split_send_fragment should always be less than or equal to max_send_fragment
[openssl.git] / ssl / statem /
2016-04-22 Matt CaswellDon't set peer_tmp until we have finished constructing it
2016-04-09 Matt CaswellMake DH opaque
2016-04-07 Viktor DukhovniSuppress CT callback as appropriate
2016-04-07 Viktor DukhovniFix client verify mode to check SSL_VERIFY_PEER
2016-04-07 David BenjaminFix memory leak on invalid CertificateRequest.
2016-04-04 Rich SalzRevert "various spelling fixes"
2016-04-04 Rich SalzRevert "Fix an error code spelling."
2016-04-04 FdaSilvaYYFix an error code spelling.
2016-04-04 FdaSilvaYYvarious spelling fixes
2016-03-27 David BenjaminResolve DTLS cookie and version before session resumption.
2016-03-27 Fedor IndutnyAllow different protocol version when trying to reuse...
2016-03-22 Ben LaurieMove declaration of i into blocks where it is used.
2016-03-20 Rich SalzRemove #error from include files.
2016-03-09 Kurt RoeckxDeprecate the use of version-specific methods
2016-03-09 Kurt RoeckxAdd support for minimum and maximum protocol version...
2016-03-09 Kurt RoeckxAdd ssl_get_client_min_max_version() function
2016-03-07 Rob PercivalLowercase name of SSL_validate_ct as it is an internal...
2016-03-04 Rob PercivalAdds CT validation to SSL connections
2016-02-25 J Mohan Rao ArisankalaGH742: keep gost specific variable under macro
2016-02-22 Rich SalzRemove unused parameters from internal functions
2016-02-18 Rich SalzRemove outdated DEBUG flags.
2016-02-17 David WoodhouseFinish 02f7114a7fbb3f3ac171bae87be8c13bc69e4005
2016-02-13 Dr. Stephen HensonFree and zero DH/ECDH temporary key after use.
2016-02-12 Viktor DukhovniMove brace outside #ifdef
2016-02-11 Dr. Stephen HensonRemove static ECDH support.
2016-02-11 Viktor DukhovniSimplify ssl_cert_type() by taking advantage of X509_ge...
2016-02-05 FdaSilvaYYGH601: Various spelling fixes.
2016-02-01 Emilia Kasperconstify PACKET
2016-01-26 Rich SalzRemove /* foo.c */ comments
2016-01-24 Rich SalzMove pqueue into ssl
2016-01-20 Dr. Stephen Hensonmake EVP_PKEY opaque
2016-01-19 Alessandro GhediniValidate ClientHello session_id field length and send...
2016-01-19 Viktor DukhovniSupport disabling any or all TLS or DTLS versions
2016-01-12 Richard LevitteAdapt all EVP_CIPHER_CTX users for it becoming opaque
2016-01-10 Kurt RoeckxAllow disabling the min and max version
2016-01-07 Dr. Stephen HensonFix declarations and constification for inline stack.
2016-01-02 Viktor DukhovniProtocol version selection and negotiation rewrite
2016-01-02 Kurt RoeckxAdd support for minimum and maximum protocol version
2016-01-01 Dr. Stephen Hensonremove invalid free
2015-12-31 Dr. Stephen HensonUse X509_get0_pubkey where appropriate
2015-12-29 Dr. Stephen HensonConvert RSA encrypt to use EVP_PKEY
2015-12-27 Matt CaswellIncrease the max size limit for a CertificateRequest...
2015-12-27 Matt CaswellSimplify calling of the OCSP callback
2015-12-27 Matt CaswellFix error when server does not send CertificateStatus...
2015-12-24 Dr. Stephen Hensonfix no-ec
2015-12-23 Dr. Stephen HensonServer side EVP_PKEY DH support
2015-12-23 Dr. Stephen HensonEVP_PKEY DH client support.
2015-12-23 Dr. Stephen HensonAlways generate DH keys for ephemeral DH cipher suites.
2015-12-23 Kurt RoeckxRemove SSL_OP_MICROSOFT_BIG_SSLV3_BUFFER and SSL_OP_TLS...
2015-12-23 Todd ShortMemory leak in state machine in error path
2015-12-23 Matt CaswellFix inline build failure
2015-12-19 Dr. Stephen HensonRemove fixed DH ciphersuites.
