aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Collapse)AuthorAgeFilesLines
...
* | | support PolicyConstraints in the CertificateBuilderPaul Kehrer2016-03-131-0/+18
|/ /
* | Merge pull request #2809 from reaperhulk/110-patch-28Alex Gaynor2016-03-132-10/+82
|\ \ | | | | | | add 5 accessor functions that exist in 1.1.0 to help opaque x509 structs
| * | remove pointless commentsPaul Kehrer2016-03-131-8/+0
| | |
| * | add 5 accessor functions that exist in 1.1.0 to help opaque x509 structsPaul Kehrer2016-03-112-10/+90
| | | | | | | | | | | | | | | | | | | | | | | | | | | X509_REVOKED_get0_serialNumber X509_REVOKED_get0_revocationDate X509_CRL_get0_signature i2d_re_X509_REQ_tbs i2d_re_X509_CRL_tbs X509_REQ_get0_signature
* | | bind some new functions to access elements of the SSL structPaul Kehrer2016-03-131-0/+46
| | | | | | | | | | | | | | | | | | SSL_SESSION_get_master_key (added 1.1.0) SSL_get_client_random (added 1.1.0) SSL_get_server_random (added 1.1.0)
* | | bind SSL_SESSION_set1_id_contextPaul Kehrer2016-03-131-0/+24
| | | | | | | | | | | | added in 1.0.1
* | | Merge pull request #2808 from reaperhulk/110-patch-27Alex Gaynor2016-03-131-7/+12
|\ \ \ | | | | | | | | bind SSL_CTX_get_ssl_method
| * | | bind one new function to access part of the SSL structPaul Kehrer2016-03-131-7/+12
| |/ / | | | | | | | | | | | | | | | SSL_CTX_get_ssl_method (added 1.0.2) also remove the internally invented symbol we had (that was not in use)
* | | Merge pull request #2818 from reaperhulk/simplify-extension-creationAlex Gaynor2016-03-132-67/+48
|\ \ \ | | | | | | | | simplify extension creation by using X509V3_EXT_i2d
| * | | support openssl 0.9.8's nonsense hopefullyPaul Kehrer2016-03-131-1/+26
| | | |
| * | | also bytes.Paul Kehrer2016-03-131-1/+3
| | | |
| * | | bytes, my nemesisPaul Kehrer2016-03-131-1/+1
| | | |
| * | | simplify extension creation by using X509V3_EXT_i2dPaul Kehrer2016-03-132-69/+23
| | | |
* | | | Merge pull request #2802 from reaperhulk/110-patch-23Alex Gaynor2016-03-132-10/+51
|\ \ \ \ | |/ / / |/| | | move crypto_ex_data to macros, add i2d_re_X509_tbs & X509_get0_signature
| * | | improve commentsPaul Kehrer2016-03-121-4/+5
| | | |
| * | | this was actually added in 1.0.2-beta3Paul Kehrer2016-03-101-1/+1
| | | |
| * | | move crypto_ex_data to macros, add i2d_re_X509_tbs & X509_get0_signaturePaul Kehrer2016-03-102-10/+50
| | | | | | | | | | | | | | | | | | | | | | | | And, of course, use them in the openssl bindings. These changes are a start towards opaquing all the X509 structs. The actual opaquing won't take place until the very end though to minimize pyOpenSSL breakage
* | | | Merge pull request #2815 from reaperhulk/error-on-unusual-encodingsAlex Gaynor2016-03-121-1/+5
|\ \ \ \ | | | | | | | | | | Error on unusual encodings
| * | | | move NUMERICSTRING certificate test to test_openssl & make it more specificPaul Kehrer2016-03-121-1/+1
| | | | |
| * | | | raise type error rather than internalerror w/ unsupported asn1 in subjectPaul Kehrer2016-03-121-1/+5
| | | | |
* | | | | Merge pull request #2807 from reaperhulk/110-patch-26Alex Gaynor2016-03-122-3/+32
|\ \ \ \ \ | | | | | | | | | | | | conditionally bind/remove the SSL_ST/TLS_ST state machine statuses
| * | | | | conditionally bind/remove the SSL_ST/TLS_ST state machine statusesPaul Kehrer2016-03-112-3/+32
| | |_|/ / | |/| | |
* | | | | Merge pull request #2813 from reaperhulk/fix-2758Alex Gaynor2016-03-121-0/+8
|\ \ \ \ \ | | | | | | | | | | | | Add AuthorityKeyIdentifier.from_issuer_subject_key_identifier
| * | | | | Add AuthorityKeyIdentifier.from_issuer_subject_key_identifierPaul Kehrer2016-03-111-0/+8
| |/ / / /
* | | | | Merge pull request #2794 from reaperhulk/110-patch-15Alex Gaynor2016-03-122-11/+33
|\ \ \ \ \ | | | | | | | | | | | | opaque HMAC_CTX, which requires some helper functions
| * | | | | HMAC_CTX_new doesn't need commented out code for no reasonPaul Kehrer2016-03-101-5/+0
| | | | | |
| * | | | | simplify HMAC_CTX_freePaul Kehrer2016-03-101-4/+0
| | | | | |
| * | | | | opaque HMAC_CTX, which requires some helper functionsPaul Kehrer2016-03-092-11/+42
| | | | | |
* | | | | | Merge pull request #2812 from reaperhulk/fix-2717Alex Gaynor2016-03-121-0/+7
|\ \ \ \ \ \ | |_|_|/ / / |/| | | | | make multibackend error with an empty list.
