1. 54821d8 short-circuit verification on invalid SPKI by Matt Mueller · 6 days ago master
  2. 8f95b82 Add certificates to a couple of tests by Roland Shoemaker · 33 hours ago
  3. d8d1c6a Change unsupported KEM identifier by Roland Shoemaker · 2 days ago
  4. b62a6e6 Add a CLIENT_AUTH_STRICT_LEAF and SERVER_AUTH_STRICT_LEAF which by Bob Beck · 13 days ago
  5. ad36a4f Make SSL_CTX_set_keylog_callback constant time by David Benjamin · 11 days ago
  6. 0aa300b clarify a few tests by Bob Beck · 3 weeks ago
  7. f374e1a Add some tests for SSL_CTX_set_keylog_callback by David Benjamin · 11 days ago
  8. 5f92422 Switch some pointer arithmetic to spans by David Benjamin · 11 days ago
  9. 1c6e104 Disable fork detection for Zephyr and CrOS EC by Patryk Duda · 13 days ago
  10. bdb7b19 Enable thread support for Zephyr RTOS by Patryk Duda · 3 weeks ago
  11. 6b3e5d5 Fix Zephyr define and description by Patryk Duda · 3 weeks ago
  12. 4898d3f Remove unnecessary NULL checks by Theo Buehler · 5 weeks ago
  13. 89f0977 Avoid strdup in crypto/err/err.c by David Benjamin · 5 months ago
  14. f94f3ed Increase DTLS window size from 64 to 256 by Nick Harper · 4 weeks ago
  15. e97787e delocate: handle more SVE2 forms. by Adam Langley · 3 months ago
  16. 68c6fd8 Disable `-Wcast-function-type-strict` for `BORINGSSL_DEFINE_STACK_OF_IMPL.` by Brian Ledger · 3 weeks ago
  17. 077d4d2 Set service indicator for TLS 1.3 KDF. by Adam Langley · 4 weeks ago
  18. ec6cb3e Rewrite RAND_enable_fork_unsafe_buffering documentation by David Benjamin · 4 weeks ago
  19. 27e09a3 Document that our Unicode APIs reject noncharacters by David Benjamin · 4 weeks ago
  20. b296632 Add missing public header for libpki by David Benjamin · 4 weeks ago
  21. b171749 Switch EVP_CIPHERs to C99 initializers by David Benjamin · 4 weeks ago
  22. a2ef200 Add a PrivacyInfo plist file by Adam Langley · 4 weeks ago
  23. dfcaadd Make Go an optional build dependency for the CMake build by David Benjamin · 5 weeks ago
  24. 779d01d Install the Windows toolchain under util/bot by David Benjamin · 5 weeks ago
  25. 43cec43 Reflect latest FIPS updates, including 186-5. by Adam Langley · 7 weeks ago
  26. d39bd75 Update CI build tools by David Benjamin · 5 weeks ago
  27. 54c956b [rust] Tell Cargo to link cpp runtime library by Kenichi Ishibashi · 6 weeks ago
  28. ee4c2a3 Update run_android_tests to exit on invalid ABI by Aaron Knobloch · 4 weeks ago
  29. 70b33d3 Move fips_fragments into bcm.internal_hdrs in build.json by David Benjamin · 5 weeks ago
  30. febb440 Move internal headers to build.json by David Benjamin · 5 weeks ago
  31. 2d7f6c6 Flatten crypto/CMakeLists.txt into the top-level by David Benjamin · 5 weeks ago
  32. cb2f3e8 Move crypto_sources to build.json by David Benjamin · 5 weeks ago
  33. 49b92bc Specify public headers in build.json by David Benjamin · 5 weeks ago
  34. 3ae2397 Rework the test data story by David Benjamin · 5 weeks ago
  35. 231510c Move the rest of sources.cmake into util/pregenerate by David Benjamin · 5 weeks ago
  36. e539b93 Use source lists to find pki_test data in run_android_tests.go by David Benjamin · 5 weeks ago
  37. 6cbf2c0 Move test data lists to util/pregenerate by David Benjamin · 5 weeks ago
  38. 115deb3 Support glob patterns in build.json by David Benjamin · 5 weeks ago
  39. e9b0c71 Correctly sort err_data.c inputs by David Benjamin · 5 weeks ago
  40. 368d0d8 Regenerate err_data.c by David Benjamin · 5 weeks ago
  41. fe0c91e Check in pre-generated perlasm and error data files by David Benjamin · 5 weeks ago
  42. 36e85b6 Flatten crypto/fipsmodule/CMakeLists.txt up a layer by David Benjamin · 5 weeks ago
  43. 821fe33 Document that null STACK_OF(T) can be used with several functions by David Benjamin · 5 weeks ago
  44. 4ac76f0 Remove unused flags argument from trust handlers by Theo Buehler · 5 weeks ago
  45. ae719ab Build fips_shared_support.c as part of libcrypto by David Benjamin · 5 weeks ago
  46. 06fb6e1 Make it plainly obvious this is experimental code. by Bob Beck · 7 weeks ago
  47. e57ab14 Add some barebones support for DH in EVP by David Benjamin · 6 weeks ago
  48. 021ec33 Add verify_errors as public error API by Bob Beck · 10 weeks ago
  49. 8248baa Fix EVP_PKEY_CTX_dup with EC generation by David Benjamin · 6 weeks ago
  50. 9b8b483 Start making asserts constant-time too by David Benjamin · 3 months ago
  51. fce5cf0 Clear some more false positives from constant-time validation by David Benjamin · 3 months ago
