1. 694d3ae Fixed potential heap buffer overflow on large file reading by Paul Bakker · 11 years ago
  2. 5fd4917 Add missing ifdefs in ssl modules by Paul Bakker · 11 years ago
  3. 04376b1 Fixed memory leak in ssl_parse_server_key_exchange from missing md_free_ctx() by Paul Bakker · 11 years ago
  4. 298aae4 Adapt core OID functions to embeded null bytes by Manuel Pégourié-Gonnard · 11 years ago
  5. c13c0d4 Add a length check in rsa_get_pubkey() by Manuel Pégourié-Gonnard · 11 years ago
  6. 56a487a Minor ecdsa cleanups by Manuel Pégourié-Gonnard · 11 years ago
  7. 686bfae Fix memory error in x509_get_attr_type_value by Manuel Pégourié-Gonnard · 11 years ago
  8. ba77bbf Fix memory error in asn1_get_alg() by Manuel Pégourié-Gonnard · 11 years ago
  9. 06dab80 Fix memory error in asn1_get_bitstring_null() by Manuel Pégourié-Gonnard · 11 years ago
  10. 0b27267 Fix ifdef conditions for EC-related extensions. by Manuel Pégourié-Gonnard · 11 years ago
  11. 5734b2d Actually use the point format selected for ECDH by Manuel Pégourié-Gonnard · 11 years ago
  12. 7b19c16 Handle suported_point_formats in ServerHello by Manuel Pégourié-Gonnard · 11 years ago
  13. 6b8846d Stop advertising support for compressed points by Manuel Pégourié-Gonnard · 11 years ago
  14. 1f2bc62 Made support for the truncated_hmac extension configurable by Paul Bakker · 11 years ago
  15. 05decb2 Made support for the max_fragment_length extension configurable by Paul Bakker · 11 years ago
  16. 606b4ba Session ticket expiration checked on server by Paul Bakker · 11 years ago
  17. f0e39ac Fixed unitialized n when resuming a session by Paul Bakker · 11 years ago
  18. a503a63 Made session tickets support configurable from config.h by Paul Bakker · 11 years ago
  19. 56dc9e8 Authenticate session tickets. by Manuel Pégourié-Gonnard · 11 years ago
  20. 990c51a Encrypt session tickets by Manuel Pégourié-Gonnard · 11 years ago
  21. 779e429 Start adding ticket keys (only key_name for now) by Manuel Pégourié-Gonnard · 11 years ago
  22. aa0d4d1 Add ssl_set_session_tickets() by Manuel Pégourié-Gonnard · 11 years ago
  23. 306827e Prepare ticket structure for securing by Manuel Pégourié-Gonnard · 11 years ago
  24. 06650f6 Fix reusing session more than once by Manuel Pégourié-Gonnard · 11 years ago
  25. 593058e Don't renew ticket when the current one is OK by Manuel Pégourié-Gonnard · 11 years ago
  26. c086cce Don't cache empty session ID nor resumed session by Manuel Pégourié-Gonnard · 11 years ago
  27. 7cd5924 Rework NewSessionTicket handling in state machine by Manuel Pégourié-Gonnard · 11 years ago
  28. 3ffa3db Fix server session ID handling with ticket by Manuel Pégourié-Gonnard · 11 years ago
  29. 72882b2 Relax limit on ClientHello size by Manuel Pégourié-Gonnard · 11 years ago
  30. 609bc81 ssl_srv: read & write ticket, unsecure for now by Manuel Pégourié-Gonnard · 11 years ago
  31. 94f6a79 Auxiliary functions to (de)serialize ssl_session by Manuel Pégourié-Gonnard · 11 years ago
  32. 7a358b8 ssl_srv: write & parse session ticket ext & msg by Manuel Pégourié-Gonnard · 11 years ago
  33. 6377e41 Complete client support for session tickets by Manuel Pégourié-Gonnard · 11 years ago
  34. a5cc602 Parse NewSessionTicket message by Manuel Pégourié-Gonnard · 11 years ago
