| /freebsd/contrib/wpa/src/eap_server/ |
| H A D | eap_server_tls_common.c | 52 if (!sm->cfg->ssl_ctx) { in eap_server_tls_ssl_init() 60 data->conn = tls_connection_init(sm->cfg->ssl_ctx); in eap_server_tls_ssl_init() 78 if (tls_connection_set_verify(sm->cfg->ssl_ctx, data->conn, verify_peer, in eap_server_tls_ssl_init() 83 tls_connection_deinit(sm->cfg->ssl_ctx, data->conn); in eap_server_tls_ssl_init() 108 tls_connection_deinit(sm->cfg->ssl_ctx, data->conn); in eap_server_tls_ssl_deinit() 125 if (tls_connection_export_key(sm->cfg->ssl_ctx, data->conn, label, in eap_server_tls_derive_key() 179 if (tls_connection_get_random(sm->cfg->ssl_ctx, data->conn, &keys)) in eap_server_tls_derive_session_id() 349 data->tls_out = tls_connection_server_handshake(sm->cfg->ssl_ctx, in eap_server_tls_phase1() 356 if (tls_connection_get_failed(sm->cfg->ssl_ctx, data->conn)) { in eap_server_tls_phase1() 363 if (tls_get_version(sm->cfg->ssl_ctx, data->conn, in eap_server_tls_phase1() [all …]
|
| H A D | eap_server_fast.c | 281 sks = eap_fast_derive_key(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_auth() 307 eap_fast_derive_key(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_provisioning() 432 if (tls_connection_set_cipher_list(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_init() 440 if (tls_connection_set_session_ticket_cb(sm->cfg->ssl_ctx, in eap_fast_init() 546 if (tls_get_cipher(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_phase1_done() 866 if (tls_connection_established(sm->cfg->ssl_ctx, in eap_fast_buildReq() 1404 in_decrypted = tls_connection_decrypt(sm->cfg->ssl_ctx, data->ssl.conn, in eap_fast_process_phase2() 1464 if (!tls_connection_established(sm->cfg->ssl_ctx, data->ssl.conn) || in eap_fast_process_phase1()
|
| H A D | eap_server_tls.c | 190 if (tls_connection_established(sm->cfg->ssl_ctx, in eap_tls_buildReq() 286 if (!tls_connection_established(sm->cfg->ssl_ctx, data->ssl.conn) || in eap_tls_process() 287 !tls_connection_resumed(sm->cfg->ssl_ctx, data->ssl.conn)) in eap_tls_process()
|
| /freebsd/crypto/openssl/demos/bio/ |
| H A D | sconnect.c | 40 SSL_CTX *ssl_ctx = NULL; in main() local 55 ssl_ctx = SSL_CTX_new(TLS_client_method()); in main() 58 SSL_CTX_set_verify(ssl_ctx, SSL_VERIFY_PEER, NULL); in main() 59 if (!SSL_CTX_load_verify_locations(ssl_ctx, CAfile, NULL)) in main() 63 ssl = SSL_new(ssl_ctx); in main() 132 SSL_CTX_free(ssl_ctx); in main()
|
| /freebsd/contrib/ldns/ |
| H A D | dane.c | 72 SSL_CTX* ssl_ctx; in ldns_dane_new_ssl_context() local 74 ssl_ctx = SSL_CTX_new(TLS_client_method()); in ldns_dane_new_ssl_context() 75 if (ssl_ctx != NULL) in ldns_dane_new_ssl_context() 82 SSL_CTX_set_options(ssl_ctx, flags); in ldns_dane_new_ssl_context() 85 return ssl_ctx; in ldns_dane_new_ssl_context() 663 SSL_CTX *ssl_ctx = NULL; in ldns_dane_verify_rr() local 701 if (!(ssl_ctx = ldns_dane_new_ssl_context())) in ldns_dane_verify_rr() 704 else if (SSL_CTX_dane_enable(ssl_ctx) <= 0) in ldns_dane_verify_rr() 708 ssl_ctx, DANE_FLAG_NO_DANE_EE_NAMECHECKS), in ldns_dane_verify_rr() 709 !(ssl = SSL_new(ssl_ctx))) in ldns_dane_verify_rr() [all …]