  52. c99364a Fix X509_ALGOR_set_md() by Theo Buehler · 6 weeks ago
  53. a200650 Trim unused files from PKI_TEST_DATA by David Benjamin · 5 weeks ago
  54. 31442d4 Remove unnecessary LINKER_LANGUAGE setting in CMake build by David Benjamin · 5 weeks ago
  55. 0cb032a Move ssl and decrepit sources to sources.cmake by David Benjamin · 6 weeks ago
  56. c5e9b4b Add threading documentation to DH and DSA by David Benjamin · 5 weeks ago
  57. 8ede951 Make EVP_PKEY_type into the identity function by David Benjamin · 6 weeks ago
  58. 044fbc86 Move EVP_PKEY setters to their corresponding type-specific files by David Benjamin · 6 weeks ago
  59. 6609736 Avoid EVP_PKEY_set_type in EVP_PKEY_new_raw_*_key by David Benjamin · 6 weeks ago
  60. fea4c97 Remove some unnecessary dependencies on EVP_PKEY_set_type by David Benjamin · 6 weeks ago
  61. b85a0d1 Gate -Wframe-larger-than on Clang 13 by David Benjamin · 6 weeks ago
  62. c38abd0 Make ninja run_tests output less confusing by David Benjamin · 6 weeks ago
  63. ec45e10 X509_ALGOR_set_md is a mess, document it by David Benjamin · 6 weeks ago
  64. 440c513 Filter out DW.ref.__gxx_personality_v0 in read_symbols.go by David Benjamin · 6 weeks ago
  65. f57a11a Remove unused app_data from EVP_CIPHER by Theo Buehler · 6 weeks ago
  66. fae0964 Re-remove unnecesary stat calls from by_dir.c by Bob Beck · 6 weeks ago
  67. 356d378 Add a regression test for error handling and hash_dir by David Benjamin · 6 weeks ago
  68. 3ac0939 Fix spelling of Identifier by Bob Beck · 6 weeks ago
  69. 3bdf9af Revert "Remove unnecessary stat calls from by_dir.c" by David Benjamin · 6 weeks ago
  70. 4fa4804 Don't dereference hs->credential on TLS 1.2 PSK ciphers by David Benjamin · 6 weeks ago
  71. dbad745 Add ERR_lib_symbol_name and ERR_reason_symbol_name by David Benjamin · 9 weeks ago
  72. 5ee4e95 Add BIO_FP_TEXT by David Benjamin · 7 weeks ago
  73. a792f88 Fix a number of cases overwriting certificates, keys, etc. with SSL_CREDENTIAL by David Benjamin · 6 weeks ago
  74. ddb002f Set -Wframe-larger-than=25344 for a typical cmake clang compile. by Bob Beck · 7 weeks ago
  75. 29bb1a7 Make crypto_test build with -Wframe-larger-than=25344 by David Benjamin · 7 weeks ago
  76. a56407d Revert "Add a Dilithium implementation." by Bob Beck · 7 weeks ago
  77. cf4f615 Fix sha1 dynamic dispatch issues. by Ilya Tokar · 7 weeks ago
  78. 5a3faaa Remove an unused runner/shim flag in SSL tests by David Benjamin · 7 weeks ago
  79. 05c285d Only negotiate ECDHE curves and sigalgs once by David Benjamin · 7 weeks ago
  80. 91a3f26 Add an SSL_CREDENTIAL API for ECDSA/RSA and delegated credentials by David Benjamin · 2 months ago
  81. 1a118bb Rename CRYPTO_get_ex_new_index to CRYPTO_get_ex_new_index_ex by David Benjamin · 7 weeks ago
  82. 860db9e Remove unused group_id parameter in TLS 1.3 cipher suite selection by David Benjamin · 8 weeks ago
  83. 9280f15 Check ECDSA curves in TLS 1.2 servers by David Benjamin · 8 weeks ago
  84. e202e51 Inline CBS_init, CBS_data, and CBS_len by David Benjamin · 8 weeks ago
  85. 60c2867 Check client certificate types in TLS <= 1.2 by David Benjamin · 8 weeks ago
  86. 69eec38 runner: Add a test for hint mismatch due to public key by David Benjamin · 8 weeks ago
  87. 9b34a32 Add a Dilithium implementation. by Guillaume Endignoux · 6 months ago
  88. 4e8a847 Tidy up Rust HPKE binding. by Adam Langley · 9 weeks ago
  89. 2fb5cdb Move spx from internal to include/openssl/experimental by Bob Beck · 9 weeks ago
  90. 6651948 runner: Configure all relevant fields from the Credential type by David Benjamin · 8 weeks ago
  91. f191838 runner: Rename CertificateChain to Credential by David Benjamin · 8 weeks ago
  92. fc1f521 Align CRYPTO_get_ex_new_index with the public API's calling convention by David Benjamin · 8 weeks ago
  93. f4ac688 Make bssl_shim's setup logic infallible by David Benjamin · 8 weeks ago
  94. ad91495 Slightly simplify ssl_x509.cc by David Benjamin · 8 weeks ago
  95. c9a9d8d Forbid RSA delegated credentials by David Benjamin · 9 weeks ago
  96. efad2bf Fix delegated credential signature algorithm handling by David Benjamin · 9 weeks ago
  97. 9f376b0 Make DelegatedCredentials-KeyMismatch test less confusing by David Benjamin · 9 weeks ago
  98. 8037383 Use slices.Contains in ssl/test/runner by David Benjamin · 9 weeks ago
  99. 88a537f Fold ssl_add_cert_chain into its caller by David Benjamin · 9 weeks ago
  100. e3af771 runner: Remove the ability to configure multiple certificates by David Benjamin · 8 weeks ago