index
:
openssl.git
OpenSSL_0_9_6-stable
OpenSSL_0_9_7-stable
OpenSSL_0_9_8-stable
OpenSSL_1_0_0-stable
OpenSSL_1_0_1-stable
OpenSSL_1_0_2-stable
OpenSSL_1_1_0-stable
feature/SSL_CTX_get_ciphers
fix-ssl_next_proto_validate
fix/EC_KEY_set_private_key-null
fix/x509-store-ex-data
fix/x509-store-remove-old
ky/bn-print-fix
ky/pem-read-fix-unsigned-cast
ky/ssl-fix-get-session-cb
master
topic/SSL_get_max_early_data-typofix
topic/X509_load_cert_crl_file-errorleakfix
topic/bn-bn2dec-fix
topic/chacha20-flags
topic/ec-group-get-ecparameters-memory-leak
topic/evp-chacha20-poly1305-cleanup-typofix
topic/evp-chacha20-poly1305-init-segv
topic/fix-asn1-integer-decode
topic/fix-config-parse-oid_section
rhe's working repository
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
CHANGES
Commit message (
Expand
)
Author
Age
Files
Lines
*
correct CHANGES
Dr. Stephen Henson
2012-12-19
1
-2
/
+2
*
Make openssl verify return errors.
Ben Laurie
2012-12-11
1
-0
/
+4
*
Fix OCSP checking.
Ben Laurie
2012-12-07
1
-0
/
+2
*
Add code to download CRLs based on CRLDP extension.
Dr. Stephen Henson
2012-12-06
1
-0
/
+4
*
Integrate host, email and IP address checks into X509_verify.
Dr. Stephen Henson
2012-12-05
1
-0
/
+4
*
initial support for delta CRL generations by diffing two full CRLs
Dr. Stephen Henson
2012-12-04
1
-0
/
+4
*
New option to add CRLs for s_client and s_server.
Dr. Stephen Henson
2012-12-02
1
-0
/
+3
*
Generalise OCSP I/O functions to support dowloading of other ASN1
Dr. Stephen Henson
2012-11-28
1
-1
/
+6
*
New functions to set lookup_crls callback and to retrieve internal X509_STORE
Dr. Stephen Henson
2012-11-27
1
-1
/
+5
*
Add support for printing out and retrieving EC point formats extension.
Dr. Stephen Henson
2012-11-22
1
-0
/
+4
*
new function ASN1_TIME_diff to calculate difference between two ASN1_TIME str...
Dr. Stephen Henson
2012-11-19
1
-0
/
+4
*
PR: 2909
Dr. Stephen Henson
2012-11-18
1
-0
/
+4
*
add SSL_CONF functions and documentation
Dr. Stephen Henson
2012-11-16
1
-0
/
+4
*
New functions to check a hostname email or IP address against a
Dr. Stephen Henson
2012-10-08
1
-0
/
+5
*
config: detect linux-mips* targets.
Andy Polyakov
2012-09-19
1
-0
/
+4
*
Add -rev test option to s_server to just reverse order of characters received
Dr. Stephen Henson
2012-09-14
1
-0
/
+5
*
Add -brief option to s_client and s_server to summarise connection details.
Dr. Stephen Henson
2012-09-12
1
-0
/
+4
*
Add ctrl and utility functions to retrieve raw cipher list sent by client in
Dr. Stephen Henson
2012-09-12
1
-0
/
+4
*
Minor enhancement to PR#2836 fix. Instead of modifying SSL_get_certificate
Dr. Stephen Henson
2012-09-11
1
-2
/
+2
*
Call OCSP Stapling callback after ciphersuite has been chosen, so the
Ben Laurie
2012-09-11
1
-0
/
+6
*
Harmonize CHANGES in HEAD.
Andy Polyakov
2012-08-29
1
-59
/
+67
*
Add three Suite B modes to TLS code, supporting RFC6460.
Dr. Stephen Henson
2012-08-15
1
-0
/
+6
*
add suite B chain validation flags and associated verify errors
Dr. Stephen Henson
2012-08-03
1
-0
/
+4
*
Make tls1_check_chain return a set of flags indicating checks passed
Dr. Stephen Henson
2012-07-27
1
-0
/
+6
*
Abort handshake if signature algorithm used not supported by peer.
Dr. Stephen Henson
2012-07-24
1
-0
/
+6
*
check EC tmp key matches preferences
Dr. Stephen Henson
2012-07-24
1
-0
/
+3
*
Add support for certificate stores in CERT structure. This makes it
Dr. Stephen Henson
2012-07-23
1
-0
/
+13
*
New function ssl_set_client_disabled to set masks for any ciphersuites
Dr. Stephen Henson
2012-07-18
1
-0
/
+5
*
Add new ctrl to retrieve client certificate types, print out
Dr. Stephen Henson
2012-07-08
1
-0
/
+6
*
Separate client and server permitted signature algorithm support: by default
Dr. Stephen Henson
2012-07-03
1
-0
/
+3
*
Add certificate callback. If set this is called whenever a certificate
Dr. Stephen Henson
2012-06-29
1
-0
/
+9
*
Add new "valid_flags" field to CERT_PKEY structure which determines what
Dr. Stephen Henson
2012-06-28
1
-0
/
+12
*
Reorganise supported signature algorithm extension processing.
Dr. Stephen Henson
2012-06-25
1
-0
/
+6
*
Add support for application defined signature algorithms for use with
Dr. Stephen Henson
2012-06-22
1
-0
/
+5
*
Make it possible to delete all certificates from an SSL structure.
Dr. Stephen Henson
2012-06-18
1
-0
/
+5
*
Initial record tracing code. Print out all fields in SSL/TLS records
Dr. Stephen Henson
2012-06-15
1
-0
/
+6
*
New functions to retrieve certificate signatures and signature OID NID.
Dr. Stephen Henson
2012-06-13
1
-0
/
+4
*
print out issuer and subject unique identifier fields in certificates
Dr. Stephen Henson
2012-06-12
1
-0
/
+4
*
RFC 5878 support.
Ben Laurie
2012-05-30
1
-0
/
+3
*
PR: 2813
Dr. Stephen Henson
2012-05-11
1
-0
/
+3
*
PR: 2811
Dr. Stephen Henson
2012-05-11
1
-2
/
+7
*
Sanity check record length before skipping explicit IV in TLS 1.2, 1.1 and
Dr. Stephen Henson
2012-05-10
1
-0
/
+8
*
Reported by: Solar Designer of Openwall
Dr. Stephen Henson
2012-05-10
1
-0
/
+4
*
Don't try to use unvalidated composite ciphers in FIPS mode
Dr. Stephen Henson
2012-04-26
1
-2
/
+9
*
CHANGES: clarify.
Andy Polyakov
2012-04-26
1
-1
/
+2
*
CHANGES: fix typos and clarify.
Andy Polyakov
2012-04-26
1
-3
/
+5
*
Change value of SSL_OP_NO_TLSv1_1 to avoid clash with SSL_OP_ALL and
Dr. Stephen Henson
2012-04-25
1
-0
/
+11
*
s23_clnt.c: ensure interoperability by maitaining client "version capability"
Andy Polyakov
2012-04-25
1
-1
/
+11
*
Check for potentially exploitable overflows in asn1_d2i_read_bio
Dr. Stephen Henson
2012-04-19
1
-1
/
+10
*
Disable SHA-2 ciphersuites in < TLS 1.2 connections.
Bodo Möller
2012-04-17
1
-0
/
+3
[next]