toddouska
411a096b2b
add memory versions of session cache save/restore
2013-04-25 17:23:58 -07:00
toddouska
05dd84598b
turn CA signer list into CA signer hash table, defaults CA_TABLE_SIZE to 11
2013-04-25 15:36:33 -07:00
toddouska
9dbf6a5e10
fix Signer hash size w/o SHA, fix GetCA caList b4 lock
2013-04-25 14:47:09 -07:00
toddouska
98b7ed9d47
more consistent SSL_SUCCESS for external SSL() returns
2013-04-25 11:36:38 -07:00
toddouska
942480e6ba
fix save cache file problem, version id, and match cache separarte error
2013-04-24 14:17:50 -07:00
toddouska
158029752c
only reset session cache with lock
2013-04-24 11:20:54 -07:00
toddouska
956ac08cab
add persistent session cache, ssn9
2013-04-24 11:10:23 -07:00
toddouska
65913b0d6c
error out earlier in get_chain_X509
2013-04-23 13:21:00 -07:00
toddouska
bad1c32df2
add session cert conversion to x509, and free x509 for dynamic variety
2013-04-23 11:50:06 -07:00
toddouska
4491de3b77
add UnloadCAs ability for CTX or CertManager
2013-04-22 13:18:08 -07:00
toddouska
8c0ee8a6f7
make sure all external APIs at SSL level return SSL_SUCCESS instead of sometimes 0 from old CyaSSL API
2013-04-22 12:43:57 -07:00
toddouska
d665e16bd8
add user ctx to verify callback with CyaSSL_SetCertCbCtx
2013-04-18 10:37:10 -07:00
toddouska
7c003c5755
add sanity check on cleanup for possible no init
2013-04-12 17:07:00 -07:00
toddouska
97e0ec073f
make sure all lib proper *.c files have config.h then settings.h then checks for defines in case user using settings.h for lib config
2013-04-10 11:04:29 -07:00
John Safranek
e98193000a
KEEP_PEER_CERT includes the function CyaSSL_X509_get_subjectCN
2013-04-09 09:45:25 -07:00
John Safranek
b0dca8ea69
updated SHOW_SIZES, opionally adds sizes as available, added flag to example client to print sizes
2013-04-08 16:01:52 -07:00
John Safranek
9b0ffa0249
brought CYASSL_CALLBACK code up to current standard
2013-04-08 15:34:54 -07:00
John Safranek
786e4d9462
fixed leak of method when ctx malloc fails; implemented get_shutdown
2013-04-03 16:35:19 -07:00
toddouska
4b90474581
move CM VerifyBuffer out of no filesystem
2013-04-01 11:59:17 -07:00
John Safranek
a572967017
when checking for DTLS, only need to compare against major version
2013-03-28 13:28:12 -07:00
toddouska
6d8246e98c
fix scan-build 272 warnings
2013-03-27 12:32:22 -07:00
toddouska
6bc7ba1592
change AesCBC end/dec to return status, will add failure cases with align checks
2013-03-26 12:36:39 -07:00
John Safranek
f65f86bb88
improvements to CCM, ssn6
2013-03-22 11:30:12 -07:00
toddouska
f878dbcef2
fix ecc key load w/ no rsa, ssn5
2013-03-20 09:18:05 -07:00
toddouska
4f9e915bc1
add KEEP_PEER_CERT flag for non opensslextra peer cert storage, ssn3
2013-03-19 12:18:52 -07:00
toddouska
4e99c7ac99
check TRUE/FALSE and move after all includes in ssl.c
2013-03-14 09:34:29 -07:00
toddouska
2e980423ec
hash session IDs since some aren't random afterall
2013-03-13 17:19:36 -07:00
toddouska
0a63898f5b
make sure stat uses full path for REG check
2013-03-13 11:17:14 -07:00
toddouska
11ffca451a
make readdir file type check more generic
2013-03-12 16:21:07 -07:00
toddouska
9a1b32d830
add --enable-asn, build, and checks for rsa / psk w/o asn
2013-03-12 12:48:41 -07:00
toddouska
f232ff84b4
add --enable-pwdbased and build, opensslextra needs
2013-03-11 17:01:05 -07:00
toddouska
7719cd9faa
add --enable-dsa
2013-03-11 16:39:06 -07:00
John Safranek
20e4889092
Merge branch 'dtls'
...
Conflicts:
src/ssl.c
2013-03-08 17:45:35 -08:00
toddouska
01a5368ffc
rest of ECC no error strings for cipher names
2013-03-08 12:11:49 -08:00
toddouska
85b3346bbf
NO_RSA build, cipher suite tests need work for this build optoin, ssn2
2013-03-07 17:44:40 -08:00
John Safranek
591e1fc772
DTLSv1.2, fixed DTLS socket timeout
2013-03-06 23:02:33 -08:00
John Safranek
d52fe96063
added AES-CBC-SHA256 and SHA384 cipher suites.
2013-03-04 13:25:46 -08:00
toddouska
cc9ac1846d
fix ecc w/ no rsa send cert verify and server flag for missing cert verify
2013-02-26 22:24:34 -08:00
John Safranek
88ba790930
added an additional failure case log output to InitSSL() for the RNG initialize failing
2013-02-22 09:51:07 -08:00
John Safranek
6ff39cffe4
Merge branch 'dtls'
...
Conflicts:
cyassl/ctaocrypt/types.h
2013-02-20 17:08:22 -08:00
toddouska
b2b45d3f4a
sb fixes for crl and ocsp
2013-02-20 15:26:22 -08:00
John Safranek
bdadeab342
added storing of out-of-order and fragmented message, missing processing of the stored list
2013-02-19 16:06:02 -08:00
toddouska
dfa1553548
3rd scan build fixes
2013-02-14 16:23:48 -08:00
toddouska
9ea3371079
2nd round scan build
2013-02-14 16:00:45 -08:00
toddouska
62ef5de25c
scan build fixes
2013-02-14 14:09:41 -08:00
toddouska
44e0d7543c
change copyright name with name change
2013-02-05 12:44:17 -08:00
Joakim Soderberg
834ebe5bd8
BUGFIX: Fixed segmentation fault on CyaSSL_BIO_free().
...
In CyaSSL_BIO_new_socket() bio->mem is never initialized. This will cause freeing of unallocated memory in CyaSSL_BIO_free:
if (bio->mem)
XFREE(bio->mem, 0, DYNAMIC_TYPE_OPENSSL);
since bio->mem is not NULL, resulting in a crash.
2013-02-05 11:22:36 +00:00
toddouska
f4f13371f9
update copyright date
2013-02-04 14:51:41 -08:00
Todd Ouska
44b6593fe5
add cavium ciphers to SSL, and example client
2013-02-01 12:21:38 -08:00
Todd Ouska
a361f5c4bf
initial cavium, crypto only, no rsa
2013-01-29 16:22:49 -08:00