- cd8f3d3 Enforce the keyUsage extension in TLS 1.2 client certs. by David Benjamin · 4 years, 10 months ago
- 72b095d Reword some comments. by David Benjamin · 4 years, 10 months ago
- 7f90eda Add “Z Computation” KAT. by Adam Langley · 4 years, 10 months ago
- 9c256d1 acvptool: handle negative sizeConstraint. by Adam Langley · 4 years, 10 months ago
- 0313b59 Let memory hooks override the size prefix. by Adam Langley · 4 years, 10 months ago
- fbaf1c0 acvptool: go fmt by Adam Langley · 4 years, 10 months ago
- 251b516 Assert md_size > 0. by David Benjamin · 4 years, 10 months ago
- 88024df Remove -enable-ed25519 compat hack. by Adam Langley · 4 years, 10 months ago
- 53a17f5 Add a |SSL_process_tls13_new_session_ticket|. by Adam Langley · 4 years, 10 months ago
- 2309f64 Use ctr32 optimizations for AES_ctr128_encrypt. by David Benjamin · 4 years, 11 months ago
- 8819e0b Test AES mode wrappers. by David Benjamin · 4 years, 11 months ago
- 81a998a Bump minimum CMake version. by David Benjamin · 4 years, 10 months ago
- 8519432 Modify how QUIC 0-RTT go/no-go decision is made. by Nick Harper · 4 years, 11 months ago
- 9701e84 Remove RAND_set_urandom_fd. by David Benjamin · 5 years ago
- 7b31d69 Document that getrandom support must be consistent. by David Benjamin · 4 years, 11 months ago
- 8f12996 Fix docs link for SSL_CTX_load_verify_locations by Anna Sarai Rosenberg · 4 years, 11 months ago
- 78b3337 Fix TRUST_TOKEN experiment_v1 SRR map. by Steven Valdez · 4 years, 11 months ago
- 3e4dfbb Add CRYPTO_pre_sandbox_init. by David Benjamin · 5 years ago
- 9cf9d3e Still query getauxval if reading /proc/cpuinfo fails. by David Benjamin · 5 years ago
- be28dd6 Add missing header to ec/wnaf.c by Nick Harper · 5 years ago
- b7acfff Fix OPENSSL_TSAN typo. by David Benjamin · 5 years ago
- 49e95dc Fix p256-x86_64-table.h indentation. by David Benjamin · 5 years ago
- 1274d1d Enable avx2 implementation of sha1. by Ilya Tokar · 5 years ago
- d4d501c Trim Z coordinates from the OPENSSL_SMALL P-256 tables. by David Benjamin · 5 years ago
- a810d82 Use public multi-scalar mults in Trust Tokens where applicable. by David Benjamin · 5 years ago
- b55a8c1 Use batched DLEQ proofs for Trust Token. by Steven Valdez · 5 years ago
- 7c52299 Restrict when 0-RTT will be accepted in QUIC. by Nick Harper · 5 years ago
- e32549e Disable TLS 1.3 compatibility mode for QUIC. by Nick Harper · 5 years ago
- d4a97fa Use a 5-bit comb for some Trust Tokens multiplications. by David Benjamin · 5 years ago
- 5f43b12 Use a (mostly) constant-time multi-scalar mult for Trust Tokens. by David Benjamin · 5 years ago
- ce1665b Batch inversions in Trust Tokens. by David Benjamin · 5 years ago
- 54a59c6 Rearrange the DLEQ logic slightly. by David Benjamin · 5 years ago
- 5430473 Use token hash to encode private metadata for Trust Token Experiment V1. by Steven Valdez · 5 years ago
- 802523a Introduce an EC_AFFINE abstraction. by David Benjamin · 5 years ago
- 73e0401 Make the fuzzer PRNG thread-safe. by David Benjamin · 5 years ago
- cccfb9b Disable fork-detect tests under TSAN. by Adam Langley · 5 years ago
- aa764c4 Introduce TRUST_TOKENS_experiment_v1. by David Benjamin · 5 years ago
- 69402f3 Route PMBToken calls through TRUST_TOKEN_METHOD. by David Benjamin · 5 years ago
- 239634d Introduce a TRUST_TOKEN_METHOD hook to select TRUST_TOKEN variations. by David Benjamin · 5 years ago
- ad55829 fork_detect: be robust to qemu. by Adam Langley · 5 years ago
- 90bb72c Move serialization of points inside pmbtoken.c. by David Benjamin · 5 years ago
- 090ee96 Introduce PMBTOKENS key abstractions. by David Benjamin · 5 years ago
- 17078f2 Fix the types used in token counts. by David Benjamin · 5 years ago
- dc06e32 Remove unused code from ghash-x86_64.pl. by David Benjamin · 5 years ago
- eeb5bb35 Switch the P-384 hash-to-curve to draft-07. by David Benjamin · 5 years ago
- 6a71840 Add hash-to-curve code for P384. by Steven Valdez · 5 years ago
- b36f52d Write down the expressions for all the NIST primes. by David Benjamin · 5 years ago
- 21aede9 Move fork_detect files into rand/ by Adam Langley · 5 years ago
- b1086cd Harden against fork via MADV_WIPEONFORK. by David Benjamin · 6 years ago