|
| /freebsd/contrib/ntp/sntp/libevent/sample/ |
| H A D | https-client.c | 228 SSL_CTX *ssl_ctx = NULL; in main() local 360 ssl_ctx = SSL_CTX_new(SSLv23_method()); in main() 361 if (!ssl_ctx) { in main() 369 store = SSL_CTX_get_cert_store(ssl_ctx); in main() 383 if (SSL_CTX_load_verify_locations(ssl_ctx, crt, NULL) != 1) { in main() 396 SSL_CTX_set_verify(ssl_ctx, SSL_VERIFY_PEER, NULL); in main() 410 SSL_CTX_set_cert_verify_callback(ssl_ctx, cert_verify_callback, in main() 421 ssl = SSL_new(ssl_ctx); in main() 518 if (ssl_ctx) in main() 519 SSL_CTX_free(ssl_ctx); in main()
|
| H A D | le-proxy.c | 45 static SSL_CTX *ssl_ctx = NULL; variable 168 if (!ssl_ctx || use_wrapper) in accept_cb() 172 SSL *ssl = SSL_new(ssl_ctx); in accept_cb() 188 if (ssl_ctx && use_wrapper) { in accept_cb() 190 SSL *ssl = SSL_new(ssl_ctx); in accept_cb() 283 ssl_ctx = SSL_CTX_new(TLS_method()); in main()
|
| /freebsd/contrib/libevent/sample/ |
| H A D | https-client.c | 228 SSL_CTX *ssl_ctx = NULL; in main() local 360 ssl_ctx = SSL_CTX_new(SSLv23_method()); in main() 361 if (!ssl_ctx) { in main() 369 store = SSL_CTX_get_cert_store(ssl_ctx); in main() 383 if (SSL_CTX_load_verify_locations(ssl_ctx, crt, NULL) != 1) { in main() 396 SSL_CTX_set_verify(ssl_ctx, SSL_VERIFY_PEER, NULL); in main() 410 SSL_CTX_set_cert_verify_callback(ssl_ctx, cert_verify_callback, in main() 421 ssl = SSL_new(ssl_ctx); in main() 518 if (ssl_ctx) in main() 519 SSL_CTX_free(ssl_ctx); in main()
|
| H A D | le-proxy.c | 45 static SSL_CTX *ssl_ctx = NULL; variable 168 if (!ssl_ctx || use_wrapper) in accept_cb() 172 SSL *ssl = SSL_new(ssl_ctx); in accept_cb() 188 if (ssl_ctx && use_wrapper) { in accept_cb() 190 SSL *ssl = SSL_new(ssl_ctx); in accept_cb() 283 ssl_ctx = SSL_CTX_new(TLS_method()); in main()
|
| /freebsd/contrib/wpa/src/eap_peer/ |
| H A D | eap_tls_common.c | 262 data->conn = tls_connection_init(data->ssl_ctx); in eap_tls_init_connection() 269 res = tls_connection_set_params(data->ssl_ctx, data->conn, params); in eap_tls_init_connection() 291 tls_connection_deinit(data->ssl_ctx, data->conn); in eap_tls_init_connection() 322 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_peer_tls_ssl_init() 323 sm->ssl_ctx; in eap_peer_tls_ssl_init() 361 tls_connection_deinit(data->ssl_ctx, data->conn); in eap_peer_tls_ssl_deinit() 395 if (tls_connection_export_key(data->ssl_ctx, data->conn, label, in eap_peer_tls_derive_key() 449 if (tls_connection_get_random(sm->ssl_ctx, data->conn, &keys) || in eap_peer_tls_derive_session_id() 603 data->tls_out = tls_connection_handshake(data->ssl_ctx, data->conn, in eap_tls_process_input() 609 tls_connection_established(data->ssl_ctx, data->conn) && in eap_tls_process_input() [all …]
