- c583dbe Have fewer opaque booleans in aead_test.cc by Adam Langley · 4 years, 6 months ago
- 80e3f95 Support 4096-bit keys in FIPS mode. by Adam Langley · 4 years, 6 months ago
- 40f4942 Reland "Check AlgorithmIdentifier parameters for RSA and ECDSA signatures."" by David Benjamin · 4 years, 6 months ago
- 043fba2 Clear some reported gcc -Wshadow warnings. by David Benjamin · 4 years, 6 months ago
- e9fce74 Const-correct X509V3_extensions_print. by David Benjamin · 4 years, 6 months ago
- 51607f1 Implement draft-vvv-tls-alps-01. by Steven Valdez · 4 years, 9 months ago
- 3989c99 Fix crash when flushing an SSL BIO. by David Benjamin · 4 years, 7 months ago
- f2b2ef8 Update TrustTokenV2 to use VOPRFs and assemble RR. by Steven Valdez · 4 years, 7 months ago
- 51b4281 Include rodata subsections in FIPS-shared build. by Adam Langley · 4 years, 7 months ago
- 991835d Switch x509_test.cc to use C++ raw string literals. by David Benjamin · 4 years, 7 months ago
- 723faad Fix some malloc error handling. by David Benjamin · 4 years, 7 months ago
- 9bf1634 Move Trusty workaround to the OPENSSL_LINUX define. by David Benjamin · 4 years, 7 months ago
- 6b6b66b Disable fork detection on Trusty. by Pete Bentley · 4 years, 7 months ago
- 5850a01 Disable check that X.509 extensions implies v3. by Adam Langley · 4 years, 7 months ago
- b13e7b5 Silence some clang warnings on macOS and iOS CQ bots. by David Benjamin · 4 years, 7 months ago
- cefbf9c Const-correct X509_get0_extensions. by David Benjamin · 4 years, 7 months ago
- 9adcb0a Add TrustTokenV2. by Steven Valdez · 4 years, 8 months ago
- ee4af9e Add X509_get_pathlen and X509_REVOKED_get0_extensions. by David Benjamin · 4 years, 8 months ago
- 5eeaf30 Add some accommodations for FreeRDP by Adam Langley · 4 years, 7 months ago
- ca3f243 Require non-NULL store in X509_STORE_CTX_init. by David Benjamin · 4 years, 8 months ago
- 6d70353 Const-correct X509V3_CONF_METHOD. by David Benjamin · 4 years, 8 months ago
- 6247347 Avoid unions in X509_NAME logic. by David Benjamin · 4 years, 8 months ago
- 49e9f67 Bump OPENSSL_VERSION_NUMBER to 1.1.1. by David Benjamin · 4 years, 7 months ago
- 6ad3b46 Remove ASN1_STRING_length_set. by David Benjamin · 4 years, 8 months ago
- 6a263ce Revert "Check AlgorithmIdentifier parameters for RSA and ECDSA signatures." by Adam Langley · 4 years, 8 months ago
- bc24805 Implement PSK variants of HPKE setup functions. by Daniel McArdle · 4 years, 8 months ago
- 4ef5de0 Document a few more functions in x509.h. by David Benjamin · 4 years, 8 months ago
- 298d8be Add subject key ID and authority key ID accessors. by David Benjamin · 4 years, 8 months ago
- 1c58648 Remove sxnet and pkey_usage_period extensions. by David Benjamin · 4 years, 10 months ago
- 125a38f Const-correct various X509 functions. by David Benjamin · 4 years, 8 months ago
- 95d8eaa Make X509_set_not{Before,After} functions rather than macros. by David Benjamin · 4 years, 8 months ago
- 48cb69f Add X509_get0_uids from OpenSSL 1.1.0. by David Benjamin · 4 years, 8 months ago
- 9372f38 Bound RSA and DSA key sizes better. by David Benjamin · 4 years, 9 months ago
- c947efa Add set1 versions of X509 timestamp setters. by David Benjamin · 4 years, 8 months ago
- 430ccd6 Update HPKE implementation and test vectors to draft-irtf-cfrg-hpke-05. by Daniel McArdle · 4 years, 9 months ago
- d3a5b87 Handle NULL arguments in some i2d_* functions. by Adam Langley · 4 years, 9 months ago
- a0b49d6 aarch64: support BTI and pointer authentication in assembly by Tamas Petz · 4 years, 11 months ago
- 74161f4 Enforce presence of ALPN when QUIC is in use. by Nick Harper · 4 years, 9 months ago
- 7d3a24d Fix the naming of alert error codes. by David Benjamin · 4 years, 9 months ago
- db129f3 Add X509_SIG_get0 and X509_SIG_getm. by David Benjamin · 4 years, 9 months ago
- 8b601c8 Implement HPKE. by Daniel McArdle · 4 years, 9 months ago
- cac9392 Disallow TLS 1.3 compatibility mode in QUIC. by Nick Harper · 5 years ago
- 83b74c6 Add details of 20190808 FIPS certification. by Adam Langley · 4 years, 10 months ago
- 8f88b27 Link to ws2_32 more consistently. by David Benjamin · 4 years, 10 months ago
- de19612 Allow explicitly-encoded X.509v1 versions for now. by David Benjamin · 4 years, 10 months ago
- eda849d Opaquify PKCS8_PRIV_KEY_INFO. by David Benjamin · 4 years, 10 months ago
- 5d7c2f8 Implement i2d_PUBKEY and friends without crypto/asn1. by David Benjamin · 4 years, 10 months ago
