index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
src
/
libstrongswan
/
plugins
/
openssl
Commit message (
Expand
)
Author
Age
Files
Lines
*
curl: For SSL features, depend on thread-safety provided by our crypto plugins
Martin Willi
2014-09-24
1
-0
/
+2
*
openssl: Report correct key length for EC keys when not using NIST curves
Tobias Brunner
2014-09-02
2
-22
/
+2
*
openssl: Don't re-enter FIPS mode if we are already using it
Martin Willi
2014-06-04
1
-2
/
+3
*
openssl: Be less verbose about FIPS mode when not running as daemon
Martin Willi
2014-06-04
1
-2
/
+2
*
openssl: Fix includes to prevent <winsock2.h> to complain about include order
Martin Willi
2014-06-04
2
-6
/
+8
*
openssl: Undef OpenSSLs X509_NAME defined by <wincrypt.h>
Martin Willi
2014-06-04
1
-0
/
+6
*
openssl: Check and link against libeay32 instead of libcrypto on Windows
Martin Willi
2014-06-04
1
-1
/
+1
*
plugins: Don't link with -rdynamic on Windows
Martin Willi
2014-06-04
1
-1
/
+1
*
aead: Support custom AEAD salt sizes
Martin Willi
2014-03-31
2
-2
/
+12
*
openssl: Add default fallback when calculating fingerprints of RSA keys
Tobias Brunner
2014-03-22
1
-1
/
+15
*
lib: All settings use configured namespace
Tobias Brunner
2014-02-12
5
-5
/
+5
*
openssl: Verify that a peer's ECDH public value is a point on the elliptic curve
Tobias Brunner
2013-11-19
1
-0
/
+5
*
openssl: Add workaround if ECC Brainpool curves are not defined
Tobias Brunner
2013-10-17
1
-11
/
+247
*
openssl: Add support for ECC Brainpool curves for DH, if defined by OpenSSL
Tobias Brunner
2013-10-17
2
-6
/
+51
*
iv_gen: aead_t implementations provide an IV generator
Tobias Brunner
2013-10-11
1
-0
/
+15
*
Remove HASH_PREFERRED, usages are replaced with HASH_SHA1, which is required ...
Tobias Brunner
2013-10-11
1
-3
/
+3
*
openssl: Properly log FIPS mode when enabled via openssl.conf
Tobias Brunner
2013-09-27
1
-5
/
+13
*
openssl: Add support for generic encoding of EC public keys
Tobias Brunner
2013-09-13
1
-23
/
+13
*
openssl: Add generic RSA public key encoding
Tobias Brunner
2013-09-13
1
-3
/
+17
*
openssl: Add helper function to convert BIGNUMs to chunks
Tobias Brunner
2013-09-13
2
-0
/
+27
*
automake: replace INCLUDES by AM_CPPFLAGS
Martin Willi
2013-07-18
1
-4
/
+5
*
openssl: parse X.509 extended key usage from extension parsing loop
Martin Willi
2013-07-18
1
-33
/
+38
*
openssl: show which critical X.509 extension is not supported
Martin Willi
2013-07-18
1
-1
/
+6
*
Recognize critical IssuingDistributionPoint CRL extension
Andreas Steffen
2013-07-12
1
-0
/
+4
*
openssl: RAND_pseudo_bytes() returns 0 if bytes are not cryptographically strong
Martin Willi
2013-07-04
1
-9
/
+6
*
openssl: add support for IP addr blocks in X.509 certificates
Michael Rossberg
2013-05-24
1
-1
/
+115
*
openssl: Only warn about unavailable FIPS mode if the user requested it
Tobias Brunner
2013-05-08
1
-1
/
+1
*
openssl: Cleanup thread specific error buffer
Tobias Brunner
2013-05-08
1
-5
/
+38
*
openssl: Don't use deprecated CRYPTO_set_id_callback() with OpenSSL >= 1.0.0
Tobias Brunner
2013-05-08
1
-17
/
+29
*
openssl: Add PKCS#12 parsing via OpenSSL
Tobias Brunner
2013-05-08
4
-0
/
+307
*
openssl: Properly cleanup OpenSSL library
Tobias Brunner
2013-05-08
1
-2
/
+7
*
Add support for untruncated HMAC-SHA-512
Tobias Brunner
2013-05-08
1
-0
/
+1
*
openssl: Define a default for FIPS_MODE
Tobias Brunner
2013-05-03
1
-0
/
+4
*
support of OpenSSL FIPS-140-2 library
Andreas Steffen
2013-04-16
2
-1
/
+20
*
Allow SHA1_Init()/SHA1_Update() to fail if OpenSSL version >= 1.0
Martin Willi
2013-04-10
1
-0
/
+14
*
Check RSA_public_decrypt() length before constructing and comparing a chunk
Martin Willi
2013-04-10
1
-7
/
+10
*
RSA_check_key() may return -1 if it fails
Martin Willi
2013-04-10
1
-2
/
+2
*
RAND_bytes/RAND_pseudo_bytes returns -1 if it is not supported by RAND method
Martin Willi
2013-04-10
1
-1
/
+1
*
Check return value of ECDSA_Verify() correctly
Martin Willi
2013-04-10
1
-1
/
+1
*
openssl: The EVP GCM interface requires at least OpenSSL 1.0.1
Tobias Brunner
2013-03-01
2
-0
/
+8
*
openssl: Provide AES-GCM implementation
Tobias Brunner
2013-02-28
4
-1
/
+312
*
openssl: Disable PKCS#7/CMS when building against OpenSSL < 0.9.8g
Tobias Brunner
2013-02-20
2
-1
/
+5
*
openssl: Properly honor OPENSSL_NO_* defines
Tobias Brunner
2013-01-31
7
-5
/
+31
*
Properly check MSB in openssl plugin's PKCS#7 implementation
Tobias Brunner
2013-01-24
1
-1
/
+1
*
Include opensslconf.h before checking its defines
Martin Willi
2013-01-03
1
-0
/
+2
*
Don't build OpenSSL PKCS#7 code if OPENSSL_NO_CMS defined
Martin Willi
2013-01-03
1
-0
/
+4
*
Fix up serialNumber in openssl PKCS#7 if it has a leading MSB set
Martin Willi
2012-12-19
1
-2
/
+7
*
Implement PKCS#7 decryption using openssl
Martin Willi
2012-12-19
1
-16
/
+255
*
Make available wrapped certificates while verifying PKCS#7 signatures in openssl
Martin Willi
2012-12-19
1
-0
/
+22
*
Implement openssl PKCS#7 certficiate enumeration
Martin Willi
2012-12-19
1
-0
/
+72
[next]