summaryrefslogtreecommitdiffstatsabout
path: root/src
Commit message (Collapse)AuthorAgeFilesLines
* Safer usage of session variable to prevent segmentation faults on closure. ↵Nikos Mavrogiannopoulos2010-08-182-14/+63
| | | | Should solve issue #106.
* Depend on libgnutls for the activation and expiration time checks.Nikos Mavrogiannopoulos2010-07-021-23/+13
|
* Session tickets are enabled by default.Nikos Mavrogiannopoulos2010-07-021-0/+1
|
* Added option to turn on/off session tickets.Nikos Mavrogiannopoulos2010-07-013-1/+21
|
* Force SDBM.Nikos Mavrogiannopoulos2010-07-012-72/+53
|
* More libgcrypt fixes.Nikos Mavrogiannopoulos2010-06-301-5/+4
|
* Use libgcrypt calls only if gnutls is older than 2.11.0Nikos Mavrogiannopoulos2010-06-301-0/+7
|
* Check the cache DB every 15 minutes instead of checking on every write.Nikos Mavrogiannopoulos2010-06-271-1/+7
|
* open the database as readonly when fetching.Nikos Mavrogiannopoulos2010-06-271-1/+1
|
* properly initialize variable.Nikos Mavrogiannopoulos2010-06-271-2/+5
|
* Added support for session tickets.Nikos Mavrogiannopoulos2010-06-271-1/+9
|
* Corrected issue with firefox and long post data (had to do ↵Nokis Mavrogiannopoulos2010-03-151-1/+13
| | | | | with read function not handling EAGAIN and EINTR correctly).
* On connection termination be polite and send a bye (common handling of EOC ↵Nokis Mavrogiannopoulos2009-07-211-6/+14
| | | | and EOS).
* removed APR_BUCKET_IS_EOS. Doesn't seem appropriate at this point.Nokis Mavrogiannopoulos2009-07-211-1/+1
|
* More fixes related to bug #102Nokis Mavrogiannopoulos2009-07-201-6/+12
|
* Applied patch of jmdesp that allows certificate lists by client.Nokis Mavrogiannopoulos2009-07-201-17/+45
|
* only call gnutls_bye on non null gnutls session.Nokis Mavrogiannopoulos2009-07-201-3/+5
|
* Avoid requesting certificate from client when we already have it. Patch by ↵Nokis Mavrogiannopoulos2009-06-301-0/+6
| | | | AlainKnaff.
* Applied patch by AlainKnaff to correctly verify certificates per directory. ↵Nokis Mavrogiannopoulos2009-06-301-6/+8
| | | | | | | Patch by AlainKnaff. Solves: http://issues.outoforder.cc/view.php?id=93
* set srp username to empty string. Solves ↵Nokis Mavrogiannopoulos2009-06-301-2/+2
| | | | http://issues.outoforder.cc/view.php?id=92
* Try to avoid bug http://issues.outoforder.cc/view.php?id=102Nokis Mavrogiannopoulos2009-06-301-3/+6
|
* Allow openpgp certificates that have infinite expiration time. Suggestion by ↵Nokis Mavrogiannopoulos2009-06-301-3/+5
| | | | MattLoar at http://issues.outoforder.cc/view.php?id=96.
* Applied patch to allow building with Apache 2.4. Patch by Arfrever Frehtes ↵Nokis Mavrogiannopoulos2009-06-301-2/+6
| | | | Taifersar Arahesis <arfrever.fta@gmail.com>.
* do not try to send empty packs using TLS. This this has a special meaning ↵Nokis Mavrogiannopoulos2009-06-131-14/+17
| | | | and could result in clients closing connections.
* if private key import fails try as pkcs8 key.Nokis Mavrogiannopoulos2009-05-211-1/+6
|
* removed limit on ca certificates' numberNokis Mavrogiannopoulos2009-01-241-5/+27
|
* Added patch to fix issue with mod_proxy. Investigation and patch by Alain Knaff.Nokis Mavrogiannopoulos2009-01-041-0/+4
| | | | | | | | | | | | | It seems that the reason for this behavior is that the mgs_hook_pre_connection is being called both for incoming and outgoing (mod_proxy) connections. The attached patch (mod_proxy.patch) tries to find out in which case we are, and returns OK without doing anything if it is an outgoing connection. The method of telling both cases apart (namely, checking whether remote address' hostname is set) may seem somewhat hackish, but it does work, even if HostnameLookups is set to On. If ever there is a problem with this method, we might need to check local port instead (whether it is 443), but that would break if a non-standard https port was used.
* APLOG_EMERG was replaced with APLOG_STARTUP for startup messages.Nokis Mavrogiannopoulos2008-11-021-4/+4
|
* increased max handshake triesNokis Mavrogiannopoulos2008-10-161-1/+1
|
* Allow openpgp-only sitesNokis Mavrogiannopoulos2008-10-011-4/+6
|
* better loggingNokis Mavrogiannopoulos2008-10-011-21/+24
|
* updated README file to account for openpgp keys --patch by Jack BatesNokis Mavrogiannopoulos2008-10-011-11/+32
|
* use memmove instead of memcpy because buffers might overlap. Nokis Mavrogiannopoulos2008-09-141-2/+2
|
* added check for invalid contextNokis Mavrogiannopoulos2008-09-141-0/+3
|
* depend on main libgnutls library (and gnutls 2.4.x)Nokis Mavrogiannopoulos2008-06-291-6/+0
|
* send database store failure as DEBUGNokis Mavrogiannopoulos2008-03-051-1/+1
|
* corrected SRP enable flag, and corrected the DBM hook support. It now free ↵Nokis Mavrogiannopoulos2008-03-032-2/+8
| | | | data needed by some DBM providers.
* added option to disable srp (for distributions that disable it in gnutls)Nokis Mavrogiannopoulos2008-02-203-0/+15
|
* prepare for an alpha releaseNokis Mavrogiannopoulos2008-01-241-2/+0
|
* (no commit message)Nokis Mavrogiannopoulos2007-12-161-1/+1
|
* more changes for openpgp support. Seems to be at a workable state.Nokis Mavrogiannopoulos2007-12-163-27/+50
|
* print error if preconfiguration failsNokis Mavrogiannopoulos2007-12-151-4/+8
|
* Initial support for openpgp keysNokis Mavrogiannopoulos2007-12-153-40/+307
|
* (no commit message)Nokis Mavrogiannopoulos2007-12-101-4/+0
|
* (no commit message)Nokis Mavrogiannopoulos2007-12-101-4/+8
|
* (no commit message)Nokis Mavrogiannopoulos2007-12-091-4/+4
|
* Do not allow resuming sessions on different servers.Nokis Mavrogiannopoulos2007-12-091-35/+49
|
* Corrected bug which did not allow the TLS session cache to be used.Nokis Mavrogiannopoulos2007-12-091-4/+2
|
* Added support for sending more than one certificate.Nokis Mavrogiannopoulos2007-12-082-14/+10
|
* added more error checks.Nokis Mavrogiannopoulos2007-12-032-11/+49
|