Honza Bambas
8ca895d0e6
Bug 445871 - SSL certificates added as exceptions should never be treated as EV, r=kaie, sr=bz
2009-05-20 10:23:41 +02:00
Honza Bambas
47975f691c
Bug 456705 - Firefox 2.0.0.17 crashes when opening a https-site or on shutdown with FoxyProxy 2.8.5 [@ nsSSLThread::Run], r=kaie
2009-02-28 15:06:40 +01:00
Honza Bambas
51f4dd8122
Backout 5dde4d86be49
2009-02-27 16:20:31 +01:00
Honza Bambas
280b1f5ff7
Bug 456705 - Firefox 2.0.0.17 crashes when opening a https-site or on shutdown with FoxyProxy 2.8.5 [@ nsSSLThread::Run], r=kaie
2009-02-27 15:09:06 +01:00
Honza Bambas
575b54377d
Backout bug 456705
2009-02-18 15:38:51 +01:00
Honza Bambas
349c9e2873
Bug 456705 - Firefox 2.0.0.17 crashes when opening a https-site or on shutdown with FoxyProxy 2.8.5 [@ nsSSLThread::Run], r=kaie
2009-02-18 14:31:31 +01:00
bjarne@runitsoft.com
e006a13751
Bug 466080 - Make more things honor the LOAD_ANONYMOUS flag r=sicking,MisterSSL, sr=sicking
2009-02-17 14:06:52 -08:00
Reed Loden
984577563b
Bug 454406 - "SSL handshakes fail after asking PSM to remember user's choice of client auth cert" (backed out changeset 6615b044bcd8 from bug 431819)
2008-10-01 01:01:39 -05:00
Kai Engert
0f228913f3
Bug 431819, SSL client auth, repeated prompts for client certificate
...
r=rrelyea, r=dveditz
2008-06-18 21:36:29 +02:00
kaie@kuix.de
3b89434010
Single patch for 3 overlapping fixes. Bug 420187, hang in nsNSSHttpRequestSession::internal_send_receive_attempt r=rrelyea Bug 383369, fixing a regression from 335801 r=rrelyea Bug 358438, fix proposed by and portions contributed by Honza Bambas r=honzab, r=rrelyea approval1.9 for combined patch = beltzner
2008-04-11 21:47:22 -07:00
kaie@kuix.de
893656978c
Bug 420187. Backing out all 3 patches from today, because of regressions. a=shaver
2008-03-25 20:06:52 -07:00
kaie@kuix.de
cfd263a72b
bug 420187, hang in nsNSSHttpRequestSession::internal_send_receive_attempt r=rrelyea, pending more comments blocking1.9=shaver approval1.9b5=beltzner
2008-03-25 12:34:48 -07:00
kaie@kuix.de
40f6f1da73
Bug 415213, uninitialized variables in PSM r=rrelyea, a1.9=dsicore
2008-02-13 08:14:25 -08:00
kaie@kuix.de
530dacb132
bug 406999, Enhance EV performance; Never combine EV with Cert Overrides r=rrelyea, blocking1.9=mtschrep
2008-01-14 07:45:07 -08:00
cbiesinger@gmx.at
4360b9ffe5
bug 262116 make disk cache serialize/deserialize the security info, if present also make nsNSSSocketInfo serializable PSM part: r=kaie sr=darin rest: r+sr=darin
2007-11-30 10:05:54 -08:00
kaie@kuix.de
ad2bb22af2
Bug 327181, Improve error reporting for invalid-certificate errors (error page for https, or combined dialog) Code in mozilla/security/manager: r=rrelyea Code elsewhere: r=mconnor, sr=dveditz blocking1.9=mconnor
2007-10-03 04:47:26 -07:00
kaie@kuix.de
d9fa93d8b4
bug 386654, Implement notification for EV certs r=rrelyea, sr=bzbarsky, a=bzbarsky
2007-08-23 14:28:15 -07:00
kaie@kuix.de
e62734761e
Bug 378629, SSL file uploads settle into oscillating pattern with very small packetsr=rrelyea
2007-06-10 16:42:28 -07:00
kaie%kuix.de
72bf637e4f
Bug 368126, client abandons SSL connection during bad cert dialogs
...