|
| H A D | eap_tls.c | 26 void *ssl_ctx; member 56 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_tls_init() 57 sm->ssl_ctx; in eap_tls_init() 92 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_unauth_tls_init() 93 sm->ssl_ctx; in eap_unauth_tls_init() 119 data->ssl_ctx = sm->init_phase2 && sm->ssl_ctx2 ? sm->ssl_ctx2 : in eap_wfa_unauth_tls_init() 120 sm->ssl_ctx; in eap_wfa_unauth_tls_init() 318 if (tls_connection_established(data->ssl_ctx, data->ssl.conn) && in eap_tls_process() 334 return tls_connection_established(data->ssl_ctx, data->ssl.conn); in eap_tls_has_reauth_data()
|
| H A D | eap_fast.c | 179 if (tls_connection_set_session_ticket_cb(sm->ssl_ctx, data->ssl.conn, in eap_fast_init() 193 if (tls_connection_enable_workaround(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_init() 278 sks = eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_auth() 305 eap_fast_derive_key(sm->ssl_ctx, data->ssl.conn, in eap_fast_derive_key_provisioning() 1426 tls_connection_client_hello_ext(sm->ssl_ctx, data->ssl.conn, in eap_fast_use_pac_opaque() 1443 if (tls_connection_client_hello_ext(sm->ssl_ctx, data->ssl.conn, in eap_fast_clear_pac_opaque_ext() 1477 if (tls_connection_set_cipher_list(sm->ssl_ctx, data->ssl.conn, in eap_fast_set_provisioning_ciphers() 1568 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn) && in eap_fast_process() 1631 if (tls_connection_established(sm->ssl_ctx, data->ssl.conn)) { in eap_fast_process() 1638 tls_get_cipher(sm->ssl_ctx, data->ssl.conn, in eap_fast_process() [all …]
|
| /freebsd/crypto/openssl/demos/sslecho/ |
| H A D | main.c | 141 SSL_CTX *ssl_ctx = NULL; in main() local 189 ssl_ctx = create_context(isServer); in main() 197 configure_server_context(ssl_ctx); in main() 219 ssl = SSL_new(ssl_ctx); in main() 282 configure_client_context(ssl_ctx); in main() 299 ssl = SSL_new(ssl_ctx); in main() 364 SSL_CTX_free(ssl_ctx); in main()
|
| /freebsd/contrib/wpa/src/crypto/ |
| H A D | tls_wolfssl.c | 228 WOLFSSL_CTX *ssl_ctx; in tls_init() local 254 ssl_ctx = wolfSSL_CTX_new(wolfSSLv23_client_method()); in tls_init() 255 if (!ssl_ctx) { in tls_init() 264 wolfSSL_SetIORecv(ssl_ctx, wolfssl_receive_cb); in tls_init() 265 wolfSSL_SetIOSend(ssl_ctx, wolfssl_send_cb); in tls_init() 267 wolfSSL_CTX_set_ex_data(ssl_ctx, 0, context); in tls_init() 270 wolfSSL_CTX_set_session_id_context(ssl_ctx, in tls_init() 273 wolfSSL_CTX_set_quiet_shutdown(ssl_ctx, 1); in tls_init() 274 wolfSSL_CTX_set_session_cache_mode(ssl_ctx, in tls_init() 276 wolfSSL_CTX_set_timeout(ssl_ctx, conf->tls_session_lifetime); in tls_init() [all …]
|
