1. 9c33ae8 Fix TLS 1.3 NewSessionTicket processing. by David Benjamin · 8 years ago
  2. 08b65f4 Enabling 0-RTT on new Session Tickets. by Steven Valdez · 8 years ago
  3. 053fee9 Enforce the SSL 3.0 no_certificate alert in tests. by David Benjamin · 8 years ago
  4. a1eaba1 Add a test for renegotiation on busy write buffer. by David Benjamin · 8 years ago
  5. 2214f4e Remove call to SSL_CTX_set_tls_channel_id_enabled in bssl_shim. by David Benjamin · 8 years ago
  6. a81967b Add tests for the point format extension. by David Benjamin · 8 years ago
  7. 9c70b89 Update fuzzer mode suppressions. by David Benjamin · 8 years ago
  8. 6f600d6 Add experimental TLS 1.3 short record header extension. by David Benjamin · 8 years ago
  9. 17cf2cb Work around language and compiler bug in memcpy, etc. by David Benjamin · 8 years ago
  10. 56cadc3 Assert on the alert sent on FALLBACK_SCSV. by David Benjamin · 8 years ago
  11. b442dee Rename FallbackSCSV-MatchVersion. by David Benjamin · 8 years ago
  12. 65fb425 Remove version-specific cipher lists. by David Benjamin · 8 years ago
  13. a4b9198 Make TLS 1.3 check ECDSA KeyUsage and add test. by Adam Langley · 8 years ago
  14. aa01204 Move per-cipher-suite tests into a separate function. by David Benjamin · 8 years ago
  15. db5bd72 Move key_share extension check with ECDHE code. by David Benjamin · 8 years ago
  16. f1050fd Preserve the peer signature algorithm across resumes. by David Benjamin · 8 years ago
  17. 8a55ce4 Test SSL_get_curve_id behavior on resume. by David Benjamin · 8 years ago
  18. 5488122 Remove SSL_get_dhe_group_size. by David Benjamin · 8 years ago
  19. d519bf6 Add |SSL_CTX_set0_buffer_pool|. by Adam Langley · 8 years ago
  20. 5edfc8c Emulate the client_cert_cb with cert_cb. by David Benjamin · 8 years ago
  21. f440e82 Remove New Hope key agreement. by Matthew Braithwaite · 8 years ago
  22. 651aaef Remove CECPQ1 (experimental post-quantum key agreement). by Matthew Braithwaite · 8 years ago
  23. 559f064 Support setting per-connection OCSP staple by Alessandro Ghedini · 8 years ago
  24. 9d125dc Remove SSL_OP_DISABLE_NPN. by David Benjamin · 8 years ago
  25. aac1e2d Remove the remaining bssl::Main wrappers. by David Benjamin · 8 years ago
  26. 33b1d4f Check that tests with a version in the name do something with versions. by Adam Langley · 8 years ago
  27. eebd3c8 Add SSL_(CTX_)set_tls_channel_id_enabled. by David Benjamin · 8 years ago
  28. 731058e Typedef ssl_early_callback_ctx to SSL_CLIENT_HELLO. by David Benjamin · 8 years ago
  29. cd6cfb0 Test SendReceiveIntermediate* with expected version. by Adam Langley · 8 years ago
  30. dfec182 Remove Fake TLS 1.3 code from prf.go. by Nick Harper · 8 years ago
  31. 48891ad Simplify BoGo's TLS 1.3 key derivation. by David Benjamin · 8 years ago
  32. aedf303 Parse the entire PSK extension. by David Benjamin · 8 years ago
  33. a4ee74d Skipping early data on 0RTT rejection. by Steven Valdez · 8 years ago
  34. 9b885c5 Don't allow invalid SCT lists to be set. by Adam Langley · 8 years ago
  35. cfa08c3 Enforce basic sanity of SCT lists. by Adam Langley · 8 years ago
  36. bbaf367 Add |SSL_set_retain_only_sha256_of_client_certs|. by David Benjamin · 8 years ago
  37. f01f42a Negotiate ciphers before resumption. by David Benjamin · 8 years ago
  38. 4eb95cc Parse ClientHello extensions before deciding on resumption. by David Benjamin · 8 years ago
  39. e1cc35e Tolerate cipher changes on TLS 1.3 resumption as a client. by David Benjamin · 8 years ago
  40. 2b02f4b Loosen TLS 1.3 session/cipher matching in BoGo. by David Benjamin · 8 years ago
  41. d0d532f Select TLS 1.3 cipher before resumption in BoGo. by David Benjamin · 8 years ago
  42. 71186e8 Move ExpectTicketAge out of AcceptAnySession. by David Benjamin · 8 years ago
  43. 0b8f85e Fix AcceptAnyVersion bug. by David Benjamin · 8 years ago
  44. ba28dfc Add a -repeat-until-failure flag to runner. by David Benjamin · 8 years ago
  45. 53210cb Do not send unsolicited SCTs in TLS 1.3. by David Benjamin · 8 years ago
  46. ea80f9d obfuscated_ticket_age must also be reset when comparing. by David Benjamin · 8 years ago
  47. 75f9914 Align TLS 1.2 and 1.3 server session validity checks. by David Benjamin · 8 years ago
  48. c5665c9 Remove out-of-date BoGo earlyDataContext parsing bits. by David Benjamin · 8 years ago
  49. b8d74f5 Add tests for failing cert_cb. by David Benjamin · 8 years ago
  50. dfb4138 Update suppressions for fuzzer mode. by David Benjamin · 8 years ago