Incremental patch v2
r=nelson, sr=rrelyea
2007-03-07 19:54:54 +00:00
kaie%kuix.de
72cce1e6f4
Bug 107491, improve SSL error messages
...
Patch v9 - mozilla/security/manager portion
Not yet enabling as browser error page
r=rrelyea
2007-02-17 03:47:59 +00:00
kaie%kuix.de
5ebd315aa8
bug 363455, Enhance PSM's SSL handling on blocking sockets
...
r=wtchang
2007-02-15 02:46:25 +00:00
kaie%kuix.de
67ce3c3059
bug 368126, client abandons SSL connection during bad cert dialogs
...
bug 365898, SSL handshake timeout is too short
r=rrelyea
2007-02-09 19:12:33 +00:00
kaie%kuix.de
dccd3d8db7
Bug 340359, SSL Server stalls on v3 hello using TLS hello extensions
...
r=darin
2006-08-24 18:14:40 +00:00
kaie%kuix.de
9b7392ffd9
bug 111384, Support OCSP requests through a proxy
...
combined r= by darin / rrelyea
second checkin attempt
2006-04-04 13:14:40 +00:00
kaie%kuix.de
fb242b85a5
backing out my checkin, because we can't reproduce the tinderbox test
...
failure
2006-04-04 09:48:08 +00:00
kaie%kuix.de
b5aaffdfeb
bug 111384, Support OCSP requests through a proxy
...
combined r= by darin / rrelyea
2006-04-04 06:41:37 +00:00
gerv%gerv.net
3634d4d94b
Bug 236613: change to MPL/LGPL/GPL tri-license.
2004-04-25 15:03:26 +00:00
jgmyers%speakeasy.net
2c3a905fd4
Clean up string stuff: bug 232812 r=ssaux sr=jag
2004-02-26 04:07:23 +00:00
bryner%brianryner.com
b74d8438f9
Updating my email address
2003-09-29 06:04:02 +00:00
darin%meer.net
f4a8778d0b
landing patch for bug 205726 "DNS rewrite" r=dougt sr=bryner
2003-09-11 20:32:33 +00:00
kaie%netscape.com
d007c347bc
b=189205 Implement early shutdown of NSS resources
...
r=javi sr=darin
2003-01-18 14:03:00 +00:00
kaie%netscape.com
0d20ac0fbc
b=163605 Use of blocking I/O for SSL in PSM stalls network activity
...
r=javi sr=darin a=asa
2002-10-16 22:20:42 +00:00
kaie%netscape.com
9190a3d74e
Patch from bug 87902 to fix SSL/TLS logic.
...
- make TLS intolerant server detection over proxies work
(this bug 87902)
- on connection failure, only retry without TLS when it is really
likely to help (bug 149910)
- remove obsolete workarounds in SSL i/o layer
(see removed comments in patch)
- avoid to confuse programmers reading code,
by renaming TLSStepUp (which means something else)
to the correct term STARTTLS (what the code is actually doing).
(As suggested by nelsonb)
- If an invalid or expired etc. server certificate is presented,
a warning is shown. If the user decides to cancel,
network activity should stop immediately.
(we currently warn multiple times) (bug 87209)
r=javi/darin/ducarroz/dmose sr=alecf
2002-08-14 23:43:28 +00:00
rpotts%netscape.com
73de225b01
bug #46856 (r=valeski, sr=darin). API Changes to nsIWebProgress/nsIWebProgressListener)
2002-05-16 20:57:37 +00:00
jgmyers%netscape.com
3052458a05
Remove unneeded ForceHandshake code which broke IMAP/SSL over SOCKS: bug 133434 r=kaie@netscape.com sr=brendan@mozilla.org a=asa
2002-04-16 22:49:33 +00:00
kaie%netscape.com
4f540afa38
b=75947 Landing security startup performance improvement and related issues.
