Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | some cleanup; | jmc | 2016-11-06 | 1 | -31/+28 |
| | |||||
* | sort SEE ALSO; | jmc | 2016-11-06 | 1 | -2/+2 |
| | |||||
* | Remove unused SSLv3 from ssl3_cbc_record_digest_supported(). | jsing | 2016-11-06 | 3 | -77/+33 |
| | | | | | | From Markus Uhlin <markus.uhlin at bredband dot net> ok beck@ bcooK@ | ||||
* | don't dereference a if NULL | bcook | 2016-11-06 | 1 | -2/+2 |
| | |||||
* | document EVP_PKEY_get_default_digest_nid(3) in one page, not in two | schwarze | 2016-11-06 | 2 | -8/+4 |
| | |||||
* | some minor cleanup; | jmc | 2016-11-06 | 5 | -43/+42 |
| | |||||
* | Set the callback on the correct ssl_ctx for the SNI case, instead of | beck | 2016-11-06 | 1 | -2/+2 |
| | | | | | the master only. ok jsing@ | ||||
* | spacing between macro args and punctuation; | jmc | 2016-11-06 | 2 | -4/+4 |
| | |||||
* | document ENGINE_add_conf_module(3) in one page, not in two | schwarze | 2016-11-06 | 1 | -3/+2 |
| | |||||
* | document BIO_set_fd() and BIO_get_fd() in one manual page, not in two; | schwarze | 2016-11-06 | 2 | -60/+32 |
| | | | | general direction discussed yesterday with bcook@ | ||||
* | delete prototypes available in other pages and add a missing .Xr link | schwarze | 2016-11-06 | 1 | -102/+2 |
| | |||||
* | delete prototypes available in other pages and add two missing .Xr links | schwarze | 2016-11-06 | 4 | -756/+216 |
| | |||||
* | first pass; ok schwarze | jmc | 2016-11-06 | 185 | -249/+620 |
| | |||||
* | delete prototypes available in other pages and add three missing .Xr links | schwarze | 2016-11-06 | 1 | -179/+7 |
| | |||||
* | delete prototypes available in other pages and add two missing .Xr links | schwarze | 2016-11-06 | 1 | -158/+3 |
| | |||||
* | Split ssl3_get_client_key_exchange() into separate per algorithm functions. | jsing | 2016-11-06 | 1 | -320/+388 |
| | | | | ok beck@ | ||||
* | Remove pointless check - without fixed ECDH, there is only one way to reach | jsing | 2016-11-06 | 1 | -8/+1 |
| | | | | | | this code path. ok beck@ bcook@ | ||||
* | tweak previous; | jmc | 2016-11-06 | 1 | -3/+3 |
| | |||||
* | simplify error handling in c2i_ASN1_OBJECT | bcook | 2016-11-06 | 1 | -10/+12 |
| | | | | ok beck@, miod@ | ||||
* | Split out the DHE and ECDHE code paths from | jsing | 2016-11-06 | 1 | -203/+221 |
| | | | | | | ssl3_send_server_key_exchange(). ok beck@ bcook@ | ||||
* | rename tlslegacy to tlsall, and better describe what it does. | beck | 2016-11-06 | 2 | -8/+8 |
| | | | | ok jsing@ | ||||
* | Adjust cipher suite strengths - move MD5 to LOW, RC4 to LOW and 3DES to | jsing | 2016-11-06 | 1 | -13/+13 |
| | | | | | | MEDIUM. ok beck@ bcook@ | ||||
* | Update regress for IDEA cipher suite removal. | jsing | 2016-11-06 | 1 | -83/+83 |
| | |||||
* | Remove the single IDEA cipher suite. There is no good reason to support | jsing | 2016-11-06 | 3 | -29/+3 |
| | | | | | | this. ok beck@ bcook@ | ||||
* | unifdef -m -UOPENSSL_NO_CHACHA -UOPENSSL_NO_POLY1305 | jsing | 2016-11-06 | 2 | -6/+2 |
| | | | | ok beck@ | ||||
* | Add regress test script for openssl command. | inoguchi | 2016-11-06 | 3 | -2/+966 |
| | | | | ok beck@ | ||||
* | Avoid compiling in an unused function. | jsing | 2016-11-06 | 1 | -0/+2 |
