Commit History

Autor SHA1 Mensaxe Data
  Rajeev Ranjan b6a5e80167 Add support for integrity-only cipher suites for TLS v1.3 hai 11 meses
  Richard Levitte b646179229 Copyright year updates hai 8 meses
  Alex Bozarth 4169d58c85 Allow provider sigalgs in SignatureAlgorithms conf hai 1 ano
  Frederik Wedel-Heinen 6fd3794814 Simplify ssl protocol version comparisons. hai 11 meses
  Bernd Edlinger a2b1ab6100 Fix a possible memory leak of ssl->s3.tmp.psk hai 1 ano
  Matt Caswell 547ea58821 Fix the SSL_CIPHER_find() function when used with a QCSO hai 1 ano
  Matt Caswell da1c088f59 Copyright year updates hai 1 ano
  Matt Caswell 0f2add9e8d Don't forget we are doing QUIC if we clear the QUIC TLS data hai 1 ano
  Alex Bozarth 68668243b1 Add SSL_get0_group_name() to get name of the group used for KEX hai 1 ano
  Matt Caswell 63dfde87c4 Add initial QUIC support for the msg_callback hai 1 ano
  Michael Baentsch ee58915cfd first cut at sigalg loading %!s(int64=2) %!d(string=hai) anos
  Matt Caswell 732435026b Resolve a TODO in ssl3_dispatch_alert %!s(int64=2) %!d(string=hai) anos
  Matt Caswell b92fc4ae18 Remove some redundant code %!s(int64=2) %!d(string=hai) anos
  Matt Caswell 16f0e91cf8 Partial revert and reimplement "Enable brainpool curves for TLS1.3" %!s(int64=2) %!d(string=hai) anos
  Matt Caswell a8572674f1 Move the SSLv3 crypto code into the new record layer %!s(int64=2) %!d(string=hai) anos
  Richard Levitte e077455e9e Stop raising ERR_R_MALLOC_FAILURE in most places %!s(int64=2) %!d(string=hai) anos
  Pauli f0131dc04a ssl: modify libssl so that it uses OSSL_TIME %!s(int64=2) %!d(string=hai) anos
  Tomas Mraz 38b051a1fe SSL object refactoring using SSL_CONNECTION object %!s(int64=2) %!d(string=hai) anos
  slontis b740012f77 Check for EVP_MD being NULL inside ssl. %!s(int64=2) %!d(string=hai) anos
  Peiwei Hu 56876ae952 Fix the erroneous checks of EVP_PKEY_CTX_set_group_name %!s(int64=2) %!d(string=hai) anos
  Matt Caswell fecb3aae22 Update copyright year %!s(int64=2) %!d(string=hai) anos
  Hugo Landau 948cf52179 Add SSL_(CTX_)?get0_(verify|chain)_cert_store functions %!s(int64=2) %!d(string=hai) anos
  Nicola Tuveri 66914fc024 [ssl] Prefer SSL_k(EC)?DHE to the SSL_kE(EC)?DH alias %!s(int64=2) %!d(string=hai) anos
  Phus Lu 13a53fbf13 add SSL_get0_iana_groups() & SSL_client_hello_get_extension_order() %!s(int64=3) %!d(string=hai) anos
  Dr. David von Oheimb 79b2a2f2ee add OSSL_STACK_OF_X509_free() for commonly used pattern %!s(int64=2) %!d(string=hai) anos
  Matt Caswell e819b57273 Don't free the EVP_PKEY on error in set0_tmp_dh_pkey() functions %!s(int64=3) %!d(string=hai) anos
  Bernd Edlinger 0a10825a00 Enable brainpool curves for TLS1.3 %!s(int64=6) %!d(string=hai) anos
  Pauli e07102220a tls/ccm8: reduce the cipher strength for CCM8 ciphers to 64 bits %!s(int64=3) %!d(string=hai) anos
  Pauli 56ffcce492 doc: document the change to the security level of CCM8 cipher suites %!s(int64=3) %!d(string=hai) anos
  Pauli 1a473d1cc6 tls: reduce the strength of CCM_8 ciphers due to their short IV. %!s(int64=3) %!d(string=hai) anos