projects
/
oweals
/
openssl.git
/ search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
Fuzz corpora update
2016-12-03
Viktor Dukhovni
Restore last-resort expired untrusted intermediate...
commit
|
commitdiff
|
tree
2016-08-24
Viktor Dukhovni
Un-delete still documented X509_STORE_CTX_set_verify
commit
|
commitdiff
|
tree
2016-08-19
Viktor Dukhovni
Add -dane_ee_no_namechecks s_client(1) option
commit
|
commitdiff
|
tree
2016-08-18
Viktor Dukhovni
Fix missing dane_tlsa_rrdata option error message
commit
|
commitdiff
|
tree
2016-07-12
Viktor Dukhovni
Make update
commit
|
commitdiff
|
tree
2016-07-12
Viktor Dukhovni
Perform DANE-EE(3) name checks by default
commit
|
commitdiff
|
tree
2016-07-11
Viktor Dukhovni
Don't rely on implicit rsa.h inclusion
commit
|
commitdiff
|
tree
2016-06-23
Viktor Dukhovni
Drop extraneous printf argument in mkcert.sh
commit
|
commitdiff
|
tree
2016-06-05
Viktor Dukhovni
Silence misleading test_abort stderr output
commit
|
commitdiff
|
tree
2016-05-19
Viktor Dukhovni
When strict SCT fails record verification failure
commit
|
commitdiff
|
tree
2016-05-19
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-05-19
Viktor Dukhovni
Improve and document low-level PEM read routines
commit
|
commitdiff
|
tree
2016-05-18
Viktor Dukhovni
Ensure verify error is set when X509_verify_cert()...
commit
|
commitdiff
|
tree
2016-05-18
Viktor Dukhovni
Clarify negative return from X509_verify_cert()
commit
|
commitdiff
|
tree
2016-05-16
Viktor Dukhovni
Fold threads.h into crypto.h making API public
commit
|
commitdiff
|
tree
2016-05-11
Viktor Dukhovni
Fix TLSProxy race by adding missing eval
commit
|
commitdiff
|
tree
2016-05-11
Viktor Dukhovni
Fix i2d_X509_AUX, update docs and add tests
commit
|
commitdiff
|
tree
2016-05-03
Viktor Dukhovni
Drop duplicate ctx->verify_cb assignment
commit
|
commitdiff
|
tree
2016-04-28
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-28
Viktor Dukhovni
Implement X509_STORE_CTX_set_current_cert() accessor
commit
|
commitdiff
|
tree
2016-04-27
Viktor Dukhovni
Fix set0 reuse test
commit
|
commitdiff
|
tree
2016-04-27
Viktor Dukhovni
Future proof build_chain() in x509_vfy.c
commit
|
commitdiff
|
tree
2016-04-25
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-25
Viktor Dukhovni
Added missing X509_STORE_CTX_set_error_depth() accessor
commit
|
commitdiff
|
tree
2016-04-25
Viktor Dukhovni
API compat macros for renamed X509_STORE_CTX functions
commit
|
commitdiff
|
tree
2016-04-22
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-22
Viktor Dukhovni
Enabled DANE only when at least one TLSA RR was added
commit
|
commitdiff
|
tree
2016-04-14
Viktor Dukhovni
Bugfix: in asn1parse avoid erroneous len after a sub...
commit
|
commitdiff
|
tree
2016-04-14
Viktor Dukhovni
Don't use deprecated CONF_modules_free() in tests
commit
|
commitdiff
|
tree
2016-04-07
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-07
Viktor Dukhovni
Suppress CT callback as appropriate
commit
|
commitdiff
|
tree
2016-04-07
Viktor Dukhovni
Fix client verify mode to check SSL_VERIFY_PEER
commit
|
commitdiff
|
tree
2016-04-04
Viktor Dukhovni
Fix mixed declarations and code
commit
|
commitdiff
|
tree
2016-04-03
Viktor Dukhovni
After saving errno clear it before calls to strtol...
