1. 1e8461c runner: Use go:embed by David Benjamin · 1 year, 1 month ago
  2. df3b58e Generate certs on the fly in runner, pass trusted cert to shim by Roland Shoemaker · 1 year, 7 months ago
  3. a6e2be4 Add tests for what happens when no certificate is configured by David Benjamin · 1 year, 1 month ago
  4. ec2a08d Introduce a test helper for asserting on the error by David Benjamin · 1 year, 1 month ago
  5. 85c5d96 Make an include/openssl/experimental. Move kyber to it for now. by Bob Beck · 1 year, 1 month ago
  6. 5d88014 Deprecate and simplify SSL_CTX_check_private_key by David Benjamin · 1 year, 1 month ago
  7. 6db6604 Use std::copy instead of OPENSSL_memcpy for the internal bssl::Array::CopyFrom by David Benjamin · 1 year, 1 month ago
  8. cadebfd Consistently open files in binary mode on Windows by David Benjamin · 1 year, 2 months ago
  9. 0ff377a Add some utilities for testing temporary files by David Benjamin · 1 year, 2 months ago
  10. c06c4d5 Remove redundant piece of DC state by David Benjamin · 1 year, 1 month ago
  11. 4fe29eb Test an unusual split between context and connection configuration by David Benjamin · 1 year, 1 month ago
  12. 281053e Remove some impossible null checks by David Benjamin · 1 year, 1 month ago
  13. 1bd6e92 Remove some indirection in SSL_certs_clear by David Benjamin · 1 year, 1 month ago
  14. fbf10f0 Make an internal RefCounted base class for libssl by David Benjamin · 1 year, 1 month ago
  15. 90f0f05 Integrate TLS 1.2 sigalg and cipher suite selection by David Benjamin · 1 year, 1 month ago
  16. 48b0edf Update delegated credentials to the final RFC by David Benjamin · 1 year, 1 month ago
  17. c528061 Allow a C++ runtime dependency in libssl by David Benjamin · 1 year, 1 month ago
  18. 10605c0 Minor formatting fixes by David Benjamin · 1 year, 2 months ago
  19. fbb4133 Add SSL_get0_chain method by Gabriel Redner · 1 year, 2 months ago
  20. 07cd196 Always use a 32-byte shared secret for Kyber by David Benjamin · 1 year, 4 months ago
  21. 58906ea Merge <openssl/x509v3.h> into <openssl/x509.h> by David Benjamin · 1 year, 4 months ago
  22. 3309ca6 Add ALPS codepoint supports for split handshake by Victor Tan · 1 year, 6 months ago
  23. dd68e4b Add OPENSSL_zalloc by David Benjamin · 1 year, 6 months ago
  24. 558960d Add support for the new ALPS codepoint by Victor Tan · 1 year, 9 months ago
  25. 9404a0b runner: Check that the shim HRRs echo the session ID by David Benjamin · 1 year, 7 months ago
  26. e4f6067 Use a callable type for ScopedFILE in settings_writer.cc by David Benjamin · 1 year, 7 months ago
  27. 20a0647 Mark all of bssl::Span as constexpr by David Benjamin · 1 year, 8 months ago
  28. 7cb91d2 Reflect OPENSSL_NO_SOCK and OPENSSL_NO_POSIX_IO into headers by David Benjamin · 1 year, 9 months ago
  29. 0ffd365 Use a stub fopen implementation when OPENSSL_NO_FILESYSTEM is set by David Benjamin · 1 year, 8 months ago
  30. 5ba5db1 Support Android's "baremetal" target by David Benjamin · 1 year, 9 months ago
  31. 23d6e4c Replace BIO_snprintf with snprintf within the library by David Benjamin · 1 year, 9 months ago
  32. a4f8755 Fix error handling in bssl_shim socket object by David Benjamin · 1 year, 9 months ago
  33. 70be012 Use constant curve-specific groups whenever possible by David Benjamin · 2 years, 1 month ago
