1. d85444e Consistently reject large p and large q in DH by David Benjamin · 1 year, 8 months ago
  2. 4b040e5 Document and test DH_generate_key's weird key reuse behavior by David Benjamin · 1 year, 8 months ago
  3. 58adb8e Add ChromeOS EC related targets by Yi Chou · 1 year, 9 months ago
  4. 6738d47 Restore OPENSSL_RAND_TRUSTY by David Benjamin · 1 year, 8 months ago
  5. 20a0647 Mark all of bssl::Span as constexpr by David Benjamin · 1 year, 8 months ago
  6. 7cb91d2 Reflect OPENSSL_NO_SOCK and OPENSSL_NO_POSIX_IO into headers by David Benjamin · 1 year, 9 months ago
  7. 0ffd365 Use a stub fopen implementation when OPENSSL_NO_FILESYSTEM is set by David Benjamin · 1 year, 8 months ago
  8. f04fbf5 Mark the old sk symbols as deprecated by David Benjamin · 1 year, 9 months ago
  9. b1ff33d Temporarily restore sk_pop_free_ex by David Benjamin · 1 year, 9 months ago
  10. 5ba5db1 Support Android's "baremetal" target by David Benjamin · 1 year, 9 months ago
  11. 2ff3a6b Clarify what __TRUSTY__ and OPENSSL_NANOLIBC are by David Benjamin · 1 year, 9 months ago
  12. d43fef7 Fix aarch64 build with GCC by David Benjamin · 1 year, 9 months ago
  13. 690dcdf Make the old sk_* functions into full functions by David Benjamin · 1 year, 9 months ago
  14. 70be012 Use constant curve-specific groups whenever possible by David Benjamin · 2 years, 2 months ago
  15. 2b8a057 Entropy changes for trusty and windows. by Bob Beck · 1 year, 9 months ago
  16. 417069f Make built-in curves static. by David Benjamin · 2 years, 2 months ago
  17. 8267582 Update the documentation of RAND_cleanup by David Benjamin · 1 year, 9 months ago
  18. c807a23 Fix truncation warnings with the iteration count by David Benjamin · 1 year, 9 months ago
  19. 51ed32f Fix spelling nits by Bob Beck · 1 year, 9 months ago
  20. 9fc1c33 Add Intel Indirect Branch Tracking support. by Bob Beck · 1 year, 10 months ago
  21. 899c1a7 Const-correct a handful of time functions by David Benjamin · 1 year, 9 months ago
  22. 4e88a35 Make the curve compat APIs into real functions by David Benjamin · 1 year, 9 months ago
  23. a905bbb Consistently include BTI markers in every assembly file by David Benjamin · 1 year, 10 months ago
  24. 9fcaec6 Start recognizing the OPENSSL_NANOLIBC define by David Benjamin · 1 year, 10 months ago
  25. 754bcf6 Don't expose EVP_PKEY internal representation through EVP_PKEY_assign by David Benjamin · 1 year, 10 months ago
  26. 04c3d40 Remove CRYPTO_MUTEX from public headers by David Benjamin · 1 year, 10 months ago
  27. d4553e0 Make RSA opaque by David Benjamin · 1 year, 10 months ago
  28. 761c3ed Add ASN1_TIME_set_string_X509 by David Benjamin · 1 year, 10 months ago
  29. 556a973f Add SSL_CIPHER_get_handshake_digest by David Benjamin · 1 year, 10 months ago
  30. cbb96b4 Const-correct a few X509_PURPOSE and X509_TRUST functions by David Benjamin · 1 year, 10 months ago
  31. 9d48902 Remove a pointer indirection in STACK_OF(T) comparisons by David Benjamin · 1 year, 10 months ago
  32. 99d3c22 Prefix the private stack functions by David Benjamin · 1 year, 10 months ago
  33. f4a4e27 Make DSA opaque by David Benjamin · 1 year, 10 months ago
