toddouska
|
5104f4ea7a
|
fix typos
|
2013-04-29 20:17:43 -07:00 |
|
toddouska
|
1e6119bb0d
|
always try most recent used session on row first for match
|
2013-04-29 20:08:21 -07:00 |
|
toddouska
|
8c1310e376
|
fix mem save/restore size with clientcache
|
2013-04-29 16:56:30 -07:00 |
|
toddouska
|
aebd926472
|
better endif ids
|
2013-04-29 14:52:28 -07:00 |
|
toddouska
|
8e64f9903d
|
fix typos
|
2013-04-29 14:48:03 -07:00 |
|
toddouska
|
5a1886656a
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2013-04-29 14:23:22 -07:00 |
|
toddouska
|
5c4fdb30ad
|
add client session table lookup based on serverID, use CyaSSL_SetServerID to set/store with serverid
|
2013-04-29 14:22:32 -07:00 |
|
John Safranek
|
87048698e5
|
use subject key id and authentication key id to ID CA certs in the signers list instead of subject name hashes.
|
2013-04-29 12:08:16 -07:00 |
|
toddouska
|
411a096b2b
|
add memory versions of session cache save/restore
|
2013-04-25 17:23:58 -07:00 |
|
toddouska
|
05dd84598b
|
turn CA signer list into CA signer hash table, defaults CA_TABLE_SIZE to 11
|
2013-04-25 15:36:33 -07:00 |
|
toddouska
|
9dbf6a5e10
|
fix Signer hash size w/o SHA, fix GetCA caList b4 lock
|
2013-04-25 14:47:09 -07:00 |
|
toddouska
|
98b7ed9d47
|
more consistent SSL_SUCCESS for external SSL() returns
|
2013-04-25 11:36:38 -07:00 |
|
toddouska
|
942480e6ba
|
fix save cache file problem, version id, and match cache separarte error
|
2013-04-24 14:17:50 -07:00 |
|
toddouska
|
477129b53e
|
fix conversion warning
|
2013-04-24 13:35:28 -07:00 |
|
toddouska
|
158029752c
|
only reset session cache with lock
|
2013-04-24 11:20:54 -07:00 |
|
toddouska
|
956ac08cab
|
add persistent session cache, ssn9
|
2013-04-24 11:10:23 -07:00 |
|
toddouska
|
65913b0d6c
|
error out earlier in get_chain_X509
|
2013-04-23 13:21:00 -07:00 |
|
toddouska
|
bad1c32df2
|
add session cert conversion to x509, and free x509 for dynamic variety
|
2013-04-23 11:50:06 -07:00 |
|
toddouska
|
4491de3b77
|
add UnloadCAs ability for CTX or CertManager
|
2013-04-22 13:18:08 -07:00 |
|
toddouska
|
8c0ee8a6f7
|
make sure all external APIs at SSL level return SSL_SUCCESS instead of sometimes 0 from old CyaSSL API
|
2013-04-22 12:43:57 -07:00 |
|
toddouska
|
11d81b86de
|
change windows low res timer return
|
2013-04-22 10:52:38 -07:00 |
|
toddouska
|
d665e16bd8
|
add user ctx to verify callback with CyaSSL_SetCertCbCtx
|
2013-04-18 10:37:10 -07:00 |
|
toddouska
|
729fc1e603
|
add discardSessionCerts flag for verify callback
|
2013-04-18 09:11:35 -07:00 |
|
toddouska
|
e38b4d5868
|
free CyaSSL CTX count mutex
|
2013-04-17 13:25:02 -07:00 |
|
toddouska
|
dafcd8782a
|
add altnames check to domain match
|
2013-04-17 09:37:57 -07:00 |
|
toddouska
|
d50b388a33
|
add wildcard check to domain name match
|
2013-04-17 09:07:26 -07:00 |
|
John Safranek
|
fe13b4b6c6
|
moved and renamed the CBIO error codes so they are publically available
|
2013-04-16 12:32:55 -07:00 |
|
toddouska
|
7c003c5755
|
add sanity check on cleanup for possible no init
|
2013-04-12 17:07:00 -07:00 |
|
toddouska
|
97e0ec073f
|
make sure all lib proper *.c files have config.h then settings.h then checks for defines in case user using settings.h for lib config
|
2013-04-10 11:04:29 -07:00 |
|
toddouska
|
185331f007
|
fix shadow on decl
|
2013-04-10 10:24:33 -07:00 |
|
Chris Conlon
|
27d6c727e0
|
add MICROCHIP_TCPIP
|
2013-04-10 09:16:11 -06:00 |
|
John Safranek
|
e98193000a
|
KEEP_PEER_CERT includes the function CyaSSL_X509_get_subjectCN
|
2013-04-09 09:45:25 -07:00 |
|
John Safranek
|
b0dca8ea69
|
updated SHOW_SIZES, opionally adds sizes as available, added flag to example client to print sizes
|
2013-04-08 16:01:52 -07:00 |
|
John Safranek
|
9b0ffa0249
|
