- 49f179d Always call mbedtls_ssl_handshake_set_state by Gilles Peskine · 4 months ago
- 4726d20 Remove unused variable in ssl_server.c by Waleed Elmelegy · 5 months ago
- 2878a05 Remove obselete checks due to the introduction of handhsake defragmen... by Deomid rojer Ryabkov · 5 months ago
- 4002e6f Merge remote-tracking branch 'mbedtls-3.6' into mbedtls-3.6-restricted by Gilles Peskine · 11 months ago
- 4938b69 Make mbedtls_ssl_check_cert_usage() work for 1.3 by Manuel Pégourié-Gonnard · 11 months ago
- 96a0c5c Clean up mbedtls_ssl_check_cert_usage() by Manuel Pégourié-Gonnard · 11 months ago
- 5be4fd7 Fix build of v3.6 with unset MBEDTLS_DHM_C but MBEDTLS_USE_PSA_CRYPTO set (fixes #9188) by Michael Schuster · 1 year, 1 month ago
- dc49258 Guard configuration-specific code by Gilles Peskine · 1 year, 7 months ago
- 139a418 Merge pull request #8587 from yanrayw/issue/4911/ssl_setup-check-RNG-configuration by Ronald Cron · 1 year, 4 months ago
- 84b9f1b mbedtls_ecp_write_key_ext(): migrate internally by Gilles Peskine · 1 year, 5 months ago
- 0ecb5fd Merge pull request #8574 from ronald-cron-arm/ssl-tickets by Manuel Pégourié-Gonnard · 1 year, 4 months ago
- b4f5076 debug: move internal functions declarations to an internal header file by Valerio Setti · 1 year, 6 months ago
- 3c0072b ssl_ticket.c: Base ticket age check on the ticket creation time by Ronald Cron · 1 year, 8 months ago
- 17ef8df ssl_session: Define unconditionally the endpoint field by Ronald Cron · 1 year, 8 months ago
- 4bf4473 Merge pull request #8633 from Wenxing-hou/clear_clienthello_comment by Gilles Peskine · 1 year, 7 months ago gh-readonly-queue/development/pr-8633-0e6fdc4f1d1bf7093e8a8f43e3cfbc742f1e8b2b
- a4b38f2 Merge pull request #8579 from valeriosetti/issue7995 by Manuel Pégourié-Gonnard · 1 year, 7 months ago
- 3b9de38 Make clienthello comment clear by Wenxing Hou · 1 year, 7 months ago
- 202bb71 ssl_tls12_server: do not export/import opaque keys by Valerio Setti · 1 year, 7 months ago
- bced8bc ssl_tls12_server: export/import PK parsed key in TLS side by Valerio Setti · 1 year, 7 months ago
- 197199f tls12 & tls13 server: remove RNG check in `write_server_hello` by Yanray Wang · 1 year, 7 months ago
- f9362b7 pk_internal: small renaming for mbedtls_pk_get_group_id() by Valerio Setti · 1 year, 7 months ago
- c37ad44 misc type fixes in ssl by Dave Rodgman · 1 year, 8 months ago
- a3d0f61 Use MBEDTLS_GET_UINTxx_BE macro by Dave Rodgman · 1 year, 8 months ago
- e4a6f5a Use size_t cast for pointer subtractions by Dave Rodgman · 1 year, 8 months ago
- 16799db update headers by Dave Rodgman · 1 year, 8 months ago
- f6f4695 Merge pull request #8320 from valeriosetti/issue8263 by Gilles Peskine · 1 year, 9 months ago gh-readonly-queue/development/pr-8320-62418dd20b8eccd121a865c3ba2173547b88ffbb
- 74cb404 ssl: improve ssl_check_key_curve() by Valerio Setti · 1 year, 9 months ago
- 4d0e846 ssl: reorganize guards surrounding ssl_get_ecdh_params_from_cert() by Valerio Setti · 1 year, 9 months ago
- e7cefae ssl: fix getting group id in ssl_check_key_curve() by Valerio Setti · 1 year, 9 months ago
- 3713bee Remove leftover local debug line by Gilles Peskine · 1 year, 9 months ago
- 530c423 Improve some debug messages and error codes by Gilles Peskine · 1 year, 9 months ago
- c8df898 Fix buffer overflow in TLS 1.2 ClientKeyExchange parsing by Gilles Peskine · 1 year, 9 months ago
