/freebsd/contrib/wpa/src/eap_server/ |
H A D | eap_server_tls_common.c | 52 if (!sm->cfg->ssl_ctx) { in eap_server_tls_ssl_init() 60 data->conn = tls_connection_init(sm->cfg->ssl_ctx); in eap_server_tls_ssl_init() 78 if (tls_connection_set_verify(sm->cfg->ssl_ctx, data->conn, verify_peer, in eap_server_tls_ssl_init() 83 tls_connection_deinit(sm->cfg->ssl_ctx, data->conn); in eap_server_tls_ssl_init() 108 tls_connection_deinit(sm->cfg->ssl_ctx, data->conn); in eap_server_tls_ssl_deinit() 125 if (tls_connection_export_key(sm->cfg->ssl_ctx, data->conn, label, in eap_server_tls_derive_key() 179 if (tls_connection_get_random(sm->cfg->ssl_ctx, data->conn, &keys)) in eap_server_tls_derive_session_id() 349 data->tls_out = tls_connection_server_handshake(sm->cfg->ssl_ctx, in eap_server_tls_phase1() 356 if (tls_connection_get_failed(sm->cfg->ssl_ctx, data->conn)) { in eap_server_tls_phase1() 363 if (tls_get_version(sm->cfg->ssl_ctx, data->conn, in eap_server_tls_phase1() [all …]
|
H A D | eap_server_fast.c | 281 sks = eap_fast_derive_key(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_auth() 307 eap_fast_derive_key(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_provisioning() 432 if (tls_connection_set_cipher_list(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_init() 440 if (tls_connection_set_session_ticket_cb(sm->cfg->ssl_ctx, in eap_fast_init() 546 if (tls_get_cipher(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_phase1_done() 866 if (tls_connection_established(sm->cfg->ssl_ctx, in eap_fast_buildReq() 1404 in_decrypted = tls_connection_decrypt(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_process_phase2() 1464 if (!tls_connection_established(sm->cfg->ssl_ctx, data->ssl.conn) || in eap_fast_process_phase1()
|
H A D | eap_server_tls.c | 190 if (tls_connection_established(sm->cfg->ssl_ctx, in eap_tls_buildReq() 286 if (!tls_connection_established(sm->cfg->ssl_ctx, data->ssl.conn) || in eap_tls_process() 287 !tls_connection_resumed(sm->cfg->ssl_ctx, data->ssl.conn)) in eap_tls_process()
|
H A D | eap_server_peap.c | 113 tls_connection_resumed(sm->cfg->ssl_ctx, data->ssl.conn)) in eap_peap_valid_session() 357 if (tls_connection_resumed(sm->cfg->ssl_ctx, data->ssl.conn)) { in eap_peap_derive_cmk() 520 !tls_connection_resumed(sm->cfg->ssl_ctx, data->ssl.conn)) { in eap_peap_build_phase2_term() 560 if (tls_connection_established(sm->cfg->ssl_ctx, in eap_peap_buildReq() 1129 in_decrypted = tls_connection_decrypt(sm->cfg->ssl_ctx, data->ssl.conn, in eap_peap_process_phase2() 1289 !tls_connection_established(sm->cfg->ssl_ctx, data->ssl.conn) || in eap_peap_process() 1290 !tls_connection_resumed(sm->cfg->ssl_ctx, data->ssl.conn)) in eap_peap_process()
|
/freebsd/crypto/openssl/demos/bio/ |
H A D | sconnect.c | 36 SSL_CTX *ssl_ctx = NULL; in main() local 51 ssl_ctx = SSL_CTX_new(TLS_client_method()); in main() 54 SSL_CTX_set_verify(ssl_ctx, SSL_VERIFY_PEER, NULL); in main() 55 SSL_CTX_load_verify_locations(ssl_ctx, CAfile, NULL); in main() 58 ssl = SSL_new(ssl_ctx); in main() 126 SSL_CTX_free(ssl_ctx); in main()
|
/freebsd/contrib/ldns/ |
H A D | dane.c | 72 SSL_CTX* ssl_ctx; in ldns_dane_new_ssl_context() local 74 ssl_ctx = SSL_CTX_new(TLS_client_method()); in ldns_dane_new_ssl_context() 75 if (ssl_ctx != NULL) in ldns_dane_new_ssl_context() 82 SSL_CTX_set_options(ssl_ctx, flags); in ldns_dane_new_ssl_context() 85 return ssl_ctx; in ldns_dane_new_ssl_context() 663 SSL_CTX *ssl_ctx = NULL; in ldns_dane_verify_rr() local 701 if (!(ssl_ctx = ldns_dane_new_ssl_context())) in ldns_dane_verify_rr() 704 else if (SSL_CTX_dane_enable(ssl_ctx) <= 0) in ldns_dane_verify_rr() 708 ssl_ctx, DANE_FLAG_NO_DANE_EE_NAMECHECKS), in ldns_dane_verify_rr() 709 !(ssl = SSL_new(ssl_ctx))) in ldns_dane_verify_rr() [all …]
