Home
last modified time | relevance | path

Searched refs:ssl_ctx (Results 1 – 25 of 47) sorted by relevance

12

/dragonfly/crypto/libressl/tls/
HDtls_server.c123 SSL_set_SSL_CTX(conn_ctx->ssl_conn, sni_ctx->ssl_ctx); in tls_servername_cb()
224 tls_configure_server_ssl(struct tls *ctx, SSL_CTX **ssl_ctx, in tls_configure_server_ssl() argument
227 SSL_CTX_free(*ssl_ctx); in tls_configure_server_ssl()
229 if ((*ssl_ctx = SSL_CTX_new(SSLv23_server_method())) == NULL) { in tls_configure_server_ssl()
234 SSL_CTX_set_options(*ssl_ctx, SSL_OP_NO_CLIENT_RENEGOTIATION); in tls_configure_server_ssl()
236 if (SSL_CTX_set_tlsext_servername_callback(*ssl_ctx, in tls_configure_server_ssl()
241 if (SSL_CTX_set_tlsext_servername_arg(*ssl_ctx, ctx) != 1) { in tls_configure_server_ssl()
246 if (tls_configure_ssl(ctx, *ssl_ctx) != 0) in tls_configure_server_ssl()
248 if (tls_configure_ssl_keypair(ctx, *ssl_ctx, keypair, 1) != 0) in tls_configure_server_ssl()
254 if (tls_configure_ssl_verify(ctx, *ssl_ctx, verify) == -1) in tls_configure_server_ssl()
[all …]
HDtls.c229 SSL_CTX_free(sni_ctx->ssl_ctx); in tls_sni_ctx_free()
450 tls_configure_ssl_keypair(struct tls *ctx, SSL_CTX *ssl_ctx, in tls_configure_ssl_keypair() argument
466 if (SSL_CTX_use_certificate_chain_mem(ssl_ctx, in tls_configure_ssl_keypair()
478 if (SSL_CTX_use_PrivateKey(ssl_ctx, pkey) != 1) { in tls_configure_ssl_keypair()
487 SSL_CTX_check_private_key(ssl_ctx) != 1) { in tls_configure_ssl_keypair()
501 tls_configure_ssl(struct tls *ctx, SSL_CTX *ssl_ctx) in tls_configure_ssl() argument
503 SSL_CTX_clear_mode(ssl_ctx, SSL_MODE_AUTO_RETRY); in tls_configure_ssl()
505 SSL_CTX_set_mode(ssl_ctx, SSL_MODE_ENABLE_PARTIAL_WRITE); in tls_configure_ssl()
506 SSL_CTX_set_mode(ssl_ctx, SSL_MODE_ACCEPT_MOVING_WRITE_BUFFER); in tls_configure_ssl()
508 SSL_CTX_set_options(ssl_ctx, SSL_OP_NO_SSLv2); in tls_configure_ssl()
[all …]
HDtls_client.c305 if ((ctx->ssl_ctx = SSL_CTX_new(SSLv23_client_method())) == NULL) { in tls_connect_common()
310 if (tls_configure_ssl(ctx, ctx->ssl_ctx) != 0) in tls_connect_common()
313 if (tls_configure_ssl_keypair(ctx, ctx->ssl_ctx, in tls_connect_common()
324 if (tls_configure_ssl_verify(ctx, ctx->ssl_ctx, SSL_VERIFY_PEER) == -1) in tls_connect_common()
328 if (SSL_CTX_set1_groups(ctx->ssl_ctx, ctx->config->ecdhecurves, in tls_connect_common()
335 if (SSL_CTX_set_tlsext_status_cb(ctx->ssl_ctx, tls_ocsp_verify_cb) != 1) { in tls_connect_common()
340 if ((ctx->ssl_conn = SSL_new(ctx->ssl_ctx)) == NULL) { in tls_connect_common()
HDtls_internal.h177 SSL_CTX *ssl_ctx; member
194 SSL_CTX *ssl_ctx; member
244 int tls_configure_ssl(struct tls *ctx, SSL_CTX *ssl_ctx);
245 int tls_configure_ssl_keypair(struct tls *ctx, SSL_CTX *ssl_ctx,
247 int tls_configure_ssl_verify(struct tls *ctx, SSL_CTX *ssl_ctx, int verify);
HDtls_ocsp.c127 SSL_CTX *ssl_ctx) in tls_ocsp_get_certid() argument