commit
|
commitdiff
|
tree
2016-04-03
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-03
Viktor Dukhovni
Move peer chain security checks into x509_vfy.c
commit
|
commitdiff
|
tree
2016-04-03
Viktor Dukhovni
Tidy up x509_vfy callback handling
commit
|
commitdiff
|
tree
2016-03-30
Viktor Dukhovni
Require intermediate CAs to have basicConstraints CA...
commit
|
commitdiff
|
tree
2016-03-21
Viktor Dukhovni
Add a comment on dane_verify() logic
commit
|
commitdiff
|
tree
2016-03-19
Viktor Dukhovni
Revert "Ignore the generated apps/progs.h"
commit
|
commitdiff
|
tree
2016-03-19
Viktor Dukhovni
Revert "Generate apps/progs.h on the fly"
commit
|
commitdiff
|
tree
2016-03-19
Viktor Dukhovni
Revert "Include progs.h directly in openssl.c instead...
commit
|
commitdiff
|
tree
2016-03-17
Viktor Dukhovni
Report TLS 1.0 as backwards-compatible TLSv1
commit
|
commitdiff
|
tree
2016-03-17
Viktor Dukhovni
Bugfix: Encode the requested length in s_cb.c:hexencode()
commit
|
commitdiff
|
tree
2016-03-10
Viktor Dukhovni
Add X509_CHECK_FLAG_NEVER_CHECK_SUBJECT flag
commit
|
commitdiff
|
tree
2016-03-07
Viktor Dukhovni
Don't free NCONF obtained values
commit
|
commitdiff
|
tree
2016-03-04
Viktor Dukhovni
Improved HKDF and TLS1-PRF documentation
commit
|
commitdiff
|
tree
2016-02-23
Viktor Dukhovni
Update documentation of SSL METHODs and ciphers
commit
|
commitdiff
|
tree
2016-02-20
Viktor Dukhovni
Work-around for proxy->s_server retry logic
commit
|
commitdiff
|
tree
2016-02-14
Viktor Dukhovni
Fixes to make no-deprecated work again
commit
|
commitdiff
|
tree
2016-02-13
Viktor Dukhovni
Fix some issues near recent chomp changes.
commit
|
commitdiff
|
tree
2016-02-12
Viktor Dukhovni
Move brace outside #ifdef
commit
|
commitdiff
|
tree
2016-02-11
Viktor Dukhovni
Fix MacOS/X build warnings
commit
|
commitdiff
|
tree
2016-02-11
Viktor Dukhovni
Simplify ssl_cert_type() by taking advantage of X509_get0_pubkey
commit
|
commitdiff
|
tree
2016-02-10
Viktor Dukhovni
Improve recent option help string additions
commit
|
commitdiff
|
tree
2016-02-10
Viktor Dukhovni
Deprecate the -issuer_checks debugging option
commit
|
commitdiff
|
tree
2016-02-08
Viktor Dukhovni
Suppress DANE TLSA reflection when verification fails
commit
|
commitdiff
|
tree
2016-02-06
Viktor Dukhovni
Allocate bio_err before turning on memleak checks
commit
|
commitdiff
|
tree
2016-02-06
Viktor Dukhovni
Add missing static declarations in dtlsv1listentest.c
commit
|
commitdiff
|
tree
2016-02-05
Viktor Dukhovni
Ensure correct chain depth for policy checks with DANE...
commit
|
commitdiff
|
tree
2016-02-05
Viktor Dukhovni
Long overdue cleanup of X509 policy tree verification
commit
|
commitdiff
|
tree
2016-02-05
Viktor Dukhovni
Restore -no_comp switch for backwards compatible behaviour
commit
|
commitdiff
|
tree
2016-02-04
Viktor Dukhovni
Handle localhost being either 127.0.0.1 or ::1
commit
|
commitdiff
|
tree
2016-02-03
Viktor Dukhovni
Fix pkeyutl/rsautl empty encrypt-input/decrypt-output...
