Commit Graph

  • fbfd13e22b Merge pull request #10597 from valeriosetti/fix-tls12-sha-guards-backport Manuel Pégourié-Gonnard 2026-02-18 08:23:38 +00:00
  • 94594b96bd Merge pull request #10602 from davidhorstmann-arm/fix-missing-type-conversion-tls-exporter-3.6 David Horstmann 2026-02-17 18:31:05 +00:00
  • 3f2a8b0ad3 Merge pull request #10601 from davidhorstmann-arm/fix-missing-type-conversion-tls-exporter David Horstmann 2026-02-17 18:31:01 +00:00
  • d179019ec2 Set verify_result to 0 when not checking certs David Horstmann 2026-02-17 14:41:59 +00:00
  • c0faf73be6 Reword ChangeLog entry David Horstmann 2026-02-16 16:18:01 +00:00
  • 79b6980887 Set verify_result in non-verification cases David Horstmann 2026-02-16 10:57:09 +00:00
  • 01ef42d5fe Initialize verify_result in session free David Horstmann 2026-02-05 14:17:47 +00:00
  • c42f73fe34 Switch to a default value of -1u David Horstmann 2026-01-28 17:49:19 +00:00
  • 6ca2d7da8b Add ChangeLog entry for verify_result hardening David Horstmann 2025-10-08 10:49:24 +01:00
  • b413935518 Add non-regression test for verify_result init David Horstmann 2025-10-07 16:07:57 +01:00
  • 710aaa7ae7 Set verify_result to failure by default David Horstmann 2025-09-03 11:21:00 +01:00
  • 6966659a31 Add new X509 verification result for 'not started' David Horstmann 2026-01-14 15:49:33 +00:00
  • 4398e83f29 Merge pull request #10600 from gilles-peskine-arm/update-submodules-20260216 Valerio Setti 2026-02-17 11:59:40 +00:00
  • 9d96a23fa2 ssl_server2.c: Flush stdout to improve logs timeliness Ronald Cron 2026-01-29 16:04:55 +01:00
  • 373e08939f Add branch specific generate_tls_handshake_tests.py file Ronald Cron 2026-01-20 16:27:28 +01:00
  • 381b296956 Update framework pointer Ronald Cron 2026-01-14 16:15:30 +01:00
  • 85426311e3 Fix missing type conversion in the TLS-Exporter David Horstmann 2026-02-16 16:59:20 +00:00
  • 059fe77e4b Fix missing type conversion in the TLS-Exporter David Horstmann 2026-02-16 16:59:20 +00:00
  • bac74a050c Merge pull request #10593 from gilles-peskine-arm/bump-version-202602-4.0 David Horstmann 2026-02-16 16:50:16 +00:00
  • b847040a1a Merge pull request #10594 from gilles-peskine-arm/bump-version-202602-3.6 David Horstmann 2026-02-16 16:50:12 +00:00
  • 37e3dcf00d Reword ChangeLog entry David Horstmann 2026-02-16 16:18:01 +00:00
  • 26e1a7c5c8 Update framework with XOF support in psasim Gilles Peskine 2026-02-16 16:49:26 +01:00
  • 24c80cc536 Update tf-psa-crypto with mldsa-native Gilles Peskine 2026-02-16 16:49:11 +01:00
  • 32649e1e33 include: fix guard in asn1write.h Valerio Setti 2026-02-16 14:03:48 +01:00
  • 607f725563 Set verify_result in non-verification cases David Horstmann 2026-02-16 10:57:09 +00:00
  • a372f1a5cb library: check_crypto_config: remove redundant check on hash algorithms for TLS 1.2 Valerio Setti 2026-02-12 22:09:06 +01:00
  • 4602f36a93 Merge pull request #10596 from gilles-peskine-arm/check_committed_generated_files-mbedtls-actually_check_mbedtls Gilles Peskine 2026-02-12 15:11:38 +00:00
  • 384a16746f library: check_config: remove redundant check on hash algorithms for TLS 1.2 Valerio Setti 2026-02-11 14:31:29 +01:00
  • d3a8582606 Actually check committed generated files Gilles Peskine 2026-02-12 11:47:24 +01:00
  • 48c3b179c5 Merge pull request #10589 from daverodgman/backport_gcc_bswap David Horstmann 2026-02-11 14:04:47 +00:00
  • 610f4997c2 Merge pull request #10565 from minosgalanakis/bugfix/fix-intrisic-aesce-clang-36 David Horstmann 2026-02-11 11:58:55 +00:00
  • 5334c1dd14 Merge pull request #10592 from mpg/pkwrite-large-stack-buffer Valerio Setti 2026-02-11 05:02:04 +00:00
  • f41929496e Don't treat --help as an error Gilles Peskine 2026-02-10 14:50:23 +01:00
