1. 1e97ce3 Don't send two post-quantum initial key shares. by Adam Langley · 2 years, 2 months ago
  2. ec6425ca Drop the preference for 256-bit ciphers with CECPQ2. by Adam Langley · 2 years, 3 months ago
  3. a614d46 Add SSL_was_key_usage_invalid. by David Benjamin · 2 years, 4 months ago
  4. 3a1b730 Don't allow the caller to configure invalid signature algorithms. by David Benjamin · 2 years, 4 months ago
  5. e8f57ca Never accidentally use SSL_SIGN_RSA_PKCS1_MD5_SHA1 at TLS 1.2. by David Benjamin · 2 years, 4 months ago
  6. 5511fa8 Migrate io/ioutil uses to new APIs. by David Benjamin · 2 years, 5 months ago
  7. 4b35543 Revert "Default SSL_set_enforce_rsa_key_usage to enabled." by David Benjamin · 2 years, 5 months ago
  8. 64393b5 Default SSL_set_enforce_rsa_key_usage to enabled. by David Benjamin · 2 years, 6 months ago
  9. 361e3e0 Move the DTLS cookie to SSL_HANDSHAKE. by David Benjamin · 2 years, 7 months ago
  10. adaa322 Add handshake hints for TLS 1.2 session tickets. by David Benjamin · 2 years, 8 months ago
  11. 4a6c8fd Support handshake hints for TLS 1.2 full handshakes. by David Benjamin · 2 years, 8 months ago
  12. 451ea3c Add SSL_[CTX_]_set_compliance_policy. by Adam Langley · 2 years, 11 months ago
  13. c76da9d HPKE is now RFC 9180. by David Benjamin · 3 years, 1 month ago
  14. 5112b45 Support Bazel's test-sharding protocol. by Adam Langley · 3 years, 2 months ago
  15. 123eaae Record ClientHelloInner values in msg_callback. by David Benjamin · 3 years, 2 months ago
  16. 7198d11 Explicitly reject self-referential ech_outer_extensions. by David Benjamin · 3 years, 2 months ago
  17. ea57bcb Update HPKE test vectors. by David Benjamin · 3 years, 4 months ago
  18. 19fe794 Fix calculation of draft-13 ECH confirmation signal. by David Benjamin · 3 years, 7 months ago
  19. 18b6836 Update to draft-ietf-tls-esni-13. by David Benjamin · 3 years, 10 months ago
  20. e2cb423 Deduplicate our three ServerHello parsers. by David Benjamin · 3 years, 9 months ago
  21. 8648c53 Refer to RFCs consistently. by David Benjamin · 3 years, 7 months ago
  22. 16c3e3a runner: Test session IDs over 32 bytes. by David Benjamin · 3 years, 9 months ago
  23. ad5db96 Handle the server case in SSL_get0_ech_name_override. by David Benjamin · 3 years, 9 months ago
  24. 5514476 Update hpke_test.go. by Adam Langley · 3 years, 9 months ago
  25. ba423c9 Implement ClientHelloOuter handshakes. by David Benjamin · 3 years, 10 months ago
  26. ca7ef8c runner: Add a convenience function for base64 flags. by David Benjamin · 3 years, 10 months ago
  27. afa867b runner: Test that clients actually use renewed tickets. by David Benjamin · 3 years, 10 months ago
  28. 5d224a5 runner: Clean up test logic. by David Benjamin · 3 years, 9 months ago
  29. c41a3a9 runner: Fix process exit timeout. by David Benjamin · 3 years, 9 months ago
  30. 9cbe737 Validate ECH public names. by David Benjamin · 3 years, 10 months ago
  31. e9c5d72 Add an option to permute ClientHello extension order. by David Benjamin · 3 years, 10 months ago
  32. 5358cb5 runner: Check the test name against the protocol being tested. by David Benjamin · 3 years, 10 months ago
  33. 83a4993 Add most of an ECH client implementation. by David Benjamin · 3 years, 11 months ago