|
/freebsd/contrib/ntp/sntp/libevent/sample/ |
H A D | https-client.c | 228 SSL_CTX *ssl_ctx = NULL; in main() local 360 ssl_ctx = SSL_CTX_new(SSLv23_method()); in main() 361 if (!ssl_ctx) { in main() 369 store = SSL_CTX_get_cert_store(ssl_ctx); in main() 383 if (SSL_CTX_load_verify_locations(ssl_ctx, crt, NULL) != 1) { in main() 396 SSL_CTX_set_verify(ssl_ctx, SSL_VERIFY_PEER, NULL); in main() 410 SSL_CTX_set_cert_verify_callback(ssl_ctx, cert_verify_callback, in main() 421 ssl = SSL_new(ssl_ctx); in main() 518 if (ssl_ctx) in main() 519 SSL_CTX_free(ssl_ctx); in main()
|
H A D | le-proxy.c | 45 static SSL_CTX *ssl_ctx = NULL; variable 168 if (!ssl_ctx || use_wrapper) in accept_cb() 172 SSL *ssl = SSL_new(ssl_ctx); in accept_cb() 188 if (ssl_ctx && use_wrapper) { in accept_cb() 190 SSL *ssl = SSL_new(ssl_ctx); in accept_cb() 283 ssl_ctx = SSL_CTX_new(TLS_method()); in main()
|
/freebsd/contrib/libevent/sample/ |
H A D | https-client.c | 228 SSL_CTX *ssl_ctx = NULL; in main() local 360 ssl_ctx = SSL_CTX_new(SSLv23_method()); in main() 361 if (!ssl_ctx) { in main() 369 store = SSL_CTX_get_cert_store(ssl_ctx); in main() 383 if (SSL_CTX_load_verify_locations(ssl_ctx, crt, NULL) != 1) { in main() 396 SSL_CTX_set_verify(ssl_ctx, SSL_VERIFY_PEER, NULL); in main() 410 SSL_CTX_set_cert_verify_callback(ssl_ctx, cert_verify_callback, in main() 421 ssl = SSL_new(ssl_ctx); in main() 518 if (ssl_ctx) in main() 519 SSL_CTX_free(ssl_ctx); in main()
|
H A D | le-proxy.c | 45 static SSL_CTX *ssl_ctx = NULL; variable 168 if (!ssl_ctx || use_wrapper) in accept_cb() 172 SSL *ssl = SSL_new(ssl_ctx); in accept_cb() 188 if (ssl_ctx && use_wrapper) { in accept_cb() 190 SSL *ssl = SSL_new(ssl_ctx); in accept_cb() 283 ssl_ctx = SSL_CTX_new(TLS_method()); in main()
|
/freebsd/contrib/wpa/src/eap_peer/ |
H A D | eap_tls_common.c | 262 data->conn = tls_connection_init(data->ssl_ctx); in eap_tls_init_connection() 269 res = tls_connection_set_params(data->ssl_ctx, data->conn, params); in eap_tls_init_connection() 291 tls_connection_deinit(data->ssl_ctx, data->conn); in eap_tls_init_connection() 322 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_peer_tls_ssl_init() 323 sm->ssl_ctx; in eap_peer_tls_ssl_init() 361 tls_connection_deinit(data->ssl_ctx, data->conn); in eap_peer_tls_ssl_deinit() 395 if (tls_connection_export_key(data->ssl_ctx, data->conn, label, in eap_peer_tls_derive_key() 449 if (tls_connection_get_random(sm->ssl_ctx, data->conn, &keys) || in eap_peer_tls_derive_session_id() 603 data->tls_out = tls_connection_handshake(data->ssl_ctx, data->conn, in eap_tls_process_input() 609 tls_connection_established(data->ssl_ctx, data->conn) && in eap_tls_process_input() [all …]
|
H A D | eap_tls.c | 26 void *ssl_ctx; member 56 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_tls_init() 57 sm->ssl_ctx; in eap_tls_init() 92 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_unauth_tls_init() 93 sm->ssl_ctx; in eap_unauth_tls_init() 119 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_wfa_unauth_tls_init() 120 sm->ssl_ctx; in eap_wfa_unauth_tls_init() 318 if (tls_connection_established(data->ssl_ctx, data->ssl.conn) && in eap_tls_process() 334 return tls_connection_established(data->ssl_ctx, data->ssl.conn); in eap_tls_has_reauth_data()
