Rivoreo Source Code Repositories
src.rivoreo.one
/
security
/
mbedtls
/
5d9cde25da079f82bd8f1cedbf900504c6b7a067
5d9cde2
Move renego SCSV after actual ciphersuites
by Manuel Pégourié-Gonnard
· 10 years ago
34377b1
Fix send_close_notify usage.
by Manuel Pégourié-Gonnard
· 10 years ago
6a0017b
Rename variable for clarity
by Manuel Pégourié-Gonnard
· 10 years ago
dc370e4
Improve script portability
by Manuel Pégourié-Gonnard
· 10 years ago
51d8166
Adapt tests to new defaults/errors.
by Manuel Pégourié-Gonnard
· 10 years ago
d1a878c
Fix typos/cosmetics in Changelog
by Manuel Pégourié-Gonnard
· 10 years ago
5b8f7ea
Merge new security defaults for programs (RC4 disabled, SSL3 disabled)
by Paul Bakker
· 10 years ago
36adc36
Merge support for getrandom() call
by Paul Bakker
· 10 years ago
c82b7e2
Merge option to disable truncated hmac on the server-side
by Paul Bakker
· 10 years ago
e522d0f
Merge smarter certificate selection for pre-TLS-1.2 clients
by Paul Bakker
· 10 years ago
9835bc0
Fix racy test.
by Manuel Pégourié-Gonnard
· 10 years ago
a92ed48
Fix stupid error in previous commit
by Manuel Pégourié-Gonnard
· 10 years ago
687f89b
Don't check errors on ssl_close_notify()
by Manuel Pégourié-Gonnard
· 10 years ago
78803c0
Fix char signedness issue
by Manuel Pégourié-Gonnard
· 10 years ago
a852cf4
Fix issue with non-blocking I/O & record splitting
by Manuel Pégourié-Gonnard
· 10 years ago
d5746b3
Fix warning
by Manuel Pégourié-Gonnard
· 10 years ago
b2eaac1
Stop assuming chars are signed
by Paul Bakker
· 10 years ago
f356115
Merge support for 1/n-1 record splitting
by Paul Bakker
· 10 years ago
f6080b8
Merge support for enabling / disabling renegotiation support at compile-time
by Paul Bakker
· 10 years ago
d7e2483
Merge miscellaneous fixes into development
by Paul Bakker
· 10 years ago
8b9bcec
Stop assuming chars are signed
by Paul Bakker
· 10 years ago
5dd28ea
Fix len miscalculation in buffer-based allocator
by Manuel Pégourié-Gonnard
· 10 years ago
547ff66
Fix NULL dereference in buffer-based allocator
by Manuel Pégourié-Gonnard
· 10 years ago
765bb31
Add test_suite_memory_buffer_alloc
by Manuel Pégourié-Gonnard
· 10 years ago
5ba1d52
Add memory_buffer_alloc_self_test()
by Manuel Pégourié-Gonnard
· 10 years ago
5cb4b31
Fix missing bound check
by Manuel Pégourié-Gonnard
· 10 years ago
f5f25b3
Add test for ctr_drbg_update() input sanitizing
by Manuel Pégourié-Gonnard
· 10 years ago
d9e2dd2
Merge support for Encrypt-then-MAC
by Paul Bakker
· 10 years ago
fa06581
Disable RC4 by default in example programs.
by Manuel Pégourié-Gonnard
· 10 years ago
bd47a58
Add ssl_set_arc4_support()
by Manuel Pégourié-Gonnard
· 10 years ago
352143f
Refactor for clearer correctness/security
by Manuel Pégourié-Gonnard
· 10 years ago
9828656
Stop assuming chars are signed
by Manuel Pégourié-Gonnard
· 10 years ago
54b1a8f
Merge support for Extended Master Secret (session-hash)
by Paul Bakker
· 10 years ago
b52b015
Merge support for FALLBACK_SCSV
by Paul Bakker
· 10 years ago
448ea50
Set min version to TLS 1.0 in programs
by Manuel Pégourié-Gonnard
· 10 years ago
1829245
Add support for getrandom()
by Manuel Pégourié-Gonnard
· 10 years ago
265fe99
Use library default for trunc-hmac in ssl_client2
by Manuel Pégourié-Gonnard
· 10 years ago
e117a8f
Make truncated hmac a runtime option server-side
by Manuel Pégourié-Gonnard
· 10 years ago
6f303ce
Fix portability issue in script
by Manuel Pégourié-Gonnard
· 10 years ago
f01768c
Specific error for suites in common but none good
by Manuel Pégourié-Gonnard
· 10 years ago
df331a5
Prefer SHA-1 certificates for pre-1.2 clients
by Manuel Pégourié-Gonnard
· 10 years ago
6458e3b
Some more refactoring/tuning.
