John Safranek
|
70552ef8e1
|
added DTLS handshake message defragmentation
|
2012-08-10 10:24:31 -07:00 |
|
John Safranek
|
11df1d25d4
|
fixed the dtls handshake header handling
|
2012-08-09 13:27:30 -07:00 |
|
toddouska
|
18c3679444
|
fix DLTS cookieSz init problem
|
2012-08-08 16:56:19 -07:00 |
|
toddouska
|
08ff33894f
|
add ECDH static cipher suite tests including RSA signed ECDH, clean up code with haveECDSA -> haveECDSAsig
|
2012-08-08 15:09:26 -07:00 |
|
toddouska
|
d494254864
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-08-08 11:36:08 -07:00 |
|
toddouska
|
eedc2f3e47
|
fix SESSION_CERTS and SHOW_CERTS example with CyaSSL API
|
2012-08-08 11:35:39 -07:00 |
|
John Safranek
|
3747246133
|
added the generation, verification, and client usage of DTLS handshake cookies
|
2012-08-08 10:38:12 -07:00 |
|
toddouska
|
706bd8a910
|
add cipher suite client/server driver
|
2012-08-06 17:14:31 -07:00 |
|
toddouska
|
644726a3fc
|
fix clang warnings on test.h
|
2012-08-02 17:37:08 -07:00 |
|
toddouska
|
bdf11587c2
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-08-02 11:55:07 -07:00 |
|
toddouska
|
90446c3c5f
|
add -u for DTLS UPD command line client/server examples
|
2012-08-02 11:54:49 -07:00 |
|
Chris Conlon
|
afa27f0021
|
FreeRTOS threads support, windows simulator support
|
2012-08-02 09:54:41 -06:00 |
|
toddouska
|
90385bb4b3
|
fix windows build with command line examples
|
2012-08-01 17:33:49 -07:00 |
|
toddouska
|
aecdb33e4e
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-08-01 12:55:32 -07:00 |
|
toddouska
|
68e5124644
|
change example client to command line options too, same as server
|
2012-08-01 12:55:13 -07:00 |
|
John Safranek
|
b8b5e7b873
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-07-31 18:42:44 -07:00 |
|
toddouska
|
a5af2e3d51
|
add altname retrieval from peer cert
|
2012-07-31 17:45:48 -07:00 |
|
John Safranek
|
368afbb815
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-07-31 10:11:21 -07:00 |
|
John Safranek
|
e716380bad
|
fixed a bug where aes-gcm required opensslExtra at build configure
|
2012-07-31 10:07:33 -07:00 |
|
John Safranek
|
9b8c5fb40e
|
aes-gcm: modified to use sequence number rather that a random explicit IV
|
2012-07-31 09:32:29 -07:00 |
|
toddouska
|
3401bba8a2
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-07-30 11:59:11 -07:00 |
|
toddouska
|
f904c598ed
|
make server example more generic with short command opts
|
2012-07-30 11:58:57 -07:00 |
|
toddouska
|
e0328ef78a
|
allow zero legnth asn names, remove weird subjectcn len as zero means we own, use stored flag instead
|
2012-07-27 16:51:46 -07:00 |
|
toddouska
|
85889f7fb9
|
add md2 signature hash support
|
2012-07-27 14:01:02 -07:00 |
|
toddouska
|
e2eb1b78cc
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-07-27 12:32:42 -07:00 |
|
toddouska
|
6e84ab1271
|
add max chain depth unique error, increase depth to 6
|
2012-07-27 12:32:22 -07:00 |
|
John Safranek
|
3cd231bdfc
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-07-24 15:04:16 -07:00 |
|
toddouska
|
6d3c7d8c59
|
allow bigger MTU record for sniffer
|
2012-07-20 13:04:03 -07:00 |
|
John Safranek
|
489fbf17fe
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-07-19 17:22:16 -07:00 |
|
John Safranek
|
cb178856a8
|
added 64-bit (default), 32-bit version, and 8-bit table based AES-GCM for faster operation. Selection made at configure.
|
2012-07-19 14:44:08 -07:00 |
|
toddouska
|
d408f01863
|
add mystrnstr for buffer searching of PEM with no null terminator
|
2012-07-17 12:01:37 -07:00 |
|
toddouska
|
d607ffaf02
|
fix MAX_MSG_EXTRA for SHA-256 digest with IV with dynamic buffers
|
2012-07-17 11:52:13 -07:00 |
|
John Safranek
|
ac79d3b145
|
replaced magic numbers with named constants, renamed some constants
|
2012-07-17 10:00:45 -07:00 |
|
John Safranek
|
87a8cfadd3
|
Used consistent constants.
