summaryrefslogtreecommitdiff
path: root/src/lib (follow)
Commit message (Expand)AuthorAgeFilesLines
* Rewrite EllipticCurves TLS extension handling using CBB/CBS and the newdoug2017-08-114-76/+135
* Convert ssl3_send_certificate_request() to CBB.jsing2017-08-113-63/+73
* new sentence, new line;jmc2017-08-111-3/+4
* Add doug@'s copyright since he just added code to these two files.jsing2017-08-112-2/+4
* Bump minor due to symbol addition.jsing2017-08-111-1/+1
* Rewrite the ECPointFormats TLS extension handling using CBB/CBS and thedoug2017-08-114-147/+125
* Add a tls_config_set_ecdhecurves() function to libtls, which allows thejsing2017-08-107-34/+108
* Clean up the EC key/curve configuration handling.jsing2017-08-107-120/+54
* Pull out the code that identifies if we have an ECC cipher in the cipherjsing2017-08-093-34/+52
* Don't use tls_cert_hash for the hashing used by the engine offloading magicclaudio2017-08-093-11/+24
* Consistently return from each SSL/SSL_CTX control case, rather thanjsing2017-08-091-33/+27
* Split out the remaining SSL_CTX controls into individual functions.jsing2017-08-091-40/+88
* Start splitting out SSL_CTX controls into individual functions, so thatjsing2017-08-091-71/+92
* Be consistent and return from each SSL control case, rather than breakingjsing2017-08-091-18/+10
* Split out the remaining SSL controls into individual functions.jsing2017-08-091-46/+93
* Split more controls into individual functions.jsing2017-08-091-64/+91
* Start splitting out controls into individual functions, so that they canjsing2017-08-091-29/+63
* Remove unnecessary curly braces and unindent. Also add a few blank linesjsing2017-08-091-11/+13
* Fix conditionals for DH controls.jsing2017-08-091-3/+3
* add missing and correct misspelled names, most in NAME sections;schwarze2017-08-0110-33/+45
* correct function name;jmc2017-08-011-3/+3
* as noted by Hanno Boeck, using the *check_private_key functions isbenno2017-07-251-6/+22
* Rewrite and move the last remnants of the ServerHello SNI handling intojsing2017-07-242-29/+25
* Rewrite the TLS Renegotiation Indication extension handling using CBB/CBSjsing2017-07-246-346/+161
* Hook the TLS extension parsing framework into the serverhello parsing.jsing2017-07-231-1/+6
* zap trailing whitespace;jmc2017-07-221-2/+2
* rework the page a bit, clarify a few things, maybe better wordingtedu2017-07-221-8/+13
* Allow leading . in nameConstraints. from openssl via jabberwock. ok jsingtedu2017-07-201-2/+2
* Check the return value of CBB_init_fixed(), since it can fail.jsing2017-07-191-3/+5
* Start rewriting TLS extension handling.jsing2017-07-164-141/+328
* Remove unused variable.jsing2017-07-151-3/+3
* remove misc. depend and yacc nits that no longer matter.espie2017-07-101-2/+1
* one more instance of the previous commit; also initialize ->offset to aotto2017-07-101-2/+3
* update the little endian processor list to give it a chance of matchingtedu2017-07-082-6/+6
* Only access offset if canaries are enabled *and* size > 0, otherwise offsetotto2017-07-071-2/+2
* Document tls_config_set_crl_file() and tls_config_set_crl_mem().jsing2017-07-061-3/+30
* Bump minor due to symbol addition.jsing2017-07-061-1/+1
* Add support for providing CRLs to libtls - once a CRL is provided wejsing2017-07-065-4/+67
* The 0x (or 0X) prefix in base 16 is optional so only skip over themillert2017-07-066-18/+18
* fix broken cross references; found with mandoc -Tlintschwarze2017-07-063-43/+8
* RFC 6066 states that IP literals are not permitted in "HostName" for ajsing2017-07-051-3/+9
* nits about trailing punctuation found with mandoc -Tlintschwarze2017-07-051-4/+4
* void functions don't return 0tb2017-07-051-6/+2
* fix cross references to self; found with mandoc -Tlintschwarze2017-07-054-13/+12
* .init stub creation doesn't need a jmp + .align to reach a branch target,deraadt2017-06-281-3/+0
* Use the tls_password_cb() callback with all PEM_read_bio_*() calls, so thatjsing2017-06-224-11/+14
* Fix incorrect indentation.jsing2017-06-221-2/+2
* Plug a memory leak in tls_keypair_cert_hash(), introduced in r1.60.jsing2017-06-221-1/+3
* Remove dead code that has remained hiding since ressl.c r1.14!jsing2017-06-221-4/+1
* Use the standard `rv' idiom in tls_keypair_load_cert(), rather thanjsing2017-06-221-5/+4