toddouska
|
d2003bb8b7
|
merge in sni
|
2013-05-21 14:37:50 -07:00 |
|
John Safranek
|
b347df8d9a
|
DTLS rx size check, ssn10
Allows for receiving datagrams larger than the MTU that are reassembled
by the IP stack.
|
2013-05-21 13:52:22 -07:00 |
|
toddouska
|
fd5937b599
|
MDK-ARM updates
|
2013-05-20 17:56:27 -07:00 |
|
toddouska
|
8f5e98486f
|
fix MPLAB X windows warnings
|
2013-05-17 11:13:47 -07:00 |
|
Chris Conlon
|
a4c6ed0dda
|
add support for Microchip TCP/IP 6.0 beta
|
2013-05-17 10:59:18 -06:00 |
|
John Safranek
|
05f11c4bca
|
DTLS Finished send duplication
1. Only add the encrypted Finished message to DTLS retransmit pool.
2. Don't increment the epoch or sequence number when retransmitting.
|
2013-05-15 10:31:42 -07:00 |
|
John Safranek
|
ac716c96d3
|
Output buffer size check when sending transmit pool.
1. Added a call to CheckAvailableSize() when sending the DTLS transmit pool.
2. Rename CheckAvailableSize().
|
2013-05-13 12:32:47 -07:00 |
|
toddouska
|
61bf080290
|
fix serverhello extensions idx bug
|
2013-05-10 15:52:32 -07:00 |
|
toddouska
|
712b3dd17c
|
remove some not compiled ins
|
2013-05-09 15:33:37 -07:00 |
|
toddouska
|
8f0b695249
|
fix leanpsk build with keep cert / session cert
|
2013-05-09 15:29:25 -07:00 |
|
Chris Conlon
|
f4c379cb96
|
minor typo fix
|
2013-05-09 11:23:07 -06:00 |
|
toddouska
|
47b468d14f
|
add dtls recv timeout max user setting too
|
2013-05-08 12:49:55 -07:00 |
|
toddouska
|
8cb5f6d5d4
|
add user setting for dtls recv timeout init value
|
2013-05-07 16:14:26 -07:00 |
|
toddouska
|
9c9c59cec3
|
update sevrver session cert w/ old client hello too
|
2013-05-06 18:11:14 -07:00 |
|
John Safranek
|
9505f92bd1
|
restore session certs when resuming session
|
2013-05-06 17:25:50 -07:00 |
|
toddouska
|
a0c630b4ee
|
add cert cache persistence
|
2013-05-02 11:34:26 -07:00 |
|
toddouska
|
5a1886656a
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2013-04-29 14:23:22 -07:00 |
|
toddouska
|
5c4fdb30ad
|
add client session table lookup based on serverID, use CyaSSL_SetServerID to set/store with serverid
|
2013-04-29 14:22:32 -07:00 |
|
John Safranek
|
87048698e5
|
use subject key id and authentication key id to ID CA certs in the signers list instead of subject name hashes.
