TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls.git
/
cd839c9aa7e8ee649e49de36bf0fe13d1be29eaa
/
library
/
ssl_cli.c
d91ede1
TinyCrypt ECDHE-PSK: Implement ClientKeyExchange writing
by Hanno Becker
· 6 years ago
c7effc0
TinyCrypt SSL: Extend scope use of TC in CliKeyExchange writing
by Hanno Becker
· 6 years ago
7352bd1
TinyCrypt SSL: Extend scope of SrvKeyExchange parsing
by Hanno Becker
· 6 years ago
b3a2448
TinyCrypt SSL: Impl. ECDH-param extraction from CRT for TinyCrypt
by Hanno Becker
· 6 years ago
27b7e50
TinyCrypt SSL: Declare EC-related TLS RFC constants in SSL namespace
by Hanno Becker
· 6 years ago
88889c6
Fixup: Add missing TinyCrypt guards
by Hanno Becker
· 6 years ago
1521ec5
Remove TinyCrypt PRNG configuration from ssl_cli.c
by Hanno Becker
· 6 years ago
7cb5c11
Missing uECC ECDSA flagging
by Jarno Lamsa
· 6 years ago
ad78931
Signature wrapper for uECC
by Jarno Lamsa
· 6 years ago
2f41b24
Remove calc_verify SSL function pointer
by Hanno Becker
· 6 years ago
533f5b1
Remove ssl_optimize_checksum()
by Hanno Becker
· 6 years ago
4009d8f
Make function mbedtls_ssl_set_hostname(...) as optional
by Teppo Järvelin
· 6 years ago
f0f01e1
Merge remote-tracking branch 'origin/pr/630' into baremetal
by Simon Butcher
· 6 years ago
434ab19
Merge remote-tracking branch 'origin/pr/629' into baremetal
by Simon Butcher
· 6 years ago
b72fc6a
Don't use const var in initialization of another const var
by Hanno Becker
· 6 years ago
8295ff0
tinyCrypt: Don't store public ECDH-share in handshake struct
by Hanno Becker
· 6 years ago
29d1655
Add MBEDTLS_ECDH_C guards to ECDH code-paths using legacy ECDH
by Hanno Becker
· 6 years ago
975b9ee
Fix guards around use of legacy ECDH context
by Hanno Becker
· 6 years ago
621113f
tinyCrypt: Write client's key share
by Hanno Becker
· 6 years ago
a3c2c17
tinyCrypt: Share ECDH secret calculation code-path
by Hanno Becker
· 6 years ago
75f12d1
tinyCrypt: Add ServerKeyExchange parsing code
by Hanno Becker
· 6 years ago
ef982d5
tinyCrypt: Bind RNG wrapper to tinyCrypt in mbedtls_ssl_setup()
by Hanno Becker
· 6 years ago
e12aafb
tinyCrypt: Initial commit towards ECDHE support
by Jarno Lamsa
· 6 years ago
3328b18
Move ssl_process_in_server_key_exchange to avoid func use-before-def
by Hanno Becker
· 6 years ago
4e46709
Document precoditions on some HS parsing/writing functions
by Hanno Becker
· 6 years ago
7d552fa
Avoid collision of ssl_xxx_key_exchange_yyy() func names in cli/srv
by Hanno Becker
· 6 years ago
48e526b
Document parameter precondition for ssl_rsa_generate_partial_pms()
by Hanno Becker
· 6 years ago
aa49620
Minor documentation improvement to ssl_rsa_encrypt_partial_pms()
by Hanno Becker
· 6 years ago
084694d
Fix copy-pasta in documentation for outgoing CliKeyExchange
by Hanno Becker
· 6 years ago
44a29f4
Remove redundant use of local variable in CliKeyExch writing
by Hanno Becker
· 6 years ago
ae22dd3
Simplify logic of restartable ECDHE in CliKeyExch writing
by Hanno Becker
· 6 years ago
91cf769
Remove restartable ECP return code check from ECDH suite handling
by Hanno Becker
· 6 years ago
8793fab
Fix two typos in comments
by Manuel Pégourié-Gonnard
