| Commit message (Expand) | Author | Age | Files | Lines |
* | If the TLSv1.3 code has not recorded an error and something already exists | jsing | 2020-01-29 | 3 | -3/+9 |
* | Remove unused stub implementation of tls13_accept(). The correct | tb | 2020-01-29 | 1 | -11/+1 |
* | Some of the test vectors that were added in the upstream commit | tb | 2020-01-27 | 1 | -7/+9 |
* | revert previous nc loop refactor from 1.211, breaks bluhm's stuff | beck | 2020-01-26 | 1 | -64/+36 |
* | Fix SSL_CIPHER_description | inoguchi | 2020-01-26 | 1 | -2/+2 |
* | Restrict to use up to TLSv1.2 for test_server_client in appstest.sh | inoguchi | 2020-01-26 | 1 | -7/+7 |
* | Avoid 32 bit right shift with unsigned int in crypto/cast/cast_lcl.h | inoguchi | 2020-01-26 | 1 | -2/+2 |
* | tweak previous; ok tb | jmc | 2020-01-26 | 1 | -3/+3 |
* | typo | tb | 2020-01-26 | 1 | -2/+2 |
* | Document the change in EVP_chacha20(3). | tb | 2020-01-26 | 1 | -3/+5 |
* | Improve the comment explaining why the previous change matches OpenSSL's | tb | 2020-01-26 | 1 | -8/+15 |
* | When an SSL method is set, bump the max version back to that of the | jsing | 2020-01-26 | 1 | -1/+10 |
* | When switching back to a legacy client or server, ensure we reset the | jsing | 2020-01-26 | 2 | -2/+4 |
* | Fix basement bug where record layer would not correctly deal with | beck | 2020-01-26 | 1 | -1/+4 |
* | Add server side support for requesting client certificates in tls 1.3 | beck | 2020-01-26 | 1 | -4/+173 |
* | Add client certificate support for tls 1.3 | beck | 2020-01-26 | 2 | -15/+149 |
* | Add back the tests that were deleted in previous but not contained | tb | 2020-01-26 | 1 | -1/+9 |
* | Add sigalgs for server side to enable client certificate processing | beck | 2020-01-26 | 1 | -5/+34 |
* | server sigalgs test is now bogus, disable for now | beck | 2020-01-26 | 1 | -2/+3 |
* | Adjust tests to match the change in EVP_chacha20(). | tb | 2020-01-26 | 2 | -11/+22 |
* | Move pad and verify context into tls13_lib.c | beck | 2020-01-26 | 4 | -68/+60 |
* | Adjust EVP_chacha20()'s behavior to match OpenSSL's semantics: | tb | 2020-01-26 | 1 | -7/+14 |
* | Add an underbar for consistency. | tb | 2020-01-25 | 1 | -2/+2 |
* | Disable cert interop tests for now. | jsing | 2020-01-25 | 1 | -2/+2 |
* | Actually disable cipher interop tests. | jsing | 2020-01-25 | 1 | -3/+3 |
* | Disable the cipher interop tests. | jsing | 2020-01-25 | 1 | -3/+4 |
* | Accept both TLSv1.2 and TLSv1.3 protocols for netcat. | jsing | 2020-01-25 | 1 | -4/+3 |
* | Disable session regress for libressl client talking to openssl11 server. | jsing | 2020-01-25 | 1 | -1/+2 |
* | Revert change to certificate request check from r1.45. | jsing | 2020-01-25 | 1 | -3/+3 |
* | Only perform the downgrade check if our max version is less than TLSv1.3. | jsing | 2020-01-25 | 1 | -15/+17 |
* | Preserve the transcript hash for the client finished message, | beck | 2020-01-25 | 1 | -2/+3 |
* | Support legacy message callbacks. First step for SSL_set_msg_callback(3) | tb | 2020-01-25 | 3 | -3/+40 |
* | Correct value for SSL_TLSEXT_MSG_HRR. | jsing | 2020-01-25 | 1 | -2/+2 |
* | Only discard the extension block for client hello and server hello | jsing | 2020-01-25 | 1 | -2/+3 |
* | Only send an RI extension for pre-TLSv1.3 versions. | jsing | 2020-01-25 | 1 | -2/+2 |
* | It is possible to receive a pre-TLSv1.3 alert in response to a TLSv1.3 | jsing | 2020-01-25 | 3 | -4/+24 |
* | Correct backwards test so that we may accept a certificate requst | beck | 2020-01-25 | 1 | -3/+3 |
* | add a couple of XXX for future cleanup | tb | 2020-01-25 | 1 | -1/+4 |
* | Disable the client hello message regress test for now. | jsing | 2020-01-25 | 1 | -2/+2 |
* | Ensure that TLSv1.0 and TLSv1.1 are enabled before running SSLv2 client | jsing | 2020-01-25 | 1 | -5/+10 |
* | Teach openssl s_client a bit about TLSv1.3. | tb | 2020-01-24 | 1 | -2/+17 |
* | Complete the initial TLSv1.3 implementation. | jsing | 2020-01-24 | 3 | -14/+300 |
* | Preserve the TLS transcript at additional points. | jsing | 2020-01-24 | 1 | -9/+23 |
* | Permit 0 length writes, because openssl s_client is special | beck | 2020-01-24 | 1 | -2/+2 |
* | Store the legacy session identifier from the ClientHello so we can actually | jsing | 2020-01-24 | 1 | -1/+10 |
* | Switch to encrypted records in the TLSv1.3 server. | jsing | 2020-01-24 | 3 | -4/+78 |
* | Enable SSL_ENC_FLAG_SIGALGS on TLSv1_3_enc_data. | jsing | 2020-01-24 | 1 | -2/+2 |
* | Add strings for SSL_aTLS1_3 and SSL_kTLS1_3 to SSL_CIPHER_description(). | jsing | 2020-01-24 | 1 | -1/+7 |
* | Fix breakage in SSL_connect, SSL_accept, etc. by not propagating | beck | 2020-01-24 | 3 | -13/+42 |
* | Implement client hello processing in the TLSv1.3 server. | jsing | 2020-01-23 | 3 | -10/+58 |