TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls
/
31f6e372e6ff7c67c89ca2dd9ddb44d17f734ec6
31f6e37
UDP Proxy: Don't drop CID records
by Hanno Becker
· 6 years ago
78c9137
Add Proxy tests for Connection ID to ssl-opt.sh
by Hanno Becker
· 6 years ago
22a59fd
Remove indicators and warnings about unfinished CID implementation
by Hanno Becker
· 6 years ago
b3e9dd5
Fix mismatching debug grep in ssl-opt.sh CID tests
by Hanno Becker
· 6 years ago
b42ec0d
Add support for change of CID to ssl_client2 / ssl_server2
by Hanno Becker
· 6 years ago
2749a67
Reintroduce grepping for debug messages in CID tests in ssl-opt.sh
by Hanno Becker
· 6 years ago
05154c3
Re-enable passing CIDs to record transforms
by Hanno Becker
· 6 years ago
16ded98
Don't fail on record with unexpected CID
by Hanno Becker
· 6 years ago
938489a
Re-enable CID comparison when decrypting CID-based records
by Hanno Becker
· 6 years ago
ca59c2b
Implement parsing of CID-based records
by Hanno Becker
· 6 years ago
6430faf
Adapt record encryption/decryption routines to change of record type
by Hanno Becker
· 6 years ago
f9c6a4b
Add pointers to in/out CID fields to mbedtls_ssl_context
by Hanno Becker
· 6 years ago
6cbad55
Account for additional record expansion when using CIDs
by Hanno Becker
· 6 years ago
ad4a137
Add CID configuration API
by Hanno Becker
· 6 years ago
3b154c1
Re-implement mbedtls_ssl_{in/out}_hdr_len() via in/out pointers
by Hanno Becker
· 6 years ago
5903de4
Split mbedtls_ssl_hdr_len() in separate functions for in/out records
by Hanno Becker
· 6 years ago
f661c9c
Add helper function to check validity of record content type
by Hanno Becker
· 6 years ago
37ae952
Move dropping of unexpected AD records to after record decryption
by Hanno Becker
· 6 years ago
79594fd
Set pointer to start of plaintext at record decryption time
by Hanno Becker
· 6 years ago
82e2a39
Treat an invalid record after decryption as fatal
by Hanno Becker
· 6 years ago
6e7700d
Expain rationale for handling of consecutive empty AD records
by Hanno Becker
· 6 years ago
76a79ab
Don't allow calling CID API outside of DTLS
by Hanno Becker
· 6 years ago
e2c2314
Add missing dependencies in unit tests for CID-based record enc/dec
by Hanno Becker
· 6 years ago
95e4bbc
Fix additional data calculation if CID is disabled
by Hanno Becker
· 6 years ago
af05ac0
Remove unnecessary empty line in ssl_tls.c
by Hanno Becker
· 6 years ago
07dc97d
Don't quote DTLSInnerPlaintext structure multiple times
by Hanno Becker
· 6 years ago
d3f8c79
Improve wording in ssl_build_inner_plaintext()
by Hanno Becker
· 6 years ago
edb24f8
Remove unnecessary whitespace in ssl_extract_add_data_from_record()
by Hanno Becker
· 6 years ago
92fb4fa
Reduce stack usage for additional data buffers in record dec/enc
by Hanno Becker
· 6 years ago
c4a190b
Add length of CID to additional data used for record protection
by Hanno Becker
· 6 years ago
d5aeab1
Improve documentation of ssl_extract_add_data_from_record()
by Hanno Becker
· 6 years ago
fe6bb8c
Unify documentation of internal SSL record structure
by Hanno Becker
· 6 years ago
43c24b8
Fix missing compile-time guards around CID-only constants
by Hanno Becker
· 6 years ago
f44e55d
Remove TODO
by Hanno Becker
· 6 years ago
75f080f
Use MBEDTLS_ namespace for internal CID length constant
by Hanno Becker
· 6 years ago
8a7f972
Skip copying CIDs to SSL transforms until CID feature is complete
by Hanno Becker
· 6 years ago
8b3eb5a
Implement inner plaintext parsing/writing for CID-based connections
by Hanno Becker
· 6 years ago
d856c82
Add unit tests for record protection using CID
by Hanno Becker
· 6 years ago
6c87b3f
Record enc/dec tests: Don't take turns in sending / receiving roles
by Hanno Becker
· 6 years ago
cab87e6
Incorporate CID into MAC computations during record protection
by Hanno Becker
· 6 years ago
f2ed448
Add CID field to internal structure representing TLS records
by Hanno Becker
· 6 years ago
1c1f046
Replace 'ingoing' -> 'incoming' in CID debug messages
by Hanno Becker
· 6 years ago
c5f2422
Document behaviour of mbedtls_ssl_get_peer_cid() for empty CIDs
by Hanno Becker
· 6 years ago
5a29990
Improve structure of client-side CID extension parsing
by Hanno Becker
· 6 years ago
2262648
Improve debugging output of client-side CID extension parsing
by Hanno Becker
· 6 years ago
08556bf
Improve structure of ssl_parse_cid_ext()
by Hanno Becker
· 6 years ago
064b732
Use unused extension ID as tentative ID for CID extension
by Hanno Becker
· 6 years ago
554b6ea
Correct compile-time guard around unhexify() in ssl_server2
by Hanno Becker
· 6 years ago
a34ff5b
Correct compile-time guard around CID extension writing func on srv
by Hanno Becker
· 6 years ago
b7ee0cf
