<feed xmlns='http://www.w3.org/2005/Atom'>
<title>wireguard-openbsd/lib/libtls, branch master</title>
<subtitle>WireGuard implementation for the OpenBSD kernel</subtitle>
<id>https://git.zx2c4.com/wireguard-openbsd/atom/lib/libtls?h=master</id>
<link rel='self' href='https://git.zx2c4.com/wireguard-openbsd/atom/lib/libtls?h=master'/>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/'/>
<updated>2021-03-31T17:02:18Z</updated>
<entry>
<title>Bump minors after symbol addition</title>
<updated>2021-03-31T17:02:18Z</updated>
<author>
<name>tb</name>
<email>tb@openbsd.org</email>
</author>
<published>2021-03-31T17:02:18Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=5625f5cae8f63347961b06e08016bbddc47693be'/>
<id>urn:sha1:5625f5cae8f63347961b06e08016bbddc47693be</id>
<content type='text'>
</content>
</entry>
<entry>
<title>OCSP_basic_verify() doesn't set errno, so use tls_set_errorx()</title>
<updated>2021-03-23T20:04:29Z</updated>
<author>
<name>tb</name>
<email>tb@openbsd.org</email>
</author>
<published>2021-03-23T20:04:29Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=cf2dac91cc97e2d3dcb0640a60cd9b6d5ef576b0'/>
<id>urn:sha1:cf2dac91cc97e2d3dcb0640a60cd9b6d5ef576b0</id>
<content type='text'>
ok inoguchi
</content>
</entry>
<entry>
<title>Use "EC/RSA key setup failure" to align error with others</title>
<updated>2021-02-01T15:35:41Z</updated>
<author>
<name>tb</name>
<email>tb@openbsd.org</email>
</author>
<published>2021-02-01T15:35:41Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=e3a30b143edf53ad57df026de989c6b7fdbf5192'/>
<id>urn:sha1:e3a30b143edf53ad57df026de989c6b7fdbf5192</id>
<content type='text'>
ok eric jsing
</content>
</entry>
<entry>
<title>Move private key setup to a helper function with proper error</title>
<updated>2021-01-26T12:51:22Z</updated>
<author>
<name>eric</name>
<email>eric@openbsd.org</email>
</author>
<published>2021-01-26T12:51:22Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=f8e1ec60098a5fd46417b8f8a31adf6799684b8d'/>
<id>urn:sha1:f8e1ec60098a5fd46417b8f8a31adf6799684b8d</id>
<content type='text'>
checking.  Only install the hash on the key if fake key is used,
and do it for EC keys too.

ok tb@ jsing@
</content>
</entry>
<entry>
<title>when using fake keys, skip the private key check</title>
<updated>2021-01-21T22:03:25Z</updated>
<author>
<name>eric</name>
<email>eric@openbsd.org</email>
</author>
<published>2021-01-21T22:03:25Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=e7e4624867662843f2ac67eb84c9295f214ac586'/>
<id>urn:sha1:e7e4624867662843f2ac67eb84c9295f214ac586</id>
<content type='text'>
ok tb@
</content>
</entry>
<entry>
<title>return -1 on error for consistency</title>
<updated>2021-01-21T22:02:17Z</updated>
<author>
<name>eric</name>
<email>eric@openbsd.org</email>
</author>
<published>2021-01-21T22:02:17Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=b609dc207f77b06cdcee8131df6ee989310eadcf'/>
<id>urn:sha1:b609dc207f77b06cdcee8131df6ee989310eadcf</id>
<content type='text'>
ok tb@
</content>
</entry>
<entry>
<title>minor bump after symbol addition</title>
<updated>2021-01-21T19:09:43Z</updated>
<author>
<name>eric</name>
<email>eric@openbsd.org</email>
</author>
<published>2021-01-21T19:09:43Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=b1d882686dc01ffb55cb831c65336ee50ecc21bc'/>
<id>urn:sha1:b1d882686dc01ffb55cb831c65336ee50ecc21bc</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Allow setting a keypair on a tls context without specifying the private</title>
<updated>2021-01-21T19:09:10Z</updated>
<author>
<name>eric</name>
<email>eric@openbsd.org</email>
</author>
<published>2021-01-21T19:09:10Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=15339a8c6b46d6aea4f5df0384c38a8aef15f986'/>
<id>urn:sha1:15339a8c6b46d6aea4f5df0384c38a8aef15f986</id>
<content type='text'>
key, and fake it internally with the certificate public key instead.
It makes it easier for privsep engines like relayd that don't have to
use bogus keys anymore.

ok beck@ tb@ jsing@
</content>
</entry>
<entry>
<title>Fix indent.</title>
<updated>2021-01-05T17:37:12Z</updated>
<author>
<name>jsing</name>
<email>jsing@openbsd.org</email>
</author>
<published>2021-01-05T17:37:12Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=7a6bb14936050379800deb10d4a137c4d2d4a3c4'/>
<id>urn:sha1:7a6bb14936050379800deb10d4a137c4d2d4a3c4</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Remove memset that was made redundant with the ASN1_time_parse()</title>
<updated>2021-01-05T15:57:38Z</updated>
<author>
<name>tb</name>
<email>tb@openbsd.org</email>
</author>
<published>2021-01-05T15:57:38Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/wireguard-openbsd/commit/?id=361877a7f7f31174c567cb1d2b8c71bf765dc73d'/>
<id>urn:sha1:361877a7f7f31174c567cb1d2b8c71bf765dc73d</id>
<content type='text'>
fix in libcrypto/asn1/a_time_tm.c r1.16.

Suggested by jsing
</content>
</entry>
</feed>
