projects
/
oweals
/
openssl.git
/ search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
Preserve errno on dlopen
2018-11-12
Viktor Dukhovni
Added missing signature algorithm reflection functions
commit
|
commitdiff
|
tree
2018-10-18
Viktor Dukhovni
Apply self-imposed path length also to root CAs
commit
|
commitdiff
|
tree
2018-10-18
Viktor Dukhovni
Only CA certificates can be self-issued
commit
|
commitdiff
|
tree
2018-06-12
Viktor Dukhovni
Document return value of X509_add_ext
commit
|
commitdiff
|
tree
2018-05-23
Viktor Dukhovni
Skip CN DNS name constraint checks when not needed
commit
|
commitdiff
|
tree
2018-05-23
Viktor Dukhovni
Limit scope of CN name constraints
commit
|
commitdiff
|
tree
2018-04-19
Viktor Dukhovni
Add missing index_index() when reloading OCSP responder
commit
|
commitdiff
|
tree
2018-03-08
Viktor Dukhovni
Make OCSP "multi" compatible with "no-sock" builds.
commit
|
commitdiff
|
tree
2018-03-07
Viktor Dukhovni
Implement multi-process OCSP responder.
commit
|
commitdiff
|
tree
2018-03-07
Viktor Dukhovni
Prepare to detect index changes in OCSP responder.
commit
|
commitdiff
|
tree
2018-02-21
Viktor Dukhovni
Use malloc to avoid alignment problems.
commit
|
commitdiff
|
tree
2018-02-14
Viktor Dukhovni
Avoid fragile aliasing of SHA224/384 update/final
commit
|
commitdiff
|
tree
2018-02-10
Viktor Dukhovni
Avoid leaking peername data via accept BIOs
commit
|
commitdiff
|
tree
2018-01-05
Viktor Dukhovni
Add x509(1) reference
commit
|
commitdiff
|
tree
2017-12-13
Viktor Dukhovni
Document the X509_V_FLAG_PARTIAL_CHAIN flag
commit
|
commitdiff
|
tree
2017-11-30
Viktor Dukhovni
Make possible variant SONAMEs and symbol versions
commit
|
commitdiff
|
tree
2016-12-03
Viktor Dukhovni
Restore last-resort expired untrusted intermediate...
commit
|
commitdiff
|
tree
2016-08-24
Viktor Dukhovni
Un-delete still documented X509_STORE_CTX_set_verify
commit
|
commitdiff
|
tree
2016-08-19
Viktor Dukhovni
Add -dane_ee_no_namechecks s_client(1) option
commit
|
commitdiff
|
tree
2016-08-18
Viktor Dukhovni
Fix missing dane_tlsa_rrdata option error message
commit
|
commitdiff
|
tree
2016-07-12
Viktor Dukhovni
Make update
commit
|
commitdiff
|
tree
2016-07-12
Viktor Dukhovni
Perform DANE-EE(3) name checks by default
commit
|
commitdiff
|
tree
2016-07-11
Viktor Dukhovni
Don't rely on implicit rsa.h inclusion
commit
|
commitdiff
|
tree
2016-06-23
Viktor Dukhovni
Drop extraneous printf argument in mkcert.sh
commit
|
commitdiff
|
tree
2016-06-05
Viktor Dukhovni
Silence misleading test_abort stderr output
commit
|
commitdiff
|
tree
2016-05-19
Viktor Dukhovni
When strict SCT fails record verification failure
commit
|
commitdiff
|
tree
2016-05-19
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-05-19
Viktor Dukhovni
Improve and document low-level PEM read routines
commit
|
commitdiff
|
tree
2016-05-18
Viktor Dukhovni
Ensure verify error is set when X509_verify_cert()...
