Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | Compilation Fixups | 2011-07-08 | |
| | | | | Signed-off-by: Dash Shendy <neuromancer@dash.za.net> | ||
* | Proxy (TLS termination) patch | 2011-07-08 | |
| | | | | Signed-off-by: Dash Shendy <neuromancer@dash.za.net> | ||
* | EOC Bucket Infinite Loop Bugfix | 2011-07-08 | |
| | | | | Signed-off-by: Dash Shendy <neuromancer@dash.za.net> | ||
* | GnuTLSCache can now take a single argument (none). | 2010-11-16 | |
| | |||
* | indented code | 2010-10-25 | |
| | |||
* | reduced warning level of TLS errors. | 2010-09-24 | |
| | |||
* | Only allow two options for DB. Berkeley DB and gdbm. The other options | 2010-09-24 | |
| | | | | such as SDBM had serious limitations. Thanks to Hardy Griech for pointing out. | ||
* | The GnuTLSCache variable now can be given the specific | 2010-09-23 | |
| | | | | | option "sdbm" instead of "dbm". "dbm" will use the default dbm type of libapr while sdbm will force sdbm to be used. | ||
* | Corrected behavior in Keep-Alive connections (do not | 2010-09-22 | |
| | | | | terminate the connection prematurely) | ||
* | Safer usage of session variable to prevent segmentation faults on closure. ↵ | 2010-08-18 | |
| | | | | Should solve issue #106. | ||
* | Depend on libgnutls for the activation and expiration time checks. | 2010-07-02 | |
| | |||
* | Session tickets are enabled by default. | 2010-07-02 | |
| | |||
* | Added option to turn on/off session tickets. | 2010-07-01 | |
| | |||
* | Force SDBM. | 2010-07-01 | |
| | |||
* | More libgcrypt fixes. | 2010-06-30 | |
| | |||
* | Use libgcrypt calls only if gnutls is older than 2.11.0 | 2010-06-30 | |
| | |||
* | Check the cache DB every 15 minutes instead of checking on every write. | 2010-06-27 | |
| | |||
* | open the database as readonly when fetching. | 2010-06-27 | |
| | |||
* | properly initialize variable. | 2010-06-27 | |
| | |||
* | Added support for session tickets. | 2010-06-27 | |
| | |||
* | Corrected issue with firefox and long post data (had to do ↵ | 2010-03-15 | |
| | | | | | with read function not handling EAGAIN and EINTR correctly). | ||
* | On connection termination be polite and send a bye (common handling of EOC ↵ | 2009-07-21 | |
| | | | | and EOS). | ||
* | removed APR_BUCKET_IS_EOS. Doesn't seem appropriate at this point. | 2009-07-21 | |
| | |||
* | More fixes related to bug #102 | 2009-07-20 | |
| | |||
* | Applied patch of jmdesp that allows certificate lists by client. | 2009-07-20 | |
| | |||
* | only call gnutls_bye on non null gnutls session. | 2009-07-20 | |
| | |||
* | Avoid requesting certificate from client when we already have it. Patch by ↵ | 2009-06-30 | |
| | | | | AlainKnaff. | ||
* | Applied patch by AlainKnaff to correctly verify certificates per directory. ↵ | 2009-06-30 | |
| | | | | | | | Patch by AlainKnaff. Solves: http://issues.outoforder.cc/view.php?id=93 | ||
* | set srp username to empty string. Solves ↵ | 2009-06-30 | |
| | | | | http://issues.outoforder.cc/view.php?id=92 | ||
* | Try to avoid bug http://issues.outoforder.cc/view.php?id=102 | 2009-06-30 | |
| | |||
* | Allow openpgp certificates that have infinite expiration time. Suggestion by ↵ | 2009-06-30 | |
| | | | | MattLoar at http://issues.outoforder.cc/view.php?id=96. | ||
* | Applied patch to allow building with Apache 2.4. Patch by Arfrever Frehtes ↵ | 2009-06-30 | |
| | | | | Taifersar Arahesis <arfrever.fta@gmail.com>. | ||
* | do not try to send empty packs using TLS. This this has a special meaning ↵ | 2009-06-13 | |
| | | | | and could result in clients closing connections. | ||
* | if private key import fails try as pkcs8 key. | 2009-05-21 | |
| | |||
* | removed limit on ca certificates' number | 2009-01-24 | |
| | |||
* | Added patch to fix issue with mod_proxy. Investigation and patch by Alain Knaff. | 2009-01-04 | |
| | | | | | | | | | | | | | It seems that the reason for this behavior is that the mgs_hook_pre_connection is being called both for incoming and outgoing (mod_proxy) connections. The attached patch (mod_proxy.patch) tries to find out in which case we are, and returns OK without doing anything if it is an outgoing connection. The method of telling both cases apart (namely, checking whether remote address' hostname is set) may seem somewhat hackish, but it does work, even if HostnameLookups is set to On. If ever there is a problem with this method, we might need to check local port instead (whether it is 443), but that would break if a non-standard https port was used. | ||
* | APLOG_EMERG was replaced with APLOG_STARTUP for startup messages. | 2008-11-02 | |
| | |||
* | increased max handshake tries | 2008-10-16 | |
| | |||
* | Allow openpgp-only sites | 2008-10-01 | |
| | |||
* | better logging | 2008-10-01 | |
| | |||
* | updated README file to account for openpgp keys --patch by Jack Bates | 2008-10-01 | |
| | |||
* | use memmove instead of memcpy because buffers might overlap. | 2008-09-14 | |
| | |||
* | added check for invalid context | 2008-09-14 | |
| | |||
* | depend on main libgnutls library (and gnutls 2.4.x) | 2008-06-29 | |
| | |||
* | send database store failure as DEBUG | 2008-03-05 | |
| | |||
* | corrected SRP enable flag, and corrected the DBM hook support. It now free ↵ | 2008-03-03 | |
| | | | | data needed by some DBM providers. | ||
* | added option to disable srp (for distributions that disable it in gnutls) | 2008-02-20 | |
| | |||
* | prepare for an alpha release | 2008-01-24 | |
| | |||
* | (no commit message) | 2007-12-16 | |
| | |||
* | more changes for openpgp support. Seems to be at a workable state. | 2007-12-16 | |
| |