|
H A D | eap_fast.c | 179 if (tls_connection_set_session_ticket_cb(sm->ssl_ctx, data->ssl.conn, in eap_fast_init() 193 if (tls_connection_enable_workaround(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_init() 278 sks = eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_auth() 305 eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_provisioning() 1426 tls_connection_client_hello_ext(sm->ssl_ctx, data->ssl.conn, in eap_fast_use_pac_opaque() 1443 if (tls_connection_client_hello_ext(sm->ssl_ctx, data->ssl.conn, in eap_fast_clear_pac_opaque_ext() 1477 if (tls_connection_set_cipher_list(sm->ssl_ctx, data->ssl.conn, in eap_fast_set_provisioning_ciphers() 1568 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn) && in eap_fast_process() 1631 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_process() 1638 tls_get_cipher(sm->ssl_ctx, data->ssl.conn, in eap_fast_process() [all …]
|
/freebsd/contrib/wpa/src/crypto/ |
H A D | tls_wolfssl.c | 228 WOLFSSL_CTX *ssl_ctx; in tls_init() local 254 ssl_ctx = wolfSSL_CTX_new(wolfSSLv23_client_method()); in tls_init() 255 if (!ssl_ctx) { in tls_init() 264 wolfSSL_SetIORecv(ssl_ctx, wolfssl_receive_cb); in tls_init() 265 wolfSSL_SetIOSend(ssl_ctx, wolfssl_send_cb); in tls_init() 267 wolfSSL_CTX_set_ex_data(ssl_ctx, 0, context); in tls_init() 270 wolfSSL_CTX_set_session_id_context(ssl_ctx, in tls_init() 273 wolfSSL_CTX_set_quiet_shutdown(ssl_ctx, 1); in tls_init() 274 wolfSSL_CTX_set_session_cache_mode(ssl_ctx, in tls_init() 276 wolfSSL_CTX_set_timeout(ssl_ctx, conf->tls_session_lifetime); in tls_init() [all …]
|
H A D | tls_openssl.c | 242 SSL_CTX *ssl_ctx; member 663 static int tls_cryptoapi_ca_cert(SSL_CTX *ssl_ctx, SSL *ssl, const char *name) in tls_cryptoapi_ca_cert() argument 710 if (!X509_STORE_add_cert(SSL_CTX_get_cert_store(ssl_ctx), in tls_cryptoapi_ca_cert() 1186 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 1188 struct tls_data *data = ssl_ctx; in tls_deinit() 1395 int tls_get_errors(void *ssl_ctx) in tls_get_errors() argument 1683 struct tls_connection * tls_connection_init(void *ssl_ctx) in tls_connection_init() argument 1685 struct tls_data *data = ssl_ctx; in tls_connection_init() 1715 conn->ssl_ctx = ssl; in tls_connection_init() 1744 SSL_CTX_set_keylog_callback(conn->ssl_ctx, tls_keylog_cb); in tls_connection_init() [all …]
|
H A D | tls_gnutls.c | 131 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 133 struct tls_global *global = ssl_ctx; in tls_deinit() 148 int tls_get_errors(void *ssl_ctx) in tls_get_errors() argument 239 struct tls_connection * tls_connection_init(void *ssl_ctx) in tls_connection_init() argument 241 struct tls_global *global = ssl_ctx; in tls_connection_init() 276 void tls_connection_deinit(void *ssl_ctx, struct tls_connection *conn) in tls_connection_deinit() argument 292 int tls_connection_established(void *ssl_ctx, struct tls_connection *conn) in tls_connection_established() argument 306 int tls_connection_shutdown(void *ssl_ctx, struct tls_connection *conn) in tls_connection_shutdown() argument 308 struct tls_global *global = ssl_ctx; in tls_connection_shutdown() 854 int tls_global_set_verify(void *ssl_ctx, int check_crl, int strict) in tls_global_set_verify() argument [all …]
|
H A D | tls_none.c | 20 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 158 int tls_get_version(void *ssl_ctx, struct tls_connection *conn, in tls_get_version() argument
