Sign in
boringssl
/
boringssl.git
/
520e1220bb7557b491627ebbef96ce2d3a0c6368
/
ssl
520e122
Implement experimental alternate encoding of TLS 1.3.
by Steven Valdez
· 8 years ago
a818134
Simplify ChangeCipherSpec code in runner.
by David Benjamin
· 8 years ago
d9cbb53
Fix SSL_version on 0-RTT.
by David Benjamin
· 8 years ago
a1ce856
Test record splitting at all ciphers.
by David Benjamin
· 8 years ago
bf5f192
Add some addition tests for the cipher parsing code and tidy.
by David Benjamin
· 8 years ago
634f475
Test the Channel IDs are not requested without ECDHE.
by David Benjamin
· 8 years ago
99a93d4
Remove some unnecessary error codes.
by David Benjamin
· 8 years ago
c3648fa
Add tests for SSL_VERIFY_PEER_IF_NO_OBC and fix TLS 1.3.
by David Benjamin
· 8 years ago
364af78
Add some cipher negotiation tests.
by David Benjamin
· 8 years ago
eb083b0
Remove some dead code.
by David Benjamin
· 8 years ago
413e79e
Test the client rejects invalid compression methods from the server.
by David Benjamin
· 8 years ago
9343b0b
Don't check renegotiation_info in fuzzer mode.
by David Benjamin
· 8 years ago
0fde2eb
Update TLS fuzzer format with prepended settings.
by David Benjamin
· 8 years ago
a6bae93
Never set not_resumable on an immutable session.
by David Benjamin
· 8 years ago
c94998a
Revise version negotiation on the Go half.
by Steven Valdez
· 8 years ago
353577c
Fix SSL_set_{min,max}_proto_version APIs in invalid versions.
by David Benjamin
· 8 years ago
8f36c51
Revise version negotiation logic on the C side.
by Steven Valdez
· 8 years ago
3120950
Size TLS read buffers based on the size requested.
by David Benjamin
· 8 years ago
5df5be1a
Fix record header callback on writes.
by David Benjamin
· 8 years ago
5aaaa98
Detect WatchGuard's TLS 1.3 interference failure mode.
by David Benjamin
· 8 years ago
6fff386
Support standard RFC cipher suite names alongside OpenSSL ones.
by David Benjamin
· 8 years ago
05d4c97
Simplify SSL_get0_next_proto_negotiated.
by David Benjamin
· 8 years ago
0a9bf66
Clean up some duplicated code.
by David Benjamin
· 8 years ago
68161cb
Stash the computed version range in SSL_HANDSHAKE.
by David Benjamin
· 8 years ago
fc08dfc
Rename {ssl,ctx}->{min,max}_version.
by David Benjamin
· 8 years ago
4414874
Simplify ssl_private_key_* state machine points.
by David Benjamin
· 8 years ago
9961dff
Unwind V2ClientHello counters.
by David Benjamin
· 8 years ago
0d1730d
Squash together states in the TLS 1.2 server Certificate flight.
by David Benjamin
· 8 years ago
b5f55c3
Squash together TLS 1.2 states for server Finished block.
by David Benjamin
· 8 years ago
d98107b
Remove the last of the f_err pattern.
by David Benjamin
· 8 years ago
8d606e3
Clear out f_err pattern from handshake_client.c.
by David Benjamin
· 8 years ago
a75fc71
Update fuzzer mode suppressions.
by David Benjamin
· 8 years ago
ca74358
Test SSL_select_next_proto and SSL_get_fd.
by David Benjamin
· 8 years ago
0391f16
Fix some malloc failure handling.
by David Benjamin
· 8 years ago
e831a81
Adding support for sending early data on the client.
by Steven Valdez
· 8 years ago
24e5886
Add a test for invalid alert types.
by David Benjamin
· 8 years ago
fips-20170615
1967094
Align EVP_PKEY Ed25519 API with upstream.
by David Benjamin
· 8 years ago
8ba6a14
Fix build with VS 2017.
by David Benjamin
· 8 years ago
2f3404b
Enforce incrementing counter for TLS 1.2 AES-GCM.
by Steven Valdez
· 8 years ago
2d04cf0
Test with IPv6 by default, and IPv4 only if that fails.
by Matthew Braithwaite
· 8 years ago
d94682d
Remove ex_data's dup hook.
by David Benjamin
· 8 years ago
01f8a8c
Convert stack.h to use inline functions.
by David Benjamin
· 8 years ago
d55bd79
Fix SSL_COMP_get_compression_methods type signature.
by David Benjamin
· 8 years ago
48b6b8f
Add SSL_CIPHER_has_SHA384_HMAC.
by Alessandro Ghedini
· 8 years ago
873ebc9
Improve TestConfig flags for initial and resumption connections.
by Steven Valdez
· 8 years ago
93731d9
Remove old SSL min/max version functions.
by David Benjamin
· 8 years ago
4d1f4ba
Timeout the shim on Accept and Wait.
by David Benjamin
· 8 years ago
2997589
Unwind DHE support from BoGo.
by David Benjamin
· 8 years ago
c88f245
Don't print message when waiting for urandom entropy.
by Adam Langley
· 8 years ago
321fcdc
Convert default version tests in ssl_test.
