summaryrefslogtreecommitdiff
path: root/src/lib (follow)
Commit message (Expand)AuthorAgeFilesLines
* Replace RAND_bytes() usage with arc4random_buf().miod2014-11-096-20/+6
* GOST crypto algorithms (well, most of them), ported from the removed GOSTmiod2014-11-0975-31/+13110
* Introduce EVP_MD_CTX_ctrl(), to allow for fine control of a given digest.miod2014-11-094-4/+52
* Allow digest routines to provide their own HASH_FINAL routine; will bemiod2014-11-092-6/+10
* Clean up more SSLv2 remnants.jsing2014-11-086-58/+30
* missing outlen in tls_write decltedu2014-11-071-3/+3
* edns0 is not currently supported: confirmed by sthen and ericjmc2014-11-051-7/+7
* only call SRTP (whatever that is) functions when the connection type istedu2014-11-032-10/+10
* minor cleanup of zlib code. DSO is gone. ok jsing.tedu2014-11-0310-434/+14
* Add hooks to override native arc4random_buf on FreeBSD.bcook2014-11-034-0/+298
* Add a tls_connect_fds() function that allows a secure connection to bejsing2014-11-023-6/+34
* Remove remnants from RC2 and SEED - there are no longer any cipher suitesjsing2014-11-024-106/+46
* Remove an outdated comment re EDH vs DHE - DHE is now used consistently andjsing2014-10-312-16/+2
* Update comments for TLS ExtensionType values - many of the referencedjsing2014-10-312-76/+92
* Crank libssl major due to recent additions, removals and changes.jsing2014-10-312-4/+4
* Remove now unused remnants from public structs.jsing2014-10-314-14/+4
* Add support for automatic DH ephemeral keys.jsing2014-10-3112-44/+194
* Remove support for ephemeral/temporary RSA private keys.jsing2014-10-3114-474/+88
* Rename libressl to libtls to avoid confusion and to make it easier tojsing2014-10-3113-451/+422
* clean up verbiage around the calculations; ok ingo jmc ottoderaadt2014-10-301-5/+5
* Don't mention old systems where realloc(NULL, n) didn't work as wemillert2014-10-301-11/+7
* deregister; no binary changejsg2014-10-28100-460/+460
* Check the result of sk_*_push() operations for failure.miod2014-10-2818-88/+170
* Save space in man page: err() -> errc() and combine vars.doug2014-10-231-18/+11
* In PKCS12_setup_mac(), do not assign p12->mac->salt->length until the allocationmiod2014-10-222-16/+18
* Avoid a NULL pointer dereference that can be triggered byjsing2014-10-222-4/+4
* Place most of the RAND_* functions under #ifndef LIBRESSL_INTERNAL (somejsing2014-10-222-2/+8
* Use arc4random_buf() instead of RAND_bytes() or RAND_pseudo_bytes().jsing2014-10-2254-260/+202
* Avoid writing in second person in malloc.3doug2014-10-221-13/+12
* List extensions in the STANDARDS section, replacing some text below CAVEATS.schwarze2014-10-201-33/+30
* digests: *_LONG_LOG2 is not used, stop talking about it.bcook2014-10-2014-56/+22
* SSL: Fix memory leak in d2i_SSL_SESSION.bcook2014-10-202-2/+4
* make RETURN VALUES more conciseschwarze2014-10-191-77/+28
* Revamp malloc.3 by reordering the sections and rewriting parts.doug2014-10-191-185/+417
* Revert last commit due to changed semantics found by make release.doug2014-10-191-10/+10
* Better POSIX compliance in realpath(3).doug2014-10-181-10/+10
* None of these need to include <openssl/rand.h>jsing2014-10-1862-128/+62
* Sort/group includes.jsing2014-10-182-50/+52
* Use arc4random_buf() instead of RAND_bytes() or RAND_pseudo_bytes().jsing2014-10-1834-130/+76
* Typical malloc() with size multiplication to reallocarray().doug2014-10-183-12/+12
* use .fn here too. from Jean-Philippe Ouellettedu2014-10-161-3/+3
* Get rid of the last remaining BUF_strdup and BUF_strlcpy and friends, usebeck2014-10-168-16/+24
* Fuck it. No SSLv3; not now, not ever. The API of the future will onlytedu2014-10-153-8/+4
* basic formatting fixes;jmc2014-10-151-4/+3
* Disable SSLv3 by default.jsing2014-10-152-2/+8
* Clear protocol options before optionally setting them.jsing2014-10-151-1/+6
* Set SSL_OP_SINGLE_ECDH_USE before calling SSL_CTX_set_tmp_ecdh() - thisjsing2014-10-151-2/+2
* Only require an EC public key in tls1_set_ec_id(), if we need to providejsing2014-10-152-8/+8
* Add cipher aliases for DHE (the correct name for EDH) and ECDHE (thejsing2014-10-154-8/+32
* seems like a good time to make the ressl default TLSv1 only.tedu2014-10-142-6/+5