fork of boring2 with prefix patch
Go to file
Bas Westerbaan 6d3639f173 Add post-quantum key agreement X25519MLKEM768
This is the successor of X25519Kyber768Draft00.

Spec:

https://datatracker.ietf.org/doc/draft-kwiatkowski-tls-ecdhe-mlkem/02/

IANA has assigned the codepoint.

https://www.iana.org/assignments/tls-parameters/tls-parameters.xhtml#tls-parameters-8

Upstream BoringSSL support landed in.

7fb4d3da50

The version of BoringSSL we patch does not include it, so we add it manually.

Chrome and Firefox are planning to enable in October.

This PR is based on the IPD-Wing patch reviewed here:

https://github.com/cloudflare/boring/pull/243

There are two changes. First we simplify the patch a bit as we do not
need IPD-Wing. Secondly, we perform the encapsulation key check, which
was a last minute addition of NIST. We perform this check also for Kyber.
2024-09-18 12:00:27 +02:00
.github/workflows Fix macos FIPS crossbuild 2024-08-15 15:09:02 -07:00
boring Add post-quantum key agreement X25519MLKEM768 2024-09-18 12:00:27 +02:00
boring-sys Add post-quantum key agreement X25519MLKEM768 2024-09-18 12:00:27 +02:00
hyper-boring Updates license field to valid SPDX format 2024-06-02 10:40:17 +01:00
scripts Add publish script 2020-11-12 13:08:13 +00:00
tokio-boring Updates license field to valid SPDX format 2024-06-02 10:40:17 +01:00
.gitignore Rename stuff 2020-11-11 17:47:30 +00:00
.gitmodules Add fips-3678 feature (#52) 2022-01-31 16:11:33 -06:00
.rusty-hook.toml Add tokio-boring 2020-11-11 19:26:22 +00:00
Cargo.toml Update bindgen to 0.70.1 2024-09-18 01:30:38 +02:00
README.md Update docs 2023-07-10 12:29:30 +01:00
RELEASE_NOTES Release 4.9.1 (#259) 2024-08-04 12:40:55 -07:00
THIRD_PARTY Rename stuff 2020-11-11 17:47:30 +00:00
cliff.toml Tweak cliff config to exclude merge and release commits from changelog 2024-04-09 11:18:05 +02:00

README.md

boring

crates.io

BoringSSL bindings for the Rust programming language and TLS adapters for tokio and hyper built on top of it.

Documentation

Contribution

Unless you explicitly state otherwise, any contribution intentionally submitted for inclusion in the work by you, as defined in the Apache-2.0 license, shall be dual licensed under the terms of both the Apache License, Version 2.0 and the MIT license without any additional terms or conditions.

Accolades

The project is based on a fork of rust-openssl.