)]}'
{
  "commit": "49e59f205bc3fc36d145405e7dcb4ef32164db38",
  "tree": "4af2dac316e424742d7a8c0e80013716b7d847fe",
  "parents": [
    "168e92c64cf80249a91de1bf0b05ee239d9e7082"
  ],
  "author": {
    "name": "Daniel McCarney",
    "email": "daniel@binaryparadox.net",
    "time": "Mon Apr 13 10:43:42 2026 -0400"
  },
  "committer": {
    "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
    "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
    "time": "Wed Apr 15 18:24:40 2026 -0700"
  },
  "message": "util/fipstools: allow rsakpg2-[basic|crt] for KTS-IFC\n\nPreviously the fipstools kts subprocess code rejected test groups that\ncorresponded to capabilities advertising keyGenerationMethods using\nanything other than rsakpg1-basic (fixed pub exp, basic format) or\nrsakpg1-crt (fixed pub exp, crt format). This commit extends the check\nto also allow rsapkg2-basic (random pub exp, basic format) and\nrsapkg2-crt (random pub exp, crt format).\n\nThe exponent (fixed or random) is already passed through to the module\nwrapper so no further code changes are required in the acvptool to\nsupport testing modules using random exponents for KTS-IFC.\n\nChange-Id: I79e941a5ac6ddbd7068cb1067b9d8b449b70e0a4\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/92527\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "e8145df676835499762dd71e9d00c8fceea630f8",
      "old_mode": 33188,
      "old_path": "util/fipstools/acvp/acvptool/subprocess/kts.go",
      "new_id": "6a05b35f1b379f28e92a0f6bd487be94946b49ce",
      "new_mode": 33188,
      "new_path": "util/fipstools/acvp/acvptool/subprocess/kts.go"
    }
  ]
}
