1. c93b80c Rename *KEYPAIR* to *KEY_PAIR* by Gilles Peskine · 6 years ago
  2. a99d3fb Rename generator functions to psa_key_derivation_xxx by Gilles Peskine · 6 years ago
  3. 5a5a79a Rename psa_generate_key() and psa_generator_import_key() by Adrian L. Shaw · 6 years ago
  4. 87a5e56 Rename functions that inject key material to an allocated handle by Gilles Peskine · 6 years ago
  5. bd5580a Add further debug statements on assertion failures by Hanno Becker · 6 years ago
  6. 62d58ed Add debug output in case of assertion failure by Hanno Becker · 6 years ago
  7. ae553dd Free peer's public key as soon as it's no longer needed by Hanno Becker · 6 years ago
  8. a6899bb Adapt client-side signature verification to use raw public key by Hanno Becker · 6 years ago
  9. be7f508 Adapt ssl_get_ecdh_params_from_cert() to use raw public key by Hanno Becker · 6 years ago
  10. c7d7e29 Adapt ssl_write_encrypted_pms() to use raw public key by Hanno Becker · 6 years ago
  11. 8273df8 Re-classify errors on missing peer CRT by Hanno Becker · 6 years ago
  12. 77adddc Make use of macro and helper detecting whether CertRequest allowed by Hanno Becker · 6 years ago
  13. 86016a0 Merge remote-tracking branch 'origin/pr/2338' into development by Jaeden Amero · 6 years ago
  14. 9f47f82 Merge remote-tracking branch 'origin/pr/2391' into development by Jaeden Amero · 6 years ago
  15. 0a94a64 Add debugging output to confirm that PSA was used for ECDHE by Hanno Becker · 7 years ago
  16. c14a3bb Make variable in ssl_write_client_key_exchange() more descriptive by Hanno Becker · 7 years ago
  17. 4a63ed4 Implement ClientKeyExchange writing in PSA-based ECDHE suites by Hanno Becker · 7 years ago
  18. bb89e27 Implement ServerKeyExchange parsing for PSA-based ECDHE suites by Hanno Becker · 7 years ago
  19. b2964cb SSL/TLS client: Remove old session ticket on renegotiation by Hanno Becker · 7 years ago
  20. c470b6b Merge development commit 8e76332 into development-psa by Andrzej Kurek · 7 years ago
  21. 3fbdada SSL: Make use of the new ECDH interface by Janos Follath · 7 years ago
  22. 520224e Rename ssl_conf_has_[raw_]_psk to ssl_conf_has_static_[raw_]psk by Hanno Becker · 7 years ago
  23. afd311e Skip PMS generation on client if opaque PSK is used by Hanno Becker · 7 years ago
  24. dfab8e2 Allow opaque PSKs in pure-PSK ciphersuites only by Hanno Becker · 7 years ago
  25. 2e4f616 Don't suggest the use of a PSK suite if no PSK configured on client by Hanno Becker · 7 years ago
  26. de13963 Merge remote-tracking branch 'restricted/pr/520' into development-restricted-proposed by Simon Butcher · 7 years ago
  27. c37423f Fix misleading sub-state name and comments by Manuel Pégourié-Gonnard · 7 years ago
  28. 8df1023 Add explicit unsigned-to-signed integer conversion by Hanno Becker · 7 years ago
  29. 0c161d1 Fix bounds check in ssl_parse_server_psk_hint() by Hanno Becker · 7 years ago
  30. 1c1c20e Fix some whitespace issues by Manuel Pégourié-Gonnard · 7 years ago
  31. 125af94 Merge branch 'development-restricted' into iotssl-1260-non-blocking-ecc-restricted by Manuel Pégourié-Gonnard · 7 years ago
  32. 552754a Merge remote-tracking branch 'public/pr/1988' into development by Simon Butcher · 7 years ago
  33. 68dbc94 Merge remote-tracking branch 'public/pr/1951' into development by Simon Butcher · 7 years ago
