index
:
openbsd
OPENBSD_2_0
OPENBSD_2_1
OPENBSD_2_2
OPENBSD_2_3
OPENBSD_2_4
OPENBSD_2_5
OPENBSD_2_6
OPENBSD_2_7
OPENBSD_2_8
OPENBSD_2_9
OPENBSD_3_0
OPENBSD_3_1
OPENBSD_3_2
OPENBSD_3_3
OPENBSD_3_4
OPENBSD_3_5
OPENBSD_3_6
OPENBSD_3_7
OPENBSD_3_8
OPENBSD_3_9
OPENBSD_4_0
OPENBSD_4_1
OPENBSD_4_2
OPENBSD_4_3
OPENBSD_4_4
OPENBSD_4_5
OPENBSD_4_6
OPENBSD_4_7
OPENBSD_4_8
OPENBSD_4_9
OPENBSD_5_0
OPENBSD_5_1
OPENBSD_5_2
OPENBSD_5_3
OPENBSD_5_4
OPENBSD_5_5
OPENBSD_5_6
OPENBSD_5_7
OPENBSD_5_8
OPENBSD_5_9
OPENBSD_6_0
OPENBSD_6_1
OPENBSD_6_2
OPENBSD_6_3
OPENBSD_6_4
OPENBSD_6_5
OPENBSD_6_6
OPENBSD_6_7
OPENBSD_6_8
OPENBSD_6_9
OPENBSD_7_0
OPENBSD_7_1
OPENBSD_7_2
OPENBSD_7_3
OPENBSD_7_4
OPENBSD_7_5
OPENBSD_7_6
master
A mirror of https://github.com/libressl/openbsd.git
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
src
/
lib
(
follow
)
Commit message (
Expand
)
Author
Age
Files
Lines
*
Mark SSL_get_cipher_list(3) as deprecated; it is badly misnamed, and there
schwarze
2020-09-16
1
-4
/
+6
*
Avoid memset() before memcpy() for CBB_add_bytes().
jsing
2020-09-16
1
-2
/
+2
*
Make check in x509_verify_ctx_set_max_signatures() consistent with others.
jsing
2020-09-16
1
-4
/
+2
*
Dedup code in x509_verify_ctx_new_from_xsc().
jsing
2020-09-16
1
-14
/
+7
*
The undocumented public function SSL_set_SSL_CTX(3) changes the
schwarze
2020-09-15
1
-4
/
+4
*
Split the tls12_record_layer_write_mac() function.
jsing
2020-09-15
1
-10
/
+19
*
Do not destroy an existing cipher list when ssl_parse_ciphersuites()
schwarze
2020-09-15
1
-4
/
+2
*
Correct a failure case in tls12_record_layer_seal_record_protected()
jsing
2020-09-15
1
-2
/
+2
*
Create the missing RETURN VALUES section and move the appropriate
schwarze
2020-09-15
1
-57
/
+103
*
set error_depth and current_cert to make more legacy callbacks that don't check
beck
2020-09-15
1
-1
/
+3
*
Deduplicate the time validation code between the legacy and new
beck
2020-09-15
3
-27
/
+8
*
ifdef out code that is no longer used in here. once we are certain
beck
2020-09-15
1
-2
/
+5
*
Cleanup/simplify SSL_set_ssl_method().
jsing
2020-09-15
1
-18
/
+18
*
Mop up the get_ssl_method function pointer.
jsing
2020-09-15
2
-50
/
+2
*
Move state initialisation from SSL_clear() to ssl3_clear().
jsing
2020-09-14
2
-4
/
+4
*
Cleanup and simplify SSL_set_session().
jsing
2020-09-14
1
-36
/
+22
*
Avoid NULL deref SSL_{,CTX_}set_ciphersuites
tb
2020-09-14
1
-2
/
+2
*
simplify RETURN VALUES for x509_verify(3) after beck@ made the rules
schwarze
2020-09-14
1
-7
/
+3
*
Add initial man page for new x509_verify chain validator
beck
2020-09-14
1
-0
/
+225
*
Set error if we are given an NULL ctx in x509_verify, and set error
beck
2020-09-14
1
-5
/
+3
*
nuke a stray space
tb
2020-09-14
1
-2
/
+2
*
Fix potential leak when tmpext fails to be added to
beck
2020-09-14
1
-2
/
+6
*
remove unneeded variable "type".
beck
2020-09-14
1
-6
/
+5
*
Don't leak names on success
beck
2020-09-14
1
-1
/
+2
*
remove unneded variable "time1"
beck
2020-09-14
1
-6
/
+6
*
remove unneded variable "time"
beck
2020-09-14
1
-3
/
+2
*
fix bug introduced on review where refactor made it possible to
beck
2020-09-14
1
-2
/
+2
*
re-enable new x509 chain verifier as the default
beck
2020-09-14
1
-3
/
+1
*
Correctly fix double free introduced on review.
beck
2020-09-14
2
-3
/
+3
*
Fix double free - review moved the pop_free of roots to x509_verify_ctx_free
beck
2020-09-14
1
-2
/
+1
*
revert previous, need to fix a problem
beck
2020-09-14
1
-1
/
+3
*
Enable the use of the new x509 chain validator by default.
beck
2020-09-14
1
-3
/
+1
*
Implement SSL_{CTX_,}set_ciphersuites().
jsing
2020-09-13
5
-13
/
+211
*
Add new x509 certificate chain validator in x509_verify.c
beck
2020-09-13
10
-59
/
+1191
*
Improve handling of BIO_read()/BIO_write() failures in the TLSv1.3 stack.
jsing
2020-09-13
1
-1
/
+9
*
Use the correct type for tls1_set_ec_id()
tb
2020-09-12
1
-3
/
+3
*
Simplify tls1_set_ec_id() a bit
tb
2020-09-12
1
-24
/
+19
*
Unindent a bit of code that performs a few too many checks to
tb
2020-09-12
1
-10
/
+8
*
Avoid an out-of-bounds access in BN_rand()
tb
2020-09-12
1
-3
/
+8
*
Change over to use the new x509 name constraints verification.
beck
2020-09-12
1
-28
/
+7
*
Include machine/endian.h in gost2814789.c
inoguchi
2020-09-12
1
-1
/
+3
*
Add x509_constraints.c - a new implementation of x509 name constraints, with
beck
2020-09-11
3
-2
/
+1272
*
Remove cipher_list_by_id.
jsing
2020-09-11
7
-89
/
+32
*
Simplify SSL_get_ciphers().
jsing
2020-09-11
1
-13
/
+7
*
Rename ssl_cipher_is_permitted()
jsing
2020-09-11
3
-10
/
+10
*
Some SSL_AD_* defines snuck into the TLSv1.3 code - replace them with
jsing
2020-09-11
2
-10
/
+10
*
Add issuer cache, to be used by upcoming changes to validation code.
beck
2020-09-11
3
-1
/
+216
*
Various ciphers related clean up.
jsing
2020-09-11
1
-41
/
+36
*
Set alpn_selected_len = 0 when alpn_selected is NULL
inoguchi
2020-09-09
1
-1
/
+4
*
Import latest OPENSSL_NO_* flags from OpenSSL 1.1.1g
inoguchi
2020-09-09
1
-0
/
+8
[next]