searching for reviewer(mt)
15905cd1cab9: Bug 1532312, recognize certificate_required alert, r=mt
Daiki Ueno <dueno@redhat.com> - Mon, 08 Apr 2019 17:31:29 +0200 - rev 15080
Push 3321 by dueno@redhat.com at Mon, 08 Apr 2019 15:32:54 +0000
Bug 1532312, recognize certificate_required alert, r=mt Summary: Some servers send a certificate_required alert when the client returns no certificate while it is required. For server, it is not mandatory to send this alert, but it could make it easier for the client to distinguish bad_certificate and the declined cases. Reviewers: mt Reviewed By: mt Bug #: 1532312 Differential Revision: https://phabricator.services.mozilla.com/D22083
bb58098d38a5: Bug 1532312, add -E option to selfserv/tstclnt to enable post-handshake auth, r=mt
Daiki Ueno <dueno@redhat.com> - Mon, 08 Apr 2019 17:30:27 +0200 - rev 15079
Push 3321 by dueno@redhat.com at Mon, 08 Apr 2019 15:32:54 +0000
Bug 1532312, add -E option to selfserv/tstclnt to enable post-handshake auth, r=mt Reviewers: mt Reviewed By: mt Bug #: 1532312 Differential Revision: https://phabricator.services.mozilla.com/D21936
eb03936b42bb: Bug 1532312, fix transcript-hash calculation after handshake, r=mt
Daiki Ueno <dueno@redhat.com> - Mon, 08 Apr 2019 10:05:56 +0200 - rev 15078
Push 3320 by dueno@redhat.com at Mon, 08 Apr 2019 10:47:08 +0000
Bug 1532312, fix transcript-hash calculation after handshake, r=mt Summary: In post-handshake, Handshake Context should be: ``` ClientHello ... client Finished + CertificateRequest ``` while NSS continues feeding any handshake message after handshake. Reviewers: mt Reviewed By: mt Bug #: 1532312 Differential Revision: https://phabricator.services.mozilla.com/D21935
ca1e52ef02de: Bug 1531244 - Use __builtin_bswap64 in crypto_primitives.h, r=mt
Makoto Kato <m_kato@ga2.so-net.ne.jp> - Wed, 20 Mar 2019 17:41:48 +1100 - rev 15060
Push 3306 by martin.thomson@gmail.com at Wed, 20 Mar 2019 06:58:16 +0000
Bug 1531244 - Use __builtin_bswap64 in crypto_primitives.h, r=mt Summary: FREEBL_HTONLL dones't use builtin function when using gcc/clang on non-x86_64. If __builtin_bswap64 is available, we should use it. Reviewers: mt Reviewed By: mt Subscribers: mt Bug #: 1531244 Differential Revision: https://phabricator.services.mozilla.com/D21496
050a12f3ef74: Bug 1501542 - Part 2. Implement CheckARMSupport for Android. r=mt
Makoto Kato <m_kato@ga2.so-net.ne.jp> - Wed, 20 Mar 2019 17:37:59 +1100 - rev 15059
Push 3305 by martin.thomson@gmail.com at Wed, 20 Mar 2019 06:54:57 +0000
Bug 1501542 - Part 2. Implement CheckARMSupport for Android. r=mt Summary: Android 4.3 or later has getauxval, so we can use it to detect ARM features. Also, current CPU detection has a bug to detect NEON. AT_HWCAP2 doesn't return NEON bit. So it should use AT_HWCAP instead of AT_HWCAP2. But some old device such as Nexus 4 doesn't return valid value for getauxval(AT_HWCAP). So we don't trust return value of AT_HWCAP on Android. Since AT_HWCAP2 is implemented in newer devices, cpu-features in Android NDK doesn't have fallback such as AT_HWCAP case. So we can trust it. Also, if toolchain / system's default is NEON, compiler defines __ARM_NEON__ and/or __ARM_NEON (like x86's __SSE2__ defines), so if it is defined, we always allow NEON. Depends on D11430 Reviewers: franziskus, jcj, mt Reviewed By: mt Subscribers: mt Bug #: 1501542 Differential Revision: https://phabricator.services.mozilla.com/D11431