  34. 9d5a9e1 Merge remote-tracking branch 'public/pr/1625' into development by Simon Butcher · 7 years ago
  35. bc2498a Style: Add numerous comments indicating condition guarded by #endif by Hanno Becker · 7 years ago
  36. 327c93b Add parameter to ssl_read_record() controlling checksum update by Hanno Becker · 7 years ago
  37. 3879fdf Merge remote-tracking branch 'public/pr/1955' into iotssl-165-dtls-hs-fragmentation-new by Manuel Pégourié-Gonnard · 7 years ago
  38. ad17fe9 Fix overly strict bounds check in ssl_parse_certificate_request() by Hanno Becker · 7 years ago
  39. 87a346f Always save flight first, (re)send later by Manuel Pégourié-Gonnard · 8 years ago
  40. 31c1586 Start separating handshake from record writing by Manuel Pégourié-Gonnard · 8 years ago
  41. cac0c1a Merge remote-tracking branch 'upstream-public/pr/1378' into development by Jaeden Amero · 7 years ago
  42. df15356 Merge remote-tracking branch 'public/pr/1663' into development by Simon Butcher · 7 years ago
  43. 755bb6a Add ecc extensions only if ecc ciphersuite is used by Ron Eldor · 7 years ago
  44. 79d9b50 Merge branch 'development' into iotssl-1260-non-blocking-ecc-restricted by Manuel Pégourié-Gonnard · 7 years ago
  45. d8213d0 Let MBEDTLS_SSL_MAX_CONTENT_LEN to be split into outward & inward sizes by Angus Gratton · 9 years ago
  46. 5f57f1e Merge remote-tracking branch 'public/pr/1270' into development by Simon Butcher · 7 years ago
  47. 558da9c Make SSL error code more generic by Manuel Pégourié-Gonnard · 7 years ago
  48. da19f4c Merge branch 'development' into iotssl-1260-non-blocking-ecc-restricted by Manuel Pégourié-Gonnard · 7 years ago
  49. b5b2543 Fix undefined shifts by Philippe Antoine · 7 years ago
  50. 747fd53 Fixes different off by ones by Philippe Antoine · 7 years ago
  51. 11999bb Fix minor code style issues by Darryl Green · 7 years ago
  52. a331e0f Merge remote-tracking branch 'upstream-restricted/pr/421' into development-proposed by Jaeden Amero · 7 years ago
  53. 03bac44 Change accepted ciphersuite versions when parsing server hello by Andrzej Kurek · 7 years ago
  54. ca1d742 mbedtls_ssl_get_key_exchange_md_tls1_2: return hashlen by Gilles Peskine · 7 years ago
  55. 1d3b508 Same ciphersuite validation in server and client hello by Mohammad Azim Khan · 7 years ago
  56. f2b76cd Merge remote-tracking branch 'upstream-restricted/pr/461' into development-restricted-proposed by Gilles Peskine · 7 years ago
  57. 1f6301b Rename mbedtls_zeroize to mbedtls_platform_zeroize by Andres Amaya Garcia · 7 years ago
  58. e32df08 Remove individual copies of mbedtls_zeroize() by Andres Amaya Garcia · 8 years ago
  59. 94d4997 Improve comments style by Krzysztof Stachowiak · 7 years ago
  60. cd09fc8 Remove a redundant test by Krzysztof Stachowiak · 7 years ago
  61. 73b183c Add buffer size check before cert_type_len read by Krzysztof Stachowiak · 7 years ago
  62. f15a8be Merge remote-tracking branch 'upstream-public/pr/1256' into development-proposed by Gilles Peskine · 7 years ago
  63. bc231cc Add a missing buffer size check by Krzysztof Stachowiak · 7 years ago
  64. bc145f7 Correct buffer size check by Krzysztof Stachowiak · 7 years ago
  65. d1fedc5 Merge remote-tracking branch 'upstream-public/pr/1440' into development-proposed by Jaeden Amero · 7 years ago
