- 3cffc5c tls: Remove unnecessary checks of MBEDTLS_CIPHERSUITE_NODTLS by Ronald Cron · 3 years, 4 months ago
- 90f0120 ssl_tls12_server.c: Simplify TLS version check in ClientHello by Ronald Cron · 3 years, 5 months ago
- 8457c12 ssl_tls12_server.c: Remove some unnecessary checks on TLS minor version by Ronald Cron · 3 years, 5 months ago
- b894ac7 ssl_tls12_server.c: Remove some dead code for versions of TLS < 1.2 by Ronald Cron · 3 years, 5 months ago
- de1adee Rename ssl_cli/srv.c by Ronald Cron · 3 years, 5 months ago[Renamed from library/ssl_srv.c]
- 862902d ssl_srv.c: Mark ETM as disabled if cipher is not CBC by Ronald Cron · 3 years, 4 months ago
- 560ef59 Merge pull request #5613 from mprse/tls_ecdh_2a by Manuel Pégourié-Gonnard · 3 years, 5 months ago
- dd482bf Modify own_pubkey_max_len calculation by Przemek Stekiel · 3 years, 5 months ago
- a4e15cc Fix comment: add fields size by Przemek Stekiel · 3 years, 5 months ago
- 855938e Move mbedtls_ecdh_setup() to no-psa path by Przemek Stekiel · 3 years, 5 months ago
- 338b61d Fix code style by Przemek Stekiel · 3 years, 5 months ago
- ce1d792 Remove duplicated code by Przemek Stekiel · 3 years, 5 months ago
- fc91a1f Use PSA for private key generation and public key export only for ECDHE keys by Przemek Stekiel · 3 years, 5 months ago
- a21af3d Use mbedtls_psa_parse_tls_ecc_group() instead PSA_KEY_TYPE_ECC_KEY_PAIR( mbedtls_ecc_group_to_psa() ) by Przemek Stekiel · 3 years, 5 months ago
- 0a60c12 Add intermediate variables to increase code readability by Przemek Stekiel · 3 years, 5 months ago
- e9f0044 Destroy ecdh_psa_privkey on failure by Przemek Stekiel · 3 years, 5 months ago
- 130c4b5 Use PSA version of key agreement only for ECDHE keys by Przemek Stekiel · 3 years, 5 months ago
- fd32e96 ssl_parse_client_key_exchange(): read the curve identifier and the peer's public key and compute the shared secret using PSA by Przemek Stekiel · 3 years, 5 months ago
- b6ce0b6 ssl_prepare_server_key_exchange(): generate a private/public key and write out the curve identifier and public key using PSA by Przemek Stekiel · 3 years, 5 months ago
- 6989407 Add accessor to retrieve SNI during handshake by Glenn Strauss · 3 years, 6 months ago
- 2ed9527 Add server certificate selection callback by Glenn Strauss · 3 years, 6 months ago
- e754193 Remove guard inside ssl_srv.c by Jerry Yu · 3 years, 6 months ago
- fb4b647 tls13_only: improve guards of files. by Jerry Yu · 3 years, 6 months ago
- c5aef88 tls13_only: guard ssl_{cli,srv}.c with TLS1_2 by Jerry Yu · 3 years, 7 months ago
- c3091b1 tls13_only: compile pass by Jerry Yu · 3 years, 7 months ago
- 8c010eb Fix comments, code style, remove debug code by Przemyslaw Stekiel · 3 years, 6 months ago
- 2c87a20 ssl_write_encrypt_then_mac_ext(): adapt to psa crypto by Przemyslaw Stekiel · 3 years, 6 months ago
- 9719885 fix coding style issues by Jerry Yu · 3 years, 6 months ago
- eb821c6 remove check_sig_hash by Jerry Yu · 3 years, 6 months ago
- 24811fb replace check_sig_hash with is_offered by Jerry Yu · 3 years, 6 months ago
- 1bab301 Add signature algorithm supported check by Jerry Yu · 3 years, 6 months ago
- 713013f fix various issues by Jerry Yu · 3 years, 6 months ago
