1. e12aafb tinyCrypt: Initial commit towards ECDHE support by Jarno Lamsa · 6 years ago
  2. fb02e96 Fix indentation to a multiple of 4 spaces by Manuel Pégourié-Gonnard · 6 years ago
  3. 8793fab Fix two typos in comments by Manuel Pégourié-Gonnard · 6 years ago
  4. 572d448 Enforce NULL context for hardcoded RNG by Hanno Becker · 6 years ago
  5. 9a12243 Introduce getter function for RNG context by Hanno Becker · 6 years ago
  6. 09d2364 Share code between In-CliKeyExch and Out-CliKeyExch by Hanno Becker · 6 years ago
  7. f3a15b3 Fix possibly-lossy conversion warning from MSVC by Manuel Pégourié-Gonnard · 6 years ago
  8. ec01408 Reintroduce length 0 check for records by Hanno Becker · 6 years ago
  9. 8061c6e Don't use memcpy() for 2-byte copy operation by Hanno Becker · 6 years ago
  10. 7b5ba84 Remove integer parsing macro by Hanno Becker · 6 years ago
  11. 6181761 Fix alignment in record header parsing routine by Hanno Becker · 6 years ago
  12. c1c173c Make sure 'record from another epoch' is displayed for next epoch by Hanno Becker · 6 years ago
  13. 03e2db6 Implement record checking API by Hanno Becker · 6 years ago
  14. 21fc61c Mark ssl_parse_record_header() as `const` in SSL context by Hanno Becker · 6 years ago
  15. c360dcc [API break] Remove mbedtls_ssl_context::in_iv field by Hanno Becker · 6 years ago
  16. 05413d9 Remove duplicate setting of ssl->in_msgtype and ssl->in_msglen by Hanno Becker · 6 years ago
  17. bd70c8e Move update of in_xxx fields in ssl_get_next_record() by Hanno Becker · 6 years ago
  18. bf256cd Move update of in_xxx fields outside of ssl_prepare_record_content() by Hanno Becker · 6 years ago
  19. 106f3da Reduce dependency of ssl_prepare_record_content() on in_xxx fields by Hanno Becker · 6 years ago
  20. 6837972 Move ssl_update_in_pointers() to after record hdr parsing by Hanno Becker · 6 years ago
  21. fc55172 Mark DTLS replay check as `const` on the SSL context by Hanno Becker · 6 years ago
  22. 6941245 Move updating the internal rec ptrs to outside of rec hdr parsing by Hanno Becker · 6 years ago
  23. 40478be Mark ssl_decrypt_buf() as `const in the input SSL context by Hanno Becker · 6 years ago
  24. a89610a Adapt ssl_prepare_record_content() to use SSL record structure by Hanno Becker · 6 years ago
  25. 9babbf7 Use record length from record structure when fetching content in TLS by Hanno Becker · 6 years ago
  26. 2720f4c Use record structure when remembering offset of next record in dgram by Hanno Becker · 6 years ago
  27. 2528ee0 Use SSL record structure when skipping over unexpected record by Hanno Becker · 6 years ago
  28. af5bcfc Adapt ssl_buffer_future_record() to work with SSL record structure by Hanno Becker · 6 years ago
  29. c6e7c57 Setup SSL record structure in ssl_parse_record_header() by Hanno Becker · 6 years ago
  30. 6c0e53c Minor documentation improvements in ssl_parse_record_header() by Hanno Becker · 6 years ago
  31. e045277 Check for sufficient datagram size in ssl_parse_record_header() by Hanno Becker · 6 years ago
  32. a61925f Don't send an alert when receiving a record of unknown ContentType by Hanno Becker · 6 years ago
  33. dc4d627 Don't call ssl_fetch_input for record content fetch in DTLS by Hanno Becker · 6 years ago
