crypto/tls
does not send an unknown_ca alert to server if server's certificate verification failsBugReportNeedsInvestigation
#76019 opened 1 day ago by meilin-shi
support crypto.MessageSignerProposal
#75656 opened 3 weeks ago by salrashid123
closeNotify failure should be a well-known error type for easy exclusionLibraryProposalProposalProposal-Crypto
#75600 opened 4 weeks ago by oakad
TLS 1.2 connection fails to be established with `insufficient security level` after TLS 1.3 fixesBugReportNeedsInvestigation
#75336 opened 1 month ago by arnovanliere
Config.EncryptedClientHelloRejectionVerify has no access to the certificatesBugReportNeedsInvestigation
#75242 opened 1 month ago by fortuna
#75241 opened 1 month ago by fortuna
#75108 opened 2 months ago by neild
#75086 opened 2 months ago by qmuntal
misleading "remote error: tls: certificate required" error when client cert CA not in server's accepted CAs listBugReportNeedsInvestigation
#75009 opened 2 months ago by Gaikokujhin
#74922 opened 2 months ago by marten-seemann
#74664 opened 3 months ago by qmuntal
expose `testingOnlyDidHRR` from ConnectionStateLibraryProposalProposalProposal-AcceptedProposal-Crypto
#74425 opened 3 months ago by jschauma
TLS handshake timeout consistently on Windows VM LTSC2019 with private IPBugReportNeedsInvestigationOS-Windows
#74370 opened 4 months ago by AnishShah
#72006 opened 7 months ago by cpu
#71842 opened 8 months ago by rolandshoemaker
#71500 opened 8 months ago by tobyjwebb
#71221 opened 9 months ago by xq2248
#71220 opened 9 months ago by rthellend
#71206 opened 9 months ago by tomato42
#71066 opened 9 months ago by rolandshoemaker
VerifyClientCertIfGiven with "bad" client certificateNeedsInvestigation
#70783 opened 10 months ago by yelkabetz
TestGetClientCertificate/TLSv13 failuresNeedsInvestigation
#70650 opened 10 months ago by gopherbot
TestHandshakeClientECDHEECDSAAESGCM/TLSv12 failuresNeedsInvestigation
#70648 opened 10 months ago by gopherbot
TestFIPSCertAlgs failuresNeedsInvestigation
#70618 opened 10 months ago by gopherbot
#70587 opened 11 months ago by ydnar
#70505 opened 11 months ago by cpu
interoperability problems between go tls server and microsoft/outlook.com tls (smtp starttls) clientNeedsInvestigation
#70232 opened 11 months ago by mjl-
should apply default NextProtos to the result of GetConfigForClientNeedsInvestigation
#70214 opened 11 months ago by xinst
unrecognized failuresNeedsInvestigation
#68801 opened 1 year ago by gopherbot
TestVerifyConnection/TLSv13 failuresNeedsInvestigation
#68660 opened 1 year ago by gopherbot
#68573 opened 1 year ago by macb2625
TestCrossVersionResume/TLSv12 failuresNeedsInvestigation
#68564 opened 1 year ago by gopherbot
SCTs increment by one byte on resume during tls 1.0, tls 1.1, and 1.2 BoringSSL OnResume testsNeedsInvestigation
#68516 opened 1 year ago by monkwire
TestResumptionKeepsOCSPAndSCT/TLSv12 failuresNeedsInvestigation
#68461 opened 1 year ago by gopherbot
BenchmarkHandshakeServer/RSA failuresNeedsInvestigation
#68441 opened 1 year ago by gopherbot
TestTLS13OnlyClientHelloCipherSuite/some_TLS_1.2_cipher failuresNeedsInvestigation
#68435 opened 1 year ago by gopherbot
TestCrossVersionResume/TLSv13 failuresNeedsInvestigation
#68430 opened 1 year ago by gopherbot
BenchmarkHandshakeServer/ECDHE-P521-ECDSA-P521/TLSv12 failuresNeedsInvestigation
#68429 opened 1 year ago by gopherbot
BenchmarkHandshakeServer/ECDHE-P256-RSA failuresNeedsInvestigation
#68427 opened 1 year ago by gopherbot
BenchmarkHandshakeServer/ECDHE-X25519-ECDSA-P256/TLSv12 failuresNeedsInvestigation
#68425 opened 1 year ago by gopherbot
BenchmarkHandshakeServer/ECDHE-P256-ECDSA-P256 failuresNeedsInvestigation
#68422 opened 1 year ago by gopherbot
BenchmarkHandshakeServer/ECDHE-P256-RSA/TLSv12 failuresNeedsInvestigation
#68421 opened 1 year ago by gopherbot
BenchmarkHandshakeServer failuresNeedsInvestigation
#68418 opened 1 year ago by gopherbot
do not enforce legacy_record_version while reading TLS 1.3 recordsNeedsInvestigation
#67910 opened 1 year ago by avened
#67748 opened 1 year ago by thanm
#66913 opened 2 years ago by rolandshoemaker
TestBogoSuite failuresNeedsInvestigation
#66910 opened 2 years ago by gopherbot
#65047 opened 2 years ago by Neustradamus
#64796 opened 2 years ago by p0lyn0mial
#64782 opened 2 years ago by shlomor25
server doesn't check for empty legacy_session_id when doing QUIC session resumptionNeedsInvestigation
#63936 opened 2 years ago by marten-seemann
Large session tickets in Go 1.21 can cause Windows Schannel clients to be unable to connectNeedsInvestigationOS-WindowsSecurity
#63763 opened 2 years ago by printfn
#63722 opened 2 years ago by marten-seemann
#63527 opened 2 years ago by Thomas717-Ether
#63331 opened 2 years ago by rhysh
SNI name with trailing dot (absolute name) fails tls handshakeNeedsInvestigation
#63117 opened 2 years ago by mjl-
ClientHelloInfo.Conn field is nil (or return value of RemoteAddr())NeedsInvestigation
