aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Collapse)AuthorAge
* do not try to send empty packs using TLS. This this has a special meaning ↵Gravatar Nokis Mavrogiannopoulos 2009-06-13
| | | | and could result in clients closing connections.
* if private key import fails try as pkcs8 key.Gravatar Nokis Mavrogiannopoulos 2009-05-21
|
* removed limit on ca certificates' numberGravatar Nokis Mavrogiannopoulos 2009-01-24
|
* Added patch to fix issue with mod_proxy. Investigation and patch by Alain Knaff.Gravatar Nokis Mavrogiannopoulos 2009-01-04
| | | | | | | | | | | | | It seems that the reason for this behavior is that the mgs_hook_pre_connection is being called both for incoming and outgoing (mod_proxy) connections. The attached patch (mod_proxy.patch) tries to find out in which case we are, and returns OK without doing anything if it is an outgoing connection. The method of telling both cases apart (namely, checking whether remote address' hostname is set) may seem somewhat hackish, but it does work, even if HostnameLookups is set to On. If ever there is a problem with this method, we might need to check local port instead (whether it is 443), but that would break if a non-standard https port was used.
* APLOG_EMERG was replaced with APLOG_STARTUP for startup messages.Gravatar Nokis Mavrogiannopoulos 2008-11-02
|
* increased max handshake triesGravatar Nokis Mavrogiannopoulos 2008-10-16
|
* Allow openpgp-only sitesGravatar Nokis Mavrogiannopoulos 2008-10-01
|
* better loggingGravatar Nokis Mavrogiannopoulos 2008-10-01
|
* updated README file to account for openpgp keys --patch by Jack BatesGravatar Nokis Mavrogiannopoulos 2008-10-01
|
* use memmove instead of memcpy because buffers might overlap. Gravatar Nokis Mavrogiannopoulos 2008-09-14
|
* added check for invalid contextGravatar Nokis Mavrogiannopoulos 2008-09-14
|
* depend on main libgnutls library (and gnutls 2.4.x)Gravatar Nokis Mavrogiannopoulos 2008-06-29
|
* send database store failure as DEBUGGravatar Nokis Mavrogiannopoulos 2008-03-05
|
* corrected SRP enable flag, and corrected the DBM hook support. It now free ↵Gravatar Nokis Mavrogiannopoulos 2008-03-03
| | | | data needed by some DBM providers.
* added option to disable srp (for distributions that disable it in gnutls)Gravatar Nokis Mavrogiannopoulos 2008-02-20
|
* prepare for an alpha releaseGravatar Nokis Mavrogiannopoulos 2008-01-24
|
* (no commit message)Gravatar Nokis Mavrogiannopoulos 2007-12-16
|
* more changes for openpgp support. Seems to be at a workable state.Gravatar Nokis Mavrogiannopoulos 2007-12-16
|
* print error if preconfiguration failsGravatar Nokis Mavrogiannopoulos 2007-12-15
|
* Initial support for openpgp keysGravatar Nokis Mavrogiannopoulos 2007-12-15
|
* (no commit message)Gravatar Nokis Mavrogiannopoulos 2007-12-10
|
* (no commit message)Gravatar Nokis Mavrogiannopoulos 2007-12-10
|
* (no commit message)Gravatar Nokis Mavrogiannopoulos 2007-12-09
|
* Do not allow resuming sessions on different servers.Gravatar Nokis Mavrogiannopoulos 2007-12-09
|
* Corrected bug which did not allow the TLS session cache to be used.Gravatar Nokis Mavrogiannopoulos 2007-12-09
|
* Added support for sending more than one certificate.Gravatar Nokis Mavrogiannopoulos 2007-12-08
|
* added more error checks.Gravatar Nokis Mavrogiannopoulos 2007-12-03
|
* better handling of RSAFile and DHFileGravatar Nokis Mavrogiannopoulos 2007-12-03
|
* report the missing GnuTLSPriorities for the gnutls enabled hosts only.Gravatar Nokis Mavrogiannopoulos 2007-12-02
|
* No more defaults for dhparams, rsaparams. Check for GnuTLSPriorities.Gravatar Nokis Mavrogiannopoulos 2007-12-02
|
* The compatibility mode can now be enabled only using the GnuTLSPriorities ↵Gravatar Nokis Mavrogiannopoulos 2007-12-02
| | | | string.
* (no commit message)Gravatar Nokis Mavrogiannopoulos 2007-12-02
|
* added SSL_SERVER/CLIENT_S_TYPEGravatar Nokis Mavrogiannopoulos 2007-12-02
|
* export the alternative names of the certificateGravatar Nokis Mavrogiannopoulos 2007-12-02
|
* added SSL_SERVER_M_SERIAL environment variableGravatar Nokis Mavrogiannopoulos 2007-12-02
|
* more fixes for subject alternative name.33b67898'>move config functions to their own file. Gravatar Paul Querna 2005-04-24
|
* - remove more debug logging.Gravatar Paul Querna 2005-04-22
| | | | | - fix a crash by changing the certificate structure *after* starting the handshake.
* client auth is sort of working.Gravatar Paul Querna 2005-04-22
|
* working SNI. Not so working Client Cert support.Gravatar Paul Querna 2005-04-21
|
* include support for 2.0.xxGravatar Paul Querna 2005-04-08
|
* wrap the debug log in maintainer mode.Gravatar Paul Querna 2005-04-08
|
* - remove anno credsGravatar Paul Querna 2005-04-06
| | | | | | | | - initial attempt at Server Name Extension - change to adding 'mod_gnutls' to the server sig instead of GnuTLS/ - fix for EOF/EOC/EOS buckets - 'general' code cleanups
* checkpoint the work so far. The DBM cache needs a little more work.Gravatar Paul Querna 2005-04-05
|
* - make memcahe optionalGravatar Paul Querna 2005-04-04
| | | | | | - update for 2.1.x branch changes. - some mucking around with the conf stuff
* use apr to parse hostnames..Gravatar Paul Querna 2004-12-12
|
* working support for a ssl session cache via memcached.Gravatar Paul Querna 2004-12-10
|
* add check for apr_memcacheGravatar Paul Querna 2004-12-09
|
* fixes and stuff that i should of already committed.Gravatar Paul Querna 2004-12-09
|
* re-order the cipher types.Gravatar Paul Querna 2004-12-06
| | | | | Add a fixups hook and some Basic Env vars