Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Rewrite the TLS Renegotiation Indication extension handling using CBB/CBS | jsing | 2017-07-24 | 1 | -275/+0 |
| | | | | | | | | and the new extension framework. Feedback from doug@ ok inoguchi@ | ||||
* | Change SSLerror() back to taking two args, with the first one being an SSL *. | beck | 2017-02-07 | 1 | -12/+12 |
| | | | | | | | | | Make a table of "function codes" which maps the internal state of the SSL * to something like a useful name so in a typical error in the connection you know in what sort of place in the handshake things happened. (instead of by arcane function name). Add SSLerrorx() for when we don't have an SSL * ok jsing@ after us both being prodded by bluhm@ to make it not terrible | ||||
* | Finish the fallout of the SSLerr->SSLerror cleanup to get rid of the ugly | beck | 2017-01-26 | 1 | -23/+12 |
| | | | | line wraps that resulted | ||||
* | Send the error function codes to rot in the depths of hell where they belong | beck | 2017-01-26 | 1 | -12/+12 |
| | | | | | | | We leave a single funciton code (0xFFF) to say "SSL_internal" so the public API will not break, and we replace all internal use of the two argument SSL_err() with the internal only SSL_error() that only takes a reason code. ok jsing@ | ||||
* | Move most of the SSL3_STATE fields to internal - the ones that remain are | jsing | 2017-01-22 | 1 | -30/+30 |
| | | | | | | known to be used by ports. ok beck@ | ||||
* | Convert ssl_parse_serverhello_renegotiate_ext to CBS. | doug | 2015-06-20 | 1 | -17/+19 |
| | | | | ok miod@ jsing@ | ||||
* | Convert ssl_parse_clienthello_renegotiate_ext to CBS. | doug | 2015-06-20 | 1 | -13/+12 |
| | | | | ok miod@, tweak + ok jsing@ | ||||
* | Sort and group includes. | jsing | 2014-11-16 | 1 | -1/+4 |
| | |||||
* | always compare memcmp against 0, for clarity. | tedu | 2014-06-21 | 1 | -3/+3 |
| | |||||
* | convert CRYPTO_memcmp to timingsafe_memcmp based on current policy favoring | tedu | 2014-06-19 | 1 | -4/+4 |
| | | | | | | libc interfaces over libcrypto interfaces. for now we also prefer timingsafe_memcmp over timingsafe_bcmp, even when the latter is acceptable. ok beck deraadt matthew miod | ||||
* | tags as requested by miod and tedu | deraadt | 2014-06-12 | 1 | -1/+1 |
| | |||||
* | without overthinking it, replace a few memcmp calls with CRYPTO_memcmp | tedu | 2014-06-04 | 1 | -3/+3 |
| | | | | where it is feasible to do so. better safe than sorry. | ||||
* | Remove TLS_DEBUG, SSL_DEBUG, CIPHER_DEBUG and OPENSSL_RI_DEBUG. Much of | jsing | 2014-05-25 | 1 | -16/+0 |
| | | | | | | | this is sporadic, hacked up and can easily be put back in an improved form should we ever need it. ok miod@ | ||||
* | More KNF. | jsing | 2014-04-19 | 1 | -33/+49 |
| | |||||
* | First pass at applying KNF to the OpenSSL code, which almost makes it | jsing | 2014-04-14 | 1 | -144/+134 |
| | | | | | readable. This pass is whitespace only and can readily be verified using tr and md5. | ||||
* | import OpenSSL-1.0.0a | djm | 2010-10-01 | 1 | -0/+292 |