| Commit message (Expand) | Author | Files | Lines |
2020-09-14 | Set error if we are given an NULL ctx in x509_verify, and set error | beck | 1 | -5/+3 |
2020-09-14 | nuke a stray space | tb | 1 | -2/+2 |
2020-09-14 | Fix potential leak when tmpext fails to be added to | beck | 1 | -2/+6 |
2020-09-14 | Change the known output to be the expected output, so that we | beck | 1 | -1421/+1421 |
2020-09-14 | Use a fixed validation time in these tests so we never | beck | 1 | -2/+4 |
2020-09-14 | remove unneeded variable "type". | beck | 1 | -6/+5 |
2020-09-14 | Don't leak names on success | beck | 1 | -1/+2 |
2020-09-14 | remove unneded variable "time1" | beck | 1 | -6/+6 |
2020-09-14 | remove unneded variable "time" | beck | 1 | -3/+2 |
2020-09-14 | fix bug introduced on review where refactor made it possible to | beck | 1 | -2/+2 |
2020-09-14 | re-enable new x509 chain verifier as the default | beck | 1 | -3/+1 |
2020-09-14 | Correctly fix double free introduced on review. | beck | 2 | -3/+3 |
2020-09-14 | Fix double free - review moved the pop_free of roots to x509_verify_ctx_free | beck | 1 | -2/+1 |
2020-09-14 | revert previous, need to fix a problem | beck | 1 | -1/+3 |
2020-09-14 | Enable the use of the new x509 chain validator by default. | beck | 1 | -3/+1 |
2020-09-14 | Connect a client to a server. Both can be current libressl, or | bluhm | 5 | -10/+193 |
2020-09-13 | Add regress for SSL_{CTX_,}set_ciphersuites(). | jsing | 2 | -7/+318 |
2020-09-13 | Implement SSL_{CTX_,}set_ciphersuites(). | jsing | 5 | -13/+211 |
2020-09-13 | Add new x509 certificate chain validator in x509_verify.c | beck | 11 | -68/+1281 |
2020-09-13 | Improve handling of BIO_read()/BIO_write() failures in the TLSv1.3 stack. | jsing | 1 | -1/+9 |
2020-09-12 | Use the correct type for tls1_set_ec_id() | tb | 1 | -3/+3 |
2020-09-12 | Simplify tls1_set_ec_id() a bit | tb | 1 | -24/+19 |
2020-09-12 | Unindent a bit of code that performs a few too many checks to | tb | 1 | -10/+8 |
2020-09-12 | If CPU does not support AES-NI, LibreSSL TLS 1.3 client prefers | bluhm | 1 | -9/+18 |
2020-09-12 | Avoid an out-of-bounds access in BN_rand() | tb | 1 | -3/+8 |
2020-09-12 | Change over to use the new x509 name constraints verification. | beck | 1 | -28/+7 |
2020-09-12 | remove unused include that breaks regress | beck | 1 | -1/+0 |
2020-09-12 | Include machine/endian.h in gost2814789.c | inoguchi | 1 | -1/+3 |
2020-09-11 | Enable cert and cipher interop tests. cert just works. cipher has | bluhm | 3 | -55/+35 |
2020-09-11 | Add x509_constraints.c - a new implementation of x509 name constraints, with | beck | 5 | -7/+1767 |
2020-09-11 | Remove cipher_list_by_id. | jsing | 7 | -89/+32 |
2020-09-11 | Simplify SSL_get_ciphers(). | jsing | 1 | -13/+7 |
2020-09-11 | Rename ssl_cipher_is_permitted() | jsing | 3 | -10/+10 |
2020-09-11 | Some SSL_AD_* defines snuck into the TLSv1.3 code - replace them with | jsing | 2 | -10/+10 |
2020-09-11 | Add issuer cache, to be used by upcoming changes to validation code. | beck | 3 | -1/+216 |
2020-09-11 | Various ciphers related clean up. | jsing | 1 | -41/+36 |
2020-09-10 | Enable test-tls13-large-number-of-extensions.py | tb | 1 | -2/+7 |
2020-09-09 | Wrap long lines, add space in front of goto label in openssl(1) ocsp.c | inoguchi | 1 | -93/+118 |
2020-09-09 | Change SSLv23_client_method to TLS_client_method openssl(1) ocsp | inoguchi | 1 | -2/+2 |
2020-09-09 | Remove space between pointer '*' and variable name in ocsp.c | inoguchi | 1 | -39/+39 |
2020-09-09 | Convert openssl(1) ocsp option handling | inoguchi | 1 | -443/+725 |
2020-09-09 | Add option type OPTION_UL_VALUE_OR | inoguchi | 2 | -2/+9 |
2020-09-09 | Set alpn_selected_len = 0 when alpn_selected is NULL | inoguchi | 1 | -1/+4 |
2020-09-09 | Import latest OPENSSL_NO_* flags from OpenSSL 1.1.1g | inoguchi | 1 | -0/+8 |
2020-09-08 | Mention that EC_KEY_get0_public_key returns a public key. | tb | 1 | -3/+5 |
2020-09-07 | Garbage collect renew_ticket in tls_decrypt_ticket | tb | 1 | -8/+5 |
2020-09-06 | For page-sized and larger allocations do not put the pages we're | otto | 1 | -21/+18 |
2020-09-04 | Ignore ftruncate failure with errno == EAGAIN | tb | 1 | -2/+5 |
2020-09-03 | Clean up asn1/x_info.c | tb | 1 | -22/+9 |
2020-09-03 | Remove unnecessary zeroing after recallocarray(3) | tb | 1 | -3/+1 |