1. 03 7月, 2012 1 次提交
  2. 29 6月, 2012 1 次提交
    • D
      Add certificate callback. If set this is called whenever a certificate · 18d71588
      Dr. Stephen Henson 提交于
      is required by client or server. An application can decide which
      certificate chain to present based on arbitrary criteria: for example
      supported signature algorithms. Add very simple example to s_server.
      This fixes many of the problems and restrictions of the existing client
      certificate callback: for example you can now clear existing certificates
      and specify the whole chain.
      18d71588
  3. 28 6月, 2012 1 次提交
    • D
      Add new "valid_flags" field to CERT_PKEY structure which determines what · d61ff83b
      Dr. Stephen Henson 提交于
      the certificate can be used for (if anything). Set valid_flags field
      in new tls1_check_chain function. Simplify ssl_set_cert_masks which used
      to have similar checks in it.
      
      Add new "cert_flags" field to CERT structure and include a "strict mode".
      This enforces some TLS certificate requirements (such as only permitting
      certificate signature algorithms contained in the supported algorithms
      extension) which some implementations ignore: this option should be used
      with caution as it could cause interoperability issues.
      d61ff83b
  4. 25 6月, 2012 1 次提交
  5. 22 6月, 2012 1 次提交
  6. 15 6月, 2012 1 次提交
  7. 07 6月, 2012 1 次提交
  8. 04 6月, 2012 1 次提交
  9. 30 5月, 2012 1 次提交
  10. 12 4月, 2012 1 次提交
  11. 05 4月, 2012 1 次提交
  12. 28 3月, 2012 1 次提交
    • D
      Initial revision of ECC extension handling. · d0595f17
      Dr. Stephen Henson 提交于
      Tidy some code up.
      
      Don't allocate a structure to handle ECC extensions when it is used for
      default values.
      
      Make supported curves configurable.
      
      Add ctrls to retrieve shared curves: not fully integrated with rest of
      ECC code yet.
      d0595f17
  13. 19 3月, 2012 1 次提交
  14. 06 3月, 2012 1 次提交
  15. 12 2月, 2012 1 次提交
    • D
      PR: 2716 · be81f4dd
      Dr. Stephen Henson 提交于
      Submitted by: Adam Langley <agl@google.com>
      
      Fix handling of exporter return value and use OpenSSL indentation in
      s_client, s_server.
      be81f4dd
  16. 11 2月, 2012 1 次提交
    • D
      PR: 2714 · 9641be2a
      Dr. Stephen Henson 提交于
      Submitted by: Tomas Mraz <tmraz@redhat.com>
      
      Make no-srp work.
      9641be2a
  17. 13 1月, 2012 1 次提交
  18. 01 1月, 2012 1 次提交
    • D
      PR: 2658 · 4817504d
      Dr. Stephen Henson 提交于
      Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>
      Reviewed by: steve
      
      Support for TLS/DTLS heartbeats.
      4817504d
  19. 27 12月, 2011 1 次提交
    • D
      PR: 1794 · c79f22c6
      Dr. Stephen Henson 提交于
      Submitted by: Peter Sylvester <peter.sylvester@edelweb.fr>
      Reviewed by: steve
      
      - remove some unncessary SSL_err and permit
      an srp user callback to allow a worker to obtain
      a user verifier.
      
      - cleanup and comments in s_server and demonstration
      for asynchronous srp user lookup
      c79f22c6
  20. 22 12月, 2011 1 次提交
  21. 16 11月, 2011 2 次提交
  22. 10 10月, 2011 1 次提交
  23. 12 5月, 2011 1 次提交
  24. 06 5月, 2011 1 次提交
  25. 30 4月, 2011 2 次提交
  26. 13 3月, 2011 1 次提交
  27. 06 2月, 2011 1 次提交
  28. 16 11月, 2010 1 次提交
  29. 06 9月, 2010 1 次提交
  30. 26 8月, 2010 1 次提交
  31. 28 7月, 2010 1 次提交
  32. 12 6月, 2010 1 次提交
  33. 29 1月, 2010 1 次提交
  34. 28 1月, 2010 1 次提交
  35. 27 1月, 2010 1 次提交
  36. 28 12月, 2009 1 次提交
  37. 08 12月, 2009 1 次提交
  38. 07 12月, 2009 1 次提交