summaryrefslogtreecommitdiff
path: root/src/lib/libssl (follow)
Commit message (Expand)AuthorAgeFilesLines
...
* Use freezero() for the internal opaque structures, instead of the currentjsing2017-04-103-18/+9
* Use freezero() for X25519 keys - same result with more readable code.jsing2017-04-101-7/+3
* freezero() the key block; simpler code and less of it.jsing2017-04-101-7/+3
* Use freezero() for i2d_SSL_SESSION() - one line of code instead of three.jsing2017-04-101-5/+2
* fix some .Xr errors that jmc@ found with mdoclint(1)schwarze2017-04-103-12/+13
* new manual page SSL_get_server_tmp_key(3)schwarze2017-04-103-2/+88
* Additional SSL_SESSION documentationschwarze2017-04-1011-16/+349
* for pure *_ctrl() wrapper macros, move the reference from ssl(3)schwarze2017-04-1014-49/+54
* new manual page SSL_CTX_set_tlsext_servername_callback(3) for SNI;schwarze2017-04-102-1/+126
* Convert various client key exchange functions to freezero(3). The memoryjsing2017-04-101-14/+5
* pasto; from <Jon dot Spillett at oracle dot com> via OpenSSL commit 3aaa1bd0schwarze2017-04-101-3/+3
* typo fix; from <Jon dot Spillett at oracle dot com>schwarze2017-04-101-5/+5
* tweak previous;jmc2017-03-291-3/+5
* Fix typo in function name;schwarze2017-03-281-4/+5
* After i wrote SSL_renegotiate(3) from scratch, OpenSSL alsoschwarze2017-03-281-12/+109
* Update RFC reference for TLSEXT_TYPE_padding.jsing2017-03-251-5/+2
* Check tls1_PRF() return value in tls1_generate_master_secret().jsing2017-03-251-4/+4
* More cleanup for tls1_PRF()/tls1_P_hash() - change the argument order ofjsing2017-03-251-46/+50
* Fewer magic numbers.jsing2017-03-181-3/+3
* t1_enc.cjsing2017-03-181-3/+2
* Currently tls1_PRF() requires that a temporary buffer be provided, thatjsing2017-03-181-50/+32
* Remove the handshake digests and related code, replacing remaining usesjsing2017-03-107-166/+45
* Switch CBB to use recallocarray() - this ensures that we do not leakjsing2017-03-101-2/+2
* First pass at cleaning up the tls1_P_hash() function - remove a pointlessjsing2017-03-101-20/+19
* Make tls1_PRF() non-static so it can be regress tested.jsing2017-03-101-2/+7
* Correctly handle TLS PRF with MD5+SHA1 - the secret has to be partitionedjsing2017-03-071-5/+26
* Clean up and simplify the tls1_PRF() implementation now that we have ajsing2017-03-061-48/+19
* Correctly convert an SSLv2 challenge into an SSLv3/TLS client random byjsing2017-03-051-9/+27
* Provide a rolling handshake hash that commences as soon as the cipherjsing2017-03-058-54/+193
* Convert various handshake message generation functions to CBB.jsing2017-03-054-56/+113
* Drop the second argument of dtls1_set_message_header() and make it a voidjsing2017-03-043-13/+10
* Call ssl3_handshake_write() instead of ssl3_do_write() - this was missedjsing2017-03-041-2/+2
* Convert ssl3_{get,send}_server_key_exchange() to EVP_md5_sha1().jsing2017-03-013-44/+29
* Bump minors due to symbol addition.jsing2017-02-281-1/+1
* Stop pretending that MD5 and SHA1 might not exist - rather than locatingjsing2017-02-284-20/+8
* Remove STREEBOG 512 as a TLS MAC since there are currently no cipher suitesjsing2017-02-212-26/+6
* Avoid dereferencing a pointer when reporting an error about the samejsing2017-02-151-2/+2
* Change SSLerror() back to taking two args, with the first one being an SSL *.beck2017-02-0725-573/+841
* Define values for SSL_CTRL_SET_GROUPS{,_LIST} and wire them up to thejsing2017-02-052-15/+19
* Provide an SSL_OP_NO_CLIENT_RENEGOTIATION option that disallowsjsing2017-01-312-2/+12
* Send the function codes from the error functions to the bit bucket,beck2017-01-292-4/+4
* Put comment back in the right place.jsing2017-01-291-9/+9
* Avoid clearing the mac_packet flag in the wrong place.jsing2017-01-291-2/+1
* knfbeck2017-01-261-6/+11
* Convert ssl3_get_client_hello() to CBS.jsing2017-01-261-76/+71
* Finish the fallout of the SSLerr->SSLerror cleanup to get rid of the uglybeck2017-01-2618-653/+335
* Send the error function codes to rot in the depths of hell where they belongbeck2017-01-2624-798/+572
* Merge the single two line function from ssl_err2.c into ssl_err.c.jsing2017-01-263-76/+12
* english is hard.beck2017-01-261-2/+2
* Limit the number of sequential empty records that we will processbeck2017-01-264-7/+30