  35. 60182ef ssl_cli: write & parse session ticket extension by Manuel Pégourié-Gonnard · 11 years ago
  36. 75d4401 Introduce ticket field in session structure by Manuel Pégourié-Gonnard · 11 years ago
  37. 5f280cc Implement saving peer cert as part of session. by Manuel Pégourié-Gonnard · 11 years ago
  38. 7471803 Add ssl_get_session() to save session on client by Manuel Pégourié-Gonnard · 11 years ago
  39. 48e93c8 Made padding modes configurable from config.h by Paul Bakker · 11 years ago
  40. 1a45d91 Restructured cipher_set_padding_mode() to use switch statement by Paul Bakker · 11 years ago
  41. ebdc413 Add 'no padding' mode by Manuel Pégourié-Gonnard · 11 years ago
  42. 0e7d2c0 Add zero padding by Manuel Pégourié-Gonnard · 11 years ago
  43. 8d4291b Add zeros-and-length (ANSI X.923) padding by Manuel Pégourié-Gonnard · 11 years ago
  44. 679f9e9 Add one-and-zeros (ISO/IEC 7816-4) padding by Manuel Pégourié-Gonnard · 11 years ago
  45. b7d24bc Fix bug in get_pkcs_padding(): cannot be 0-length by Manuel Pégourié-Gonnard · 11 years ago
  46. ac56a1a Make cipher_set_padding() actually work by Manuel Pégourié-Gonnard · 11 years ago
  47. d5fdcaf Add cipher_set_padding() (no effect yet) by Manuel Pégourié-Gonnard · 11 years ago
  48. 0f2f0bf CAMELLIA-based PSK and DHE-PSK ciphersuites added by Paul Bakker · 11 years ago
  49. b548d77 Fixed memory leak in ecdh_compute_shared() in case of error by Paul Bakker · 11 years ago
  50. cca998a Fixed memory leak in ecdsa_sign() / ecdsa_verify() in case of error by Paul Bakker · 11 years ago
  51. 1e6a175 Support for AIX header locations in net.c module by Paul Bakker · 11 years ago
  52. 52cf16c Fixed multiple use of GCM-context bug due to split-up of GCM functions by Paul Bakker · 11 years ago
  53. d9ca94a Updated merged pk.c and x509parse.c changes with new memory allocation functions by Paul Bakker · 11 years ago
  54. 8c1ede6 Changed prototype for ssl_set_truncated_hmac() to allow disabling by Paul Bakker · 11 years ago
  55. 277f7f2 Implement hmac truncation by Manuel Pégourié-Gonnard · 11 years ago
  56. 57c2852 Added truncated hmac negociation (without effect) by Manuel Pégourié-Gonnard · 11 years ago
  57. e980a99 Add interface for truncated hmac by Manuel Pégourié-Gonnard · 11 years ago
  58. e048b67 Misc minor fixes by Manuel Pégourié-Gonnard · 11 years ago
  59. ed4af8b Move negotiated max fragment length to session by Manuel Pégourié-Gonnard · 11 years ago
  60. 581e6b6 Prepare migrating max fragment length to session by Manuel Pégourié-Gonnard · 11 years ago
  61. 6b4f237 Forbid setting max_frag_len > MAX_CONTENT_LEN by Manuel Pégourié-Gonnard · 11 years ago
  62. 30dc7ef Reset max_fragment_length in ssl_session_reset() by Manuel Pégourié-Gonnard · 11 years ago
  63. 7bb7899 Send max_fragment_length extension (server) by Manuel Pégourié-Gonnard · 11 years ago
  64. f11a6d7 Rework server extensions writing by Manuel Pégourié-Gonnard · 11 years ago
  65. de600e5 Read max_fragment_length extension (client) by Manuel Pégourié-Gonnard · 11 years ago
  66. a052849 Send max_fragment_length extension (client) by Manuel Pégourié-Gonnard · 11 years ago
  67. 48f8d0d Read max_fragment_length extension (server) by Manuel Pégourié-Gonnard · 11 years ago
