)]}'
{
  "commit": "62956948e445c5bc67d3f299e0003c34a3030523",
  "tree": "bc73f04da409a6e76185ba93f78477f7c38f7b11",
  "parents": [
    "89973806bc2ef652189e157f2736a7d32229c404"
  ],
  "author": {
    "name": "Dimitri John Ledkov",
    "email": "dimitri.ledkov@surgut.co.uk",
    "time": "Sat May 10 18:16:12 2025 +0100"
  },
  "committer": {
    "name": "Boringssl LUCI CQ",
    "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
    "time": "Wed May 14 09:58:54 2025 -0700"
  },
  "message": "Increase default salt length from 8 to 16 bytes in PKCS#8 and PKCS#12\n\nCurrently, PKCS#8 and PKCS#12 encryption use a salt length of 8 bytes\n(64 bits) when no salt length is specified. Increase this default to\n16 bytes (128 bits), as recommended by NIST SP 800-132.\n\nUpdate-Note: PKCS8_encrypt and PKCS8_marshal_encrypted_private_key\nwill now, if no salt length is specified, default to a salt length of\n16 bytes. PKCS12_create will use a salt length of 16 bytes for both\nencryption and the MAC.\n\nFixed: 416889523\nChange-Id: I91a496e4856296f07b5445592fb6ecdc41ee718c\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/79267\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "06f17a6f5ff5ec2f0595fc8ad955ebcd1daf9b65",
      "old_mode": 33188,
      "old_path": "crypto/pkcs8/internal.h",
      "new_id": "cde6c3d772150eec908f4b8f654b530c47906af1",
      "new_mode": 33188,
      "new_path": "crypto/pkcs8/internal.h"
    }
  ]
}
