TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls
/
cd90126ab3e701a79f84967bbf62f0078937f3da
cd90126
Adapt client auth detection in ssl_parse_certificate_verify()
by Hanno Becker
· 6 years ago
b265f5f
Use mbedtls_ssl_get_peer_cert() to query peer cert in cert_app
by Hanno Becker
· 6 years ago
0833c10
Adapt server-side signature verification to use raw public key
by Hanno Becker
· 6 years ago
69fad13
Adapt client-side signature verification to use raw public key
by Hanno Becker
· 6 years ago
53b6b7e
Adapt ssl_get_ecdh_params_from_cert() to use raw public key
by Hanno Becker
· 6 years ago
374800a
Adapt ssl_write_encrypted_pms() to use raw public key
by Hanno Becker
· 6 years ago
cf291d6
Make a copy of peer's raw public key after verifying its CRT chain
by Hanno Becker
· 6 years ago
3bf8cdf
Add field for peer's raw public key to TLS handshake param structure
by Hanno Becker
· 6 years ago
32c530e
Add raw public key buffer bounds to mbedtls_x509_crt struct
by Hanno Becker
· 6 years ago
2e6d347
Remove peer CRT from mbedtls_ssl_session if !KEEP_PEER_CERT
by Hanno Becker
· 6 years ago
4a2f8e5
Add peer CRT digest to session tickets
by Hanno Becker
· 6 years ago
e4aeb76
Parse and verify peer CRT chain in local variable
by Hanno Becker
· 7 years ago
df75938
Mitigate triple handshake attack by comparing digests only
by Hanno Becker
· 7 years ago
3008d28
Compute digest of peer's end-CRT in mbedtls_ssl_parse_certificate()
by Hanno Becker
· 7 years ago
9fb6e2e
Extend mbedtls_ssl_session by buffer holding peer CRT digest
by Hanno Becker
· 7 years ago
c88289a
Update version_features.c
by Hanno Becker
· 6 years ago
b90f655
Add configuration option to remove peer CRT after handshake
by Hanno Becker
· 7 years ago
869144b
Improve documentation of mbedtls_ssl_get_peer_cert()
by Hanno Becker
· 7 years ago
f02d550
Re-classify errors on missing peer CRT
by Hanno Becker
· 6 years ago
a177b38
Simplify session cache implementation via mbedtls_ssl_session_copy()
by Hanno Becker
· 6 years ago
58fccf2
Give ssl_session_copy() external linkage
by Hanno Becker
· 6 years ago
35e4177
Allow passing any X.509 CRT chain to ssl_parse_certificate_chain()
by Hanno Becker
· 7 years ago
3cf5061
Introduce helper function for peer CRT chain verification
by Hanno Becker
· 7 years ago
a7c1df6
Don't progress TLS state machine on peer CRT chain parsing error
by Hanno Becker
· 7 years ago
ae39b9e
Make use of macro and helper detecting whether CertRequest allowed
by Hanno Becker
· 6 years ago
6b9a6f3
Add helper function to check whether a CRT msg is expected
by Hanno Becker
· 6 years ago
5097cba
Introduce helper function to determine whether suite uses server CRT
by Hanno Becker
· 7 years ago
b71e90a
Use helper macro to detect whether some ciphersuite uses CRTs
by Hanno Becker
· 7 years ago
613d490
Unify state machine update in mbedtls_ssl_parse_certificate()
by Hanno Becker
· 7 years ago
a46c287
Clear peer's CRT chain outside before parsing new one
by Hanno Becker
· 7 years ago
b8a0857
Introduce helper to check for no-CRT notification from client
by Hanno Becker
· 7 years ago
8794fd9
Introduce CRT counter to CRT chain parsing function
by Hanno Becker
· 7 years ago
2214159
Introduce helper function to clear peer CRT from session structure
by Hanno Becker
· 7 years ago
933b9fc
Break overly long line in definition of mbedtls_ssl_get_session()
