TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls.git
/
a5780f19936c5c23f2dbc6307aa32b78bde924b8
/
library
78f839d
Adapt record length value after encryption
by Hanno Becker
· 6 years ago
b2ca87d
Rename ssl_decrypt_buf() to mbedtls_ssl_decrypt_buf() in comment
by Hanno Becker
· 7 years ago
29800d2
Double check that record expansion is as expected during decryption
by Hanno Becker
· 7 years ago
1c0c37f
Move debugging output after record decryption
by Hanno Becker
· 7 years ago
a18d132
Add tests for record encryption/decryption
by Hanno Becker
· 8 years ago
d56ed24
Reduce size of `ssl_transform` if no MAC ciphersuite is enabled
by Hanno Becker
· 8 years ago
8031d06
Remove code from `ssl_derive_keys` if relevant modes are not enabled
by Hanno Becker
· 8 years ago
2e24c3b
Provide standalone version of `ssl_decrypt_buf`
by Hanno Becker
· 8 years ago
9eddaeb
Provide standalone version of `ssl_encrypt_buf`
by Hanno Becker
· 8 years ago
52344c2
Correct space needed for MAC in case of NULL cipher
by Hanno Becker
· 8 years ago
e694c3e
Remove ciphersuite_info from ssl_transform
by Hanno Becker
· 8 years ago
88aaf65
Remove key length field from ssl_transform
by Hanno Becker
· 8 years ago
f790a6c
Merge remote-tracking branch 'origin/pr/2536' into development
by Jaeden Amero
· 6 years ago
7a1c4eb
Merge remote-tracking branch 'origin/pr/2567' into development
by Jaeden Amero
· 6 years ago
fe71067
Merge remote-tracking branch 'origin/pr/2539' into development
by Jaeden Amero
· 6 years ago
ff34d43
Merge remote-tracking branch 'origin/pr/2532' into development
by Jaeden Amero
· 6 years ago
e823416
Add certificate policy oid x509 extension
by Ron Eldor
· 6 years ago
e6d5a50
Merge remote-tracking branch 'origin/pr/2558' into development
by Jaeden Amero
· 6 years ago
4c8c7aa
Don't use debug level 1 for informational messages
by Hanno Becker
· 6 years ago
df48efa
Skip uncritical unsupported extensions
by Ron Eldor
· 6 years ago
aa34020
Merge remote-tracking branch 'origin/pr/2535' into development
by Jaeden Amero
· 6 years ago
d192ba4
Merge remote-tracking branch 'origin/pr/2463' into development
by Jaeden Amero
· 6 years ago
62ab1f9
Merge remote-tracking branch 'origin/pr/2405' into development
by Jaeden Amero
· 6 years ago
1b86e4c
Merge remote-tracking branch 'origin/pr/2106' into development
by Jaeden Amero
· 6 years ago
efb440a
Add test exercising context-specific CRT callback to ssl-opt.sh
by Hanno Becker
· 6 years ago
8927c83
Implement context-specific verification callbacks
by Hanno Becker
· 6 years ago
b6dc105
Add Wisun Fan device extended key usage
by Ron Eldor
· 6 years ago
5f28999
Wrap lines at 80 columns
by Jack Lloyd
· 6 years ago
ffdf288
Add NIST keywrap as a cipher mode
by Jack Lloyd
· 6 years ago
9822c0d
Fix name to function call
by Jarno Lamsa
· 6 years ago
2ee67a6
Remove mbedtls_ from the static function name
by Jarno Lamsa
· 6 years ago
31d9db6
Change the verify function naming
by Jarno Lamsa
· 6 years ago
fed5d9d
Update version_features.c
by Hanno Becker
· 6 years ago
f53893b
Implement X.509 CRT verification using CA callback
by Hanno Becker
· 6 years ago
3116fb3
Add prototype for CRT verification with static and dynamic CA list
by Hanno Becker
· 6 years ago
afd0b0a
Make use of CA callback if present when verifying peer CRT chain
by Hanno Becker
· 6 years ago
5adaad9
Add X.509 CA callback to SSL configuration and implement setter API
by Hanno Becker
· 6 years ago
8bf74f3
Add SSL configuration API for trusted CA callbacks
by Hanno Becker
· 6 years ago
57773d4
Merge remote-tracking branch 'restricted/pr/551' into development
by Jaeden Amero
· 6 years ago
0ea3377
Merge remote-tracking branch 'restricted/pr/552' into development
by Jaeden Amero
· 6 years ago
c73fde7
Merge remote-tracking branch 'origin/pr/2531' into development
by Jaeden Amero
· 6 years ago
3930e18
Merge remote-tracking branch 'origin/pr/2509' into development
by Jaeden Amero
· 6 years ago
d5d01a0
Merge remote-tracking branch 'origin/pr/2525' into development
by Jaeden Amero
· 6 years ago
11ee071
Add certificate policy of type any policy id
by Ron Eldor
· 6 years ago
3f8d784
Update library version to 2.17.0
by Jaeden Amero
· 6 years ago
mbedtls-2.17.0
57f4d9e
Update crypto submodule to test with private headers
by Jaeden Amero
· 6 years ago
8047062
Fix typo
by Janos Follath
· 6 years ago
a96f4fe
Merge remote-tracking branch 'origin/pr/2380' into development
by Jaeden Amero
· 6 years ago
0a9f9b2
Merge remote-tracking branch 'origin/pr/2317' into development
by Jaeden Amero
· 6 years ago
db2c2ce
Merge remote-tracking branch 'origin/pr/2158' into development
by Jaeden Amero
· 6 years ago
c851b08
Merge remote-tracking branch 'origin/pr/1818' into development
