1. 07cd196 Always use a 32-byte shared secret for Kyber by David Benjamin · 1 year, 4 months ago
  2. 58906ea Merge <openssl/x509v3.h> into <openssl/x509.h> by David Benjamin · 1 year, 4 months ago
  3. 3309ca6 Add ALPS codepoint supports for split handshake by Victor Tan · 1 year, 6 months ago
  4. dd68e4b Add OPENSSL_zalloc by David Benjamin · 1 year, 6 months ago
  5. 558960d Add support for the new ALPS codepoint by Victor Tan · 1 year, 9 months ago
  6. 9404a0b runner: Check that the shim HRRs echo the session ID by David Benjamin · 1 year, 7 months ago
  7. e4f6067 Use a callable type for ScopedFILE in settings_writer.cc by David Benjamin · 1 year, 7 months ago
  8. 20a0647 Mark all of bssl::Span as constexpr by David Benjamin · 1 year, 8 months ago
  9. 7cb91d2 Reflect OPENSSL_NO_SOCK and OPENSSL_NO_POSIX_IO into headers by David Benjamin · 1 year, 8 months ago
  10. 0ffd365 Use a stub fopen implementation when OPENSSL_NO_FILESYSTEM is set by David Benjamin · 1 year, 8 months ago
  11. 5ba5db1 Support Android's "baremetal" target by David Benjamin · 1 year, 8 months ago
  12. 23d6e4c Replace BIO_snprintf with snprintf within the library by David Benjamin · 1 year, 8 months ago
  13. a4f8755 Fix error handling in bssl_shim socket object by David Benjamin · 1 year, 8 months ago
  14. 70be012 Use constant curve-specific groups whenever possible by David Benjamin · 2 years, 1 month ago
  15. a36ac0a Use std::make_unique when possible by David Benjamin · 1 year, 9 months ago
  16. 8f4daaf Resolve an old TODO in TestState::Deserialize by David Benjamin · 1 year, 9 months ago
  17. fa6ab4f Remove remnants of malloc.cc by David Benjamin · 1 year, 9 months ago
  18. 197b571 Use sources.cmake for test binaries by David Benjamin · 1 year, 9 months ago
  19. 286ea21 Replace byteBuilder and byteReader with cryptobyte by David Benjamin · 1 year, 9 months ago
  20. 4e88a35 Make the curve compat APIs into real functions by David Benjamin · 1 year, 9 months ago
  21. 50ee095 Use a single TCP server port in runner by David Benjamin · 1 year, 9 months ago
  22. f4d1d79 Simplify shimProcess accept and wait by David Benjamin · 1 year, 9 months ago
  23. 73dcd47 Turn SocketCloser in bssl_shim into a proper owning type by David Benjamin · 1 year, 9 months ago
  24. e33257f Pass IPv6 vs IPv4 down to the shim by David Benjamin · 1 year, 9 months ago
  25. e1b8685 Log failure to create SSL objects in handshakers by David Benjamin · 1 year, 9 months ago
  26. 556a973f Add SSL_CIPHER_get_handshake_digest by David Benjamin · 1 year, 10 months ago
  27. 6cf9820 Align NIDs vs group IDs in TLS group APIs by David Benjamin · 1 year, 10 months ago
  28. 335523a Align remaining TLS ECDH APIs on "group" terminology by David Benjamin · 1 year, 10 months ago
  29. 2da5ba9 Align on using the "group" over "curve" for ECDH in TLS by David Benjamin · 1 year, 10 months ago
  30. 4631ccc Remove SSL_CIPHER_get_value by David Benjamin · 1 year, 10 months ago
  31. 7e56051 Miscellaneous size_t truncation fixes by David Benjamin · 1 year, 10 months ago
  32. b0251b1 Disable TLS_RSA_WITH_3DES_EDE_CBC_SHA by default by David Benjamin · 1 year, 11 months ago
  33. 2eaf070 Add a thread test for ex_data by David Benjamin · 1 year, 11 months ago
  34. c215ce7 Use a helper function to implement get_all_foo_names functions. by Adam Langley · 1 year, 11 months ago
