Call RAND_cleanup in openssl application.
[openssl.git] / ssl /
2013-03-19 Dr. Stephen HensonDisable compression for DTLS.
2013-03-18 Michael TuexenAvoid unnecessary fragmentation.
2013-02-26 Dr. Stephen HensonFix error codes.
2013-02-12 David WoodhouseCheck DTLS_BAD_VER for version number.
2013-02-11 Dr. Stephen HensonFix in ssltest is no-ssl2 configured
2013-02-08 Andy Polyakovs3_cbc.c: make CBC_MAC_ROTATE_IN_PLACE universal.
2013-02-08 Andy Polyakovs3_cbc.c: get rid of expensive divisions [from master].
2013-02-08 Andy Polyakovssl/[d1|s3]_pkt.c: harmomize orig_len handling.
2013-02-08 Dr. Stephen HensonFix IV check and padding removal.
2013-02-08 Adam LangleyFix for EXP-RC2-CBC-MD5
2013-02-06 Andy Polyakove_aes_cbc_hmac_sha1.c: address the CBC decrypt timing...
2013-02-06 Andy Polyakovssl/*: remove SSL3_RECORD->orig_len to restore binary...
2013-02-06 Dr. Stephen HensonDon't access EVP_MD_CTX internals directly.
2013-02-06 Andy Polyakovs3/s3_cbc.c: allow for compilations with NO_SHA256...
2013-02-06 Andy Polyakovssl/s3_cbc.c: md_state alignment portability fix.
2013-02-06 Andy Polyakovssl/s3_cbc.c: uint64_t portability fix.
2013-02-06 Dr. Stephen Hensontypo.
2013-02-06 Dr. Stephen HensonTiming fix mitigation for FIPS mode.
2013-02-06 Ben LaurieOops. Add missing file.
2013-02-06 Ben LaurieUpdate DTLS code to match CBC decoding in TLS.
2013-02-06 Ben LaurieDon't crash when processing a zero-length, TLS >= 1...
2013-02-06 Ben LaurieMake CBC decoding constant time.
2013-02-06 Ben LaurieAdd and use a constant-time memcmp.
2013-02-04 Dr. Stephen HensonMerge branch 'OpenSSL_1_0_2-stable' of /home/steve...
2013-02-04 Dr. Stephen HensonFix for trace code: SSL3 doesn't include a length value for
2013-01-24 Dr. Stephen HensonFix warning: lenmax isn't used any more.
2013-01-19 Ben LaurieMerge branch 'OpenSSL_1_0_2-stable' of openssl.net...
2013-01-19 Ben LaurieRemove extraneous brackets (clang doesn't like them).
2013-01-19 Ben LaurieCan't check a size_t for < 0.
2013-01-15 Dr. Stephen Hensonmake update
2013-01-15 Dr. Stephen HensonAdd support for broken protocol tests (backport from...
2013-01-15 Dr. Stephen HensonMake whitespace consistent with master branch.
2012-12-30 Dr. Stephen Hensonstop warning when compiling with no-comp
2012-12-29 Dr. Stephen Hensonadd SSL_CONF functions and documentation (backport...
2012-12-26 Dr. Stephen HensonSSL/TLS record tracing code (backport from HEAD).
2012-12-26 Dr. Stephen HensonReject zero length ec point format list.
2012-12-26 Dr. Stephen Hensonhandle point format list retrieval for clients too...
2012-12-26 Dr. Stephen HensonAdd support for printing out and retrieving EC point...
2012-12-26 Dr. Stephen Hensonreturn error if Suite B mode is selected and TLS 1...
2012-12-26 Dr. Stephen Hensonset auto ecdh parameter selction for Suite B
2012-12-26 Dr. Stephen Hensonadd Suite B 128 bit mode offering only combination 2
2012-12-26 Dr. Stephen HensonUse client version when deciding which cipher suites...
2012-12-26 Dr. Stephen HensonUse default point formats extension for server side...
2012-12-26 Dr. Stephen HensonAdd ctrl and utility functions to retrieve raw cipher...
2012-12-26 Dr. Stephen Hensonnew ctrl to retrive value of received temporary key...
2012-12-26 Dr. Stephen Hensonstore and print out message digest peer signed with...
2012-12-26 Dr. Stephen Hensonperform sanity checks on server certificate type as...
2012-12-26 Dr. Stephen Hensongive more meaningful error if presented with wrong...