7aee8be586cb: Bug 1501542 - Part 1. Use -mfpu=neon to compile NEON code. r=mt
Makoto Kato <m_kato@ga2.so-net.ne.jp> - Wed, 20 Mar 2019 17:37:38 +1100 - rev 15058
Push 3305 by martin.thomson@gmail.com at Wed, 20 Mar 2019 06:54:57 +0000
Bug 1501542 - Part 1. Use -mfpu=neon to compile NEON code. r=mt Summary: To compile ARM's NEON code, compiler may require -mfpu=neon. Actually, since Gecko always turn on NEON (Bug 1469790), it already uses -mfpu. But tier-3 platform such as Linux/armeabi doesn't set -mfpu=neon as default. So it might require this command line option. Reviewers: mt Bug #: 1501542 Differential Revision: https://phabricator.services.mozilla.com/D11430
e611b174c065: Bug 1517714 - Properly handle ESNI with HRR, r=mt NSS_3_43_BRANCH NSS_3_43_BETA2
Ekr <ekr@rtfm.com> - Thu, 14 Mar 2019 07:58:21 +1100 - rev 15047
Push 3296 by jjones@mozilla.com at Wed, 13 Mar 2019 23:53:40 +0000
Bug 1517714 - Properly handle ESNI with HRR, r=mt
acfa940c8a18: Bug 1535122 - Align TLS 1.3 HKDF trace levels, r=mt NSS_3_43_BRANCH
Ekr <ekr@rtfm.com> - Thu, 14 Mar 2019 07:57:45 +1100 - rev 15046
Push 3296 by jjones@mozilla.com at Wed, 13 Mar 2019 23:53:40 +0000
Bug 1535122 - Align TLS 1.3 HKDF trace levels, r=mt
81275ef77c8d: Bug 1517714 - Properly handle ESNI with HRR, r=mt
Ekr <ekr@rtfm.com> - Thu, 14 Mar 2019 07:58:21 +1100 - rev 15045
Push 3295 by martin.thomson@gmail.com at Wed, 13 Mar 2019 21:14:40 +0000
Bug 1517714 - Properly handle ESNI with HRR, r=mt
2292f1b96d97: Bug 1535122 - Align TLS 1.3 HKDF trace levels, r=mt
Ekr <ekr@rtfm.com> - Thu, 14 Mar 2019 07:57:45 +1100 - rev 15044
Push 3295 by martin.thomson@gmail.com at Wed, 13 Mar 2019 21:14:40 +0000
Bug 1535122 - Align TLS 1.3 HKDF trace levels, r=mt
2207f6eb1c3c: Bug 1521174 - Add some initial S/MIME gtests r=mt
J.C. Jones <jjones@mozilla.com> - Mon, 10 Dec 2018 08:01:16 -0700 - rev 15039
Push 3290 by jjones@mozilla.com at Wed, 06 Mar 2019 15:34:57 +0000
Bug 1521174 - Add some initial S/MIME gtests r=mt Differential Revision: https://phabricator.services.mozilla.com/D17014
0ca8eb488eac: Bug 1528262, add -J option to strsclnt to specify sigschemes, r=mt
Daiki Ueno <dueno@redhat.com> - Mon, 04 Mar 2019 11:13:38 +0100 - rev 15037
Push 3288 by dueno@redhat.com at Mon, 04 Mar 2019 10:14:07 +0000
Bug 1528262, add -J option to strsclnt to specify sigschemes, r=mt Reviewers: mt Reviewed By: mt Bug #: 1528262 Differential Revision: https://phabricator.services.mozilla.com/D21516
536fd7c9db5a: 1531267, enable FIPS mode if the system FIPS mode flag is set, r=jcj,mt
Robert Relyea <rrelyea@redhat.com> - Thu, 28 Feb 2019 09:59:05 +0100 - rev 15035
Push 3286 by dueno@redhat.com at Fri, 01 Mar 2019 09:22:40 +0000
1531267, enable FIPS mode if the system FIPS mode flag is set, r=jcj,mt This patch forces NSS into FIPS mode if system fips mode bit is set. - If that bit is set, applications trying to switch out of FIPS mode will get and error code. - Applications that check to see if they can change modes (Like Firefox and Thunderbird) will be told it can't, so the firefox <Disable FIPS> button should be grayed out if the sytem fips mode bit is set. If the bit is not set, NSS get's it's FIPS indication it's traditional way, so the Firefox 'Enable FIPS' button will be on as normal. This but does not change NSS behavior WRT non-FIPS algorithms.