- eda1b1f Merge pull request #7921 from valeriosetti/issue7613 by Gilles Peskine · 1 year, 10 months ago
- b7825ce Rename uint->bool operators to reflect input types by Dave Rodgman · 1 year, 11 months ago
- c98f8d9 Merge branch 'development' into safer-ct5 by Dave Rodgman · 1 year, 11 months ago
- e9646ec tls: fix guards for ECDSA support by Valerio Setti · 1 year, 11 months ago
- 45d56f3 tls: replace ECDSA_C and PK_CAN_ECDSA_SOME with key exchange related ones by Valerio Setti · 2 years ago
- de8f56e Merge pull request #7884 from valeriosetti/issue7612 by Manuel Pégourié-Gonnard · 1 year, 11 months ago
- bb07377 Merge pull request #7935 from AgathiyanB/add-enum-casts by Gilles Peskine · 2 years ago
- ea59c43 tls: fix a comment a rename a variable/symbol by Valerio Setti · 2 years ago
- 60d3b91 tls: use TLS 1.2 macros in ssl_tls12_server.c by Valerio Setti · 2 years ago
- 8b52b88 Add type casts in ssl library by Agathiyan Bragadeesh · 2 years ago
- c2232ea tls: replace PK_CAN_ECDH guards with new helpers by Valerio Setti · 2 years ago
- 7aeec54 tls: replace ECDH_C guards with new helpers by Valerio Setti · 2 years ago
- 46b2d2b Fix code style by Przemek Stekiel · 2 years ago
- 615cbcd Provide additional comments for claryfication by Przemek Stekiel · 2 years ago
- 7ac93be Adapt names: dh -> xxdh by Przemek Stekiel · 2 years ago
- 6f19985 Adapt handshake fields to ffdh by Przemek Stekiel · 2 years ago
- 56b159a Merge pull request #7627 from mprse/ffdh_tls13_v2 by Manuel Pégourié-Gonnard · 2 years ago
- 9fbb0cf Merge remote-tracking branch 'origin/development' into safer-ct5 by Dave Rodgman · 2 years ago
- 7dda271 Fix description of functions by Przemek Stekiel · 2 years ago
- db041cc Merge pull request #7665 from AndrzejKurek/optimize-error-translation-code-size by Tom Cosgrove · 2 years ago
- 6835b4a tls: always zeroize buffer on exit by Valerio Setti · 2 years ago
- 3589a4c tls: keep buffer declaration in a single line by Valerio Setti · 2 years ago
- b46217d tls: never destroy a priavte key that is not owned/created by TLS module by Valerio Setti · 2 years, 1 month ago
- 0813b6f tls: optimize code in ssl_get_ecdh_params_from_cert() by Valerio Setti · 2 years, 1 month ago
- 1e4a030 Fix wrong array size calculation in error translation code by Andrzej Kurek · 2 years, 1 month ago
- 1c7a998 Add missing ifdefs by Andrzej Kurek · 2 years, 1 month ago
- 0064484 Optimize error translation code size by Andrzej Kurek · 2 years, 1 month ago
- c216d94 Merge remote-tracking branch 'origin/development' into safer-ct5 by Dave Rodgman · 2 years, 1 month ago
- 75a5a9c Code cleanup by Przemek Stekiel · 2 years, 1 month ago
- da4fba6 Further code optimizations by Przemek Stekiel · 2 years, 1 month ago
- 24e50d3 Compile out length check to silent the compiler warning by Przemek Stekiel · 2 years, 2 months ago
- 6076f41 Remove hash_info.[ch] by Manuel Pégourié-Gonnard · 2 years, 3 months ago
- 8857984 Replace hash_info macro with MD macro by Manuel Pégourié-Gonnard · 2 years, 3 months ago
- 7b11368 Merge pull request #7438 from valeriosetti/issue7074 by Manuel Pégourié-Gonnard · 2 years, 1 month ago
- 293eedd Use new CT interface in ssl_tls12_server.c by Dave Rodgman · 2 years, 2 months ago
- d040509 tls: use pk_get_group_id() instead of directly accessing PK's structure by Valerio Setti · 2 years, 1 month ago