147 if ((store = SSL_CTX_get_cert_store(ssl_ctx)) == NULL) in tls_ocsp_get_certid()
228 SSL_CTX_get_cert_store(ctx->ssl_ctx), flags) != 1) { in tls_ocsp_verify_response()
242 ctx->ocsp->extra_certs, ctx->ssl_ctx); in tls_ocsp_verify_response()
HDtls_config.c471 SSL_CTX *ssl_ctx = NULL; in tls_config_set_ciphers() local
485 if ((ssl_ctx = SSL_CTX_new(SSLv23_method())) == NULL) { in tls_config_set_ciphers()
489 if (SSL_CTX_set_cipher_list(ssl_ctx, ciphers) != 1) { in tls_config_set_ciphers()
494 SSL_CTX_free(ssl_ctx); in tls_config_set_ciphers()
498 SSL_CTX_free(ssl_ctx); in tls_config_set_ciphers()
/dragonfly/contrib/wpa_supplicant/src/eap_server/
HDeap_server_tls_common.c52 if (sm->ssl_ctx == NULL) { in eap_server_tls_ssl_init()
60 data->conn = tls_connection_init(sm->ssl_ctx); in eap_server_tls_ssl_init()
78 if (tls_connection_set_verify(sm->ssl_ctx, data->conn, verify_peer, in eap_server_tls_ssl_init()
83 tls_connection_deinit(sm->ssl_ctx, data->conn); in eap_server_tls_ssl_init()
102 tls_connection_deinit(sm->ssl_ctx, data->conn); in eap_server_tls_ssl_deinit()
119 if (tls_connection_export_key(sm->ssl_ctx, data->conn, label, in eap_server_tls_derive_key()
173 if (tls_connection_get_random(sm->ssl_ctx, data->conn, &keys)) in eap_server_tls_derive_session_id()
343 data->tls_out = tls_connection_server_handshake(sm->ssl_ctx, in eap_server_tls_phase1()
350 if (tls_connection_get_failed(sm->ssl_ctx, data->conn)) { in eap_server_tls_phase1()
357 if (tls_get_version(sm->ssl_ctx, data->conn, buf, sizeof(buf)) == 0) { in eap_server_tls_phase1()
[all …]
HDeap_server_tls.c190 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn)) in eap_tls_buildReq()
270 tls_connection_established(sm->ssl_ctx, data->ssl.conn)) { in eap_tls_process_msg()
318 if (!tls_connection_established(sm->ssl_ctx, data->ssl.conn) || in eap_tls_process()
319 !tls_connection_resumed(sm->ssl_ctx, data->ssl.conn)) in eap_tls_process()
HDeap_server_fast.c281 sks = eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_auth()
307 eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_provisioning()
443 if (tls_connection_set_cipher_list(sm->ssl_ctx, data->ssl.conn, in eap_fast_init()
451 if (tls_connection_set_session_ticket_cb(sm->ssl_ctx, data->ssl.conn, in eap_fast_init()
555 if (tls_get_cipher(sm->ssl_ctx, data->ssl.conn, cipher, sizeof(cipher)) in eap_fast_phase1_done()
875 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_buildReq()
1400 in_decrypted = tls_connection_decrypt(sm->ssl_ctx, data->ssl.conn, in eap_fast_process_phase2()
1460 if (!tls_connection_established(sm->ssl_ctx, data->ssl.conn) || in eap_fast_process_phase1()
/dragonfly/crypto/libressl/apps/openssl/
HDciphers.c111 SSL_CTX *ssl_ctx = NULL; in ciphers_main() local
137 if ((ssl_ctx = SSL_CTX_new(TLS_method())) == NULL) in ciphers_main()
141 if (!SSL_CTX_set_min_proto_version(ssl_ctx, in ciphers_main()
