Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Remove lua 5.1 code that's taken care of by compat-5.3 | daurnimator | 2017-09-03 | 1 | -14/+0 |
| | |||||
* | Fix pkey.new failing when generating RSA keys | daurnimator | 2017-09-03 | 1 | -3/+5 |
| | |||||
* | Don't reset metamethods when reset is 0 | daurnimator | 2017-09-03 | 1 | -0/+3 |
| | | | | | | Fixes issue where interposed methods were discarded if any more C modules were loaded Closes #104 | ||||
* | Fix warnings about discarding const | daurnimator | 2017-09-02 | 1 | -3/+3 |
| | |||||
* | Fix warning about incorrect number of macro arguments | daurnimator | 2017-09-02 | 1 | -1/+1 |
| | |||||
* | Only use lua-compat-5.3 if running < 5.3 | daurnimator | 2017-09-01 | 1 | -0/+2 |
| | |||||
* | openssl >=1.1.0 doesn't need to have locking initialised, nor config ↵ | daurnimator | 2017-08-31 | 1 | -2/+10 |
| | | | | | | manually loaded Part of #96 | ||||
* | Merge remote-tracking branch 'daurnimator/less-locks' | daurnimator | 2017-08-31 | 1 | -32/+14 |
|\ | |||||
| * | Remove mutex from dl_anchor | daurnimator | 2017-08-10 | 1 | -6/+1 |
| | | | | | | | | All call sites already hold a single mutex | ||||
| * | Use a single lock across multiple init functions | daurnimator | 2017-08-10 | 1 | -26/+13 |
| | | |||||
* | | In compat_init we only need to anchor if we use CRYPTO_get_ex_new_index | daurnimator | 2017-08-31 | 1 | -1/+1 |
| | | |||||
* | | Move away from deprecated X509_CRL_get_* functions when setting values | daurnimator | 2017-08-31 | 1 | -21/+44 |
| | | | | | | | | | | | | Use X509_CRL_set1_* instead which perform a copy (which means we have to allocate and destroy an ASN1_TIME) Part of #96 | ||||
* | | Move to key generation *_ex functions. | daurnimator | 2017-08-31 | 1 | -8/+29 |
| | | | | | | | | | | | | The old functions were deprecated in OpenSSL 1.1.0. Part of #96 | ||||
* | | Use 'generator' parameter for picking generator for DH keys (rather than ↵ | daurnimator | 2017-08-31 | 1 | -4/+6 |
| | | | | | | | | | | | | 'exp'). Change default value to 2. 2 is the default generator for openssl; the number is a mostly arbitrary choice, and smaller values are faster. | ||||
* | | Add branch for each key type in pk_new field marshalling | daurnimator | 2017-08-31 | 1 | -14/+32 |
| | | |||||
* | | Use X509_CRL_get0_*Update when not modifying ASN1_TIME | daurnimator | 2017-08-31 | 1 | -9/+25 |
| | | |||||
* | | Fix most 'expansion-to-defined' warnings | daurnimator | 2017-08-31 | 1 | -12/+29 |
| | | |||||
* | | Use single method constructor and disable unwanted protocols via options | daurnimator | 2017-08-31 | 1 | -31/+61 |
| | | | | | | | | | | - In OpenSSL 1.1.0 the individual constructors are deprecated - The removal of __typeof__ fixes an issue with MSVC | ||||
* | | Fix openssl 0.9.8 compat (missing sk_OPENSSL_STRING_* functions) | daurnimator | 2017-08-31 | 1 | -0/+10 |
| | | |||||
* | | Merge branch 'curves_list' | daurnimator | 2017-08-30 | 1 | -0/+57 |
|\ \ | |||||
| * | | openssl.ssl: Bind SSL_set1_curves_list as ssl:setCurvesList() | daurnimator | 2017-04-12 | 1 | -0/+22 |
| | | | |||||
| * | | openssl.ssl.context.new: Turn on ecdh_auto in OpenSSL 1.0.2 | daurnimator | 2017-04-03 | 1 | -0/+13 |
| | | | | | | | | | | | | | | | It's on by default in 1.1.0, and supported in < 1.0.2. Suggestion taken from ruby openssl implementation: https://github.com/ruby/openssl/blob/a7bbd590c66d40bd662502df9c65474e85b5f03f/ext/openssl/ossl_ssl.c#L135 | ||||
