- 3a2f75d Access ssl->hostname through abstractions by Gilles Peskine · 6 months ago
- 7ff7965 Update headers by Dave Rodgman · 1 year, 9 months ago
- 1b6c09a Switch to the new code style by Gilles Peskine · 2 years, 7 months ago
- e87c335 Fix another typo where 'PSK' was 'PKS' by Tom Cosgrove · 2 years, 8 months ago
- 49f99bc Fix typos prior to release by Tom Cosgrove · 2 years, 8 months ago
- da2fe26 Fix incorrect condition in is_compression_bad() by David Horstmann · 2 years, 9 months ago
- 1d00c3d Add comments after #endif by aditya-deshpande-arm · 2 years, 9 months ago
- b410566 Reverse logic for compression in ssl_cli.c by David Horstmann · 2 years, 9 months ago
- 08a3751 Minor style fixes to ssl_cli.c by David Horstmann · 2 years, 9 months ago
- 0955f82 Tidy up compression logic with auxiliary function by David Horstmann · 2 years, 9 months ago
- 0448de5 Simplify logic in ssl_cli.c by David Horstmann · 2 years, 9 months ago
- dbb6f08 Eliminate bad_params variable by David Horstmann · 2 years, 9 months ago
- 79bb19f Remove redundant checks for renegotiation by David Horstmann · 2 years, 9 months ago
- ee0a0e7 Fix macro-spanning ifs in ssl_cli.c by David Horstmann · 2 years, 9 months ago
- 0bb7243 Refactor macro-spanning if in ssl_tls12_client.c by David Horstmann · 2 years, 10 months ago
- 36f19b9 Include platform.h unconditionally: automatic part by Gilles Peskine · 2 years, 10 months ago
- 5205c97 Fix a/an typos in doxygen and other comments by Tom Cosgrove · 3 years ago
- df275c4 Merge remote-tracking branch 'restricted/mbedtls-2.28-restricted' into mbedtls-2.28.1rc0-pr by Dave Rodgman · 3 years, 1 month ago
- 77473eb Clarify the need for calling mbedtls_ssl_derive_keys after extension parsing by Andrzej Kurek · 3 years, 1 month ago
- c87d97b Rearrange the session resumption code by Andrzej Kurek · 3 years, 2 months ago
- d904d66 Mark static int SSL functions CHECK_RETURN_CRITICAL by Manuel Pégourié-Gonnard · 3 years, 1 month ago
- 06e1fcd Add comments when can_do() is safe to use by Manuel Pégourié-Gonnard · 3 years, 1 month ago
- a49a00c Add negative tests for opaque mixed-PSK (client) by Manuel Pégourié-Gonnard · 3 years, 2 months ago
- 0e7791f Redo of PR#5345. Fixed spelling and typographical errors found by CodeSpell. by Shaun Case · 3 years, 7 months ago
- 4b1216b Add missing key destruction calls in ssl_write_client_key_exchange by Andrzej Kurek · 3 years, 5 months ago
- 0178487 Fix missing check on server-chosen curve by Manuel Pégourié-Gonnard · 3 years, 6 months ago
- 3a95d2b psa: Fix the size of hash buffers by Ronald Cron · 3 years, 9 months ago
- 18a4494 Rename constant-time functions to have mbedtls_ct prefix by Gabor Mezei · 3 years, 9 months ago
- e24dea8 Move mbedtls_cf_memcmp to a new public header by Gabor Mezei · 3 years, 9 months ago
- 378e7eb Unify memcmp functions by gabor-mezei-arm · 4 years ago
- 944c107 Move contatnt-time memcmp functions to the contant-time module by gabor-mezei-arm · 3 years, 10 months ago
- 24647c5 Minor coding style improvement by Joe Subbiani · 4 years ago
- 2f98d79 Tidy up ssl_*.c grouped MBEDTLS_BYTE_x macros by Joe Subbiani · 4 years ago
- 23fec25 Replace remaining byte shift with macro by Joe Subbiani · 4 years ago
- a724ef9 Add more instances of Byte Reading Macros by Joe Subbiani · 4 years ago
- d3a3f21 Improve documentation and add more uses of MBEDTLS_PUT by Joe Subbiani · 4 years ago
- c54e908 Replace instances of byte reading macros with PUT by Joe Subbiani · 4 years ago
- ad1115a Use byte reading macros in places not using a byte mask by Joe Subbiani · 4 years ago
- c045dc1 Replace MBEDTLS_CHAR_x with MBEDTLS_BYTE_x by Joe Subbiani · 4 years, 1 month ago
- 6b897c9 Add Character byte reading macros by Joe Subbiani · 4 years, 1 month ago
- 0dfb7db TLS UNSUPPORTED_EXTENSION error code changes by Dave Rodgman · 4 years, 1 month ago
- dd5f624 Fix TLS alert codes by Dave Rodgman · 4 years, 1 month ago
- e8a2fc8 Enforce dhm_min_bitlen exactly, not just the byte size by Gilles Peskine · 4 years, 8 months ago
- d48d5c6 Fix size_t and longlong specifiers for MinGW by Paul Elliott · 4 years, 7 months ago
- 3891caf Misc review requested fixes by Paul Elliott · 4 years, 7 months ago
- 9f35211 Fixes for invalid printf format specifiers by Paul Elliott · 4 years, 8 months ago
- cf56a0a psa: Move from key handle to key identifier by Ronald Cron · 5 years ago
- c26f8d4 Introduce psa_key_handle_is_null inline function by Ronald Cron · 5 years ago
