summaryrefslogtreecommitdiffstats
path: root/ssl
AgeCommit message (Expand)Author
2012-07-23Add support for certificate stores in CERT structure. This makes itDr. Stephen Henson
2012-07-20set ciphers to NULL before calling cert_cbDr. Stephen Henson
2012-07-19stop warningDr. Stephen Henson
2012-07-19add ssl_locl.h to err header files, rebuild ssl error stringsDr. Stephen Henson
2012-07-18New function ssl_set_client_disabled to set masks for any ciphersuitesDr. Stephen Henson
2012-07-18update trace messagesDr. Stephen Henson
2012-07-08Add new ctrl to retrieve client certificate types, print outDr. Stephen Henson
2012-07-05Install srtp.hRichard Levitte
2012-07-05Add d1_srtp and t1_trce.Richard Levitte
2012-07-03new function SSL_is_server to which returns 1 is the corresponding SSL contex...Dr. Stephen Henson
2012-07-03no need to check s->server as default_nid is never used for TLS 1.2 client au...Dr. Stephen Henson
2012-07-03Separate client and server permitted signature algorithm support: by defaultDr. Stephen Henson
2012-06-29Add certificate callback. If set this is called whenever a certificateDr. Stephen Henson
2012-06-28Function tls1_check_ec_server_key is now redundant as we makeDr. Stephen Henson
2012-06-28Add new "valid_flags" field to CERT_PKEY structure which determines whatDr. Stephen Henson
2012-06-27don't use pseudo digests for default values of keysDr. Stephen Henson
2012-06-25Reorganise supported signature algorithm extension processing.Dr. Stephen Henson
2012-06-22Add support for application defined signature algorithms for use withDr. Stephen Henson
2012-06-18fix clashing error codeDr. Stephen Henson
2012-06-18Make it possible to delete all certificates from an SSL structure.Dr. Stephen Henson
2012-06-15Initial record tracing code. Print out all fields in SSL/TLS recordsDr. Stephen Henson
2012-06-11Fix memory leak.Ben Laurie
2012-06-07Rearrange and test authz extension.Ben Laurie
2012-06-06Fix memory leak.Ben Laurie
2012-06-06Parse authz correctly.Ben Laurie
2012-06-03Version skew reduction: trivia (I hope).Ben Laurie
2012-05-30RFC 5878 support.Ben Laurie
2012-05-16s2_clnt.c: compensate for compiler bug.Andy Polyakov
2012-05-11PR: 2811Dr. Stephen Henson
2012-05-10PR: 2806Dr. Stephen Henson
2012-05-10Sanity check record length before skipping explicit IV in TLS 1.2, 1.1 andDr. Stephen Henson
2012-04-26Don't try to use unvalidated composite ciphers in FIPS modeDr. Stephen Henson
2012-04-25Change value of SSL_OP_NO_TLSv1_1 to avoid clash with SSL_OP_ALL andDr. Stephen Henson
2012-04-25s23_clnt.c: ensure interoperability by maitaining client "version capability"Andy Polyakov
2012-04-24Submitted by: Peter Sylvester <peter.sylvester@edelweb.fr>Dr. Stephen Henson
2012-04-23oops, not yet ;-)Dr. Stephen Henson
2012-04-23update NEWSDr. Stephen Henson
2012-04-18recognise X9.42 DH certificates on serversDr. Stephen Henson
2012-04-18correct error codesDr. Stephen Henson
2012-04-17Disable SHA-2 ciphersuites in < TLS 1.2 connections.Bodo Möller
2012-04-17Additional workaround for PR#2771Dr. Stephen Henson
2012-04-17Partial workaround for PR#2771.Dr. Stephen Henson
2012-04-16OPENSSL_NO_SOCK fixes.Andy Polyakov
2012-04-15s3_srvr.c: fix typo.Andy Polyakov
2012-04-15e_aes_cbc_hmac_sha1.c: handle zero-length payload and engage empty fragAndy Polyakov
2012-04-11use different variable for chain iterationDr. Stephen Henson
2012-04-06Submitted by: Peter Sylvester <peter.sylvester@edelweb.fr>Dr. Stephen Henson
2012-04-05Add support for automatic ECDH temporary key parameter selection. WhenDr. Stephen Henson
2012-04-04ssl/ssl_ciph.c: interim solution for assertion in d1_pkt.c(444).Andy Polyakov
2012-04-04Tidy up EC parameter check code: instead of accessing internal structuresDr. Stephen Henson