1. 49f179d Always call mbedtls_ssl_handshake_set_state by Gilles Peskine · 4 months ago
  2. 4726d20 Remove unused variable in ssl_server.c by Waleed Elmelegy · 5 months ago
  3. 2878a05 Remove obselete checks due to the introduction of handhsake defragmen... by Deomid rojer Ryabkov · 5 months ago
  4. 4002e6f Merge remote-tracking branch 'mbedtls-3.6' into mbedtls-3.6-restricted by Gilles Peskine · 11 months ago
  5. 4938b69 Make mbedtls_ssl_check_cert_usage() work for 1.3 by Manuel Pégourié-Gonnard · 11 months ago
  6. 96a0c5c Clean up mbedtls_ssl_check_cert_usage() by Manuel Pégourié-Gonnard · 11 months ago
  7. 5be4fd7 Fix build of v3.6 with unset MBEDTLS_DHM_C but MBEDTLS_USE_PSA_CRYPTO set (fixes #9188) by Michael Schuster · 1 year, 1 month ago
  8. dc49258 Guard configuration-specific code by Gilles Peskine · 1 year, 7 months ago
  9. 139a418 Merge pull request #8587 from yanrayw/issue/4911/ssl_setup-check-RNG-configuration by Ronald Cron · 1 year, 4 months ago
  10. 84b9f1b mbedtls_ecp_write_key_ext(): migrate internally by Gilles Peskine · 1 year, 5 months ago
  11. 0ecb5fd Merge pull request #8574 from ronald-cron-arm/ssl-tickets by Manuel Pégourié-Gonnard · 1 year, 4 months ago
  12. b4f5076 debug: move internal functions declarations to an internal header file by Valerio Setti · 1 year, 6 months ago
  13. 3c0072b ssl_ticket.c: Base ticket age check on the ticket creation time by Ronald Cron · 1 year, 8 months ago
  14. 17ef8df ssl_session: Define unconditionally the endpoint field by Ronald Cron · 1 year, 8 months ago
  15. 4bf4473 Merge pull request #8633 from Wenxing-hou/clear_clienthello_comment by Gilles Peskine · 1 year, 7 months ago gh-readonly-queue/development/pr-8633-0e6fdc4f1d1bf7093e8a8f43e3cfbc742f1e8b2b
  16. a4b38f2 Merge pull request #8579 from valeriosetti/issue7995 by Manuel Pégourié-Gonnard · 1 year, 7 months ago
  17. 3b9de38 Make clienthello comment clear by Wenxing Hou · 1 year, 7 months ago
  18. 202bb71 ssl_tls12_server: do not export/import opaque keys by Valerio Setti · 1 year, 7 months ago
  19. bced8bc ssl_tls12_server: export/import PK parsed key in TLS side by Valerio Setti · 1 year, 7 months ago
  20. 197199f tls12 & tls13 server: remove RNG check in `write_server_hello` by Yanray Wang · 1 year, 7 months ago
  21. f9362b7 pk_internal: small renaming for mbedtls_pk_get_group_id() by Valerio Setti · 1 year, 7 months ago
  22. c37ad44 misc type fixes in ssl by Dave Rodgman · 1 year, 8 months ago
  23. a3d0f61 Use MBEDTLS_GET_UINTxx_BE macro by Dave Rodgman · 1 year, 8 months ago
  24. e4a6f5a Use size_t cast for pointer subtractions by Dave Rodgman · 1 year, 8 months ago
  25. 16799db update headers by Dave Rodgman · 1 year, 8 months ago
  26. f6f4695 Merge pull request #8320 from valeriosetti/issue8263 by Gilles Peskine · 1 year, 9 months ago gh-readonly-queue/development/pr-8320-62418dd20b8eccd121a865c3ba2173547b88ffbb
  27. 74cb404 ssl: improve ssl_check_key_curve() by Valerio Setti · 1 year, 9 months ago
  28. 4d0e846 ssl: reorganize guards surrounding ssl_get_ecdh_params_from_cert() by Valerio Setti · 1 year, 9 months ago
  29. e7cefae ssl: fix getting group id in ssl_check_key_curve() by Valerio Setti · 1 year, 9 months ago
  30. 3713bee Remove leftover local debug line by Gilles Peskine · 1 year, 9 months ago
  31. 530c423 Improve some debug messages and error codes by Gilles Peskine · 1 year, 9 months ago
  32. c8df898 Fix buffer overflow in TLS 1.2 ClientKeyExchange parsing by Gilles Peskine · 1 year, 9 months ago
