Commit graph

  • e58a630cb0 Add support for password protected key file to ssl_server2 Hanno Becker 2018-11-07 16:20:16 +0000
  • c4af324a4b Merge branch 'development' into development-restricted Manuel Pégourié-Gonnard 2020-08-14 10:11:21 +0200
  • 99d67823a2
    Merge pull request #3559 from gufe44/netbsd-rand-arc4random_buf-2.7 Gilles Peskine 2020-08-13 15:27:57 +0200
  • 9acf943b98
    Merge pull request #3560 from gufe44/netbsd-rand-arc4random_buf-2.16 Gilles Peskine 2020-08-13 15:27:53 +0200
  • 3890f7cd3d
    Merge pull request #3540 from gufe44/netbsd-rand-arc4random_buf Gilles Peskine 2020-08-13 15:27:45 +0200
  • 7cf6ff76d5
    Merge pull request #3549 from mpg/check-generated-files-2.7 Gilles Peskine 2020-08-13 11:24:30 +0200
  • 1505e42de9
    Merge pull request #3548 from mpg/check-generated-files-2.16 Gilles Peskine 2020-08-13 11:24:26 +0200
  • 9ec3648ab3
    Merge pull request #3495 from mpg/check-generated-files Gilles Peskine 2020-08-13 11:24:23 +0200
  • ba5cba838c Log change as bugfix gufe44 2020-08-13 06:24:42 +0200
  • d5f8c26e01 Add changelog entry gufe44 2020-08-06 12:52:04 +0200
  • 3fa7c64edf Use arc4random_buf instead of rand on NetBSD gufe44 2020-08-03 17:56:50 +0200
  • da0ea9e9df Log change as bugfix gufe44 2020-08-13 06:24:42 +0200
  • 6f837332f0 Add changelog entry gufe44 2020-08-06 12:52:04 +0200
  • 29fcac3263 Log change as bugfix gufe44 2020-08-13 06:24:42 +0200
  • 206cb39116 Use arc4random_buf instead of rand on NetBSD gufe44 2020-08-03 17:56:50 +0200
  • e0b2687a2d Undef ASSERT before defining it to ensure that no previous definition has sneaked in through included files. Ouss4 2020-08-11 16:07:09 +0100
  • 691bed7cce
    Merge pull request #733 from gabor-mezei-arm/689_bp27_zeroising_of_plaintext_buffers Gilles Peskine 2020-08-12 18:51:47 +0200
  • 0ca801af76
    Merge pull request #732 from gabor-mezei-arm/689_bp216_zeroising_of_plaintext_buffers Gilles Peskine 2020-08-12 18:51:44 +0200
  • e900b59703
    Merge pull request #719 from gabor-mezei-arm/689_zeroising_of_plaintext_buffers Gilles Peskine 2020-08-12 18:51:42 +0200
  • de7e03688d
    Merge pull request #3489 from CodeMonkeyLeet/mbedtls-2.16_backport_3464 Gilles Peskine 2020-08-12 18:22:22 +0200
  • e447f47cc8 Add the decomposition of the base case as a comment Gilles Peskine 2020-08-06 16:05:35 +0200
  • 78e54b9b1d x509_crl_parse: fix 1-byte buffer overflow and entry->raw.tag Gilles Peskine 2020-07-16 18:26:29 +0200
  • 4ac28b8d1e x509parse_crl: more negative test cases Gilles Peskine 2020-07-16 18:18:22 +0200
  • 4ddfdbf76a Add the decomposition of the base case as a comment Gilles Peskine 2020-08-06 16:05:35 +0200
  • 6579235d9c x509_crl_parse: fix 1-byte buffer overflow and entry->raw.tag Gilles Peskine 2020-07-16 18:26:29 +0200
  • d8dc8e29c1 x509parse_crl: more negative test cases Gilles Peskine 2020-07-16 18:18:22 +0200
  • 58c8da2d7e Add test: DNS names should not match IP addresses Manuel Pégourié-Gonnard 2020-07-23 12:39:53 +0200
  • 894c05df32 Add test: DNS names should not match IP addresses Manuel Pégourié-Gonnard 2020-07-23 12:39:53 +0200
  • dfd517234d
    Merge pull request #3488 from CodeMonkeyLeet/mbedtls-2.16_backport_2632 Manuel Pégourié-Gonnard 2020-08-11 10:32:18 +0200
  • 204e05404f Add ChangeLog entry for X.509 CN-type vulnerability Manuel Pégourié-Gonnard 2020-07-24 10:33:39 +0200
  • f58e5cc4f4 Improve documentation of cn in x509_crt_verify() Manuel Pégourié-Gonnard 2020-07-24 10:31:37 +0200
  • f3e4bd8632 Fix comparison between different name types Manuel Pégourié-Gonnard 2020-07-21 13:22:41 +0200
