| Commit message (Expand) | Author | Age | Files | Lines |
* | Propagate record overflows to the record layer and alert. | jsing | 2020-05-11 | 3 | -6/+8 |
* | Add record version checks. | jsing | 2020-05-11 | 3 | -18/+28 |
* | Set the record layer legacy version from the TLSv1.3 server. | jsing | 2020-05-11 | 1 | -1/+5 |
* | Provide an alert sent record layer callback. | jsing | 2020-05-11 | 4 | -8/+29 |
* | Move the record layer callbacks into a struct. | jsing | 2020-05-11 | 3 | -35/+33 |
* | Use ssl_get_new_session() in the TLSv1.3 server. | jsing | 2020-05-11 | 1 | -4/+3 |
* | Make openssl X509 handle the failure case return code from X509_time_cmp. | beck | 2020-05-10 | 1 | -5/+16 |
* | Send dummy ChangeCipherSpec messages from the TLSv1.3 server | tb | 2020-05-10 | 3 | -3/+41 |
* | Honour SSL_VERIFY_FAIL_IF_NO_PEER_CERT in the TLSv1.3 server. | jsing | 2020-05-10 | 3 | -8/+16 |
* | Provide alert defines for TLSv1.3 and use in the TLSv1.3 code. | jsing | 2020-05-10 | 7 | -65/+97 |
* | Conditionalize sleep-before-retry in server code to only be done when | beck | 2020-05-10 | 1 | -3/+5 |
* | Provide an easy way to get debug information from TLSv1.3 handshakes. | jsing | 2020-05-10 | 2 | -3/+61 |
* | Use size_t for OCSP response length. | jsing | 2020-05-10 | 8 | -27/+35 |
* | Only reset TLS extension state when parsing client hello or server hello. | jsing | 2020-05-10 | 1 | -5/+7 |
* | Correct tlsext_ocsp_resplen check. | jsing | 2020-05-10 | 1 | -2/+2 |
* | Back out server side CCS sending. It breaks TLSv1.3 client communication | tb | 2020-05-09 | 3 | -34/+3 |
* | Forcibly ensure that only PSS may be used with RSA in TLS 1.3. | beck | 2020-05-09 | 1 | -2/+8 |
* | Send dummy ChangeCipherSpec messages from the TLSv1.3 server | tb | 2020-05-09 | 3 | -3/+34 |
* | Send dummy ChangeCipherSpec messages from the TLSv1.3 client. | jsing | 2020-05-09 | 4 | -6/+45 |
* | Correct return value check to handle TLS13_IO_EOF case. | jsing | 2020-05-09 | 1 | -2/+2 |
* | Add a middlebox_compat flag and condition session ID randomisation on it. | jsing | 2020-05-09 | 3 | -4/+7 |
* | catch the other place this needs to change | beck | 2020-05-09 | 1 | -2/+2 |
* | now that 3.1.1 is out the door as a stable release bump the development | beck | 2020-05-09 | 1 | -2/+2 |
* | Add support for certificate status requests in TLS 1.3 client | beck | 2020-05-09 | 4 | -12/+81 |
* | Make the test for the legacy_compression_method vector in the ClientHello | tb | 2020-05-09 | 1 | -12/+7 |
* | Drop a redundant test. It's effectively doing the same test twice | tb | 2020-05-09 | 1 | -3/+2 |
* | On receiving an overlong session ID terminate with an illegal_parameter | tb | 2020-05-09 | 1 | -1/+6 |
* | Add support for HelloRetryRequests in the TLSv1.3 server. | jsing | 2020-05-09 | 2 | -10/+73 |
* | crazy whitespace on one line | tb | 2020-05-09 | 1 | -2/+2 |
* | Pull the sending of alerts up into tls13_handshake_perform(). | jsing | 2020-05-09 | 1 | -14/+11 |
* | Refactor tls13_server_hello_sent(). | jsing | 2020-05-09 | 1 | -30/+36 |
* | On receiving a handshake or alert record with empty inner plaintext, | tb | 2020-05-07 | 1 | -1/+11 |
* | Bump LibreSSL version to 3.1.1 | tb | 2020-05-06 | 1 | -3/+3 |
* | Use a larger (2048 bit) RSA test key. | jsing | 2020-05-04 | 1 | -1/+63 |
* | Fix out-of-bounds access in tables[][] that was exposed in bluhm's | tb | 2020-05-04 | 1 | -6/+8 |
* | Accept two ChangeCipherSpec messages during a TLSv1.3 handshake. | jsing | 2020-05-03 | 1 | -3/+3 |
* | Add const to TLS1.3 internal vectors | inoguchi | 2020-05-02 | 2 | -14/+14 |
* | Disallow setting the AES-GCM IV length to 0 | tb | 2020-04-30 | 1 | -1/+5 |
* | tls13_record_layer internal functions to static in libssl | inoguchi | 2020-04-29 | 1 | -4/+4 |
* | tls13_handshake internal functions to static in libssl | inoguchi | 2020-04-29 | 1 | -11/+12 |
* | Move legacy stack interfacing functions into tls13_legacy.c. | jsing | 2020-04-28 | 4 | -199/+206 |
* | Rename tls13_client_synthetic_handshake_message() and move to tls13_lib.c. | jsing | 2020-04-28 | 3 | -47/+48 |
* | Shuffle some functions around. | jsing | 2020-04-27 | 2 | -329/+328 |
* | Fix two bugs in the AES-CBC-PKCS5 tests that didn't hide failing tests: | tb | 2020-04-27 | 1 | -3/+3 |
* | Fix a logic error that hid the failing ZeroLengthIv tests. | tb | 2020-04-27 | 1 | -3/+3 |
* | Disallow the use of zero length IVs in AES-GCM via | tb | 2020-04-27 | 3 | -3/+15 |
* | Minimal maintenance to make this mess slightly less confusing: | schwarze | 2020-04-26 | 1 | -10/+10 |
* | fix the description; from andras farkas | jmc | 2020-04-26 | 1 | -5/+4 |
* | Display TLSv1.3 extension type with openssl(1) -tlsextdebug | inoguchi | 2020-04-26 | 1 | -7/+49 |
* | s_client: fix use of possibly uninitialized values | inoguchi | 2020-04-26 | 1 | -2/+2 |