- 9f2bffb Add SSL_AEAD_CTX_seal_scatter. by Martin Kreichgauer · 8 years ago
- b853f31 Fix handling of ServerHellos with omitted extensions. by David Benjamin · 8 years ago
- c386440 Add some timestamps to connect/accept failures. by David Benjamin · 8 years ago
- 2abda63 Fix TLS 1.3 variant fuzzers. by David Benjamin · 8 years ago
- dbe0158 Implement ContentType TLS 1.3 variant. by Steven Valdez · 8 years ago
- 8a5dcbc Print the socket error when connect fails. by David Benjamin · 8 years ago
- d304a2f Switch tls13_client and tls13_server to C++. by David Benjamin · 8 years ago
- 81678aa Switch t1_lib, tls_record, and tls13_both to C++. by David Benjamin · 8 years ago
- 0238d8f Switch more files to C++. by David Benjamin · 8 years ago
- b609c22 Switch ssl_privkey to C++. by David Benjamin · 8 years ago
- f526081 Switch ssl_aead_ctx, ssl_file, and ssl_lib to C++. by David Benjamin · 8 years ago
- 81a5df4 Switch ssl_ecdh to C++. by David Benjamin · 8 years ago
- e64d2c7 Convert ssl_buffer, ssl_cert, and ssl_cipher to C++. by David Benjamin · 8 years ago
- d781fc4 Switch handshake_client and handshake_server to C++. by David Benjamin · 8 years ago
- e8703a3 Switch a number of files to C++. by David Benjamin · 8 years ago
- 52586f9 Adding TLS 1.3 variant to SSL*. by Steven Valdez · 8 years ago
- 1ffb4a4 Route the TLS 1.3 experiment into the fuzzer. by David Benjamin · 8 years ago
- a502239 Actually test the TLS 1.3 experimental variant. by David Benjamin · 8 years ago
- 038da9b Move the version to an extension in the experimental TLS 1.3 encoding. by Steven Valdez · 8 years ago
- 08fea48 Fix fuzzer mode test suppressions. by David Benjamin · 8 years ago
- 520e122 Implement experimental alternate encoding of TLS 1.3. by Steven Valdez · 8 years ago
- a818134 Simplify ChangeCipherSpec code in runner. by David Benjamin · 8 years ago
- d9cbb53 Fix SSL_version on 0-RTT. by David Benjamin · 8 years ago
- a1ce856 Test record splitting at all ciphers. by David Benjamin · 8 years ago
- bf5f192 Add some addition tests for the cipher parsing code and tidy. by David Benjamin · 8 years ago
- 634f475 Test the Channel IDs are not requested without ECDHE. by David Benjamin · 8 years ago
- 99a93d4 Remove some unnecessary error codes. by David Benjamin · 8 years ago
- c3648fa Add tests for SSL_VERIFY_PEER_IF_NO_OBC and fix TLS 1.3. by David Benjamin · 8 years ago
- 364af78 Add some cipher negotiation tests. by David Benjamin · 8 years ago
- eb083b0 Remove some dead code. by David Benjamin · 8 years ago
- 413e79e Test the client rejects invalid compression methods from the server. by David Benjamin · 8 years ago
- 9343b0b Don't check renegotiation_info in fuzzer mode. by David Benjamin · 8 years ago
- 0fde2eb Update TLS fuzzer format with prepended settings. by David Benjamin · 8 years ago
- a6bae93 Never set not_resumable on an immutable session. by David Benjamin · 8 years ago
- c94998a Revise version negotiation on the Go half. by Steven Valdez · 8 years ago
- 353577c Fix SSL_set_{min,max}_proto_version APIs in invalid versions. by David Benjamin · 8 years ago
- 8f36c51 Revise version negotiation logic on the C side. by Steven Valdez · 8 years ago
- 3120950 Size TLS read buffers based on the size requested. by David Benjamin · 8 years ago
- 5df5be1a Fix record header callback on writes. by David Benjamin · 8 years ago
- 5aaaa98 Detect WatchGuard's TLS 1.3 interference failure mode. by David Benjamin · 8 years ago
- 6fff386 Support standard RFC cipher suite names alongside OpenSSL ones. by David Benjamin · 8 years ago
- 05d4c97 Simplify SSL_get0_next_proto_negotiated. by David Benjamin · 8 years ago
- 0a9bf66 Clean up some duplicated code. by David Benjamin · 8 years ago
- 68161cb Stash the computed version range in SSL_HANDSHAKE. by David Benjamin · 8 years ago
- fc08dfc Rename {ssl,ctx}->{min,max}_version. by David Benjamin · 8 years ago
- 4414874 Simplify ssl_private_key_* state machine points. by David Benjamin · 8 years ago
- 9961dff Unwind V2ClientHello counters. by David Benjamin · 8 years ago
- 0d1730d Squash together states in the TLS 1.2 server Certificate flight. by David Benjamin · 8 years ago
- b5f55c3 Squash together TLS 1.2 states for server Finished block. by David Benjamin · 8 years ago
