summaryrefslogtreecommitdiffstats
path: root/ssl
AgeCommit message (Expand)Author
2008-09-14update commentBodo Möller
2008-09-14oopsBodo Möller
2008-09-14dtls1_write_bytes consumers expect amount of bytes written per call, notAndy Polyakov
2008-09-14Fix error code discrepancy.Dr. Stephen Henson
2008-09-14Fix SSL state transitions.Bodo Möller
2008-09-14Some precautions to avoid potential security-relevant problems.Bodo Möller
2008-09-13DTLS didn't handle alerts correctly [from HEAD].Andy Polyakov
2008-09-03If tickets disabled behave as if no ticket received to supportDr. Stephen Henson
2008-08-13sanity checkBodo Möller
2008-06-16Make ssl code consistent with FIPS branch. The new code has no effectDr. Stephen Henson
2008-06-05If auto load ENGINE lookup fails retry adding builtin ENGINEs.Dr. Stephen Henson
2008-06-05include engine.h if needed.Dr. Stephen Henson
2008-06-04Update from HEAD.Dr. Stephen Henson
2008-06-04Backport more ENGINE SSL client auth code to 0.9.8.Dr. Stephen Henson
2008-06-04Backport ssl client auth ENGINE support to 0.9.8.Dr. Stephen Henson
2008-05-28fix whitespaceBodo Möller
2008-05-28Fix flaw if 'Server Key exchange message' is omitted from a TLSMark J. Cox
2008-05-28Fix double-free in TLS server name extensions which could lead to a remoteMark J. Cox
2008-05-26Reword comment to be much shorter to stop other people from complainingLutz Jänicke
2008-05-23Clear error queue when starting SSL_CTX_use_certificate_chain_fileLutz Jänicke
2008-04-30TLS ticket key setting callback: this allows and application to setDr. Stephen Henson
2008-04-29Do not permit stateless session resumption is session IDs mismatch.Dr. Stephen Henson
2008-04-29Support ticket renewal in state machine (not used at present).Dr. Stephen Henson
2008-04-29Status strings for ticket states.Dr. Stephen Henson
2008-04-25Fix from HEAD.Dr. Stephen Henson
2008-04-02Avoid "initializer not constant" errors when compiling in pedantic mode.Dr. Stephen Henson
2007-11-15Make depend.Ben Laurie
2007-11-03Allow new session ticket when resuming.Dr. Stephen Henson
2007-10-18Ensure the ticket expected flag is reset when a stateless resumption isDr. Stephen Henson
2007-10-17New unused field crippled ssl_ctx_st in 0.9.8"f".Andy Polyakov
2007-10-17Don't let DTLS ChangeCipherSpec increment handshake sequence number. FromAndy Polyakov
2007-10-17Don't try to lookup zero length session.Dr. Stephen Henson
2007-10-17Allow TLS tickets and session ID to both be present if lifetime hint is -1.Dr. Stephen Henson
2007-10-14Make ssl compile.Andy Polyakov
2007-10-12Avoid shadow and signed/unsigned warnings.Dr. Stephen Henson
2007-10-12Backport certificate status request TLS extension support to 0.9.8.Dr. Stephen Henson
2007-10-11make update, and more DTLS stuff.Ben Laurie
2007-10-09Respect cookie length set by app_gen_cookie_cb [from HEAD].Andy Polyakov
2007-10-09Make DTLS1 record layer MAC calculation RFC compliant. From HEAD with aAndy Polyakov
2007-10-05Prohibit RC4 in DTLS [from HEAD].Andy Polyakov
2007-10-03Set client_version earlier in DTLS (this is 0.9.8 specific).Andy Polyakov
2007-10-01Oops! This was erroneously left out commit #16633.Andy Polyakov
2007-09-30Explicit IV update [from HEAD].Andy Polyakov
2007-09-30Make ChangeCipherSpec compliant with DTLS RFC4347. From HEAD with a twist:Andy Polyakov
2007-09-30DTLS RFC4347 says HelloVerifyRequest resets Finished MAC. From HEAD with aAndy Polyakov
2007-09-30DTLS RFC4347 requires client to use rame random field in reply toAndy Polyakov
2007-09-30Switch for RFC-compliant version encoding in DTLS. From HEAD with a twist:Andy Polyakov
2007-09-28Update from HEAD.Dr. Stephen Henson
2007-09-23Fix from HEAD.Dr. Stephen Henson
2007-09-21More changes from HEAD:Bodo Möller