Various custom extension fixes.
[openssl.git] / ssl / t1_lib.c
2013-09-16 Trevor PerrinVarious custom extension fixes.
2013-09-16 Rob StradlingTidy up comments.
2013-09-16 Rob StradlingUse TLS version supplied by client when fingerprinting...
2013-09-16 Rob StradlingDon't prefer ECDHE-ECDSA ciphers when the client appear...
2013-09-14 Dr. Stephen HensonAdd missing code from SSL_CONF backport.
2013-08-19 Dr. Stephen HensonMake no-ec compilation work.
2013-07-31 TrevorCosmetic touchups.
2013-07-03 TrevorTrying cherrypick:
2013-02-06 Ben LaurieAdd and use a constant-time memcmp.
2013-01-24 Dr. Stephen HensonFix warning: lenmax isn't used any more.
2013-01-19 Ben LaurieMerge branch 'OpenSSL_1_0_2-stable' of openssl.net...
2013-01-19 Ben LaurieRemove extraneous brackets (clang doesn't like them).
2013-01-19 Ben LaurieCan't check a size_t for < 0.
2013-01-15 Dr. Stephen HensonAdd support for broken protocol tests (backport from...
2013-01-15 Dr. Stephen HensonMake whitespace consistent with master branch.
2012-12-26 Dr. Stephen HensonReject zero length ec point format list.
2012-12-26 Dr. Stephen HensonUse client version when deciding which cipher suites...
2012-12-26 Dr. Stephen HensonUse default point formats extension for server side...
2012-12-26 Dr. Stephen Hensonstore and print out message digest peer signed with...
2012-12-26 Dr. Stephen HensonAdd three Suite B modes to TLS code, supporting RFC6460.
2012-12-26 Dr. Stephen HensonMake tls1_check_chain return a set of flags indicating...
2012-12-26 Dr. Stephen HensonAbort handshake if signature algorithm used not support...
2012-12-26 Dr. Stephen Hensoncheck EC tmp key matches preferences
2012-12-26 Dr. Stephen HensonAdd support for certificate stores in CERT structure...
2012-12-26 Dr. Stephen Hensonstop warning
2012-12-26 Dr. Stephen HensonNew function ssl_set_client_disabled to set masks for...
2012-12-26 Dr. Stephen Hensonno need to check s->server as default_nid is never...
2012-12-26 Dr. Stephen HensonSeparate client and server permitted signature algorith...
2012-12-26 Dr. Stephen HensonAdd certificate callback. If set this is called wheneve...
2012-12-26 Dr. Stephen HensonFunction tls1_check_ec_server_key is now redundant...
2012-12-26 Dr. Stephen HensonAdd new "valid_flags" field to CERT_PKEY structure...
2012-12-26 Dr. Stephen HensonReorganise supported signature algorithm extension...
2012-12-26 Dr. Stephen HensonAdd support for application defined signature algorithm...
2012-11-22 Dr. Stephen Hensonreject zero length point format list or supported curve...
2012-09-11 Dr. Stephen HensonMinor enhancement to PR#2836 fix. Instead of modifying...
2012-09-11 Ben LaurieCall OCSP Stapling callback after ciphersuite has been...
2012-07-03 Dr. Stephen Hensonrevert unrelated test code
2012-07-03 Dr. Stephen HensonPR: 2840
2012-06-27 Dr. Stephen Hensondon't use pseudo digests for default values of keys
2012-06-11 Ben LaurieFix memory leak.
2012-06-06 Ben LaurieFix authz parsing.
2012-05-29 Ben LaurieRFC 5878 support.
2012-04-24 Dr. Stephen HensonSubmitted by: Peter Sylvester <peter.sylvester@edelweb.fr>
2012-04-18 Dr. Stephen Hensoncorrect error code
2012-04-06 Dr. Stephen HensonSubmitted by: Peter Sylvester <peter.sylvester@edelweb.fr>
2012-04-06 Dr. Stephen HensonAdd support for automatic ECDH temporary key parameter...
2012-04-06 Dr. Stephen HensonTidy up EC parameter check code: instead of accessing...
2012-04-06 Dr. Stephen HensonInitial revision of ECC extension handling.
2012-04-06 Dr. Stephen HensonNew ctrls to retrieve supported signature algorithms...
