- c94b6b0 Homogenize coding patterns by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- 0b3bde5 Silence MSVC type conversion warnings by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- f10d289 Simplify sign selection by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- 5325b97 Avoid UB caused by conversion to int by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- 464fe6a Use bit operations for mpi_safe_cond_swap() by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- c3be399 Use bit operations for mpi_safe_cond_assign() by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- eaafa49 Avoid using == for sensitive comparisons by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- e10e8db Use constant-time look-up for modular exponentiation by Manuel Pégourié-Gonnard · 4 years, 5 months ago
- c4c0d81 Merge branch 'development_2.x' into development_2.x-restricted by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- 7a4c758 Merge pull request #4541 from mpg/fix-ssl-cf-hmac-alt-2.x by Gilles Peskine · 4 years, 2 months ago
- 74f66bb Fix non-constant-time comparison in mbedtls_mpi_random by Gilles Peskine · 4 years, 4 months ago
- 62da8ac Merge pull request #4276 from gilles-peskine-arm/random-range-uniformity by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- 23422e4 Note that the byte order in mpi_fill_random_internal() is deliberate by Gilles Peskine · 4 years, 2 months ago
- c0b68bf Use MBEDTLS_MPI_CHK where warranted by Gilles Peskine · 4 years, 2 months ago
- 3130ce2 New internal function mbedtls_mpi_resize_clear by Gilles Peskine · 4 years, 2 months ago
- 1177907 Use ternary operator with the most common case first by Gilles Peskine · 4 years, 2 months ago
- 3f61363 Correct some comments about ECC in mbedtls_mpi_random by Gilles Peskine · 4 years, 4 months ago
- 104eb82 DHM: add notes about leading zeros by Gilles Peskine · 4 years, 4 months ago
- a16001e mpi_fill_random_internal: remove spurious grow() call by Gilles Peskine · 4 years, 4 months ago
- e39ee8e MPI random test: use more iterations for small numbers by Gilles Peskine · 4 years, 4 months ago
- ef13251 Contextualize comment about mbedtls_mpi_random retries by Gilles Peskine · 4 years, 4 months ago
- 8f45470 Fix mbedtls_mpi_random when N has leading zeros by Gilles Peskine · 4 years, 4 months ago
- 16e3668 DHM: use mbedtls_mpi_random for blinding and key generation by Gilles Peskine · 4 years, 4 months ago
- 58df4c9 dhm_check_range: microoptimization by Gilles Peskine · 4 years, 4 months ago
- 87fdb1f DHM refactoring: use dhm_random_below in dhm_make_common by Gilles Peskine · 4 years, 4 months ago
- b4e815f DHM blinding: don't accept P-1 as a blinding value by Gilles Peskine · 4 years, 4 months ago
- 0853bb2 DHM refactoring: unify mbedtls_dhm_make_{params,public} by Gilles Peskine · 4 years, 4 months ago
- 6466d34 ECP: use mbedtls_mpi_random for blinding by Gilles Peskine · 4 years, 4 months ago
- aeab0fb Preserve MBEDTLS_ERR_ECP_RANDOM_FAILED in case of a hostile RNG by Gilles Peskine · 4 years, 4 months ago
- 9312ba5 mbedtls_mpi_random: check for invalid arguments by Gilles Peskine · 4 years, 4 months ago
- 4699fa4 Move mbedtls_mpi_random to the bignum module by Gilles Peskine · 4 years, 4 months ago
- 7967ec5 mbedtls_ecp_gen_privkey_sw: generalize to mbedtls_mpi_random by Gilles Peskine · 4 years, 4 months ago
- eadf31d mbedtls_ecp_gen_privkey_mx: simplify the size calculation logic by Gilles Peskine · 4 years, 5 months ago
