Nils Larsch
|
f71165b556
|
fix no-dh configure option; patch supplied by Peter Meerwald
|
2006-02-24 17:58:43 +00:00 |
|
Bodo Möller
|
e67ed82877
|
move new member of SSL_SESSION to the end
(minimize changes to binary format)
Submitted by: Peter Sylvester
|
2006-02-07 14:26:43 +00:00 |
|
Dr. Stephen Henson
|
15ac971681
|
Update filenames in makefiles.
|
2006-02-04 01:45:59 +00:00 |
|
Nils Larsch
|
8c5a2bd6bb
|
add additional checks + cleanup
Submitted by: David Hartman <david_hartman@symantec.com>
|
2006-01-29 23:12:22 +00:00 |
|
Nils Larsch
|
00fe865dbe
|
recent changes from 0.9.8: fix cipher list order in s3_lib.c,
make "no-ssl2" work again
PR: 1217
|
2006-01-15 17:35:28 +00:00 |
|
Richard Levitte
|
6b9e941ee3
|
signed vs. unsigned clash.
|
2006-01-14 11:49:24 +00:00 |
|
Bodo Möller
|
58ece83395
|
Further TLS extension improvements
Submitted by: Peter Sylvester
|
2006-01-13 09:21:10 +00:00 |
|
Bodo Möller
|
6ad47e83b4
|
improvements for alert handling
|
2006-01-11 07:18:35 +00:00 |
|
Bodo Möller
|
241520e66d
|
More TLS extension related changes.
Submitted by: Peter Sylvester
|
2006-01-11 06:10:40 +00:00 |
|
Bodo Möller
|
a13c20f603
|
Further TLS extension updates
Submitted by: Peter Sylvester
|
2006-01-09 19:49:05 +00:00 |
|
Bodo Möller
|
51eb1b81f6
|
Avoid contradictive error code assignments.
"make errors".
|
2006-01-08 21:54:24 +00:00 |
|
Bodo Möller
|
739a543ea8
|
Some error code cleanups (SSL lib. used SSL_R_... codes reserved for alerts)
|
2006-01-08 19:42:30 +00:00 |
|
Bodo Möller
|
01c76c6606
|
There's no such things as DTLS1_AD_MISSING_HANDSHAKE_MESSAGE.
For now, anyway.
|
2006-01-07 20:44:29 +00:00 |
|
Bodo Möller
|
d32f888db1
|
prepare for additional RFC3546 alerts
|
2006-01-07 20:33:16 +00:00 |
|
Bodo Möller
|
f7914dbf9a
|
make sure that the unrecognized_name alert actually gets sent
Submitted by: Peter Sylvester
|
2006-01-07 20:29:50 +00:00 |
|
Bodo Möller
|
3ff94a009b
|
complete and correct RFC3546 error codes
|
2006-01-07 20:28:11 +00:00 |
|
Bodo Möller
|
1aeb3da83f
|
Fixes for TLS server_name extension
Submitted by: Peter Sylvester
|
2006-01-06 09:08:59 +00:00 |
|
Richard Levitte
|
8de5b7f548
|
Fix signed/unsigned char clashes.
|
2006-01-04 12:02:43 +00:00 |
|
Bodo Möller
|
f1fd4544a3
|
Various changes in the new TLS extension code, including the following:
- fix indentation
- rename some functions and macros
- fix up confusion between SSL_ERROR_... and SSL_AD_... values
|
2006-01-03 03:27:19 +00:00 |
|
Bodo Möller
|
ed3883d21b
|
Support TLS extensions (specifically, HostName)
Submitted by: Peter Sylvester
|
2006-01-02 23:14:37 +00:00 |
|
Bodo Möller
|
7476f3ac3b
|
Rewrite timeout computation in a way that is less prone to overflow.
(Problem reported by Peter Sylvester.)
|
2005-12-30 23:51:36 +00:00 |
|
Andy Polyakov
|
be7b4458f2
|
Keep disclaiming 16-bit platform support. For now remove WIN16 references
from .h files...
|
2005-12-18 19:11:37 +00:00 |
|
Bodo Möller
|
d56349a2aa
|
update TLS-ECC code
Submitted by: Douglas Stebila
|
2005-12-13 07:33:35 +00:00 |
|
Dr. Stephen Henson
|
7bbcb2f690
|
Avoid warnings on VC++ 2005.
|
2005-12-05 17:21:22 +00:00 |
|
Bodo Möller
|
d804f86b88
|
disable some invalid ciphersuites
|
2005-11-15 23:32:11 +00:00 |
|
Bodo Möller
|
72dce7685e
|
Add fixes for CAN-2005-2969.