  34. 2982346 Don't call ssl_fetch_input for record hdr size check in DTLS by Hanno Becker · 6 years ago
  35. de7d6d3 Move size-check for DTLS record header with CID to DTLS-only branch by Hanno Becker · 6 years ago
  36. 87b5626 Check same-port-reconnect from client outside of record hdr parsing by Hanno Becker · 6 years ago
  37. 07d420d Remove unnecessary backup of explicit IV in AEAD record decryption by Hanno Becker · 6 years ago
  38. 8244cfa Remove redundant minimum length check by Hanno Becker · 6 years ago
  39. 6d3db0f Improve documentation of mbedtls_ssl_decrypt_buf() by Hanno Becker · 6 years ago
  40. 9520b31 Remove misleading comment in mbedtls_ssl_decrypt_buf() by Hanno Becker · 6 years ago
  41. b603bd3 Remove assertion in mbedtls_ssl_decrypt_buf() by Hanno Becker · 6 years ago
  42. f024285 Check architectural bound for max record payload len in one place by Hanno Becker · 6 years ago
  43. 408a274 Remove redundant length-0 checks for incoming unprotected records by Hanno Becker · 6 years ago
  44. 1c26845 Remove redundant length check during record header parsing by Hanno Becker · 6 years ago
  45. 02f2609 Introduce configuration option and API for SSL record checking by Hanno Becker · 6 years ago
  46. cdb83e7 Merge pull request #616 from mpg/context-s11n by Manuel Pégourié-Gonnard · 6 years ago
  47. 69a3e41 Improve reability and debugability of large if by Manuel Pégourié-Gonnard · 6 years ago
  48. 18332c5 Improve getter for renegotiation enabled by Manuel Pégourié-Gonnard · 6 years ago
  49. b3bb31b Introduce getter function for disable_renego by Manuel Pégourié-Gonnard · 6 years ago
  50. 14e2a8a Fix a typo in a comment by Manuel Pégourié-Gonnard · 6 years ago
  51. 42a6b04 Don't forget about pending alerts after ssl_get_next_record() by Hanno Becker · 6 years ago
  52. b82350b Introduce helper function to send pending fatal alerts by Hanno Becker · 6 years ago
  53. c8f5299 Rename pend_alert_msg -> pending_fatal_alert_msg by Hanno Becker · 6 years ago
  54. 2e8d133 Reintroduce return code checking when sending NoRenego alert by Hanno Becker · 6 years ago
  55. 3caf718 Remove field to store level of pending alert by Hanno Becker · 6 years ago
  56. de62da9 Use separate functions to pend fatal and non-fatal alerts by Hanno Becker · 6 years ago
  57. 1facd55 Replace xxx_send_alert by xxx_pend_alert to save code by Hanno Becker · 6 years ago
  58. f46e1ce Introduce SSL helper function to mark pending alerts by Hanno Becker · 6 years ago
  59. 7af7375 Fix MSVC warning by Manuel Pégourié-Gonnard · 6 years ago
  60. 2cc9223 Fix compile error in reduced configurations by Manuel Pégourié-Gonnard · 6 years ago
  61. 3b014fc Merge remote-tracking branch 'origin/pr/604' into baremetal by Simon Butcher · 6 years ago
  62. 7ce9446 Avoid duplication of session format header by Manuel Pégourié-Gonnard · 6 years ago
  63. a7cd483 Implement config-checking header to context s11n by Manuel Pégourié-Gonnard · 6 years ago
  64. 4c1d06e Provide serialisation API only if it's enabled by Manuel Pégourié-Gonnard · 6 years ago
  65. 73a4636 Adapt to hardcoded single version by Manuel Pégourié-Gonnard · 6 years ago
  66. 2f3fa62 Fix compiler warning: comparing signed to unsigned by Manuel Pégourié-Gonnard · 6 years ago