  34. df9955b Handle ChaCha20 counter overflow consistently by David Benjamin · 1 year, 10 months ago
  35. e106b53 Remove BN_DEC_FMT2 and test the others by David Benjamin · 1 year, 10 months ago
  36. 28c2409 Define TLSEXT_nid_unknown by David Benjamin · 1 year, 10 months ago
  37. 6cf9820 Align NIDs vs group IDs in TLS group APIs by David Benjamin · 1 year, 10 months ago
  38. 335523a Align remaining TLS ECDH APIs on "group" terminology by David Benjamin · 1 year, 10 months ago
  39. 2da5ba9 Align on using the "group" over "curve" for ECDH in TLS by David Benjamin · 1 year, 10 months ago
  40. 4631ccc Remove SSL_CIPHER_get_value by David Benjamin · 1 year, 10 months ago
  41. 825bec8 Remove variable expansion from CONF fuzzer by David Benjamin · 1 year, 10 months ago
  42. 83a6ba1 Test the CONF parser more extensively by David Benjamin · 1 year, 11 months ago
  43. 8c7e925 Bound STACK_OF(T) sizes by int by David Benjamin · 1 year, 11 months ago
  44. a05691d Add an atomics library to crypto/internal.h by David Benjamin · 2 years, 3 months ago
  45. 706846d Add documentation for X509_STORE_CTX_set_verify_cb and friends by Bob Beck · 2 years ago
  46. c215ce7 Use a helper function to implement get_all_foo_names functions. by Adam Langley · 1 year, 11 months ago
  47. b92fcfd Cap the input size to the conf fuzzer by David Benjamin · 1 year, 11 months ago
  48. 4540c3c OpenBSD Support by Bob Beck · 2 years, 1 month ago
  49. c6dd304 Remove unions in BLAKE2b implementation by David Benjamin · 1 year, 11 months ago
  50. a972b78 Add APIs to query a list of possible strings for TLS features by David Benjamin · 1 year, 11 months ago
  51. b1c6f45 Add back support for TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 by Adam Langley · 1 year, 11 months ago
  52. 4d30888 Add a more general mechanism for deprecating TLS ciphers by David Benjamin · 2 years ago
  53. 6d55dc3 Add APIs to support RSA keys with large e. by David Benjamin · 1 year, 11 months ago
  54. 2e565ef Clarify that X25519 also supports EVP_PKEY_new_raw_private_key, etc by David Benjamin · 1 year, 11 months ago
  55. 1b724a6 Align Kyber names with draft-tls-westerbaan-xyber768d00 by David Benjamin · 1 year, 11 months ago
  56. e7c3f47 Remove H from GCM128_KEY by David Benjamin · 1 year, 11 months ago
  57. 4c8bcf0 Implement the AuthEncap/AuthDecap HPKE modes by David Benjamin · 2 years ago
  58. 051f891 Update references to draft-irtf-cfrg-gcmsiv by David Benjamin · 1 year, 11 months ago
  59. 86ada1e Add new APIs for creating RSA keys by David Benjamin · 2 years ago
  60. 2f6409e Support WPA 3.1 "enterprise" mode. by Adam Langley · 2 years ago
  61. d206f3d Move the old SPKAC types to their own section by David Benjamin · 2 years ago
  62. 691e45a Remove unimplemented SSL BIO_ctrl values by David Benjamin · 2 years ago
  63. 0c7527b X509_sign, etc., should return the length of the signature on success by David Benjamin · 2 years ago
  64. de2d610 Remove TLS_RSA_WITH_NULL_SHA by David Benjamin · 2 years ago
  65. ac6d558 Add mechanism for deprecated declarations. by Bob Beck · 2 years ago
  66. 26ead95 Trim some unused XN_FLAG_* values by David Benjamin · 2 years ago