- 6106fdc fix build fail without TLS13 by Jerry Yu · 3 years, 7 months ago
- 1abd1bc Change write_sig_alg_ext of tls12 by Jerry Yu · 3 years, 7 months ago
- 0e5bcb6 Replace directly access for sig_hashes by Jerry Yu · 3 years, 7 months ago
- 18cd439 Align signature_algorithms extension name by Jerry Yu · 3 years, 8 months ago
- d491ea4 fix comment issue by Jerry Yu · 3 years, 7 months ago
- b925f21 fix comment issues by Jerry Yu · 3 years, 7 months ago
- ffef9c5 fix alignment issue by Jerry Yu · 3 years, 7 months ago
- b47d0f8 Replace SUPPORTED_ELLIPTIC_CURVES with SUPPORTED_GROUPS by Jerry Yu · 3 years, 7 months ago
- 69a6342 psa: Fix the size of hash buffers by Ronald Cron · 3 years, 10 months ago
- be7b21d Merge branch 'development' into 3649_move_constant_time_functions_into_separate_module by Gabor Mezei · 3 years, 8 months ago
- 01f3dae Refactor elliptic curve extension for NamedGroups by Brett Warren · 4 years ago
- 22c9a6f Rename internal header constant_time.h to constant_time_internal.h by Gabor Mezei · 3 years, 9 months ago
- 90437e3 Rename constant-time functions to have mbedtls_ct prefix by Gabor Mezei · 3 years, 9 months ago
- 765862c Move mbedtls_cf_memcmp to a new public header by Gabor Mezei · 3 years, 9 months ago
- d96a5c2 Fix wrong usage of counter len macro by Jerry Yu · 3 years, 10 months ago
- 9cb5569 Propagate usage of mask generation functions by gabor-mezei-arm · 4 years ago
- 4602564 Unify memcmp functions by gabor-mezei-arm · 4 years ago
- db9a38c Move contatnt-time memcmp functions to the contant-time module by gabor-mezei-arm · 3 years, 10 months ago
- d9a94fe Add counter length macro by Jerry Yu · 3 years, 10 months ago
- 957f0fa Add length macro for in_ctr by Jerry Yu · 3 years, 10 months ago
- 94180e7 Minor coding style improvement by Joe Subbiani · 4 years ago
- e4603ee Compress byte reading macros in if statements by Joe Subbiani · 4 years ago
- 1f6c3ae Tidy up ssl_*.c grouped MBEDTLS_BYTE_x macros by Joe Subbiani · 4 years ago
- 6dd7364 Replace instances of byte reading macros with PUT by Joe Subbiani · 4 years ago
- fbeb692 Use byte reading macros in places not using a byte mask by Joe Subbiani · 4 years ago
- 2194dc4 Replace MBEDTLS_CHAR_x with MBEDTLS_BYTE_x by Joe Subbiani · 4 years, 1 month ago
- cd84d76 Add Character byte reading macros by Joe Subbiani · 4 years, 1 month ago
- 41934dd Share preparatory code between client and server handshake steps by Hanno Becker · 4 years ago
- fadbdbb Store TLS version in SSL session structure by Hanno Becker · 4 years ago
- dc1a3b2 Merge pull request #4724 from hanno-arm/ssl_hs_parse_error_3_0 by Dave Rodgman · 4 years, 1 month ago
- c50b717 Update a couple of ssl error codes by Dave Rodgman · 4 years, 1 month ago
- bb05cd0 Remove MBEDTLS_ERR_SSL_NO_CIPHER_CHOSEN by Dave Rodgman · 4 years, 1 month ago
- 53c8689 Introduce new TLS error codes by Dave Rodgman · 4 years, 1 month ago
- 096c411 Remove MBEDTLS_ERR_SSL_NO_USABLE_CIPHERSUITE by Dave Rodgman · 4 years, 1 month ago
- 43fcb8d Address review feedback by Dave Rodgman · 4 years, 1 month ago
- 2fc9a65 Address review feedback by Hanno Becker · 4 years, 1 month ago
- 90d59dd Remove MBEDTLS_ERR_SSL_BAD_HS_CLIENT_HELLO by Hanno Becker · 4 years, 1 month ago
