Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | let the compiler figure out these values | Paul Kehrer | 2015-12-01 | 1 | -3/+4 |
| | |||||
* | fix a warning in cffi | Paul Kehrer | 2015-12-01 | 1 | -1/+5 |
| | | | | | cffi doesn't want to guess the type, so we'll deopaque the enum and strip the values out of the lib if EC is unavailable | ||||
* | Add more CRYPTO_EX_DATA functions | Christian Heimes | 2015-11-20 | 3 | -0/+20 |
| | | | | | | | | The patch adds a couple of additional functions to create, store and retrieve ex_data on SSL, SSL_CTX and X509 objects. It also adds the missing get_ex_new_index function for X509_STORE_CTX. Signed-off-by: Christian Heimes <cheimes@redhat.com> | ||||
* | add tbsCertList and signature interfaces to CRLs | Erik Trauschke | 2015-11-19 | 1 | -0/+3 |
| | |||||
* | RHEL 6.4 and below don't even claim to be 1.0.0 final... | Paul Kehrer | 2015-11-12 | 1 | -1/+1 |
| | |||||
* | whoops | Paul Kehrer | 2015-11-12 | 1 | -0/+1 |
| | |||||
* | reorganize and rename | Paul Kehrer | 2015-11-12 | 1 | -10/+10 |
| | |||||
* | these functions were added in 1.0.0, while CMS was added in 0.9.8h | Paul Kehrer | 2015-11-12 | 1 | -0/+10 |
| | | | | | We didn't catch this in our CI because all our 0.9.8 targets have CMS disabled or are older than 0.9.8h | ||||
* | Merge pull request #2467 from reaperhulk/fix-version-check | Alex Gaynor | 2015-11-04 | 1 | -2/+2 |
|\ | | | | | these flags were actually added in 1.0.2beta2, not before that. | ||||
| * | these flags were actually added in 1.0.2beta2, not before that. | Paul Kehrer | 2015-11-05 | 1 | -2/+2 |
| | | |||||
* | | remove malloc_debug_init as it has occasionally caused compile issues | Paul Kehrer | 2015-11-05 | 1 | -1/+0 |
|/ | | | | We also don't use it in our backend (and neither does pyOpenSSL) | ||||
* | add support for Certificate signature and tbs_certificate | Paul Kehrer | 2015-11-03 | 2 | -1/+3 |
| | |||||
* | make engine addition idempotent | Paul Kehrer | 2015-10-21 | 1 | -0/+2 |
| | | | | | | | | | | | Threading issues keep cropping up. ENGINE_add already acquires a lock at the C layer via CRYPTO_w_lock (provided you have registered the locking callbacks) so let's try to use that. As part of this we'll try to init the openssl locks, but of course there's potentially a race there as well. Clearly this isn't the real fix but it might improve the situation while we try to determine what to do. | ||||
* | Remove long comments and workarounds, use new cffi syntax | Alex Gaynor | 2015-10-21 | 2 | -36/+2 |
| | |||||
* | add binding for d2i_GENERAL_NAMES() | Erik Trauschke | 2015-10-15 | 1 | -0/+2 |
| | |||||
* | extend pkcs7 openssl bindings | Dominic Chen | 2015-10-13 | 2 | -2/+32 |
| | |||||
* | rename env var to CRYPTOGRAPHY_OSX_NO_LINK_FLAGS | Paul Kehrer | 2015-08-31 | 1 | -1/+1 |
| | |||||
* | no need for None | Paul Kehrer | 2015-08-29 | 1 | -1/+1 |
| | |||||
* | add support for static linking of the openssl backend on OS X | Paul Kehrer | 2015-08-29 | 1 | -3/+16 |
| | |||||
* | Removed SSL_renegotiate_abbreviated binding | kjav | 2015-08-28 | 1 | -1/+0 |
| | | | As this is not supported in OpenSSL < 1.01 | ||||
* | Added bindings for SSL_renegotiate_<pending/abbreviated> | kjav | 2015-08-28 | 1 | -0/+2 |
| | |||||
* | Add SSL_renegotiate binding. | Terry Chia | 2015-08-28 | 1 | -0/+1 |
| | |||||
* | add set_cert_cb | Maximilian Hils | 2015-08-25 | 1 | -0/+17 |
| | |||||