| * | | | | parensPaul Kehrer2016-03-111-1/+1
| | | | | |
| * | | | | make multibackend error with an empty list. fixes #2717Paul Kehrer2016-03-111-0/+7
| | |/ / / | |/| | |
* | | | | struct is a keywordAlex Gaynor2016-03-111-1/+1
| | | | |
* | | | | Don't make this struct opaqueAlex Gaynor2016-03-111-1/+1
| | | | | | | | | | | | | | | it breaks pyopenssl: https://jenkins.cryptography.io/job/pyopenssl-smoke/label=debian7,version=master/80/console
* | | | | Merge pull request #2805 from reaperhulk/110-patch-25Alex Gaynor2016-03-111-3/+6
|\ \ \ \ \ | | | | | | | | | | | | modify how revocation date is set on X509_REVOKED in the openssl backend
| * | | | | modify how revocation date is set on X509_REVOKED in the openssl backendPaul Kehrer2016-03-101-3/+6
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | In OpenSSL 1.1.0 there isn't a pre-existing ASN1_TIME object so we have ASN1_TIME_set make us a new one. In older OpenSSLs this is still safe because ASN1_TIME_set checks and frees any current value in the object.
* | | | | | Merge pull request #2800 from reaperhulk/110-patch-21Alex Gaynor2016-03-112-12/+27
|\ \ \ \ \ \ | | | | | | | | | | | | | | opaque EVP_MD_CTX and wrap EVP_MD_CTX_new + EVP_MD_CTX_free
| * | | | | | opaque EVP_MD_CTX and wrap EVP_MD_CTX_new + EVP_MD_CTX_freePaul Kehrer2016-03-102-12/+27
| | |_|_|/ / | |/| | | |
* | | | | | partially opaque RAND_METHODPaul Kehrer2016-03-111-3/+1
| |_|/ / / |/| | | | | | | | | | | | | | | | | | | We only populate bytes, pseudobytes, and status and in OpenSSL 1.1.0 seed and add changed signature (from void return to int).
* | | | | X509_STORE_CTX_get_ex_new_index is a macro in 1.1.0Paul Kehrer2016-03-101-2/+4
| |/ / / |/| | |
* | | | Merge pull request #2799 from reaperhulk/110-patch-20Alex Gaynor2016-03-101-8/+0
|\ \ \ \ | | | | | | | | | | remove some error codes we don't use
| * | | | remove some error codes we don't usePaul Kehrer2016-03-101-8/+0
| |/ / /
* | | | Merge pull request #2798 from reaperhulk/110-patch-19Alex Gaynor2016-03-102-3/+8
|\ \ \ \ | | | | | | | | | | opaque X509_EXTENSION
| * | | | deopaque X509_EXTENSION so we can keep moving on 1.1.0 supportPaul Kehrer2016-03-101-1/+7
| | | | |
| * | | | opaque X509_EXTENSIONPaul Kehrer2016-03-092-8/+7
| | |/ / | |/| |
* | | | EVP_CIPHER_CTX_init is a macro in 1.1.0Paul Kehrer2016-03-101-1/+3
| |/ / |/| |
* | | Merge pull request #2795 from reaperhulk/110-patch-16Alex Gaynor2016-03-102-17/+38
|\ \ \ | | | | | | | | opaque X509_NAME
| * | | opaque X509_NAMEPaul Kehrer2016-03-092-17/+38
| |/ /
* | | Merge pull request #2797 from reaperhulk/110-patch-18Alex Gaynor2016-03-091-8/+10
|\ \ \ | | | | | | | | move some ssl functions that are now macros and add 2 getters
| * | | whoops this shouldn't have movedPaul Kehrer2016-03-091-1/+1
| | | |
| * | | move some ssl functions that are now macros and add 2 gettersPaul Kehrer2016-03-091-7/+9
| |/ / | | | | | | | | | | | | SSL_get_session and SSL_SESSION_get_id will help us when SSL becomes opaque soon (woe be unto pyopenssl)