1. 3ea0149 Store TLS1.2 ECDH point format only when USE_PSA_CRYPTO isn't selected by Neil Armstrong · 3 years, 4 months ago
  2. d91526c Refactor to make PSA and non-PSA ECDH(E) server code exclusive by Neil Armstrong · 3 years, 4 months ago
  3. 927410d Merge pull request #5611 from superna9999/5318-tls-ecdhe-psk by Manuel Pégourié-Gonnard · 3 years, 4 months ago
  4. 1b05aff Merge pull request #5624 from superna9999/5312-tls-server-ecdh by Manuel Pégourié-Gonnard · 3 years, 4 months ago
  5. 1039ba5 Check if not using Opaque PSK in ECHDE-PSK PSA version of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  6. ede381c Get PSK length & check for buffer size before writting in ECHDE-PSK PSA version of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  7. 3cae167 Check buffer pointers before storing peer's public key in ECHDE-PSK PSA version of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  8. fdf20cb Fix command indentation in ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  9. 2d63da9 Introduce zlen size variable in ECHDE-PSK part of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  10. d6e2759 Change to more appropriate pointer declaration in ECHDE-PSK part of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  11. fb0a81e Return PSA translated errors in ECHDE-PSK part of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  12. 5a1455d Remove useless braces in ECHDE-PSK part of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  13. 3bcef08 Update comments in ECHDE-PSK part of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  14. 549a3e4 Initialize uninitialized variable in ECHDE-PSK part of ssl_parse_client_key_exchange() by Neil Armstrong · 3 years, 4 months ago
  15. 039db29 Implement PSA server-side ECDHE-PSK by Neil Armstrong · 3 years, 5 months ago
  16. e88d190 Set ecdh_psa_privkey_is_external to 1 right after setting ecdh_psa_privkey in ssl_get_ecdh_params_from_cert() by Neil Armstrong · 3 years, 4 months ago
  17. f716a70 Rename mbedtls_ssl_handshake_params variable ecdh_psa_shared_key to ecdh_psa_privkey_is_external by Neil Armstrong · 3 years, 4 months ago
  18. 91477a7 Switch handshake->ecdh_bits to size_t and remove now useless cast & limit checks by Neil Armstrong · 3 years, 4 months ago
  19. 1335222 Return translated PSA error in PSA version of ssl_get_ecdh_params_from_cert() by Neil Armstrong · 3 years, 4 months ago
  20. f788253 Fix comment typo in PSA version of ssl_get_ecdh_params_from_cert() by Neil Armstrong · 3 years, 4 months ago
  21. 104a7c1 Handle Opaque PK EC keys in ssl_get_ecdh_params_from_cert() by Neil Armstrong · 3 years, 4 months ago
  22. 8113d25 Add ecdh_psa_shared_key flag to protect PSA privkey if imported by Neil Armstrong · 3 years, 4 months ago
  23. 5cd5f76 Use mbedtls_platform_zeroize() in ssl_get_ecdh_params_from_cert() by Neil Armstrong · 3 years, 5 months ago
  24. 4f33fbc Use PSA define for max EC key pair size in ssl_get_ecdh_params_from_cert() by Neil Armstrong · 3 years, 5 months ago
  25. 306d607 Fix indentation issue in PSA version of ssl_get_ecdh_params_from_cert() by Neil Armstrong · 3 years, 5 months ago
  26. 062de7d Use PSA_BITS_TO_BYTES instead of open-coded calculation in PSA version of ssl_get_ecdh_params_from_cert() by Neil Armstrong · 3 years, 5 months ago
  27. 1f4b396 Implement PSA server-side ECDH-RSA/ECDSA by Neil Armstrong · 3 years, 5 months ago
  28. 3cffc5c tls: Remove unnecessary checks of MBEDTLS_CIPHERSUITE_NODTLS by Ronald Cron · 3 years, 4 months ago