...
r=javi sr=alecf
b=109777 Make sure certificate downloading works immediately
r=javi sr=mscott
2001-11-29 23:36:34 +00:00
ddrinan%netscape.com
1a64376d9a
Bug 105526 - Initial landing of PSM S/MIME. Mailnews will land separately. See bug 106507 for that. r=javi, sr=blizzard
2001-10-30 23:52:01 +00:00
kaie%netscape.com
93e0fc7d13
b=100215 r=relyea sr=blizzard
...
Fix certificate verification chain display.
2001-10-01 14:57:35 +00:00
rangansen%netscape.com
d5f1ababde
bug# 100457; r=ddrinan; r=nelsonb; r=blizzard;
...
sr=blizzard; Patch to put in proper handling of unrecognized
cert errors in psm
2001-09-26 00:28:24 +00:00
kaie%netscape.com
425ead8484
b=93103 r=relyea/ddrinan sr=blizzard
...
Enable display of complete chains when viewing certificates.
2001-09-06 20:20:50 +00:00
kaie%netscape.com
60db9a83a1
Checking in for valeski. In case of problems you can reach me at kai.engert@gmx.de
...
r=dbaron, sr=dougt. 97667. nsIInterfaceRequestor is now frozen. nsIInterfaceRequestorUtils.h is now
required if you want to use do_GetInterface() for convenience. The two were split because the stuff
that is now in nsIInterfaceRequestorUtils.h wasn't ready for freezing. Also, .idl files should just
contain interface defs anyway.
2001-09-05 21:27:22 +00:00
javi%netscape.com
1a5dd9d78e
Fix for Bug 88244, r=ddrinan, sr=blizzard
...
Use necko's premature EOF mechanism to re-try connections to
TLS intolerant sites. This makes TLS through proxies possible.
2001-07-24 00:42:52 +00:00
javi%netscape.com
780b5cebae
Fix for Bug 85304 r=wtc, sr=blizzard, a=asa
...
Leaving a socket in blocking mode after a connect caused SSL/SMTP
to block a thread causing send message to fail when SSL was enabled.
Now we re-set the socket to the non-blocking state it came in with
to connect and set it to block for our write method only.
2001-06-13 18:29:15 +00:00
javi%netscape.com
1b72130400
Fix for Bug 64888 r=wtc, sr=blizzard, a=asa
Retry an SSL connection if we fail during first write after a successful connect since it's most likely due to a TLS intolerant server
2001-06-08 00:50:32 +00:00
jgmyers%netscape.com
1b1a773627
clean up nsITransportSecurityInfo: bug 78292 r=thayes sr=darin
2001-05-18 00:02:46 +00:00
thayes%netscape.com
0c8be721d0
Bug 78123 r=javi/sr=scc Add security information to Page Info window
2001-05-03 00:36:48 +00:00
jgmyers%netscape.com
28dd401ff4
STARTTLS sockets shouldn't send v2 hello: bug 75617 r=javi sr=brendan
2001-04-14 00:41:50 +00:00
bryner%uiuc.edu
8b80c7c363
Bug 70595 - making nsIPrompt accessible to PSM. r=darin, sr=mscott.
2001-03-06 05:10:33 +00:00
bryner%uiuc.edu
8668f287ba
Bug 67507 - implement TLSStepUp(). r=javi. Not part of build.
2001-02-05 21:46:24 +00:00
thayes%netscape.com
90779ce94b
Reorganize password callback context (uses nsIInterfaceRequestor).
...
Fix several bugs in the SDR implementation.
2001-01-31 18:03:49 +00:00