1. c6d1c3e Remove frame/pk parameter from mbedtls_x509_crt_xxx_release() by Hanno Becker · 6 years ago
  2. 2fefa48 Make use of acquire/release in ssl_parse_server_key_exchange() by Hanno Becker · 6 years ago
  3. 39ae65c Make use of acquire/release in ssl_get_ecdh_params_from_cert() by Hanno Becker · 6 years ago
  4. 0c16816 Make use of acquire/release in client-side ssl_write_encrypted_pms() by Hanno Becker · 6 years ago
  5. 5882dd0 Remove CRT digest from SSL session if !RENEGO + !KEEP_PEER_CERT by Hanno Becker · 6 years ago
  6. c39e23e Add further debug statements on assertion failures by Hanno Becker · 6 years ago
  7. e9839c0 Add debug output in case of assertion failure by Hanno Becker · 6 years ago
  8. 6c83db7 Free peer's public key as soon as it's no longer needed by Hanno Becker · 6 years ago
  9. 69fad13 Adapt client-side signature verification to use raw public key by Hanno Becker · 6 years ago
  10. 53b6b7e Adapt ssl_get_ecdh_params_from_cert() to use raw public key by Hanno Becker · 6 years ago
  11. 374800a Adapt ssl_write_encrypted_pms() to use raw public key by Hanno Becker · 6 years ago
  12. f02d550 Re-classify errors on missing peer CRT by Hanno Becker · 6 years ago
  13. ae39b9e Make use of macro and helper detecting whether CertRequest allowed by Hanno Becker · 6 years ago
  14. c725e4b Merge remote-tracking branch 'origin/pr/590' into baremetal by Simon Butcher · 6 years ago
  15. 01a8eb2 Merge remote-tracking branch 'origin/pr/585' into baremetal by Simon Butcher · 6 years ago
  16. 20095af Changes according to review comments by Jarno Lamsa · 6 years ago
  17. 842be16 Check for the enforcing and fail handshake if the peer doesn't support by Jarno Lamsa · 6 years ago
  18. 64c1681 Use new macros for all TLS/DTLS tests by Manuel Pégourié-Gonnard · 6 years ago
  19. ff4bd9f Use new tools for all cases with TLS-specific code by Manuel Pégourié-Gonnard · 6 years ago
  20. 3d699e4 SSL/TLS client: Remove old session ticket on renegotiation by Hanno Becker · 6 years ago
  21. 0d1d76f Merge remote-tracking branch 'origin/pr/561' into baremetal by Simon Butcher · 6 years ago
  22. 5a790f9 Merge remote-tracking branch 'origin/pr/563' into baremetal by Simon Butcher · 6 years ago
  23. a5a2b08 Rename MBEDTLS_SSL_CID to MBEDTLS_SSL_DTLS_CONNECTION_ID by Hanno Becker · 6 years ago
  24. 3cdf8fe Consistently reference CID draft through name + URL by Hanno Becker · 6 years ago
  25. 75b334f Update references to CID draft to version 5 by Hanno Becker · 6 years ago
  26. f5970a0 Set pointer to start of plaintext at record decryption time by Hanno Becker · 6 years ago
  27. f885d3b Improve structure of client-side CID extension parsing by Hanno Becker · 6 years ago
  28. 8f68f87 Improve debugging output of client-side CID extension parsing by Hanno Becker · 6 years ago
  29. 1ba81f6 Implement parsing of CID extension in ServerHello by Hanno Becker · 6 years ago
  30. 39ec525 Implement writing of CID extension in ClientHello by Hanno Becker · 6 years ago
  31. a575975 Make calc_verify() return the length as well by Manuel Pégourié-Gonnard · 6 years ago
  32. 8759e16 Remove ciphersuite_info from ssl_transform by Hanno Becker · 8 years ago
  33. 3fbdada SSL: Make use of the new ECDH interface by Janos Follath · 7 years ago
