diff options
Diffstat (limited to 'src/lib/libssl')
146 files changed, 992 insertions, 483 deletions
diff --git a/src/lib/libssl/LICENSE b/src/lib/libssl/LICENSE index 892e14a450..c41ff4d1ca 100644 --- a/src/lib/libssl/LICENSE +++ b/src/lib/libssl/LICENSE | |||
| @@ -1,7 +1,7 @@ | |||
| 1 | 1 | ||
| 2 | LibReSSL files are retained under the copyright of the authors. New | 2 | LibreSSL files are retained under the copyright of the authors. New |
| 3 | additions are ISC licensed as per OpenBSD's normal licensing policy, | 3 | additions are ISC licensed as per OpenBSD's normal licensing policy, |
| 4 | or are placed in the public domain. | 4 | or are placed in the public domain. |
| 5 | 5 | ||
| 6 | The OpenSSL code is distributed under the terms of the original OpenSSL | 6 | The OpenSSL code is distributed under the terms of the original OpenSSL |
| 7 | licenses which follow: | 7 | licenses which follow: |
| @@ -25,7 +25,7 @@ | |||
| 25 | * are met: | 25 | * are met: |
| 26 | * | 26 | * |
| 27 | * 1. Redistributions of source code must retain the above copyright | 27 | * 1. Redistributions of source code must retain the above copyright |
| 28 | * notice, this list of conditions and the following disclaimer. | 28 | * notice, this list of conditions and the following disclaimer. |
| 29 | * | 29 | * |
| 30 | * 2. Redistributions in binary form must reproduce the above copyright | 30 | * 2. Redistributions in binary form must reproduce the above copyright |
| 31 | * notice, this list of conditions and the following disclaimer in | 31 | * notice, this list of conditions and the following disclaimer in |
| @@ -80,21 +80,21 @@ | |||
| 80 | * This package is an SSL implementation written | 80 | * This package is an SSL implementation written |
| 81 | * by Eric Young (eay@cryptsoft.com). | 81 | * by Eric Young (eay@cryptsoft.com). |
| 82 | * The implementation was written so as to conform with Netscapes SSL. | 82 | * The implementation was written so as to conform with Netscapes SSL. |
| 83 | * | 83 | * |
| 84 | * This library is free for commercial and non-commercial use as long as | 84 | * This library is free for commercial and non-commercial use as long as |
| 85 | * the following conditions are aheared to. The following conditions | 85 | * the following conditions are aheared to. The following conditions |
| 86 | * apply to all code found in this distribution, be it the RC4, RSA, | 86 | * apply to all code found in this distribution, be it the RC4, RSA, |
| 87 | * lhash, DES, etc., code; not just the SSL code. The SSL documentation | 87 | * lhash, DES, etc., code; not just the SSL code. The SSL documentation |
| 88 | * included with this distribution is covered by the same copyright terms | 88 | * included with this distribution is covered by the same copyright terms |
| 89 | * except that the holder is Tim Hudson (tjh@cryptsoft.com). | 89 | * except that the holder is Tim Hudson (tjh@cryptsoft.com). |
| 90 | * | 90 | * |
| 91 | * Copyright remains Eric Young's, and as such any Copyright notices in | 91 | * Copyright remains Eric Young's, and as such any Copyright notices in |
| 92 | * the code are not to be removed. | 92 | * the code are not to be removed. |
| 93 | * If this package is used in a product, Eric Young should be given attribution | 93 | * If this package is used in a product, Eric Young should be given attribution |
| 94 | * as the author of the parts of the library used. | 94 | * as the author of the parts of the library used. |
| 95 | * This can be in the form of a textual message at program startup or | 95 | * This can be in the form of a textual message at program startup or |
| 96 | * in documentation (online or textual) provided with the package. | 96 | * in documentation (online or textual) provided with the package. |
| 97 | * | 97 | * |
| 98 | * Redistribution and use in source and binary forms, with or without | 98 | * Redistribution and use in source and binary forms, with or without |
| 99 | * modification, are permitted provided that the following conditions | 99 | * modification, are permitted provided that the following conditions |
| 100 | * are met: | 100 | * are met: |
| @@ -109,10 +109,10 @@ | |||
| 109 | * Eric Young (eay@cryptsoft.com)" | 109 | * Eric Young (eay@cryptsoft.com)" |
| 110 | * The word 'cryptographic' can be left out if the rouines from the library | 110 | * The word 'cryptographic' can be left out if the rouines from the library |
| 111 | * being used are not cryptographic related :-). | 111 | * being used are not cryptographic related :-). |
| 112 | * 4. If you include any Windows specific code (or a derivative thereof) from | 112 | * 4. If you include any Windows specific code (or a derivative thereof) from |
| 113 | * the apps directory (application code) you must include an acknowledgement: | 113 | * the apps directory (application code) you must include an acknowledgement: |
| 114 | * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)" | 114 | * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)" |
| 115 | * | 115 | * |
| 116 | * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND | 116 | * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND |
| 117 | * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE | 117 | * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE |
| 118 | * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE | 118 | * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE |
| @@ -124,7 +124,7 @@ | |||
| 124 | * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY | 124 | * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY |
| 125 | * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF | 125 | * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF |
| 126 | * SUCH DAMAGE. | 126 | * SUCH DAMAGE. |
| 127 | * | 127 | * |
| 128 | * The licence and distribution terms for any publically available version or | 128 | * The licence and distribution terms for any publically available version or |
| 129 | * derivative of this code cannot be changed. i.e. this code cannot simply be | 129 | * derivative of this code cannot be changed. i.e. this code cannot simply be |
| 130 | * copied and put under another distribution licence | 130 | * copied and put under another distribution licence |
diff --git a/src/lib/libssl/Symbols.list b/src/lib/libssl/Symbols.list index 65cd3e7f86..0d82c7c726 100644 --- a/src/lib/libssl/Symbols.list +++ b/src/lib/libssl/Symbols.list | |||
| @@ -137,6 +137,7 @@ SSL_CTX_use_certificate_ASN1 | |||
