)]}'
{
  "commit": "934381f46ca0ae453f05799645133f2e1fd5ef41",
  "tree": "4178d9eb5e9c055fbfa0ea586bffc0f7e4126383",
  "parents": [
    "c28b4cd42d32af9fa8c8b710def868d0bb2bf637"
  ],
  "author": {
    "name": "Piotr Sikora",
    "email": "piotrsikora@google.com",
    "time": "Sun Dec 06 23:02:47 2020 -0800"
  },
  "committer": {
    "name": "Piotr Sikora",
    "email": "piotrsikora@google.com",
    "time": "Wed Dec 09 21:03:31 2020 +0000"
  },
  "message": "Bazel: update BoringSSL to 1607f54 / fbbf878 (master-with-bazel).\n\n1607f54fe acvp: move inner MCT loops into subprocess.\n17e530c43 Fix x509_rsa_ctx_to_pss when saltlen is md_size.\n8591d539b Document the X509V3_get_d2i family of functions.\nd83dcf58c runner: explicitly signal error from handshaker.\naec1b62b0 runner: add -skip\n6dcce8003 Add functions for manipulating X.509 TBS structures.\nf18638cca Remove ASN1_STRING_length_set prototype.\n5709ccbd7 Update Go on the bots.\n73b69308a Rework vs_toolchain.py and vs_env.py.\n7c4a3f7d3 Add ECDSA verify KAT to FIPS self-tests.\n83a3f462c Add AES-GCM AEADs with internal nonce generation.\nd5b2b1772 Define a constant for the standard GCM nonce length.\n1a751eefc Add test for X25519-containing certificate.\nfa9796ece Add SSL_early_data_reason_string.\n07827156c Add raw redeem API.\nb67732a16 aarch64: Remove some flavour conditionals\nc583dbea7 Have fewer opaque booleans in aead_test.cc\n777e1ff3b acvp: RSA signature verification tests.\ne44d977c5 acvp: RSA signature generation tests.\n2e22d1b3c acvp: support RSA key generation tests.\n80e3f957e Support 4096-bit keys in FIPS mode.\n40f49428d Reland \"Check AlgorithmIdentifier parameters for RSA and ECDSA signatures.\"\"\n9c12f01de acvp: add 3DES-CBC support\ne796cc650 acvp: add 3DES-ECB support\n043fba241 Clear some reported gcc -Wshadow warnings.\ne9fce74f2 Const-correct X509V3_extensions_print.\n1e8e5635b clang-format and convert comments in x509v3.h.\nc46b1736a aarch64: Improve conditional compilation\nfd83592b4 Silence some linter checks.\n9d1bca3dd acvp: update subprocess_test.go\n8c32f941a Update clang.\n51607f1fe Implement draft-vvv-tls-alps-01.\ne580e9ded Simplify 0-RTT tests.\n3989c9970 Fix crash when flushing an SSL BIO.\n6d904d5b8 Document low-level PEM read/write functions.\n5e549fb64 clang-format pem.h and convert comments.\na673d0245 Add PSK variants of HPKE setup functions to BoGo.\n6d2c79992 acvp: abstract out MCT iteration functions.\nf42d5df92 Add Go implementation of HPKE draft 05 to runner.\n974ac218e runner: Implement a more complete ClientHello consistency check.\nf2b2ef840 Update TrustTokenV2 to use VOPRFs and assemble RR.\nf94e6d7f9 acvp: add AES-CCM support.\n56b28d844 acvp: highlight that the TOTP secret goes in the config file.\n048f354b2 acvp: handle more private key formats.\n6222fe767 runner: Refactor BoGo clientHelloMsg extension marshalling.\n51b428153 Include rodata subsections in FIPS-shared build.\n991835dfa Switch x509_test.cc to use C++ raw string literals.\n723faad51 Fix some malloc error handling.\nb117a3a0b acvp: add AES-KWP support.\n81658a95c acvp: add AES-KW support.\n35ee5ab8c acvp: support saving vectors.\n5e086956f Fix handling of quic_early_data_context.\n38bcb5368 Add a warning to des.h.\n9bf1634b9 Move Trusty workaround to the OPENSSL_LINUX define.\nfda92cd64 acvp: add AES-GCM support.\n6b6b66bac Disable fork detection on Trusty.\n67818bea6 acvp: add AES-CTR support.\n63fa33d7e Tell clang-format that STACK_OF and LHASH_OF are types.\n809763247 modulewrapper: fix unknown functions.\n3ff161cc0 Print SSL_get_error in bssl_shim.\n437eabd03 modulewrapper: fix sending empty spans.\nbb72a8d64 Allow specifying different initial and resumption expectations.\n0ee5808fe Add a few more OPENSSL_NO_* constants.\nb0e98e408 Test SSL_get0_alpn_selected on both client and server.\na6386ea18 runner: Rewrite sessionState parsing with byteReader.\nc4ec14c71 Switch ssl_parse_extensions to bool and Span.\n5850a016b Disable check that X.509 extensions implies v3.\nb13e7b5fd Silence some clang warnings on macOS and iOS CQ bots.\ne0900ac5e Mirror dsa.h\u0027s deprecation notice in dh.h.\ncefbf9cea Const-correct X509_get0_extensions.\n\nChange-Id: I1335a5eb0cd4276cff609e6959f566c6d42b7392\nSigned-off-by: Piotr Sikora \u003cpiotrsikora@google.com\u003e\nReviewed-on: https://nginx-review.googlesource.com/c/nginx/+/3741\nReviewed-by: Patryk Lesiewicz \u003cpatryk@google.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "7970e7f702ef39a6924b0c597ff82da9bf055e8a",
      "old_mode": 33188,
      "old_path": "build.bzl",
      "new_id": "0eee17a7328222d706ca72b2daef516626e6225a",
      "new_mode": 33188,
      "new_path": "build.bzl"
    }
  ]
}