· 6 years ago
587c1ae
Make IAR happy by dummy-initializing an unused variable
by Hanno Becker
· 6 years ago
a855cb6
Avoid unused variable warning in ServerKeyExchange parsing
by Hanno Becker
· 6 years ago
868cb58
Rename SSL_PROC_CHK -> MBEDTLS_SSL_CHK
by Hanno Becker
· 6 years ago
9a12243
Introduce getter function for RNG context
by Hanno Becker
· 6 years ago
4ec73cb
Restructure SrvKeyExchange: Move parsing code
by Hanno Becker
· 6 years ago
8b7b879
Restructure SrvKeyExchange: Move msg skipping for PSK and RSA-PSK
by Hanno Becker
· 7 years ago
eb76c20
Restructure SrvKeyExchange: Move code for skipping SrvKeyExchange
by Hanno Becker
· 7 years ago
fca604d
Restructure SrvKeyExchange: Move static DH parameter extraction
by Hanno Becker
· 7 years ago
04769dd
Restructure SrvKeyExchange: Add frame for structure
by Hanno Becker
· 7 years ago
09d2364
Share code between In-CliKeyExch and Out-CliKeyExch
by Hanno Becker
· 6 years ago
4f68b04
Restructure outgoing CliKeyExch: Remove old code
by Hanno Becker
· 6 years ago
87e3c9a
Restructure outgoing CliKeyExch: Move writing code
by Hanno Becker
· 7 years ago
01290c7
Restructure outgoing CliKeyExch: Move RSA/RSA-PSK PMS generation
by Hanno Becker
· 7 years ago
6fb638b
Restructure outgoing CliKeyExch: Move PMS assembly code
by Hanno Becker
· 7 years ago
5d39768
Restructure outgoing CliKeyExch: Add frame for new structure
by Hanno Becker
· 7 years ago
8844055
Remove compression field from SSL session if compression disabled
by Hanno Becker
· 6 years ago
de62da9
Use separate functions to pend fatal and non-fatal alerts
by Hanno Becker
· 6 years ago
1facd55
Replace xxx_send_alert by xxx_pend_alert to save code
by Hanno Becker
· 6 years ago
3b014fc
Merge remote-tracking branch 'origin/pr/604' into baremetal
by Simon Butcher
· 6 years ago
981f81d
Add missing uses of mbedtls_ssl_get_minor()
by Hanno Becker
· 6 years ago
f1bc9e1
Introduce helper functions to traverse signature hashes
by Hanno Becker
· 6 years ago
feb1cee
Merge remote-tracking branch 'origin/pr/602' into baremetal
by Simon Butcher
· 6 years ago
7decea9
Simplify supported EC extension writing code
by Hanno Becker
· 6 years ago
a4a9c69
Introduce helper macro for traversal of supported EC TLS IDs
by Hanno Becker
· 6 years ago
8085588
Remove unnecessary guards in client-side EC curve extension writing
by Hanno Becker
· 6 years ago
381eaa5
Remove min/maj version from SSL context if only one version enabled
by Hanno Becker
· 6 years ago
2881d80
Introduce getter function for max/min SSL version
by Hanno Becker
· 6 years ago
3fa1ee5
Set SSL minor version only after validation
by Hanno Becker
· 6 years ago
e965bd3
Allow hardcoding of min/max minor/major SSL version at compile-time
by Hanno Becker
· 6 years ago
f4d6b49
Allow use of continue in single-ciphersuite 'loops'
by Hanno Becker
· 6 years ago
73f4cb1
Rename XXX_SINGLE_CIPHERSUITE -> XXX_CONF_SINGLE_CIPHERSUITE
by Hanno Becker
· 6 years ago
e02758c
Remove ciphersuite from SSL session if single suite hardcoded
by Hanno Becker
· 6 years ago
df64596
Remove ciphersuite from handshake params if single suite hardcoded
by Hanno Becker
· 6 years ago
1499027
