1. c583dbe Have fewer opaque booleans in aead_test.cc by Adam Langley · 4 years, 6 months ago
  2. 80e3f95 Support 4096-bit keys in FIPS mode. by Adam Langley · 4 years, 6 months ago
  3. 40f4942 Reland "Check AlgorithmIdentifier parameters for RSA and ECDSA signatures."" by David Benjamin · 4 years, 6 months ago
  4. 043fba2 Clear some reported gcc -Wshadow warnings. by David Benjamin · 4 years, 6 months ago
  5. e9fce74 Const-correct X509V3_extensions_print. by David Benjamin · 4 years, 6 months ago
  6. 51607f1 Implement draft-vvv-tls-alps-01. by Steven Valdez · 4 years, 9 months ago
  7. 3989c99 Fix crash when flushing an SSL BIO. by David Benjamin · 4 years, 7 months ago
  8. f2b2ef8 Update TrustTokenV2 to use VOPRFs and assemble RR. by Steven Valdez · 4 years, 7 months ago
  9. 51b4281 Include rodata subsections in FIPS-shared build. by Adam Langley · 4 years, 7 months ago
  10. 991835d Switch x509_test.cc to use C++ raw string literals. by David Benjamin · 4 years, 7 months ago
  11. 723faad Fix some malloc error handling. by David Benjamin · 4 years, 7 months ago
  12. 9bf1634 Move Trusty workaround to the OPENSSL_LINUX define. by David Benjamin · 4 years, 7 months ago
  13. 6b6b66b Disable fork detection on Trusty. by Pete Bentley · 4 years, 7 months ago
  14. 5850a01 Disable check that X.509 extensions implies v3. by Adam Langley · 4 years, 7 months ago
  15. b13e7b5 Silence some clang warnings on macOS and iOS CQ bots. by David Benjamin · 4 years, 7 months ago
  16. cefbf9c Const-correct X509_get0_extensions. by David Benjamin · 4 years, 7 months ago
  17. 9adcb0a Add TrustTokenV2. by Steven Valdez · 4 years, 8 months ago
  18. ee4af9e Add X509_get_pathlen and X509_REVOKED_get0_extensions. by David Benjamin · 4 years, 8 months ago
  19. 5eeaf30 Add some accommodations for FreeRDP by Adam Langley · 4 years, 7 months ago
  20. ca3f243 Require non-NULL store in X509_STORE_CTX_init. by David Benjamin · 4 years, 8 months ago
  21. 6d70353 Const-correct X509V3_CONF_METHOD. by David Benjamin · 4 years, 8 months ago
  22. 6247347 Avoid unions in X509_NAME logic. by David Benjamin · 4 years, 8 months ago
  23. 49e9f67 Bump OPENSSL_VERSION_NUMBER to 1.1.1. by David Benjamin · 4 years, 7 months ago
  24. 6ad3b46 Remove ASN1_STRING_length_set. by David Benjamin · 4 years, 8 months ago
  25. 6a263ce Revert "Check AlgorithmIdentifier parameters for RSA and ECDSA signatures." by Adam Langley · 4 years, 8 months ago
  26. bc24805 Implement PSK variants of HPKE setup functions. by Daniel McArdle · 4 years, 8 months ago
  27. 4ef5de0 Document a few more functions in x509.h. by David Benjamin · 4 years, 8 months ago
  28. 298d8be Add subject key ID and authority key ID accessors. by David Benjamin · 4 years, 8 months ago
  29. 1c58648 Remove sxnet and pkey_usage_period extensions. by David Benjamin · 4 years, 10 months ago
  30. 125a38f Const-correct various X509 functions. by David Benjamin · 4 years, 8 months ago
  31. 95d8eaa Make X509_set_not{Before,After} functions rather than macros. by David Benjamin · 4 years, 8 months ago
  32. 48cb69f Add X509_get0_uids from OpenSSL 1.1.0. by David Benjamin · 4 years, 8 months ago