- d98107b Remove the last of the f_err pattern. by David Benjamin · 8 years ago
- 8d606e3 Clear out f_err pattern from handshake_client.c. by David Benjamin · 8 years ago
- a75fc71 Update fuzzer mode suppressions. by David Benjamin · 8 years ago
- ca74358 Test SSL_select_next_proto and SSL_get_fd. by David Benjamin · 8 years ago
- 0391f16 Fix some malloc failure handling. by David Benjamin · 8 years ago
- e831a81 Adding support for sending early data on the client. by Steven Valdez · 8 years ago
- 24e5886 Add a test for invalid alert types. by David Benjamin · 8 years ago fips-20170615
- 1967094 Align EVP_PKEY Ed25519 API with upstream. by David Benjamin · 8 years ago
- 8ba6a14 Fix build with VS 2017. by David Benjamin · 8 years ago
- 2f3404b Enforce incrementing counter for TLS 1.2 AES-GCM. by Steven Valdez · 8 years ago
- 2d04cf0 Test with IPv6 by default, and IPv4 only if that fails. by Matthew Braithwaite · 8 years ago
- d94682d Remove ex_data's dup hook. by David Benjamin · 8 years ago
- 01f8a8c Convert stack.h to use inline functions. by David Benjamin · 8 years ago
- d55bd79 Fix SSL_COMP_get_compression_methods type signature. by David Benjamin · 8 years ago
- 48b6b8f Add SSL_CIPHER_has_SHA384_HMAC. by Alessandro Ghedini · 8 years ago
- 873ebc9 Improve TestConfig flags for initial and resumption connections. by Steven Valdez · 8 years ago
- 93731d9 Remove old SSL min/max version functions. by David Benjamin · 8 years ago
- 4d1f4ba Timeout the shim on Accept and Wait. by David Benjamin · 8 years ago
- 2997589 Unwind DHE support from BoGo. by David Benjamin · 8 years ago
- c88f245 Don't print message when waiting for urandom entropy. by Adam Langley · 8 years ago
- 321fcdc Convert default version tests in ssl_test. by David Benjamin · 8 years ago
- e11726a Properly convert more of ssl_test. by David Benjamin · 8 years ago
- a365138 Factor out the default signature algorithm logic. by David Benjamin · 8 years ago
- 4b65693 Make runner ignore entropy warnings. by Adam Langley · 8 years ago
- de254b4 Enforce max_early_data_size on the server. by Alessandro Ghedini · 8 years ago
- 71c21b4 Add SSL_CTX_set_verify_algorithm_prefs. by David Benjamin · 8 years ago
- 96bc12a Remove includeDHE from runner.go. by David Benjamin · 8 years ago
- 11fa703 Remove the last remnants of key_exchange_info. by David Benjamin · 8 years ago
- 7e06de5 Really remove DHE ciphersuites from TLS. by Matthew Braithwaite · 8 years ago
- 3cfeb95 Disable SSLv3 by default. by David Benjamin · 8 years ago
- bbba939 Acknowledge KeyUpdate messages. by David Benjamin · 8 years ago
- ebacdee Add SendServerHelloAsHelloRetryRequest test. by David Benjamin · 8 years ago
- d3bca04 Remove a batch of f_errs. by David Benjamin · 8 years ago
- 6952211 Support Ed25519 in TLS. by David Benjamin · 8 years ago
- 0aef168 Comment typo fix: 1024 bits is too small, not too large. by Adam Langley · 8 years ago
- d768c5d Support Ed25519 keys in BoGo. by David Benjamin · 8 years ago
- e1d18a7 Vendor a copy of golang.org/x/crypto/ed25519. by David Benjamin · 8 years ago
- cc17c24 Stop pretending RSA and ECDSA sigalgs are configurable. by David Benjamin · 8 years ago
- 6114c3c Clean up signature algorithm logic. by David Benjamin · 8 years ago
- a232a71 Deprecate SSL_PRIVATE_KEY_METHOD type and max_signature_len. by David Benjamin · 8 years ago
- bf833c3 Rename hs->public_key. by David Benjamin · 8 years ago
- 76feb1f Convert ssl_privkey.c to message-based signing APIs. by David Benjamin · 8 years ago
- c8ff30c Add an option to allow unknown ALPN protocols. by David Benjamin · 8 years ago chromium-3071
- 67bb45f Support enabling early data on SSL by Alessandro Ghedini · 8 years ago
- ebcb5be Sync vendored copies of Go poly1305 and curve25519. by David Benjamin · 8 years ago
- 0c05c37 Update fuzzer exclusions. by David Benjamin · 8 years ago
- 6bb507b Add missing tests for the Channel ID / 0-RTT interaction. by David Benjamin · 8 years ago
- f368c73 Fix fuzzer excludes. by Steven Valdez · 8 years ago
- 764ab98 Support and test P-224 certificates. by Adam Langley · 8 years ago
- a0ba400 Add cipher asserts for read/write app data. by Steven Valdez · 8 years ago
- ccbb165 Tidy up ssl3_choose_cipher. by David Benjamin · 8 years ago