Make integer truncation explicit in mbedtls_ssl_set_cid()
by Hanno Becker
· 6 years ago
fcffdcc
Grep for dbug msgs witnessing use of CID in ssl_client2/ssl_server2
by Hanno Becker
· 6 years ago
dec2552
Change formating of CID debug output in ssl_client2/ssl_server2
by Hanno Becker
· 6 years ago
b1f89cd
Implement mbedtls_ssl_get_peer_cid()
by Hanno Becker
· 6 years ago
9ecb6c6
Grep for dbg msg witnessing copying of CIDs to SSL transform
by Hanno Becker
· 6 years ago
4bf7465
Copy CIDs into SSL transform if use of CID has been negotiated
by Hanno Becker
· 6 years ago
1327fa7
Add fields holding in/out CIDs to SSL record transformation struct
by Hanno Becker
· 6 years ago
a6a4c76
Grep for dbg msg witnessing parsing of CID extension in ServerHello
by Hanno Becker
· 6 years ago
a8373a1
Implement parsing of CID extension in ServerHello
by Hanno Becker
· 6 years ago
4bc9e9d
Grep for dbg msg witnessing writing of CID extension in ServerHello
by Hanno Becker
· 6 years ago
51de2d3
Implement writing of CID extension in ServerHello
by Hanno Becker
· 6 years ago
7dee2c6
Grep for dbg msg witnessing parsing of CID extension in ClientHello
by Hanno Becker
· 6 years ago
89dcc88
Implement parsing of CID extension in ClientHello
by Hanno Becker
· 6 years ago
6b78c83
Grep for dbg msg witnessing writing of CID extension in ClientHello
by Hanno Becker
· 6 years ago
49770ff
Implement writing of CID extension in ClientHello
by Hanno Becker
· 6 years ago
189a013
Check static bounds of CID lengths in check_config.h
by Hanno Becker
· 6 years ago
0652bc5
Add identifier for CID extension
by Hanno Becker
· 6 years ago
f157a97
Modify CID tests in ssl-opt.sh to grep for CID config debug msgs
by Hanno Becker
· 6 years ago
ca09224
Allow configuring own CID fields through mbedtls_ssl_get_peer_cid()
by Hanno Becker
· 6 years ago
2f28c10
Add fields to SSL structures describing state and config of CID ext
by Hanno Becker
· 6 years ago
35c36a6
Guard CID implementations by MBEDTLS_SSL_CID
by Hanno Becker
· 6 years ago
5f925be
Indicate ssl-opt.sh CID tests only test the stub CID code
by Hanno Becker
· 6 years ago
f1f9a82
Add warnings about status of implementation of CID API
by Hanno Becker
· 6 years ago
9bae30d
Fix use of requires_config_enabled in ssl-opt.sh
by Hanno Becker
· 6 years ago
d029a2b
Fix typo in CID test in ssl-opt.sh
by Hanno Becker
· 6 years ago
957dd92
Print peer CID from ssl_client2
by Hanno Becker
· 6 years ago
735c716
Print peer CID from ssl_server2
by Hanno Becker
· 6 years ago
982182f
Improve wording of CID debug msg in ssl_server2 example application
by Hanno Becker
· 6 years ago
4f664cb
Clarify that mbedtls_ssl_set_cid() applies to all subsequent HSs
by Hanno Becker
· 6 years ago
318a87b
Document that the use of CID is disabled by default.
by Hanno Becker
· 6 years ago
9742809
Reference CID Draft in Connection ID documentation in config.h
by Hanno Becker
· 6 years ago
7cf463e
Add basic Connection ID tests to ssl-opt.sh
by Hanno Becker
· 6 years ago
a7d2542
ssl_server2: Add cmd line options to configure use of CID extension
by Hanno Becker
· 6 years ago
90cb359
ssl_client2: Add cmd line options to configure use of CID extension
by Hanno Becker
· 6 years ago
1f583ee
ssl_client2: Add helper to unhexify binary command line data
by Hanno Becker
· 6 years ago
f8542cf
Add dummy implementations for CID API
by Hanno Becker
· 6 years ago
f8c1026
Update version_features.c
by Hanno Becker
· 6 years ago
ebafe8b
Update query_config.c
by Hanno Becker
· 6 years ago
bb47cd9
Add dep of MBEDTLS_SSL_CID on MBEDTLS_SSL_PROTO_DTLS to config check
by Hanno Becker
· 6 years ago
019f4b5
Add API for the use of the DTLS Connection ID extension
by Hanno Becker
· 6 years ago
2234e65
Add new configuration option controlling CID extension
by Hanno Becker
· 6 years ago
7be9b4e
Merge remote-tracking branch 'origin/pr/2664' into development
by Jaeden Amero
· 6 years ago
3b025ac
test: Always use `make clean` by itself
by Jaeden Amero
· 6 years ago
2ab5cf6
Merge remote-tracking branch 'origin/pr/2403' into development
by Jaeden Amero
· 6 years ago
a542bb6
Merge remote-tracking branch 'origin/pr/2647' into development
by Jaeden Amero
· 6 years ago
bb7a582
Merge remote-tracking branch 'origin/pr/2655' into development
by Jaeden Amero
· 6 years ago
7525aa0
Merge remote-tracking branch 'origin/pr/2410' into development
by Jaeden Amero
· 6 years ago
a76773f
crypto: Update to Mbed Crypto 8907b019e756
by Andrzej Kurek
· 6 years ago
3c8ccc0
Create seedfile before running tests
by Gilles Peskine
· 6 years ago
50a9351
crypto: Update to Mbed Crypto 81f953903764
by Andrzej Kurek
· 6 years ago
ade9e28
ssl_cli.c : add explicit casting to unsigned char
by Andrzej Kurek
· 6 years ago
Next »