summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* extensions: introduced functions to obtain currently parsed messagetmp-enhance-ext-handlingNikos Mavrogiannopoulos2017-09-185-0/+38
* extensions: improved checking of duplicate extensionsNikos Mavrogiannopoulos2017-09-181-9/+12
* extensions: TLS extension handling functions use stateNikos Mavrogiannopoulos2017-09-1810-429/+575
* str: rename _gnutls_buffer_pop_prefix to _gnutls_buffer_pop_prefix32Nikos Mavrogiannopoulos2017-09-182-7/+7
* str: rename _gnutls_buffer_pop_datum_prefix to _gnutls_buffer_pop_datum_prefix32Nikos Mavrogiannopoulos2017-09-182-5/+5
* _gnutls_epoch_gc: ensure there are no stray epochs after gcNikos Mavrogiannopoulos2017-09-181-3/+7
* constate: simplified allocation of epochsNikos Mavrogiannopoulos2017-09-184-53/+30
* _gnutls_epoch_get(): simplified useNikos Mavrogiannopoulos2017-09-183-5/+4
* security params: store PRF when packing sessionNikos Mavrogiannopoulos2017-09-182-0/+16
* handshake: simplify by storing a pointer to PRF mac entryNikos Mavrogiannopoulos2017-09-186-22/+18
* ext/signature: improved TLS 1.3 signature algorithm negotiationNikos Mavrogiannopoulos2017-09-184-27/+40
* x509: removed debugging codeNikos Mavrogiannopoulos2017-09-181-1/+0
* str: added helper functions to read prefixed data with 8 or 16-bit headersNikos Mavrogiannopoulos2017-09-182-0/+73
* ecc: do not warn on receiving extension on client sideNikos Mavrogiannopoulos2017-09-181-3/+3
* Added TLS 1.3 HKDF key derivation functionalityNikos Mavrogiannopoulos2017-09-185-2/+230
* extensions: include extension number in debugging messageNikos Mavrogiannopoulos2017-09-131-2/+2
* tests: check behavior on the extension hello flagsNikos Mavrogiannopoulos2017-09-131-68/+135
* extensions: apply extension msg type restrictionsNikos Mavrogiannopoulos2017-09-133-16/+106
* extensions: mark the message validity of each supported extensionNikos Mavrogiannopoulos2017-09-1319-7/+43
* extensions: type renamed to id for clarityNikos Mavrogiannopoulos2017-09-1320-76/+76
* tests: guile: don't use VERS-TLS-ALLNikos Mavrogiannopoulos2017-09-123-5/+5
* .gitlab-ci.yml: abi-coverage: include guile logsNikos Mavrogiannopoulos2017-09-121-0/+1
* nettle: added HKDF functionsNikos Mavrogiannopoulos2017-09-123-0/+164
* gnutls-cli-debug: use explicit TLS versions rather than TLS-ALLNikos Mavrogiannopoulos2017-09-121-1/+1
* _gnutls_server_select_suite: don't set auth callbacks for TLS 1.3Nikos Mavrogiannopoulos2017-09-121-38/+41
* supported_versions: print negotiated protocolNikos Mavrogiannopoulos2017-09-121-0/+2
* Negotiate draft-TLS1.3Nikos Mavrogiannopoulos2017-09-125-9/+44
* handshake: added the TLS 1.3 ciphersuitesNikos Mavrogiannopoulos2017-09-124-9/+67
* handshake: print negotiated version after its negotiation (for TLS1.3)Nikos Mavrogiannopoulos2017-09-121-3/+2
* tests: fix TLS version to 1.2 for tests which used VERS-TLS-ALLNikos Mavrogiannopoulos2017-09-124-8/+8
* Added support for key share extensionNikos Mavrogiannopoulos2017-09-1213-12/+754
* handshake: always accept TLS 1.2 in client hello if we have later protocols e...Nikos Mavrogiannopoulos2017-09-111-1/+12
* require nettle 3.3 or laterNikos Mavrogiannopoulos2017-09-113-19/+6
* str: added function to append fixed-size MPINikos Mavrogiannopoulos2017-09-112-0/+41
* tests: resumption tests were restricted to TLS 1.2Nikos Mavrogiannopoulos2017-09-112-13/+17
* ext/post_handshake: restrict the use of this extension to TLS 1.3 or laterNikos Mavrogiannopoulos2017-09-113-2/+16
* handshake: optimizations and enhancements in session version handlingNikos Mavrogiannopoulos2017-09-113-43/+43
* tests: check for post-handshake extension in TLS 1.2-only sessionsNikos Mavrogiannopoulos2017-09-112-55/+11
* tests: added unit tests for post-handshake-auth extensionNikos Mavrogiannopoulos2017-09-114-1/+678
* handshake: send client and server hellos according to TLS 1.3Nikos Mavrogiannopoulos2017-09-113-52/+67
* Added support for post handshake auth extensionNikos Mavrogiannopoulos2017-09-116-1/+131
* tests: updated for new behavior of disabling protocols on missing signature a...Nikos Mavrogiannopoulos2017-09-111-1/+1
* tests: verify that no signature algorithms with (D)TLS 1.2 will cause an errorNikos Mavrogiannopoulos2017-09-111-0/+2
* priorities: when no signature algorithms eliminate (D)TLS 1.2 or laterNikos Mavrogiannopoulos2017-09-111-6/+19
* tests: safer use of gnutls_bye in _test_cli_serv()Nikos Mavrogiannopoulos2017-09-111-5/+13
* tests: added checks for special signature algorithmsNikos Mavrogiannopoulos2017-09-112-1/+181
* tests: verify that +SIGN-ECDSA-SECP256R1-SHA256 has no effect when combined w...Nikos Mavrogiannopoulos2017-09-111-1/+21
* tests: added signature tests for ECDSA-SECP256R1-SHA256Nikos Mavrogiannopoulos2017-09-117-17/+21
* priority: do not include signature algorithms that apply to different TLS ver...Nikos Mavrogiannopoulos2017-09-111-5/+51
* tests: updated for the new behavior of handshakeNikos Mavrogiannopoulos2017-09-111-1/+1