Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | add Copyright and license | schwarze | 2016-11-11 | 1 | -4/+51 |
| | | | | | and delete useless and incorrect sentence "None of the functions presented here return any value." | ||||
* | import ASN1_TYPE_get(3) from OpenSSL, | schwarze | 2016-11-11 | 2 | -1/+213 |
| | | | | | deleting ASN1_TYPE_unpack_sequence() and ASN1_TYPE_pack_sequence() which we don't have | ||||
* | minor cleanup; | jmc | 2016-11-10 | 1 | -6/+6 |
| | |||||
* | import from OpenSSL, | schwarze | 2016-11-10 | 1 | -0/+246 |
| | | | | deleting ASN1_TIME_diff() which we don't have | ||||
* | various cleanup; | jmc | 2016-11-10 | 7 | -57/+52 |
| | |||||
* | Copyright and license | schwarze | 2016-11-10 | 2 | -4/+102 |
| | |||||
* | Add the correct Copyright and license. | schwarze | 2016-11-10 | 1 | -5/+55 |
| | | | | | Mention that ASN1_STRING_free(NULL) is OK. Delete the obvious statement that a void function returns no value. | ||||
* | Copyright and license | schwarze | 2016-11-10 | 1 | -2/+51 |
| | |||||
* | Add the correct Copyright and license. | schwarze | 2016-11-10 | 1 | -2/+55 |
| | | | | Mention that ASN1_OBJECT_free(NULL) is OK. | ||||
* | some cleanup; | jmc | 2016-11-08 | 11 | -63/+62 |
| | |||||
* | When using an union including a type known for having strong alignment | miod | 2016-11-08 | 1 | -7/+15 |
| | | | | | | | | constraints, in order to force the union to have the same constraint, use the actual type instead of `double'. And add a comment explaining why we want such an alignment in there. ok beck@ | ||||
* | Check for stack push failure, and correctly destroy the object we failed | miod | 2016-11-08 | 1 | -20/+47 |
| | | | | | | | to push in that case. While there replace an inline version of X509_OBJECT_free_contents() by a call to said function. ok beck@ | ||||
* | Use more homogeneous types and avoid a possible right shift by 32 in | miod | 2016-11-08 | 1 | -17/+11 |
| | | | | | | lh_strhash(). ok guenther@ | ||||
* | Stricter checks of ASN1_INTEGER to reject ASN1_NEG_INTEGER in places when | miod | 2016-11-08 | 5 | -14/+32 |
| | | | | | | they don't make sense. ok beck@ | ||||
* | Reduce the ternary operator abuse | guenther | 2016-11-08 | 1 | -3/+8 |
| | | | | ok miod@ | ||||
* | Use __{BEGIN,END}_HIDDEN_DECLS to avoid exporting the internal symbols | guenther | 2016-11-07 | 1 | -6/+2 |
| | | | | ok jsing@ | ||||
* | various cleanup; | jmc | 2016-11-07 | 21 | -200/+193 |
| | |||||
* | some cleanup; | jmc | 2016-11-06 | 1 | -31/+28 |
| | |||||
* | sort SEE ALSO; | jmc | 2016-11-06 | 1 | -2/+2 |
| | |||||
* | Remove unused SSLv3 from ssl3_cbc_record_digest_supported(). | jsing | 2016-11-06 | 3 | -77/+33 |
| | | | | | | From Markus Uhlin <markus.uhlin at bredband dot net> ok beck@ bcooK@ | ||||
* | don't dereference a if NULL | bcook | 2016-11-06 | 1 | -2/+2 |
| | |||||
* | document EVP_PKEY_get_default_digest_nid(3) in one page, not in two | schwarze | 2016-11-06 | 2 | -8/+4 |
| | |||||
* | some minor cleanup; | jmc | 2016-11-06 | 5 | -43/+42 |
| | |||||
* | Set the callback on the correct ssl_ctx for the SNI case, instead of | beck | 2016-11-06 | 1 | -2/+2 |
| | | | | | the master only. ok jsing@ | ||||
* | spacing between macro args and punctuation; | jmc | 2016-11-06 | 2 | -4/+4 |
