| Commit message (Expand) | Author | Age | Files | Lines |
| * | Don't check the signature if a cert is self signed. | tb | 2022-06-29 | 1 | -2/+7 |
| * | Make ssl_cert_add{0,1}_chain_cert() take ssl/ctx | tb | 2022-06-29 | 4 | -22/+30 |
| * | ssl_cert_set{0,1}_chain() take ssl/ctx | tb | 2022-06-29 | 4 | -19/+36 |
| * | Add a security check to ssl_set_cert() | tb | 2022-06-29 | 1 | -1/+7 |
| * | Make ssl_set_{cert,pkey} take an ssl/ctx | tb | 2022-06-29 | 1 | -12/+20 |
| * | Refactor use_certificate_chain_* to take ssl/ctx instead of a cert | tb | 2022-06-29 | 3 | -21/+45 |
| * | Add functions that check security level in certs and cert chains. | tb | 2022-06-29 | 2 | -2/+147 |
| * | Make sure the verifier checks the security level in cert chains | tb | 2022-06-29 | 1 | -2/+9 |
| * | Remove a confusing comment | tb | 2022-06-29 | 1 | -7/+2 |
| * | Parse the @SECLEVEL=n annotation in cipher strings | tb | 2022-06-29 | 3 | -15/+28 |
| * | Add support for sending QUIC transport parameters | beck | 2022-06-29 | 7 | -7/+209 |
| * | whitespace nit | tb | 2022-06-29 | 1 | -2/+2 |
| * | missing blank line | tb | 2022-06-29 | 1 | -1/+2 |
| * | Also check the security level in SSL_get1_supported_ciphers | tb | 2022-06-29 | 1 | -2/+5 |
| * | Check security level when convertin a cipher list to bytes | tb | 2022-06-29 | 1 | -1/+4 |
| * | Also check the security level when choosing a shared cipher | tb | 2022-06-29 | 1 | -1/+5 |
| * | There's tentacles, tentacles everywhere | tb | 2022-06-29 | 1 | -1/+7 |
| * | Also check the security level of the 'tmp dh' | tb | 2022-06-29 | 3 | -3/+24 |
| * | Check the security of DH key shares | tb | 2022-06-29 | 6 | -6/+42 |
| * | Rename one s to ssl for consistency | tb | 2022-06-29 | 1 | -2/+2 |
| * | Check sigalg security level when selecting them. | tb | 2022-06-29 | 1 | -1/+4 |
| * | Check the security bits of the sigalgs' pkey | tb | 2022-06-29 | 1 | -1/+7 |
| * | Check the security level when building sigalgs | tb | 2022-06-29 | 4 | -12/+20 |
| * | Annotate sigalgs with their security level. | tb | 2022-06-29 | 2 | -2/+23 |
| * | Add prototypes for ssl{_ctx,}_security() | tb | 2022-06-28 | 1 | -1/+5 |
| * | Add error code defins | tb | 2022-06-28 | 1 | -1/+6 |
| * | Add a period to a comment | tb | 2022-06-28 | 1 | -2/+2 |
| * | Security level >= 3 requires a ciphersuite with PFS | tb | 2022-06-28 | 1 | -3/+4 |
| * | Add a secop handler for tmp_dh | tb | 2022-06-28 | 1 | -1/+19 |
| * | Add security level related error codes. | tb | 2022-06-28 | 1 | -1/+6 |
| * | Sort error strings | tb | 2022-06-28 | 1 | -3/+3 |
| * | Implement ssl{,_ctx}_security() | tb | 2022-06-28 | 1 | -1/+15 |
| * | Copy the security level stuff in ssl_cert_dup() | tb | 2022-06-28 | 1 | -1/+5 |
| * | Set up the default callback in SSL_CERT | tb | 2022-06-28 | 1 | -1/+8 |
| * | Implement the default security level callback | tb | 2022-06-28 | 3 | -2/+202 |
| * | Provide OPENSSL_TLS_SECURITY_LEVEL define | tb | 2022-06-28 | 1 | -1/+7 |
| * | Implement SSL_{CTX_}_{g,s}et_security_level(3) | tb | 2022-06-28 | 1 | -1/+25 |
| * | Add security callback, level and ex_data fields to SSL_CERT | tb | 2022-06-28 | 1 | -1/+6 |
| * | Add #defines and prototypes for security level API | tb | 2022-06-28 | 1 | -1/+72 |
| * | Free ciphers before assigning to them | tb | 2022-06-28 | 1 | -6/+6 |
| * | Change the loop index from an unsigned int to size_t now that all | tb | 2022-06-07 | 1 | -2/+2 |
| * | Simplify another CBS_write_bytes() call in d2i_SSL_SESSION() | tb | 2022-06-07 | 1 | -5/+2 |
| * | Switch sid_ctx_length in SSL, SSL_CTX and SSL_SESSION to a size_t | tb | 2022-06-07 | 1 | -4/+4 |
| * | Use CBS_write_bytes() instead of manual unpacking of a CBS and assigning | tb | 2022-06-07 | 1 | -3/+5 |
| * | Simplify various CBS_write_bytes() calls | tb | 2022-06-07 | 3 | -13/+7 |
| * | Switch SSL_SESSION's session_id_length to a size_t | tb | 2022-06-07 | 1 | -2/+2 |
| * | Add missing error check call in ssl3_get_new_session_ticket() | tb | 2022-06-07 | 1 | -4/+9 |
| * | Another small readability tweak: compare explicitly against 0 and NULL, | tb | 2022-06-07 | 1 | -4/+3 |
| * | Tweak readability of a test: compare tmp explicitly against 0 and drop | tb | 2022-06-07 | 1 | -2/+2 |
| * | Add a cast to SSL_SESSION_get_id() to indicate that session_id_length | tb | 2022-06-07 | 1 | -2/+2 |