- 142f09f ccm: zeroize buffers before and after usage by Andrzej Kurek · 4 years, 9 months ago
- 5eba1d8 Merge pull request #3841 from AndrzejKurek/baremetal-rnd-in-range-fix by Andrzej Kurek · 4 years, 8 months ago
- 21f64d3 Merge pull request #3840 from AndrzejKurek/baremetal-aes-shuffling-2 by Andrzej Kurek · 4 years, 8 months ago
- c5b0c6e fix uninitialized variables by Shelly Liberman · 4 years, 9 months ago
- 18c60aa ccm: use random_in_range instead of duplicating its functionality by Andrzej Kurek · 4 years, 9 months ago
- a138c0a Move size checks outside of mbedtls_platform_random_in_range by Andrzej Kurek · 4 years, 9 months ago
- 560203a Merge pull request #3853 from kjbracey-arm/m_narrowloop by Shelly Liberman · 4 years, 9 months ago
- a967a58 [baremetal] Avoid narrow loop counters etc by Kevin Bracey · 4 years, 9 months ago
- 585e9e0 Add MBEDTLS_SSL_CONF_TRANSPORT by Kevin Bracey · 4 years, 9 months ago
- d859db8 Fix MBEDTLS_SSL_CONF_ENDPOINT flagging by Kevin Bracey · 4 years, 9 months ago
- 8b0910a Merge pull request #3815 from AndrzejKurek/cipher-optim-mem-fix by Andrzej Kurek · 4 years, 9 months ago
- 0fa427b ccm: add masking to the UPDATE_CBC_MAC macro by Andrzej Kurek · 4 years, 9 months ago
- 8bef87e Add basic shuffling and masking to CCM operations by Andrzej Kurek · 4 years, 9 months ago
- 28b3b29 ssl_tls.c: Fix unchecked memory allocation by Andrzej Kurek · 4 years, 10 months ago
- 2e49d07 Describe the behaviour of buffer resizing on an out-of-memory error by Andrzej Kurek · 4 years, 10 months ago
- cd9a6ff Introduce additional flags for buffer upsizing and downsizing by Andrzej Kurek · 4 years, 10 months ago
- 79db2f1 Refactor the buffer resize feature to reduce codesize by Andrzej Kurek · 4 years, 10 months ago
- f384495 Sideport the variable IO buffer size feature to baremetal by Andrzej Kurek · 4 years, 10 months ago
- dd5ad69 Merge pull request #3785 from AndrzejKurek/m_tinycrypt_asm by Andrzej Kurek · 4 years, 10 months ago
- db0e50e Introduce MBEDTLS_OPTIMIZE_TINYCRYPT_ASM by Andrzej Kurek · 4 years, 10 months ago
- f4d2c7d Improve FI resistance of pk verification in ssl_cli.c by Andrzej Kurek · 4 years, 11 months ago
- f74a86c Improve FI resistance of certificate verification in ssl_srv.c by Andrzej Kurek · 4 years, 11 months ago
- ef34494 ssl_srv.c: change the initial return variable value by Andrzej Kurek · 5 years ago
- ff51721 ssl_tls: reduce the complexity of encryption validation by Andrzej Kurek · 5 years ago
- 8ec9e13 ssl_tls: Add a flag indicating that encryption succeeded by Andrzej Kurek · 5 years ago
- 6c30be8 ssl: call signature verification twice for non-restartable operations by Andrzej Kurek · 5 years ago
- 69bafce Improve the FI resistance in ssl_tls.c key switching by Andrzej Kurek · 4 years, 11 months ago
- f7df0d3 Reduce the size of used constant in ssl_tls.c by Andrzej Kurek · 4 years, 11 months ago
- a793237 Calculate hashes of ssl encryption and decryption keys by Andrzej Kurek · 4 years, 11 months ago
- d81351b Change the default value of initialized cipher operation to NONE by Andrzej Kurek · 4 years, 11 months ago
- 73680ad Merge pull request #3694 from AndrzejKurek/transform-cipher-optimization by Andrzej Kurek · 4 years, 11 months ago
