| Commit message (Expand) | Author | Age | Files | Lines |
* | DES keys are not 7 days long. ok jsing@ | dtucker | 2017-02-09 | 2 | -5/+5 |
* | Avoid a busy loop in netcat's tls_close(). Reuse the tls_handshake() | bluhm | 2017-02-08 | 1 | -18/+8 |
* | Avoid double close(2) in netcat. After every call to readwrite() | bluhm | 2017-02-08 | 1 | -13/+5 |
* | Due to non-blocking sockets, tls_handshake() could wait in a busy | bluhm | 2017-02-08 | 1 | -21/+42 |
* | Revert previous; the implementation is incorrect since it assumes that the | jsing | 2017-02-07 | 2 | -20/+7 |
* | Remove unused variable in C source to make the test compile and pass. | bluhm | 2017-02-07 | 1 | -1/+0 |
* | Add file and line to the LibreSSL error strings sine we are no longer in | beck | 2017-02-07 | 2 | -7/+20 |
* | Change SSLerror() back to taking two args, with the first one being an SSL *. | beck | 2017-02-07 | 25 | -573/+841 |
* | Define values for SSL_CTRL_SET_GROUPS{,_LIST} and wire them up to the | jsing | 2017-02-05 | 2 | -15/+19 |
* | Kill leak introduced with refactor | beck | 2017-02-05 | 1 | -3/+6 |
* | Support IPv6 proxy addresses | jca | 2017-02-05 | 1 | -10/+24 |
* | Don't use <sys/param.h> from userland without cause. Sort <sys/*> | guenther | 2017-02-03 | 1 | -3/+4 |
* | fix a comment and rm some dead code as a result of the previous diff | otto | 2017-02-02 | 1 | -8/+5 |
* | netinet/in.h should be included, and freebsd and some others | beck | 2017-02-01 | 2 | -2/+6 |
* | Let realloc handle and produce moved pointers for allocations betweenlibressl-v2.5.1 | otto | 2017-02-01 | 1 | -20/+37 |
* | tweak previous; | jmc | 2017-01-31 | 2 | -12/+8 |
* | Add tls_config_[add|set]keypair_ocsp functions so that ocsp staples may be | beck | 2017-01-31 | 6 | -58/+209 |
* | Disable client-initiated renegotiation for libtls servers. | jsing | 2017-01-31 | 1 | -1/+3 |
* | Provide an SSL_OP_NO_CLIENT_RENEGOTIATION option that disallows | jsing | 2017-01-31 | 2 | -2/+12 |
* | LibreSSL : regress for carry bug in mulx4x_mont and sqr8x_mont | inoguchi | 2017-01-31 | 1 | -1/+78 |
* | LibreSSL : Truncated packet could crash via OOB read | inoguchi | 2017-01-31 | 2 | -3/+10 |
* | Document functions returning standard moduli for DH key exchange. | schwarze | 2017-01-31 | 2 | -1/+136 |
* | tweak previous; | jmc | 2017-01-30 | 3 | -11/+11 |
* | Document BN_set_flags(3) and BN_get_flags(3). | schwarze | 2017-01-30 | 6 | -13/+159 |
* | Seriously warn against calling BN_init(3), BN_MONT_CTX_init(3), | schwarze | 2017-01-29 | 3 | -12/+75 |
* | Marko Kreen contributed significantly to the ocsp stuff for libtls | beck | 2017-01-29 | 1 | -2/+3 |
* | Move the ocsp staple to being part of the keypair structure internally, | beck | 2017-01-29 | 3 | -14/+32 |
* | Send the function codes from the error functions to the bit bucket, | beck | 2017-01-29 | 275 | -3892/+2400 |
* | Put comment back in the right place. | jsing | 2017-01-29 | 1 | -9/+9 |
* | Avoid clearing the mac_packet flag in the wrong place. | jsing | 2017-01-29 | 1 | -2/+1 |
* | add HISTORY and AUTHORS | schwarze | 2017-01-28 | 12 | -24/+256 |
* | Fix Copyright notices; ok beck@ jsing@ tedu@ | schwarze | 2017-01-27 | 11 | -28/+43 |
* | More s/OSCP/OCSP/ typos | tom | 2017-01-27 | 2 | -2/+2 |
* | oscp -> ocsp; | jmc | 2017-01-26 | 3 | -7/+7 |
* | fix Dt; | jmc | 2017-01-26 | 1 | -3/+3 |
* | Use a flag to track when we need to call SSL_shutdown(). This avoids an | jsing | 2017-01-26 | 4 | -5/+11 |
* | Bump TLS_API due to new features being added earlier this week. | jsing | 2017-01-26 | 1 | -2/+2 |
* | Bump libtls minor due to symbol additions earlier this week. | jsing | 2017-01-26 | 1 | -1/+1 |
* | knf | beck | 2017-01-26 | 1 | -6/+11 |
* | Convert ssl3_get_client_hello() to CBS. | jsing | 2017-01-26 | 1 | -76/+71 |
* | Finish the fallout of the SSLerr->SSLerror cleanup to get rid of the ugly | beck | 2017-01-26 | 18 | -653/+335 |
* | Hide SSLerr() under #ifndef LIBRESSL_INTERNAL since we shouldn't be | beck | 2017-01-26 | 1 | -2/+4 |
* | Send the error function codes to rot in the depths of hell where they belong | beck | 2017-01-26 | 24 | -798/+572 |
* | Merge the single two line function from ssl_err2.c into ssl_err.c. | jsing | 2017-01-26 | 3 | -76/+12 |
* | english is hard. | beck | 2017-01-26 | 1 | -2/+2 |
* | Limit the number of sequential empty records that we will process | beck | 2017-01-26 | 4 | -7/+30 |
* | Refactor the code to generate a WANT_READ into a function, as we are | beck | 2017-01-26 | 1 | -18/+20 |
* | Remove most of SSL3_ENC_METHOD - we can just inline the function calls | jsing | 2017-01-26 | 11 | -135/+63 |
* | Move relatively new version range code from ssl_lib.c into a separate | jsing | 2017-01-26 | 3 | -158/+175 |
* | Rename s3_{both,clnt,pkt_srvr}.c to have an ssl_ prefix since they are no | jsing | 2017-01-26 | 5 | -6/+6 |