)]}'
{
  "commit": "59e89e9132799b287fea2b5c95988621a1365130",
  "tree": "8fe3d3f94d283f0b570671a841a08878278984c2",
  "parents": [
    "c5fe497d6eb9775bb223e185b0431f413d17a2ee"
  ],
  "author": {
    "name": "Stefano Duo",
    "email": "stefanoduo@google.com",
    "time": "Wed Jul 22 16:02:19 2026 +0000"
  },
  "committer": {
    "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
    "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
    "time": "Wed Aug 05 08:45:49 2026 -0700"
  },
  "message": "Make BoringSSL handling of \"unusable\" EchConfigLists configurable\n\nCurrently, BoringSSL will silently ignore EchConfigsLists it considers\n\"unusable\". An EchConfigList is considered \"unusable\" if we are in one\nof the following scenarios:\n1. The max TLS version supported by the client is \u003c 1.3\n2. No EchConfig provided in the EchConfigList is supported by BoringSSL.\n   This happens when every EchConfig provided contains an\n   unsupported/unrecognized cyphers/parameters (e.g., an unknown HPKE\n   Key Encapsulation Mechanism).\n\nIn these scenarios, instead of falling back onto GREASE ECH (if\nenabled), return an error to the caller. The caller can then decide to\neither retry with an empty EchConfigList or fail the connection.\n\nBug: 542983348, b:450001346\nChange-Id: I08d77022cf40d5e2b66ea3963c96bf4e3f6ea4f4\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99327\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Stefano Duo \u003cstefanoduo@google.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "4f1d77a0f9fd47df2137e1a333538c4db08159d1",
      "old_mode": 33188,
      "old_path": "crypto/err/ssl.errordata",
      "new_id": "0ee34ae786f72bd8e2c69468b1c0ee41a11123af",
      "new_mode": 33188,
      "new_path": "crypto/err/ssl.errordata"
    },
    {
      "type": "modify",
      "old_id": "e20e7e7a23c53ac9e5f99331d6a090420f44c910",
      "old_mode": 33188,
      "old_path": "gen/crypto/err_data.cc",
      "new_id": "006aa941c82d2bf217a2bc4da6f4abb5ad913bf0",
      "new_mode": 33188,
      "new_path": "gen/crypto/err_data.cc"
    },
    {
      "type": "modify",
      "old_id": "a131c0dc83e52c77e674931b3e34c4e95209826f",
      "old_mode": 33188,
      "old_path": "include/openssl/prefix_symbols.h",
      "new_id": "f204acf24c4f897e47580f0e311b932526c2f9c7",
      "new_mode": 33188,
      "new_path": "include/openssl/prefix_symbols.h"
    },
    {
      "type": "modify",
      "old_id": "572ea3bf0c20700a0d29ad692567dec47e0de605",
      "old_mode": 33188,
      "old_path": "include/openssl/ssl.h",
      "new_id": "48edc71891398f9a2ba1784fa7f1e6de7f6090a4",
      "new_mode": 33188,
      "new_path": "include/openssl/ssl.h"
    },
    {
      "type": "modify",
      "old_id": "46ba196f1895ec3b7be8fcc799f7bbddff5ce2c6",
      "old_mode": 33188,
      "old_path": "ssl/encrypted_client_hello.cc",
      "new_id": "0cf1fc3ab901e933941f53acc8e9f3f5bce0c6cd",
      "new_mode": 33188,
      "new_path": "ssl/encrypted_client_hello.cc"
    },
    {
      "type": "modify",
      "old_id": "68d9e853df17527ca8475b4af3ee4762888fad61",
      "old_mode": 33188,
      "old_path": "ssl/internal.h",
      "new_id": "220cf999b3218914c3543da14a485ab638154c8a",
      "new_mode": 33188,
      "new_path": "ssl/internal.h"
    },
    {
      "type": "modify",
      "old_id": "e05f91bd913e78b848728aec0c76ad34f32ea6b4",
      "old_mode": 33188,
      "old_path": "ssl/ssl_lib.cc",
      "new_id": "eb55f7a28acde9763d9bdf30fb30a91d89a57fc2",
      "new_mode": 33188,
      "new_path": "ssl/ssl_lib.cc"
    },
    {
      "type": "modify",
      "old_id": "22ee8ecdb64228fe23ccf6be319d03fa072c8818",
      "old_mode": 33188,
      "old_path": "ssl/test/runner/ech_tests.go",
      "new_id": "48382e41ad58dff791ecba8941f3e95c09d27847",
      "new_mode": 33188,
      "new_path": "ssl/test/runner/ech_tests.go"
    },
    {
      "type": "modify",
      "old_id": "c15b2ab550e9a89f45b6bb79305c568f03ad7832",
      "old_mode": 33188,
      "old_path": "ssl/test/test_config.cc",
      "new_id": "9e094919830d1fb7d1842ec908d76e00e7349a1a",
      "new_mode": 33188,
      "new_path": "ssl/test/test_config.cc"
    },
    {
      "type": "modify",
      "old_id": "f781a599eac46c73126993aeccad8a636bcfa9bf",
      "old_mode": 33188,
      "old_path": "ssl/test/test_config.h",
      "new_id": "56d347c6d6b648e8fc5d27e494a9d7c4b679eeba",
      "new_mode": 33188,
      "new_path": "ssl/test/test_config.h"
    }
  ]
}
