<feed xmlns='http://www.w3.org/2005/Atom'>
<title>Tianocore/edk2.git/CryptoPkg/Library/TlsLib/TlsInit.c, branch master</title>
<subtitle>EDK II (mirror)</subtitle>
<id>https://git.radix-linux.su/Tianocore/edk2.git/atom?h=master</id>
<link rel='self' href='https://git.radix-linux.su/Tianocore/edk2.git/atom?h=master'/>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/'/>
<updated>2026-07-30T05:30:47+00:00</updated>
<entry>
<title>CryptoPkg: Match OpenSSL's default security level</title>
<updated>2026-07-30T05:30:47+00:00</updated>
<author>
<name>Jean-Tiare Le Bigot</name>
<email>jt@yadutaf.fr</email>
</author>
<published>2026-06-16T09:10:45+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=b3f19fb5ce9e9214a74c71c1993023977b26c919'/>
<id>urn:sha1:b3f19fb5ce9e9214a74c71c1993023977b26c919</id>
<content type='text'>
`TlsNew()` explicitly sets the default security level to 3. The current
default in OpenSSL is security level 2 which is inherited by Linux
distributions like Ubuntu 26.04. This is also the security level that
was announced in https://edk2.groups.io/g/devel/topic/115039926.

Signed-off-by: Jean-Tiare Le Bigot &lt;jt@yadutaf.fr&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: Add support to set TLS security level.</title>
<updated>2025-09-23T03:08:14+00:00</updated>
<author>
<name>INDIA\kanagavels</name>
<email>kanagvaels@ami.com</email>
</author>
<published>2025-09-19T14:41:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=fb43f0c085045771bc2dee2f867d87298de2facb'/>
<id>urn:sha1:fb43f0c085045771bc2dee2f867d87298de2facb</id>
<content type='text'>
Add Edkiicrypto protocol API to set TLS set security level.

Signed-off-by: Kanagavel S &lt;kanagavels@ami.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: Enable the time check flag.</title>
<updated>2025-07-05T14:23:01+00:00</updated>
<author>
<name>INDIA\kanagavels</name>
<email>kanagavels@ami.com</email>
</author>
<published>2025-07-02T15:47:27+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=f920354f92f273c9add0617c80bd75e9902abe48'/>
<id>urn:sha1:f920354f92f273c9add0617c80bd75e9902abe48</id>
<content type='text'>
REF:https://github.com/tianocore/edk2/issues/11245

Enable the time check flag to verify the current time during the TLS
certificate validation.

Signed-off-by: Kanagavel S &lt;kanagavels@ami.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: Apply uncrustify changes</title>
<updated>2021-12-07T17:24:28+00:00</updated>
<author>
<name>Michael Kubacki</name>
<email>michael.kubacki@microsoft.com</email>
</author>
<published>2021-12-05T22:53:54+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=7c342378317039e632d9a1a5d4cf7c21aec8cb7a'/>
<id>urn:sha1:7c342378317039e632d9a1a5d4cf7c21aec8cb7a</id>
<content type='text'>
REF: https://bugzilla.tianocore.org/show_bug.cgi?id=3737

Apply uncrustify changes to .c/.h files in the CryptoPkg package

Cc: Andrew Fish &lt;afish@apple.com&gt;
Cc: Leif Lindholm &lt;leif@nuviainc.com&gt;
Cc: Michael D Kinney &lt;michael.d.kinney@intel.com&gt;
Signed-off-by: Michael Kubacki &lt;michael.kubacki@microsoft.com&gt;
Reviewed-by: Jian J Wang &lt;jian.j.wang@intel.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: Replace BSD License with BSD+Patent License</title>
<updated>2019-04-09T16:10:22+00:00</updated>
<author>
<name>Michael D Kinney</name>
<email>michael.d.kinney@intel.com</email>
</author>
<published>2019-04-03T23:03:30+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=2009f6b4c5cbd7dda95a2594288405224173d239'/>
<id>urn:sha1:2009f6b4c5cbd7dda95a2594288405224173d239</id>
<content type='text'>
https://bugzilla.tianocore.org/show_bug.cgi?id=1373

Replace BSD 2-Clause License with BSD+Patent License.  This change is
based on the following emails:

  https://lists.01.org/pipermail/edk2-devel/2019-February/036260.html
  https://lists.01.org/pipermail/edk2-devel/2018-October/030385.html

RFCs with detailed process for the license change:

  V3: https://lists.01.org/pipermail/edk2-devel/2019-March/038116.html
  V2: https://lists.01.org/pipermail/edk2-devel/2019-March/037669.html
  V1: https://lists.01.org/pipermail/edk2-devel/2019-March/037500.html

Contributed-under: TianoCore Contribution Agreement 1.1
Signed-off-by: Michael D Kinney &lt;michael.d.kinney@intel.com&gt;
Reviewed-by: Jian J Wang &lt;jian.j.wang@intel.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg/TlsLib: Change the return type of TlsInitialize().</title>
<updated>2017-11-24T00:46:20+00:00</updated>
<author>
<name>Jiaxin Wu</name>
<email>jiaxin.wu@intel.com</email>
</author>
<published>2017-11-17T03:50:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=0878771f0c6d7fcbf3617a530b4d6a49316c7ab9'/>
<id>urn:sha1:0878771f0c6d7fcbf3617a530b4d6a49316c7ab9</id>
<content type='text'>
V2:
* Correct the commit log.

Currently, the return code of OPENSSL_init_ssl(0 or 1) and RandomSeed
(TRUE or FALSE) are not checked in TlsInitialize(). Also "VOID" is used
as the return type of TlsInitialize(), which can't be used to capture
the returned value for error handling.

