Sean Parkinson
|
590597a0e2
|
SP ECC verify: check point for z=0 and set to infinity
|
2021-01-28 14:43:51 +10:00 |
|
Sean Parkinson
|
0ccb0d5fce
|
SP math: fix one word Montgomery Reduction for non-asm
Set the word size for x86.
|
2021-01-28 09:54:58 +10:00 |
|
Jacob Barthelmeh
|
bbcb98a8f7
|
fix for tested x509 small build
|
2021-01-27 23:00:24 +07:00 |
|
Sean Parkinson
|
7486cad291
|
Curve448 PPC64: 'char' is not always signed - use type 'sword8'
Ensure type 'sword8' is signed.
|
2021-01-27 18:16:25 +10:00 |
|
Sean Parkinson
|
c739b4d474
|
ECDSA sign: cleanup comments and variables
Remove mod at end as mulmod does this.
Change mp_add to mp_addmod_ct to keep the size of numbers to less than
order for mp_mulmod.
|
2021-01-27 09:39:11 +10:00 |
|
John Safranek
|
a1e083b5b1
|
Merge pull request #3689 from douzzer/fips-option-check-source
configure.ac: check compatibility of chosen FIPS option with source
|
2021-01-26 12:29:52 -08:00 |
|
John Safranek
|
d0e2566ad8
|
Merge pull request #3679 from julek-wolfssl/dtls-window
Correct old DTLS msg rcv update
|
2021-01-26 12:20:59 -08:00 |
|
Juliusz Sosinowicz
|
3d4f836c00
|
Correctly insert out of order msgs to queue
|
2021-01-26 15:12:08 +01:00 |
|
Juliusz Sosinowicz
|
4da9ade290
|
Use wolfSSL_X509_free to free ourCert
|
2021-01-26 11:32:05 +01:00 |
|
Daniel Pouzzner
|
a89087ed2d
|
configure.ac: check compatibility of chosen FIPS option with the source tree, for early prevention of accidental attempts to build FIPS with non-FIPS source, or non-FIPS with FIPS source.
|
2021-01-25 17:56:28 -06:00 |
|
toddouska
|
6e0e507dad
|
Merge pull request #3660 from dgarske/sess_ticket_aes_gcm
Added support for AES GCM session ticket encryption
|
2021-01-25 15:00:03 -08:00 |
|
toddouska
|
f91dcb950c
|
Merge pull request #3670 from dgarske/keil
Fix for ARM Keil MDK compiler issue with `DECLARE_VAR_INIT`.
|
2021-01-25 14:57:05 -08:00 |
|
toddouska
|
27ef5b9a3d
|
Merge pull request #3675 from SparkiDev/tls_no_ticket
TLS Session Ticket: Option to disable for TLS 1.2 and below
|
2021-01-25 14:54:10 -08:00 |
|
toddouska
|
f35f57c378
|
Merge pull request #3683 from SparkiDev/sp_int_mont_red_1
SP math all: fix 1 word Montgomery Reduce
|
2021-01-25 14:47:35 -08:00 |
|
toddouska
|
d201820e3a
|
Merge pull request #3687 from guidovranken/x963-export-reject-invalid-keys
Reject undefined keys (eg. state is ECC_STATE_NONE) from X963 export …
|
2021-01-25 14:46:59 -08:00 |
|
toddouska
|
cf9e4f0caf
|
Merge pull request #3518 from julek-wolfssl/openssh-fixes-v2
Fixes for openssh
|
2021-01-25 14:45:56 -08:00 |
|
Elms
|
234bf0c209
|
SSL: add const for *get_verify_mode to match openSSL
|
2021-01-25 10:37:50 -08:00 |
|
Elms
|
a2917ae29c
|
SSL: cleanup verify_mode coding style
|
2021-01-25 10:29:36 -08:00 |
|
David Garske
|
05e1ee1694
|
Cleanup to use fixed sizes from defines for DECLARE_VAR . Resolves issue with Visual Studio and using a variable (even const) to declare an array size.
|
2021-01-25 09:14:12 -08:00 |
|
Guido Vranken
|
29f7eebef7
|
Reject undefined keys (eg. state is ECC_STATE_NONE) from X963 export functions
Additionally, harmonize the failure conditions of wc_ecc_export_x963 and
wc_ecc_export_x963_compressed.
|
2021-01-25 16:22:21 +01:00 |
|
Eric Blankenhorn
|
f7408560c6
|
Fix Free/SafeRTOS with XMALLOC_USER
|
2021-01-25 09:10:15 -06:00 |
|
Sean Parkinson
|
4f0ed55232
|
SP math all: fix 1 word Montgomery Reduce
May have 3 words in partial result before shifting down.
|
2021-01-25 10:19:27 +10:00 |
|
David Garske
|
fb9836ed28
|
Merge pull request #3678 from guidovranken/zd11556
Fix wc_ecc_sign_hash memory leak. ZD 11556.
|
2021-01-22 18:06:56 -08:00 |
|
Tesfa Mael
|
d29518ecac
|
Remove duplicate macro
|
2021-01-22 13:02:30 -08:00 |
|
Elms
|
21ac86adb3
|
SSL: refactor SSL verify mode to be more compatible
This follows the bit flag pattern closer. Still doesn't support
`SSL_VERIFY_CLIENT_ONCE` and maybe other flags.
