summaryrefslogtreecommitdiff
path: root/src/lib/libtls (follow)
Commit message (Expand)AuthorAgeFilesLines
* Be more specific about when the session file will be updated.jsing2018-02-101-2/+2
* Bump TLS API version since we've added more functionality.jsing2018-02-101-2/+2
* Move the keypair pubkey hash handling code to during config.jsing2018-02-104-69/+95
* Tidy/standardise some code.jsing2018-02-101-6/+3
* Remove NULL check from tls_conninfo_cert_pem() - all of the other conninfojsing2018-02-101-3/+1
* Document functions for client-side TLS session support.jsing2018-02-102-9/+56
* Add support to libtls for client-side TLS session resumption.jsing2018-02-106-5/+195
* Bump lib{crypto,ssl,tls} minors due to symbol addition.jsing2018-02-101-1/+1
* Have tls_keypair_pubkey_hash() call tls_keypair_load_cert() instead ofjsing2018-02-083-14/+11
* Ensure that tls_keypair_clear() clears the OCSP staple and pubkey hash.jsing2018-02-081-6/+5
* Do not bother NULLing pointers in a struct that is about to be freed.jsing2018-02-081-10/+1
* Move tls_keypair_pubkey_hash() to the keypair file.jsing2018-02-083-43/+43
* Avoid a memory leak that results when the same tls_config is reused.jsing2018-02-081-1/+4
* Assert tedu's copyright since some of the code moved here is his.jsing2018-02-081-1/+2
* Split keypair handling out into its own file - it had already appearedjsing2018-02-086-166/+215
* Do not bother NULLing pointers in memory that is freed immediately after.jsing2018-02-051-3/+1
* Be consistent with the goto label names used in libtls code.jsing2018-02-054-51/+52
* Make tls_config_parse_protocols() work correctly when passed a NULL pointerjsing2017-12-091-3/+5
* hyphenate DER/PEM-encoded, for consistency;jmc2017-10-082-9/+9
* Document tls_peer_cert_chain_pem().jsing2017-10-071-2/+13
* If tls_config_parse_protocols() is called with a NULL pointer, return thejsing2017-09-251-1/+4
* Keep track of which keypair is in use by a TLS context.jsing2017-09-204-14/+25
* Slightly restructure tls_ocsp_verify_cb() to make it more like libtls code.jsing2017-09-201-6/+7
* Provide a useful error if there are no OCSP URLs in the peer certificate.jsing2017-09-201-1/+4
* Fix indentation.jsing2017-09-201-1/+1
* Bump libssl/libtls minors due to symbol (re)addition.jsing2017-08-301-1/+1
* Bump lib{crypto,ssl,tls} majors due to symbol removals.jsing2017-08-281-2/+2
* Fix unchecked return nitbeck2017-08-281-2/+5
* Make the symbol for ASN1_time_tm_clamp_notafter visible so libtlsbeck2017-08-271-1/+5
* Switch to -Werror with clang for libressl.doug2017-08-131-2/+2
* Document tls_config_set_dheparams().jsing2017-08-121-4/+13
* Document tls_reset().jsing2017-08-121-2/+13
* new sentence, new line;jmc2017-08-111-3/+4
* Bump minor due to symbol addition.jsing2017-08-111-1/+1
* Add a tls_config_set_ecdhecurves() function to libtls, which allows thejsing2017-08-107-34/+108
* Don't use tls_cert_hash for the hashing used by the engine offloading magicclaudio2017-08-093-11/+24
* correct function name;jmc2017-08-011-3/+3
* Document tls_config_set_crl_file() and tls_config_set_crl_mem().jsing2017-07-061-3/+30
* Bump minor due to symbol addition.jsing2017-07-061-1/+1
* Add support for providing CRLs to libtls - once a CRL is provided wejsing2017-07-065-4/+67
* RFC 6066 states that IP literals are not permitted in "HostName" for ajsing2017-07-051-3/+9
* Use the tls_password_cb() callback with all PEM_read_bio_*() calls, so thatjsing2017-06-224-11/+14
* Fix incorrect indentation.jsing2017-06-221-2/+2
* Plug a memory leak in tls_keypair_cert_hash(), introduced in r1.60.jsing2017-06-221-1/+3
* Remove dead code that has remained hiding since ressl.c r1.14!jsing2017-06-221-4/+1
* Use the standard `rv' idiom in tls_keypair_load_cert(), rather thanjsing2017-06-221-5/+4
* Plug a memory leak. The main_cert needs to be X509_free()ed sinceclaudio2017-05-161-0/+2
* Ensure that a client context has been connected before attempting tojsing2017-05-072-4/+12
* Return an error if tls_handshake() is called on a TLS context that hasjsing2017-05-071-1/+6
* Use freezero() for the tls_load_file() failure case, since we'rejsing2017-05-061-4/+4