1. 8e8ae3d Fix potential NULL dereference on bad usage by Manuel Pégourié-Gonnard · 10 years ago
  2. b26b75e Clean up RSA PMS checking code by Manuel Pégourié-Gonnard · 10 years ago
  3. e16b62c Make results of (ext)KeyUsage accessible by Manuel Pégourié-Gonnard · 10 years ago
  4. ce60fbe Fix potential timing difference with RSA PMS by Manuel Pégourié-Gonnard · 10 years ago
  5. fe44643 Rename website and repository by Manuel Pégourié-Gonnard · 10 years ago
  6. 2ee8d24 Simplify some constant-time code by Manuel Pégourié-Gonnard · 10 years ago
  7. 00ab470 cleanup library and some basic tests. Includes, add guards to includes by Rich Evans · 10 years ago
  8. 6674cce Fix potential timing issue in RSA pms handling by Manuel Pégourié-Gonnard · 10 years ago
  9. 860b516 Fix url again by Manuel Pégourié-Gonnard · 11 years ago
  10. 607d663 Add debug info for cert/suite selection by Manuel Pégourié-Gonnard · 11 years ago
  11. 085ab04 Fix website url to use https. by Manuel Pégourié-Gonnard · 11 years ago
  12. 9698f58 Remove maintainer line. by Manuel Pégourié-Gonnard · 11 years ago
  13. 19f6b5d Remove redundant "all rights reserved" by Manuel Pégourié-Gonnard · 11 years ago
  14. a658a40 Update copyright by Manuel Pégourié-Gonnard · 11 years ago
  15. 967a2a5 Change name to mbed TLS in the copyright notice by Manuel Pégourié-Gonnard · 11 years ago
  16. 59c6f2e Avoid nested if's without braces. by Manuel Pégourié-Gonnard · 11 years ago
  17. 5b8f7ea Merge new security defaults for programs (RC4 disabled, SSL3 disabled) by Paul Bakker · 11 years ago
  18. c82b7e2 Merge option to disable truncated hmac on the server-side by Paul Bakker · 11 years ago
  19. e522d0f Merge smarter certificate selection for pre-TLS-1.2 clients by Paul Bakker · 11 years ago
  20. f6080b8 Merge support for enabling / disabling renegotiation support at compile-time by Paul Bakker · 11 years ago
  21. d7e2483 Merge miscellaneous fixes into development by Paul Bakker · 11 years ago
  22. bd47a58 Add ssl_set_arc4_support() by Manuel Pégourié-Gonnard · 11 years ago
  23. e117a8f Make truncated hmac a runtime option server-side by Manuel Pégourié-Gonnard · 11 years ago
  24. f01768c Specific error for suites in common but none good by Manuel Pégourié-Gonnard · 11 years ago
  25. df331a5 Prefer SHA-1 certificates for pre-1.2 clients by Manuel Pégourié-Gonnard · 11 years ago
  26. 6458e3b Some more refactoring/tuning. by Manuel Pégourié-Gonnard · 11 years ago
  27. 846ba47 Minor refactoring by Manuel Pégourié-Gonnard · 11 years ago
  28. d942323 Skip signature_algorithms ext if PSK only by Manuel Pégourié-Gonnard · 11 years ago
  29. eaecbd3 Fix warning in reduced configs by Manuel Pégourié-Gonnard · 11 years ago
  30. 615e677 Make renegotiation a compile-time option by Manuel Pégourié-Gonnard · 11 years ago
  31. 78e745f Don't send back EtM extension if not using CBC by Manuel Pégourié-Gonnard · 11 years ago
  32. 699cafa Implement initial negotiation of EtM by Manuel Pégourié-Gonnard · 11 years ago
  33. b575b54 Forbid extended master secret with SSLv3 by Manuel Pégourié-Gonnard · 11 years ago
  34. 367381f Add negotiation of Extended Master Secret by Manuel Pégourié-Gonnard · 11 years ago
