- e7dad1f ssl_tls.c: Fix inappropriate use of ssl context by Ronald Cron · 3 years, 4 months ago
- 298d6cc Add mbedtls_ssl_check_curve_tls_id() (internal) by Manuel Pégourié-Gonnard · 3 years, 6 months ago
- de081ce Reset dhm_P and dhm_G if config call repeated by Glenn Strauss · 3 years, 7 months ago
- 08412e2 Merge remote-tracking branch 'restricted/development_2.x-restricted' into mbedtls-2.28.0rc0-pr by Dave Rodgman · 3 years, 8 months ago
- 622d804 Initialize hash_len before using it by Gilles Peskine · 3 years, 8 months ago
- f91b2e5 mbedtls_ssl_parse_finished: zeroize expected finished value on error by Gilles Peskine · 3 years, 8 months ago
- 2b3f21d Catch failures of md_hmac operations by Gilles Peskine · 3 years, 8 months ago
- 0f6c6bc [session] fix a session copy bug by 吴敬辉 · 3 years, 8 months ago
- 3a95d2b psa: Fix the size of hash buffers by Ronald Cron · 3 years, 10 months ago
- 18a4494 Rename constant-time functions to have mbedtls_ct prefix by Gabor Mezei · 3 years, 9 months ago
- e24dea8 Move mbedtls_cf_memcmp to a new public header by Gabor Mezei · 3 years, 9 months ago
- 378e7eb Unify memcmp functions by gabor-mezei-arm · 4 years ago
- 944c107 Move contatnt-time memcmp functions to the contant-time module by gabor-mezei-arm · 3 years, 10 months ago
- a651e6f Tidy up grouped MBEDTLS_BYTE_x macros by Joe Subbiani · 4 years ago
- 2f98d79 Tidy up ssl_*.c grouped MBEDTLS_BYTE_x macros by Joe Subbiani · 4 years ago
- ad1115a Use byte reading macros in places not using a byte mask by Joe Subbiani · 4 years ago
- c045dc1 Replace MBEDTLS_CHAR_x with MBEDTLS_BYTE_x by Joe Subbiani · 4 years, 1 month ago
- 6b897c9 Add Character byte reading macros by Joe Subbiani · 4 years, 1 month ago
- dd5f624 Fix TLS alert codes by Dave Rodgman · 4 years, 1 month ago
- a33cb76 Merge pull request #4493 from netfoundry/gcc11.fixes_2.x by Gilles Peskine · 4 years, 2 months ago
- c54010c Split SHA-512 and SHA-384 guards for hash availability code by Gilles Peskine · 4 years, 3 months ago
- fc9c07f Fix unused variable with MBEDTLS_SHA512_NO_SHA384 by Gilles Peskine · 4 years, 3 months ago
- d2d5937 Remove dead code under MBEDTLS_SHA512_NO_SHA384 by Gilles Peskine · 4 years, 3 months ago
- bb66dac Fix spurious -Wstringop-overflow with GCC 11.1 by Gilles Peskine · 4 years, 3 months ago
- b744990 Fix missed size_t printf by Paul Elliott · 4 years, 5 months ago
- d48d5c6 Fix size_t and longlong specifiers for MinGW by Paul Elliott · 4 years, 7 months ago
- 3891caf Misc review requested fixes by Paul Elliott · 4 years, 7 months ago
- 9f35211 Fixes for invalid printf format specifiers by Paul Elliott · 4 years, 8 months ago
- 069fa96 Use size_t instead of uint32_t for ssl I/O buffer lengths by Andrzej Kurek · 4 years, 7 months ago
- 4a06379 Refactor the variable I/O buffer size feature by Andrzej Kurek · 4 years, 9 months ago
- f06a614 Change function casting in `ssl_calc_finished_tls_sha384` by Rodrigo Dias Correa · 4 years, 8 months ago
- d596ca8 Fix GCC warning in `ssl_calc_finished_tls_sha384` by Rodrigo Dias Correa · 4 years, 8 months ago
- eb5d014 Fix GCC warning in `ssl_calc_finished_tls_sha384` by Rodrigo Dias Correa · 4 years, 9 months ago
- 2c42457 Fix mismatched function parameters (prototype/definition) by Rodrigo Dias Correa · 4 years, 9 months ago
- 2630f67 Fix build failure on gcc-11 by Rodrigo Dias Correa · 4 years, 9 months ago
- cf56a0a psa: Move from key handle to key identifier by Ronald Cron · 5 years ago
- c26f8d4 Introduce psa_key_handle_is_null inline function by Ronald Cron · 5 years ago
- 91e9515 Introduce PSA_KEY_HANDLE_INIT macro by Ronald Cron · 5 years ago
- 5ef72d2 Style and typos by Johan Pascal · 4 years, 9 months ago
- 2258a4f Do not return a structure, use a return parameter by Johan Pascal · 4 years, 9 months ago
- 0dbcd1d Make API safer by Johan Pascal · 4 years, 9 months ago
- 20c7db3 API modified so server side can get mki value by Johan Pascal · 4 years, 9 months ago
- 76fdf1d Minor fix and improvements by Johan Pascal · 4 years, 9 months ago
- d387aa0 style + missing cast by Johan Pascal · 4 years, 10 months ago
- aae4d22 Improve code readability +micro optimization +style by Johan Pascal · 4 years, 10 months ago
- a455cd9 mbedtls_ssl_get_srtp_profile_as_string declared and defined in ssl.h by Johan Pascal · 4 years, 10 months ago
- f6417ec mki length feats in a uint16_t by Johan Pascal · 4 years, 10 months ago
- 253d026 set protection profile API gets a MBEDTLS_TLS_SRTP_UNSET terminated list by Johan Pascal · 4 years, 10 months ago
- 43f9490 SRTP profiles definition use macros only by Johan Pascal · 4 years, 10 months ago