  34. a36ac0a Use std::make_unique when possible by David Benjamin · 1 year, 9 months ago
  35. 8f4daaf Resolve an old TODO in TestState::Deserialize by David Benjamin · 1 year, 9 months ago
  36. fa6ab4f Remove remnants of malloc.cc by David Benjamin · 1 year, 9 months ago
  37. 197b571 Use sources.cmake for test binaries by David Benjamin · 1 year, 9 months ago
  38. 286ea21 Replace byteBuilder and byteReader with cryptobyte by David Benjamin · 1 year, 9 months ago
  39. 4e88a35 Make the curve compat APIs into real functions by David Benjamin · 1 year, 9 months ago
  40. 50ee095 Use a single TCP server port in runner by David Benjamin · 1 year, 9 months ago
  41. f4d1d79 Simplify shimProcess accept and wait by David Benjamin · 1 year, 9 months ago
  42. 73dcd47 Turn SocketCloser in bssl_shim into a proper owning type by David Benjamin · 1 year, 9 months ago
  43. e33257f Pass IPv6 vs IPv4 down to the shim by David Benjamin · 1 year, 9 months ago
  44. e1b8685 Log failure to create SSL objects in handshakers by David Benjamin · 1 year, 10 months ago
  45. 556a973f Add SSL_CIPHER_get_handshake_digest by David Benjamin · 1 year, 10 months ago
  46. 6cf9820 Align NIDs vs group IDs in TLS group APIs by David Benjamin · 1 year, 10 months ago
  47. 335523a Align remaining TLS ECDH APIs on "group" terminology by David Benjamin · 1 year, 10 months ago
  48. 2da5ba9 Align on using the "group" over "curve" for ECDH in TLS by David Benjamin · 1 year, 10 months ago
  49. 4631ccc Remove SSL_CIPHER_get_value by David Benjamin · 1 year, 10 months ago
  50. 7e56051 Miscellaneous size_t truncation fixes by David Benjamin · 1 year, 10 months ago
  51. b0251b1 Disable TLS_RSA_WITH_3DES_EDE_CBC_SHA by default by David Benjamin · 1 year, 11 months ago
  52. 2eaf070 Add a thread test for ex_data by David Benjamin · 1 year, 11 months ago
  53. c215ce7 Use a helper function to implement get_all_foo_names functions. by Adam Langley · 1 year, 11 months ago
  54. a972b78 Add APIs to query a list of possible strings for TLS features by David Benjamin · 1 year, 11 months ago
  55. b1c6f45 Add back support for TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 by Adam Langley · 1 year, 11 months ago
  56. 4d30888 Add a more general mechanism for deprecating TLS ciphers by David Benjamin · 1 year, 11 months ago
  57. 1b724a6 Align Kyber names with draft-tls-westerbaan-xyber768d00 by David Benjamin · 1 year, 11 months ago
  58. 77b6f25 Replace interface{} with any by David Benjamin · 1 year, 11 months ago
  59. b811a6c Add Kyber to runner tests by Adam Langley · 1 year, 11 months ago
  60. 2f6409e Support WPA 3.1 "enterprise" mode. by Adam Langley · 2 years ago
  61. a02b743 runner: Remove an unnecessary use of AllCurves by David Benjamin · 1 year, 11 months ago
  62. d42c4e4 Specify the TLS cipher order more straightforwardly by David Benjamin · 1 year, 11 months ago
  63. edf7662 Allow passing extra flags to BoGo shim by Roland Shoemaker · 1 year, 11 months ago
  64. de2d610 Remove TLS_RSA_WITH_NULL_SHA by David Benjamin · 1 year, 11 months ago
  65. cee2dbb Default SSL_set_enforce_rsa_key_usage to enabled. by David Benjamin · 2 years ago
  66. 480344d Move TLS 1.3 KDF functions into the FIPS module. by Adam Langley · 2 years ago