  33. 9372f38 Bound RSA and DSA key sizes better. by David Benjamin · 4 years, 9 months ago
  34. c947efa Add set1 versions of X509 timestamp setters. by David Benjamin · 4 years, 8 months ago
  35. 430ccd6 Update HPKE implementation and test vectors to draft-irtf-cfrg-hpke-05. by Daniel McArdle · 4 years, 9 months ago
  36. d3a5b87 Handle NULL arguments in some i2d_* functions. by Adam Langley · 4 years, 9 months ago
  37. a0b49d6 aarch64: support BTI and pointer authentication in assembly by Tamas Petz · 4 years, 11 months ago
  38. 74161f4 Enforce presence of ALPN when QUIC is in use. by Nick Harper · 4 years, 9 months ago
  39. 7d3a24d Fix the naming of alert error codes. by David Benjamin · 4 years, 9 months ago
  40. db129f3 Add X509_SIG_get0 and X509_SIG_getm. by David Benjamin · 4 years, 9 months ago
  41. 8b601c8 Implement HPKE. by Daniel McArdle · 4 years, 9 months ago
  42. cac9392 Disallow TLS 1.3 compatibility mode in QUIC. by Nick Harper · 5 years ago
  43. 83b74c6 Add details of 20190808 FIPS certification. by Adam Langley · 4 years, 10 months ago
  44. 8f88b27 Link to ws2_32 more consistently. by David Benjamin · 4 years, 10 months ago
  45. de19612 Allow explicitly-encoded X.509v1 versions for now. by David Benjamin · 4 years, 10 months ago
  46. eda849d Opaquify PKCS8_PRIV_KEY_INFO. by David Benjamin · 4 years, 10 months ago
  47. 5d7c2f8 Implement i2d_PUBKEY and friends without crypto/asn1. by David Benjamin · 4 years, 10 months ago
  48. d0637e9 Remove TRUST_TOKEN_experiment_v0. by Steven Valdez · 5 years ago
  49. 25638f0 Remove x509->name. by David Benjamin · 4 years, 10 months ago
  50. 939d426 Maybe build for AArch64 Windows. by Adam Langley · 4 years, 10 months ago
  51. e2abade sha1-x86_64: fix CFI. by Adam Langley · 4 years, 10 months ago
  52. 5d74463 Use |crypto_word_t| and |size_t| more consistently in ECC scalar recoding. by Brian Smith · 4 years, 10 months ago
  53. 7361ee4 Enable shaext path for sha1. by Ilya Tokar · 4 years, 10 months ago
  54. 430a742 Const-correct various functions in crypto/asn1. by David Benjamin · 4 years, 10 months ago
  55. 33f8d33 Convert X.509 accessor macros to proper functions. by David Benjamin · 4 years, 10 months ago
  56. 9dd9d4f Check AlgorithmIdentifier parameters for RSA and ECDSA signatures. by David Benjamin · 4 years, 10 months ago
  57. dd86e75 Check the X.509 version when parsing. by David Benjamin · 4 years, 10 months ago
  58. fd86eaa Fix x509v3_cache_extensions error-handling. by David Benjamin · 4 years, 10 months ago
  59. 5ddc5b1 Move crypto/x509 test data into its own directory. by David Benjamin · 4 years, 10 months ago
  60. 7f90eda Add “Z Computation” KAT. by Adam Langley · 4 years, 11 months ago
  61. 0313b59 Let memory hooks override the size prefix. by Adam Langley · 4 years, 11 months ago
  62. 251b516 Assert md_size > 0. by David Benjamin · 4 years, 11 months ago
  63. 2309f64 Use ctr32 optimizations for AES_ctr128_encrypt. by David Benjamin · 5 years ago
  64. 8819e0b Test AES mode wrappers. by David Benjamin · 5 years ago