68f5a92482c9: Bug 1530102 - FreeBSD supports getentropy since the 12.x release, r=mt
David Carlier <devnexen@gmail.com> - Sat, 23 Feb 2019 14:34:11 +0000 - rev 15027
Push 3278 by martin.thomson@gmail.com at Sat, 23 Feb 2019 19:33:58 +0000
Bug 1530102 - FreeBSD supports getentropy since the 12.x release, r=mt
1f04eea8834a: Bug 1471970, add support for post-handshake authentication, r=mt
Daiki Ueno <dueno@redhat.com> - Wed, 20 Feb 2019 10:25:50 +0100 - rev 15019
Push 3271 by dueno@redhat.com at Wed, 20 Feb 2019 12:04:50 +0000
Bug 1471970, add support for post-handshake authentication, r=mt Summary: This adds handling of the post_handshake_auth extension in CH and exposes tls13_SendCertificateRequest as an experimental API. For practical use, it might need another function that checks if the post_handshake_auth extension is received. Reviewers: mt Reviewed By: mt Bug #: 1471970 Differential Revision: https://phabricator.services.mozilla.com/D14154
fdd7568b1edb: Bug 1496124 - Populate public values for imported private keys, r=mt
Robert Relyea <rrelyea@redhat.com> - Thu, 08 Nov 2018 13:36:59 -0800 - rev 15015
Push 3269 by martin.thomson@gmail.com at Sun, 17 Feb 2019 20:19:28 +0000
Bug 1496124 - Populate public values for imported private keys, r=mt
57bad0ae437f: Bug 1525946 - get hg commit message from hg, r=mt
Dustin J. Mitchell <dustin@mozilla.com> - Thu, 14 Feb 2019 13:36:20 +1100 - rev 15012
Push 3267 by martin.thomson@gmail.com at Thu, 14 Feb 2019 08:30:16 +0000
Bug 1525946 - get hg commit message from hg, r=mt Summary: Bug 1525946 - update .taskcluster.yml to modern standards Reviewers: mt Reviewed By: mt Bug #: 1525946 Differential Revision: https://phabricator.services.mozilla.com/D19041
fff120e8c1e1: Bug 818686 - XDG Base Directory Specification support with fallback, r=mt
Edênis Freindorfer Azevedo <edenisfa@gmail.com> - Thu, 10 Jan 2019 09:38:25 +1100 - rev 14997
Push 3255 by martin.thomson@gmail.com at Sun, 03 Feb 2019 22:49:30 +0000
Bug 818686 - XDG Base Directory Specification support with fallback, r=mt Summary: We check if $HOME/.pki and $HOME/.pki/nssdb exist; if they do, then we use this path. Otherwise, use ${XDG_DATA_HOME:-$HOME/.local/share}/pki/nssdb Test Plan: Create dummy empty dir and set HOME to it. Then, check if getUserDb returns: 1. $HOME/.pki/nssdb when this path exists; 2. $HOME/.local/share/pki/nssdb when $HOME/.pki/nssdb does not and XDG_DATA_HOME is not defined; 3. $XDG_DATA_HOME/pki/nssdb when $HOME/.pki/nssdb does not exist and XDG_DATA_HOME is defined. Reviewers: mt Reviewed By: mt Bug #: 818686 Differential Revision: https://phabricator.services.mozilla.com/D14007
dfa50a4d4e1e: Bug 1507174 - Add additional null checks to other CMS functions r=mt NSS_3_42_BRANCH
J.C. Jones <jjones@mozilla.com> - Fri, 11 Jan 2019 22:33:16 -0700 - rev 14994
Push 3254 by jjones@mozilla.com at Thu, 31 Jan 2019 17:44:04 +0000