| | |||||
* | document ENGINE_add_conf_module(3) in one page, not in two | schwarze | 2016-11-06 | 1 | -3/+2 |
| | |||||
* | document BIO_set_fd() and BIO_get_fd() in one manual page, not in two; | schwarze | 2016-11-06 | 2 | -60/+32 |
| | | | | general direction discussed yesterday with bcook@ | ||||
* | delete prototypes available in other pages and add a missing .Xr link | schwarze | 2016-11-06 | 1 | -102/+2 |
| | |||||
* | delete prototypes available in other pages and add two missing .Xr links | schwarze | 2016-11-06 | 4 | -756/+216 |
| | |||||
* | first pass; ok schwarze | jmc | 2016-11-06 | 185 | -249/+620 |
| | |||||
* | delete prototypes available in other pages and add three missing .Xr links | schwarze | 2016-11-06 | 1 | -179/+7 |
| | |||||
* | delete prototypes available in other pages and add two missing .Xr links | schwarze | 2016-11-06 | 1 | -158/+3 |
| | |||||
* | Split ssl3_get_client_key_exchange() into separate per algorithm functions. | jsing | 2016-11-06 | 1 | -320/+388 |
| | | | | ok beck@ | ||||
* | Remove pointless check - without fixed ECDH, there is only one way to reach | jsing | 2016-11-06 | 1 | -8/+1 |
| | | | | | | this code path. ok beck@ bcook@ | ||||
* | tweak previous; | jmc | 2016-11-06 | 1 | -3/+3 |
| | |||||
* | simplify error handling in c2i_ASN1_OBJECT | bcook | 2016-11-06 | 1 | -10/+12 |
| | | | | ok beck@, miod@ | ||||
* | Split out the DHE and ECDHE code paths from | jsing | 2016-11-06 | 1 | -203/+221 |
| | | | | | | ssl3_send_server_key_exchange(). ok beck@ bcook@ | ||||
* | rename tlslegacy to tlsall, and better describe what it does. | beck | 2016-11-06 | 2 | -8/+8 |
| | | | | ok jsing@ | ||||
* | Adjust cipher suite strengths - move MD5 to LOW, RC4 to LOW and 3DES to | jsing | 2016-11-06 | 1 | -13/+13 |
| | | | | | | MEDIUM. ok beck@ bcook@ | ||||
* | Update regress for IDEA cipher suite removal. | jsing | 2016-11-06 | 1 | -83/+83 |
| | |||||
* | Remove the single IDEA cipher suite. There is no good reason to support | jsing | 2016-11-06 | 3 | -29/+3 |
| | | | | | | this. ok beck@ bcook@ | ||||
* | unifdef -m -UOPENSSL_NO_CHACHA -UOPENSSL_NO_POLY1305 | jsing | 2016-11-06 | 2 | -6/+2 |
| | | | | ok beck@ | ||||
* | Add regress test script for openssl command. | inoguchi | 2016-11-06 | 3 | -2/+966 |
| | | | | ok beck@ | ||||
* | Avoid compiling in an unused function. | jsing | 2016-11-06 | 1 | -0/+2 |
| | | | | Spotted by guenther@ | ||||
* | adjust guards to elide unused Bi array | bcook | 2016-11-06 | 1 | -2/+0 |
| | | | | ok jsing@ | ||||
* | Rework X509_verify_cert to support alt chains on certificate verification, | beck | 2016-11-06 | 1 | -117/+265 |
| | | | | | via boringssl. ok jsing@ miod@ | ||||
* | The upcoming x509 alt chains diff tightens the trust requirements | beck | 2016-11-06 | 1 | -1/+17 |
| | | | | | | | for certificates. This (from OpenSSL) ensures that the current "default" behaviour remains the same. We should revisit this later ok jsing@ | ||||
* | Commit a reminder that the default is not the default. This needs to | beck | 2016-11-06 | 1 | -1/+2 |
| | | | | | be revisited. ok jsing@ | ||||
* | remove unused variable | bcook | 2016-11-06 | 1 | -6/+3 |
| | |||||
* | use the correct function for free | bcook | 2016-11-06 | 1 | -2/+2 |
| | | | | ok beck@ |