projects
/
oweals
/
openssl.git
/ history
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
APPS: Add ctrl_str()-like functionality for X509 and X509_REQ
[oweals/openssl.git]
/
ssl
/
statem
/
2020-03-13
Benjamin Kaduk
Code to thread-safety in ChangeCipherState
tree
|
commitdiff
2020-03-13
Benjamin Kaduk
Don't write to the session when computing TLS 1.3 keys
tree
|
commitdiff
2020-02-20
Pauli
Deprecate the low level Diffie-Hellman functions.
tree
|
commitdiff
2020-02-06
Matt Caswell
Use the OPENSSL_CTX and property query string in EVP_PK...
tree
|
commitdiff
2020-02-06
Matt Caswell
Explicitly fetch ciphers and digests in libssl
tree
|
commitdiff
2020-01-30
Matt Caswell
Don't acknowledge a servername following warning alert...
tree
|
commitdiff
2020-01-30
Matt Caswell
Fix SSL_get_servername() and SNI behaviour
tree
|
commitdiff
2020-01-29
Pauli
TLS: use EVP for HMAC throughout libssl.
tree
|
commitdiff
2020-01-24
Matt Caswell
Make sure we use RAND_bytes_ex and RAND_priv_bytes_ex...
tree
|
commitdiff
2020-01-19
Matt Caswell
libssl: Eliminate as much use of EVP_PKEY_size() as...
tree
|
commitdiff
2019-12-13
Dmitry Belyavskiy
Parse large GOST ClientKeyExchange messages
tree
|
commitdiff
2019-12-05
Matt Caswell
Move constant time RSA code out of libssl
tree
|
commitdiff
2019-11-22
Benjamin Kaduk
Fix a race condition in SNI handling
tree
|
commitdiff
2019-11-11
Ido Ben-Natan
Fix misspelled resumption_label for CHARSET_EBCDIC
tree
|
commitdiff
2019-10-10
Artiom Vaskov
ssl/statem/statem_lib.c: make servercontext/clientconte...
tree
|
commitdiff
2019-10-09
Rich Salz
Explicitly test against NULL; do not use !p or similar
tree
|
commitdiff
2019-10-03
NaveenShivanna86
'init_buf' memory can be freed when DTLS is used over...
tree
|
commitdiff
2019-09-28
Dr. Matthias St...
Reorganize local header files
tree
|
commitdiff
2019-09-06
Matt Caswell
Don't send a status_request extension in a CertificateR...
tree
|
commitdiff
2019-08-14
opensslonzos-github
Add missing EBCDIC strings
tree
|
commitdiff
2019-08-01
raja-ashok
Use allow_early_data_cb from SSL instead of SSL_CTX
tree
|
commitdiff
2019-07-31
Richard Levitte
Avoid using ERR_put_error() directly in OpenSSL code
tree
|
commitdiff
2019-07-25
David Benjamin
Don't generate an unnecessary Diffie-Hellman key in...
tree
|
commitdiff
2019-07-16
Pauli
Remove tab characters from C source files.
tree
|
commitdiff
2019-07-16
Rich Salz
Remove function name from errors
tree
|
commitdiff
2019-06-26
Benjamin Kaduk
Revert "Delay setting the sig algs until after the...
tree
|
commitdiff
2019-06-18
Matt Caswell
Following the previous 2 commits also move ecpointforma...
tree
|
commitdiff
2019-06-18
Matt Caswell
Fix a race condition in ciphers handling
tree
|
commitdiff
2019-06-18
Matt Caswell
Fix a race condition in supported groups handling
tree
|
commitdiff
2019-06-17
Matt Caswell
Fix no-ec with no-dh
tree
|
commitdiff
2019-06-17
Matt Caswell
Allow TLSv1.3 in a no-ec build
tree
|
commitdiff
2019-06-12
raja-ashok
TLS1.3 FFDHE Support
tree
|
commitdiff
2019-06-11
Shane Lontis
Make EVP_MD_CTX_ctrl() work for legacy use cases (ssl3).