2012-03-21 cvs2svnThis commit was manufactured by cvs2svn to create branch
2012-03-21 Dr. Stephen Hensonuse client version when deciding whether to send suppor...
2012-02-27 Dr. Stephen HensonPR: 2739
2012-02-17 Dr. Stephen Hensontypo
2012-02-10 Dr. Stephen HensonPR: 2704
2012-01-22 Dr. Stephen Hensonreturn error if md is NULL
2012-01-05 Dr. Stephen HensonSubmitted by: Robin Seggelmann <seggelmann@fh-muenster.de>
2012-01-04 Dr. Stephen HensonSubmitted by: Adam Langley <agl@chromium.org>
2012-01-03 Dr. Stephen Hensononly send heartbeat extension from server if client...
2011-12-31 Dr. Stephen HensonPR: 2658
2011-12-07 Dr. Stephen Hensonfix error discrepancy
2011-11-24 Ben LaurieDon't send NPN during renegotiation.
2011-11-15 Ben LaurieAdd TLS exporter.
2011-11-15 Ben LaurieAdd DTLS-SRTP.
2011-11-13 Ben LaurieAdd Next Protocol Negotiation.
2011-09-05 Bodo MöllerFix session handling.
2011-06-01 Dr. Stephen Hensontypo
2011-05-30 Dr. Stephen HensonOutput supported curves in preference order instead...
2011-05-25 Dr. Stephen HensonDon't advertise or use MD5 for TLS v1.2 in FIPS mode
2011-05-25 Dr. Stephen Hensonuse TLS1_get_version macro to check version so TLS...
2011-05-21 Dr. Stephen HensonAdd tls12_sigalgs which somehow didn't get added to...
2011-05-20 Dr. Stephen HensonAdd server client certificate support for TLS v1.2...
2011-05-12 Dr. Stephen HensonProcess signature algorithms during TLS v1.2 client...
2011-05-11 Dr. Stephen HensonBackport TLS v1.2 support from HEAD.
2011-03-16 Ben LaurieAdd SRP.
2011-02-08 Bodo MöllerOCSP stapling fix (OpenSSL 0.9.8r/1.0.0d)
2010-11-25 Dr. Stephen HensonPR: 2240
2010-11-25 Dr. Stephen Hensonusing_ecc doesn't just apply to TLSv1
2010-11-17 Dr. Stephen Hensonfix CVE-2010-3864
2010-08-27 Dr. Stephen HensonPR: 1833
2010-08-27 Dr. Stephen Hensonoops, revert previous patch
2010-08-27 Dr. Stephen HensonPR: 1833
2010-06-27 Dr. Stephen HensonBackport TLS v1.1 support from HEAD, ssl/ changes
2010-06-16 cvs2svnThis commit was manufactured by cvs2svn to create branch
2010-06-15 Dr. Stephen HensonFix warnings (From HEAD, original patch by Ben).
2010-02-17 Dr. Stephen HensonAllow renegotiation if SSL_OP_LEGACY_SERVER_CONNECT...
2010-01-07 Dr. Stephen HensonSimplify RI+SCSV logic:
2009-12-17 Dr. Stephen HensonAlert to use is now defined in spec: update code
2009-12-16 Dr. Stephen HensonNew option to enable/disable connection to unpatched...
2009-12-14 Dr. Stephen HensonAllow initial connection (but no renegoriation) to...
2009-12-08 Dr. Stephen HensonAdd support for magic cipher suite value (MCSV). Make...
2009-12-08 Dr. Stephen HensonPR: 2121
2009-11-18 Dr. Stephen HensonInclude a more meaningful error message when rejecting...
2009-11-11 Dr. Stephen Hensonadd missing parts of reneg port, fix apps patch
2009-11-08 Dr. Stephen HensonIf it is a new session don't send the old TLS ticket...
2009-10-30 Dr. Stephen HensonFix statless session resumption so it can coexist with SNI
2009-09-04 Dr. Stephen HensonPR: 2028
2009-04-28 Dr. Stephen HensonPR: 1629
2009-03-31 cvs2svnThis commit was manufactured by cvs2svn to create branch
2008-12-29 Ben LaurieApparently s->ctx could be NULL. (Coverity ID 147).
2008-12-29 Ben LaurieApparently s->ctx could be NULL at this point (see...
next