1. 12 Mar, 1999 3 commits
  2. 11 Mar, 1999 1 commit
  3. 10 Mar, 1999 4 commits
  4. 09 Mar, 1999 2 commits
  5. 08 Mar, 1999 4 commits
  6. 07 Mar, 1999 4 commits
  7. 06 Mar, 1999 9 commits
  8. 05 Mar, 1999 2 commits
  9. 04 Mar, 1999 4 commits
  10. 03 Mar, 1999 1 commit
  11. 28 Feb, 1999 2 commits
  12. 27 Feb, 1999 1 commit
  13. 26 Feb, 1999 1 commit
  14. 25 Feb, 1999 2 commits
    • Ralf S. Engelschall's avatar
      Add a bunch of SSL_xxx() functions for configuring the temporary RSA and DH · 15d21c2d
      Ralf S. Engelschall authored
      private keys and/or callback functions which directly correspond to their
      SSL_CTX_xxx() counterparts but work on a per-connection basis. This is needed
      for applications which have to configure certificates on a per-connection
      basis (e.g. Apache+mod_ssl) instead of a per-context basis (e.g.
      s_server).
      
      For the RSA certificate situation is makes no difference, but for the DSA
      certificate situation this fixes the "no shared cipher" problem where the
      OpenSSL cipher selection procedure failed because the temporary keys were not
      overtaken from the context and the API provided no way to reconfigure them.
      
      The new functions now let applications reconfigure the stuff and they are in
      detail: SSL_need_tmp_RSA, SSL_set_tmp_rsa, SSL_set_tmp_dh,
      SSL_set_tmp_rsa_callback and SSL_set_tmp_dh_callback.  Additionally a new
      non-public-API function ssl_cert_instantiate() is used as a helper function
      and also to reduce code redundancy inside ssl_rsa.c.
      
      Submitted by: Ralf S. Engelschall
      Reviewed by: Ben Laurie
      15d21c2d
    • Ralf S. Engelschall's avatar
      Move s_server -dcert and -dkey options out of the undocumented feature area · ea14a91f
      Ralf S. Engelschall authored
      because they are useful for the DSA situation and should be recognized by the
      users. Thanks to Steve for the original hint.
      ea14a91f