Commit Graph

574 Commits (v0.5.6)
 

Author SHA1 Message Date
Daniel Roethlisberger 807b7c1d3b Fix typo in manpage 12 years ago
Daniel Roethlisberger 6b2bef3920 Add separate LICENSE file 12 years ago
Daniel Roethlisberger cdfaeedb80 Ignore all DH param files under extra/pki 12 years ago
Daniel Roethlisberger ff6fbef91f Add 4096-bit Diffie-Hellman to dh target 12 years ago
Daniel Roethlisberger 35c3967eef Remove obsolete dhall target from .PHONY 12 years ago
Daniel Roethlisberger bd77e6a228 Improve ssl_tmp_dh_callback() error messages 12 years ago
Daniel Roethlisberger 79c2c6e520 Add support for 2048 and 4096 bit Diffie-Hellman
Add group parameters for 2048 and 4096 bit Diffie-Hellman in addition to
the previous 512 and 1024 bit parameters.  Also add a meaningful error
message when a group size is requested which is not provided.
12 years ago
Daniel Roethlisberger e19a97b21f Update NEWS and TODO 12 years ago
Daniel Roethlisberger 6b4b121da2 Fix address family check in netfilter NAT lookup
Use src_addr instead of the (yet to be set) dst_addr for determining the
address family.  Fixes issue #4.
12 years ago
Daniel Roethlisberger 6106940e0c Omit nat_getsockname_lookup_cb() unless it is used 12 years ago
Daniel Roethlisberger 1b20544333 Add temporary RSA keys to TODO 12 years ago
Daniel Roethlisberger fda4f57aa7 Remove unused IPv6 code for netfilter NAT engine 12 years ago
Daniel Roethlisberger fc8c0110c5 Do not generate ECC keys for unit tests 12 years ago
Daniel Roethlisberger 5ed3e5172b Make explanation of DEBUG_CFLAGS clearer 12 years ago
Daniel Roethlisberger 2266f07b4f Update TODO 12 years ago
Daniel Roethlisberger a4040d8372 Suppress warnings for system headers with -isystem
Use -isystem instead of -I in CPPFLAGS to suppress compiler warnings for
system and library headers.
12 years ago
Daniel Roethlisberger 911e15763d Add opts->debug branch prediction test case 12 years ago
Daniel Roethlisberger ef1330d69f Remove const from util_skipws() and add tests 12 years ago
Daniel Roethlisberger 5c048e3990 Remove unneeded include statements 12 years ago
Daniel Roethlisberger 6fe4c5bf01 Sign release tarball using GnuPG 12 years ago
Daniel Roethlisberger 62af96e413 Clarify when it is preferred to use SNI proxyspecs 12 years ago
Daniel Roethlisberger 11fdf52553 Add NEWS file, documenting release history 12 years ago
Daniel Roethlisberger f75d1bc01b Use some more markdown syntax 12 years ago
Daniel Roethlisberger 457c2621b8 Fix warning when SSLv2 session cache is enabled 12 years ago
Daniel Roethlisberger 8eb5165760 Optimize debug branching using __builtin_expect() 12 years ago
Daniel Roethlisberger e270fb127b Unconditionally define _GNU_SOURCE
Get rid of the fragile glibc auto-detection mechanism and define
_GNU_SOURCE unconditionally in order to fix the build on recent GNU libc
systems such as Debian and Ubuntu.  On non-GNU libc implementations,
_GNU_SOURCE should not have any effect.

Issue:          #2
Reported by:    Vincent Bernat
12 years ago
Daniel Roethlisberger 3742404fe9 Update ECDH default curve name in manual page 12 years ago
Daniel Roethlisberger 7ad1deb680 Document intended use of SSLsplit 12 years ago
Daniel Roethlisberger a3b6d58df4 State why ECDH is disabled with OpenSSL < 1.0.0e 12 years ago
Daniel Roethlisberger 38d22415af Generic EC loading, new default curve 'secp160r2' 12 years ago
Daniel Roethlisberger 6d58824de2 Fix typo in manual page 12 years ago
Daniel Roethlisberger 759ce87ff9 Add some basic unit tests for dynbuf 12 years ago
Daniel Roethlisberger 707480a1dd Add file comments 12 years ago
Daniel Roethlisberger a592f7149c Improve error handling for no origcrt situations 12 years ago
Daniel Roethlisberger 605c1ab6e6 Improve error recovery under low memory conditions 12 years ago
Daniel Roethlisberger 2d1ad219b9 Change default cipher suite to "ALL:-aNULL" 12 years ago
Daniel Roethlisberger 1bd2872b20 DH group parameters are also loaded from -c 12 years ago
Daniel Roethlisberger 0e19243307 Reorder wildcard rules and improve error messages 12 years ago
Daniel Roethlisberger 43df203914 Handle empty strings correctly in URL routines 12 years ago
Daniel Roethlisberger b6a0ff0c76 Free proxyspecs if they (unexpectedly) parse okay 12 years ago
Daniel Roethlisberger ddbb945406 Rename unit test sources to fix language detection 12 years ago
Daniel Roethlisberger 90351cda7f Handle SSL_ERROR_SSL quietly when shutting down 12 years ago
Daniel Roethlisberger 5861d786f5 Update TODO 12 years ago
Daniel Roethlisberger 982ad89f2f Add generation of a password protected RSA key 12 years ago
Daniel Roethlisberger e6c7b2e3ca Mention PKG_CONFIG_PATH 12 years ago
Daniel Roethlisberger fa425e08d4 Fix PURIFY and warn when not seeding the RNG 12 years ago
Daniel Roethlisberger 439e8a8267 Use WUNRES and MALLOC attribs and fix sloppy code 12 years ago
Daniel Roethlisberger 64cf874925 Header self-sufficience cleanup round 12 years ago
Daniel Roethlisberger 7aca81a7b7 Improve CA cert/key config code and docs
Make -c and -k functional twins by also loading DH params in -c and by
fixing certificate loading in -k.  Improve the documentation for both
switches and simplify the SYNOPSIS in sslsplit(1).
12 years ago
Daniel Roethlisberger c5335afc3b Handle empty strings correctly in Base64 routines 12 years ago