  68. 787b658 Implement max_frag_len write restriction by Manuel Pégourié-Gonnard · 11 years ago
  69. 8b46459 Add ssl_set_max_frag_len() by Manuel Pégourié-Gonnard · 11 years ago
  70. c2c9003 Fix pk_set_type() behaviour for unkown type by Manuel Pégourié-Gonnard · 11 years ago
  71. 14d8564 Fix overflow check in oid_get_numeric_string() by Manuel Pégourié-Gonnard · 11 years ago
  72. fd5164e Fix some more ifdef's RSA/EC, in pk and debug by Manuel Pégourié-Gonnard · 11 years ago
  73. ab2d983 Fix some ifdef's in x509parse by Manuel Pégourié-Gonnard · 11 years ago
  74. 96f3a4e Rm ecp_keypair.alg by Manuel Pégourié-Gonnard · 11 years ago
  75. 8b863cd Merge EC & RSA versions of x509_parse_key() by Manuel Pégourié-Gonnard · 11 years ago
  76. 6e88202 Merge EC & RSA versions of parse_pkcs8_unencrypted by Manuel Pégourié-Gonnard · 11 years ago
  77. a2d4e64 Some more EC pubkey parsing refactoring by Manuel Pégourié-Gonnard · 11 years ago
  78. 1c808a0 Refactor some EC key parsing code by Manuel Pégourié-Gonnard · 11 years ago
  79. 991d0f5 Remove rsa member from x509_cert structure by Manuel Pégourié-Gonnard · 11 years ago
  80. ff56da3 Fix direct uses of x509_cert.rsa, now use pk_rsa() by Manuel Pégourié-Gonnard · 11 years ago
  81. 893879a Adapt debug_print_crt() for EC keys by Manuel Pégourié-Gonnard · 11 years ago
  82. 5b18fb0 Fix bug in x509_get_{ecpubkey,subpubkey}() by Manuel Pégourié-Gonnard · 11 years ago
  83. 360a583 Adapt x509parse_cert_info() for EC by Manuel Pégourié-Gonnard · 11 years ago
  84. 674b224 Prepare transition from x509_cert.rsa to pk by Manuel Pégourié-Gonnard · 11 years ago
  85. a155513 Rationalize use of x509_get_alg variants by Manuel Pégourié-Gonnard · 11 years ago
  86. 7a287c4 Rename x509_get_algid() to x509_get_pk_alg() by Manuel Pégourié-Gonnard · 11 years ago
  87. 7c5819e Fix warnings (enum value missing from switch/case) by Manuel Pégourié-Gonnard · 11 years ago
  88. 1e60cd0 Expand oid_get_sig_alg() for ECDSA-based algs by Manuel Pégourié-Gonnard · 11 years ago
  89. 244569f Use generic x509_get_pubkey() for RSA functions by Manuel Pégourié-Gonnard · 11 years ago
  90. 4fa0476 Use new x509_get_pubkey() in x509parse_public_key() by Manuel Pégourié-Gonnard · 11 years ago
  91. c296c59 Introduce generic x509_get_pubkey() by Manuel Pégourié-Gonnard · 11 years ago
  92. 094ad9e Rename x509_get_pubkey to _rsa and split it up by Manuel Pégourié-Gonnard · 11 years ago
  93. f16ac76 Simplify length mismatch check in x509_get_pubkey by Manuel Pégourié-Gonnard · 11 years ago
  94. 20c12f6 Factor more code into x509_get_pubkey() by Manuel Pégourié-Gonnard · 11 years ago
  95. 788db11 Get rid of x509_cert.pkoid by Manuel Pégourié-Gonnard · 11 years ago
  96. 374e4b8 pk_set_type() cannot be used to reset key type by Manuel Pégourié-Gonnard · 11 years ago
  97. 0a64e8f Rework algorithmIdentifier parsing by Manuel Pégourié-Gonnard · 11 years ago
  98. f4a1427 base64_decode() also forcefully returns on dst == NULL by Paul Bakker · 11 years ago
  99. 61d113b Init and free new contexts in the right place for SSL to prevent memory leaks by Paul Bakker · 11 years ago
  100. 7d4e5b7 Simplify password check in pem_read_buffer() by Manuel Pégourié-Gonnard · 11 years ago