Bug 1507174 - Add additional null checks to other CMS functions r=mt Differential review: https://phabricator.services.mozilla.com//D16383
162d72f77641: Bug 1507135 - Add additional null checks to CMS message functions r=mt NSS_3_42_BRANCH
J.C. Jones <jjones@mozilla.com> - Mon, 14 Jan 2019 10:35:25 -0700 - rev 14993
Push 3254 by jjones@mozilla.com at Thu, 31 Jan 2019 17:44:04 +0000
Bug 1507135 - Add additional null checks to CMS message functions r=mt Differential review: https://phabricator.services.mozilla.com//D16488
a00bce9553db: Bug 1515236 - Centralize a SSLKEYLOGFILE enable/disable flag at build.sh r=mt NSS_3_42_BRANCH NSS_3_42_BETA2
J.C. Jones <jjones@mozilla.com> - Thu, 24 Jan 2019 14:04:54 -0700 - rev 14985
Push 3249 by jjones@mozilla.com at Fri, 25 Jan 2019 01:24:57 +0000
Bug 1515236 - Centralize a SSLKEYLOGFILE enable/disable flag at build.sh r=mt
80aed136d48c: Bug 1515236 - Initialize debug environment variables before use r=mt NSS_3_42_BRANCH
J.C. Jones <jjones@mozilla.com> - Tue, 22 Jan 2019 15:16:23 -0700 - rev 14984
Push 3249 by jjones@mozilla.com at Fri, 25 Jan 2019 01:24:57 +0000
Bug 1515236 - Initialize debug environment variables before use r=mt
d4545c5d52c3: Bug 1515236 - Add a test that SSLKEYLOGFILE and SSLDEBUGFILE init properly r=mt NSS_3_42_BRANCH
J.C. Jones <jjones@mozilla.com> - Thu, 24 Jan 2019 16:32:35 -0700 - rev 14983
Push 3249 by jjones@mozilla.com at Fri, 25 Jan 2019 01:24:57 +0000
Bug 1515236 - Add a test that SSLKEYLOGFILE and SSLDEBUGFILE init properly r=mt There is a new test here because the keylog unittest sets the environment variable for SSLKEYLOG and NSPR provides no mechanism (cross-platform-wise) to actually delete an environment variable, so I made another file for the base uninitialized case.
32ad1532c67a: Bug 1515236 - Centralize a SSLKEYLOGFILE enable/disable flag at build.sh r=mt
J.C. Jones <jjones@mozilla.com> - Thu, 24 Jan 2019 14:04:54 -0700 - rev 14981
Push 3248 by jjones@mozilla.com at Fri, 25 Jan 2019 01:10:37 +0000
Bug 1515236 - Centralize a SSLKEYLOGFILE enable/disable flag at build.sh r=mt
1313deb37daf: Bug 1515236 - Initialize debug environment variables before use r=mt
J.C. Jones <jjones@mozilla.com> - Tue, 22 Jan 2019 15:16:23 -0700 - rev 14980
Push 3248 by jjones@mozilla.com at Fri, 25 Jan 2019 01:10:37 +0000
Bug 1515236 - Initialize debug environment variables before use r=mt
3e26ed399241: Bug 1515236 - Add a test that SSLKEYLOGFILE and SSLDEBUGFILE init properly r=mt
J.C. Jones <jjones@mozilla.com> - Thu, 24 Jan 2019 16:32:35 -0700 - rev 14979
Push 3248 by jjones@mozilla.com at Fri, 25 Jan 2019 01:10:37 +0000
Bug 1515236 - Add a test that SSLKEYLOGFILE and SSLDEBUGFILE init properly r=mt There is a new test here because the keylog unittest sets the environment variable for SSLKEYLOG and NSPR provides no mechanism (cross-platform-wise) to actually delete an environment variable, so I made another file for the base uninitialized case.