  34. 0724e3d runner: Self-check tests more accurately and earlier. by David Benjamin · 3 years, 10 months ago
  35. 26f186b Implement a handshake hint for certificate compression. by David Benjamin · 3 years, 10 months ago
  36. 7fffa46 runner: Implement ECH server for testing. by David Benjamin · 3 years, 10 months ago
  37. 1f54fd9 runner: Parse the status_request extension more strictly. by David Benjamin · 3 years, 10 months ago
  38. 00bccd6 runner: Make echIsInner a boolean. by David Benjamin · 3 years, 10 months ago
  39. 1241228 runner: Revise ECHConfig type in preparation for client implementation by David Benjamin · 3 years, 10 months ago
  40. 88df13d Fix ECH-Server-RepeatedConfigID test. by David Benjamin · 3 years, 10 months ago
  41. 3a036c7 Add SSL_ech_accepted API and ech_is_required alerts. by David Benjamin · 3 years, 10 months ago
  42. 5b7ec83 Reject the ECH extension in TLS 1.2 ServerHello. by David Benjamin · 3 years, 10 months ago
  43. bc4c91a DTLS-SRTP is only defined for DTLS. by David Benjamin · 3 years, 11 months ago
  44. a1d3bfb Cite an RFC over 9000 (draft-ietf-quic-tls is now RFC 9001). by David Benjamin · 3 years, 10 months ago
  45. 3dd9864 Test ECH server with unique and repeated config IDs. by Dan McArdle · 3 years, 10 months ago
  46. 4749d8f Implement fuzzer mode for ECH server. by Dan McArdle · 3 years, 11 months ago
  47. 3675eb3 GREASE is now RFC 8701. by David Benjamin · 3 years, 11 months ago
  48. aef0a88 runner: Reject all zero client and server randoms. by David Benjamin · 3 years, 11 months ago
  49. 49ee62f Update the ECH GREASE size selection. by David Benjamin · 3 years, 11 months ago
  50. d89ec68 Remove draft tokbind implementation. by David Benjamin · 3 years, 11 months ago
  51. ddecaab Check hs->early_session, not ssl->session, for the early data limit. by David Benjamin · 3 years, 11 months ago
  52. 94a63a5 Implement ECH draft 10 and update HPKE to draft 08. by Steven Valdez · 4 years ago
  53. b571e77 Add experimental handshake hints API. by David Benjamin · 4 years ago
  54. 94b477c Record a fuzzing corpus for the ClientHelloInner decoder. by David Benjamin · 4 years ago
  55. e2b7bb7 Only skip early data with HRR when offered. by David Benjamin · 4 years ago
  56. 00e434d Add ECH server (draft-ietf-tls-esni-09). by Daniel McArdle · 4 years, 1 month ago
  57. 61d5aab runner: Remove unused field by David Benjamin · 4 years ago
  58. ca65bff runner: Construct finishedHash earlier. by David Benjamin · 4 years ago
  59. bff8834 runner: Test different V2ClientHello challenge lengths. by David Benjamin · 4 years ago
  60. 6810f0e runner: Ensure helloBytes is always the same as hello.marshal(). by David Benjamin · 4 years ago
  61. fa2d3d5 runner: Fix ECH confirmation calculation with PSKs in tests. by David Benjamin · 4 years ago
  62. 7d2ddd2 runner: Fix HPKE parameter order. by David Benjamin · 4 years ago
  63. d791fbd runner: UpdateForHelloRetryRequest cannot fail. by David Benjamin · 4 years ago
  64. 4151b9f runner: Don't use the buffer in TLS 1.3. by David Benjamin · 4 years ago
  65. 4b854a6 runner: Don't maintain two copies of the same transcript hash. by David Benjamin · 4 years ago
  66. 99f6d4b runner: Remove remnants of SSL 3.0. by David Benjamin · 4 years ago