(This were in 0.9.7-stable and 0.9.8-stable, but not in HEAD so far.)
|
2005-10-26 19:40:45 +00:00 |
|
Dr. Stephen Henson
|
c1de1a190d
|
Avoid warning on Win32.
|
2005-10-08 17:31:18 +00:00 |
|
Dr. Stephen Henson
|
566dda07ba
|
New option SSL_OP_NO_COMP to disable compression. New ctrls to set
maximum send fragment size. Allocate I/O buffers accordingly.
|
2005-10-08 00:18:53 +00:00 |
|
Dr. Stephen Henson
|
231b98a5e1
|
Make OPENSSL_NO_COMP work under Win32.
|
2005-10-02 12:28:40 +00:00 |
|
Dr. Stephen Henson
|
d08b6b44ba
|
Fix compilation without OPENSSL_NO_COMP :-)
|
2005-10-01 00:40:34 +00:00 |
|
Dr. Stephen Henson
|
09b6c2ef15
|
Make OPENSSL_NO_COMP compile again.
|
2005-09-30 23:35:33 +00:00 |
|
Dr. Stephen Henson
|
61094cf3dc
|
128 bit AES ciphersuites should be classified as HIGH.
|
2005-09-21 00:55:42 +00:00 |
|
Nils Larsch
|
8215e7a938
|
fix warnings when building openssl with the following compiler options:
-Wmissing-prototypes -Wcomment -Wformat -Wimplicit -Wmain -Wmultichar
-Wswitch -Wshadow -Wtrigraphs -Werror -Wchar-subscripts
-Wstrict-prototypes -Wreturn-type -Wpointer-arith -W -Wunused
-Wno-unused-parameter -Wuninitialized
|
2005-08-28 22:49:57 +00:00 |
|
Ben Laurie
|
337e368239
|
Fix warnings.
|
2005-08-27 12:10:34 +00:00 |
|
Nils Larsch
|
6e119bb02e
|
Keep cipher lists sorted in the source instead of sorting them at
runtime, thus removing the need for a lock. Add a test to ssltest
to verify that the cipher lists are sorted.
|
2005-08-25 07:29:54 +00:00 |
|
Nils Larsch
|
7f3c9036ea
|
initialize cipher/digest methods table in SSL_library_init() and hence remove the need for a lock
|
2005-08-21 23:06:23 +00:00 |
|
Nils Larsch
|
4ebb342fcd
|
Let the TLSv1_method() etc. functions return a const SSL_METHOD
pointer and make the SSL_METHOD parameter in SSL_CTX_new,
SSL_CTX_set_ssl_version and SSL_set_ssl_method const.
|
2005-08-14 21:48:33 +00:00 |
|
Nils Larsch
|
eba63ef58b
|
a ssl object needs it's own instance of a ecdh key; remove obsolete comment
|
2005-08-08 20:02:18 +00:00 |
|
Nils Larsch
|
01a9792f05
|
remove unused internal foo_base_method functions
|
2005-08-08 19:04:37 +00:00 |
|
Dr. Stephen Henson
|
f3b656b246
|
Initialize SSL_METHOD structures at compile time. This removes the need
for locking code. The CRYPTO_LOCK_SSL_METHOD lock is now no longer used.
|
2005-08-05 23:56:11 +00:00 |
|
Andy Polyakov
|
19bd66fe74
|
WCE update, mostly typos.
|
2005-08-03 19:56:36 +00:00 |
|
Nils Larsch
|
c755c5fd8b
|
improved error checking and some fixes
PR: 1170
Submitted by: Yair Elharrar
Reviewed and edited by: Nils Larsch
|
2005-07-26 21:10:34 +00:00 |
|
Richard Levitte
|
b2a9d36a7f
|
bytes_to_long_long isn't used anywhere any more, so let's remove it
entirely.
|
2005-07-26 05:10:50 +00:00 |
|
Richard Levitte
|
04f15edb91
|
I'm reversing this change, as it seems the error is somewhere else.
|
2005-07-26 04:53:21 +00:00 |
|
Geoff Thorpe
|
f920c5b590
|
Fix signed/unsigned warnings.
|
2005-07-26 04:25:05 +00:00 |
|
Geoff Thorpe
|
05fc7018f8
|
Fix PEDANTIC compilation, using the same trick as elsewhere.
|
2005-07-26 04:05:03 +00:00 |
|
Geoff Thorpe
|
a384002724
|
Fix 64-bit compilation when PQ_64BIT_IS_INTEGER isn't defined.
|
2005-07-26 04:01:50 +00:00 |
|
Geoff Thorpe
|
20a90e3a76
|
Fix some signed/unsigned warnings.
|
2005-07-22 03:36:30 +00:00 |
|
Nils Larsch
|
3eeaab4bed
|
make
./configure no-deprecated [no-dsa] [no-dh] [no-ec] [no-rsa]
make depend all test
work again
PR: 1159
|
2005-07-16 12:37:36 +00:00 |
|
Ben Laurie
|
a51a97262d
|
Brought forward from 0.9.8 - 64 bit warning fixes and fussy compiler fixes.
|
2005-06-29 11:02:15 +00:00 |
|