Gilles Peskine 
							
						 
					 
					
						
						
							
						
						44311f5c98 
					 
					
						
						
							
							Merge pull request  #5571  from superna9999/5162-pk-rsa-signing  
						
						 
						
						... 
						
						
						
						PK: RSA signing 
						
						
					 
					
						2022-03-07 17:09:14 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Gilles Peskine 
							
						 
					 
					
						
						
							
						
						15364ffb03 
					 
					
						
						
							
							Merge pull request  #5579  from SiliconLabs/erase_secret_before_free  
						
						 
						
						... 
						
						
						
						Erase secrets in allocated memory before freeing said memory 
						
						
					 
					
						2022-03-07 17:04:04 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						db69c5213f 
					 
					
						
						
							
							Use new PSA to mbedtls PK error mapping functions in rsa_sign_wrap()  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-03 16:41:23 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						66fa769ae8 
					 
					
						
						
							
							Fix 80 characters indentation in rsa_sign_wrap()  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-03 16:39:39 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						4b1a059f7d 
					 
					
						
						
							
							Use now shared RSA_PRV_DER_MAX_BYTES define in pk_wrap.c  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-03 16:39:39 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						48a9833cdf 
					 
					
						
						
							
							Check psa_destroy_key() return in rsa_sign_wrap()  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-03 16:39:39 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						e4f28688fd 
					 
					
						
						
							
							Fix comment typo in rsa_sign_wrap()  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-03 16:39:39 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						9854568204 
					 
					
						
						
							
							PK: RSA signing PSA wrap implementation  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-03 16:39:39 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Gilles Peskine 
							
						 
					 
					
						
						
							
						
						1f13e984ad 
					 
					
						
						
							
							Merge pull request  #5529  from superna9999/5514-translate-psa-errs-to-mbedtls  
						
						 
						
						... 
						
						
						
						Rename, move and refine PSA to mbedtls PK errors mappings 
						
						
					 
					
						2022-03-03 13:30:29 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Gilles Peskine 
							
						 
					 
					
						
						
							
						
						d929dbbb25 
					 
					
						
						
							
							Merge pull request  #5368  from mfil/feature/additional_md_getters  
						
						 
						
						... 
						
						
						
						Add function to get message digest info from context 
						
						
					 
					
						2022-03-02 16:44:26 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Gilles Peskine 
							
						 
					 
					
						
						
							
						
						e8c8300190 
					 
					
						
						
							
							Merge pull request  #5581  from superna9999/pk-move-rename-rsa-ec-key-sizes  
						
						 
						
						... 
						
						
						
						Move max sizes of RSA & EC DER keys into public header 
						
						
					 
					
						2022-03-02 16:41:53 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Paul Elliott 
							
						 
					 
					
						
						
							
						
						06898650f9 
					 
					
						
						
							
							Merge pull request  #5471  from yuhaoth/pr/add-tls13-client-certificate-verify  
						
						 
						
						... 
						
						
						
						TLS1.3: Add write client Certificate and CertificateVerify 
						
						
					 
					
						2022-03-01 18:42:00 +00:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						19915c2c00 
					 
					
						
						
							
							Rename error translation functions and move them to library/pk_wrap.*  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-01 15:21:02 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						0f49f83625 
					 
					
						
						
							
							Use now shared ECP_PUB_DER_MAX_BYTES define in pk_wrap.c  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-01 10:05:33 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						e9ecd27890 
					 
					
						
						
							
							Rename max sizes of RSA & EC DER keys defines  
						
						 
						
						... 
						
						
						
						Rename to match the required pattern of defines:
'^(MBEDTLS|PSA)_[0-9A-Z_]*[0-9A-Z]$'
Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-01 10:03:21 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						e0326a6acc 
					 
					
						
						
							
							Move max sizes of RSA & EC DER keys into private pkwrite.h  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-03-01 09:58:58 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Steven Cooreman 
							
						 
					 
					
						
						
							
						
						cd5be32191 
					 
					
						
						
							
							Erase secrets in allocated memory before freeing said memory  
						
						 
						
						... 
						
						
						
						Signed-off-by: Steven Cooreman <steven.cooreman@silabs.com > 
						
						
					 
					
						2022-02-25 11:14:59 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Andrzej Kurek 
							
						 
					 
					
						
						
							
						
						a0237f86d3 
					 
					
						
						
							
							Add missing key destruction calls in ssl_write_client_key_exchange  
						
						 
						
						... 
						
						
						
						Signed-off-by: Andrzej Kurek <andrzej.kurek@arm.com > 
						
						
					 
					
						2022-02-25 04:36:40 -05:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						71f36f1d2e 
					 
					
						
						
							
							change alert message type  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-23 17:34:29 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						0b7b101b3b 
					 
					
						
						
							
							fix warnings  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-23 12:26:48 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						2ff6ba1df0 
					 
					
						
						
							
							Remove rsa_pss_rsae_sha256 support.  
						
						 
						
						... 
						
