summaryrefslogtreecommitdiff
path: root/src/lib (follow)
Commit message (Expand)AuthorAgeFilesLines
* Sort/group includes.jsing2014-10-182-50/+52
* Use arc4random_buf() instead of RAND_bytes() or RAND_pseudo_bytes().jsing2014-10-1834-130/+76
* Typical malloc() with size multiplication to reallocarray().doug2014-10-183-12/+12
* use .fn here too. from Jean-Philippe Ouellettedu2014-10-161-3/+3
* Get rid of the last remaining BUF_strdup and BUF_strlcpy and friends, usebeck2014-10-168-16/+24
* Fuck it. No SSLv3; not now, not ever. The API of the future will onlytedu2014-10-153-8/+4
* basic formatting fixes;jmc2014-10-151-4/+3
* Disable SSLv3 by default.jsing2014-10-152-2/+8
* Clear protocol options before optionally setting them.jsing2014-10-151-1/+6
* Set SSL_OP_SINGLE_ECDH_USE before calling SSL_CTX_set_tmp_ecdh() - thisjsing2014-10-151-2/+2
* Only require an EC public key in tls1_set_ec_id(), if we need to providejsing2014-10-152-8/+8
* Add cipher aliases for DHE (the correct name for EDH) and ECDHE (thejsing2014-10-154-8/+32
* seems like a good time to make the ressl default TLSv1 only.tedu2014-10-142-6/+5
* Bump libressl version string to 2.1.bcook2014-10-142-4/+4
* remove unused variablechl2014-10-131-3/+1
* The return value on success of fcntl(F_SETFL) is not actually specified,bcook2014-10-132-6/+6
* Use O_NONBLOCK over FIONBIO.bcook2014-10-132-4/+16
* Remove useless comments in DES_is_weak_key(). Do we really care that thismiod2014-10-122-28/+20
* Paranoia: in ASN1_mbstring_ncopy(), check for len < 0 instead of len == -1,miod2014-10-122-4/+4
* Convert libssl manpages from pod to mdoc(7).bentley2014-10-12249-7737/+19938
* include header needed by older linux kernelsbcook2014-10-112-2/+4
* Since deraadt@ remembers seeing strdup() on one particular 4.2BSD machine,schwarze2014-10-111-4/+11
* Userland reallocarray() audit.doug2014-10-111-3/+3
* Userland reallocarray() audit.doug2014-10-111-3/+3
* replace select with equiv poll usage.dlg2014-10-101-17/+12
* add an API version number. ok jsingtedu2014-10-091-1/+3
* historytedu2014-10-081-4/+10
* use preferred license form. can't trust that doug guy with anything...tedu2014-10-081-20/+11
* mlinks, and prune some functions from man page i'm not ready for yet.tedu2014-10-082-14/+33
* more bettertedu2014-10-081-3/+6
* reluctantly rename man page after a functiontedu2014-10-081-1/+1
* whack a few stray .Pp macrosschwarze2014-10-081-4/+1
* add a few more functions.tedu2014-10-081-5/+17
* rough sketch of ressl documentationtedu2014-10-081-0/+318
* using reallocarray() gives us multiplicative integer overflow checkingderaadt2014-10-081-3/+3
* obvious malloc -> reallocarray, for mult int oflowderaadt2014-10-081-2/+2
* Use strdup() instead of malloc() + memcpy().miod2014-10-072-16/+6
* EC_KEY_set_group() does an EC_GROUP_dup() of its argument, so we don'tmiod2014-10-072-16/+4
* When verifying whether an IP address is in the commonName of ajca2014-10-061-1/+15
* If we have to match against a wildcard in a cert, verify that it containsjca2014-10-061-3/+23
* The fixes to X509_PURPOSE_add() in r1.18 actually could cause a globalmiod2014-10-052-54/+58
* Be sure to check the stack push operation for success in v2i_POLICY_MAPPINGS();miod2014-10-052-34/+38
* In v2i_AUTHORITY_INFO_ACCESS(), separate object allocation from object pushmiod2014-10-052-6/+16
* Memory leak upon error in set_dist_point_name().miod2014-10-052-2/+4
* Be sure to check object allocation for success before using them.miod2014-10-052-10/+20
* Missing deallocation upon error.miod2014-10-052-4/+6
* Fix memory leak in the error path of v2i_AUTHORITY_KEYID().miod2014-10-052-6/+12
* compile with c89 (code / decl ordering); from Joakim.Tjernlund@transmode.sederaadt2014-10-052-4/+6
* Use more specific curves/formats naming for local variables injsing2014-10-052-60/+56
* Use tls1_get_curvelist() in ssl_add_clienthello_tlsext(), rather thanjsing2014-10-052-22/+4