- 1175044 Merge enc/dec cipher contexts in ssl transforms by Andrzej Kurek · 4 years, 11 months ago
- 05beb9a replace user rand by platform rand in ecc delays by Shelly Liberman · 5 years ago
- 9539f83 Swap out CRC calculation in AES in favour of a simple hash by Andrzej Kurek · 5 years ago
- 8bb0839 Add a deprecated version of mbedtls_platform_memcmp. by Andrzej Kurek · 5 years ago
- c87e91c Merge pull request #3553 from AndrzejKurek/crc-calculation-base by Andrzej Kurek · 5 years ago
- 305a5ec Checking in critical places if secured memset() and memcpy() was successful by Piotr Nowicki · 5 years ago
- ea8e846 Add flow monitor for mbedtls_platform_memcpy() and mbedtls_platform_memmove() by Piotr Nowicki · 5 years ago
- a6348ed Checking in critical places if the mbedtls_platform_zeroize() was successful by Piotr Nowicki · 5 years ago
- ed840db Add flow montitor to the mbedtls_platform_memset() by Piotr Nowicki · 5 years ago
- 26c3369 Fix CI failure. by Piotr Nowicki · 5 years ago
- 057daa3 Random delay can be disabled in configuration by Piotr Nowicki · 5 years ago
- 77b7a77 Expanded the random number generator in the `platform_util.c` file by Piotr Nowicki · 5 years ago
- 8656fc6 Change the value type in the mbedtls_platform_random_in_range() by Piotr Nowicki · 5 years ago
- fa635df Merge pull request #3448 from piotr-now/platform_util by Piotr Nowicki · 5 years ago
- 8fba6e9 Merge pull request #3532 from AndrzejKurek/fi-hmac-drbg-fixes by Andrzej Kurek · 5 years ago
- 0305753 Merge pull request #3477 from AndrzejKurek/aes-fake-key by Andrzej Kurek · 5 years ago
- e3c4ee5 Rename mbedtls_platform_memcmp() to mbedtls_platform_memequal() by Piotr Nowicki · 5 years ago
- e4f865d Makefile: alphabetically order object files by Andrzej Kurek · 5 years ago
- fba5921 aes: validate keys using crc before encryption/decryption by Andrzej Kurek · 5 years ago
- 9df2b41 Add a CRC module to mbedtls and baremetal config by Andrzej Kurek · 5 years ago
- c6319a7 Merge pull request #3514 from shelib01/fi_write_user_data by Shelly Liberman · 5 years ago
- 3799fc1 Splitting buffers comment added by Shelly Liberman · 5 years ago
- c6a7e6b Enhancement fixes by Shelly Liberman · 5 years ago archive/fi_write_user_data fi_write_user_data
- 4062d6c Add user pointer and data size duplication to ssl context. by shelib01 · 5 years ago
- e9cb642 Merge pull request #3516 from AndrzejKurek/fi-pkparse-changes by Andrzej Kurek · 5 years ago
- 7400fae Merge pull request #3510 from AndrzejKurek/fi-pk-fixes by Andrzej Kurek · 5 years ago
- 898d330 Merge pull request #3500 from AndrzejKurek/fi-sha256-fixes by Andrzej Kurek · 5 years ago
- 84afe68 Merge pull request #3509 from AndrzejKurek/fi-x509-changes by Andrzej Kurek · 5 years ago
- 4353b69 hmac_drbg: make no reseeding behaviour explicit by Andrzej Kurek · 5 years ago
- fac2f9b aes: move the fake key operations to AES_SCA_COUNTERMEASURES define by Andrzej Kurek · 5 years ago
- f626544 hmac_drbg: fix default value of the prediction resistance in ctx by Andrzej Kurek · 5 years ago
- 6bc37fa hmac_drbg: set_entropy_len can now return an error by Andrzej Kurek · 5 years ago
- 9167aa9 hmac_drbg: change two variables to be volatile by Andrzej Kurek · 5 years ago
- e78775e Use a fake random key in AES calculations by Andrzej Kurek · 5 years ago
