2014-04-18 |
Kaspar Brand | Also clear the error queue before calling SSL_CTX_use_c... |
blob | commitdiff | raw |
2014-04-15 |
Jeff Trawick | Follow up to r1587607: |
blob | commitdiff | raw | diff to current |
2014-04-15 |
Jeff Trawick | mod_ssl: Add hooks to allow other modules to perform... |
blob | commitdiff | raw | diff to current |
2014-04-09 |
Kaspar Brand | Only read "active" values from the key_files array... |
blob | commitdiff | raw | diff to current |
2014-04-05 |
Kaspar Brand | Bring SNI behavior into better conformance with RFC... |
blob | commitdiff | raw | diff to current |
2014-03-12 |
Stephen Henson | A bug in some older versions of OpenSSL will cause... |
blob | commitdiff | raw | diff to current |
2014-02-06 |
Kaspar Brand | update APLOGNO for r1564760 |
blob | commitdiff | raw | diff to current |
2014-02-05 |
Kaspar Brand | With OpenSSL 1.0.2 or later, enable OCSP stapling in... |
blob | commitdiff | raw | diff to current |
2014-02-01 |
Kaspar Brand | enable auto curve selection for ephemeral ECDH keys |
blob | commitdiff | raw | diff to current |
2014-02-01 |
Kaspar Brand | Followup fix for r1553824: |
blob | commitdiff | raw | diff to current |
2014-01-05 |
Kaspar Brand | More finishing touches for SSLOpenSSLConfCmd: |
blob | commitdiff | raw | diff to current |
2014-01-05 |
Kaspar Brand | Remove per-certificate chain handling code (obsoleted by |
blob | commitdiff | raw | diff to current |
2013-12-28 |
Kaspar Brand | Remove the hardcoded algorithm-type dependency for... |
blob | commitdiff | raw | diff to current |
2013-12-01 |
Kaspar Brand | SGC became dead in January 2000, effectively |
blob | commitdiff | raw | diff to current |
2013-11-30 |
Kaspar Brand | Tweaks for SSLOpenSSLConfCmd: |
blob | commitdiff | raw | diff to current |
2013-11-30 |
Kaspar Brand | Axe dead code: It wouldn't have been needed ever since... |
blob | commitdiff | raw | diff to current |
2013-11-23 |
Kaspar Brand | Followup to r1544774: do not ignore failures from ssl_s... |
blob | commitdiff | raw | diff to current |
2013-11-23 |
Kaspar Brand | Remove SSLPKCS7CertificateFile support: |
blob | commitdiff | raw | diff to current |
2013-11-23 |
Kaspar Brand | Address a todo listed in |
blob | commitdiff | raw | diff to current |
2013-10-31 |
Joe Orton | For better compatibility with mod_nss: |
blob | commitdiff | raw | diff to current |
2013-10-22 |
Stephen Henson | SSL_CONF support for files and directories. |
blob | commitdiff | raw | diff to current |
2013-10-01 |
Kaspar Brand | PR 55616 (add missing APLOGNO), part 2 |
blob | commitdiff | raw | diff to current |
2013-09-29 |
Kaspar Brand | Improve ephemeral key handling (companion to r1526168): |
blob | commitdiff | raw | diff to current |
2013-09-29 |
Kaspar Brand | Increase minimum required OpenSSL version to 0.9.8a... |
blob | commitdiff | raw | diff to current |
2013-09-29 |
Kaspar Brand | Follow-up fixes for r1526168: |
blob | commitdiff | raw | diff to current |
2013-09-25 |
Kaspar Brand | Streamline ephemeral key handling: |
blob | commitdiff | raw | diff to current |
2013-08-06 |
Jeff Trawick | tweak indentation |
blob | commitdiff | raw | diff to current |
2013-04-15 |
Kaspar Brand | revert r1352596, for the reasons explained in |
blob | commitdiff | raw | diff to current |
2013-04-13 |
Kaspar Brand | Extend check for encrypted private keys: with OpenSSL... |
blob | commitdiff | raw | diff to current |
2013-02-20 |
William A. Rowe Jr | mod_ssl: Quiet FIPS mode weak keys disabled and... |
blob | commitdiff | raw | diff to current |
2012-12-26 |
Kaspar Brand | mod_ssl: add support for subjectAltName-based host... |
blob | commitdiff | raw | diff to current |
2012-12-13 |
Stephen Henson | Add support for OpenSSL configuration commands. |
blob | commitdiff | raw | diff to current |
2012-10-21 |
Stefan Fritsch | Change default for SSLCompression to off, as compression |
blob | commitdiff | raw | diff to current |
2012-08-21 |
Joe Orton | * modules/ssl/ssl_engine_init.c (ssl_init_proxy_certs... |
blob | commitdiff | raw | diff to current |
2012-08-17 |
