Skip to content
体验新版
项目
组织
正在加载...
登录
切换导航
打开侧边栏
OpenHarmony
Third Party Openssl
提交
046f2101
T
Third Party Openssl
项目概览
OpenHarmony
/
Third Party Openssl
接近 2 年 前同步成功
通知
12
Star
18
Fork
1
代码
文件
提交
分支
Tags
贡献者
分支图
Diff
Issue
0
列表
看板
标记
里程碑
合并请求
0
Wiki
0
Wiki
分析
仓库
DevOps
项目成员
Pages
T
Third Party Openssl
项目概览
项目概览
详情
发布
仓库
仓库
文件
提交
分支
标签
贡献者
分支图
比较
Issue
0
Issue
0
列表
看板
标记
里程碑
合并请求
0
合并请求
0
Pages
分析
分析
仓库分析
DevOps
Wiki
0
Wiki
成员
成员
收起侧边栏
关闭侧边栏
动态
分支图
创建新Issue
提交
Issue看板
提交
046f2101
编写于
5月 17, 2009
作者:
D
Dr. Stephen Henson
浏览文件
操作
浏览文件
下载
电子邮件补丁
差异文件
Update from 1.0.0-stable.
上级
16cd15e6
变更
4
隐藏空白更改
内联
并排
Showing
4 changed file
with
85 addition
and
22 deletion
+85
-22
apps/s_client.c
apps/s_client.c
+3
-3
apps/s_server.c
apps/s_server.c
+3
-3
crypto/bio/bss_dgram.c
crypto/bio/bss_dgram.c
+78
-15
ssl/dtls1.h
ssl/dtls1.h
+1
-1
未找到文件。
apps/s_client.c
浏览文件 @
046f2101
...
...
@@ -320,7 +320,7 @@ static void sc_usage(void)
BIO_printf
(
bio_err
,
" -ssl3 - just use SSLv3
\n
"
);
BIO_printf
(
bio_err
,
" -tls1 - just use TLSv1
\n
"
);
BIO_printf
(
bio_err
,
" -dtls1 - just use DTLSv1
\n
"
);
BIO_printf
(
bio_err
,
" -mtu - set the MTU
\n
"
);
BIO_printf
(
bio_err
,
" -mtu - set the
link layer
MTU
\n
"
);
BIO_printf
(
bio_err
,
" -no_tls1/-no_ssl3/-no_ssl2 - turn off that protocol
\n
"
);
BIO_printf
(
bio_err
,
" -bugs - Switch on all SSL implementation bug workarounds
\n
"
);
BIO_printf
(
bio_err
,
" -serverpref - Use server's cipher preferences (only SSLv2)
\n
"
);
...
...
@@ -999,10 +999,10 @@ re_start:
BIO_ctrl
(
sbio
,
BIO_CTRL_DGRAM_SET_SEND_TIMEOUT
,
0
,
&
timeout
);
}
if
(
socket_mtu
>
0
)
if
(
socket_mtu
>
28
)
{
SSL_set_options
(
con
,
SSL_OP_NO_QUERY_MTU
);
SSL_set_mtu
(
con
,
socket_mtu
);
SSL_set_mtu
(
con
,
socket_mtu
-
28
);
}
else
/* want to do MTU discovery */
...
...
apps/s_server.c
浏览文件 @
046f2101
...
...
@@ -459,7 +459,7 @@ static void sv_usage(void)
BIO_printf
(
bio_err
,
" -tls1 - Just talk TLSv1
\n
"
);
BIO_printf
(
bio_err
,
" -dtls1 - Just talk DTLSv1
\n
"
);
BIO_printf
(
bio_err
,
" -timeout - Enable timeouts
\n
"
);
BIO_printf
(
bio_err
,
" -mtu - Set MTU
\n
"
);
BIO_printf
(
bio_err
,
" -mtu - Set
link layer
MTU
\n
"
);
BIO_printf
(
bio_err
,
" -chain - Read a certificate chain
\n
"
);
BIO_printf
(
bio_err
,
" -no_ssl2 - Just disable SSLv2
\n
"
);
BIO_printf
(
bio_err
,
" -no_ssl3 - Just disable SSLv3
\n
"
);
...
...
@@ -1823,10 +1823,10 @@ static int sv_body(char *hostname, int s, unsigned char *context)
BIO_ctrl
(
sbio
,
BIO_CTRL_DGRAM_SET_SEND_TIMEOUT
,
0
,
&
timeout
);
}
if
(
socket_mtu
>
0
)
if
(
socket_mtu
>
28
)
{
SSL_set_options
(
con
,
SSL_OP_NO_QUERY_MTU
);
SSL_set_mtu
(
con
,
socket_mtu
);
SSL_set_mtu
(
con
,
socket_mtu
-
28
);
}
else
/* want to do MTU discovery */
...
...
crypto/bio/bss_dgram.c
浏览文件 @
046f2101
...
...
@@ -338,6 +338,10 @@ static long dgram_ctrl(BIO *b, int cmd, long num, void *ptr)
bio_dgram_data
*
data
=
NULL
;
long
sockopt_val
=
0
;
unsigned
int
sockopt_len
=
0
;
#ifdef OPENSSL_SYS_LINUX
socklen_t
addr_len
;
struct
sockaddr_storage
addr
;
#endif
data
=
(
bio_dgram_data
*
)
b
->
ptr
;
...
...
