openssl/ssl
Viktor Dukhovni 8d887efa2e Better invalid SNI name error handling
Also report an SSL_dane_enable error when the basedomain is an
invalid SNI name.  Avoid side-effects when such a name is valid
with X509_VERIFY_PARAM_set1_host(), as e.g. with an empty name, by
setting the SNI name first.

Reviewed-by: Rich Salz <rsalz@openssl.org>
2016-01-16 17:15:42 -05:00
..
record Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
statem Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
bio_ssl.c
d1_lib.c
d1_msg.c
d1_srtp.c
install-ssl.com
Makefile.in Move Makefiles to Makefile.in 2016-01-12 16:26:56 -05:00
methods.c
packet_locl.h
s3_cbc.c
s3_enc.c Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
s3_lib.c Empty SNI names are not valid 2016-01-16 17:15:28 -05:00
s3_msg.c
ssl_algs.c
ssl_asn1.c
ssl_cert.c EDH >= 1024 bits even at security level 0 2016-01-14 11:05:24 -05:00
ssl_ciph.c GH528: "cipher -v" output is confusing. 2016-01-11 18:54:49 -05:00
ssl_conf.c
ssl_err2.c
ssl_err.c
ssl_lib.c Better invalid SNI name error handling 2016-01-16 17:15:42 -05:00
ssl_locl.h RT4232: Extra space in help message. 2016-01-14 11:32:18 -05:00
ssl_mcnf.c
ssl_rsa.c
ssl_sess.c Add lh_doall_arg inlining 2016-01-11 17:50:27 +00:00
ssl_stat.c
ssl_txt.c
ssl_utst.c
ssl-lib.com
t1_enc.c Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
t1_ext.c
t1_lib.c Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
t1_reneg.c
t1_trce.c
tls_srp.c