Rivoreo Source Code Repositories
src.rivoreo.one
/
security
/
mbedtls
/
4122f3eacfe9f4cc706c0d3b4717838b3a6f67d0
/
library
f9f377e
CSR Parsing (without attributes / extensions) implemented
by Paul Bakker
· 11 years ago
d4bf870
Allow spaces after the comma when converting X509 names
by Paul Bakker
· 11 years ago
52be08c
Added support for writing Key Usage and NS Cert Type extensions
by Paul Bakker
· 11 years ago
cd35803
Changes x509_csr to x509write_csr
by Paul Bakker
· 11 years ago
5f45e62
Migrated from x509_req_name to asn1_named_data structure
by Paul Bakker
· 11 years ago
c547cc9
Added generic asn1_free_named_data_list()
by Paul Bakker
· 11 years ago
59ba59f
Generalized x509_set_extension() behaviour to asn1_store_named_data()
by Paul Bakker
· 11 years ago
9c208aa
Use ASN1_UTC_TIME in some cases
by Paul Bakker
· 11 years ago
15162a0
Writing of X509v3 extensions supported
by Paul Bakker
· 11 years ago
329def3
Added asn1_write_bool()
by Paul Bakker
· 11 years ago
9397dcb
Base X509 certificate writing functinality
by Paul Bakker
· 11 years ago
f451bac
Blinding RSA only active when f_rng is provided
by Paul Bakker
· 11 years ago
48377d9
Configuration option to enable/disable POLARSSL_PKCS1_V15 operations
by Paul Bakker
· 11 years ago
aab30c1
RSA blinding added for CRT operations
by Paul Bakker
· 11 years ago
548957d
Refactored RSA to have random generator in every RSA operation
by Paul Bakker
· 11 years ago
ca174fe
Merged refactored x509write module into development
by Paul Bakker
· 11 years ago
9659dae
Some extra code defined out
by Paul Bakker
· 11 years ago
c852a68
More robust selection of ctx_enc size
by Manuel Pégourié-Gonnard
· 11 years ago
cffe4a6
Move "constant" code outside a loop
by Manuel Pégourié-Gonnard
· 11 years ago
577e006
Merged ECDSA-based key-exchange and ciphersuites into development
by Paul Bakker
· 11 years ago
57a8783
Make more room for ciphersuites
by Manuel Pégourié-Gonnard
· 11 years ago
db77175
Make ecdsa_verify() return value more explicit
by Manuel Pégourié-Gonnard
· 11 years ago
9cc6f5c
Fix some hash debugging
by Manuel Pégourié-Gonnard
· 11 years ago
4bd1284
Fix ECDSA hash selection bug with TLS 1.0 and 1.1
by Manuel Pégourié-Gonnard
· 11 years ago
9c9812a
Fix bug introduced in dbf69cf
by Manuel Pégourié-Gonnard
· 11 years ago
df0142b
Fix some dependencies in tests
by Manuel Pégourié-Gonnard
· 11 years ago
2fb15f6
Un-rename ssl_set_own_cert_alt()
by Manuel Pégourié-Gonnard
· 11 years ago
e511ffc
Allow compiling without RSA or DH
by Manuel Pégourié-Gonnard
· 11 years ago
ee98f8e
Add EC certificates in certs.c
by Manuel Pégourié-Gonnard
· 11 years ago
f484282
Rm a few unneeded tests
by Manuel Pégourié-Gonnard
· 11 years ago
d11eb7c
Fix sig_alg extension on client.