  35. 01b2699 Implement FALLBACK_SCSV server-side by Manuel Pégourié-Gonnard · 11 years ago
  36. 43c3b28 Fix memory leak with crafted ClientHello by Manuel Pégourié-Gonnard · 11 years ago
  37. 480905d Fix selection of hash from sig_alg ClientHello ext. by Manuel Pégourié-Gonnard · 11 years ago
  38. 84bbeb5 Adapt cipher and MD layer with _init() and _free() by Paul Bakker · 11 years ago
  39. accaffe Restructure ssl_handshake_init() and small fixes by Paul Bakker · 11 years ago
  40. 5b4af39 Add _init() and _free() for hash modules by Paul Bakker · 11 years ago
  41. d27680b Clarify code using PSK callback by Manuel Pégourié-Gonnard · 11 years ago
  42. 14beb08 Fix missing const by Manuel Pégourié-Gonnard · 11 years ago
  43. 08e81e0 Change selection of hash algorithm for TLS 1.2 by Manuel Pégourié-Gonnard · 11 years ago
  44. dd0c0f3 Better usage of dhm_calc_secret in SSL by Manuel Pégourié-Gonnard · 11 years ago
  45. 4d2a8eb SSL modules now using x509_crt_parse_der() by Manuel Pégourié-Gonnard · 11 years ago
  46. 66d5d07 Fix formatting in various code to match spacing from coding style by Paul Bakker · 11 years ago
  47. db20c10 Add #endif comments for #endif more than 10 lines from #if / #else by Paul Bakker · 11 years ago
  48. 3461772 Introduce polarssl_zeroize() instead of memset() for zeroization by Paul Bakker · 11 years ago
  49. 14877e6 Remove unused 'ret' variable by Paul Bakker · 11 years ago
  50. 14b16c6 Minor optimizations (original by Peter Vaskovic, modified by Paul Bakker) by Paul Bakker · 11 years ago
  51. 0f651c7 Stricter check on SSL ClientHello internal sizes compared to actual packet size by Paul Bakker · 11 years ago
  52. 61edffe Normalize "should never happen" messages/errors by Manuel Pégourié-Gonnard · 11 years ago
  53. b9e4e2c Fix formatting: fix some 'easy' > 80 length lines by Paul Bakker · 11 years ago
  54. 9af723c Fix formatting: remove trailing spaces, #endif with comments (> 10 lines) by Paul Bakker · 11 years ago
  55. cef4ad2 Adapt sources to configurable config.h name by Manuel Pégourié-Gonnard · 11 years ago
  56. a703663 Improve interop by not writing ext_len in ClientHello / ServerHello when 0 by Paul Bakker · 11 years ago
  57. c70e425 Only iterate over actual certificates in ssl_write_certificate_request() by Paul Bakker · 11 years ago
  58. 4f42c11 Remove arbitrary maximum length for cipher_list and content length by Paul Bakker · 11 years ago
  59. d893aef Force default value to curve parameter by Paul Bakker · 11 years ago
  60. 7f2a07d Check keyUsage in SSL client and server by Manuel Pégourié-Gonnard · 11 years ago
  61. f6521de Add ALPN tests to ssl-opt.sh by Manuel Pégourié-Gonnard · 11 years ago
  62. 89e3579 Implement ALPN server-side by Manuel Pégourié-Gonnard · 11 years ago
  63. 969ccc6 Fix length checking of various ClientKeyExchange's by Manuel Pégourié-Gonnard · 11 years ago
  64. b2bf5a1 Fix possible buffer overflow with PSK by Manuel Pégourié-Gonnard · 11 years ago
  65. d701c9a Fix memory leak in server with expired tickets by Manuel Pégourié-Gonnard · 11 years ago
  66. 145dfcb Fix bug with NewSessionTicket and non-blocking I/O by Manuel Pégourié-Gonnard · 11 years ago
  67. 96ea2f2 Add tests for SNI by Manuel Pégourié-Gonnard · 11 years ago
