CT_POLICY_EVAL_CTX_set_time expects milliseconds, but given seconds
[openssl.git] / ssl / statem /
2017-04-25 Matt CaswellDon't attempt to send fragments > max_send_fragment...
2017-04-25 Matt CaswellRemove special case code for SCTP reneg handling
2017-03-30 FdaSilvaYYMore typo fixes
2017-03-28 FdaSilvaYYFix a few more typos
2017-02-04 Bernd EdlingerCombined patch against OpenSSL_1_1_0-stable branch...
2017-02-04 Todd ShortMajority rules, use session_ctx vs initial_ctx
2017-01-28 Richard LevitteCorrect pointer to be freed
2017-01-26 Dr. Stephen HensonUse correct signature algorithm list when sending or...
2017-01-26 Richard LevitteBetter check of DH parameters in TLS data
2017-01-24 Benjamin KadukDo not overallocate for tmp.ciphers_raw
2017-01-24 Matt CaswellFix SSL_get0_raw_cipherlist()
2017-01-23 Matt CaswellStop server from expecting Certificate message when...
2017-01-23 Matt CaswellStop client from sending Certificate message when not...
2017-01-23 Matt CaswellFix SSL_VERIFY_CLIENT_ONCE
2016-12-08 Kurt RoeckxOnly call memcpy when the length is larger than 0.
2016-11-23 Matt CaswellFix missing NULL checks in CKE processing
2016-11-09 EasySecWhen no SRP identity is found, no error was reported...
2016-11-07 Matt CaswellPartial revert of "Fix client verify mode to check...
2016-11-07 Matt CaswellAlways ensure that init_msg is initialised for a CCS
2016-09-29 Matt CaswellFix missing NULL checks in NewSessionTicket construction
2016-09-26 Matt CaswellFix Use After Free for large message sizes
2016-09-22 Dmitry BelyavskyAvoid KCI attack for GOST
2016-09-22 Richard LevitteFix error message typo, wrong function code
2016-09-21 Matt CaswellExcessive allocation of memory in dtls1_preprocess_frag...
2016-09-21 Matt CaswellExcessive allocation of memory in tls_get_message_header()
2016-09-21 Alessandro GhediniUse switch instead of multiple ifs
2016-08-30 Matt CaswellEnsure the CertStatus message adds a DTLS message heade...
2016-08-22 Matt CaswellFix leak on error in tls_construct_cke_gost
2016-08-22 Matt CaswellFix DTLS buffered message DoS attack
2016-08-18 Emilia KasperIndent ssl/
2016-08-17 Dr. Stephen HensonConstify ssl_cert_type()
2016-08-17 Dr. Stephen HensonConvert X509* functions to use const getters
2016-08-15 Dr. Stephen HensonFix no-ec
2016-08-13 Dr. Stephen HensonModify TLS support for new X25519 API.
2016-08-05 klemensspelling fixes, just comments and readme.
2016-08-04 David WoodhouseMake DTLS1_BAD_VER work with DTLS_client_method()
2016-08-04 David WoodhouseFix ossl_statem_client_max_message_size() for DTLS1_BAD_VER
2016-08-01 Ben Lauriepeer_tmp doesn't exist if no-ec no-dh.
2016-07-25 russorzero pad DHE public key in ServerKeyExchange message...
2016-07-23 Richard LevitteCorrect misspelt OPENSSL_NO_SRP
2016-07-22 Dr. Stephen HensonSend alert for bad DH CKE
2016-07-20 Matt CaswellNever expose ssl->bbio in the public API.
2016-07-20 FdaSilvaYYFix a few if(, for(, while( inside code.
2016-07-19 Dr. Stephen HensonSend alert on CKE error.
2016-07-19 Emilia KasperFix two bugs in clienthello processing
2016-07-19 Matt CaswellUpdate error codes following tls_process_key_exchange...