Joe Orton | * modules/ssl/ssl_engine_init.c (ssl_init_proxy_certs... |
blob | commitdiff | raw | diff to current |
2012-07-06 |
Ben Laurie | Revert accidental commit. |
blob | commitdiff | raw | diff to current |
2012-07-06 |
Ben Laurie | Work correctly with a development version of OpenSSL... |
blob | commitdiff | raw | diff to current |
2012-06-21 |
Ben Laurie | RFC 5878 support. |
blob | commitdiff | raw | diff to current |
2012-06-10 |
Stefan Fritsch | Pass the server_rec to ssl_die() and use it to log... |
blob | commitdiff | raw | diff to current |
2012-06-10 |
Stefan Fritsch | If OPENSSL_NO_COMP is defined, omit merging the compres... |
blob | commitdiff | raw | diff to current |
2012-06-10 |
Stefan Fritsch | Add some improvements as suggested by Kaspar |
blob | commitdiff | raw | diff to current |
2012-06-08 |
Stefan Fritsch | Add support for TLS-SRP (Secure Remote Password key... |
blob | commitdiff | raw | diff to current |
2012-06-01 |
Stefan Fritsch | Add new directive SSLCompression to disable SSL-level... |
blob | commitdiff | raw | diff to current |
2012-05-01 |
Joe Orton | Add support for TLS Next Protocol Negotiation: |
blob | commitdiff | raw | diff to current |
2012-02-27 |
Stefan Fritsch | Initialize EC temporary key on server startup, as for... |
blob | commitdiff | raw | diff to current |
2012-02-08 |
Daniel Ruggeri | Add cleanup for SSLProxyMachineCertificateChainFile... |
blob | commitdiff | raw | diff to current |
2011-12-29 |
Stefan Fritsch | Don't use #ifdef inside macro calls |
blob | commitdiff | raw | diff to current |
2011-12-24 |
Kaspar Brand | SSLProtocol: allow explicit control of TLSv1.1 and... |
blob | commitdiff | raw | diff to current |
2011-12-24 |
Kaspar Brand | Set OPENSSL_NO_SSL_INTERN when compiling against OpenSS... |
blob | commitdiff | raw | diff to current |
2011-12-12 |
Kaspar Brand | logging adjustments: |
blob | commitdiff | raw | diff to current |
2011-12-12 |
Kaspar Brand | Streamline TLS session ticket key handling (added in... |
blob | commitdiff | raw | diff to current |
2011-12-07 |
Stefan Fritsch | Various fixes for log message tags: |
blob | commitdiff | raw | diff to current |
2011-12-04 |
Stefan Fritsch | Add some more log message tags |
blob | commitdiff | raw | diff to current |
2011-12-04 |
Stefan Fritsch | Add some more log message tags |
blob | commitdiff | raw | diff to current |
2011-12-02 |
Stefan Fritsch | Add lots of unique tags to error log messages |
blob | commitdiff | raw | diff to current |
2011-11-18 |
Kaspar Brand | drop SSLv2 support (set SSL_OP_NO_SSLv2 for any new... |
blob | commitdiff | raw | diff to current |
2011-11-09 |
Paul Querna | Add support for RFC 5077 TLS Session tickets. This... |
blob | commitdiff | raw | diff to current |
2011-11-08 |
Stefan Fritsch | Remove some ap_add_version_component() calls that don... |
blob | commitdiff | raw | diff to current |
2011-10-08 |
Stefan Fritsch | Fix a potential NULL pointer dereference found by clang. |
blob | commitdiff | raw | diff to current |
2011-10-01 |
Stefan Fritsch | If MaxMemFree is set, set SSL_MODE_RELEASE_BUFFERS... |
blob | commitdiff | raw | diff to current |
2011-09-28 |
Kaspar Brand | In ssl_check_public_cert(), also take dNSNames in the... |
blob | commitdiff | raw | diff to current |
2011-09-26 |
Daniel Ruggeri | Final update to SSLProxyMachineCertificateChainFile |
blob | commitdiff | raw | diff to current |
2011-09-26 |
Kaspar Brand | replace another occurence of X509_NAME_oneline by SSL_X... |
blob | commitdiff | raw | diff to current |
2011-09-23 |
Jim Jagielski | Cleanup effort in prep for GA push: |
blob | commitdiff | raw | diff to current |
2011-09-19 |
Daniel Ruggeri | Style cleanup |
blob | commitdiff | raw | diff to current |
2011-09-17 |
Daniel Ruggeri | Log better information and prevent leak of an X509... |
blob | commitdiff | raw | diff to current |
2011-09-14 |
Daniel Ruggeri | Modify SSLProxyMachineCertificateChainFile to use X509... |
blob | commitdiff | raw | diff to current |
2011-09-05 |
Ruediger Pluem | * Silence compiler warning |
