All releases of GNU Transport Layer Security Library


Release Notes: This release adds support for random-art images that display a drawing representing the public key's fingerprint, fixes several open issues for MS Windows support, and has other fixes.


Release Notes: This is an update to the current stable branch with several optimizations, including faster Diffie-Hellman and elliptic curve Diffie-Hellman key exchange.


Release Notes: This release fixes an issue in ECDSA key generation and reduces timing information provided to an adversary in DTLS.


Release Notes: This release fixes several issues on the elliptic curve cipher suites and a possible security issue in the session resumption code.


Release Notes: This stable release fixes bugs and adds new features. Support for VIA PadLock processors is enabled by default. Support for external signing was added in the abstract interface. TLS compression and TLS 1.2 signing with external callback were fixed.


Release Notes: This release fixes memory leaks in elliptic curves code and certificate handling. The RSA-EXPORT ciphersuite functionality is deprecated. Support has been added for generating keys in a PKCS #11 token. Support has been added for AES acceleration in VIA processors.


Release Notes: Several bug fixes and a few feature additions.


Release Notes: This release fixes known bugs and adds new features. The main bug fixes are alignment fixes in the AES-NI code and a fix for wrong PIN handling in PKCS #11. Server name indication is supported without the need for a callback. The order in X.509 certificate chains is checked for correctness. The crywrap application was added to the distribution.


Release Notes: This is a bugfix release that backports features from the new stable branch. The PKCS #11 back-end was replaced by p11-kit. There are compatibility fixes with libgcrypt 1.5.0, better handling of incomplete writes with writev(), strict verification of the order of certificate lists, and fixes in certificate request generation.


Release Notes: The main and most important changes since 2.12.x are support for Datagram TLS 1.0, support for Elliptic Curves (ECDHE and ECDSA), support for AES-GCM, optimizations for Intel CPUs with the AES-NI instruction set, and support for PKCS #11 via p11-kit.