| /dragonfly/crypto/libressl/tls/ |
| HD | tls_server.c | 123 SSL_set_SSL_CTX(conn_ctx->ssl_conn, sni_ctx->ssl_ctx); in tls_servername_cb() 224 tls_configure_server_ssl(struct tls *ctx, SSL_CTX **ssl_ctx, in tls_configure_server_ssl() argument 227 SSL_CTX_free(*ssl_ctx); in tls_configure_server_ssl() 229 if ((*ssl_ctx = SSL_CTX_new(SSLv23_server_method())) == NULL) { in tls_configure_server_ssl() 234 SSL_CTX_set_options(*ssl_ctx, SSL_OP_NO_CLIENT_RENEGOTIATION); in tls_configure_server_ssl() 236 if (SSL_CTX_set_tlsext_servername_callback(*ssl_ctx, in tls_configure_server_ssl() 241 if (SSL_CTX_set_tlsext_servername_arg(*ssl_ctx, ctx) != 1) { in tls_configure_server_ssl() 246 if (tls_configure_ssl(ctx, *ssl_ctx) != 0) in tls_configure_server_ssl() 248 if (tls_configure_ssl_keypair(ctx, *ssl_ctx, keypair, 1) != 0) in tls_configure_server_ssl() 254 if (tls_configure_ssl_verify(ctx, *ssl_ctx, verify) == -1) in tls_configure_server_ssl() [all …]
|
| HD | tls.c | 229 SSL_CTX_free(sni_ctx->ssl_ctx); in tls_sni_ctx_free() 450 tls_configure_ssl_keypair(struct tls *ctx, SSL_CTX *ssl_ctx, in tls_configure_ssl_keypair() argument 466 if (SSL_CTX_use_certificate_chain_mem(ssl_ctx, in tls_configure_ssl_keypair() 478 if (SSL_CTX_use_PrivateKey(ssl_ctx, pkey) != 1) { in tls_configure_ssl_keypair() 487 SSL_CTX_check_private_key(ssl_ctx) != 1) { in tls_configure_ssl_keypair() 501 tls_configure_ssl(struct tls *ctx, SSL_CTX *ssl_ctx) in tls_configure_ssl() argument 503 SSL_CTX_clear_mode(ssl_ctx, SSL_MODE_AUTO_RETRY); in tls_configure_ssl() 505 SSL_CTX_set_mode(ssl_ctx, SSL_MODE_ENABLE_PARTIAL_WRITE); in tls_configure_ssl() 506 SSL_CTX_set_mode(ssl_ctx, SSL_MODE_ACCEPT_MOVING_WRITE_BUFFER); in tls_configure_ssl() 508 SSL_CTX_set_options(ssl_ctx, SSL_OP_NO_SSLv2); in tls_configure_ssl() [all …]
|
| HD | tls_client.c | 305 if ((ctx->ssl_ctx = SSL_CTX_new(SSLv23_client_method())) == NULL) { in tls_connect_common() 310 if (tls_configure_ssl(ctx, ctx->ssl_ctx) != 0) in tls_connect_common() 313 if (tls_configure_ssl_keypair(ctx, ctx->ssl_ctx, in tls_connect_common() 324 if (tls_configure_ssl_verify(ctx, ctx->ssl_ctx, SSL_VERIFY_PEER) == -1) in tls_connect_common() 328 if (SSL_CTX_set1_groups(ctx->ssl_ctx, ctx->config->ecdhecurves, in tls_connect_common() 335 if (SSL_CTX_set_tlsext_status_cb(ctx->ssl_ctx, tls_ocsp_verify_cb) != 1) { in tls_connect_common() 340 if ((ctx->ssl_conn = SSL_new(ctx->ssl_ctx)) == NULL) { in tls_connect_common()
|
| HD | tls_internal.h | 177 SSL_CTX *ssl_ctx; member 194 SSL_CTX *ssl_ctx; member 244 int tls_configure_ssl(struct tls *ctx, SSL_CTX *ssl_ctx); 245 int tls_configure_ssl_keypair(struct tls *ctx, SSL_CTX *ssl_ctx, 247 int tls_configure_ssl_verify(struct tls *ctx, SSL_CTX *ssl_ctx, int verify);
|
| HD | tls_ocsp.c | 127 SSL_CTX *ssl_ctx) in tls_ocsp_get_certid() argument 147 if ((store = SSL_CTX_get_cert_store(ssl_ctx)) == NULL) in tls_ocsp_get_certid() 228 SSL_CTX_get_cert_store(ctx->ssl_ctx), flags) != 1) { in tls_ocsp_verify_response() 242 ctx->ocsp->extra_certs, ctx->ssl_ctx); in tls_ocsp_verify_response()
