summaryrefslogtreecommitdiff
path: root/src (unfollow)
Commit message (Expand)AuthorFilesLines
2016-11-06delete prototypes available in other pages and add a missing .Xr linkschwarze1-102/+2
2016-11-06delete prototypes available in other pages and add two missing .Xr linksschwarze4-756/+216
2016-11-06first pass; ok schwarzejmc185-249/+620
2016-11-06delete prototypes available in other pages and add three missing .Xr linksschwarze1-179/+7
2016-11-06delete prototypes available in other pages and add two missing .Xr linksschwarze1-158/+3
2016-11-06Split ssl3_get_client_key_exchange() into separate per algorithm functions.jsing1-320/+388
2016-11-06Remove pointless check - without fixed ECDH, there is only one way to reachjsing1-8/+1
2016-11-06tweak previous;jmc1-3/+3
2016-11-06simplify error handling in c2i_ASN1_OBJECTbcook1-10/+12
2016-11-06Split out the DHE and ECDHE code paths fromjsing1-203/+221
2016-11-06rename tlslegacy to tlsall, and better describe what it does.beck2-8/+8
2016-11-06Adjust cipher suite strengths - move MD5 to LOW, RC4 to LOW and 3DES tojsing1-13/+13
2016-11-06Update regress for IDEA cipher suite removal.jsing1-83/+83
2016-11-06Remove the single IDEA cipher suite. There is no good reason to supportjsing3-29/+3
2016-11-06unifdef -m -UOPENSSL_NO_CHACHA -UOPENSSL_NO_POLY1305jsing2-6/+2
2016-11-06Add regress test script for openssl command.inoguchi3-2/+966
2016-11-06Avoid compiling in an unused function.jsing1-0/+2
2016-11-06adjust guards to elide unused Bi arraybcook1-2/+0
2016-11-06Rework X509_verify_cert to support alt chains on certificate verification,beck1-117/+265
2016-11-06The upcoming x509 alt chains diff tightens the trust requirementsbeck1-1/+17
2016-11-06Commit a reminder that the default is not the default. This needs tobeck1-1/+2
2016-11-06remove unused variablebcook1-6/+3
2016-11-06use the correct function for freebcook1-2/+2
2016-11-06add an .Xr that was missingschwarze1-1/+2
2016-11-05document BN_set_negative() and BN_is_negative();schwarze6-516/+69
2016-11-05Part one of the alt chains changes, bring in newer modifications tobeck3-73/+411
2016-11-05Add objects for X25519, X448, Ed25519 and Ed448.jsing2-0/+15
2016-11-05One of the error paths would attempt to access not-yet-initialized locals.miod1-2/+2
2016-11-05Do a partial CBB conversion of ssl3_send_server_key_exchange(), which willjsing1-52/+67
2016-11-05fix misplaced quote by tls_peer_ocsp_this_updatebcook1-2/+2
2016-11-05zap trailing whitespace, and add -o to usage() and help (-h);jmc2-6/+9
2016-11-05tweak previous;jmc1-6/+6
2016-11-05move manual pages from doc/ to man/ for consistency with otherschwarze85-169/+169
2016-11-05Check BIO_new*() for failure.miod2-4/+9
2016-11-05More X509_STORE_CTX_set_*() return value checks.miod3-12/+16
2016-11-05bump minors for symbol addition for ocsp and x25519 symbol additionsbeck3-3/+3
2016-11-05Add support for server side OCSP stapling to libtls.beck9-16/+98
2016-11-05Add regress for X25519, converted from BoringSSL.jsing3-1/+150
2016-11-05after getting rid of the pod files, clean up the Makefiles; ok bcook@schwarze4-41/+23
2016-11-05Add support for X25519.jsing5-1/+5136
2016-11-05rename ocsp_ctx to ocspbeck3-68/+68
2016-11-05minor mandoc -Tlint nitsschwarze3-9/+8
2016-11-05add the missing content, sorry for committing an empty fileschwarze1-0/+69
2016-11-05Stricter validation of inputs of OPENSSL_asc2uni() and OPENSSL_uni2asc().miod1-17/+34
2016-11-05convert the remaining manual pages from pod to mdocschwarze25-1650/+3615
2016-11-05X509_STORE_CTX_set_*() may fail, so check for errors.miod1-4/+14
2016-11-05Do not leak the ressources possibly allocated by EVP_MD_CTX_init() in themiod1-2/+3
2016-11-05Set PROG so that the binary correctly gets recompiled when the librariesmiod1-11/+5
2016-11-05Make sure PEM_SealInit() will correctly destroy the PEM_ENCODE_SEAL_CTXmiod1-8/+22
2016-11-05No need to duplicate definitions from evp.h locally.miod2-14/+2