aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Expand)AuthorAgeFilesLines
...
* De-inline more of TimerJack Lloyd2018-12-232-41/+37
* Make significant_words const time alsoJack Lloyd2018-12-234-40/+75
* In Timer, grab CPU clock firstJack Lloyd2018-12-231-9/+9
* Increase Travis ccache againJack Lloyd2018-12-231-1/+1
* Remove now incorrect commentJack Lloyd2018-12-221-5/+0
* Make high_bit and ctz actually const timeJack Lloyd2018-12-221-3/+3
* Promote ct_is_zero and expand_top_bit to bit_ops.hJack Lloyd2018-12-222-10/+21
* Make ctz and high_bit faster and const-time-ishJack Lloyd2018-12-223-48/+51
* Increase Travis cache size [ci skip]Jack Lloyd2018-12-221-2/+2
* Fix build with PGI [ci skip]Jack Lloyd2018-12-221-5/+7
* Merge GH #1794 Improve const time logic in PKCS1v15 and OAEP decodingJack Lloyd2018-12-219-92/+171
|\
| * Use consistent logic for OAEP and PKCS1v15 decodingJack Lloyd2018-12-219-92/+171
* | Avoid including rotate.h in bswap.hJack Lloyd2018-12-2128-2/+30
* | Stop compressing Travis ccacheJack Lloyd2018-12-211-3/+1
|/
* Address a couple of Coverity false positivesJack Lloyd2018-12-194-7/+62
* Avoid using unblinded Montgomery ladder during ECC key generationJack Lloyd2018-12-182-11/+32
* Test how long it takes to precompute base point multiplesJack Lloyd2018-12-162-1/+21
* In PointGFp addition, prevent all_zeros from being shortcircuitedJack Lloyd2018-12-141-4/+7
* Unroll const_time_lookup by 2Jack Lloyd2018-12-141-6/+10
* Simplify the const time lookup in ECC scalar mulJack Lloyd2018-12-141-12/+9
* Use a 3-bit comb for ECC base point multiplyJack Lloyd2018-12-132-19/+36
* Some cleanups in x25519Jack Lloyd2018-12-101-53/+43
* Fix more MSVC warningsJack Lloyd2018-12-104-8/+9
* Merge GH #1769 Support TLS signature padding strings in PKCS11 mappingJack Lloyd2018-12-101-0/+10
|\
| * Remove EMSA1 encodings from p11 sign mechanisms mapHannes Rantzsch2018-12-101-5/+0
| * Extend the SignMechanisms map for Signature_Scheme padding stringsHannes Rantzsch2018-12-041-0/+15
* | Fix some MSVC warningsJack Lloyd2018-12-1012-26/+35
* | Work around a problem when built with OpenSSLJack Lloyd2018-12-103-7/+10
* | Support recovering ECDSA public key from message/signature pairJack Lloyd2018-12-106-2/+232
* | Fix pylint3 warning [ci skip]Jack Lloyd2018-12-101-1/+1
* | Make ASan happyJack Lloyd2018-12-091-1/+1
* | Add base58 encoding/decodingJack Lloyd2018-12-096-0/+454
* | Merge GH #1782 Add an i386 build/test to CIJack Lloyd2018-12-093-4/+14
|\ \
| * | Add an i386 CI target to check on 32-bit asmJack Lloyd2018-12-093-4/+14
* | | Remove Chi-square test on random_integerJack Lloyd2018-12-091-46/+0
|/ /
* | Merge GH #1780 Use constant time algorithm for monty_inverseJack Lloyd2018-12-092-39/+23
|\ \
| * | Use a const time algorithm for monty_inverseJack Lloyd2018-12-092-39/+23
* | | Fix typoJack Lloyd2018-12-091-1/+1
* | | Avoid doing a variable time division during Montgomery setupJack Lloyd2018-12-095-14/+25
|/ /
* | Move Miller-Rabin t param inside the blockJack Lloyd2018-12-091-2/+2
* | Few features added for BSD.David Carlier2018-12-093-1/+6
* | Avoid repeated size checks when setting words in NIST reductionJack Lloyd2018-12-081-25/+33
* | Merge GH #1776 Clean ups in MDx_HashFunctionJack Lloyd2018-12-082-33/+49
|\ \
| * | Require MDx_HashFunction block size to be a power of 2Jack Lloyd2018-12-082-14/+25
| * | Cleanups in MDx_HashFunctionJack Lloyd2018-12-082-32/+37
* | | Merge GH #1775 Clean up Streebog and fix unaligned loadsJack Lloyd2018-12-082-94/+114
|\ \ \
| * | | Clean up Streebog and fix use of unaligned loadsJack Lloyd2018-12-082-94/+114
| |/ /
* / / In speed, track number of invalid generated signatures and print onceJack Lloyd2018-12-081-1/+6
|/ /
* | Merge GH #1774 Const time BigInt shiftsJack Lloyd2018-12-086-98/+83
|\ \
| * | Avoid early exitJack Lloyd2018-12-071-4/+3