- 91e9515 Introduce PSA_KEY_HANDLE_INIT macro by Ronald Cron · 5 years ago
- c3ccd98 Check transport in the extension parser/writer by Johan Pascal · 4 years, 9 months ago
- 5ef72d2 Style and typos by Johan Pascal · 4 years, 9 months ago
- 275874b Fix previous commit by Johan Pascal · 4 years, 9 months ago
- 20c7db3 API modified so server side can get mki value by Johan Pascal · 4 years, 9 months ago
- adbd944 More minor fix by Johan Pascal · 4 years, 9 months ago
- 76fdf1d Minor fix and improvements by Johan Pascal · 4 years, 9 months ago
- d387aa0 style + missing cast by Johan Pascal · 4 years, 10 months ago
- 77696ee Add bound check in the client ssl_write_use_srtp_ext by Johan Pascal · 4 years, 10 months ago
- aae4d22 Improve code readability +micro optimization +style by Johan Pascal · 4 years, 10 months ago
- e79c1e8 style by Johan Pascal · 4 years, 10 months ago
- f6417ec mki length feats in a uint16_t by Johan Pascal · 4 years, 10 months ago
- 43f9490 SRTP profiles definition use macros only by Johan Pascal · 4 years, 10 months ago
- 9bc97ca SRTP-DTLS protection profile configuration list not copied into ssl_config by Johan Pascal · 4 years, 10 months ago
- a89ca86 The client shall not enforce the use of client certificate with use_srtp extension by Johan Pascal · 5 years ago
- 313d7b5 Add variable validation by Ron Eldor · 7 years ago
- 75870ec Change byte copy to memcpy by Ron Eldor · 7 years ago
- 089c9fe Improve readability by Ron Eldor · 7 years ago
- a978804 Style fixes by Ron Eldor · 7 years ago
- ef72faf Style fixes by Ron Eldor · 7 years ago
- b465539 Add tests and code to support by Ron Eldor · 7 years ago
- 12c6ead Fix mki issues by Ron Eldor · 7 years ago
- 9d36d31 Fix failure in ssl-opts.sh by Ron Eldor · 7 years ago
- 57cc70e Enforce SRTP mandatory HS messages by Ron Eldor · 7 years ago
- 591f162 support mki value by Ron Eldor · 8 years ago
- 3adb992 Add mki value and some review comments by Ron Eldor · 8 years ago
- 701984d Comply with mbedtls naming rules by Johan Pascal · 8 years ago
- bbc057a Move available dtls srtp profile list to ssl_config by Johan Pascal · 9 years ago
- b62bb51 Add RFC5764 - SRTP key generation during DTLS handshake by Johan Pascal · 10 years ago
- 6edfe60 Merge pull request #2182 from hanno-arm/key_pwd by Manuel Pégourié-Gonnard · 5 years ago
- 1e14827 Update copyright notices to use Linux Foundation guidance by Bence Szépkúti · 5 years ago
- 3c88c65 Fix debug format specifier in ClientHello ciphersuite log by Hanno Becker · 7 years ago
- ecea07d Unify ciphersuite related debug output on client and server by Hanno Becker · 7 years ago
- db09ef6 Include common.h instead of config.h in library source files by Gilles Peskine · 5 years ago
- 5ee5707 ssl_client: Align line breaking with MBEDTLS_SSL_DEBUG_* by Ronald Cron · 5 years ago
- e131bfe Return error in case of bad user configurations by Hanno Becker · 8 years ago
- 261602c Uniformize bounds checks using new macro by Hanno Becker · 8 years ago
- 4c7bbe2 Remove unnecessary MBEDTLS_ECP_C preprocessor condition by Ronald Cron · 5 years ago
- b2fff6d Shorten lines in library/ssl_cli.c to at most 80 characters by Hanno Becker · 8 years ago
- 2848239 Merge branch 'development-restricted' into prepare-rc-2.22.0-updated by Manuel Pégourié-Gonnard · 5 years ago
- 215d2e1 Merge remote-tracking branch 'restricted/pr/662' into development-restricted by Manuel Pégourié-Gonnard · 5 years ago
- 15f30dc Merge remote-tracking branch 'public/pr/2856' into development by Manuel Pégourié-Gonnard · 5 years ago
- eccd888 Rename identifiers containing double-underscore by Gilles Peskine · 5 years ago
- 4245980 USE_PSA_CRYPTO: don't rely on the curve encoding by Gilles Peskine · 6 years ago
- 73c616b Put includes in alphabetical order by Janos Follath · 6 years ago
- 865b3eb Initialize return values to an error by Janos Follath · 6 years ago
- 6527bd6 Fix issue #2718 (condition always false) by irwir · 6 years ago
- b64bf06 Parse HelloVerifyRequest: avoid buffer overread at the start by Gilles Peskine · 6 years ago
- b51130d Parse HelloVerifyRequest: avoid buffer overread on the cookie by Gilles Peskine · 6 years ago
- de718b9 Make calc_verify() return the length as well by Manuel Pégourié-Gonnard · 6 years ago
- df3b089 Use psa_raw_key_agreement by Janos Follath · 6 years ago
- 1239d70 Remove calls to psa_allocate_key by Janos Follath · 6 years ago