| Commit message (Expand) | Author | Age | Files | Lines |
* | Convert tls_connect_fds() and tls_accept_socket() to the new OpenSSL error | jsing | 2015-02-07 | 4 | -26/+16 |
* | Convert several of the server side handshake functions to the new handshake | jsing | 2015-02-07 | 4 | -238/+108 |
* | Crank major for libcrypto since symbols have been removed. | jsing | 2015-02-07 | 2 | -4/+4 |
* | Add tls_config_set_dheparams() to allow specification of the parameters to | jsing | 2015-02-07 | 7 | -22/+53 |
* | Don't allow tag number 31 in CBB_add_asn1(). | doug | 2015-02-07 | 4 | -24/+54 |
* | Crank libssl major due to the recent changes and removals. | jsing | 2015-02-07 | 2 | -4/+4 |
* | Clean up the {get,put}_cipher_by_char() implementations. Also use | jsing | 2015-02-07 | 6 | -60/+28 |
* | Only call free in CBB_init(). | doug | 2015-02-07 | 2 | -6/+12 |
* | Attempt to implement the OpenSSL error dance so that TLS read/write | jsing | 2015-02-07 | 1 | -29/+61 |
* | Provide a SSL_CIPHER_get_by_value() function that allows a cipher to be | jsing | 2015-02-07 | 8 | -8/+66 |
* | Stop defining TERMIOS, ANSI_SOURCE and OPENSSL_NO_RC5 for libssl builds. | jsing | 2015-02-07 | 1 | -3/+1 |
* | Combine c_allc.c and c_alld.c into c_all.c - there is not much point having | jsing | 2015-02-07 | 7 | -724/+462 |
* | Fix typo and ASN.1 tag number range comment in bytestring.h. | doug | 2015-02-07 | 2 | -8/+8 |
* | KNF bytestring files. | doug | 2015-02-06 | 8 | -1816/+2192 |
* | Remove accidental, commented out code. | doug | 2015-02-06 | 2 | -22/+2 |
* | Unifdef NETSCAPE_HANG_BUG. | jsing | 2015-02-06 | 2 | -44/+2 |
* | Add additional checks to ssl3_send_client_key_exchange() that ensures | jsing | 2015-02-06 | 2 | -36/+50 |
* | Import BoringSSL's crypto bytestring and crypto bytebuilder APIs. | doug | 2015-02-06 | 9 | -1/+2688 |
* | Bring back the horrible API that is get_cipher_by_char/put_cipher_by_char. | jsing | 2015-02-06 | 28 | -30/+176 |
* | Rename SSL_CTX_use_certificate_chain() to SSL_CTX_use_certificate_chain_mem(). | reyk | 2015-02-06 | 8 | -21/+22 |
* | Declare the x509_(mem|file|dir)_lookup symbols as static because they | reyk | 2015-02-05 | 6 | -12/+12 |
* | Make the TLS connect and accept error messages consistent. | bluhm | 2015-01-30 | 2 | -5/+4 |
* | Use .Rv where appropriate, and move it to RETURN VALUES; | schwarze | 2015-01-29 | 3 | -27/+13 |
* | dial the time back to about 0.1s, closer to the original targets and | tedu | 2015-01-28 | 1 | -4/+4 |
* | Fix a number of issues relating to algorithms in signatures, Mostly | beck | 2015-01-28 | 14 | -18/+116 |
* | Place the remainder of e_os2.h under #ifndef LIBRESSL_INTERNAL until we can | jsing | 2015-01-26 | 1 | -1/+5 |
* | Add AEAD as a "MAC alias" so that it is possible to identify/select ciphers | jsing | 2015-01-26 | 4 | -4/+14 |
* | Ensure that a ServerKeyExchange message is received if the selected cipher | jsing | 2015-01-23 | 2 | -10/+36 |
* | Use field names in struct initialisers. | jsing | 2015-01-22 | 6 | -66/+66 |
* | last entry in NAME should not have a trailing comma; | jmc | 2015-01-22 | 1 | -2/+2 |
* | Add MLINK for tls_config_set_ca_mem() | reyk | 2015-01-22 | 1 | -1/+2 |
* | Allow to to load the CA chain directly from memory instead of | reyk | 2015-01-22 | 6 | -8/+39 |
* | Support CA verification in chroot'ed processes without direct file | reyk | 2015-01-22 | 6 | -6/+20 |
* | Add X509_STORE_load_mem() to load certificates from a memory buffer | reyk | 2015-01-22 | 9 | -8/+338 |
* | Assume that the size of a pointer will not change at runtime. | bcook | 2015-01-22 | 2 | -56/+30 |
* | Fix DTLS memory leak (CVE-2015-0206).libressl-v2.1.3 | doug | 2015-01-21 | 2 | -18/+46 |
* | Add arc4random/getentropy shims for NetBSD. | bcook | 2015-01-19 | 4 | -0/+300 |
* | Improve wording in alloca. | tedu | 2015-01-17 | 1 | -7/+5 |
* | Use ">", not ">=" when comparing length to HOST_NAME_MAX since | millert | 2015-01-16 | 1 | -3/+3 |
* | Replace HOST_NAME_MAX+1-1 with HOST_NAME_MAX. OK deraad@ | millert | 2015-01-16 | 2 | -8/+8 |
* | Replace check for ">= HOST_NAME_MAX+1" with "> HOST_NAME_MAX". | millert | 2015-01-16 | 1 | -1/+1 |
* | Move to the <limits.h> universe. | deraadt | 2015-01-16 | 23 | -57/+40 |
* | The SSL/TLS session Id context is limited to 32 bytes. Instead of | reyk | 2015-01-16 | 1 | -1/+13 |
* | Delete the MANLINT variable and the related SUFFIXES rules because | schwarze | 2015-01-16 | 2 | -4/+4 |
* | remove unused variable | chl | 2015-01-15 | 1 | -2/+1 |
* | back in september I did the large abstraction refactoring to allow these | deraadt | 2015-01-15 | 14 | -14/+28 |
* | Make strlcpy/strlcat slightly easier to read. | millert | 2015-01-15 | 4 | -86/+82 |
* | For non-blocking sockets tls_connect_fds() could fail with EAGAIN. | bluhm | 2015-01-13 | 2 | -7/+22 |
* | rename blocks to words. bcrypt "blocks" are unrelated to blowfish blocks, | tedu | 2015-01-12 | 1 | -9/+9 |
* | Fix a memory leak in bss_dgram. | doug | 2015-01-12 | 2 | -6/+26 |