aboutsummaryrefslogtreecommitdiff
path: root/ssl
AgeCommit message (Expand)AuthorFilesLines
2015-12-08update errorsDr. Stephen Henson1-0/+1
2015-12-08Extended master secret fixes and checks.Dr. Stephen Henson3-20/+75
2015-12-07Fix clang complaints about uninitialised variables.Richard Levitte1-2/+2
2015-12-07Cleanup: fix all sources that used EVP_MD_CTX_(create|init|destroy)Richard Levitte8-49/+48
2015-12-07Adapt the rest of the source to the removal of (EVP_MD_CTX|HMAC_CTX)_cleanupRichard Levitte2-2/+2
2015-12-07Adapt the rest of the source to the opaque HMAC_CTXRichard Levitte2-18/+20
2015-12-07Adjust all accesses to EVP_MD_CTX to use accessor functions.Richard Levitte7-143/+184
2015-12-07Adapt HMAC to the EVP_MD_CTX changesRichard Levitte2-2/+2
2015-12-06Really disable 56-bit (single-DES) ciphersViktor Dukhovni1-96/+0
2015-12-05Remove support for all 40 and 56 bit ciphers.Kurt Roeckx10-1052/+284
2015-12-04Remove SSL_{CTX_}set_ecdh_auto() and always enable ECDHKurt Roeckx8-111/+35
2015-12-04Make SSL_{CTX}_set_tmp_ecdh() call SSL_{CTX_}set1_curves()Kurt Roeckx6-72/+43
2015-12-04Remove support for SSL_{CTX_}set_tmp_ecdh_callback().Kurt Roeckx6-57/+4
2015-12-04Fix EAP FAST in the new state machineMatt Caswell1-0/+13
2015-12-04Revert unnecessary SSL_CIPHER_get_bits API changeViktor Dukhovni1-4/+4
2015-12-02Remove legacy sign/verify from EVP_MD.Dr. Stephen Henson1-9/+0
2015-12-01ex_data part 2: doc fixes and CRYPTO_free_ex_index.Rich Salz2-24/+0
2015-11-30Remove GOST special case: handled automatically now.Dr. Stephen Henson1-15/+0
2015-11-30Use digest indices for signature algorithms.Dr. Stephen Henson3-35/+20
2015-11-30For TLS < 1.2 use default digest for client certificateDr. Stephen Henson1-3/+9
2015-11-30Use digest tables for defaults.Dr. Stephen Henson3-10/+11
2015-11-27fix function code discrepancyDr. Stephen Henson2-3/+3
2015-11-27PRF and handshake hash revision.Dr. Stephen Henson6-231/+138
2015-11-27Updates to GOST2012Matt Caswell6-40/+46
2015-11-25Remove unused cert_verify_mac codeDr. Stephen Henson7-47/+0
2015-11-24ssl3_free(): Return if it wasn't createdPascal Cuoq1-1/+1
2015-11-24Use EVP_md5_sha1() to process client verifyDr. Stephen Henson1-130/+44
2015-11-24Use EVP_md5_sha1() to generate client verifyDr. Stephen Henson3-141/+39
2015-11-24Remove RSA exception when generating server key exchange.Dr. Stephen Henson1-37/+0
2015-11-24Remove RSA exception when processing server key exchange.Dr. Stephen Henson1-66/+20
2015-11-24Use MD5+SHA1 for default digest if appropriate.Dr. Stephen Henson1-2/+5
2015-11-23Fix a few missed "if (!ptr)" cleanupsRich Salz1-1/+1
2015-11-23Patch containing TLS implementation for GOST 2012Dmitry Belyavsky9-78/+343
2015-11-21Good hygiene with size_t output argument.Viktor Dukhovni1-1/+1
2015-11-20Rename start_async_job to ssl_start_async_jobMatt Caswell2-8/+8
2015-11-20Clean up libssl async callsMatt Caswell2-109/+90
2015-11-20Fix the error code for SSL_get_async_wait_fd()Matt Caswell1-1/+1
2015-11-20Remove ASYNC_in_job()Matt Caswell1-3/+3
2015-11-20Initial Async notify code changesMatt Caswell1-0/+8
2015-11-20Async clean upsMatt Caswell1-3/+3
2015-11-20Make libssl async awareMatt Caswell4-637/+798
2015-11-20Fix uninitialised variableMatt Caswell1-0/+1
2015-11-20Ensure all EVP calls have their returns checked where appropriateMatt Caswell12-155/+269
2015-11-19Make GOST ciphersuites require TLSv1Dr. Stephen Henson1-2/+2
2015-11-17Add comment explaining why we don't check a return valueMatt Caswell1-0/+6
2015-11-17Remove an NULL ptr deref in an error pathMatt Caswell1-1/+2
2015-11-14Add "TLSv1.0" cipher alias.Dr. Stephen Henson1-0/+1
2015-11-14Don't alow TLS v1.0 ciphersuites for SSLv3Dr. Stephen Henson5-2/+13
2015-11-14Use SSL_TLSV1 only if at least TLS v1.0 is needed.Dr. Stephen Henson2-87/+87
2015-11-13absent identity hint should be NULLDr. Stephen Henson1-1/+4