|
| HD | tls_config.c | 471 SSL_CTX *ssl_ctx = NULL; in tls_config_set_ciphers() local 485 if ((ssl_ctx = SSL_CTX_new(SSLv23_method())) == NULL) { in tls_config_set_ciphers() 489 if (SSL_CTX_set_cipher_list(ssl_ctx, ciphers) != 1) { in tls_config_set_ciphers() 494 SSL_CTX_free(ssl_ctx); in tls_config_set_ciphers() 498 SSL_CTX_free(ssl_ctx); in tls_config_set_ciphers()
|
| /dragonfly/contrib/wpa_supplicant/src/eap_server/ |
| HD | eap_server_tls_common.c | 52 if (sm->ssl_ctx == NULL) { in eap_server_tls_ssl_init() 60 data->conn = tls_connection_init(sm->ssl_ctx); in eap_server_tls_ssl_init() 78 if (tls_connection_set_verify(sm->ssl_ctx, data->conn, verify_peer, in eap_server_tls_ssl_init() 83 tls_connection_deinit(sm->ssl_ctx, data->conn); in eap_server_tls_ssl_init() 102 tls_connection_deinit(sm->ssl_ctx, data->conn); in eap_server_tls_ssl_deinit() 119 if (tls_connection_export_key(sm->ssl_ctx, data->conn, label, in eap_server_tls_derive_key() 173 if (tls_connection_get_random(sm->ssl_ctx, data->conn, &keys)) in eap_server_tls_derive_session_id() 343 data->tls_out = tls_connection_server_handshake(sm->ssl_ctx, in eap_server_tls_phase1() 350 if (tls_connection_get_failed(sm->ssl_ctx, data->conn)) { in eap_server_tls_phase1() 357 if (tls_get_version(sm->ssl_ctx, data->conn, buf, sizeof(buf)) == 0) { in eap_server_tls_phase1() [all …]
|
| HD | eap_server_tls.c | 190 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn)) in eap_tls_buildReq() 270 tls_connection_established(sm->ssl_ctx, data->ssl.conn)) { in eap_tls_process_msg() 318 if (!tls_connection_established(sm->ssl_ctx, data->ssl.conn) || in eap_tls_process() 319 !tls_connection_resumed(sm->ssl_ctx, data->ssl.conn)) in eap_tls_process()
|
| HD | eap_server_fast.c | 281 sks = eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_auth() 307 eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_provisioning() 443 if (tls_connection_set_cipher_list(sm->ssl_ctx, data->ssl.conn, in eap_fast_init() 451 if (tls_connection_set_session_ticket_cb(sm->ssl_ctx, data->ssl.conn, in eap_fast_init() 555 if (tls_get_cipher(sm->ssl_ctx, data->ssl.conn, cipher, sizeof(cipher)) in eap_fast_phase1_done() 875 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_buildReq() 1400 in_decrypted = tls_connection_decrypt(sm->ssl_ctx, data->ssl.conn, in eap_fast_process_phase2() 1460 if (!tls_connection_established(sm->ssl_ctx, data->ssl.conn) || in eap_fast_process_phase1()
|
| /dragonfly/crypto/libressl/apps/openssl/ |
| HD | ciphers.c | 111 SSL_CTX *ssl_ctx = NULL; in ciphers_main() local 137 if ((ssl_ctx = SSL_CTX_new(TLS_method())) == NULL) in ciphers_main() 141 if (!SSL_CTX_set_min_proto_version(ssl_ctx, in ciphers_main() 144 if (!SSL_CTX_set_max_proto_version(ssl_ctx, in ciphers_main() 150 if (SSL_CTX_set_cipher_list(ssl_ctx, cipherlist) == 0) in ciphers_main() 154 if ((ssl = SSL_new(ssl_ctx)) == NULL) in ciphers_main() 198 SSL_CTX_free(ssl_ctx); in ciphers_main()
