1. 955ef79 Rewrite SSL_add_file_cert_subjects_to_stack by David Benjamin · 2 years, 10 months ago
  2. 451ea3c Add SSL_[CTX_]_set_compliance_policy. by Adam Langley · 2 years, 11 months ago
  3. 3f180b8 Implement SSL_CTX_set_num_tickets. by David Benjamin · 2 years, 11 months ago
  4. 123eaae Record ClientHelloInner values in msg_callback. by David Benjamin · 3 years, 2 months ago
  5. 7198d11 Explicitly reject self-referential ech_outer_extensions. by David Benjamin · 3 years, 2 months ago
  6. 7e2a957 Document |SSL_set1_host| return values. by Adam Langley · 3 years, 4 months ago
  7. 7e7e6b6 Add |SSL_set1_host| and |SSL_set_hostflags|. by Adam Langley · 3 years, 4 months ago
  8. b3ed071 Add SSL_has_pending. by David Benjamin · 3 years, 5 months ago
  9. c2827d3 Add a function to express the desired record version protocol. by Adam Langley · 3 years, 6 months ago
  10. cfafcd4 Deduplicate d2i and i2d documentation. by David Benjamin · 3 years, 6 months ago
  11. 45c8be9 Forward-declare SSL_CLIENT_HELLO. by David Benjamin · 3 years, 6 months ago
  12. 62c4f15 Clarify that TLS sessions are not application sessions. by David Benjamin · 3 years, 7 months ago
  13. 18b6836 Update to draft-ietf-tls-esni-13. by David Benjamin · 3 years, 10 months ago
  14. 37a3c70 Reword SSL_get0_ech_name_override documentation. by David Benjamin · 3 years, 7 months ago
  15. 07b365f Remove SSL_set_verify_result. by David Benjamin · 3 years, 7 months ago
  16. 6191cc9 Document that SSL_PRIVATE_KEY_METHOD should configure signing prefs. by David Benjamin · 3 years, 9 months ago
  17. ba423c9 Implement ClientHelloOuter handshakes. by David Benjamin · 3 years, 10 months ago
  18. e9c5d72 Add an option to permute ClientHello extension order. by David Benjamin · 3 years, 10 months ago
  19. 83a4993 Add most of an ECH client implementation. by David Benjamin · 3 years, 10 months ago
  20. 24545c5 Add a basic API to make ECHConfigs. by David Benjamin · 3 years, 10 months ago
  21. c890ae5 Make ECH server APIs take EVP_HPKE_KEY. by David Benjamin · 3 years, 10 months ago
  22. c3b373b Rename SSL_ECH_SERVER_CONFIG_LIST to SSL_ECH_KEYS. by David Benjamin · 3 years, 10 months ago
  23. 3a036c7 Add SSL_ech_accepted API and ech_is_required alerts. by David Benjamin · 3 years, 10 months ago
  24. b587911 Remove the Channel ID callback. by David Benjamin · 3 years, 11 months ago
  25. 8acec00 Manage Channel ID handshake state better. by David Benjamin · 3 years, 11 months ago
  26. a1d3bfb Cite an RFC over 9000 (draft-ietf-quic-tls is now RFC 9001). by David Benjamin · 3 years, 10 months ago
  27. 3675eb3 GREASE is now RFC 8701. by David Benjamin · 3 years, 11 months ago
  28. b778b9c Const-correct SSL_get_srtp_profiles. by David Benjamin · 3 years, 11 months ago
  29. 49ee62f Update the ECH GREASE size selection. by David Benjamin · 3 years, 11 months ago
  30. d89ec68 Remove draft tokbind implementation. by David Benjamin · 3 years, 11 months ago
  31. 71a3b82 Check for resumption identifiers in SSL_SESSION_is_resumable. by David Benjamin · 3 years, 11 months ago
  32. 9b2cdb7 Add SSL_can_release_private_key. by David Benjamin · 4 years ago