144 if (!SSL_CTX_set_max_proto_version(ssl_ctx, in ciphers_main()
150 if (SSL_CTX_set_cipher_list(ssl_ctx, cipherlist) == 0) in ciphers_main()
154 if ((ssl = SSL_new(ssl_ctx)) == NULL) in ciphers_main()
198 SSL_CTX_free(ssl_ctx); in ciphers_main()
HDs_server.c1504 print_stats(BIO *bio, SSL_CTX *ssl_ctx) in print_stats() argument
1507 SSL_CTX_sess_number(ssl_ctx)); in print_stats()
1509 SSL_CTX_sess_connect(ssl_ctx)); in print_stats()
1511 SSL_CTX_sess_connect_renegotiate(ssl_ctx)); in print_stats()
1513 SSL_CTX_sess_connect_good(ssl_ctx)); in print_stats()
1515 SSL_CTX_sess_accept(ssl_ctx)); in print_stats()
1517 SSL_CTX_sess_accept_renegotiate(ssl_ctx)); in print_stats()
1519 SSL_CTX_sess_accept_good(ssl_ctx)); in print_stats()
1521 SSL_CTX_sess_hits(ssl_ctx)); in print_stats()
1523 SSL_CTX_sess_misses(ssl_ctx)); in print_stats()
[all …]
/dragonfly/contrib/ldns/
HDdane.c72 SSL_CTX* ssl_ctx; in ldns_dane_new_ssl_context() local
74 ssl_ctx = SSL_CTX_new(TLS_client_method()); in ldns_dane_new_ssl_context()
75 if (ssl_ctx != NULL) in ldns_dane_new_ssl_context()
82 SSL_CTX_set_options(ssl_ctx, flags); in ldns_dane_new_ssl_context()
85 return ssl_ctx; in ldns_dane_new_ssl_context()
663 SSL_CTX *ssl_ctx = NULL; in ldns_dane_verify_rr() local
701 if (!(ssl_ctx = ldns_dane_new_ssl_context())) in ldns_dane_verify_rr()
704 else if (SSL_CTX_dane_enable(ssl_ctx) <= 0) in ldns_dane_verify_rr()
708 ssl_ctx, DANE_FLAG_NO_DANE_EE_NAMECHECKS), in ldns_dane_verify_rr()
709 !(ssl = SSL_new(ssl_ctx))) in ldns_dane_verify_rr()
[all …]
/dragonfly/contrib/wpa_supplicant/src/crypto/
HDtls_openssl.c235 SSL_CTX *ssl_ctx; member
654 static int tls_cryptoapi_ca_cert(SSL_CTX *ssl_ctx, SSL *ssl, const char *name) in tls_cryptoapi_ca_cert() argument
701 if (!X509_STORE_add_cert(SSL_CTX_get_cert_store(ssl_ctx), in tls_cryptoapi_ca_cert()
1112 void tls_deinit(void *ssl_ctx) in tls_deinit() argument
1114 struct tls_data *data = ssl_ctx; in tls_deinit()
1308 int tls_get_errors(void *ssl_ctx) in tls_get_errors() argument
1530 struct tls_connection * tls_connection_init(void *ssl_ctx) in tls_connection_init() argument
1532 struct tls_data *data = ssl_ctx; in tls_connection_init()
1562 conn->ssl_ctx = ssl; in tls_connection_init()
1612 void tls_connection_deinit(void *ssl_ctx, struct tls_connection *conn) in tls_connection_deinit() argument
[all …]
HDtls_wolfssl.c194 WOLFSSL_CTX *ssl_ctx; in tls_init() local
217 ssl_ctx = wolfSSL_CTX_new(wolfSSLv23_client_method()); in tls_init()
218 if (!ssl_ctx) { in tls_init()
227 wolfSSL_SetIORecv(ssl_ctx, wolfssl_receive_cb); in tls_init()
228 wolfSSL_SetIOSend(ssl_ctx, wolfssl_send_cb); in tls_init()
229 wolfSSL_CTX_set_ex_data(ssl_ctx, 0, context); in tls_init()
232 wolfSSL_CTX_set_quiet_shutdown(ssl_ctx, 1); in tls_init()
233 wolfSSL_CTX_set_session_cache_mode(ssl_ctx, in tls_init()
