1. 4491a79 Parse Signature Algorithm ext when renegotiating by Ron Eldor · 8 years ago
  2. 5745778 Don't parse or write extensions in SSLv3 by Hanno Becker · 8 years ago
  3. c2b9d98 Remember suitable hash function for any signature algorithm. by Hanno Becker · 8 years ago
  4. a697bf5 Fix for MSVC Compiler warnings by Simon B · 9 years ago
  5. 7458bc3 Fix guards in SSL for ECDH key exchanges by Simon Butcher · 9 years ago
  6. 307e181 Fix non compliance SSLv3 in server extension handling. by Janos Follath · 9 years ago
  7. 14400c8 Merge memory leak fix into branch 'mbedtls-1.3' by Simon Butcher · 10 years ago
  8. cf16b79 Avoid seemingly-possible overflow by Manuel Pégourié-Gonnard · 10 years ago
  9. de9c8a5 Fix potential overflow in CertificateRequest by Manuel Pégourié-Gonnard · 10 years ago
  10. a701d2f Fix bug in server parsing point formats extension by Manuel Pégourié-Gonnard · 10 years ago
  11. 8e8ae3d Fix potential NULL dereference on bad usage by Manuel Pégourié-Gonnard · 10 years ago
  12. b26b75e Clean up RSA PMS checking code by Manuel Pégourié-Gonnard · 10 years ago
  13. e16b62c Make results of (ext)KeyUsage accessible by Manuel Pégourié-Gonnard · 10 years ago
  14. ce60fbe Fix potential timing difference with RSA PMS by Manuel Pégourié-Gonnard · 10 years ago
  15. fe44643 Rename website and repository by Manuel Pégourié-Gonnard · 10 years ago
  16. 2ee8d24 Simplify some constant-time code by Manuel Pégourié-Gonnard · 10 years ago
  17. 00ab470 cleanup library and some basic tests. Includes, add guards to includes by Rich Evans · 10 years ago
  18. 6674cce Fix potential timing issue in RSA pms handling by Manuel Pégourié-Gonnard · 10 years ago
  19. 860b516 Fix url again by Manuel Pégourié-Gonnard · 10 years ago
  20. 607d663 Add debug info for cert/suite selection by Manuel Pégourié-Gonnard · 10 years ago
  21. 085ab04 Fix website url to use https. by Manuel Pégourié-Gonnard · 11 years ago
  22. 9698f58 Remove maintainer line. by Manuel Pégourié-Gonnard · 11 years ago
  23. 19f6b5d Remove redundant "all rights reserved" by Manuel Pégourié-Gonnard · 11 years ago
  24. a658a40 Update copyright by Manuel Pégourié-Gonnard · 11 years ago
  25. 967a2a5 Change name to mbed TLS in the copyright notice by Manuel Pégourié-Gonnard · 11 years ago
  26. 59c6f2e Avoid nested if's without braces. by Manuel Pégourié-Gonnard · 11 years ago
  27. 5b8f7ea Merge new security defaults for programs (RC4 disabled, SSL3 disabled) by Paul Bakker · 11 years ago
  28. c82b7e2 Merge option to disable truncated hmac on the server-side by Paul Bakker · 11 years ago
  29. e522d0f Merge smarter certificate selection for pre-TLS-1.2 clients by Paul Bakker · 11 years ago
  30. f6080b8 Merge support for enabling / disabling renegotiation support at compile-time by Paul Bakker · 11 years ago
  31. d7e2483 Merge miscellaneous fixes into development by Paul Bakker · 11 years ago
  32. bd47a58 Add ssl_set_arc4_support() by Manuel Pégourié-Gonnard · 11 years ago
  33. e117a8f Make truncated hmac a runtime option server-side by Manuel Pégourié-Gonnard · 11 years ago
  34. f01768c Specific error for suites in common but none good by Manuel Pégourié-Gonnard · 11 years ago
