Commit Graph

  • a540068a56 Modify PK test suite to provide PRNG to RSA signature function Hanno Becker 2017-05-03 16:43:15 +01:00
  • 5bc8729b9e Correct memory leak in RSA self test Hanno Becker 2017-05-03 15:09:31 +01:00
  • 88ec2381d6 Add configuration options for verification and blinding Hanno Becker 2017-05-03 13:51:16 +01:00
  • b9c09af596 Add ChangeLog entry Hanno Becker 2017-06-09 11:31:43 +01:00
  • 88647ace2b Add ChangeLog entry Hanno Becker 2017-06-09 11:30:33 +01:00
  • bf4c2e3f79 Add ChangeLog entry Hanno Becker 2017-06-09 11:28:45 +01:00
  • 0401a3d888 Ensure application data records are not kept when fully processed Hanno Becker 2017-06-09 10:52:45 +01:00
  • cc019084b8 Ensure application data records are not kept when fully processed Hanno Becker 2017-06-09 10:51:37 +01:00
  • bdf3905fff Ensure application data records are not kept when fully processed Hanno Becker 2017-06-09 10:42:03 +01:00
  • 89306daef5 Fix location of ChangeLog entry Manuel Pégourié-Gonnard 2017-06-08 20:42:33 +02:00
  • 740665e43b ChangeLog cosmetics Manuel Pégourié-Gonnard 2017-06-08 20:37:30 +02:00
  • e2356722c0 ChangeLog cosmetics Manuel Pégourié-Gonnard 2017-06-08 20:36:58 +02:00
  • e0cb1cd68b ChangeLog cosmetics Manuel Pégourié-Gonnard 2017-06-08 20:35:13 +02:00
  • ce8f919a58 Merge remote-tracking branch 'restricted/iotssl-1138-rsa-padding-check-1.3-restricted' into mbedtls-1.3-restricted Manuel Pégourié-Gonnard 2017-06-08 20:34:40 +02:00
  • 1defa8fd6d Merge remote-tracking branch 'restricted/iotssl-1138-rsa-padding-check-2.1-restricted' into mbedtls-2.1-restricted Manuel Pégourié-Gonnard 2017-06-08 20:33:53 +02:00
  • b86b143030 Merge remote-tracking branch 'restricted/iotssl-1138-rsa-padding-check-restricted' into development-restricted Manuel Pégourié-Gonnard 2017-06-08 20:31:06 +02:00
  • 9105b18f72 Merge remote-tracking branch 'restricted/IOTSSL-1366/mbedtls-1.3' into mbedtls-1.3-restricted Manuel Pégourié-Gonnard 2017-06-08 20:27:19 +02:00
  • 63906d9200 Merge remote-tracking branch 'restricted/IOTSSL-1366/mbedtls-2.1' into mbedtls-2.1-restricted Manuel Pégourié-Gonnard 2017-06-08 20:26:06 +02:00
  • a0bf6ecfc3 Merge remote-tracking branch 'restricted/IOTSSL-1366/development-restricted' into development-restricted Manuel Pégourié-Gonnard 2017-06-08 20:24:29 +02:00
  • ca3ff06cea Merge remote-tracking branch 'hanno/mpi_read_file_underflow_backport-1.3' into mbedtls-1.3 Manuel Pégourié-Gonnard 2017-06-08 19:54:29 +02:00
  • f1ab79079d Merge remote-tracking branch 'hanno/sliding_exponentiation_backport-1.3' into mbedtls-1.3 Manuel Pégourié-Gonnard 2017-06-08 19:53:47 +02:00
  • 640edc7810 Merge remote-tracking branch 'hanno/mpi_read_file_underflow_backport-2.1' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-08 19:51:19 +02:00
  • ebe391d1cd Merge remote-tracking branch 'hanno/sliding_exponentiation_backport-2.1' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-08 19:49:50 +02:00
