Age | Commit message (Collapse) | Author | |
---|---|---|---|
2019-12-08 | Testsuite: explicitly disable TFO in transports | Jeremy Harris | |
2019-07-20 | Debug: indent lowlevel connect result | Jeremy Harris | |
2019-05-22 | Change the default for hosts_try_dane, enabling use by default | Jeremy Harris | |
2019-02-11 | Debug: config file name & line number for each ACL verb | Jeremy Harris | |
(cherry picked from commit 9e160d8100cd15517a3444c1ad8ab81e51399582) | |||
2018-11-25 | Testsuite: ignore OCSP option output; fixes runs on non-OCSP builds | Jeremy Harris | |
2018-09-17 | DANE: fix TA-mode verify under GnuTLS. Bug 2311 | Jeremy Harris | |
2017-12-22 | DANE/GnuTLS: split verification of mixed sets of TLSA records by usage | Jeremy Harris | |
This is because we cannot do the required CA-anchor and names checks for TA-mode and not for EE-mode, without knowing which usage TLSA was used. | |||
2017-12-20 | DANE/GnuTLS: ignore traditional CA anchor validation in DANE-EE mode | Jeremy Harris | |
Not quite right for a mixed TA+EE set of TLSA records, but better than always-enforcing | |||
2017-12-19 | DANE: support under GnuTLS. Bug 1523 | Jeremy Harris | |
GnuTLS version 3.0.0 onwards; still Experimental |