- b1c6f45 Add back support for TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 by Adam Langley · 2 years ago
- 722f5d8 Fix PKCS8Test to not rely on RSA-512 by David Benjamin · 2 years ago
- 4d30888 Add a more general mechanism for deprecating TLS ciphers by David Benjamin · 2 years ago
- 6d55dc3 Add APIs to support RSA keys with large e. by David Benjamin · 2 years ago
- 5b32e81 Remove unions in GCM implementation by David Benjamin · 2 years ago
- 5e988c4 Rename EC_RAW_POINT to EC_JACOBIAN by David Benjamin · 2 years ago
- 2e565ef Clarify that X25519 also supports EVP_PKEY_new_raw_private_key, etc by David Benjamin · 2 years ago
- 1b724a6 Align Kyber names with draft-tls-westerbaan-xyber768d00 by David Benjamin · 2 years ago
- 85e6453 Remove unions in polyval implementation by David Benjamin · 2 years ago
- e7c3f47 Remove H from GCM128_KEY by David Benjamin · 2 years ago
- 62f9751 Don't make assumptions about GCM128_CONTEXT layout in aesni-gcm-x86_64.pl by David Benjamin · 2 years ago
- a7f83c4 Don't make assumptions about GCM128_CONTEXT layout in aesv8-gcm-armv8.pl by David Benjamin · 2 years ago
- 4c8bcf0 Implement the AuthEncap/AuthDecap HPKE modes by David Benjamin · 2 years ago
- 051f891 Update references to draft-irtf-cfrg-gcmsiv by David Benjamin · 2 years ago
- 77b6f25 Replace interface{} with any by David Benjamin · 2 years ago
- 86ada1e Add new APIs for creating RSA keys by David Benjamin · 2 years ago
- 048d21c Disable BlindingCacheConcurrency on FreeBSD. by David Benjamin · 2 years ago
- b811a6c Add Kyber to runner tests by Adam Langley · 2 years ago
- 9939e14c Invalidated cached RSA, DH, and DSA state when changing keys by David Benjamin · 2 years ago
- 2f6409e Support WPA 3.1 "enterprise" mode. by Adam Langley · 2 years ago
- a02b743 runner: Remove an unnecessary use of AllCurves by David Benjamin · 2 years ago
- d206f3d Move the old SPKAC types to their own section by David Benjamin · 2 years ago
- 691e45a Remove unimplemented SSL BIO_ctrl values by David Benjamin · 2 years ago
- 26669ff Don't copy all of bssl-sys into the CMake build directory by David Benjamin · 2 years ago
- b352546 Remove go:build ignore from convert_wycheproof by David Benjamin · 2 years ago
- 0c7527b X509_sign, etc., should return the length of the signature on success by David Benjamin · 2 years ago
- a0afd6a Add some missing includes by David Benjamin · 2 years ago
- d42c4e4 Specify the TLS cipher order more straightforwardly by David Benjamin · 2 years ago
- d5f3a9e Squeeze a block at a time when computing the matrix in Kyber by David Benjamin · 2 years ago
- 4b6d950 Align TRUST_TOKEN_pst_v1_voprf with draft-21 of VOPRF by Steven Valdez · 2 years ago
- ece1f86 Re-add go:build ignore lines by David Benjamin · 2 years ago
- 5748eb8 Move convert_wycheproof into its own package by David Benjamin · 2 years ago
- edf7662 Allow passing extra flags to BoGo shim by Roland Shoemaker · 2 years ago
- de2d610 Remove TLS_RSA_WITH_NULL_SHA by David Benjamin · 2 years ago
- b0b1f9d Only rerun bindgen when its dependencies change by David Benjamin · 2 years ago
- ac6d558 Add mechanism for deprecated declarations. by Bob Beck · 2 years, 1 month ago
- d5ac273 Spell includes in wrapper.h like the rest of the project by David Benjamin · 2 years ago
- bcecc7d Replace sort.Sort with sort.Slice by David Benjamin · 2 years ago
- a38d600 Fix allowlist regex in bindgen invocation by David Benjamin · 2 years ago
- 1a5570b Update docs to recommend a much more convenient CMake invocation by David Benjamin · 2 years ago
- 26ead95 Trim some unused XN_FLAG_* values by David Benjamin · 2 years ago
- e2d1401 Remove --size_t-is-usize from bindgen call by David Benjamin · 2 years ago
- 3e91d37 Clarify in ssl.h documentation not to use the verify callback by David Benjamin · 2 years ago
- 58a4094 Move the X509 time functions under "Convenience functions" by David Benjamin · 2 years ago
- 437ef4d Remove the X509at_* functions by David Benjamin · 2 years ago
- 787713b Organize X509_ATTRIBUTE functions into sections. by David Benjamin · 2 years ago
- d9f209b Document a pile of X509 print functions by David Benjamin · 2 years ago
- aa31748 Generate 64-bit Curve25519 and P256 code for MSVC by Andres Erbsen · 2 years, 1 month ago
- 32b5130 Widen ASN1_mbstring_copy and ASN1_mbstring_ncopy to ossl_ssize_t by David Benjamin · 2 years, 1 month ago
- 6776d5c Update test_fips.c with new functions added to FIPS module. by Adam Langley · 2 years ago
- a4593ce break-tests.sh: break run-time tests and use two test_fips binaries. by Adam Langley · 2 years, 8 months ago
