summaryrefslogtreecommitdiff
path: root/lib
Commit message (Expand)AuthorAgeFilesLines
* range: make length hiding always usable under TLS 1.3Daiki Ueno2018-02-051-4/+20
* doc: fix mention of gnutls_record_send_range()Daiki Ueno2018-02-052-4/+4
* doc updateNikos Mavrogiannopoulos2018-02-053-5/+3
* check_ocsp_response: print OCSP response actual error on debug logNikos Mavrogiannopoulos2018-02-054-0/+68
* x509/cert: reorganizedNikos Mavrogiannopoulos2018-02-054-635/+631
* cert auth: use a single callback to call for OCSPNikos Mavrogiannopoulos2018-02-053-30/+25
* ocsp: introduced gnutls_certificate_get_ocsp_expiration()Nikos Mavrogiannopoulos2018-02-054-6/+92
* ocsp: enhanced the OCSP response loading APIsNikos Mavrogiannopoulos2018-02-0514-77/+405
* cert: introduced flag GNUTLS_CERTIFICATE_SKIP_OCSP_RESPONSE_CHECKNikos Mavrogiannopoulos2018-02-052-1/+18
* gnutls_certificate_set_ocsp_status_request_file: match input response to cert...Nikos Mavrogiannopoulos2018-02-056-22/+112
* ocsp: moved non-extension related functions to ocsp-api.cNikos Mavrogiannopoulos2018-02-053-250/+287
* gnutls_ocsp_status_request_get2: allow operation under TLS1.3 for server sideNikos Mavrogiannopoulos2018-02-051-2/+3
* select_sign_algorithm: check KX type only on pre-TLS1.3Nikos Mavrogiannopoulos2018-02-051-1/+1
* rename _gnutls_selected_certs_set -> selected_certs_setNikos Mavrogiannopoulos2018-02-051-33/+33
* ocsp: send all the OCSP responses under TLS1.3Nikos Mavrogiannopoulos2018-02-054-11/+117
* introduced gnutls_certificate_retrieve_function3Nikos Mavrogiannopoulos2018-02-057-223/+366
* nettle base64_encode_raw: use cast to avoid warningsNikos Mavrogiannopoulos2018-02-053-4/+4
* gnutls_ocsp_resp_list_import2: introducedNikos Mavrogiannopoulos2018-02-054-2/+145
* ocsp: introduced gnutls_ocsp_resp_import2 and gnutls_ocsp_resp_export2Nikos Mavrogiannopoulos2018-02-053-11/+99
* _gnutls_x509_cert_verify_peers: verify all received OCSP responsesNikos Mavrogiannopoulos2018-02-051-22/+29
* gnutls_ocsp_status_request_get2: added functionNikos Mavrogiannopoulos2018-02-053-3/+39
* tls13/certificate: parse OCSP status response and save responses in auth info...Nikos Mavrogiannopoulos2018-02-053-45/+90
* ext/status_request: allow more than a single OCSP response to be receivedNikos Mavrogiannopoulos2018-02-055-99/+136
* _gnutls_copy_certificate_auth_info: simplified and avoid multiple allocationsNikos Mavrogiannopoulos2018-02-053-33/+17
* priorities: provide a more consistent "story" for default cipher settingsNikos Mavrogiannopoulos2018-02-051-37/+13
* certificate request: corrected parsing of signature algorithmsNikos Mavrogiannopoulos2018-02-051-0/+10
* doc: documented hsk_flags "lifetime" and its resetNikos Mavrogiannopoulos2018-02-051-0/+2
* session state: TLS1.2 and TLS1.3 state is stored as unionNikos Mavrogiannopoulos2018-02-0510-119/+136
* session state: organized key exchange keys into structuresNikos Mavrogiannopoulos2018-02-0514-244/+257
* record state: avoid memory allocations for stored keysNikos Mavrogiannopoulos2018-02-054-123/+128
* handshake: ffdhe flags merged with handshake flagsNikos Mavrogiannopoulos2018-02-056-16/+12
* handshake: false start flag merged with hsk_flagsNikos Mavrogiannopoulos2018-02-053-6/+3
* handshake: use hsk_flags in TLS1.2 and TLS1.3Nikos Mavrogiannopoulos2018-02-058-19/+13
* handshake: added support for post-handshake authenticationNikos Mavrogiannopoulos2018-02-0514-51/+448
* gnutls_record_set_state: use const for seq_numberNikos Mavrogiannopoulos2018-02-052-2/+2
* gnutls_record_get_state: doc updateNikos Mavrogiannopoulos2018-02-051-2/+3
* Introduce key usage limits under TLS1.3Nikos Mavrogiannopoulos2018-02-054-1/+18
* gnutls_*handshake: wrap gnutls_session_key_update under TLS 1.3Nikos Mavrogiannopoulos2018-02-051-41/+68
* handshake: introduced gnutls_session_key_update()Nikos Mavrogiannopoulos2018-02-059-147/+229
* handshake: added TLS1.3 passive key updateNikos Mavrogiannopoulos2018-02-0510-57/+412
* keylogfile: write TLS 1.3 secretsDaiki Ueno2018-02-052-0/+17
* _gnutls_nss_keylog_write: define new internal APIDaiki Ueno2018-02-054-20/+42
* hkdf: refer to nettle's hkdf.h when availableNikos Mavrogiannopoulos2018-02-051-0/+8
* doc updateNikos Mavrogiannopoulos2018-02-051-1/+1
* gnutls_prf_rfc5705: apply the context limits only under TLS1.2 or earlierNikos Mavrogiannopoulos2018-02-051-5/+5
* gnutls_prf_raw: fail under TLS1.3Nikos Mavrogiannopoulos2018-02-051-4/+9
* gnutls_prf: prevent usage under TLS1.3Nikos Mavrogiannopoulos2018-02-051-5/+12
* gnutls_prf_rfc5705: calculate exporter using HKDF if TLS 1.3Daiki Ueno2018-02-051-18/+62
* handshake-tls13: derive and store exporter_master_secretDaiki Ueno2018-02-053-2/+11
* _tls13_derive_secret: define secret argumentDaiki Ueno2018-02-055-25/+18