  33. eda1b1f Merge pull request #7921 from valeriosetti/issue7613 by Gilles Peskine · 1 year, 10 months ago
  34. b7825ce Rename uint->bool operators to reflect input types by Dave Rodgman · 1 year, 11 months ago
  35. c98f8d9 Merge branch 'development' into safer-ct5 by Dave Rodgman · 1 year, 11 months ago
  36. e9646ec tls: fix guards for ECDSA support by Valerio Setti · 1 year, 11 months ago
  37. 45d56f3 tls: replace ECDSA_C and PK_CAN_ECDSA_SOME with key exchange related ones by Valerio Setti · 2 years ago
  38. de8f56e Merge pull request #7884 from valeriosetti/issue7612 by Manuel Pégourié-Gonnard · 1 year, 11 months ago
  39. bb07377 Merge pull request #7935 from AgathiyanB/add-enum-casts by Gilles Peskine · 2 years ago
  40. ea59c43 tls: fix a comment a rename a variable/symbol by Valerio Setti · 2 years ago
  41. 60d3b91 tls: use TLS 1.2 macros in ssl_tls12_server.c by Valerio Setti · 2 years ago
  42. 8b52b88 Add type casts in ssl library by Agathiyan Bragadeesh · 2 years ago
  43. c2232ea tls: replace PK_CAN_ECDH guards with new helpers by Valerio Setti · 2 years ago
  44. 7aeec54 tls: replace ECDH_C guards with new helpers by Valerio Setti · 2 years ago
  45. 46b2d2b Fix code style by Przemek Stekiel · 2 years ago
  46. 615cbcd Provide additional comments for claryfication by Przemek Stekiel · 2 years ago
  47. 7ac93be Adapt names: dh -> xxdh by Przemek Stekiel · 2 years ago
  48. 6f19985 Adapt handshake fields to ffdh by Przemek Stekiel · 2 years ago
  49. 56b159a Merge pull request #7627 from mprse/ffdh_tls13_v2 by Manuel Pégourié-Gonnard · 2 years ago
  50. 9fbb0cf Merge remote-tracking branch 'origin/development' into safer-ct5 by Dave Rodgman · 2 years ago
  51. 7dda271 Fix description of functions by Przemek Stekiel · 2 years ago
  52. db041cc Merge pull request #7665 from AndrzejKurek/optimize-error-translation-code-size by Tom Cosgrove · 2 years ago
  53. 6835b4a tls: always zeroize buffer on exit by Valerio Setti · 2 years ago
  54. 3589a4c tls: keep buffer declaration in a single line by Valerio Setti · 2 years ago
  55. b46217d tls: never destroy a priavte key that is not owned/created by TLS module by Valerio Setti · 2 years, 1 month ago
  56. 0813b6f tls: optimize code in ssl_get_ecdh_params_from_cert() by Valerio Setti · 2 years, 1 month ago
  57. 1e4a030 Fix wrong array size calculation in error translation code by Andrzej Kurek · 2 years, 1 month ago
  58. 1c7a998 Add missing ifdefs by Andrzej Kurek · 2 years, 1 month ago
  59. 0064484 Optimize error translation code size by Andrzej Kurek · 2 years, 1 month ago
  60. c216d94 Merge remote-tracking branch 'origin/development' into safer-ct5 by Dave Rodgman · 2 years, 1 month ago
  61. 75a5a9c Code cleanup by Przemek Stekiel · 2 years, 1 month ago
  62. da4fba6 Further code optimizations by Przemek Stekiel · 2 years, 1 month ago
  63. 24e50d3 Compile out length check to silent the compiler warning by Przemek Stekiel · 2 years, 2 months ago
  64. 6076f41 Remove hash_info.[ch] by Manuel Pégourié-Gonnard · 2 years, 3 months ago
  65. 8857984 Replace hash_info macro with MD macro by Manuel Pégourié-Gonnard · 2 years, 3 months ago
  66. 7b11368 Merge pull request #7438 from valeriosetti/issue7074 by Manuel Pégourié-Gonnard · 2 years, 1 month ago
  67. 293eedd Use new CT interface in ssl_tls12_server.c by Dave Rodgman · 2 years, 2 months ago
  68. d040509 tls: use pk_get_group_id() instead of directly accessing PK's structure by Valerio Setti · 2 years, 1 month ago
