Does anyone know what is the status of #BearSSL at the moment? The development seems to have stopped for the most part.

#SSL #security

#BearSSL: A smaller #SSL/#TLS library

Looks good, smaller means it is easier to review and audit which can - can - lead to more security.

Website
https://bearssl.org/

BearSSL - Main

So I successfully wrote a #bearssl #slackbuild. Now to write one up for #gmni... Copypasta time. Hehe
Anybody know how to debug this "no shared cipher" error? #bearssl #gemini
I asked the #BearSSL dude about him being a bottleneck and he danced around that question just like he did regarding the security of his library. I don't have a good feeling about this.

@spil yeah, looks like #FreeBSD is investigating replacing #OpenSSL in base with #BearSSL.

I think BearSSL has some good ideas (preferring constant-time crypto). But I'm not sure it's ready to replace OpenSSL (or even a good idea to do so).

"#BearSSL will be maintained, and will always be opensource. All patch suggestions are examined and rewritten (by me)." -- The dude behind BearSSL

I'm not sure I want a single dude to have to rewrite all submitted patches. That's one huge bottleneck.

#BearSSL developer prefers constant-time algorithms, which is a good thing (albeit slower).
The #BearSSL track at the #FreeBSD #devsummit is about to start.
The #FreeBSD #devsummit will continue in around 40 minutes. I'll be attending the #BearSSL track. Though, it really is a tough decision between that or the #ZFS track.