by Manuel Pégourié-Gonnard
· 10 years ago
846ba47
Minor refactoring
by Manuel Pégourié-Gonnard
· 10 years ago
3ff7823
Add tests for CBC record splitting
by Manuel Pégourié-Gonnard
· 10 years ago
c82ee35
Fix tests that were failing with record splitting
by Manuel Pégourié-Gonnard
· 10 years ago
cfa477e
Allow disabling record splitting at runtime
by Manuel Pégourié-Gonnard
· 10 years ago
d76314c
Add 1/n-1 record splitting
by Manuel Pégourié-Gonnard
· 10 years ago
edd371a
Enhance doc on ssl_write()
by Manuel Pégourié-Gonnard
· 10 years ago
d68b651
Fix previous commit
by Manuel Pégourié-Gonnard
· 10 years ago
3da751e
Allow flexible location of valgrind
by Manuel Pégourié-Gonnard
· 10 years ago
f46f128
Fix test scripts portability issues
by Manuel Pégourié-Gonnard
· 10 years ago
76c99a0
Fix Gnu-ism in script
by Manuel Pégourié-Gonnard
· 10 years ago
d942323
Skip signature_algorithms ext if PSK only
by Manuel Pégourié-Gonnard
· 10 years ago
eaecbd3
Fix warning in reduced configs
by Manuel Pégourié-Gonnard
· 10 years ago
86b2908
Adapt to "negative" switch for renego
by Manuel Pégourié-Gonnard
· 10 years ago
590f416
Add tests for periodic renegotiation
by Manuel Pégourié-Gonnard
· 10 years ago
837f0fe
Make renego period configurable
by Manuel Pégourié-Gonnard
· 10 years ago
b445805
Auto-renegotiate before sequence number wrapping
by Manuel Pégourié-Gonnard
· 10 years ago
fa42388
Update Changelog for compile-option renegotiation
by Manuel Pégourié-Gonnard
· 10 years ago
0371704
Switch from an enable to a disable flag
by Manuel Pégourié-Gonnard
· 10 years ago
6186019
Save 48 bytes if SSLv3 is not defined
by Manuel Pégourié-Gonnard
· 10 years ago
615e677
Make renegotiation a compile-time option
by Manuel Pégourié-Gonnard
· 10 years ago
85d915b
Add tests for renego security enforcement
by Manuel Pégourié-Gonnard
· 10 years ago
d3b90f7
Fix bug in ssl_client2 reconnect option
by Manuel Pégourié-Gonnard
· 10 years ago
f29e5de
Cosmetics in ssl_server2
by Manuel Pégourié-Gonnard
· 10 years ago
60346be
Improve debugging message.
by Manuel Pégourié-Gonnard
· 10 years ago
e423246
Fix net_usleep for durations greater than 1 second
by Manuel Pégourié-Gonnard
· 10 years ago
9439f93
Use pk_load_file() in X509
by Manuel Pégourié-Gonnard
· 10 years ago
2457fa0
Create ticket keys only if enabled
by Manuel Pégourié-Gonnard
· 10 years ago
cb7da35
Fix typo in #ifdef
by Manuel Pégourié-Gonnard
· 10 years ago
150c4f6
Clarify documentation a bit
by Manuel Pégourié-Gonnard
· 10 years ago
3e94493
Fix comment on resumption
by Manuel Pégourié-Gonnard
· 10 years ago
6b298e6
Update comment from draft to RFC
by Manuel Pégourié-Gonnard
· 10 years ago
d16d1cb
Use more #ifdef's on CLI_C and SRV_C in ssl_tls.c
by Manuel Pégourié-Gonnard
· 10 years ago
ea29d15
Add recursion.pl to all.sh
by Manuel Pégourié-Gonnard
· 10 years ago
10c44d7
Allow x509_crt_verify_child() in recursion.pl
by Manuel Pégourié-Gonnard
· 10 years ago
fd6c85c
Set a compile-time limit to X.509 chain length
by Manuel Pégourié-Gonnard
· 10 years ago
89d69b3
Fix 3DES -> DES in all.sh (+ time estimates)
by Manuel Pégourié-Gonnard
· 10 years ago
246978d
Add curves.pl to all.sh
by Manuel Pégourié-Gonnard
· 10 years ago
9bda9b3
Rework all.sh to use MSan instead of valgrind
by Manuel Pégourié-Gonnard
· 10 years ago
cf4de32
Fix depends on individual curves in tests
by Manuel Pégourié-Gonnard
· 10 years ago
2727dc1
Add script to test depends on individual curves
by Manuel Pégourié-Gonnard
· 10 years ago
5c2aa10
Fix curve dependency issues in X.509 test suite
by Manuel Pégourié-Gonnard
· 10 years ago
6ed2d92
Make x509_crl_parse() iterative
by Manuel Pégourié-Gonnard
· 10 years ago
426d4ae
Split x509_crl_parse_der() out of x509_crl_parse()
by Manuel Pégourié-Gonnard
· 10 years ago
57a5d60
Add tests for concatenated CRLs
by Manuel Pégourié-Gonnard
· 10 years ago
4be3449
Add Readme about X.509 test files
by Manuel Pégourié-Gonnard
· 10 years ago
8c9223d
Add text view to debug_print_buf()
by Manuel Pégourié-Gonnard
· 10 years ago
8e4b337
Fix some more warnings in reduced configs
by Manuel Pégourié-Gonnard
· 10 years ago
be6ce83
Fix typo causing MSVC errors
by Manuel Pégourié-Gonnard
· 10 years ago
3a3066c
ssl_server2 now exits on signal during a read too
by Manuel Pégourié-Gonnard
· 10 years ago
403a86f
ssl_server2: exit cleanly on SIGINT too
by Manuel Pégourié-Gonnard
· 10 years ago
98aa191
Adjust warnings in different modes
by Manuel Pégourié-Gonnard
· 10 years ago
e80083c
Add precision about cmake cache
by Manuel Pégourié-Gonnard
· 10 years ago
052ae25
Avoid advertising private option
by Manuel Pégourié-Gonnard
· 10 years ago
6cf1164
Update README to mention config.pl
by Manuel Pégourié-Gonnard
· 10 years ago
ca89d89
Document build modes better
by Manuel Pégourié-Gonnard
· 10 years ago
705b70f
Add new build modes for sanitizers
by Manuel Pégourié-Gonnard
· 10 years ago
fd60a5c
Add script finding recursive functions
by Manuel Pégourié-Gonnard
· 10 years ago
e5b0fc1
Make malloc-init script a bit happier
by Manuel Pégourié-Gonnard
· 10 years ago
Next »