  68. 8520dac Add tests for auth_mode by Manuel Pégourié-Gonnard · 11 years ago
  69. f7c5201 Add basic tests for session resumption by Manuel Pégourié-Gonnard · 11 years ago
  70. 6b1e207 Fix verion-major intolerance by Manuel Pégourié-Gonnard · 11 years ago
  71. 7dc4c44 Library files moved to use platform layer by Paul Bakker · 11 years ago
  72. f6dc5e1 Remove temporary debug code by Manuel Pégourié-Gonnard · 11 years ago
  73. c3f6b62c Print curve name instead of size in debugging by Manuel Pégourié-Gonnard · 11 years ago
  74. de05390 Rename ecdh_curve_list to curve_list by Manuel Pégourié-Gonnard · 11 years ago
  75. 5de2580 Make ssl_set_ecdh_curves() a compile-time option by Manuel Pégourié-Gonnard · 11 years ago
  76. 987bfb5 Added the possibility to define the allowed curves for ECDHE handshake. It also defines the preference of the curves. by Gergely Budai · 12 years ago
  77. 5538970 Add server support for ECDH key exchanges by Manuel Pégourié-Gonnard · 12 years ago
  78. 1a9f2c7 Add option to respect client ciphersuite order by Manuel Pégourié-Gonnard · 12 years ago
  79. 011a8db Complete refactoring of ciphersuite choosing by Manuel Pégourié-Gonnard · 12 years ago
  80. 3252560 Move some functions up by Manuel Pégourié-Gonnard · 12 years ago
  81. 59b81d7 Refactor ciphersuite selection for version > 2 by Manuel Pégourié-Gonnard · 12 years ago
  82. da1ff38 Don't accept CertificateRequest with PSK suites by Manuel Pégourié-Gonnard · 12 years ago
  83. dc953e8 Add missing defines/cases for RSA_PSK key exchange by Manuel Pégourié-Gonnard · 12 years ago
  84. a9a028e SSL now gracefully handles missing RNG by Paul Bakker · 12 years ago
  85. 31ff1d2 Safer buffer comparisons in the SSL modules by Manuel Pégourié-Gonnard · 12 years ago
  86. 21ef42f Don't select a PSK ciphersuite if no key available by Manuel Pégourié-Gonnard · 12 years ago
  87. 45a2c8d Prevent possible alignment warnings on casting from char * to 'aligned *' by Paul Bakker · 12 years ago
  88. 677377f Server does not send out extensions not advertised by client by Paul Bakker · 12 years ago
  89. f34673e Merged RSA-PSK key-exchange and ciphersuites by Paul Bakker · 12 years ago
  90. 376e815 Merged ECDHE-PSK ciphersuites by Paul Bakker · 12 years ago
  91. bac0e3b Dependency fixes by Manuel Pégourié-Gonnard · 12 years ago
  92. 09258b9 Refactor parse_server_key_exchange a bit by Manuel Pégourié-Gonnard · 12 years ago
  93. 8a3c64d Fix and simplify *-PSK ifdef's by Manuel Pégourié-Gonnard · 12 years ago
  94. 0fae60b Implement RSA-PSK key exchange by Manuel Pégourié-Gonnard · 12 years ago
  95. b9cfaa0 Explicit conversions and minor changes to prevent MSVC compiler warnings by Paul Bakker · 12 years ago
  96. 1b62c7f Fix dependencies and related issues by Manuel Pégourié-Gonnard · 12 years ago
  97. bd1ae24 Factor PSK pms computation to ssl_tls.c by Manuel Pégourié-Gonnard · 12 years ago
  98. b59d699 Fix bugs in ECDHE_PSK key exchange by Manuel Pégourié-Gonnard · 12 years ago
  99. 3ce3bbd Add support for ECDHE_PSK key exchange by Manuel Pégourié-Gonnard · 12 years ago
  100. beccd9f Explicit void pointer cast for buggy MS compiler by Paul Bakker · 12 years ago