summaryrefslogtreecommitdiff
path: root/src (follow)
Commit message (Expand)AuthorAgeFilesLines
* Add a regression test to verify that we call the callback in the samebeck2021-09-013-4/+551
* Remove some dead code that was missed in an earlier cleanup andtb2021-08-311-4/+3
* Defragment DTLS.jsing2021-08-312-123/+48
* Remove a nonsensical s->version == TLS1_VERSION from DTLS code.jsing2021-08-311-6/+1
* whitespacetb2021-08-312-7/+7
* enter uuid/jasper2021-08-311-1/+2
* add initial tests for uuid_from_string, uuid_to_string, uuid_create_niljasper2021-08-312-0/+134
* Clean up and simplify info and msg callbacks.jsing2021-08-308-127/+88
* Replace DTLS r_epoch with the read epoch from the TLSv1.2 record layer.jsing2021-08-305-27/+26
* Move to an AEAD nonce allocated in the TLSv1.2 record layer.jsing2021-08-301-45/+36
* sync with OpenSSL 1.1.1, which is still under a free license;schwarze2021-08-301-15/+107
* Remove tests that are now covered by regress/lib/libssl/verifytb2021-08-301-65/+2
* hook verify regress test to buildtb2021-08-301-1/+2
* Revert accidental committb2021-08-307-35/+18
* link verify regress tests to buildtb2021-08-307-18/+35
* Reimplement part of the openssl/x509 regress tests in Ctb2021-08-303-0/+521
* Ignore warning alert returns from servername callback in TLSv1.3tb2021-08-301-3/+7
* Clean up end of do_body in openssl(1) cainoguchi2021-08-301-6/+8
* Remove NULL check before free in openssl(1) cainoguchi2021-08-301-41/+25
* Admit that we return error 20 in the failure case here. Changingbeck2021-08-301-5/+5
* Revert previous change that changed our default return for unable tobeck2021-08-301-11/+5
* Fix Jan's regress in openssl/x509 to do what it says it does,beck2021-08-302-13/+15
* Do not call X509_alias_get0(3) with NULL as the second argument.schwarze2021-08-291-5/+7
* Don't call the verify callback twice on success.beck2021-08-291-2/+1
* Pass the -quiet option to openssl s_server to make it ignore EOF.tb2021-08-291-6/+6
* Add back the echo Q thing.tb2021-08-291-5/+5
* Start naccept .desc with a capitaltb2021-08-291-2/+2
* Use s_server -naccept 1 and remove echo "Q" | openssl s_client hack.tb2021-08-291-12/+11
* Implement -naccept in the s_server.tb2021-08-294-11/+29
* Get rid of historical code to extract the roots in the legacy case.beck2021-08-283-78/+33
* Clean up and simplify ssl3_dispatch_alert() and ssl3_send_alert().jsing2021-08-281-30/+32
* Only remove the directories if there's an obj/ or obj@tb2021-08-281-2/+4
* Add a pass using the modern vfy with by_dir roots, code by me, script tobeck2021-08-283-15/+106
* Zap blanks before tabs.tb2021-08-281-4/+4
* Add RCS markertb2021-08-281-0/+1
* Add case 2c to the go side. Don't tell jsing I touched go.beck2021-08-281-0/+1
* Remove the "dump_chain" flag and code. This was a workaround for a problem wherebeck2021-08-282-16/+4
* Check X509_get_notAfter return value in openssl(1) ca.cinoguchi2021-08-281-3/+5
* Use strndup instead of malloc, memcpy and NULL termination in openssl(1) ca.cinoguchi2021-08-281-11/+4
* Remove ASN1_TIME_new and use NULL for X509_gmtime_adj, free tmptm in err pathinoguchi2021-08-281-15/+7
* Unwrap lines in openssl(1) ca.cinoguchi2021-08-281-5/+3
* Avoid leak with X509_REVOKED variable in openssl(1) ca.cinoguchi2021-08-281-1/+3
* Checking the return value in openssl(1) ca.cinoguchi2021-08-281-41/+127
* Add regress test testing having the root cert in the intermediate bundlebeck2021-08-275-1/+96
* Remove unused #include <assert.h>.tb2021-08-271-2/+1
* Fix various read buffer overflow when printing ASN.1 strings (which aretb2021-08-244-14/+20
* Pull roots out of the trust store in the legacy xsc when building chainsbeck2021-08-193-8/+26
* Import regress tests for SM2. Not yet linked to the build.tb2021-08-184-0/+640
* Import initial code for the SM2 ciphertb2021-08-187-0/+1870
* Add a check_trust call to the legacy chain validation on chain add, rememberingbeck2021-08-181-2/+10