commit
|
commitdiff
|
tree
2016-02-01
Viktor Dukhovni
Add tests for non-ca trusted roots and intermediates
commit
|
commitdiff
|
tree
2016-02-01
Viktor Dukhovni
Compat self-signed trust with reject-only aux data
commit
|
commitdiff
|
tree
2016-02-01
Viktor Dukhovni
Check chain extensions also for trusted certificates
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Make opt_imax visible in all apps
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Fix invalid policy detection
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Better type for x509 -checkend argument
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Make it possible to check for explicit auxiliary trust
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Keep RC5 bit shifts in [0..31]
commit
|
commitdiff
|
tree
2016-01-28
Viktor Dukhovni
Restore NUMPRIMES as a numeric literal
commit
|
commitdiff
|
tree
2016-01-28
Viktor Dukhovni
Comment side-effect only calls of X509_check_purpose
commit
|
commitdiff
|
tree
2016-01-27
Viktor Dukhovni
Doc fixes suggested by Claus Assmann
commit
|
commitdiff
|
tree
2016-01-27
Viktor Dukhovni
Fix Custom Extension tests skip count
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Multiple -trusted/-untrusted/-CRLfile options in verify
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Refactor apps load_certs/load_crls to work incrementally
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
More X509_verify_cert() tests via verify(1).
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Reject when explicit trust EKU are set and none match.
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Commit pre-generated test_verify certs
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Scripts to generate verify test certs
commit
|
commitdiff
|
tree
2016-01-20
Viktor Dukhovni
Check Suite-B constraints with EE DANE records
commit
|
commitdiff
|
tree
2016-01-19
Viktor Dukhovni
API compat for SSLeay_add_ssl_algorithms
commit
|
commitdiff
|
tree
2016-01-19
Viktor Dukhovni
Support disabling any or all TLS or DTLS versions
commit
|
commitdiff
|
tree
2016-01-18
Viktor Dukhovni
Drop cached certificate signature validity flag
commit
|
commitdiff
|
tree
2016-01-16
Viktor Dukhovni
Start a new line after each sentence-ending period.
commit
|
commitdiff
|
tree
2016-01-16
Viktor Dukhovni
Make SSL_dane_enable() requirement more clear.
commit
|
commitdiff
|
tree
2016-01-16
Viktor Dukhovni
Better invalid SNI name error handling
commit
|
commitdiff
|
tree
2016-01-16
Viktor Dukhovni
Empty SNI names are not valid
commit
|
commitdiff
|
tree
2016-01-14
Viktor Dukhovni
Cosmetic polish for last-resort depth 0 check
commit
|
commitdiff
|
tree
2016-01-14
Viktor Dukhovni
Fix last-resort depth 0 check when the chain has multiple...
commit
|
commitdiff
|
tree
2016-01-14
Viktor Dukhovni
Always initialize X509_STORE_CTX get_crl pointer
commit
|
commitdiff
|
tree
2016-01-14
Viktor Dukhovni
Editorial
commit
|
commitdiff
|
tree
2016-01-14
Viktor Dukhovni
EDH >= 1024 bits even at security level 0
commit
|
commitdiff
|
tree
2016-01-14
Viktor Dukhovni
Fix double-free bugs in EC group precomputation state
commit
|
commitdiff
|
tree
2016-01-13
Viktor Dukhovni
Fix verify(1) to report failure when verification fails
commit
|
commitdiff
|
tree
2016-01-13
Viktor Dukhovni
Fix nistp512 typos, should be nistp521
commit
|
commitdiff
|
tree
2016-01-13
Viktor Dukhovni
For stro[ui]max require both C99 and UINTMAX_MAX/INTMAX_MAX
commit
|
commitdiff
|
tree
2016-01-13
Viktor Dukhovni
Fix DES_LONG breakage
commit
|
commitdiff
|
tree
next