2364 Revīzijas (b22c9fea475251b5f83aaa444ed3db3dc1161556)

Autors SHA1 Ziņojums Datums
  Adam Langley 2d38b83976 Remove separate default group list for servers. pirms 5 gadiem
  Adam Langley fcc1ad78f9 Enable all curves (inc CECPQ2) during fuzzing. pirms 5 gadiem
  David Benjamin 20a9b409bb runner: Don't generate an RSA key on startup. pirms 5 gadiem
  Jesse Selover d7266ecc9b Enforce key usage for RSA keys in TLS 1.2. pirms 5 gadiem
  Filippo Valsorda 73308b6606 Avoid SCT/OCSP extensions in SH on {Omit|Empty}Extensions pirms 5 gadiem
  Christopher Patton 6c1b376e1d Implement server support for delegated credentials. pirms 6 gadiem
  Adam Langley 9801a07145 Tweak some slightly fragile tests. pirms 5 gadiem
  Adam Langley 4bfab5d9d7 Make 256-bit ciphers a preference for CECPQ2, not a requirement. pirms 5 gadiem
  David Benjamin fa81cc65dd Update comments around JDK11 workaround. pirms 5 gadiem
  David Benjamin 14c611cf91 Don't pass NULL,0 to qsort. pirms 5 gadiem
  Adam Langley 823effe975 Revert "Fix protos_len size in SSL_set_alpn_protos and SSL_CTX_set_alpn_protos" pirms 5 gadiem
  Alessandro Ghedini 3cbb0299a2 Allow configuring QUIC method per-connection pirms 5 gadiem
  Steven Valdez b84674b2d2 Delete the variants/draft code. pirms 6 gadiem
  Raul Tambre 35771ff8af Fix protos_len size in SSL_set_alpn_protos and SSL_CTX_set_alpn_protos pirms 5 gadiem
  Christopher Patton 9cde848bd1 Use handshake parameters to decide if cert/key are available pirms 6 gadiem
  David Benjamin 17d553d299 Add a CFI tester to CHECK_ABI. pirms 5 gadiem
  Alessandro Ghedini 2cc6f449d7 Use same HKDF label as TLS 1.3 for QUIC as per draft-ietf-quic-tls-17 pirms 5 gadiem
  Adam Langley ba9ad6628c Add |SSL_key_update|. pirms 5 gadiem
  Adam Langley 9700b44ff5 HRSS: omit reconstruction of ciphertext. pirms 5 gadiem
  Adam Langley a6a049a6fb Add start of infrastructure for checking constant-time properties. pirms 5 gadiem
  David Benjamin 4cce955d14 Fix thread-safety bug in SSL_get_peer_cert_chain. pirms 5 gadiem
  Adam Langley 200fe6786b Remove HRSS confirmation hash. pirms 5 gadiem
  Adam Langley d6e1f230b3 Add |SSL_export_traffic_secrets|. pirms 5 gadiem
  David Benjamin 43cc9c6e86 Do not allow AES_128_GCM_SHA256 with CECPQ2. pirms 5 gadiem
  Adam Langley 7b935937b1 Add initial HRSS support. pirms 6 gadiem
  David Benjamin 602f4669ab Forbid empty CertificateRequestsupported_signature_algorithms in TLS 1.2. pirms 5 gadiem
  Adam Langley e6ad7a027f Drop some explicit SSLKeyShare destructors. pirms 5 gadiem
  David Benjamin 278b3120ee Validate ClientHellos in tests some more. pirms 6 gadiem
  David Benjamin 9113e0996f Satisfy golint. pirms 6 gadiem
  David Benjamin 6965d25602 Work around a JDK 11 TLS 1.3 bug. pirms 6 gadiem
  Adam Langley c65a1f4949 go fmt pirms 6 gadiem
  David Benjamin ce61710062 Move JSON test results code into a common module. pirms 6 gadiem
  Jesse Selover f241a59dcc In 0RTT mode, reverify the server certificate before sending early data. pirms 6 gadiem
  Steven Valdez e6eef1ca16 Add post-handshake support for the QUIC API. pirms 6 gadiem
  David Benjamin ce45588695 Speculatively remove __STDC_*_MACROS. pirms 6 gadiem
  David Benjamin 7d10ab594c Abstract hs_buf a little. pirms 6 gadiem
  Steven Valdez 384d0eaf19 Make SSL_get_current_cipher valid during QUIC callbacks. pirms 6 gadiem
  Matthew Braithwaite c65eb2ceda Serialize SSL curve list in handoff and check it on application. pirms 6 gadiem
  Matthew Braithwaite d2ed382e64 Serialize SSL configuration in handoff and check it on application. pirms 6 gadiem
  David Benjamin cc9d935256 Buffer up QUIC data within a level internally. pirms 6 gadiem
  Steven Valdez c8e0f90f83 Add an interface for QUIC integration. pirms 6 gadiem
  Jeremy Apthorp c0c9001440 Implement SSL_get_tlsext_status_type pirms 6 gadiem
  David Benjamin 1eff9482ca Use proper functions for lh_*. pirms 6 gadiem
  David Benjamin 2d98d49cf7 Add a per-SSL TLS 1.3 downgrade enforcement option and improve tests. pirms 6 gadiem
  David Benjamin 419144adce Fix undefined function pointer casts in {d2i,i2d}_Foo_{bio,fp} pirms 6 gadiem
  David Benjamin 5b33effa72 Rename OPENSSL_NO_THREADS, part 1. pirms 6 gadiem
  David Benjamin ca4971cbae Sync bundled bits of golang.org/x/crypto. pirms 6 gadiem
  David Benjamin 0990a552eb Set up Go modules. pirms 6 gadiem
  David Benjamin d1673c2191 Remove the add_alert hook. pirms 6 gadiem
  Adam Langley d66809580a Reorder some extensions to better match Firefox. pirms 6 gadiem