Age | Commit message (Collapse) | Author | |
---|---|---|---|
2006-11-27 | Add RFC 3779 support. | Ben Laurie | |
2006-11-21 | Update from 0.9.8 stable. Eliminate duplicate error codes. | Dr. Stephen Henson | |
2006-11-16 | Remove illegal IMPLEMENT macros from header file. | Dr. Stephen Henson | |
2006-11-06 | remove SSLEAY_MACROS code | Nils Larsch | |
2006-10-03 | Place standard CRL behaviour in default X509_CRL_METHOD new functions to | Dr. Stephen Henson | |
create, free and set default CRL method. | |||
2006-09-26 | Initialize new callbacks and make sure hent is always initialized. | Dr. Stephen Henson | |
2006-09-25 | Complete the change for VMS. | Richard Levitte | |
2006-09-21 | Tidy up CRL handling by checking for critical extensions when it is | Dr. Stephen Henson | |
loaded. Add new function X509_CRL_get0_by_serial() to lookup a revoked entry to avoid the need to access the structure directly. Add new X509_CRL_METHOD to allow common CRL operations (verify, lookup) to be redirected. | |||
2006-09-17 | Overhaul of by_dir code to handle dynamic loading of CRLs. | Dr. Stephen Henson | |
2006-09-14 | Support for AKID in CRLs and partial support for IDP. Overhaul of CRL | Dr. Stephen Henson | |
handling to support this. | |||
2006-09-11 | Fixes for new CRL/cert callbacks. Update CRL processing code to use new | Dr. Stephen Henson | |
callbacks. | |||
2006-09-10 | Add verify callback functions to lookup a STACK of matching certs or CRLs | Dr. Stephen Henson | |
based on subject name. New thread safe functions to retrieve matching STACK from X509_STORE. Cache some IDP components. | |||
2006-07-25 | Support for multiple CRLs with same issuer name in X509_STORE. Modify | Dr. Stephen Henson | |
verify logic to try to use an unexpired CRL if possible. | |||
2006-07-24 | Cache some CRL related extensions. | Dr. Stephen Henson | |
2006-07-20 | Use correct pointer types for various functions. | Dr. Stephen Henson | |
2006-07-18 | Store canonical encodings of Name structures. Update X509_NAME_cmp() to use | Dr. Stephen Henson | |
them. | |||
2006-05-17 | Extended PBES2 function supporting application supplied IV and PRF NID. | Dr. Stephen Henson | |
2006-05-03 | Update from stable branch. | Dr. Stephen Henson | |
2006-04-28 | Update EVP_PKEY_cmp() and X509_check_private() to return sensible values and | Dr. Stephen Henson | |
handle unsupported key types. | |||
2006-03-20 | Initial support for pluggable public key ASN1 support. Process most public | Dr. Stephen Henson | |
key ASN1 handling through a single EVP_PKEY_ASN1_METHOD structure and move the spaghetti algorithm specific code to a single ASN1 module for each algorithm. | |||
2006-03-04 | no need to cast away the const | Nils Larsch | |
2006-02-12 | RFC 3161 compliant time stamp request creation, response generation | Ulf Möller | |
and response verification. Submitted by: Zoltan Glozik <zglozik@opentsa.org> Reviewed by: Ulf Moeller | |||
2006-02-04 | Update filenames in makefiles. | Dr. Stephen Henson | |
2006-01-29 | add additional checks + cleanup | Nils Larsch | |
Submitted by: David Hartman <david_hartman@symantec.com> | |||
2005-12-18 | Keep disclaiming 16-bit platform support. For now remove WIN16 references | Andy Polyakov | |
from .h files... | |||
2005-11-03 | Mask libcrypto references to stat with OPENSSL_NO_POSIX_IO. | Andy Polyakov | |
2005-09-02 | Two new verify flags functions. | Dr. Stephen Henson | |
2005-07-26 | improved error checking and some fixes | Nils Larsch | |
PR: 1170 Submitted by: Yair Elharrar Reviewed and edited by: Nils Larsch | |||
2005-07-16 | make | Nils Larsch | |
./configure no-deprecated [no-dsa] [no-dh] [no-ec] [no-rsa] make depend all test work again PR: 1159 | |||
2005-07-03 | Fix bugs in bug-fix to x509/by_dir.c. | Andy Polyakov | |
PR: 1131 | |||
2005-06-23 | Initialise dir to avoid a compiler warning. | Richard Levitte | |
2005-06-23 | Change dir_ctrl to check for the environment variable before using the default | Richard Levitte | |
directory instead of the other way around. PR: 1131 | |||
2005-06-05 | Old typo... | Richard Levitte | |
PR: 1097 | |||
2005-05-27 | Assing check_{cert,crl}_time to 'ok' variable so it returns errors on | Dr. Stephen Henson | |
expiry. | |||
2005-05-16 | Further BUILDENV refinement, further fool-proofing of Makefiles and | Andy Polyakov | |
[most importantly] put back dependencies accidentaly eliminated in check-in #13342. | |||
2005-05-15 | Fool-proofing Makefiles | Andy Polyakov | |
2005-05-15 | Make -CSP option work again in pkcs12 utility by checking for | Dr. Stephen Henson | |
attribute in EVP_PKEY structure. | |||
2005-05-11 | Fix more error codes. | Bodo Möller | |
(Also improve util/ck_errf.pl script, and occasionally fix source code formatting.) | |||
2005-04-20 | Rename typed version of M_ASN1_get M_ASN1_get_x to avoid conflicts. | Dr. Stephen Henson | |
Remove more bogus shadow warnings. | |||
2005-04-19 | Various Win32 and other fixes for warnings and compilation errors. | Dr. Stephen Henson | |
Fix Win32 build system to use 'Makefile' instead of 'Makefile.ssl'. | |||
2005-04-12 | Rebuild error codes. | Dr. Stephen Henson | |
2005-04-11 | Add emacs cache files to .cvsignore. | Richard Levitte | |
2005-04-10 | Move allow_proxy_certs declaration to start of function. | Dr. Stephen Henson | |
2005-04-09 | Added restrictions on the use of proxy certificates, as they may pose | Richard Levitte | |
a security threat on unexpecting applications. Document and test. | |||
2005-03-31 | Consistency. | Ben Laurie | |
2005-03-31 | Give everything prototypes (well, everything that's actually used). | Ben Laurie | |
2005-03-30 | Blow away Makefile.ssl. | Ben Laurie | |
2005-03-30 | Constification. | Ben Laurie | |
2005-01-17 | Changes concering RFC 3820 (proxy certificates) integration: | Richard Levitte | |
- Enforce that there should be no policy settings when the language is one of id-ppl-independent or id-ppl-inheritAll. - Add functionality to ssltest.c so that it can process proxy rights and check that they are set correctly. Rights consist of ASCII letters, and the condition is a boolean expression that includes letters, parenthesis, &, | and ^. - Change the proxy certificate configurations so they get proxy rights that are understood by ssltest.c. - Add a script that tests proxy certificates with SSL operations. Other changes: - Change the copyright end year in mkerr.pl. - make update. | |||
2004-12-28 | Add functionality needed to process proxy certificates. | Richard Levitte | |