| 137 | SSL_CTX_use_certificate_chain_file | 137 | SSL_CTX_use_certificate_chain_file |
| 138 | SSL_CTX_use_certificate_chain_mem | 138 | SSL_CTX_use_certificate_chain_mem |
| 139 | SSL_CTX_use_certificate_file | 139 | SSL_CTX_use_certificate_file |
| 140 | SSL_SESSION_dup | ||
| 140 | SSL_SESSION_free | 141 | SSL_SESSION_free |
| 141 | SSL_SESSION_get0_cipher | 142 | SSL_SESSION_get0_cipher |
| 142 | SSL_SESSION_get0_id_context | 143 | SSL_SESSION_get0_id_context |
diff --git a/src/lib/libssl/bio_ssl.c b/src/lib/libssl/bio_ssl.c index 6dd1699606..13e4f30539 100644 --- a/src/lib/libssl/bio_ssl.c +++ b/src/lib/libssl/bio_ssl.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: bio_ssl.c,v 1.40 2023/07/19 13:34:33 tb Exp $ */ | 1 | /* $OpenBSD: bio_ssl.c,v 1.41 2025/06/02 12:18:22 jsg Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -229,9 +229,7 @@ ssl_write(BIO *b, const char *out, int outl) | |||
| 229 | 229 | ||
| 230 | BIO_clear_retry_flags(b); | 230 | BIO_clear_retry_flags(b); |
| 231 | 231 | ||
| 232 | /* ret=SSL_do_handshake(ssl); | 232 | ret = SSL_write(ssl, out, outl); |
| 233 | if (ret > 0) */ | ||
| 234 | ret = SSL_write(ssl, out, outl); | ||
| 235 | 233 | ||
| 236 | switch (SSL_get_error(ssl, ret)) { | 234 | switch (SSL_get_error(ssl, ret)) { |
| 237 | case SSL_ERROR_NONE: | 235 | case SSL_ERROR_NONE: |
diff --git a/src/lib/libssl/hidden/openssl/ssl.h b/src/lib/libssl/hidden/openssl/ssl.h index b854dd7b73..b010488d7f 100644 --- a/src/lib/libssl/hidden/openssl/ssl.h +++ b/src/lib/libssl/hidden/openssl/ssl.h | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl.h,v 1.9 2024/08/31 10:51:48 tb Exp $ */ | 1 | /* $OpenBSD: ssl.h,v 1.10 2025/10/24 11:36:08 tb Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Copyright (c) 2023 Bob Beck <beck@openbsd.org> | 3 | * Copyright (c) 2023 Bob Beck <beck@openbsd.org> |
| 4 | * | 4 | * |
| @@ -182,6 +182,7 @@ LSSL_USED(SSL_SESSION_set1_id_context); | |||
| 182 | LSSL_USED(SSL_SESSION_is_resumable); | 182 | LSSL_USED(SSL_SESSION_is_resumable); |
| 183 | LSSL_USED(SSL_SESSION_new); | 183 | LSSL_USED(SSL_SESSION_new); |
| 184 | LSSL_USED(SSL_SESSION_free); | 184 | LSSL_USED(SSL_SESSION_free); |
| 185 | LSSL_USED(SSL_SESSION_dup); | ||
| 185 | LSSL_USED(SSL_SESSION_up_ref); | 186 | LSSL_USED(SSL_SESSION_up_ref); |
| 186 | LSSL_USED(SSL_SESSION_get_id); | 187 | LSSL_USED(SSL_SESSION_get_id); |
| 187 | LSSL_USED(SSL_SESSION_get0_id_context); | 188 | LSSL_USED(SSL_SESSION_get0_id_context); |
diff --git a/src/lib/libssl/hidden/ssl_namespace.h b/src/lib/libssl/hidden/ssl_namespace.h index 5d26516f3c..763dcd700f 100644 --- a/src/lib/libssl/hidden/ssl_namespace.h +++ b/src/lib/libssl/hidden/ssl_namespace.h | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_namespace.h,v 1.3 2024/07/12 05:26:34 miod Exp $ */ | 1 | /* $OpenBSD: ssl_namespace.h,v 1.4 2025/08/18 16:00:53 tb Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Copyright (c) 2016 Philip Guenther <guenther@openbsd.org> | 3 | * Copyright (c) 2016 Philip Guenther <guenther@openbsd.org> |
| 4 | * | 4 | * |
| @@ -35,7 +35,11 @@ | |||
| 35 | #else | 35 | #else |
| 36 | #define LSSL_UNUSED(x) | 36 | #define LSSL_UNUSED(x) |
| 37 | #define LSSL_USED(x) | 37 | #define LSSL_USED(x) |
| 38 | #ifdef _MSC_VER | ||
| 39 | #define LSSL_ALIAS(x) | ||
| 40 | #else | ||
| 38 | #define LSSL_ALIAS(x) asm("") | 41 | #define LSSL_ALIAS(x) asm("") |
| 42 | #endif /* _MSC_VER */ | ||
| 39 | #endif | 43 | #endif |
| 40 | 44 | ||
| 41 | #endif /* _LIBSSL_SSL_NAMESPACE_H_ */ | 45 | #endif /* _LIBSSL_SSL_NAMESPACE_H_ */ |
diff --git a/src/lib/libssl/man/BIO_f_ssl.3 b/src/lib/libssl/man/BIO_f_ssl.3 index 3b74a3d6a4..e23a15e121 100644 --- a/src/lib/libssl/man/BIO_f_ssl.3 +++ b/src/lib/libssl/man/BIO_f_ssl.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: BIO_f_ssl.3,v 1.16 2024/01/13 18:37:51 tb Exp $ | 1 | .\" $OpenBSD: BIO_f_ssl.3,v 1.17 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL f672aee4 Feb 9 11:52:40 2016 -0500 | 2 | .\" full merge up to: OpenSSL f672aee4 Feb 9 11:52:40 2016 -0500 |
| 3 | .\" selective merge up to: OpenSSL 61f805c1 Jan 16 01:01:46 2018 +0800 | 3 | .\" selective merge up to: OpenSSL 61f805c1 Jan 16 01:01:46 2018 +0800 |
| 4 | .\" | 4 | .\" |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: January 13 2024 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt BIO_F_SSL 3 | 54 | .Dt BIO_F_SSL 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -69,6 +69,7 @@ | |||
| 69 | .Nm BIO_do_handshake | 69 | .Nm BIO_do_handshake |
| 70 | .Nd SSL BIO | 70 | .Nd SSL BIO |
| 71 | .Sh SYNOPSIS | 71 | .Sh SYNOPSIS |
| 72 | .Lb libssl libcrypto | ||
| 72 | .In openssl/bio.h | 73 | .In openssl/bio.h |
| 73 | .In openssl/ssl.h | 74 | .In openssl/ssl.h |
| 74 | .Ft const BIO_METHOD * | 75 | .Ft const BIO_METHOD * |
diff --git a/src/lib/libssl/man/DTLSv1_listen.3 b/src/lib/libssl/man/DTLSv1_listen.3 index 047ec0a7ff..bdba1c59b0 100644 --- a/src/lib/libssl/man/DTLSv1_listen.3 +++ b/src/lib/libssl/man/DTLSv1_listen.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: DTLSv1_listen.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: DTLSv1_listen.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 7795475f Dec 18 13:18:31 2015 -0500 | 2 | .\" OpenSSL 7795475f Dec 18 13:18:31 2015 -0500 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Matt Caswell <matt@openssl.org>. | 4 | .\" This file was written by Matt Caswell <matt@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt DTLSV1_LISTEN 3 | 52 | .Dt DTLSV1_LISTEN 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm DTLSv1_listen | 55 | .Nm DTLSv1_listen |
| 56 | .Nd listen for incoming DTLS connections | 56 | .Nd listen for incoming DTLS connections |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft int | 60 | .Ft int |
| 60 | .Fo DTLSv1_listen | 61 | .Fo DTLSv1_listen |
diff --git a/src/lib/libssl/man/OPENSSL_init_ssl.3 b/src/lib/libssl/man/OPENSSL_init_ssl.3 index f37dccfaac..ec840f5e1c 100644 --- a/src/lib/libssl/man/OPENSSL_init_ssl.3 +++ b/src/lib/libssl/man/OPENSSL_init_ssl.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: OPENSSL_init_ssl.3,v 1.4 2019/06/14 13:41:31 schwarze Exp $ | 1 | .\" $OpenBSD: OPENSSL_init_ssl.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" Copyright (c) 2018 Ingo Schwarze <schwarze@openbsd.org> | 2 | .\" Copyright (c) 2018 Ingo Schwarze <schwarze@openbsd.org> |
| 3 | .\" | 3 | .\" |
| 4 | .\" Permission to use, copy, modify, and distribute this software for any | 4 | .\" Permission to use, copy, modify, and distribute this software for any |
