Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | | Merge pull request #1901 from ↵ | Paul Kehrer | 2015-05-04 | 1 | -0/+3 | |
|\ \ | | | | | | | | | | | | | eeshangarg/openssl-binding-SSL-get-tlsext-status-ocsp-resp Add OpenSSL binding for SSL_get_tlsext_status_ocsp_resp | |||||
| * | | Add OpenSSL binding for SSL_get_tlsext_status_ocsp_resp | Eeshan Garg | 2015-05-04 | 1 | -0/+3 | |
| | | | ||||||
* | | | authority key identifier support in the openssl backend | Paul Kehrer | 2015-05-03 | 2 | -0/+44 | |
| | | | ||||||
* | | | Fix AKI authority_cert_issuer type | Paul Kehrer | 2015-05-03 | 1 | -2/+7 | |
|/ / | | | | | | | | | | | It was originally defined as an X509 Name, but in reality it is a list of GeneralName objects (albeit typically a list of one DirectoryName). | |||||
* | | updates based on review feedback | Paul Kehrer | 2015-05-02 | 1 | -2/+4 | |
| | | ||||||
* | | add authority information access classes | Paul Kehrer | 2015-05-02 | 1 | -0/+67 | |
| | | ||||||
* | | oops this was already defined | Paul Kehrer | 2015-05-02 | 1 | -1/+0 | |
| | | ||||||
* | | Extended key usage support for the openssl backend | Paul Kehrer | 2015-05-02 | 2 | -0/+26 | |
| | | ||||||
* | | Merge pull request #1890 from reaperhulk/add-eq-ne-eku | Alex Gaynor | 2015-05-02 | 1 | -5/+13 | |
|\ \ | | | | | | | add eq/ne to ExtendedKeyUsage | |||||
| * | | let's not wrap this for no reason | Paul Kehrer | 2015-05-02 | 1 | -3/+1 | |
| | | | ||||||
| * | | add eq/ne to ExtendedKeyUsage | Paul Kehrer | 2015-05-02 | 1 | -5/+15 | |
| |/ | ||||||
* | | Merge pull request #1881 from reaperhulk/san-rfc822name | Alex Gaynor | 2015-05-02 | 1 | -0/+22 | |
|\ \ | | | | | | | add support for rfc822name general names | |||||
| * | | error if it's all empty | Paul Kehrer | 2015-05-02 | 1 | -1/+2 | |
| | | | ||||||
| * | | u prefixes for everyone | Paul Kehrer | 2015-05-02 | 1 | -1/+1 | |
| | | | ||||||
| * | | improve if/elif chain, add some comments | Paul Kehrer | 2015-05-01 | 1 | -6/+11 | |
| | | | ||||||
| * | | add support for rfc822name general names | Paul Kehrer | 2015-04-30 | 1 | -0/+16 | |
| | | | ||||||
* | | | Expose SSL_CTX_set_cert_verify_callback | Cory Benfield | 2015-05-02 | 1 | -0/+3 | |
| |/ |/| | ||||||
* | | Merge pull request #1883 from reaperhulk/fix-1866 | Alex Gaynor | 2015-04-30 | 3 | -0/+23 | |
|\ \ | | | | | | | add support for equality testing to x509.Certificate | |||||
| * | | add support for equality testing to x509.Certificate | Paul Kehrer | 2015-04-30 | 3 | -0/+23 | |
| |/ | ||||||
* | | Merge pull request #1880 from endreszabo/patch-1 | Paul Kehrer | 2015-04-30 | 1 | -0/+1 | |
|\ \ | |/ |/| | Add X509_delete_ext binding needed by Zorp | |||||
| * | Add del_extension needed by Zorp | Endre Szabo | 2015-04-30 | 1 | -0/+1 | |
| | | | | | | Balabit Zorp application level firewall relies on the del_extension function to remove attributes like CRL pathes from the mimicked certificates when doing man-in-the-middle traffic filtering. | |||||
* | | add support for directory name general names | Paul Kehrer | 2015-04-30 | 1 | -0/+4 | |
|/ | ||||||
* | add support for ipaddress to general name parsing | Paul Kehrer | 2015-04-30 | 1 | -0/+9 | |
| | ||||||
* | Merge pull request #1862 from reaperhulk/san-uri | Alex Gaynor | 2015-04-28 | 1 | -0/+28 | |
|\ | | | | | add URI general name support | |||||
| * | add URI general name support | Paul Kehrer | 2015-04-28 | 1 | -0/+28 | |
