SWEET32 (CVE-2016-2183): Move DES from HIGH to MEDIUM
[openssl.git] / ssl / s3_lib.c
2016-08-24 Rich SalzSWEET32 (CVE-2016-2183): Move DES from HIGH to MEDIUM
2016-07-19 Dr. Stephen HensonSanity check in ssl_get_algorithm2().
2016-03-07 Kurt RoeckxRemove LOW from the default
2016-03-01 Viktor DukhovniDisable EXPORT and LOW SSLv3+ ciphers by default
2016-02-08 Matt CaswellHandle SSL_shutdown while in init more appropriately #2
2016-01-28 Matt CaswellAlways generate DH keys for ephemeral DH cipher suites
2016-01-20 Matt CaswellHandle SSL_shutdown while in init more appropriately
2016-01-17 Viktor DukhovniEmpty SNI names are not valid
2015-11-24 Pascal Cuoqssl3_free(): Return if it wasn't created
2015-06-20 Dr. Stephen Hensontypo: should be OPENSSL_free
2015-05-22 Matt CaswellRemove export static DH ciphersuites
2015-01-22 Matt CaswellRun util/openssl-format-source -v -c .
2015-01-22 Matt CaswellMore indent fixes for STACK_OF
2014-12-17 Richard LevitteClear warnings/errors within KSSL_DEBUG code sections
2014-12-17 Richard LevitteClear warnings/errors within CIPHER_DEBUG code sections
2014-12-16 Matt CaswellAdd OPENSSL_NO_ECDH guards
2014-10-15 Bodo MoellerSupport TLS_FALLBACK_SCSV.
2014-08-28 Dr. Stephen HensonRemove serverinfo checks.
2014-08-08 Dr. Stephen HensonFix SRP authentication ciphersuites.
2014-06-09 Dr. Stephen HensonSRP ciphersuite correction.
2014-06-09 Dr. Stephen HensonUpdate strength_bits for 3DES.
2014-02-23 Dr. Stephen HensonOption to set current cert to server certificate.
2014-02-09 Ben LaurieMerge branch '102_stable_tlsext_suppdata_changes' of...
2014-02-09 Scott DeboyRe-add alert variables removed during rebase
2014-02-09 Scott DeboyUpdate custom TLS extension and supplemental data ...
2014-02-09 Scott DeboyAdd callbacks supporting generation and retrieval of...
2014-02-05 Dr. Stephen HensonOops, get selection logic right.
2014-02-05 Dr. Stephen HensonReturn per-certificate chain if extra chain is NULL.
2014-02-02 Dr. Stephen HensonNew ctrl to set current certificate.
2013-11-13 Rob StradlingAdditional "chain_cert" functions.
2013-11-06 Dr. Stephen HensonEnable PSK in FIPS mode.
2013-10-05 Ben LaurieMerge branch 'OpenSSL_1_0_2-stable' into pre-aead
2013-10-04 Ben LaurieMerge branch 'OpenSSL_1_0_2-stable' into agl-1.0.2aead
2013-10-04 Ben LaurieMerge branch 'OpenSSL_1_0_2-stable' into agl-1.0.2aead
2013-10-01 Adam Langleychacha20poly1305
2013-10-01 Adam LangleyUse AEAD for AES-GCM.
2013-10-01 Ben LaurieMerge remote-tracking branch 'agl/1.0.2alpn' into agl...
2013-09-18 Dr. Stephen HensonEnable TLS 1.2 ciphers in DTLS 1.2.
2013-09-18 Dr. Stephen HensonUse enc_flags when deciding protocol variations.
2013-09-18 Dr. Stephen HensonDTLS revision.
2013-09-17 Bodo MoellerMerge branch 'OpenSSL_1_0_2-stable' of openssl.net...
2013-09-16 Rob StradlingTidy up comments.
2013-09-16 Rob StradlingFix compilation with no-ec and/or no-tlsext.
2013-09-16 Rob StradlingDon't prefer ECDHE-ECDSA ciphers when the client appear...
2013-09-13 Adam LangleySupport ALPN.
2013-08-19 Dr. Stephen HensonMake no-ec compilation work.
2013-08-18 Dr. Stephen HensonReturn 1 when setting ECDH auto mode.
2013-07-03 TrevorTrying cherrypick:
2013-01-15 Dr. Stephen HensonAdd support for broken protocol tests (backport from...
2012-12-26 Dr. Stephen Hensonhandle point format list retrieval for clients too...
