summaryrefslogtreecommitdiff
path: root/src/lib/libssl (follow)
Commit message (Expand)AuthorAgeFilesLines
* Annotate some API-side memory leaks for future resolution.jsing2017-09-251-1/+3
* Fix various issues in the OCSP extension parsing code:jsing2017-09-251-20/+14
* When building the OCSP extension, only add the length prefixed extensionsjsing2017-09-251-6/+6
* Move the full extension building into tlsext_{client,server}hello_build(),jsing2017-08-302-47/+26
* Bump libssl/libtls minors due to symbol (re)addition.jsing2017-08-301-1/+1
* Bring back the NPN related symbols.jsing2017-08-303-3/+36
* When OCSP status type is unknown, ignore the extension.doug2017-08-291-1/+6
* Actually parse the ALPN extension in a client hello, even if no ALPNjsing2017-08-291-4/+4
* ECDHE-RSA-DES-CBC3-SHA should not be marked HIGH.jsing2017-08-281-2/+2
* Bump lib{crypto,ssl,tls} majors due to symbol removals.jsing2017-08-281-2/+2
* Completely remove NPN remnants.jsing2017-08-287-107/+9
* Remove the original (pre-IETF) chacha20-poly1305 cipher suites.jsing2017-08-284-73/+5
* Rewrite SRTP extension using CBB/CBS and the new extension framework.doug2017-08-275-274/+250
* Rewrite ALPN extension using CBB/CBS and the new extension framework.doug2017-08-264-143/+159
* Work around bug in F5's handling of the supported elliptic curves extension.doug2017-08-231-2/+16
* import SSL_export_keying_material(3) from OpenSSLschwarze2017-08-213-3/+132
* merge the applicable parts of SSL_set_tlsext_host_name(3) documentation;schwarze2017-08-211-4/+28
* Selectively merge OpenSSL commit e091367d May 5 11:56:45 2017 +0100schwarze2017-08-211-16/+15
* Mention three functions related to protocol selection by the clientschwarze2017-08-211-3/+48
* Delete non-existent function SSL_flush_sessions();schwarze2017-08-211-12/+4
* Delete non-existent functions SSL_add_session() and SSL_remove_session() andschwarze2017-08-211-18/+6
* New manual page X509_check_private_key(3), using informationschwarze2017-08-201-3/+4
* remove a duplicate BIO_do_accept() call from an example;schwarze2017-08-201-12/+6
* fix .Xr ordering, found with mandoc -Tlintschwarze2017-08-192-6/+6
* Import SSL_CTX_set_min_proto_version(3) from OpenSSL, suggested by jsing@.schwarze2017-08-195-7/+134
* fix a typo and mention OpenBSD in HISTORY;schwarze2017-08-191-3/+5
* match function implementation with declaration, ok beck@, doug@bcook2017-08-131-2/+2
* Switch to -Werror with clang for libressl.doug2017-08-131-2/+2
* Make SSL{,_CTX}_set_alpn_protos() do atomic updates and handle NULL.doug2017-08-131-10/+38
* Remove support for the TLS padding extension.jsing2017-08-132-39/+4
* Nuke SSL_OP_CRYPTOPRO_TLSEXT_BUG.jsing2017-08-132-27/+4
* Rewrite the TLS status request extension to use the new TLS extension framework.beck2017-08-123-177/+179
* Convert TLS signature algorithms extension handling to the new framework.jsing2017-08-126-63/+99
* Rewrite session ticket TLS extension handling using CBB/CBS and the newdoug2017-08-123-65/+145
* Remove NPN support.jsing2017-08-127-377/+28
* Import the SSL_CTX_set1_groups(3) manual page from OpenSSL, deletingschwarze2017-08-125-6/+173
* New manual page SSL_set_tmp_ecdh(3) written from scratch.schwarze2017-08-124-7/+112
* Remove lots of outdated information found by jsing@.schwarze2017-08-121-192/+14
* Remove support for DSS/DSA, since we removed the cipher suites a whilejsing2017-08-129-85/+16
* Clear the child pointer in CBB_cleanup(), so that we have fewer pointersjsing2017-08-121-1/+2
* remove bogus ".POD" from .Dt name; noticed by jsing@schwarze2017-08-111-3/+3
* I don't think eay will ever fix this...jsing2017-08-111-2/+2
* style(9) in ssl_set_cert_masks().jsing2017-08-111-7/+7
* Rewrite EllipticCurves TLS extension handling using CBB/CBS and the newdoug2017-08-114-76/+135
* Convert ssl3_send_certificate_request() to CBB.jsing2017-08-113-63/+73
* Add doug@'s copyright since he just added code to these two files.jsing2017-08-112-2/+4
* Rewrite the ECPointFormats TLS extension handling using CBB/CBS and thedoug2017-08-114-147/+125
* Clean up the EC key/curve configuration handling.jsing2017-08-107-120/+54
* Pull out the code that identifies if we have an ECC cipher in the cipherjsing2017-08-093-34/+52
* Consistently return from each SSL/SSL_CTX control case, rather thanjsing2017-08-091-33/+27