c1cd6b5568ef: Bug 1507174 - Add additional null checks to other CMS functions r=mt NSS_3_41_BRANCH
J.C. Jones <jjones@mozilla.com> - Fri, 11 Jan 2019 22:33:16 -0700 - rev 14973
Push 3243 by kaie@kuix.de at Tue, 22 Jan 2019 20:42:46 +0000
Bug 1507174 - Add additional null checks to other CMS functions r=mt Differential review: https://phabricator.services.mozilla.com//D16383
870f83c64997: Bug 1507135 - Add additional null checks to CMS message functions r=mt NSS_3_41_BRANCH
J.C. Jones <jjones@mozilla.com> - Mon, 14 Jan 2019 10:35:25 -0700 - rev 14972
Push 3243 by kaie@kuix.de at Tue, 22 Jan 2019 20:42:46 +0000
Bug 1507135 - Add additional null checks to CMS message functions r=mt Differential review: https://phabricator.services.mozilla.com//D16488
54b65b98450f: Bug 1507174 - Add additional null checks to other CMS functions r=mt NSS_3_36_BRANCH
J.C. Jones <jjones@mozilla.com> - Fri, 11 Jan 2019 22:33:16 -0700 - rev 14968
Push 3242 by jjones@mozilla.com at Sun, 20 Jan 2019 01:09:40 +0000
Bug 1507174 - Add additional null checks to other CMS functions r=mt Differential review: https://phabricator.services.mozilla.com//D16383
cf8755bd82c6: Bug 1507135 - Add additional null checks to CMS message functions r=mt NSS_3_36_BRANCH
J.C. Jones <jjones@mozilla.com> - Mon, 14 Jan 2019 10:35:25 -0700 - rev 14967
Push 3242 by jjones@mozilla.com at Sun, 20 Jan 2019 01:09:40 +0000
Bug 1507135 - Add additional null checks to CMS message functions r=mt Differential review: https://phabricator.services.mozilla.com//D16488
08d1b0c1117f: Bug 1507174 - Add additional null checks to other CMS functions r=mt
J.C. Jones <jjones@mozilla.com> - Fri, 11 Jan 2019 22:33:16 -0700 - rev 14966
Push 3241 by jjones@mozilla.com at Sun, 20 Jan 2019 00:41:34 +0000
Bug 1507174 - Add additional null checks to other CMS functions r=mt Differential review: https://phabricator.services.mozilla.com//D16383
5e70b72131ac: Bug 1507135 - Add additional null checks to CMS message functions r=mt
J.C. Jones <jjones@mozilla.com> - Mon, 14 Jan 2019 10:35:25 -0700 - rev 14965
Push 3241 by jjones@mozilla.com at Sun, 20 Jan 2019 00:41:34 +0000
Bug 1507135 - Add additional null checks to CMS message functions r=mt Differential review: https://phabricator.services.mozilla.com//D16488
da45424cb9a0: Bug 818686 - XDG Base Directory Specification support with fallback, r=mt NSS_3_42_BETA1
Edênis Freindorfer Azevedo <edenisfa@gmail.com> - Thu, 10 Jan 2019 09:38:25 +1100 - rev 14964
Push 3240 by martin.thomson@gmail.com at Wed, 16 Jan 2019 22:08:13 +0000
Bug 818686 - XDG Base Directory Specification support with fallback, r=mt Summary: We check if $HOME/.pki and $HOME/.pki/nssdb exist; if they do, then we use this path. Otherwise, use ${XDG_DATA_HOME:-$HOME/.local/share}/pki/nssdb Test Plan: Create dummy empty dir and set HOME to it. Then, check if getUserDb returns: 1. $HOME/.pki/nssdb when this path exists; 2. $HOME/.local/share/pki/nssdb when $HOME/.pki/nssdb does not and XDG_DATA_HOME is not defined; 3. $XDG_DATA_HOME/pki/nssdb when $HOME/.pki/nssdb does not exist and XDG_DATA_HOME is defined. Reviewers: mt Reviewed By: mt Bug #: 818686 Differential Revision: https://phabricator.services.mozilla.com/D14007
f4c3e18b1c3d: Bug 1485864 - improve padding checks in RSA_DecryptBlock, r=mt NSS_3_40_BRANCH
Franziskus Kiefer <franziskuskiefer@gmail.com> - Wed, 31 Oct 2018 14:15:59 +0100 - rev 14948
Push 3228 by jjones@mozilla.com at Fri, 30 Nov 2018 23:17:52 +0000