  35. a972b78 Add APIs to query a list of possible strings for TLS features by David Benjamin · 1 year, 11 months ago
  36. b1c6f45 Add back support for TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 by Adam Langley · 1 year, 11 months ago
  37. 4d30888 Add a more general mechanism for deprecating TLS ciphers by David Benjamin · 1 year, 11 months ago
  38. 1b724a6 Align Kyber names with draft-tls-westerbaan-xyber768d00 by David Benjamin · 1 year, 11 months ago
  39. 77b6f25 Replace interface{} with any by David Benjamin · 1 year, 11 months ago
  40. b811a6c Add Kyber to runner tests by Adam Langley · 1 year, 11 months ago
  41. 2f6409e Support WPA 3.1 "enterprise" mode. by Adam Langley · 2 years ago
  42. a02b743 runner: Remove an unnecessary use of AllCurves by David Benjamin · 1 year, 11 months ago
  43. d42c4e4 Specify the TLS cipher order more straightforwardly by David Benjamin · 1 year, 11 months ago
  44. edf7662 Allow passing extra flags to BoGo shim by Roland Shoemaker · 1 year, 11 months ago
  45. de2d610 Remove TLS_RSA_WITH_NULL_SHA by David Benjamin · 1 year, 11 months ago
  46. cee2dbb Default SSL_set_enforce_rsa_key_usage to enabled. by David Benjamin · 2 years ago
  47. 480344d Move TLS 1.3 KDF functions into the FIPS module. by Adam Langley · 2 years ago
  48. 4ae4fb7 Drop CECPQ2 support. by Adam Langley · 2 years ago
  49. 8cacbd9 Add functions to allow the mocking of AES hw support for testing. by Bob Beck · 2 years ago
  50. a438519 Fix miscellaneous size_t truncations by David Benjamin · 2 years ago
  51. bf1b792 Remove SSL_CIPHER_get_rfc_name by David Benjamin · 2 years ago
  52. fe7a067 Run `go fmt` in `ssl/test/runner`. by Adam Langley · 2 years ago
  53. 44a389a Tidy up some lengths in SSL_SESSION by David Benjamin · 2 years, 4 months ago
  54. 6e723e5 Convert a few more ints to bools in libssl. by David Benjamin · 2 years ago
  55. 58472cc Adding a C implementation of Kyber. by Sophie Schmieg · 2 years, 1 month ago
  56. af0739f Const-correct sk_FOO_cmp_func by David Benjamin · 2 years, 2 months ago
  57. 08b1f38 Use KEM terminology in TLS ECDHE and key_share abstractions by David Benjamin · 2 years, 1 month ago
  58. 9cbff81 Simplify ECKeyShare slightly. by David Benjamin · 2 years, 2 months ago
  59. a5dcf35 Move the ASN.1-based SSLKeyShare serialization to handoff.cc. by David Benjamin · 2 years, 2 months ago
  60. 7fa0910 Create the SSLKeyShare object in TLS 1.2 client ECDHE slightly later by David Benjamin · 2 years, 2 months ago
  61. 890c201 Make EVP_PKEY opaque. by David Benjamin · 2 years, 1 month ago
  62. 987dff1 Make boringssl_gtest_main a STATIC library by David Benjamin · 2 years, 1 month ago
  63. 8c75ed0 Remove global_target from build. by David Benjamin · 2 years, 2 months ago
  64. e5f7266 Don't include custom builds of libc++ in CMake installs by David Benjamin · 2 years, 2 months ago
  65. 0e68520 Specify -Iinclude with the crypto target. by David Benjamin · 2 years, 2 months ago
  66. dcabfe2 Make OPENSSL_malloc push ERR_R_MALLOC_FAILURE on failure. by Bob Beck · 2 years, 2 months ago
  67. 0586618 Trim unnecessary -lrt and ws2_32 deps in the build. by David Benjamin · 2 years, 2 months ago
  68. f7d37fb Fix various malloc failure paths. by David Benjamin · 2 years, 2 months ago
