summaryrefslogtreecommitdiff
path: root/src (follow)
Commit message (Expand)AuthorAgeFilesLines
* Send dummy ChangeCipherSpec messages from the TLSv1.3 servertb2020-05-103-3/+41
* Honour SSL_VERIFY_FAIL_IF_NO_PEER_CERT in the TLSv1.3 server.jsing2020-05-103-8/+16
* Provide alert defines for TLSv1.3 and use in the TLSv1.3 code.jsing2020-05-107-65/+97
* Conditionalize sleep-before-retry in server code to only be done whenbeck2020-05-101-3/+5
* Provide an easy way to get debug information from TLSv1.3 handshakes.jsing2020-05-102-3/+61
* Use size_t for OCSP response length.jsing2020-05-108-27/+35
* Only reset TLS extension state when parsing client hello or server hello.jsing2020-05-101-5/+7
* Correct tlsext_ocsp_resplen check.jsing2020-05-101-2/+2
* Back out server side CCS sending. It breaks TLSv1.3 client communicationtb2020-05-093-34/+3
* Forcibly ensure that only PSS may be used with RSA in TLS 1.3.beck2020-05-091-2/+8
* Send dummy ChangeCipherSpec messages from the TLSv1.3 servertb2020-05-093-3/+34
* Send dummy ChangeCipherSpec messages from the TLSv1.3 client.jsing2020-05-094-6/+45
* Correct return value check to handle TLS13_IO_EOF case.jsing2020-05-091-2/+2
* Add a middlebox_compat flag and condition session ID randomisation on it.jsing2020-05-093-4/+7
* catch the other place this needs to changebeck2020-05-091-2/+2
* now that 3.1.1 is out the door as a stable release bump the developmentbeck2020-05-091-2/+2
* Add support for certificate status requests in TLS 1.3 clientbeck2020-05-094-12/+81
* Make the test for the legacy_compression_method vector in the ClientHellotb2020-05-091-12/+7
* Drop a redundant test. It's effectively doing the same test twicetb2020-05-091-3/+2
* On receiving an overlong session ID terminate with an illegal_parametertb2020-05-091-1/+6
* Add support for HelloRetryRequests in the TLSv1.3 server.jsing2020-05-092-10/+73
* crazy whitespace on one linetb2020-05-091-2/+2
* Pull the sending of alerts up into tls13_handshake_perform().jsing2020-05-091-14/+11
* Refactor tls13_server_hello_sent().jsing2020-05-091-30/+36
* On receiving a handshake or alert record with empty inner plaintext,tb2020-05-071-1/+11
* Bump LibreSSL version to 3.1.1tb2020-05-061-3/+3
* Use a larger (2048 bit) RSA test key.jsing2020-05-041-1/+63
* Fix out-of-bounds access in tables[][] that was exposed in bluhm'stb2020-05-041-6/+8
* Accept two ChangeCipherSpec messages during a TLSv1.3 handshake.jsing2020-05-031-3/+3
* Add const to TLS1.3 internal vectorsinoguchi2020-05-022-14/+14
* Disallow setting the AES-GCM IV length to 0tb2020-04-301-1/+5
* tls13_record_layer internal functions to static in libsslinoguchi2020-04-291-4/+4
* tls13_handshake internal functions to static in libsslinoguchi2020-04-291-11/+12
* Move legacy stack interfacing functions into tls13_legacy.c.jsing2020-04-284-199/+206
* Rename tls13_client_synthetic_handshake_message() and move to tls13_lib.c.jsing2020-04-283-47/+48
* Shuffle some functions around.jsing2020-04-272-329/+328
* Fix two bugs in the AES-CBC-PKCS5 tests that didn't hide failing tests:tb2020-04-271-3/+3
* Fix a logic error that hid the failing ZeroLengthIv tests.tb2020-04-271-3/+3
* Disallow the use of zero length IVs in AES-GCM viatb2020-04-273-3/+15
* Minimal maintenance to make this mess slightly less confusing:schwarze2020-04-261-10/+10
* fix the description; from andras farkasjmc2020-04-261-5/+4
* Display TLSv1.3 extension type with openssl(1) -tlsextdebuginoguchi2020-04-261-7/+49
* s_client: fix use of possibly uninitialized valuesinoguchi2020-04-261-2/+2
* A comma is not appropriate here, use a semicolonjca2020-04-251-2/+2
* In s_server.c rev. 1.33, jsing added support for "openssl s_server -groups";schwarze2020-04-251-6/+18
* Switch to NEGOTIATED when using WITHOUT_HRR.jsing2020-04-251-4/+9
* Discourage use of RES_USE_INET6jca2020-04-251-1/+5
* Fix RES_USE_INET6 descriptionjca2020-04-251-7/+9
* Move unsupported, obsolete ciphers and deprecated aliases out ofschwarze2020-04-251-31/+29
* tweak the wording to make it clearer under which conditions exactlyschwarze2020-04-251-4/+4