| Age | Commit message (Collapse) | Author | Files | Lines | |
|---|---|---|---|---|---|
| 2009-02-16 | load SSL engine before certificates, | Igor Sysoev | 1 | -34/+25 | |
| otherwise RSA keys will use built-in RSA methods | |||||
| 2008-12-09 | use "!= NGX_OK" instead of "== NGX_ERROR" | Igor Sysoev | 2 | -12/+12 | |
| 2008-11-18 | low some SSL handshake errors level | Igor Sysoev | 1 | -16/+30 | |
| 2008-10-23 | always use buffer, if connection is buffered, | Igor Sysoev | 1 | -15/+1 | |
| this fixes OpenSSL "bad write retry" error, when *) nginx passed a single buf greater than our buffer (say 32K) to OpenSSL, *) OpenSSL returns SSL_ERROR_WANT_WRITE, *) after some time nginx has to send a new data, *) so there are at least two bufs nginx does pass them directly to OpenSSL, *) but copies the first buf part to buffer, and sends the buffer to OpenSSL. *) because the data length is lesser than it was in previous SSL_write(): 16K < 32K, OpenSSL returns SSL_R_BAD_WRITE_RETRY. | |||||
| 2008-09-19 | dynamic accept threshold | Igor Sysoev | 1 | -1/+1 | |
| 2008-08-26 | *) refactor ngx_ptocidr() | Igor Sysoev | 1 | -7/+0 | |
| *) allow address without bitmask *) thus now ngx_http_geo_module accepts addresses without bitmask | |||||
| 2008-08-21 | ngx_sock_ntop() takes family from sockaddr, remove duplicate field | Igor Sysoev | 2 | -5/+3 | |
| 2008-08-12 | backout both r2162 and r2128 and implement a new fix | Igor Sysoev | 1 | -6/+0 | |
| 2008-08-11 | SSL connection readiness is required for level-triggered events only, | Igor Sysoev | 1 | -1/+4 | |
| broken in r2128 | |||||
| 2008-07-30 | update connection readiness after SSL handshake, | Igor Sysoev | 1 | -0/+3 | |
| this fixes mail proxy SSL connection hanging if level-triggered event is used | |||||
| 2008-07-29 | *) ssl_verify_client ask | Igor Sysoev | 2 | -1/+47 | |
| *) test ssl_client_certificate for ssl_verify_client *) $ssl_client_cert adds TAB before each line except first one *) $ssl_client_raw_cert contains certificate as is | |||||
| 2008-07-09 | handle connect()'s EAGAIN on Linux | Igor Sysoev | 1 | -3/+14 | |
| 2008-06-23 | prepare to allow various number of connections in child processes | Igor Sysoev | 3 | -44/+32 | |
| 2008-06-20 | fix "proxy_pass https://..." broken in r1427 | Igor Sysoev | 1 | -0/+5 | |
| 2008-06-17 | *) back out r2040 | Igor Sysoev | 3 | -7/+7 | |
| *) refactor ngx_palloc() *) introduce ngx_pnalloc() *) additional pool blocks have smaller header | |||||
| 2008-06-16 | $ssl_client_cert | Igor Sysoev | 2 | -0/+52 | |
| 2008-06-16 | DH parameters, ssl_dhparam | Igor Sysoev | 2 | -0/+85 | |
| 2008-05-26 | ssl_session_cache none | Igor Sysoev | 2 | -3/+27 | |
| 2008-05-22 | style fix | Igor Sysoev | 3 | -4/+4 | |
| 2008-04-28 | get certificate info only for debug build | Igor Sysoev | 1 | -0/+2 | |
| 2008-04-28 | fix memory leak when ssl_verify_client is on | Igor Sysoev | 1 | -5/+13 | |
| 2008-04-23 | fix memory leak when ssl_verify_client is on | Igor Sysoev | 1 | -0/+9 | |
| 2008-03-18 | low some SSL handshake errors level | Igor Sysoev | 1 | -1/+11 | |
| 2008-03-13 | restore building --test-build-rtsig and --test-build-eventport on FreeBSD 6 | Igor Sysoev | 2 | -1/+16 | |
| 2008-03-10 | invalidate SSL session if there is no valid client certificate | Igor Sysoev | 2 | -0/+14 | |
| 2008-02-28 | left open sockets were not really tested | Igor Sysoev | 1 | -0/+1 | |
| 2008-02-04 | low SSL handshake close notify alert error level | Igor Sysoev | 1 | -0/+1 | |
| 2008-02-01 | low SSL handshake errors level | Igor Sysoev | 1 | -0/+29 | |
| 2008-01-31 | backout r1757, we really need SSL_MODE_ACCEPT_MOVING_WRITE_BUFFER | Igor Sysoev | 1 | -0/+7 | |
| 2008-01-28 | fix building --test-build-rtsig and --test-build-eventport on FreeBSD 7 | Igor Sysoev | 2 | -10/+4 | |
| 2008-01-25 | add NGX_ENETDOWN, NGX_ENETUNREACH, and NGX_EHOSTDOWN | Igor Sysoev | 2 | -1/+10 | |
| 2008-01-25 | pull all errors | Igor Sysoev | 1 | -1/+3 | |
| 2008-01-22 | fix bogus crit log message "SSL_shutdown() failed" introduced in r1755 | Igor Sysoev | 1 | -5/+2 | |
| 2008-01-10 | pull all errors | Igor Sysoev | 1 | -4/+9 | |
| 2008-01-10 | grammar fix | Igor Sysoev | 1 | -1/+1 | |
| 2007-12-29 | fix comment | Igor Sysoev | 1 | -3/+3 | |
| 2007-12-27 | fix segfault introduced in r1780 | Igor Sysoev | 1 | -2/+4 | |
| 2007-12-26 | create ssl buffer on demand and free it before keep-alive | Igor Sysoev | 2 | -9/+32 | |
| 2007-12-26 | ssl_session_cache off | Igor Sysoev | 2 | -1/+7 | |
| 2007-12-20 | use ngx_queue.h | Igor Sysoev | 2 | -24/+16 | |
| 2007-12-20 | embed session_rbtree and sentinel inside ngx_ssl_session_cache_t | Igor Sysoev | 2 | -23/+13 | |
| 2007-12-20 | omit useless test | Igor Sysoev | 1 | -4/+0 | |
| 2007-12-20 | use ngx_time() instead of ngx_timeofday() | Igor Sysoev | 1 | -11/+5 | |
| 2007-12-20 | remove SSL_MODE_ACCEPT_MOVING_WRITE_BUFFER, we never need it, | Igor Sysoev | 1 | -2/+0 | |
| the "bad write retry" error was caused by SSL_shutdown() error | |||||
| 2007-12-20 | cleaning stale global SSL error | Igor Sysoev | 1 | -0/+18 | |
| 2007-12-20 | SSL_shutdown() never returns -1, on error it returns 0. | Igor Sysoev | 1 | -27/+18 | |
| This fixes incidental "bad write retry" errors. | |||||
| 2007-12-17 | optimize rbtree initialization and insert | Igor Sysoev | 2 | -40/+17 | |
| 2007-12-10 | move condition declarations inside blocks where they are used | Igor Sysoev | 2 | -17/+13 | |
| 2007-12-03 | ngx_udp_recv() | Igor Sysoev | 3 | -0/+3 | |
| 2007-11-11 | TransmitPackets(), ConnectEx(), and DisconnectEx() | Igor Sysoev | 1 | -12/+13 | |