|
2013-04-29 12:08:16 -07:00 |
|
toddouska
|
98b7ed9d47
|
more consistent SSL_SUCCESS for external SSL() returns
|
2013-04-25 11:36:38 -07:00 |
|
toddouska
|
942480e6ba
|
fix save cache file problem, version id, and match cache separarte error
|
2013-04-24 14:17:50 -07:00 |
|
toddouska
|
477129b53e
|
fix conversion warning
|
2013-04-24 13:35:28 -07:00 |
|
toddouska
|
956ac08cab
|
add persistent session cache, ssn9
|
2013-04-24 11:10:23 -07:00 |
|
toddouska
|
bad1c32df2
|
add session cert conversion to x509, and free x509 for dynamic variety
|
2013-04-23 11:50:06 -07:00 |
|
toddouska
|
11d81b86de
|
change windows low res timer return
|
2013-04-22 10:52:38 -07:00 |
|
toddouska
|
d665e16bd8
|
add user ctx to verify callback with CyaSSL_SetCertCbCtx
|
2013-04-18 10:37:10 -07:00 |
|
toddouska
|
729fc1e603
|
add discardSessionCerts flag for verify callback
|
2013-04-18 09:11:35 -07:00 |
|
toddouska
|
e38b4d5868
|
free CyaSSL CTX count mutex
|
2013-04-17 13:25:02 -07:00 |
|
toddouska
|
dafcd8782a
|
add altnames check to domain match
|
2013-04-17 09:37:57 -07:00 |
|
toddouska
|
d50b388a33
|
add wildcard check to domain name match
|
2013-04-17 09:07:26 -07:00 |
|
John Safranek
|
fe13b4b6c6
|
moved and renamed the CBIO error codes so they are publically available
|
2013-04-16 12:32:55 -07:00 |
|
toddouska
|
97e0ec073f
|
make sure all lib proper *.c files have config.h then settings.h then checks for defines in case user using settings.h for lib config
|
2013-04-10 11:04:29 -07:00 |
|
toddouska
|
185331f007
|
fix shadow on decl
|
2013-04-10 10:24:33 -07:00 |
|
Chris Conlon
|
27d6c727e0
|
add MICROCHIP_TCPIP
|
2013-04-10 09:16:11 -06:00 |
|
John Safranek
|
9b0ffa0249
|
brought CYASSL_CALLBACK code up to current standard
|
2013-04-08 15:34:54 -07:00 |
|
John Safranek
|
217254b533
|
check CBIOCookie for NULL before trying to call it
|
2013-04-02 16:36:07 -07:00 |
|
John Safranek
|
e9bc868dbb
|
AES-GCM does not require SHA-384, but will use it if enabled in build; reorder some of the requirement checks to regroup some NO_RSA suite checks
|
2013-04-01 14:25:20 -07:00 |
|
John Safranek
|
44352b5673
|
don't return closed alert if peer sends fatal alert; respond to closed alert with closed alert
|
2013-04-01 13:37:25 -07:00 |
|
John Safranek
|
a572967017
|
when checking for DTLS, only need to compare against major version
|
2013-03-28 13:28:12 -07:00 |
|
toddouska
|
f396de1191
|
add DTLS support for alignment
|
2013-03-27 16:58:27 -07:00 |
|
toddouska
|
82e3c00075
|
add CYASSL_GENERAL_ALIGNMENT detection and setting for TLS alignment attempt
|
2013-03-27 15:11:49 -07:00 |
|
toddouska
|
7d82bec7fc
|
do rabbit/hc128 alignment at crypto layer for non intel
|
2013-03-26 18:16:15 -07:00 |
|
toddouska
|
14b4bb3b0f
|
change rabbit and hc128 to return values for key and process, will add error rets for alignment issues
|
2013-03-26 14:42:09 -07:00 |
|
toddouska
|
f601b7bfda
|
move aesni cbc encrypt align check down to crypto layer
|
2013-03-26 14:13:01 -07:00 |
|
toddouska
|
6bc7ba1592
|
change AesCBC end/dec to return status, will add failure cases with align checks
|
2013-03-26 12:36:39 -07:00 |
|
John Safranek
|
f65f86bb88
|
improvements to CCM, ssn6
|
2013-03-22 11:30:12 -07:00 |
|
John Safranek
|
692dc09d10
|
Merge branch 'compress'
|
2013-03-20 10:05:49 -07:00 |
|
toddouska
|
f878dbcef2
|
fix ecc key load w/ no rsa, ssn5
|
2013-03-20 09:18:05 -07:00 |
|
toddouska
|
0f8111fc77
|
zero out psk keys asap, ssn4
|
2013-03-20 09:12:00 -07:00 |
|
John Safranek
|
e8b9651075
|
hid the internal compress functions from the cryptlib versions
|
2013-03-19 16:44:50 -07:00 |
|