| Commit message (Expand) | Author | Age | Files | Lines |
* | fix Dt; | jmc | 2017-01-26 | 1 | -3/+3 |
* | Use a flag to track when we need to call SSL_shutdown(). This avoids an | jsing | 2017-01-26 | 4 | -5/+11 |
* | Bump TLS_API due to new features being added earlier this week. | jsing | 2017-01-26 | 1 | -2/+2 |
* | Bump libtls minor due to symbol additions earlier this week. | jsing | 2017-01-26 | 1 | -1/+1 |
* | knf | beck | 2017-01-26 | 1 | -6/+11 |
* | Convert ssl3_get_client_hello() to CBS. | jsing | 2017-01-26 | 1 | -76/+71 |
* | Finish the fallout of the SSLerr->SSLerror cleanup to get rid of the ugly | beck | 2017-01-26 | 18 | -653/+335 |
* | Hide SSLerr() under #ifndef LIBRESSL_INTERNAL since we shouldn't be | beck | 2017-01-26 | 1 | -2/+4 |
* | Send the error function codes to rot in the depths of hell where they belong | beck | 2017-01-26 | 24 | -798/+572 |
* | Merge the single two line function from ssl_err2.c into ssl_err.c. | jsing | 2017-01-26 | 3 | -76/+12 |
* | english is hard. | beck | 2017-01-26 | 1 | -2/+2 |
* | Limit the number of sequential empty records that we will process | beck | 2017-01-26 | 4 | -7/+30 |
* | Refactor the code to generate a WANT_READ into a function, as we are | beck | 2017-01-26 | 1 | -18/+20 |
* | Remove most of SSL3_ENC_METHOD - we can just inline the function calls | jsing | 2017-01-26 | 11 | -135/+63 |
* | Move relatively new version range code from ssl_lib.c into a separate | jsing | 2017-01-26 | 3 | -158/+175 |
* | Rename s3_{both,clnt,pkt_srvr}.c to have an ssl_ prefix since they are no | jsing | 2017-01-26 | 5 | -6/+6 |
* | Merge the client/server version negotiation into the existing (currently | jsing | 2017-01-26 | 16 | -1229/+395 |
* | Document ERR_load_BN_strings(3). | schwarze | 2017-01-26 | 1 | -11/+47 |
* | Remove ssl3_undef_enc_method - if we have internal bugs we want to segfault | jsing | 2017-01-26 | 5 | -36/+8 |
* | Remove a sess_cert reference from a comment in the public header. | jsing | 2017-01-26 | 1 | -5/+2 |
* | split the tls_init(3) that had grown fat to allow healthy future growth; | schwarze | 2017-01-25 | 15 | -888/+1474 |
* | document BN_asc2bn(3); | schwarze | 2017-01-25 | 1 | -3/+27 |
* | Limit enabled version range by the versions configured on the SSL_CTX/SSL, | jsing | 2017-01-25 | 3 | -23/+84 |
* | Change the SSL_IS_DTLS() macro to check the version, rather than using a | jsing | 2017-01-25 | 2 | -7/+4 |
* | Construct a BN_gcd_nonct, based on BN_mod_inverse_no_branch, as suggested | beck | 2017-01-25 | 6 | -10/+170 |
* | Provide ssl3_packet_read() and ssl3_packet_extend() functions that improve | jsing | 2017-01-25 | 3 | -35/+59 |
* | Provide defines for SSL_CTRL_SET_CURVES/SSL_CTRL_SET_CURVES_LIST for things | jsing | 2017-01-25 | 1 | -1/+15 |
* | BUF_MEM_free(), X509_STORE_free() and X509_VERIFY_PARAM_free() all check | jsing | 2017-01-24 | 2 | -18/+10 |
* | sk_free() checks for NULL so do not bother doing it from the callers. | jsing | 2017-01-24 | 4 | -10/+9 |
* | sk_pop_free() checks for NULL so do not bother doing it from the callers. | jsing | 2017-01-24 | 7 | -50/+31 |
* | Within libssl a SSL_CTX * is referred to as a ctx - fix this for | jsing | 2017-01-24 | 1 | -29/+29 |
* | in resolver(3), document that _EDNS0 and _DNSSEC are no ops; | jmc | 2017-01-24 | 1 | -6/+17 |
* | #if 0 the ecformats_list and eccurves_list - these are currently unused but | jsing | 2017-01-24 | 1 | -2/+5 |
* | Remove unused cert variable. | jsing | 2017-01-24 | 1 | -3/+1 |
* | Bump libssl and libtls minors due to symbol additions. | jsing | 2017-01-24 | 2 | -2/+2 |
* | Add support for setting the supported EC curves via | jsing | 2017-01-24 | 7 | -26/+197 |
* | Correct bounds checks used when generating the EC curves extension. | jsing | 2017-01-24 | 1 | -3/+3 |
* | accross -> across; | jmc | 2017-01-24 | 1 | -2/+2 |
* | Fix typo in brainpool curve name within a comment. | jsing | 2017-01-24 | 1 | -2/+2 |
* | There is no point returning then breaking... | jsing | 2017-01-24 | 1 | -2/+1 |
* | unifdef OPENSSL_NO_BIO - we do not support this in any form. | jsing | 2017-01-24 | 1 | -15/+1 |
* | Introduce ticket support. To enable them it is enough to set a positive | claudio | 2017-01-24 | 6 | -14/+251 |
* | ssl_cert_free() checks for NULL itself. | jsing | 2017-01-24 | 1 | -10/+5 |
* | Remove a "free up if allocated" comment that exists before code that frees | jsing | 2017-01-24 | 1 | -2/+1 |
* | sk_SSL_CIPHER_free() checks for NULL so do not bother doing the same from | jsing | 2017-01-24 | 4 | -27/+16 |
* | ssl_sess_cert_free() checks for NULL, so do not bother doing it at the | jsing | 2017-01-24 | 2 | -6/+8 |
* | There is no point in zeroing fields that exist within a struct that is | jsing | 2017-01-24 | 1 | -3/+1 |
* | Add missing documentation for tls_config_set_verify_depth | claudio | 2017-01-24 | 1 | -1/+5 |
* | Shuffle the deck chairs to bring them back in order. | claudio | 2017-01-24 | 1 | -9/+9 |
* | tls_config_add_keypair_mem is the function to add additional keypairs and | claudio | 2017-01-24 | 1 | -5/+5 |