  35. df331a5 Prefer SHA-1 certificates for pre-1.2 clients by Manuel Pégourié-Gonnard · 11 years ago
  36. 6458e3b Some more refactoring/tuning. by Manuel Pégourié-Gonnard · 11 years ago
  37. 846ba47 Minor refactoring by Manuel Pégourié-Gonnard · 11 years ago
  38. d942323 Skip signature_algorithms ext if PSK only by Manuel Pégourié-Gonnard · 11 years ago
  39. eaecbd3 Fix warning in reduced configs by Manuel Pégourié-Gonnard · 11 years ago
  40. 615e677 Make renegotiation a compile-time option by Manuel Pégourié-Gonnard · 11 years ago
  41. 78e745f Don't send back EtM extension if not using CBC by Manuel Pégourié-Gonnard · 11 years ago
  42. 699cafa Implement initial negotiation of EtM by Manuel Pégourié-Gonnard · 11 years ago
  43. b575b54 Forbid extended master secret with SSLv3 by Manuel Pégourié-Gonnard · 11 years ago
  44. 367381f Add negotiation of Extended Master Secret by Manuel Pégourié-Gonnard · 11 years ago
  45. 01b2699 Implement FALLBACK_SCSV server-side by Manuel Pégourié-Gonnard · 11 years ago
  46. 43c3b28 Fix memory leak with crafted ClientHello by Manuel Pégourié-Gonnard · 11 years ago
  47. 480905d Fix selection of hash from sig_alg ClientHello ext. by Manuel Pégourié-Gonnard · 11 years ago
  48. 84bbeb5 Adapt cipher and MD layer with _init() and _free() by Paul Bakker · 11 years ago
  49. accaffe Restructure ssl_handshake_init() and small fixes by Paul Bakker · 11 years ago
  50. 5b4af39 Add _init() and _free() for hash modules by Paul Bakker · 11 years ago
  51. d27680b Clarify code using PSK callback by Manuel Pégourié-Gonnard · 11 years ago
  52. 14beb08 Fix missing const by Manuel Pégourié-Gonnard · 11 years ago
  53. 08e81e0 Change selection of hash algorithm for TLS 1.2 by Manuel Pégourié-Gonnard · 11 years ago
  54. dd0c0f3 Better usage of dhm_calc_secret in SSL by Manuel Pégourié-Gonnard · 11 years ago
  55. 4d2a8eb SSL modules now using x509_crt_parse_der() by Manuel Pégourié-Gonnard · 11 years ago
  56. 66d5d07 Fix formatting in various code to match spacing from coding style by Paul Bakker · 11 years ago
  57. db20c10 Add #endif comments for #endif more than 10 lines from #if / #else by Paul Bakker · 11 years ago
  58. 3461772 Introduce polarssl_zeroize() instead of memset() for zeroization by Paul Bakker · 11 years ago
  59. 14877e6 Remove unused 'ret' variable by Paul Bakker · 11 years ago
  60. 14b16c6 Minor optimizations (original by Peter Vaskovic, modified by Paul Bakker) by Paul Bakker · 11 years ago
  61. 0f651c7 Stricter check on SSL ClientHello internal sizes compared to actual packet size by Paul Bakker · 11 years ago
  62. 61edffe Normalize "should never happen" messages/errors by Manuel Pégourié-Gonnard · 11 years ago
  63. b9e4e2c Fix formatting: fix some 'easy' > 80 length lines by Paul Bakker · 11 years ago
  64. 9af723c Fix formatting: remove trailing spaces, #endif with comments (> 10 lines) by Paul Bakker · 11 years ago
  65. cef4ad2 Adapt sources to configurable config.h name by Manuel Pégourié-Gonnard · 11 years ago
  66. a703663 Improve interop by not writing ext_len in ClientHello / ServerHello when 0 by Paul Bakker · 11 years ago
  67. c70e425 Only iterate over actual certificates in ssl_write_certificate_request() by Paul Bakker · 11 years ago