| @@ -13,13 +13,14 @@ | |||
| 13 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 13 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 14 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 14 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 15 | .\" | 15 | .\" |
| 16 | .Dd $Mdocdate: June 14 2019 $ | 16 | .Dd $Mdocdate: June 8 2025 $ |
| 17 | .Dt OPENSSL_INIT_SSL 3 | 17 | .Dt OPENSSL_INIT_SSL 3 |
| 18 | .Os | 18 | .Os |
| 19 | .Sh NAME | 19 | .Sh NAME |
| 20 | .Nm OPENSSL_init_ssl | 20 | .Nm OPENSSL_init_ssl |
| 21 | .Nd initialise the crypto and ssl libraries | 21 | .Nd initialise the crypto and ssl libraries |
| 22 | .Sh SYNOPSIS | 22 | .Sh SYNOPSIS |
| 23 | .Lb libssl libcrypto | ||
| 23 | .In openssl/ssl.h | 24 | .In openssl/ssl.h |
| 24 | .Ft int | 25 | .Ft int |
| 25 | .Fo OPENSSL_init_ssl | 26 | .Fo OPENSSL_init_ssl |
diff --git a/src/lib/libssl/man/PEM_read_SSL_SESSION.3 b/src/lib/libssl/man/PEM_read_SSL_SESSION.3 index 3eb1414c62..93bd0b8ebd 100644 --- a/src/lib/libssl/man/PEM_read_SSL_SESSION.3 +++ b/src/lib/libssl/man/PEM_read_SSL_SESSION.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: PEM_read_SSL_SESSION.3,v 1.4 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: PEM_read_SSL_SESSION.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL doc/man3/PEM_read_CMS.pod b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL doc/man3/PEM_read_CMS.pod b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Rich Salz <rsalz@openssl.org>. | 4 | .\" This file was written by Rich Salz <rsalz@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 12 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt PEM_READ_SSL_SESSION 3 | 52 | .Dt PEM_READ_SSL_SESSION 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm PEM_write_bio_SSL_SESSION | 58 | .Nm PEM_write_bio_SSL_SESSION |
| 59 | .Nd encode and decode SSL session objects in PEM format | 59 | .Nd encode and decode SSL session objects in PEM format |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft SSL_SESSION * | 63 | .Ft SSL_SESSION * |
| 63 | .Fo PEM_read_SSL_SESSION | 64 | .Fo PEM_read_SSL_SESSION |
diff --git a/src/lib/libssl/man/SSL_CIPHER_get_name.3 b/src/lib/libssl/man/SSL_CIPHER_get_name.3 index 86c1d3c0ba..fc92eb9723 100644 --- a/src/lib/libssl/man/SSL_CIPHER_get_name.3 +++ b/src/lib/libssl/man/SSL_CIPHER_get_name.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CIPHER_get_name.3,v 1.17 2024/07/16 10:19:38 tb Exp $ | 1 | .\" $OpenBSD: SSL_CIPHER_get_name.3,v 1.19 2025/06/13 18:34:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" selective merge up to: OpenSSL 61f805c1 Jan 16 01:01:46 2018 +0800 | 3 | .\" selective merge up to: OpenSSL 61f805c1 Jan 16 01:01:46 2018 +0800 |
| 4 | .\" | 4 | .\" |
| @@ -52,7 +52,7 @@ | |||
| 52 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 52 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 53 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 53 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 54 | .\" | 54 | .\" |
| 55 | .Dd $Mdocdate: July 16 2024 $ | 55 | .Dd $Mdocdate: June 13 2025 $ |
| 56 | .Dt SSL_CIPHER_GET_NAME 3 | 56 | .Dt SSL_CIPHER_GET_NAME 3 |
| 57 | .Os | 57 | .Os |
| 58 | .Sh NAME | 58 | .Sh NAME |
| @@ -70,6 +70,7 @@ | |||
| 70 | .Nm SSL_CIPHER_description | 70 | .Nm SSL_CIPHER_description |
| 71 | .Nd get SSL_CIPHER properties | 71 | .Nd get SSL_CIPHER properties |
| 72 | .Sh SYNOPSIS | 72 | .Sh SYNOPSIS |
| 73 | .Lb libssl libcrypto | ||
| 73 | .In openssl/ssl.h | 74 | .In openssl/ssl.h |
| 74 | .Ft const char * | 75 | .Ft const char * |
| 75 | .Fn SSL_CIPHER_get_name "const SSL_CIPHER *cipher" | 76 | .Fn SSL_CIPHER_get_name "const SSL_CIPHER *cipher" |
| @@ -81,7 +82,7 @@ | |||
| 81 | .Fn SSL_CIPHER_get_cipher_nid "const SSL_CIPHER *cipher" | 82 | .Fn SSL_CIPHER_get_cipher_nid "const SSL_CIPHER *cipher" |
| 82 | .Ft int | 83 | .Ft int |
| 83 | .Fn SSL_CIPHER_get_digest_nid "const SSL_CIPHER *cipher" | 84 | .Fn SSL_CIPHER_get_digest_nid "const SSL_CIPHER *cipher" |
| 84 | .Ft "const EVP_MD *" | 85 | .Ft const EVP_MD * |
| 85 | .Fn SSL_CIPHER_get_handshake_digest "const SSL_CIPHER *cipher" | 86 | .Fn SSL_CIPHER_get_handshake_digest "const SSL_CIPHER *cipher" |
| 86 | .Ft int | 87 | .Ft int |
| 87 | .Fn SSL_CIPHER_get_kx_nid "const SSL_CIPHER *cipher" | 88 | .Fn SSL_CIPHER_get_kx_nid "const SSL_CIPHER *cipher" |
diff --git a/src/lib/libssl/man/SSL_COMP_add_compression_method.3 b/src/lib/libssl/man/SSL_COMP_add_compression_method.3 index f9e25358d7..0b990ca88e 100644 --- a/src/lib/libssl/man/SSL_COMP_add_compression_method.3 +++ b/src/lib/libssl/man/SSL_COMP_add_compression_method.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_COMP_add_compression_method.3,v 1.7 2024/08/31 10:51:48 tb Exp $ | 1 | .\" $OpenBSD: SSL_COMP_add_compression_method.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,13 +14,14 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: August 31 2024 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_COMP_ADD_COMPRESSION_METHOD 3 | 18 | .Dt SSL_COMP_ADD_COMPRESSION_METHOD 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| 21 | .Nm SSL_COMP_get_compression_methods | 21 | .Nm SSL_COMP_get_compression_methods |
| 22 | .Nd handle SSL/TLS integrated compression methods | 22 | .Nd handle SSL/TLS integrated compression methods |
| 23 | .Sh SYNOPSIS | 23 | .Sh SYNOPSIS |
| 24 | .Lb libssl libcrypto | ||
| 24 | .In openssl/ssl.h | 25 | .In openssl/ssl.h |
| 25 | .Ft STACK_OF(SSL_COMP) * | 26 | .Ft STACK_OF(SSL_COMP) * |
| 26 | .Fn SSL_COMP_get_compression_methods void | 27 | .Fn SSL_COMP_get_compression_methods void |
diff --git a/src/lib/libssl/man/SSL_CTX_add1_chain_cert.3 b/src/lib/libssl/man/SSL_CTX_add1_chain_cert.3 index 86eb27a523..91c4c80758 100644 --- a/src/lib/libssl/man/SSL_CTX_add1_chain_cert.3 +++ b/src/lib/libssl/man/SSL_CTX_add1_chain_cert.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_add1_chain_cert.3,v 1.2 2025/01/18 10:45:12 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_add1_chain_cert.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 | 2 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Dr. Stephen Henson <steve@openssl.org> | 4 | .\" This file was written by Dr. Stephen Henson <steve@openssl.org> |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: January 18 2025 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_ADD1_CHAIN_CERT 3 | 53 | .Dt SSL_CTX_ADD1_CHAIN_CERT 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -67,6 +67,7 @@ | |||