  33. b571e77 Add experimental handshake hints API. by David Benjamin · 4 years ago
  34. 12a3e7e Check for invalid ALPN inputs in SSL_(CTX_)set_alpn_protos. by David Benjamin · 4 years ago
  35. 00e434d Add ECH server (draft-ietf-tls-esni-09). by Daniel McArdle · 4 years, 1 month ago
  36. e5fe31c Revert "Implement rsa_pkcs1_sha256_legacy." by David Benjamin · 4 years ago
  37. a3437c0 Implement rsa_pkcs1_sha256_legacy. by David Benjamin · 4 years, 1 month ago
  38. a1d1a67 Remove some remnants of TLS 1.3 downgrade carveouts. by David Benjamin · 4 years, 1 month ago
  39. c02c19e Honor SSL_TLSEXT_ERR_ALERT_FATAL in the ALPN callback. by David Benjamin · 4 years, 2 months ago
  40. 595cdc2 doc: fix SSL_set0_rbio by Yuchen Dai · 4 years, 2 months ago
  41. 3d8b8c3 Add support for the new QUIC TLS extension codepoint by David Schinazi · 4 years, 3 months ago
  42. 92c48be Update ECH GREASE to draft-ietf-tls-esni-09 by Dan McArdle · 4 years, 3 months ago
  43. ca058c0 Revert "Add support for the new QUIC TLS extension codepoint" by Adam Langley · 4 years, 3 months ago
  44. 7ba96a6 Add support for the new QUIC TLS extension codepoint by David Schinazi · 4 years, 4 months ago
  45. 1920c6f Implement GREASE for ECH (draft-ietf-tls-esni-08). by Dan McArdle · 5 years ago
  46. 41a1430 draft-ietf-tls-certificate-compression is now RFC 8879. by David Benjamin · 4 years, 4 months ago
  47. 5351c8b Rename the master_key field in SSL_SESSION to secret. by David Benjamin · 4 years, 4 months ago
  48. 0a6bfa3 Always check the TLS 1.3 downgrade signal. by David Benjamin · 4 years, 4 months ago
  49. fa9796e Add SSL_early_data_reason_string. by David Benjamin · 4 years, 5 months ago
  50. 51607f1 Implement draft-vvv-tls-alps-01. by Steven Valdez · 4 years, 8 months ago
  51. 3743aaf Add SSL_CIPHER_get_protocol_id. by David Benjamin · 4 years, 6 months ago
  52. dcd6e44 Support delegated credentials verison 06 by Watson Ladd · 4 years, 8 months ago
  53. 74161f4 Enforce presence of ALPN when QUIC is in use. by Nick Harper · 4 years, 8 months ago
  54. 7d3a24d Fix the naming of alert error codes. by David Benjamin · 4 years, 8 months ago
  55. cac9392 Disallow TLS 1.3 compatibility mode in QUIC. by Nick Harper · 5 years ago
  56. 5fa22ed Avoid relying on SSL_get_session's behavior during the handshake. by David Benjamin · 4 years, 9 months ago
  57. 53a17f5 Add a |SSL_process_tls13_new_session_ticket|. by Adam Langley · 4 years, 10 months ago
  58. 8519432 Modify how QUIC 0-RTT go/no-go decision is made. by Nick Harper · 4 years, 10 months ago
  59. 8f12996 Fix docs link for SSL_CTX_load_verify_locations by Anna Sarai Rosenberg · 4 years, 11 months ago
  60. 7c52299 Restrict when 0-RTT will be accepted in QUIC. by Nick Harper · 5 years ago
  61. f9e0cda Add SSL_SESSION_copy_without_early_data. by David Benjamin · 5 years ago
  62. 72cff81 Require QUIC method with Transport Parameters and vice versa by Nick Harper · 5 years ago
  63. 964256d Add |SSL_CTX_get0_chain|. by Adam Langley · 5 years ago
  64. 1e85905 Revise QUIC encryption secret APIs. by David Benjamin · 5 years ago
  65. 754d4c9 Fix client handling of 0-RTT rejects with cipher mismatch. by David Benjamin · 5 years ago