  67. 5f757bc runner: Fix writeClientHash and writeRecord ordering. by David Benjamin · 4 years ago
  68. 7a15a70 runner: Remove CheckTLS13DowngradeRandom. by David Benjamin · 4 years ago
  69. f225516 runner: Remove remnants of the separate HelloRetryRequest message. by David Benjamin · 4 years ago
  70. 0508271 runner: Store a cipherSuite in ClientSessionState. by David Benjamin · 4 years ago
  71. 26a589e runner: Move writeHash to the finishedHash struct. by David Benjamin · 4 years ago
  72. b62a48f Remove some now unnecessary test exclusions from split handshakes. by David Benjamin · 4 years ago
  73. 60a78dc Remove tls13-split-handshakes flag. by David Benjamin · 4 years ago
  74. 3af6226 Enforce that pre_shared_key must come with psk_key_exchange_modes. by David Benjamin · 4 years ago
  75. e5fe31c Revert "Implement rsa_pkcs1_sha256_legacy." by David Benjamin · 4 years ago
  76. b214741 Only pass -handshaker-path in split handshakes tests. by David Benjamin · 4 years ago
  77. a3437c0 Implement rsa_pkcs1_sha256_legacy. by David Benjamin · 4 years, 1 month ago
  78. 1eae297 runner: Remove redundant -enable-all-curves shim flag. by David Benjamin · 4 years, 1 month ago
  79. 6b48efa Add -rr-record flag to runner.go. by Dan McArdle · 4 years, 1 month ago
  80. 0653147 runner: Rename 'masterSecret' on session objects to plain 'secret'. by David Benjamin · 4 years, 1 month ago
  81. c02c19e Honor SSL_TLSEXT_ERR_ALERT_FATAL in the ALPN callback. by David Benjamin · 4 years, 2 months ago
  82. c5e4538 Fix TLS13SessionID-TLS13 test. by David Benjamin · 4 years, 2 months ago
  83. ae2bb64 Use ID instead of Id in Go. by David Benjamin · 4 years, 2 months ago
  84. 39093c1 Fix comments that refer to old draft of HPKE. by Dan McArdle · 4 years, 2 months ago
  85. a9319d9 Fix client 0-RTT handling with ALPS. by David Benjamin · 4 years, 2 months ago
  86. 3d8b8c3 Add support for the new QUIC TLS extension codepoint by David Schinazi · 4 years, 3 months ago
  87. c3ee9c8 Replace MockQUICTransport tags with record types. by David Benjamin · 4 years, 3 months ago
  88. e606f79 Run extension tests at all protocols. by David Benjamin · 4 years, 3 months ago
  89. 47d1274 Make QUIC tests work with early data. by David Benjamin · 4 years, 3 months ago
  90. 7a55c80 Make QUIC work with -async tests. by David Benjamin · 4 years, 3 months ago
  91. 71ed9d7 Fix ALPS state machine in QUIC servers. by David Benjamin · 4 years, 3 months ago
  92. f4a8829 runner: Allow tokbind without RI/EMS in TLS 1.3. by David Benjamin · 4 years, 3 months ago
  93. 41676bf Test that ALPS can be deferred to the ALPN callback. by David Benjamin · 4 years, 3 months ago
  94. c295935 Send ECH acceptance signal from backend server. by Dan McArdle · 4 years, 5 months ago
  95. 7dfb472 Update HPKE to draft-irtf-cfrg-hpke-07. by Dan McArdle · 4 years, 3 months ago
  96. 92c48be Update ECH GREASE to draft-ietf-tls-esni-09 by Dan McArdle · 4 years, 3 months ago
  97. 1920c6f Implement GREASE for ECH (draft-ietf-tls-esni-08). by Dan McArdle · 5 years ago
  98. 0a6bfa3 Always check the TLS 1.3 downgrade signal. by David Benjamin · 4 years, 4 months ago
  99. aec1b62 runner: add -skip by Adam Langley · 4 years, 5 months ago
  100. 51607f1 Implement draft-vvv-tls-alps-01. by Steven Valdez · 4 years, 8 months ago