Sign in
boringssl
/
boringssl.git
/
f04c2e987871f852d0ec391005d9202157999523
/
ssl
/
ssl_cert.c
a2bda9f
Make more functions static.
by David Benjamin
· 8 years ago
a833c35
Update to TLS 1.3 draft 18.
by Steven Valdez
· 8 years ago
c5ac2b6
Rename X.509 members in |SSL_SESSION| and |CERT|.
by Adam Langley
· 8 years ago
938fa7c
Inline tls1_check_ec_cert.
by David Benjamin
· 8 years ago
a048678
Move some fields from tmp to hs.
by David Benjamin
· 8 years ago
5409123
Use C99 for size_t loops.
by David Benjamin
· 9 years ago
a6cd185
Set verify_result, even on failure.
by Adam Langley
· 9 years ago
0fc37ef
Fix a number of sigalg scope issues.
by David Benjamin
· 9 years ago
7aa31d6
Remove ssl->verify_result.
by David Benjamin
· 9 years ago
96a16cd
Finish aligning up_ref functions with OpenSSL 1.1.0.
by David Benjamin
· 9 years ago
37b486a
Remove optimisation for known DH groups.
by Adam Langley
· 9 years ago
e455e51
Push some duplicated code into ssl_verify_cert_chain.
by David Benjamin
· 9 years ago
13f1ebe
Factor out the client_cert_cb code.
by David Benjamin
· 9 years ago
bf5aa84
Moving ssl_check_leaf_certificate to ssl_cert.
by Steven Valdez
· 9 years ago
5c900c8
Factor out certificate list parsing.
by David Benjamin
· 9 years ago
e0332e8
Factor out CA list parsing.
by David Benjamin
· 9 years ago
32a66d5
Tidy up a few certificate-related utility functions.
by David Benjamin
· 9 years ago
310d3f6
Change |EVP_PKEY_up_ref| to return int.
by Adam Langley
· 9 years ago
d246b81
Don't decompose sigalgs in key preferences.
by David Benjamin
· 9 years ago
57a6f3c
Fix missing cert length prefix.
by Steven Valdez
· 9 years ago
7583643
Disconnect handshake message creation from init_buf.
by David Benjamin
· 9 years ago
b32a915
Ensure we check i2d_X509 return val
by Steven Valdez
· 9 years ago
66b2fe8
Add |SSL_CTX_set_private_key_method| to parallel |SSL_set_private_key_method|
by Tom Thorogood
· 9 years ago
d323f4b
Bring back |verify_store|.
by Adam Langley
· 9 years ago
5ba0689
Don't cast |OPENSSL_malloc|/|OPENSSL_realloc| result.
by Brian Smith
· 9 years ago
60a08ac
Remove unreachable code to duplicate DH keys.
by David Benjamin
· 9 years ago
5ddffbb
Make SSL_(CTX_)?set_tmp_ecdh call SSL_(CTX_)?set1_curves.
by David Benjamin
· 9 years ago
53e5c2c
Remove SSL_(CTX_)?set_ecdh_callback.
by David Benjamin
· 9 years ago
5993704
Document certificate verification functions in SSL.
by David Benjamin
· 10 years ago
0d62f26
Adding more options for signing digest fallback.
by Steven Valdez
· 10 years ago
306ece3
Fix some malloc failure crashes.
by David Benjamin
· 10 years ago
1d128f3
Make SSL_get_client_CA_list slightly more OpenSSL-compatible.
by David Benjamin
· 10 years ago
443a1f6
Toss file-related convenience bits of ssl/ into a corner.
by David Benjamin
· 10 years ago
26416e9
Remove the last of SESS_CERT.
by David Benjamin
· 10 years ago
b1bdc5b
Remove peer_cert from SESS_CERT.
by David Benjamin
· 10 years ago
6505567
Move peer_dh_tmp and peer_ecdh_tmp out of SESS_CERT.
by David Benjamin
· 10 years ago
3dd9016
Remove signature algorithm configuration hooks and SSL_ctrl.
by David Benjamin
· 10 years ago
2b9ec70
Remove SSL_CTRL_SET_CLIENT_CERT_TYPES.
by David Benjamin
· 10 years ago
d27441a
Remove separate APIs for configuring chain and verify stores.
by David Benjamin
· 10 years ago
aa58513
Reserve ex_data index zero for app_data.
by David Benjamin
· 10 years ago
3570d73
Remove the func parameter to OPENSSL_PUT_ERROR.
by David Benjamin
· 10 years ago
71d2e54
Clear key_method in ssl_cert_clear_certs.
by David Benjamin
· 10 years ago
11c0f8e
Promote certificate-related ctrl macros to functions.
by David Benjamin
· 10 years ago
b2a9d6a
Remove SSL_build_cert_chain.
by David Benjamin
· 10 years ago
d1d8078
Fold away certificate slots mechanism.
by David Benjamin
· 10 years ago
bb20f52
Merge the RSA_ENC and RSA_SIGN certificate slots.
by David Benjamin
· 10 years ago
680ca96
Preserve session->sess_cert on ticket renewal.
