aboutsummaryrefslogtreecommitdiff
path: root/crypto/x509v3/v3_purp.c
AgeCommit message (Expand)AuthorFilesLines
2016-05-17Copyright consolidation 07/10Rich Salz1-54/+5
2016-03-08Convert CRYPTO_LOCK_X509_* to new multi-threading APIAlessandro Ghedini1-4/+4
2016-01-27Comment side-effect only calls of X509_check_purposeViktor Dukhovni1-0/+5
2016-01-26Remove /* foo.c */ commentsRich Salz1-1/+0
2015-12-16Rename some BUF_xxx to OPENSSL_xxxRich Salz1-2/+2
2015-10-15Fix self signed handling.Dr. Stephen Henson1-9/+10
2015-09-22New function X509_get0_subject_key_id()Dr. Stephen Henson1-0/+7
2015-09-03Revert "OPENSSL_NO_xxx cleanup: RFC3779"David Woodhouse1-0/+4
2015-09-03Win32 build fix: include internal/numbers.h to get UIN32_MAXRichard Levitte1-0/+1
2015-09-01functions to retrieve certificate flagsDr. Stephen Henson1-0/+22
2015-05-14Identify and move common internal libcrypto header filesRichard Levitte1-1/+1
2015-05-11Use p==NULL not !p (in if statements, mainly)Rich Salz1-2/+3
2015-05-06Use "==0" instead of "!strcmp" etcRich Salz1-1/+1
2015-05-04Use safer sizeof variant in mallocRich Salz1-1/+1
2015-05-03Add OSSL_NELEM macro.Dr. Stephen Henson1-3/+2
2015-02-06util/mkstack.pl now generates entire safestack.hRich Salz1-2/+0
2015-01-27OPENSSL_NO_xxx cleanup: SHARich Salz1-2/+0
2015-01-27OPENSSL_NO_xxx cleanup: RFC3779Rich Salz1-4/+0
2015-01-22Run util/openssl-format-source -v -c .Matt Caswell1-541/+609
2014-12-30mark all block comments that need format preserving so thatTim Hudson1-2/+4
2014-04-15Extension checking fixes.Dr. Stephen Henson1-3/+3
2012-12-15Check chain is not NULL before assuming we have a validated chain.Dr. Stephen Henson1-1/+1
2012-12-07Fix OCSP checking.Ben Laurie1-1/+1
2012-12-06Fix two bugs which affect delta CRL handling:Dr. Stephen Henson1-2/+2
2012-01-26allow key agreement for SSL/TLS certificatesDr. Stephen Henson1-4/+9
2010-02-25Include self-signed flag in certificates by checking SKID/AKID as wellDr. Stephen Henson1-3/+8
2010-02-24add anyExtendedKeyUsage OIDDr. Stephen Henson1-0/+4
2008-11-05Update obsolete email address...Dr. Stephen Henson1-1/+1
2008-10-22Create function of the form OBJ_bsearch_xxx() in bsearch typesafe macrosDr. Stephen Henson1-5/+5
2008-10-12Type-checked (and modern C compliant) OBJ_bsearch.Ben Laurie1-8/+8
2008-09-01Initial support for delta CRLs. If "use deltas" flag is set attempt to findDr. Stephen Henson1-2/+4
2008-08-29Add support for CRLs partitioned by reason code.Dr. Stephen Henson1-0/+10
2008-08-12Support for policy mappings extension.Dr. Stephen Henson1-0/+1
2008-08-08Initial support for name constraints certificate extension.Dr. Stephen Henson1-0/+5
2008-08-04Add support for nameRelativeToCRLIssuer field in distribution point nameDr. Stephen Henson1-2/+33
2008-07-13We support inhibit any policy extension, add to table.Dr. Stephen Henson1-1/+2
2008-07-13X509 verification fixes.Dr. Stephen Henson1-1/+2
2006-12-18fix orderNils Larsch1-1/+1
2006-12-06Fix change to OPENSSL_NO_RFC3779Dr. Stephen Henson1-2/+2
2006-11-27Add RFC 3779 support.Ben Laurie1-0/+10
2006-09-14Support for AKID in CRLs and partial support for IDP. Overhaul of CRLDr. Stephen Henson1-32/+49
2006-07-24Cache some CRL related extensions.Dr. Stephen Henson1-0/+1
2006-02-12RFC 3161 compliant time stamp request creation, response generationUlf Möller1-0/+37
2005-04-09Added restrictions on the use of proxy certificates, as they may poseRichard Levitte1-1/+3
2004-12-28Add functionality needed to process proxy certificates.Richard Levitte1-2/+22
2004-12-03V1 certificates that aren't self signed can't be accepted as CAs.Dr. Stephen Henson1-2/+0
2004-11-30Split X509_check_ca() into a small self and an internal functionRichard Levitte1-11/+16
2004-11-29Make an explicit check during certificate validation to see that theRichard Levitte1-27/+23
2004-03-05Various X509 fixes. Disable broken certificate workaroundsDr. Stephen Henson1-2/+3
2003-10-29A general spring-cleaning (in autumn) to fix up signed/unsigned warnings.Geoff Thorpe1-2/+2