| H A D | tls_openssl.c | 242 SSL_CTX *ssl_ctx; member 663 static int tls_cryptoapi_ca_cert(SSL_CTX *ssl_ctx, SSL *ssl, const char *name) in tls_cryptoapi_ca_cert() argument 710 if (!X509_STORE_add_cert(SSL_CTX_get_cert_store(ssl_ctx), in tls_cryptoapi_ca_cert() 1186 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 1188 struct tls_data *data = ssl_ctx; in tls_deinit() 1395 int tls_get_errors(void *ssl_ctx) in tls_get_errors() argument 1683 struct tls_connection * tls_connection_init(void *ssl_ctx) in tls_connection_init() argument 1685 struct tls_data *data = ssl_ctx; in tls_connection_init() 1715 conn->ssl_ctx = ssl; in tls_connection_init() 1744 SSL_CTX_set_keylog_callback(conn->ssl_ctx, tls_keylog_cb); in tls_connection_init() [all …]
|
| H A D | tls_gnutls.c | 131 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 133 struct tls_global *global = ssl_ctx; in tls_deinit() 148 int tls_get_errors(void *ssl_ctx) in tls_get_errors() argument 239 struct tls_connection * tls_connection_init(void *ssl_ctx) in tls_connection_init() argument 241 struct tls_global *global = ssl_ctx; in tls_connection_init() 276 void tls_connection_deinit(void *ssl_ctx, struct tls_connection *conn) in tls_connection_deinit() argument 292 int tls_connection_established(void *ssl_ctx, struct tls_connection *conn) in tls_connection_established() argument 306 int tls_connection_shutdown(void *ssl_ctx, struct tls_connection *conn) in tls_connection_shutdown() argument 308 struct tls_global *global = ssl_ctx; in tls_connection_shutdown() 854 int tls_global_set_verify(void *ssl_ctx, int check_crl, int strict) in tls_global_set_verify() argument [all …]
|
| H A D | tls_none.c | 20 void tls_deinit(void *ssl_ctx) in tls_deinit() argument 158 int tls_get_version(void *ssl_ctx, struct tls_connection *conn, in tls_get_version() argument
|
| H A D | tls_openssl.h | 16 enum ocsp_result check_ocsp_resp(SSL_CTX *ssl_ctx, SSL *ssl, X509 *cert,
|
| /freebsd/contrib/wpa/src/ap/ |
| H A D | authsrv.c | 205 cfg->ssl_ctx = hapd->ssl_ctx; in authsrv_eap_config() 278 hapd->ssl_ctx = first->ssl_ctx; in authsrv_init() 311 hapd->ssl_ctx = tls_init(&conf); in authsrv_init() 312 if (hapd->ssl_ctx == NULL) { in authsrv_init() 335 if (tls_global_set_params(hapd->ssl_ctx, ¶ms)) { in authsrv_init() 341 if (tls_global_set_verify(hapd->ssl_ctx, in authsrv_init() 413 hapd->ssl_ctx = NULL; in authsrv_deinit() 430 if (hapd->ssl_ctx) { in authsrv_deinit() 431 tls_deinit(hapd->ssl_ctx); in authsrv_deinit() 432 hapd->ssl_ctx = NULL; in authsrv_deinit()
|
| /freebsd/lib/libfetch/ |
| H A D | common.c | 1185 if ((conn->ssl_ctx = SSL_CTX_new(TLS_client_method())) == NULL) { in fetch_ssl() 1190 SSL_CTX_set_mode(conn->ssl_ctx, SSL_MODE_AUTO_RETRY); in fetch_ssl() 1192 fetch_ssl_setup_transport_layer(conn->ssl_ctx, verbose); in fetch_ssl() 1193 if (!fetch_ssl_setup_peer_verification(conn->ssl_ctx, verbose)) in fetch_ssl() 1195 if (!fetch_ssl_setup_client_certificate(conn->ssl_ctx, verbose)) in fetch_ssl() 1198 conn->ssl = SSL_new(conn->ssl_ctx); in fetch_ssl() 1572 if (conn->ssl_ctx) { in fetch_close() 1573 SSL_CTX_free(conn->ssl_ctx); in fetch_close() 1574 conn->ssl_ctx = NULL; in fetch_close()