- 4f77674 mbedtls_ecp_gen_privkey_mx: make bit manipulations unconditional by Gilles Peskine · 4 years, 5 months ago
- 6acfc9c mbedtls_ecp_gen_privkey_mx: remove the exception for all-zero by Gilles Peskine · 4 years, 5 months ago
- 3838f28 mbedtls_ecp_gen_privkey_mx: rename n_bits to high_bit by Gilles Peskine · 4 years, 5 months ago
- de33213 mbedtls_ecp_gen_privkey: create subfunctions for each curve type by Gilles Peskine · 4 years, 5 months ago
- 570a8cd Fix null pointer arithmetic in error case by Gilles Peskine · 4 years, 2 months ago
- 9df7209 Merge pull request #4546 from Patater/psa-without-genprime-fix-2.x by Ronald Cron · 4 years, 2 months ago
- 66c616a CAMELLIA: add missing context init/free by Gilles Peskine · 4 years, 2 months ago
- ccbbb2c ARIA: add missing context init/free by Gilles Peskine · 4 years, 2 months ago
- c17f293 psa: Support RSA signature without MBEDTLS_GENPRIME by Jaeden Amero · 4 years, 3 months ago
- d76f7ba Merge pull request #4529 from hanno-arm/ssl_session_cache_fix_backport_2x by Janos Follath · 4 years, 3 months ago
- d135b57 Merge pull request #4412 from gilles-peskine-arm/undefined-reference-2.27 by Gilles Peskine · 4 years, 3 months ago
- a33cb76 Merge pull request #4493 from netfoundry/gcc11.fixes_2.x by Gilles Peskine · 4 years, 3 months ago
- 05c11e3 Merge pull request #4503 from gilles-peskine-arm/ciphersuite-sha384-guard-2.x by Gilles Peskine · 4 years, 3 months ago
- ad0e012 Fix missing compilation guard around psa_crypto_driver_wrappers.c by Gilles Peskine · 4 years, 3 months ago
- c54010c Split SHA-512 and SHA-384 guards for hash availability code by Gilles Peskine · 4 years, 3 months ago
- fc9c07f Fix unused variable with MBEDTLS_SHA512_NO_SHA384 by Gilles Peskine · 4 years, 3 months ago
- d2d5937 Remove dead code under MBEDTLS_SHA512_NO_SHA384 by Gilles Peskine · 4 years, 3 months ago
- 367379d Fix dependencies on SHA384 cipher suites by Gilles Peskine · 4 years, 3 months ago
- 3d23e28 Fix dependency for TLS-RSA-WITH-CAMELLIA-256-GCM-SHA384 by Gilles Peskine · 4 years, 3 months ago
- 21bfbdd Fix misuse of MD API in SSL constant-flow HMAC by Manuel Pégourié-Gonnard · 4 years, 3 months ago
- 83e3671 Don't check ciphersuite and compression in SSL session cache lookup by Hanno Becker · 4 years, 4 months ago
- 48f052f mbedtls_ecp_gen_privkey: minor refactoring by Gilles Peskine · 4 years, 5 months ago
- 54650b3 Merge pull request #4505 from d3zd3z/bp2x-posix-define by Gilles Peskine · 4 years, 3 months ago
- bed4e9e Merge pull request #4357 from gabor-mezei-arm/3267_Implement_psa_sign_message_and_verify by Gilles Peskine · 4 years, 3 months ago
- bb66dac Fix spurious -Wstringop-overflow with GCC 11.1 by Gilles Peskine · 4 years, 3 months ago
- a79c30b Check if feature macro is defined before define it by Flavio Ceolin · 5 years ago
- 4e54f25 avoid "maybe-uninitialized" and "free-nonheap-object" errors/warnings with gcc11 by Shawn Carey · 4 years, 3 months ago
- f25c976 Enable fallback to software implementation in psa_sign/verify_message driver by gabor-mezei-arm · 4 years, 3 months ago
- c979578 Unify variable type and rename to be unambiguous by gabor-mezei-arm · 4 years, 3 months ago
- 63c7a66 Update documentation by gabor-mezei-arm · 4 years, 3 months ago
- bbb1952 Refactor out mac_sign_setup and mac_verify_setup by Steven Cooreman · 4 years, 3 months ago
- f8ad212 Be explicit about why the zero-length check is there by Steven Cooreman · 4 years, 3 months ago
- a6474de Supply actual key bits to PSA_MAC_LENGTH during MAC setup by Steven Cooreman · 4 years, 3 months ago