* | libre doesn't have these fields (and might only be used in sslv2 anyway) | Paul Kehrer | 2015-08-19 | 1 | -2/+0 |
| | |||||
* | compilation fix | Paul Kehrer | 2015-08-19 | 1 | -2/+4 |
| | |||||
* | style fix + remove some elements of the struct that aren't in 0.9.8 | Paul Kehrer | 2015-08-18 | 1 | -5/+2 |
| | |||||
* | added attribs to SSL_SESSION, SSL_SESSION_print. CIPHER_description | MiWCryptAnalytics | 2015-08-18 | 1 | -0/+11 |
| | | | For a project I am working on I need some session reflection directly from python. This change adds the required openssl SSL_SESSION struct attributes and functions within OpenSSL API | ||||
* | support InhibitAnyPolicy in CertificateBuilder | Paul Kehrer | 2015-08-08 | 1 | -0/+1 |
| | |||||
* | Merge pull request #2226 from lluixhi/master | Paul Kehrer | 2015-08-08 | 1 | -1/+1 |
|\ | | | | | Fix build with LibreSSL >= 2.2.2 | ||||
| * | Fix build with LibreSSL >= 2.2.2 | Lluixhi Scura | 2015-08-08 | 1 | -1/+1 |
| | | | | | | | | LIBRESSL_VERSION_NUMBER is now being incremented. | ||||
* | | more openssl bindings for encoding certificate policy structures | Paul Kehrer | 2015-08-08 | 2 | -0/+5 |
| | | |||||
* | | add support for encoding SubjectKeyIdentifier to CertificateBuilder | Paul Kehrer | 2015-08-08 | 1 | -0/+1 |
|/ | |||||
* | add a few additional bindings for AuthorityKeyIdentifier in OpenSSL | Paul Kehrer | 2015-08-05 | 1 | -0/+2 |
| | |||||
* | more bindings for CRLDistributionPoints encoding | Paul Kehrer | 2015-08-05 | 2 | -2/+11 |
| | |||||
* | Merge pull request #2180 from reaperhulk/easy-conditional-fix | Donald Stufft | 2015-08-04 | 42 | -514/+0 |
|\ | | | | | create a ConditionalLibrary and remove unsupported items | ||||
| * | remove commoncrypto CONDITIONAL_NAMES | Paul Kehrer | 2015-08-03 | 12 | -25/+0 |
| | | |||||
| * | remove openssl CONDITIONAL_NAMES | Paul Kehrer | 2015-08-03 | 30 | -489/+0 |
| | | |||||
* | | encode authority information access | Paul Kehrer | 2015-08-03 | 1 | -0/+6 |
|/ | |||||
* | Merge pull request #2177 from reaperhulk/cp-bindings | Alex Gaynor | 2015-07-27 | 1 | -0/+21 |
|\ | | | | | add many bindings we'll need to encode a certificate policies extension | ||||
| * | add many bindings we'll need to encode a certificate policies extension | Paul Kehrer | 2015-07-26 | 1 | -0/+21 |
| | | |||||
* | | handle RSA key too small and consume errors on CSR signature failure | Paul Kehrer | 2015-07-25 | 1 | -0/+1 |
|/ | |||||
* | remove windows link type, update docs | Paul Kehrer | 2015-07-24 | 1 | -14/+1 |
| | |||||
* | let's also add the binding to make a new GENERAL_SUBTREE stack | Paul Kehrer | 2015-07-24 | 1 | -0/+1 |
| | |||||
* | bindings for CRL encoding | Paul Kehrer | 2015-07-24 | 1 | -0/+7 |
| | |||||
* | Support encoding ExtendedKeyUsage into certificate signing requests | Paul Kehrer | 2015-07-23 | 2 | -0/+5 |
| | |||||
* | Support encoding KeyUsage into certificate signing requests | Paul Kehrer | 2015-07-23 | 1 | -0/+2 |
| | |||||
* | this is const | Paul Kehrer | 2015-07-11 | 1 | -1/+1 |
| | |||||
* | support for OtherName encoding for general names | Paul Kehrer | 2015-07-11 | 2 | -0/+4 |
| | |||||
* | Merge pull request #2108 from mail-in-a-box/master | Paul Kehrer | 2015-07-08 | 1 | -0/+2 |
|\ | | | | | support othername in general names | ||||
| * | parse SAN otherNames into OtherName instances rather than raising an exception | Joshua Tauberer | 2015-07-06 | 1 | -0/+2 |
| | | | | | | | | Test added. |