toddouska
|
fd44cb056f
|
allow badly reassembled sniffer packets to try on full length vs zero length
|
2014-02-10 16:27:44 -08:00 |
|
John Safranek
|
4a0afa19bf
|
Reinitialize the index when processing stored DTLS handshake messages.
|
2014-02-04 07:36:59 -08:00 |
|
Moisés Guimarães
|
468e26a3a2
|
fixed error catching on TLSX_EllipticCurve_Parse
fixed unsupported curves handling
|
2014-02-03 21:54:31 -03:00 |
|
John Safranek
|
f669e73c8d
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2014-02-03 14:49:38 -08:00 |
|
Moisés Guimarães
|
36b5bf0df1
|
Renaming Elliptic Curves to Supported Curves for better extension representation and avoid confusion.
|
2014-02-03 16:14:35 -03:00 |
|
toddouska
|
51b3b1cb6c
|
fix pkCurveOID c files, doesn't require openssl extra
|
2014-02-01 12:14:41 -08:00 |
|
John Safranek
|
909b9258d6
|
Thread safe OCSP.
|
2014-01-31 16:59:13 -08:00 |
|
Moisés Guimarães
|
5616450a4b
|
fixed return codes
added protection for missing HAVE_TLS_EXTENSIONS
|
2014-01-31 16:52:15 -03:00 |
|
Moisés Guimarães
|
30e2b4aa11
|
writing curves in the right order. (reverse)
improved curve validation.
|
2014-01-31 16:52:14 -03:00 |
|
Moisés Guimarães
|
9490c0dbaf
|
validating curves
|
2014-01-31 16:52:14 -03:00 |
|
Moisés Guimarães
|
de6a537896
|
exporting pkCurve info to ctx and ssl
|
2014-01-31 16:52:14 -03:00 |
|
Moisés Guimarães
|
7d2a6800f7
|
added Elliptic Curves Extensions implementation and configuration.
|
2014-01-31 16:52:13 -03:00 |
|
Moisés Guimarães
|
75ae9dc973
|
added external api for Elliptic Curves Extension.
|
2014-01-31 16:52:13 -03:00 |
|
John Safranek
|
cfa9007199
|
1. Bumped release version in configure.ac.
2. Added enable option for SCEP. Enables prereqs.
3. Added CyaSSL_wolfSCEP() for ac to test for CyaSSL SCEP.
|
2014-01-27 11:35:43 -08:00 |
|
Moisés Guimarães
|
8541c2cc97
|
added renegotiation indication SCSV sending on client hello.
|
2014-01-21 11:38:59 -03:00 |
|
Moisés Guimarães
|
d58add7e97
|
added protection to test_CyaSSL_client_server
fixed min macro
|
2014-01-15 10:56:49 -03:00 |
|
toddouska
|
8a1971d52b
|
add CyaSSL_CertPemToDer for certs, ca certs, and cert reqs
|
2014-01-14 15:13:43 -08:00 |
|
Chris Conlon
|
1d67d9217e
|
initial PKCS#7 stubs, tie into ./configure
|
2014-01-10 15:17:03 -07:00 |
|
John Safranek
|
7b04b7ab84
|
DTLS IO and cookie callbacks are IPv4/IPv6 agnostic.
|
2013-12-30 10:39:12 -08:00 |
|
John Safranek
|
420ca9e6e3
|
Merge branch 'ocsp'
|
2013-12-27 16:14:47 -08:00 |
|
John Safranek
|
896b16a7df
|
Fixed off-by-one error in OCSP
|
2013-12-27 16:13:52 -08:00 |
|
John Safranek
|
d46c68ba10
|
Moved OCSP into the CertManager like the CRL.
|
2013-12-27 12:11:47 -08:00 |
|
Moisés Guimarães
|
3e24a446b9
|
fixing SNI_GetFromBuffer return code on success.
|
2013-12-24 15:34:17 -03:00 |
|
John Safranek
|
4ce2e59adf
|
For Atomic user:
1. Added a getter for the session's IV size.
2. The HMAC size getter should return 0 for AEAD ciphers
and the hash length for the others.