brought CYASSL_CALLBACK code up to current standard
|
2013-04-08 15:34:54 -07:00 |
|
John Safranek
|
786e4d9462
|
fixed leak of method when ctx malloc fails; implemented get_shutdown
|
2013-04-03 16:35:19 -07:00 |
|
John Safranek
|
217254b533
|
check CBIOCookie for NULL before trying to call it
|
2013-04-02 16:36:07 -07:00 |
|
toddouska
|
1224d3d907
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2013-04-01 15:52:23 -07:00 |
|
toddouska
|
0005b4cbe4
|
move pthread flags/libs to autoconf defines so available to library proper and external tests/examples
|
2013-04-01 15:50:13 -07:00 |
|
John Safranek
|
e9bc868dbb
|
AES-GCM does not require SHA-384, but will use it if enabled in build; reorder some of the requirement checks to regroup some NO_RSA suite checks
|
2013-04-01 14:25:20 -07:00 |
|
John Safranek
|
9975d1d675
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2013-04-01 13:39:09 -07:00 |
|
John Safranek
|
44352b5673
|
don't return closed alert if peer sends fatal alert; respond to closed alert with closed alert
|
2013-04-01 13:37:25 -07:00 |
|
toddouska
|
4b90474581
|
move CM VerifyBuffer out of no filesystem
|
2013-04-01 11:59:17 -07:00 |
|
John Safranek
|
a572967017
|
when checking for DTLS, only need to compare against major version
|
2013-03-28 13:28:12 -07:00 |
|
toddouska
|
f396de1191
|
add DTLS support for alignment
|
2013-03-27 16:58:27 -07:00 |
|
toddouska
|
82e3c00075
|
add CYASSL_GENERAL_ALIGNMENT detection and setting for TLS alignment attempt
|
2013-03-27 15:11:49 -07:00 |
|
toddouska
|
6d8246e98c
|
fix scan-build 272 warnings
|
2013-03-27 12:32:22 -07:00 |
|
toddouska
|
7d82bec7fc
|
do rabbit/hc128 alignment at crypto layer for non intel
|
2013-03-26 18:16:15 -07:00 |
|
toddouska
|
14b4bb3b0f
|
change rabbit and hc128 to return values for key and process, will add error rets for alignment issues
|
2013-03-26 14:42:09 -07:00 |
|
toddouska
|
f601b7bfda
|
move aesni cbc encrypt align check down to crypto layer
|
2013-03-26 14:13:01 -07:00 |
|
toddouska
|
6bc7ba1592
|
change AesCBC end/dec to return status, will add failure cases with align checks
|
2013-03-26 12:36:39 -07:00 |
|
toddouska
|
8e53c7a62e
|
fix inline type spot
|
2013-03-25 11:50:15 -07:00 |
|
toddouska
|
9d77ca744f
|
fix C++ cast problem on make_eap
|
2013-03-24 13:06:22 -07:00 |
|
John Safranek
|
436a51a0d7
|
Merge branch 'ccm'
|
2013-03-22 17:29:30 -07:00 |
|
John Safranek
|
f65f86bb88
|
improvements to CCM, ssn6
|
2013-03-22 11:30:12 -07:00 |
|
toddouska
|
d6deb690e6
|
Merge branch 'master' into blake2
|
2013-03-22 10:20:01 -07:00 |
|
John Safranek
|
692dc09d10
|
Merge branch 'compress'
|
2013-03-20 10:05:49 -07:00 |
|
toddouska
|
f878dbcef2
|
fix ecc key load w/ no rsa, ssn5
|
2013-03-20 09:18:05 -07:00 |
|
toddouska
|
0f8111fc77
|
zero out psk keys asap, ssn4
|
2013-03-20 09:12:00 -07:00 |
|
John Safranek
|
e8b9651075
|
hid the internal compress functions from the cryptlib versions
|
2013-03-19 16:44:50 -07:00 |
|
John Safranek
|
fc928e7725
|
added stubs and a test for ctaocrypt compress
|
2013-03-19 16:25:58 -07:00 |
|
toddouska
|
4f9e915bc1
|
add KEEP_PEER_CERT flag for non opensslextra peer cert storage, ssn3
|
2013-03-19 12:18:52 -07:00 |
|
toddouska
|
31b03c8a2d
|
dtls defaults to no static buffers now, fix valgrind errors with dtls
|
2013-03-15 14:21:36 -07:00 |
|
toddouska
|
4e99c7ac99
|
check TRUE/FALSE and move after all includes in ssl.c
|
2013-03-14 09:34:29 -07:00 |
|
toddouska
|
bb103561ae
|
fix non DTLS USER_IO cb
|
2013-03-14 09:16:47 -07:00 |
|
toddouska
|
2e980423ec
|
hash session IDs since some aren't random afterall
|
2013-03-13 17:19:36 -07:00 |
|
toddouska
|
e515638503
|
make EmbedGenerateCookie a callback, USER_IO can install their own or default to ours
|
2013-03-13 16:41:50 -07:00 |