  29. 90f0120 ssl_tls12_server.c: Simplify TLS version check in ClientHello by Ronald Cron · 3 years, 5 months ago
  30. 8457c12 ssl_tls12_server.c: Remove some unnecessary checks on TLS minor version by Ronald Cron · 3 years, 5 months ago
  31. b894ac7 ssl_tls12_server.c: Remove some dead code for versions of TLS < 1.2 by Ronald Cron · 3 years, 5 months ago
  32. de1adee Rename ssl_cli/srv.c by Ronald Cron · 3 years, 5 months ago[Renamed from library/ssl_srv.c]
  33. 862902d ssl_srv.c: Mark ETM as disabled if cipher is not CBC by Ronald Cron · 3 years, 4 months ago
  34. 560ef59 Merge pull request #5613 from mprse/tls_ecdh_2a by Manuel Pégourié-Gonnard · 3 years, 5 months ago
  35. dd482bf Modify own_pubkey_max_len calculation by Przemek Stekiel · 3 years, 5 months ago
  36. a4e15cc Fix comment: add fields size by Przemek Stekiel · 3 years, 5 months ago
  37. 855938e Move mbedtls_ecdh_setup() to no-psa path by Przemek Stekiel · 3 years, 5 months ago
  38. 338b61d Fix code style by Przemek Stekiel · 3 years, 5 months ago
  39. ce1d792 Remove duplicated code by Przemek Stekiel · 3 years, 5 months ago
  40. fc91a1f Use PSA for private key generation and public key export only for ECDHE keys by Przemek Stekiel · 3 years, 5 months ago
  41. a21af3d Use mbedtls_psa_parse_tls_ecc_group() instead PSA_KEY_TYPE_ECC_KEY_PAIR( mbedtls_ecc_group_to_psa() ) by Przemek Stekiel · 3 years, 5 months ago
  42. 0a60c12 Add intermediate variables to increase code readability by Przemek Stekiel · 3 years, 5 months ago
  43. e9f0044 Destroy ecdh_psa_privkey on failure by Przemek Stekiel · 3 years, 5 months ago
  44. 130c4b5 Use PSA version of key agreement only for ECDHE keys by Przemek Stekiel · 3 years, 5 months ago
  45. fd32e96 ssl_parse_client_key_exchange(): read the curve identifier and the peer's public key and compute the shared secret using PSA by Przemek Stekiel · 3 years, 5 months ago
  46. b6ce0b6 ssl_prepare_server_key_exchange(): generate a private/public key and write out the curve identifier and public key using PSA by Przemek Stekiel · 3 years, 5 months ago
  47. 6989407 Add accessor to retrieve SNI during handshake by Glenn Strauss · 3 years, 6 months ago
  48. 2ed9527 Add server certificate selection callback by Glenn Strauss · 3 years, 6 months ago
  49. e754193 Remove guard inside ssl_srv.c by Jerry Yu · 3 years, 6 months ago
  50. fb4b647 tls13_only: improve guards of files. by Jerry Yu · 3 years, 6 months ago
  51. c5aef88 tls13_only: guard ssl_{cli,srv}.c with TLS1_2 by Jerry Yu · 3 years, 7 months ago
  52. c3091b1 tls13_only: compile pass by Jerry Yu · 3 years, 7 months ago
  53. 8c010eb Fix comments, code style, remove debug code by Przemyslaw Stekiel · 3 years, 6 months ago
  54. 2c87a20 ssl_write_encrypt_then_mac_ext(): adapt to psa crypto by Przemyslaw Stekiel · 3 years, 6 months ago
  55. 9719885 fix coding style issues by Jerry Yu · 3 years, 7 months ago
  56. eb821c6 remove check_sig_hash by Jerry Yu · 3 years, 7 months ago
  57. 24811fb replace check_sig_hash with is_offered by Jerry Yu · 3 years, 7 months ago
  58. 1bab301 Add signature algorithm supported check by Jerry Yu · 3 years, 7 months ago
  59. 713013f fix various issues by Jerry Yu · 3 years, 7 months ago
  60. 6106fdc fix build fail without TLS13 by Jerry Yu · 3 years, 7 months ago
  61. 1abd1bc Change write_sig_alg_ext of tls12 by Jerry Yu · 3 years, 8 months ago
  62. 0e5bcb6 Replace directly access for sig_hashes by Jerry Yu · 3 years, 8 months ago
  63. 18cd439 Align signature_algorithms extension name by Jerry Yu · 3 years, 8 months ago
