Home
last modified time | relevance | path

Searched refs:authmode (Results 1 – 8 of 8) sorted by relevance

/mbedtls-3.5.0/library/
Dssl_tls13_generic.c574 int authmode = MBEDTLS_SSL_VERIFY_REQUIRED; in ssl_tls13_validate_certificate() local
587 authmode = ssl->handshake->sni_authmode; in ssl_tls13_validate_certificate()
590 authmode = ssl->conf->authmode; in ssl_tls13_validate_certificate()
611 if (authmode == MBEDTLS_SSL_VERIFY_OPTIONAL) { in ssl_tls13_validate_certificate()
686 if (authmode == MBEDTLS_SSL_VERIFY_OPTIONAL && in ssl_tls13_validate_certificate()
692 if (ca_chain == NULL && authmode == MBEDTLS_SSL_VERIFY_REQUIRED) { in ssl_tls13_validate_certificate()
Dssl_tls.c1368 ssl->conf->authmode == MBEDTLS_SSL_VERIFY_OPTIONAL) { in ssl_conf_check()
1654 void mbedtls_ssl_conf_authmode(mbedtls_ssl_config *conf, int authmode) in mbedtls_ssl_conf_authmode() argument
1656 conf->authmode = authmode; in mbedtls_ssl_conf_authmode()
1934 int authmode) in mbedtls_ssl_set_hs_authmode() argument
1936 ssl->handshake->sni_authmode = authmode; in mbedtls_ssl_set_hs_authmode()
5224 conf->authmode = MBEDTLS_SSL_VERIFY_REQUIRED; in mbedtls_ssl_config_defaults()
7274 int authmode) in ssl_parse_certificate_coordinate() argument
7289 if (authmode == MBEDTLS_SSL_VERIFY_NONE) { in ssl_parse_certificate_coordinate()
7296 ((void) authmode); in ssl_parse_certificate_coordinate()
7304 int authmode, in ssl_parse_certificate_verify() argument
[all …]
Dssl_tls13_server.c2402 int authmode; in ssl_tls13_certificate_request_coordinate() local
2406 authmode = ssl->handshake->sni_authmode; in ssl_tls13_certificate_request_coordinate()
2409 authmode = ssl->conf->authmode; in ssl_tls13_certificate_request_coordinate()
2411 if (authmode == MBEDTLS_SSL_VERIFY_NONE) { in ssl_tls13_certificate_request_coordinate()
Dssl_tls12_server.c2396 int authmode; in ssl_write_certificate_request() local
2404 authmode = ssl->handshake->sni_authmode; in ssl_write_certificate_request()
2407 authmode = ssl->conf->authmode; in ssl_write_certificate_request()
2410 authmode == MBEDTLS_SSL_VERIFY_NONE) { in ssl_write_certificate_request()
/mbedtls-3.5.0/tests/
DDescriptions.txt16 For each ciphersuite/version/side/authmode it performs a full handshake
/mbedtls-3.5.0/include/mbedtls/
Dssl.h1346 uint8_t MBEDTLS_PRIVATE(authmode); /*!< MBEDTLS_SSL_VERIFY_XXX */
1963 void mbedtls_ssl_conf_authmode(mbedtls_ssl_config *conf, int authmode);
3864 int authmode);
/mbedtls-3.5.0/programs/ssl/
Dssl_server2.c757 int authmode; member
861 if ((new->authmode = get_auth_mode(auth_str)) < 0) { in sni_parse()
865 new->authmode = DFL_AUTH_MODE; in sni_parse()
930 if (cur->authmode != DFL_AUTH_MODE) { in cert_callback()
931 mbedtls_ssl_set_hs_authmode(ssl, cur->authmode); in cert_callback()
/mbedtls-3.5.0/
DChangeLog3218 * Fix authentication bypass in SSL/TLS: when authmode is set to optional,
3222 triggered remotely from either side. (With authmode set to 'required'
3246 * With authmode set to optional, the TLS handshake is now aborted if the
3922 * The default authmode for SSL/TLS clients is now REQUIRED.
3965 * With authmode set to SSL_VERIFY_OPTIONAL, verification of keyUsage and