- 8917326 Introduce sha256 security review fixes by Andrzej Kurek · 5 years ago
- 3403969 Add a comment regarding remaining space check by Andrzej Kurek · 5 years ago
- a9a5ff5 aes: add a comment about expected keybits value. by Andrzej Kurek · 5 years ago
- 11ddf25 Add minor FI countermeasures improvements by Andrzej Kurek · 5 years ago
- 189ee74 Add a platform function to return a random uint32_t by Andrzej Kurek · 5 years ago
- 3ed65d2 Add a return from pk_get_ueccpubkey if uecc_public_key_read_binary fails by Andrzej Kurek · 5 years ago
- a798e5d Introduce additional buffer size checks to pk.c by Andrzej Kurek · 5 years ago
- ddc2db4 x509.c: Remove one unnecessary cast by Andrzej Kurek · 5 years ago
- afec885 Revert a part of the sensitive information duplication changes by Andrzej Kurek · 5 years ago
- c417c78 Merge pull request #3481 from AndrzejKurek/fi_duplicate_buffers_2 by Andrzej Kurek · 5 years ago
- 45e7199 Minor formatting and cosmetic changes by Andrzej Kurek · 5 years ago
- ca60937 Add buffer and context clearing upon suspected FI by Andrzej Kurek · 5 years ago
- 0919b14 Formatting changes by Andrzej Kurek · 5 years ago
- 84bde41 Add FI countermeasures to the ssl module by Andrzej Kurek · 5 years ago
- 74f7d0f Duplicate sensitive buffer and buffer length information by Andrzej Kurek · 5 years ago
- a24c841 Merge pull request #3439 from piotr-now/fic_switch by Shelly Liberman · 5 years ago
- 78fc139 Add FI countermeasures for sensitive switch instructions by Piotr Nowicki · 5 years ago
- 77647bd Wrap AES 192 and 256 info structures in !AES_ONLY_128_BIT_KEY_LENGTH by Andrzej Kurek · 5 years ago
- 98c847a Merge pull request #3395 from AndrzejKurek/sha-flow_ctrl by Andrzej Kurek · 5 years ago
- e5425a0 Merge pull request #3408 from AndrzejKurek/hamming-distance-improvements by Andrzej Kurek · 5 years ago
- f523c47 Merge pull request #3403 from piotr-now/sca_memmove by Piotr Nowicki · 5 years ago
- ce0aab4 Add new error code PLATFORM_ALLOC_FAILED for mbedtls_platform_memmove() by Piotr Nowicki · 5 years ago
- 78f77eb Add flow control to sha256 by Andrzej Kurek · 5 years ago
- 5d5841f Add mbedtls_platform_memmove() as a secured memcmp() by Piotr Nowicki · 5 years ago
- e048b91 Add returning a FAULT_DETECTED error on suspected FI attacks by Piotr Nowicki · 5 years ago
- 8f52a8a Improve the Hamming distance of ssl_hs_is_proper_fragment return values by Andrzej Kurek · 5 years ago
- b06ec05 Add comment for mbedtls_platform_random_delay() by Piotr Nowicki · 5 years ago
- 478b05c Merge pull request #3355 from AndrzejKurek/fi_error_codes by Andrzej Kurek · 5 years ago
- fd56f40 Change the default value of status variables to an error by Andrzej Kurek · 5 years ago
- e071e42 Merge pull request #3336 from piotr-now/baremetal_flowmon by Piotr Nowicki · 5 years ago
- f0ab6d6 Added some descriptions of functions by Piotr Nowicki · 5 years ago
- 13bebd0 Keep SSL context const when hw accel is disabled by Manuel Pégourié-Gonnard · 5 years ago
- 731d7c0 Fix lack of cookie check on hard reconnect by Manuel Pégourié-Gonnard · 5 years ago
- 4aaa34c Add flow monitor protection to mbedtls_platform_memcmp() by Piotr Nowicki · 5 years ago
- 825ebd4 Merge mbedtls 2.16.6 into baremetal by Andrzej Kurek · 5 years ago