|
| HD | s_server.c | 1504 print_stats(BIO *bio, SSL_CTX *ssl_ctx) in print_stats() argument 1507 SSL_CTX_sess_number(ssl_ctx)); in print_stats() 1509 SSL_CTX_sess_connect(ssl_ctx)); in print_stats() 1511 SSL_CTX_sess_connect_renegotiate(ssl_ctx)); in print_stats() 1513 SSL_CTX_sess_connect_good(ssl_ctx)); in print_stats() 1515 SSL_CTX_sess_accept(ssl_ctx)); in print_stats() 1517 SSL_CTX_sess_accept_renegotiate(ssl_ctx)); in print_stats() 1519 SSL_CTX_sess_accept_good(ssl_ctx)); in print_stats() 1521 SSL_CTX_sess_hits(ssl_ctx)); in print_stats() 1523 SSL_CTX_sess_misses(ssl_ctx)); in print_stats() [all …]
|
| /dragonfly/contrib/ldns/ |
| HD | dane.c | 72 SSL_CTX* ssl_ctx; in ldns_dane_new_ssl_context() local 74 ssl_ctx = SSL_CTX_new(TLS_client_method()); in ldns_dane_new_ssl_context() 75 if (ssl_ctx != NULL) in ldns_dane_new_ssl_context() 82 SSL_CTX_set_options(ssl_ctx, flags); in ldns_dane_new_ssl_context() 85 return ssl_ctx; in ldns_dane_new_ssl_context() 663 SSL_CTX *ssl_ctx = NULL; in ldns_dane_verify_rr() local 701 if (!(ssl_ctx = ldns_dane_new_ssl_context())) in ldns_dane_verify_rr() 704 else if (SSL_CTX_dane_enable(ssl_ctx) <= 0) in ldns_dane_verify_rr() 708 ssl_ctx, DANE_FLAG_NO_DANE_EE_NAMECHECKS), in ldns_dane_verify_rr() 709 !(ssl = SSL_new(ssl_ctx))) in ldns_dane_verify_rr() [all …]
|
| /dragonfly/contrib/wpa_supplicant/src/crypto/ |
| HD | tls_openssl.c | 235 SSL_CTX *ssl_ctx; member 654 static int tls_cryptoapi_ca_cert(SSL_CTX *ssl_ctx, SSL *ssl, const char *name) in tls_cryptoapi_ca_cert() argument 701 if (!X509_STORE_add_cert(SSL_CTX_get_cert_store(ssl_ctx), in tls_cryptoapi_ca_cert() 1112 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 1114 struct tls_data *data = ssl_ctx; in tls_deinit() 1308 int tls_get_errors(void *ssl_ctx) in tls_get_errors() argument 1530 struct tls_connection * tls_connection_init(void *ssl_ctx) in tls_connection_init() argument 1532 struct tls_data *data = ssl_ctx; in tls_connection_init() 1562 conn->ssl_ctx = ssl; in tls_connection_init() 1612 void tls_connection_deinit(void *ssl_ctx, struct tls_connection *conn) in tls_connection_deinit() argument [all …]
|
| HD | tls_wolfssl.c | 194 WOLFSSL_CTX *ssl_ctx; in tls_init() local 217 ssl_ctx = wolfSSL_CTX_new(wolfSSLv23_client_method()); in tls_init() 218 if (!ssl_ctx) { in tls_init() 227 wolfSSL_SetIORecv(ssl_ctx, wolfssl_receive_cb); in tls_init() 228 wolfSSL_SetIOSend(ssl_ctx, wolfssl_send_cb); in tls_init() 229 wolfSSL_CTX_set_ex_data(ssl_ctx, 0, context); in tls_init() 232 wolfSSL_CTX_set_quiet_shutdown(ssl_ctx, 1); in tls_init() 233 wolfSSL_CTX_set_session_cache_mode(ssl_ctx, in tls_init() 235 wolfSSL_CTX_set_timeout(ssl_ctx, conf->tls_session_lifetime); in tls_init() 236 wolfSSL_CTX_sess_set_remove_cb(ssl_ctx, remove_session_cb); in tls_init() [all …]