| 67 | .Nm SSL_clear_chain_certs | 67 | .Nm SSL_clear_chain_certs |
| 68 | .Nd extra chain certificate processing | 68 | .Nd extra chain certificate processing |
| 69 | .Sh SYNOPSIS | 69 | .Sh SYNOPSIS |
| 70 | .Lb libssl libcrypto | ||
| 70 | .In openssl/ssl.h | 71 | .In openssl/ssl.h |
| 71 | .Ft int | 72 | .Ft int |
| 72 | .Fo SSL_CTX_set0_chain | 73 | .Fo SSL_CTX_set0_chain |
diff --git a/src/lib/libssl/man/SSL_CTX_add_extra_chain_cert.3 b/src/lib/libssl/man/SSL_CTX_add_extra_chain_cert.3 index b9694b0cbc..891c22a40a 100644 --- a/src/lib/libssl/man/SSL_CTX_add_extra_chain_cert.3 +++ b/src/lib/libssl/man/SSL_CTX_add_extra_chain_cert.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_add_extra_chain_cert.3,v 1.8 2025/01/18 10:45:12 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_add_extra_chain_cert.3,v 1.9 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org> and | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org> and |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: January 18 2025 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_CTX_ADD_EXTRA_CHAIN_CERT 3 | 54 | .Dt SSL_CTX_ADD_EXTRA_CHAIN_CERT 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -60,6 +60,7 @@ | |||
| 60 | .Nm SSL_CTX_clear_extra_chain_certs | 60 | .Nm SSL_CTX_clear_extra_chain_certs |
| 61 | .Nd add, retrieve, and clear extra chain certificates | 61 | .Nd add, retrieve, and clear extra chain certificates |
| 62 | .Sh SYNOPSIS | 62 | .Sh SYNOPSIS |
| 63 | .Lb libssl libcrypto | ||
| 63 | .In openssl/ssl.h | 64 | .In openssl/ssl.h |
| 64 | .Ft long | 65 | .Ft long |
| 65 | .Fn SSL_CTX_add_extra_chain_cert "SSL_CTX *ctx" "X509 *x509" | 66 | .Fn SSL_CTX_add_extra_chain_cert "SSL_CTX *ctx" "X509 *x509" |
diff --git a/src/lib/libssl/man/SSL_CTX_add_session.3 b/src/lib/libssl/man/SSL_CTX_add_session.3 index 443bdb542a..df634bcdda 100644 --- a/src/lib/libssl/man/SSL_CTX_add_session.3 +++ b/src/lib/libssl/man/SSL_CTX_add_session.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_add_session.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_add_session.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_CTX_add_session.pod 1722496f Jun 8 15:18:38 2017 -0400 | 2 | .\" OpenSSL SSL_CTX_add_session.pod 1722496f Jun 8 15:18:38 2017 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org> and | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org> and |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 27 2018 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_ADD_SESSION 3 | 53 | .Dt SSL_CTX_ADD_SESSION 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_CTX_remove_session | 57 | .Nm SSL_CTX_remove_session |
| 58 | .Nd manipulate session cache | 58 | .Nd manipulate session cache |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fn SSL_CTX_add_session "SSL_CTX *ctx" "SSL_SESSION *c" | 63 | .Fn SSL_CTX_add_session "SSL_CTX *ctx" "SSL_SESSION *c" |
diff --git a/src/lib/libssl/man/SSL_CTX_ctrl.3 b/src/lib/libssl/man/SSL_CTX_ctrl.3 index c91ddff374..4d254d8f48 100644 --- a/src/lib/libssl/man/SSL_CTX_ctrl.3 +++ b/src/lib/libssl/man/SSL_CTX_ctrl.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_ctrl.3,v 1.7 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_ctrl.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_CTRL 3 | 52 | .Dt SSL_CTX_CTRL 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_callback_ctrl | 58 | .Nm SSL_callback_ctrl |
| 59 | .Nd internal handling functions for SSL_CTX and SSL objects | 59 | .Nd internal handling functions for SSL_CTX and SSL objects |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft long | 63 | .Ft long |
| 63 | .Fn SSL_CTX_ctrl "SSL_CTX *ctx" "int cmd" "long larg" "void *parg" | 64 | .Fn SSL_CTX_ctrl "SSL_CTX *ctx" "int cmd" "long larg" "void *parg" |
diff --git a/src/lib/libssl/man/SSL_CTX_flush_sessions.3 b/src/lib/libssl/man/SSL_CTX_flush_sessions.3 index 2ef781cb4a..deabf5200a 100644 --- a/src/lib/libssl/man/SSL_CTX_flush_sessions.3 +++ b/src/lib/libssl/man/SSL_CTX_flush_sessions.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_flush_sessions.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_flush_sessions.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_CTX_flush_sessions.pod 1722496f Jun 8 15:18:38 2017 -0400 | 2 | .\" OpenSSL SSL_CTX_flush_sessions.pod 1722496f Jun 8 15:18:38 2017 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_FLUSH_SESSIONS 3 | 52 | .Dt SSL_CTX_FLUSH_SESSIONS 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_CTX_flush_sessions | 55 | .Nm SSL_CTX_flush_sessions |
| 56 | .Nd remove expired sessions | 56 | .Nd remove expired sessions |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft void | 60 | .Ft void |
| 60 | .Fn SSL_CTX_flush_sessions "SSL_CTX *ctx" "long tm" | 61 | .Fn SSL_CTX_flush_sessions "SSL_CTX *ctx" "long tm" |
diff --git a/src/lib/libssl/man/SSL_CTX_free.3 b/src/lib/libssl/man/SSL_CTX_free.3 index 47f247631b..0afef7cd0e 100644 --- a/src/lib/libssl/man/SSL_CTX_free.3 +++ b/src/lib/libssl/man/SSL_CTX_free.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_free.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_free.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_FREE 3 | 52 | .Dt SSL_CTX_FREE 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_CTX_free | 55 | .Nm SSL_CTX_free |
| 56 | .Nd free an allocated SSL_CTX object | 56 | .Nd free an allocated SSL_CTX object |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft void | 60 | .Ft void |
| 60 | .Fn SSL_CTX_free "SSL_CTX *ctx" | 61 | .Fn SSL_CTX_free "SSL_CTX *ctx" |
diff --git a/src/lib/libssl/man/SSL_CTX_get0_certificate.3 b/src/lib/libssl/man/SSL_CTX_get0_certificate.3 index 63c86bd5e0..226e6cd87a 100644 --- a/src/lib/libssl/man/SSL_CTX_get0_certificate.3 +++ b/src/lib/libssl/man/SSL_CTX_get0_certificate.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_get0_certificate.3,v 1.3 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_get0_certificate.3,v 1.4 2025/06/08 22:47:20 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2018 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2018 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,13 +14,15 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: June 12 2019 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_CTX_GET0_CERTIFICATE 3 | 18 | .Dt SSL_CTX_GET0_CERTIFICATE 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| 21 | .Nm SSL_CTX_get0_certificate | 21 | .Nm SSL_CTX_get0_certificate |