- 9621f44 Correctly mark unused arguments when MAC algorithms are compiled out by Steven Cooreman · 4 years, 3 months ago
- 63fa40e Add sanity tests for CMAC-(3)DES through PSA Crypto by Steven Cooreman · 4 years, 3 months ago
- aaf9944 Use the proper define guards in the MAC driver by Steven Cooreman · 4 years, 3 months ago
- 2a18f56 Remove superfluous checking from MAC driver by Steven Cooreman · 4 years, 3 months ago
- 15f0d92 Move is_sign and mac_size checking back to PSA core scope by Steven Cooreman · 4 years, 3 months ago
- bd1f608 Minor documentation and language fixes by Steven Cooreman · 4 years, 3 months ago
- dba0644 Remove superfluous check by Steven Cooreman · 4 years, 3 months ago
- e68bb52 Remove unused variable from MAC driver structure by Steven Cooreman · 4 years, 3 months ago
- af81a71 Remove superfluous length check by Steven Cooreman · 4 years, 3 months ago
- 9878a16 Code flow and style improvements by Steven Cooreman · 4 years, 3 months ago
- 22dea1d Base the PSA implementation of TLS 1.2 PRF on the MAC API by Steven Cooreman · 4 years, 3 months ago
- b27e350 Make HKDF use the generic MAC API by Steven Cooreman · 4 years, 3 months ago
- 4f7cae6 Rename HMAC operation structure by Steven Cooreman · 4 years, 3 months ago
- a2a1b80 Make safer_memcmp available to all compile units under PSA by Steven Cooreman · 4 years, 3 months ago
- b4b9b28 Remove redundant key_set from MAC operation structure by Steven Cooreman · 4 years, 3 months ago
- 6e6451e Code flow/readability improvements after review by Steven Cooreman · 4 years, 3 months ago
- 5c85ef0 Remove unused items from MAC operation context structure by Steven Cooreman · 4 years, 3 months ago
- 2d9a3f9 Add testing of the MAC driver entry points by Steven Cooreman · 4 years, 3 months ago
- f64b25e Rename internal HMAC structure type to match convention by Steven Cooreman · 4 years, 5 months ago
- 76720f6 Complete, document and fully use internal HMAC API by Steven Cooreman · 4 years, 5 months ago
- 87885df Migrate MAC finish calls into the software driver by Steven Cooreman · 4 years, 5 months ago
- 11743f9 Migrate MAC update call into the software driver by Steven Cooreman · 4 years, 5 months ago
- 0789783 Migrate MAC setup/abort calls into the software driver by Steven Cooreman · 4 years, 5 months ago
- 32d5694 Move internal HMAC implementation into internal MAC driver by Steven Cooreman · 4 years, 5 months ago
- 6e3c2cb Move the MAC operation structure into the driver headers by Steven Cooreman · 4 years, 5 months ago
- 896d51e Add boilerplate for dispatching MAC operations by Steven Cooreman · 4 years, 5 months ago
- a7b9b20 Change the driver calling logic for psa_sign/verify_messsage by gabor-mezei-arm · 4 years, 3 months ago
- f3c5c86 Rename sign/verify builtin functions called by driver wrapper functions by gabor-mezei-arm · 4 years, 3 months ago
- ef6f2aa Return error if algorithm is not hash-then-sign for psa_sign_message by gabor-mezei-arm · 4 years, 3 months ago
- 5698048 Use bool variable instead of enum values by gabor-mezei-arm · 4 years, 3 months ago
- 12ff4d5 Fix documentation by gabor-mezei-arm · 4 years, 3 months ago
- dd05aab Use switch-case for error handling by gabor-mezei-arm · 4 years, 3 months ago
- 9719a84 Fix for algorithms other than hash-then-sign by gabor-mezei-arm · 4 years, 3 months ago
- fc8d0ae Use driver-wrapper functions for psa_sign/verify_message by gabor-mezei-arm · 4 years, 3 months ago