Use AEAD for AES-GCM.
[openssl.git] / ssl /
2013-10-01 Adam LangleyUse AEAD for AES-GCM.
2013-10-01 Adam LangleyAEAD support in ssl/
2013-10-01 Adam LangleyRework tls1_change_cipher_state.
2013-10-01 Ben LaurieRe-add accidentally deleted #endif.
2013-10-01 Ben LaurieMerge remote-tracking branch 'agl/1.0.2alpn' into agl...
2013-09-24 Ben LaurieShow useful errors.
2013-09-24 Ben LaurieMerge remote-tracking branch 'trevp/pempick' into OpenS...
2013-09-20 Ben LaurieMerge remote-tracking branch 'trevp/pemfix' into trev...
2013-09-18 Dr. Stephen HensonDTLS version usage fixes.
2013-09-18 Dr. Stephen HensonDTLS trace support.
2013-09-18 Dr. Stephen HensonSuite B support for DTLS 1.2
2013-09-18 Dr. Stephen HensonAlways return errors in ssl3_get_client_hello
2013-09-18 Dr. Stephen HensonDual DTLS version methods.
2013-09-18 Dr. Stephen HensonEnable TLS 1.2 ciphers in DTLS 1.2.
2013-09-18 Dr. Stephen HensonUpdate fixed DH requirements.
2013-09-18 Dr. Stephen HensonDTLS 1.2 cached record support.
2013-09-18 Dr. Stephen HensonProvisional DTLS 1.2 support.
2013-09-18 Dr. Stephen HensonRemove versions test from dtls1_buffer_message
2013-09-18 Dr. Stephen HensonExtend DTLS method macros.
2013-09-18 Dr. Stephen HensonEnable various DTLS extensions.
2013-09-18 Dr. Stephen HensonUse enc_flags when deciding protocol variations.
2013-09-18 Dr. Stephen HensonUse appropriate versions of SSL3_ENC_METHOD
2013-09-18 Dr. Stephen HensonDTLS revision.
2013-09-17 Bodo MoellerMerge branch 'OpenSSL_1_0_2-stable' of openssl.net...
2013-09-16 Trevor PerrinVarious custom extension fixes.
2013-09-16 Rob StradlingTidy up comments.
2013-09-16 Rob StradlingUse TLS version supplied by client when fingerprinting...
2013-09-16 Rob StradlingFix compilation with no-ec and/or no-tlsext.
2013-09-16 Rob StradlingDon't prefer ECDHE-ECDSA ciphers when the client appear...
2013-09-14 Dr. Stephen HensonAdd missing code from SSL_CONF backport.
2013-09-13 Adam LangleyAdd tests for ALPN functionality.
2013-09-13 Adam LangleySupport ALPN.
2013-08-19 Dr. Stephen HensonMake no-ec compilation work.
2013-08-18 Dr. Stephen HensonReturn 1 when setting ECDH auto mode.
2013-08-13 Michael TuexenDTLS message_sequence number wrong in rehandshake Serve...
2013-08-08 Michael TuexenDTLS handshake fix.
2013-07-31 TrevorCosmetic touchups.
2013-07-03 TrevorTrying cherrypick:
2013-06-04 Ben LaurieHeader needed for SOCK_STREAM on FreeBSD.
2013-06-04 Ben LaurieFix missing/incorrect prototype.
2013-05-15 Andy PolyakovRFC6689 support: add missing commit (git noob alert).
2013-05-15 Andy Polyakovssl/dnssec.c: compilation errors.
2013-05-13 Andy PolyakovInitial support for RFC6689, a.k.a. DANE.
2013-04-08 Dr. Stephen HensonSet s->d1 to NULL after freeing it.
2013-03-19 Dr. Stephen HensonDisable compression for DTLS.
2013-03-18 Michael TuexenAvoid unnecessary fragmentation.
2013-02-26 Dr. Stephen HensonFix error codes.
2013-02-12 David WoodhouseCheck DTLS_BAD_VER for version number.
2013-02-11 Dr. Stephen HensonFix in ssltest is no-ssl2 configured
2013-02-08 Andy Polyakovs3_cbc.c: make CBC_MAC_ROTATE_IN_PLACE universal.
2013-02-08 Andy Polyakovs3_cbc.c: get rid of expensive divisions [from master].
2013-02-08 Andy Polyakovssl/[d1|s3]_pkt.c: harmomize orig_len handling.
