| Age | Commit message (Collapse) | Author |
|
Applied the standard MIT license header to all project-owned C, header,
assembly, shell, and Python files that were missing a copyright notice.
Third-party, toolchain startup, and auto-generated files were excluded.
Co-authored-by: Copilot <[email protected]>
|
|
* add support for parsing ASN.1 GeneralizedTime
* fix validity format field error
* changed CertMsg notBefore format to be in GeneralizedTime format
* changed notBefore time to be in GeneralizedTime format
* changed notAfter time to be in GeneralizedTime format
* expand tests for invalid date format
* update function comments
* update function comments
---------
Co-authored-by: Frédéric Desbiens <[email protected]>
|
|
* Fixed server PSK identity selection for ECDHE-PSK
* Fixed selected client PSK identity preservation
Implemented logic to cache the PSK store entry selected by the server identity hint so ClientKeyExchange emits the matching identity when clients use the PSK store path.
Cast the ECC supported-group test value to USHORT so the PSK identity regression builds cleanly with -Werror on Linux.
Assisted-By: Codex (OpenAI GPT-5.5) <[email protected]>
|
|
* key_size_in_bits should be shifted right to convert to bytes
* Add HKDF init length regression coverage
---------
Co-authored-by: Frédéric Desbiens <[email protected]>
|
|
|
|
Fix length checking in supported version extension, add test
|
|
|
|
The check is in the function
_nx_secure_tls_process_clienthello_psk_extension and was reported
as a vulnerability.
|
|
|
|
|
|
|
|
|
|
|