# cherry-picked from upstream
0001-Respect-SSLConnect-option-for-incoming-connections.patch
0002-Support-for-server-certificate-validation-on-server-.patch
0003-S2S-TLS-Add-missing-CAFile-and-CRLFile-options-to-co.patch
0004-S2S-TLS-Remove-leftover-debug-messages.patch
0005-S2S-TLS-OpenSSL-Always-setup-host-name-verification.patch
0006-S2S-TLS-OpenSSL-Set-the-verification-flags-only-once.patch
0007-S2S-TLS-OpenSSL-Fix-handling-of-certificate-informat.patch
0008-S2S-TLS-OpenSSL-Postpone-verification-of-TLS-session.patch
0009-S2S-TLS-OpenSSL-Streamline-logging.patch
0010-S2S-TLS-Fix-formatting-and-sort-new-SSL-options-in-n.patch
0011-S2S-TLS-MAX_CERT_CHAIN_LENGTH-is-only-used-by-OpenSS.patch
0012-S2S-TLS-GnuTLS-Update-SSL-code-for-GnuTLS-certificat.patch
0013-S2S-TLS-GnuTLS-Fix-handling-of-certificate-informati.patch
0014-S2S-TLS-GnuTLS-Streamline-logging.patch
0015-S2S-TLS-Verify-the-TLS-certificates-by-default.patch
0016-S2S-TLS-GnuTLS-Fix-handling-of-connections-without-p.patch
0017-S2S-TLS-Convert-SSL.txt-to-Markdown-and-update-infor.patch
0018-S2S-TLS-Add-notice-to-INSTALL.md.patch
0019-S2S-TLS-Fix-make-check-in-separate-build-directory.patch
0020-METADATA-Fix-unsetting-cloakhost.patch
0001-S2S-SSL-GnuTLS-Enable-CRL-verification_26.1.patch
1713563399.rel-27-rc1-6-g3e3f6cbe.clarify-that-cafile-is-not-set-by-default.patch

# patches that should go upstream
fix-race-in-testsuite.patch