235 wolfSSL_CTX_set_timeout(ssl_ctx, conf->tls_session_lifetime); in tls_init()
236 wolfSSL_CTX_sess_set_remove_cb(ssl_ctx, remove_session_cb); in tls_init()
[all …]
HDtls_gnutls.c131 void tls_deinit(void *ssl_ctx) in tls_deinit() argument
133 struct tls_global *global = ssl_ctx; in tls_deinit()
148 int tls_get_errors(void *ssl_ctx) in tls_get_errors() argument
239 struct tls_connection * tls_connection_init(void *ssl_ctx) in tls_connection_init() argument
241 struct tls_global *global = ssl_ctx; in tls_connection_init()
276 void tls_connection_deinit(void *ssl_ctx, struct tls_connection *conn) in tls_connection_deinit() argument
292 int tls_connection_established(void *ssl_ctx, struct tls_connection *conn) in tls_connection_established() argument
306 int tls_connection_shutdown(void *ssl_ctx, struct tls_connection *conn) in tls_connection_shutdown() argument
308 struct tls_global *global = ssl_ctx; in tls_connection_shutdown()
854 int tls_global_set_verify(void *ssl_ctx, int check_crl, int strict) in tls_global_set_verify() argument
[all …]
HDtls_none.c20 void tls_deinit(void *ssl_ctx) in tls_deinit() argument
158 int tls_get_version(void *ssl_ctx, struct tls_connection *conn, in tls_get_version() argument
HDtls_openssl.h16 enum ocsp_result check_ocsp_resp(SSL_CTX *ssl_ctx, SSL *ssl, X509 *cert,
/dragonfly/contrib/wpa_supplicant/src/eap_peer/
HDeap_tls_common.c251 data->conn = tls_connection_init(data->ssl_ctx); in eap_tls_init_connection()
258 res = tls_connection_set_params(data->ssl_ctx, data->conn, params); in eap_tls_init_connection()
280 tls_connection_deinit(data->ssl_ctx, data->conn); in eap_tls_init_connection()
311 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_peer_tls_ssl_init()
312 sm->ssl_ctx; in eap_peer_tls_ssl_init()
350 tls_connection_deinit(data->ssl_ctx, data->conn); in eap_peer_tls_ssl_deinit()
384 if (tls_connection_export_key(data->ssl_ctx, data->conn, label, in eap_peer_tls_derive_key()
438 if (tls_connection_get_random(sm->ssl_ctx, data->conn, &keys) || in eap_peer_tls_derive_session_id()
592 data->tls_out = tls_connection_handshake(data->ssl_ctx, data->conn, in eap_tls_process_input()
598 tls_connection_established(data->ssl_ctx, data->conn) && in eap_tls_process_input()
[all …]
HDeap_tls.c26 void *ssl_ctx; member
48 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_tls_init()
49 sm->ssl_ctx; in eap_tls_init()
85 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_unauth_tls_init()
86 sm->ssl_ctx; in eap_unauth_tls_init()
112 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_wfa_unauth_tls_init()
113 sm->ssl_ctx; in eap_wfa_unauth_tls_init()
311 if (tls_connection_established(data->ssl_ctx, data->ssl.conn)) in eap_tls_process()
326 return tls_connection_established(data->ssl_ctx, data->ssl.conn); in eap_tls_has_reauth_data()
HDeap_fast.c179 if (tls_connection_set_session_ticket_cb(sm->ssl_ctx, data->ssl.conn, in eap_fast_init()
