318 Commits (451ea3ca3e0b61273333162564f16d190f6b6d14)

Author SHA1 Message Date
Adam Langley 451ea3ca3e Add SSL_[CTX_]_set_compliance_policy. 3 years ago
David Benjamin 701d8b28c8 Fix docs for EVP_Cipher given an AEAD. 3 years ago
David Benjamin cf506f17d0 Make EVP_CIPHER opaque. 3 years ago
David Benjamin 2d4f1b85f2 Use the correct function types in X509V3_EXT_METHODs. 3 years ago
David Benjamin 1530333b25 Remove X509_CRL_METHOD. 3 years ago
Adam Langley 118a892d2d Add a service indicator for FIPS 140-3. 3 years ago
David Benjamin 7fd831c44c Enforce X.509 version invariants more consistently. 3 years ago
David Benjamin 5a79788cb1 Remove X509_to_X509_REQ. 3 years ago
Adam Langley ce2a353d01 Declare EVP_AEAD_CTX in base.h, like other typedefs. 3 years ago
David Benjamin 3f180b8221 Implement SSL_CTX_set_num_tickets. 3 years ago
David Benjamin df6311bc6c Add tests for X509_NAME_print_ex. 3 years ago
Adam Langley a56d941c44 Add function to return the name of the FIPS module. 3 years ago
Bob Beck 0e0ca82b2e Remove the ASN1_TLC cache. It appears to not help performance. 3 years ago
David Benjamin f961de5c47 Try to require C11 (in non-MSVC compilers). 3 years ago
David Benjamin 493d5cbedd Try to require C++14. 3 years ago
David Benjamin edbdc240ec Reject [UNIVERSAL 0] in DER/BER element parsers. 3 years ago
Alex Gaynor 225e8d39b5 Use X509 certificate alias as friendlyName in PKCS12 3 years ago
David Benjamin 21440764db Remove VS 2015 support. 3 years ago
David Benjamin b99b98b6eb Remove X509_TRUST_set_default. 3 years ago
Adam Langley 8bbefbfeee Document that |EC_KEY_generate_fips| works for both cases. 3 years ago
Adam Langley 972ab52238 Allow the integrity test to be run on demand. 3 years ago
Adam Langley c6e8f3ed08 Add a function to return a FIPS version. 3 years ago
Adam Langley 7f4057ec10 Add a function to tell if an algorithm is FIPS approved. 3 years ago
David Benjamin 6378c47cb7 Unexport X509_CERT_AUX and remove X509_CERT_AUX.other 3 years ago
David Benjamin d0f14f3981 Document and tidy up X509_alias_get0, etc. 3 years ago
Adam Langley c7a3c46574 Don't loop forever in BN_mod_sqrt on invalid inputs. 3 years ago
David Benjamin ab69425a98 Remove ASN1_ADB_INTEGER. 3 years ago
David Benjamin fdd5260361 Correctly handle LONG_MIN in ASN1_INTEGER_get. 3 years ago
David Benjamin bdc35b6361 Rewrite and tighten ASN1_INTEGER encoding and decoding. 3 years ago
David Benjamin 366e886628 Deduplicate the rest of ASN1_INTEGER and ASN1_ENUMERATED. 3 years ago
David Benjamin 66d8563227 Limit the pthread_rwlock workaround to glibc. 3 years ago
David Benjamin 7fac386a15 Add an explicit indefinite-length output to CBS_get_any_ber_asn1_element. 3 years ago
David Benjamin c76da9d46a HPKE is now RFC 9180. 3 years ago
David Benjamin 123eaaef26 Record ClientHelloInner values in msg_callback. 3 years ago
David Benjamin 7198d1132b Explicitly reject self-referential ech_outer_extensions. 3 years ago
Benjamin Brittain 8d8d8f3ea7 Generates "low-level" bindings for Rust using bindgen 3 years ago
Adam Langley ec476ef044 Zero out the values from the integrity check. 3 years ago
Adam Langley f797570320 Ignore duplicates in |X509_STORE_add_*| 3 years ago
David Benjamin d80f17d5c9 Simplify __ARM_ARCH__ definition. 3 years ago
David Benjamin a94c267787 Don't use __ARMEL__/__ARMEB__ in aarch64 assembly 3 years ago
David Benjamin 661266ea06 Move CPU detection symbols to crypto/internal.h. 3 years ago
David Benjamin 37faa936b5 Move public APIs from cpu.h to crypto.h. 3 years ago
David Benjamin 1e15682f1a Enable SHA-512 ARM acceleration when available. 3 years ago
David Benjamin e21f272a66 Add BIO_tell and BIO_seek wrappers. 3 years ago
David Benjamin 9631bc1041 Remove non-standard wildcard input DNS names. 3 years ago
David Benjamin c3c540b9a4 Remove non-standard X.509 DNS wildcard matching. 3 years ago
David Benjamin 2042972e84 Make X509_REVOKED opaque. 3 years ago
Adam Langley 7e2a957888 Document |SSL_set1_host| return values. 3 years ago
Adam Langley 7e7e6b693f Add |SSL_set1_host| and |SSL_set_hostflags|. 3 years ago
David Benjamin 731d6cbef9 Add ERR_set_error_data for compatibility. 3 years ago