John Safranek
|
489fbf17fe
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-07-19 17:22:16 -07:00 |
|
John Safranek
|
ac79d3b145
|
replaced magic numbers with named constants, renamed some constants
|
2012-07-17 10:00:45 -07:00 |
|
toddouska
|
c9a4e9d56b
|
fix DHE client side leak
|
2012-07-13 16:54:31 -07:00 |
|
toddouska
|
4ffb3bbaae
|
make sure ssl init does all inits before erroring out
|
2012-07-13 12:31:15 -07:00 |
|
John Safranek
|
aaad893804
|
fixed merge conflict
|
2012-07-12 08:39:57 -07:00 |
|
toddouska
|
1f0a32a7e3
|
use internal enum for cipher requires, move external enums back to starting at zero
|
2012-07-11 17:00:16 -07:00 |
|
John Safranek
|
bdacd5e8c4
|
cleaned up lots-o-warnings build
|
2012-07-09 10:33:05 -07:00 |
|
John Safranek
|
1ac6db9d1d
|
added basic hello extension support for TLSv1.2, renumbered the algorithm enumerations to match RFC
|
2012-07-09 10:02:34 -07:00 |
|
John Safranek
|
fe64523480
|
backed out an earlier change pending more research
|
2012-07-02 12:36:28 -07:00 |
|
John Safranek
|
b1e39f66a3
|
fixed a cipher suite name typo, changed the selection of the ECDH-RSA ciphers in InitSuites()
|
2012-06-30 15:50:25 -07:00 |
|
John Safranek
|
5dc0303dee
|
cipher suite setup oversight fixes
|
2012-06-28 23:09:13 -07:00 |
|
John Safranek
|
2ce28d0328
|
clean up from lots-o-warnings build
|
2012-06-28 15:13:41 -07:00 |
|
John Safranek
|
00cda6ab72
|
tied SHA-384 into TLSv1.2 as appropriate
|
2012-06-27 14:41:16 -07:00 |
|
John Safranek
|
4e3d7f494b
|
AES-GCM: fixed the encryption/decryption bug
|
2012-06-26 15:51:40 -07:00 |
|
John Safranek
|
3a9a195683
|
Initial draft of AES GCM cipher suites. Missing SHA-384 support.
|
2012-06-26 09:30:48 -07:00 |
|
John Safranek
|
918ea3a074
|
added the library framework for handling aes-gcm in TLS
|
2012-06-18 15:57:37 -07:00 |
|
toddouska
|
ba2d7f590e
|
internal sanity checks on memcmp
|
2012-06-01 15:25:46 -07:00 |
|
toddouska
|
8a52cd3780
|
byte warning casts
|
2012-06-01 14:37:39 -07:00 |
|
toddouska
|
fbc5c8d6dc
|
add SSL set version, different from ctx version
|
2012-05-31 15:24:25 -07:00 |
|
toddouska
|
6a62623c64
|
verify suite validity before server picks
|
2012-05-25 12:18:18 -07:00 |
|
John Safranek
|
0a31dc3a37
|
renumbered new error codes and dynamic data types
|
2012-05-24 14:36:40 -07:00 |
|
toddouska
|
73ddd32539
|
add crl checkall processing
|
2012-05-24 12:45:10 -07:00 |
|
toddouska
|
2b48f248c4
|
crl dir monitoring for linux and mac
|
2012-05-22 17:25:15 -07:00 |
|
John Safranek
|
708f38ac8d
|
added OCSP error codes
|
2012-05-22 15:52:08 -07:00 |
|
toddouska
|
5bc728b882
|
fix lots o warnings
|
2012-05-17 17:44:54 -07:00 |
|
toddouska
|
4b8ab62bd1
|
don't retrieve or cache null sessions
|
2012-05-17 10:55:42 -07:00 |
|
toddouska
|
ac92d30955
|
fix else braces
|
2012-05-17 07:55:25 -07:00 |
|
toddouska
|
3ec2b9dbbc
|
crl stage 2
|
2012-05-16 17:04:56 -07:00 |
|
toddouska
|
7b2d62f4f7
|
don't compare session id if server rejects
|
2012-05-11 12:21:17 -07:00 |
|
John Safranek
|
4feeeeda55
|
OCSP request creation almost complete, added ocsp revoke error code
|
2012-05-08 18:32:57 -07:00 |
|
John Safranek
|
f9985f5399
|
merge fix
|
2012-05-05 14:49:17 -07:00 |
|
toddouska
|
4fe81df45c
|
basic extneral cert manager added
|
2012-05-03 18:07:31 -07:00 |
|
toddouska
|
686a7395b1
|
fix potential ecc memory leak in ServerKeyExchange
|
2012-05-03 10:04:18 -07:00 |
|
toddouska
|
97e6a637e6
|
rest of ECDH suites
|
2012-05-03 09:57:17 -07:00 |
|
toddouska
|
a54f51d886
|
first static ECDH suite
|
2012-05-03 08:18:59 -07:00 |
|
John Safranek
|
669fbf2a14
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-02 14:45:37 -07:00 |
|
John Safranek
|
9c5bcca1ab
|
updates to OCSP
|
2012-05-02 14:45:30 -07:00 |
|
toddouska
|
1c2b84d3dd
|
ecc client certs
|
2012-05-02 10:30:15 -07:00 |
|
toddouska
|
607fcb2f3d
|
allow peer cert get even on fatal verify
|
2012-04-09 11:56:28 -07:00 |
|
toddouska
|
36529ad873
|
DevStudio 10 patches
|
2012-03-23 10:42:07 -07:00 |
|
John Safranek
|
fc2f329acb
|
added: ex data for CYASSL object, cert cmp function, verify callback call in success case
|
2012-03-16 10:50:04 -07:00 |
|
toddouska
|
815f3b8f75
|
terminate user psk hint at ssl even if validated at ctx
|
2012-02-29 10:06:27 -08:00 |
|
toddouska
|
f92df4b4ce
|
fix long user provided path with strncpy
|
2012-02-29 09:57:03 -08:00 |
|
toddouska
|
6b77c8967a
|
don't allow user override on peer cert ASN_PARSE_E
|
2012-02-20 12:07:40 -08:00 |
|
toddouska
|
ec85d47a73
|
allow changing session timeout for ctx and ssl
|
2012-02-14 17:46:04 -08:00 |
|
toddouska
|
f8e610493c
|
add ability to set Temp EC-DHE key size in octets for ctx or ssl, 20 - 66 allowed for 160bit - 521bit
|
2012-02-14 12:46:32 -08:00 |
|
toddouska
|
84614da13e
|
increase copyright date 2012
|
2012-02-13 11:54:10 -08:00 |
|
toddouska
|
20c8fab779
|
fix ecc cleanup bug with opensslExtra no fastmath
|
2012-02-13 11:36:07 -08:00 |
|
toddouska
|
bce2508878
|
add path handling (basic) for load_verify_locations()
|
2012-02-08 18:07:20 -08:00 |
|
toddouska
|
9b5ab7c914
|
respond to negotiation attempt with alert warning no_renegotiation to try graceful continue if possible
|
2012-02-01 17:18:40 -08:00 |
|