summaryrefslogtreecommitdiff
path: root/src (follow)
Commit message (Expand)AuthorAgeFilesLines
...
* use freezero() instead of memset/explicit_bzero + free. Substantiallyderaadt2017-05-0238-238/+109
* No original OpenSSL code remains in this file. Relicensebeck2017-04-301-54/+13
* whitespacebeck2017-04-301-3/+3
* Make BIO_get_host_ip just yet another getaddrinfo wrapperbeck2017-04-301-27/+20
* Rework BIO_accept to be more like modern code.beck2017-04-301-54/+19
* Only enable -Werror on libcrypto/libssl/libtls if we are building withjsing2017-04-303-7/+14
* Switch back to freezero() and explicitly initialise data_len to zero. Thejsing2017-04-301-6/+3
* Microsoft Windows hates BIO_get_accept_socket in portable. Fix it tobeck2017-04-301-115/+35
* Add missing tls_init() and tls_free() calls.jsing2017-04-301-1/+4
* Add a tls_keypair_clear_key() function that uses freezero() to make keyjsing2017-04-301-5/+11
* Fix a bug caused by the return value being set early to signal successfuljsing2017-04-291-5/+5
* Revert previous - we still want to do this, but I forgot about the installerbeck2017-04-292-14/+6
* We now require you to have a working libpthreadbeck2017-04-291-1/+2
* Make it safe to call SSL_library_init more than once.beck2017-04-291-5/+12
* Stop calling OPENSSL_init() internally, since it is a no-op. Also placejsing2017-04-293-9/+4
* Switch Linux getrandom() usage to non-blocking mode, continuing tobeck2017-04-291-6/+9
* Revert previous change that forced consistency between return value andbeck2017-04-281-10/+2
* revert previous accidental commitbeck2017-04-285-25/+46
* *** empty log message ***beck2017-04-285-46/+25
* Remove "len < 0" check; len is socklen_t (uint32_t) so can't bemillert2017-04-271-2/+2
* tls_free(3) and tls_config_free(3) accept NULL;schwarze2017-04-272-4/+14
* Rearrange text a bit to make it clear what "discarded" means; ok jmc@ deraadt@otto2017-04-231-8/+13
* For small allocations (chunk) freezero only validates the givenotto2017-04-221-5/+10
* Fix previous.visa2017-04-201-2/+2
* Get TCB address using the RDHWR instruction instead of __get_tcb().visa2017-04-201-4/+5
* don't forget to fill in canary bytes for posix_memalign(3); reported byotto2017-04-181-1/+4
* use freezero() instead of 4-line conditional explicit_bzero + freederaadt2017-04-184-28/+10
* consictently use .Dv NULL and a few other tweaks; ok schwarze@otto2017-04-171-20/+17
* whitespace fixesotto2017-04-171-14/+14
* Use INT_MAX instead of SIZE_MAX as the maximum file size we can handle.kettenis2017-04-161-2/+2
* Define DEF_WEAK like we do for ld.so to fix building this with clang.kettenis2017-04-161-1/+2
* Move comments into a block and uses {} to unconfuse reading.deraadt2017-04-161-12/+13
* Use %zu to print a size_t.kettenis2017-04-161-2/+2
* Remove unused rnd_seed variable. Upstream made the same change 4 days ago.kettenis2017-04-161-3/+0
* backout previous, data_len is not always initializedotto2017-04-161-2/+5
* Use freezero(3) when cleaning up session tickets - not only does it requirejsing2017-04-141-6/+3
* Use freezero(3) to clean up the X25519 keys - simpler, cleaner code.jsing2017-04-141-6/+3
* Use freezero(3) in the CBB clean up path, since this could hold sensitivejsing2017-04-141-3/+2
* Switch i2d_SSL_SESSION() back to freezero(3) now that the size constraintsjsing2017-04-141-5/+2
* Clean up server key exchange EC point handling. Encode the point directlyjsing2017-04-141-27/+15
* allow clearing less than allocated and document freezero(3) betterotto2017-04-132-13/+26
* New strstr() implementation from musl libc by Rich Felker. Thismillert2017-04-121-44/+180
* Revert ssl_asn1.c r1.50 - CBB and freezero(3) do not play nicely together.jsing2017-04-111-2/+5
* new X25519(3) manual page;schwarze2017-04-105-10/+113
* Use freezero() for the internal opaque structures, instead of the currentjsing2017-04-103-18/+9
* Use freezero() for X25519 keys - same result with more readable code.jsing2017-04-101-7/+3
* document three additional functions;schwarze2017-04-101-7/+60
* Rework and significantly extend TLS name verification tests to matchjsing2017-04-101-99/+377
* Rework name verification code so that a match is indicated via an argument,jsing2017-04-105-47/+76
* freezero() the key block; simpler code and less of it.jsing2017-04-101-7/+3