|
| HD | tls_gnutls.c | 131 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 133 struct tls_global *global = ssl_ctx; in tls_deinit() 148 int tls_get_errors(void *ssl_ctx) in tls_get_errors() argument 239 struct tls_connection * tls_connection_init(void *ssl_ctx) in tls_connection_init() argument 241 struct tls_global *global = ssl_ctx; in tls_connection_init() 276 void tls_connection_deinit(void *ssl_ctx, struct tls_connection *conn) in tls_connection_deinit() argument 292 int tls_connection_established(void *ssl_ctx, struct tls_connection *conn) in tls_connection_established() argument 306 int tls_connection_shutdown(void *ssl_ctx, struct tls_connection *conn) in tls_connection_shutdown() argument 308 struct tls_global *global = ssl_ctx; in tls_connection_shutdown() 854 int tls_global_set_verify(void *ssl_ctx, int check_crl, int strict) in tls_global_set_verify() argument [all …]
|
| HD | tls_none.c | 20 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 158 int tls_get_version(void *ssl_ctx, struct tls_connection *conn, in tls_get_version() argument
|
| HD | tls_openssl.h | 16 enum ocsp_result check_ocsp_resp(SSL_CTX *ssl_ctx, SSL *ssl, X509 *cert,
|
| /dragonfly/contrib/wpa_supplicant/src/eap_peer/ |
| HD | eap_tls_common.c | 251 data->conn = tls_connection_init(data->ssl_ctx); in eap_tls_init_connection() 258 res = tls_connection_set_params(data->ssl_ctx, data->conn, params); in eap_tls_init_connection() 280 tls_connection_deinit(data->ssl_ctx, data->conn); in eap_tls_init_connection() 311 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_peer_tls_ssl_init() 312 sm->ssl_ctx; in eap_peer_tls_ssl_init() 350 tls_connection_deinit(data->ssl_ctx, data->conn); in eap_peer_tls_ssl_deinit() 384 if (tls_connection_export_key(data->ssl_ctx, data->conn, label, in eap_peer_tls_derive_key() 438 if (tls_connection_get_random(sm->ssl_ctx, data->conn, &keys) || in eap_peer_tls_derive_session_id() 592 data->tls_out = tls_connection_handshake(data->ssl_ctx, data->conn, in eap_tls_process_input() 598 tls_connection_established(data->ssl_ctx, data->conn) && in eap_tls_process_input() [all …]
|
| HD | eap_tls.c | 26 void *ssl_ctx; member 48 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_tls_init() 49 sm->ssl_ctx; in eap_tls_init() 85 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_unauth_tls_init() 86 sm->ssl_ctx; in eap_unauth_tls_init() 112 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_wfa_unauth_tls_init() 113 sm->ssl_ctx; in eap_wfa_unauth_tls_init() 311 if (tls_connection_established(data->ssl_ctx, data->ssl.conn)) in eap_tls_process() 326 return tls_connection_established(data->ssl_ctx, data->ssl.conn); in eap_tls_has_reauth_data()
|
