Pavel Roskin
4324084d58
Use static inline functions for OpenSSL 1.0 backport
...
Conditional preprocessor directives spread throughout the code set a bad
example.
The new backport code is located in one place. The compiler checks
argument types. The backport code has no access to the caller variables.
The main code has all advantages of the new, more compact API.
2016-11-01 11:09:15 -07:00
Dominik George
e5cf45d1ac
Add backwards compatibility to OpenSSL < 1.1.0.
2016-10-27 22:40:48 +02:00
Dominik George
1b5fb8f1c8
Fix ssl_calls for OpenSSL 1.1.0, closes #458 .
2016-10-27 21:56:22 +02:00
Jay Sorg
8f747e37ca
always set SSL_OP_NO_SSLv2 in TLS options
2016-08-25 11:38:03 -07:00
Alex Illsley
47124df4ed
new options for xrdp.ini disableSSlv3=yes and tls_ciphers=HIGH and code to implement
2016-08-25 11:20:47 -07:00
Pavel Roskin
5829323ad8
Use g_new or g_new0 when C++ compiler would complain about implicit cast
2016-07-08 04:29:49 +00:00
Pavel Roskin
aeeb3d2c2e
Fix warnings detected by -Wwrite-strings
2016-07-08 04:29:42 +00:00
Jay Sorg
f100036cd9
common: minor fix for older openssl keygen
2016-02-22 11:48:54 -08:00
Jay Sorg
0d192aee62
common: fix for key generated smaller than asked for
2016-02-22 11:38:03 -08:00
Jay Sorg
fd793bd213
rename g_tcp_can_recv to g_sck_can_recv
2015-10-07 22:17:12 -07:00
Koichiro IWAO
cd6ab20e94
common: shut up some messages in ssl_tls_print_error
...
SSL_ERROR_WANT_READ/SSL_ERROR_WANT_WRITE are not fatal error but just
indicate SSL_read, SSL_write, SSL_accept functions to repeat.
2015-06-12 13:03:07 +09:00
Koichiro IWAO
2a2b8bcd59
common: fix #248 TLS on FreeBSD
...
According to document[1][2][3], retry when SSL_get_error returns
SSL_ERROR_WANT_READ/SSL_ERROR_WANT_WRITE.
[1] https://www.openssl.org/docs/ssl/SSL_read.html
[2] https://www.openssl.org/docs/ssl/SSL_write.html
[3] https://www.openssl.org/docs/ssl/SSL_accept.html
2015-06-11 21:45:57 +09:00
speidy
86005c5bcc
ssl_calls: fix to read certificate chains
2014-12-10 00:04:38 +02:00
Jay Sorg
d9d746ce5c
common: avoid possible SSL_shutdown crash
2014-12-02 10:52:03 -08:00
Jay Sorg
cc0406dddf
common: move tls calls to ssl_calls
2014-11-25 18:55:37 -08:00
Jay Sorg
09de814ff0
common: allow RSA keys bigger than 512 bit
2014-06-05 17:52:02 -07:00
Jay Sorg
25ad4d8a36
common: add more fips ssl calls
2014-02-23 20:40:13 -08:00
Jay Sorg
2921400083
common: check for nil in fips cleanup
2014-02-23 12:27:41 -08:00
Jay Sorg
926cd095fc
common: added des3 calls for fips
2014-02-20 23:15:24 -08:00
Laxmikant Rashinkar
1123323fda
o moved from GNU General Public License to Apache License, Version 2.0
...
o applied new coding standards to all .c files
o moved some files around
2012-09-19 20:51:34 -07:00
Jay Sorg
0da32da2d8
add ssl init to common
2011-05-28 23:56:10 -07:00
Jay Sorg
bb7898419f
update copyright year
2010-10-19 20:00:38 -07:00
jsorg71
6c5f82fd04
update copyright year
2009-02-02 08:01:44 +00:00
jsorg71
2363bd373b
comment change
2008-04-15 05:36:35 +00:00
jsorg71
2cd8307610
added support for if OLD_RSA_GEN1 is defined and changed unsigned char to tui8
2008-04-15 02:27:31 +00:00
jsorg71
38b789e81f
update copyright year
2008-01-30 07:30:10 +00:00
jsorg71
ef18f927df
removed built in keygen funtion, wasn't working anyway
2007-09-21 21:37:54 +00:00
jsorg71
a7fe699174
added rsa_builtin_keygen1 for older openssl libraries
2007-07-18 05:37:10 +00:00
jsorg71
2a107df996
added undef and error message
2007-07-03 04:25:18 +00:00
jsorg71
76a8cf1689
check for old openssl library for key gen
2007-07-03 01:14:59 +00:00
jsorg71
6ecbf36e7e
added keygen function
2007-06-16 04:51:19 +00:00
jsorg71
02cd95ebef
copyright year update
2007-01-12 05:01:58 +00:00
jsorg71
00d8b7106f
commit patch 1589325, slightly modified - code cleanup
2006-11-04 22:05:06 +00:00
jsorg71
70449c9471
need to include stdlib.h before opensll headers
2006-05-31 17:46:24 +00:00
jsorg71
b65409683b
copyright year updates
2006-03-21 02:05:38 +00:00
jsorg71
baf7f173ae
added some APP_CC and changed ssl prefix
2005-11-26 00:57:12 +00:00
jsorg71
05ec6aa2d5
gota use len in BN_bin2bn
2005-11-02 01:36:09 +00:00
jsorg71
9ad83a3c23
moving reverse to ssl_calls
2005-09-25 20:21:53 +00:00
jsorg71
41df89c7f2
moved some files around
2005-06-28 03:04:36 +00:00