TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls
/
eec2be9c9f851d17f361d3c4ccaf35a98a025aca
eec2be9
Add CID configuration API
by Hanno Becker
· 6 years ago
ccc2456
Re-implement mbedtls_ssl_{in/out}_hdr_len() via in/out pointers
by Hanno Becker
· 6 years ago
4339576
Split mbedtls_ssl_hdr_len() in separate functions for in/out records
by Hanno Becker
· 6 years ago
46483f1
Add helper function to check validity of record content type
by Hanno Becker
· 6 years ago
74dd3a7
Move dropping of unexpected AD records to after record decryption
by Hanno Becker
· 6 years ago
f5970a0
Set pointer to start of plaintext at record decryption time
by Hanno Becker
· 6 years ago
16e9ae2
Treat an invalid record after decryption as fatal
by Hanno Becker
· 6 years ago
70463db
Expain rationale for handling of consecutive empty AD records
by Hanno Becker
· 6 years ago
78c4302
Don't allow calling CID API outside of DTLS
by Hanno Becker
· 6 years ago
6943920
Add missing dependencies in unit tests for CID-based record enc/dec
by Hanno Becker
· 6 years ago
1f02f05
Fix additional data calculation if CID is disabled
by Hanno Becker
· 6 years ago
3b1a885
Remove unnecessary empty line in ssl_tls.c
by Hanno Becker
· 6 years ago
7dc2577
Don't quote DTLSInnerPlaintext structure multiple times
by Hanno Becker
· 6 years ago
8969369
Improve wording in ssl_build_inner_plaintext()
by Hanno Becker
· 6 years ago
24ce1eb
Remove unnecessary whitespace in ssl_extract_add_data_from_record()
by Hanno Becker
· 6 years ago
28a0c4e
Reduce stack usage for additional data buffers in record dec/enc
by Hanno Becker
· 6 years ago
acadb0a
Add length of CID to additional data used for record protection
by Hanno Becker
· 6 years ago
99abf51
Improve documentation of ssl_extract_add_data_from_record()
by Hanno Becker
· 6 years ago
346a590
Unify documentation of internal SSL record structure
by Hanno Becker
· 6 years ago
505089d
Fix missing compile-time guards around CID-only constants
by Hanno Becker
· 6 years ago
4c6fe12
Remove TODO
by Hanno Becker
· 6 years ago
2e7cd5a
Use MBEDTLS_ namespace for internal CID length constant
by Hanno Becker
· 6 years ago
d91dc37
Skip copying CIDs to SSL transforms until CID feature is complete
by Hanno Becker
· 6 years ago
92c930f
Implement inner plaintext parsing/writing for CID-based connections
by Hanno Becker
· 6 years ago
d8f753b
Add unit tests for record protection using CID
by Hanno Becker
· 6 years ago
36fb379
Record enc/dec tests: Don't take turns in sending / receiving roles
by Hanno Becker
· 6 years ago
e83efe6
Incorporate CID into MAC computations during record protection
by Hanno Becker
· 6 years ago
80fe63e
Add CID field to internal structure representing TLS records
by Hanno Becker
· 6 years ago
8013b27
Replace 'ingoing' -> 'incoming' in CID debug messages
by Hanno Becker
· 6 years ago
cb063f5
Document behaviour of mbedtls_ssl_get_peer_cid() for empty CIDs
by Hanno Becker
· 6 years ago
f885d3b
Improve structure of client-side CID extension parsing
by Hanno Becker
· 6 years ago
8f68f87
Improve debugging output of client-side CID extension parsing
by Hanno Becker
· 6 years ago
19976b5
Improve structure of ssl_parse_cid_ext()
by Hanno Becker
· 6 years ago
fc7ff92
Use unused extension ID as tentative ID for CID extension
by Hanno Becker
· 6 years ago
4ce0604
Enable use of CID in baremetal configuration and test script
by Hanno Becker
· 6 years ago
2e0bedc
Correct compile-time guard around unhexify() in ssl_server2
by Hanno Becker
· 6 years ago
31f1668
Correct compile-time guard around CID extension writing func on srv
by Hanno Becker
· 6 years ago
b4a5606
Make integer truncation explicit in mbedtls_ssl_set_cid()
by Hanno Becker
· 6 years ago
6a3ff28
Grep for dbug msgs witnessing use of CID in ssl_client2/ssl_server2
by Hanno Becker
· 6 years ago
0c8281a
Change formating of CID debug output in ssl_client2/ssl_server2
by Hanno Becker
· 6 years ago
2de89fa
Implement mbedtls_ssl_get_peer_cid()
by Hanno Becker
· 6 years ago
5e2cd14
Grep for dbg msg witnessing copying of CIDs to SSL transform
by Hanno Becker
· 6 years ago
dd0afca
Copy CIDs into SSL transform if use of CID has been negotiated
by Hanno Becker
· 6 years ago
4f0b15f
Add fields holding in/out CIDs to SSL record transformation struct
by Hanno Becker
· 6 years ago
cf2a565
Grep for dbg msg witnessing parsing of CID extension in ServerHello
by Hanno Becker
· 6 years ago
1ba81f6
Implement parsing of CID extension in ServerHello
by Hanno Becker
· 6 years ago
4eb0587
Grep for dbg msg witnessing writing of CID extension in ServerHello
by Hanno Becker
· 6 years ago
072d4ec
Implement writing of CID extension in ServerHello
