Skip to content
体验新版
项目
组织
正在加载...
登录
切换导航
打开侧边栏
OpenHarmony
Third Party Openssl
提交
94d511cd
T
Third Party Openssl
项目概览
OpenHarmony
/
Third Party Openssl
大约 1 年 前同步成功
通知
9
Star
18
Fork
1
代码
文件
提交
分支
Tags
贡献者
分支图
Diff
Issue
0
列表
看板
标记
里程碑
合并请求
0
Wiki
0
Wiki
分析
仓库
DevOps
项目成员
Pages
T
Third Party Openssl
项目概览
项目概览
详情
发布
仓库
仓库
文件
提交
分支
标签
贡献者
分支图
比较
Issue
0
Issue
0
列表
看板
标记
里程碑
合并请求
0
合并请求
0
Pages
分析
分析
仓库分析
DevOps
Wiki
0
Wiki
成员
成员
收起侧边栏
关闭侧边栏
动态
分支图
创建新Issue
提交
Issue看板
提交
94d511cd
编写于
8月 28, 2007
作者:
D
Dr. Stephen Henson
浏览文件
操作
浏览文件
下载
电子邮件补丁
差异文件
Add ctrls to set and get RFC4507bis keys to enable several contexts to
reuse the same tickets.
上级
ec5d7473
变更
4
隐藏空白更改
内联
并排
Showing
4 changed file
with
34 addition
and
0 deletion
+34
-0
ssl/s3_lib.c
ssl/s3_lib.c
+25
-0
ssl/ssl.h
ssl/ssl.h
+3
-0
ssl/ssl_err.c
ssl/ssl_err.c
+1
-0
ssl/tls1.h
ssl/tls1.h
+5
-0
未找到文件。
ssl/s3_lib.c
浏览文件 @
94d511cd
...
...
@@ -2536,6 +2536,31 @@ long ssl3_ctx_ctrl(SSL_CTX *ctx, int cmd, long larg, void *parg)
case
SSL_CTRL_SET_TLSEXT_SERVERNAME_ARG
:
ctx
->
tlsext_servername_arg
=
parg
;
break
;
case
SSL_CTRL_SET_TLSEXT_TICKET_KEYS
:
case
SSL_CTRL_GET_TLSEXT_TICKET_KEYS
:
{
unsigned
char
*
keys
=
parg
;
if
(
!
keys
)
return
48
;
if
(
larg
!=
48
)
{
SSLerr
(
SSL_F_SSL3_CTX_CTRL
,
SSL_R_INVALID_TICKET_KEYS_LENGTH
);
return
0
;
}
if
(
cmd
==
SSL_CTRL_SET_TLSEXT_TICKET_KEYS
)
{
memcpy
(
ctx
->
tlsext_tick_key_name
,
keys
,
16
);
memcpy
(
ctx
->
tlsext_tick_hmac_key
,
keys
+
16
,
16
);
memcpy
(
ctx
->
tlsext_tick_aes_key
,
keys
+
32
,
16
);
}
else
{
memcpy
(
keys
,
ctx
->
tlsext_tick_key_name
,
16
);
memcpy
(
keys
+
16
,
ctx
->
tlsext_tick_hmac_key
,
16
);
memcpy
(
keys
+
32
,
ctx
->
tlsext_tick_aes_key
,
16
);
}
return
1
;
}
#endif
/* !OPENSSL_NO_TLSEXT */
/* A Thawte special :-) */
case
SSL_CTRL_EXTRA_CHAIN_CERT
:
...
...
ssl/ssl.h
浏览文件 @
94d511cd
...
...
@@ -1302,6 +1302,8 @@ DECLARE_PEM_rw(SSL_SESSION, SSL_SESSION)
#define SSL_CTRL_SET_TLSEXT_HOSTNAME 55
#define SSL_CTRL_SET_TLSEXT_DEBUG_CB 56
#define SSL_CTRL_SET_TLSEXT_DEBUG_ARG 57
#define SSL_CTRL_GET_TLSEXT_TICKET_KEYS 58
#define SSL_CTRL_SET_TLSEXT_TICKET_KEYS 59
#endif
#define SSL_session_reused(ssl) \
...
...
@@ -1946,6 +1948,7 @@ void ERR_load_SSL_strings(void);
#define SSL_R_INVALID_CHALLENGE_LENGTH 158
#define SSL_R_INVALID_COMMAND 280
#define SSL_R_INVALID_PURPOSE 278
#define SSL_R_INVALID_TICKET_KEYS_LENGTH 324
#define SSL_R_INVALID_TRUST 279
#define SSL_R_KEY_ARG_TOO_LONG 284
#define SSL_R_KRB5 285
...
...
ssl/ssl_err.c
浏览文件 @
94d511cd
...
...
@@ -338,6 +338,7 @@ static ERR_STRING_DATA SSL_str_reasons[]=
{
ERR_REASON
(
SSL_R_INVALID_CHALLENGE_LENGTH
),
"invalid challenge length"
},
{
ERR_REASON
(
SSL_R_INVALID_COMMAND
)
,
"invalid command"
},
{
ERR_REASON
(
SSL_R_INVALID_PURPOSE
)
,
"invalid purpose"
},
{
ERR_REASON
(
SSL_R_INVALID_TICKET_KEYS_LENGTH
),
"invalid ticket keys length"
},
{
ERR_REASON
(
SSL_R_INVALID_TRUST
)
,
"invalid trust"
},
{
ERR_REASON
(
SSL_R_KEY_ARG_TOO_LONG
)
,
"key arg too long"
},
{
ERR_REASON
(
SSL_R_KRB5
)
,
"krb5"
},
...
...
ssl/tls1.h
浏览文件 @
94d511cd
...
...
@@ -230,6 +230,11 @@ SSL_CTX_callback_ctrl(ctx,SSL_CTRL_SET_TLSEXT_SERVERNAME_CB,(void (*)(void))cb)
#define SSL_CTX_set_tlsext_servername_arg(ctx, arg) \
SSL_CTX_ctrl(ctx,SSL_CTRL_SET_TLSEXT_SERVERNAME_ARG,0, (void *)arg)
#define SSL_CTX_get_tlsext_ticket_keys(ctx, keys, keylen) \
SSL_CTX_ctrl((ctx),SSL_CTRL_GET_TLXEXT_TICKET_KEYS,(keylen),(keys))
#define SSL_CTX_set_tlsext_ticket_keys(ctx, keys, keylen) \
SSL_CTX_ctrl((ctx),SSL_CTRL_SET_TLXEXT_TICKET_KEYS,(keylen),(keys))
#endif
/* PSK ciphersuites from 4279 */
...
...
编辑
预览
Markdown
is supported
0%
请重试
或
添加新附件
.
添加附件
取消
You are about to add
0
people
to the discussion. Proceed with caution.
先完成此消息的编辑!
取消
想要评论请
注册
或
登录