  64. d491ea4 fix comment issue by Jerry Yu · 3 years, 7 months ago
  65. b925f21 fix comment issues by Jerry Yu · 3 years, 7 months ago
  66. ffef9c5 fix alignment issue by Jerry Yu · 3 years, 7 months ago
  67. b47d0f8 Replace SUPPORTED_ELLIPTIC_CURVES with SUPPORTED_GROUPS by Jerry Yu · 3 years, 8 months ago
  68. 69a6342 psa: Fix the size of hash buffers by Ronald Cron · 3 years, 10 months ago
  69. be7b21d Merge branch 'development' into 3649_move_constant_time_functions_into_separate_module by Gabor Mezei · 3 years, 8 months ago
  70. 01f3dae Refactor elliptic curve extension for NamedGroups by Brett Warren · 4 years ago
  71. 22c9a6f Rename internal header constant_time.h to constant_time_internal.h by Gabor Mezei · 3 years, 10 months ago
  72. 90437e3 Rename constant-time functions to have mbedtls_ct prefix by Gabor Mezei · 3 years, 10 months ago
  73. 765862c Move mbedtls_cf_memcmp to a new public header by Gabor Mezei · 3 years, 10 months ago
  74. d96a5c2 Fix wrong usage of counter len macro by Jerry Yu · 3 years, 10 months ago
  75. 9cb5569 Propagate usage of mask generation functions by gabor-mezei-arm · 4 years ago
  76. 4602564 Unify memcmp functions by gabor-mezei-arm · 4 years, 1 month ago
  77. db9a38c Move contatnt-time memcmp functions to the contant-time module by gabor-mezei-arm · 3 years, 10 months ago
  78. d9a94fe Add counter length macro by Jerry Yu · 3 years, 10 months ago
  79. 957f0fa Add length macro for in_ctr by Jerry Yu · 3 years, 10 months ago
  80. 94180e7 Minor coding style improvement by Joe Subbiani · 4 years ago
  81. e4603ee Compress byte reading macros in if statements by Joe Subbiani · 4 years ago
  82. 1f6c3ae Tidy up ssl_*.c grouped MBEDTLS_BYTE_x macros by Joe Subbiani · 4 years ago
  83. 6dd7364 Replace instances of byte reading macros with PUT by Joe Subbiani · 4 years, 1 month ago
  84. fbeb692 Use byte reading macros in places not using a byte mask by Joe Subbiani · 4 years, 1 month ago
  85. 2194dc4 Replace MBEDTLS_CHAR_x with MBEDTLS_BYTE_x by Joe Subbiani · 4 years, 1 month ago
  86. cd84d76 Add Character byte reading macros by Joe Subbiani · 4 years, 1 month ago
  87. 41934dd Share preparatory code between client and server handshake steps by Hanno Becker · 4 years ago
  88. fadbdbb Store TLS version in SSL session structure by Hanno Becker · 4 years ago
  89. dc1a3b2 Merge pull request #4724 from hanno-arm/ssl_hs_parse_error_3_0 by Dave Rodgman · 4 years, 1 month ago
  90. c50b717 Update a couple of ssl error codes by Dave Rodgman · 4 years, 1 month ago
  91. bb05cd0 Remove MBEDTLS_ERR_SSL_NO_CIPHER_CHOSEN by Dave Rodgman · 4 years, 1 month ago
  92. 53c8689 Introduce new TLS error codes by Dave Rodgman · 4 years, 1 month ago
  93. 096c411 Remove MBEDTLS_ERR_SSL_NO_USABLE_CIPHERSUITE by Dave Rodgman · 4 years, 1 month ago
  94. 43fcb8d Address review feedback by Dave Rodgman · 4 years, 1 month ago
  95. 2fc9a65 Address review feedback by Hanno Becker · 4 years, 1 month ago
  96. 90d59dd Remove MBEDTLS_ERR_SSL_BAD_HS_CLIENT_HELLO by Hanno Becker · 4 years, 1 month ago
  97. cbc8f6f Remove MBEDTLS_ERR_SSL_BAD_HS_SERVER_KEY_EXCHANGE by Hanno Becker · 4 years, 1 month ago
  98. d934a2a Remove MBEDTLS_ERR_SSL_BAD_HS_CERTIFICATE_VERIFY by Hanno Becker · 4 years, 1 month ago
  99. d3eec78 Remove MBEDTLS_ERR_SSL_BAD_HS_CLIENT_KEY_EXCHANGE_CS by Hanno Becker · 4 years, 1 month ago
  100. 666b5b4 Remove MBEDTLS_ERR_SSL_BAD_HS_CLIENT_KEY_EXCHANGE by Hanno Becker · 4 years, 1 month ago