mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2025-02-08 09:39:58 +00:00
Fix various issues cause rebase to latest code
Signed-off-by: Xiaokang Qian <xiaokang.qian@arm.com>
This commit is contained in:
parent
72b9b17e11
commit
2cd5ce0c6b
@ -842,9 +842,6 @@
|
|||||||
"but no key exchange methods defined with MBEDTLS_KEY_EXCHANGE_xxxx"
|
"but no key exchange methods defined with MBEDTLS_KEY_EXCHANGE_xxxx"
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
/* Early data requires MBEDTLS_SSL_SESSION_TICKETS and SOME_PSK related
|
|
||||||
* mode defined
|
|
||||||
*/
|
|
||||||
#if defined(MBEDTLS_SSL_EARLY_DATA) && \
|
#if defined(MBEDTLS_SSL_EARLY_DATA) && \
|
||||||
( !defined(MBEDTLS_SSL_SESSION_TICKETS) || \
|
( !defined(MBEDTLS_SSL_SESSION_TICKETS) || \
|
||||||
( !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_ENABLED) && \
|
( !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_ENABLED) && \
|
||||||
|
@ -1648,7 +1648,7 @@
|
|||||||
* production.
|
* production.
|
||||||
*
|
*
|
||||||
*/
|
*/
|
||||||
//#define MBEDTLS_SSL_EARLY_DATA
|
#define MBEDTLS_SSL_EARLY_DATA
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* \def MBEDTLS_SSL_PROTO_DTLS
|
* \def MBEDTLS_SSL_PROTO_DTLS
|
||||||
|
@ -816,9 +816,12 @@ typedef uint8_t mbedtls_ssl_tls13_ticket_flags;
|
|||||||
MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK /* 1U << 0 */
|
MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK /* 1U << 0 */
|
||||||
#define MBEDTLS_SSL_TLS1_3_TICKET_ALLOW_PSK_EPHEMERAL_RESUMPTION \
|
#define MBEDTLS_SSL_TLS1_3_TICKET_ALLOW_PSK_EPHEMERAL_RESUMPTION \
|
||||||
MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL /* 1U << 2 */
|
MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL /* 1U << 2 */
|
||||||
#define MBEDTLS_SSL_TLS1_3_TICKET_ALLOW_EARLY_DATA \
|
#define MBEDTLS_SSL_TLS1_3_TICKET_ALLOW_EARLY_DATA ( 1U << 3 )
|
||||||
MBEDTLS_SSL_TLS1_3_TICKET_ALLOW_PSK_EPHEMERAL_RESUMPTION << 1
|
|
||||||
|
|
||||||
|
#define MBEDTLS_SSL_TLS1_3_TICKET_FLAGS_MASK \
|
||||||
|
( MBEDTLS_SSL_TLS1_3_TICKET_ALLOW_PSK_RESUMPTION | \
|
||||||
|
MBEDTLS_SSL_TLS1_3_TICKET_ALLOW_PSK_EPHEMERAL_RESUMPTION | \
|
||||||
|
MBEDTLS_SSL_TLS1_3_TICKET_ALLOW_EARLY_DATA )
|
||||||
#endif /* MBEDTLS_SSL_PROTO_TLS1_3 && MBEDTLS_SSL_SESSION_TICKETS */
|
#endif /* MBEDTLS_SSL_PROTO_TLS1_3 && MBEDTLS_SSL_SESSION_TICKETS */
|
||||||
/**
|
/**
|
||||||
* \brief Callback type: server-side session cache getter
|
* \brief Callback type: server-side session cache getter
|
||||||
|
@ -2542,7 +2542,6 @@ static int ssl_tls13_parse_new_session_ticket_exts( mbedtls_ssl_context *ssl,
|
|||||||
switch( extension_type )
|
switch( extension_type )
|
||||||
{
|
{
|
||||||
case MBEDTLS_TLS_EXT_EARLY_DATA:
|
case MBEDTLS_TLS_EXT_EARLY_DATA:
|
||||||
MBEDTLS_SSL_DEBUG_MSG( 4, ( "early_data extension received" ) );
|
|
||||||
if( extension_data_len != 4 )
|
if( extension_data_len != 4 )
|
||||||
{
|
{
|
||||||
MBEDTLS_SSL_PEND_FATAL_ALERT(
|
MBEDTLS_SSL_PEND_FATAL_ALERT(
|
||||||
|
@ -1395,13 +1395,14 @@ int mbedtls_ssl_tls13_write_early_data_ext( mbedtls_ssl_context *ssl,
|
|||||||
((void) ssl);
|
((void) ssl);
|
||||||
|
|
||||||
MBEDTLS_SSL_CHK_BUF_PTR( p, end, 4 );
|
MBEDTLS_SSL_CHK_BUF_PTR( p, end, 4 );
|
||||||
MBEDTLS_SSL_DEBUG_MSG(
|
|
||||||
3, ( "client hello, adding early_data extension" ) );
|
|
||||||
|
|
||||||
MBEDTLS_PUT_UINT16_BE( MBEDTLS_TLS_EXT_EARLY_DATA, p, 0 );
|
MBEDTLS_PUT_UINT16_BE( MBEDTLS_TLS_EXT_EARLY_DATA, p, 0 );
|
||||||
MBEDTLS_PUT_UINT16_BE( 0, p, 2 );
|
MBEDTLS_PUT_UINT16_BE( 0, p, 2 );
|
||||||
|
|
||||||
*out_len = 4;
|
*out_len = 4;
|
||||||
|
|
||||||
|
mbedtls_ssl_tls13_set_hs_sent_ext_mask( ssl, MBEDTLS_TLS_EXT_EARLY_DATA );
|
||||||
|
|
||||||
return( 0 );
|
return( 0 );
|
||||||
}
|
}
|
||||||
#endif /* MBEDTLS_SSL_EARLY_DATA */
|
#endif /* MBEDTLS_SSL_EARLY_DATA */
|
||||||
|
@ -2504,12 +2504,6 @@ int main( int argc, char *argv[] )
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
#if defined(MBEDTLS_SSL_EARLY_DATA) && defined(MBEDTLS_SSL_CLI_C)
|
|
||||||
/* TODO: We can log the actual early data status after we define
|
|
||||||
* the API mbedtls_ssl_get_early_data_status.
|
|
||||||
*/
|
|
||||||
#endif /* MBEDTLS_SSL_EARLY_DATA && MBEDTLS_SSL_CLI_C */
|
|
||||||
|
|
||||||
#if defined(MBEDTLS_SSL_HANDSHAKE_WITH_CERT_ENABLED)
|
#if defined(MBEDTLS_SSL_HANDSHAKE_WITH_CERT_ENABLED)
|
||||||
/*
|
/*
|
||||||
* 5. Verify the server certificate
|
* 5. Verify the server certificate
|
||||||
@ -3220,12 +3214,6 @@ reconnect:
|
|||||||
|
|
||||||
mbedtls_printf( " ok\n" );
|
mbedtls_printf( " ok\n" );
|
||||||
|
|
||||||
#if defined(MBEDTLS_SSL_EARLY_DATA) && defined(MBEDTLS_SSL_CLI_C)
|
|
||||||
/* TODO: We can log the actual early data status when reconnect
|
|
||||||
* after we define the API mbedtls_ssl_get_early_data_status.
|
|
||||||
*/
|
|
||||||
#endif /* MBEDTLS_SSL_EARLY_DATA && MBEDTLS_SSL_CLI_C */
|
|
||||||
|
|
||||||
goto send_request;
|
goto send_request;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
Loading…
x
Reference in New Issue
Block a user