tree
|
commitdiff
2019-06-04
Shane Lontis
Move digests to providers
tree
|
commitdiff
2019-06-03
Matt Caswell
Defer sending a KeyUpdate until after pending writes...
tree
|
commitdiff
2019-04-29
Todd Short
Collapse ssl3_state_st (s3) into ssl_st
tree
|
commitdiff
2019-03-28
Paul Monson
conn_is_closed should return 1 if get_last_sys_error...
tree
|
commitdiff
2019-03-06
Richard Levitte
Adapt CIPHER_DEBUG to the new generic trace API
tree
|
commitdiff
2019-03-06
Richard Levitte
Adapt SSL_DEBUG to the new generic trace API
tree
|
commitdiff
2019-03-05
Matt Caswell
Don't write the tick_identity to the session
tree
|
commitdiff
2019-02-22
Matt Caswell
Don't restrict the number of KeyUpdate messages we...
tree
|
commitdiff
2019-02-15
Todd Short
Add option to disable Extended Master Secret
tree
|
commitdiff
2019-02-14
Matt Caswell
Don't signal SSL_CB_HANDSHAKE_START for TLSv1.3 post...
tree
|
commitdiff
2019-02-01
Michael Tuexen
Fix end-point shared secret for DTLS/SCTP
tree
|
commitdiff
2019-01-24
Matt Caswell
Revert "Keep the DTLS timer running after the end of...
tree
|
commitdiff
2019-01-08
Matt Caswell
Don't artificially limit the size of the ClientHello
tree
|
commitdiff
2019-01-07
Matt Caswell
Don't complain if we receive the cryptopro extension...
tree
|
commitdiff
2019-01-06
Dmitry Belyavskiy
Restore compatibility with GOST2001 implementations.
tree
|
commitdiff
2018-12-15
Kurt Roeckx
Use (D)TLS_MAX_VERSION_INTERNAL internally
tree
|
commitdiff
2018-12-06
Richard Levitte
Following the license change, modify the boilerplates...
tree
|
commitdiff
2018-12-05
Matt Caswell
Fix some SSL_export_keying_material() issues
tree
|
commitdiff
2018-11-27
Paul Yang
Fix access zero memory if SSL_DEBUG is enabled
tree
|
commitdiff
2018-11-14
Matt Caswell
Fix no-ec and no-tls1_2
tree
|
commitdiff
2018-11-12
Matt Caswell
Separate ca_names handling for client and server
tree
|
commitdiff
2018-11-12
Matt Caswell
Don't negotiate TLSv1.3 if our EC cert isn't TLSv1...
tree
|
commitdiff
2018-11-08
Matt Caswell
Ignore disabled ciphers when deciding if we are using ECC
tree
|
commitdiff
2018-11-04
Benjamin Kaduk
Restore sensible "sess_accept" counter tracking
tree
|
commitdiff
2018-10-30
Matt Caswell
Don't call the client_cert_cb immediately in TLSv1.3
tree
|
commitdiff
2018-10-29
Richard Levitte
ssl/statem: Don't compare size_t with less than zero
tree
|
commitdiff
2018-10-19
Matt Caswell
Fix a DTLS memory leak
tree
|
commitdiff
2018-10-17
Mansour Ahmadi
Add a missing check on s->s3->tmp.pkey
tree
|
commitdiff
2018-09-21
Matt Caswell
Delay setting the sig algs until after the cert_cb...
tree
|
commitdiff
2018-09-12
Bernd Edlinger
Fix a possible recursion in SSLfatal handling
tree
|
commitdiff
2018-09-07
Matt Caswell
Do not reset SNI data in SSL_do_handshake()
tree
|
commitdiff
2018-09-07
Ben Kaduk
Restore historical SSL_get_servername() behavior
tree
|
commitdiff
2018-09-07
Matt Caswell
Ensure certificate callbacks work correctly in TLSv1.3
tree
|
commitdiff
2018-09-07
Matt Caswell
Process KeyUpdate and NewSessionTicket messages after...
