- e1c9a40 Removes truncated HMAC code from ssl_X.c by Thomas Daubney · 4 years, 2 months ago
- 8cad2e2 Merge pull request #4595 from gilles-peskine-arm/alt-dummy-headers-3.0 by Manuel Pégourié-Gonnard · 4 years, 2 months ago
- cd07e22 New function mbedtls_ecjpake_set_point_format by Gilles Peskine · 4 years, 2 months ago
- 487bbf6 DHM: new functions to query the length of the modulus by Gilles Peskine · 4 years, 2 months ago
- 3946f79 Correction according to code review (function and param. names change by TRodziewicz · 4 years, 2 months ago
- 8476f2f Turn _SSL_SRV_RESPECT_CLIENT_PREFERENCE config option to a runtime option by TRodziewicz · 4 years, 2 months ago
- d60b6c6 Remove per-version ciphersuite configuration API by Hanno Becker · 4 years, 3 months ago
- 4ca18aa Corrections after the code review by TRodziewicz · 4 years, 2 months ago
- 6370dbe Remove the _SSL_FALLBACK_ parts by TRodziewicz · 4 years, 3 months ago
- 0f82ec6 Remove the TLS 1.0 and 1.1 support by TRodziewicz · 4 years, 3 months ago
- 7fc487c Merge pull request #4347 from hanno-arm/ssl_session_cache_3_0 by Janos Follath · 4 years, 2 months ago
- fc1f413 Use `memset( x, 0, sizeof( x ) )` to clear local structure by Hanno Becker · 4 years, 3 months ago
- b94fdae Improve code structure for session cache query by Hanno Becker · 4 years, 3 months ago
- df56402 Fix memory leak upon ciphersuite mismatch during session resumption by Hanno Becker · 4 years, 3 months ago
- 7ad7796 Use shorthand local variable for session under negotiation by Hanno Becker · 4 years, 3 months ago
- f6e09c6 Don't use ssl_check_xxx() for functions with void return by Hanno Becker · 4 years, 3 months ago
- a5b1a39 Don't use 0-initializer for structs by Hanno Becker · 4 years, 4 months ago
- c301bd5 Merge branch 'development_3.0' into drop_old_tls_options by Mateusz Starzyk · 4 years, 4 months ago
- ccdaf6e Add session ID as explicit parameter to SSL session cache API by Hanno Becker · 4 years, 4 months ago
- 64ce974 Don't check ciphersuite and compression in SSL session cache lookup by Hanno Becker · 4 years, 4 months ago
- 73e3e2c Merge remote-tracking branch 'origin/development' into development_new by Dave Rodgman · 4 years, 4 months ago
- 2aff17b Merge pull request #4098 from gstrauss/remove-redundant-condition by Gilles Peskine · 4 years, 4 months ago
- 5224e29 Drop support for RC4 TLS ciphersuites. by Mateusz Starzyk · 4 years, 5 months ago
- a3a9984 Drop support for TLS record-level compression. by Mateusz Starzyk · 4 years, 5 months ago
- 06b07fb Drop support for SSLv3. by Mateusz Starzyk · 4 years, 5 months ago
- 9e9ca1a Drop support for parsing SSLv2 ClientHello. by Mateusz Starzyk · 4 years, 5 months ago
- d48d5c6 Fix size_t and longlong specifiers for MinGW by Paul Elliott · 4 years, 7 months ago
- 3891caf Misc review requested fixes by Paul Elliott · 4 years, 7 months ago
- 9f35211 Fixes for invalid printf format specifiers by Paul Elliott · 4 years, 8 months ago
- 84a773f Rename ssl_internal.h to ssl_misc.h by Chris Jones · 4 years, 5 months ago
- e2191cd Update includes to use library/ instead of include/mbedtls/ by Chris Jones · 4 years, 5 months ago
- 8a8a83b remove ssl_parse_client_hello redundant conditions by Glenn Strauss · 4 years, 6 months ago
- 662deb3 Merge pull request #3547 from ronald-cron-arm/psa-openless by Gilles Peskine · 4 years, 8 months ago
- 7953329 Fix another use of uinitialized memory in ssl_parse_encrypted_pms by André Maroneze · 4 years, 9 months ago
- cf56a0a psa: Move from key handle to key identifier by Ronald Cron · 5 years ago
- c26f8d4 Introduce psa_key_handle_is_null inline function by Ronald Cron · 5 years ago
- c3ccd98 Check transport in the extension parser/writer by Johan Pascal · 4 years, 9 months ago
- 5ef72d2 Style and typos by Johan Pascal · 4 years, 9 months ago
- 76fdf1d Minor fix and improvements by Johan Pascal · 4 years, 9 months ago
- f6417ec mki length feats in a uint16_t by Johan Pascal · 4 years, 10 months ago
- 43f9490 SRTP profiles definition use macros only by Johan Pascal · 4 years, 10 months ago
- 4f09926 use_srtp extension shall not interfere in the handshake settings by Johan Pascal · 4 years, 10 months ago
- d576fdb Style + fix bound check in write_use_srt_ext by Johan Pascal · 4 years, 10 months ago
- 9bc97ca SRTP-DTLS protection profile configuration list not copied into ssl_config by Johan Pascal · 4 years, 10 months ago
- 8f70fba Check the server hello output buffer size when writing the use_srtp ext by Johan Pascal · 5 years ago
- 042d456 Improve client Hello use_srtp parsing by Johan Pascal · 5 years ago
