strongswan/src/libtls
Tobias Brunner f77ecf0728 tls-crypto: Fallback to any supported ECDH group
If the default group listed in the cipher suite is not supported, we try
to use any other supported group (the groups are negotiated separately
so we are not locked in to a specific group).
2021-02-12 14:35:23 +01:00
..
tests tls-crypto: Add signature scheme config file filter 2021-02-12 14:35:23 +01:00
Makefile.am libtls: Implement HKDF for TLS 1.3 2021-02-12 11:45:44 +01:00
tls.c libtls: Increase default min version to 1.2 2021-02-12 14:35:23 +01:00
tls.h libtls: Add downgrade protection for TLS 1.3 and TLS 1.2 2021-02-12 14:35:23 +01:00
tls_aead.c libtls: Allow tls_aead_t to change the content type 2021-02-12 11:45:44 +01:00
tls_aead.h libtls: Add TLS 1.3 implementation of tls_aead_t 2021-02-12 11:45:44 +01:00
tls_aead_expl.c libtls: Allow tls_aead_t to change the content type 2021-02-12 11:45:44 +01:00
tls_aead_impl.c libtls: Allow tls_aead_t to change the content type 2021-02-12 11:45:44 +01:00
tls_aead_null.c libtls: Allow tls_aead_t to change the content type 2021-02-12 11:45:44 +01:00
tls_aead_seq.c libtls: Add TLS 1.3 implementation of tls_aead_t 2021-02-12 11:45:44 +01:00
tls_alert.c libtls: Implement TLS 1.3 handshake on client-side 2021-02-12 11:45:44 +01:00
tls_alert.h libtls: Implement TLS 1.3 handshake on client-side 2021-02-12 11:45:44 +01:00
tls_application.h Unify format of HSR copyright statements 2018-05-23 16:32:53 +02:00
tls_cache.c
tls_cache.h
tls_compression.c
tls_compression.h
tls_crypto.c tls-crypto: Fallback to any supported ECDH group 2021-02-12 14:35:23 +01:00
tls_crypto.h tls-crypto: Add signature scheme config file filter 2021-02-12 14:35:23 +01:00
tls_eap.c tls-eap: Conclude EAP method also after processing packets 2021-02-12 14:35:23 +01:00
tls_eap.h libtls: Add getters for TLS handshake authentication details 2015-03-03 14:08:00 +01:00
tls_fragmentation.c tls-peer: Support answering KeyUpdate requests 2021-02-12 11:45:44 +01:00
tls_fragmentation.h libtls: Don't send TLS close notifies in EAP after application succeeds 2015-02-19 11:29:07 +01:00
tls_handshake.h libtls: Add getters for TLS handshake authentication details 2015-03-03 14:08:00 +01:00
tls_hkdf.c tls-hkdf: Implement binder PSK generation 2021-02-12 14:35:23 +01:00
tls_hkdf.h tls-hkdf: Implement binder PSK generation 2021-02-12 14:35:23 +01:00
tls_peer.c tls-peer: Verify server selects the same cipher suite after HelloRetryRequest 2021-02-12 14:35:23 +01:00
tls_peer.h
tls_prf.c tls-prf: Remove unused/undeclared argument in TLS 1.0/1.1 PRF constructor 2020-01-28 15:32:43 +01:00
tls_prf.h
tls_protection.c tls-crypto: Move AEAD ownership to the protection layer 2021-02-12 14:35:23 +01:00
tls_protection.h
tls_server.c tls-server: Select cipher suite also when handling HelloRetryRequest 2021-02-12 14:35:23 +01:00
tls_server.h
tls_socket.c tls-socket: Change how EOF of the underlying socket is handled 2021-02-12 11:45:44 +01:00
tls_socket.h libtls: Make min/max TLS version configurable 2021-02-12 14:35:23 +01:00