Bug 1485864 - improve padding checks in RSA_DecryptBlock, r=mt Differential Revision: https://phabricator.services.mozilla.com//D10357
eeaaee819eb3: Bug 1485864 - improve RSA key exchange handling, r=mt NSS_3_40_BRANCH
Franziskus Kiefer <franziskuskiefer@gmail.com> - Fri, 26 Oct 2018 12:50:22 +0200 - rev 14947
Push 3228 by jjones@mozilla.com at Fri, 30 Nov 2018 23:17:52 +0000
Bug 1485864 - improve RSA key exchange handling, r=mt Differential Revision: https://phabricator.services.mozilla.com//D9914
2ac9939c87cc: Bug 1485864 - improve padding checks in RSA_DecryptBlock, r=mt NSS_3_36_BRANCH
Franziskus Kiefer <franziskuskiefer@gmail.com> - Wed, 31 Oct 2018 14:15:59 +0100 - rev 14941
Push 3227 by jjones@mozilla.com at Fri, 30 Nov 2018 21:51:02 +0000
Bug 1485864 - improve padding checks in RSA_DecryptBlock, r=mt Differential Revision: https://phabricator.services.mozilla.com//D10357
93b536c98e60: Bug 1485864 - improve RSA key exchange handling, r=mt NSS_3_36_BRANCH
Franziskus Kiefer <franziskuskiefer@gmail.com> - Fri, 26 Oct 2018 12:50:22 +0200 - rev 14940
Push 3227 by jjones@mozilla.com at Fri, 30 Nov 2018 21:51:02 +0000
Bug 1485864 - improve RSA key exchange handling, r=mt Differential Revision: https://phabricator.services.mozilla.com//D9914
9d1be6a2e610: Bug 1485864 - improve padding checks in RSA_DecryptBlock, r=mt
Franziskus Kiefer <franziskuskiefer@gmail.com> - Wed, 31 Oct 2018 14:15:59 +0100 - rev 14938
Push 3226 by franziskuskiefer@gmail.com at Fri, 30 Nov 2018 17:05:12 +0000
Bug 1485864 - improve padding checks in RSA_DecryptBlock, r=mt Differential Revision: https://phabricator.services.mozilla.com//D10357
4b966fea84c8: Bug 1485864 - improve RSA key exchange handling, r=mt
Franziskus Kiefer <franziskuskiefer@gmail.com> - Fri, 26 Oct 2018 12:50:22 +0200 - rev 14937
Push 3226 by franziskuskiefer@gmail.com at Fri, 30 Nov 2018 17:05:12 +0000
Bug 1485864 - improve RSA key exchange handling, r=mt Differential Revision: https://phabricator.services.mozilla.com//D9914
a7ff3c6aff5b: Bug 1507179, reject CCS after handshake is complete in TLS 1.3, r=mt
Daiki Ueno <dueno@redhat.com> - Thu, 29 Nov 2018 18:13:10 +0100 - rev 14936
Push 3225 by dueno@redhat.com at Thu, 29 Nov 2018 17:14:13 +0000
Bug 1507179, reject CCS after handshake is complete in TLS 1.3, r=mt Reviewers: mt Reviewed By: mt Subscribers: mt, ekr, franziskus, ueno Tags: #secure-revision, PHID-PROJ-ffhf7tdvqze7zrdn6dh3 Bug #: 1507179 Differential Revision: https://phabricator.services.mozilla.com/D12887
01f74d6a5cb2: Bug 1412829, reject empty supported_signature_algorithms in CR in TLS 1.2, r=mt
Daiki Ueno <dueno@redhat.com> - Thu, 22 Nov 2018 10:55:20 +0100 - rev 14933
Push 3224 by dueno@redhat.com at Thu, 22 Nov 2018 17:33:53 +0000
Bug 1412829, reject empty supported_signature_algorithms in CR in TLS 1.2, r=mt Summary: This basically reverts bug 1335069 to align with RFC 5246. Reviewers: mt Reviewed By: mt Bug #: 1412829 Differential Revision: https://phabricator.services.mozilla.com/D12563
c15f06c09e7d: Bug 1444444, apply crypto-policy on RSA-PSS hash algorithms, r=mt
Daiki Ueno <dueno@redhat.com> - Thu, 22 Nov 2018 10:55:10 +0100 - rev 14932
Push 3224 by dueno@redhat.com at Thu, 22 Nov 2018 17:33:53 +0000
Bug 1444444, apply crypto-policy on RSA-PSS hash algorithms, r=mt Reviewers: mt Reviewed By: mt Bug #: 1444444 Differential Revision: https://phabricator.services.mozilla.com/D12441