  34. de13963 Merge remote-tracking branch 'restricted/pr/520' into development-restricted-proposed by Simon Butcher · 7 years ago
  35. c37423f Fix misleading sub-state name and comments by Manuel Pégourié-Gonnard · 7 years ago
  36. 8df1023 Add explicit unsigned-to-signed integer conversion by Hanno Becker · 7 years ago
  37. 0c161d1 Fix bounds check in ssl_parse_server_psk_hint() by Hanno Becker · 7 years ago
  38. 1c1c20e Fix some whitespace issues by Manuel Pégourié-Gonnard · 7 years ago
  39. 125af94 Merge branch 'development-restricted' into iotssl-1260-non-blocking-ecc-restricted by Manuel Pégourié-Gonnard · 7 years ago
  40. 552754a Merge remote-tracking branch 'public/pr/1988' into development by Simon Butcher · 7 years ago
  41. 68dbc94 Merge remote-tracking branch 'public/pr/1951' into development by Simon Butcher · 7 years ago
  42. 9d5a9e1 Merge remote-tracking branch 'public/pr/1625' into development by Simon Butcher · 7 years ago
  43. bc2498a Style: Add numerous comments indicating condition guarded by #endif by Hanno Becker · 7 years ago
  44. 327c93b Add parameter to ssl_read_record() controlling checksum update by Hanno Becker · 7 years ago
  45. 3879fdf Merge remote-tracking branch 'public/pr/1955' into iotssl-165-dtls-hs-fragmentation-new by Manuel Pégourié-Gonnard · 7 years ago
  46. ad17fe9 Fix overly strict bounds check in ssl_parse_certificate_request() by Hanno Becker · 7 years ago
  47. 87a346f Always save flight first, (re)send later by Manuel Pégourié-Gonnard · 8 years ago
  48. 31c1586 Start separating handshake from record writing by Manuel Pégourié-Gonnard · 8 years ago
  49. cac0c1a Merge remote-tracking branch 'upstream-public/pr/1378' into development by Jaeden Amero · 7 years ago
  50. df15356 Merge remote-tracking branch 'public/pr/1663' into development by Simon Butcher · 7 years ago
  51. 755bb6a Add ecc extensions only if ecc ciphersuite is used by Ron Eldor · 7 years ago
  52. 79d9b50 Merge branch 'development' into iotssl-1260-non-blocking-ecc-restricted by Manuel Pégourié-Gonnard · 7 years ago
  53. d8213d0 Let MBEDTLS_SSL_MAX_CONTENT_LEN to be split into outward & inward sizes by Angus Gratton · 9 years ago
  54. 5f57f1e Merge remote-tracking branch 'public/pr/1270' into development by Simon Butcher · 7 years ago
  55. 558da9c Make SSL error code more generic by Manuel Pégourié-Gonnard · 7 years ago
  56. da19f4c Merge branch 'development' into iotssl-1260-non-blocking-ecc-restricted by Manuel Pégourié-Gonnard · 7 years ago
  57. b5b2543 Fix undefined shifts by Philippe Antoine · 7 years ago
  58. 747fd53 Fixes different off by ones by Philippe Antoine · 7 years ago
  59. 11999bb Fix minor code style issues by Darryl Green · 7 years ago
  60. a331e0f Merge remote-tracking branch 'upstream-restricted/pr/421' into development-proposed by Jaeden Amero · 7 years ago
  61. 03bac44 Change accepted ciphersuite versions when parsing server hello by Andrzej Kurek · 7 years ago
  62. ca1d742 mbedtls_ssl_get_key_exchange_md_tls1_2: return hashlen by Gilles Peskine · 7 years ago
  63. 1d3b508 Same ciphersuite validation in server and client hello by Mohammad Azim Khan · 7 years ago
  64. f2b76cd Merge remote-tracking branch 'upstream-restricted/pr/461' into development-restricted-proposed by Gilles Peskine · 7 years ago
  65. 1f6301b Rename mbedtls_zeroize to mbedtls_platform_zeroize by Andres Amaya Garcia · 7 years ago