- 14d192e Fix typo in comment. by David Benjamin · 5 years ago
- 21f6942 Use faster addition chains for P-256 field inversion. by David Benjamin · 5 years ago
- 47b1e39 Tidy up third_party/fiat. by David Benjamin · 5 years ago
- 25ab623 Prefix g_pre_comp in p256.c as well. by David Benjamin · 5 years ago
- 8bbc5e9 Add missing curve check to ec_hash_to_scalar_p521_xmd_sha512. by David Benjamin · 5 years ago
- 1d8ef2c Add a tool to compare the output of bssl speed. by David Benjamin · 5 years ago
- 21712d5 Benchmark ECDH slightly more accurately. by David Benjamin · 5 years ago
- c878b65 Align remaining Intel copyright notice. by David Benjamin · 5 years ago
- e2af857 Don't retain T in PMBTOKEN_PRETOKEN. by David Benjamin · 5 years ago
- cbe128b Check for trailing data in TRUST_TOKEN_CLIENT_finish_issuance. by David Benjamin · 5 years ago
- 13d09f0 Properly namespace everything in third_party/fiat/p256.c. by David Benjamin · 5 years ago
- baca5b4 Update fiat-crypto. by David Benjamin · 5 years ago
- a27ed58 Add missing ERR_LIB_TRUST_TOKEN constants. by David Benjamin · 5 years ago
- 188b65a Add bssl speed support for hashtocurve and trusttoken. by Steven Valdez · 5 years ago
- 78987bb Implement DLEQ checks for Trust Token. by Steven Valdez · 5 years ago
- 367d64f Fix error-handling in EVP_BytesToKey. by David Benjamin · 5 years ago
- 8f3019e Fix Trust Token CBOR. by Steven Valdez · 5 years ago
- 7853619 Match parameter names between header and source. by David Benjamin · 5 years ago
- 538a124 Trust Token Implementation. by Steven Valdez · 5 years ago
- f37eb8d Include mem.h for |CRYPTO_memcmp| by Adam Langley · 5 years ago
- 9a798eb acvptool: add subprocess tests. by Adam Langley · 5 years ago
- 3c11bf5 Add SHA-512-256. by Adam Langley · 5 years ago
- 9fc3137 Make ec_GFp_simple_cmp constant-time. by David Benjamin · 5 years ago
- f883b98 Tidy up CRYPTO_sysrand variants. by David Benjamin · 5 years ago
- 3d22c82 Do a better job testing EC_POINT_cmp. by David Benjamin · 5 years ago
- 2a8e294 Follow-up comments to hash_to_scalar. by David Benjamin · 5 years ago
- 28987cf Add a hash_to_scalar variation of P-521's hash_to_field. by David Benjamin · 5 years ago
- f9e0cda Add SSL_SESSION_copy_without_early_data. by David Benjamin · 5 years ago
- 5902657 Double-check secret EC point multiplications. by David Benjamin · 5 years ago
- d2c5b7d Make ec_felem_equal constant-time. by David Benjamin · 5 years ago
- 0f86c14 Fix hash-to-curve comment. by David Benjamin · 5 years ago
- f20772c Make ec_GFp_simple_is_on_curve constant-time. by David Benjamin · 5 years ago
- a49c617 Implement draft-irtf-cfrg-hash-to-curve-06. by David Benjamin · 5 years ago
- 4143943 Update list of tested SDE configurations. by Adam Langley · 5 years ago
- 7a22a65 Only draw from RDRAND for additional_data if it's fast. by Adam Langley · 5 years ago
- ea53011 Generalize bn_from_montgomery_small. by David Benjamin · 5 years ago
- ad5e3e3 Remove BIGNUM from uncompressed coordinate parsing. by David Benjamin · 5 years ago
- 58add79 Add EC_RAW_POINT serialization function. by David Benjamin · 5 years ago
- 1d43e57 Base EC_FELEM conversions on bytes rather than BIGNUMs. by David Benjamin · 5 years ago
- 47a6f5b runner: Replace supportsVersions calls with allVersions. by David Benjamin · 5 years ago
- e8434d3 Enable QUIC for some perMessageTest runner tests by Nick Harper · 5 years ago
- b65e630 Move BN_nnmod calls out of low-level group_set_curve. by David Benjamin · 5 years ago
- bd1fa86 Clean up various EC inversion functions. by David Benjamin · 5 years ago
- 243a292 Start to organize ec/internal.h a little. by David Benjamin · 5 years ago
- 1284091 Fix CFI for AVX2 ChaCha20-Poly1305. by Adam Langley · 5 years ago
- 300ef47 Remove unused function prototype. by David Benjamin · 5 years ago
- af6bfbe Enable more runner tests for QUIC by Nick Harper · 5 years ago
- 72cff81 Require QUIC method with Transport Parameters and vice versa by Nick Harper · 5 years ago
- ee26602 acvptool: support non-interactive mode. by Adam Langley · 5 years ago
- 6bfd25c Add is_quic bit to SSL_SESSION by Nick Harper · 5 years ago
- d5aae81 Update SDE. by David Benjamin · 5 years ago