| 22 | .Nd get the active certificate from an SSL context | 22 | .Nd get the active certificate from an SSL context |
| 23 | .Sh SYNOPSIS | 23 | .Sh SYNOPSIS |
| 24 | .Lb libssl libcrypto | ||
| 25 | .In openssl/ssl.h | ||
| 24 | .Ft X509 * | 26 | .Ft X509 * |
| 25 | .Fo SSL_CTX_get0_certificate | 27 | .Fo SSL_CTX_get0_certificate |
| 26 | .Fa "const SSL_CTX *ctx" | 28 | .Fa "const SSL_CTX *ctx" |
diff --git a/src/lib/libssl/man/SSL_CTX_get_ex_new_index.3 b/src/lib/libssl/man/SSL_CTX_get_ex_new_index.3 index 3dbaf2e981..30a02cc317 100644 --- a/src/lib/libssl/man/SSL_CTX_get_ex_new_index.3 +++ b/src/lib/libssl/man/SSL_CTX_get_ex_new_index.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_get_ex_new_index.3,v 1.3 2018/03/21 08:06:34 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_get_ex_new_index.3,v 1.4 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 | 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 21 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_GET_EX_NEW_INDEX 3 | 52 | .Dt SSL_CTX_GET_EX_NEW_INDEX 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_CTX_get_ex_data | 57 | .Nm SSL_CTX_get_ex_data |
| 58 | .Nd internal application specific data functions | 58 | .Nd internal application specific data functions |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fo SSL_CTX_get_ex_new_index | 63 | .Fo SSL_CTX_get_ex_new_index |
diff --git a/src/lib/libssl/man/SSL_CTX_get_verify_mode.3 b/src/lib/libssl/man/SSL_CTX_get_verify_mode.3 index 7c87775069..88187f7f3c 100644 --- a/src/lib/libssl/man/SSL_CTX_get_verify_mode.3 +++ b/src/lib/libssl/man/SSL_CTX_get_verify_mode.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_get_verify_mode.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_get_verify_mode.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_GET_VERIFY_MODE 3 | 52 | .Dt SSL_CTX_GET_VERIFY_MODE 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -60,6 +60,7 @@ | |||
| 60 | .Nm SSL_CTX_get_verify_callback | 60 | .Nm SSL_CTX_get_verify_callback |
| 61 | .Nd get currently set verification parameters | 61 | .Nd get currently set verification parameters |
| 62 | .Sh SYNOPSIS | 62 | .Sh SYNOPSIS |
| 63 | .Lb libssl libcrypto | ||
| 63 | .In openssl/ssl.h | 64 | .In openssl/ssl.h |
| 64 | .Ft int | 65 | .Ft int |
| 65 | .Fn SSL_CTX_get_verify_mode "const SSL_CTX *ctx" | 66 | .Fn SSL_CTX_get_verify_mode "const SSL_CTX *ctx" |
diff --git a/src/lib/libssl/man/SSL_CTX_load_verify_locations.3 b/src/lib/libssl/man/SSL_CTX_load_verify_locations.3 index 373df2402e..0cc22f433d 100644 --- a/src/lib/libssl/man/SSL_CTX_load_verify_locations.3 +++ b/src/lib/libssl/man/SSL_CTX_load_verify_locations.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_load_verify_locations.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_load_verify_locations.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 | 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 27 2018 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_LOAD_VERIFY_LOCATIONS 3 | 53 | .Dt SSL_CTX_LOAD_VERIFY_LOCATIONS 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_CTX_set_default_verify_paths | 57 | .Nm SSL_CTX_set_default_verify_paths |
| 58 | .Nd set default locations for trusted CA certificates | 58 | .Nd set default locations for trusted CA certificates |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fo SSL_CTX_load_verify_locations | 63 | .Fo SSL_CTX_load_verify_locations |
diff --git a/src/lib/libssl/man/SSL_CTX_new.3 b/src/lib/libssl/man/SSL_CTX_new.3 index 4b50a03de4..2afad5378c 100644 --- a/src/lib/libssl/man/SSL_CTX_new.3 +++ b/src/lib/libssl/man/SSL_CTX_new.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_new.3,v 1.17 2022/07/13 22:05:53 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_new.3,v 1.18 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 21cd6e00 Oct 21 14:40:15 2015 +0100 | 2 | .\" full merge up to: OpenSSL 21cd6e00 Oct 21 14:40:15 2015 +0100 |
| 3 | .\" selective merge up to: OpenSSL 8f75443f May 24 14:04:26 2019 +0200 | 3 | .\" selective merge up to: OpenSSL 8f75443f May 24 14:04:26 2019 +0200 |
| 4 | .\" | 4 | .\" |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: July 13 2022 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_CTX_NEW 3 | 54 | .Dt SSL_CTX_NEW 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -82,6 +82,7 @@ | |||
| 82 | .Nm DTLSv1_2_client_method | 82 | .Nm DTLSv1_2_client_method |
| 83 | .Nd create a new SSL_CTX object as a framework for TLS enabled functions | 83 | .Nd create a new SSL_CTX object as a framework for TLS enabled functions |
| 84 | .Sh SYNOPSIS | 84 | .Sh SYNOPSIS |
| 85 | .Lb libssl libcrypto | ||
| 85 | .In openssl/ssl.h | 86 | .In openssl/ssl.h |
| 86 | .Ft SSL_CTX * | 87 | .Ft SSL_CTX * |
| 87 | .Fn SSL_CTX_new "const SSL_METHOD *method" | 88 | .Fn SSL_CTX_new "const SSL_METHOD *method" |
diff --git a/src/lib/libssl/man/SSL_CTX_sess_number.3 b/src/lib/libssl/man/SSL_CTX_sess_number.3 index 76d436cd17..854f6256eb 100644 --- a/src/lib/libssl/man/SSL_CTX_sess_number.3 +++ b/src/lib/libssl/man/SSL_CTX_sess_number.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_sess_number.3,v 1.9 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_sess_number.3,v 1.10 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_CTX_sess_number.pod 7bd27895 Mar 29 11:45:29 2017 +1000 | 2 | .\" OpenSSL SSL_CTX_sess_number.pod 7bd27895 Mar 29 11:45:29 2017 +1000 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 12 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SESS_NUMBER 3 | 52 | .Dt SSL_CTX_SESS_NUMBER 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -66,6 +66,7 @@ | |||
| 66 | .Nm SSL_CTX_sess_cache_full | 66 | .Nm SSL_CTX_sess_cache_full |
| 67 | .Nd obtain session cache statistics | 67 | .Nd obtain session cache statistics |
| 68 | .Sh SYNOPSIS | 68 | .Sh SYNOPSIS |
| 69 | .Lb libssl libcrypto | ||
| 69 | .In openssl/ssl.h | 70 | .In openssl/ssl.h |
| 70 | .Ft long | 71 | .Ft long |
| 71 | .Fn SSL_CTX_sess_number "SSL_CTX *ctx" | 72 | .Fn SSL_CTX_sess_number "SSL_CTX *ctx" |
diff --git a/src/lib/libssl/man/SSL_CTX_sess_set_cache_size.3 b/src/lib/libssl/man/SSL_CTX_sess_set_cache_size.3 index 6d5fede0b6..e8bfe50a3c 100644 --- a/src/lib/libssl/man/SSL_CTX_sess_set_cache_size.3 +++ b/src/lib/libssl/man/SSL_CTX_sess_set_cache_size.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_sess_set_cache_size.3,v 1.5 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_sess_set_cache_size.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 12 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SESS_SET_CACHE_SIZE 3 | 52 | .Dt SSL_CTX_SESS_SET_CACHE_SIZE 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm SSL_CTX_sess_get_cache_size | 56 | .Nm SSL_CTX_sess_get_cache_size |
