* | fix previous: alert_desc needs to be an int. | tb | 2020-01-22 | 1 | -2/+2 |
* | Avoid modifying alert in the success path. | tb | 2020-01-22 | 1 | -11/+17 |
* | Revert previous deduplication diff, I broke portable in a strange way. | beck | 2019-11-16 | 1 | -47/+58 |
* | Deduplicate some extension processing code. | beck | 2019-11-15 | 1 | -58/+47 |
* | Relax parsing of TLS key share extensions on the server. | jsing | 2019-05-29 | 1 | -5/+2 |
* | Do not send an SNI extension when resuming a session that contains a server | jsing | 2019-05-29 | 1 | -1/+4 |
* | Fix typo and label indent. | jsing | 2019-05-28 | 1 | -3/+3 |
* | Tidy up some names/structures following the renaming of TLS extension | jsing | 2019-05-28 | 1 | -35/+35 |
* | In DTLS, use_srtp is part of the extended server hello while in TLSv1.3, | tb | 2019-05-08 | 1 | -2/+3 |
* | Defer sigalgs selection until the certificate is known. | jsing | 2019-03-25 | 1 | -9/+6 |
* | Revert TLS1_get{,_client}_version simplification because DTLS. | jsing | 2019-03-19 | 1 | -5/+5 |
* | Partially clean up the TLS1_get_{,client}_version macros. | jsing | 2019-03-17 | 1 | -5/+5 |
* | Revert r1.38 as it introduces use of a stack value post function return. | jsing | 2019-02-03 | 1 | -50/+86 |
* | unwrap a line introduced in previous. | tb | 2019-01-31 | 1 | -3/+2 |
* | Correct handling of TLS sigalgs extension for TLSv1.0/TLSv1.1. | jsing | 2019-01-30 | 1 | -33/+19 |
* | Deduplicate a bunch of replicated code in the extension handling | beck | 2019-01-28 | 1 | -86/+50 |
* | Add tls_extension_seen(), a utility to know if a particular extension | beck | 2019-01-28 | 1 | -8/+13 |
* | Add server side of versions, keyshare, and client and server of cookie | beck | 2019-01-24 | 1 | -19/+289 |
* | move the extensions_seen into the handshake struct | beck | 2019-01-24 | 1 | -4/+5 |
* | Modify sigalgs extension processing to accomodate TLS 1.3. | beck | 2019-01-23 | 1 | -3/+33 |
* | revert previous, accidentally contained another diff in addition | beck | 2019-01-23 | 1 | -326/+22 |