2012-12-26 Dr. Stephen HensonAdd support for printing out and retrieving EC point...
2012-12-26 Dr. Stephen HensonAdd ctrl and utility functions to retrieve raw cipher...
2012-12-26 Dr. Stephen Hensonnew ctrl to retrive value of received temporary key...
2012-12-26 Dr. Stephen Hensonstore and print out message digest peer signed with...
2012-12-26 Dr. Stephen HensonAdd three Suite B modes to TLS code, supporting RFC6460.
2012-12-26 Dr. Stephen HensonAdd support for certificate stores in CERT structure...
2012-12-26 Dr. Stephen HensonAdd new ctrl to retrieve client certificate types,...
2012-12-26 Dr. Stephen HensonSeparate client and server permitted signature algorith...
2012-12-26 Dr. Stephen HensonFunction tls1_check_ec_server_key is now redundant...
2012-12-26 Dr. Stephen HensonAdd new "valid_flags" field to CERT_PKEY structure...
2012-12-26 Dr. Stephen HensonAdd support for application defined signature algorithm...
2012-06-11 Ben LaurieFix memory leak.
2012-06-06 Ben LaurieFix memory leak.
2012-05-29 Ben LaurieRFC 5878 support.
2012-05-10 Dr. Stephen HensonPR: 2806
2012-04-17 Bodo MöllerDisable SHA-2 ciphersuites in < TLS 1.2 connections.
2012-04-06 Dr. Stephen HensonAdd support for automatic ECDH temporary key parameter...
2012-04-06 Dr. Stephen HensonTidy up EC parameter check code: instead of accessing...
2012-04-06 Dr. Stephen HensonInitial revision of ECC extension handling.
2012-04-06 Dr. Stephen HensonNew ctrls to retrieve supported signature algorithms...
2012-04-06 Dr. Stephen HensonAdd support for distinct certificate chains per key...
2012-04-06 Dr. Stephen HensonBackport support for fixed DH ciphersuites (from HEAD)
2012-03-21 cvs2svnThis commit was manufactured by cvs2svn to create branch
2012-02-10 Dr. Stephen HensonPR: 2704
2011-12-31 Dr. Stephen HensonPR: 2658
2011-12-22 Dr. Stephen HensonNew ctrl values to clear or retrieve extra chain certs...
2011-12-14 Dr. Stephen HensonPR: 1794
2011-12-13 Ben LaurieSSL export fixes (from Adam Langley).
2011-11-15 Ben LaurieAdd TLS exporter.
2011-11-13 Ben LaurieAdd Next Protocol Negotiation.
2011-10-13 Bodo MöllerIn ssl3_clear, preserve s3->init_extra along with s3...
2011-09-05 Bodo Möller(EC)DH memory handling fixes.
2011-08-04 Dr. Stephen HensonBackport GCM support from HEAD.
2011-07-25 Dr. Stephen HensonAdd HMAC ECC ciphersuites from RFC5289. Include SHA384...
2011-06-06 Dr. Stephen HensonSet SSL_FIPS flag in ECC ciphersuites.
2011-05-25 Dr. Stephen Hensonuse TLS1_get_version macro to check version so TLS...
2011-05-11 Dr. Stephen HensonBackport TLS v1.2 support from HEAD.
2011-03-16 Ben LaurieAdd SRP.
2010-08-26 Bodo MöllerPatch from PR #1833 was broken: there's no s->s3->new_s...
2010-08-26 Dr. Stephen HensonPR: 1833
2010-06-16 cvs2svnThis commit was manufactured by cvs2svn to create branch
2009-10-16 Dr. Stephen HensonPR: 2072
2009-05-28 Dr. Stephen HensonSubmitted by: Artem Chuprina <ran@cryptocom.ru>
2009-04-23 Dr. Stephen HensonSome no-ec fixes (not complete yet).
2009-04-07 Dr. Stephen HensonUpdate from 0.9.8-stable.
2009-03-31 cvs2svnThis commit was manufactured by cvs2svn to create branch
2008-12-29 Ben LaurieIf we're going to return errors (no matter how stupid...
2008-10-22 Dr. Stephen HensonCreate function of the form OBJ_bsearch_xxx() in bsearc...
2008-10-12 Ben LaurieType-checked (and modern C compliant) OBJ_bsearch.
2008-09-10 Dr. Stephen HensonAdd SSL_FIPS flag for FIPS 140-2 approved ciphersuites...
next