  67. 3e91d37 Clarify in ssl.h documentation not to use the verify callback by David Benjamin · 2 years ago
  68. 58a4094 Move the X509 time functions under "Convenience functions" by David Benjamin · 2 years ago
  69. 437ef4d Remove the X509at_* functions by David Benjamin · 2 years ago
  70. 787713b Organize X509_ATTRIBUTE functions into sections. by David Benjamin · 2 years ago
  71. d9f209b Document a pile of X509 print functions by David Benjamin · 2 years ago
  72. 32b5130 Widen ASN1_mbstring_copy and ASN1_mbstring_ncopy to ossl_ssize_t by David Benjamin · 2 years ago
  73. 4ae4fb7 Drop CECPQ2 support. by Adam Langley · 2 years ago
  74. 5fb362c Remove X509V3_EXT_add_list and X509V3_EXT_cleanup by David Benjamin · 2 years ago
  75. 8abd1b5 Remove support for "old-style" X509V3_EXT_METHODs. by David Benjamin · 2 years ago
  76. 8cacbd9 Add functions to allow the mocking of AES hw support for testing. by Bob Beck · 2 years ago
  77. c5f762d Add Trust Token version using standardized hash2curve. by Steven Valdez · 2 years ago
  78. a438519 Fix miscellaneous size_t truncations by David Benjamin · 2 years ago
  79. bf1b792 Remove SSL_CIPHER_get_rfc_name by David Benjamin · 2 years ago
  80. 0c069cb Don't consume the newline in BIO_gets for fds by David Benjamin · 2 years ago
  81. d897027 Update X25519+Kyber ID. by Adam Langley · 2 years ago
  82. 58472cc Adding a C implementation of Kyber. by Sophie Schmieg · 2 years, 1 month ago
  83. 28226f5 Fix handling of critical X.509 policy constraints by David Benjamin · 2 years ago
  84. 678bae4 Remove dynamic X509_VERIFY_PARAM registration by David Benjamin · 2 years ago
  85. af0739f Const-correct sk_FOO_cmp_func by David Benjamin · 2 years, 3 months ago
  86. 0e8e3c6 Add a warning about OBJ_create and global state by David Benjamin · 2 years ago
  87. 2e13e36 Fix parameter name for i2d_X509_EXTENSION by David Benjamin · 2 years ago
  88. b6a50fd Give X509 an ASN1_ITEM again by David Benjamin · 2 years ago
  89. 8ebfea7 Reject non-minimal lengths in ASN1_get_object by David Benjamin · 2 years, 1 month ago
  90. 2a52444 Reimplement X509 parsing without templates by David Benjamin · 2 years, 1 month ago
  91. 8c8629b Represent unknown universal types with V_ASN1_OTHER by David Benjamin · 2 years, 1 month ago
  92. 898de8d Rewrite c2i_ASN1_OBJECT by David Benjamin · 2 years, 1 month ago
  93. 173b639 Make ASN1_OBJECT_create size_t-clean. by David Benjamin · 2 years, 3 months ago
  94. 2cb7b33 Rewrite ASN1_OBJECT and ASN1_BOOLEAN d2i/i2d functions. by David Benjamin · 2 years, 3 months ago
  95. 7464656 Add CTRDBG_STATE to bssl::UniquePtr by David Benjamin · 2 years, 1 month ago
  96. 8c7aa6b Const-correct and document a few functions in x509v3.h. by David Benjamin · 2 years, 1 month ago
  97. 8aa51dd Add OPENSSL_EXPORT to BN_mod_inverse_blinded by Robert Liu · 2 years, 1 month ago
  98. a925c22 Remove EVP_PKEY_ASN1_METHOD and EVP_PKEY_METHOD from public headers by David Benjamin · 2 years, 1 month ago
  99. 028bae7 Define a NID for P-384 + Kyber768. by Adam Langley · 2 years, 1 month ago
  100. 474ddf8 Cap the number of ECDSA and DSA sign iterations. by David Benjamin · 2 years, 2 months ago