  • 7d2a4d873f Add test: DNS names should not match IP addresses Manuel Pégourié-Gonnard 2020-07-23 12:39:53 +0200
  • 9539f831b2
    Swap out CRC calculation in AES in favour of a simple hash Andrzej Kurek 2020-08-10 15:58:13 -0400
  • a00c3eeaca
    Merge pull request #3619 from AndrzejKurek/fi-uecc-return-value Andrzej Kurek 2020-08-31 14:53:39 +0200
  • 845e408a55 Add a pre-commit hook that checks generated files Manuel Pégourié-Gonnard 2020-07-16 10:53:13 +0200
  • 961fb133ad Add -u option to check-generated-files.sh Manuel Pégourié-Gonnard 2020-07-16 10:40:13 +0200
  • c703cf1aec Add a pre-commit hook that checks generated files Manuel Pégourié-Gonnard 2020-07-16 10:53:13 +0200
  • 9ad5128324 Add -u option to check-generated-files.sh Manuel Pégourié-Gonnard 2020-07-16 10:40:13 +0200
  • cd542a5453
    Merge pull request #729 from mpg/ct-varlen-hmac-2.7 Manuel Pégourié-Gonnard 2020-08-10 12:40:53 +0200
  • f1ef89586b
    Merge pull request #728 from mpg/ct-varlen-hmac-2.16 Manuel Pégourié-Gonnard 2020-08-10 12:40:49 +0200
  • eaa0739143
    Merge pull request #716 from mpg/ct-varlen-hmac Manuel Pégourié-Gonnard 2020-08-10 12:40:33 +0200
  • e6d8db0f41
    Change the tinycrypt return values to be below 256 Andrzej Kurek 2020-08-09 23:41:40 -0400
  • 858e4325d2
    Merge pull request #3604 from AndrzejKurek/alias-memcmp-memequal Andrzej Kurek 2020-08-24 15:26:23 +0200
  • 8bb0839555
    Add a deprecated version of mbedtls_platform_memcmp. Andrzej Kurek 2020-08-09 02:11:19 -0400
  • c87e91ce2b
    Merge pull request #3553 from AndrzejKurek/crc-calculation-base Andrzej Kurek 2020-08-13 12:42:54 +0200
  • c2b682ab71
    Merge pull request #3468 from piotr-now/fic_flow_monitor Piotr Nowicki 2020-08-13 09:34:00 +0200
  • 305a5ec496 Checking in critical places if secured memset() and memcpy() was successful Piotr Nowicki 2020-08-10 17:42:18 +0200
  • ea8e846fdc Add flow monitor for mbedtls_platform_memcpy() and mbedtls_platform_memmove() Piotr Nowicki 2020-08-10 15:20:26 +0200
  • a6348edc23 Checking in critical places if the mbedtls_platform_zeroize() was successful Piotr Nowicki 2020-06-29 15:03:56 +0200
  • ed840dbcd8 Add flow montitor to the mbedtls_platform_memset() Piotr Nowicki 2020-06-23 12:59:56 +0200
  • 2bb1376560
    Merge pull request #3537 from piotr-now/platform_random Piotr Nowicki 2020-08-12 15:09:05 +0200
  • 26c33692b0 Fix CI failure. Piotr Nowicki 2020-08-11 13:58:47 +0200
  • 057daa3b28 Random delay can be disabled in configuration Piotr Nowicki 2020-08-03 13:08:33 +0200
  • 77b7a7754c Expanded the random number generator in the platform_util.c file Piotr Nowicki 2020-07-31 16:11:06 +0200
  • 8656fc6525 Change the value type in the mbedtls_platform_random_in_range() Piotr Nowicki 2020-06-23 12:30:40 +0200
  • fa635dfaa1
    Merge pull request #3448 from piotr-now/platform_util Piotr Nowicki 2020-08-11 14:30:35 +0200
  • 8fba6e99ce
    Merge pull request #3532 from AndrzejKurek/fi-hmac-drbg-fixes Andrzej Kurek 2020-08-10 19:02:25 +0200
  • e3c4ee51b2 Rename mbedtls_platform_memcmp() to mbedtls_platform_memequal() Piotr Nowicki 2020-06-23 12:59:56 +0200
  • e4f865d53c
    Makefile: alphabetically order object files Andrzej Kurek 2020-08-08 18:07:40 -0400
  • fba5921186
    aes: validate keys using crc before encryption/decryption Andrzej Kurek 2020-08-07 21:02:25 -0400
  • 9df2b416b9
    Add a CRC module to mbedtls and baremetal config Andrzej Kurek 2020-08-07 11:34:21 -0400
  • 0305753d7a
    Merge pull request #3477 from AndrzejKurek/aes-fake-key Andrzej Kurek 2020-08-10 13:05:46 +0200