  65. 9701e84 Remove RAND_set_urandom_fd. by David Benjamin · 5 years ago
  66. 78b3337 Fix TRUST_TOKEN experiment_v1 SRR map. by Steven Valdez · 5 years ago
  67. 3e4dfbb Add CRYPTO_pre_sandbox_init. by David Benjamin · 5 years ago
  68. 9cf9d3e Still query getauxval if reading /proc/cpuinfo fails. by David Benjamin · 5 years ago
  69. be28dd6 Add missing header to ec/wnaf.c by Nick Harper · 5 years ago
  70. b7acfff Fix OPENSSL_TSAN typo. by David Benjamin · 5 years ago
  71. 49e95dc Fix p256-x86_64-table.h indentation. by David Benjamin · 5 years ago
  72. 1274d1d Enable avx2 implementation of sha1. by Ilya Tokar · 5 years ago
  73. d4d501c Trim Z coordinates from the OPENSSL_SMALL P-256 tables. by David Benjamin · 5 years ago
  74. a810d82 Use public multi-scalar mults in Trust Tokens where applicable. by David Benjamin · 5 years ago
  75. b55a8c1 Use batched DLEQ proofs for Trust Token. by Steven Valdez · 5 years ago
  76. d4a97fa Use a 5-bit comb for some Trust Tokens multiplications. by David Benjamin · 5 years ago
  77. 5f43b12 Use a (mostly) constant-time multi-scalar mult for Trust Tokens. by David Benjamin · 5 years ago
  78. ce1665b Batch inversions in Trust Tokens. by David Benjamin · 5 years ago
  79. 54a59c6 Rearrange the DLEQ logic slightly. by David Benjamin · 5 years ago
  80. 5430473 Use token hash to encode private metadata for Trust Token Experiment V1. by Steven Valdez · 5 years ago
  81. 802523a Introduce an EC_AFFINE abstraction. by David Benjamin · 5 years ago
  82. 73e0401 Make the fuzzer PRNG thread-safe. by David Benjamin · 5 years ago
  83. cccfb9b Disable fork-detect tests under TSAN. by Adam Langley · 5 years ago
  84. aa764c4 Introduce TRUST_TOKENS_experiment_v1. by David Benjamin · 5 years ago
  85. 69402f3 Route PMBToken calls through TRUST_TOKEN_METHOD. by David Benjamin · 5 years ago
  86. 239634d Introduce a TRUST_TOKEN_METHOD hook to select TRUST_TOKEN variations. by David Benjamin · 5 years ago
  87. ad55829 fork_detect: be robust to qemu. by Adam Langley · 5 years ago
  88. 90bb72c Move serialization of points inside pmbtoken.c. by David Benjamin · 5 years ago
  89. 090ee96 Introduce PMBTOKENS key abstractions. by David Benjamin · 5 years ago
  90. 17078f2 Fix the types used in token counts. by David Benjamin · 5 years ago
  91. dc06e32 Remove unused code from ghash-x86_64.pl. by David Benjamin · 5 years ago
  92. eeb5bb35 Switch the P-384 hash-to-curve to draft-07. by David Benjamin · 5 years ago
  93. 6a71840 Add hash-to-curve code for P384. by Steven Valdez · 5 years ago
  94. b36f52d Write down the expressions for all the NIST primes. by David Benjamin · 5 years ago
  95. 21aede9 Move fork_detect files into rand/ by Adam Langley · 5 years ago
  96. b1086cd Harden against fork via MADV_WIPEONFORK. by David Benjamin · 6 years ago
  97. 14d192e Fix typo in comment. by David Benjamin · 5 years ago
  98. 21f6942 Use faster addition chains for P-256 field inversion. by David Benjamin · 5 years ago
  99. 47b1e39 Tidy up third_party/fiat. by David Benjamin · 5 years ago
  100. 8bbc5e9 Add missing curve check to ec_hash_to_scalar_p521_xmd_sha512. by David Benjamin · 5 years ago