TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls
/
16e9ae2f95f3b57cf46d90845965a19c2f97ed98
/
library
/
ssl_tls.c
16e9ae2
Treat an invalid record after decryption as fatal
by Hanno Becker
· 6 years ago
70463db
Expain rationale for handling of consecutive empty AD records
by Hanno Becker
· 6 years ago
78c4302
Don't allow calling CID API outside of DTLS
by Hanno Becker
· 6 years ago
1f02f05
Fix additional data calculation if CID is disabled
by Hanno Becker
· 6 years ago
3b1a885
Remove unnecessary empty line in ssl_tls.c
by Hanno Becker
· 6 years ago
7dc2577
Don't quote DTLSInnerPlaintext structure multiple times
by Hanno Becker
· 6 years ago
8969369
Improve wording in ssl_build_inner_plaintext()
by Hanno Becker
· 6 years ago
24ce1eb
Remove unnecessary whitespace in ssl_extract_add_data_from_record()
by Hanno Becker
· 6 years ago
28a0c4e
Reduce stack usage for additional data buffers in record dec/enc
by Hanno Becker
· 6 years ago
acadb0a
Add length of CID to additional data used for record protection
by Hanno Becker
· 6 years ago
99abf51
Improve documentation of ssl_extract_add_data_from_record()
by Hanno Becker
· 6 years ago
505089d
Fix missing compile-time guards around CID-only constants
by Hanno Becker
· 6 years ago
4c6fe12
Remove TODO
by Hanno Becker
· 6 years ago
2e7cd5a
Use MBEDTLS_ namespace for internal CID length constant
by Hanno Becker
· 6 years ago
d91dc37
Skip copying CIDs to SSL transforms until CID feature is complete
by Hanno Becker
· 6 years ago
92c930f
Implement inner plaintext parsing/writing for CID-based connections
by Hanno Becker
· 6 years ago
e83efe6
Incorporate CID into MAC computations during record protection
by Hanno Becker
· 6 years ago
8013b27
Replace 'ingoing' -> 'incoming' in CID debug messages
by Hanno Becker
· 6 years ago
cb063f5
Document behaviour of mbedtls_ssl_get_peer_cid() for empty CIDs
by Hanno Becker
· 6 years ago
b4a5606
Make integer truncation explicit in mbedtls_ssl_set_cid()
by Hanno Becker
· 6 years ago
2de89fa
Implement mbedtls_ssl_get_peer_cid()
by Hanno Becker
· 6 years ago
dd0afca
Copy CIDs into SSL transform if use of CID has been negotiated
by Hanno Becker
· 6 years ago
0748986
Allow configuring own CID fields through mbedtls_ssl_get_peer_cid()
by Hanno Becker
· 6 years ago
724a695
Merge remote-tracking branch 'origin/pr/562' into baremetal
by Simon Butcher
· 6 years ago
0888581
Fix uninitialized variable access in debug output of record enc/dec
by Hanno Becker
· 6 years ago
c5aee96
Adapt record length value after encryption
by Hanno Becker
· 6 years ago
30d02cd
Rename ssl_decrypt_buf() to mbedtls_ssl_decrypt_buf() in comment
by Hanno Becker
· 7 years ago
93012fe
Double check that record expansion is as expected during decryption
by Hanno Becker
· 7 years ago
a795323
Move debugging output after record decryption
by Hanno Becker
· 7 years ago
611a83b
Add tests for record encryption/decryption
by Hanno Becker
· 8 years ago
9223132
Reduce size of `ssl_transform` if no MAC ciphersuite is enabled
by Hanno Becker
· 8 years ago
f122944
Remove code from `ssl_derive_keys` if relevant modes are not enabled
by Hanno Becker
· 8 years ago
4c6876b
Provide standalone version of `ssl_decrypt_buf`
by Hanno Becker
· 8 years ago
3307b53
Provide standalone version of `ssl_encrypt_buf`
by Hanno Becker
· 8 years ago
5cc04d5
Correct space needed for MAC in case of NULL cipher
by Hanno Becker
· 8 years ago
8759e16
Remove ciphersuite_info from ssl_transform
by Hanno Becker
· 8 years ago
e7f2df0
Remove key length field from ssl_transform
by Hanno Becker
· 8 years ago
ba8cd67
Guard CID implementations by MBEDTLS_SSL_CID
by Hanno Becker
· 6 years ago
8d0893d
Add warnings about status of implementation of CID API
by Hanno Becker
· 6 years ago
b9e7dea
Add dummy implementations for CID API
by Hanno Becker
· 6 years ago
e1b1a2c
Merge remote-tracking branch 'upstream-public/pr/2181' into development
by Jaeden Amero
· 7 years ago
3fbdada
SSL: Make use of the new ECDH interface
by Janos Follath
· 7 years ago
f6d6e30
Fix incomplete assertion in ssl_write_handshake_msg()
by Hanno Becker
· 7 years ago
2705bea
Merge remote-tracking branch 'public/pr/2095' into development-proposed
by Simon Butcher
· 7 years ago
17a0fab
Merge remote-tracking branch 'public/pr/2111' into development-proposed
by Simon Butcher
· 7 years ago
169712e
Merge remote-tracking branch 'restricted/pr/390' into development
by Simon Butcher
· 7 years ago
dd3ab13
Fail when encountering invalid CBC padding in EtM records
by Hanno Becker
· 7 years ago
805f2e1
Add missing zeroization of buffered handshake messages
by Hanno Becker
· 7 years ago
748face
ssl_tls: fix maximum output length
by Andrzej Kurek
· 7 years ago
ef43ce6
Dtls: change the way unlimited mtu is set for client hello messages
