-
Notifications
You must be signed in to change notification settings - Fork 81
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
Showing
61 changed files
with
2,449 additions
and
1,356 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,4 +1,4 @@ | ||
stunnel Universal SSL tunnel | ||
stunnel authors | ||
|
||
Author Michal Trojnara <Michal.Trojnara@mirt.net> | ||
Michal Trojnara <Michal.Trojnara@mirt.net> | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,6 +1,5 @@ | ||
stunnel Universal SSL tunnel | ||
stunnel known bugs | ||
|
||
KNOWN BUGS | ||
|
||
- Shared library to be LD_PRELOADed does not support IPv6. | ||
- Shared library for transparent proxy does not support IPv6. | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,4 +1,4 @@ | ||
stunnel Universal SSL tunnel | ||
stunnel FIPS install notes | ||
|
||
|
||
FIPS support status: | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,12 +1,22 @@ | ||
stunnel Universal SSL tunnel | ||
stunnel known port maintainers | ||
|
||
Stunnel ports maintainers: | ||
|
||
AmigaOS Diego Casorran <dcr8520@amiga.org> | ||
Cygwin Andrew Schulman <andrex@alumni.utexas.net> | ||
Debian Luis Rodrigo Gallardo Cruz <rodrigo@debian.org> | ||
FreeBSD Peter Pentchev <roam@FreeBSD.org> | ||
NetBSD Martti Kuparinen <martti.kuparinen@iki.fi> | ||
OpenBSD Jakob Schlyter <jakob@openbsd.org> | ||
OpenSolaris Mark Fenwick <Mark.Fenwick@sun.com> | ||
RedHat Damien Miller <dmiller@ilogic.com.au> | ||
* AmigaOS | ||
- Diego Casorran <dcr8520@amiga.org> | ||
* Cygwin | ||
- Andrew Schulman <andrex@alumni.utexas.net> | ||
* Debian GNU/Linux | ||
- Luis Rodrigo Gallardo Cruz <rodrigo@nul-unu.com> | ||
* FreeBSD | ||
- Peter Pentchev <roam@FreeBSD.org> | ||
* NetBSD | ||
- Martti Kuparinen <martti.kuparinen@iki.fi> | ||
* OpenBSD | ||
- Jakob Schlyter <jakob@openbsd.org> | ||
* OpenSolaris | ||
- Mark Fenwick <Mark.Fenwick@sun.com> | ||
* OS/2 | ||
- Paul Smedley <paul@smedley.info> | ||
* RedHat Linux | ||
- Damien Miller <dmiller@ilogic.com.au> | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,4 +1,4 @@ | ||
stunnel Universal SSL tunnel | ||
stunnel overview | ||
|
||
Short description | ||
|
||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,25 +1,25 @@ | ||
stunnel Universal SSL tunnel | ||
stunnel TODO | ||
|
||
|
||
* High priority features I'm going to support (sponsorship welcomed): | ||
- Add service-level logging. | ||
- Log file rotation with with GUI on Windows. | ||
- In transparent proxy mode add an option to connect destination address | ||
of the the original connection instead of a fixed IP list. | ||
- Support SSL_CTX_set_tlsext_servername_callback. | ||
- Support for CryptoAPI certificates and private keys with CAPI engine. | ||
- Support for Server Name Indication SSL extension | ||
with SSL_CTX_set_tlsext_servername_callback. | ||
- Service-level logging configuration (separate verbosity and destination). | ||
|
||
* Low priority features I'm going to support (sponsorship welcomed): | ||
- Replace protocol.c with a scripting engine. | ||
- Add some scripting capabilities *after* SSL negotiations. | ||
- Key renegotiation (re-handshake) for long connections. | ||
- Internationalization of logged messages (i18n). | ||
- Logging to NT eventlog. | ||
- SOCKS 4 protocol support. | ||
http://archive.socks.permeo.com/protocol/socks4.protocol | ||
- Add support for Server Name Indication SSL extension. | ||
- Key renegotiation (re-handshake) for long connections. | ||
- Logging to NT EventLog on Windows. | ||
- Log file rotation with with GUI on Windows. | ||
- Internationalization of logged messages (i18n). | ||
- Generic scripting engine instead or static protocol.c. | ||
|
||
* Features I'd prefer NOT to support (waiting for a wealthy sponsor): | ||
- Authentication based on reverse DNS lookup matching CN of X.509. | ||
- HTTP protocol support (adding X-Forwarded-For header to each request, | ||
URL rewriting). | ||
- SMTP protocol support (adding X-Forwarded-For header to each email). | ||
* Features I prefer *not* to support (waiting for a wealthy sponsor): | ||
- Additional certificate checks (including wildcard comparison) based on | ||
CN and X509v3 Subject Alternative Name. | ||
- Protocol support *after* SSL is negotiated. | ||
- Support for adding X-Forwarded-For to HTTP request headers. | ||
- Support for adding X-Forwarded-For to SMTP email headers. | ||
|
Oops, something went wrong.