summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* doc: documented hsk_flags "lifetime" and its resettmp-nmav-draft-ietf-tls-tls13-21-compact-stateNikos Mavrogiannopoulos2017-12-091-0/+2
* session state: TLS1.2 and TLS1.3 state is stored as unionNikos Mavrogiannopoulos2017-12-0910-119/+136
* session state: organized key exchange keys into structuresNikos Mavrogiannopoulos2017-12-0914-244/+257
* record state: avoid memory allocations for stored keysNikos Mavrogiannopoulos2017-12-094-123/+128
* handshake: ffdhe flags merged with handshake flagsNikos Mavrogiannopoulos2017-12-096-16/+12
* handshake: false start flag merged with hsk_flagsNikos Mavrogiannopoulos2017-12-093-6/+3
* handshake: use hsk_flags in TLS1.2 and TLS1.3Nikos Mavrogiannopoulos2017-12-098-19/+13
* doc: added text on TLS1.3 rekey and reauthenticationNikos Mavrogiannopoulos2017-12-051-6/+33
* updated auto-generated filesNikos Mavrogiannopoulos2017-12-043-0/+4
* tests: re-enabled post-handshake auth testsNikos Mavrogiannopoulos2017-12-042-14/+56
* handshake: added support for post-handshake authenticationNikos Mavrogiannopoulos2017-12-0414-51/+448
* gnutls_record_set_state: use const for seq_numbertmp-nmav-draft-ietf-tls-tls13-21-key-limitsNikos Mavrogiannopoulos2017-12-042-2/+2
* tests: added test suite on key limitsNikos Mavrogiannopoulos2017-12-042-0/+342
* gnutls_record_get_state: doc updateNikos Mavrogiannopoulos2017-12-041-2/+3
* Introduce key usage limits under TLS1.3Nikos Mavrogiannopoulos2017-12-044-1/+18
* updated auto-generated filestmp-draft-ietf-tls-tls13-21-nmav-backports7Nikos Mavrogiannopoulos2017-12-033-0/+4
* tests: removed unused variables and introduced temporal vars in macrosNikos Mavrogiannopoulos2017-12-038-42/+34
* tests: check gnutls_rehandshake() and gnutls_handshake() under TLS1.3Nikos Mavrogiannopoulos2017-12-033-4/+209
* gnutls_*handshake: wrap gnutls_session_key_update under TLS 1.3Nikos Mavrogiannopoulos2017-12-031-41/+68
* tests: added unit tests with TLS1.3 key updateNikos Mavrogiannopoulos2017-12-033-0/+250
* handshake: introduced gnutls_session_key_update()Nikos Mavrogiannopoulos2017-12-039-147/+229
* handshake: added TLS1.3 passive key updateNikos Mavrogiannopoulos2017-12-0310-57/+412
* .gitlab-ci.yml: move destructive tests after trust store testsNikos Mavrogiannopoulos2017-12-031-1/+2
* keylogfile: write TLS 1.3 secretstmp-draft-ietf-tls-tls13-21-dueno-sslkeylogfileDaiki Ueno2017-11-303-18/+71
* _gnutls_nss_keylog_write: define new internal APIDaiki Ueno2017-11-304-20/+42
* tls-fuzzer: enabled the large hello checksNikos Mavrogiannopoulos2017-11-293-3/+1
* hkdf: refer to nettle's hkdf.h when availableNikos Mavrogiannopoulos2017-11-291-0/+8
* doc updateNikos Mavrogiannopoulos2017-11-291-1/+1
* gnutls_prf_rfc5705: apply the context limits only under TLS1.2 or earlierNikos Mavrogiannopoulos2017-11-271-5/+5
* gnutls_prf_raw: fail under TLS1.3Nikos Mavrogiannopoulos2017-11-271-4/+9
* tests: included behavioral test of gnutls_prf under TLS1.3tmp-draft-ietf-tls-tls13-21-prf-backwards-compatNikos Mavrogiannopoulos2017-11-271-0/+30
* gnutls_prf: prevent usage under TLS1.3Nikos Mavrogiannopoulos2017-11-271-5/+12
* gnutls_prf_rfc5705: calculate exporter using HKDF if TLS 1.3Daiki Ueno2017-11-273-19/+387
* handshake-tls13: derive and store exporter_master_secretDaiki Ueno2017-11-273-2/+11
* _tls13_derive_secret: define secret argumentDaiki Ueno2017-11-275-25/+18
* tests: client-fastopen: introduce child signal handler and delay prior to sta...Nikos Mavrogiannopoulos2017-11-241-5/+8
* session state: use the right type for send_cert_req variabletmp-draft-ietf-tls-tls13-21-nmav-backports5Nikos Mavrogiannopoulos2017-11-191-1/+1
* session state: combined srp and dh prime bits variablesNikos Mavrogiannopoulos2017-11-193-9/+9
* session state: mark mod_auth_st_int as constantNikos Mavrogiannopoulos2017-11-191-1/+1
* dtls: cookie is stored dynamically when needed rather than in pre-allocated sizeNikos Mavrogiannopoulos2017-11-193-6/+11
* removed legacy/unused rsa-related structures/functionsNikos Mavrogiannopoulos2017-11-192-15/+0
* lib: simplify adding groups according to priorititesDmitry Eremin-Solenikov2017-11-191-21/+12
* tests: added unit test for RDNs in cert callbacktmp-draft-ietf-tls-tls13-21-nmav-backports2Nikos Mavrogiannopoulos2017-11-162-1/+196
* gnutls_auth*_get_type: use gnutls_kx_get to retrieve key exchangeNikos Mavrogiannopoulos2017-11-161-6/+14
* tests: check certificate callbacks under TLS 1.2 and 1.3Nikos Mavrogiannopoulos2017-11-161-15/+26
* tests: added unit tests for client certificate under TLS1.3Nikos Mavrogiannopoulos2017-11-161-0/+10
* handshake: handle the certificate authorities extensionNikos Mavrogiannopoulos2017-11-163-11/+61
* handshake: added support for client certificatesNikos Mavrogiannopoulos2017-11-167-26/+112
* handshake: return GNUTLS_E_NO_CERTIFICATE_FOUND when no certificate is found ...Nikos Mavrogiannopoulos2017-11-162-3/+7
* handshake: send certificate request when requestedNikos Mavrogiannopoulos2017-11-163-2/+64