- d85444e Consistently reject large p and large q in DH by David Benjamin · 1 year, 8 months ago
- 4b040e5 Document and test DH_generate_key's weird key reuse behavior by David Benjamin · 1 year, 8 months ago
- 58adb8e Add ChromeOS EC related targets by Yi Chou · 1 year, 9 months ago
- 6738d47 Restore OPENSSL_RAND_TRUSTY by David Benjamin · 1 year, 8 months ago
- 20a0647 Mark all of bssl::Span as constexpr by David Benjamin · 1 year, 8 months ago
- 7cb91d2 Reflect OPENSSL_NO_SOCK and OPENSSL_NO_POSIX_IO into headers by David Benjamin · 1 year, 9 months ago
- 0ffd365 Use a stub fopen implementation when OPENSSL_NO_FILESYSTEM is set by David Benjamin · 1 year, 8 months ago
- f04fbf5 Mark the old sk symbols as deprecated by David Benjamin · 1 year, 9 months ago
- b1ff33d Temporarily restore sk_pop_free_ex by David Benjamin · 1 year, 9 months ago
- 5ba5db1 Support Android's "baremetal" target by David Benjamin · 1 year, 9 months ago
- 2ff3a6b Clarify what __TRUSTY__ and OPENSSL_NANOLIBC are by David Benjamin · 1 year, 9 months ago
- d43fef7 Fix aarch64 build with GCC by David Benjamin · 1 year, 9 months ago
- 690dcdf Make the old sk_* functions into full functions by David Benjamin · 1 year, 9 months ago
- 70be012 Use constant curve-specific groups whenever possible by David Benjamin · 2 years, 2 months ago
- 2b8a057 Entropy changes for trusty and windows. by Bob Beck · 1 year, 9 months ago
- 417069f Make built-in curves static. by David Benjamin · 2 years, 2 months ago
- 8267582 Update the documentation of RAND_cleanup by David Benjamin · 1 year, 9 months ago
- c807a23 Fix truncation warnings with the iteration count by David Benjamin · 1 year, 9 months ago
- 51ed32f Fix spelling nits by Bob Beck · 1 year, 9 months ago
- 9fc1c33 Add Intel Indirect Branch Tracking support. by Bob Beck · 1 year, 10 months ago
- 899c1a7 Const-correct a handful of time functions by David Benjamin · 1 year, 9 months ago
- 4e88a35 Make the curve compat APIs into real functions by David Benjamin · 1 year, 9 months ago
- a905bbb Consistently include BTI markers in every assembly file by David Benjamin · 1 year, 10 months ago
- 9fcaec6 Start recognizing the OPENSSL_NANOLIBC define by David Benjamin · 1 year, 10 months ago
- 754bcf6 Don't expose EVP_PKEY internal representation through EVP_PKEY_assign by David Benjamin · 1 year, 10 months ago
- 04c3d40 Remove CRYPTO_MUTEX from public headers by David Benjamin · 1 year, 10 months ago
- d4553e0 Make RSA opaque by David Benjamin · 1 year, 10 months ago
- 761c3ed Add ASN1_TIME_set_string_X509 by David Benjamin · 1 year, 10 months ago
- 556a973f Add SSL_CIPHER_get_handshake_digest by David Benjamin · 1 year, 10 months ago
- cbb96b4 Const-correct a few X509_PURPOSE and X509_TRUST functions by David Benjamin · 1 year, 10 months ago
- 9d48902 Remove a pointer indirection in STACK_OF(T) comparisons by David Benjamin · 1 year, 10 months ago
- 99d3c22 Prefix the private stack functions by David Benjamin · 1 year, 10 months ago
- f4a4e27 Make DSA opaque by David Benjamin · 1 year, 10 months ago
- df9955b Handle ChaCha20 counter overflow consistently by David Benjamin · 1 year, 10 months ago
- e106b53 Remove BN_DEC_FMT2 and test the others by David Benjamin · 1 year, 10 months ago
- 28c2409 Define TLSEXT_nid_unknown by David Benjamin · 1 year, 10 months ago
- 6cf9820 Align NIDs vs group IDs in TLS group APIs by David Benjamin · 1 year, 10 months ago
- 335523a Align remaining TLS ECDH APIs on "group" terminology by David Benjamin · 1 year, 10 months ago
- 2da5ba9 Align on using the "group" over "curve" for ECDH in TLS by David Benjamin · 1 year, 10 months ago
- 4631ccc Remove SSL_CIPHER_get_value by David Benjamin · 1 year, 10 months ago
- 825bec8 Remove variable expansion from CONF fuzzer by David Benjamin · 1 year, 10 months ago
- 83a6ba1 Test the CONF parser more extensively by David Benjamin · 1 year, 11 months ago
- 8c7e925 Bound STACK_OF(T) sizes by int by David Benjamin · 1 year, 11 months ago
- a05691d Add an atomics library to crypto/internal.h by David Benjamin · 2 years, 3 months ago
- 706846d Add documentation for X509_STORE_CTX_set_verify_cb and friends by Bob Beck · 2 years ago
- c215ce7 Use a helper function to implement get_all_foo_names functions. by Adam Langley · 1 year, 11 months ago
- b92fcfd Cap the input size to the conf fuzzer by David Benjamin · 1 year, 11 months ago
- 4540c3c OpenBSD Support by Bob Beck · 2 years, 1 month ago
- c6dd304 Remove unions in BLAKE2b implementation by David Benjamin · 1 year, 11 months ago