by Hanno Becker
· 7 years ago
1332f35
Don't reuse CRT from initial handshake during renegotiation
by Hanno Becker
· 7 years ago
e210b66
Merge remote-tracking branch 'origin/pr/595' into baremetal
by Simon Butcher
· 6 years ago
7400e8f
Merge remote-tracking branch 'origin/pr/591' into baremetal
by Simon Butcher
· 6 years ago
f2ef573
Merge remote-tracking branch 'origin/pr/598' into baremetal
by Simon Butcher
· 6 years ago
f1ff745
Merge remote-tracking branch 'origin/pr/597' into baremetal
by Simon Butcher
· 6 years ago
2ad7186
Merge remote-tracking branch 'origin/pr/575' into baremetal
by Simon Butcher
· 6 years ago
0c7e36c
Merge remote-tracking branch 'origin/pr/572' into baremetal
by Simon Butcher
· 6 years ago
b2c6383
Add missing !MBEDTLS_X509_REMOVE_INFO guards to ssl-opt.sh
by Hanno Becker
· 6 years ago
c6043f2
Address review comments
by Hanno Becker
· 6 years ago
b1cb0bd
all.sh: Add test for MBEDTLS_X509_REMOVE_INFO
by Peter Kolbus
· 7 years ago
4a156fc
Apply guards to make ssl-opt.sh work with MBEDTLS_X509_REMOVE_INFO
by Hanno Becker
· 6 years ago
b4d967a
Remove MBEDTLS_X509_REMOVE_INFO from `scripts/config.pl full`
by Hanno Becker
· 6 years ago
98f85c8
Add missing dependencies on !MBEDTLS_X509_REMOVE_INFO
by Hanno Becker
· 6 years ago
02a2193
Rename MBEDTLS_X509_INFO to !MBEDTLS_X509_REMOVE_INFO
by Hanno Becker
· 6 years ago
dc470ae
Reduce code size when mbedtls_x509_*_info() unused
by Peter Kolbus
· 7 years ago
31ae7fa
Add test for build warnings with baremetal.h
by Manuel Pégourié-Gonnard
· 6 years ago
e83b2c2
Fix unused variable warnings in pkparse.c
by Manuel Pégourié-Gonnard
· 6 years ago
070f107
Add --check option to scripts/baremetal.sh
by Manuel Pégourié-Gonnard
· 6 years ago
889bbc7
Fix unreachable code warnings with armc5
by Manuel Pégourié-Gonnard
· 6 years ago
19e8132
Add NO_TLS to configs/baremetal.h
by Manuel Pégourié-Gonnard
· 6 years ago
8b2608b
Fix style issues
by Jarno Lamsa
· 6 years ago
29a15c2
Set timer callbacks with serialization
by Jarno Lamsa
· 6 years ago
85c2380
Fix spacing
by Jarno Lamsa
· 6 years ago
034ae84
Fix compiler warnings
by Jarno Lamsa
· 6 years ago
8a91c06
Add tests for re-init flow for context serialization
by Jarno Lamsa
· 6 years ago
b5ff6a4
Add option for ssl-context re-initialization flow
by Jarno Lamsa
· 6 years ago
bff4a91
Fix spacing
by Jarno Lamsa
· 6 years ago
f4f8ed7
Allow stub implementation of the context_save for now
by Jarno Lamsa
· 6 years ago
5737ec9
Address review comments for code-style issues
by Jarno Lamsa
· 6 years ago
38061f4
Remove mbedtls_ssl_free() and mbedtls_ssl_init() from serialization flow in test
by Jarno Lamsa
· 6 years ago
cc281b8
ssl-opt.sh tests for serialization are currently using stub implementation
by Jarno Lamsa
· 6 years ago
dcfc2a7
Add missing slashes to tests
by Jarno Lamsa
· 6 years ago
fa45e60
Add serialization tests to ssl-opt.sh
by Jarno Lamsa
· 6 years ago
cf1b672
Use MBEDTLS_SSL_CONTEXT_SERIALIZATION flag
by Jarno Lamsa
· 6 years ago
f457293
Serialize/deserialize for ssl_server2
by Jarno Lamsa
· 6 years ago
654e8de
Rely on opt.exchanges for sending after serialization
by Jarno Lamsa
· 6 years ago
d736d08
Serialization/deserialization in ssl_client2
by Jarno Lamsa
· 6 years ago
0ea3cfe
Add option for serialization in ssl_client/server2
by Jarno Lamsa
· 6 years ago
11d3282
Add a ChangeLog entry.