2013-02-08 Dr. Stephen HensonFix IV check and padding removal.
2013-02-08 Adam LangleyFix for EXP-RC2-CBC-MD5
2013-02-06 Andy Polyakove_aes_cbc_hmac_sha1.c: address the CBC decrypt timing...
2013-02-06 Andy Polyakovssl/*: remove SSL3_RECORD->orig_len to restore binary...
2013-02-06 Dr. Stephen HensonDon't access EVP_MD_CTX internals directly.
2013-02-06 Andy Polyakovs3/s3_cbc.c: allow for compilations with NO_SHA256...
2013-02-06 Andy Polyakovssl/s3_cbc.c: md_state alignment portability fix.
2013-02-06 Andy Polyakovssl/s3_cbc.c: uint64_t portability fix.
2013-02-06 Dr. Stephen Hensontypo.
2013-02-06 Dr. Stephen HensonTiming fix mitigation for FIPS mode.
2013-02-06 Ben LaurieOops. Add missing file.
2013-02-06 Ben LaurieUpdate DTLS code to match CBC decoding in TLS.
2013-02-06 Ben LaurieDon't crash when processing a zero-length, TLS >= 1...
2013-02-06 Ben LaurieMake CBC decoding constant time.
2013-02-06 Ben LaurieAdd and use a constant-time memcmp.
2013-02-04 Dr. Stephen HensonMerge branch 'OpenSSL_1_0_2-stable' of /home/steve...
2013-02-04 Dr. Stephen HensonFix for trace code: SSL3 doesn't include a length value for
2013-01-24 Dr. Stephen HensonFix warning: lenmax isn't used any more.
2013-01-19 Ben LaurieMerge branch 'OpenSSL_1_0_2-stable' of openssl.net...
2013-01-19 Ben LaurieRemove extraneous brackets (clang doesn't like them).
2013-01-19 Ben LaurieCan't check a size_t for < 0.
2013-01-15 Dr. Stephen Hensonmake update
2013-01-15 Dr. Stephen HensonAdd support for broken protocol tests (backport from...
2013-01-15 Dr. Stephen HensonMake whitespace consistent with master branch.
2012-12-30 Dr. Stephen Hensonstop warning when compiling with no-comp
2012-12-29 Dr. Stephen Hensonadd SSL_CONF functions and documentation (backport...
2012-12-26 Dr. Stephen HensonSSL/TLS record tracing code (backport from HEAD).
2012-12-26 Dr. Stephen HensonReject zero length ec point format list.
2012-12-26 Dr. Stephen Hensonhandle point format list retrieval for clients too...
2012-12-26 Dr. Stephen HensonAdd support for printing out and retrieving EC point...
2012-12-26 Dr. Stephen Hensonreturn error if Suite B mode is selected and TLS 1...
2012-12-26 Dr. Stephen Hensonset auto ecdh parameter selction for Suite B
2012-12-26 Dr. Stephen Hensonadd Suite B 128 bit mode offering only combination 2
2012-12-26 Dr. Stephen HensonUse client version when deciding which cipher suites...
2012-12-26 Dr. Stephen HensonUse default point formats extension for server side...
2012-12-26 Dr. Stephen HensonAdd ctrl and utility functions to retrieve raw cipher...
2012-12-26 Dr. Stephen Hensonnew ctrl to retrive value of received temporary key...
2012-12-26 Dr. Stephen Hensonstore and print out message digest peer signed with...
2012-12-26 Dr. Stephen Hensonperform sanity checks on server certificate type as...
2012-12-26 Dr. Stephen Hensongive more meaningful error if presented with wrong...
2012-12-26 Dr. Stephen HensonAdd three Suite B modes to TLS code, supporting RFC6460.
2012-12-26 Dr. Stephen HensonNew function X509_chain_up_ref to dup and up the refere...
2012-12-26 Dr. Stephen HensonMake tls1_check_chain return a set of flags indicating...
2012-12-26 Dr. Stephen HensonAbort handshake if signature algorithm used not support...
2012-12-26 Dr. Stephen Hensoncheck EC tmp key matches preferences
2012-12-26 Dr. Stephen Hensontypo
2012-12-26 Dr. Stephen HensonAdd support for certificate stores in CERT structure...
2012-12-26 Dr. Stephen Hensonadd ssl_locl.h to err header files, rebuild ssl error...
next