by David Benjamin
· 10 years ago
b31040d
Get rid of CERT_PKEY slots in SESS_CERT.
by David Benjamin
· 10 years ago
4bdb6e4
Remove remaining calls to the old lock functions.
by Adam Langley
· 10 years ago
0da323a
Convert reference counts in crypto/
by Adam Langley
· 10 years ago
9a10f8f
Switch EVP_PKEY_dup calls to EVP_PKEY_up_ref.
by David Benjamin
· 10 years ago
6abb370
Remove ciphers_raw.
by David Benjamin
· 10 years ago
60da0cd
Fix STACK_OF pointer style.
by David Benjamin
· 10 years ago
605641e
Move the NULL case in ssl_add_cert_chain up.
by David Benjamin
· 10 years ago
9362b6e
Errors are uint32_t, not unsigned long.
by David Benjamin
· 10 years ago
2755a3e
Remove unnecessary NULL checks, part 5.
by David Benjamin
· 10 years ago
ed8fbad
Remove SSL cert_flags.
by David Benjamin
· 10 years ago
dd97878
Always enable ecdh_auto.
by David Benjamin
· 10 years ago
f0ae170
Include-what-you-use ssl/internal.h.
by David Benjamin
· 10 years ago
2ee94aa
Rename ssl_locl.h to internal.h
by David Benjamin
· 10 years ago
c0f763b
Simplify server-side ECDH curve selection.
by David Benjamin
· 10 years ago
ab2479a
Clean up error reporting.
by Håvard Molland
· 10 years ago
b85a4c2
Remove unnecessary NULL initializations in ssl_cert_dup.
by David Benjamin
· 10 years ago
a5a3eeb
Remove ssl_cert_inst()
by David Benjamin
· 10 years ago
6eb000d
Add in missing curly braces part 3.
by David Benjamin
· 10 years ago
a307dfd
Add (void) to some macros to satisfy compiler.
by Adam Langley
· 10 years ago
fcf2583
Reformat the rest of ssl/.
by Adam Langley
· 10 years ago
2481975
Reformat d1_{srtp|srvr}.c and s3_both.c
by Adam Langley
· 10 years ago
8278184
Remove redundant checks in ssl_cert_dup.
by David Benjamin
· 10 years ago
63246e8
Remove s->type from SSL.
by David Benjamin
· 10 years ago
ec2f27d
Account for EVP_PKEY capabilities in selecting hash functions.
by David Benjamin
· 10 years ago
033e5f4
Remove CERT_PKEY::valid_flags.
by David Benjamin
· 10 years ago
f31e681
Clean up ssl_set_cert_masks.
by David Benjamin
· 10 years ago
675227e
Remove CERT_PKEY_EXPLICIT_SIGN flag.
by David Benjamin
· 10 years ago
525a0fe
Remove client-side support for ServerKeyExchange in the RSA key exchange.
by David Benjamin
· 10 years ago
3f38390
Properly clean up on ssl_cert_dup failure.
by David Benjamin
· 10 years ago
fb3ff2c
Don't compare signed vs. unsigned.
by David Benjamin
· 11 years ago
457112e
unifdef a bunch of OPENSSL_NO_* ifdefs.
by David Benjamin
· 11 years ago
422d3a4
Remove some unused state and code.
by David Benjamin
· 11 years ago
a7d1363
Prune removed key types from SSL_PKEY_*.
by David Benjamin
· 11 years ago
335d10d
Remove Suite B mode.
by David Benjamin
· 11 years ago
67454b6
Don't X509_up_ref X509_STOREs.
by David Benjamin
· 11 years ago
150c617
Add X509_up_ref and use it internally.
by David Benjamin
· 11 years ago
44dbcc0
Remove SSL_get_client_certificate_types.
by David Benjamin
· 11 years ago
77a942b
Don't use the RSA key exchange with a signing-only key.
by David Benjamin
· 11 years ago
060d9d2
Remove support code for export cipher suites.
by David Benjamin
· 11 years ago
676d1e7
Separate client and server certificate_types.
by David Benjamin
· 11 years ago
398ba89
Remove SSL_copy_session_id.
by David Benjamin
· 11 years ago
5468b23
Remove rest of DANE code.
by David Benjamin
· 11 years ago
3c5034e
Remove OPENSSL_NO_RSA
by Alex Chernyakhovsky
· 11 years ago
2b0aeeca
Remove authz extension (RFC5878)
by David Benjamin
· 11 years ago
d7e23c1
Remove serverinfo and custom extensions support.
by David Benjamin
· 11 years ago
5c57c60
Deprecate SSL_get_client_certificate_types.
by David Benjamin
· 11 years ago
64c2223
Update chain building function.
by Adam Langley
· 11 years ago
dff7b9e
Allow duplicate certs in ssl_build_cert_chain
by Adam Langley
· 11 years ago
f669c2d
New chain building flags.
by Adam Langley
· 11 years ago
28acbbc
Add SSL_get_client_certificate_types.
by Adam Langley
· 11 years ago
95c29f3
Inital import.
by Adam Langley
· 11 years ago