- c46edd4 Fix/Improve documentation by Ronald Cron · 11 months ago
- 9f44c88 Rename some "new_session_tickets" symbols by Ronald Cron · 11 months ago
- ba45a44 Move session tickets getter functions to ssl_misc.h by Ronald Cron · 11 months ago
- 97dc583 Improve debug logs by Ronald Cron · 11 months ago
- d67f801 Do not add a new field in the SSL config by Ronald Cron · 11 months ago
- b675b2b TLS 1.3: Ignore tickets if disabled at runtime by Ronald Cron · 11 months ago
- bedddd7 Add mbedtls_ssl_conf_enable_new_session_tickets() API by Ronald Cron · 11 months ago
- 57dbd69 TLS 1.3 server: move crypto_init after protocol negotiation by Gilles Peskine · 11 months ago
- 5047627 Error translation and init are needed in PSK-only builds as well by Gilles Peskine · 11 months ago
- 069bccd Call psa_crypto_init in the library when required for TLS 1.3 by Gilles Peskine · 12 months ago
- 86a4c25 Merge pull request #9499 from waleed-elmelegy-arm/fix-legacy-compression-issue-3.6 by Gilles Peskine · 12 months ago
- df0ef8a Merge pull request #9281 from mpg/rsapub by Gilles Peskine · 12 months ago
- a1c4f4c Improve comments explaining legacy_methods_compression handling by Waleed Elmelegy · 1 year, 1 month ago
- 3918598 Correct a small typo in ssl_tls13_parse_client_hello() by Waleed Elmelegy · 1 year, 1 month ago
- 566ed54 Improve handling of legacy_compression_methods in ssl_tls13_parse_client_hello() by Waleed Elmelegy · 1 year, 2 months ago
- 41e0cdf Fix issue in handling legacy_compression_methods in ssl_tls13_parse_client_hello() by Waleed Elmelegy · 1 year, 2 months ago
- 5f31697 Add header for mbedtls_mpi_exp_mod_unsafe() by Janos Follath · 12 months ago
- 273d07b Merge pull request #9240 from gilles-peskine-arm/psa-keystore-dynamic-3.6 by Manuel Pégourié-Gonnard · 12 months ago
- 82976f3 Make mbedtls_mpi_exp_mod_unsafe internal by Janos Follath · 12 months ago
- 11cac75 Simplify and explain the overflow check for maximum slice length by Gilles Peskine · 12 months ago
- 9183ba1 Add overflow check for maximum key slot length by David Horstmann · 12 months ago
- 4312491 Tweak macro check to allow 3 extra key slices by David Horstmann · 12 months ago
- a8e13d7 Fix incorrect comments on slice numbering by David Horstmann · 12 months ago
- afb2079 Clean up initialization in _core_exp_mod() by Janos Follath · 12 months ago
- 8786dd7 Disable optionally safe test hook in threading builds by Janos Follath · 12 months ago
- a112691 Fix optionally safe hooks declarations by Janos Follath · 12 months ago
- 9d72df8 Optimise public RSA operations by Janos Follath · 12 months ago
- 2c62441 Fix mpi_core_exp_mod documentation by Janos Follath · 12 months ago
- 68c0e3d Fix Mbed-TLS build when WIN32_LEAN_AND_MEAN macro is defined globally by Sergey Markelov · 12 months ago
- e0842aa Add tests for optionally safe codepaths by Janos Follath · 12 months ago
- 020b9ab Use actual exponent size for window calculation by Janos Follath · 12 months ago
- a5fc8f3 Move _public parameters next to their target by Janos Follath · 12 months ago
- 0c292b2 Make MBEDTLS_MPI_IS_PUBLIC thumb friendly by Janos Follath · 12 months ago
- 90b4271 Move MBEDTLS_MPI_IS_* macros to bignum_core.h by Janos Follath · 12 months ago
- bb3f295 Move mixed security code to small local functions by Janos Follath · 12 months ago
- 38ff70e Make _optionally_safe functions internal by Janos Follath · 12 months ago
