aboutsummaryrefslogtreecommitdiff
path: root/ssl/s3_lib.c
AgeCommit message (Expand)AuthorFilesLines
2015-12-11Make no-dh work, plus other no-dh problems found by Richard.Ben Laurie1-9/+3
2015-12-10Wire ChaCha20-Poly1305 to TLS.Andy Polyakov1-0/+113
2015-12-06Really disable 56-bit (single-DES) ciphersViktor Dukhovni1-96/+0
2015-12-05Remove support for all 40 and 56 bit ciphers.Kurt Roeckx1-477/+223
2015-12-04Remove SSL_{CTX_}set_ecdh_auto() and always enable ECDHKurt Roeckx1-8/+0
2015-12-04Make SSL_{CTX}_set_tmp_ecdh() call SSL_{CTX_}set1_curves()Kurt Roeckx1-32/+25
2015-12-04Remove support for SSL_{CTX_}set_tmp_ecdh_callback().Kurt Roeckx1-24/+0
2015-11-27Updates to GOST2012Matt Caswell1-4/+4
2015-11-25Remove unused cert_verify_mac codeDr. Stephen Henson1-1/+0
2015-11-24ssl3_free(): Return if it wasn't createdPascal Cuoq1-1/+1
2015-11-23Patch containing TLS implementation for GOST 2012Dmitry Belyavsky1-0/+30
2015-11-19Make GOST ciphersuites require TLSv1Dr. Stephen Henson1-2/+2
2015-11-14Don't alow TLS v1.0 ciphersuites for SSLv3Dr. Stephen Henson1-0/+3
2015-11-14Use SSL_TLSV1 only if at least TLS v1.0 is needed.Dr. Stephen Henson1-86/+86
2015-11-09Standardise our style for checking malloc failuresMatt Caswell1-2/+2
2015-11-08Use uint32_t and int32_t for SSL_CIPHER structure.Dr. Stephen Henson1-3/+3
2015-10-30Move in_handshake into STATEMMatt Caswell1-2/+2
2015-10-30Remove extraneous parensMatt Caswell1-1/+1
2015-10-30Change statem prefix to ossl_statemMatt Caswell1-1/+1
2015-10-30Remove redundant codeMatt Caswell1-4/+3
2015-10-30Add initial state machine rewrite codeMatt Caswell1-0/+1
2015-10-11Make no-psk compile without warnings.Dr. Stephen Henson1-1/+2
2015-09-30Change the DEFAULT ciphersuites to exclude DES, RC4 and RC2Matt Caswell1-63/+63
2015-09-02Add and use OPENSSL_zallocRich Salz1-2/+1
2015-08-14Add CCM ciphersuites from RFC6655 and RFC7251Dr. Stephen Henson1-0/+320
2015-08-11Remove Gost94 signature algorithm.Rich Salz1-86/+4
2015-08-10RT3999: Remove sub-component version stringsRich Salz1-2/+0
2015-08-03Move TLS CCS processing into the state machineMatt Caswell1-4/+4
2015-07-30Free and cleanse pms on errorDr. Stephen Henson1-2/+6
2015-07-30CAMELLIA PSK ciphersuites from RFC6367Dr. Stephen Henson1-0/+114
2015-07-30Add RFC4785 ciphersuitesDr. Stephen Henson1-0/+47
2015-07-30Add RFC4279, RFC5487 and RFC5489 ciphersuites.Dr. Stephen Henson1-1/+532
2015-07-30PSK premaster secret derivation.Dr. Stephen Henson1-7/+46
2015-07-30PSK PRF correction.Dr. Stephen Henson1-3/+9
2015-07-30Disable all PSK if no callback.Dr. Stephen Henson1-1/+1
2015-07-27Remove support for SSL3_FLAGS_DELAY_CLIENT_FINISHEDMatt Caswell1-43/+1
2015-06-29Use single master secret generation function.Dr. Stephen Henson1-0/+15
2015-06-23Add PSK GCM ciphersuites from RFC5487Dr. Stephen Henson1-0/+34
2015-06-23Avoid duplication.Dr. Stephen Henson1-3/+0
2015-06-22Remove SESS_CERT entirely.Dr. Stephen Henson1-2/+2
2015-06-22Remove peer temp keys from SESS_CERTDr. Stephen Henson1-9/+22
2015-06-21Revert "Avoid duplication."Dr. Stephen Henson1-0/+3
2015-06-21Avoid duplication.Dr. Stephen Henson1-3/+0
2015-06-21remove unnecessary NULL checksDr. Stephen Henson1-5/+2
2015-06-20typo: should be OPENSSL_freeDr. Stephen Henson1-1/+1
2015-05-22Remove export static DH ciphersuitesMatt Caswell1-2/+2
2015-05-22Remove support for OPENSSL_NO_TLSEXTMatt Caswell1-32/+13
2015-05-19move masks out of CERT structureDr. Stephen Henson1-6/+4
2015-05-18Move certificate validity flags out of CERT.Dr. Stephen Henson1-1/+1
2015-05-18Move signing digest out of CERT.Dr. Stephen Henson1-1/+1