)]}'
{
  "commit": "0224a3294af5bcabcf3802d5ecbf954934f7922e",
  "tree": "d358750a94aff58c3b1332083d807476e519ddfd",
  "parents": [
    "e7b78770eca9724a7af2f344588693dcf8b327df"
  ],
  "author": {
    "name": "Adam Langley",
    "email": "agl@google.com",
    "time": "Tue Jul 31 16:19:17 2018 -0700"
  },
  "committer": {
    "name": "CQ bot account: commit-bot@chromium.org",
    "email": "commit-bot@chromium.org",
    "time": "Wed Aug 01 18:55:50 2018 +0000"
  },
  "message": "Add X509_V_FLAG_REQUIRE_CA_BASIC_CONSTRAINTS.\n\nThis change adds a new flag, X509_V_FLAG_REQUIRE_CA_BASIC_CONSTRAINTS,\nwhich causes basicConstraints with isCA to be required for intermediate\nCA certificates. Without this, intermediates are also acceptable if\nthey\u0027re missing basicConstraints, but include either a certSign\nkeyUsage, or a CA Netscape certificate type.\n\nThis is a short-term change for patching. I\u0027ll undo a lot of it and make\nthis the default in the next change.\n\nChange-Id: I7f42ffd76c57de3037f054108951e230c1b4e415\nReviewed-on: https://boringssl-review.googlesource.com/30184\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nCQ-Verified: CQ bot account: commit-bot@chromium.org \u003ccommit-bot@chromium.org\u003e\nReviewed-by: Matt Braithwaite \u003cmab@google.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "07119924c4665b84d8f55ecfd4243d3d9b6e114c",
      "old_mode": 33188,
      "old_path": "crypto/x509/x509_test.cc",
      "new_id": "df236aeb637f95b6013c813a0613ae5b9b6709c9",
      "new_mode": 33188,
      "new_path": "crypto/x509/x509_test.cc"
    },
    {
      "type": "modify",
      "old_id": "d788c5edf0a0ac816a9059239187a7e95569bce3",
      "old_mode": 33188,
      "old_path": "crypto/x509/x509_vfy.c",
      "new_id": "fdce251026b6d2c870eb95c0451440ff9f2dd094",
      "new_mode": 33188,
      "new_path": "crypto/x509/x509_vfy.c"
    },
    {
      "type": "modify",
      "old_id": "97a07d547f5e27d5191c2e6f50d7af9dbbd75620",
      "old_mode": 33188,
      "old_path": "include/openssl/x509_vfy.h",
      "new_id": "6a7c554c124ef20370fa8cdd908b94ed9e4e9184",
      "new_mode": 33188,
      "new_path": "include/openssl/x509_vfy.h"
    }
  ]
}
