Lines Matching refs:flags
270 unsigned int flags; member
332 int flags; in tls_crl_cert_reload() local
350 flags = check_crl ? X509_V_FLAG_CRL_CHECK : 0; in tls_crl_cert_reload()
352 flags |= X509_V_FLAG_CRL_CHECK_ALL; in tls_crl_cert_reload()
354 X509_STORE_set_flags(store, flags); in tls_crl_cert_reload()
620 rsa_meth->flags = RSA_METHOD_FLAG_NO_CHECK; in tls_cryptoapi_cert()
1538 if (!(conn->flags & TLS_CONN_SUITEB)) in check_server_key_exchange()
2383 if (conn->cert_probe || (conn->flags & TLS_CONN_EXT_CERT_CHECK) || in openssl_tls_cert_event()
2539 if (!preverify_ok && (conn->flags & TLS_CONN_DISABLE_TIME_CHECKS) && in tls_verify_cb()
2684 if (conn->flags & TLS_CONN_SUITEB) { in tls_verify_cb()
2710 if (depth == 0 && (conn->flags & TLS_CONN_REQUEST_OCSP) && in tls_verify_cb()
2726 (conn->flags & TLS_CONN_REQUIRE_OCSP)) { in tls_verify_cb()
3002 int flags; in tls_global_set_verify() local
3013 flags = X509_V_FLAG_CRL_CHECK; in tls_global_set_verify()
3015 flags |= X509_V_FLAG_CRL_CHECK_ALL; in tls_global_set_verify()
3016 X509_STORE_set_flags(cs, flags); in tls_global_set_verify()
3089 if (!(conn->flags & TLS_CONN_SUITEB)) in suiteb_cert_cb()
3107 static int tls_set_conn_flags(struct tls_connection *conn, unsigned int flags, in tls_set_conn_flags() argument
3113 if (flags & TLS_CONN_DISABLE_SESSION_TICKET) in tls_set_conn_flags()
3120 if (flags & TLS_CONN_ALLOW_UNSAFE_RENEGOTIATION) in tls_set_conn_flags()
3125 if (flags & TLS_CONN_DISABLE_TLSv1_0) in tls_set_conn_flags()
3131 if (flags & TLS_CONN_DISABLE_TLSv1_1) in tls_set_conn_flags()
3137 if (flags & TLS_CONN_DISABLE_TLSv1_2) in tls_set_conn_flags()
3143 if (flags & TLS_CONN_DISABLE_TLSv1_3) in tls_set_conn_flags()
3149 if (flags & (TLS_CONN_ENABLE_TLSv1_0 | in tls_set_conn_flags()
3156 if (flags & TLS_CONN_ENABLE_TLSv1_0) in tls_set_conn_flags()
3158 else if (flags & TLS_CONN_ENABLE_TLSv1_1) in tls_set_conn_flags()
3160 else if (flags & TLS_CONN_ENABLE_TLSv1_2) in tls_set_conn_flags()
3185 if ((flags & in tls_set_conn_flags()
3206 if (flags & TLS_CONN_SUITEB_NO_ECDH) { in tls_set_conn_flags()
3220 } else if (flags & TLS_CONN_SUITEB) { in tls_set_conn_flags()
3264 if (flags & (TLS_CONN_SUITEB | TLS_CONN_SUITEB_NO_ECDH)) { in tls_set_conn_flags()
3269 if (!(flags & TLS_CONN_DISABLE_TLSv1_3)) { in tls_set_conn_flags()
3288 if (!(flags & TLS_CONN_DISABLE_TLSv1_3)) in tls_set_conn_flags()
3321 if (!(flags & (TLS_CONN_SUITEB | TLS_CONN_SUITEB_NO_ECDH)) && in tls_set_conn_flags()
3338 if (flags & TLS_CONN_TEAP_ANON_DH) { in tls_set_conn_flags()
3377 int verify_peer, unsigned int flags, in tls_connection_set_verify() argument
3400 if (tls_set_conn_flags(conn, flags, NULL) < 0) in tls_connection_set_verify()
3402 conn->flags = flags; in tls_connection_set_verify()
4562 if ((conn->flags & TLS_CONN_SUITEB) && !conn->server && in openssl_handshake()
5072 return (conn->flags & TLS_CONN_REQUIRE_OCSP) ? 0 : 1; in ocsp_resp_cb()
5185 (conn->flags & TLS_CONN_REQUIRE_OCSP) ? "" : in ocsp_resp_cb()
5190 return (conn->flags & TLS_CONN_REQUIRE_OCSP) ? 0 : 1; in ocsp_resp_cb()
5212 if (conn->flags & TLS_CONN_REQUIRE_OCSP) { in ocsp_resp_cb()
5342 if (params->flags & TLS_CONN_REQUIRE_OCSP_ALL) { in tls_connection_set_params()
5391 if (params->flags & TLS_CONN_EAP_FAST) { in tls_connection_set_params()
5403 if (params->flags & TLS_CONN_EAP_FAST) { in tls_connection_set_params()
5419 if (tls_set_conn_flags(conn, params->flags, in tls_connection_set_params()
5522 if (params->flags & TLS_CONN_REQUEST_OCSP) { in tls_connection_set_params()
5527 if (params->flags & TLS_CONN_REQUEST_OCSP) { in tls_connection_set_params()
5534 if (params->flags & TLS_CONN_REQUIRE_OCSP) { in tls_connection_set_params()
5539 if (params->flags & TLS_CONN_REQUEST_OCSP) { in tls_connection_set_params()
5546 conn->flags = params->flags; in tls_connection_set_params()
5753 if (params->flags & TLS_CONN_DISABLE_SESSION_TICKET) in tls_global_set_params()