|
2021-01-22 12:17:07 -08:00 |
|
David Garske
|
13468d34e3
|
Apply same VS fixes to api.c as well.
|
2021-01-22 10:50:18 -08:00 |
|
David Garske
|
46aee19de3
|
Fix for Visual Studio issue with non-cost in array declaration.
|
2021-01-22 10:44:38 -08:00 |
|
toddouska
|
920c443864
|
Merge pull request #3250 from JacobBarthelmeh/Benchmark
add brainpool benchmark
|
2021-01-22 10:08:21 -08:00 |
|
David Garske
|
cd4dae8f09
|
Merge pull request #3674 from ejohnstown/alerts
Alerts
|
2021-01-22 09:16:56 -08:00 |
|
Juliusz Sosinowicz
|
b918fb9efe
|
Correct old DTLS msg rcv update
|
2021-01-22 14:33:33 +01:00 |
|
Jacob Barthelmeh
|
6fa1556daf
|
guard -ecc-all with HAVE_SELFTEST macro
|
2021-01-22 16:13:31 +07:00 |
|
Guido Vranken
|
905f0b1f5a
|
Fix wc_ecc_sign_hash memory leak. ZD 11556.
|
2021-01-22 09:55:30 +01:00 |
|
Sean Parkinson
|
a84f1c813a
|
TLS Session Ticket: Option to disable for TLS 1.2 and below
Customer may want session ticket supported with TLS 1.3 but not TLS 1.2
and below.
|
2021-01-22 13:19:29 +10:00 |
|
Sean Parkinson
|
9c34ecc130
|
ECDSA: don't modify the e mp_int (hash) value
Multiple loops of generating signatures require the same e value.
|
2021-01-22 12:51:21 +10:00 |
|
Sean Parkinson
|
fad1e67677
|
TLS 1.3: ensure key for signature in CertificateVerify
|
2021-01-22 11:54:53 +10:00 |
|
David Garske
|
9012317f5b
|
Fix copy/paste typo.
|
2021-01-21 17:41:11 -08:00 |
|
David Garske
|
1ee40ad7bd
|
Fix to always init the variable (not just when from heap). Cleanup of the DECLARE_ uses to make sure all allocations succeeded.
|
2021-01-21 17:12:29 -08:00 |
|
John Safranek
|
6f21995ec5
|
Alerts
Expand the guard around sending the PSK identity alert with a more limited option than enabling it with all the other alerts.
|
2021-01-21 16:42:54 -08:00 |
|
David Garske
|
4b47bf7b4e
|
Merge pull request #3090 from lechner/utf8
Convert a header file to UTF-8 encoding.
|
2021-01-21 16:32:27 -08:00 |
|
David Garske
|
2017de1b0f
|
Merge pull request #3617 from haydenroche5/cmake_user_settings
Add support for user settings to CMake.
|
2021-01-21 16:21:55 -08:00 |
|
David Garske
|
07f459b8d7
|
Merge pull request #3650 from kojo1/RsaSetRNG
add wc_RsaSetRNG to doc
|
2021-01-21 16:21:00 -08:00 |
|
David Garske
|
830b3cb676
|
Merge pull request #3653 from kojo1/fopen_binMode
binary mode, fopen
|
2021-01-21 16:20:07 -08:00 |
|
David Garske
|
aa64a8e835
|
Merge pull request #3672 from embhorn/zd11547
Fix FIPS compile errors
|
2021-01-21 16:08:53 -08:00 |
|
Elms
|
95d83c9856
|
SSL: refactor to allow session override or mode
|
2021-01-21 16:03:02 -08:00 |
|
toddouska
|
1acd6dfab2
|
Merge pull request #3635 from SparkiDev/hmac_openssl_fix
HMAC OpenSSL API: initialise HMAC ctx on new and allow key length of 0
|
2021-01-21 15:57:30 -08:00 |
|
toddouska
|
a8cfc23683
|
Merge pull request #3642 from SparkiDev/ecdsa_set_k_one_loop
ECDSA set k: WOLFSSL_ECDSA_SET_K_ONE_LOOP only tries k and fails when…
|
2021-01-21 15:56:36 -08:00 |
|
toddouska
|
5837d5e8de
|
Merge pull request #3649 from dgarske/stm_aesgcm_perf
STM32 AES GCM crypto hardware performance improvements
|
2021-01-21 15:55:58 -08:00 |
|
toddouska
|
85f08466f9
|
Merge pull request #3655 from SparkiDev/ext_cache_sess
SESSION: internal cache sessions can't be freed same as external
|
2021-01-21 15:54:16 -08:00 |
|
toddouska
|
e9e96dff6a
|
Merge pull request #3662 from embhorn/gh3659
Check method for NULL
|
2021-01-21 15:50:58 -08:00 |
|
toddouska
|
7b12dddf75
|
Merge pull request #3666 from SparkiDev/tls13_tick_before_group
TLS 1.3: don't group and wait on send session ticket
|
2021-01-21 15:49:52 -08:00 |
|