Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							cf141ca7e7 
							
						 
					 
					
						
						
							
							Fix #ifdefs on ssl_cli.c or ssl_srv.c  
						
						 
						
						... 
						
						
						
						Nothing to do with the current branch except I'm going to refine such #ifdefs
for tickets next and I want to start from a clean state 
						
						
					 
					
						2015-05-20 11:14:57 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							0c0f11f4b3 
							
						 
					 
					
						
						
							
							Update dependencies & includes for session tickets  
						
						 
						
						
						
						
					 
					
						2015-05-20 11:14:57 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							d59675d92c 
							
						 
					 
					
						
						
							
							Move to callback for session tickets  
						
						 
						
						
						
						
					 
					
						2015-05-20 11:14:57 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							b0394bebdb 
							
						 
					 
					
						
						
							
							Further adapt prototypes of ticket functions  
						
						 
						
						... 
						
						
						
						Moving everything in ticket_keys structure, that will soon become
ticket_context. 
						
						
					 
					
						2015-05-20 11:14:57 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							151dc77732 
							
						 
					 
					
						
						
							
							Fix some old names that remained  
						
						 
						
						... 
						
						
						
						- most in doxygen doc that was never renamed
- some re-introduced in comments/doc/strings by me 
						
						
					 
					
						2015-05-14 21:58:34 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							66dc5555f0 
							
						 
					 
					
						
						
							
							mbedtls_ssl_conf_arc4_support() depends on ARC4_C  
						
						 
						
						
						
						
					 
					
						2015-05-14 12:31:10 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							e391c8deda 
							
						 
					 
					
						
						
							
							Doc tune-up  
						
						 
						
						
						
						
					 
					
						2015-05-13 20:34:24 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							70860adccc 
							
						 
					 
					
						
						
							
							SSL timers are no longer just for DTLS  
						
						 
						
						... 
						
						
						
						Also, clean up leftover temporary stuff... embarassing 
						
						
					 
					
						2015-05-13 10:25:28 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							bbd28f7bcc 
							
						 
					 
					
						
						
							
							Improve SSL doc about I/O and timeouts  
						
						 
						
						
						
						
					 
					
						2015-05-13 10:21:42 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							2e01291739 
							
						 
					 
					
						
						
							
							Prepare the SSL modules for using timer callbacks  
						
						 
						
						
						
						
					 
					
						2015-05-13 09:43:39 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							eecb43cf0b 
							
						 
					 
					
						
						
							
							Manually merge doc fixes from 1.3  
						
						 
						
						
						
						
					 
					
						2015-05-12 12:56:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							e6ef16f98c 
							
						 
					 
					
						
						
							
							Change X.509 verify flags to uint32_t  
						
						 
						
						
						
						
					 
					
						2015-05-11 19:54:43 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							06939cebef 
							
						 
					 
					
						
						
							
							Fix order of ssl_conf vs ssl_setup in programs  
						
						 
						
						... 
						
						
						
						Except ssl_phtread_server that will be done later 
						
						
					 
					
						2015-05-11 14:35:42 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							01e5e8c1f8 
							
						 
					 
					
						
						
							
							Change a few ssl_conf return types to void  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							6729e79482 
							
						 
					 
					
						
						
							
							Rename ssl_set_xxx() to ssl_conf_xxx()  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							22bfa4bb53 
							
						 
					 
					
						
						
							
							Add ssl_set_hs_ca_chain()  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							1897af9e93 
							
						 
					 
					
						
						
							
							Make conf const inside ssl_context (finally)  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							17a40cd255 
							
						 
					 
					
						
						
							
							Change ssl_own_cert to work on ssl_config  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							1af6c8500b 
							
						 
					 
					
						
						
							
							Add ssl_set_hs_own_cert()  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							8f618a8e65 
							
						 
					 
					
						
						
							
							Rework ssl_set_own_cert() internals  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							120fdbdb3d 
							
						 
					 
					
						
						
							
							Change ssl_set_psk() to act on ssl_config  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							4b68296626 
							
						 
					 
					
						
						
							
							Use a specific function in the PSK callback  
						
						 
						
						
						
						
					 
					
						2015-05-11 14:35:41 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							750e4d7769 
							
						 
					 
					
						
						
							
							Move ssl_set_rng() to act on config  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:27 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							5cb3308e5f 
							
						 
					 
					
						
						
							
							Merge contexts for session cache  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:27 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							ae31914990 
							
						 
					 
					
						
						
							
							Rename ssl_legacy_renegotiation() to ssl_set_...  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:27 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							662c6e8cdd 
							
						 
					 
					
						
						
							
							Disable truncated HMAC by default  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:27 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							1028b74cff 
							
						 
					 
					
						
						
							
							Upgrade default DHM params size  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:27 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							8836994f6b 
							
						 
					 
					
						
						
							
							Move WANT_READ/WANT_WRITE codes to SSL  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:26 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							1b511f93c6 
							
						 
					 
					
						
						
							
							Rename ssl_set_bio_timeout() to set_bio()  
						
						 
						
						... 
						
						
						
						Initially thought it was best to keep the old function around and add a new
one, but this so many ssl_set_xxx() functions are changing anyway... 
						