  68. 4f42c11 Remove arbitrary maximum length for cipher_list and content length by Paul Bakker · 11 years ago
  69. d893aef Force default value to curve parameter by Paul Bakker · 11 years ago
  70. 7f2a07d Check keyUsage in SSL client and server by Manuel Pégourié-Gonnard · 11 years ago
  71. f6521de Add ALPN tests to ssl-opt.sh by Manuel Pégourié-Gonnard · 11 years ago
  72. 89e3579 Implement ALPN server-side by Manuel Pégourié-Gonnard · 11 years ago
  73. 969ccc6 Fix length checking of various ClientKeyExchange's by Manuel Pégourié-Gonnard · 11 years ago
  74. b2bf5a1 Fix possible buffer overflow with PSK by Manuel Pégourié-Gonnard · 11 years ago
  75. d701c9a Fix memory leak in server with expired tickets by Manuel Pégourié-Gonnard · 11 years ago
  76. 145dfcb Fix bug with NewSessionTicket and non-blocking I/O by Manuel Pégourié-Gonnard · 11 years ago
  77. 96ea2f2 Add tests for SNI by Manuel Pégourié-Gonnard · 11 years ago
  78. 8520dac Add tests for auth_mode by Manuel Pégourié-Gonnard · 11 years ago
  79. f7c5201 Add basic tests for session resumption by Manuel Pégourié-Gonnard · 11 years ago
  80. 6b1e207 Fix verion-major intolerance by Manuel Pégourié-Gonnard · 11 years ago
  81. 7dc4c44 Library files moved to use platform layer by Paul Bakker · 11 years ago
  82. f6dc5e1 Remove temporary debug code by Manuel Pégourié-Gonnard · 11 years ago
  83. c3f6b62c Print curve name instead of size in debugging by Manuel Pégourié-Gonnard · 11 years ago
  84. de05390 Rename ecdh_curve_list to curve_list by Manuel Pégourié-Gonnard · 11 years ago
  85. 5de2580 Make ssl_set_ecdh_curves() a compile-time option by Manuel Pégourié-Gonnard · 11 years ago
  86. 987bfb5 Added the possibility to define the allowed curves for ECDHE handshake. It also defines the preference of the curves. by Gergely Budai · 12 years ago
  87. 5538970 Add server support for ECDH key exchanges by Manuel Pégourié-Gonnard · 12 years ago
  88. 1a9f2c7 Add option to respect client ciphersuite order by Manuel Pégourié-Gonnard · 12 years ago
  89. 011a8db Complete refactoring of ciphersuite choosing by Manuel Pégourié-Gonnard · 12 years ago
  90. 3252560 Move some functions up by Manuel Pégourié-Gonnard · 12 years ago
  91. 59b81d7 Refactor ciphersuite selection for version > 2 by Manuel Pégourié-Gonnard · 12 years ago
  92. da1ff38 Don't accept CertificateRequest with PSK suites by Manuel Pégourié-Gonnard · 12 years ago
  93. dc953e8 Add missing defines/cases for RSA_PSK key exchange by Manuel Pégourié-Gonnard · 12 years ago
  94. a9a028e SSL now gracefully handles missing RNG by Paul Bakker · 12 years ago
  95. 31ff1d2 Safer buffer comparisons in the SSL modules by Manuel Pégourié-Gonnard · 12 years ago
  96. 21ef42f Don't select a PSK ciphersuite if no key available by Manuel Pégourié-Gonnard · 12 years ago
  97. 45a2c8d Prevent possible alignment warnings on casting from char * to 'aligned *' by Paul Bakker · 12 years ago
  98. 677377f Server does not send out extensions not advertised by client by Paul Bakker · 12 years ago
  99. f34673e Merged RSA-PSK key-exchange and ciphersuites by Paul Bakker · 12 years ago
  100. 376e815 Merged ECDHE-PSK ciphersuites by Paul Bakker · 12 years ago