summaryrefslogtreecommitdiffstats
path: root/crypto
AgeCommit message (Expand)Author
2013-02-11sparccpuid.S: work around emulator bug on T1.Andy Polyakov
2013-02-08e_aes_cbc_hmac_sha1.c: align calculated MAC at cache line.Andy Polyakov
2013-02-06e_aes_cbc_hmac_sha1.c: cleanse temporary copy of HMAC secret.Andy Polyakov
2013-02-06e_aes_cbc_hmac_sha1.c: address the CBC decrypt timing issues.Andy Polyakov
2013-02-06Make CBC decoding constant time.Ben Laurie
2013-02-06Add and use a constant-time memcmp.Ben Laurie
2013-02-02bn_word.c: fix overflow bug in BN_add_word.Andy Polyakov
2013-02-02x86_64 assembly pack: keep making Windows build more robust.Andy Polyakov
2013-01-23Don't include comp.h in cmd_cd.c if OPENSSL_NO_COMP setDr. Stephen Henson
2013-01-22x86_64 assembly pack: make Windows build more robust [from master].Andy Polyakov
2013-01-22bn/asm/mips.pl: hardwire local call to bn_div_words.Andy Polyakov
2013-01-20Don't include comp.h if no-comp set.Dr. Stephen Henson
2013-01-17initial support for delta CRL generations by diffing two full CRLsDr. Stephen Henson
2013-01-17constifyDr. Stephen Henson
2013-01-17New functions to set lookup_crls callback and to retrieve internal X509_STOREDr. Stephen Henson
2013-01-16print out issuer and subject unique identifier fields in certificatesDr. Stephen Henson
2013-01-15add wrapper function for certificate downloadDr. Stephen Henson
2013-01-15Generalise OCSP I/O functions to support dowloading of other ASN1Dr. Stephen Henson
2013-01-15make updateDr. Stephen Henson
2013-01-13Fix some clang warnings.Ben Laurie
2013-01-07In FIPS mode use PKCS#8 format when writing private keys:Dr. Stephen Henson
2013-01-06Fix warning.Ben Laurie
2012-12-30make no-comp compileDr. Stephen Henson
2012-12-26Portability fix: use BIO_snprintf and pick up strcasecmp alternativeDr. Stephen Henson
2012-12-26Add missing prototype to x509.hDr. Stephen Henson
2012-12-26New function X509_chain_up_ref to dup and up the reference count ofDr. Stephen Henson
2012-12-26add suite B chain validation flags and associated verify errorsDr. Stephen Henson
2012-12-26Oops, add missing v3nametest.cDr. Stephen Henson
2012-12-26add ssl_locl.h to err header files, rebuild ssl error stringsDr. Stephen Henson
2012-12-26New functions to retrieve certificate signatures and signature OID NID.Dr. Stephen Henson
2012-12-26Revert incompatible OCSP_basic_verify changes.Dr. Stephen Henson
2012-12-19Integrate host, email and IP address checks into X509_verify.Dr. Stephen Henson
2012-12-19Backport X509 hostname, IP address and email checking code from HEAD.Dr. Stephen Henson
2012-12-19Check chain is not NULL before assuming we have a validated chain. TheDr. Stephen Henson
2012-12-14Use new partial chain flag instead of modifying input parameters.Dr. Stephen Henson
2012-12-14New verify flag to return success if we have any certificate in the trustedDr. Stephen Henson
2012-12-14Backport OCSP fixes.Ben Laurie
2012-12-13Ignore more.Ben Laurie
2012-12-06Fix two bugs which affect delta CRL handling:Dr. Stephen Henson
2012-12-05aes-s390x.pl: fix XTS bugs in z196-specific code path [from HEAD].Andy Polyakov
2012-12-01aes-s390x.pl: harmonize software-only path [from HEAD].Andy Polyakov
2012-11-29PR: 2803Dr. Stephen Henson
2012-11-28Intel compiler support update from HEAD.Andy Polyakov
2012-11-19x86_64-gcc.c: resore early clobber constraint [from HEAD].Andy Polyakov
2012-11-12[vp]aes-x86[_64].pl: update from HEAD.Andy Polyakov
2012-10-21linux-ppc: make it more robust [from HEAD].Andy Polyakov
2012-10-16Don't require tag before ciphertext in AESGCM modeDr. Stephen Henson
2012-10-05Fix EC_KEY initialization race.Bodo Möller
2012-09-26add -trusted_first option and verify flag (backport from HEAD)Dr. Stephen Henson
2012-09-24Fix Valgrind warning.Bodo Möller