1. 01f8a8c Convert stack.h to use inline functions. by David Benjamin · 8 years ago
  2. d55bd79 Fix SSL_COMP_get_compression_methods type signature. by David Benjamin · 8 years ago
  3. 48b6b8f Add SSL_CIPHER_has_SHA384_HMAC. by Alessandro Ghedini · 8 years ago
  4. 873ebc9 Improve TestConfig flags for initial and resumption connections. by Steven Valdez · 8 years ago
  5. 93731d9 Remove old SSL min/max version functions. by David Benjamin · 8 years ago
  6. 4d1f4ba Timeout the shim on Accept and Wait. by David Benjamin · 8 years ago
  7. 2997589 Unwind DHE support from BoGo. by David Benjamin · 8 years ago
  8. c88f245 Don't print message when waiting for urandom entropy. by Adam Langley · 8 years ago
  9. 321fcdc Convert default version tests in ssl_test. by David Benjamin · 8 years ago
  10. e11726a Properly convert more of ssl_test. by David Benjamin · 8 years ago
  11. a365138 Factor out the default signature algorithm logic. by David Benjamin · 8 years ago
  12. 4b65693 Make runner ignore entropy warnings. by Adam Langley · 8 years ago
  13. de254b4 Enforce max_early_data_size on the server. by Alessandro Ghedini · 8 years ago
  14. 71c21b4 Add SSL_CTX_set_verify_algorithm_prefs. by David Benjamin · 8 years ago
  15. 96bc12a Remove includeDHE from runner.go. by David Benjamin · 8 years ago
  16. 11fa703 Remove the last remnants of key_exchange_info. by David Benjamin · 8 years ago
  17. 7e06de5 Really remove DHE ciphersuites from TLS. by Matthew Braithwaite · 8 years ago
  18. 3cfeb95 Disable SSLv3 by default. by David Benjamin · 8 years ago
  19. bbba939 Acknowledge KeyUpdate messages. by David Benjamin · 8 years ago
  20. ebacdee Add SendServerHelloAsHelloRetryRequest test. by David Benjamin · 8 years ago
  21. d3bca04 Remove a batch of f_errs. by David Benjamin · 8 years ago
  22. 6952211 Support Ed25519 in TLS. by David Benjamin · 8 years ago
  23. 0aef168 Comment typo fix: 1024 bits is too small, not too large. by Adam Langley · 8 years ago
  24. d768c5d Support Ed25519 keys in BoGo. by David Benjamin · 8 years ago
  25. e1d18a7 Vendor a copy of golang.org/x/crypto/ed25519. by David Benjamin · 8 years ago
  26. cc17c24 Stop pretending RSA and ECDSA sigalgs are configurable. by David Benjamin · 8 years ago
  27. 6114c3c Clean up signature algorithm logic. by David Benjamin · 8 years ago
  28. a232a71 Deprecate SSL_PRIVATE_KEY_METHOD type and max_signature_len. by David Benjamin · 8 years ago
  29. bf833c3 Rename hs->public_key. by David Benjamin · 8 years ago
  30. 76feb1f Convert ssl_privkey.c to message-based signing APIs. by David Benjamin · 8 years ago
  31. c8ff30c Add an option to allow unknown ALPN protocols. by David Benjamin · 8 years ago chromium-3071
  32. 67bb45f Support enabling early data on SSL by Alessandro Ghedini · 8 years ago
  33. ebcb5be Sync vendored copies of Go poly1305 and curve25519. by David Benjamin · 8 years ago
  34. 0c05c37 Update fuzzer exclusions. by David Benjamin · 8 years ago
  35. 6bb507b Add missing tests for the Channel ID / 0-RTT interaction. by David Benjamin · 8 years ago
  36. f368c73 Fix fuzzer excludes. by Steven Valdez · 8 years ago
  37. 764ab98 Support and test P-224 certificates. by Adam Langley · 8 years ago
  38. a0ba400 Add cipher asserts for read/write app data. by Steven Valdez · 8 years ago
  39. ccbb165 Tidy up ssl3_choose_cipher. by David Benjamin · 8 years ago
  40. 8c26d75 Test the behavior of running SSL_do_handshake twice in a row. by David Benjamin · 8 years ago
  41. 0f5d7d3 Just allocate what's needed for SSL write buffers. by David Benjamin · 8 years ago
  42. bbfe603 Clean up end_of_early_data processing. by David Benjamin · 8 years ago
  43. 681eb6a Adding support for receiving early data on the server. by Steven Valdez · 8 years ago
  44. 32c8927 Add a test for missing end_of_early_data. by David Benjamin · 8 years ago
  45. 065d733 Test ticket age skew when resuming a resumed session. by David Benjamin · 8 years ago
  46. 2a07072 Prevent Channel ID and Custom Extensions on 0-RTT. by Steven Valdez · 8 years ago
  47. 246eeee Make RI on TLS 1.3 alert with ILLEGAL_PARAMETER. by Steven Valdez · 8 years ago
  48. 794cc59 Send half-RTT tickets when negotiating 0-RTT. by David Benjamin · 8 years ago
  49. 3cb1246 Remove session_tickets_sent. by David Benjamin · 8 years ago
  50. 4784b99 Use set_{accept,connect}_state + do_handshake in bssl_shim. by David Benjamin · 8 years ago