From Long Qin (CryptoPkg owner):
The early version of OPENSSL_init_ssl() use the "VOID" as the return
value, which was updated to "int" later because the function changes
can fail.

So, this patch is to change the return type of TlsInitialize() to
follow up the OPENSSL_init_ssl() update.

Cc: Ye Ting &lt;ting.ye@intel.com&gt;
Cc: Long Qin &lt;qin.long@intel.com&gt;
Cc: Fu Siyuan &lt;siyuan.fu@intel.com&gt;
Contributed-under: TianoCore Contribution Agreement 1.0
Signed-off-by: Wu Jiaxin &lt;jiaxin.wu@intel.com&gt;
Reviewed-by: Long Qin &lt;qin.long@intel.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg/TlsLib: Remove the redundant free of BIO objects</title>
<updated>2017-08-02T07:31:46+00:00</updated>
<author>
<name>Jiaxin Wu</name>
<email>jiaxin.wu@intel.com</email>
</author>
<published>2017-07-31T05:29:40+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=6aac2db4a11432b11ba92a0d1652d6ec3d81f353'/>
<id>urn:sha1:6aac2db4a11432b11ba92a0d1652d6ec3d81f353</id>
<content type='text'>
TLS BIO objects (InBio/OutBio) will be freed by SSL_free() function.
So, the following free operation (BIO_free) in TlsFree is redundant.
It can be removed directly.

Cc: Ye Ting &lt;ting.ye@intel.com&gt;
Cc: Long Qin &lt;qin.long@intel.com&gt;
Contributed-under: TianoCore Contribution Agreement 1.0
Signed-off-by: Wu Jiaxin &lt;jiaxin.wu@intel.com&gt;
Reviewed-by: Long Qin &lt;qin.long@intel.com&gt;
Reviewed-by: Fu Siyuan &lt;siyuan.fu@intel.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: Convert files to CRLF line ending</title>
<updated>2017-04-06T07:42:34+00:00</updated>
<author>
<name>Hao Wu</name>
<email>hao.a.wu@intel.com</email>
</author>
<published>2017-04-06T01:53:07+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=264702a04b88e612f44615a8b968ca06c9d5435e'/>
<id>urn:sha1:264702a04b88e612f44615a8b968ca06c9d5435e</id>
<content type='text'>
Contributed-under: TianoCore Contribution Agreement 1.0
Signed-off-by: Hao Wu &lt;hao.a.wu@intel.com&gt;
Reviewed-by: Long Qin &lt;qin.long@intel.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg/TlsLib: Update TLS Wrapper to align with OpenSSL changes.</title>
<updated>2017-03-29T08:19:55+00:00</updated>
<author>
<name>Qin Long</name>
<email>qin.long@intel.com</email>
</author>
<published>2017-03-23T12:53:45+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=113581e6f32da3b08274ddb626b2c936a091f749'/>
<id>urn:sha1:113581e6f32da3b08274ddb626b2c936a091f749</id>
<content type='text'>
This patch update the wrapper implementation in TlsLib to align
with the latest OpenSSL-1.1.0xx API changes.

Cc: Ting Ye &lt;ting.ye@intel.com&gt;
Cc: Palmer Thomas &lt;thomas.palmer@hpe.com&gt;
Cc: Jiaxin Wu &lt;jiaxin.wu@intel.com&gt;
Cc: Laszlo Ersek &lt;lersek@redhat.com&gt;
Cc: Ard Biesheuvel &lt;ard.biesheuvel@linaro.org&gt;
Cc: Gary Lin &lt;glin@suse.com&gt;
Cc: Ronald Cron &lt;ronald.cron@arm.com&gt;
Contributed-under: TianoCore Contribution Agreement 1.0
Signed-off-by: Qin Long &lt;qin.long@intel.com&gt;
Reviewed-by: Wu Jiaxin &lt;jiaxin.wu@intel.com&gt;
Reviewed-by: Ting Ye &lt;ting.ye@intel.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: Add new TlsLib library</title>
<updated>2016-12-22T12:33:22+00:00</updated>
<author>
<name>Jiaxin Wu</name>
<email>jiaxin.wu@intel.com</email>
</author>
<published>2016-12-14T02:34:57+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=9396cdfeaa7a053093c9d0a1f13ef6d672dfaa9f'/>
<id>urn:sha1:9396cdfeaa7a053093c9d0a1f13ef6d672dfaa9f</id>
<content type='text'>
v2:
* Code refine and Typo fix:
TlsHandeAlert -&gt; TlsHandleAlert

This patch is used to add new TlsLib library, which is wrapped
over OpenSSL. The implementation provides TLS library functions
for EFI TLS protocol and EFI TLS Configuration Protocol.

Cc: Ye Ting &lt;ting.ye@intel.com&gt;
Cc: Long Qin &lt;qin.long@intel.com&gt;
Cc: Fu Siyuan &lt;siyuan.fu@intel.com&gt;
Cc: Zhang Lubo &lt;lubo.zhang@intel.com&gt;
Cc: Thomas Palmer &lt;thomas.palmer@hpe.com&gt;
Contributed-under: TianoCore Contribution Agreement 1.0
Signed-off-by: Wu Jiaxin &lt;jiaxin.wu@intel.com&gt;
Reviewed-by: Qin Long &lt;qin.long@intel.com&gt;
Reviewed-by: Ye Ting &lt;ting.ye@intel.com&gt;
</content>
</entry>
</feed>