#61639 opened 2 years ago by high3eam
#61483 opened 2 years ago by andrewhodel
#60878 opened 2 years ago by vkosuri
session resumption fails with a cloned tls.ConfigNeedsInvestigation
#60506 opened 2 years ago by marten-seemann
avoid linkability across sessions by not reusing session ticketsNeedsInvestigation
#60505 opened 2 years ago by marten-seemann
#60105 opened 2 years ago by FiloSottile
new option for mTLS servers to not advertise acceptable certificate_authoritiesProposalProposal-Crypto
#59825 opened 2 years ago by irsl
centralize alert sendingNeedsInvestigation
#59773 opened 2 years ago by rolandshoemaker
cannot enforce "h2" with ALPNNeedsInvestigation
#59734 opened 2 years ago by jfgiorgi
remote error: tls:internal errorNeedsInvestigation
#58434 opened 2 years ago by zhaozuowu
#54087 opened 3 years ago by xuweiguo
TLS 1.3 unable to disable non-NIST approved ChaCha20 Cipher SuiteNeedsInvestigation
#54072 opened 3 years ago by upsampled
don't include supported_versions extension if MaxVersion < 1.3 NeedsInvestigation
#53384 opened 3 years ago by jameshartig
#53142 opened 3 years ago by TriAnMan
be more specific about errors `bad record MAC`NeedsInvestigation
#51837 opened 3 years ago by OO00O0O
abort handshake if unrequested extensions are sentNeedsInvestigation
#51090 opened 3 years ago by aarongable
#49422 opened 4 years ago by Jarvis-Zhou
wrap handshake errorsNeedsInvestigation
#48151 opened 4 years ago by ptagrawal
TLS connections use small buffer size that results in small syscalls and ignore HTTP client transport buffer sizesNeedsInvestigation
#47672 opened 4 years ago by richardartoul
missing alpnprotocol field's value of the message which SSL/TLS protocol's handshake phase sends back.NeedsInvestigation
#45918 opened 4 years ago by lynnyuan-arch
tls.Conn.Close sends unnecessary close_notify if the underlying connection was already closedNeedsInvestigation
#45709 opened 4 years ago by ameshkov
Conn.Close should not override user's write deadlineNeedsInvestigation
#45162 opened 4 years ago by kozlovic
#44506 opened 4 years ago by howardjohn
#43563 opened 4 years ago by cch123
#43250 opened 4 years ago by nixargh
#42967 opened 4 years ago by marten-seemann
#40575 opened 5 years ago by RichardLaos
#40521 opened 5 years ago by skyfmmf
TLS handshake issue with Eclipse Paho MQTT client and RabbitMQNeedsInvestigation
#40273 opened 5 years ago by adeveloper87
cleanup handshake stateNeedsFix
#39406 opened 5 years ago by FiloSottile
#39271 opened 5 years ago by MarkOtzen
conflicting lock order in Handshake() and Read()NeedsInvestigation
#38870 opened 5 years ago by BurtonQin
Client Side TLS Authentication fails for certs with long fieldsNeedsInvestigation
#36467 opened 5 years ago by antevens
#36285 opened 5 years ago by gitstashpop
add docs detailing the sequence before/after Read()/Write() during TLS handshakeDocumentationNeedsInvestigation
#36128 opened 5 years ago by martindg
#35758 opened 6 years ago by tatianab
#35504 opened 6 years ago by FiloSottile
#35311 opened 6 years ago by aaslamin
expose TLS alert type for more precise error checksFeatureRequestNeedsInvestigationProposalProposal-Crypto
#35234 opened 6 years ago by TheHackerDev
TestDynamicRecordSizingWithStreamCipher timeout on darwin-amd64-10_12 builderNeedsInvestigationOS-Darwin
#34735 opened 6 years ago by bcmills
Dial error message does not give much contextNeedsInvestigation
#34197 opened 6 years ago by hramrach
error with client certificate and X448 and X25519 curvesNeedsInvestigation
#33577 opened 6 years ago by cromefire
incompatibility with Trust Settings in CA certificateNeedsInvestigation
#31881 opened 6 years ago by kruftik
safely shutdownNeedsInvestigation
#29462 opened 6 years ago by kazzmir
#28976 opened 7 years ago by bcmills
#27484 opened 7 years ago by igolaizola
fix pseudo-constant mitigation for lucky 13NeedsInvestigation
#27071 opened 7 years ago by dgryski
GetCertificate called on resumed sessionsNeedsInvestigation
#25352 opened 7 years ago by FiloSottile
#25228 opened 7 years ago by pvoicu
#24673 opened 7 years ago by lyuxuan
#22274 opened 8 years ago by nhooyr
#20420 opened 8 years ago by 925dk
slow server-side handshake performance for RSA certificates without client session cachePerformancehelp wanted
#20058 opened 8 years ago by valyala
Dial returns io.EOFNeedsDecision
#19874 opened 8 years ago by joneskoo
Set{Read,Write}Deadline implementation is surprising/ineffectiveNeedsInvestigation
#13828 opened 9 years ago by rburchell
Disable CBC Ciphers by defaultSecurity
#13385 opened 10 years ago by pquerna
a timeout error on tls.Conn.Write is confusingNeedsDecision
#8071 opened 11 years ago by mikioh
tls.Dial get error  "local error: unexpected message"NeedsInvestigation
#7953 opened 11 years ago by gopherbot
needs a convenience function for reading encrypted keysNeedsInvestigation
#6722 opened 12 years ago by gopherbot
#6379 opened 12 years ago by gopherbot