|
2012-07-12 15:20:56 -07:00 |
|
John Safranek
|
aaad893804
|
fixed merge conflict
|
2012-07-12 08:39:57 -07:00 |
|
toddouska
|
1f0a32a7e3
|
use internal enum for cipher requires, move external enums back to starting at zero
|
2012-07-11 17:00:16 -07:00 |
|
John Safranek
|
1ac6db9d1d
|
added basic hello extension support for TLSv1.2, renumbered the algorithm enumerations to match RFC
|
2012-07-09 10:02:34 -07:00 |
|
John Safranek
|
eb302b91b0
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-06-30 16:29:10 -07:00 |
|
toddouska
|
638c095737
|
better error output for temp keys or compression on sniffer
|
2012-06-29 10:59:48 -07:00 |
|
toddouska
|
22cb11f304
|
add hello_request and session_ticket handling to sniffer
|
2012-06-28 13:37:19 -07:00 |
|
John Safranek
|
00cda6ab72
|
tied SHA-384 into TLSv1.2 as appropriate
|
2012-06-27 14:41:16 -07:00 |
|
John Safranek
|
c2cf1fb708
|
added HMAC-SHA-384
|
2012-06-27 10:34:43 -07:00 |
|
John Safranek
|
3a9a195683
|
Initial draft of AES GCM cipher suites. Missing SHA-384 support.
|
2012-06-26 09:30:48 -07:00 |
|
John Safranek
|
918ea3a074
|
added the library framework for handling aes-gcm in TLS
|
2012-06-18 15:57:37 -07:00 |
|
John Safranek
|
e39e27bb5b
|
implemented AES-GCM Decrypt
|
2012-06-15 15:12:56 -07:00 |
|
John Safranek
|
76bb3b2558
|
added stubs for AES-GCM processing and build option
|
2012-06-13 21:31:32 -07:00 |
|
John Safranek
|
87b3df8621
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-06-01 11:57:09 -07:00 |
|
John Safranek
|
6120f03173
|
ocsp response date checking
|
2012-06-01 11:57:03 -07:00 |
|
toddouska
|
6dd7eff1a8
|
add 64 bit misc prototypes for NO_INLINE
|
2012-06-01 11:07:29 -07:00 |
|
John Safranek
|
ca7bf0d01e
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-31 17:29:41 -07:00 |
|
John Safranek
|
6d76b2f247
|
dynamic allocation of OCSP responses, response signature check
|
2012-05-31 17:29:32 -07:00 |
|
toddouska
|
fbc5c8d6dc
|
add SSL set version, different from ctx version
|
2012-05-31 15:24:25 -07:00 |
|
toddouska
|
f528f5a7d3
|
add CertManager Verify with Buffer
|
2012-05-29 12:04:48 -07:00 |
|
John Safranek
|
4b8bb6cdfe
|
fixed merge conflicts
|
2012-05-29 09:19:53 -07:00 |
|
John Safranek
|
9818fe4f55
|
changed DN hashing to cover the whole DER encoding per OCSP-RFC, OCSP changes towards dynamic storage of responses
|
2012-05-29 09:11:37 -07:00 |
|
toddouska
|
6a62623c64
|
verify suite validity before server picks
|
2012-05-25 12:18:18 -07:00 |
|
toddouska
|
3f35c86520
|
crl signature check, be sure to load CAs first
|
2012-05-24 15:49:38 -07:00 |
|
John Safranek
|
0a31dc3a37
|
renumbered new error codes and dynamic data types
|
2012-05-24 14:36:40 -07:00 |
|
toddouska
|
baddc07300
|
check next crl date status
|
2012-05-24 14:07:59 -07:00 |
|
John Safranek
|
f2110487b6
|
added dynamic types for OCSP data
|
2012-05-24 14:07:11 -07:00 |
|
toddouska
|
2b48f248c4
|
crl dir monitoring for linux and mac
|
2012-05-22 17:25:15 -07:00 |
|
John Safranek
|
708f38ac8d
|
added OCSP error codes
|
2012-05-22 15:52:08 -07:00 |
|
John Safranek
|
e48f5a31d6
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-21 14:21:34 -07:00 |
|
Chris Conlon
|
4c79ac1f88
|
windows build fix
|
2012-05-21 15:13:11 -06:00 |
|
John Safranek
|
8bf2d13f89
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-18 15:33:54 -07:00 |
|
toddouska
|
7e322558ef
|
windows build fixes
|
2012-05-18 11:48:38 -07:00 |
|
toddouska
|
fd70122378
|
add external der CRL checker
|
2012-05-18 11:03:44 -07:00 |
|
toddouska
|
26153ffad6
|
add crl monitor flag, handle no revoked case
|
2012-05-18 10:52:32 -07:00 |
|
John Safranek
|
a3e94f335b
|
fixed merge conflict
|
2012-05-18 10:25:16 -07:00 |
|
John Safranek
|
4b3a362705
|