tree
|
commitdiff
2018-09-04
Matt Caswell
Send a NewSessionTicket after using an external PSK
tree
|
commitdiff
2018-09-04
Matt Caswell
Ignore EPIPE when sending NewSessionTickets in TLSv1.3
tree
|
commitdiff
2018-08-22
Matt Caswell
Don't detect a downgrade where the server has a protoco...
tree
|
commitdiff
2018-08-22
Matt Caswell
Use the same min-max version range on the client consis...
tree
|
commitdiff
2018-08-20
Matt Caswell
Change Post Handshake auth so that it is opt-in
tree
|
commitdiff
2018-08-15
Matt Caswell
Turn on TLSv1.3 downgrade protection by default
tree
|
commitdiff
2018-08-15
Matt Caswell
Update code for the final RFC version of TLSv1.3 (RFC8446)
tree
|
commitdiff
2018-08-14
Dmitry Yakovlev
Move SSL_DEBUG md fprintf after assignment
tree
|
commitdiff
2018-08-09
Matt Caswell
Improve fallback protection
tree
|
commitdiff
2018-08-08
Matt Caswell
Tolerate encrypted or plaintext alerts
tree
|
commitdiff
2018-08-08
Matt Caswell
Ensure that we write out alerts correctly after early_data
tree
|
commitdiff
2018-08-08
Matt Caswell
Fix a missing call to SSLfatal
tree
|
commitdiff
2018-08-07
Andy Polyakov
ssl/*: switch to switch to Thread-Sanitizer-friendly...
tree
|
commitdiff
2018-08-06
Matt Caswell
Ensure we send an alert on error when processing a...
tree
|
commitdiff
2018-07-20
Benjamin Kaduk
Normalize SNI hostname handling for SSL and SSL_SESSION
tree
|
commitdiff
2018-07-20
Benjamin Kaduk
const-ify some input SSL * arguments
tree
|
commitdiff
2018-07-20
Matt Caswell
Validate legacy_version
tree
|
commitdiff
2018-07-19
Matt Caswell
Don't skip over early_data if we sent an HRR
tree
|
commitdiff
2018-07-17
Matt Caswell
Fix no-psk
tree
|
commitdiff
2018-07-17
Matt Caswell
Always issue new tickets when using TLSv1.3 stateful...
tree
|
commitdiff
2018-07-17
Matt Caswell
Don't remove sessions from the cache during PHA in...
tree
|
commitdiff
2018-07-13
Matt Caswell
As a server don't select TLSv1.3 if we're not capable...
tree
|
commitdiff
2018-07-13
Matt Caswell
Use ssl_version_supported() when choosing server version
tree
|
commitdiff
2018-07-03
Matt Caswell
Remove TLSv1.3 tickets from the client cache as we...
tree
|
commitdiff
2018-07-03
Matt Caswell
Restore behaviour from commit 36ff232cf that was incorr...
tree
|
commitdiff
2018-07-02
Matt Caswell
Add setters to set the early_data callback
tree
|
commitdiff
2018-07-02
Matt Caswell
Make the anti-replay feature optional
tree
|
commitdiff
2018-07-02
Matt Caswell
Fix a NULL ptr deref in error path in tls_process_cke_dhe()
tree
|
commitdiff
2018-06-26
Matt Caswell
Use stateful tickets if we are doing anti-replay
tree
|
commitdiff
2018-06-26
Matt Caswell
Respect SSL_OP_NO_TICKET in TLSv1.3
tree
|
commitdiff
2018-06-26
Matt Caswell
Restructure the ticket construction code
tree
|
commitdiff
2018-06-25
Matt Caswell
Don't change a session once its in the cache
tree
|
commitdiff
2018-06-11
Matt Caswell
Don't send a warning alert in TLSv1.3
tree
|
commitdiff
next