59 Commits (a0ef7b0a56a4f5e376dffa28f7808c011b312bc5)

Author SHA1 Message Date
  nagendra modadugu 3398dbf279 Add server-side support for asynchronous RSA decryption. 9 years ago
  David Benjamin d5635d476c Fix ssl3.h / ssl.h circular dependency. 9 years ago
  David Benjamin 8370bfd6d1 Remove unhelpful warning about changing state numbers. 9 years ago
  Paul Lietar 8f1c268692 Wait for CertificateStatus message to verify certificate. 9 years ago
  David Benjamin 1f9f9c4b51 Tidy up the ssl3_send_server_key_exchange slightly. 9 years ago
  David Benjamin 6505567172 Move peer_dh_tmp and peer_ecdh_tmp out of SESS_CERT. 9 years ago
  David Benjamin b8d28cf532 Factor out the buffering and low-level record code. 9 years ago
  Paul Lietar aeeff2ceee Server-side OCSP stapling support. 9 years ago
  David Benjamin 45c6c3e8ef Use the record-layer buffer for sniffing V2ClientHellos. 9 years ago
  David Benjamin b088331ec0 Simplify handshake hash handling. 9 years ago
  David Benjamin 5375fd594b Switch the handshake buffer from memory BIO to BUF_MEM. 9 years ago
  David Benjamin c8d5122538 Fold dtls1_process_record into dtls1_get_record. 9 years ago
  David Benjamin 229adfb42b FALLBACK_SCSV is an RFC now. 9 years ago
  David Benjamin fc05994e24 Fold away EC point format negotiation. 9 years ago
  nagendra modadugu 601448aa13 Add server-side support for asynchronous signing. 9 years ago
  Adam Langley 0950563a9b Implement custom extensions. 9 years ago
  Adam Langley 49c7af1c42 Convert the Channel ID extension to the new system. 9 years ago
  David Benjamin f3cdc5030e Remove some unused constants. 9 years ago
  Håvard Molland 047d6f0f4d Remove ssl2.h and ssl23.h. 9 years ago
  Adam Langley 614c66a2f8 Add infrastructure for better extension handling. 9 years ago
  David Benjamin b4d65fda70 Implement asynchronous private key operations for client auth. 9 years ago
  David Benjamin 24f346d77b Limit the number of warning alerts silently consumed. 9 years ago
  David Benjamin a8ebe2261f Add tests for empty record limit and make it work in the async case. 9 years ago
  David Benjamin cd90f3a241 Remove renegotiation deferral logic. 9 years ago
  David Benjamin 31a07798a5 Factor SSL_AEAD_CTX into a dedicated type. 9 years ago
  David Benjamin e6df054a75 Add s->s3->initial_handshake_complete. 9 years ago
  David Benjamin 7cde0dee7c Fold num_renegotiations into total_renegotiations. 9 years ago
  David Benjamin 4a3f0732fd Tidy record length check. 9 years ago
  David Benjamin 9faafdaeb8 Clean up do_ssl3_write fragment handling. 9 years ago
  David Benjamin f46cea8cd8 Fix the derivation of SSL3_RT_SEND_MAX_ENCRYPTED_OVERHEAD. 9 years ago
  David Benjamin ed7c475154 Rename cutthrough to False Start. 9 years ago
  David Benjamin a54e2e85ee Remove server-side HelloVerifyRequest support. 9 years ago
  David Benjamin ccf74f8085 Revise SSL_cutthrough_complete and SSL_in_init. 9 years ago
  Adam Langley b4a494cc32 Reformat SSL/TLS headers. 9 years ago
  Adam Langley 66850ddec1 Add dummy variables to keep wpa_supplicant happy. 9 years ago
  David Benjamin b8a56f112f Remove dead code from EVP_CIPHER codepaths. 9 years ago
  David Benjamin ea72bd0b60 Implement all TLS ciphers with stateful AEADs. 9 years ago
  David Benjamin 4b755cb0da Implement the V2ClientHello sniff in version-locked methods. 10 years ago
  David Benjamin e518f65d2c Update references to RFCs. 10 years ago
  David Benjamin 8c6fe45c2f Replace s->first_packet with a s->s3->have_version bit. 10 years ago
  David Benjamin e319a2f73a Remove SSL3_FLAGS_NO_RENEGOTIATE_CIPHERS. 10 years ago
  Alex Chernyakhovsky 4cd8c43e73 Remove support for processing fragmented alerts 10 years ago
  David Benjamin 688d8dfe48 Remove psk_identity_hint from SSL_SESSION. 10 years ago
  David Benjamin e1b20a0136 Remove SSL3_FLAGS_POP_BUFFER. 10 years ago
  Adam Langley 7571292eac Extended master secret support. 10 years ago
  David Benjamin a19fc259f0 Move ECC extensions out of SSL_SESSION. 10 years ago
  David Benjamin c92c2d7a07 Prune some dead quirks and document the SSL_OP_ALL ones. 10 years ago
  David Benjamin 6c7aed048c Client-side OCSP stapling support. 10 years ago
  David Benjamin 457112e197 unifdef a bunch of OPENSSL_NO_* ifdefs. 10 years ago
  David Benjamin 854dd654d1 Refactor server-side CertificateVerify handling. 10 years ago