- d0637e9 Remove TRUST_TOKEN_experiment_v0. by Steven Valdez · 5 years ago
- 25638f0 Remove x509->name. by David Benjamin · 4 years, 10 months ago
- 939d426 Maybe build for AArch64 Windows. by Adam Langley · 4 years, 10 months ago
- e2abade sha1-x86_64: fix CFI. by Adam Langley · 4 years, 10 months ago
- 5d74463 Use |crypto_word_t| and |size_t| more consistently in ECC scalar recoding. by Brian Smith · 4 years, 10 months ago
- 7361ee4 Enable shaext path for sha1. by Ilya Tokar · 4 years, 10 months ago
- 430a742 Const-correct various functions in crypto/asn1. by David Benjamin · 4 years, 10 months ago
- 33f8d33 Convert X.509 accessor macros to proper functions. by David Benjamin · 4 years, 10 months ago
- 9dd9d4f Check AlgorithmIdentifier parameters for RSA and ECDSA signatures. by David Benjamin · 4 years, 10 months ago
- dd86e75 Check the X.509 version when parsing. by David Benjamin · 4 years, 10 months ago
- fd86eaa Fix x509v3_cache_extensions error-handling. by David Benjamin · 4 years, 10 months ago
- 5ddc5b1 Move crypto/x509 test data into its own directory. by David Benjamin · 4 years, 10 months ago
- 7f90eda Add “Z Computation” KAT. by Adam Langley · 4 years, 11 months ago
- 0313b59 Let memory hooks override the size prefix. by Adam Langley · 4 years, 11 months ago
- 251b516 Assert md_size > 0. by David Benjamin · 4 years, 11 months ago
- 2309f64 Use ctr32 optimizations for AES_ctr128_encrypt. by David Benjamin · 5 years ago
- 8819e0b Test AES mode wrappers. by David Benjamin · 5 years ago
- 9701e84 Remove RAND_set_urandom_fd. by David Benjamin · 5 years ago
- 78b3337 Fix TRUST_TOKEN experiment_v1 SRR map. by Steven Valdez · 5 years ago
- 3e4dfbb Add CRYPTO_pre_sandbox_init. by David Benjamin · 5 years ago
- 9cf9d3e Still query getauxval if reading /proc/cpuinfo fails. by David Benjamin · 5 years ago
- be28dd6 Add missing header to ec/wnaf.c by Nick Harper · 5 years ago
- b7acfff Fix OPENSSL_TSAN typo. by David Benjamin · 5 years ago
- 49e95dc Fix p256-x86_64-table.h indentation. by David Benjamin · 5 years ago
- 1274d1d Enable avx2 implementation of sha1. by Ilya Tokar · 5 years ago
- d4d501c Trim Z coordinates from the OPENSSL_SMALL P-256 tables. by David Benjamin · 5 years ago
- a810d82 Use public multi-scalar mults in Trust Tokens where applicable. by David Benjamin · 5 years ago
- b55a8c1 Use batched DLEQ proofs for Trust Token. by Steven Valdez · 5 years ago
- d4a97fa Use a 5-bit comb for some Trust Tokens multiplications. by David Benjamin · 5 years ago
- 5f43b12 Use a (mostly) constant-time multi-scalar mult for Trust Tokens. by David Benjamin · 5 years ago
- ce1665b Batch inversions in Trust Tokens. by David Benjamin · 5 years ago
- 54a59c6 Rearrange the DLEQ logic slightly. by David Benjamin · 5 years ago
- 5430473 Use token hash to encode private metadata for Trust Token Experiment V1. by Steven Valdez · 5 years ago
- 802523a Introduce an EC_AFFINE abstraction. by David Benjamin · 5 years ago
- 73e0401 Make the fuzzer PRNG thread-safe. by David Benjamin · 5 years ago
- cccfb9b Disable fork-detect tests under TSAN. by Adam Langley · 5 years ago
- aa764c4 Introduce TRUST_TOKENS_experiment_v1. by David Benjamin · 5 years ago
- 69402f3 Route PMBToken calls through TRUST_TOKEN_METHOD. by David Benjamin · 5 years ago
- 239634d Introduce a TRUST_TOKEN_METHOD hook to select TRUST_TOKEN variations. by David Benjamin · 5 years ago
- ad55829 fork_detect: be robust to qemu. by Adam Langley · 5 years ago
- 90bb72c Move serialization of points inside pmbtoken.c. by David Benjamin · 5 years ago
- 090ee96 Introduce PMBTOKENS key abstractions. by David Benjamin · 5 years ago
- 17078f2 Fix the types used in token counts. by David Benjamin · 5 years ago
- dc06e32 Remove unused code from ghash-x86_64.pl. by David Benjamin · 5 years ago
- eeb5bb35 Switch the P-384 hash-to-curve to draft-07. by David Benjamin · 5 years ago
- 6a71840 Add hash-to-curve code for P384. by Steven Valdez · 5 years ago
- b36f52d Write down the expressions for all the NIST primes. by David Benjamin · 5 years ago
- 21aede9 Move fork_detect files into rand/ by Adam Langley · 5 years ago
- b1086cd Harden against fork via MADV_WIPEONFORK. by David Benjamin · 6 years ago
- 14d192e Fix typo in comment. by David Benjamin · 5 years ago
- 21f6942 Use faster addition chains for P-256 field inversion. by David Benjamin · 5 years ago
- 47b1e39 Tidy up third_party/fiat. by David Benjamin · 5 years ago
- 8bbc5e9 Add missing curve check to ec_hash_to_scalar_p521_xmd_sha512. by David Benjamin · 5 years ago