| * | | openssl.ssl.context: Add ctx:setCurvesList | daurnimator | 2017-04-03 | 1 | -0/+22 |
| | | | |||||
* | | | Move over to using lua-compat-5.3 | daurnimator | 2017-08-30 | 1 | -1/+1 |
| | | | |||||
* | | | Fix capitalisation (Hostname vs HostName) | daurnimator | 2017-05-31 | 1 | -7/+7 |
| | | | |||||
* | | | Fix incorrect error prefixes | daurnimator | 2017-04-19 | 1 | -2/+2 |
| | | | |||||
* | | | Reintroduce context:setTLSextStatusType() accidently removed in ↵ | daurnimator | 2017-04-06 | 1 | -0/+3 |
| | | | | | | | | | | | | 59766e63abfeb30342d413777b507940a739cc97 | ||||
* | | | Add ssl_pushsafe function to avoid panic on OOM | daurnimator | 2017-04-04 | 1 | -7/+41 |
| | | | |||||
* | | | Bind SSL_CTX_set_tlsext_servername_callback | daurnimator | 2017-04-04 | 1 | -4/+81 |
| | | | | | | | | | | | | Closes #84 | ||||
* | | | Add methods ssl:setVerify(), ssl:getVerify(), ssl:getCertificate() and ↵ | daurnimator | 2017-04-04 | 1 | -0/+69 |
| |/ |/| | | | | | | | | | ssl:setPrivateKey() Similar to same methods that already exist on ssl.context object | ||||
* | | Remove need for LUA_COMPAT_APIINTCASTS | daurnimator | 2017-04-03 | 1 | -23/+15 |
| | | |||||
* | | Fix warning about pointer signedness | daurnimator | 2017-04-03 | 1 | -1/+1 |
| | | |||||
* | | Fix warning about pointer signedness | daurnimator | 2017-04-03 | 1 | -1/+1 |
| | | |||||
* | | Bind SSL_set_SSL_CTX | daurnimator | 2017-04-03 | 1 | -0/+13 |
| | | | | | | | | For #84 | ||||
* | | Don't leak ctx on error | daurnimator | 2017-04-03 | 1 | -8/+5 |
| | | | | | | | | Fixes #72 | ||||
* | | Bind SSL_get_client_random | daurnimator | 2017-04-03 | 1 | -0/+42 |
| | | | | | | | | For #86 | ||||
* | | Merge branch 'ocsp' | daurnimator | 2017-04-03 | 1 | -0/+347 |
|\ \ | |||||
| * | | Have (empty) openssl.ocsp.response module | daurnimator | 2017-04-03 | 1 | -2/+19 |
| | | | |||||
| * | | Export constants for openssl.ocsp.basic:verify() with via module | daurnimator | 2017-04-03 | 1 | -0/+25 |
| | | | |||||
| * | | Allow unsetting ocsp response | daurnimator | 2017-04-03 | 1 | -4/+8 |
| | | | |||||
| * | | Add cert:getOCSP() to retreive OCSP URI from a certificate | daurnimator | 2016-12-20 | 1 | -0/+35 |
| | | | |||||
| * | | Add ssl:setTLSextStatusOCSPResp() | daurnimator | 2016-12-20 | 1 | -0/+21 |
| | | | | | | | | | | | | Currently useless without a way to set a callback for tlsext | ||||
| * | | OCSP functions required for basic client validation | daurnimator | 2016-12-20 | 1 | -0/+245 |
| |/ | |||||
* | | Remove extraneous parenthesis | daurnimator | 2017-04-03 | 1 | -1/+1 |
| | | |||||
* | | Merge branch 'xc_getSignatureName' | daurnimator | 2017-04-03 | 1 | -9/+9 |
|\ \ | |||||
| * | | Add compat with openssl < 1.0.2 for X509_get_signature_nid | daurnimator | 2017-04-03 | 1 | -0/+8 |
| | | | |||||
| * | | Use X509_get_signature_nid instead of X509_get_signature_type to implement ↵ | daurnimator | 2017-01-16 | 1 | -9/+1 |
| |/ | | | | | | | | | | | cert:getSignatureName() Fixes #79 | ||||
* | | Remove unused variables introduced in 590d368daeb400515c82b2d99ddcdf14607f9353 | daurnimator | 2017-04-03 | 1 | -4/+0 |
| | | |||||
* | | Merge branch '87-pass-subject-to-extension.new' | daurnimator | 2017-04-03 | 1 | -25/+87 |
|\ \ | | | | | | | | | | Closes #87 | ||||
| * | | Move value='DER' check out of type dispatch in xe_new | daurnimator | 2017-04-03 | 1 | -20/+19 |
| | | |