- a972b78 Add APIs to query a list of possible strings for TLS features by David Benjamin · 1 year, 11 months ago
- b1c6f45 Add back support for TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 by Adam Langley · 1 year, 11 months ago
- 4d30888 Add a more general mechanism for deprecating TLS ciphers by David Benjamin · 2 years ago
- 6d55dc3 Add APIs to support RSA keys with large e. by David Benjamin · 1 year, 11 months ago
- 2e565ef Clarify that X25519 also supports EVP_PKEY_new_raw_private_key, etc by David Benjamin · 1 year, 11 months ago
- 1b724a6 Align Kyber names with draft-tls-westerbaan-xyber768d00 by David Benjamin · 1 year, 11 months ago
- e7c3f47 Remove H from GCM128_KEY by David Benjamin · 1 year, 11 months ago
- 4c8bcf0 Implement the AuthEncap/AuthDecap HPKE modes by David Benjamin · 2 years ago
- 051f891 Update references to draft-irtf-cfrg-gcmsiv by David Benjamin · 1 year, 11 months ago
- 86ada1e Add new APIs for creating RSA keys by David Benjamin · 2 years ago
- 2f6409e Support WPA 3.1 "enterprise" mode. by Adam Langley · 2 years ago
- d206f3d Move the old SPKAC types to their own section by David Benjamin · 2 years ago
- 691e45a Remove unimplemented SSL BIO_ctrl values by David Benjamin · 2 years ago
- 0c7527b X509_sign, etc., should return the length of the signature on success by David Benjamin · 2 years ago
- de2d610 Remove TLS_RSA_WITH_NULL_SHA by David Benjamin · 2 years ago
- ac6d558 Add mechanism for deprecated declarations. by Bob Beck · 2 years ago
- 26ead95 Trim some unused XN_FLAG_* values by David Benjamin · 2 years ago
- 3e91d37 Clarify in ssl.h documentation not to use the verify callback by David Benjamin · 2 years ago
- 58a4094 Move the X509 time functions under "Convenience functions" by David Benjamin · 2 years ago
- 437ef4d Remove the X509at_* functions by David Benjamin · 2 years ago
- 787713b Organize X509_ATTRIBUTE functions into sections. by David Benjamin · 2 years ago
- d9f209b Document a pile of X509 print functions by David Benjamin · 2 years ago
- 32b5130 Widen ASN1_mbstring_copy and ASN1_mbstring_ncopy to ossl_ssize_t by David Benjamin · 2 years ago
- 4ae4fb7 Drop CECPQ2 support. by Adam Langley · 2 years ago
- 5fb362c Remove X509V3_EXT_add_list and X509V3_EXT_cleanup by David Benjamin · 2 years ago
- 8abd1b5 Remove support for "old-style" X509V3_EXT_METHODs. by David Benjamin · 2 years ago
- 8cacbd9 Add functions to allow the mocking of AES hw support for testing. by Bob Beck · 2 years ago
- c5f762d Add Trust Token version using standardized hash2curve. by Steven Valdez · 2 years ago
- a438519 Fix miscellaneous size_t truncations by David Benjamin · 2 years ago
- bf1b792 Remove SSL_CIPHER_get_rfc_name by David Benjamin · 2 years ago
- 0c069cb Don't consume the newline in BIO_gets for fds by David Benjamin · 2 years ago
- d897027 Update X25519+Kyber ID. by Adam Langley · 2 years ago
- 58472cc Adding a C implementation of Kyber. by Sophie Schmieg · 2 years, 1 month ago
- 28226f5 Fix handling of critical X.509 policy constraints by David Benjamin · 2 years ago
- 678bae4 Remove dynamic X509_VERIFY_PARAM registration by David Benjamin · 2 years ago
- af0739f Const-correct sk_FOO_cmp_func by David Benjamin · 2 years, 3 months ago
- 0e8e3c6 Add a warning about OBJ_create and global state by David Benjamin · 2 years ago
- 2e13e36 Fix parameter name for i2d_X509_EXTENSION by David Benjamin · 2 years ago
- b6a50fd Give X509 an ASN1_ITEM again by David Benjamin · 2 years ago
- 8ebfea7 Reject non-minimal lengths in ASN1_get_object by David Benjamin · 2 years, 1 month ago
- 2a52444 Reimplement X509 parsing without templates by David Benjamin · 2 years, 1 month ago
- 8c8629b Represent unknown universal types with V_ASN1_OTHER by David Benjamin · 2 years, 1 month ago
- 898de8d Rewrite c2i_ASN1_OBJECT by David Benjamin · 2 years, 1 month ago
- 173b639 Make ASN1_OBJECT_create size_t-clean. by David Benjamin · 2 years, 3 months ago
- 2cb7b33 Rewrite ASN1_OBJECT and ASN1_BOOLEAN d2i/i2d functions. by David Benjamin · 2 years, 3 months ago
- 7464656 Add CTRDBG_STATE to bssl::UniquePtr by David Benjamin · 2 years, 1 month ago
- 8c7aa6b Const-correct and document a few functions in x509v3.h. by David Benjamin · 2 years, 1 month ago
- 8aa51dd Add OPENSSL_EXPORT to BN_mod_inverse_blinded by Robert Liu · 2 years, 1 month ago
- a925c22 Remove EVP_PKEY_ASN1_METHOD and EVP_PKEY_METHOD from public headers by David Benjamin · 2 years, 1 month ago
- 028bae7 Define a NID for P-384 + Kyber768. by Adam Langley · 2 years, 1 month ago
- 474ddf8 Cap the number of ECDSA and DSA sign iterations. by David Benjamin · 2 years, 2 months ago