by Manuel Pégourié-Gonnard
· 11 years ago
bfe32ef
pk_{sign,verify}() now accept hash_len = 0
by Manuel Pégourié-Gonnard
· 11 years ago
a20c58c
Use convert functions for SSL_SIG_* and SSL_HASH_*
by Manuel Pégourié-Gonnard
· 11 years ago
c40b4c3
Add configuration item for the PK module
by Manuel Pégourié-Gonnard
· 11 years ago
0d42049
Merge code for RSA and ECDSA in SSL
by Manuel Pégourié-Gonnard
· 11 years ago
070cc7f
Use the new PK RSA-alt interface
by Manuel Pégourié-Gonnard
· 11 years ago
12c1ff0
Add RSA-alt to the PK layer
by Manuel Pégourié-Gonnard
· 11 years ago
a2d3f22
Add and use pk_encrypt(), pk_decrypt()
by Manuel Pégourié-Gonnard
· 11 years ago
8df2769
Introduce pk_sign() and use it in ssl
by Manuel Pégourié-Gonnard
· 11 years ago
583b608
Fix some return values
by Manuel Pégourié-Gonnard
· 11 years ago
76c18a1
Add client support for ECDSA client auth
by Manuel Pégourié-Gonnard
· 11 years ago
abae74c
Add server support for ECDHE_ECDSA key exchange
by Manuel Pégourié-Gonnard
· 11 years ago
ac75523
Adapt ssl_set_own_cert() to generic keys
by Manuel Pégourié-Gonnard
· 11 years ago
09edda8
Check key type against selected key exchange
by Manuel Pégourié-Gonnard
· 11 years ago
20846b1
Add client support for ECDHE_ECDSA key exchange
by Manuel Pégourié-Gonnard
· 11 years ago
efebb0a
Refactor ssl_parse_server_key_exchange() a bit
by Manuel Pégourié-Gonnard
· 11 years ago
32ea60a
Declare ECDSA key exchange and ciphersuites
by Manuel Pégourié-Gonnard
· 11 years ago
0b03200
Add server-side support for ECDSA client auth
by Manuel Pégourié-Gonnard
· 11 years ago
0be444a
Ability to disable server_name extension (RFC 6066)
by Paul Bakker
· 11 years ago
d2f068e
Ability to enable / disable SSL v3 / TLS 1.0 / TLS 1.1 / TLS 1.2 individually
by Paul Bakker
· 11 years ago
fb08fd2
Entropy collector and CTR-DRBG now also work on SHA-256 if SHA-512 not available
by Paul Bakker
· 11 years ago
9852d00
Moved asn1write funtions to use asn1_write_raw_buffer()
by Paul Bakker
· 11 years ago
7accbce
Doxygen documentation added to asn1write.h
by Paul Bakker
· 11 years ago
f3df61a
Generalized PEM writing in x509write module for RSA keys as well
by Paul Bakker
· 11 years ago
135f1e9
Move PEM conversion of DER data to x509write module
by Paul Bakker
· 11 years ago
624d03a
Fixed length of key_usage bitstring to 7 bits
by Paul Bakker
· 11 years ago
1c0e550
Added support for Netscape Certificate Types in CSR writing
by Paul Bakker
· 11 years ago
e5eae76
Generalized the x509write_csr_set_key_usage() function and key_usage storage
by Paul Bakker
· 11 years ago
6db915b
Added asn1_write_raw_buffer()
by Paul Bakker
· 11 years ago
0a20171
Fix compiler warning from gcc -Os
by Manuel Pégourié-Gonnard
· 11 years ago
70f1768
Make two format strings literal
by Manuel Pégourié-Gonnard
· 11 years ago
c6554aa
Check length of session tickets we write
by Manuel Pégourié-Gonnard
· 11 years ago
38d1eba
Move verify_result from ssl_context to session
by Manuel Pégourié-Gonnard
· 11 years ago
fde4270
Added support for writing key_usage extension
by Paul Bakker
· 11 years ago
598e450
Added asn1_write_bitstring() and asn1_write_octet_string()
by Paul Bakker
· 11 years ago
0e06c0f
Assigned error codes to the error defines
by Paul Bakker
· 11 years ago
82e2945
Changed naming and prototype convention for x509write functions
by Paul Bakker
· 11 years ago
2130796
Switched order of storing x509_req_names to match inputed order
by Paul Bakker
· 11 years ago
8eabfc1
Rewrote x509 certificate request writing to use structure for storing
by Paul Bakker
· 11 years ago
fff80f8
PK: use NULL for unimplemented operations
by Manuel Pégourié-Gonnard
· 11 years ago
f73da02
PK: change pk_verify arguments (md_info "optional")
by Manuel Pégourié-Gonnard
· 11 years ago
ab46694
Change pk_set_type to pk_init_ctx for consistency
by Manuel Pégourié-Gonnard
· 11 years ago
ac4cd36
PK rsa_verify: check signature length
by Manuel Pégourié-Gonnard
· 11 years ago
1569938
Small PK cleanups
by Manuel Pégourié-Gonnard
· 11 years ago
3fb5c5e
PK: rename members for consistency CIPHER, MD
by Manuel Pégourié-Gonnard
· 11 years ago
09162dd
PK: reuse some eckey functions for ecdsa
by Manuel Pégourié-Gonnard
· 11 years ago
c6ac887
Nicer interface between PK and debug.
