resetting manifest requested domain to floor
[platform/upstream/openconnect.git] / ssl.c
2013-02-05 David WoodhouseDon't append port number to hostname when canonicalising
2013-02-04 David WoodhouseCanonicalise hostname during authentication if necessary
2012-10-17 Jiří KlimešFix typo "Keystore ocked" -> "Keystore locked"
2012-09-26 David WoodhouseFix use-after-free of numeric IPv6 hostname on error...
2012-09-26 David WoodhouseClose ssl_sock before returning error in connect_https_...
2012-09-23 David WoodhouseBe explicit when we're connecting to a proxy not direct...
2012-06-19 David WoodhouseNUL-terminate blobs from Andoird keystore
2012-06-17 David WoodhouseSwitch from Android's keystore_get() to our own keystor...
2012-06-15 David WoodhouseFix Android build
2012-06-14 David WoodhouseFix GnuTLS 2.12 library still referencing OpenSSL ERR_p...
2012-06-13 David WoodhouseAllow GUI to distinguish between PIN/passphrase callbacks
2012-06-11 David WoodhouseAllow building against GnuTLS (for TCP) and GnuTLS...
2012-06-08 David WoodhouseFix cbdata argument to process_auth_form()
2012-06-04 David WoodhouseMove request_passphrase() to ssl.c
2012-06-01 David WoodhouseFix FreeBSD compile
2012-05-31 David WoodhouseMove openconnect_SSL_printf() to ssl.c
2012-05-29 David WoodhouseMove OpenSSL-specific functions from ssl.c to openssl.c
2012-05-29 David WoodhouseSplit out connect_https_socket() function from openconn...
2012-05-29 David WoodhouseBe more self-sufficient with header inclusions
2012-05-29 David WoodhouseAdd openconnect_get_cert_details() function
2012-05-29 David WoodhouseMove peer_cert handling to openconnect_open_https()
2012-05-28 David WoodhouseMake openconnect_open_https() and openconnect_close_htt...
2012-05-18 David WoodhouseFix invalid progress callback on socket cancellation
2012-05-17 David WoodhouseStash peer certificate before fetching HTTP response
2012-05-17 David WoodhouseUse SOCK_CLOEXEC when opening TCP socket
2012-05-14 David WoodhouseCall BIO_set_nbio() for SSL BIO at startup
2012-05-14 David WoodhouseNamespace cleanup: s/set_http_proxy/openconnect_set_htt...
2012-05-13 David WoodhouseUpdate copyright years
2012-05-12 David WoodhouseAdd openconnect_SSL_read() functional which handles...
2012-05-12 David WoodhouseHandle cancellation in openconnect_SSL_gets()
2012-05-12 David WoodhouseAdd cancellable openconnect_SSL_write(), use it from...
2012-05-12 David WoodhouseReturn non-blocking socket from openconnect_open_https()
2012-05-12 David WoodhouseAdd vpninfo arg to openconnect_SSL_{printf,gets} functions
2012-05-12 David WoodhouseAdd cancellation handling to SSL_connect() for https...
2012-05-12 David WoodhouseAdd cancellation handling to proxy I/O functions
2012-05-12 David WoodhouseHandling cancellation during initial connect()
2011-12-03 David WoodhouseFix potential crash in processing libproxy results.
2011-11-05 David WoodhouseRemove all _xxx_SOURCE macros from source, do it in...
2011-11-04 David WoodhouseFix NetBSD ctype warnings.
2011-10-28 David WoodhousePointers to translated strings must be const
2011-09-29 David WoodhouseMake certificate expiry warning time variable (still...
2011-09-23 David WoodhouseReduce certificate warning to PRG_INFO
2011-09-22 David WoodhouseMake user-visible strings translatable
2011-09-22 David WoodhouseFix libproxy build.
2011-09-15 David WoodhouseFix char pointers in check_certificate_expiry() to...
2011-09-15 David WoodhouseMake match_cert_hostname() static to avoid compiler...
2011-08-16 David WoodhouseFix build failure with ancient OpenSSL lacking SSL_OP_N...
