summaryrefslogtreecommitdiffstats
path: root/ssl
AgeCommit message (Expand)Author
2011-05-01Disable SHA256 if not supported.Dr. Stephen Henson
2011-04-29Initial incomplete TLS v1.2 support. New ciphersuites added, new versionDr. Stephen Henson
2011-04-29Initial "opaque SSL" framework. If an application definesDr. Stephen Henson
2011-04-11Reorder headers to get definitions before they are used.Dr. Stephen Henson
2011-04-03PR: 2462Dr. Stephen Henson
2011-04-03PR: 2458Dr. Stephen Henson
2011-04-03PR: 2457Dr. Stephen Henson
2011-03-25Corrections to the VMS build system.Richard Levitte
2011-03-25For VMS, implement the possibility to choose 64-bit pointers withRichard Levitte
2011-03-23make update (1.1.0-dev)Richard Levitte
2011-03-19After some adjustments, apply the changes OpenSSL 1.0.0d on OpenVMSRichard Levitte
2011-03-16Fix broken SRP error/function code assignment.Dr. Stephen Henson
2011-03-12Fix warnings: signed/unisgned comparison, shadowing (in some cases globalDr. Stephen Henson
2011-03-12Remove redundant check to stop compiler warning.Dr. Stephen Henson
2011-03-12Add SRP support.Ben Laurie
2011-02-16Include openssl/crypto.h first in several other files so FIPS renamingDr. Stephen Henson
2011-02-12New option to disable characteristic two fields in EC code.Dr. Stephen Henson
2011-02-08OCSP stapling fix (OpenSSL 0.9.8r/1.0.0d)Bodo Möller
2011-02-03Assorted bugfixes:Bodo Möller
2011-02-03CVE-2010-4180 fix (from OpenSSL_1_0_0-stable)Bodo Möller
2011-02-03make updateBodo Möller
2011-01-26FIPS_allow_md5() no longer exists and is no longer requiredDr. Stephen Henson
2011-01-04Don't use decryption_failed alert for TLS v1.1 or later.Dr. Stephen Henson
2011-01-04Since DTLS 1.0 is based on TLS 1.1 we should never return a decryption_failedDr. Stephen Henson
2010-12-14First attempt at adding the possibility to set the pointer size for the build...Richard Levitte
2010-11-25PR: 2240Dr. Stephen Henson
2010-11-25using_ecc doesn't just apply to TLSv1Dr. Stephen Henson
2010-11-24oops, revert invalid changeDr. Stephen Henson
2010-11-24use generalise mac API for SSL key generationDr. Stephen Henson
2010-11-22Taken from OpenSSL_1_0_0-stable:Richard Levitte
2010-11-18remove duplicate statementDr. Stephen Henson
2010-11-17oops, reinstate TLSv1 stringDr. Stephen Henson
2010-11-17Don't assume a decode error if session tlsext_ecpointformatlist is not NULL: ...Dr. Stephen Henson
2010-11-16bring HEAD up to date, add CVE-2010-3864 fix, update NEWS filesDr. Stephen Henson
2010-11-14Only use explicit IV if cipher is in CBC mode.Dr. Stephen Henson
2010-11-14Get correct GOST private key instead of just assuming the last one isDr. Stephen Henson
2010-10-10PR: 2314Dr. Stephen Henson
2010-09-05Fixes to NPN from Adam Langley.Ben Laurie
2010-09-05NPN tests.Ben Laurie
2010-09-05Fix warnings.Ben Laurie
2010-08-27PR: 1833Dr. Stephen Henson
2010-08-26For better forward-security support, add functionsBodo Möller
2010-08-26Patch from PR #1833 was broken: there's no s->s3->new_sessionBodo Möller
2010-08-26PR: 1833Dr. Stephen Henson
2010-07-28Add Next Protocol Negotiation.Ben Laurie
2010-07-18PR: 1830Dr. Stephen Henson
2010-07-18oops, revert wrong patch..Dr. Stephen Henson
2010-07-18Fix warnings (From HEAD, original patch by Ben).Dr. Stephen Henson
2010-06-27no need for empty fragments with TLS 1.1 and later due to explicit IVDr. Stephen Henson
2010-06-12Fix warnings.Ben Laurie