summaryrefslogtreecommitdiffstats
path: root/doc/ssl
AgeCommit message (Collapse)Author
2014-07-06Update ticket callback docs.Dr. Stephen Henson
(cherry picked from commit a23a6e85d8dcd5733a343754f434201f3c9aa6f0)
2014-07-06Fixes for newer versions of pod2manMatt Caswell
2014-07-06Fixed error in pod files with latest versions of pod2manMatt Caswell
(cherry picked from commit 07255f0a76d9d349d915e14f969b9ff2ee0d1953)
2014-07-03More doc fixes.Dr. Stephen Henson
2014-07-03Fix errors with last cherry-pick; SSL_CONF_* and s_clientRich Salz
-verify_return_error aren't in this release.
2014-07-03Merge branch 'rsalz-docfixes'Rich Salz
(cherry picked from commit b5071dc2f67d7667ab3cbbe50a30342f999b896a) Conflicts: doc/apps/s_client.pod doc/apps/verify.pod doc/apps/x509v3_config.pod doc/crypto/ASN1_generate_nconf.pod doc/ssl/SSL_CONF_CTX_set_ssl_ctx.pod doc/ssl/SSL_CONF_cmd.pod doc/ssl/SSL_CONF_cmd_argv.pod doc/ssl/SSL_CTX_set_cert_cb.pod doc/ssl/SSL_CTX_set_security_level.pod
2014-06-27Clarify docs.Jeffrey Walton
Document that the certificate passed to SSL_CTX_add_extra_chain_cert() should not be freed by the application. PR#3409 Add restrictions section present in other branches. (cherry picked from commit 86cac6d3b25342ff17a2b6564f7592fd7c6829e8)
2014-05-25Fixed error in args for SSL_set_msg_callback and SSL_set_msg_callback_argMatt Caswell
2013-10-04Don't prefer ECDHE-ECDSA ciphers when the client appears to be Safari on OS X.Rob Stradling
OS X 10.8..10.8.3 has broken support for ECDHE-ECDSA ciphers.
2013-02-15Fix POD errors to stop make install_docs dying with pod2man 2.5.0+Nick Alcock
podlators 2.5.0 has switched to dying on POD syntax errors. This means that a bunch of long-standing erroneous POD in the openssl documentation now leads to fatal errors from pod2man, halting installation. Unfortunately POD constraints mean that you have to sort numeric lists in ascending order if they start with 1: you cannot do 1, 0, 2 even if you want 1 to appear first. I've reshuffled such (alas, I wish there were a better way but I don't know of one).
2011-10-13Clarify warningBodo Möller
2010-12-02fix for CVE-2010-4180Dr. Stephen Henson
2010-04-07Add SHA2 algorithms to SSL_library_init(). Although these aren't usedDr. Stephen Henson
directly by SSL/TLS SHA2 certificates are becoming more common and applications that only call SSL_library_init() and not OpenSSL_add_all_alrgorithms() will fail when verifying certificates. Update docs.
2010-04-06Remove obsolete PRNG note. Add comment about use of SHA256 et al.Dr. Stephen Henson
2010-02-18clarify documentationDr. Stephen Henson
2010-02-17Allow renegotiation if SSL_OP_LEGACY_SERVER_CONNECT is set as well asDr. Stephen Henson
initial connection to unpatched servers. There are no additional security concerns in doing this as clients don't see renegotiation during an attack anyway.
2010-02-12update references to new RI RFCDr. Stephen Henson
2010-01-27reword RI descriptionDr. Stephen Henson
2010-01-27update documentation to reflect new renegotiation optionsDr. Stephen Henson
2010-01-05TypoDr. Stephen Henson
2009-12-09clarify docsDr. Stephen Henson
2009-12-09Document option clearning functions.Dr. Stephen Henson
Initial secure renegotiation documentation.
2009-09-12PR: 2025Dr. Stephen Henson
Submitted by: Tomas Mraz <tmraz@redhat.com> Approved by: steve@openssl.org Constify SSL_CIPHER_description
2009-02-14PR: 1835Dr. Stephen Henson
Submitted by: Damien Miller <djm@mindrot.org> Approved by: steve@openssl.org Fix various typos.
2008-08-01Refer to SSL_pending from the man page for SSL_readLutz Jänicke
2007-08-23Update docs and NEWS file.Dr. Stephen Henson
2007-08-23Update from HEAD.Dr. Stephen Henson
2006-12-21fix typosNils Larsch
PR: 1354, 1355, 1398
2006-12-06fix documentationNils Larsch
PR: 1343
2005-10-11Add fixes for CAN-2005-2969OpenSSL_0_9_8aMark J. Cox
Bump release ready for OpenSSL_0_9_8a tag
2005-04-08improve docu of SSL_CTX_use_PrivateKey()Nils Larsch
2005-03-30update docs (recent constification)Nils Larsch
2005-03-22Doc fixes.Dr. Stephen Henson
2004-11-14PR: 938Dr. Stephen Henson
Typo.
2004-06-14More precise explanation of session id context requirements.Lutz Jänicke
2003-11-29Make sure the documentation matches reality.Richard Levitte
PR: 755 Notified by: Jakub Bogusz <qboosh@pld-linux.org>
2003-06-26Clarify wording of verify_callback() behaviour.Lutz Jänicke
2003-06-03Clarify return value of SSL_connect() and SSL_accept() in case of theLutz Jänicke
WANT_READ and WANT_WRITE conditions.
2003-05-30Clarify ordering of certificates when using certificate chainsLutz Jänicke
2003-03-27Add warning about unwanted side effect when calling SSL_CTX_free():Lutz Jänicke
sessions in the external session cache might be removed. Submitted by: "Nadav Har'El" <nyh@math.technion.ac.il> PR: 547
2003-03-20Spelling errors.Richard Levitte
PR: 538
2002-12-04Missing ")"Lutz Jänicke
Submitted by: Christian Hohnstaedt <chohnstaedt@innominate.com> Reviewed by: PR:
2002-11-14No such reference to link to (found running pod2latex).Lutz Jänicke
Submitted by: Reviewed by: PR:
2002-10-29Add a HISTORY section to the man page to mention the new flags.Geoff Thorpe
2002-10-29The last character of inconsistency in my recent commits is herebyGeoff Thorpe
squashed.
2002-10-29Correct and enhance the behaviour of "internal" session caching as itGeoff Thorpe
relates to SSL_CTX flags and the use of "external" session caching. The existing flag, "SSL_SESS_CACHE_NO_INTERNAL_LOOKUP" remains but is supplemented with a complimentary flag, "SSL_SESS_CACHE_NO_INTERNAL_STORE". The bitwise OR of the two flags is also defined as "SSL_SESS_CACHE_NO_INTERNAL" and is the flag that should be used by most applications wanting to implement session caching *entirely* by its own provided callbacks. As the documented behaviour contradicted actual behaviour up until recently, and since that point behaviour has itself been inconsistent anyway, this change should not introduce any compatibility problems. I've adjusted the relevant documentation to elaborate about how this works. Kudos to "Nadav Har'El" <nyh@math.technion.ac.il> for diagnosing these anomalies and testing this patch for correctness. PR: 311
2002-08-15Missing =back.Richard Levitte
Part of PR 196
2002-07-29mention SSL_do_handshake()Bodo Möller
2002-07-19The behaviour is undefined when calling SSL_write() with num=0.Lutz Jänicke
Submitted by: Reviewed by: PR: 141
2002-07-19Manual page for SSL_do_handshake().Lutz Jänicke
Submitted by: Martin Sjögren <martin@strakt.com> PR: 137