commit
|
commitdiff
|
tree
2016-05-18
Viktor Dukhovni
Clarify negative return from X509_verify_cert()
commit
|
commitdiff
|
tree
2016-05-16
Viktor Dukhovni
Fold threads.h into crypto.h making API public
commit
|
commitdiff
|
tree
2016-05-11
Viktor Dukhovni
Fix TLSProxy race by adding missing eval
commit
|
commitdiff
|
tree
2016-05-11
Viktor Dukhovni
Fix i2d_X509_AUX, update docs and add tests
commit
|
commitdiff
|
tree
2016-05-03
Viktor Dukhovni
Drop duplicate ctx->verify_cb assignment
commit
|
commitdiff
|
tree
2016-04-28
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-28
Viktor Dukhovni
Implement X509_STORE_CTX_set_current_cert() accessor
commit
|
commitdiff
|
tree
2016-04-27
Viktor Dukhovni
Fix set0 reuse test
commit
|
commitdiff
|
tree
2016-04-27
Viktor Dukhovni
Future proof build_chain() in x509_vfy.c
commit
|
commitdiff
|
tree
2016-04-25
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-25
Viktor Dukhovni
Added missing X509_STORE_CTX_set_error_depth() accessor
commit
|
commitdiff
|
tree
2016-04-25
Viktor Dukhovni
API compat macros for renamed X509_STORE_CTX functions
commit
|
commitdiff
|
tree
2016-04-22
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-22
Viktor Dukhovni
Enabled DANE only when at least one TLSA RR was added
commit
|
commitdiff
|
tree
2016-04-14
Viktor Dukhovni
Bugfix: in asn1parse avoid erroneous len after a sub...
commit
|
commitdiff
|
tree
2016-04-14
Viktor Dukhovni
Don't use deprecated CONF_modules_free() in tests
commit
|
commitdiff
|
tree
2016-04-07
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-07
Viktor Dukhovni
Suppress CT callback as appropriate
commit
|
commitdiff
|
tree
2016-04-07
Viktor Dukhovni
Fix client verify mode to check SSL_VERIFY_PEER
commit
|
commitdiff
|
tree
2016-04-04
Viktor Dukhovni
Fix mixed declarations and code
commit
|
commitdiff
|
tree
2016-04-03
Viktor Dukhovni
After saving errno clear it before calls to strtol...
commit
|
commitdiff
|
tree
2016-04-03
Viktor Dukhovni
make update
commit
|
commitdiff
|
tree
2016-04-03
Viktor Dukhovni
Move peer chain security checks into x509_vfy.c
commit
|
commitdiff
|
tree
2016-04-03
Viktor Dukhovni
Tidy up x509_vfy callback handling
commit
|
commitdiff
|
tree
2016-03-30
Viktor Dukhovni
Require intermediate CAs to have basicConstraints CA...
commit
|
commitdiff
|
tree
2016-03-21
Viktor Dukhovni
Add a comment on dane_verify() logic
commit
|
commitdiff
|
tree
2016-03-19
Viktor Dukhovni
Revert "Ignore the generated apps/progs.h"
commit
|
commitdiff
|
tree
2016-03-19
Viktor Dukhovni
Revert "Generate apps/progs.h on the fly"
commit
|
commitdiff
|
tree
2016-03-19
Viktor Dukhovni
Revert "Include progs.h directly in openssl.c instead...
commit
|
commitdiff
|
tree
2016-03-17
Viktor Dukhovni
Report TLS 1.0 as backwards-compatible TLSv1
commit
|
commitdiff
|
tree
2016-03-17
Viktor Dukhovni
Bugfix: Encode the requested length in s_cb.c:hexencode()
commit
|
commitdiff
|
tree
2016-03-10
Viktor Dukhovni
Add X509_CHECK_FLAG_NEVER_CHECK_SUBJECT flag
commit
|
commitdiff
|
tree
2016-03-07
Viktor Dukhovni
Don't free NCONF obtained values
commit
|
commitdiff
|
tree
2016-03-04
Viktor Dukhovni
Improved HKDF and TLS1-PRF documentation
commit
|
commitdiff
|
tree
2016-02-23
Viktor Dukhovni
Update documentation of SSL METHODs and ciphers
commit
|
commitdiff
|
tree
2016-02-20
Viktor Dukhovni
Work-around for proxy->s_server retry logic
commit
|
commitdiff
|
tree
2016-02-14
Viktor Dukhovni
Fixes to make no-deprecated work again
commit
|
commitdiff
|
tree
2016-02-13
Viktor Dukhovni
Fix some issues near recent chomp changes.
