| Commit message (Collapse) | Author | Age | ||
|---|---|---|---|---|
| * | do not try to send empty packs using TLS. This this has a special meaning ↵ | 2009-06-13 | ||
| | | | | | and could result in clients closing connections. | |||
| * | if private key import fails try as pkcs8 key. | 2009-05-21 | ||
| | | ||||
| * | removed limit on ca certificates' number | 2009-01-24 | ||
| | | ||||
| * | Added patch to fix issue with mod_proxy. Investigation and patch by Alain Knaff. | 2009-01-04 | ||
| | | | | | | | | | | | | | | It seems that the reason for this behavior is that the mgs_hook_pre_connection is being called both for incoming and outgoing (mod_proxy) connections. The attached patch (mod_proxy.patch) tries to find out in which case we are, and returns OK without doing anything if it is an outgoing connection. The method of telling both cases apart (namely, checking whether remote address' hostname is set) may seem somewhat hackish, but it does work, even if HostnameLookups is set to On. If ever there is a problem with this method, we might need to check local port instead (whether it is 443), but that would break if a non-standard https port was used. | |||
| * | APLOG_EMERG was replaced with APLOG_STARTUP for startup messages. | 2008-11-02 | ||
| | | ||||
| * | increased max handshake tries | 2008-10-16 | ||
| | | ||||
| * | Allow openpgp-only sites | 2008-10-01 | ||
| | | ||||
| * | better logging | 2008-10-01 | ||
| | | ||||
| * | updated README file to account for openpgp keys --patch by Jack Bates | 2008-10-01 | ||
| | | ||||
| * | use memmove instead of memcpy because buffers might overlap. | 2008-09-14 | ||
| | | ||||
| * | added check for invalid context | 2008-09-14 | ||
| | | ||||
| * | depend on main libgnutls library (and gnutls 2.4.x) | 2008-06-29 | ||
| | | ||||
| * | send database store failure as DEBUG | 2008-03-05 | ||
| | | ||||
| * | corrected SRP enable flag, and corrected the DBM hook support. It now free ↵ | 2008-03-03 | ||
| | | | | | data needed by some DBM providers. | |||
| * | added option to disable srp (for distributions that disable it in gnutls) | 2008-02-20 | ||
| | | ||||
| * | prepare for an alpha release | 2008-01-24 | ||
| | | ||||
| * | (no commit message) | 2007-12-16 | ||
| | | ||||
| * | more changes for openpgp support. Seems to be at a workable state. | 2007-12-16 | ||
| | | ||||
| * | print error if preconfiguration fails | 2007-12-15 | ||
| | | ||||
| * | Initial support for openpgp keys | 2007-12-15 | ||
| | | ||||
| * | (no commit message) | 2007-12-10 | ||
| | | ||||
| * | (no commit message) | 2007-12-10 | ||
| | | ||||
| * | (no commit message) | 2007-12-09 | ||
| | | ||||
| * | Do not allow resuming sessions on different servers. | 2007-12-09 | ||
| | | ||||
| * | Corrected bug which did not allow the TLS session cache to be used. | 2007-12-09 | ||
| | | ||||
| * | Added support for sending more than one certificate. | 2007-12-08 | ||
| | | ||||
| * | added more error checks. | 2007-12-03 | ||
| | | ||||
| * | better handling of RSAFile and DHFile | 2007-12-03 | ||
| | | ||||
| * | report the missing GnuTLSPriorities for the gnutls enabled hosts only. | 2007-12-02 | ||
| | | ||||
| * | No more defaults for dhparams, rsaparams. Check for GnuTLSPriorities. | 2007-12-02 | ||
| | | ||||
| * | The compatibility mode can now be enabled only using the GnuTLSPriorities ↵ | 2007-12-02 | ||
| | | | | | string. | |||
| * | (no commit message) | 2007-12-02 | ||
| | | ||||
| * | added SSL_SERVER/CLIENT_S_TYPE | 2007-12-02 | ||
| | | ||||
| * | export the alternative names of the certificate | 2007-12-02 | ||
| | | ||||
| * | added SSL_SERVER_M_SERIAL environment variable | 2007-12-02 | ||
| | | ||||
| * | more fixes for subject alternative name. | 33b67898'>move config functions to their own file. | 2005-04-24 | |
| | | ||||
| * | - remove more debug logging. | 2005-04-22 | ||
| | | | | | | - fix a crash by changing the certificate structure *after* starting the handshake. | |||
| * | client auth is sort of working. | 2005-04-22 | ||
| | | ||||
| * | working SNI. Not so working Client Cert support. | 2005-04-21 | ||
| | | ||||
| * | include support for 2.0.xx | 2005-04-08 | ||
| | | ||||
| * | wrap the debug log in maintainer mode. | 2005-04-08 | ||
| | | ||||
| * | - remove anno creds | 2005-04-06 | ||
| | | | | | | | | | - initial attempt at Server Name Extension - change to adding 'mod_gnutls' to the server sig instead of GnuTLS/ - fix for EOF/EOC/EOS buckets - 'general' code cleanups | |||
| * | checkpoint the work so far. The DBM cache needs a little more work. | 2005-04-05 | ||
| | | ||||
| * | - make memcahe optional | 2005-04-04 | ||
| | | | | | | | - update for 2.1.x branch changes. - some mucking around with the conf stuff | |||
| * | use apr to parse hostnames.. | 2004-12-12 | ||
| | | ||||
| * | working support for a ssl session cache via memcached. | 2004-12-10 | ||
| | | ||||
| * | add check for apr_memcache | 2004-12-09 | ||
| | | ||||
| * | fixes and stuff that i should of already committed. | 2004-12-09 | ||
| | | ||||
| * | re-order the cipher types. | 2004-12-06 | ||
| | | | | | | Add a fixups hook and some Basic Env vars | |||