|
| /freebsd/crypto/openssl/test/ |
| H A D | danetest.c | 58 SSL_CTX *ssl_ctx = NULL; in verify_chain() local 64 || !TEST_ptr(ssl_ctx = SSL_get_SSL_CTX(ssl)) in verify_chain() 65 || !TEST_ptr(store = SSL_CTX_get_cert_store(ssl_ctx)) in verify_chain()
|
| H A D | quicapitest.c | 2530 SSL_CTX *ssl_ctx; in create_client_ctx() local 2532 if (!TEST_ptr(ssl_ctx = SSL_CTX_new_ex(libctx, NULL, OSSL_QUIC_client_method()))) { in create_client_ctx() 2533 SSL_CTX_free(ssl_ctx); in create_client_ctx() 2534 ssl_ctx = NULL; in create_client_ctx() 2537 return ssl_ctx; in create_client_ctx() 2542 SSL_CTX *ssl_ctx; in create_server_ctx() local 2544 if (!TEST_ptr(ssl_ctx = SSL_CTX_new_ex(libctx, NULL, OSSL_QUIC_server_method())) in create_server_ctx() 2545 || !TEST_true(SSL_CTX_use_certificate_file(ssl_ctx, cert, SSL_FILETYPE_PEM)) in create_server_ctx() 2546 || !TEST_true(SSL_CTX_use_PrivateKey_file(ssl_ctx, privkey, SSL_FILETYPE_PEM))) { in create_server_ctx() 2547 SSL_CTX_free(ssl_ctx); in create_server_ctx() [all …]
|
| /freebsd/contrib/wpa/src/eap_common/ |
| H A D | eap_fast_common.c | 96 u8 * eap_fast_derive_key(void *ssl_ctx, struct tls_connection *conn, size_t len) in eap_fast_derive_key() argument 104 if (tls_connection_get_eap_fast_key(ssl_ctx, conn, out, len)) { in eap_fast_derive_key()
|
| /freebsd/crypto/openssl/apps/ |
| H A D | s_server.c | 488 SSL_CTX *ssl_ctx; in get_ocsp_resp_from_responder() local 524 ssl_ctx = SSL_get_SSL_CTX(s); in get_ocsp_resp_from_responder() 525 if (!SSL_CTX_get0_chain_certs(ssl_ctx, &chain)) in get_ocsp_resp_from_responder() 540 if (!X509_STORE_CTX_init(inctx, SSL_CTX_get_cert_store(ssl_ctx), in get_ocsp_resp_from_responder() 2487 static void print_stats(BIO *bio, SSL_CTX *ssl_ctx) in print_stats() argument 2490 SSL_CTX_sess_number(ssl_ctx)); in print_stats() 2492 SSL_CTX_sess_connect(ssl_ctx)); in print_stats() 2494 SSL_CTX_sess_connect_renegotiate(ssl_ctx)); in print_stats() 2496 SSL_CTX_sess_connect_good(ssl_ctx)); in print_stats() 2498 SSL_CTX_sess_accept(ssl_ctx)); in print_stats() [all …]
|
| H A D | cmp.c | 1447 SSL_CTX *ssl_ctx; in setup_ssl_ctx() local 1450 ssl_ctx = SSL_CTX_new(TLS_client_method()); in setup_ssl_ctx() 1451 if (ssl_ctx == NULL) in setup_ssl_ctx() 1458 SSL_CTX_set_cert_store(ssl_ctx, trust_store); in setup_ssl_ctx() 1459 SSL_CTX_set_verify(ssl_ctx, SSL_VERIFY_PEER, NULL); in setup_ssl_ctx() 1475 ok = SSL_CTX_use_certificate(ssl_ctx, cert) > 0; in setup_ssl_ctx() 1482 if (!ok || !SSL_CTX_set0_chain(ssl_ctx, certs)) { in setup_ssl_ctx() 1490 if (!SSL_CTX_add1_chain_cert(ssl_ctx, cert)) { in setup_ssl_ctx() 1511 if (SSL_CTX_build_cert_chain(ssl_ctx, in setup_ssl_ctx() 1535 res = SSL_CTX_add_extra_chain_cert(ssl_ctx, cert); in setup_ssl_ctx() [all …]
|