@@ -396,24 +400,83 @@ static long dgram_ctrl(BIO *b, int cmd, long num, void *ptr)
#endif
break
;
/* (Linux)kernel sets DF bit on outgoing IP packets */
#ifdef IP_MTU_DISCOVER
case
BIO_CTRL_DGRAM_MTU_DISCOVER
:
sockopt_val
=
IP_PMTUDISC_DO
;
if
((
ret
=
setsockopt
(
b
->
num
,
IPPROTO_IP
,
IP_MTU_DISCOVER
,
&
sockopt_val
,
sizeof
(
sockopt_val
)))
<
0
)
perror
(
"setsockopt"
);
#ifdef OPENSSL_SYS_LINUX
addr_len
=
(
socklen_t
)
sizeof
(
struct
sockaddr_storage
);
memset
((
void
*
)
&
addr
,
0
,
sizeof
(
struct
sockaddr_storage
));
if
(
getsockname
(
b
->
num
,
(
void
*
)
&
addr
,
&
addr_len
)
<
0
)
{
ret
=
0
;
break
;
}
sockopt_len
=
sizeof
(
sockopt_val
);
switch
(
addr
.
ss_family
)
{
case
AF_INET
:
sockopt_val
=
IP_PMTUDISC_DO
;
if
((
ret
=
setsockopt
(
b
->
num
,
IPPROTO_IP
,
IP_MTU_DISCOVER
,
&
sockopt_val
,
sizeof
(
sockopt_val
)))
<
0
)
perror
(
"setsockopt"
);
break
;
case
AF_INET6
:
sockopt_val
=
IPV6_PMTUDISC_DO
;
if
((
ret
=
setsockopt
(
b
->
num
,
IPPROTO_IPV6
,
IPV6_MTU_DISCOVER
,
&
sockopt_val
,
sizeof
(
sockopt_val
)))
<
0
)
perror
(
"setsockopt"
);
break
;
default:
ret
=
-
1
;
break
;
}
ret
=
-
1
;
#else
break
;
#endif
case
BIO_CTRL_DGRAM_QUERY_MTU
:
#ifdef IP_MTU
sockopt_len
=
sizeof
(
sockopt_val
);
if
((
ret
=
getsockopt
(
b
->
num
,
IPPROTO_IP
,
IP_MTU
,
(
void
*
)
&
sockopt_val
,
&
sockopt_len
))
<
0
||
sockopt_val
<
0
)
{
ret
=
0
;
}
else
#ifdef OPENSSL_SYS_LINUX
addr_len
=
(
socklen_t
)
sizeof
(
struct
sockaddr_storage
);
memset
((
void
*
)
&
addr
,
0
,
sizeof
(
struct
sockaddr_storage
));
if
(
getsockname
(
b
->
num
,
(
void
*
)
&
addr
,
&
addr_len
)
<
0
)
{
data
->
mtu
=
sockopt_val
-
20
-
8
;
/* Subtract IP and UDP header */
ret
=
data
->
mtu
;
ret
=
0
;
break
;
}
sockopt_len
=
sizeof
(
sockopt_val
);
switch
(
addr
.
ss_family
)
{
case
AF_INET
:
if
((
ret
=
getsockopt
(
b
->
num
,
IPPROTO_IP
,
IP_MTU
,
(
void
*
)
&
sockopt_val
,
&
sockopt_len
))
<
0
||
sockopt_val
<
0
)
{
ret
=
0
;
}
else
{
/* we assume that the transport protocol is UDP and no
* IP options are used.
*/
data
->
mtu
=
sockopt_val
-
8
-
20
;
ret
=
data
->
mtu
;
}
break
;
case
AF_INET6
:
if
((
ret
=
getsockopt
(
b
->
num
,
IPPROTO_IPV6
,
IPV6_MTU
,
(
void
*
)
&
sockopt_val
,
&
sockopt_len
))
<
0
||
sockopt_val
<
0
)
{
ret
=
0
;
}
else
{
/* we assume that the transport protocol is UDP and no
* IPV6 options are used.
*/
data
->
mtu
=
sockopt_val
-
8
-
40
;
ret
=
data
->
mtu
;
}
break
;
default:
ret
=
0
;
break
;
}
#else
ret
=
0
;
...
...
@@ -423,8 +486,8 @@ static long dgram_ctrl(BIO *b, int cmd, long num, void *ptr)
return
data
->
mtu
;
break
;
case
BIO_CTRL_DGRAM_SET_MTU
:
data
->
mtu
=
num
-
20
-
8
;
/* Subtract IP and UDP header */
ret
=
data
->
mtu
;
data
->
mtu
=
num
;
ret
=
num
;
break
;
case
BIO_CTRL_DGRAM_SET_CONNECTED
:
to
=
(
struct
sockaddr
*
)
ptr
;
...
...
ssl/dtls1.h
浏览文件 @
046f2101
...
...
@@ -204,7 +204,7 @@ typedef struct dtls1_state_st
*/
record_pqueue
buffered_app_data
;
unsigned
int
mtu
;
/* max
wire
packet size */
unsigned
int
mtu
;
/* max
DTLS
packet size */
struct
hm_header_st
w_msg_hdr
;
struct
hm_header_st
r_msg_hdr
;
...
...
编辑
预览
Markdown
is supported
0%
请重试
或
添加新附件
.
添加附件
取消
You are about to add
0
people
to the discussion. Proceed with caution.
先完成此消息的编辑!
取消
想要评论请
注册
或
登录