adding OcspRequest data, check OCSP nonce extension, made ConfirmSignature generic, bug fixes
|
2012-05-18 10:18:56 -07:00 |
|
toddouska
|
5bc728b882
|
fix lots o warnings
|
2012-05-17 17:44:54 -07:00 |
|
toddouska
|
839b5a4478
|
add set dates from buffer
|
2012-05-17 14:41:45 -07:00 |
|
toddouska
|
4b8ab62bd1
|
don't retrieve or cache null sessions
|
2012-05-17 10:55:42 -07:00 |
|
toddouska
|
08d9e57bf6
|
add crl missing url callback
|
2012-05-16 17:35:51 -07:00 |
|
toddouska
|
c4ea674fc8
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-16 17:05:03 -07:00 |
|
toddouska
|
3ec2b9dbbc
|
crl stage 2
|
2012-05-16 17:04:56 -07:00 |
|
John Safranek
|
43592def99
|
Certificate extension parsing addition
|
2012-05-14 15:38:59 -07:00 |
|
toddouska
|
6210ff78aa
|
init crl
|
2012-05-11 12:22:16 -07:00 |
|
John Safranek
|
b26f577454
|
ocsp build fix
|
2012-05-09 20:45:56 -07:00 |
|
John Safranek
|
ea2585963f
|
flattens the serial number
|
2012-05-08 19:02:25 -07:00 |
|
John Safranek
|
4feeeeda55
|
OCSP request creation almost complete, added ocsp revoke error code
|
2012-05-08 18:32:57 -07:00 |
|
John Safranek
|
81a6ed4577
|
added the hash of the issuer's public key to the decoded cert
|
2012-05-08 15:12:33 -07:00 |
|
John Safranek
|
344b60eb92
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-07 20:16:21 -07:00 |
|
toddouska
|
968dfc4cf7
|
fortress ssh build fixes
|
2012-05-07 18:19:48 -07:00 |
|
John Safranek
|
5aad32eb28
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-07 17:02:47 -07:00 |
|
toddouska
|
2a817adfcc
|
ssh non ecc
|
2012-05-07 16:35:23 -07:00 |
|
John Safranek
|
7d1d277535
|
OCSP: opening socket, starting to build request
|
2012-05-05 23:38:28 -07:00 |
|
John Safranek
|
f9985f5399
|
merge fix
|
2012-05-05 14:49:17 -07:00 |
|
toddouska
|
4fe81df45c
|
basic extneral cert manager added
|
2012-05-03 18:07:31 -07:00 |
|
toddouska
|
97e6a637e6
|
rest of ECDH suites
|
2012-05-03 09:57:17 -07:00 |
|
toddouska
|
a54f51d886
|
first static ECDH suite
|
2012-05-03 08:18:59 -07:00 |
|
John Safranek
|
7ee09ea23c
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-02 21:59:54 -07:00 |
|
toddouska
|
2a5db9371c
|
BN help
|
2012-05-02 15:11:20 -07:00 |
|
John Safranek
|
669fbf2a14
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-05-02 14:45:37 -07:00 |
|
John Safranek
|
9c5bcca1ab
|
updates to OCSP
|
2012-05-02 14:45:30 -07:00 |
|
toddouska
|
1c2b84d3dd
|
ecc client certs
|
2012-05-02 10:30:15 -07:00 |
|
toddouska
|
f49b106aef
|
ssh2
|
2012-05-01 16:12:12 -07:00 |
|
John Safranek
|
ec5b3fe313
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-04-27 15:46:27 -07:00 |
|
John Safranek
|
3fdca1f714
|
added sha384 and sha512 to certificate checking
|
2012-04-27 13:49:35 -07:00 |
|
John Safranek
|
f987da38d8
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2012-04-27 10:08:09 -07:00 |
|
toddouska
|
81be167ee2
|
init ssh changes
|
2012-04-26 16:27:27 -07:00 |
|
toddouska
|
dd431dbeff
|
merge conflict
|
2012-04-26 15:01:00 -07:00 |
|
toddouska
|
0f5b0ff8c3
|
sha384 plus merge changes
|
2012-04-26 14:58:29 -07:00 |
|
John Safranek
|
27f9cf01af
|
Changed the OCSP fcn protos to be LOCAL, not API
|
2012-04-26 14:16:34 -07:00 |
|
John Safranek
|
cbde04a06b
|
added OCSP Response simple parsing
|
2012-04-26 13:52:48 -07:00 |
|
toddouska
|
3001804c51
|
make SetAltNames optional since need bigger buffer with -DCYASSL_ALT_NAMES
|
2012-04-05 12:48:28 -07:00 |
|
John Safranek
|
d3efce71c9
|
allows one to set the cyassl ex_data to null
|
2012-03-23 14:39:37 -07:00 |
|
toddouska
|
53c7f4d5a9
|
fix strict C++ compiling linkage
|
2012-03-23 12:20:26 -07:00 |
|
toddouska
|
36529ad873
|
DevStudio 10 patches
|
2012-03-23 10:42:07 -07:00 |
|
John Safranek
|
c4e91a831f
|
Fixed unit test case. Updated a constant list to be ANSI-C compliant.
