| Commit message (Expand) | Author | Age | Files | Lines |
... | |
* | Bring back the horrible API that is get_cipher_by_char/put_cipher_by_char. | jsing | 2015-02-06 | 28 | -30/+176 |
* | Rename SSL_CTX_use_certificate_chain() to SSL_CTX_use_certificate_chain_mem(). | reyk | 2015-02-06 | 8 | -21/+22 |
* | Declare the x509_(mem|file|dir)_lookup symbols as static because they | reyk | 2015-02-05 | 6 | -12/+12 |
* | Make the TLS connect and accept error messages consistent. | bluhm | 2015-01-30 | 2 | -5/+4 |
* | Use .Rv where appropriate, and move it to RETURN VALUES; | schwarze | 2015-01-29 | 3 | -27/+13 |
* | dial the time back to about 0.1s, closer to the original targets and | tedu | 2015-01-28 | 1 | -4/+4 |
* | Fix a number of issues relating to algorithms in signatures, Mostly | beck | 2015-01-28 | 14 | -18/+116 |
* | Place the remainder of e_os2.h under #ifndef LIBRESSL_INTERNAL until we can | jsing | 2015-01-26 | 1 | -1/+5 |
* | Add AEAD as a "MAC alias" so that it is possible to identify/select ciphers | jsing | 2015-01-26 | 4 | -4/+14 |
* | Ensure that a ServerKeyExchange message is received if the selected cipher | jsing | 2015-01-23 | 2 | -10/+36 |
* | Use field names in struct initialisers. | jsing | 2015-01-22 | 6 | -66/+66 |
* | last entry in NAME should not have a trailing comma; | jmc | 2015-01-22 | 1 | -2/+2 |
* | Add MLINK for tls_config_set_ca_mem() | reyk | 2015-01-22 | 1 | -1/+2 |
* | Allow to to load the CA chain directly from memory instead of | reyk | 2015-01-22 | 6 | -8/+39 |
* | Support CA verification in chroot'ed processes without direct file | reyk | 2015-01-22 | 6 | -6/+20 |
* | Add X509_STORE_load_mem() to load certificates from a memory buffer | reyk | 2015-01-22 | 9 | -8/+338 |
* | Assume that the size of a pointer will not change at runtime. | bcook | 2015-01-22 | 2 | -56/+30 |
* | Fix DTLS memory leak (CVE-2015-0206).libressl-v2.1.3 | doug | 2015-01-21 | 2 | -18/+46 |
* | Add arc4random/getentropy shims for NetBSD. | bcook | 2015-01-19 | 4 | -0/+300 |
* | Improve wording in alloca. | tedu | 2015-01-17 | 1 | -7/+5 |
* | Use ">", not ">=" when comparing length to HOST_NAME_MAX since | millert | 2015-01-16 | 1 | -3/+3 |
* | Replace HOST_NAME_MAX+1-1 with HOST_NAME_MAX. OK deraad@ | millert | 2015-01-16 | 2 | -8/+8 |
* | Replace check for ">= HOST_NAME_MAX+1" with "> HOST_NAME_MAX". | millert | 2015-01-16 | 1 | -1/+1 |
* | Move to the <limits.h> universe. | deraadt | 2015-01-16 | 23 | -57/+40 |
* | The SSL/TLS session Id context is limited to 32 bytes. Instead of | reyk | 2015-01-16 | 1 | -1/+13 |
* | Delete the MANLINT variable and the related SUFFIXES rules because | schwarze | 2015-01-16 | 2 | -4/+4 |
* | remove unused variable | chl | 2015-01-15 | 1 | -2/+1 |
* | back in september I did the large abstraction refactoring to allow these | deraadt | 2015-01-15 | 14 | -14/+28 |
* | Make strlcpy/strlcat slightly easier to read. | millert | 2015-01-15 | 4 | -86/+82 |
* | For non-blocking sockets tls_connect_fds() could fail with EAGAIN. | bluhm | 2015-01-13 | 2 | -7/+22 |
* | rename blocks to words. bcrypt "blocks" are unrelated to blowfish blocks, | tedu | 2015-01-12 | 1 | -9/+9 |
* | Fix a memory leak in bss_dgram. | doug | 2015-01-12 | 2 | -6/+26 |
* | missing , found by Dongsheng Song | deraadt | 2015-01-08 | 1 | -3/+3 |
* | Avoid a double-free in an error path. | doug | 2015-01-08 | 2 | -2/+4 |
* | stupid me. need errno.h | tedu | 2015-01-07 | 1 | -1/+2 |
* | set errno = EINVAL for invalid salts and hashes in most functions. | tedu | 2015-01-07 | 1 | -12/+20 |
* | mix in more virtual memory and process information | bcook | 2015-01-07 | 2 | -4/+8 |
* | add initial HP-UX getentropy/arc4random support. | bcook | 2015-01-06 | 4 | -0/+992 |
* | rename kern enter/exit macros to malloc enter/leave to better reflect | tedu | 2015-01-05 | 1 | -7/+7 |
* | convert clock() to clock_gettime() for improved precision (and accuracy?) | tedu | 2015-01-05 | 1 | -7/+9 |
* | Fix incorrect OPENSSL_assert() usage. | doug | 2015-01-03 | 2 | -48/+106 |
* | Rename the tls_connect_socket() parameter 'socket' to 's' to avoid | bluhm | 2015-01-02 | 1 | -4/+4 |
* | Revert previous; tls_accept_socket() was intentionally undocumented | schwarze | 2015-01-01 | 1 | -7/+1 |
* | minimally document tls_accept_socket(); | schwarze | 2015-01-01 | 1 | -2/+8 |
* | copy bcrypt autotune from encrypt(1) and expose via crypt_newhash | tedu | 2014-12-30 | 2 | -5/+43 |
* | don't leak timing info about padding errors by generating a fake key | tedu | 2014-12-29 | 2 | -10/+20 |
* | include netinet/in.h to define struct in6_addr. | bcook | 2014-12-27 | 1 | -1/+2 |
* | simplify crypt_checkpass. The API promise is that this function doesn't | tedu | 2014-12-24 | 1 | -11/+5 |
* | Add size_t to int checks for SSL functions. | doug | 2014-12-17 | 3 | -8/+39 |
* | typo; ok deraadt | sthen | 2014-12-16 | 2 | -3/+3 |