summaryrefslogtreecommitdiff
path: root/src (unfollow)
Commit message (Expand)AuthorFilesLines
2017-01-26Merge the client/server version negotiation into the existing (currentlyjsing16-1229/+395
2017-01-26Document ERR_load_BN_strings(3).schwarze1-11/+47
2017-01-26Use numeric exit codes consistently rather than a mixbeck1-11/+11
2017-01-26stylebeck1-1/+1
2017-01-26Fix the structure initialzation to compile. bad inioguchi and millert :)beck1-1/+1
2017-01-26Remove ssl3_undef_enc_method - if we have internal bugs we want to segfaultjsing5-36/+8
2017-01-26Remove a sess_cert reference from a comment in the public header.jsing1-5/+2
2017-01-25split the tls_init(3) that had grown fat to allow healthy future growth;schwarze15-888/+1474
2017-01-25Fix array initialization syntax for ocspcheck.cinoguchi1-1/+1
2017-01-25document BN_asc2bn(3);schwarze1-3/+27
2017-01-25remove __BEGIN_DECLS and __END_DECLS from http.hinoguchi1-5/+1
2017-01-25bring changes from acme-client over here.benno1-56/+54
2017-01-25Update ssl versions regress to handle min/max configured versions andjsing1-47/+201
2017-01-25Limit enabled version range by the versions configured on the SSL_CTX/SSL,jsing3-23/+84
2017-01-25Add start of a regress for cert gen and validation. not clean, won'tbeck5-0/+394
2017-01-25link in rsa testbeck1-1/+2
2017-01-25Add rsa test from openssl, since it has a license nowbeck2-0/+344
2017-01-25Change the SSL_IS_DTLS() macro to check the version, rather than using ajsing2-7/+4
2017-01-25Construct a BN_gcd_nonct, based on BN_mod_inverse_no_branch, as suggestedbeck6-10/+170
2017-01-25Provide ssl3_packet_read() and ssl3_packet_extend() functions that improvejsing3-35/+59
2017-01-25Provide defines for SSL_CTRL_SET_CURVES/SSL_CTRL_SET_CURVES_LIST for thingsjsing1-1/+15
2017-01-24fix make clean and warningsotto2-1/+3
2017-01-24make sure realloc preserves dataotto1-17/+45
2017-01-24use ${.OBJDIR}otto1-8/+8
2017-01-24BUF_MEM_free(), X509_STORE_free() and X509_VERIFY_PARAM_free() all checkjsing2-18/+10
2017-01-24sk_free() checks for NULL so do not bother doing it from the callers.jsing4-10/+9
2017-01-24sk_pop_free() checks for NULL so do not bother doing it from the callers.jsing7-50/+31
2017-01-24Within libssl a SSL_CTX * is referred to as a ctx - fix this forjsing1-29/+29
2017-01-24correct usage format; ok beck claudio bennoderaadt1-2/+3
2017-01-24in resolver(3), document that _EDNS0 and _DNSSEC are no ops;jmc1-6/+17
2017-01-24fix mode on open() and ftruncate(), noticed bybeck1-2/+4
2017-01-24#if 0 the ecformats_list and eccurves_list - these are currently unused butjsing1-2/+5
2017-01-24Remove unused cert variable.jsing1-3/+1
2017-01-24Say no to two line error messages on failurebeck1-4/+3
2017-01-24s/returns/exits/beck1-2/+2
2017-01-24Break run-on sentence into two.beck1-3/+4
2017-01-24string terminator is called a NULderaadt2-5/+5
2017-01-24Actually load the cafile when providede, and error message cleanupbeck1-4/+4
2017-01-24use warn, I have errno here. noticed by theobeck1-1/+1
2017-01-24Yes the "if (const == val" idiom provides some safety, but it grates onderaadt1-58/+58
2017-01-24knfbeck1-1/+2
2017-01-24revert accidental commit of theo diffbeck1-58/+58
2017-01-24Just don't bother with OpenSSL error strings, they are mostlybeck2-77/+71
2017-01-24various cleanup;jmc2-29/+28
2017-01-24Bump libssl and libtls minors due to symbol additions.jsing2-2/+2
2017-01-24slight cleanupsderaadt1-4/+3
2017-01-24Add a -groups option to openssl s_client, which allows supported EC curvesjsing1-7/+17
2017-01-24Update client tests for changes in default EC formats/curves.jsing1-52/+31
2017-01-24Add support for setting the supported EC curves viajsing7-26/+197
2017-01-24s/exit/exist/ typobeck1-2/+2