summaryrefslogtreecommitdiff
path: root/src/lib (follow)
Commit message (Expand)AuthorAgeFilesLines
* Return an error if tls_handshake() is called on a TLS context that hasjsing2017-05-071-1/+6
* Bring in an SSL_HANDSHAKE structure and commence the great shovellingbeck2017-05-0611-113/+119
* Use freezero() for the tls_load_file() failure case, since we'rejsing2017-05-061-4/+4
* BIO_free_all() and EVP_PKEY_free() can be called with NULL.jsing2017-05-061-5/+3
* Be explicit about when it is safe to call tls_config_free().jsing2017-05-061-3/+8
* Document tls_unload_file().jsing2017-05-061-3/+14
* Perform reference counting for tls_config. This allows tls_config_free() tojsing2017-05-064-6/+22
* Provide a tls_unload_file() function, that frees the memory returned fromjsing2017-05-063-2/+10
* Bring in HKDF, from BoringSSL, with regress tests modified to bebeck2017-05-063-1/+186
* Provide SSL{,_CTX}_set_{min,max}_proto_version() functions.jsing2017-05-066-5/+115
* space needed between macro arg and punctuation;jmc2017-05-061-2/+2
* Bump minors for symbol addition in libcryptobeck2017-05-063-3/+3
* Add ASN1_TIME_set_to to exported symbolsbeck2017-05-061-0/+4
* Add ASN1_TIME_set_tm to set an asn1 from a struct tm *beck2017-05-063-5/+44
* Add missing $OpenBSD$ tags.jsing2017-05-064-2/+4
* Move tls_config_skip_private_key_check() out from under HIDDEN_DECLS.claudio2017-05-041-2/+4
* make the description strings match the codederaadt2017-05-031-10/+10
* the XXXfree functions being called accept NULL, so don't check first.deraadt2017-05-023-26/+14
* use freezero() instead of memset/explicit_bzero + free. Substantiallyderaadt2017-05-0238-238/+109
* No original OpenSSL code remains in this file. Relicensebeck2017-04-301-54/+13
* Make BIO_get_host_ip just yet another getaddrinfo wrapperbeck2017-04-301-27/+20
* Rework BIO_accept to be more like modern code.beck2017-04-301-54/+19
* Only enable -Werror on libcrypto/libssl/libtls if we are building withjsing2017-04-303-7/+14
* Switch back to freezero() and explicitly initialise data_len to zero. Thejsing2017-04-301-6/+3
* Microsoft Windows hates BIO_get_accept_socket in portable. Fix it tobeck2017-04-301-115/+35
* Add a tls_keypair_clear_key() function that uses freezero() to make keyjsing2017-04-301-5/+11
* Fix a bug caused by the return value being set early to signal successfuljsing2017-04-291-5/+5
* Revert previous - we still want to do this, but I forgot about the installerbeck2017-04-292-14/+6
* We now require you to have a working libpthreadbeck2017-04-291-1/+2
* Make it safe to call SSL_library_init more than once.beck2017-04-291-5/+12
* Stop calling OPENSSL_init() internally, since it is a no-op. Also placejsing2017-04-293-9/+4
* Switch Linux getrandom() usage to non-blocking mode, continuing tobeck2017-04-291-6/+9
* Revert previous change that forced consistency between return value andbeck2017-04-281-10/+2
* revert previous accidental commitbeck2017-04-285-25/+46
* *** empty log message ***beck2017-04-285-46/+25
* Remove "len < 0" check; len is socklen_t (uint32_t) so can't bemillert2017-04-271-2/+2
* tls_free(3) and tls_config_free(3) accept NULL;schwarze2017-04-272-4/+14
* Rearrange text a bit to make it clear what "discarded" means; ok jmc@ deraadt@otto2017-04-231-8/+13
* For small allocations (chunk) freezero only validates the givenotto2017-04-221-5/+10
* Fix previous.visa2017-04-201-2/+2
* Get TCB address using the RDHWR instruction instead of __get_tcb().visa2017-04-201-4/+5
* don't forget to fill in canary bytes for posix_memalign(3); reported byotto2017-04-181-1/+4
* consictently use .Dv NULL and a few other tweaks; ok schwarze@otto2017-04-171-20/+17
* whitespace fixesotto2017-04-171-14/+14
* backout previous, data_len is not always initializedotto2017-04-161-2/+5
* Use freezero(3) when cleaning up session tickets - not only does it requirejsing2017-04-141-6/+3
* Use freezero(3) to clean up the X25519 keys - simpler, cleaner code.jsing2017-04-141-6/+3
* Use freezero(3) in the CBB clean up path, since this could hold sensitivejsing2017-04-141-3/+2
* Switch i2d_SSL_SESSION() back to freezero(3) now that the size constraintsjsing2017-04-141-5/+2
* Clean up server key exchange EC point handling. Encode the point directlyjsing2017-04-141-27/+15