1. 2e0901b Don't use ssl3_write_pending in DTLS. by David Benjamin · 9 years ago
  2. 8217024 Document the info callback. by David Benjamin · 9 years ago
  3. 1d5ef3b Add SSL_set_renegotiate_mode. by David Benjamin · 9 years ago
  4. 324dce4 Unbreak SSL_total_renegotiations. by David Benjamin · 9 years ago
  5. 9e4e01e Align the SSL stack on #include style. by David Benjamin · 10 years ago
  6. ee0b02a Don't confuse TLS bidirectional shutdown on record type zero. by David Benjamin · 10 years ago
  7. aa9361b Fix discarding records in bidirectional shutdown. by David Benjamin · 10 years ago
  8. 4cf369b Reject empty records of unexpected type. by David Benjamin · 10 years ago
  9. b8d28cf Factor out the buffering and low-level record code. by David Benjamin · 10 years ago
  10. 3570d73 Remove the func parameter to OPENSSL_PUT_ERROR. by David Benjamin · 10 years ago
  11. 24f346d Limit the number of warning alerts silently consumed. by David Benjamin · 10 years ago
  12. a8ebe22 Add tests for empty record limit and make it work in the async case. by David Benjamin · 10 years ago
  13. a602277 Split ssl_read_bytes hook into app_data and close_notify hooks. by David Benjamin · 10 years ago
  14. c933a47 Switch the ssl_write_bytes hook to ssl_write_app_data. by David Benjamin · 10 years ago
  15. bd15a8e Fix DTLS handling of multiple records in a packet. by David Benjamin · 10 years ago
  16. cd90f3a Remove renegotiation deferral logic. by David Benjamin · 10 years ago
  17. 44d3eed Forbid caller-initiated renegotiations and all renego as a servers. by David Benjamin · 10 years ago
  18. 9a41d1b Deprecate SSL_*_read_ahead and enforce DTLS packet boundaries. by David Benjamin · 10 years ago
  19. 31a0779 Factor SSL_AEAD_CTX into a dedicated type. by David Benjamin · 10 years ago
  20. 4b27d9f Never resume sessions on renegotiations. by David Benjamin · 10 years ago
  21. 897e5e0 Default renegotiations to off. by David Benjamin · 10 years ago
  22. 6a08da2 Remove redundant setup buffer calls. by David Benjamin · 10 years ago
  23. b1f5bca Remove max parameter to ssl3_read_n. by David Benjamin · 10 years ago
  24. 9417b76 Remove DTLS special-cases in buffer releasing. by David Benjamin · 10 years ago
  25. aebefed Always enable SSL_MODE_RELEASE_BUFFERS. by David Benjamin · 10 years ago
  26. b16346b Add SSL_set_reject_peer_renegotiations. by David Benjamin · 10 years ago
  27. f0ae170 Include-what-you-use ssl/internal.h. by David Benjamin · 10 years ago
  28. 2ee94aa Rename ssl_locl.h to internal.h by David Benjamin · 10 years ago
  29. ef4962f Shush warning in alignment code. by David Benjamin · 10 years ago
  30. 883e49f Remove dead code in do_dtls1_write and document another bug. by David Benjamin · 10 years ago
  31. bc746e3 Don't switch s->version on record-layer version mismatch. by David Benjamin · 10 years ago
  32. 4a3f073 Tidy record length check. by David Benjamin · 10 years ago
  33. 9faafda Clean up do_ssl3_write fragment handling. by David Benjamin · 10 years ago
  34. a58c578 Simplify the pointer management around do_ssl3_write. by David Benjamin · 10 years ago
  35. dc3da93 Process alerts between ChangeCipherSpec and Finished. by David Benjamin · 10 years ago
  36. c4482d6 Switch an assert back to a check. by Adam Langley · 10 years ago
  37. 86058a2 Tidy up the alert-parsing code. by David Benjamin · 10 years ago
  38. ed7c475 Rename cutthrough to False Start. by David Benjamin · 10 years ago
  39. ccf74f8 Revise SSL_cutthrough_complete and SSL_in_init. by David Benjamin · 10 years ago
