| Commit message (Expand) | Author | Age | Files | Lines |
* | core.certmanager: Use 'tls_profile' instead of 'tls_preset' to match document... | Kim Alvefur | 2022-01-18 | 1 | -3/+3 |
* | core.certmanager: Apply TLS preset before global settings (thanks Menel) | Kim Alvefur | 2022-01-18 | 1 | -1/+1 |
* | core.certmanager: Disable DANE name checks (not needed for XMPP) | Kim Alvefur | 2021-09-16 | 1 | -1/+1 |
* | core.certmanager: Add curveslist to 'old' Mozilla TLS preset | Kim Alvefur | 2021-12-26 | 1 | -1/+2 |
* | core.certmanager: Check index for wildcard certs | Kim Alvefur | 2021-12-22 | 1 | -1/+2 |
* | prosodyctl cert: use the indexing functions for better UX | Jonas Schäfer | 2021-12-21 | 1 | -6/+14 |
* | core.certmanager: Rename preset option to 'tls_preset' | Kim Alvefur | 2021-12-22 | 1 | -1/+1 |
* | core.certmanager: Add "legacy" preset for keeping previous default settings | Kim Alvefur | 2021-12-22 | 1 | -1/+3 |
* | core.certmanager: Add TLS 1.3 cipher suites to Mozilla TLS presets | Kim Alvefur | 2021-11-03 | 1 | -1/+7 |
* | core.certmanager: Presets based on Mozilla SSL Configuration Generator | Kim Alvefur | 2019-12-22 | 1 | -0/+60 |
* | core.certmanager: Support 'use_dane' setting to enable DANE support | Kim Alvefur | 2021-07-18 | 1 | -0/+2 |
* | core.certmanager: Skip service certificate lookup for https client | Kim Alvefur | 2021-05-27 | 1 | -1/+2 |
* | Merge 0.11->trunk | Matthew Wild | 2021-05-13 | 1 | -9/+12 |
|\ |
|
| * | certmanager: Disable renegotiation by default | Matthew Wild | 2021-05-11 | 1 | -0/+2 |
| * | core.certmanager: Test for SSL options in absence of LuaSec config | Kim Alvefur | 2021-04-26 | 1 | -5/+9 |
| * | core.certmanager: Attempt to directly access LuaSec config table | Kim Alvefur | 2021-04-26 | 1 | -1/+1 |
| * | core.certmanager: Move EECDH ciphers before EDH in default cipherstring (fixe... | Kim Alvefur | 2019-08-25 | 1 | -1/+1 |
* | | core.certmanager: Catch error from lfs | Kim Alvefur | 2021-05-07 | 1 | -1/+11 |
* | | core.certmanager: Resolve certs path relative to config dir | Kim Alvefur | 2021-05-07 | 1 | -3/+3 |
* | | core.certmanager: Skip directly to guessing of key from cert filename | Kim Alvefur | 2021-05-05 | 1 | -2/+17 |
* | | core.certmanager: Join paths with OS-aware util.paths function | Kim Alvefur | 2021-05-05 | 1 | -2/+3 |
* | | core.certmanager: Build an index over certificates | Kim Alvefur | 2021-04-10 | 1 | -0/+79 |
* | | core.certmanager: Check for complete filename | Kim Alvefur | 2021-04-10 | 1 | -1/+1 |
* | | core.certmanager: Add comments explaining the 'verifyext' TLS settings | Kim Alvefur | 2021-02-06 | 1 | -1/+4 |
* | | core.certmanager: Add TODO about LuaSec issue | Kim Alvefur | 2020-06-07 | 1 | -0/+3 |
* | | Merge 0.11->trunk | Kim Alvefur | 2020-04-10 | 1 | -6/+8 |
|\| |
|
| * | core.certmanager: Look for privkey.pem to go with fullchain.pem (fix #1526) | Kim Alvefur | 2020-04-10 | 1 | -6/+8 |
* | | core.portmanager: Fix TLS context inheritance for SNI hosts (completes SNI su... | Kim Alvefur | 2019-11-29 | 1 | -0/+1 |
* | | core.certmanager: Lower severity for tls config not having cert | Kim Alvefur | 2019-09-07 | 1 | -2/+4 |
* | | core.certmanager: Remove unused import [luacheck] | Kim Alvefur | 2019-08-25 | 1 | -1/+0 |
* | | Remove COMPAT with temporary luasec fork | Kim Alvefur | 2019-08-25 | 1 | -7/+0 |
* | | core.certmanager: Move EECDH ciphers before EDH in default cipherstring | Kim Alvefur | 2019-08-25 | 1 | -1/+1 |
* | | core.certmanager: Do not ask for client certificates by default | Kim Alvefur | 2019-03-10 | 1 | -1/+1 |
|/ |
|
* | Merge 0.10->trunk | Kim Alvefur | 2018-05-25 | 1 | -1/+1 |
|\ |
|
| * | core.certmanager: Allow all non-whitespace in service name (fixes #1019) | Kim Alvefur | 2018-05-25 | 1 | -1/+1 |
* | | vairious: Add annotation when an empty environment is set [luacheck] | Kim Alvefur | 2018-02-28 | 1 | -0/+1 |
|/ |
|
* | certmanager: Check for missing certificate before key in configuration (shoul... | Kim Alvefur | 2017-12-28 | 1 | -1/+1 |
* | certmanager: Set single curve conditioned on LuaSec advertising EC crypto sup... | Kim Alvefur | 2017-11-20 | 1 | -1/+1 |
* | certmanager: Filter out curves not supported by LuaSec | Kim Alvefur | 2017-11-20 | 1 | -0/+12 |
* | certmanager: Change table representing LuaSec capabilities to match capabilit... | Kim Alvefur | 2017-11-20 | 1 | -13/+20 |
* | core.certmanager: Set a default curveslist [sic], fixes #879, #943, #951 if u... | Kim Alvefur | 2017-09-27 | 1 | -0/+6 |
* | prosodyctl: cert import: Reuse function from certmanager for locating certifi... | Kim Alvefur | 2017-09-27 | 1 | -0/+1 |
* | certmanager: Add debug logging (thanks av6) | Matthew Wild | 2017-09-23 | 1 | -0/+4 |
* | certmanager: Update the 'certificates' option after the config has been reloa... | Kim Alvefur | 2017-06-01 | 1 | -0/+1 |
* | core.certmanager: Translate "no start line" to something friendlier (thanks s... | Kim Alvefur | 2016-11-26 | 1 | -0/+5 |
* | core.certmanager: Split cipher list into array with comments explaining each ... | Kim Alvefur | 2016-09-12 | 1 | -1/+10 |
* | certmanager: Assume default config path of '.' (fixes prosodyctl check certs ... | Kim Alvefur | 2016-07-29 | 1 | -1/+1 |
* | certmanager: Explicitly tonumber() version number segments before doing arith... | Matthew Wild | 2016-03-26 | 1 | -1/+1 |
* | certmanager: Localize tonumber | Matthew Wild | 2016-02-18 | 1 | -1/+1 |
* | certmanager: Try filename.key if certificate is set to a full filename ending... | Kim Alvefur | 2016-02-05 | 1 | -3/+2 |