- f9f0ba8 Use functions in alignment.h to get value by Thomas Daubney · 2 years, 1 month ago
- 9720778 tls/x509: minor enhancement for using the new private key format by Valerio Setti · 2 years, 2 months ago
- 3f00b84 pk: fix build issues by Valerio Setti · 2 years, 2 months ago
- 77a7568 pk: align library and tests code to the new internal functions by Valerio Setti · 2 years, 2 months ago
- 4f387ef pk: use better naming for the new key ID field by Valerio Setti · 2 years, 2 months ago
- 048cd44 pk: fix library code for using the new opaque key solution by Valerio Setti · 2 years, 2 months ago
- fe01ec2 tls12: srv: Use sizeof() instead of constant by Ronald Cron · 2 years, 3 months ago
- c564938 Add downgrade protection mechanism by Ronald Cron · 2 years, 3 months ago
- 6291b23 tls: Add logic in handshake step to enable server version negotiation by Ronald Cron · 2 years, 4 months ago
- 77a904c ssl: remove useless guard by Valerio Setti · 2 years, 3 months ago
- 1fa5c56 ssl_tls: fix guard symbols for EC accelerated tests by Valerio Setti · 2 years, 4 months ago
- 6ef9bb3 Implement and use MBEDTLS_STATIC_ASSERT() by Tom Cosgrove · 2 years, 4 months ago
- 8a045ce Unify PSA to Mbed TLS error translation by Andrzej Kurek · 2 years, 6 months ago
- b8b07aa Handle errors from functions that now return int by Manuel Pégourié-Gonnard · 2 years, 5 months ago
- 449bd83 Switch to the new code style by Gilles Peskine · 2 years, 6 months ago
- 1e868cc fix several typos and extra blank spaces by Valerio Setti · 2 years, 6 months ago
- 2b5d3de remove remaining occurencies of mbedtls_ecc_group_to_psa() from TLS by Valerio Setti · 2 years, 6 months ago
- 40d9ca9 tls: remove useless legacy function by Valerio Setti · 2 years, 6 months ago
- 18c9fed tls: remove dependency from mbedtls_ecp_curve functions by Valerio Setti · 2 years, 6 months ago
- ac5ca5a Refactor cookie members of handshake struct by Jerry Yu · 3 years, 4 months ago
- ffc330f Merge pull request #6264 from hannestschofenig/rfc9146_2 by Manuel Pégourié-Gonnard · 2 years, 7 months ago
- ef25a99 Merge pull request #6533 from valeriosetti/issue5847 by Manuel Pégourié-Gonnard · 2 years, 7 months ago
- 819de86 tls: removed extra white spaces and other minor fix by Valerio Setti · 2 years, 8 months ago
- 6b3dab0 tls: psa_pake: use a single function for round one and two in key exchange read/write by Valerio Setti · 2 years, 8 months ago
- 9bed8ec tls: psa_pake: make round two reading function symmatric to the writing one by Valerio Setti · 2 years, 8 months ago
- a988364 tls: psa_pake: fix missing new round one parsing function on tls12 server by Valerio Setti · 2 years, 8 months ago
- a08b1a4 tls: psa_pake: move move key exchange read/write functions to ssl_tls.c by Valerio Setti · 2 years, 8 months ago
- 96a0fd9 Fix signature algorithms list entry getting overwritten by length. by Paul Elliott · 2 years, 8 months ago
- 6f1b574 tls12: psa_pake: simplify EC info parsing in server's 2nd round by Valerio Setti · 2 years, 8 months ago
- 02c25b5 tls12: psa_pake: use common code for parsing/writing round one and round two data by Valerio Setti · 2 years, 8 months ago
- d384b64 Merge branch 'development' into rfc9146_2 by Dave Rodgman · 2 years, 8 months ago
- ca7d506 Use PSA PAKE API when MBEDTLS_USE_PSA_CRYPTO is selected by Neil Armstrong · 3 years, 1 month ago