  • db108ac944 Merge remote-tracking branch 'hanno/mpi_read_file_underflow' into development Manuel Pégourié-Gonnard 2017-06-08 19:48:03 +02:00
  • 1178ac5e77 Merge remote-tracking branch 'hanno/sliding_exponentiation' into development Manuel Pégourié-Gonnard 2017-06-08 19:46:30 +02:00
  • e778441312 Merge branch 'fix-sha1-opt-test' into development Manuel Pégourié-Gonnard 2017-06-08 18:51:19 +02:00
  • 55393666a1 Fix issue in testing SHA-1 compile-time option Manuel Pégourié-Gonnard 2017-06-08 17:51:08 +02:00
  • af63c21466 Fix issue in testing SHA-1 compile-time option Manuel Pégourié-Gonnard 2017-06-08 17:51:08 +02:00
  • 48ed550b92 Fix name, documentation & location of config flag Manuel Pégourié-Gonnard 2017-06-08 17:27:20 +02:00
  • 1bf86b7e32 Add hard assertion to ssl_read_record Hanno Becker 2017-06-08 15:58:02 +01:00
  • d37839e3fa Fix mbedtls_ssl_read Hanno Becker 2017-06-08 15:56:50 +01:00
  • 10699cc96c Simplify retaining of messages for future processing Hanno Becker 2017-06-08 15:41:02 +01:00
  • bfbc494114 Add hard assertion to mbedtls_ssl_read_record_layer Hanno Becker 2017-06-08 13:39:23 +01:00
  • 6a582e80f2 Fix mbedtls_ssl_read Hanno Becker 2017-06-08 13:38:05 +01:00
  • 704f493730 Simplify retaining of messages for future processing Hanno Becker 2017-06-08 13:08:45 +01:00
  • bb9dd0c044 Add hard assertion to mbedtls_ssl_read_record_layer Hanno Becker 2017-06-08 11:55:34 +01:00
  • 4a810fba69 Fix mbedtls_ssl_read Hanno Becker 2017-05-24 16:27:30 +01:00
  • af0665d8b0 Simplify retaining of messages for future processing Hanno Becker 2017-05-24 09:16:26 +01:00
  • 674df30480 Merge remote-tracking branch 'janos/mbedtls-1.3-iotssl-1156-ecdsa-sample-and-doc-clarification' into mbedtls-1.3 Manuel Pégourié-Gonnard 2017-06-08 10:18:15 +02:00
  • 431c2afe3e Merge remote-tracking branch 'janos/mbedtls-2.1-iotssl-1156-ecdsa-sample-and-doc-clarification' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-08 10:17:54 +02:00
  • c44c3c288d Merge remote-tracking branch 'janos/iotssl-1156-ecdsa-sample-and-doc-clarification' into development Manuel Pégourié-Gonnard 2017-06-08 10:16:54 +02:00
  • eebc0aaded Merge remote-tracking branch 'hanno/iotssl-1341-optional-certificate-verification-needs-ca-chain_backport-1.3' into mbedtls-1.3 Manuel Pégourié-Gonnard 2017-06-08 10:01:19 +02:00
  • a9a65c8321 Merge remote-tracking branch 'hanno/iotssl-1341-optional-certificate-verification-needs-ca-chain-backport-2.1' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-08 10:00:53 +02:00
  • 8b4cb5481d Merge remote-tracking branch 'hanno/iotssl-1341-optional-certificate-verification-needs-ca-chain' into development Manuel Pégourié-Gonnard 2017-06-08 09:57:56 +02:00
  • 5d96a3dcde Clarify the use of ECDSA API Janos Follath 2017-03-10 11:31:41 +00:00
  • 5ad678971d Clarify the use of ECDSA API Janos Follath 2017-03-10 11:31:41 +00:00
