summaryrefslogtreecommitdiffstats
path: root/ssl/t1_lib.c
AgeCommit message (Expand)Author
2016-02-11Remove static ECDH support.Dr. Stephen Henson
2016-02-11Don't check self signed certificate signature security.Dr. Stephen Henson
2016-02-11Remove TLS heartbeat, disable DTLS heartbeatRich Salz
2016-02-01constify PACKETEmilia Kasper
2016-01-26Remove /* foo.c */ commentsRich Salz
2016-01-20make EVP_PKEY opaqueDr. Stephen Henson
2016-01-12Adapt all EVP_CIPHER_CTX users for it becoming opaqueRichard Levitte
2016-01-07Fix declarations and constification for inline stack.Dr. Stephen Henson
2016-01-02Protocol version selection and negotiation rewriteViktor Dukhovni
2015-12-31Use X509_get0_pubkey where appropriateDr. Stephen Henson
2015-12-30Check for missing DSA parameters.Dr. Stephen Henson
2015-12-27Simplify calling of the OCSP callbackMatt Caswell
2015-12-27Ensure we don't call the OCSP callback if resuming a sessionMatt Caswell
2015-12-27Fix error when server does not send CertificateStatus messageMatt Caswell
2015-12-19Remove fixed DH ciphersuites.Dr. Stephen Henson
2015-12-16Rename some BUF_xxx to OPENSSL_xxxRich Salz
2015-12-10Add a return value checkMatt Caswell
2015-12-08Extended master secret fixes and checks.Dr. Stephen Henson
2015-12-07Adapt the rest of the source to the opaque HMAC_CTXRichard Levitte
2015-12-07Adapt HMAC to the EVP_MD_CTX changesRichard Levitte
2015-12-04Remove SSL_{CTX_}set_ecdh_auto() and always enable ECDHKurt Roeckx
2015-12-04Make SSL_{CTX}_set_tmp_ecdh() call SSL_{CTX_}set1_curves()Kurt Roeckx
2015-12-04Remove support for SSL_{CTX_}set_tmp_ecdh_callback().Kurt Roeckx
2015-11-30Remove GOST special case: handled automatically now.Dr. Stephen Henson
2015-11-30Use digest indices for signature algorithms.Dr. Stephen Henson
2015-11-30Use digest tables for defaults.Dr. Stephen Henson
2015-11-25Remove unused cert_verify_mac codeDr. Stephen Henson
2015-11-24Use EVP_md5_sha1() to generate client verifyDr. Stephen Henson
2015-11-24Use MD5+SHA1 for default digest if appropriate.Dr. Stephen Henson
2015-11-23Patch containing TLS implementation for GOST 2012Dmitry Belyavsky
2015-11-20Ensure all EVP calls have their returns checked where appropriateMatt Caswell
2015-11-14Don't alow TLS v1.0 ciphersuites for SSLv3Dr. Stephen Henson
2015-11-09Remove redundant check from tls1_get_curvelistMatt Caswell
2015-11-09Standardise our style for checking malloc failuresMatt Caswell
2015-11-08Use uint32_t and int32_t for SSL_CIPHER structure.Dr. Stephen Henson
2015-11-02Remove a trivially true OPENSSL_assertMatt Caswell
2015-10-30Move in_handshake into STATEMMatt Caswell
2015-10-23Remove useless codeAlessandro Ghedini
2015-10-07Don't advance PACKET in ssl_check_for_safariMatt Caswell
2015-10-05Validate ClientHello extension field lengthAlessandro Ghedini
2015-10-05ssl3_get_client_hello: rearrange logicEmilia Kasper
2015-09-17Remove PACKET_(get|goto)_bookmarkEmilia Kasper
2015-09-07PACKETise ServerHello processingMatt Caswell
2015-08-14Fix session ticketsMatt Caswell
2015-08-13Enhance PACKET readabilityMatt Caswell
2015-08-10RT3999: Remove sub-component version stringsRich Salz
2015-08-03PACKETise ClientHello processingMatt Caswell
2015-07-30Make auto DH work with DHEPSKDr. Stephen Henson
2015-07-30Check for kECDH with extensions.Dr. Stephen Henson
2015-07-30Disable all PSK if no callback.Dr. Stephen Henson