summaryrefslogtreecommitdiffstats
path: root/crypto/x509v3
AgeCommit message (Expand)Author
2014-11-28Remove all .cvsignore filesRich Salz
2014-09-08RT671: export(i2s|s2i|i2v|v2i)_ASN1_(IA5|BIT)STRINGBjoern Zeeb
2014-09-08RT3031: Need to #undef some names for win32Robin Lee
2014-08-17process_pci_value: free (*policy)->data before setting to NULL after failed r...Jonas Maebe
2014-08-17do_ext_i2d: free ext_der or ext_oct on error pathJonas Maebe
2014-08-17do_othername: check for NULL after allocating objtmpJonas Maebe
2014-08-15Fix use after free bug.Istvan Noszticzius
2014-08-15RT2465: Silence some gcc warningsRob Austein
2014-07-07Update API to use (char *) for email addresses and hostnamesViktor Dukhovni
2014-07-06Set optional peername when X509_check_host() succeeds.Viktor Dukhovni
2014-06-30Make depend.Ben Laurie
2014-06-22More complete input validation of X509_check_mumbleViktor Dukhovni
2014-06-22Drop hostlen from X509_VERIFY_PARAM_ID.Viktor Dukhovni
2014-06-14Enforce _X509_CHECK_FLAG_DOT_SUBDOMAINS internal-onlyViktor Dukhovni
2014-06-12Client-side namecheck wildcards.Viktor Dukhovni
2014-06-10Separate the SCT List parser from the SCT List viewerRob Stradling
2014-05-23OpenSSL is able to generate a certificate with name constraints with any poss...Luiz Angelo Daros de Luca
2014-05-21Fixes to host checking.Viktor Dukhovni
2014-04-25make dependGeoff Thorpe
2014-04-15Extension checking fixes.Dr. Stephen Henson
2014-02-25Don't use BN_ULLONG in n2l8 use SCTS_TIMESTAMP.Dr. Stephen Henson
2014-02-25Fix for v3_scts.cDr. Stephen Henson
2014-02-25Parse non-v1 SCTs less awkwardly.Rob Stradling
2014-02-20fix WIN32 warningsDr. Stephen Henson
2014-02-20Move CT viewer extension code to crypto/x509v3Dr. Stephen Henson
2013-09-05misspellings fixes by https://github.com/vlajos/misspell_fixerVeres Lajos
2012-12-26Portability fix: use BIO_snprintf and pick up strcasecmp alternativeDr. Stephen Henson
2012-12-15Check chain is not NULL before assuming we have a validated chain.Dr. Stephen Henson
2012-12-07Fix OCSP checking.Ben Laurie
2012-12-06Fix two bugs which affect delta CRL handling:Dr. Stephen Henson
2012-11-21Submitted by: Florian Weimer <fweimer@redhat.com>Dr. Stephen Henson
2012-11-18PR: 2909Dr. Stephen Henson
2012-10-08New functions to check a hostname email or IP address against aDr. Stephen Henson
2012-02-23PR: 2696Dr. Stephen Henson
2012-01-26allow key agreement for SSL/TLS certificatesDr. Stephen Henson
2012-01-04Prevent malformed RFC3779 data triggering an assertion failure (CVE-2011-4577)Dr. Stephen Henson
2012-01-04fix warningsDr. Stephen Henson
2011-10-09PR: 2482Dr. Stephen Henson
2011-01-26Change AR to ARX to allow exclusion of fips object modulesDr. Stephen Henson
2011-01-03oops missed an assertDr. Stephen Henson
2011-01-03PR: 2411Dr. Stephen Henson
2011-01-03PR: 2410Dr. Stephen Henson
2010-10-11PR: 2295Dr. Stephen Henson
2010-06-12Fix warnings.Ben Laurie
2010-05-22PR: 2251Dr. Stephen Henson
2010-03-03option to replace extensions with new ones: mainly for creating cross-certifi...Dr. Stephen Henson
2010-03-03PR: 2183Dr. Stephen Henson
2010-02-25Include self-signed flag in certificates by checking SKID/AKID as wellDr. Stephen Henson
2010-02-24add anyExtendedKeyUsage OIDDr. Stephen Henson
2009-09-30PR: 2057Dr. Stephen Henson