193 if (tls_connection_enable_workaround(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_init()
278 sks = eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_auth()
305 eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_provisioning()
1416 tls_connection_client_hello_ext(sm->ssl_ctx, data->ssl.conn, in eap_fast_use_pac_opaque()
1433 if (tls_connection_client_hello_ext(sm->ssl_ctx, data->ssl.conn, in eap_fast_clear_pac_opaque_ext()
1467 if (tls_connection_set_cipher_list(sm->ssl_ctx, data->ssl.conn, in eap_fast_set_provisioning_ciphers()
1558 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn) && in eap_fast_process()
1621 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_process()
1628 tls_get_cipher(sm->ssl_ctx, data->ssl.conn, in eap_fast_process()
[all …]
/dragonfly/contrib/wpa_supplicant/src/ap/
HDauthsrv.c114 srv.ssl_ctx = hapd->ssl_ctx; in hostapd_setup_radius_srv()
221 hapd->ssl_ctx = tls_init(&conf); in authsrv_init()
222 if (hapd->ssl_ctx == NULL) { in authsrv_init()
245 if (tls_global_set_params(hapd->ssl_ctx, &params)) { in authsrv_init()
251 if (tls_global_set_verify(hapd->ssl_ctx, in authsrv_init()
294 if (hapd->ssl_ctx) { in authsrv_deinit()
295 tls_deinit(hapd->ssl_ctx); in authsrv_deinit()
296 hapd->ssl_ctx = NULL; in authsrv_deinit()
/dragonfly/crypto/libressl/ssl/
HDtls13_legacy.c533 SSL_CTX *ssl_ctx = ctx->ssl->ctx; in tls13_legacy_servername_process() local
536 if (ssl_ctx->internal->tlsext_servername_callback == NULL) in tls13_legacy_servername_process()
537 ssl_ctx = s->initial_ctx; in tls13_legacy_servername_process()
538 if (ssl_ctx->internal->tlsext_servername_callback == NULL) in tls13_legacy_servername_process()
541 ret = ssl_ctx->internal->tlsext_servername_callback(s, &legacy_alert, in tls13_legacy_servername_process()
542 ssl_ctx->internal->tlsext_servername_arg); in tls13_legacy_servername_process()
/dragonfly/lib/libfetch/
HDcommon.c1215 conn->ssl_ctx = SSL_CTX_new(conn->ssl_meth); in fetch_ssl()
1216 SSL_CTX_set_mode(conn->ssl_ctx, SSL_MODE_AUTO_RETRY); in fetch_ssl()
1218 fetch_ssl_setup_transport_layer(conn->ssl_ctx, verbose); in fetch_ssl()
1219 if (!fetch_ssl_setup_peer_verification(conn->ssl_ctx, verbose)) in fetch_ssl()
1221 if (!fetch_ssl_setup_client_certificate(conn->ssl_ctx, verbose)) in fetch_ssl()
1224 conn->ssl = SSL_new(conn->ssl_ctx); in fetch_ssl()
1589 if (conn->ssl_ctx) { in fetch_close()
1590 SSL_CTX_free(conn->ssl_ctx); in fetch_close()
1591 conn->ssl_ctx = NULL; in fetch_close()
/dragonfly/contrib/wpa_supplicant/src/eap_common/
HDeap_fast_common.c96 u8 * eap_fast_derive_key(void *ssl_ctx, struct tls_connection *conn, size_t len) in eap_fast_derive_key() argument
104 if (tls_connection_get_eap_fast_key(ssl_ctx, conn, out, len)) { in eap_fast_derive_key()
/dragonfly/contrib/wpa_supplicant/src/radius/
HDradius_server.h68 void *ssl_ctx; member

12