  66. f9cc26f Require handshake flights end at record boundaries. by David Benjamin · 5 years ago
  67. 1766935 Remove SSL_CTX_set_ed25519_enabled. by David Benjamin · 5 years ago
  68. f0a815c Add SSL_set_verify_algorithm_prefs. by David Benjamin · 5 years ago
  69. 10165d8 Add SSL_AD_NO_APPLICATION_PROTOCOL by David Schinazi · 5 years ago
  70. f249840 Remove SSL_CTX_set_rsa_pss_rsae_certs_enabled. by David Benjamin · 5 years ago
  71. e0d95ad Remove post-quantum experiment signal extension. by David Benjamin · 5 years ago
  72. b11902a HelloRetryRequest getter by Kris Kwiatkowski · 6 years ago
  73. 3ab3b12 Add compatibility functions for sigalgs by Shelley Vohr · 5 years ago
  74. 7f02881 Drop CECPQ2b code. by Adam Langley · 5 years ago fips-android-20191020
  75. 12049fd Add |SSL_get_min_proto_version| and |SSL_get_max_proto_version| by Alessandro Ghedini · 5 years ago
  76. 0e7dbd5 Add an option for explicit renegotiations. by David Benjamin · 6 years ago
  77. 0bb4345 Mark ssl_early_data_reason_t values stable. by David Benjamin · 6 years ago
  78. 04a89c8 Add |SSL_CIPHER_get_value| to get the IANA number of a cipher suite. by Adam Langley · 6 years ago
  79. d634357 Add initial support for 0-RTT with QUIC. by David Benjamin · 6 years ago
  80. bd2a8d6 Add a function to convert SSL_ERROR_* values to strings. by David Benjamin · 6 years ago
  81. f492830 Fold SSL_want constants into SSL_get_error constants. by David Benjamin · 6 years ago
  82. 9806ae0 Check the second ClientHello's PSK binder on resumption. by David Benjamin · 6 years ago
  83. 94b2871 Remove SSL_export_early_keying_material. by David Benjamin · 6 years ago
  84. ef0183c Make SSL_get_servername work in the early callback. by David Benjamin · 6 years ago
  85. 9f5c419 Move the PQ-experiment signal to SSL_CTX. by Adam Langley · 6 years ago
  86. 66e1060 Align TLS 1.3 cipher suite names with OpenSSL. by David Benjamin · 6 years ago
  87. a86c698 Add post-quantum experiment signal extension. by Adam Langley · 6 years ago
  88. 7198a23 Clarify language about default SSL_CTX session ticket key behavior. by Nick Harper · 6 years ago
  89. 629f321 Add an API to record use of delegated credential by Watson Ladd · 6 years ago
  90. 78c88c9 Integrate SIKE with TLS key exchange. by Kris Kwiatkowski · 6 years ago
  91. 5274cea Always store early data tickets. by Steven Valdez · 6 years ago
  92. 6433a91 Enforce the ticket_age parameter for 0-RTT. by David Benjamin · 6 years ago
  93. 6477012 Add SSL_get_early_data_reason. by David Benjamin · 6 years ago
  94. 7540cc2 Predeclare enums in base.h by Adam Langley · 6 years ago
  95. c9827e0 Output a ClientHello during handoff. by Adam Langley · 6 years ago
  96. a4af5f8 Support get versions with get_{min,max}_proto_version for context by Nitish Sakhawalkar · 6 years ago
  97. 3390fd8 Correct outdated comments by Watson Ladd · 6 years ago
  98. f9c8d30 Remove SSL_get_structure_sizes. by David Benjamin · 6 years ago
  99. a612474 Update *_set_cert_cb documentation regarding resumption by Alessandro Ghedini · 6 years ago
  100. 2f213f6 Update delegated credentials to draft-03 by Watson Ladd · 6 years ago