  66. 95ad522 Merge remote-tracking branch 'upstream-public/pr/1439' into development-proposed by Jaeden Amero · 7 years ago
  67. 5224a75 Prevent arithmetic overflow on bounds check by Krzysztof Stachowiak · 7 years ago
  68. 740b218 Add bounds check before length read by Krzysztof Stachowiak · 7 years ago
  69. 027f84c Prevent arithmetic overflow on bounds check by Krzysztof Stachowiak · 7 years ago
  70. a1098f8 Add bounds check before signature length read by Krzysztof Stachowiak · 7 years ago
  71. d5f7d24 Merge branch 'pr_1064' into development-proposed by Gilles Peskine · 7 years ago
  72. d91f2a2 Merge branch 'development' into iotssl-1251-2.7 by Gilles Peskine · 8 years ago
  73. 4e5d23f corrected a typo in a comment by Johannes H · 8 years ago
  74. 0884f48 Merge remote-tracking branch 'upstream-public/pr/1141' into development by Gilles Peskine · 8 years ago
  75. 9c3573a Merge remote-tracking branch 'upstream-public/pr/988' into development by Gilles Peskine · 8 years ago
  76. 40f8b51 Add comments on the use of the renego SCSV and the renego ext by Hanno Becker · 8 years ago
  77. 6bce9cb Always print gmt_unix_time in TLS client by Andres Amaya Garcia · 8 years ago
  78. 1a9a51c Enhance documentation of ssl_write_hostname_ext, adapt ChangeLog. by Hanno Becker · 8 years ago
  79. 074c58f Always print gmt_unix_time in TLS client by Andres Amaya Garcia · 8 years ago
  80. 2f38a43 Enhance documentation of ssl_write_hostname_ext, adapt ChangeLog. by Hanno Becker · 8 years ago
  81. 4a2fb4c Addres review comments by Ron Eldor · 8 years ago
  82. 147d142 Add log and fix stle issues by Ron Eldor · 8 years ago
  83. 714785d Write correct number of ciphersuites in log by Ron Eldor · 8 years ago
  84. 0b23f16 SSL: rework restart state handling by Manuel Pégourié-Gonnard · 8 years ago
  85. 15d7df2 Introduce mbedtls_pk_restart_ctx and use it by Manuel Pégourié-Gonnard · 8 years ago
  86. 6b7301c Change restart context type. by Manuel Pégourié-Gonnard · 8 years ago
  87. d27d1a5 Clean up existing SSL restartable ECC code by Manuel Pégourié-Gonnard · 8 years ago
  88. 23e4162 ECDH: not restartable unless explicitly enabled by Manuel Pégourié-Gonnard · 8 years ago
  89. 1f1f2a1 Adapt ServerKeyEchange processing to restart by Manuel Pégourié-Gonnard · 8 years ago
  90. 862cde5 Add restart support for ECDSA client auth by Manuel Pégourié-Gonnard · 8 years ago
  91. 2350b4e Adapt ECDHE_ECDSA key exchange to restartable EC by Manuel Pégourié-Gonnard · 8 years ago
  92. 46f5a3e Check return codes from MD in ssl code by Andres Amaya Garcia · 8 years ago
  93. f0e521e Change ssl_cli to new MD API and check return code by Andres Amaya Garcia · 8 years ago
  94. 53c77cc Initialise pointers to avoid IAR compiler warnings by Andres Amaya Garcia · 8 years ago
  95. af0665d Simplify retaining of messages for future processing by Hanno Becker · 8 years ago
  96. 383a118 Merge remote-tracking branch 'gilles/IOTSSL-1330/development' into development by Manuel Pégourié-Gonnard · 8 years ago
  97. cd3c845 Allow SHA-1 in SSL renegotiation tests by Gilles Peskine · 8 years ago
  98. 0d0cd4b Split long lines by Hanno Becker · 8 years ago
  99. 1aa267c Introduce macros and functions to characterize certain ciphersuites. by Hanno Becker · 8 years ago
  100. c94f735 Ignore failures when sending fatal alerts by Gilles Peskine · 8 years ago