TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls.git
/
3a173f497ba656401bb99833b0ae0514fcfbad9a
/
library
/
ssl_tls.c
67505bf
Merge branch 'development' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
bfccdd3
Merge commit '36adc36' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
0017c2b
Merge commit '9835bc0' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
8fbb01e
Merge commit 'b2eaac1' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
b89c4f3
Fixes for the renego-option merge
by Manuel Pégourié-Gonnard
· 11 years ago
0af1ba3
Merge commit 'f6080b8' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
edb7ed3
Merge commit 'd7e2483' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
f9c8a60
Merge commit '8b9bcec' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
5b8f7ea
Merge new security defaults for programs (RC4 disabled, SSL3 disabled)
by Paul Bakker
· 11 years ago
c82b7e2
Merge option to disable truncated hmac on the server-side
by Paul Bakker
· 11 years ago
a852cf4
Fix issue with non-blocking I/O & record splitting
by Manuel Pégourié-Gonnard
· 11 years ago
d5746b3
Fix warning
by Manuel Pégourié-Gonnard
· 11 years ago
f356115
Merge support for 1/n-1 record splitting
by Paul Bakker
· 11 years ago
f6080b8
Merge support for enabling / disabling renegotiation support at compile-time
by Paul Bakker
· 11 years ago
d7e2483
Merge miscellaneous fixes into development
by Paul Bakker
· 11 years ago
bd47a58
Add ssl_set_arc4_support()
by Manuel Pégourié-Gonnard
· 11 years ago
352143f
Refactor for clearer correctness/security
by Manuel Pégourié-Gonnard
· 11 years ago
e117a8f
Make truncated hmac a runtime option server-side
by Manuel Pégourié-Gonnard
· 11 years ago
cfa477e
Allow disabling record splitting at runtime
by Manuel Pégourié-Gonnard
· 11 years ago
d76314c
Add 1/n-1 record splitting
by Manuel Pégourié-Gonnard
· 11 years ago
837f0fe
Make renego period configurable
by Manuel Pégourié-Gonnard
· 11 years ago
b445805
Auto-renegotiate before sequence number wrapping
by Manuel Pégourié-Gonnard
· 11 years ago
6186019
Save 48 bytes if SSLv3 is not defined
by Manuel Pégourié-Gonnard
· 11 years ago
615e677
Make renegotiation a compile-time option
by Manuel Pégourié-Gonnard
· 11 years ago
60346be
Improve debugging message.
by Manuel Pégourié-Gonnard
· 11 years ago
2457fa0
Create ticket keys only if enabled
by Manuel Pégourié-Gonnard
· 11 years ago
d16d1cb
Use more #ifdef's on CLI_C and SRV_C in ssl_tls.c
by Manuel Pégourié-Gonnard
· 11 years ago
0975ad9
Merge branch 'etm' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
8e4b337
Fix some more warnings in reduced configs
by Manuel Pégourié-Gonnard
· 11 years ago
e5b0fc1
Make malloc-init script a bit happier
by Manuel Pégourié-Gonnard
· 11 years ago
27e3edb
Check key/cert pair in ssl_set_own_cert()
by Manuel Pégourié-Gonnard
· 11 years ago
d056ce0
Use seq_num as AEAD nonce by default
by Manuel Pégourié-Gonnard
· 11 years ago
f9d778d
Merge branch 'etm' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
56d985d
Merge branch 'session-hash' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
9d7821d
Fix warning in reduced config
by Manuel Pégourié-Gonnard
· 11 years ago
fedba98
Merge branch 'fb-scsv' into dtls
by Manuel Pégourié-Gonnard
· 11 years ago
1a03473
Keep EtM state across renegotiations
by Manuel Pégourié-Gonnard
· 11 years ago
169dd6a
Adjust minimum length for EtM
by Manuel Pégourié-Gonnard
· 11 years ago
08558e5
Fix for the RFC erratum
by Manuel Pégourié-Gonnard
· 11 years ago
313d796
Implement EtM
by Manuel Pégourié-Gonnard
· 11 years ago
0098e7d
Preparation for EtM
by Manuel Pégourié-Gonnard
· 11 years ago
699cafa
Implement initial negotiation of EtM
by Manuel Pégourié-Gonnard
· 11 years ago
ada3030
Implement extended master secret
by Manuel Pégourié-Gonnard
· 11 years ago
1cbd39d
Implement FALLBACK_SCSV client-side
by Manuel Pégourié-Gonnard
· 11 years ago
367381f
Add negotiation of Extended Master Secret
by Manuel Pégourié-Gonnard
· 11 years ago
6b875fc
Fix potential memory leak (from clang-analyzer)
by Manuel Pégourié-Gonnard
· 11 years ago
df3acd8
Limit HelloRequest retransmission if not enforced
by Manuel Pégourié-Gonnard
· 11 years ago
26a4cf6
Add retransmission of HelloRequest
by Manuel Pégourié-Gonnard
· 11 years ago
74a1378
Avoid false positive in ssl-opt.sh with memcheck
by Manuel Pégourié-Gonnard
