index
:
src
cvs/HEAD
kms/intel
kms/radeon
master
OpenBSD base system
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
lib
/
libssl
Age
Commit message (
Expand
)
Author
2020-03-16
Consistently spell 'unsigned' as 'unsigned int', as style(9) seems
Theo Buehler
2020-03-16
The RFC is clear (section 5.3) that sequence number should never wrap.
Theo Buehler
2020-03-13
Remove dtls1_enc().
Joel Sing
2020-03-13
Correct TLSv1.3 sequence number increment and wrapping check.
Joel Sing
2020-03-13
Ensure that CBB_add_space() always provides zeroed memory.
Joel Sing
2020-03-12
Use calloc() rather than malloc() when allocating initial CBB buffer.
Joel Sing
2020-03-12
Use calloc() rather than malloc() when allocating buffers.
Joel Sing
2020-03-12
Stop overloading the record type for padding length.
Joel Sing
2020-03-12
Use internal versions of SSL3_BUFFER, SSL3_RECORD and DTLS1_RECORD_DATA.
Joel Sing
2020-03-10
Use ctx->hs->secrets rather than the S3I(s) version.
Joel Sing
2020-03-10
Remove some unnecessary handshake enums/functions.
Joel Sing
2020-03-10
Add a return value check to tls13_buffer_extend().
Joel Sing
2020-03-10
Remove the enc function pointers.
Joel Sing
2020-03-06
RFC 8446, section 4.1.3: If a TLSv1.2 client receives a ServerHello for
Theo Buehler
2020-03-06
TLSv1.3 servers that intend to downgrade are required to set the last
Theo Buehler
2020-02-23
The decryption_failed alert must not be sent by compliant implementations.
Theo Buehler
2020-02-23
According to RFC 8446, Section 4.4.4, recipients of incorrect Finished
Theo Buehler
2020-02-21
Remove the s2n macro now that it is finally unused.
Joel Sing
2020-02-21
Convert the SSL/TLS record creation code to CBB.
Joel Sing
2020-02-21
Convert the DTLS header creation code to CBB.
Joel Sing
2020-02-21
Remove some commented code, remove some pointless comments and move some
Joel Sing
2020-02-21
Convert dtls1_build_sequence_number() to CBB.
Joel Sing
2020-02-21
Move l2n/l2n8 into s3_cbc.c, since this is the only code that uses it.
Joel Sing
2020-02-21
Remove prefix_len, since it is always zero.
Joel Sing
2020-02-21
Remove now unused variable.
Joel Sing
2020-02-19
Refactor do_ssl3_write().
Joel Sing
2020-02-18
drop unused include <openssl/curve25519.h>
Theo Buehler
2020-02-16
Avoid potential NULL dereference when parsing a server keyshare extension.
Joel Sing
2020-02-16
Avoid leak for tmp.x25519
Kinichiro Inoguchi
2020-02-15
Move the TLSv1.3 code that interfaces with the legacy APIs/stack into a
Joel Sing
2020-02-15
Remove #include that is not needed.
Joel Sing
2020-02-06
Re-enable the TLSv1.3 client since the known issues have been addressed.
Joel Sing
2020-02-06
Add a workaround to make SSL_set_session() work with TLSv1.3.
Joel Sing
2020-02-06
Add support for handling hello retry requests in the TLSv1.3 client.
Joel Sing
2020-02-06
Correctly handle key share extensions in a hello retry request.
Joel Sing
2020-02-05
Refactor the server hello processing code in the TLSv1.3 client.
Joel Sing
2020-02-05
Remove the hello retry request processing code that was previously added.
Joel Sing
2020-02-05
Provide tls1_transcript_unfreeze() to avoid the need for manual flags
Joel Sing
2020-02-05
Pull the handshake message transcript code into its own function.
Joel Sing
2020-02-05
Rework tls13_legacy_handshake_message_{recv,sent}_cb() to use
Theo Buehler
2020-02-04
Add support for TLSv1.3 key shares with secp256r1 and secp384r1 groups.
Joel Sing
2020-02-04
Free the transcript as soon as we initialise the transcript hash.
Joel Sing
2020-02-01
Correctly unpack client key shares.
Joel Sing
2020-02-01
Disable TLSv1.3 client while some known issues are being addressed.
Joel Sing
2020-01-30
Provide struct/functions for handling TLSv1.3 key shares.
Joel Sing
2020-01-30
Factor out/rewrite the ECDHE EC point key exchange code.
Joel Sing
2020-01-29
Remove dead prototypes.
Joel Sing
2020-01-29
If the TLSv1.3 code has not recorded an error and something already exists
Joel Sing
2020-01-29
Remove unused stub implementation of tls13_accept(). The correct
Theo Buehler
2020-01-26
Fix SSL_CIPHER_description
Kinichiro Inoguchi
[next]