  • 2fd1bb8f02 Add option to use smaller AES tables (table sizes reduced by 6144 bytes) Jussi Kivilinna 2015-11-12 16:38:31 +02:00
  • 6fd6d248ae Add tests for missing CA chains and bad curves. Hanno Becker 2017-05-25 17:51:31 +01:00
  • 61c0c70418 Add tests for missing CA chains and bad curves. Hanno Becker 2017-05-15 16:05:15 +01:00
  • a3929bac1e Fix implementation of VERIFY_OPTIONAL verification mode Hanno Becker 2017-05-08 16:31:14 +01:00
  • 888c2fde60 Fix implementation of VERIFY_OPTIONAL verification mode Hanno Becker 2017-05-11 11:12:40 +01:00
  • e6706e62d8 Add tests for missing CA chains and bad curves. Hanno Becker 2017-05-15 16:05:15 +01:00
  • 39ae8cd207 Fix implementation of VERIFY_OPTIONAL verification mode Hanno Becker 2017-05-08 16:31:14 +01:00
  • a9ec0cd77f Restrict MD5 in x509 certificates Ron Eldor 2017-02-09 19:29:33 +02:00
  • bbcef7e2c5 Merge remote-tracking branch 'gilles/iotssl-1223/mbedtls-1.3' into mbedtls-1.3 Manuel Pégourié-Gonnard 2017-06-06 20:13:15 +02:00
  • b55f613601 Merge remote-tracking branch 'gilles/iotssl-1223/mbedtls-2.1' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-06 20:12:51 +02:00
  • ddc6e52cc1 Merge remote-tracking branch 'gilles/iotssl-1223/development' into development Manuel Pégourié-Gonnard 2017-06-06 20:11:36 +02:00
  • 5e0144f2ef Fix bug in backport from SHA-1 blacklisting Manuel Pégourié-Gonnard 2017-06-06 19:35:34 +02:00
  • 383a118338 Merge remote-tracking branch 'gilles/IOTSSL-1330/development' into development Manuel Pégourié-Gonnard 2017-06-06 19:22:41 +02:00
  • 003b4c7b4a Merge branch 'sha1-dev' into development Manuel Pégourié-Gonnard 2017-06-06 19:16:48 +02:00
  • f11d33b2df Cleaned up negative test predicate for test case Gilles Peskine 2017-05-22 16:47:22 +02:00
  • aa859505d2 Merge branch 'sha1-2.1' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-06 19:14:47 +02:00
  • c4cb493174 Cleaned up negative test predicate for test case Gilles Peskine 2017-05-22 16:47:22 +02:00
  • b49351d1aa all.sh: test with SHA-1 enabled Gilles Peskine 2017-05-12 15:26:58 +02:00
  • 7344e1bd05 SHA-1 deprecation: allow it in key exchange Gilles Peskine 2017-05-12 13:16:40 +02:00
  • db56acae43 Allow SHA-1 in server tests, when the signature_algorithm extension is not used Gilles Peskine 2017-05-11 19:01:11 +02:00
  • 9bb4f2835c Document test data makefile Gilles Peskine 2017-05-11 17:57:22 +02:00
  • e7375ef314 X.509 tests: obey compile-time SHA-1 support option Gilles Peskine 2017-05-11 16:41:25 +02:00
  • 35db5bae2c Allow SHA-1 in test scripts Gilles Peskine 2017-05-10 10:13:59 +02:00
  • ae76599686 Test that SHA-1 defaults off Gilles Peskine 2017-05-09 15:59:24 +02:00
  • 12c19541a9 Allow SHA-1 in SSL renegotiation tests Gilles Peskine 2017-05-09 14:57:45 +02:00
  • 559674ce48 Test that X.509 verification rejects SHA-256 by default Gilles Peskine 2017-05-05 19:00:39 +02:00
  • dd57d75dfa Allow SHA-1 in X.509 and TLS tests Gilles Peskine 2017-05-05 18:59:02 +02:00
