| Commit message (Expand) | Author | Age | Files | Lines |
* | Remove DEBUG_SIGN code. Make sure gost_key_unwrap_crypto_pro() returns failure | miod | 2014-11-09 | 4 | -38/+8 |
* | Rename internal yet public key_{un,}wrap_crypto_pro symbols by prepending a | miod | 2014-11-09 | 6 | -60/+64 |
* | Replace RAND_bytes() usage with arc4random_buf(). | miod | 2014-11-09 | 6 | -20/+6 |
* | GOST crypto algorithms (well, most of them), ported from the removed GOST | miod | 2014-11-09 | 75 | -31/+13110 |
* | Introduce EVP_MD_CTX_ctrl(), to allow for fine control of a given digest. | miod | 2014-11-09 | 4 | -4/+52 |
* | Allow digest routines to provide their own HASH_FINAL routine; will be | miod | 2014-11-09 | 2 | -6/+10 |
* | Clean up more SSLv2 remnants. | jsing | 2014-11-08 | 6 | -58/+30 |
* | More OPENSSL_NO_TLSEXT clean up. | jsing | 2014-11-07 | 3 | -11/+11 |
* | missing outlen in tls_write decl | tedu | 2014-11-07 | 1 | -3/+3 |
* | Document the -servername option for openssl(1) s_client. | jsing | 2014-11-07 | 1 | -2/+7 |
* | TLS is pretty boring without TLS extensions... unifdef OPENSSL_NO_TLSEXT, | jsing | 2014-11-06 | 2 | -76/+2 |
* | ssl_sock_init() does nothing, so remove it... | jsing | 2014-11-06 | 1 | -17/+1 |
* | edns0 is not currently supported: confirmed by sthen and eric | jmc | 2014-11-05 | 1 | -7/+7 |
* | simple select() to poll() conversion; reviewed by millert and doug | deraadt | 2014-11-04 | 1 | -9/+9 |
* | only call SRTP (whatever that is) functions when the connection type is | tedu | 2014-11-03 | 2 | -10/+10 |
* | minor cleanup of zlib code. DSO is gone. ok jsing. | tedu | 2014-11-03 | 10 | -434/+14 |
* | Add hooks to override native arc4random_buf on FreeBSD. | bcook | 2014-11-03 | 4 | -0/+298 |
* | Add a tls_connect_fds() function that allows a secure connection to be | jsing | 2014-11-02 | 3 | -6/+34 |
* | Remove remnants from RC2 and SEED - there are no longer any cipher suites | jsing | 2014-11-02 | 4 | -106/+46 |
* | Initial regress for libtls hostname verification. | jsing | 2014-11-01 | 3 | -2/+247 |
* | Remove ephemeral RSA key handling. | jsing | 2014-10-31 | 1 | -43/+4 |
* | Use automatic DH ephemeral parameters instead of fixed 512 bit. | jsing | 2014-10-31 | 1 | -38/+23 |
* | Remove an outdated comment re EDH vs DHE - DHE is now used consistently and | jsing | 2014-10-31 | 2 | -16/+2 |
* | Update comments for TLS ExtensionType values - many of the referenced | jsing | 2014-10-31 | 2 | -76/+92 |
* | Crank libssl major due to recent additions, removals and changes. | jsing | 2014-10-31 | 2 | -4/+4 |
* | Remove now unused remnants from public structs. | jsing | 2014-10-31 | 4 | -14/+4 |
* | Add support for automatic DH ephemeral keys. | jsing | 2014-10-31 | 12 | -44/+194 |
* | Remove support for ephemeral/temporary RSA private keys. | jsing | 2014-10-31 | 14 | -474/+88 |
* | Update regress for the libressl to libtls rename. | jsing | 2014-10-31 | 4 | -0/+288 |
* | Rename libressl to libtls to avoid confusion and to make it easier to | jsing | 2014-10-31 | 13 | -451/+422 |
* | clean up verbiage around the calculations; ok ingo jmc otto | deraadt | 2014-10-30 | 1 | -5/+5 |
* | Don't mention old systems where realloc(NULL, n) didn't work as we | millert | 2014-10-30 | 1 | -11/+7 |
* | my mistake. we already did increase buffers to 16k; increasing to 64k | tedu | 2014-10-30 | 1 | -2/+2 |
* | rework the poll loop to poll in both directions so it doesn't get stuck | tedu | 2014-10-30 | 1 | -47/+211 |
* | deregister; no binary change | jsg | 2014-10-28 | 100 | -460/+460 |
* | Check the result of sk_*_push() operations for failure. | miod | 2014-10-28 | 18 | -88/+170 |
* | POLLIN is not guaranteed to be set in revents for EOF so check for | millert | 2014-10-26 | 1 | -3/+3 |
* | Remove unnecessary include: netinet/in_systm.h is not needed by these | lteo | 2014-10-24 | 1 | -2/+1 |
* | Save space in man page: err() -> errc() and combine vars. | doug | 2014-10-23 | 1 | -18/+11 |
* | In PKCS12_setup_mac(), do not assign p12->mac->salt->length until the allocation | miod | 2014-10-22 | 2 | -16/+18 |
* | Avoid a NULL pointer dereference that can be triggered by | jsing | 2014-10-22 | 2 | -4/+4 |
* | #undef LIBRESSL_INTERNAL for the RAND_pseudo_bytes() test. | jsing | 2014-10-22 | 1 | -0/+2 |
* | Place most of the RAND_* functions under #ifndef LIBRESSL_INTERNAL (some | jsing | 2014-10-22 | 2 | -2/+8 |
* | Use arc4random_buf() instead of RAND(_pseudo)?_bytes(). | jsing | 2014-10-22 | 8 | -36/+19 |
* | None of these need <openssl/rand.h> | jsing | 2014-10-22 | 3 | -6/+3 |
* | Use arc4random_buf() instead of RAND_bytes() or RAND_pseudo_bytes() (most | jsing | 2014-10-22 | 4 | -21/+15 |
* | None of these need <openssl/rand.h> | jsing | 2014-10-22 | 5 | -5/+0 |
* | Use arc4random_buf() instead of RAND_bytes() or RAND_pseudo_bytes(). | jsing | 2014-10-22 | 54 | -260/+202 |
* | Avoid writing in second person in malloc.3 | doug | 2014-10-22 | 1 | -13/+12 |
* | List extensions in the STANDARDS section, replacing some text below CAVEATS. | schwarze | 2014-10-20 | 1 | -33/+30 |