1. e7e36aa Test that switching versions on renego is illegal. by David Benjamin · 9 years ago
  2. 2f8ea54 Reimplement OBJ_obj2txt. by David Benjamin · 9 years ago
  3. 253c05e Always use the "no_branch" inversion algorithm for even moduli. by Brian Smith · 9 years ago
  4. a432757 Use BN_mod_inverse_odd instead of |BN_mod_inverse| for ECC. by Brian Smith · 9 years ago
  5. 4cfdf41 Use bn_mod_inverse_odd for RSA/inversion blinding. by Brian Smith · 9 years ago
  6. f9bdcc1 Split bn_mod_inverse_ex into bn_mod_inverse_{general, odd}. by Brian Smith · 9 years ago
  7. 10b09ad Factor out common logic in bn_mod_inverse_*. by Brian Smith · 9 years ago
  8. 22edd87 Resolve a small handful of size_t truncation warnings. by David Benjamin · 9 years ago
  9. b919540 Align SSL_SESSION_up_ref with OpenSSL. by David Benjamin · 9 years ago
  10. a9c3bf1 Add TLS_{client,server}_method. by David Benjamin · 9 years ago
  11. 9305a13 Tidy up PKCS1_MGF1. by David Benjamin · 9 years ago
  12. ea655fa Write a test for OBJ_obj2txt. by David Benjamin · 9 years ago
  13. db0c693 Add an API-CONVENTIONS.md document. by David Benjamin · 9 years ago
  14. 4087df9 Move more side-specific code out of tls13_process_certificate. by David Benjamin · 9 years ago
  15. bb9e36e Test client certificates carry over on session resumption. by David Benjamin · 9 years ago
  16. e455e51 Push some duplicated code into ssl_verify_cert_chain. by David Benjamin · 9 years ago
  17. 56d280d Remove the SSL_R_SESSION_ID_CONTEXT_UNINITIALIZED sanity check. by David Benjamin · 9 years ago
  18. 057b678 Remove spurious ';' and fix indentation for macro arguments in one file by Alessandro Ghedini · 9 years ago
  19. 9f55b53 Purge the remainder of asn1_mac.h. by David Benjamin · 9 years ago
  20. 721e8b7 Test that servers enforce session timeouts. by David Benjamin · 9 years ago
  21. a20e535 Add a test for session ID context logic. by David Benjamin · 9 years ago
  22. 33dad1b Stop pretending to ssl_clear_bad_session. by David Benjamin · 9 years ago
  23. cec7344 Add a CBS version of SSL_early_callback_ctx_extension_get. by David Benjamin · 9 years ago
  24. 1e6f11a Adding NewSessionTicket. by Steven Valdez · 9 years ago
  25. e8e84b9 Reject warning alerts in TLS 1.3. by David Benjamin · 9 years ago
  26. 7259f2f Prefix ext_key_share methods. by Steven Valdez · 9 years ago
  27. 7b689f6 Using NewSessionCallback for bssl client. by Steven Valdez · 9 years ago
  28. a70de14 Check for trailing data in key_share extension. by David Benjamin · 9 years ago
  29. ce079fd Add SSL_is_dtls. by David Benjamin · 9 years ago
  30. dc7a786 Use BN_nnmod instead of BN_mod in BN_mod_exp_mont_consttime. by Brian Smith · 9 years ago
  31. da2630c Remove redundant SSL_VERIFY_PEER check. by David Benjamin · 9 years ago
  32. 0b3625b Add support for TLS 1.3 PSK resumption in Go. by Nick Harper · 9 years ago
  33. afc64de Add tests to ensure our ClientHello does not change. by David Benjamin · 9 years ago
  34. 3ce4389 Move some client/server special-cases out of tls13_process_certificate. by David Benjamin · 9 years ago
  35. 78f84f4 Document a conservative input range for Montgomery math functions. by Brian Smith · 9 years ago
  36. 899b9b1 Ensure |BN_div| never gives negative zero in the no_branch code. by David Benjamin · 9 years ago
  37. 875bf04 Update comments for HMAC to give a more accurate bound than EVP_MD_MAX_SIZE by Eric Roman · 9 years ago
  38. 4501bd5 Align with OpenSSL on SSL_set_bio behavior. by David Benjamin · 9 years ago
  39. e76cdde Use newest CRL. by David Benjamin · 9 years ago
  40. 2b314fa Tolerate -0 better in BN_bn2{dec,hex} by David Benjamin · 9 years ago
  41. 7fcbfdb Calculate inverse in |BN_MONT_CTX_set| in constant time w.r.t. modulus. by Brian Smith · 9 years ago
  42. 0375127 Promise more accurate bounds than EVP_MD_MAX_SIZE. by David Benjamin · 9 years ago
  43. d4aae0f Minor typo fixes. by Adam Langley · 9 years ago
  44. 4890165 Empty signature algorithms in TLS 1.3 CertificateRequest is illegal. by David Benjamin · 9 years ago
  45. 0c40a96 Send unsupported_extension on unexpected ServerHello extensions. by David Benjamin · 9 years ago
  46. 636ff1c Convert rsa_1024_key.pem to a PKCS#8 PEM blob. by David Benjamin · 9 years ago
  47. c5aa841 Fix up header file handling. by David Benjamin · 9 years ago
  48. 9498e74 Don't have the default value of |verify_result| be X509_V_OK. by Adam Langley · 9 years ago
  49. 0d1b096 Fix mixed comment markers. by David Benjamin · 9 years ago
  50. 1dc53d2 Adding handling for KeyUpdate post-handshake message. by Steven Valdez · 9 years ago
