1. 561e574 BUG/MINOR: ssl: Fix CRL check was not enabled when crlfile was specified. by Emeric Brun · 12 years ago
  2. 90ad872 DOC: ssl: add 'no-tls-tickets' statement documentation. by Emeric Brun · 12 years ago
  3. 2d0c482 MINOR: ssl: add statement 'no-tls-tickets' on bind to disable stateless session resumption by Emeric Brun · 12 years ago
  4. c6678e2 MEDIUM: config: authorize frontend and listen without bind. by Emeric Brun · 12 years ago
  5. f5da493 DOC: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'. by Emeric Brun · 12 years ago
  6. c0ff492 MINOR: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'. by Emeric Brun · 12 years ago
  7. 9faf071 MINOR: ssl: add build param USE_PRIVATE_CACHE to build cache without shared memory by Emeric Brun · 12 years ago
  8. 4b3091e MINOR: ssl: disable shared memory and locks on session cache if nbproc == 1 by Emeric Brun · 12 years ago
  9. 3603fbe DOC: ssl: add fetches and ACLs 'ssl_verify_crterr', 'ssl_verify_caerr', and 'ssl_verify_crterr_depth' by Emeric Brun · 12 years ago
  10. f282a81 MINOR: ssl: add fetches and ACLs to return verify errors by Emeric Brun · 12 years ago
  11. c68af8d DOC: ssl: add fetch and ACL 'ssl_verify_result' by Emeric Brun · 12 years ago
  12. baf8ffb MINOR: ssl: add fetch and ACL 'ssl_verify_result' by Emeric Brun · 12 years ago
  13. b6dc934 DOC: ssl: add 'ca-ignore-err' and 'crt-ignore-err' statements on 'bind' by Emeric Brun · 12 years ago
  14. 81c00f0 MINOR: ssl: add ignore verify errors options by Emeric Brun · 12 years ago
  15. b435408 DOC: ssl: add fetch and ACL 'client_cert' by Emeric Brun · 12 years ago
  16. e64aef1 MINOR: ssl: add fetch and ACL 'client_crt' to test a client cert is present by Emeric Brun · 12 years ago
  17. 1a073b4 DOC: ssl: add 'verify', 'cafile' and 'crlfile' statements on 'bind' by Emeric Brun · 12 years ago
  18. d94b3fe MEDIUM: ssl: add client certificate authentication support by Emeric Brun · 12 years ago
  19. 7fb3442 DOC: ssl: add 'ecdhe' statement on 'bind' by Emeric Brun · 12 years ago
  20. 2b58d04 MINOR: ssl: add elliptic curve Diffie-Hellman support for ssl key generation by Emeric Brun · 12 years ago
  21. e032bfa DOC: ssl: update 'crt' statement on 'bind' about Diffie-Hellman parameters loading by Emeric Brun · 12 years ago
  22. a4bcd9a MINOR: ssl: try to load Diffie-Hellman parameters from cert file by Emeric Brun · 12 years ago
  23. e603e69 MEDIUM: connection: make use of the owner instead of container_of by Willy Tarreau · 12 years ago
  24. cd37995 MINOR: connection: add a pointer to the connection owner by Willy Tarreau · 12 years ago
  25. 82569f9 MEDIUM: monitor: simplify handling of monitor-net and mode health by Willy Tarreau · 12 years ago
  26. b8ffd37 BUG/MAJOR: http: chunk parser was broken with buffer changes by Willy Tarreau · 12 years ago
  27. 3c7a79d MINOR: cli: allow to set frontend maxconn to zero by Willy Tarreau · 12 years ago
  28. a7944ad BUG: stats: fix regression introduced by commit 4348fad1 by Willy Tarreau · 12 years ago
  29. 3631d41 CLEANUP: config: fix typo inteface => interface by Willy Tarreau · 12 years ago
  30. dda5e7c CLEANUP: connection: offer conn_prepare() to set up a connection by Willy Tarreau · 12 years ago
  31. 173e7fb BUG/MINOR: config: check the proper pointer to report unknown protocol by Willy Tarreau · 12 years ago
  32. e92693a BUG: http: do not print garbage on invalid requests in debug mode by Willy Tarreau · 12 years ago
  33. 3aaba44 BUILD: fix compilation error with DEBUG_FULL by Cyril Bonté · 12 years ago
