aboutsummaryrefslogtreecommitdiff
path: root/ssl
AgeCommit message (Expand)AuthorFilesLines
2007-10-05Prohibit RC4 in DTLS.Andy Polyakov2-1/+22
2007-10-04Off by one fix from stable branch.Dr. Stephen Henson1-11/+11
2007-10-01Oops! This was erroneously left out commit #16632.Andy Polyakov1-1/+1
2007-09-30Basic idea behind explicit IV is to make it unpredictable for attacker.Andy Polyakov1-2/+9
2007-09-30Make ChangeCipherSpec compliant with DTLS RFC4347.Andy Polyakov2-38/+28
2007-09-30DTLS RFC4347 says HelloVerifyRequest resets Finished MAC.Andy Polyakov2-2/+7
2007-09-30DTLS RFC4347 requires client to use rame random field in reply toAndy Polyakov1-6/+16
2007-09-30Switch to RFC-compliant version encoding in DTLS.Andy Polyakov4-17/+16
2007-09-28Move no status notification to ssl_check_serverhello_tlsext() to ensureDr. Stephen Henson1-29/+29
2007-09-26Support for certificate status TLS extension.Dr. Stephen Henson12-6/+514
2007-09-23Use accept flag for new session ticket write.Dr. Stephen Henson1-2/+2
2007-09-23properly handle length-zero opaque PRF input valuesBodo Möller2-6/+20
2007-09-21Implement the Opaque PRF Input TLS extensionBodo Möller12-89/+469
2007-09-19Fix indentation in d1_both.c.Andy Polyakov1-558/+557
2007-09-19Fix dependencies. Make depend.Ben Laurie1-48/+50
2007-09-19The other half of make errors.Ben Laurie1-0/+1
2007-09-19make errors.Ben Laurie1-0/+1
2007-09-19fix warningBodo Möller1-1/+1
2007-09-19Clean up error codes a bit.Bodo Möller2-15/+12
2007-09-17Update from stable branch.Dr. Stephen Henson1-0/+5
2007-09-07Change safestack reimplementation to match 0.9.8.Dr. Stephen Henson4-5/+5
2007-09-07Fix warnings: computed value not use, incompatible pointer initializationDr. Stephen Henson3-7/+9
2007-08-31Update ssl code to support digests other than MD5+SHA1 in handshake.Dr. Stephen Henson17-217/+414
2007-08-31Check return code when attempting to receive new session ticket message.Dr. Stephen Henson1-0/+1
2007-08-28Add ctrls to set and get RFC4507bis keys to enable several contexts toDr. Stephen Henson4-0/+34
2007-08-20Use SHA256 for ticket HMAC if possible.Dr. Stephen Henson3-3/+8
2007-08-12OPENSSL_NO_TLS1 WIN32 build support. Fix so normal build works again.Dr. Stephen Henson1-97/+97
2007-08-12Fix warning and make no-tlsext work.Dr. Stephen Henson5-100/+107
2007-08-12Typo.Dr. Stephen Henson1-1/+1
2007-08-12Fix warnings.Dr. Stephen Henson1-1/+1
2007-08-12Remove debugging fprintfs, fix typo.Dr. Stephen Henson2-5/+1
2007-08-11RFC4507 (including RFC4507bis) TLS stateless session resumption supportDr. Stephen Henson14-22/+604
2007-06-07Finish gcc 4.2 changes.Dr. Stephen Henson2-8/+3
2007-06-04Update ssl library to support EVP_PKEY MAC API. Include generic MAC support.Dr. Stephen Henson17-65/+237
2007-04-24fix function codes for errorBodo Möller5-8/+14
2007-04-24All ciphersuites should have a strength designator.Bodo Möller1-10/+10
2007-04-23Add SEED encryption algorithm.Bodo Möller6-3/+136
2007-04-05Don't use a negative number as a length. Coverity ID 57.Ben Laurie1-2/+4
2007-03-23Stage 1 GOST ciphersuite support.Dr. Stephen Henson3-2/+28
2007-03-21stricter session ID context matchingBodo Möller1-21/+23
2007-02-22Fix incorrect substitution that happened during the recent ciphersuiteBodo Möller1-1/+1
2007-02-21prefer SHA1 over MD5 (this affects the Kerberos ciphersuites)Bodo Möller1-2/+5
2007-02-21delete obsolete commentBodo Möller1-4/+1
2007-02-20SSL_kKRB5 ciphersuites shouldn't be preferred by defaultBodo Möller1-0/+1
2007-02-20Improve ciphersuite order stability when disabling ciphersuites.Bodo Möller1-20/+77
2007-02-20fix a typo in the new ciphersuite ordering codeBodo Möller1-2/+3
2007-02-19Include "!eNULL" in SSL_DEFAULT_CIPHER_LIST to make sure that aBodo Möller2-2/+42
2007-02-19fix warnings for CIPHER_DEBUG buildsBodo Möller2-25/+25
2007-02-19fix warnings/inconsistencies caused by the recent changes to theBodo Möller5-7/+11
2007-02-19fix incorrect strength bit values for certain Kerberos ciphersuitesBodo Möller1-4/+4