| | | ||||||
* | | Merge pull request #1795 from public/dh-backend-interfaces-2015 | Paul Kehrer | 2015-04-28 | 1 | -0/+52 | |
|\ \ | | | | | | | DH backend interfaces | |||||
| * | | DH backend interfaces | Alex Stapleton | 2015-04-25 | 1 | -0/+52 | |
| | | | ||||||
* | | | Added support for ssl_get_version | Jim Shaver | 2015-04-26 | 1 | -0/+1 | |
|/ / | ||||||
* / | some initial OCSP bindings | Paul Kehrer | 2015-04-24 | 1 | -0/+30 | |
|/ | ||||||
* | support registeredID general name in OpenSSL backend | Paul Kehrer | 2015-04-22 | 1 | -0/+3 | |
| | ||||||
* | return only an int for unsupported general name type, update docs | Paul Kehrer | 2015-04-22 | 1 | -1/+1 | |
| | ||||||
* | update exception to contain detail | Paul Kehrer | 2015-04-21 | 2 | -2/+5 | |
| | ||||||
* | handle otherName, x400Address, and ediPartyName in OpenSSL backend | Paul Kehrer | 2015-04-21 | 2 | -0/+24 | |
| | ||||||
* | Merge pull request #1857 from reaperhulk/san-check-list-elements | Alex Gaynor | 2015-04-21 | 1 | -0/+6 | |
|\ | | | | | add a check to require that the list passed to SAN is all general names | |||||
| * | add a check to require that the list passed to SAN is all general names | Paul Kehrer | 2015-04-21 | 1 | -0/+6 | |
| | | ||||||
* | | review fixes | Paul Kehrer | 2015-04-21 | 2 | -21/+2 | |
| | | ||||||
* | | Support Subject Alternative Name in the OpenSSL backend | Paul Kehrer | 2015-04-20 | 2 | -0/+47 | |
|/ | | | | Adds only DNS support first | |||||
* | AuthorityKeyIdentifier support | Paul Kehrer | 2015-04-18 | 1 | -0/+37 | |
| | ||||||
* | Merge pull request #1783 from reaperhulk/san-class | Alex Gaynor | 2015-04-18 | 1 | -0/+170 | |
|\ | | | | | Add GeneralName and SubjectAlternativeName classes | |||||
| * | Add GeneralName and SubjectAlternativeName classes | Paul Kehrer | 2015-04-14 | 1 | -0/+170 | |
| | | ||||||
* | | Merge pull request #1849 from Sp1l/master | Paul Kehrer | 2015-04-17 | 1 | -1/+1 | |
|\ \ | | | | | | | LibreSSL added ALPN support in 2.1.3 | |||||
| * | | LibreSSL added ALPN support in 2.1.3 | Bernard Spil | 2015-04-15 | 1 | -1/+1 | |
| | | | | | | | | | This fixes build issues on FreeBSD | |||||
* | | | improve KeyUsage repr | Paul Kehrer | 2015-04-15 | 1 | -2/+2 | |
|/ / | | | | | | | fixes #1834 | |||||
* | | Merge pull request #1848 from reaperhulk/invalid-token | Alex Gaynor | 2015-04-14 | 5 | -4/+21 | |
|\ \ | | | | | | | Twofactor invalid token | |||||
| * | | add changelog entry, set proper deprecation warning | Paul Kehrer | 2015-04-14 | 1 | -1/+1 | |
| | | | ||||||
| * | | InvalidToken is deprecated in 09, not 08 | Steven Buss | 2015-04-13 | 1 | -1/+1 | |
| | | | ||||||
| * | | Add DeprecatedIn09 | Steven Buss | 2015-04-13 | 1 | -0/+1 | |
| | | | ||||||
| * | | Move cryptography.exceptions.InvalidToken to ↵ | Steven Buss | 2015-04-13 | 4 | -4/+20 | |
| |/ | | | | | | | cryptography.hazmat.primitives.twofactor | |||||
* | | Fix comparison between pyasn1 objects introduced in #1843 | Geoffrey Thomas | 2015-04-14 | 1 | -1/+1 | |
| | | | | | | | | | | | | | | __eq__ compares values, so e.g. univ.Integer(0) == eoo.endOfOctets. I believe this isn't a logic error for what we're doing now, but keep the code right in case it gets reused. This is the pattern used by pyasn1 internally. | |||||
* | | Work around pyasn1's willingness to return endOfOctets in DER parsing | Geoffrey Thomas | 2015-04-13 | 1 | -0/+7 | |
|/ | | | | See #1838 for discussion. |