summaryrefslogtreecommitdiff
path: root/src/lib (follow)
Commit message (Expand)AuthorAgeFilesLines
* correct function name;jmc2017-08-011-3/+3
* as noted by Hanno Boeck, using the *check_private_key functions isbenno2017-07-251-6/+22
* Rewrite and move the last remnants of the ServerHello SNI handling intojsing2017-07-242-29/+25
* Rewrite the TLS Renegotiation Indication extension handling using CBB/CBSjsing2017-07-246-346/+161
* Hook the TLS extension parsing framework into the serverhello parsing.jsing2017-07-231-1/+6
* zap trailing whitespace;jmc2017-07-221-2/+2
* rework the page a bit, clarify a few things, maybe better wordingtedu2017-07-221-8/+13
* Allow leading . in nameConstraints. from openssl via jabberwock. ok jsingtedu2017-07-201-2/+2
* Check the return value of CBB_init_fixed(), since it can fail.jsing2017-07-191-3/+5
* Start rewriting TLS extension handling.jsing2017-07-164-141/+328
* Remove unused variable.jsing2017-07-151-3/+3
* remove misc. depend and yacc nits that no longer matter.espie2017-07-101-2/+1
* one more instance of the previous commit; also initialize ->offset to aotto2017-07-101-2/+3
* update the little endian processor list to give it a chance of matchingtedu2017-07-082-6/+6
* Only access offset if canaries are enabled *and* size > 0, otherwise offsetotto2017-07-071-2/+2
* Document tls_config_set_crl_file() and tls_config_set_crl_mem().jsing2017-07-061-3/+30
* Bump minor due to symbol addition.jsing2017-07-061-1/+1
* Add support for providing CRLs to libtls - once a CRL is provided wejsing2017-07-065-4/+67
* The 0x (or 0X) prefix in base 16 is optional so only skip over themillert2017-07-066-18/+18
* fix broken cross references; found with mandoc -Tlintschwarze2017-07-063-43/+8
* RFC 6066 states that IP literals are not permitted in "HostName" for ajsing2017-07-051-3/+9
* nits about trailing punctuation found with mandoc -Tlintschwarze2017-07-051-4/+4
* void functions don't return 0tb2017-07-051-6/+2
* fix cross references to self; found with mandoc -Tlintschwarze2017-07-054-13/+12
* .init stub creation doesn't need a jmp + .align to reach a branch target,deraadt2017-06-281-3/+0
* Use the tls_password_cb() callback with all PEM_read_bio_*() calls, so thatjsing2017-06-224-11/+14
* Fix incorrect indentation.jsing2017-06-221-2/+2
* Plug a memory leak in tls_keypair_cert_hash(), introduced in r1.60.jsing2017-06-221-1/+3
* Remove dead code that has remained hiding since ressl.c r1.14!jsing2017-06-221-4/+1
* Use the standard `rv' idiom in tls_keypair_load_cert(), rather thanjsing2017-06-221-5/+4
* Distinguish between self-issued certificates and self-signed certificates.jsing2017-06-222-30/+40
* port the RBT code to userland by making it part of libc.dlg2017-06-191-10/+11
* mark files as BUILDFIRST, or write explicit dependencies, so that mostespie2017-06-161-1/+2
* fix broken markup of callback arguments; found with mandoc -Tlintschwarze2017-06-102-11/+8
* repair broken markup of callback argument; found with mandoc -Tlintschwarze2017-06-101-5/+3
* Don't fall back to heapsort() if we would otherwise switch tomillert2017-05-301-7/+7
* Randomize link-order of libcrypto as we do with libc. This libraryderaadt2017-05-291-1/+2
* Avoid a potential NULL pointer dereference in d2i_ECPrivateKey().jsing2017-05-261-1/+7
* Add definitions for three OIDs used in EV certificates.jsing2017-05-252-0/+9
* Support swapping 32-bit aligned elements on 64-bit platforms.millert2017-05-241-22/+63
* Document that qsort falls back to heapsort() if the recursion depthmillert2017-05-201-3/+13
* Use David Musser's introsort algorithm to fall back to heapsort(3)millert2017-05-202-14/+45
* The BSD qsort() performs tail recursion elimination on the secondmillert2017-05-171-10/+25
* Plug a memory leak. The main_cert needs to be X509_free()ed sinceclaudio2017-05-161-0/+2
* Typo: freezeo -> freezerotb2017-05-151-3/+3
* - fix bug wrt posix_memalign(3) of blocks between half a page and a pageotto2017-05-132-8/+18
* Fix a problem introduced in freezero() conversion and usejsg2017-05-111-2/+2
* BUF_MEM_grow_clean() returns an int, not a size_t. Humourously, on successjsing2017-05-081-3/+3
* Drop cipher suites with DSS authentication - there is no good reason tojsing2017-05-071-197/+1
* Instead of starting a 'zero-sized' CBB at the size of the first additionjsing2017-05-071-5/+8