Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | A TLS Server can now process either TLS or DTLS but not either, | lloyd | 2014-11-15 | 11 | -76/+183 |
| | | | | | with the setting set in the constructor. This prevents various surprising things from happening to applications and simplifies record processing. | ||||
* | Add specialized reduction for P-521 along with 9x9 Comba routines. | lloyd | 2014-11-15 | 13 | -26/+479 |
| | | | | | Roughly 35-50% faster on my laptop (depending on if mlock is enabled, the overhead in that allocator is becoming much more of a hotspot). | ||||
* | Add missing file | lloyd | 2014-11-12 | 1 | -0/+50 |
| | |||||
* | Add a new Python install script and clean up the makefile templates | lloyd | 2014-11-12 | 6 | -59/+188 |
| | |||||
* | Command line prog cleanup | lloyd | 2014-11-12 | 31 | -522/+478 |
| | |||||
* | RAII and m_ namespace cleanups | lloyd | 2014-11-07 | 2 | -54/+46 |
| | |||||
* | OCB cleanup and additional tests | lloyd | 2014-11-07 | 4 | -53/+152 |
| | |||||
* | RAII cleanups | lloyd | 2014-11-07 | 3 | -65/+57 |
| | |||||
* | Replace Transformatio::nstart with start_raw so we can do a full set | lloyd | 2014-11-05 | 26 | -51/+71 |
| | | | | of overloads in the base class with the same name. | ||||
* | These should be template specializations | lloyd | 2014-11-05 | 1 | -5/+7 |
| | |||||
* | Add the script used to generate mp_comba.cpp | lloyd | 2014-11-04 | 1 | -0/+116 |
| | |||||
* | Let TLS policy disable putting the timestamp in the hello random fields | lloyd | 2014-11-04 | 6 | -11/+25 |
| | |||||
* | Use noexcept on swap | lloyd | 2014-11-04 | 1 | -1/+1 |
| | |||||
* | Remove pubkey filters, broken for a long time and not useful | lloyd | 2014-11-04 | 3 | -214/+0 |
| | |||||
* | Typo | lloyd | 2014-11-04 | 1 | -1/+1 |
| | |||||
* | Avoid crashing if user types before handshake completes | lloyd | 2014-11-03 | 1 | -8/+9 |
| | |||||
* | Cleanup handling of TLS AEAD nonce sizes, push all knowledge of what | lloyd | 2014-11-03 | 7 | -189/+197 |
| | | | | the nonce sizes should be down to the ciphersuite generating script. | ||||
* | Various small fixes and cleanups, new is_prime util | lloyd | 2014-11-03 | 18 | -36/+107 |
| | |||||
* | Windows/VC build fixes | lloyd | 2014-10-31 | 1 | -1/+1 |
| | |||||
* | Fix various warnings from VC++ 2014 and add missing include | lloyd | 2014-10-31 | 12 | -37/+39 |
| | |||||
* | No need to pass version by reference | lloyd | 2014-10-31 | 3 | -3/+4 |
| | |||||
* | Add TLS fallback signalling (draft-ietf-tls-downgrade-scsv-00) | lloyd | 2014-10-31 | 10 | -31/+71 |
| | |||||
* | Fix error in add_str2oid call, github pull req 28 | etcimon | 2014-10-31 | 1 | -1/+1 |
| | |||||
* | Use -O2 instead of -O3 with GCC as it seems tree-vectorize in 4.9.0 | lloyd | 2014-10-31 | 1 | -2/+2 |
| | | | | causes problems when it converts unaligned loads to aligned SSE loads. | ||||
* | If the server offers us a SCSV instead of a real ciphersuite send a fatal alert | lloyd | 2014-10-30 | 3 | -0/+17 |
| | |||||
* | Add some secp256k1 KATs and a randomized ECC test suggested in | lloyd | 2014-10-10 | 5 | -3/+148 |
| | | | | http://crypto.stackexchange.com/questions/784 | ||||
* | Add support for DTLS handshake timeouts and retransmissions. | lloyd | 2014-10-06 | 8 | -65/+224 |