  51. a833c35 Update to TLS 1.3 draft 18. by Steven Valdez · 8 years ago
  52. 2c51645 Add runner tests which send intermediate certificates. by David Benjamin · 8 years ago
  53. e6f2221 Enforce record-layer version numbers. by David Benjamin · 8 years ago
  54. 231a475 Test bad records at all cipher suites. by David Benjamin · 8 years ago
  55. da4789e Fix BoGo HelloVerifyRequest version handling. by David Benjamin · 8 years ago
  56. 9ec3798 Don't access SSL internals in bssl_shim. by David Benjamin · 8 years ago
  57. abbbee1 Detach TLS 1.3 cipher configuration from the cipher language. by David Benjamin · 8 years ago
  58. 7bb1d29 Forbid using exporters during a renego. by David Benjamin · 8 years ago
  59. 4199b0d Add tests which modify the shim ticket. by David Benjamin · 8 years ago
  60. af3b8a9 Fix multiple PSK identity parsing. by Steven Valdez · 8 years ago
  61. f85d323 TLS: Choose the max version supported by the client, not first. by Brian Smith · 8 years ago
  62. 8b17671 Test that SNI is accessible from the SNI callback. by David Benjamin · 8 years ago
  63. 1b22f85 Reject tickets from the future. by David Benjamin · 8 years ago
  64. b6b6ff3 Verifying resumption cipher validity with current configuration. by Steven Valdez · 8 years ago
  65. 079b394 Always enable GREASE for TLS 1.3 NewSessionTicket. by David Benjamin · 8 years ago
  66. 7784c4c Fix fuzzer mode suppressions. by David Benjamin · 8 years ago
  67. c984611 Fix bogo implementation of Channel ID for TLS < 1.2. by Nick Harper · 8 years ago
  68. 60a85cb Implement ChannelID for TLS 1.3. by Nick Harper · 9 years ago
  69. 3ef7697 Don't accept {sha1, ecdsa} and {sha512, ecdsa}. by David Benjamin · 8 years ago
  70. ab6306b Fix fuzzer mode suppressions. by David Benjamin · 8 years ago
  71. a128a55 Update the TLS 1.3 draft version to draft 16. by David Benjamin · 8 years ago
  72. 3baa6e1 Implement draft 16 HelloRetryRequest and cookie. by David Benjamin · 8 years ago
  73. c4aa727 Updating Key Schedule and KeyUpdate to draft 16. by Steven Valdez · 8 years ago
  74. 490469f Test unknown TLS 1.3 ServerHello extensions. by David Benjamin · 8 years ago
  75. 4fec04b Place comment(lib, *) pragmas under OPENSSL_MSVC_PRAGMA. by David Benjamin · 8 years ago version_for_cocoapods_7.0
  76. 1db9e1b Add the certificate_required alert. by David Benjamin · 8 years ago
  77. 5d9ba81 Enable more TLS 1.3 resumption tests. by David Benjamin · 8 years ago
  78. 34941c0 Forbid renego in SSL 3.0. by David Benjamin · 8 years ago
  79. a048678 Move some fields from tmp to hs. by David Benjamin · 8 years ago
  80. 1286bee Test that unknown TLS 1.3 ticket extensions are tolerated. by David Benjamin · 8 years ago
  81. 1a5e8ec Apply GREASE to TLS 1.3 tickets. by David Benjamin · 8 years ago
  82. 7f78df4 Add a few more tests around processing the server PSK extension. by David Benjamin · 8 years ago
  83. 803c77a Update crypto negotation to draft 15. by Steven Valdez · 9 years ago
  84. 5b98608 Updating NewSessionTicket message and updating PSK to Draft 15. by Steven Valdez · 9 years ago
  85. 5ecb88b Make EnableAllCiphers client-only and rename. by David Benjamin · 8 years ago
  86. daa8850 Add tests for OCSP's interaction with resumption. by David Benjamin · 8 years ago
  87. 6dbde98 Fix TLS 1.3 minimum version tests. by David Benjamin · 8 years ago
  88. ad75a66 Improve version extension tests. by David Benjamin · 8 years ago
  89. 592b532 Fix TLS 1.3 downgrade detection tests. by David Benjamin · 8 years ago
  90. 7f0965a Check versions before trying to send KeyUpdate. by David Benjamin · 8 years ago
  91. 31f5b3c Document that malloc tests require a longer timeout. by David Benjamin · 8 years ago
  92. a252b34 Add tests for very large handshake messages. by David Benjamin · 9 years ago
  93. d9791bf Apply GREASE to the version extension. by David Benjamin · 9 years ago
  94. fdd1099 Moving TLS 1.3 version negotiation into extension. by Steven Valdez · 9 years ago
  95. b1dd8cd Prepare runner's wire/version conversions for the version extension. by David Benjamin · 9 years ago
  96. 3c6a1ea Apply version/wire mapping at a higher layer in runner. by David Benjamin · 9 years ago
  97. 65ac997 Implement draft-davidben-tls-grease-01. by David Benjamin · 9 years ago
  98. 1032df5 Disable Channel ID signature checking in fuzzer mode. by David Benjamin · 9 years ago
  99. 7364719 Rename NPN-Server test. by David Benjamin · 9 years ago
  100. c07afb7 Record resumption and renewal transcripts separately. by David Benjamin · 9 years ago