| 57 | .Nd manipulate session cache size | 57 | .Nd manipulate session cache size |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft long | 61 | .Ft long |
| 61 | .Fn SSL_CTX_sess_set_cache_size "SSL_CTX *ctx" "long t" | 62 | .Fn SSL_CTX_sess_set_cache_size "SSL_CTX *ctx" "long t" |
diff --git a/src/lib/libssl/man/SSL_CTX_sess_set_get_cb.3 b/src/lib/libssl/man/SSL_CTX_sess_set_get_cb.3 index e99f2be671..62a6698399 100644 --- a/src/lib/libssl/man/SSL_CTX_sess_set_get_cb.3 +++ b/src/lib/libssl/man/SSL_CTX_sess_set_get_cb.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_sess_set_get_cb.3,v 1.7 2022/03/29 18:15:52 naddy Exp $ | 1 | .\" $OpenBSD: SSL_CTX_sess_set_get_cb.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 29 2022 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_SESS_SET_GET_CB 3 | 53 | .Dt SSL_CTX_SESS_SET_GET_CB 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -61,6 +61,7 @@ | |||
| 61 | .Nm SSL_CTX_sess_get_get_cb | 61 | .Nm SSL_CTX_sess_get_get_cb |
| 62 | .Nd provide callback functions for server side external session caching | 62 | .Nd provide callback functions for server side external session caching |
| 63 | .Sh SYNOPSIS | 63 | .Sh SYNOPSIS |
| 64 | .Lb libssl libcrypto | ||
| 64 | .In openssl/ssl.h | 65 | .In openssl/ssl.h |
| 65 | .Ft void | 66 | .Ft void |
| 66 | .Fo SSL_CTX_sess_set_new_cb | 67 | .Fo SSL_CTX_sess_set_new_cb |
diff --git a/src/lib/libssl/man/SSL_CTX_sessions.3 b/src/lib/libssl/man/SSL_CTX_sessions.3 index 964d1a7346..627c694cd8 100644 --- a/src/lib/libssl/man/SSL_CTX_sessions.3 +++ b/src/lib/libssl/man/SSL_CTX_sessions.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_sessions.3,v 1.5 2018/04/25 14:19:39 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_sessions.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: April 25 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SESSIONS 3 | 52 | .Dt SSL_CTX_SESSIONS 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_CTX_sessions | 55 | .Nm SSL_CTX_sessions |
| 56 | .Nd access internal session cache | 56 | .Nd access internal session cache |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft LHASH_OF(SSL_SESSION) * | 60 | .Ft LHASH_OF(SSL_SESSION) * |
| 60 | .Fn SSL_CTX_sessions "SSL_CTX *ctx" | 61 | .Fn SSL_CTX_sessions "SSL_CTX *ctx" |
diff --git a/src/lib/libssl/man/SSL_CTX_set1_groups.3 b/src/lib/libssl/man/SSL_CTX_set1_groups.3 index 0d1eb36ea7..8cd620d3b4 100644 --- a/src/lib/libssl/man/SSL_CTX_set1_groups.3 +++ b/src/lib/libssl/man/SSL_CTX_set1_groups.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set1_groups.3,v 1.2 2017/08/19 19:36:39 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set1_groups.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_CTX_set1_curves.pod de4d764e Nov 9 14:51:06 2016 +0000 | 2 | .\" OpenSSL SSL_CTX_set1_curves.pod de4d764e Nov 9 14:51:06 2016 +0000 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Dr. Stephen Henson <steve@openssl.org>. | 4 | .\" This file was written by Dr. Stephen Henson <steve@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: August 19 2017 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET1_GROUPS 3 | 52 | .Dt SSL_CTX_SET1_GROUPS 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -62,6 +62,7 @@ | |||
| 62 | .Nm SSL_set1_curves_list | 62 | .Nm SSL_set1_curves_list |
| 63 | .Nd choose supported EC groups | 63 | .Nd choose supported EC groups |
| 64 | .Sh SYNOPSIS | 64 | .Sh SYNOPSIS |
| 65 | .Lb libssl libcrypto | ||
| 65 | .In openssl/ssl.h | 66 | .In openssl/ssl.h |
| 66 | .Ft int | 67 | .Ft int |
| 67 | .Fo SSL_CTX_set1_groups | 68 | .Fo SSL_CTX_set1_groups |
diff --git a/src/lib/libssl/man/SSL_CTX_set_alpn_select_cb.3 b/src/lib/libssl/man/SSL_CTX_set_alpn_select_cb.3 index 2317c57af4..ff69408247 100644 --- a/src/lib/libssl/man/SSL_CTX_set_alpn_select_cb.3 +++ b/src/lib/libssl/man/SSL_CTX_set_alpn_select_cb.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_alpn_select_cb.3,v 1.11 2025/02/04 14:00:05 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_alpn_select_cb.3,v 1.12 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 87b81496 Apr 19 12:38:27 2017 -0400 | 2 | .\" OpenSSL 87b81496 Apr 19 12:38:27 2017 -0400 |
| 3 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 3 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: February 4 2025 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_SET_ALPN_SELECT_CB 3 | 53 | .Dt SSL_CTX_SET_ALPN_SELECT_CB 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -60,6 +60,7 @@ | |||
| 60 | .Nm SSL_get0_alpn_selected | 60 | .Nm SSL_get0_alpn_selected |
| 61 | .Nd handle application layer protocol negotiation (ALPN) | 61 | .Nd handle application layer protocol negotiation (ALPN) |
| 62 | .Sh SYNOPSIS | 62 | .Sh SYNOPSIS |
| 63 | .Lb libssl libcrypto | ||
| 63 | .In openssl/ssl.h | 64 | .In openssl/ssl.h |
| 64 | .Ft int | 65 | .Ft int |
| 65 | .Fo SSL_CTX_set_alpn_protos | 66 | .Fo SSL_CTX_set_alpn_protos |
diff --git a/src/lib/libssl/man/SSL_CTX_set_cert_store.3 b/src/lib/libssl/man/SSL_CTX_set_cert_store.3 index 1be1ba2f68..75c145fd78 100644 --- a/src/lib/libssl/man/SSL_CTX_set_cert_store.3 +++ b/src/lib/libssl/man/SSL_CTX_set_cert_store.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_cert_store.3,v 1.8 2024/08/03 04:53:01 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_cert_store.3,v 1.9 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 99d63d46 Oct 26 13:56:48 2016 -0400 | 2 | .\" OpenSSL 99d63d46 Oct 26 13:56:48 2016 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: August 3 2024 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_CERT_STORE 3 | 52 | .Dt SSL_CTX_SET_CERT_STORE 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_CTX_get_cert_store | 57 | .Nm SSL_CTX_get_cert_store |
| 58 | .Nd manipulate X509 certificate verification storage | 58 | .Nd manipulate X509 certificate verification storage |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft void | 62 | .Ft void |