| | | | | Spotted by guenther@ | ||||
* | adjust guards to elide unused Bi array | bcook | 2016-11-06 | 1 | -2/+0 |
| | | | | ok jsing@ | ||||
* | Rework X509_verify_cert to support alt chains on certificate verification, | beck | 2016-11-06 | 1 | -117/+265 |
| | | | | | via boringssl. ok jsing@ miod@ | ||||
* | The upcoming x509 alt chains diff tightens the trust requirements | beck | 2016-11-06 | 1 | -1/+17 |
| | | | | | | | for certificates. This (from OpenSSL) ensures that the current "default" behaviour remains the same. We should revisit this later ok jsing@ | ||||
* | Commit a reminder that the default is not the default. This needs to | beck | 2016-11-06 | 1 | -1/+2 |
| | | | | | be revisited. ok jsing@ | ||||
* | remove unused variable | bcook | 2016-11-06 | 1 | -6/+3 |
| | |||||
* | use the correct function for free | bcook | 2016-11-06 | 1 | -2/+2 |
| | | | | ok beck@ | ||||
* | add an .Xr that was missing | schwarze | 2016-11-06 | 1 | -1/+2 |
| | |||||
* | document BN_set_negative() and BN_is_negative(); | schwarze | 2016-11-05 | 6 | -516/+69 |
| | | | | feedback and OK bcook@, OK jsing@ | ||||
* | Part one of the alt chains changes, bring in newer modifications to | beck | 2016-11-05 | 3 | -73/+411 |
| | | | | | VERIFY_PARAMS - based on boringssl. ok jsing@ miod@ | ||||
* | Add objects for X25519, X448, Ed25519 and Ed448. | jsing | 2016-11-05 | 2 | -0/+15 |
| | | | | ok miod@ | ||||
* | One of the error paths would attempt to access not-yet-initialized locals. | miod | 2016-11-05 | 1 | -2/+2 |
| | | | | | | Simply return since there is nothing more to do. Spotted by coverity. ok jsing@ beck@ | ||||
* | Do a partial CBB conversion of ssl3_send_server_key_exchange(), which will | jsing | 2016-11-05 | 1 | -52/+67 |
| | | | | | | make it easier to do further clean up. ok beck@ miod@ | ||||
* | fix misplaced quote by tls_peer_ocsp_this_update | bcook | 2016-11-05 | 1 | -2/+2 |
| | |||||
* | zap trailing whitespace, and add -o to usage() and help (-h); | jmc | 2016-11-05 | 2 | -6/+9 |
| | |||||
* | tweak previous; | jmc | 2016-11-05 | 1 | -6/+6 |
| | |||||
* | move manual pages from doc/ to man/ for consistency with other | schwarze | 2016-11-05 | 85 | -169/+169 |
| | | | | | libraries, in particular considering that there are unrelated files in doc/; requested by jsing@ and beck@ | ||||
* | Check BIO_new*() for failure. | miod | 2016-11-05 | 2 | -4/+9 |
| | | | | ok beck@ jsing@ | ||||
* | More X509_STORE_CTX_set_*() return value checks. | miod | 2016-11-05 | 3 | -12/+16 |
| | | | | ok beck@ jsing@ | ||||
* | bump minors for symbol addition for ocsp and x25519 symbol additions | beck | 2016-11-05 | 3 | -3/+3 |
| | |||||
* | Add support for server side OCSP stapling to libtls. | beck | 2016-11-05 | 9 | -16/+98 |
| | | | | Add support for server side OCSP stapling to netcat. | ||||
* | Add regress for X25519, converted from BoringSSL. | jsing | 2016-11-05 | 3 | -1/+150 |
| | |||||
* | after getting rid of the pod files, clean up the Makefiles; ok bcook@ | schwarze | 2016-11-05 | 4 | -41/+23 |
| | |||||
* | Add support for X25519. | jsing | 2016-11-05 | 5 | -1/+5136 |
| | | | | | | This brings in code from BoringSSL, which is mostly taken from SUPERCOP. ok beck@ bcook@ |