  • b47774c9a9 Remove unused variable Gilles Peskine 2026-02-10 14:50:00 +01:00
  • 05d8c71202 Don't treat --help as an error Gilles Peskine 2026-02-10 14:50:23 +01:00
  • 4cce03530a Remove unused variable Gilles Peskine 2026-02-10 14:50:00 +01:00
  • 6617ab467f pkwrite: tests: make helper more robust Manuel Pégourié-Gonnard 2026-02-05 12:22:12 +01:00
  • 20118b65bd pkwrite: RSA: avoid large stack buffer Manuel Pégourié-Gonnard 2026-02-05 10:47:23 +01:00
  • 56503ba340 pkwrite: tests: test that DER writes at the end Manuel Pégourié-Gonnard 2026-02-05 10:08:49 +01:00
  • 533a806405 pkwrite: test: factor common part into helper func Manuel Pégourié-Gonnard 2026-02-05 09:30:48 +01:00
  • 4f6c8ef2ac fix error in GCC bswap Dave Rodgman 2026-01-09 08:45:23 -05:00
  • ff51a1a176 Initialize verify_result in session free David Horstmann 2026-02-05 14:17:47 +00:00
  • 687a1ba907 Switch to a default value of -1u David Horstmann 2026-01-28 17:49:19 +00:00
  • e29d7be48e Add ChangeLog entry for verify_result hardening David Horstmann 2025-10-08 10:49:24 +01:00
  • 0ecde06ce9 Add non-regression test for verify_result init David Horstmann 2025-10-07 16:07:57 +01:00
  • dea75cbb88 Set verify_result to failure by default David Horstmann 2025-09-03 11:21:00 +01:00
  • 86c40c1b0d Add new X509 verification result for 'not started' David Horstmann 2026-01-14 15:49:33 +00:00
  • 2a72766d75 Merge pull request #10570 from valeriosetti/issue10349 Valerio Setti 2026-02-03 11:01:11 +00:00
  • 6c108c2b8c Unset DEBUG_C in build_no_ssl_cli and build_no_ssl_srv mbedtls.backport-unused-parameter-ssl-test-update Ben Taylor 2026-02-02 14:49:09 +00:00
  • 318e4314df changelog: add notes about helpers added to get list of known/supported TLS groups Valerio Setti 2026-02-02 13:38:03 +01:00
  • c3f585b8ee tests: ssl: fix typo in comment in test_mbedtls_ssl_get_supported_group_list Valerio Setti 2026-01-30 22:02:08 +01:00
  • 8b1d9e49d9 Reword to be more specific David Horstmann 2026-01-30 14:51:59 +00:00
  • 7bba265eed Add link to TF-PSA-Crypto SECURITY.md David Horstmann 2026-01-30 12:23:16 +00:00
  • 25b5fcdcd3 Merge pull request #10581 from valeriosetti/issue665-backport Valerio Setti 2026-01-29 15:17:00 +00:00
  • 75eec4b477 Merge pull request #10577 from h1wind/patch-1 Manuel Pégourié-Gonnard 2026-01-29 10:30:18 +00:00
  • 4987340d24 fix code style in ssl_msg.c and add signoff hi 2026-01-29 00:14:36 +08:00
  • d823908335 fix: Disabling the MBEDTLS_SSL_CLI_C feature caused a compilation error: unused parameter "ssl". hi 2026-01-26 20:09:48 +08:00
  • 068ef9cbe0 Merge pull request #10511 from minosgalanakis/rework/move-psasim Gilles Peskine 2026-01-28 18:05:59 +00:00
  • d0bff58379 Merge pull request #10514 from ng-gsmk/development David Horstmann 2026-01-28 16:49:09 +00:00
  • 337218d667 Merge pull request #10165 from davidhorstmann-arm/fix-mingw-ansi-stdio-3.6 David Horstmann 2026-01-28 16:42:07 +00:00
  • 7663b9c727 Updated framework pointer Minos Galanakis 2026-01-28 16:34:54 +00:00
  • 476a2edea7 library: extend mbedtls_ssl_iana_tls_group_info_t structure Valerio Setti 2026-01-27 23:37:50 +01:00
  • 2b2f430fcd tests: scripts: adapt test_tf_psa_crypto_optimized_alignment to 3.6 Valerio Setti 2026-01-28 00:18:09 +01:00
  • f79c548ad0 changelog: add changelog about fixing issue #665 in tf-psa-crypto Valerio Setti 2026-01-28 00:03:19 +01:00
  • 32ef705024 library: alignment: add "may_alias" attribute to mbedtls_uintXX_unaligned_t structs Valerio Setti 2026-01-28 00:02:41 +01:00
  • be0c788105 library: alignment.h: add internal symbol to disable optimizations on x86 Valerio Setti 2026-01-28 00:02:06 +01:00
  • 10193b37e3 tests: scripts: add new component to test alignment with GCC O3 optizations Valerio Setti 2026-01-28 00:00:33 +01:00