  51. 8e1c7be Adding Post-Handshake message handling. by Steven Valdez · 9 years ago
  52. 87eab49 Splitting SSL session state. by Steven Valdez · 9 years ago
  53. 163f29a Move post-handshake message handling out of read_app_data. by David Benjamin · 9 years ago
  54. e97fb48 Test that V2ClientHello must be the first record. by David Benjamin · 9 years ago
  55. ec3cb3a Add |BN_mod_inverse_blinded| and use it in RSA blinding. by Brian Smith · 9 years ago
  56. 173bf93 Accept the special token 'UNTRANSLATED_ERROR' instead of the expected error code when -loose-errors argument is used. Usable for non-bssl shims by EKR · 9 years ago
  57. ccd511e Add a test for BN_cmp_word. by David Benjamin · 9 years ago
  58. 4edca0b Add BN_rand_range_ex and use internally. by Brian Smith · 9 years ago
  59. 4792110 Forbid interleaving app data in a HelloRequest. by David Benjamin · 9 years ago
  60. 17e1292 Make runner's -test parameter take glob patterns. by David Benjamin · 9 years ago
  61. 4497e58 Switch finish_handshake to release_current_message. by David Benjamin · 9 years ago
  62. 02edcd0 Reject stray post-Finished messages in DTLS. by David Benjamin · 9 years ago
  63. 9fd9580 Remove ssl->s3->message_complete in favor of ssl->init_msg. by David Benjamin · 9 years ago
  64. a950948 Use SSL3_HM_HEADER_LENGTH a bit more. by David Benjamin · 9 years ago
  65. 481b9d2 Remove begin_handshake and allocate init_buf lazily. by David Benjamin · 9 years ago
  66. 7baf681 Convert all of our test private keys to PKCS#8 PEM blobs. by David Benjamin · 9 years ago
  67. 5a8d48e Fix the comments for |SHA[256|384|512]_Transform|. by Adam Langley · 9 years ago
  68. 4905454 Clear init_msg/init_num whenever we clear the backing store. by David Benjamin · 9 years ago
  69. bd4679d Tidy up ssl3_get_message slightly. by David Benjamin · 9 years ago
  70. 21c0028 Implement KeyUpdate in Go. by David Benjamin · 9 years ago
  71. 92d60c2 Use Fermat's Little Theorem when converting points to affine. by Brian Smith · 9 years ago
  72. 286fbf2 Add tests for |BN_mod_inverse| with modulus 1. by Brian Smith · 9 years ago
  73. d5a4ecb Support accepting TLS 1.3 tickets on the Go client. by David Benjamin · 9 years ago
  74. 5810488 Add support for sending TLS 1.3 tickets in Go. by David Benjamin · 9 years ago
  75. 4528e2b Take DHE ciphers out of 1.3 in Go. by David Benjamin · 9 years ago
  76. 574f37f gofmt crypto/bn/check_bn_tests.go. by Brian Smith · 9 years ago
  77. 842ae6c Support unimplemented tests in test runner. by EKR · 9 years ago
  78. 7241ca5 Avoid one |BN_mod_inverse| in |RSA_check_key|. by Brian Smith · 9 years ago
  79. 289c843 Refactor BN_rand_range to reduce code duplication. by Brian Smith · 9 years ago
  80. 69e0a45 Remove OPENSSL_ALLOW_PROXY_CERTS. by David Benjamin · 9 years ago
  81. ac6a84b Always check that the value returned by asn1_do_adb() is non-NULL. by David Benjamin · 9 years ago
  82. 64ac925 Fix ASN1_STRING_to_UTF8 could not convert NumericString by David Benjamin · 9 years ago
  83. 1d4f4c0 Add SSL_send_fatal_alert. by David Benjamin · 9 years ago
  84. abaef2e Fix omitted selector handling. by David Benjamin · 9 years ago
  85. ee2aea0 Fix an error path leak in int X509_ATTRIBUTE_set1_data() by David Benjamin · 9 years ago
  86. 5116263 Import (unreachable) bsaes-armv7.pl XTS fixes. by David Benjamin · 9 years ago
  87. 599922f Fix an error path leak in do_ext_nconf() by David Benjamin · 9 years ago
  88. 4ff41f6 Check for overflow in CBB_add_u24. by David Benjamin · 9 years ago
  89. d067e4c Commit-Queue config: effectively remove Andorid builders. by Andrii Shyshkalov · 9 years ago
  90. ebec9c3 Inline bio_set. by David Benjamin · 9 years ago
  91. 12d2c48 Add a packed renegotiation test. by David Benjamin · 9 years ago
  92. 0e04498 Fix funny line-wrapping. by David Benjamin · 9 years ago
  93. 613fe3b Call expect_flight and received_flight in the 1.3 logic. by David Benjamin · 9 years ago
  94. a68c118 Make SSL_get_extms_support a little friendlier. by David Benjamin · 9 years ago
  95. b9afd51 Move some typedefs to base.h. by Matt Braithwaite · 9 years ago
  96. 5e7e7cc Add SSL_set_fallback_version. by David Benjamin · 9 years ago
  97. d5d24fd Add mod_mul tests where M ≪ A and B. by Adam Langley · 9 years ago
  98. 17b6a7f Add myriad2 cpu config awareness. by Radu Margarint · 9 years ago
  99. b57e4fc Migrate from Android.mk to Android.bp by Dan Willemsen · 9 years ago
  100. 00d7a7c Drop cached certificate signature validity flag by David Benjamin · 9 years ago