- cbc8f6f Remove MBEDTLS_ERR_SSL_BAD_HS_SERVER_KEY_EXCHANGE by Hanno Becker · 4 years, 1 month ago
- d934a2a Remove MBEDTLS_ERR_SSL_BAD_HS_CERTIFICATE_VERIFY by Hanno Becker · 4 years, 1 month ago
- d3eec78 Remove MBEDTLS_ERR_SSL_BAD_HS_CLIENT_KEY_EXCHANGE_CS by Hanno Becker · 4 years, 1 month ago
- 666b5b4 Remove MBEDTLS_ERR_SSL_BAD_HS_CLIENT_KEY_EXCHANGE by Hanno Becker · 4 years, 1 month ago
- b24e74b Remove MBEDTLS_ERR_SSL_BAD_HS_CLIENT_KEY_EXCHANGE_RP error code by Hanno Becker · 4 years, 1 month ago
- bc00044 Rename MBEDTLS_ERR_SSL_BAD_HS_PROTOCOL_VERSION by Hanno Becker · 4 years, 1 month ago
- 16fe8fc Fix unused variable warning by Gilles Peskine · 4 years, 1 month ago
- f00f152 Add output size parameter to signature functions by Gilles Peskine · 4 years, 1 month ago
- e1c9a40 Removes truncated HMAC code from ssl_X.c by Thomas Daubney · 4 years, 2 months ago
- 8cad2e2 Merge pull request #4595 from gilles-peskine-arm/alt-dummy-headers-3.0 by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- cd07e22 New function mbedtls_ecjpake_set_point_format by Gilles Peskine · 4 years, 2 months ago
- 487bbf6 DHM: new functions to query the length of the modulus by Gilles Peskine · 4 years, 2 months ago
- 3946f79 Correction according to code review (function and param. names change by TRodziewicz · 4 years, 2 months ago
- 8476f2f Turn _SSL_SRV_RESPECT_CLIENT_PREFERENCE config option to a runtime option by TRodziewicz · 4 years, 2 months ago
- d60b6c6 Remove per-version ciphersuite configuration API by Hanno Becker · 4 years, 3 months ago
- 4ca18aa Corrections after the code review by TRodziewicz · 4 years, 2 months ago
- 6370dbe Remove the _SSL_FALLBACK_ parts by TRodziewicz · 4 years, 3 months ago
- 0f82ec6 Remove the TLS 1.0 and 1.1 support by TRodziewicz · 4 years, 3 months ago
- 7fc487c Merge pull request #4347 from hanno-arm/ssl_session_cache_3_0 by Janos Follath · 4 years, 2 months ago
- fc1f413 Use `memset( x, 0, sizeof( x ) )` to clear local structure by Hanno Becker · 4 years, 3 months ago
- b94fdae Improve code structure for session cache query by Hanno Becker · 4 years, 3 months ago
- df56402 Fix memory leak upon ciphersuite mismatch during session resumption by Hanno Becker · 4 years, 3 months ago
- 7ad7796 Use shorthand local variable for session under negotiation by Hanno Becker · 4 years, 3 months ago
- f6e09c6 Don't use ssl_check_xxx() for functions with void return by Hanno Becker · 4 years, 3 months ago
- a5b1a39 Don't use 0-initializer for structs by Hanno Becker · 4 years, 4 months ago
- c301bd5 Merge branch 'development_3.0' into drop_old_tls_options by Mateusz Starzyk · 4 years, 4 months ago
- ccdaf6e Add session ID as explicit parameter to SSL session cache API by Hanno Becker · 4 years, 4 months ago
- 64ce974 Don't check ciphersuite and compression in SSL session cache lookup by Hanno Becker · 4 years, 4 months ago
- 73e3e2c Merge remote-tracking branch 'origin/development' into development_new by Dave Rodgman · 4 years, 4 months ago
- 2aff17b Merge pull request #4098 from gstrauss/remove-redundant-condition by Gilles Peskine · 4 years, 4 months ago
- 5224e29 Drop support for RC4 TLS ciphersuites. by Mateusz Starzyk · 4 years, 5 months ago