summaryrefslogtreecommitdiffstats
path: root/ssl/t1_lib.c
AgeCommit message (Expand)Author
2014-10-15Fix for session tickets memory leak.Dr. Stephen Henson
2014-10-15Fix for SRTP Memory LeakMatt Caswell
2014-08-06Fix race condition in ssl_parse_serverhello_tlsextGabor Tyukasz
2014-07-15Add ECC extensions with DTLS.Dr. Stephen Henson
2014-07-01Fix possible buffer overrun.Ben Laurie
2014-06-29Fix memory leak.Dr. Stephen Henson
2014-06-02Check there is enough room for extension.David Benjamin
2014-06-01Option to disable padding extension.Dr. Stephen Henson
2014-04-07Add heartbeat extension bounds check.Dr. Stephen Henson
2014-04-05Set TLS padding extension value.Dr. Stephen Henson
2014-02-05Backport TLS padding extension from master.Dr. Stephen Henson
2014-01-16Omit initial status request callback check.Kaspar Brand
2013-10-20Don't use RSA+MD5 with TLS 1.2Dr. Stephen Henson
2013-09-16Tidy up comments.Rob Stradling
2013-09-16Use TLS version supplied by client when fingerprinting Safari.Rob Stradling
2013-09-16Don't prefer ECDHE-ECDSA ciphers when the client appears to be Safari on OS X.Rob Stradling
2013-02-09ssl/*: fix linking errors with no-srtp.Andy Polyakov
2013-02-07Remove extraneous brackets (clang doesn't like them).Ben Laurie
2013-01-28Add and use a constant-time memcmp.Ben Laurie
2012-11-22reject zero length point format list or supported curves extensionsDr. Stephen Henson
2012-09-21Minor enhancement to PR#2836 fix. Instead of modifying SSL_get_certificateDr. Stephen Henson
2012-09-17Call OCSP Stapling callback after ciphersuite has been chosen, so theBen Laurie
2012-06-27don't use pseudo digests for default values of keysDr. Stephen Henson
2012-03-21use client version when deciding whether to send supported signature algorith...Dr. Stephen Henson
2012-02-27PR: 2739Dr. Stephen Henson
2012-02-17typoDr. Stephen Henson
2012-02-10PR: 2704Dr. Stephen Henson
2012-01-22return error if md is NULLDr. Stephen Henson
2012-01-05Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>Dr. Stephen Henson
2012-01-04Submitted by: Adam Langley <agl@chromium.org>Dr. Stephen Henson
2012-01-03only send heartbeat extension from server if client sent oneDr. Stephen Henson
2011-12-31PR: 2658Dr. Stephen Henson
2011-12-07fix error discrepancyDr. Stephen Henson
2011-11-24Don't send NPN during renegotiation.Ben Laurie
2011-11-15Add TLS exporter.Ben Laurie
2011-11-15Add DTLS-SRTP.Ben Laurie
2011-11-13Add Next Protocol Negotiation.Ben Laurie
2011-09-05Fix session handling.Bodo Möller
2011-06-01typoDr. Stephen Henson
2011-05-30Output supported curves in preference order instead of numerically.Dr. Stephen Henson
2011-05-25Don't advertise or use MD5 for TLS v1.2 in FIPS modeDr. Stephen Henson
2011-05-25use TLS1_get_version macro to check version so TLS v1.2 changes don't interfe...Dr. Stephen Henson
2011-05-21Add tls12_sigalgs which somehow didn't get added to the backport.Dr. Stephen Henson
2011-05-20Add server client certificate support for TLS v1.2 . This is more complexDr. Stephen Henson
2011-05-12Process signature algorithms during TLS v1.2 client authentication.Dr. Stephen Henson
2011-05-11Backport TLS v1.2 support from HEAD.Dr. Stephen Henson
2011-03-16Add SRP.Ben Laurie
2011-02-08OCSP stapling fix (OpenSSL 0.9.8r/1.0.0d)Bodo Möller
2010-11-25PR: 2240Dr. Stephen Henson
2010-11-25using_ecc doesn't just apply to TLSv1Dr. Stephen Henson