  • 9b49d5dbde library: ssl: fix documentation of IANA TLS group info Valerio Setti 2026-01-27 17:56:34 +01:00
  • 1c2b690389 Test Makefiles: Updated location of psasim Minos Galanakis 2025-11-17 11:44:30 +00:00
  • 097e57874f Moved tests/psa-client-server to framework. Minos Galanakis 2026-01-08 17:16:05 +00:00
  • d658f3d41e tests: ssl: skip testing of MBEDTLS_SSL_IANA_TLS_GROUP_NONE Valerio Setti 2026-01-27 11:42:59 +01:00
  • cc53b069d9 Improve changelog for alert getter Nico Geyso 2026-01-27 10:48:31 +01:00
  • 4f1e4fba80 library: ssl: make the list of "TLS ID" <-> "group name" public when possible Valerio Setti 2026-01-27 00:51:35 +01:00
  • bb4f584876 tests: ssl: improve test_mbedtls_tls_id_group_name_table() Valerio Setti 2026-01-27 00:44:56 +01:00
  • fb317afa9f library: ssl: rework macro to define known TLS ID <-> group name list Valerio Setti 2026-01-27 00:36:17 +01:00
  • ccf280d158 Add a few more test cases for printf formats Gilles Peskine 2026-01-26 17:45:48 +01:00
  • 8a3bcb1434 Fix coding style conventions for mbedtls_ssl_context Nico Geyso 2026-01-26 14:39:17 +01:00
  • 6afd8367b9 remove whitespace in mbedtls_ssl_session_msg_layer Nico Geyso 2026-01-26 13:22:40 +01:00
  • 4f83ebedd1 Fix outstanding code review issues Nico Geyso 2026-01-26 13:15:07 +01:00
  • 15c68993cb Apply suggestions from code review ng-gsmk 2026-01-26 13:07:26 +01:00
  • 2f384c82a5 built-in drivers(aesce): Fixed clang arm intrinsics for verions < 7 Minos Galanakis 2026-01-15 15:22:54 +00:00
  • c87adb64f2 tests: ssl: add test for TLS-ID <-> curve-name table Valerio Setti 2026-01-26 11:09:20 +01:00
  • 7ca3c602b7 library: ssl: add macro for allocating a TLS-ID <-> group-name table Valerio Setti 2026-01-26 10:15:12 +01:00
  • 2aecd2cd5f library|tests: ssl: remove secp256k1 from default groups Valerio Setti 2026-01-22 17:13:44 +01:00
  • 6c5a9f04df library: ssl: improve/fix documentation of group related functions Valerio Setti 2026-01-22 16:52:11 +01:00
  • 0bc29f6441 Merge pull request #10542 from minosgalanakis/bugfix/fix-intrisic-header-armf-3.6 Gilles Peskine 2026-01-22 14:51:13 +00:00
  • 46a5f309d6 Merge pull request #10571 from mpg/fix-not-grep-2 Valerio Setti 2026-01-22 12:52:42 +00:00
  • 8686ad1a9e tests: ssl: add testing for mbedtls_ssl_get_supported_group_list() Valerio Setti 2026-01-21 16:07:55 +01:00
  • 499e3d13f7 Fix more paths for "not grep" Manuel Pégourié-Gonnard 2026-01-22 10:23:03 +01:00
  • 335b1b6089 library: ssl: add missing secp256k1 to ssl_preset_default_groups Valerio Setti 2026-01-21 15:31:15 +01:00
  • 67f30df5a1 library: ssl: use correct PSA_WANT for DH groups in ssl_preset_default_groups Valerio Setti 2026-01-21 15:29:22 +01:00
  • 2707100ab7 library: ssl: move location of ssl_preset_default_groups() Valerio Setti 2026-01-21 15:26:53 +01:00
  • 1ab51732e2 library: ssl: improve documentation of mbedtls_ssl_conf_groups() Valerio Setti 2026-01-22 05:41:00 +01:00
  • 0c8b25a684 library: ssl: add public function to retrieve the list of supported groups Valerio Setti 2026-01-21 15:24:03 +01:00
  • a35f5326f5 drivers sha256|512: Adjusted tf_psa_crypto_common.h inclusion Minos Galanakis 2026-01-15 15:09:10 +00:00
  • 5ed5aeb4d9 Merge pull request #10569 from gilles-peskine-arm/mldsa-pqcp-add-driver-mbedtls Gilles Peskine 2026-01-21 12:49:34 +00:00
  • 366e469c2b Merge pull request #10568 from yanesca/add_clarifications_3.6.x David Horstmann 2026-01-20 16:38:58 +00:00
  • 7294fc1c1a Merge pull request #10567 from yanesca/add_clarifications_4.x David Horstmann 2026-01-20 16:38:53 +00:00
  • 6c0a661b68 programs/README.md clarify security remark Janos Follath 2026-01-20 10:39:40 +00:00
  • 92dbfb34f0 SECURITY.md: make x509 data section more readable Janos Follath 2026-01-20 10:38:16 +00:00