summaryrefslogtreecommitdiffstats
path: root/ssl
AgeCommit message (Expand)Author
2012-04-18recognise X9.42 DH certificates on serversDr. Stephen Henson
2012-04-18correct error codesDr. Stephen Henson
2012-04-17Disable SHA-2 ciphersuites in < TLS 1.2 connections.Bodo Möller
2012-04-17Additional workaround for PR#2771Dr. Stephen Henson
2012-04-17Partial workaround for PR#2771.Dr. Stephen Henson
2012-04-16OPENSSL_NO_SOCK fixes.Andy Polyakov
2012-04-15s3_srvr.c: fix typo.Andy Polyakov
2012-04-15e_aes_cbc_hmac_sha1.c: handle zero-length payload and engage empty fragAndy Polyakov
2012-04-11use different variable for chain iterationDr. Stephen Henson
2012-04-06Submitted by: Peter Sylvester <peter.sylvester@edelweb.fr>Dr. Stephen Henson
2012-04-05Add support for automatic ECDH temporary key parameter selection. WhenDr. Stephen Henson
2012-04-04ssl/ssl_ciph.c: interim solution for assertion in d1_pkt.c(444).Andy Polyakov
2012-04-04Tidy up EC parameter check code: instead of accessing internal structuresDr. Stephen Henson
2012-03-31PR: 2778(part)Dr. Stephen Henson
2012-03-28Initial revision of ECC extension handling.Dr. Stephen Henson
2012-03-21use client version when deciding whether to send supported signature algorith...Dr. Stephen Henson
2012-03-14oops, revert unrelated patchesDr. Stephen Henson
2012-03-14update FAQ, NEWSDr. Stephen Henson
2012-03-13ssl/t1_enc.c: pay attention to EVP_CIPH_FLAG_CUSTOM_CIPHER.Andy Polyakov
2012-03-09Submitted by: Peter Sylvester <peter.sylvester@edelweb.fr>Dr. Stephen Henson
2012-03-09PR: 2756Dr. Stephen Henson
2012-03-06New ctrls to retrieve supported signature algorithms and curves andDr. Stephen Henson
2012-03-06PR: 2755Dr. Stephen Henson
2012-03-06PR: 2748Dr. Stephen Henson
2012-02-27PR: 2739Dr. Stephen Henson
2012-02-23ABI fixes from 1.0.1-stableDr. Stephen Henson
2012-02-22ABI compliance fixes.Dr. Stephen Henson
2012-02-22SSL export fixes (from Adam Langley) [original from 1.0.1]Dr. Stephen Henson
2012-02-22initialise i if n == 0Dr. Stephen Henson
2012-02-16Fix bug in CVE-2011-4619: check we have really received a client helloDr. Stephen Henson
2012-02-11Submitted by: Eric Rescorla <ekr@rtfm.com>Dr. Stephen Henson
2012-02-10PR: 2704Dr. Stephen Henson
2012-02-10Submitted by: Eric Rescorla <ekr@rtfm.com>Dr. Stephen Henson
2012-02-09oops, revert unrelated changesDr. Stephen Henson
2012-02-09Modify client hello version when renegotiating to enhance interop withDr. Stephen Henson
2012-02-02typoDr. Stephen Henson
2012-01-31Add support for distinct certificate chains per key type and per SSLDr. Stephen Henson
2012-01-27code tidyDr. Stephen Henson
2012-01-26Revise ssl code to use a CERT_PKEY structure when outputting aDr. Stephen Henson
2012-01-26Tidy/enhance certificate chain output code.Dr. Stephen Henson
2012-01-26initialise dh_clntDr. Stephen Henson
2012-01-25add support for use of fixed DH client certificatesDr. Stephen Henson
2012-01-22return error if md is NULLDr. Stephen Henson
2012-01-18Fix for DTLS DoS issue introduced by fix for CVE-2011-4109.Dr. Stephen Henson
2012-01-16Support for fixed DH ciphersuites.Dr. Stephen Henson
2012-01-05Fix for builds without DTLS support.Bodo Möller
2012-01-05PR: 2671Dr. Stephen Henson
2012-01-05Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>Dr. Stephen Henson
2012-01-04Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>, Michael Tuexen <t...Dr. Stephen Henson
2012-01-04Clear bytes used for block padding of SSL 3.0 records. (CVE-2011-4576)Dr. Stephen Henson