| 62 | .Fn SSL_CTX_set_cert_store "SSL_CTX *ctx" "X509_STORE *store" | 63 | .Fn SSL_CTX_set_cert_store "SSL_CTX *ctx" "X509_STORE *store" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_cert_verify_callback.3 b/src/lib/libssl/man/SSL_CTX_set_cert_verify_callback.3 index 0e12b48c78..2e2beac850 100644 --- a/src/lib/libssl/man/SSL_CTX_set_cert_verify_callback.3 +++ b/src/lib/libssl/man/SSL_CTX_set_cert_verify_callback.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_cert_verify_callback.3,v 1.5 2019/06/08 15:25:43 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_cert_verify_callback.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 8 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_CERT_VERIFY_CALLBACK 3 | 52 | .Dt SSL_CTX_SET_CERT_VERIFY_CALLBACK 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_CTX_set_cert_verify_callback | 55 | .Nm SSL_CTX_set_cert_verify_callback |
| 56 | .Nd set peer certificate verification procedure | 56 | .Nd set peer certificate verification procedure |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft void | 60 | .Ft void |
| 60 | .Fo SSL_CTX_set_cert_verify_callback | 61 | .Fo SSL_CTX_set_cert_verify_callback |
diff --git a/src/lib/libssl/man/SSL_CTX_set_cipher_list.3 b/src/lib/libssl/man/SSL_CTX_set_cipher_list.3 index b3f0dc3541..6201dc9f55 100644 --- a/src/lib/libssl/man/SSL_CTX_set_cipher_list.3 +++ b/src/lib/libssl/man/SSL_CTX_set_cipher_list.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_cipher_list.3,v 1.18 2025/01/18 12:20:02 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_cipher_list.3,v 1.19 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file is a derived work. | 4 | .\" This file is a derived work. |
| @@ -65,7 +65,7 @@ | |||
| 65 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 65 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 66 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 66 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 67 | .\" | 67 | .\" |
| 68 | .Dd $Mdocdate: January 18 2025 $ | 68 | .Dd $Mdocdate: June 8 2025 $ |
| 69 | .Dt SSL_CTX_SET_CIPHER_LIST 3 | 69 | .Dt SSL_CTX_SET_CIPHER_LIST 3 |
| 70 | .Os | 70 | .Os |
| 71 | .Sh NAME | 71 | .Sh NAME |
| @@ -73,6 +73,7 @@ | |||
| 73 | .Nm SSL_set_cipher_list | 73 | .Nm SSL_set_cipher_list |
| 74 | .Nd choose list of available SSL_CIPHERs | 74 | .Nd choose list of available SSL_CIPHERs |
| 75 | .Sh SYNOPSIS | 75 | .Sh SYNOPSIS |
| 76 | .Lb libssl libcrypto | ||
| 76 | .In openssl/ssl.h | 77 | .In openssl/ssl.h |
| 77 | .Ft int | 78 | .Ft int |
| 78 | .Fn SSL_CTX_set_cipher_list "SSL_CTX *ctx" "const char *control" | 79 | .Fn SSL_CTX_set_cipher_list "SSL_CTX *ctx" "const char *control" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_client_CA_list.3 b/src/lib/libssl/man/SSL_CTX_set_client_CA_list.3 index d19fb93ed0..520be04318 100644 --- a/src/lib/libssl/man/SSL_CTX_set_client_CA_list.3 +++ b/src/lib/libssl/man/SSL_CTX_set_client_CA_list.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_client_CA_list.3,v 1.6 2020/03/30 10:28:59 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_client_CA_list.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,16 +48,17 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 30 2020 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_CLIENT_CA_LIST 3 | 52 | .Dt SSL_CTX_SET_CLIENT_CA_LIST 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_CTX_set_client_CA_list , | 55 | .Nm SSL_CTX_set_client_CA_list , |
| 56 | .Nm SSL_set_client_CA_list , | 56 | .Nm SSL_set_client_CA_list , |
| 57 | .Nm SSL_CTX_add_client_CA , | 57 | .Nm SSL_CTX_add_client_CA , |
| 58 | .Nm SSL_add_client_CA | 58 | .Nm SSL_add_client_CA |
| 59 | .Nd set list of CAs sent to the client when requesting a client certificate | 59 | .Nd set list of CAs sent to the client when requesting a client certificate |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft void | 63 | .Ft void |
| 63 | .Fn SSL_CTX_set_client_CA_list "SSL_CTX *ctx" "STACK_OF(X509_NAME) *list" | 64 | .Fn SSL_CTX_set_client_CA_list "SSL_CTX *ctx" "STACK_OF(X509_NAME) *list" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_client_cert_cb.3 b/src/lib/libssl/man/SSL_CTX_set_client_cert_cb.3 index a2433b5e92..2cf8275602 100644 --- a/src/lib/libssl/man/SSL_CTX_set_client_cert_cb.3 +++ b/src/lib/libssl/man/SSL_CTX_set_client_cert_cb.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_client_cert_cb.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_client_cert_cb.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_CLIENT_CERT_CB 3 | 52 | .Dt SSL_CTX_SET_CLIENT_CERT_CB 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm SSL_CTX_get_client_cert_cb | 56 | .Nm SSL_CTX_get_client_cert_cb |
| 57 | .Nd handle client certificate callback function | 57 | .Nd handle client certificate callback function |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft void | 61 | .Ft void |
| 61 | .Fo SSL_CTX_set_client_cert_cb | 62 | .Fo SSL_CTX_set_client_cert_cb |
diff --git a/src/lib/libssl/man/SSL_CTX_set_default_passwd_cb.3 b/src/lib/libssl/man/SSL_CTX_set_default_passwd_cb.3 index 94b4ea543d..e3da1bec66 100644 --- a/src/lib/libssl/man/SSL_CTX_set_default_passwd_cb.3 +++ b/src/lib/libssl/man/SSL_CTX_set_default_passwd_cb.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_default_passwd_cb.3,v 1.9 2023/09/19 09:40:35 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_default_passwd_cb.3,v 1.10 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 | 2 | .\" full merge up to: OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 |
| 3 | .\" selective merge up to: OpenSSL 18bad535 Apr 9 15:13:55 2019 +0100 | 3 | .\" selective merge up to: OpenSSL 18bad535 Apr 9 15:13:55 2019 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -67,7 +67,7 @@ | |||
| 67 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 67 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 68 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 68 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 69 | .\" | 69 | .\" |
| 70 | .Dd $Mdocdate: September 19 2023 $ | 70 | .Dd $Mdocdate: June 8 2025 $ |
| 71 | .Dt SSL_CTX_SET_DEFAULT_PASSWD_CB 3 | 71 | .Dt SSL_CTX_SET_DEFAULT_PASSWD_CB 3 |
| 72 | .Os | 72 | .Os |
| 73 | .Sh NAME | 73 | .Sh NAME |
| @@ -77,6 +77,7 @@ | |||
| 77 | .Nm SSL_CTX_get_default_passwd_cb_userdata | 77 | .Nm SSL_CTX_get_default_passwd_cb_userdata |
| 78 | .Nd set or get passwd callback for encrypted PEM file handling | 78 | .Nd set or get passwd callback for encrypted PEM file handling |
| 79 | .Sh SYNOPSIS | 79 | .Sh SYNOPSIS |
| 80 | .Lb libssl libcrypto | ||
| 80 | .In openssl/ssl.h | 81 | .In openssl/ssl.h |
| 81 | .Ft void | 82 | .Ft void |