by Hanno Becker
· 6 years ago
c008cb5
Grep for dbg msg witnessing parsing of CID extension in ClientHello
by Hanno Becker
· 6 years ago
c403b26
Implement parsing of CID extension in ClientHello
by Hanno Becker
· 6 years ago
7345599
Grep for dbg msg witnessing writing of CID extension in ClientHello
by Hanno Becker
· 6 years ago
39ec525
Implement writing of CID extension in ClientHello
by Hanno Becker
· 6 years ago
4662971
Check static bounds of CID lengths in check_config.h
by Hanno Becker
· 6 years ago
4baec2c
Add identifier for CID extension
by Hanno Becker
· 6 years ago
9dae9fd
Modify CID tests in ssl-opt.sh to grep for CID config debug msgs
by Hanno Becker
· 6 years ago
0748986
Allow configuring own CID fields through mbedtls_ssl_get_peer_cid()
by Hanno Becker
· 6 years ago
e5e7f62
Add fields to SSL structures describing state and config of CID ext
by Hanno Becker
· 6 years ago
724a695
Merge remote-tracking branch 'origin/pr/562' into baremetal
by Simon Butcher
· 6 years ago
e372d5f
Merge remote-tracking branch 'origin/pr/558' into baremetal
by Simon Butcher
· 6 years ago
999ac17
Merge remote-tracking branch 'origin/pr/566' into baremetal
by Simon Butcher
· 6 years ago
ec998c6
Merge remote-tracking branch 'origin/pr/564' into baremetal
by Simon Butcher
· 6 years ago
8751e35
Remove baremetal from build component names
by Jarno Lamsa
· 6 years ago
4498de5
Address review comments about all.sh
by Jarno Lamsa
· 6 years ago
0668b8f
Description of MBEDTLS_USE_UECC
by Jarno Lamsa
· 6 years ago
d91f7fa
Add native build targets for uecc baremetal config
by Jarno Lamsa
· 6 years ago
65ea285
Fix typo
by Jarno Lamsa
· 6 years ago
f6371ff
Add armcc5 build for uecc and baremetal config
by Jarno Lamsa
· 6 years ago
4613220
Make compiler happy when MBEDTLS_USE_UECC disabled
by Jarno Lamsa
· 6 years ago
0888581
Fix uninitialized variable access in debug output of record enc/dec
by Hanno Becker
· 6 years ago
a131766
Ensure non-NULL key buffer when building SSL test transforms
by Hanno Becker
· 6 years ago
1acadb7
Catch errors while building SSL test transforms
by Hanno Becker
· 6 years ago
afc528a
Use mbedtls_{calloc|free}() in SSL unit test suite
by Hanno Becker
· 6 years ago
f832343
Improve documentation of mbedtls_record
by Hanno Becker
· 6 years ago
c5aee96
Adapt record length value after encryption
by Hanno Becker
· 6 years ago
b17a1a2
Alternative between send/recv transform in SSL record test suite
by Hanno Becker
· 6 years ago
5c1176e
Fix memory leak on failure in test_suite_ssl
by Hanno Becker
· 6 years ago
30d02cd
Rename ssl_decrypt_buf() to mbedtls_ssl_decrypt_buf() in comment
by Hanno Becker
· 7 years ago
3693c72
Add record encryption/decryption tests for ARIA to SSL test suite
by Hanno Becker
· 7 years ago
a198bb7
Improve documentation of mbedtls_ssl_transform
by Hanno Becker
· 7 years ago
93012fe
Double check that record expansion is as expected during decryption
by Hanno Becker
· 7 years ago
a795323
Move debugging output after record decryption
by Hanno Becker
· 7 years ago
d300003
Add encryption/decryption tests for small records
by Hanno Becker
· 8 years ago
611a83b
Add tests for record encryption/decryption
by Hanno Becker
· 8 years ago
9223132
Reduce size of `ssl_transform` if no MAC ciphersuite is enabled
by Hanno Becker
· 8 years ago
f122944
Remove code from `ssl_derive_keys` if relevant modes are not enabled
by Hanno Becker
· 8 years ago
4c6876b
Provide standalone version of `ssl_decrypt_buf`
by Hanno Becker
· 8 years ago
00c0aa0
Exclude MBEDTLS_USE_UECC from the full config
by Jarno Lamsa
· 6 years ago
ce3cb64
Fix check-names.sh
by Jarno Lamsa
· 6 years ago
3307b53
Provide standalone version of `ssl_encrypt_buf`
by Hanno Becker
· 8 years ago
4a5eeae
Improve documentation of mbedtls_ssl_transform
by Hanno Becker
· 8 years ago
9d2e4b4
Add structure representing TLS records
by Hanno Becker
· 8 years ago
b628a80
Fix definition of SSL_SOME_MODES_USE_MAC
by Hanno Becker
· 7 years ago
5cc04d5
Correct space needed for MAC in case of NULL cipher
by Hanno Becker
· 8 years ago
8759e16
Remove ciphersuite_info from ssl_transform
by Hanno Becker
· 8 years ago
e7f2df0
Remove key length field from ssl_transform
by Hanno Becker
· 8 years ago
5b87128
MBEDTLS_USE_UECC and MBEDTLS_NO_64BIT_MULTIPLICATION conflicting
by Jarno Lamsa
· 6 years ago
5542796
Guard tinycrypt files with MBEDTLS_USE_UECC
by Jarno Lamsa
· 6 years ago
8557fc9
Add whitelist for uECC files for check-names.sh
by Jarno Lamsa
· 6 years ago
95de220
Ignore tinycrypt headers from doxygen input
by Jarno Lamsa
· 6 years ago
02493af
Ignore tinycrypt files from check-files.py
by Jarno Lamsa
· 6 years ago
Next »