- 8526957 Minor style modifications by Johan Pascal · 5 years ago
- 313d7b5 Add variable validation by Ron Eldor · 7 years ago
- 75870ec Change byte copy to memcpy by Ron Eldor · 7 years ago
- 089c9fe Improve readability by Ron Eldor · 7 years ago
- a978804 Style fixes by Ron Eldor · 7 years ago
- ef72faf Style fixes by Ron Eldor · 7 years ago
- b465539 Add tests and code to support by Ron Eldor · 7 years ago
- 1c399bd Set authmode to optional, if not set by Ron Eldor · 7 years ago
- 12c6ead Fix mki issues by Ron Eldor · 7 years ago
- 57cc70e Enforce SRTP mandatory HS messages by Ron Eldor · 7 years ago
- 591f162 support mki value by Ron Eldor · 8 years ago
- 3adb992 Add mki value and some review comments by Ron Eldor · 8 years ago
- 3479078 Remove compilation warning by Johan Pascal · 8 years ago
- 701984d Comply with mbedtls naming rules by Johan Pascal · 8 years ago
- bbc057a Move available dtls srtp profile list to ssl_config by Johan Pascal · 9 years ago
- b62bb51 Add RFC5764 - SRTP key generation during DTLS handshake by Johan Pascal · 10 years ago
- 6edfe60 Merge pull request #2182 from hanno-arm/key_pwd by Manuel Pégourié-Gonnard · 5 years ago
- 1e14827 Update copyright notices to use Linux Foundation guidance by Bence Szépkúti · 5 years ago
- 5c5efdf Fix format specifier in ssl_ciphersuite_match() by Hanno Becker · 7 years ago
- ecea07d Unify ciphersuite related debug output on client and server by Hanno Becker · 7 years ago
- db09ef6 Include common.h instead of config.h in library source files by Gilles Peskine · 5 years ago
- 6bd4c79 Merge pull request #3150 from irwir/fix_ssl_srv by Manuel Pégourié-Gonnard · 5 years ago
- c9bc300 Simplify bounds check in ssl_write_certificate_request by irwir · 5 years ago
- 15f30dc Merge remote-tracking branch 'public/pr/2856' into development by Manuel Pégourié-Gonnard · 5 years ago
- 5e7d6fd Merge 'mbedtls/development' into merge-crypto-unremoved-20200304 by Gilles Peskine · 5 years ago
- eccd888 Rename identifiers containing double-underscore by Gilles Peskine · 5 years ago
- 7ed01e8 ssl_srv.c: initialize flags on each iteration of the loop by Andrzej Kurek · 5 years ago
- 73c616b Put includes in alphabetical order by Janos Follath · 6 years ago
- 865b3eb Initialize return values to an error by Janos Follath · 6 years ago
- 6527bd6 Fix issue #2718 (condition always false) by irwir · 6 years ago
- de718b9 Make calc_verify() return the length as well by Manuel Pégourié-Gonnard · 6 years ago
- a0e20d0 Rename MBEDTLS_SSL_CID to MBEDTLS_SSL_DTLS_CONNECTION_ID by Hanno Becker · 6 years ago
- ebcc913 Consistently reference CID draft through name + URL by Hanno Becker · 6 years ago
- 4cac442 Update references to CID draft to version 5 by Hanno Becker · 6 years ago
- 5903de4 Split mbedtls_ssl_hdr_len() in separate functions for in/out records by Hanno Becker · 6 years ago
- 08556bf Improve structure of ssl_parse_cid_ext() by Hanno Becker · 6 years ago
- a34ff5b Correct compile-time guard around CID extension writing func on srv by Hanno Becker · 6 years ago
- 51de2d3 Implement writing of CID extension in ServerHello by Hanno Becker · 6 years ago
- 89dcc88 Implement parsing of CID extension in ClientHello by Hanno Becker · 6 years ago
- e694c3e Remove ciphersuite_info from ssl_transform by Hanno Becker · 8 years ago
- 8bf74f3 Add SSL configuration API for trusted CA callbacks by Hanno Becker · 6 years ago
- 2a831a4 Adapt client auth detection in ssl_parse_certificate_verify() by Hanno Becker · 6 years ago
- a1ab9be Adapt server-side signature verification to use raw public key by Hanno Becker · 6 years ago
- 77adddc Make use of macro and helper detecting whether CertRequest allowed by Hanno Becker · 6 years ago
- de5a007 Merge development commit f352f7 into development-psa by Andrzej Kurek · 6 years ago
- f093a3d Use ecdh_setup instead of ecp_group_load by Andrzej Kurek · 6 years ago
- c470b6b Merge development commit 8e76332 into development-psa by Andrzej Kurek · 6 years ago
- 36e89b5 Fix #2370, minor typos and spelling mistakes by Antonin Décimo · 7 years ago
- 3fbdada SSL: Make use of the new ECDH interface by Janos Follath · 7 years ago
- c1385c1 Don't use idiom `if( func() )` but always add explicit value check by Hanno Becker · 7 years ago
- 845b946 Add server-support for opaque PSKs by Hanno Becker · 7 years ago
- bc2498a Style: Add numerous comments indicating condition guarded by #endif by Hanno Becker · 7 years ago
- 327c93b Add parameter to ssl_read_record() controlling checksum update by Hanno Becker · 7 years ago
- 1985947 Store outgoing record sequence number outside record buffer by Hanno Becker · 7 years ago