| Commit message (Expand) | Author | Age | Files | Lines |
* | first pass; ok schwarze | jmc | 2016-11-06 | 185 | -249/+620 |
* | delete prototypes available in other pages and add three missing .Xr links | schwarze | 2016-11-06 | 1 | -179/+7 |
* | delete prototypes available in other pages and add two missing .Xr links | schwarze | 2016-11-06 | 1 | -158/+3 |
* | Split ssl3_get_client_key_exchange() into separate per algorithm functions. | jsing | 2016-11-06 | 1 | -320/+388 |
* | Remove pointless check - without fixed ECDH, there is only one way to reach | jsing | 2016-11-06 | 1 | -8/+1 |
* | tweak previous; | jmc | 2016-11-06 | 1 | -3/+3 |
* | simplify error handling in c2i_ASN1_OBJECT | bcook | 2016-11-06 | 1 | -10/+12 |
* | Split out the DHE and ECDHE code paths from | jsing | 2016-11-06 | 1 | -203/+221 |
* | rename tlslegacy to tlsall, and better describe what it does. | beck | 2016-11-06 | 2 | -8/+8 |
* | Adjust cipher suite strengths - move MD5 to LOW, RC4 to LOW and 3DES to | jsing | 2016-11-06 | 1 | -13/+13 |
* | Update regress for IDEA cipher suite removal. | jsing | 2016-11-06 | 1 | -83/+83 |
* | Remove the single IDEA cipher suite. There is no good reason to support | jsing | 2016-11-06 | 3 | -29/+3 |
* | unifdef -m -UOPENSSL_NO_CHACHA -UOPENSSL_NO_POLY1305 | jsing | 2016-11-06 | 2 | -6/+2 |
* | Add regress test script for openssl command. | inoguchi | 2016-11-06 | 3 | -2/+966 |
* | Avoid compiling in an unused function. | jsing | 2016-11-06 | 1 | -0/+2 |
* | adjust guards to elide unused Bi array | bcook | 2016-11-06 | 1 | -2/+0 |
* | Rework X509_verify_cert to support alt chains on certificate verification, | beck | 2016-11-06 | 1 | -117/+265 |
* | The upcoming x509 alt chains diff tightens the trust requirements | beck | 2016-11-06 | 1 | -1/+17 |
* | Commit a reminder that the default is not the default. This needs to | beck | 2016-11-06 | 1 | -1/+2 |
* | remove unused variable | bcook | 2016-11-06 | 1 | -6/+3 |
* | use the correct function for free | bcook | 2016-11-06 | 1 | -2/+2 |
* | add an .Xr that was missing | schwarze | 2016-11-06 | 1 | -1/+2 |
* | document BN_set_negative() and BN_is_negative(); | schwarze | 2016-11-05 | 6 | -516/+69 |
* | Part one of the alt chains changes, bring in newer modifications to | beck | 2016-11-05 | 3 | -73/+411 |
* | Add objects for X25519, X448, Ed25519 and Ed448. | jsing | 2016-11-05 | 2 | -0/+15 |
* | One of the error paths would attempt to access not-yet-initialized locals. | miod | 2016-11-05 | 1 | -2/+2 |
* | Do a partial CBB conversion of ssl3_send_server_key_exchange(), which will | jsing | 2016-11-05 | 1 | -52/+67 |
* | fix misplaced quote by tls_peer_ocsp_this_update | bcook | 2016-11-05 | 1 | -2/+2 |
* | zap trailing whitespace, and add -o to usage() and help (-h); | jmc | 2016-11-05 | 2 | -6/+9 |
* | tweak previous; | jmc | 2016-11-05 | 1 | -6/+6 |
* | move manual pages from doc/ to man/ for consistency with other | schwarze | 2016-11-05 | 85 | -169/+169 |
* | Check BIO_new*() for failure. | miod | 2016-11-05 | 2 | -4/+9 |
* | More X509_STORE_CTX_set_*() return value checks. | miod | 2016-11-05 | 3 | -12/+16 |
* | bump minors for symbol addition for ocsp and x25519 symbol additions | beck | 2016-11-05 | 3 | -3/+3 |
* | Add support for server side OCSP stapling to libtls. | beck | 2016-11-05 | 9 | -16/+98 |
* | Add regress for X25519, converted from BoringSSL. | jsing | 2016-11-05 | 3 | -1/+150 |
* | after getting rid of the pod files, clean up the Makefiles; ok bcook@ | schwarze | 2016-11-05 | 4 | -41/+23 |
* | Add support for X25519. | jsing | 2016-11-05 | 5 | -1/+5136 |
* | rename ocsp_ctx to ocsp | beck | 2016-11-05 | 3 | -68/+68 |
* | minor mandoc -Tlint nits | schwarze | 2016-11-05 | 3 | -9/+8 |
* | add the missing content, sorry for committing an empty file | schwarze | 2016-11-05 | 1 | -0/+69 |
* | Stricter validation of inputs of OPENSSL_asc2uni() and OPENSSL_uni2asc(). | miod | 2016-11-05 | 1 | -17/+34 |
* | convert the remaining manual pages from pod to mdoc | schwarze | 2016-11-05 | 25 | -1650/+3615 |
* | X509_STORE_CTX_set_*() may fail, so check for errors. | miod | 2016-11-05 | 1 | -4/+14 |
* | Do not leak the ressources possibly allocated by EVP_MD_CTX_init() in the | miod | 2016-11-05 | 1 | -2/+3 |
* | Set PROG so that the binary correctly gets recompiled when the libraries | miod | 2016-11-05 | 1 | -11/+5 |
* | Make sure PEM_SealInit() will correctly destroy the PEM_ENCODE_SEAL_CTX | miod | 2016-11-05 | 1 | -8/+22 |
* | No need to duplicate definitions from evp.h locally. | miod | 2016-11-05 | 2 | -14/+2 |
* | Stop abusing the ternary operator to decide which function to call in a | miod | 2016-11-05 | 1 | -3/+6 |
* | further tweakage, with an improvement from joel; | jmc | 2016-11-05 | 1 | -5/+5 |