  • 5877c27846 X.509 self-tests: replaced SHA-1 certificates by SHA-256 Gilles Peskine 2017-05-05 18:56:30 +02:00
  • 83ed596d62 Added SHA256 test certificates Gilles Peskine 2017-05-05 18:56:12 +02:00
  • 955738a4f2 Remove SHA-1 in TLS by default Gilles Peskine 2017-05-04 16:17:21 +02:00
  • 2a458daa11 all.sh: test with SHA-1 enabled Gilles Peskine 2017-05-12 15:26:58 +02:00
  • 5d2511c4d4 SHA-1 deprecation: allow it in key exchange Gilles Peskine 2017-05-12 13:16:40 +02:00
  • 682df09159 Allow SHA-1 in server tests, when the signature_algorithm extension is not used Gilles Peskine 2017-05-11 19:01:11 +02:00
  • fd14bca6dc Document test data makefile Gilles Peskine 2017-05-11 17:57:22 +02:00
  • 4fa6bed0c6 X.509 tests: obey compile-time SHA-1 support option Gilles Peskine 2017-05-11 16:41:25 +02:00
  • 62469d95e2 Allow SHA-1 in test scripts Gilles Peskine 2017-05-10 10:13:59 +02:00
  • bc70a1836b Test that SHA-1 defaults off Gilles Peskine 2017-05-09 15:59:24 +02:00
  • cd3c845157 Allow SHA-1 in SSL renegotiation tests Gilles Peskine 2017-05-09 14:57:45 +02:00
  • 2dc81a0cbc Test that X.509 verification rejects SHA-256 by default Gilles Peskine 2017-05-05 19:00:39 +02:00
  • ef86ab238f Allow SHA-1 in X.509 and TLS tests Gilles Peskine 2017-05-05 18:59:02 +02:00
  • 750c353c5c X.509 self-tests: replaced SHA-1 certificates by SHA-256 Gilles Peskine 2017-05-05 18:56:30 +02:00
  • f040a17604 Added SHA256 test certificates Gilles Peskine 2017-05-05 18:56:12 +02:00
  • 5e79cb3662 Remove SHA-1 in TLS by default Gilles Peskine 2017-05-04 16:17:21 +02:00
  • 2634aa999d Merge remote-tracking branch 'restricted/mbedtls-1.3' into mbedtls-1.3 Manuel Pégourié-Gonnard 2017-06-06 18:26:32 +02:00
  • bbe01032a4 Merge remote-tracking branch 'hanno/iotssl-1241-backport-1.3' into mbedtls-1.3 Manuel Pégourié-Gonnard 2017-06-06 18:25:33 +02:00
  • cd6e4d5bcc Merge remote-tracking branch 'restricted/mbedtls-2.1' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-06 18:23:05 +02:00
  • 61946d2c68 Merge remote-tracking branch 'hanno/iotssl-1241-backport-2.1' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-06 18:21:01 +02:00
  • 23b33f8663 Merge remote-tracking branch 'hanno/sig_hash_compatibility' into development Manuel Pégourié-Gonnard 2017-06-06 18:14:57 +02:00
  • 6820eba2bb Merge branch 'iotssl-1272-fix-RSA-cache-attack-2.1-restricted' into mbedtls-2.1 Manuel Pégourié-Gonnard 2017-06-06 16:12:33 +02:00
  • eccf60caab Adapt ChangeLog Hanno Becker 2017-06-05 15:19:01 +01:00
  • 8435c381bd Remove use of size zero array in ECJPAKE test suite Hanno Becker 2017-06-05 15:02:46 +01:00
  • e633ef7ed4 Add negative testing for pem_read_buffer() Andres Amaya Garcia 2017-05-30 17:30:09 +01:00
  • f5e753a942 Add missing ret code checks in PEM module Andres Amaya Garcia 2017-05-30 17:18:06 +01:00
  • 53a8e869aa Add negative testing for mbedtls_pem_read_buffer() Andres AG 2017-03-01 11:53:29 +00:00