2015-12-19 Dr. Stephen Hensondelete unused context
2015-12-18 Richard LevitteRemove the "eay" c-file-style indicators
2015-12-16 Rich SalzRename some BUF_xxx to OPENSSL_xxx
2015-12-16 Dr. Stephen HensonUse EVP_PKEY for client side EC.
2015-12-16 Dr. Stephen HensonUse EVP_PKEY for server EC.
2015-12-16 Dr. Stephen Hensonremove unnecessary key copy
2015-12-16 Dr. Stephen HensonRemove ECDH client auth code.
2015-12-16 Dr. Stephen HensonRemove SSL_OP_SINGLE_ECDH_USE code.
2015-12-16 Dr. Stephen HensonUse EC_KEY_key2buf and EC_oct2key in libssl.
2015-12-15 Matt CaswellFix compile failure with no-srp
2015-12-13 Dr. Stephen Hensonfix warning
2015-12-13 Dr. Stephen Hensonremove ancient SSLeay bug workaround
2015-12-13 tjmaoAllow ChaCha20-Poly1305 in DTLS
2015-12-13 Rich SalzRevert "Allow ChaCha20-Poly1305 in DTLS"
2015-12-11 Rich SalzAllow ChaCha20-Poly1305 in DTLS
2015-12-11 Ben LaurieMake no-dh work, plus other no-dh problems found by...
2015-12-10 Matt CaswellEnsure |rwstate| is set correctly on BIO_flush
2015-12-10 Matt CaswellFix DTLS handshake fragment retries
2015-12-09 Richard LevitteFix warnings about unused variables when EC is disabled.
2015-12-07 Richard LevitteCleanup: fix all sources that used EVP_MD_CTX_(create...
2015-12-07 Richard LevitteAdapt the rest of the source to the opaque HMAC_CTX
2015-12-07 Richard LevitteAdjust all accesses to EVP_MD_CTX to use accessor funct...
2015-12-07 Richard LevitteAdapt HMAC to the EVP_MD_CTX changes
2015-12-05 Kurt RoeckxRemove support for all 40 and 56 bit ciphers.
2015-12-04 Kurt RoeckxRemove SSL_{CTX_}set_ecdh_auto() and always enable...
2015-12-04 Kurt RoeckxMake SSL_{CTX}_set_tmp_ecdh() call SSL_{CTX_}set1_curves()
2015-12-04 Kurt RoeckxRemove support for SSL_{CTX_}set_tmp_ecdh_callback().
2015-12-04 Matt CaswellFix EAP FAST in the new state machine
2015-11-30 Dr. Stephen HensonFor TLS < 1.2 use default digest for client certificate
2015-11-27 Matt CaswellUpdates to GOST2012
2015-11-24 Dr. Stephen HensonUse EVP_md5_sha1() to process client verify
2015-11-24 Dr. Stephen HensonUse EVP_md5_sha1() to generate client verify
2015-11-24 Dr. Stephen HensonRemove RSA exception when generating server key exchange.
2015-11-24 Dr. Stephen HensonRemove RSA exception when processing server key exchange.
2015-11-23 Dmitry BelyavskyPatch containing TLS implementation for GOST 2012
2015-11-20 Matt CaswellFix uninitialised variable
2015-11-20 Matt CaswellEnsure all EVP calls have their returns checked where...
2015-11-14 Dr. Stephen HensonDon't alow TLS v1.0 ciphersuites for SSLv3
2015-11-13 Dr. Stephen Hensonabsent identity hint should be NULL
2015-11-09 Matt CaswellStandardise our style for checking malloc failures
2015-11-06 Matt CaswellFix compilation problems with SCTP
2015-11-06 Matt CaswellRemove some redundant assignments
2015-11-06 Matt CaswellDon't finish the handshake twice
2015-10-30 Matt CaswellAdd SRP and PSK to disallowed CertificateRequest cipher...
2015-10-30 Matt CaswellRemove the inline keyword
2015-10-30 Matt CaswellRemove superfluous check
2015-10-30 Matt CaswellChange snprintf to memcpy
2015-10-30 Matt CaswellAdd ossl_statem prefix to various functions
next