| Commit message (Expand) | Author | Age | Files | Lines |
* | Remove ssl_downgrade_max_version(). | jsing | 2021-03-11 | 5 | -54/+15 |
* | Guard TLS1_get_{client_,}version() macros with #ifndef LIBRESSL_INTERNAL. | jsing | 2021-03-10 | 1 | -1/+3 |
* | Improve internal version handling. | jsing | 2021-03-10 | 9 | -108/+145 |
* | Separate variable declaration and assignment. | jsing | 2021-03-02 | 1 | -2/+4 |
* | Replace two handrolled tls12_record_protection_engaged(). | jsing | 2021-03-02 | 1 | -3/+3 |
* | Move key/IV length checks closer to usage sites. | jsing | 2021-03-02 | 1 | -5/+11 |
* | Add tls12_record_protection_unused() and call from CCS functions. | jsing | 2021-03-02 | 1 | -8/+17 |
* | Fix misleading indentation in SSL_get_error() | tb | 2021-03-02 | 1 | -2/+2 |
* | Move handling of cipher/hash based cipher suites into the new record layer. | jsing | 2021-02-27 | 5 | -200/+141 |
* | Identify DTLS based on the version major value. | jsing | 2021-02-27 | 1 | -2/+2 |
* | Only use TLS versions internally (rather than both TLS and DTLS versions). | jsing | 2021-02-25 | 9 | -128/+132 |
* | Fix bizarre punctuation and capitalization in a comment. | tb | 2021-02-22 | 1 | -2/+2 |
* | Simplify version checks in the TLSv1.3 client | tb | 2021-02-22 | 1 | -22/+10 |
* | Factor out/change some of the legacy client version handling code. | jsing | 2021-02-22 | 3 | -12/+36 |
* | ugly whitespace | tb | 2021-02-20 | 2 | -14/+14 |
* | Rename f_err into fatal_err. | tb | 2021-02-20 | 7 | -183/+183 |
* | Rename the truncated label into decode_err. This describes its purpose | tb | 2021-02-20 | 2 | -73/+73 |
* | Return a min/max version of zero if set to zero. | jsing | 2021-02-20 | 3 | -17/+41 |
* | Add DTLSv1.2 methods. | jsing | 2021-02-20 | 2 | -3/+159 |
* | Handle DTLS1_2_VERSION in various places. | jsing | 2021-02-20 | 3 | -6/+9 |
* | Revise HelloVerifyRequest handling for DTLSv1.2. | jsing | 2021-02-20 | 2 | -4/+14 |
* | Group HelloVerifyRequest decoding and add missing check for trailing data. | jsing | 2021-02-20 | 1 | -4/+5 |
* | Add various public DTLS related defines. | jsing | 2021-02-20 | 2 | -2/+14 |
* | Clean up/simplify dtls1_get_cipher(). | jsing | 2021-02-20 | 1 | -7/+8 |
* | Remove bogus DTLS checks to disable ECC and OCSP. | jsing | 2021-02-08 | 2 | -10/+3 |
* | Enforce read ahead with DTLS. | jsing | 2021-02-08 | 1 | -5/+5 |
* | Use dtls1_retrieve_buffered_record() to load buffered application data. | jsing | 2021-02-08 | 1 | -11/+3 |
* | Absorb ssl3_get_algorithm2() into ssl_get_handshake_evp_md(). | jsing | 2021-02-07 | 4 | -22/+19 |
* | Correct handshake MAC/PRF for various TLSv1.2 cipher suites. | jsing | 2021-02-07 | 1 | -8/+8 |
* | Factor out the legacy stack version checks. | jsing | 2021-02-07 | 4 | -28/+24 |
* | Fail early in legacy exporter if master secret is not available | tb | 2021-02-03 | 1 | -1/+6 |
* | missing word in comment | tb | 2021-01-30 | 1 | -3/+3 |
* | Remove direct assignment of aead_ctx. | jsing | 2021-01-28 | 1 | -13/+7 |
* | Move AEAD handling into the new TLSv1.2 record layer. | jsing | 2021-01-28 | 4 | -134/+102 |
* | Link SSL_get_finished.3 to build. | tb | 2021-01-27 | 1 | -1/+2 |
* | Write SSL_get_finished() documentation from scratch. | tb | 2021-01-27 | 1 | -0/+77 |
* | Merge SSL_set_hostflags documentation from OpenSSL 1.1.1i and | tb | 2021-01-27 | 1 | -3/+20 |
* | Rewrap a comment line to fit into 80 columns. | tb | 2021-01-26 | 1 | -3/+3 |
* | zap a tab | tb | 2021-01-26 | 1 | -2/+2 |
* | Prepare to provide SSL_set_hostflags() | tb | 2021-01-26 | 2 | -2/+9 |
* | Move sequence numbers into the new TLSv1.2 record layer. | jsing | 2021-01-26 | 7 | -84/+38 |
* | Mop up unused dtls1_build_sequence_number() function. | jsing | 2021-01-21 | 2 | -25/+2 |
* | Drop unneeded cast in seal_record_protected_cipher | tb | 2021-01-20 | 1 | -2/+2 |
* | Add code to handle change of cipher state in the new TLSv1.2 record layer. | jsing | 2021-01-19 | 5 | -17/+137 |
* | Provide functions to determine if TLSv1.2 record protection is engaged. | jsing | 2021-01-19 | 5 | -18/+37 |
* | Provide record layer overhead for DTLS. | jsing | 2021-01-19 | 3 | -17/+38 |
* | Factor out code for explicit IV length, block size and MAC length. | jsing | 2021-01-19 | 1 | -21/+77 |
* | Clean up dtls1_reset_seq_numbers() | jsing | 2021-01-13 | 1 | -10/+7 |
* | Clean up read sequence handling in DTLS. | jsing | 2021-01-13 | 1 | -19/+21 |
* | Clean up sequence number handing in the new TLSv1.2 record layer. | jsing | 2021-01-13 | 3 | -69/+89 |