| Commit message (Expand) | Author | Age | Files | Lines |
* | tweak the wording to make it clearer under which conditions exactly | schwarze | 2020-04-25 | 1 | -4/+4 |
* | Improve TLSv1.3 state machine for HelloRetryRequest handling. | jsing | 2020-04-22 | 5 | -66/+104 |
* | Handle TLSv1.3 key shares other than X25519 on the server side. | jsing | 2020-04-21 | 2 | -16/+34 |
* | Consolidate TLSv1.3 constants. | jsing | 2020-04-21 | 3 | -40/+47 |
* | Provide TLSv1.3 cipher suite aliases to match the names used in RFC 8446. | jsing | 2020-04-19 | 1 | -2/+25 |
* | Fix wrapping/indentation. | jsing | 2020-04-18 | 1 | -4/+3 |
* | Expose the peer ephemeral public key used for TLSv1.3 key exchange. | jsing | 2020-04-18 | 5 | -36/+79 |
* | Tweak previous active cipher suite code. | jsing | 2020-04-18 | 1 | -6/+5 |
* | Allow more key share groups for TLSv1.3. | jsing | 2020-04-18 | 1 | -21/+12 |
* | Only include TLSv1.3 cipher suites if there are active cipher suites. | jsing | 2020-04-17 | 1 | -2/+10 |
* | Generate client key share using our preferred group. | jsing | 2020-04-17 | 4 | -25/+37 |
* | Remove AUTHORS section. This follows what is done in strstr.3 | claudio | 2020-04-16 | 1 | -4/+2 |
* | Replace the simple memmem() implementation with a version that is O(n) | claudio | 2020-04-16 | 1 | -47/+167 |
* | Resync our strstr.c with the musl version. Removes some debug code and | claudio | 2020-04-16 | 1 | -11/+3 |
* | Update in several respects: | schwarze | 2020-04-14 | 1 | -13/+11 |
* | add the missing sentence "LibreSSL no longer provides any such | schwarze | 2020-04-14 | 1 | -2/+3 |
* | Delete the three sentences listing the ciphers currently included | schwarze | 2020-04-14 | 1 | -15/+2 |
* | Document the TLSv1.3 control word, update the description of the | schwarze | 2020-04-11 | 1 | -4/+30 |
* | sync cert.pem with Mozilla's root ca list, ok beck@ | sthen | 2020-04-10 | 1 | -276/+343 |
* | When printing the serialNumber, fall back to the colon separated hex | tb | 2020-04-10 | 1 | -2/+4 |
* | Include TLSv1.3 cipher suites unless cipher string references TLSv1.3. | jsing | 2020-04-09 | 1 | -6/+19 |
* | Tidy line wrapping and remove an extra blank line. | jsing | 2020-04-09 | 1 | -4/+3 |
* | ssl_aes_is_accelerated() returns a boolean - treat it as such, rather than | jsing | 2020-04-09 | 1 | -2/+2 |
* | Ensure legacy session ID is persistent during client TLS session. | jsing | 2020-04-08 | 1 | -9/+14 |
* | Send a zero-length session identifier if TLSv1.3 is not enabled. | jsing | 2020-04-06 | 1 | -4/+7 |
* | "eventually" came and went back in 2004.libressl-v3.1.0 | martijn | 2020-03-30 | 1 | -3/+1 |
* | Void functions obviously do not return values; no need to elaborate. | schwarze | 2020-03-30 | 5 | -31/+10 |
* | Void functions obviously do not return values; no need to elaborate. | schwarze | 2020-03-29 | 5 | -28/+10 |
* | Be concise: do not say that void functions return no values, that's obvious. | schwarze | 2020-03-28 | 3 | -22/+6 |
* | Fix ASN1 print functions | inoguchi | 2020-03-24 | 1 | -6/+13 |
* | Consistently spell 'unsigned' as 'unsigned int', as style(9) seems | tb | 2020-03-16 | 7 | -44/+45 |
* | The RFC is clear (section 5.3) that sequence number should never wrap. | tb | 2020-03-16 | 1 | -5/+12 |
* | Remove dtls1_enc(). | jsing | 2020-03-13 | 5 | -222/+11 |
* | Correct TLSv1.3 sequence number increment and wrapping check. | jsing | 2020-03-13 | 1 | -3/+3 |
* | Ensure that CBB_add_space() always provides zeroed memory. | jsing | 2020-03-13 | 1 | -1/+2 |
* | Use calloc() rather than malloc() when allocating initial CBB buffer. | jsing | 2020-03-12 | 1 | -4/+3 |
* | Use calloc() rather than malloc() when allocating buffers. | jsing | 2020-03-12 | 1 | -3/+3 |
* | Stop overloading the record type for padding length. | jsing | 2020-03-12 | 5 | -13/+10 |
* | Use internal versions of SSL3_BUFFER, SSL3_RECORD and DTLS1_RECORD_DATA. | jsing | 2020-03-12 | 9 | -53/+83 |
* | Use ctx->hs->secrets rather than the S3I(s) version. | jsing | 2020-03-10 | 2 | -4/+4 |
* | Remove some unnecessary handshake enums/functions. | jsing | 2020-03-10 | 4 | -26/+4 |
* | Add a return value check to tls13_buffer_extend(). | jsing | 2020-03-10 | 1 | -1/+4 |
* | Remove the enc function pointers. | jsing | 2020-03-10 | 6 | -22/+12 |
* | RFC 8446, section 4.1.3: If a TLSv1.2 client receives a ServerHello for | tb | 2020-03-06 | 1 | -1/+27 |
* | TLSv1.3 servers that intend to downgrade are required to set the last | tb | 2020-03-06 | 1 | -4/+8 |
* | Check high bit for base64 decode | inoguchi | 2020-03-04 | 1 | -2/+10 |
* | Fix base64 processing of long lines | inoguchi | 2020-03-03 | 1 | -99/+66 |
* | The decryption_failed alert must not be sent by compliant implementations. | tb | 2020-02-23 | 1 | -2/+2 |
* | According to RFC 8446, Section 4.4.4, recipients of incorrect Finished | tb | 2020-02-23 | 2 | -4/+4 |
* | Remove the s2n macro now that it is finally unused. | jsing | 2020-02-21 | 1 | -4/+1 |