David Woodhouse
|
ddda627618
OpenSSL: Load dynamic ENGINE unconditionally
|
10 years ago |
David Woodhouse
|
01b0d1d5c1
OpenSSL: Automatically handle PKCS#11 URIs in private_key, ca/client_cert
|
10 years ago |
David Woodhouse
|
3d268b8d19
OpenSSL: Do not require private key to come from PKCS#11
|
10 years ago |
David Woodhouse
|
5c8ab0d49c
OpenSSL: Allow pkcs11_module_path to be NULL
|
10 years ago |
Jouni Malinen
|
6a31a31da1
OpenSSL: Simplify EAP-FAST peer workaround
|
10 years ago |
Jouni Malinen
|
d4913c585e
OpenSSL: Fix EAP-FAST peer regression
|
10 years ago |
Jouni Malinen
|
c25addb156
OpenSSL: Remove support for the old EAP-FAST interface
|
10 years ago |
Jouni Malinen
|
d85e1fc8a5
Check os_snprintf() result more consistently - automatic 1
|
10 years ago |
Jouni Malinen
|
35efa2479f
OpenSSL: Allow TLS v1.1 and v1.2 to be negotiated by default
|
10 years ago |
Jouni Malinen
|
b7328434f7
OpenSSL: Add a mechanism to configure cipher suites
|
10 years ago |
Jouni Malinen
|
98a1571d88
OpenSSL: Clean up one part from the BoringSSL patch
|
10 years ago |
Adam Langley
|
a8572960a9
Support building with BoringSSL
|
10 years ago |
Jouni Malinen
|
4eb3b76b0f
OpenSSL: Fix OCSP certificate debug print to use wpa_printf
|
11 years ago |
Jouni Malinen
|
bb52293e71
OpenSSL: Detect and prevent TLS heartbeat attack
|
11 years ago |
Jouni Malinen
|
a5802c0620
OpenSSL: Avoid never-used analyzer warning
|
11 years ago |
Dmitry Shmidt
|
e9a6f18385
TLS: Add tls_disable_tlsv1_1 and tls_disable_tlsv1_2 phase1 params
|
11 years ago |
Jouni Malinen
|
b62d5b5450
Revert "OpenSSL: Do not accept SSL Client certificate for server"
|
11 years ago |
Eytan Lifshitz
|
97efe70b60
wpa_supplicant: Fix NULL dereference in tls_verify_cb()
|
11 years ago |
Jouni Malinen
|
0187c41d88
Declare wpa_debug_* variables in src/utils/wpa_debug.h
|
11 years ago |
Jouni Malinen
|
51e3eafb68
OpenSSL: Do not accept SSL Client certificate for server
|
11 years ago |
Jouni Malinen
|
6bf61fb288
OpenSSL: Use certificates from TLS authentication in OCSP stapling
|
11 years ago |
Jouni Malinen
|
461e3ebe43
Fix and work around some MinGW compilation issues
|
11 years ago |
Jouni Malinen
|
81cbc046fe
Fix compiler warning for OpenSSL without HAVE_OCSP
|
11 years ago |
Kenny Root
|
1d415f1fcc
Android: Switch keystore to binder
|
11 years ago |
Kenny Root
|
6dfdb80959
Android: Remove obsolete keystore path
|
11 years ago |
Kenny Root
|
1176ab6dd4
Android: Use keystore ENGINE for private key operations
|
13 years ago |
Jouni Malinen
|
a288da61b6
OpenSSL: Fix memory leak on error path
|
11 years ago |
Jouni Malinen
|
01f809c7db
Add AAA server domain name suffix matching constraint
|
11 years ago |
Jouni Malinen
|
be7963b3c2
OpenSSL: Fix code indentation in OCSP processing
|
11 years ago |
Jouni Malinen
|
762c92a444
OpenSSL: Split OCSP peer_cert/peer_issuer debug output into parts
|
11 years ago |