|
2012-03-19 11:30:48 -07:00 |
|
John Safranek
|
fc2f329acb
|
added: ex data for CYASSL object, cert cmp function, verify callback call in success case
|
2012-03-16 10:50:04 -07:00 |
|
John Safranek
|
d7ef83d1b3
|
Added new session cache size. Added options for Fortress build.
|
2012-03-12 10:31:45 -07:00 |
|
toddouska
|
6b77c8967a
|
don't allow user override on peer cert ASN_PARSE_E
|
2012-02-20 12:07:40 -08:00 |
|
toddouska
|
ec85d47a73
|
allow changing session timeout for ctx and ssl
|
2012-02-14 17:46:04 -08:00 |
|
toddouska
|
f8e610493c
|
add ability to set Temp EC-DHE key size in octets for ctx or ssl, 20 - 66 allowed for 160bit - 521bit
|
2012-02-14 12:46:32 -08:00 |
|
toddouska
|
84614da13e
|
increase copyright date 2012
|
2012-02-13 11:54:10 -08:00 |
|
toddouska
|
bce2508878
|
add path handling (basic) for load_verify_locations()
|
2012-02-08 18:07:20 -08:00 |
|
toddouska
|
9b5ab7c914
|
respond to negotiation attempt with alert warning no_renegotiation to try graceful continue if possible
|
2012-02-01 17:18:40 -08:00 |
|
toddouska
|
f5e53de098
|
export Base64_Encode for general use
|
2012-01-27 10:10:07 -08:00 |
|
toddouska
|
a475803eea
|
add ca cache callback test to client
|
2012-01-26 12:52:54 -08:00 |
|
toddouska
|
ee46bcce4a
|
allow ca cache addition callback
|
2012-01-26 12:43:48 -08:00 |
|
toddouska
|
bb53240fdf
|
add CyaSSL_X509_get_der(cert) with EXTRA
|
2012-01-25 14:13:05 -08:00 |
|
toddouska
|
b32bc2ce9f
|
add ability to group handshake messages on send with xxx_set_group_messages()
|
2012-01-24 13:19:03 -08:00 |
|
toddouska
|
3b7fcc6ca1
|
add ssmtp build support
|
2012-01-16 15:11:37 -08:00 |
|
toddouska
|
0254194e20
|
lean and mean windows fix
|
2011-12-15 11:42:31 -08:00 |
|
toddouska
|
2bc14ce69d
|
add CTX reference count, can free by CTX or SSL
|
2011-12-07 16:32:18 -08:00 |
|
toddouska
|
247d5b5609
|
some root CAs loaded by user won't have basic constraint, allow
|
2011-12-06 15:17:10 -08:00 |
|
toddouska
|
bcfc8c50ad
|
noFilesystem load_buffer test fix for bigger certs
|
2011-12-05 16:00:33 -08:00 |
|
toddouska
|
e82516ad2a
|
fix ecc pkcs8 import
|
2011-12-01 13:10:01 -08:00 |
|
toddouska
|
f4a9002bdb
|
ecc fixed point compile fixes, still need ecc_mul2add
|
2011-11-23 16:11:56 -08:00 |
|
toddouska
|
3dd338a062
|
add aes counter mode
|
2011-11-22 17:02:36 -08:00 |
|
toddouska
|
185e23fc58
|
microchip pic32 port
|
2011-11-09 17:32:24 -08:00 |
|
toddouska
|
c603efd023
|
normal math default mp_digit to 32 bit int instead of long
|
2011-11-07 11:52:17 -08:00 |
|
toddouska
|
771912bf4f
|
move client example and echoserver example to CyaSSL API only, echoclient and server are still OpenSSL compatibility
|
2011-11-03 10:56:15 -07:00 |
|
toddouska
|
11d15f32b9
|
check basic contsraint CA flag before adding as signer even if explicit add
|
2011-11-02 14:57:14 -07:00 |
|
toddouska
|
ef72bae2ff
|
const correct new API
|
2011-11-01 14:55:28 -07:00 |
|
toddouska
|
948a901cfc
|