blob | commitdiff | raw | diff to current |
2011-09-04 |
Kaspar Brand | Revamp CRL checking for client and remote servers: |
blob | commitdiff | raw | diff to current |
2011-08-23 |
Daniel Ruggeri | Add SSLProxyMachineCertificateChainFile directive and... |
blob | commitdiff | raw | diff to current |
2011-08-14 |
Kaspar Brand | Enforce OpenSSL 0.9.7 or later at compile time (#error... |
blob | commitdiff | raw | diff to current |
2011-08-07 |
Kaspar Brand | Remove the ssl_toolkit_compat layer, which is no longer... |
blob | commitdiff | raw | diff to current |
2011-08-07 |
Kaspar Brand | Drop support for the RSA BSAFE SSL-C toolkit from confi... |
blob | commitdiff | raw | diff to current |
2011-04-08 |
Stefan Fritsch | mod_ssl, ab: Support OpenSSL compiled without SSLv2... |
blob | commitdiff | raw | diff to current |
2010-11-04 |
Rich Bowen | Error messages like "theoretically shouldn't happen... |
blob | commitdiff | raw | diff to current |
2010-10-25 |
Stefan Fritsch | handle the ca_list == NULL case correctly (which can... |
blob | commitdiff | raw | diff to current |
2010-10-24 |
Stefan Fritsch | Make sure to always log an error if loading of CA certi... |
blob | commitdiff | raw | diff to current |
2010-10-24 |
Stefan Fritsch | Consistently use loglevel emerg before ssl_die() |
blob | commitdiff | raw | diff to current |
2010-10-18 |
Stephen Henson | Make sure OCSP Stapling Mutex is initiliased if we... |
blob | commitdiff | raw | diff to current |
2010-10-17 |
Stephen Henson | Fix stupid typos. |
blob | commitdiff | raw | diff to current |
2010-10-17 |
Stephen Henson | Avoid use of deprecated RSA_generate_key() function. |
blob | commitdiff | raw | diff to current |
2010-06-06 |
Stefan Fritsch | - Be less verbose at levels INFO and DEBUG in mod_proxy... |
blob | commitdiff | raw | diff to current |
2010-06-03 |
Stefan Fritsch | Introduce SSLLOG_MARK for use with ssl_log_ssl_error... |
blob | commitdiff | raw | diff to current |
2010-03-23 |
Ruediger Pluem | * sc->fips is only defined if we have HAVE_FIPS |
blob | commitdiff | raw | diff to current |
2010-03-22 |
William A. Rowe Jr | Fix BOOL fips handling for UNSET values, and hack a... |
blob | commitdiff | raw | diff to current |
2010-03-22 |
William A. Rowe Jr | Introduce SSLFIPS directive to support OpenSSL FIPS_mod... |
blob | commitdiff | raw | diff to current |
2010-02-09 |
William A. Rowe Jr | fix comment typo |
blob | commitdiff | raw | diff to current |
2010-02-03 |
Joe Orton | New releases of OpenSSL will only allow secure renegoti... |
blob | commitdiff | raw | diff to current |
2009-11-11 |
Ruediger Pluem | * Use correct #ifndef's to compile again on openssl... |
blob | commitdiff | raw | diff to current |
2009-11-10 |
Sander Temme | enable support for ECC keys and ECDH ciphers. Tested... |
blob | commitdiff | raw | diff to current |
2009-11-06 |
Joe Orton | SECURITY: Partial fix for CVE-2009-3555: |
blob | commitdiff | raw | diff to current |
2009-10-25 |
Joe Orton | Add support for OCSP "stapling": |
blob | commitdiff | raw | diff to current |
2009-07-29 |
Guenter Knauf | removed another obsolete cast. Mentioned by Peter Sylve... |
blob | commitdiff | raw | diff to current |
2009-07-27 |
Guenter Knauf | removed obsolete cast. Mentioned by Peter Sylvester. |
blob | commitdiff | raw | diff to current |
2009-03-02 |
Sander Temme | Clean up more compiler emits. Add CHANGES entry, credi... |
blob | commitdiff | raw | diff to current |
2009-02-27 |
Sander Temme | The development trunk of OpenSSL has tightened up the... |
blob | commitdiff | raw | diff to current |
2008-08-21 |
Sander Temme | Implement dynamic mutex callbacks for the benefit of... |
blob | commitdiff | raw | diff to current |
2008-02-25 |
Joe Orton | Session cache interface redesign, Part 5: |
blob | commitdiff | raw | diff to current |
2008-02-25 |
Joe Orton | * modules/ssl/ssl_engine_init.c (ssl_init_FindCAList... |
blob | commitdiff | raw | diff to current |
2008-02-22 |
Joe Orton | Re-implement the SSL session cache abstraction using... |
blob | commitdiff | raw | diff to current |
next |