  40. 931ab34 Fix handshake check when False Start is used with implicit read. by David Benjamin · 10 years ago
  41. e0e7d0d Initialize the record buffers after the handshake check. by David Benjamin · 10 years ago
  42. e820df9 Forbid interleaving between application data and handshake protocols. by David Benjamin · 10 years ago
  43. ddb9f15 Reject all invalid records. by David Benjamin · 10 years ago
  44. 1e52eca Normalize tls1_enc return values. by David Benjamin · 10 years ago
  45. b8a56f1 Remove dead code from EVP_CIPHER codepaths. by David Benjamin · 10 years ago
  46. fcf2583 Reformat the rest of ssl/. by Adam Langley · 10 years ago
  47. a6d8101 Consistently use RAND_bytes and check for failure. by David Benjamin · 10 years ago
  48. 1f48fba Use have_version in clamping TLS record-layer version to 1.0. by David Benjamin · 10 years ago
  49. e99e912 Pull SSL3_ENC_METHOD out of SSL_METHOD. by David Benjamin · 10 years ago
  50. af7e74b Remove variable shadowing. by Adam Langley · 10 years ago
  51. 1299923 Check EVP_Cipher return values. by David Benjamin · 10 years ago
  52. 8c6fe45 Replace s->first_packet with a s->s3->have_version bit. by David Benjamin · 10 years ago
  53. e319a2f Remove SSL3_FLAGS_NO_RENEGOTIATE_CIPHERS. by David Benjamin · 10 years ago
  54. 4cd8c43 Remove support for processing fragmented alerts by Alex Chernyakhovsky · 10 years ago
  55. b4188f0 Don't be lenient if the client attempts unsafe renego. by David Benjamin · 10 years ago
  56. 6867f48 Remove #if 0'd code documenting an old bug. by David Benjamin · 10 years ago
  57. ec48af4 Make SSL_MODE_AUTO_RETRY the default. by Adam Langley · 10 years ago
  58. e92fc18 Remove remnant of SRP. by David Benjamin · 10 years ago
  59. fb3ff2c Don't compare signed vs. unsigned. by David Benjamin · 11 years ago
  60. c92c2d7 Prune some dead quirks and document the SSL_OP_ALL ones. by David Benjamin · 11 years ago
  61. f0fd373 Remove remnants of EVP_CIPHER-based AES_GCM cipher. by David Benjamin · 11 years ago
  62. 5b8f104 Revise hash management for reading the Finished message. by David Benjamin · 11 years ago
  63. 09bd58d Replace some DTLS version checks with SSL_IS_DTLS. by David Benjamin · 11 years ago
  64. 7fdeaf1 Retry sending record split fragment when SSL write fails. by Kenny Root · 11 years ago
  65. a324603 Remove OPENSSL_NO_TLS{,1} by Alex Chernyakhovsky · 11 years ago
  66. 46cfb0e Remove redundant check. by Adam Langley · 11 years ago
  67. 86271ee Change CCS_OK to EXPECT_CCS. by David Benjamin · 11 years ago
  68. 13ab3e3 Remove heartbeat extension. by David Benjamin · 11 years ago
  69. 3f6fa3d Remove more remnants of compression. by David Benjamin · 11 years ago
  70. 87750b4 Added OPENSSL_assert check as per PR#3377 reported by Rainer Jung <rainer.jung@kippdata.de> by Adam Langley · 11 years ago
  71. ce7f9ca Fix for CVE-2014-0224 by Adam Langley · 11 years ago
  72. ec48ffc Additional CVE-2014-0224 protection. by Adam Langley · 11 years ago
  73. 45fb1ec Sync with upstream's fix for PR#3321. by Adam Langley · 11 years ago
  74. 9611cfc safety check to ensure we dont send out beyond the users buffer by Adam Langley · 11 years ago
  75. 4a35a93 Fix use after free. by Adam Langley · 11 years ago
  76. c6c8ae8 Fix use-after-free after a deferred alert. by Adam Langley · 11 years ago
  77. d493d52 CBC record splitting. by Adam Langley · 11 years ago
  78. de0b202 ChaCha20-Poly1305 support. by Adam Langley · 11 years ago
  79. c9fb375 SSL AEAD support. by Adam Langley · 11 years ago
  80. 48105fa Empty record limit. by Adam Langley · 11 years ago
  81. 95c29f3 Inital import. by Adam Langley · 11 years ago