aboutsummaryrefslogtreecommitdiff
path: root/ssl/s3_lib.c
AgeCommit message (Expand)AuthorFilesLines
2012-07-08Add new ctrl to retrieve client certificate types, print outDr. Stephen Henson1-7/+115
2012-07-03Separate client and server permitted signature algorithm support: by defaultDr. Stephen Henson1-4/+16
2012-06-28Function tls1_check_ec_server_key is now redundant as we makeDr. Stephen Henson1-4/+0
2012-06-28Add new "valid_flags" field to CERT_PKEY structure which determines whatDr. Stephen Henson1-0/+2
2012-06-22Add support for application defined signature algorithms for use withDr. Stephen Henson1-0/+12
2012-06-11Fix memory leak.Ben Laurie1-0/+7
2012-06-06Fix memory leak.Ben Laurie1-0/+4
2012-05-30RFC 5878 support.Ben Laurie1-0/+11
2012-05-10PR: 2806Dr. Stephen Henson1-8/+8
2012-04-17Disable SHA-2 ciphersuites in < TLS 1.2 connections.Bodo Möller1-13/+13
2012-04-05Add support for automatic ECDH temporary key parameter selection. WhenDr. Stephen Henson1-1/+7
2012-04-04Tidy up EC parameter check code: instead of accessing internal structuresDr. Stephen Henson1-159/+8
2012-03-28Initial revision of ECC extension handling.Dr. Stephen Henson1-1/+25
2012-03-14oops, revert unrelated patchesDr. Stephen Henson1-88/+0
2012-03-14update FAQ, NEWSDr. Stephen Henson1-0/+88
2012-03-06New ctrls to retrieve supported signature algorithms and curves andDr. Stephen Henson1-0/+26
2012-02-22SSL export fixes (from Adam Langley) [original from 1.0.1]Dr. Stephen Henson1-2/+2
2012-02-10PR: 2704Dr. Stephen Henson1-1/+1
2012-01-31Add support for distinct certificate chains per key type and per SSLDr. Stephen Henson1-0/+29
2012-01-16Support for fixed DH ciphersuites.Dr. Stephen Henson1-24/+24
2011-12-31PR: 2658Dr. Stephen Henson1-0/+21
2011-12-22New ctrl values to clear or retrieve extra chain certs from an SSL_CTX.Dr. Stephen Henson1-0/+12
2011-12-14PR: 1794Dr. Stephen Henson1-4/+0
2011-11-15Add TLS exporter.Ben Laurie1-0/+3
2011-10-13In ssl3_clear, preserve s3->init_extra along with s3->rbuf.Bodo Möller1-0/+3
2011-09-05(EC)DH memory handling fixes.Bodo Möller1-0/+6
2011-08-03Expand range of ctrls for AES GCM to support retrieval and setting ofDr. Stephen Henson1-0/+324
2011-07-25oops, remove debug optionDr. Stephen Henson1-2/+0
2011-07-25Add HMAC ECC ciphersuites from RFC5289. Include SHA384 PRF support andDr. Stephen Henson1-0/+141
2011-06-06Set SSL_FIPS flag in ECC ciphersuites.Dr. Stephen Henson1-20/+20
2011-05-25use TLS1_get_version macro to check version so TLS v1.2 changes don't interfe...Dr. Stephen Henson1-1/+1
2011-04-29Initial incomplete TLS v1.2 support. New ciphersuites added, new versionDr. Stephen Henson1-0/+228
2011-03-12Add SRP support.Ben Laurie1-0/+213
2010-09-05Fixes to NPN from Adam Langley.Ben Laurie1-1/+1
2010-08-26Patch from PR #1833 was broken: there's no s->s3->new_sessionBodo Möller1-2/+10
2010-08-26PR: 1833Dr. Stephen Henson1-0/+1
2010-07-28Add Next Protocol Negotiation.Ben Laurie1-0/+9
2009-10-16PR: 2072Dr. Stephen Henson1-0/+1
2009-05-28Update from 1.0.0-stable.Dr. Stephen Henson1-0/+12
2009-04-23Merge from 1.0.0-stable branch.Dr. Stephen Henson1-4/+2
2009-04-07Changes from 1.0.0-stable.Dr. Stephen Henson1-1/+16
2008-12-29If we're going to return errors (no matter how stupid), then we shouldBen Laurie1-1/+1
2008-10-22Create function of the form OBJ_bsearch_xxx() in bsearch typesafe macrosDr. Stephen Henson1-2/+1
2008-10-12Type-checked (and modern C compliant) OBJ_bsearch.Ben Laurie1-7/+6
2008-09-10Add SSL_FIPS flag for FIPS 140-2 approved ciphersuites and add a newDr. Stephen Henson1-20/+20
2008-06-03Memory saving patch.Ben Laurie1-2/+2
2008-04-30Update from stable branch.Dr. Stephen Henson1-0/+7
2007-10-261. Changes for s_client.c to make it return non-zero exit code in caseDr. Stephen Henson1-1/+57
2007-09-26Support for certificate status TLS extension.Dr. Stephen Henson1-0/+46
2007-09-23properly handle length-zero opaque PRF input valuesBodo Möller1-1/+4