commit
|
commitdiff
|
tree
2016-02-12
Viktor Dukhovni
Move brace outside #ifdef
commit
|
commitdiff
|
tree
2016-02-11
Viktor Dukhovni
Fix MacOS/X build warnings
commit
|
commitdiff
|
tree
2016-02-11
Viktor Dukhovni
Simplify ssl_cert_type() by taking advantage of X509_get0_pubkey
commit
|
commitdiff
|
tree
2016-02-10
Viktor Dukhovni
Improve recent option help string additions
commit
|
commitdiff
|
tree
2016-02-10
Viktor Dukhovni
Deprecate the -issuer_checks debugging option
commit
|
commitdiff
|
tree
2016-02-08
Viktor Dukhovni
Suppress DANE TLSA reflection when verification fails
commit
|
commitdiff
|
tree
2016-02-06
Viktor Dukhovni
Allocate bio_err before turning on memleak checks
commit
|
commitdiff
|
tree
2016-02-06
Viktor Dukhovni
Add missing static declarations in dtlsv1listentest.c
commit
|
commitdiff
|
tree
2016-02-05
Viktor Dukhovni
Ensure correct chain depth for policy checks with DANE...
commit
|
commitdiff
|
tree
2016-02-05
Viktor Dukhovni
Long overdue cleanup of X509 policy tree verification
commit
|
commitdiff
|
tree
2016-02-05
Viktor Dukhovni
Restore -no_comp switch for backwards compatible behaviour
commit
|
commitdiff
|
tree
2016-02-04
Viktor Dukhovni
Handle localhost being either 127.0.0.1 or ::1
commit
|
commitdiff
|
tree
2016-02-03
Viktor Dukhovni
Fix pkeyutl/rsautl empty encrypt-input/decrypt-output...
commit
|
commitdiff
|
tree
2016-02-01
Viktor Dukhovni
Add tests for non-ca trusted roots and intermediates
commit
|
commitdiff
|
tree
2016-02-01
Viktor Dukhovni
Compat self-signed trust with reject-only aux data
commit
|
commitdiff
|
tree
2016-02-01
Viktor Dukhovni
Check chain extensions also for trusted certificates
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Make opt_imax visible in all apps
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Fix invalid policy detection
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Better type for x509 -checkend argument
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Make it possible to check for explicit auxiliary trust
commit
|
commitdiff
|
tree
2016-01-29
Viktor Dukhovni
Keep RC5 bit shifts in [0..31]
commit
|
commitdiff
|
tree
2016-01-28
Viktor Dukhovni
Restore NUMPRIMES as a numeric literal
commit
|
commitdiff
|
tree
2016-01-28
Viktor Dukhovni
Comment side-effect only calls of X509_check_purpose
commit
|
commitdiff
|
tree
2016-01-27
Viktor Dukhovni
Doc fixes suggested by Claus Assmann
commit
|
commitdiff
|
tree
2016-01-27
Viktor Dukhovni
Fix Custom Extension tests skip count
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Multiple -trusted/-untrusted/-CRLfile options in verify
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Refactor apps load_certs/load_crls to work incrementally
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
More X509_verify_cert() tests via verify(1).
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Reject when explicit trust EKU are set and none match.
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Commit pre-generated test_verify certs
commit
|
commitdiff
|
tree
2016-01-21
Viktor Dukhovni
Scripts to generate verify test certs
commit
|
commitdiff
|
tree
2016-01-20
Viktor Dukhovni
Check Suite-B constraints with EE DANE records
commit
|
commitdiff
|
tree
2016-01-19
Viktor Dukhovni
API compat for SSLeay_add_ssl_algorithms
commit
|
commitdiff
|
tree
next