6fa77de9d93b: Bug 1481271, resend the same ticket in ClientHello after HRR, r=mt
Daiki Ueno <dueno@redhat.com> - Wed, 21 Nov 2018 10:11:42 +0100 - rev 14931
Push 3223 by dueno@redhat.com at Wed, 21 Nov 2018 09:12:14 +0000
Bug 1481271, resend the same ticket in ClientHello after HRR, r=mt Summary: This is an another attempt to fix the issue: store the sent session ticket in `ssl3.hs` until the client receives ServerHello. Test is not ready as I couldn't find any easy way to establish multiple connections in gtests to reproduce the scenario described in comment 7. Reviewers: mt Reviewed By: mt Subscribers: franziskus, jcj, mt, ekr, ueno, rrelyea, Alex_Gaynor, mccr8, HubertKario Tags: #secure-revision, PHID-PROJ-ffhf7tdvqze7zrdn6dh3 Bug #: 1481271 Differential Revision: https://phabricator.services.mozilla.com/D7493
51583e738b21: Bug 1499732 - add expiration time to tokenInfo, r=mt
Franziskus Kiefer <franziskuskiefer@gmail.com> - Tue, 23 Oct 2018 14:56:22 +0200 - rev 14923
Push 3215 by franziskuskiefer@gmail.com at Wed, 24 Oct 2018 09:12:04 +0000
Bug 1499732 - add expiration time to tokenInfo, r=mt Differential Revision: https://phabricator.services.mozilla.com/D9510
f116b154e061: Bug 1471566 - fix OSS fuzzing build, r=mt
Franziskus Kiefer <franziskuskiefer@gmail.com> - Mon, 08 Oct 2018 15:00:24 +0200 - rev 14922
Push 3214 by franziskuskiefer@gmail.com at Wed, 24 Oct 2018 08:56:16 +0000
Bug 1471566 - fix OSS fuzzing build, r=mt Differential Revision: https://phabricator.services.mozilla.com/D9493
5180835aac1d: Bug 1498437 - Require that the server negotiate TLS 1.3 if we sent ESNI. r=mt
EKR <ekr@rtfm.com> - Thu, 11 Oct 2018 18:51:04 -0700 - rev 14914
Push 3207 by ekr@mozilla.com at Fri, 12 Oct 2018 14:44:52 +0000
Bug 1498437 - Require that the server negotiate TLS 1.3 if we sent ESNI. r=mt Reviewers: mt Tags: #secure-revision Bug #: 1498437 Differential Revision: https://phabricator.services.mozilla.com/D8496
77ae602f995a: Bug 1471566 - fix OSS fuzzing build, r=mt
Franziskus Kiefer <franziskuskiefer@gmail.com> - Mon, 08 Oct 2018 15:00:24 +0200 - rev 14911
Push 3205 by franziskuskiefer@gmail.com at Wed, 10 Oct 2018 08:12:11 +0000
Bug 1471566 - fix OSS fuzzing build, r=mt Differential Revision: https://phabricator.services.mozilla.com/D7996
dc4500650617: Bug 1495451 - Fix issues flagged by coverity. r=mt
EKR <ekr@rtfm.com> - Mon, 01 Oct 2018 16:20:33 -0700 - rev 14910
Push 3204 by ekr@mozilla.com at Tue, 02 Oct 2018 01:29:39 +0000
Bug 1495451 - Fix issues flagged by coverity. r=mt Tags: #secure-revision Bug #: 1495451 Differential Revision: https://phabricator.services.mozilla.com/D7358
94bcc2706b98: Bug 1479787 - clang-format, r=mt,keeler
Franziskus Kiefer <franziskuskiefer@gmail.com> - Fri, 03 Aug 2018 12:11:13 +0200 - rev 14908
Push 3202 by franziskuskiefer@gmail.com at Mon, 01 Oct 2018 08:30:12 +0000
Bug 1479787 - clang-format, r=mt,keeler Differential Revision: https://phabricator.services.mozilla.com/D2721
403437c461fd: Bug 1479787 - build mozpkix as part of NSS, r=mt,keeler
Franziskus Kiefer <franziskuskiefer@gmail.com> - Fri, 03 Aug 2018 10:35:44 +0200 - rev 14907
Push 3202 by franziskuskiefer@gmail.com at Mon, 01 Oct 2018 08:30:12 +0000
Bug 1479787 - build mozpkix as part of NSS, r=mt,keeler Differential Revision: https://phabricator.services.mozilla.com/D2719 Differential Revision: https://phabricator.services.mozilla.com/D2720 Differential Revision: https://phabricator.services.mozilla.com/D2861