1. 13 4月, 2002 1 次提交
  2. 07 4月, 2002 1 次提交
  3. 05 3月, 2002 1 次提交
    • B
      Rephrase statement on the security of two-key 3DES. · 2c17323e
      Bodo Möller 提交于
        [Chosen plaintext attack: R. Merkle, M. Hellman: "On the Security of
        Multiple Encryption", CACM 24 (1981) pp. 465-467, p. 776.
      
        Known plaintext angriff: P.C. van Oorschot, M. Wiener: "A
        known-plaintext attack on two-key triple encryption", EUROCRYPT '90.]
      2c17323e
  4. 28 2月, 2002 1 次提交
  5. 27 2月, 2002 1 次提交
  6. 15 2月, 2002 1 次提交
  7. 25 1月, 2002 1 次提交
    • B
      New functions · a14e2d9d
      Bodo Möller 提交于
          ERR_peek_last_error
          ERR_peek_last_error_line
          ERR_peek_last_error_line_data
      (supersedes ERR_peek_top_error).
      
      Rename OPENSSL_NO_OLD_DES_SUPPORT into OPENSSL_DISABLE_OLD_DES_SUPPORT
      because OPENSSL_NO_... indicates disabled algorithms (according to
      mkdef.pl).
      a14e2d9d
  8. 22 1月, 2002 1 次提交
  9. 04 1月, 2002 5 次提交
  10. 10 12月, 2001 1 次提交
  11. 04 12月, 2001 1 次提交
  12. 03 12月, 2001 1 次提交
  13. 02 12月, 2001 1 次提交
  14. 26 11月, 2001 1 次提交
  15. 19 11月, 2001 1 次提交
  16. 10 11月, 2001 2 次提交
  17. 08 11月, 2001 1 次提交
  18. 26 10月, 2001 4 次提交
  19. 25 10月, 2001 4 次提交
  20. 21 10月, 2001 1 次提交
    • B
      New functions SSL[_CTX]_set_msg_callback(). · a661b653
      Bodo Möller 提交于
      New macros SSL[_CTX]_set_msg_callback_arg().
      
      Message callback imlementation for SSL 3.0/TLS 1.0 (no SSL 2.0 yet).
      
      New '-msg' option for 'openssl s_client' and 'openssl s_server'
      that enable a message callback that displays all protocol messages.
      
      
      In ssl3_get_client_hello (ssl/s3_srvr.c), generate a fatal alert if
      client_version is smaller than the protocol version in use.
      Also change ssl23_get_client_hello (ssl/s23_srvr.c) to select TLS 1.0
      if the client demanded SSL 3.0 but only TLS 1.0 is enabled; then the
      client will at least see that alert.
      
      Fix SSL[_CTX]_ctrl prototype (void * instead of char * for generic
      pointer).
      
      Add/update some OpenSSL copyright notices.
      a661b653
  21. 17 10月, 2001 2 次提交
  22. 16 10月, 2001 1 次提交
  23. 12 10月, 2001 1 次提交
    • L
      Update information as a partial response to the post · 56fa8e69
      Lutz Jänicke 提交于
        From: "Chris D. Peterson" <cpeterson@aventail.com>
        Subject: Implementation Issues with OpenSSL
        To: openssl-users@openssl.org
        Date: Wed, 22 Aug 2001 16:13:17 -0700
      The patch included in the original post may improve the internal session
      list handling (and is therefore worth a seperate investigation).
      No change to the list handling will however solve the problems of incorrect
      SSL_SESSION_free() calls. The session list is only one possible point of
      failure, dangling pointers would also occur for SSL object currently
      using the session. The correct solution is to only use SSL_SESSION_free()
      when applicable!
      56fa8e69
  24. 08 10月, 2001 1 次提交
  25. 13 9月, 2001 3 次提交
  26. 11 9月, 2001 1 次提交