- 4f09926 use_srtp extension shall not interfere in the handshake settings by Johan Pascal · 4 years, 10 months ago
- d576fdb Style + fix bound check in write_use_srt_ext by Johan Pascal · 4 years, 10 months ago
- 9bc97ca SRTP-DTLS protection profile configuration list not copied into ssl_config by Johan Pascal · 4 years, 10 months ago
- 8526957 Minor style modifications by Johan Pascal · 5 years ago
- b64eab7 fix style by Johan Pascal · 5 years ago
- 65b56ef Change key derivation for srtp by Ron Eldor · 6 years ago
- 313d7b5 Add variable validation by Ron Eldor · 7 years ago
- 089c9fe Improve readability by Ron Eldor · 7 years ago
- a978804 Style fixes by Ron Eldor · 7 years ago
- ef72faf Style fixes by Ron Eldor · 7 years ago
- b465539 Add tests and code to support by Ron Eldor · 7 years ago
- 1c399bd Set authmode to optional, if not set by Ron Eldor · 7 years ago
- 57cc70e Enforce SRTP mandatory HS messages by Ron Eldor · 7 years ago
- a37326a Make keyu material length in \ out by Ron Eldor · 7 years ago
- 591f162 support mki value by Ron Eldor · 8 years ago
- 3adb992 Add mki value and some review comments by Ron Eldor · 8 years ago
- 701984d Comply with mbedtls naming rules by Johan Pascal · 8 years ago
- 2d9470b Improve DTLS SRTP API with a dedicated function to get generated keys by Johan Pascal · 9 years ago
- bbc057a Move available dtls srtp profile list to ssl_config by Johan Pascal · 9 years ago
- b62bb51 Add RFC5764 - SRTP key generation during DTLS handshake by Johan Pascal · 10 years ago
- a817ea4 Check presence of DTLS timers only once by Hanno Becker · 4 years, 9 months ago
- 1e14827 Update copyright notices to use Linux Foundation guidance by Bence Szépkúti · 5 years ago
- db09ef6 Include common.h instead of config.h in library source files by Gilles Peskine · 5 years ago
- c4b6656 Merge pull request #3405 from AndrzejKurek/variable-buffers-cid-serialization by danh-arm · 5 years ago
- b657783 Update iv and len context pointers manually when reallocating buffers by Andrzej Kurek · 5 years ago
- a92e3de Merge pull request #873 from hanno-arm/ssl_write_client_hello by Manuel Pégourié-Gonnard · 5 years ago
- 8216dd3 Use defines to check alpn ext list validity by Ronald Cron · 5 years ago
- f93c2d7 Add support for TLS 1.3 record protection to ssl_populate_transform() by Hanno Becker · 5 years ago
- 447558d Improve documentation of ssl_populate_transform() by Hanno Becker · 5 years ago
- c39a80d Merge pull request #3312 from sander-visser/cleanup-nullptr-deref by Gilles Peskine · 5 years ago
- 1a4a3f5 Merge pull request #3311 from sander-visser/validate-tls-mac-key-len by Janos Follath · 5 years ago
- 3888b03 Add variable initialization to large SSL TLS function. by sander-visser · 5 years ago
- b8aa207 Scope reduction to enable NULL check to protect dereferencing. by sander-visser · 5 years ago
- 1abe8ee Expose SSL HW record acceleration error. by sander-visser · 5 years ago
- d3085ab Avoid re-assigning zero to `ret` variable. Resolve #3182. by irwir · 5 years ago
- 5d318cc Merge pull request #3130 from gbryant-arm/generic-psk by Manuel Pégourié-Gonnard · 5 years ago
- 8ea6872 Improve pointer calculations when resizing I/O buffers by Andrzej Kurek · 5 years ago
- 90c6e84 Split the maximum fragment length into two - an input and output MFL by Andrzej Kurek · 5 years ago
- 0c9b195 Return internal error if no PSK is found when deriving the premaster secret by Guilhem Bryant · 5 years ago
- 03d3711 Fix bracket style by Guilhem Bryant · 5 years ago
- b5f04e4 Properly initialise psk and psk_len by Guilhem Bryant · 5 years ago
- 61b0fe6 Initialise psk_len in mbedtls_ssl_psk_derive_premaster() by Guilhem Bryant · 5 years ago
- 82194c8 Fix bracketing style in ssl_tls.c by Guilhem Bryant · 5 years ago
- c5285d8 Use internal PSK getter by Guilhem Bryant · 5 years ago
- 5e7d6fd Merge 'mbedtls/development' into merge-crypto-unremoved-20200304 by Gilles Peskine · 5 years ago
- eccd888 Rename identifiers containing double-underscore by Gilles Peskine · 5 years ago
- 21d1cbc Merge pull request #2262 from andresag01/iotssl-2544-deprecate-record-accel by Manuel Pégourié-Gonnard · 5 years ago
- 7ae6ed4 Keep SSL context const when hw accel is disabled by Manuel Pégourié-Gonnard · 5 years ago
- 0afa2a1 Add I/O buffer resizing in handshake init and free by Andrzej Kurek · 5 years ago
- b33cc76 Add I/O buffer length fields to mbedtls_ssl_context by Darryl Green · 6 years ago
- e07bc20 Fix compile errors with MBEDTLS_SSL_HW_RECORD_ACCEL by Manuel Pégourié-Gonnard · 5 years ago