  • daf017c8a2 Allow algorithm policy wildcards as algorithm specifications Gilles Peskine 2020-08-07 23:40:53 +0200
  • d89cd742eb Specify that transparent drivers are considered in order Gilles Peskine 2020-08-07 23:37:55 +0200
  • 91cbf56d4c Specify what happens if multiple capabilities apply Gilles Peskine 2020-08-07 23:25:33 +0200
  • c7cf13356c Define the semantics of capabilities Gilles Peskine 2020-08-07 23:24:00 +0200
  • 1bc9c4c8c8 Make entry points mandatory in capabilities Gilles Peskine 2020-08-07 22:47:15 +0200
  • 924e273b06 Change "functions" property to "entry_points" Gilles Peskine 2020-08-07 13:53:16 +0200
  • c259213a01 More editorial corrections Gilles Peskine 2020-08-07 13:52:43 +0200
  • 15319454e6 Reword the explanation of fallback Gilles Peskine 2020-08-06 22:47:39 +0200
  • 85b3e13cd0 Introduce "acme" as the prefix each time it's used Gilles Peskine 2020-08-06 22:20:07 +0200
  • daf9d82b75 Correct usage of key_derivation_output_key Gilles Peskine 2020-08-06 22:11:30 +0200
  • a58d225d62 Add deep links to the API specification in a few places Gilles Peskine 2020-08-06 21:24:03 +0200
  • d4e6927614 Change "function" to "entry point" in more places Gilles Peskine 2020-08-06 21:10:20 +0200
  • 53ba94c968 Clarify how the headers are used Gilles Peskine 2020-08-06 20:58:54 +0200
  • e72e4de070 Clarify what the headers do Gilles Peskine 2020-08-06 20:56:45 +0200
  • 7a1e4f926a Minor wording improvements Gilles Peskine 2020-08-06 20:54:56 +0200
  • 210bea38f3 Add the decomposition of the base case as a comment Gilles Peskine 2020-08-06 16:05:35 +0200
  • 0ca6d38bc3
    Merge pull request #3493 from gilles-peskine-arm/psa-unified-driver-specs danh-arm 2020-08-06 16:10:17 +0100
  • ed06d2fe78 Add changelog entry gufe44 2020-08-06 12:52:04 +0200
  • c6319a70ab
    Merge pull request #3514 from shelib01/fi_write_user_data Shelly Liberman 2020-08-06 07:41:15 +0300
  • 404e1dbd5a Clarify updates to the persistent state in storage Gilles Peskine 2020-08-05 22:37:29 +0200
  • 5001da4aee With multiple applicable transparent drivers, the order is unspecified Gilles Peskine 2020-08-05 22:32:36 +0200
  • b320d0833d Minor clarifications Gilles Peskine 2020-08-05 22:24:21 +0200
  • ea739f0814 Give some examples of purpsoses of pure-software transparent driver Gilles Peskine 2020-08-05 22:22:23 +0200
  • e265b9d183 Fix typos Gilles Peskine 2020-08-05 22:20:24 +0200
  • 3d1bcc68cb Add a link to the PSA API specification Gilles Peskine 2020-08-05 22:20:09 +0200
  • 929ab8af2b Explain locations vs lifetimes Gilles Peskine 2020-08-05 22:18:38 +0200
  • 67a85d1d3b
    Merge pull request #3492 from stevew817/rework/key_slot_contains_key_buffer Gilles Peskine 2020-08-05 21:16:11 +0200
  • d4867877f1 Initialize key pointer in ecdh to NULL Steven Cooreman 2020-08-05 16:31:39 +0200
  • b7f6deaae7 Add buffer zeroization when ecp_write_key fails Steven Cooreman 2020-08-05 16:07:20 +0200
  • fd4d69a72e Simplified key slot deletion Steven Cooreman 2020-08-05 15:46:33 +0200
  • 3799fc1578 Splitting buffers comment added Shelly Liberman 2020-08-05 15:52:58 +0300
  • 291498600b Style fixes Steven Cooreman 2020-08-05 15:43:42 +0200
  • c6a7e6b0c4 Enhancement fixes fi_write_user_data Shelly Liberman 2020-08-05 15:26:10 +0300
  • 4062d6ca68 Add user pointer and data size duplication to ssl context. shelib01 2020-07-21 11:54:52 +0300
  • c2620dac02 Use arc4random_buf instead of rand on NetBSD gufe44 2020-08-03 17:56:50 +0200
  • 4fed455347 Apply review feedback Steven Cooreman 2020-08-03 14:46:03 +0200
  • ab808e7592 Update open question section about public key storage Gilles Peskine 2020-08-03 13:43:02 +0200