2016-07-19 Matt CaswellTidy up tls_process_key_exchange()
2016-07-19 Matt CaswellSplit out ECDHE from tls_process_key_exchange()
2016-07-19 Matt CaswellSplit out DHE from tls_process_key_exchange()
2016-07-19 Matt CaswellSplit out SRP from tls_process_key_exchange()
2016-07-19 Matt CaswellSplit out the PSK preamble from tls_process_key_exchange()
2016-07-19 Matt CaswellMove the PSK preamble for tls_process_key_exchange()
2016-07-19 Matt CaswellNarrow scope of locals vars in tls_process_key_exchange()
2016-07-19 Matt CaswellRemove sessions from external cache, even if internal...
2016-07-19 Richard LevitteFixup a few SSLerr calls in ssl/statem/
2016-07-18 Matt CaswellRefactor Identity Hint handling
2016-07-18 Matt CaswellFix up error codes after splitting up tls_construct_key...
2016-07-18 Matt CaswellSome tidy ups after the CKE construction refactor
2016-07-18 Matt CaswellSplit out SRP CKE construction into a separate function
2016-07-18 Matt CaswellSplit out GOST CKE construction into a separate function
2016-07-18 Matt CaswellSplit out DHE CKE construction into a separate function
2016-07-18 Matt CaswellSplit out DHE CKE construction into a separate function
2016-07-18 Matt CaswellSplit out CKE construction PSK pre-amble and RSA into...
2016-07-18 Matt CaswellNarrow the scope of local variables in tls_construct_cl...
2016-07-18 Matt CaswellErrors fix up following break up of CKE processing
2016-07-18 Matt CaswellRemove the f_err lable from tls_process_client_key_exch...
2016-07-18 Matt CaswellSplit out GOST from process CKE code
2016-07-18 Matt CaswellSplit out ECDHE from process CKE code
2016-07-18 Matt CaswellSplit out DHE from process CKE code
2016-07-18 Matt CaswellSplit out PSK preamble and RSA from process CKE code
2016-07-18 Matt CaswellReduce the scope of some variables in tls_process_clien...
2016-07-18 Matt CaswellFix formatting in statem_srvr.c based on review feedback
2016-07-18 Matt CaswellTry and make the transition tests for CKE message clearer
2016-07-18 Matt CaswellSimplify key_exchange_expected() logic
2016-07-18 Matt CaswellMake sure we call ssl3_digest_cached_records() when...
2016-07-18 Matt CaswellFix SSLv3 alert if no Client Ceritifcate sent after...
2016-07-18 Matt CaswellPrepare the client certificate earlier
2016-07-15 Dr. Stephen Hensoncheck return values for EVP_Digest*() APIs
2016-07-12 David BenjaminFix DH error-handling in tls_process_key_exchange.
2016-07-01 Matt CaswellAvoid an overflow in constructing the ServerKeyExchange...
2016-06-29 FdaSilvaYYWhitespace cleanup in ssl folder
2016-06-21 David BenjaminMake RSA key exchange code actually constant-time.
2016-06-18 FdaSilvaYYUseless header include of openssl/rand.h
2016-06-15 Richard LevitteDeal with the consequences of constifying getters
2016-06-09 Laszlo KovacsRT3720 Increment session miss counter properly
2016-06-09 Todd ShortFix session ticket and SNI
2016-06-04 Rich SalzRT3895: Remove fprintf's from SSL library.
2016-06-03 Matt CaswellHandle a memory allocation failure in ssl3_init_finishe...
2016-05-20 Matt CaswellEnsure async IO works with new state machine
2016-05-20 David BenjaminTighten up logic around ChangeCipherSpec.
2016-05-20 Matt CaswellSimplify SSL BIO buffering logic
2016-05-18 Viktor DukhovniEnsure verify error is set when X509_verify_cert()...
2016-05-17 Rich SalzCopyright consolidation 01/10
2016-05-17 Matt CaswellFix some out of date comments
2016-05-16 Kurt Roeckxsession tickets: use more sizeof
2016-05-16 TJ SaundersUse AES256 for the default encryption algoritm for...
2016-05-16 TJ Saunderssession tickets: Use sizeof() for the various fields
2016-05-14 Alessandro GhediniIncrement size limit for ClientHello messages
2016-05-13 David BenjaminThe NewSessionTicket message is not optional.
2016-05-11 Matt CaswellMake null_compression const
next