| | |||||
* | Specify version number in message when we reject due to policy | lloyd | 2014-10-06 | 2 | -2/+4 |
| | |||||
* | Handle new source file | lloyd | 2014-10-06 | 1 | -4/+0 |
| | |||||
* | Fix decoding indefinite length BER constructs that contain a context | lloyd | 2014-09-27 | 1 | -1/+1 |
| | | | | sensitive tag of zero. Github pull 26 from Janusz Chorko. | ||||
* | Don't bother polling std:: clocks if we have clock_gettime | lloyd | 2014-08-09 | 1 | -32/+22 |
| | |||||
* | Asserts here are nice | lloyd | 2014-08-09 | 1 | -2/+7 |
| | |||||
* | Move mul and square operations on a elliptic curve to CurveGFp so we | lloyd | 2014-08-09 | 4 | -213/+279 |
| | | | | | can use different representations/operations depending on the curve (eg, using a specialized version for P-256 reduction) | ||||
* | Have clear_mem just be a plain memset and only call the (slow) | lloyd | 2014-08-09 | 2 | -2/+2 |
| | | | | | zero_mem just before a deallocation where we are actually at risk of the compiler eliding the writes. | ||||
* | Fix header guard for amalgamation | lloyd | 2014-07-03 | 1 | -2/+2 |
| | |||||
* | Erroring on strict-overflow is a little too strict, GCC 4.9 is smart | lloyd | 2014-05-26 | 2 | -29/+25 |
| | |||||
* | Remove unused test. Bugzilla 272 | lloyd | 2014-05-17 | 1 | -65/+0 |
| | |||||
* | Correct CCM for L != 2. Bugzilla 270 | lloyd | 2014-05-16 | 2 | -1/+8 |
| | |||||
* | merge of 'ae7e800adaf5627c6033a09814b7e3644e7d92b7' | lloyd | 2014-05-16 | 1 | -3/+2 |
|\ | | | | | | | and 'b0a68aa4287f0ccf387bb9e9196d4aa1a682fe77' | ||||
| * | Avoid GCC 4.9 strict-overflow warning | lloyd | 2014-05-03 | 1 | -3/+2 |
| | | |||||
* | | VC2013 doesn't support __func__. Github #22 | lloyd | 2014-05-15 | 2 | -4/+10 |
| | | |||||
* | | Visual C++'s iterator debugging gets cranky with &vec[vec.size()]. | lloyd | 2014-05-15 | 2 | -2/+2 |
|/ | | | | Github #21 | ||||
* | Add default constructors to work around VC2013 issue. Github #17 | lloyd | 2014-05-01 | 2 | -0/+4 |
| | |||||
* | Support restricting compiler ISAs to specific architectures. Specifically | lloyd | 2014-05-01 | 1 | -1/+1 |
| | | | | | to work around weird MSVC limitations in 32-bit mode, but maybe useful elsewhere someday. Github #11. | ||||
* | Avoid initializer lists here, VC2013 doesn't like it. Github #18 | lloyd | 2014-05-01 | 2 | -5/+7 |
| | |||||
* | Require one plausible entropy source in auto_rng, prevents the common | lloyd | 2014-04-27 | 1 | -0/+1 |
| | | | | error of generating an amalagamation build with all of them disabled. | ||||
* | Remove stub for testing app | lloyd | 2014-04-27 | 2 | -2/+0 |
| | |||||
* | Any fixed MR iterations is probably wrong for somebody. Allow the user | lloyd | 2014-04-25 | 10 | -26/+69 |
| | | | | | | to specify a probability as well as if n was randomly chosen or not. If the input is random use a better bounds to reduce the number of needed tests. | ||||
* | Avoid std::chrono::steady_clock, missing in some distro gccs | lloyd | 2014-04-25 | 1 | -1/+0 |
| | |||||
* | Avoid crash if read returns an error. Canonical case is on the blocking device | lloyd | 2014-04-24 | 1 | -1/+2 |
| | | | | | with concurrent readers; if someone else got the entropy first we can get -1/errno=EAGAIN |