  51. 7d2dbc3 Add a comment around the set_{min,max}_version logic. by David Benjamin · 8 years ago
  52. e3843d4 Run all state machine coverage tests on implicit handshake. by David Benjamin · 8 years ago
  53. bbf4246 Add a test that ALPN is rejected on renegotiation. by David Benjamin · 8 years ago
  54. 2d85062 Add Data-less Zero-RTT support. by Steven Valdez · 8 years ago
  55. 57e81e6 Name |select_certificate_cb| return values by Alessandro Ghedini · 8 years ago
  56. cedc6f1 Remove DHE ciphersuites from TLS. by Matthew Braithwaite · 8 years ago
  57. 5c12778 Convert bio_test to GTest. by David Benjamin · 8 years ago
  58. 73812e0 Fix SSLv3 version check in BoGo. by David Benjamin · 8 years ago
  59. 2070f8a Apply bugs to second, TLS 1.3 ClientHello. by Adam Langley · 8 years ago
  60. 707af29 Support asynchronous ticket decryption with TLS 1.3. by David Benjamin · 8 years ago
  61. 4c341d0 Support asynchronous ticket decryption with TLS 1.0–1.2. by Adam Langley · 8 years ago
  62. be49706 Rename initial_ctx to session_ctx. by David Benjamin · 8 years ago
  63. 91222b8 Fix configuring the empty cipher list. by David Benjamin · 8 years ago
  64. 6ad20dc Move error-on-empty-cipherlist into ssl_create_cipher_list(). by Matthew Braithwaite · 8 years ago
  65. 130d529 Adding version to AEAD. by Steven Valdez · 8 years ago
  66. d04ca95 Add |SSL[_CTX]_set_chain_and_key|. by Adam Langley · 8 years ago
  67. 35ac5b7 Export server-side ticket_age skew. by David Benjamin · 8 years ago
  68. fe36672 Allow users of the |CRYPTO_BUFFER|-based methods to verify certs after the handshake. by Adam Langley · 8 years ago
  69. 0cade98 Make the no-op verify function push an error. by Adam Langley · 8 years ago
  70. 54689ed Move ssl_verify_alarm_type into ssl_x509.c. by David Benjamin · 8 years ago
  71. ab1d28e Trim x509.h includes. by David Benjamin · 8 years ago
  72. 8ebeabf Add SSL_CTX_get_ciphers. by David Benjamin · 8 years ago
  73. f29c429 Remove support for old-style SSL_PRIVATE_KEY_METHOD types. by David Benjamin · 8 years ago
  74. f465461 Add SSL_get0_peer_certificates. by David Benjamin · 8 years ago
  75. 924a352 Remove experimental TLS 1.3 short record header extension. by Steven Valdez · 8 years ago
  76. d6c22ee Add |SSL_get0_server_requested_CAs|. by Adam Langley · 8 years ago
  77. a58baaf Forbid the server certificate from changing on renego. by David Benjamin · 8 years ago
  78. ad8f5e1 Don't use long for timestamps. by David Benjamin · 8 years ago
  79. 11c8289 Remove support for blocking DTLS timeout handling. by David Benjamin · 8 years ago
  80. 39425b0 Add |TLS_with_buffers_method|. by Adam Langley · 8 years ago
  81. d5c565a Name ssl_x509.c functions consistently. by Adam Langley · 8 years ago
  82. 94a62e6 Hang ssl_auto_chain_if_needed off |X509_METHOD|. by Adam Langley · 8 years ago
  83. 2a3b343 Move X509-related verification code into ssl_x509.c. by Adam Langley · 8 years ago
  84. 415c010 Make all X509-related functions check the X509_METHOD. by Adam Langley · 8 years ago
  85. 0bdef09 Check CA names during the handshake. by Adam Langley · 8 years ago
  86. 34b4c82 Hold CA names as |CRYPTO_BUFFER|s. by Adam Langley · 8 years ago
  87. 2ff7933 Add test for |SSL_get_client_CA_list|. by Adam Langley · 8 years ago
  88. 898be92 Support P-224 certificates as a server. by Adam Langley · 8 years ago
  89. adec772 Remove SSL_CIPHER_has_MD5_HMAC. by David Benjamin · 8 years ago
  90. a57dcfb Add new cipherlist-setting APIs that reject nonsense. by Matthew Braithwaite · 8 years ago
  91. fc02b59 Move tmp.extended_master_secret to SSL_HANDSHAKE. by David Benjamin · 8 years ago
  92. 45738dd Move new_cipher and new_session to SSL_HANDSHAKE. by David Benjamin · 8 years ago
  93. 12709db Stop reporting SSL_R_SHUTDOWN_WHILE_IN_INIT. by David Benjamin · 8 years ago
  94. 5960a90 Move sid_ctx from SSL/SSL_CTX to CERT. by David Benjamin · 8 years ago
  95. 26e1ff3 Remove some unnecessary return values. by David Benjamin · 8 years ago
  96. 27a9e6a Adding ALPN to session. by Steven Valdez · 8 years ago
  97. 83a3212 Move SCT lists and OCSP responses to CERT. by David Benjamin · 8 years ago
  98. 16b1b1d Simplify state and info_callback management. by David Benjamin · 8 years ago
  99. 35ed523 Remove an unnecessary state transition. by David Benjamin · 8 years ago
  100. 77458a4 Avoid transitioning into SSL_ST_OK and back out. by David Benjamin · 8 years ago