by David Benjamin
· 8 years ago
e11726a
Properly convert more of ssl_test.
by David Benjamin
· 8 years ago
a365138
Factor out the default signature algorithm logic.
by David Benjamin
· 8 years ago
4b65693
Make runner ignore entropy warnings.
by Adam Langley
· 8 years ago
de254b4
Enforce max_early_data_size on the server.
by Alessandro Ghedini
· 8 years ago
71c21b4
Add SSL_CTX_set_verify_algorithm_prefs.
by David Benjamin
· 8 years ago
96bc12a
Remove includeDHE from runner.go.
by David Benjamin
· 8 years ago
11fa703
Remove the last remnants of key_exchange_info.
by David Benjamin
· 8 years ago
7e06de5
Really remove DHE ciphersuites from TLS.
by Matthew Braithwaite
· 8 years ago
3cfeb95
Disable SSLv3 by default.
by David Benjamin
· 8 years ago
bbba939
Acknowledge KeyUpdate messages.
by David Benjamin
· 8 years ago
ebacdee
Add SendServerHelloAsHelloRetryRequest test.
by David Benjamin
· 8 years ago
d3bca04
Remove a batch of f_errs.
by David Benjamin
· 8 years ago
6952211
Support Ed25519 in TLS.
by David Benjamin
· 8 years ago
0aef168
Comment typo fix: 1024 bits is too small, not too large.
by Adam Langley
· 8 years ago
d768c5d
Support Ed25519 keys in BoGo.
by David Benjamin
· 8 years ago
e1d18a7
Vendor a copy of golang.org/x/crypto/ed25519.
by David Benjamin
· 8 years ago
cc17c24
Stop pretending RSA and ECDSA sigalgs are configurable.
by David Benjamin
· 8 years ago
6114c3c
Clean up signature algorithm logic.
by David Benjamin
· 8 years ago
a232a71
Deprecate SSL_PRIVATE_KEY_METHOD type and max_signature_len.
by David Benjamin
· 8 years ago
bf833c3
Rename hs->public_key.
by David Benjamin
· 8 years ago
76feb1f
Convert ssl_privkey.c to message-based signing APIs.
by David Benjamin
· 8 years ago
c8ff30c
Add an option to allow unknown ALPN protocols.
by David Benjamin
· 8 years ago
chromium-3071
67bb45f
Support enabling early data on SSL
by Alessandro Ghedini
· 8 years ago
ebcb5be
Sync vendored copies of Go poly1305 and curve25519.
by David Benjamin
· 8 years ago
0c05c37
Update fuzzer exclusions.
by David Benjamin
· 8 years ago
6bb507b
Add missing tests for the Channel ID / 0-RTT interaction.
by David Benjamin
· 8 years ago
f368c73
Fix fuzzer excludes.
by Steven Valdez
· 8 years ago
764ab98
Support and test P-224 certificates.
by Adam Langley
· 8 years ago
a0ba400
Add cipher asserts for read/write app data.
by Steven Valdez
· 8 years ago
ccbb165
Tidy up ssl3_choose_cipher.
by David Benjamin
· 8 years ago
8c26d75
Test the behavior of running SSL_do_handshake twice in a row.
by David Benjamin
· 8 years ago
0f5d7d3
Just allocate what's needed for SSL write buffers.
by David Benjamin
· 8 years ago
bbfe603
Clean up end_of_early_data processing.
by David Benjamin
· 8 years ago
681eb6a
Adding support for receiving early data on the server.
by Steven Valdez
· 8 years ago
32c8927
Add a test for missing end_of_early_data.
by David Benjamin
· 8 years ago
065d733
Test ticket age skew when resuming a resumed session.
by David Benjamin
· 8 years ago
2a07072
Prevent Channel ID and Custom Extensions on 0-RTT.
by Steven Valdez
· 8 years ago
246eeee
Make RI on TLS 1.3 alert with ILLEGAL_PARAMETER.
by Steven Valdez
· 8 years ago
794cc59
Send half-RTT tickets when negotiating 0-RTT.
by David Benjamin
· 8 years ago
3cb1246
Remove session_tickets_sent.
by David Benjamin
· 8 years ago
4784b99
Use set_{accept,connect}_state + do_handshake in bssl_shim.
by David Benjamin
· 8 years ago
7d2dbc3
Add a comment around the set_{min,max}_version logic.
by David Benjamin
· 8 years ago
e3843d4
Run all state machine coverage tests on implicit handshake.
by David Benjamin
· 8 years ago
bbf4246
Add a test that ALPN is rejected on renegotiation.
by David Benjamin
· 8 years ago
2d85062
Add Data-less Zero-RTT support.
by Steven Valdez
· 8 years ago
57e81e6
Name |select_certificate_cb| return values
by Alessandro Ghedini
· 8 years ago
cedc6f1
Remove DHE ciphersuites from TLS.
by Matthew Braithwaite
· 8 years ago
5c12778
Convert bio_test to GTest.
by David Benjamin
· 8 years ago
73812e0
Fix SSLv3 version check in BoGo.
by David Benjamin
· 8 years ago
2070f8a
Apply bugs to second, TLS 1.3 ClientHello.
by Adam Langley
· 8 years ago
Next »