| Commit message (Expand) | Author | Files | Lines |
2017-03-10 | Switch CBB to use recallocarray() - this ensures that we do not leak | jsing | 1 | -2/+2 |
2017-03-10 | First pass at cleaning up the tls1_P_hash() function - remove a pointless | jsing | 1 | -20/+19 |
2017-03-10 | Add a unit test for tls1_PRF(). | jsing | 2 | -1/+257 |
2017-03-10 | Make tls1_PRF() non-static so it can be regress tested. | jsing | 1 | -2/+7 |
2017-03-09 | The netcat server did not print the correct TLS error message if | bluhm | 1 | -2/+2 |
2017-03-09 | remove bogus variable expansion | eric | 2 | -4/+4 |
2017-03-09 | missing include | eric | 1 | -1/+2 |
2017-03-07 | Correctly handle TLS PRF with MD5+SHA1 - the secret has to be partitioned | jsing | 1 | -5/+26 |
2017-03-07 | Add a test that covers a libtls client talking to a Go TLS server with | jsing | 1 | -5/+107 |
2017-03-07 | Allow ciphers to be set on the TLS config. | jsing | 1 | -0/+10 |
2017-03-07 | Provide support for libtls protocols and allow for protocols to be set on | jsing | 1 | -3/+47 |
2017-03-07 | Add handling for errors on the TLS config and properly check/handle | jsing | 2 | -6/+23 |
2017-03-07 | libtls errors are much more descriptive these days - return them directly | jsing | 1 | -9/+8 |
2017-03-07 | We no longer need to keep pointers following tls_config_set_*() calls. | jsing | 1 | -6/+3 |
2017-03-07 | Some tweaks from jmc@ and describe better what recallocarray does; | otto | 1 | -7/+16 |
2017-03-06 | Use an unsigned loop variable to avoid a comparison between signed | bluhm | 1 | -1/+1 |
2017-03-06 | Introducing recallocarray(3), a blend of calloc(3) and reallocarray(3) | otto | 3 | -7/+147 |
2017-03-06 | size is unsigned so using ==0 not <=0 when checking for buffer exhaustion | millert | 1 | -4/+4 |
2017-03-06 | Pull in a change from the bind 8 resolver that fixes a potential | millert | 1 | -10/+16 |
2017-03-06 | Clean up and simplify the tls1_PRF() implementation now that we have a | jsing | 1 | -48/+19 |
2017-03-05 | Correctly convert an SSLv2 challenge into an SSLv3/TLS client random by | jsing | 1 | -9/+27 |
2017-03-05 | Provide a rolling handshake hash that commences as soon as the cipher | jsing | 8 | -54/+193 |
2017-03-05 | Convert various handshake message generation functions to CBB. | jsing | 4 | -56/+113 |
2017-03-05 | Add an initial regress test that covers the server-side of libssl, by | jsing | 3 | -1/+220 |
2017-03-04 | Drop the second argument of dtls1_set_message_header() and make it a void | jsing | 3 | -13/+10 |
2017-03-04 | Call ssl3_handshake_write() instead of ssl3_do_write() - this was missed | jsing | 1 | -2/+2 |
2017-03-04 | Treat "ERROR in STARTUP" as an actual error, rather than failing without | jsing | 1 | -2/+2 |
2017-03-04 | Remove commented out code and fix indentation of surrounding statements. | jsing | 1 | -12/+5 |
2017-03-04 | Remove handling for SSLv2. | jsing | 1 | -14/+3 |
2017-03-03 | Ensure MD and key initialized before processing HMAC | inoguchi | 2 | -35/+224 |
2017-03-02 | fix error in Dt; from robert klein | jmc | 1 | -3/+3 |
2017-03-01 | Convert ssl3_{get,send}_server_key_exchange() to EVP_md5_sha1(). | jsing | 3 | -44/+29 |
2017-03-01 | Add EVP test for MD5-SHA1. | jsing | 1 | -0/+3 |
2017-03-01 | Include EVP_md5_sha1() via OpenSSL_add_all_digests(). | jsing | 1 | -1/+2 |
2017-02-28 | Bump minors due to symbol addition. | jsing | 3 | -3/+3 |
2017-02-28 | Document EVP_md5_sha1(). | jsing | 1 | -2/+11 |
2017-02-28 | Add an EVP interface that provides concatenated MD5+SHA1 hashes, which are | jsing | 4 | -2/+88 |
2017-02-28 | Fix typo in issuingDistributionPoint description. | jsing | 1 | -1/+1 |
2017-02-28 | Stop pretending that MD5 and SHA1 might not exist - rather than locating | jsing | 4 | -20/+8 |
2017-02-27 | Add support for RES_USE_DNSSEC | jca | 1 | -5/+2 |
2017-02-25 | pledge stdio before parsing the http response | beck | 1 | -9/+11 |
2017-02-25 | Add missing includes to avoid implicit function declarations. | jsg | 4 | -3/+7 |
2017-02-24 | Add the following root CAs, from SECOM Trust Systems / Security Communication | sthen | 1 | -1/+126 |
2017-02-23 | Check return value of every BN_* functions in bntest | inoguchi | 1 | -393/+426 |
2017-02-21 | Remove STREEBOG 512 as a TLS MAC since there are currently no cipher suites | jsing | 2 | -26/+6 |
2017-02-21 | don;t end Nd with a full stop; | jmc | 1 | -3/+3 |
2017-02-20 | Add missing $OpenBSD$ | beck | 1 | -0/+1 |
2017-02-20 | Mark ERR_add_error_data and ERR_add_error_vdata as not for internal use, | beck | 5 | -14/+81 |
2017-02-20 | spelling fix; | jmc | 1 | -2/+2 |
2017-02-20 | document tls_config_error(3) RETURN VALUES, improve what is said | schwarze | 2 | -6/+59 |