by Manuel Pégourié-Gonnard
· 11 years ago
b3d9187
PK: add nice interface functions
by Manuel Pégourié-Gonnard
· 11 years ago
765db07
PK: use alloc and free function pointers
by Manuel Pégourié-Gonnard
· 11 years ago
3053f5b
Get rid of pk_wrap_rsa()
by Manuel Pégourié-Gonnard
· 11 years ago
f8c948a
Add name and get_size() members in PK
by Manuel Pégourié-Gonnard
· 11 years ago
835eb59
PK: fix support for ECKEY_DH
by Manuel Pégourié-Gonnard
· 11 years ago
f18c3e0
Add a PK can_do() method and simplify code
by Manuel Pégourié-Gonnard
· 11 years ago
d73b3c1
PK: use wrappers and function pointers for verify
by Manuel Pégourié-Gonnard
· 11 years ago
f499993
Add ecdsa_from_keypair()
by Manuel Pégourié-Gonnard
· 11 years ago
cc0a9d0
Fix const-correctness of rsa_*_verify()
by Manuel Pégourié-Gonnard
· 11 years ago
f84b4d6
Check sig_pk for signature verification
by Manuel Pégourié-Gonnard
· 11 years ago
96d5912
Implement EC cert and crl verification
by Manuel Pégourié-Gonnard
· 11 years ago
211a64c
Add eckey to ecdsa conversion in the PK layer
by Manuel Pégourié-Gonnard
· 11 years ago
b4d69c4
Prepare for EC cert & crl validation
by Manuel Pégourié-Gonnard
· 11 years ago
e09631b
Create ecp_group_copy() and use it
by Manuel Pégourié-Gonnard
· 11 years ago
8eebd01
Add an ecdsa_genkey() function
by Manuel Pégourié-Gonnard
· 11 years ago
b694b48
Add ecdsa_{read,write}_signature()
by Manuel Pégourié-Gonnard
· 11 years ago
3a074a7
Actually skip certificate if we do not understand hash type
by Paul Bakker
· 11 years ago
dc4baf1
Removed errant printf in x509parse_self_test()
by Paul Bakker
· 11 years ago
42c3ccf
Fixed potential negative value misinterpretation in load_file()
by Paul Bakker
· 11 years ago
75c1a6f
Fixed potential heap buffer overflow on large hostname setting
by Paul Bakker
· 11 years ago
694d3ae
Fixed potential heap buffer overflow on large file reading
by Paul Bakker
· 11 years ago
5fd4917
Add missing ifdefs in ssl modules
by Paul Bakker
· 11 years ago
04376b1
Fixed memory leak in ssl_parse_server_key_exchange from missing md_free_ctx()
by Paul Bakker
· 11 years ago
Next »