| Commit message (Expand) | Author | Age | Files | Lines |
* | crazy whitespace on one line | tb | 2020-05-09 | 1 | -2/+2 |
* | Pull the sending of alerts up into tls13_handshake_perform(). | jsing | 2020-05-09 | 1 | -14/+11 |
* | Refactor tls13_server_hello_sent(). | jsing | 2020-05-09 | 1 | -30/+36 |
* | On receiving a handshake or alert record with empty inner plaintext, | tb | 2020-05-07 | 1 | -1/+11 |
* | Accept two ChangeCipherSpec messages during a TLSv1.3 handshake. | jsing | 2020-05-03 | 1 | -3/+3 |
* | Add const to TLS1.3 internal vectors | inoguchi | 2020-05-02 | 2 | -14/+14 |
* | tls13_record_layer internal functions to static in libssl | inoguchi | 2020-04-29 | 1 | -4/+4 |
* | tls13_handshake internal functions to static in libssl | inoguchi | 2020-04-29 | 1 | -11/+12 |
* | Move legacy stack interfacing functions into tls13_legacy.c. | jsing | 2020-04-28 | 4 | -199/+206 |
* | Rename tls13_client_synthetic_handshake_message() and move to tls13_lib.c. | jsing | 2020-04-28 | 3 | -47/+48 |
* | Shuffle some functions around. | jsing | 2020-04-27 | 2 | -329/+328 |
* | Switch to NEGOTIATED when using WITHOUT_HRR. | jsing | 2020-04-25 | 1 | -4/+9 |
* | Move unsupported, obsolete ciphers and deprecated aliases out of | schwarze | 2020-04-25 | 1 | -31/+29 |
* | tweak the wording to make it clearer under which conditions exactly | schwarze | 2020-04-25 | 1 | -4/+4 |
* | Improve TLSv1.3 state machine for HelloRetryRequest handling. | jsing | 2020-04-22 | 5 | -66/+104 |
* | Handle TLSv1.3 key shares other than X25519 on the server side. | jsing | 2020-04-21 | 2 | -16/+34 |
* | Consolidate TLSv1.3 constants. | jsing | 2020-04-21 | 3 | -40/+47 |
* | Provide TLSv1.3 cipher suite aliases to match the names used in RFC 8446. | jsing | 2020-04-19 | 1 | -2/+25 |
* | Fix wrapping/indentation. | jsing | 2020-04-18 | 1 | -4/+3 |
* | Expose the peer ephemeral public key used for TLSv1.3 key exchange. | jsing | 2020-04-18 | 5 | -36/+79 |
* | Tweak previous active cipher suite code. | jsing | 2020-04-18 | 1 | -6/+5 |
* | Allow more key share groups for TLSv1.3. | jsing | 2020-04-18 | 1 | -21/+12 |
* | Only include TLSv1.3 cipher suites if there are active cipher suites. | jsing | 2020-04-17 | 1 | -2/+10 |
* | Generate client key share using our preferred group. | jsing | 2020-04-17 | 4 | -25/+37 |
* | Update in several respects: | schwarze | 2020-04-14 | 1 | -13/+11 |
* | add the missing sentence "LibreSSL no longer provides any such | schwarze | 2020-04-14 | 1 | -2/+3 |
* | Delete the three sentences listing the ciphers currently included | schwarze | 2020-04-14 | 1 | -15/+2 |
* | Document the TLSv1.3 control word, update the description of the | schwarze | 2020-04-11 | 1 | -4/+30 |
* | Include TLSv1.3 cipher suites unless cipher string references TLSv1.3. | jsing | 2020-04-09 | 1 | -6/+19 |
* | Tidy line wrapping and remove an extra blank line. | jsing | 2020-04-09 | 1 | -4/+3 |
* | ssl_aes_is_accelerated() returns a boolean - treat it as such, rather than | jsing | 2020-04-09 | 1 | -2/+2 |
* | Ensure legacy session ID is persistent during client TLS session. | jsing | 2020-04-08 | 1 | -9/+14 |
* | Send a zero-length session identifier if TLSv1.3 is not enabled. | jsing | 2020-04-06 | 1 | -4/+7 |
* | Void functions obviously do not return values; no need to elaborate. | schwarze | 2020-03-30 | 5 | -31/+10 |
* | Void functions obviously do not return values; no need to elaborate. | schwarze | 2020-03-29 | 1 | -5/+2 |
* | Consistently spell 'unsigned' as 'unsigned int', as style(9) seems | tb | 2020-03-16 | 7 | -44/+45 |
* | The RFC is clear (section 5.3) that sequence number should never wrap. | tb | 2020-03-16 | 1 | -5/+12 |
* | Remove dtls1_enc(). | jsing | 2020-03-13 | 5 | -222/+11 |
* | Correct TLSv1.3 sequence number increment and wrapping check. | jsing | 2020-03-13 | 1 | -3/+3 |
* | Ensure that CBB_add_space() always provides zeroed memory. | jsing | 2020-03-13 | 1 | -1/+2 |
* | Use calloc() rather than malloc() when allocating initial CBB buffer. | jsing | 2020-03-12 | 1 | -4/+3 |
* | Use calloc() rather than malloc() when allocating buffers. | jsing | 2020-03-12 | 1 | -3/+3 |
* | Stop overloading the record type for padding length. | jsing | 2020-03-12 | 5 | -13/+10 |
* | Use internal versions of SSL3_BUFFER, SSL3_RECORD and DTLS1_RECORD_DATA. | jsing | 2020-03-12 | 9 | -53/+83 |
* | Use ctx->hs->secrets rather than the S3I(s) version. | jsing | 2020-03-10 | 2 | -4/+4 |
* | Remove some unnecessary handshake enums/functions. | jsing | 2020-03-10 | 4 | -26/+4 |
* | Add a return value check to tls13_buffer_extend(). | jsing | 2020-03-10 | 1 | -1/+4 |
* | Remove the enc function pointers. | jsing | 2020-03-10 | 6 | -22/+12 |
* | RFC 8446, section 4.1.3: If a TLSv1.2 client receives a ServerHello for | tb | 2020-03-06 | 1 | -1/+27 |
* | TLSv1.3 servers that intend to downgrade are required to set the last | tb | 2020-03-06 | 1 | -4/+8 |