add DH param setting by file and buffer, by ctx too
|
2011-11-01 14:05:14 -07:00 |
|
toddouska
|
f97759c9e1
|
hostapd adds
|
2011-10-31 17:33:40 -07:00 |
|
toddouska
|
cb90900920
|
wpa adds
|
2011-10-28 18:43:07 -07:00 |
|
toddouska
|
3ac390c147
|
add direct AES one block access and ECB DES for compatibility
|
2011-10-26 17:10:44 -07:00 |
|
toddouska
|
d3bb4bf4d4
|
move signature algo types to public header and have test cert gen use SHA256wRSA as example
|
2011-10-26 13:23:03 -07:00 |
|
toddouska
|
133b38caa6
|
change default cert gen to SHAwRSA, add SHA256wRSA gen
|
2011-10-21 10:45:04 -07:00 |
|
toddouska
|
494d048980
|
warning fixes
|
2011-10-11 12:06:04 -07:00 |
|
toddouska
|
2021461d7c
|
add alt name copying for cert gen
|
2011-10-07 16:50:32 -07:00 |
|
toddouska
|
340f275a8a
|
add fastmath to bump, add fastmath FP_MAX_BITS runtime check
|
2011-10-04 12:29:59 -07:00 |
|
toddouska
|
290f94c8ad
|
add get_subjectCN
|
2011-10-04 09:29:10 -07:00 |
|
toddouska
|
33701c0d17
|
move to always using version.h
|
2011-09-28 14:27:19 -07:00 |
|
toddouska
|
d7cf75748a
|
add release date and fix linux dir warnings
|
2011-09-28 14:07:01 -07:00 |
|
toddouska
|
27d35d50cc
|
lots o warning fixes for rc3
|
2011-09-28 13:19:05 -07:00 |
|
Todd A Ouska
|
d99932962a
|
change Visual Studio files to use new CyaSSL headers and layout, have examples and testsuite try to change to CyaSSL Home dir if not
|
2011-09-23 16:13:02 -07:00 |
|
Todd A Ouska
|
762d6a3e00
|
fix up for pending release
|
2011-09-23 10:37:26 -07:00 |
|
Todd A Ouska
|
526fe9b6d6
|
have connect_cert verify
|
2011-09-07 18:06:21 -07:00 |
|
Todd A Ouska
|
d29d9b73e1
|
conditional byte typedef
|
2011-09-07 16:03:17 -07:00 |
|
Todd A Ouska
|
1f2109e5fd
|
add cert gen CA extenstion basic constraint true
|
2011-09-06 17:30:57 -07:00 |
|
Todd A Ouska
|
3eb3a70074
|
try to set sizeof long / long long if user doesn't set
|
2011-08-29 15:37:12 -07:00 |
|
Todd A Ouska
|
dbbdd83a57
|
check sizeof long / long long against 64 bit width for mismatch
|
2011-08-29 11:11:55 -07:00 |
|
Todd A Ouska
|
d0193ba8eb
|
add math library runtime settings check
|
2011-08-29 10:39:40 -07:00 |
|
Todd A Ouska
|
efe6f80e77
|
allow an app to link with cyassl and openssl, whew
|
2011-08-26 14:40:51 -07:00 |
|
Todd A Ouska
|
9d7c016cdb
|
move cyassl headers out of openssl dir
|
2011-08-25 14:28:57 -07:00 |
|
Todd A Ouska
|
5619fa81fa
|
remove ctc_ prefix and cyassl_ prefix since all includes now specify dir
|
2011-08-25 12:41:19 -07:00 |
|
Todd A Ouska
|
5876f4acf2
|
fix sniffer and hc128 builds
|
2011-08-24 17:39:23 -07:00 |
|
Todd A Ouska
|
9d34e45b71
|
remove automatic version generated file use since embedded, windows, and project builds won't have available, can turn on in settings
|
2011-08-24 16:23:27 -07:00 |
|
Todd A Ouska
|
5d49bf7cb0
|
Brian Aker commits plus some minor changes like AM_CFLAGS getting AC_SUBST and --enable-xxx #ifdef to new header layout
|
2011-08-24 15:54:58 -07:00 |
|