  66. e32df08 Remove individual copies of mbedtls_zeroize() by Andres Amaya Garcia · 8 years ago
  67. 94d4997 Improve comments style by Krzysztof Stachowiak · 7 years ago
  68. cd09fc8 Remove a redundant test by Krzysztof Stachowiak · 7 years ago
  69. 73b183c Add buffer size check before cert_type_len read by Krzysztof Stachowiak · 7 years ago
  70. f15a8be Merge remote-tracking branch 'upstream-public/pr/1256' into development-proposed by Gilles Peskine · 7 years ago
  71. bc231cc Add a missing buffer size check by Krzysztof Stachowiak · 7 years ago
  72. bc145f7 Correct buffer size check by Krzysztof Stachowiak · 7 years ago
  73. d1fedc5 Merge remote-tracking branch 'upstream-public/pr/1440' into development-proposed by Jaeden Amero · 7 years ago
  74. 95ad522 Merge remote-tracking branch 'upstream-public/pr/1439' into development-proposed by Jaeden Amero · 7 years ago
  75. 5224a75 Prevent arithmetic overflow on bounds check by Krzysztof Stachowiak · 7 years ago
  76. 740b218 Add bounds check before length read by Krzysztof Stachowiak · 7 years ago
  77. 027f84c Prevent arithmetic overflow on bounds check by Krzysztof Stachowiak · 7 years ago
  78. a1098f8 Add bounds check before signature length read by Krzysztof Stachowiak · 7 years ago
  79. d5f7d24 Merge branch 'pr_1064' into development-proposed by Gilles Peskine · 7 years ago
  80. d91f2a2 Merge branch 'development' into iotssl-1251-2.7 by Gilles Peskine · 8 years ago
  81. 4e5d23f corrected a typo in a comment by Johannes H · 8 years ago
  82. 0884f48 Merge remote-tracking branch 'upstream-public/pr/1141' into development by Gilles Peskine · 8 years ago
  83. 9c3573a Merge remote-tracking branch 'upstream-public/pr/988' into development by Gilles Peskine · 8 years ago
  84. 40f8b51 Add comments on the use of the renego SCSV and the renego ext by Hanno Becker · 8 years ago
  85. 6bce9cb Always print gmt_unix_time in TLS client by Andres Amaya Garcia · 8 years ago
  86. 1a9a51c Enhance documentation of ssl_write_hostname_ext, adapt ChangeLog. by Hanno Becker · 8 years ago
  87. 074c58f Always print gmt_unix_time in TLS client by Andres Amaya Garcia · 8 years ago
  88. 2f38a43 Enhance documentation of ssl_write_hostname_ext, adapt ChangeLog. by Hanno Becker · 8 years ago
  89. 4a2fb4c Addres review comments by Ron Eldor · 8 years ago
  90. 147d142 Add log and fix stle issues by Ron Eldor · 8 years ago
  91. 714785d Write correct number of ciphersuites in log by Ron Eldor · 8 years ago
  92. 0b23f16 SSL: rework restart state handling by Manuel Pégourié-Gonnard · 8 years ago
  93. 15d7df2 Introduce mbedtls_pk_restart_ctx and use it by Manuel Pégourié-Gonnard · 8 years ago
  94. 6b7301c Change restart context type. by Manuel Pégourié-Gonnard · 8 years ago
  95. d27d1a5 Clean up existing SSL restartable ECC code by Manuel Pégourié-Gonnard · 8 years ago
  96. 23e4162 ECDH: not restartable unless explicitly enabled by Manuel Pégourié-Gonnard · 8 years ago
  97. 1f1f2a1 Adapt ServerKeyEchange processing to restart by Manuel Pégourié-Gonnard · 8 years ago
  98. 862cde5 Add restart support for ECDSA client auth by Manuel Pégourié-Gonnard · 8 years ago
  99. 2350b4e Adapt ECDHE_ECDSA key exchange to restartable EC by Manuel Pégourié-Gonnard · 8 years ago
  100. 46f5a3e Check return codes from MD in ssl code by Andres Amaya Garcia · 8 years ago