  34. 086fbf5 DOC: fix index to reference bind and server options by Willy Tarreau · 12 years ago
  35. abb175f DOC: stats: refer to "bind" section for "stats socket" settings by Willy Tarreau · 12 years ago
  36. b6205fd DOC: move bind options to their own section by Willy Tarreau · 12 years ago
  37. d578120 MEDIUM: stats: make use of the standard "bind" parsers to parse global socket by Willy Tarreau · 12 years ago
  38. 81796be MINOR: ssl: set the listeners' data layer to ssl during parsing by Willy Tarreau · 12 years ago
  39. c53d422 MEDIUM: stats: remove the stats_sock struct from the global struct by Willy Tarreau · 12 years ago
  40. 4fbb228 MINOR: config: make str2listener() use memprintf() to report errors. by Willy Tarreau · 12 years ago
  41. eb6cead MINOR: standard: make memprintf() support a NULL destination by Willy Tarreau · 12 years ago
  42. ce39bfb BUG: backend: balance hdr was broken since 1.5-dev11 by Willy Tarreau · 12 years ago
  43. 290e63a REORG: listener: move unix perms from the listener to the bind_conf by Willy Tarreau · 12 years ago
  44. 4348fad MAJOR: listeners: use dual-linked lists to chain listeners with frontends by Willy Tarreau · 12 years ago
  45. 81a8117 MINOR: config: set the bind_conf entry on listeners created from a "listen" line. by Willy Tarreau · 12 years ago
  46. a020fbd MINOR: stats: fill the file and line numbers in the stats frontend by Willy Tarreau · 12 years ago
  47. 28a47d6 MINOR: config: pass the file and line to config keyword parsers by Willy Tarreau · 12 years ago
  48. 51fb765 MINOR: listener: add a scope field in the bind keyword lists by Willy Tarreau · 12 years ago
  49. 8638f48 MEDIUM: config: enumerate full list of registered "bind" keywords upon error by Willy Tarreau · 12 years ago
  50. d0a895d MEDIUM: config: move all unix-specific bind keywords to proto_uxst.c by Willy Tarreau · 12 years ago
  51. 3dcc341 MEDIUM: config: move the common "bind" settings to listener.c by Willy Tarreau · 12 years ago
  52. dda322d MINOR: config: improve error reporting for "bind" lines by Willy Tarreau · 12 years ago
  53. 79eeafa MEDIUM: move bind SSL parsing to ssl_sock by Willy Tarreau · 12 years ago
  54. 4479124 MEDIUM: config: move the "bind" TCP parameters to proto_tcp by Willy Tarreau · 12 years ago
  55. 2698266 MEDIUM: listener: add a minimal framework to register "bind" keyword options by Willy Tarreau · 12 years ago
  56. 88500de CLEANUP: listener: remove unused conf->file and conf->line by Willy Tarreau · 12 years ago
  57. 2a65ff0 MEDIUM: config: replace ssl_conf by bind_conf by Willy Tarreau · 12 years ago
  58. d1d5454 REORG: split "protocols" files into protocol and listener by Willy Tarreau · 12 years ago
  59. 21c705b MINOR: config: add a function to indent error messages by Willy Tarreau · 12 years ago
  60. 3e394c9 BUG/MAJOR: ssl: missing tests in ACL fetch functions by Willy Tarreau · 12 years ago
  61. aeff252 DOC: duplicate ssl_sni section by Guillaume Castagnino · 12 years ago
  62. 2e1dca8 MEDIUM: http: add "redirect scheme" to ease HTTP to HTTPS redirection by Willy Tarreau · 12 years ago
  63. 1621682 [RELEASE] Released version 1.5-dev12 by Willy Tarreau · 12 years ago
  64. d450881 DOC: add some info about openssl build in the README by Willy Tarreau · 12 years ago
  65. 8f182d9 BUILD: automatically add -lcrypto for SSL by Willy Tarreau · 12 years ago
  66. a0ee1d0 DOC: add missing SSL options for servers and listeners by Willy Tarreau · 12 years ago
  67. 69845df DOC: add a special acknowledgement for the stud project by Willy Tarreau · 12 years ago