						
					 
					
						2015-05-11 12:33:26 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							97fd52c529 
							
						 
					 
					
						
						
							
							Split ssl_set_read_timeout() out of bio_timeout()  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:26 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							cc3195e81f 
							
						 
					 
					
						
						
							
							Fix misplaced #ifdef  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:26 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							8620f73cdc 
							
						 
					 
					
						
						
							
							Documentation tune-ups  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:26 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							bc2b771af4 
							
						 
					 
					
						
						
							
							Move ssl_set_ca_chain() to work on config  
						
						 
						
						
						
						
					 
					
						2015-05-11 12:33:26 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							ba26c24769 
							
						 
					 
					
						
						
							
							Change how hostname is stored internally  
						
						 
						
						
						
						
					 
					
						2015-05-07 10:19:14 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							2b49445876 
							
						 
					 
					
						
						
							
							Move session ticket keys to conf  
						
						 
						
						... 
						
						
						
						This is temporary, they will soon be replaced by callbacks.
!!! In this intermediate step security is removed !!! 
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							e51bba05cf 
							
						 
					 
					
						
						
							
							Make mfl_code a bitfield member  
						
						 
						
						
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							684b0592cb 
							
						 
					 
					
						
						
							
							Move ssl_set_fallback() to work on conf  
						
						 
						
						... 
						
						
						
						Initially thought it would be per-connection, but since max_version is in conf
too, and you need to lower that for a fallback connection, the fallback flag
should be in the same place 
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							6bf89d6ad9 
							
						 
					 
					
						
						
							
							Move ssl_set_max_fragment_len to work on conf  
						
						 
						
						
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							17eab2b65c 
							
						 
					 
					
						
						
							
							Move set_cbc_record_splitting() to conf  
						
						 
						
						
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							d36e33fc07 
							
						 
					 
					
						
						
							
							Move easy ssl_set_xxx() functions to work on conf  
						
						 
						
						... 
						
						
						
						mbedtls_ssl_set_alpn_protocols
mbedtls_ssl_set_arc4_support
mbedtls_ssl_set_authmode
mbedtls_ssl_set_ciphersuites
mbedtls_ssl_set_ciphersuites_for_version
mbedtls_ssl_set_curves
mbedtls_ssl_set_dbg
mbedtls_ssl_set_dh_param
mbedtls_ssl_set_dh_param_ctx
mbedtls_ssl_set_dtls_anti_replay
mbedtls_ssl_set_dtls_badmac_limit
mbedtls_ssl_set_dtls_cookies
mbedtls_ssl_set_encrypt_then_mac
mbedtls_ssl_set_endpoint
mbedtls_ssl_set_extended_master_secret
mbedtls_ssl_set_handshake_timeout
mbedtls_ssl_legacy_renegotiation
mbedtls_ssl_set_max_version
mbedtls_ssl_set_min_version
mbedtls_ssl_set_psk_cb
mbedtls_ssl_set_renegotiation
mbedtls_ssl_set_renegotiation_enforced
mbedtls_ssl_set_renegotiation_period
mbedtls_ssl_set_session_cache
mbedtls_ssl_set_session_ticket_lifetime
mbedtls_ssl_set_sni
mbedtls_ssl_set_transport
mbedtls_ssl_set_truncated_hmac
mbedtls_ssl_set_verify 
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							419d5ae419 
							
						 
					 
					
						
						
							
							Make endpoint+transport args of config_defaults()  
						
						 
						
						
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							def0bbe3ab 
							
						 
					 
					
						
						
							
							Allocate ssl_config out of ssl_setup()  
						
						 
						
						
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							cd523e2a5e 
							
						 
					 
					
						
						
							
							Introduce mbedtls_ssl_config_{init,defaults,free}()  
						
						 
						
						
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							7ca4e4dc79 
							
						 
					 
					
						
						
							
							Move things to conf substructure  
						
						 
						
						... 
						
						
						
						A simple series of sed invocations.
This is the first step, purely internal changes. The conf substructure is not
ready to be shared between contexts yet. 
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							fa6473d79b 
							
						 
					 
					
						
						
							
							Create structure ssl_config  
						
						 
						
						
						
						
					 
					
						2015-05-07 10:19:13 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							41d479e7df 
							
						 
					 
					
						
						
							
							Split ssl_init() -> ssl_setup()  
						
						 
						
						
						
						
					 
					
						2015-04-29 02:08:34 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							e6efa6f54e 
							
						 
					 
					
						
						
							
							manually merge 9f98251 make extKeyUsage accessible  
						
						 
						
						
						
						
					 
					
						2015-04-20 11:23:24 +01:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							2cf5a7c98e 
							
						 
					 
					
						
						
							
							The Great Renaming  
						
						 
						
						... 
						
						
						
						A simple execution of tmp/invoke-rename.pl 
						
						
					 
					
						2015-04-08 13:25:31 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							932e3934bd 
							
						 
					 
					
						
						
							
							Fix typos & Co  
						
						 
						
						
						
						
					 
					
						2015-04-03 18:46:55 +02:00  
					
					
						 
						
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
						
						
							
						
						
							8c8be1ebbb 
							
						 
					 
					
						
						
							
							Change default min TLS version to TLS 1.0  
						
						 
						
						
						
						
					 
					
						2015-03-31 14:22:30 +02:00