  67. 4ae4fb7 Drop CECPQ2 support. by Adam Langley · 2 years ago
  68. 8cacbd9 Add functions to allow the mocking of AES hw support for testing. by Bob Beck · 2 years ago
  69. a438519 Fix miscellaneous size_t truncations by David Benjamin · 2 years ago
  70. bf1b792 Remove SSL_CIPHER_get_rfc_name by David Benjamin · 2 years ago
  71. fe7a067 Run `go fmt` in `ssl/test/runner`. by Adam Langley · 2 years ago
  72. 44a389a Tidy up some lengths in SSL_SESSION by David Benjamin · 2 years, 4 months ago
  73. 6e723e5 Convert a few more ints to bools in libssl. by David Benjamin · 2 years ago
  74. 58472cc Adding a C implementation of Kyber. by Sophie Schmieg · 2 years, 1 month ago
  75. af0739f Const-correct sk_FOO_cmp_func by David Benjamin · 2 years, 3 months ago
  76. 08b1f38 Use KEM terminology in TLS ECDHE and key_share abstractions by David Benjamin · 2 years, 1 month ago
  77. 9cbff81 Simplify ECKeyShare slightly. by David Benjamin · 2 years, 2 months ago
  78. a5dcf35 Move the ASN.1-based SSLKeyShare serialization to handoff.cc. by David Benjamin · 2 years, 2 months ago
  79. 7fa0910 Create the SSLKeyShare object in TLS 1.2 client ECDHE slightly later by David Benjamin · 2 years, 2 months ago
  80. 890c201 Make EVP_PKEY opaque. by David Benjamin · 2 years, 2 months ago
  81. 987dff1 Make boringssl_gtest_main a STATIC library by David Benjamin · 2 years, 1 month ago
  82. 8c75ed0 Remove global_target from build. by David Benjamin · 2 years, 2 months ago
  83. e5f7266 Don't include custom builds of libc++ in CMake installs by David Benjamin · 2 years, 2 months ago
  84. 0e68520 Specify -Iinclude with the crypto target. by David Benjamin · 2 years, 2 months ago
  85. dcabfe2 Make OPENSSL_malloc push ERR_R_MALLOC_FAILURE on failure. by Bob Beck · 2 years, 2 months ago
  86. 0586618 Trim unnecessary -lrt and ws2_32 deps in the build. by David Benjamin · 2 years, 2 months ago
  87. f7d37fb Fix various malloc failure paths. by David Benjamin · 2 years, 2 months ago
  88. 582904f Move malloc failure testing into OPENSSL_malloc by David Benjamin · 2 years, 2 months ago
  89. 00c70b8 Add locale independent implementations of isalpha, isalnum, isdigit, by Bob Beck · 2 years, 2 months ago
  90. f86a63c Introduce a locale-independent version of isdigit by Bob Beck · 2 years, 2 months ago
  91. 971b330 Use the same Deleter across all bssl::UniquePtr<T>. by David Benjamin · 2 years, 2 months ago
  92. 1e97ce3 Don't send two post-quantum initial key shares. by Adam Langley · 2 years, 2 months ago
  93. fc07738 Add stubs for hybrid Kyber768 with X25519 or P-256. by Adam Langley · 2 years, 3 months ago
  94. df8a55b Const-correct sk_FOO_deep_copy's copy callback. by David Benjamin · 2 years, 3 months ago
  95. 05b360d Remove hmac.h include from ssl.h. by Piotr Sikora · 2 years, 2 months ago
  96. 3251ca1 Simplify MSVC warning configuration by David Benjamin · 2 years, 2 months ago
  97. ec6425ca Drop the preference for 256-bit ciphers with CECPQ2. by Adam Langley · 2 years, 3 months ago
  98. a614d46 Add SSL_was_key_usage_invalid. by David Benjamin · 2 years, 4 months ago
  99. c7b255e Add NO_CHECK_TIME to SSLTest.ECHBuiltinVerifier too by David Benjamin · 2 years, 4 months ago
  100. 28f96c2 Fix timebomb by disabling time check in this test by Bob Beck · 2 years, 4 months ago