|
2013-12-23 22:32:08 -08:00 |
|
John Safranek
|
14aa114854
|
Trimmed unused includes and defines from OCSP source.
|
2013-12-23 14:33:44 -08:00 |
|
Chris Conlon
|
64912b37f6
|
adjust key buffer length when using ToTraditional() or ToTraditionalEnc()
|
2013-12-23 14:07:58 -07:00 |
|
toddouska
|
29c41da818
|
do size check on user password input
|
2013-12-23 12:24:03 -08:00 |
|
toddouska
|
3c706b4645
|
only set up tmp ctx if using password
|
2013-12-23 12:15:55 -08:00 |
|
toddouska
|
db71460bb8
|
add password functionality to CyaSSL_KeyPemToDer()
|
2013-12-23 12:07:20 -08:00 |
|
John Safranek
|
fe4f10418f
|
OCSP lookups are IPv4/IPv6 agnostic.
|
2013-12-17 18:30:42 -08:00 |
|
Moisés Guimarães
|
ffd58e27ef
|
removing deprecated TRUNCATED_HMAC_SIZE
|
2013-12-12 21:05:31 -03:00 |
|
John Safranek
|
9d6182d279
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2013-12-12 11:06:21 -08:00 |
|
John Safranek
|
26a26fa19d
|
1. Fixed a build warning.
2. Fixed an initialization bug when decoding old-style client hellos.
|
2013-12-12 10:45:19 -08:00 |
|
Chris Conlon
|
5909f5c2c0
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2013-12-11 16:20:43 -08:00 |
|
Chris Conlon
|
8c7f5817ac
|
NO_FILESYSTEM fix for CyaSSL_X509_load_certificate_file
|
2013-12-11 16:19:09 -08:00 |
|
toddouska
|
ba95c33ed4
|
more clang warnings
|
2013-12-11 15:47:40 -08:00 |
|
toddouska
|
b41d09b1a2
|
fix newer clang warnings
|
2013-12-11 12:03:09 -08:00 |
|
toddouska
|
9e56ad262c
|
fix snifftest pcap frees on file mode, close TraceFile on ssl_Free
|
2013-12-10 16:17:43 -08:00 |
|
toddouska
|
3051c8e900
|
make sure Arrays elemets all set to 0
|
2013-12-09 18:21:43 -08:00 |
|
John Safranek
|
9fe165e8f8
|
1. Added a couple missing checks for NULL pointers in DTLS code.
2. Fixed compiler warning under Windows.
3. DTLS sliding window packet filter.
|
2013-12-03 15:11:00 -08:00 |
|
Moisés Guimarães
|
0c1e02ddd0
|
added truncated_hmac handing on SanityCheckCipherText, VerifyMac and BuildMessage
|
2013-12-02 16:19:52 -03:00 |
|
Moisés Guimarães
|
384cc9d3da
|
adding truncated_hmac to tlsx
|
2013-12-02 16:19:51 -03:00 |
|
Moisés Guimarães
|
f8b30b3379
|
changing variable names to build on Ubuntu.
|
2013-12-02 15:50:21 -03:00 |
|
toddouska
|
6294102760
|
fix wrong NO_DES flags for requirements
|
2013-11-27 11:59:23 -08:00 |
|
Moisés Guimarães
|
7dfb3c6b29
|
Fixing length adjustment on both while loops
added test for client hello without SNI extension
|
2013-11-25 21:05:40 -03:00 |
|
Moisés Guimarães
|
0f2f9b6982
|
added more tests with code refactoring.
|
2013-11-21 21:25:43 -03:00 |
|
Moisés Guimarães
|
ba18f8b03e
|
added new function to retrieve SNI from a buffer.
|
2013-11-21 21:25:42 -03:00 |
|
John Safranek
|
dda5413ae2
|
moved some #defines around to fix sessioncerts-only build
|
2013-11-21 10:48:45 -08:00 |
|
John Safranek
|
4377996d87
|
Saved original SKID and AKID from certificate for later use with X.509 functions.
|
2013-11-19 16:20:18 -08:00 |
|
John Safranek
|
0fd6aed9b6
|
Save more decoded data from certificate for later use with X.509 functions.
|
2013-11-19 14:44:55 -08:00 |
|