|
toddouska
|
129de03da0
|
switch --enable-noInline to enable/disable-inline to match all others
|
2013-03-13 12:25:34 -07:00 |
|
toddouska
|
0a63898f5b
|
make sure stat uses full path for REG check
|
2013-03-13 11:17:14 -07:00 |
|
toddouska
|
11ffca451a
|
make readdir file type check more generic
|
2013-03-12 16:21:07 -07:00 |
|
toddouska
|
ec0a4d45cb
|
add --enable-memory, build, disable runtime memory cbs, check leanpsk
|
2013-03-12 13:31:14 -07:00 |
|
toddouska
|
4774f1b285
|
add --enable-coding, build, leanpsk check
|
2013-03-12 13:12:10 -07:00 |
|
toddouska
|
e8ce0b7f51
|
add --enable-dh, build, checks w/o asn
|
2013-03-12 13:03:42 -07:00 |
|
toddouska
|
9a1b32d830
|
add --enable-asn, build, and checks for rsa / psk w/o asn
|
2013-03-12 12:48:41 -07:00 |
|
toddouska
|
6773287895
|
add --enable-des3 and build, no strnstr in tests
|
2013-03-12 09:46:15 -07:00 |
|
toddouska
|
1628b6f83f
|
add --enable-sha and build, disables examples for now since certs still use sha, when add --disable-certs add more thorough check
|
2013-03-11 17:53:38 -07:00 |
|
toddouska
|
7914938e60
|
--enable-md5 and build, needs NO_OLD_TLS, suite test version check
|
2013-03-11 17:37:08 -07:00 |
|
toddouska
|
894a35a0f2
|
add --enable-arc4 and build
|
2013-03-11 17:13:24 -07:00 |
|
toddouska
|
5a0d108cd9
|
add --enable-aes and build
|
2013-03-11 17:07:37 -07:00 |
|
toddouska
|
f232ff84b4
|
add --enable-pwdbased and build, opensslextra needs
|
2013-03-11 17:01:05 -07:00 |
|
toddouska
|
7719cd9faa
|
add --enable-dsa
|
2013-03-11 16:39:06 -07:00 |
|
toddouska
|
2ab409df96
|
add --enable-md4
|
2013-03-11 16:26:08 -07:00 |
|
toddouska
|
49e62f0858
|
fix general NO_SHA NO_ASN NO_CERTS NO_SESSION_CACHE builds/examples
|
2013-03-11 16:07:46 -07:00 |
|
toddouska
|
87ad65d33f
|
add --disable-rsa, bump dev version
|
2013-03-11 12:49:59 -07:00 |
|
toddouska
|
9210395c57
|
init alert history state
|
2013-03-11 12:28:17 -07:00 |
|
John Safranek
|
ec3d060691
|
fixed a cygwin bug for the build test. recv() was returning an unexpected error code for non-blocking sockets.
|
2013-03-08 18:09:52 -08:00 |
|
John Safranek
|
20e4889092
|
Merge branch 'dtls'
Conflicts:
src/ssl.c
|
2013-03-08 17:45:35 -08:00 |
|
toddouska
|
01a5368ffc
|
rest of ECC no error strings for cipher names
|
2013-03-08 12:11:49 -08:00 |
|
John Safranek
|
43ed4a7424
|
added test cases and fixed a bug with AEAD ciphers with DTLSv1.2.
|
2013-03-07 22:52:51 -08:00 |
|
toddouska
|
6b3a80366f
|
NO_RSA with ecc build fixes
|
2013-03-07 18:10:18 -08:00 |
|
toddouska
|
85b3346bbf
|
NO_RSA build, cipher suite tests need work for this build optoin, ssn2
|
2013-03-07 17:44:40 -08:00 |
|
toddouska
|
23d6c70d3e
|
allow for extra bytes in sig encoding for conforming signed big int, patch ssn1
|
2013-03-07 10:47:01 -08:00 |
|
John Safranek
|
591e1fc772
|
DTLSv1.2, fixed DTLS socket timeout
|
2013-03-06 23:02:33 -08:00 |
|
John Safranek
|
49e67487e7
|
Merge branch 'master' of github.com:cyassl/cyassl
|
2013-03-04 17:16:32 -08:00 |
|
John Safranek
|
b9ab09a5a6
|
added test cases for SHA-256 cipher suites, fixed a bug in ECDH-RSA-AES128-SHA256 picking
|
2013-03-04 16:16:34 -08:00 |
|
John Safranek
|
d52fe96063
|
added AES-CBC-SHA256 and SHA384 cipher suites.
|
2013-03-04 13:25:46 -08:00 |
|
toddouska
|
12371d1c3b
|
fix windows build warnings
|
2013-03-04 12:18:21 -08:00 |
|
toddouska
|
3319ed9921
|
Merge branch 'master' into blake2
|
2013-02-28 16:50:45 -08:00 |
|
toddouska
|
cc9ac1846d
|
fix ecc w/ no rsa send cert verify and server flag for missing cert verify
|
2013-02-26 22:24:34 -08:00 |
|
toddouska
|
b397f89b27
|
better inits for sniffer use
|
2013-02-26 09:00:46 -08:00 |
|
toddouska
|
f3a16e56c7
|
help static analysis
|
2013-02-25 10:47:55 -08:00 |
|