| Commit message (Expand) | Author | Age | Files | Lines |
* | x509/v3_purp.c: rename 'require_ca' parameters to the more adequate 'non_leaf' | Dr. David von Oheimb | 2022-11-18 | 1 | -39/+39 |
* | x509/v3_purp.c etc.: improve doc/comments on codesign and timestamp purpose c... | Dr. David von Oheimb | 2022-11-18 | 1 | -6/+20 |
* | crypto/*: Fix various typos, repeated words, align some spelling to LDP. | FdaSilvaYY | 2022-10-12 | 1 | -1/+1 |
* | Stop raising ERR_R_MALLOC_FAILURE in most places | Richard Levitte | 2022-10-05 | 1 | -8/+4 |
* | X509: Add "code sign" as purpose for verification of certificates | Lutz Jaenicke | 2022-08-18 | 1 | -0/+56 |
* | Fix ossl_x509v3_cache_extensions(): EXFLAG_NO_FINGERPRINT should not be an error | Dr. David von Oheimb | 2022-08-18 | 1 | -11/+5 |
* | crypto/x509/v3_purp.c: Improve coding style | Dr. David von Oheimb | 2022-07-13 | 1 | -61/+46 |
* | Improve the documentation of cert path building and validation | Dr. David von Oheimb | 2021-06-08 | 1 | -4/+4 |
* | Update check_sig_alg_match() to work with provided keys | Matt Caswell | 2021-05-31 | 1 | -4/+3 |
* | Add X509 version constants. | David Benjamin | 2021-04-28 | 1 | -1/+1 |
* | x509: fix coverity 1461225: data race condition | Pauli | 2021-03-26 | 1 | -1/+4 |
* | Add ossl_ x509 symbols | Shane Lontis | 2021-03-18 | 1 | -13/+13 |
* | Always check CRYPTO_LOCK_{read,write}_lock | Rich Salz | 2021-03-14 | 1 | -1/+2 |
* | Code cleanup mostly in crypto/x509/v3_purp.c | Dr. David von Oheimb | 2021-02-27 | 1 | -91/+88 |
* | check_sig_alg_match(): weaken sig nid comparison to allow RSA{,PSS} key verif... | Dr. David von Oheimb | 2021-01-28 | 1 | -8/+10 |
* | Update copyright year | Richard Levitte | 2021-01-28 | 1 | -1/+1 |
* | X509_cmp(): Fix comparison in case x509v3_cache_extensions() failed to due to... | Dr. David von Oheimb | 2021-01-13 | 1 | -8/+8 |
* | Convert all {NAME}err() in crypto/ to their corresponding ERR_raise() call | Richard Levitte | 2020-11-13 | 1 | -9/+9 |
* | Implement treatment of id-pkix-ocsp-no-check extension for OCSP_basic_verify() | Dr. David von Oheimb | 2020-09-26 | 1 | -0/+1 |
* | Rename check_chain_extensions to check_chain | Tomas Mraz | 2020-09-17 | 1 | -1/+1 |
* | Fix safestack issues in asn1.h | Matt Caswell | 2020-09-13 | 1 | -2/+0 |
* | Fix safestack issues in x509v3.h | Matt Caswell | 2020-09-13 | 1 | -3/+0 |
* | check_chain_extensions(): Add check that on empty Subject the SAN must be mar... | Dr. David von Oheimb | 2020-09-11 | 1 | -0/+3 |
* | check_chain_extensions(): Add check that AKID and SKID are not marked critical | Dr. David von Oheimb | 2020-09-11 | 1 | -5/+17 |
* | check_chain_extensions(): Add check that Basic Constraints of CA cert are mar... | Dr. David von Oheimb | 2020-09-11 | 1 | -1/+3 |
* | Extend X509 cert checks and error reporting in v3_{purp,crld}.c and x509_{set... | Dr. David von Oheimb | 2020-09-11 | 1 | -26/+71 |
* | Make sure x509v3_cache_extensions() does not modify the error queue | Dr. David von Oheimb | 2020-08-21 | 1 | -0/+2 |
* | Add X509 related libctx changes. | Shane Lontis | 2020-07-24 | 1 | -22/+9 |
* | x509_vfy.c: Improve key usage checks in internal_verify() of cert chains | Dr. David von Oheimb | 2020-07-16 | 1 | -0/+2 |
* | Constify X509_check_akid and prefer using X509_get0_serialNumber over X509_ge... | Dr. David von Oheimb | 2020-07-16 | 1 | -2/+2 |
* | X509v3_cache_extensions(): Improve coding style and doc, fix case 'sha1 == NULL' | Dr. David von Oheimb | 2020-07-01 | 1 | -26/+39 |
* | Fix issue 1418 by moving check of KU_KEY_CERT_SIGN and weakening check_issued() | Dr. David von Oheimb | 2020-07-01 | 1 | -1/+2 |
* | Refactor (without semantic changes) crypto/x509/{v3_purp.c,x509_vfy.c} | Dr. David von Oheimb | 2020-07-01 | 1 | -24/+47 |
* | Improve documentation, layout, and code comments regarding self-issued certs ... | Dr. David von Oheimb | 2020-07-01 | 1 | -17/+14 |
* | In OpenSSL builds, declare STACK for datatypes ... | Rich Salz | 2020-04-24 | 1 | -0/+5 |
* | Introduce an internal version of X509_check_issued() | Matt Caswell | 2020-04-16 | 1 | -3/+9 |
* | Add manpage entry for X509_check_purpose() | Jake Maynard | 2020-04-11 | 1 | -1/+3 |
* | Allow certificates with Basic Constraints CA:false, pathlen:0 | Tomas Mraz | 2020-04-06 | 1 | -3/+7 |
* | Add the X509v3_cache_extensions() function | Matt Caswell | 2020-03-30 | 1 | -15/+17 |
* | Constify various mostly X509-related parameter types in crypto/ and apps/ | Dr. David von Oheimb | 2020-03-23 | 1 | -1/+1 |
* | Fix error handling in x509v3_cache_extensions and related functions | Bernd Edlinger | 2020-03-21 | 1 | -29/+68 |
* | Explicitly test against NULL; do not use !p or similar | Rich Salz | 2019-10-09 | 1 | -2/+2 |
* | Reorganize private crypto header files | Dr. Matthias St. Pierre | 2019-09-28 | 1 | -1/+1 |
* | Add missing accessors for X509 AuthorityKeyIdentifier | Dr. Matthias St. Pierre | 2019-08-01 | 1 | -0/+14 |
* | Join the x509 and x509v3 directories | Richard Levitte | 2019-05-29 | 1 | -0/+909 |