						
						
						Sign rsa is not thread safe. Remove it from current code.
And a thread-safe version should be re-introduce in future.
Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-23 10:38:25 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						3f9cef4547 
					 
					
						
						
							
							Remove actual and use new PSA to mbedtls PK errors mapping functions  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-02-22 15:44:39 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						ea761963c5 
					 
					
						
						
							
							Add specialized PSA to mbedtls PK/RSA error mapping function  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-02-22 14:37:00 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						cd501f406e 
					 
					
						
						
							
							Add specialized PSA to mbedtls PK/ECDSA error mapping function  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-02-22 14:37:00 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Neil Armstrong 
							
						 
					 
					
						
						
							
						
						a3fdfb4925 
					 
					
						
						
							
							Introduce new PSA to mbedtls PK error mapping function  
						
						 
						
						... 
						
						
						
						Signed-off-by: Neil Armstrong <narmstrong@baylibre.com > 
						
						
					 
					
						2022-02-22 14:37:00 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						782720787f 
					 
					
						
						
							
							Refactor write_certificate_verify  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:28:13 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						2124d05e06 
					 
					
						
						
							
							Add sha384 and sha512 case  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						d66409ae92 
					 
					
						
						
							
							Add non support sig alg check and test  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						c8d8d4e01a 
					 
					
						
						
							
							fix various issues  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						7db5b8f68c 
					 
					
						
						
							
							add rsa_pss_rsae_sha256 write support  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						3391ac00d3 
					 
					
						
						
							
							fix various issue  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						ca133a34c5 
					 
					
						
						
							
							Change state machine  
						
						 
						
						... 
						
						
						
						Skip CertificateVerfiy if empty certificate or no
CertificateRequest received.
Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						537530d57a 
					 
					
						
						
							
							Add certificate request echo  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						3e536442f5 
					 
					
						
						
							
							fix various issues  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						a23b9d954c 
					 
					
						
						
							
							fix undefine error  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						7399d0d806 
					 
					
						
						
							
							refactor write certificate  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						1bb5a1ffe3 
					 
					
						
						
							
							Implement received sig_algs check  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						32e0c2d526 
					 
					
						
						
							
							fix server only build fail  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						90f152dfac 
					 
					
						
						
							
							fix psk only build fail  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						72637c734b 
					 
					
						
						
							
							fix write certificate fail  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						8511f125af 
					 
					
						
						
							
							Add certificteVerify  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						5cc3506c9f 
					 
					
						
						
							
							Add write certificate and client handler  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Jerry Yu 
							
						 
					 
					
						
						
							
						
						566c781290 
					 
					
						
						
							
							Add dummy state for client_certifiate  
						
						 
						
						... 
						
						
						
						Signed-off-by: Jerry Yu <jerry.h.yu@arm.com > 
						
						
					 
					
						2022-02-22 10:17:58 +08:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Ronald Cron 
							
						 
					 
					
						
						
							
						
						4579a972bf 
					 
					
						
						
							
							Merge pull request  #5426  from gilles-peskine-arm/ssl-get-version-3.1  
						
						 
						
						... 
						
						
						
						Add accessors to mbedtls_ssl_context: user data, version
ABI-API-checking fails which was expected as this PR adds a new field in mbedtls_ssl_context and mbedtls_ssl_config. 
						
						
					 
					
						2022-02-21 17:03:24 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
							
						
						e3a2dd787e 
					 
					
						
						
							
							Merge pull request  #5521  from AndrzejKurek/rsa-pss-use-psa  
						
						 
						
						... 
						
						
						
						Make RSA-PSS verification use PSA with MBEDTLS_USE_PSA_CRYPTO 
						
						
					 
					
						2022-02-21 16:58:57 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Gilles Peskine 
							
						 
					 
					
						
						
							
						
						66971f8ab1 
					 
					
						
						
							
							Add prototype for automatically generated debug helper  
						
						 
						
						... 
						
						
						
						Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com > 
						
						
					 
					
						2022-02-21 15:14:01 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Gilles Peskine 
							
						 
					 
					
						
						
							
						
						c63a1e0e15 
					 
					
						
						
							
							Fix mbedtls_ssl_get_version() for TLSv1.3  
						
						 
						
						... 
						
						
						
						Test it in ssl-opt.sh.
Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com > 
						
						
					 
					
						2022-02-21 15:14:01 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Gilles Peskine 
							
						 
					 
					
						
						
							
						
						e1a0c25f71 
					 
					
						
						
							
							New function to access the TLS version from a context as an enum  
						
						 
						
						... 
						
						
						
						Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com > 
						
						
					 
					
						2022-02-21 15:14:01 +01:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Paul Elliott 
							
						 
					 
					
						
						
							
						
						436b72690d 
					 
					
						
						
							
							Merge pull request  #5362  from yuhaoth/pr/enable-tls13-only-build  
						
						 
						
						... 
						
						
						
						TLS1.3:Enable tls13 only build 
						
						
					 
					
						2022-02-21 11:22:37 +00:00  
					
					
						 
						
						
							
							
							 
							
							
							
							
							 
						
					 
				 
			
				
					
						
							
							
								 
								Manuel Pégourié-Gonnard 
							
						 
					 
					
						
						
							
						
						9b545c04f7 
					 
					
						
						
							
							Merge pull request  #5520  from gabor-mezei-arm/5402_implement_hkdf_expand_based_on_psa_hmac  
						
						 
						
						... 
						
						
						
						HKDF 1b: Implement Expand in TLS 1.3 based on PSA HMAC 
						
						
					 
					
						2022-02-21 09:30:31 +01:00