summaryrefslogtreecommitdiffstats
path: root/ssl
AgeCommit message (Expand)Author
2016-08-24Put DES into "not default" category.Rich Salz
2016-08-24To avoid SWEET32 attack, move 3DES to weakRich Salz
2016-08-24Fix comment about return value of ct_extract_tls_extension_sctsRob Percival
2016-08-24Remove some dead code from rec_layer_s3.cMatt Caswell
2016-08-23Sanity check ticket length.Dr. Stephen Henson
2016-08-23Fix leak on error in tls_construct_cke_gostMatt Caswell
2016-08-22Prevent DTLS Finished message injectionMatt Caswell
2016-08-22Fix DTLS buffered message DoS attackMatt Caswell
2016-08-19Fix DTLS replay protectionMatt Caswell
2016-08-19Fix DTLS unprocessed records bugMatt Caswell
2016-08-18Indent ssl/Emilia Kasper
2016-08-17Constify ssl_cert_type()Dr. Stephen Henson
2016-08-17Convert X509* functions to use const gettersDr. Stephen Henson
2016-08-17Add missing session id and tlsext_status accessorsRemi Gacogne
2016-08-16Convert SSL_SESSION* functions to use const gettersMatt Caswell
2016-08-16Ensure we unpad in constant time for read pipeliningMatt Caswell
2016-08-16Fix satsub64be() to unconditionally use 64-bit integersDavid Woodhouse
2016-08-15Address feedback on SSLv2 ClientHello processingMatt Caswell
2016-08-15Send an alert if we get a non-initial record with the wrong versionMatt Caswell
2016-08-15Address feedback on SSLv2 ClientHello processingMatt Caswell
2016-08-15Improves CTLOG_STORE settersRob Percival
2016-08-15Fix no-ecDr. Stephen Henson
2016-08-13Modify TLS support for new X25519 API.Dr. Stephen Henson
2016-08-12GH1446: Add SSL_SESSION_get0_cipherRich Salz
2016-08-08Fix test of first of 255 CBC padding bytes.Adam Langley
2016-08-06Fix CIPHER_DEBUGJimC
2016-08-05spelling fixes, just comments and readme.klemens
2016-08-05Remove OPENSSL_NO_STDIO guards around certain SSL cert/key functionsRichard Levitte
2016-08-04Fix ubsan 'left shift of negative value -1' error in satsub64be()David Woodhouse
2016-08-04Make DTLS1_BAD_VER work with DTLS_client_method()David Woodhouse
2016-08-04Fix cipher support for DTLS1_BAD_VERDavid Woodhouse
2016-08-04Fix DTLS_VERSION_xx() comparison macros for DTLS1_BAD_VERDavid Woodhouse
2016-08-04Fix ossl_statem_client_max_message_size() for DTLS1_BAD_VERDavid Woodhouse
2016-08-04Fix SSL_export_keying_material() for DTLS1_BAD_VERDavid Woodhouse
2016-08-01peer_tmp doesn't exist if no-ec no-dh.Ben Laurie
2016-07-30Fix crash as a result of MULTIBLOCKMatt Caswell
2016-07-29Simplify and rename SSL_set_rbio() and SSL_set_wbio()Matt Caswell
2016-07-29Fix BIO_pop for SSL BIOsMatt Caswell
2016-07-29Fix BIO_push ref counting for SSL BIOMatt Caswell
2016-07-29Don't double free the write bioMatt Caswell
2016-07-29Make the checks for an SSLv2 style record stricterMatt Caswell
2016-07-25zero pad DHE public key in ServerKeyExchange message for interoprussor
2016-07-25Enforce and explicit some const castingFdaSilvaYY
2016-07-23Correct misspelt OPENSSL_NO_SRPRichard Levitte
2016-07-22Send alert for bad DH CKEDr. Stephen Henson
2016-07-22Have load_buildtin_compression in ssl/ssl_ciph.c return RUN_ONCE resultRichard Levitte
2016-07-20Check for errors allocating the error strings.Kurt Roeckx
2016-07-20Never expose ssl->bbio in the public API.Matt Caswell
2016-07-20Fix a few if(, for(, while( inside code.FdaSilvaYY
2016-07-20Sanity check in ssl_get_algorithm2().Dr. Stephen Henson