- 7f9470a Merge pull request #9451 from minosgalanakis/fix-v3.6-issues-9186-and-9188-bp by Gilles Peskine · 12 months ago
- 1dfb6b5 Clarify some internal documentation by Gilles Peskine · 12 months ago
- ac43de0 Make integer downsizing explicit by Gilles Peskine · 1 year, 2 months ago
- 3bc9d2b Dynamic key store: make full-key-store tests work effectively by Gilles Peskine · 1 year, 2 months ago
- a81282c Microoptimizations when MBEDTLS_PSA_KEY_STORE_DYNAMIC is disabled by Gilles Peskine · 1 year, 2 months ago
- e8199f5 Dynamic key store: implementation by Gilles Peskine · 1 year, 2 months ago
- 47ad2f7 psa_key_slot_t: different fields in free vs occupied slots by Gilles Peskine · 1 year, 2 months ago
- 5064af6 Dynamic key store: preparatory refactoring by Gilles Peskine · 1 year, 2 months ago
- 3b41e1d Merge pull request #9403 from gilles-peskine-arm/psa-keystore-dynamic-prep-3.6 by Gilles Peskine · 12 months ago
- 5eca402 Fix inverted assertion message by Gilles Peskine · 12 months ago
- 4a85ff3 Rename one more deprecated identifier by Gilles Peskine · 1 year, 1 month ago
- 0d619b2 Documentation improvements by Gilles Peskine · 1 year, 1 month ago
- 52504f8 Rename internal function psa_key_production_parameters_are_default by Gilles Peskine · 1 year, 2 months ago
- f36d785 Implement psa_generate_key_custom by Gilles Peskine · 1 year, 2 months ago
- 4d0d0ec Move the -Wmissing-prototypes option from library/CMakeLists.txt to the top-level CMakeLists.txt for GCC & Clang by Michael Schuster · 1 year, 2 months ago
- 5be4fd7 Fix build of v3.6 with unset MBEDTLS_DHM_C but MBEDTLS_USE_PSA_CRYPTO set (fixes #9188) by Michael Schuster · 1 year, 2 months ago
- c9184fe Fix server mode only build of v3.6 with MBEDTLS_SSL_CLI_C unset (fixes #9186) by Michael Schuster · 1 year, 2 months ago
- 7dea096 Fix overlap between volatile keys and built-in keys by Gilles Peskine · 1 year, 1 month ago
- 708ec09 Assert that the key ID range for volatile keys is large enough by Gilles Peskine · 1 year, 1 month ago
- b6bf370 Assert that key ID ranges don't overlap by Gilles Peskine · 1 year, 2 months ago
- d72ad73 Prevent mbedtls_psa_register_se_key with volatile keys by Gilles Peskine · 1 year, 2 months ago
- 86c6037 Reorder blocks to avoid double negations by Gilles Peskine · 1 year, 2 months ago
- 4804847 Make it possible to enable CTR_DRBG/PSA without a PSA AES driver by Gilles Peskine · 1 year, 2 months ago
- cd693c3 MBEDTLS_STATIC_ASSERT: make it work outside of a function by Gilles Peskine · 1 year, 2 months ago
- 83da5ab Fix typo in platform_util.c by Michael Grand (TrustnGo) · 1 year, 2 months ago
- 422a276 Merge pull request #9045 from Troy-Butler/handle-null-args by Gilles Peskine · 1 year, 1 month ago
- 41204b8 Merge pull request #9272 from sezrab/silence-3.6 by Gilles Peskine · 1 year, 1 month ago
- c030418 Merge pull request #9341 from gilles-peskine-arm/psa_cipher_decrypt-ccm_star-iv_length_enforcement-3.6 by Gilles Peskine · 1 year, 1 month ago
- acef7b3 Merge pull request #9132 from andre-rosa/check-overflow-when-reading-padding-len-on-aes-128-cbc-decryption-for-mbedtls-3.6 by Gilles Peskine · 1 year, 1 month ago
- b47c3b3 psa_cipher_decrypt CCM*: fix rejection of messages shorter than 3 bytes by Gilles Peskine · 1 year, 1 month ago
- 75ed587 Add optionally unsafe variant of exp_mod for perf by Manuel Pégourié-Gonnard · 1 year, 2 months ago
- 38bc960 Silence gcc 12.2.0 warning by Patrick Wildt · 1 year, 3 months ago
- 8fb5df8 Merge pull request #9248 from sezrab/fix-function-parameter-3.6 by Tom Cosgrove · 1 year, 2 months ago