· 11 years ago
8e704f0
DTLS depends on TIMING_C for now
by Manuel Pégourié-Gonnard
· 11 years ago
b0643d1
Add ssl_set_dtls_badmac_limit()
by Manuel Pégourié-Gonnard
· 11 years ago
9b35f18
Add ssl_get_record_expansion()
by Manuel Pégourié-Gonnard
· 11 years ago
37e08e1
Fix max_fragment_length with DTLS
by Manuel Pégourié-Gonnard
· 11 years ago
23cad33
Fail cleanly on unhandled case
by Manuel Pégourié-Gonnard
· 11 years ago
fc572dd
Retransmit only on last message from prev flight
by Manuel Pégourié-Gonnard
· 11 years ago
8a7cf25
Add a few #ifdefs
by Manuel Pégourié-Gonnard
· 11 years ago
ba958b8
Add test for server-initiated renego
by Manuel Pégourié-Gonnard
· 11 years ago
46fb942
Fix warning about function that should be static
by Manuel Pégourié-Gonnard
· 11 years ago
f1e9b09
Fix missing #ifdef's
by Manuel Pégourié-Gonnard
· 11 years ago
4e2f245
Fix timer issues
by Manuel Pégourié-Gonnard
· 11 years ago
df9a0a8
Drop unexpected ApplicationData
by Manuel Pégourié-Gonnard
· 11 years ago
6b65141
Implement ssl_read() timeout (DTLS only for now)
by Manuel Pégourié-Gonnard
· 11 years ago
2707430
Fix types and comments about read_timeout
by Manuel Pégourié-Gonnard
· 11 years ago
6c1fa3a
Fix misplaced initialisation of timeout
by Manuel Pégourié-Gonnard
· 11 years ago
c8d8e97
Move to milliseconds in recv_timeout()
by Manuel Pégourié-Gonnard
· 11 years ago
905dd24
Add ssl_set_handshake_timeout()
by Manuel Pégourié-Gonnard
· 11 years ago
0ac247f
Implement timeout back-off (fixed range for now)
by Manuel Pégourié-Gonnard
· 11 years ago
7de3c9e
Count timeout per flight, not per message
by Manuel Pégourié-Gonnard
· 11 years ago
db2858c
Preparation for timers
by Manuel Pégourié-Gonnard
· 11 years ago
08a1d4b
Fix bug with client auth with DTLS
by Manuel Pégourié-Gonnard
· 11 years ago
23b7b70
Fix issue with renego & resend
by Manuel Pégourié-Gonnard
· 11 years ago
2739313
Make anti-replay a runtime option
by Manuel Pégourié-Gonnard
· 11 years ago
8464a46
Make DTLS_ANTI_REPLAY depends on PROTO_DTLS
by Manuel Pégourié-Gonnard
· 11 years ago
246c13a
Fix epoch checking
by Manuel Pégourié-Gonnard
· 11 years ago
b47368a
Add replay detection
by Manuel Pégourié-Gonnard
· 11 years ago
4956fd7
Test and fix anti-replay functions
by Manuel Pégourié-Gonnard
· 11 years ago
7a7e140
Add functions for replay protection
by Manuel Pégourié-Gonnard
· 11 years ago
ea22ce5
Rm unneeded counter increment with DTLS
by Manuel Pégourié-Gonnard
· 11 years ago
abf1624
Add ability to resend last flight
by Manuel Pégourié-Gonnard
· 11 years ago
767c695
Drop out-of-sequence ChangeCipherSpec messages
by Manuel Pégourié-Gonnard
· 11 years ago
93017de
Minor optim: don't resend on duplicated HVR
by Manuel Pégourié-Gonnard
· 11 years ago
c715aed
Fix epoch swapping
by Manuel Pégourié-Gonnard
· 11 years ago
6a2bdfa
Actually resend flights
by Manuel Pégourié-Gonnard
· 11 years ago
5d8ba53
Expand and fix resend infrastructure
by Manuel Pégourié-Gonnard
· 11 years ago
ffa67be
Infrastructure for buffering & resending flights
by Manuel Pégourié-Gonnard
· 11 years ago
8fa6dfd
Introduce f_recv_timeout callback
by Manuel Pégourié-Gonnard
· 11 years ago
e6bdc44
Merge I/O contexts into one
by Manuel Pégourié-Gonnard
· 11 years ago
ca6440b
Small cleanups in parse_finished()
by Manuel Pégourié-Gonnard
· 11 years ago
624bcb5
No memmove: done, rm temporary things
by Manuel Pégourié-Gonnard
· 11 years ago
f49a7da
No memmove: ssl_parse_certificate()
by Manuel Pégourié-Gonnard
· 11 years ago
4abc327
No memmove: ssl_parse_finished()
by Manuel Pégourié-Gonnard
· 11 years ago
f899583
Prepare moving away from memmove() on incoming HS
by Manuel Pégourié-Gonnard
· 11 years ago
4a17536
Fix missing return in error check
by Manuel Pégourié-Gonnard
· 11 years ago
63eca93
Drop invalid records with DTLS
by Manuel Pégourié-Gonnard
· 11 years ago
167a376
Split two functions out of ssl_read_record()
by Manuel Pégourié-Gonnard
· 11 years ago
990f9e4
Handle late handshake messages gracefully
by Manuel Pégourié-Gonnard
· 11 years ago
60ca5af
Drop records from wrong epoch
by Manuel Pégourié-Gonnard
· 11 years ago
1aa586e
Check handshake message_seq field
by Manuel Pégourié-Gonnard
· 11 years ago
9d1d719
Check length before reading handshake header
by Manuel Pégourié-Gonnard
· 11 years ago
d9ba0d9
Prepare for checking incoming handshake seqnum
by Manuel Pégourié-Gonnard
· 11 years ago
Next »