summaryrefslogtreecommitdiffstats
path: root/ssl/ssl_cert.c
AgeCommit message (Expand)Author
2014-11-27Remove redundant checks in ssl_cert_dup. This was causing spurious error mess...Matt Caswell
2014-08-28Custom extension revision.Dr. Stephen Henson
2014-08-15Revision of custom extension code.Dr. Stephen Henson
2014-04-21Fix SSL_CTX_get{first,next}_certificate.Kaspar Brand
2014-04-05For more than 160 bits of security disable SHA1 HMACDr. Stephen Henson
2014-03-28Security framework.Dr. Stephen Henson
2014-03-28Auto DH support.Dr. Stephen Henson
2014-03-27Update chain building function.Dr. Stephen Henson
2014-03-24Allow duplicate certs in ssl_build_cert_chainEmilia Kasper
2014-03-10Simplify ssl_add_cert_chain logic.Dr. Stephen Henson
2014-02-23Only set current certificate to valid values.Dr. Stephen Henson
2014-02-23New chain building flags.Dr. Stephen Henson
2014-02-02New ctrl to set current certificate.Dr. Stephen Henson
2013-11-13Allow match selecting of current certificate.Dr. Stephen Henson
2013-11-13Additional "chain_cert" functions.Rob Stradling
2013-09-06Add callbacks supporting generation and retrieval of supplemental data entrie...Scott Deboy
2013-06-28Cosmetic touchups.Trevor
2013-06-12Add support for arbitrary TLS extensions.Trevor
2012-09-12Add ctrl and utility functions to retrieve raw cipher list sent by client inDr. Stephen Henson
2012-08-15Add three Suite B modes to TLS code, supporting RFC6460.Dr. Stephen Henson
2012-08-03Rename Suite B functions for consistency.Dr. Stephen Henson
2012-07-27Make tls1_check_chain return a set of flags indicating checks passedDr. Stephen Henson
2012-07-23Add support for certificate stores in CERT structure. This makes itDr. Stephen Henson
2012-07-08Add new ctrl to retrieve client certificate types, print outDr. Stephen Henson
2012-07-03Separate client and server permitted signature algorithm support: by defaultDr. Stephen Henson
2012-06-29Add certificate callback. If set this is called whenever a certificateDr. Stephen Henson
2012-06-28Add new "valid_flags" field to CERT_PKEY structure which determines whatDr. Stephen Henson
2012-06-27don't use pseudo digests for default values of keysDr. Stephen Henson
2012-06-25Reorganise supported signature algorithm extension processing.Dr. Stephen Henson
2012-06-22Add support for application defined signature algorithms for use withDr. Stephen Henson
2012-06-18Make it possible to delete all certificates from an SSL structure.Dr. Stephen Henson
2012-05-30RFC 5878 support.Ben Laurie
2012-04-23oops, not yet ;-)Dr. Stephen Henson
2012-04-23update NEWSDr. Stephen Henson
2012-04-11use different variable for chain iterationDr. Stephen Henson
2012-04-05Add support for automatic ECDH temporary key parameter selection. WhenDr. Stephen Henson
2012-03-06New ctrls to retrieve supported signature algorithms and curves andDr. Stephen Henson
2012-02-02typoDr. Stephen Henson
2012-01-31Add support for distinct certificate chains per key type and per SSLDr. Stephen Henson
2012-01-27code tidyDr. Stephen Henson
2012-01-26Revise ssl code to use a CERT_PKEY structure when outputting aDr. Stephen Henson
2012-01-26Tidy/enhance certificate chain output code.Dr. Stephen Henson
2011-05-06Continuing TLS v1.2 support: add support for server parsing ofDr. Stephen Henson
2010-03-24PR: 1731 and maybe 2197Dr. Stephen Henson
2009-06-30Update from 1.0.0-stable.Dr. Stephen Henson
2009-06-30Update from 1.0.0-stableDr. Stephen Henson
2007-09-07Change safestack reimplementation to match 0.9.8.Dr. Stephen Henson
2007-02-17Reorganize the data used for SSL ciphersuite pattern matching.Bodo Möller
2006-06-14Thread-safety fixesBodo Möller
2006-02-24fix no-dh configure option; patch supplied by Peter MeerwaldNils Larsch