- 07f9459 Merge pull request #9245 from lhuang04/mbedtls_3_6_psk_null_back_port by Tom Cosgrove · 1 year, 2 months ago
- 9722fd1 Fix incorrect array length in function prototype by Sam Berry · 1 year, 2 months ago
- 6d4d94f Set psk to NULL in ssl_psk_remove -backpor to 3.6 by lhuang04 · 1 year, 2 months ago
- 400659b Use unsigned long rather than size_t for format string readability by Gilles Peskine · 1 year, 2 months ago
- eeb4ff5 Fix uint32_t printed as unsigned int by Gilles Peskine · 1 year, 2 months ago
- dc49258 Guard configuration-specific code by Gilles Peskine · 1 year, 8 months ago
- b69757a Fix a compilation warning in pk.c when PSA is enabled and RSA is disabled by Gilles Peskine · 1 year, 3 months ago
- 3711734 Add invalid `padding_len` check in `get_pkcs_padding` by Andre Goddard Rosa · 1 year, 3 months ago
- c4f4ff9 Merge pull request #9085 from nileshkale123/fix/redefinition_warning_for_gnu_source_backport_3.6 by Gilles Peskine · 1 year, 3 months ago
- 67a92b7 Merge pull request #9090 from valeriosetti/issue9068-backport by Manuel Pégourié-Gonnard · 1 year, 3 months ago
- b82fbf5 md: fix guards for mbedtls_md_error_from_psa() by Valerio Setti · 1 year, 3 months ago
- 51e96ad Merge pull request #9074 from Ryan-Everett-arm/8357-fix-3.6 by Gilles Peskine · 1 year, 3 months ago
- 2a0a628 Fixed issue of redefinition warning messages for _GNU_SOURCE by nilesh.kale · 1 year, 4 months ago
- 1a3573e Clarify psa_get_and_lock_key_slot return behaviour by Ryan Everett · 1 year, 3 months ago
- 231f15b Explicitly document return behaviour by Ryan Everett · 1 year, 3 months ago
- d4ea40d Fix potential non-NULL slot return on failure by Ryan Everett · 1 year, 3 months ago
- b5a20d3 Fix error handling for secure element keys in `psa_start_key_creation` by Ryan Everett · 1 year, 9 months ago
- 3dbb502 Merge pull request #9066 from paul-elliott-arm/fix_ubsan_mp_aead_gcm_3.6 by Gilles Peskine · 1 year, 3 months ago
- 304766f Add early exit if zero length AEAD AD passed in. by Paul Elliott · 1 year, 3 months ago
- 4a350ca pk: fix unused variable in copy_from_psa() by Valerio Setti · 1 year, 4 months ago
- 974006b Merge pull request #9000 from tom-cosgrove-arm/fix-compilation-when-memcpy-is-function-like-macro-3.6 by Gilles Peskine · 1 year, 4 months ago gh-readonly-queue/mbedtls-3.6/pr-9000-79d25877ff5bb11536a09fd6e14fd0b6eba88d68
- 8d63084 tls13: Do not initiate at all resumption if tickets not supported by Ronald Cron · 1 year, 4 months ago
- 698c8e9 ssl_msg.c: Rename _check_new_session_ticket to _is_new_session_ticket by Ronald Cron · 1 year, 4 months ago
- 6071f61 tls13: cli: Ignore tickets if not supported by Ronald Cron · 1 year, 4 months ago
- 93b2c32 Constify parameter of ssl_tls13_session_load by Norbert Fabritius · 2 years, 6 months ago
- ba1de9f Enable ssl_tls13_get_ciphersuite_hash_alg only if macro is active by Norbert Fabritius · 2 years, 6 months ago
- b6ff610 Unconditionally define session variable by Norbert Fabritius · 2 years, 6 months ago
- 5e297b9 tls13: srv: Fix guards of _is_psk_(ephemeral_)available by Ronald Cron · 1 year, 4 months ago
- da0d169 Guard ticket specific TLS 1.3 function with macro by Norbert Fabritius · 2 years, 6 months ago
- ec17c1c Merge pull request #9005 from valeriosetti/issue8712-backport by Bence Szépkúti · 1 year, 4 months ago
- a53f543 pk: simplify mbedtls_pk_sign_ext() by Valerio Setti · 1 year, 5 months ago