summaryrefslogtreecommitdiffstats
path: root/ssl
AgeCommit message (Expand)Author
2011-10-14more vxworks patchesDr. Stephen Henson
2011-10-13In ssl3_clear, preserve s3->init_extra along with s3->rbuf.Bodo Möller
2011-10-10add GCM ciphers in SSL_library_initDr. Stephen Henson
2011-10-10disable GCM if not availableDr. Stephen Henson
2011-10-09Don't disable TLS v1.2 by default now.Dr. Stephen Henson
2011-10-07use client version when eliminating TLS v1.2 ciphersuites in client helloDr. Stephen Henson
2011-09-26fix signed/unsigned warningDr. Stephen Henson
2011-09-24make sure eivlen is initialisedDr. Stephen Henson
2011-09-23PR: 2602Dr. Stephen Henson
2011-09-05Fix session handling.Bodo Möller
2011-09-05Fix d2i_SSL_SESSION.Bodo Möller
2011-09-05(EC)DH memory handling fixes.Bodo Möller
2011-09-01PR: 2573Dr. Stephen Henson
2011-08-23Add RC4-MD5 and AESNI-SHA1 "stitched" implementations.Andy Polyakov
2011-08-14Remove hard coded ecdsaWithSHA1 hack in ssl routines and check for RSADr. Stephen Henson
2011-08-03Expand range of ctrls for AES GCM to support retrieval and setting ofDr. Stephen Henson
2011-07-25oops, remove debug optionDr. Stephen Henson
2011-07-25Add HMAC ECC ciphersuites from RFC5289. Include SHA384 PRF support andDr. Stephen Henson
2011-07-20PR: 2555Dr. Stephen Henson
2011-07-20PR: 2550Dr. Stephen Henson
2011-07-11ssl/ssl_ciph.c: allow to switch to predefined "composite" cipher/macAndy Polyakov
2011-07-11ssl/t1_enc.c: initial support for AEAD ciphers.Andy Polyakov
2011-06-22PR: 2543Dr. Stephen Henson
2011-06-14set FIPS allow before initialising ctxDr. Stephen Henson
2011-06-08fix memory leakDr. Stephen Henson
2011-06-06Set SSL_FIPS flag in ECC ciphersuites.Dr. Stephen Henson
2011-06-03fix error discrepancyDr. Stephen Henson
2011-06-01typoDr. Stephen Henson
2011-05-31set FIPS permitted flag before initalising digestDr. Stephen Henson
2011-05-31Don't round up partitioned premaster secret length if there is only oneDr. Stephen Henson
2011-05-30Output supported curves in preference order instead of numerically.Dr. Stephen Henson
2011-05-25Don't advertise or use MD5 for TLS v1.2 in FIPS modeDr. Stephen Henson
2011-05-25PR: 2533Dr. Stephen Henson
2011-05-25PR: 2529Dr. Stephen Henson
2011-05-25Some nextproto patches broke DTLS: fixDr. Stephen Henson
2011-05-25Oops use up to date patch for PR#2506Dr. Stephen Henson
2011-05-25PR: 2506Dr. Stephen Henson
2011-05-25PR: 2505Dr. Stephen Henson
2011-05-25use TLS1_get_version macro to check version so TLS v1.2 changes don't interfe...Dr. Stephen Henson
2011-05-20PR: 2295Dr. Stephen Henson
2011-05-19Implement FIPS_mode and FIPS_mode_setDr. Stephen Henson
2011-05-19set encodedPoint to NULL after freeing itDr. Stephen Henson
2011-05-12Provisional support for TLS v1.2 client authentication: client side only.Dr. Stephen Henson
2011-05-12Process signature algorithms during TLS v1.2 client authentication.Dr. Stephen Henson
2011-05-11make kerberos work with OPENSSL_NO_SSL_INTERNDr. Stephen Henson
2011-05-11Reorder signature algorithms in strongest hash first order.Dr. Stephen Henson
2011-05-09Initial TLS v1.2 client support. Include a default supported signatureDr. Stephen Henson
2011-05-06Continuing TLS v1.2 support: add support for server parsing ofDr. Stephen Henson
2011-05-01Disable SHA256 if not supported.Dr. Stephen Henson
2011-04-29Initial incomplete TLS v1.2 support. New ciphersuites added, new versionDr. Stephen Henson