- c466222 Skip some BIO_gets tests if tmpfile fails on Android by David Benjamin · 2 years ago
- 6e1e367 Switch to new ACVP test for TLS 1.2 KDF. by Adam Langley · 2 years ago
- cee2dbb Default SSL_set_enforce_rsa_key_usage to enabled. by David Benjamin · 2 years ago
- fa7afff add extra lints to align with Chromium rust toolchain by Nabil Wadih · 2 years ago
- 404d98b Include bindgen generated file via a build time env var, this plays nicer with other build systems like Soong and Gn. by Nabil Wadih · 2 years ago
- 480344d Move TLS 1.3 KDF functions into the FIPS module. by Adam Langley · 2 years ago
- d3acd45 Move HKDF into the FIPS module. by Adam Langley · 2 years ago
- 4ae4fb7 Drop CECPQ2 support. by Adam Langley · 2 years ago
- 298e6c2 expose a reset API on hmac which resets the current instance back to its original state keeping the same key as initially used by Nabil Wadih · 2 years ago
- 5fb362c Remove X509V3_EXT_add_list and X509V3_EXT_cleanup by David Benjamin · 2 years ago
- 8abd1b5 Remove support for "old-style" X509V3_EXT_METHODs. by David Benjamin · 2 years ago
- abfd5eb Restore some default cases in tasn_dec.c and tasn_enc.c by David Benjamin · 2 years ago
- 8cacbd9 Add functions to allow the mocking of AES hw support for testing. by Bob Beck · 2 years ago
- 9423510 Fix up do_ext_i2d's error-handling by David Benjamin · 2 years ago
- c5f762d Add Trust Token version using standardized hash2curve. by Steven Valdez · 2 years, 1 month ago
- 89de6e1 Move RSA (en|de)cryption out of the FIPS module. by Adam Langley · 2 years ago
- 7b9b9ba leaked_storage in method POLICYQUALINFO *notice_section by wangjiale3 · 2 years ago
- a438519 Fix miscellaneous size_t truncations by David Benjamin · 2 years, 1 month ago
- bf1b792 Remove SSL_CIPHER_get_rfc_name by David Benjamin · 2 years ago
- fe7a067 Run `go fmt` in `ssl/test/runner`. by Adam Langley · 2 years ago
- 8843d98 If the ret is not null, it needs to be released before return by wangjiale3 · 2 years ago
- 0c069cb Don't consume the newline in BIO_gets for fds by David Benjamin · 2 years ago
- 9a56503 RESOURCE_LEAK in method STACK_OF(TRUST_TOKEN) *voprf_unblind before return 0 by wangjiale3 · 2 years ago
- 44a389a Tidy up some lengths in SSL_SESSION by David Benjamin · 2 years, 4 months ago
- e8b168d Fix size_t truncations in bio_mem.c by David Benjamin · 2 years ago
- 6e723e5 Convert a few more ints to bools in libssl. by David Benjamin · 2 years ago
- 502d24c Add various tests for memory BIOs. by David Benjamin · 2 years ago
- d897027 Update X25519+Kyber ID. by Adam Langley · 2 years ago
- bc49415 Add comment about regenerating peg files. by Adam Langley · 2 years ago
- 58472cc Adding a C implementation of Kyber. by Sophie Schmieg · 2 years, 1 month ago
- 28226f5 Fix handling of critical X.509 policy constraints by David Benjamin · 2 years ago
- fca688f Fix policy validation when the user policy set is NULL by David Benjamin · 2 years ago
- 678bae4 Remove dynamic X509_VERIFY_PARAM registration by David Benjamin · 2 years, 1 month ago
- af0739f Const-correct sk_FOO_cmp_func by David Benjamin · 2 years, 3 months ago
- 97d48db Sort various X.509 global lists sooner by David Benjamin · 2 years, 1 month ago
- 0e8e3c6 Add a warning about OBJ_create and global state by David Benjamin · 2 years, 1 month ago
- 2e13e36 Fix parameter name for i2d_X509_EXTENSION by David Benjamin · 2 years, 1 month ago
- b6a50fd Give X509 an ASN1_ITEM again by David Benjamin · 2 years, 1 month ago
- 8ebfea7 Reject non-minimal lengths in ASN1_get_object by David Benjamin · 2 years, 1 month ago
- 2a52444 Reimplement X509 parsing without templates by David Benjamin · 2 years, 1 month ago
- 172b291 add bindings to RAND_bytes by Nabil Wadih · 2 years, 1 month ago
- 8c8629b Represent unknown universal types with V_ASN1_OTHER by David Benjamin · 2 years, 1 month ago
- 92de195 - remove dependency on hex-literal crate by Nabil Wadih · 2 years, 1 month ago
- 898de8d Rewrite c2i_ASN1_OBJECT by David Benjamin · 2 years, 1 month ago
- 173b639 Make ASN1_OBJECT_create size_t-clean. by David Benjamin · 2 years, 3 months ago
- 2cb7b33 Rewrite ASN1_OBJECT and ASN1_BOOLEAN d2i/i2d functions. by David Benjamin · 2 years, 4 months ago
- cc57542 add bindings for hkdf and update panic handler by Nabil Wadih · 2 years, 2 months ago
- 7b04d72 Get rid of the libc crate dependency in bssl-sys by Bob Beck · 2 years, 1 month ago
- 9ea4128 Set up cargo deny to deny new dependencies by default. by Bob Beck · 2 years, 1 month ago