| Commit message (Expand) | Author | Age | Files | Lines |
... | |
* | Add checks to ensure that lib{crypto,ssl,tls} public headers have actually | jsing | 2020-01-22 | 3 | -3/+33 |
* | delete wasteful ;; | deraadt | 2020-01-22 | 1 | -2/+2 |
* | Move guards from public to internal headers, and fix not use values. | beck | 2020-01-22 | 2 | -8/+7 |
* | Simplify header installation by combining the HDRS and HDRS_GEN loops. | jsing | 2020-01-22 | 1 | -9/+2 |
* | Note in the man page that the default protocols list includes 1.3 | beck | 2020-01-22 | 1 | -4/+4 |
* | Enable TLS version 1.3 in the default protocols for libtls. | beck | 2020-01-22 | 1 | -2/+2 |
* | Simplify the peekaboo code. | jsing | 2020-01-22 | 1 | -35/+6 |
* | Implement support for SSL_peek() in the TLSv1.3 record layer. | jsing | 2020-01-22 | 3 | -14/+39 |
* | After the ClientHello has been sent or received and before the peer's | tb | 2020-01-22 | 4 | -8/+22 |
* | Add -peekaboo option to s_client, to test SSL_peek | beck | 2020-01-22 | 1 | -4/+66 |
* | Correctly set the legacy version when TLSv1.3 is building a client hello. | jsing | 2020-01-22 | 1 | -4/+11 |
* | Don't add an extra unknown error if we got a fatal alert | beck | 2020-01-22 | 1 | -2/+3 |
* | The legacy_record_version must be set to TLS1_2_VERSION except | tb | 2020-01-22 | 4 | -9/+30 |
* | Hook up the TLSv1.3 legacy shutdown code. | jsing | 2020-01-22 | 1 | -2/+2 |
* | Add minimal support for hello retry request for RFC conformance. | beck | 2020-01-22 | 4 | -11/+71 |
* | Split the TLSv1.3 guards into separate client and server guards. | jsing | 2020-01-22 | 3 | -6/+13 |
* | Implement close-notify and SSL_shutdown() handling for the TLSv1.3 client. | jsing | 2020-01-22 | 3 | -9/+76 |
* | Correct legacy fallback for TLSv1.3 client. | jsing | 2020-01-21 | 3 | -9/+30 |
* | Remove redundant ASN1_INTEGER_set call in PKCS7_set_type | inoguchi | 2020-01-21 | 1 | -2/+1 |
* | Provide SSL_R_UNKNOWN. | jsing | 2020-01-21 | 3 | -5/+7 |
* | Clear and free the tls13_ctx that hangs off an SSL *s from | tb | 2020-01-21 | 2 | -2/+8 |
* | Add alert processing in tls client code, by adding alert to the | beck | 2020-01-21 | 3 | -19/+30 |
* | Add alerts to the tls 1.3 record layer and handshake layer | beck | 2020-01-20 | 2 | -49/+29 |
* | Provide an error framework for use with the TLSv1.3 code. | jsing | 2020-01-20 | 5 | -7/+151 |
* | Update libtls config regress to include TLSv1.3. | jsing | 2020-01-20 | 1 | -9/+16 |
* | Add support for TLSv1.3 as a protocol to libtls. | jsing | 2020-01-20 | 4 | -11/+20 |
* | Free pss in RSA_free | inoguchi | 2020-01-17 | 1 | -1/+2 |
* | Check fpu functions without setjmp/longjmp before testing the latter. | bluhm | 2020-01-16 | 3 | -13/+71 |
* | bump to 3.1.0 | bcook | 2020-01-14 | 1 | -3/+3 |
* | Document how to make getopt_long(3) process arguments in order and stop | stsp | 2020-01-13 | 1 | -2/+18 |
* | Make clean should not require SUDO. | bluhm | 2020-01-13 | 1 | -3/+1 |
* | Fix printf compiler warnings in wfp regress. Convert wchar to a | bluhm | 2020-01-13 | 1 | -9/+18 |
* | Link forgotten libc tests to the build. | bluhm | 2020-01-13 | 2 | -6/+10 |
* | Split setjmp-fpu regress into separate tests. Use errx(3) to explain | bluhm | 2020-01-13 | 6 | -32/+69 |
* | Avoid leak in error path of PKCS5_PBE_keyivgen | inoguchi | 2020-01-12 | 1 | -1/+2 |
* | Set "Content-Type: application/ocsp-request" in ocspcheck(1)'s POSTs, | sthen | 2020-01-11 | 1 | -1/+2 |
* | Avoid leak in error path of asn1_parse2 | inoguchi | 2020-01-09 | 1 | -17/+21 |
* | If the client provides a TLS certificate and the user specifies a | bluhm | 2020-01-07 | 1 | -5/+6 |
* | The unveil(2) for nc -U -u -l was wrong. The server cannot unveil | bluhm | 2020-01-06 | 1 | -4/+23 |
* | When using UNIX domain sockets, always call report_sock() with the | bluhm | 2020-01-06 | 1 | -6/+10 |
* | Check CMS API return value in openssl(1) cms | inoguchi | 2020-01-04 | 1 | -11/+21 |
* | Avoid leak in error path of dh_priv_decode | inoguchi | 2020-01-04 | 1 | -1/+2 |
* | In ssl.h rev. 1.167 and s3_lib.c rev. 1.188, jsing@ provided | schwarze | 2020-01-02 | 1 | -4/+21 |
* | Revise SSL_CTX_get_extra_chain_certs() to match OpenSSL behaviour. | jsing | 2020-01-02 | 2 | -8/+23 |
* | Provide TLSEXT_TYPE_* aliases for TLS 1.3. | jsing | 2020-01-02 | 1 | -1/+10 |
* | drand48(3) returns values in [0.0, 1.0). | tb | 2019-12-20 | 1 | -3/+3 |
* | spelling; from bryan stenson | jmc | 2019-12-19 | 1 | -3/+3 |
* | use "Currently" in the doc for "openssl enc" when talking about default | sthen | 2019-12-18 | 1 | -2/+2 |
* | In January, the default digest used in the openssl enc command was | tb | 2019-12-18 | 1 | -7/+4 |
* | whitespace from go fmt + update a comment | tb | 2019-12-14 | 1 | -4/+4 |