aboutsummaryrefslogtreecommitdiffstats
path: root/ssl/t1_lib.c
Commit message (Expand)AuthorAgeFilesLines
* Try to be more consistent about the alerts we sendMatt Caswell2017-05-191-3/+3
* Add a ciphersuite config sanity check for serversMatt Caswell2017-04-261-1/+1
* Don't fail the connection in SSLv3 if server selects ECDHEMatt Caswell2017-04-241-4/+16
* New certificate_authorities functionsDr. Stephen Henson2017-04-031-1/+1
* More typo fixesFdaSilvaYY2017-03-291-6/+6
* Avoid questionable use of the value of a pointerBernd Edlinger2017-03-101-1/+2
* Fixup previous merge.Bernd Edlinger2017-03-101-1/+1
* Set specific error is we have no valid signature algorithms setDr. Stephen Henson2017-03-031-0/+2
* Signature algorithm enhancement.Dr. Stephen Henson2017-03-031-25/+31
* Disallow zero length signature algorithmsDr. Stephen Henson2017-03-031-1/+1
* Don't allow DSA for TLS 1.3Dr. Stephen Henson2017-03-031-0/+3
* For TLS 1.3 reject SHA1 TLS signaturesDr. Stephen Henson2017-02-251-5/+7
* Reject compressed point format with TLS 1.3Dr. Stephen Henson2017-02-241-3/+10
* Add SuiteB support to tls_choose_sigalg()Dr. Stephen Henson2017-02-241-0/+17
* Tidy up certificate type handling.Dr. Stephen Henson2017-02-241-12/+7
* Add some more consistency checks in tls_decrypt_ticket.Bernd Edlinger2017-02-221-0/+5
* Set default validity flags.Dr. Stephen Henson2017-02-211-10/+30
* remove md array: it is not used any more.Dr. Stephen Henson2017-02-211-99/+25
* Explicitly disallow DSA for TLS 1.3Dr. Stephen Henson2017-02-171-5/+12
* Use tls_choose_sigalg for client auth.Dr. Stephen Henson2017-02-161-52/+0
* Add client side support to tls_choose_sigalg.Dr. Stephen Henson2017-02-161-24/+54
* Fix warningDr. Stephen Henson2017-02-161-1/+6
* Set current certificate to selected certificate.Dr. Stephen Henson2017-02-151-0/+1
* Skip curve check if sigalg doesn't specify a curve.Dr. Stephen Henson2017-02-151-2/+2
* Use CERT_PKEY pointer instead of indexDr. Stephen Henson2017-02-151-6/+4
* Use cert_index and sigalgDr. Stephen Henson2017-02-151-1/+4
* Add sigalg for earlier TLS versionsDr. Stephen Henson2017-02-151-20/+144
* Change tls_choose_sigalg so it can set errors and alerts.Dr. Stephen Henson2017-02-151-1/+3
* Use TLSEXT_KEYNAME_LENGTH in tls_decrypt_ticket.Bernd Edlinger2017-02-141-2/+2
* Replace SSL_PKEY_RSA_ENC, SSL_PKEY_RSA_SIGNDr. Stephen Henson2017-02-101-27/+13
* Check index >= 0 as 0 is a valid index.Dr. Stephen Henson2017-02-101-1/+1
* SSL_get_shared_sigalgs: handle negative idx parameterPeter Wu2017-02-091-0/+1
* Fix "no-ec"Richard Levitte2017-02-031-0/+6
* Add function tls_choose_sigalg().Dr. Stephen Henson2017-02-021-0/+57
* Majority rules, use session_ctx vs initial_ctxTodd Short2017-01-311-1/+1
* Tidy up Suite B logicDr. Stephen Henson2017-01-311-16/+16
* Remove peer_md and use peer_sigalg instead.Dr. Stephen Henson2017-01-311-4/+1
* Simplify sigalgs code.Dr. Stephen Henson2017-01-311-64/+19
* Add digest and key indices to table.Dr. Stephen Henson2017-01-311-20/+39
* Add TLS 1.3 signing curve checkDr. Stephen Henson2017-01-311-23/+35
* Only allow PSS signatures with RSA keys and TLS 1.3Dr. Stephen Henson2017-01-311-0/+3
* Store table entry to peer signature algorithm.Dr. Stephen Henson2017-01-311-14/+15
* Update macros.Dr. Stephen Henson2017-01-301-4/+7
* Fix TLS 1.2 and no sigalgs.Dr. Stephen Henson2017-01-301-1/+19
* Replace TLS_SIGALGS with SIGALG_LOOKUPDr. Stephen Henson2017-01-301-88/+63
* Support TLS 1.3 signature scheme names.Dr. Stephen Henson2017-01-301-10/+21
* Extend TLS 1.3 signature table.Dr. Stephen Henson2017-01-301-18/+41
* Use shared signature algorithm list to find type.Dr. Stephen Henson2017-01-301-8/+10
* Add SSL_get_peer_signature_type_nid() function.Dr. Stephen Henson2017-01-301-0/+8
* Store peer signature type.Dr. Stephen Henson2017-01-301-10/+11