summaryrefslogtreecommitdiff
path: root/lib
AgeCommit message (Expand)Author
2020-09-18Fix potential overflow in CN subject line parsing, thanks toBob Beck
2020-09-17Prepare to provide SSL_get_peer_tmp_key().Joel Sing
2020-09-17Simplify SSL method lookups.Joel Sing
2020-09-17Add a comment saying that the public function NAME_CONSTRAINTS_check(3)Ingo Schwarze
2020-09-17Install the new page SSL_set1_host(3), link to it from relevant places,Ingo Schwarze
2020-09-17Import a manual page for SSL_set1_host(3), which we already have since 6.5,Ingo Schwarze
2020-09-16Apparently some time ago I moved the timeout argument to the final positionMartijn van Duren
2020-09-16simple mdoc(7) fixes:Ingo Schwarze
2020-09-16revert my putting this on a diet. sadly the NAME_CONSTRAINTS_checkBob Beck
2020-09-16Group seal record functions together.Joel Sing
2020-09-16noop NAME_CONSTRAINTS_check stubKinichiro Inoguchi
2020-09-16Import libagentx.Martijn van Duren
2020-09-16Let SSL_CTX_get_ciphers(NULL) return NULL rather than crashIngo Schwarze
2020-09-16Mark SSL_get_cipher_list(3) as deprecated; it is badly misnamed, and thereIngo Schwarze
2020-09-16Avoid memset() before memcpy() for CBB_add_bytes().Joel Sing
2020-09-16Make check in x509_verify_ctx_set_max_signatures() consistent with others.Joel Sing
2020-09-16Dedup code in x509_verify_ctx_new_from_xsc().Joel Sing
2020-09-15The undocumented public function SSL_set_SSL_CTX(3) changes theIngo Schwarze
2020-09-15Split the tls12_record_layer_write_mac() function.Joel Sing
2020-09-15Do not destroy an existing cipher list when ssl_parse_ciphersuites()Ingo Schwarze
2020-09-15Correct a failure case in tls12_record_layer_seal_record_protected()Joel Sing
2020-09-15Create the missing RETURN VALUES section and move the appropriateIngo Schwarze
2020-09-15set error_depth and current_cert to make more legacy callbacks that don't checkBob Beck
2020-09-15Deduplicate the time validation code between the legacy and newBob Beck
2020-09-15ifdef out code that is no longer used in here. once we are certainBob Beck
2020-09-15Cleanup/simplify SSL_set_ssl_method().Joel Sing
2020-09-15Mop up the get_ssl_method function pointer.Joel Sing
2020-09-14Move state initialisation from SSL_clear() to ssl3_clear().Joel Sing
2020-09-14Cleanup and simplify SSL_set_session().Joel Sing
2020-09-14Avoid NULL deref SSL_{,CTX_}set_ciphersuitesTheo Buehler
2020-09-14simplify RETURN VALUES for x509_verify(3) after beck@ made the rulesIngo Schwarze
2020-09-14Add initial man page for new x509_verify chain validatorBob Beck
2020-09-14Set error if we are given an NULL ctx in x509_verify, and set errorBob Beck
2020-09-14nuke a stray spaceTheo Buehler
2020-09-14Fix potential leak when tmpext fails to be added toBob Beck
2020-09-14remove unneeded variable "type".Bob Beck
2020-09-14Don't leak names on successBob Beck
2020-09-14remove unneded variable "time1"Bob Beck
2020-09-14remove unneded variable "time"Bob Beck
2020-09-14fix bug introduced on review where refactor made it possible toBob Beck
2020-09-14re-enable new x509 chain verifier as the defaultBob Beck
2020-09-14Correctly fix double free introduced on review.Bob Beck
2020-09-14Fix double free - review moved the pop_free of roots to x509_verify_ctx_freeBob Beck
2020-09-14revert previous, need to fix a problemBob Beck
2020-09-14Enable the use of the new x509 chain validator by default.Bob Beck
2020-09-13Implement SSL_{CTX_,}set_ciphersuites().Joel Sing
2020-09-13Add new x509 certificate chain validator in x509_verify.cBob Beck
2020-09-13Improve handling of BIO_read()/BIO_write() failures in the TLSv1.3 stack.Joel Sing
2020-09-13Spell out n as en for consistency with other parts of the page.Theo Buehler
2020-09-13%lln is percent ell ell n (not dee).Claudio Jeker