  69. 582904f Move malloc failure testing into OPENSSL_malloc by David Benjamin · 2 years, 2 months ago
  70. 00c70b8 Add locale independent implementations of isalpha, isalnum, isdigit, by Bob Beck · 2 years, 2 months ago
  71. f86a63c Introduce a locale-independent version of isdigit by Bob Beck · 2 years, 2 months ago
  72. 971b330 Use the same Deleter across all bssl::UniquePtr<T>. by David Benjamin · 2 years, 2 months ago
  73. 1e97ce3 Don't send two post-quantum initial key shares. by Adam Langley · 2 years, 2 months ago
  74. fc07738 Add stubs for hybrid Kyber768 with X25519 or P-256. by Adam Langley · 2 years, 3 months ago
  75. df8a55b Const-correct sk_FOO_deep_copy's copy callback. by David Benjamin · 2 years, 3 months ago
  76. 05b360d Remove hmac.h include from ssl.h. by Piotr Sikora · 2 years, 2 months ago
  77. 3251ca1 Simplify MSVC warning configuration by David Benjamin · 2 years, 2 months ago
  78. ec6425ca Drop the preference for 256-bit ciphers with CECPQ2. by Adam Langley · 2 years, 3 months ago
  79. a614d46 Add SSL_was_key_usage_invalid. by David Benjamin · 2 years, 4 months ago
  80. c7b255e Add NO_CHECK_TIME to SSLTest.ECHBuiltinVerifier too by David Benjamin · 2 years, 4 months ago
  81. 28f96c2 Fix timebomb by disabling time check in this test by Bob Beck · 2 years, 4 months ago
  82. 02f7705 Add int casts to BIO_ctrl calls where appropriate. by David Benjamin · 2 years, 4 months ago
  83. 3a1b730 Don't allow the caller to configure invalid signature algorithms. by David Benjamin · 2 years, 4 months ago
  84. e8f57ca Never accidentally use SSL_SIGN_RSA_PKCS1_MD5_SHA1 at TLS 1.2. by David Benjamin · 2 years, 4 months ago
  85. 5511fa8 Migrate io/ioutil uses to new APIs. by David Benjamin · 2 years, 4 months ago
  86. a1dffbf Define CBS/CBB tags as uint32_t with a typedef. by David Benjamin · 2 years, 5 months ago
  87. 7ac94aa More -Wshorten-64-to-32 fixes. by David Benjamin · 2 years, 5 months ago
  88. 1045897 Allow using the TLS exporter in more cases. by Nick Harper · 2 years, 5 months ago
  89. 4b35543 Revert "Default SSL_set_enforce_rsa_key_usage to enabled." by David Benjamin · 2 years, 5 months ago
  90. 9d64d8d Miscellaneous -Wshorten-64-to-32 fixes. by David Benjamin · 2 years, 7 months ago
  91. 19d6ec9 Check for TLS 1.3 in SSL_generate_key_block. by David Benjamin · 2 years, 6 months ago
  92. 64393b5 Default SSL_set_enforce_rsa_key_usage to enabled. by David Benjamin · 2 years, 6 months ago
  93. 80eb814 Remove the experimental in-place record APIs. by David Benjamin · 2 years, 6 months ago
  94. 32013e8 Maintain the sequence number as a uint64_t. by David Benjamin · 2 years, 6 months ago
  95. 46af243 Use Array<uint8_t> in DTLS1_OUTGOING_MESSAGE. by David Benjamin · 2 years, 7 months ago
  96. 361e3e0 Move the DTLS cookie to SSL_HANDSHAKE. by David Benjamin · 2 years, 6 months ago
  97. 7b2795a Replace even more ad-hoc bytes/integer conversions. by David Benjamin · 2 years, 7 months ago
  98. 9f426b6 Specify all library install destinations by Don · 2 years, 7 months ago
  99. e8e6cac Add the "groups" variants of SSL_CTX_set1_curves_list. by David Benjamin · 2 years, 7 months ago
  100. 10fef97 Prefer established session properties mid renegotiation. by David Benjamin · 2 years, 7 months ago