2012-12-26 Dr. Stephen HensonAdd three Suite B modes to TLS code, supporting RFC6460.
2012-12-26 Dr. Stephen HensonNew function X509_chain_up_ref to dup and up the refere...
2012-12-26 Dr. Stephen HensonMake tls1_check_chain return a set of flags indicating...
2012-12-26 Dr. Stephen HensonAbort handshake if signature algorithm used not support...
2012-12-26 Dr. Stephen Hensoncheck EC tmp key matches preferences
2012-12-26 Dr. Stephen Hensontypo
2012-12-26 Dr. Stephen HensonAdd support for certificate stores in CERT structure...
2012-12-26 Dr. Stephen Hensonadd ssl_locl.h to err header files, rebuild ssl error...
2012-12-26 Dr. Stephen Hensonset ciphers to NULL before calling cert_cb
2012-12-26 Dr. Stephen Hensonstop warning
2012-12-26 Dr. Stephen HensonNew function ssl_set_client_disabled to set masks for...
2012-12-26 Dr. Stephen HensonAdd new ctrl to retrieve client certificate types,...
2012-12-26 Dr. Stephen Hensonnew function SSL_is_server to which returns 1 is the...
2012-12-26 Dr. Stephen Hensonno need to check s->server as default_nid is never...
2012-12-26 Dr. Stephen HensonSeparate client and server permitted signature algorith...
2012-12-26 Dr. Stephen HensonAdd certificate callback. If set this is called wheneve...
2012-12-26 Dr. Stephen HensonFunction tls1_check_ec_server_key is now redundant...
2012-12-26 Dr. Stephen HensonAdd new "valid_flags" field to CERT_PKEY structure...
2012-12-26 Dr. Stephen HensonReorganise supported signature algorithm extension...
2012-12-26 Dr. Stephen HensonAdd support for application defined signature algorithm...
2012-12-26 Dr. Stephen HensonMake it possible to delete all certificates from an...
2012-12-20 Dr. Stephen Hensonoops, revert
2012-12-20 Dr. Stephen Hensonapps/ocsp.c
2012-11-26 Dr. Stephen Hensonchange inaccurate error message
2012-11-22 Dr. Stephen Hensonreject zero length point format list or supported curve...
2012-11-15 Dr. Stephen Hensonadd "missing" TLSv1.2 cipher alias
2012-09-21 Richard Levitte* ssl/t1_enc.c (tls1_change_cipher_state): Stupid bug...
2012-09-11 Dr. Stephen HensonMinor enhancement to PR#2836 fix. Instead of modifying...
2012-09-11 Ben LaurieCall OCSP Stapling callback after ciphersuite has been...
2012-07-03 Dr. Stephen Hensonrevert unrelated test code
2012-07-03 Dr. Stephen HensonPR: 2840
2012-06-27 Dr. Stephen Hensondon't use pseudo digests for default values of keys
2012-06-11 Ben LaurieFix memory leak.
2012-06-07 Ben LaurieRearrange and test authz extension.
2012-06-06 Ben LaurieFix memory leak.
2012-06-06 Ben LaurieFix authz parsing.
2012-06-06 Ben LaurieVersion skew reduction.
2012-06-03 Ben LaurieReduce version skew: trivia (I hope).
2012-05-29 Ben LaurieDon't insert in the middle.
2012-05-29 Ben LaurieRFC 5878 support.
2012-05-16 Andy Polyakovs2_clnt.c: compensate for compiler bug [from HEAD].
2012-05-11 Dr. Stephen HensonPR: 2811
2012-05-10 Dr. Stephen HensonPR: 2806
2012-05-10 Dr. Stephen HensonSanity check record length before skipping explicit...
2012-05-10 Richard LevitteDon't forget to install srtp.h as well
2012-04-26 Dr. Stephen HensonDon't try to use unvalidated composite ciphers in FIPS...
2012-04-25 Dr. Stephen HensonChange value of SSL_OP_NO_TLSv1_1 to avoid clash with...
2012-04-25 Andy Polyakovs23_clnt.c: ensure interoperability by maitaining clien...
2012-04-24 Dr. Stephen HensonSubmitted by: Peter Sylvester <peter.sylvester@edelweb.fr>
2012-04-18 Dr. Stephen Hensonrecognise X9.42 DH certificates on servers
2012-04-18 Dr. Stephen Hensoncorrect error code
2012-04-17 Bodo MöllerDisable SHA-2 ciphersuites in < TLS 1.2 connections.
next