Adapt ClientHello writing to case of single hardcoded ciphersuite
by Hanno Becker
· 6 years ago
473f98f
Introduce ciphersuite handle type
by Hanno Becker
· 6 years ago
ece325c
Allow compile-time configuration of PRNG in SSL module
by Hanno Becker
· 6 years ago
44ba6b0
Merge remote-tracking branch 'restricted/pr/594' into baremetal-proposed
by Manuel Pégourié-Gonnard
· 6 years ago
37261e6
Merge remote-tracking branch 'restricted/pr/601' into baremetal-proposed
by Manuel Pégourié-Gonnard
· 6 years ago
417d2ce
Merge remote-tracking branch 'restricted/pr/584' into baremetal-proposed
by Manuel Pégourié-Gonnard
· 6 years ago
b0b2b67
Allow compile-time configuration of legacy renegotiation
by Hanno Becker
· 6 years ago
93c8262
Clarify conditions related to resumption in client
by Manuel Pégourié-Gonnard
· 6 years ago
754b9f3
Introduce getter function for renego_status
by Manuel Pégourié-Gonnard
· 6 years ago
3652e99
Add getter function for handshake->resume
by Manuel Pégourié-Gonnard
· 6 years ago
44b1076
Remove now-redundant code
by Manuel Pégourié-Gonnard
· 6 years ago
594a1bb
Fix a few style issues
by Manuel Pégourié-Gonnard
· 6 years ago
29f2dd0
Address review comments
by Jarno Lamsa
· 6 years ago
dbf6073
Fix ssl_cli resumption guards
by Jarno Lamsa
· 6 years ago
5165169
Fix test issues
by Jarno Lamsa
· 6 years ago
59bd12b
Add new config MBEDTLS_SSL_SESSION_RESUMPTION
by Jarno Lamsa
· 6 years ago
2224ccf
Don't use assertion for failures of mbedtls_x509_crt_x_acquire()
by Hanno Becker
· 6 years ago
c6d1c3e
Remove frame/pk parameter from mbedtls_x509_crt_xxx_release()
by Hanno Becker
· 6 years ago
2fefa48
Make use of acquire/release in ssl_parse_server_key_exchange()
by Hanno Becker
· 6 years ago
39ae65c
Make use of acquire/release in ssl_get_ecdh_params_from_cert()
by Hanno Becker
· 6 years ago
0c16816
Make use of acquire/release in client-side ssl_write_encrypted_pms()
by Hanno Becker
· 6 years ago
1ab322b
Remove extended_ms field from HS param if ExtendedMS enforced
by Hanno Becker
· 6 years ago
03b64fa
Rearrange ExtendedMasterSecret parsing logic
by Hanno Becker
· 6 years ago
aabbb58
Exemplify harcoding SSL config at compile-time in example of ExtMS
by Hanno Becker
· 6 years ago
5882dd0
Remove CRT digest from SSL session if !RENEGO + !KEEP_PEER_CERT
by Hanno Becker
· 6 years ago
c39e23e
Add further debug statements on assertion failures
by Hanno Becker
· 6 years ago
e9839c0
Add debug output in case of assertion failure
by Hanno Becker
· 6 years ago
6c83db7
Free peer's public key as soon as it's no longer needed
by Hanno Becker
· 6 years ago
69fad13
Adapt client-side signature verification to use raw public key
by Hanno Becker
· 6 years ago
53b6b7e
Adapt ssl_get_ecdh_params_from_cert() to use raw public key
by Hanno Becker
· 6 years ago
374800a
Adapt ssl_write_encrypted_pms() to use raw public key
by Hanno Becker
· 6 years ago
f02d550
Re-classify errors on missing peer CRT
by Hanno Becker
· 6 years ago
ae39b9e
Make use of macro and helper detecting whether CertRequest allowed
by Hanno Becker
· 6 years ago
c725e4b
Merge remote-tracking branch 'origin/pr/590' into baremetal
by Simon Butcher
· 6 years ago
Next »