| HD | eap_fast.c | 179 if (tls_connection_set_session_ticket_cb(sm->ssl_ctx, data->ssl.conn, in eap_fast_init() 193 if (tls_connection_enable_workaround(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_init() 278 sks = eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_auth() 305 eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_provisioning() 1416 tls_connection_client_hello_ext(sm->ssl_ctx, data->ssl.conn, in eap_fast_use_pac_opaque() 1433 if (tls_connection_client_hello_ext(sm->ssl_ctx, data->ssl.conn, in eap_fast_clear_pac_opaque_ext() 1467 if (tls_connection_set_cipher_list(sm->ssl_ctx, data->ssl.conn, in eap_fast_set_provisioning_ciphers() 1558 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn) && in eap_fast_process() 1621 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_process() 1628 tls_get_cipher(sm->ssl_ctx, data->ssl.conn, in eap_fast_process() [all …]
|
| /dragonfly/contrib/wpa_supplicant/src/ap/ |
| HD | authsrv.c | 114 srv.ssl_ctx = hapd->ssl_ctx; in hostapd_setup_radius_srv() 221 hapd->ssl_ctx = tls_init(&conf); in authsrv_init() 222 if (hapd->ssl_ctx == NULL) { in authsrv_init() 245 if (tls_global_set_params(hapd->ssl_ctx, ¶ms)) { in authsrv_init() 251 if (tls_global_set_verify(hapd->ssl_ctx, in authsrv_init() 294 if (hapd->ssl_ctx) { in authsrv_deinit() 295 tls_deinit(hapd->ssl_ctx); in authsrv_deinit() 296 hapd->ssl_ctx = NULL; in authsrv_deinit()
|
| /dragonfly/crypto/libressl/ssl/ |
| HD | tls13_legacy.c | 533 SSL_CTX *ssl_ctx = ctx->ssl->ctx; in tls13_legacy_servername_process() local 536 if (ssl_ctx->internal->tlsext_servername_callback == NULL) in tls13_legacy_servername_process() 537 ssl_ctx = s->initial_ctx; in tls13_legacy_servername_process() 538 if (ssl_ctx->internal->tlsext_servername_callback == NULL) in tls13_legacy_servername_process() 541 ret = ssl_ctx->internal->tlsext_servername_callback(s, &legacy_alert, in tls13_legacy_servername_process() 542 ssl_ctx->internal->tlsext_servername_arg); in tls13_legacy_servername_process()
|
| /dragonfly/lib/libfetch/ |
| HD | common.c | 1215 conn->ssl_ctx = SSL_CTX_new(conn->ssl_meth); in fetch_ssl() 1216 SSL_CTX_set_mode(conn->ssl_ctx, SSL_MODE_AUTO_RETRY); in fetch_ssl() 1218 fetch_ssl_setup_transport_layer(conn->ssl_ctx, verbose); in fetch_ssl() 1219 if (!fetch_ssl_setup_peer_verification(conn->ssl_ctx, verbose)) in fetch_ssl() 1221 if (!fetch_ssl_setup_client_certificate(conn->ssl_ctx, verbose)) in fetch_ssl() 1224 conn->ssl = SSL_new(conn->ssl_ctx); in fetch_ssl() 1589 if (conn->ssl_ctx) { in fetch_close() 1590 SSL_CTX_free(conn->ssl_ctx); in fetch_close() 1591 conn->ssl_ctx = NULL; in fetch_close()
|
| /dragonfly/contrib/wpa_supplicant/src/eap_common/ |
| HD | eap_fast_common.c | 96 u8 * eap_fast_derive_key(void *ssl_ctx, struct tls_connection *conn, size_t len) in eap_fast_derive_key() argument 104 if (tls_connection_get_eap_fast_key(ssl_ctx, conn, out, len)) { in eap_fast_derive_key()
|
| /dragonfly/contrib/wpa_supplicant/src/radius/ |
| HD | radius_server.h | 68 void *ssl_ctx; member
|