by Jaeden Amero
· 6 years ago
7df1bec
Merge remote-tracking branch 'origin/pr/1520' into development
by Jaeden Amero
· 6 years ago
535ee4a
Merge remote-tracking branch 'public/pr/2421' into development
by Simon Butcher
· 6 years ago
archive/mbedtls-2.17
mbedtls-2.17
195bdde
Merge remote-tracking branch 'restricted/pr/528' into development
by Simon Butcher
· 6 years ago
74ac6e3
Merge remote-tracking branch 'public/pr/2028' into development
by Simon Butcher
· 6 years ago
bbed914
Merge remote-tracking branch 'public/pr/2447' into development
by Simon Butcher
· 6 years ago
4a51228
Reduce priority of 3DES ciphersuites
by Andres Amaya Garcia
· 7 years ago
84d9d27
Fix unused variable warning in ssl_parse_certificate_coordinate()
by Hanno Becker
· 6 years ago
6e95914
Add new function mbedtls_asn1_write_named_bitstring()
by Andres Amaya Garcia
· 7 years ago
f607813
ECP: remove extra whitespaces
by Janos Follath
· 6 years ago
52ff8e9
Fix ECDH secret export for Mongomery curves
by Janos Follath
· 6 years ago
df9295b
Make ecp_get_type public
by Janos Follath
· 6 years ago
28eb06d
ECP: Catch unsupported import/export
by Janos Follath
· 6 years ago
7780096
Fix typo in ECP module
by Janos Follath
· 6 years ago
bd5580a
Add further debug statements on assertion failures
by Hanno Becker
· 6 years ago
353a6f0
Fix typo in documentation of ssl_parse_certificate_chain()
by Hanno Becker
· 6 years ago
62d58ed
Add debug output in case of assertion failure
by Hanno Becker
· 6 years ago
6883874
Fix typo in SSL ticket documentation
by Hanno Becker
· 6 years ago
accc599
Set peer CRT length only after successful allocation
by Hanno Becker
· 6 years ago
3acc9b9
Remove question in comment about verify flags on cli vs. server
by Hanno Becker
· 6 years ago
6b8fbab
Free peer CRT chain immediately after verifying it
by Hanno Becker
· 6 years ago
0056eab
Parse peer's CRT chain in-place from the input buffer
by Hanno Becker
· 6 years ago
ae553dd
Free peer's public key as soon as it's no longer needed
by Hanno Becker
· 6 years ago
b9d4479
Correct compile-time guards for ssl_clear_peer_cert()
by Hanno Becker
· 6 years ago
e682457
Guard mbedtls_ssl_get_peer_cert() by new compile-time option
by Hanno Becker
· 6 years ago
b6c5eca
Adapt mbedtls_ssl_parse_certificate() to removal of peer_cert field
by Hanno Becker
· 6 years ago
13c327d
Adapt ssl_clear_peer_cert() to removal of `peer_cert` field
by Hanno Becker
· 6 years ago
6d1986e
Adapt mbedtls_ssl_session_copy() to removal of `peer_cert` field
by Hanno Becker
· 6 years ago
94cc26d
Adapt session ticket implementation to removal of `peer_cert` field
by Hanno Becker
· 6 years ago
2a831a4
Adapt client auth detection in ssl_parse_certificate_verify()
by Hanno Becker
· 6 years ago
a1ab9be
Adapt server-side signature verification to use raw public key
by Hanno Becker
· 6 years ago
a6899bb
Adapt client-side signature verification to use raw public key
by Hanno Becker
· 6 years ago
be7f508
Adapt ssl_get_ecdh_params_from_cert() to use raw public key
by Hanno Becker
· 6 years ago
c7d7e29
Adapt ssl_write_encrypted_pms() to use raw public key
by Hanno Becker
· 6 years ago
a274753
Make a copy of peer's raw public key after verifying its CRT chain
by Hanno Becker
· 6 years ago
7517312
Add field for peer's raw public key to TLS handshake param structure
by Hanno Becker
· 6 years ago
494dd7a
Add raw public key buffer bounds to mbedtls_x509_crt struct
by Hanno Becker
· 6 years ago
a887d1a
Remove peer CRT from cache if !MBEDTLS_SSL_KEEP_PEER_CERTIFICATE
by Hanno Becker
· 6 years ago
c966bd1
Remove peer CRT from tickets if !MBEDTLS_SSL_KEEP_PEER_CERTIFICATE
by Hanno Becker
· 6 years ago
c5fcbb3
Add peer CRT digest to session tickets
by Hanno Becker
· 6 years ago
3dad311
Parse and verify peer CRT chain in local variable
by Hanno Becker
· 6 years ago
177475a
Mitigate triple handshake attack by comparing digests only
by Hanno Becker
· 6 years ago
6bbd94c
Compute digest of peer's end-CRT in mbedtls_ssl_parse_certificate()
by Hanno Becker
· 6 years ago
9198ad1
Extend mbedtls_ssl_session by buffer holding peer CRT digest
by Hanno Becker
· 6 years ago
8d84fd8
Update version_features.c
by Hanno Becker
· 6 years ago
8273df8
Re-classify errors on missing peer CRT
by Hanno Becker
· 6 years ago
0329f75
Increase robustness and documentation of ticket implementation
by Hanno Becker
· 6 years ago
aee8717
Simplify session cache implementation via mbedtls_ssl_session_copy()
by Hanno Becker
· 6 years ago
52055ae
Give ssl_session_copy() external linkage
by Hanno Becker
· 6 years ago
c7bd780
Allow passing any X.509 CRT chain to ssl_parse_certificate_chain()
by Hanno Becker
· 6 years ago
Next »