aboutsummaryrefslogtreecommitdiff
path: root/ssl/statem
AgeCommit message (Expand)AuthorFilesLines
2016-03-20Remove #error from include files.Rich Salz2-9/+3
2016-03-09Deprecate the use of version-specific methodsKurt Roeckx1-6/+6
2016-03-09Add support for minimum and maximum protocol version supported by a cipherKurt Roeckx2-13/+11
2016-03-09Add ssl_get_client_min_max_version() functionKurt Roeckx1-18/+43
2016-03-07Lowercase name of SSL_validate_ct as it is an internal functionRob Percival1-1/+1
2016-03-04Adds CT validation to SSL connectionsRob Percival1-0/+9
2016-02-25GH742: keep gost specific variable under macroJ Mohan Rao Arisankala1-0/+4
2016-02-22Remove unused parameters from internal functionsRich Salz2-8/+7
2016-02-18Remove outdated DEBUG flags.Rich Salz2-15/+0
2016-02-17Finish 02f7114a7fbb3f3ac171bae87be8c13bc69e4005David Woodhouse1-1/+1
2016-02-13Free and zero DH/ECDH temporary key after use.Dr. Stephen Henson1-0/+4
2016-02-12Move brace outside #ifdefViktor Dukhovni1-1/+1
2016-02-11Remove static ECDH support.Dr. Stephen Henson2-27/+7
2016-02-11Simplify ssl_cert_type() by taking advantage of X509_get0_pubkeyViktor Dukhovni1-31/+20
2016-02-05GH601: Various spelling fixes.FdaSilvaYY1-2/+2
2016-02-01constify PACKETEmilia Kasper2-13/+23
2016-01-26Remove /* foo.c */ commentsRich Salz7-7/+0
2016-01-24Move pqueue into sslRich Salz1-1/+1
2016-01-20make EVP_PKEY opaqueDr. Stephen Henson3-21/+20
2016-01-19Validate ClientHello session_id field length and send alert on failureAlessandro Ghedini1-0/+12
2016-01-19Support disabling any or all TLS or DTLS versionsViktor Dukhovni1-0/+22
2016-01-12Adapt all EVP_CIPHER_CTX users for it becoming opaqueRichard Levitte2-12/+14
2016-01-10Allow disabling the min and max versionKurt Roeckx1-0/+5
2016-01-07Fix declarations and constification for inline stack.Dr. Stephen Henson2-5/+5
2016-01-02Protocol version selection and negotiation rewriteViktor Dukhovni4-336/+422
2016-01-02Add support for minimum and maximum protocol versionKurt Roeckx2-19/+86
2016-01-01remove invalid freeDr. Stephen Henson1-2/+0
2015-12-31Use X509_get0_pubkey where appropriateDr. Stephen Henson2-23/+11
2015-12-29Convert RSA encrypt to use EVP_PKEYDr. Stephen Henson1-9/+22
2015-12-27Increase the max size limit for a CertificateRequest messageMatt Caswell1-1/+5
2015-12-27Simplify calling of the OCSP callbackMatt Caswell1-1/+1
2015-12-27Fix error when server does not send CertificateStatus messageMatt Caswell1-21/+29
2015-12-24fix no-ecDr. Stephen Henson1-2/+2
2015-12-23Server side EVP_PKEY DH supportDr. Stephen Henson1-40/+55
2015-12-23EVP_PKEY DH client support.Dr. Stephen Henson1-57/+32
2015-12-23Always generate DH keys for ephemeral DH cipher suites.Dr. Stephen Henson1-14/+3
2015-12-23Remove SSL_OP_MICROSOFT_BIG_SSLV3_BUFFER and SSL_OP_TLS_D5_BUG support.Kurt Roeckx1-10/+4
2015-12-23Memory leak in state machine in error pathTodd Short1-1/+1
2015-12-23Fix inline build failureMatt Caswell1-2/+2
2015-12-19Remove fixed DH ciphersuites.Dr. Stephen Henson3-145/+37
2015-12-19delete unused contextDr. Stephen Henson1-2/+0
2015-12-18Remove the "eay" c-file-style indicatorsRichard Levitte1-1/+1
2015-12-16Rename some BUF_xxx to OPENSSL_xxxRich Salz2-7/+5
2015-12-16Use EVP_PKEY for client side EC.Dr. Stephen Henson1-82/+42
2015-12-16Use EVP_PKEY for server EC.Dr. Stephen Henson1-54/+27
2015-12-16remove unnecessary key copyDr. Stephen Henson1-18/+1
2015-12-16Remove ECDH client auth code.Dr. Stephen Henson2-106/+27
2015-12-16Remove SSL_OP_SINGLE_ECDH_USE code.Dr. Stephen Henson1-42/+17
2015-12-16Use EC_KEY_key2buf and EC_oct2key in libssl.Dr. Stephen Henson2-89/+15
2015-12-15Fix compile failure with no-srpMatt Caswell1-1/+7