  67. bc847ca Actually reset the context on save as advertised by Manuel Pégourié-Gonnard · 6 years ago
  68. ff22200 Re-use buffer allocated by handshake_init() by Manuel Pégourié-Gonnard · 6 years ago
  69. 138079d Add setting of forced fields when deserializing by Manuel Pégourié-Gonnard · 6 years ago
  70. 16d1485 Add saved fields from top-level structure by Manuel Pégourié-Gonnard · 6 years ago
  71. 322f3c7 Add transform (de)serialization by Manuel Pégourié-Gonnard · 6 years ago
  72. 8175816 Fix English in comments by Manuel Pégourié-Gonnard · 6 years ago
  73. f1f3e52 Add session saving/loading by Manuel Pégourié-Gonnard · 6 years ago
  74. d0dd104 Add (stub) header writing and checking by Manuel Pégourié-Gonnard · 6 years ago
  75. 5e534ba Add usage checks in context_load() by Manuel Pégourié-Gonnard · 6 years ago
  76. b6163ef Document internal serialisation format by Manuel Pégourié-Gonnard · 6 years ago
  77. 569ed6b Implement usage checks in context_save() by Manuel Pégourié-Gonnard · 6 years ago
  78. a3024ee Save Hello random bytes for later use by Manuel Pégourié-Gonnard · 6 years ago
  79. 95d1b93 Don't reset timer during mbedtls_ssl_setup() by Hanno Becker · 6 years ago
  80. 56595f4 Allow hardcoding single signature hash at compile-time by Hanno Becker · 6 years ago
  81. f1bc9e1 Introduce helper functions to traverse signature hashes by Hanno Becker · 6 years ago
  82. 627fbee Don't offer SHA-1 in CertificateRequest message in TLS 1.2 by Hanno Becker · 6 years ago
  83. 0a64170 Remove redundant check in mbedtls_ssl_set_calc_verify_md() by Hanno Becker · 6 years ago
  84. feb1cee Merge remote-tracking branch 'origin/pr/602' into baremetal by Simon Butcher · 6 years ago
  85. c1096e7 Allow hardcoding single supported elliptic curve by Hanno Becker · 6 years ago
  86. ee24f8c Remove unnecessary check for presence of supported EC list by Hanno Becker · 6 years ago
  87. a4a9c69 Introduce helper macro for traversal of supported EC TLS IDs by Hanno Becker · 6 years ago
  88. 33b9b25 Remove SSL version configuration API if versions are hardcoded by Hanno Becker · 6 years ago
  89. 0a92b81 Remove mbedtls_ssl_transform::minor_ver if the version is hardcoded by Hanno Becker · 6 years ago
  90. 7b628e5 Make mbedtls_ssl_read/write_version static inline by Hanno Becker · 6 years ago
  91. 2881d80 Introduce getter function for max/min SSL version by Hanno Becker · 6 years ago
  92. e965bd3 Allow hardcoding of min/max minor/major SSL version at compile-time by Hanno Becker · 6 years ago
  93. fabfb85 Merge remote-tracking branch 'origin/pr/603' into baremetal by Simon Butcher · 6 years ago
  94. 14a4a44 Remove mbedtls_ssl_conf_dbg() if !MBEDTLS_DEBUG_C by Hanno Becker · 6 years ago
  95. 272063a Don't store debug func ptr cb + ctx in SSL config if !DEBUG_C by Hanno Becker · 6 years ago
  96. 73f4cb1 Rename XXX_SINGLE_CIPHERSUITE -> XXX_CONF_SINGLE_CIPHERSUITE by Hanno Becker · 6 years ago
  97. e02758c Remove ciphersuite from SSL session if single suite hardcoded by Hanno Becker · 6 years ago
  98. 6ace465 Remove ciphersuite from SSL config if single suite hardcoded by Hanno Becker · 6 years ago
  99. df64596 Remove ciphersuite from handshake params if single suite hardcoded by Hanno Becker · 6 years ago
  100. 473f98f Introduce ciphersuite handle type by Hanno Becker · 6 years ago