  68. 7875d09 MEDIUM: ssl: add sample fetches for is_ssl, ssl_has_sni, ssl_sni_* by Willy Tarreau · 12 years ago
  69. 1ee0e30 BUILD: report openssl build settings in haproxy -vv by Willy Tarreau · 12 years ago
  70. fc0421f MEDIUM: ssl: add support for SNI and wildcard certificates by Emeric Brun · 12 years ago
  71. 61aaad0 CONTRIB: halog: sort URLs by avg bytes_read or total bytes_read by Baptiste · 12 years ago
  72. 0e0bf80 BUILD: makefile: report USE_OPENSSL status in build options by Willy Tarreau · 12 years ago
  73. f5ae8f7 MEDIUM: config: centralize handling of SSL config per bind line by Willy Tarreau · 12 years ago
  74. aa52bef BUILD: shut a gcc warning introduced by commit 269ab31 by Willy Tarreau · 12 years ago
  75. 921507a LICENSE: add licence exception for OpenSSL by William Lallemand · 12 years ago
  76. 50acaaa MINOR: config: make the tasks "nice" value configurable on "bind" lines. by Willy Tarreau · 12 years ago
  77. 58363cf MEDIUM: connection: improve error handling around the data layer by Willy Tarreau · 12 years ago
  78. 184636e BUG: tcp: close socket fd upon connect error by Willy Tarreau · 12 years ago
  79. 403edff MEDIUM: config: implement maxsslconn in the global section by Willy Tarreau · 12 years ago
  80. cbaaec4 MINOR: session: do not send an HTTP/500 error on SSL sockets by Willy Tarreau · 12 years ago
  81. 32368ce MEDIUM: config: support per-listener backlog and maxconn by Willy Tarreau · 12 years ago
  82. 269ab31 BUG/MEDIUM: workaround an eglibc bug which truncates the pidfiles when nbproc > 1 by Willy Tarreau · 12 years ago
  83. ee2e3a4 BUILD: ssl: use MAP_ANON instead of MAP_ANONYMOUS by Willy Tarreau · 12 years ago
  84. e566ecb MEDIUM: ssl: add support for prefer-server-ciphers option by David BERARD · 12 years ago
  85. ff9f769 BUILD: fix build error without SSL (ssl_cert) by Willy Tarreau · 12 years ago
  86. d50265a BUILD: include sys/socket.h to fix build failure on FreeBSD by Willy Tarreau · 12 years ago
  87. 18b2059 BUILD: ssl: fix shctx build on RHEL with futex by Willy Tarreau · 12 years ago
  88. 783f258 BUILD: http: rename error_message http_error_message to fix conflicts on RHEL by Willy Tarreau · 12 years ago
  89. 0573747 BUG: ssl: mark the connection as waiting for an SSL connection during the handshake by Willy Tarreau · 12 years ago
  90. c230b8b MEDIUM: config: add "nosslv3" and "notlsv1" on bind and server lines by Willy Tarreau · 12 years ago
  91. d7aacbf MEDIUM: config: add a "ciphers" keyword to set SSL cipher suites by Willy Tarreau · 12 years ago
  92. fc32aca MINOR: ssl add global setting tune.sslcachesize to set SSL session cache size. by Emeric Brun · 12 years ago
  93. aa35f1f MEDIUM: ssl: replace OpenSSL's session cache with the shared cache by Emeric Brun · 12 years ago
  94. 3e541d1 MEDIUM: ssl: add shared memory session cache implementation. by Emeric Brun · 12 years ago
  95. fbac663 MINOR: ssl: disable TCP quick-ack by default on SSL listeners by Willy Tarreau · 12 years ago
  96. 7444f01 BUILD: add optional support for SSL via the USE_OPENSSL flag by Emeric Brun · 13 years ago
  97. e1f38db MEDIUM: ssl: protect against client-initiated renegociation by Emeric Brun · 12 years ago
  98. 01f8e2f MEDIUM: config: add support for the 'ssl' option on 'server' lines by Emeric Brun · 13 years ago
  99. 6e15929 MEDIUM: config: add the 'ssl' keyword on 'bind' lines by Emeric Brun · 13 years ago
  100. 4659195 MEDIUM: ssl: add new files ssl_sock.[ch] to provide the SSL data layer by Emeric Brun · 13 years ago