2011-08-16 Svante SignellFix build failure on GNU Hurd (Debian bug #637362)
2011-07-15 David WoodhouseMake TPM ENGINE support optional
2011-07-15 David WoodhouseUse TLSv1 again, but with no extensions.
2011-06-27 David WoodhouseAdd openconnect_vpninfo_new_with_cbdata() function...
2011-03-09 David WoodhouseFix namespace prefix on get_cert_sha1 function
2011-03-09 David WoodhouseRename openconnect_parse_url() to internal_parse_url()
2011-03-09 David WoodhouseSplit private parts of openconnect.h out into openconne...
2010-11-16 David WoodhouseClean up fingerprint routines
2010-11-16 David WoodhouseNamespace cleanup: s/parse_url/openconnect_parse_url/
2010-11-16 David WoodhouseNamespace cleanup: s/passphrase_from_fsid/openconnect_p...
2010-10-20 David WoodhouseReport and abort when cafile fails to open.
2010-08-31 David WoodhouseUse SSLv3 not TLSv1
2010-08-31 David WoodhouseCheck certificate expiry and complain
2010-05-13 David WoodhouseCompare cert IP address with that of the server......
2010-05-12 David WoodhousePrint UTF8 form of URI in messages, not raw form
2010-05-12 David WoodhouseDon't match URIs with a path component
2010-05-12 David WoodhouseRemove stray debugging printf
2010-05-12 David WoodhouseRemove stray break which stopped processing altnames...
2010-05-12 David WoodhouseUse ASN1_STRING_to_UTF8 for altnames
2010-05-12 David WoodhouseFix handling of GEN_URI altnames.
2010-05-12 David WoodhouseFix handling of GEN_IPADD altnames.
2010-05-12 David WoodhouseAccept GEN_IPADD certificate altneme for raw IPv6 addre...
2010-05-12 David WoodhouseHandle wildcards in hostname matching
2010-05-12 David WoodhouseAttempt to handle GEN_IPADD in X509 altnames. Or at...
2010-05-11 David WoodhouseAdd basic cert hostname matching
2010-05-11 David WoodhousePass failure reason to validate_peer_cert()
2010-05-11 David WoodhouseAlways verify server certificate, even with no cafile
2010-05-11 David WoodhouseClean up PKCS12_parse() bug workaround
2010-05-10 David WoodhouseFix potential memory leak in load_pkcs12_certificate()
2010-05-10 David WoodhouseFix memory leak in verify_peer()
2010-05-07 David WoodhouseWork around OpenSSL SEGV when retrying PKCS#12 passphrase
2010-05-07 David WoodhouseAdd DragonFly BSD too
2010-05-07 David WoodhouseFix NetBSD build.
2010-04-16 David WoodhouseMake some functions static
2010-04-14 David WoodhouseImprove handling of cert passphrase errors
2010-04-14 David WoodhouseFix purpose workaround to build against OpenSSL 0.9.7
2010-04-09 David WoodhouseFix Debian/kFreeBSD build
2010-04-04 David WoodhousePrint failing host name when getaddrinfo() fails
2010-03-29 David WoodhouseCope with server certs without SSL_SERVER purpose bit...
2010-02-23 David WoodhouseFix build where AI_NUMERICSERV isn't defined (OSX ...
2010-02-22 David WoodhouseFix handling of port numbers above 9999
2010-02-03 David WoodhouseCase-insensitive comparison for server SHA1 fingerprint
2010-01-24 David WoodhouseNo strndup() on Solaris. Yay Solaris!
2010-01-05 David WoodhouseCheck return value from asprintf()
2010-01-02 David WoodhouseAdd SOCKS5 support
2010-01-02 David WoodhouseAdd libproxy support, conditionally
2010-01-01 David WoodhouseHandle IPv6 literal [] in connection, accept https...
2010-01-01 David WoodhouseUpdate copyright years
2010-01-01 David WoodhouseAdd proxy support (based on Pál Dorogi's version)
2009-12-23 David WoodhouseClean up redirection, support non-standard port
2009-12-07 David WoodhouseReconnect CSTP to the previously-used IP address; don...
2009-11-09 David WoodhouseCalculate client cert MD5 for CSD with all cert types...
2009-11-09 David WoodhouseClean up error reporting when cert/key can't be loaded
next