|
H A D | tls_openssl.h | 16 enum ocsp_result check_ocsp_resp(SSL_CTX *ssl_ctx, SSL *ssl, X509 *cert,
|
/freebsd/contrib/wpa/src/ap/ |
H A D | authsrv.c | 205 cfg->ssl_ctx = hapd->ssl_ctx; in authsrv_eap_config() 278 hapd->ssl_ctx = first->ssl_ctx; in authsrv_init() 311 hapd->ssl_ctx = tls_init(&conf); in authsrv_init() 312 if (hapd->ssl_ctx == NULL) { in authsrv_init() 335 if (tls_global_set_params(hapd->ssl_ctx, ¶ms)) { in authsrv_init() 341 if (tls_global_set_verify(hapd->ssl_ctx, in authsrv_init() 413 hapd->ssl_ctx = NULL; in authsrv_deinit() 430 if (hapd->ssl_ctx) { in authsrv_deinit() 431 tls_deinit(hapd->ssl_ctx); in authsrv_deinit() 432 hapd->ssl_ctx = NULL; in authsrv_deinit()
|
/freebsd/crypto/openssl/apps/ |
H A D | cmp.c | 1258 SSL_CTX *ssl_ctx; in setup_ssl_ctx() local 1261 ssl_ctx = SSL_CTX_new(TLS_client_method()); in setup_ssl_ctx() 1262 if (ssl_ctx == NULL) in setup_ssl_ctx() 1269 SSL_CTX_set_cert_store(ssl_ctx, trust_store); in setup_ssl_ctx() 1283 ok = SSL_CTX_use_certificate(ssl_ctx, cert) > 0; in setup_ssl_ctx() 1290 if (!ok || !SSL_CTX_set0_chain(ssl_ctx, certs)) { in setup_ssl_ctx() 1298 if (!SSL_CTX_add1_chain_cert(ssl_ctx, cert)) { in setup_ssl_ctx() 1319 if (SSL_CTX_build_cert_chain(ssl_ctx, in setup_ssl_ctx() 1344 res = SSL_CTX_add_extra_chain_cert(ssl_ctx, cert); in setup_ssl_ctx() 1365 if (!X509_check_private_key(SSL_CTX_get0_certificate(ssl_ctx), in setup_ssl_ctx() [all …]
|
/freebsd/lib/libfetch/ |
H A D | common.c | 1181 conn->ssl_ctx = SSL_CTX_new(conn->ssl_meth); in fetch_ssl() 1182 SSL_CTX_set_mode(conn->ssl_ctx, SSL_MODE_AUTO_RETRY); in fetch_ssl() 1184 fetch_ssl_setup_transport_layer(conn->ssl_ctx, verbose); in fetch_ssl() 1185 if (!fetch_ssl_setup_peer_verification(conn->ssl_ctx, verbose)) in fetch_ssl() 1187 if (!fetch_ssl_setup_client_certificate(conn->ssl_ctx, verbose)) in fetch_ssl() 1190 conn->ssl = SSL_new(conn->ssl_ctx); in fetch_ssl() 1555 if (conn->ssl_ctx) { in fetch_close() 1556 SSL_CTX_free(conn->ssl_ctx); in fetch_close() 1557 conn->ssl_ctx = NULL; in fetch_close()
|
/freebsd/crypto/openssl/test/ |
H A D | danetest.c | 58 SSL_CTX *ssl_ctx = NULL; in verify_chain() local 64 || !TEST_ptr(ssl_ctx = SSL_get_SSL_CTX(ssl)) in verify_chain() 65 || !TEST_ptr(store = SSL_CTX_get_cert_store(ssl_ctx)) in verify_chain()
|
/freebsd/contrib/wpa/src/eap_common/ |
H A D | eap_fast_common.c | 96 u8 * eap_fast_derive_key(void *ssl_ctx, struct tls_connection *conn, size_t len) in eap_fast_derive_key() argument 104 if (tls_connection_get_eap_fast_key(ssl_ctx, conn, out, len)) { in eap_fast_derive_key()
|
H A D | eap_fast_common.h | 100 u8 * eap_fast_derive_key(void *ssl_ctx, struct tls_connection *conn,
|
/freebsd/crypto/openssl/apps/lib/ |
H A D | apps.c | 2477 SSL_CTX *ssl_ctx = info->ssl_ctx; in app_http_tls_cb() local 2479 if (ssl_ctx == NULL) /* not using TLS */ in app_http_tls_cb() 2484 X509_STORE *ts = SSL_CTX_get_cert_store(ssl_ctx); in app_http_tls_cb() 2497 if (ssl_ctx == NULL || (ssl = SSL_new(ssl_ctx)) == NULL) { in app_http_tls_cb() 2519 if (ssl_ctx != NULL) { in app_http_tls_cb() 2534 SSL_CTX_free(info->ssl_ctx); in APP_HTTP_TLS_INFO_free() 2540 const char *no_proxy, SSL_CTX *ssl_ctx, in app_http_get_asn1() argument 2560 if (use_ssl && ssl_ctx == NULL) { in app_http_get_asn1() 2565 if (!use_ssl && ssl_ctx != NULL) { in app_http_get_asn1() 2576 info.ssl_ctx = ssl_ctx; in app_http_get_asn1() [all …]
|