by Manuel Pégourié-Gonnard
· 6 years ago
c84511f
Add check for undocumented positive option
by Manuel Pégourié-Gonnard
· 6 years ago
41efa21
Improve documentation of PROTO_NO_TLS
by Manuel Pégourié-Gonnard
· 6 years ago
7667afd
Clarify documentation of mbedtls_ssl_context_load()
by Manuel Pégourié-Gonnard
· 6 years ago
cc71c77
Fix typos, grammar and wording in documentation
by Manuel Pégourié-Gonnard
· 6 years ago
d87601e
Declare and document ssl_context_save()/load()
by Manuel Pégourié-Gonnard
· 6 years ago
91fa5ba
Add new config MBEDTLS_SSL_CONTEXT_SERIALIZATION
by Manuel Pégourié-Gonnard
· 6 years ago
1abb159
Merge branch 'mbedtls-2.16' into baremetal
by Hanno Becker
· 6 years ago
c725e4b
Merge remote-tracking branch 'origin/pr/590' into baremetal
by Simon Butcher
· 6 years ago
01a8eb2
Merge remote-tracking branch 'origin/pr/585' into baremetal
by Simon Butcher
· 6 years ago
c107850
Merge remote-tracking branch 'origin/pr/580' into baremetal
by Simon Butcher
· 6 years ago
62d03b2
Merge remote-tracking branch 'origin/pr/577' into baremetal
by Simon Butcher
· 6 years ago
ba8b1eb
Use negated option for controlling TLS support.
by Manuel Pégourié-Gonnard
· 6 years ago
418e761
Merge remote-tracking branch 'origin/pr/2484' into mbedtls-2.16
by Jaeden Amero
· 6 years ago
8f27b44
Merge remote-tracking branch 'origin/pr/2695' into mbedtls-2.16
by Jaeden Amero
· 6 years ago
342223e
Merge remote-tracking branch 'origin/pr/2676' into mbedtls-2.16
by Jaeden Amero
· 6 years ago
cfb0454
Merge remote-tracking branch 'origin/pr/2673' into mbedtls-2.16
by Jaeden Amero
· 6 years ago
7aed01c
Merge remote-tracking branch 'origin/pr/2481' into mbedtls-2.16
by Jaeden Amero
· 6 years ago
1adf212
Merge remote-tracking branch 'origin/pr/2497' into mbedtls-2.16
by Jaeden Amero
· 6 years ago
bcf97ec
UDP proxy: Don't attempt to dissect dgram into records when dropping
by Hanno Becker
· 6 years ago
fc1a40b
Remove MBEDTLS_SSL_SESSION_TICKETS from baremetal config
by Hanno Becker
· 6 years ago
2e51098
Add changelog entry
by Jarno Lamsa
· 6 years ago
5aca94e
Merge remote-tracking branch 'origin/pr/588' into baremetal
by Simon Butcher
· 6 years ago
214e211
Merge remote-tracking branch 'origin/pr/587' into baremetal
by Simon Butcher
· 6 years ago
f49a277
Merge remote-tracking branch 'origin/pr/576' into baremetal
by Simon Butcher
· 6 years ago
49f83e6
Change order of ChangeLog sections
by Hanno Becker
· 6 years ago
ec1c222
Fix a few style issues
by Manuel Pégourié-Gonnard
· 6 years ago
31d940b
Change test name
by Jarno Lamsa
· 6 years ago
Next »