  69. f9f0ba8 Use functions in alignment.h to get value by Thomas Daubney · 2 years, 1 month ago
  70. 9720778 tls/x509: minor enhancement for using the new private key format by Valerio Setti · 2 years, 2 months ago
  71. 3f00b84 pk: fix build issues by Valerio Setti · 2 years, 2 months ago
  72. 77a7568 pk: align library and tests code to the new internal functions by Valerio Setti · 2 years, 2 months ago
  73. 4f387ef pk: use better naming for the new key ID field by Valerio Setti · 2 years, 2 months ago
  74. 048cd44 pk: fix library code for using the new opaque key solution by Valerio Setti · 2 years, 2 months ago
  75. fe01ec2 tls12: srv: Use sizeof() instead of constant by Ronald Cron · 2 years, 3 months ago
  76. c564938 Add downgrade protection mechanism by Ronald Cron · 2 years, 3 months ago
  77. 6291b23 tls: Add logic in handshake step to enable server version negotiation by Ronald Cron · 2 years, 4 months ago
  78. 77a904c ssl: remove useless guard by Valerio Setti · 2 years, 3 months ago
  79. 1fa5c56 ssl_tls: fix guard symbols for EC accelerated tests by Valerio Setti · 2 years, 4 months ago
  80. 6ef9bb3 Implement and use MBEDTLS_STATIC_ASSERT() by Tom Cosgrove · 2 years, 4 months ago
  81. 8a045ce Unify PSA to Mbed TLS error translation by Andrzej Kurek · 2 years, 6 months ago
  82. b8b07aa Handle errors from functions that now return int by Manuel Pégourié-Gonnard · 2 years, 5 months ago
  83. 449bd83 Switch to the new code style by Gilles Peskine · 2 years, 6 months ago
  84. 1e868cc fix several typos and extra blank spaces by Valerio Setti · 2 years, 6 months ago
  85. 2b5d3de remove remaining occurencies of mbedtls_ecc_group_to_psa() from TLS by Valerio Setti · 2 years, 6 months ago
  86. 40d9ca9 tls: remove useless legacy function by Valerio Setti · 2 years, 6 months ago
  87. 18c9fed tls: remove dependency from mbedtls_ecp_curve functions by Valerio Setti · 2 years, 6 months ago
  88. ac5ca5a Refactor cookie members of handshake struct by Jerry Yu · 3 years, 4 months ago
  89. ffc330f Merge pull request #6264 from hannestschofenig/rfc9146_2 by Manuel Pégourié-Gonnard · 2 years, 7 months ago
  90. ef25a99 Merge pull request #6533 from valeriosetti/issue5847 by Manuel Pégourié-Gonnard · 2 years, 7 months ago
  91. 819de86 tls: removed extra white spaces and other minor fix by Valerio Setti · 2 years, 8 months ago
  92. 6b3dab0 tls: psa_pake: use a single function for round one and two in key exchange read/write by Valerio Setti · 2 years, 8 months ago
  93. 9bed8ec tls: psa_pake: make round two reading function symmatric to the writing one by Valerio Setti · 2 years, 8 months ago
  94. a988364 tls: psa_pake: fix missing new round one parsing function on tls12 server by Valerio Setti · 2 years, 8 months ago
  95. a08b1a4 tls: psa_pake: move move key exchange read/write functions to ssl_tls.c by Valerio Setti · 2 years, 8 months ago
  96. 96a0fd9 Fix signature algorithms list entry getting overwritten by length. by Paul Elliott · 2 years, 8 months ago
  97. 6f1b574 tls12: psa_pake: simplify EC info parsing in server's 2nd round by Valerio Setti · 2 years, 8 months ago
  98. 02c25b5 tls12: psa_pake: use common code for parsing/writing round one and round two data by Valerio Setti · 2 years, 8 months ago
  99. d384b64 Merge branch 'development' into rfc9146_2 by Dave Rodgman · 2 years, 8 months ago
  100. ca7d506 Use PSA PAKE API when MBEDTLS_USE_PSA_CRYPTO is selected by Neil Armstrong · 3 years, 1 month ago