by Andrzej Kurek
· 7 years ago
6290dae
Disable dtls fragmentation for ClientHello messages
by Andrzej Kurek
· 7 years ago
125af94
Merge branch 'development-restricted' into iotssl-1260-non-blocking-ecc-restricted
by Manuel Pégourié-Gonnard
· 7 years ago
0bbb4fc
Merge branch 'development' into development
by Simon Butcher
· 7 years ago
552754a
Merge remote-tracking branch 'public/pr/1988' into development
by Simon Butcher
· 7 years ago
68dbc94
Merge remote-tracking branch 'public/pr/1951' into development
by Simon Butcher
· 7 years ago
a591c48
Correct typo in debug message
by Hanno Becker
· 7 years ago
83ab41c
Correct typo in comment
by Hanno Becker
· 7 years ago
cd9dcda
Add const qualifier to handshake header reading functions
by Hanno Becker
· 7 years ago
39b8bc9
Change wording of debug message
by Hanno Becker
· 7 years ago
ef7afdf
Rename another_record_in_datagram to next_record_is_in_datagram
by Hanno Becker
· 7 years ago
c573ac3
Fix typos in debug message and comment in ssl-tls.c
by Hanno Becker
· 7 years ago
3af567d
Merge remote-tracking branch 'restricted/pr/437' into development-restricted
by Simon Butcher
· 7 years ago
7f85563
Merge remote-tracking branch 'restricted/pr/491' into development-restricted
by Simon Butcher
· 7 years ago
14dac09
Merge remote-tracking branch 'public/pr/1918' into development
by Simon Butcher
· 7 years ago
1846e40
Merge remote-tracking branch 'public/pr/1939' into development
by Simon Butcher
· 7 years ago
4613772
Merge remote-tracking branch 'public/pr/1915' into development
by Simon Butcher
· 7 years ago
0207e53
Style: Correct typo in ssl-tls.c
by Hanno Becker
· 7 years ago
d584777
Style: Group buffering-related forward declarations in ssl_tls.c
by Hanno Becker
· 7 years ago
360bef3
Reordering: Document that only HS and CCS msgs are buffered
by Hanno Becker
· 7 years ago
4f432ad
Style: Don't use abbreviations in comments
by Hanno Becker
· 7 years ago
b8f5014
Add explicit MBEDTLS_DEBUG_C-guard around debugging code
by Hanno Becker
· 7 years ago
f0da667
Style: Add braces around if-branch where else-branch has them
by Hanno Becker
· 7 years ago
ecbdf1c
Style: Correct indentation of debug msgs in mbedtls_ssl_write_record
by Hanno Becker
· 7 years ago
3f7b973
Correct typo in mbedtls_ssl_flight_transmit()
by Hanno Becker
· 7 years ago
6e12c1e
Enhance debugging output
by Hanno Becker
· 7 years ago
0e96585
Merge branch 'datagram_packing' into message_reordering
by Hanno Becker
· 7 years ago
1841b0a
Rename ssl_conf_datagram_packing() to ssl_set_datagram_packing()
by Hanno Becker
· 7 years ago
f4b010e
Limit MTU by maximum fragment length setting
by Hanno Becker
· 7 years ago
283f5ef
Buffering: Free future record epoch after each flight
by Hanno Becker
· 7 years ago
081bd81
ssl_write_handshake_msg(): Always append CCS messages to flights
by Hanno Becker
· 7 years ago
c83d2b3
ssl_write_handshake_msg(): Allow alert on client-side SSLv3
by Hanno Becker
· 7 years ago
b309b92
ssl_buffering_free_slot(): Double-check validity of slot index
by Hanno Becker
· 7 years ago
65dc885
Use size_t for msg_len argument in ssl_get_reassembly_buffer_size()
by Hanno Becker
· 7 years ago
1b20e8e
Merge branch 'datagram_packing' into message_reordering
by Hanno Becker
· 7 years ago
554b0af
Fix assertion in mbedtls_ssl_write_record()
by Hanno Becker
· 7 years ago
7428d4f
Merge branch 'datagram_packing' into message_reordering
by Hanno Becker
· 7 years ago
551835d
ssl_write_handshake_msg(): Always append CCS messages to flights
by Hanno Becker
· 7 years ago
2c98db2
ssl_write_handshake_msg(): Allow alert on client-side SSLv3
by Hanno Becker
· 7 years ago
6353134
Merge branch 'datagram_packing' into message_reordering
by Hanno Becker
· 7 years ago
11682cc
Uniformly treat MTU as size_t
by Hanno Becker
· 7 years ago
3546201
Merge branch 'datagram_packing' into message_reordering
by Hanno Becker
· 7 years ago
a67dee2
Merge branch 'iotssl-2402-basic-pmtu-adaptation' into datagram_packing
by Hanno Becker
· 7 years ago
b8eec19
Implement PMTU auto-reduction in handshake
by Manuel Pégourié-Gonnard
· 7 years ago
170e2d8
Merge branch 'iotssl-165-dtls-hs-fragmentation-new' into datagram_packing
by Hanno Becker
· 7 years ago
903ee3d
Merge branch 'datagram_packing' into message_reordering
by Hanno Becker
· 7 years ago
01315ea
Account for future epoch records in the total buffering size
by Hanno Becker
· 7 years ago
a02b0b4
Add function making space for current message reassembly
by Hanno Becker
· 7 years ago
e180139
Add another debug message to ssl_buffer_message()
by Hanno Becker
· 7 years ago
55e9e2a
Free future buffers if next handshake messages can't be reassembled
by Hanno Becker
· 7 years ago
e605b19
Add function to free a particular buffering slot
by Hanno Becker
· 7 years ago
Next »