| 82 | .Fn SSL_CTX_set_default_passwd_cb "SSL_CTX *ctx" "pem_password_cb *cb" | 83 | .Fn SSL_CTX_set_default_passwd_cb "SSL_CTX *ctx" "pem_password_cb *cb" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_generate_session_id.3 b/src/lib/libssl/man/SSL_CTX_set_generate_session_id.3 index d85383d776..29c102ac50 100644 --- a/src/lib/libssl/man/SSL_CTX_set_generate_session_id.3 +++ b/src/lib/libssl/man/SSL_CTX_set_generate_session_id.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_generate_session_id.3,v 1.5 2018/03/22 21:09:18 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_generate_session_id.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 22 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_GENERATE_SESSION_ID 3 | 52 | .Dt SSL_CTX_SET_GENERATE_SESSION_ID 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm GEN_SESSION_CB | 58 | .Nm GEN_SESSION_CB |
| 59 | .Nd manipulate generation of SSL session IDs (server only) | 59 | .Nd manipulate generation of SSL session IDs (server only) |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft typedef int | 63 | .Ft typedef int |
| 63 | .Fo (*GEN_SESSION_CB) | 64 | .Fo (*GEN_SESSION_CB) |
diff --git a/src/lib/libssl/man/SSL_CTX_set_info_callback.3 b/src/lib/libssl/man/SSL_CTX_set_info_callback.3 index 76eb8bee61..ec251b5b69 100644 --- a/src/lib/libssl/man/SSL_CTX_set_info_callback.3 +++ b/src/lib/libssl/man/SSL_CTX_set_info_callback.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_info_callback.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_info_callback.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_INFO_CALLBACK 3 | 52 | .Dt SSL_CTX_SET_INFO_CALLBACK 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_get_info_callback | 58 | .Nm SSL_get_info_callback |
| 59 | .Nd handle information callback for SSL connections | 59 | .Nd handle information callback for SSL connections |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft void | 63 | .Ft void |
| 63 | .Fo SSL_CTX_set_info_callback | 64 | .Fo SSL_CTX_set_info_callback |
diff --git a/src/lib/libssl/man/SSL_CTX_set_keylog_callback.3 b/src/lib/libssl/man/SSL_CTX_set_keylog_callback.3 index 24b8f9992f..0cb36b07c6 100644 --- a/src/lib/libssl/man/SSL_CTX_set_keylog_callback.3 +++ b/src/lib/libssl/man/SSL_CTX_set_keylog_callback.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_keylog_callback.3,v 1.3 2024/05/16 08:39:30 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_keylog_callback.3,v 1.4 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL pod checked up to: 61f805c1 Jan 16 01:01:46 2018 +0800 | 2 | .\" OpenSSL pod checked up to: 61f805c1 Jan 16 01:01:46 2018 +0800 |
| 3 | .\" | 3 | .\" |
| 4 | .\" Copyright (c) 2021 Bob Beck <beck@openbsd.org> | 4 | .\" Copyright (c) 2021 Bob Beck <beck@openbsd.org> |
| @@ -15,7 +15,7 @@ | |||
| 15 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 15 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 16 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 16 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 17 | .\" | 17 | .\" |
| 18 | .Dd $Mdocdate: May 16 2024 $ | 18 | .Dd $Mdocdate: June 8 2025 $ |
| 19 | .Dt SSL_CTX_SET_KEYLOG_CALLBACK 3 | 19 | .Dt SSL_CTX_SET_KEYLOG_CALLBACK 3 |
| 20 | .Os | 20 | .Os |
| 21 | .Sh NAME | 21 | .Sh NAME |
| @@ -23,6 +23,7 @@ | |||
| 23 | .Nm SSL_CTX_get_keylog_callback | 23 | .Nm SSL_CTX_get_keylog_callback |
| 24 | .Nd set and get the unused key logging callback | 24 | .Nd set and get the unused key logging callback |
| 25 | .Sh SYNOPSIS | 25 | .Sh SYNOPSIS |
| 26 | .Lb libssl libcrypto | ||
| 26 | .In openssl/ssl.h | 27 | .In openssl/ssl.h |
| 27 | .Ft typedef void | 28 | .Ft typedef void |
| 28 | .Fo (*SSL_CTX_keylog_cb_func) | 29 | .Fo (*SSL_CTX_keylog_cb_func) |
diff --git a/src/lib/libssl/man/SSL_CTX_set_max_cert_list.3 b/src/lib/libssl/man/SSL_CTX_set_max_cert_list.3 index 89513b1006..700f534f54 100644 --- a/src/lib/libssl/man/SSL_CTX_set_max_cert_list.3 +++ b/src/lib/libssl/man/SSL_CTX_set_max_cert_list.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_max_cert_list.3,v 1.6 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_max_cert_list.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 12 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_MAX_CERT_LIST 3 | 52 | .Dt SSL_CTX_SET_MAX_CERT_LIST 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_get_max_cert_list | 58 | .Nm SSL_get_max_cert_list |
| 59 | .Nd manipulate allowed size for the peer's certificate chain | 59 | .Nd manipulate allowed size for the peer's certificate chain |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft long | 63 | .Ft long |
| 63 | .Fn SSL_CTX_set_max_cert_list "SSL_CTX *ctx" "long size" | 64 | .Fn SSL_CTX_set_max_cert_list "SSL_CTX *ctx" "long size" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_min_proto_version.3 b/src/lib/libssl/man/SSL_CTX_set_min_proto_version.3 index a2597cda83..50a5fc448d 100644 --- a/src/lib/libssl/man/SSL_CTX_set_min_proto_version.3 +++ b/src/lib/libssl/man/SSL_CTX_set_min_proto_version.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_min_proto_version.3,v 1.5 2021/04/15 16:40:32 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_min_proto_version.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 3edabd3c Sep 14 09:28:39 2017 +0200 | 2 | .\" full merge up to: OpenSSL 3edabd3c Sep 14 09:28:39 2017 +0200 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Kurt Roeckx <kurt@roeckx.be> and | 4 | .\" This file was written by Kurt Roeckx <kurt@roeckx.be> and |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: April 15 2021 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_SET_MIN_PROTO_VERSION 3 | 53 | .Dt SSL_CTX_SET_MIN_PROTO_VERSION 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -63,6 +63,7 @@ | |||
| 63 | .Nm SSL_get_max_proto_version | 63 | .Nm SSL_get_max_proto_version |
| 64 | .Nd get and set minimum and maximum supported protocol version | 64 | .Nd get and set minimum and maximum supported protocol version |
| 65 | .Sh SYNOPSIS | 65 | .Sh SYNOPSIS |
| 66 | .Lb libssl libcrypto | ||
| 66 | .In openssl/ssl.h | 67 | .In openssl/ssl.h |
| 67 | .Ft int | 68 | .Ft int |
| 68 | .Fo SSL_CTX_set_min_proto_version | 69 | .Fo SSL_CTX_set_min_proto_version |
diff --git a/src/lib/libssl/man/SSL_CTX_set_mode.3 b/src/lib/libssl/man/SSL_CTX_set_mode.3 index fca1a977d0..62a7a6deda 100644 --- a/src/lib/libssl/man/SSL_CTX_set_mode.3 +++ b/src/lib/libssl/man/SSL_CTX_set_mode.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_mode.3,v 1.7 2020/10/08 16:02:38 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_mode.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 8671b898 Jun 3 02:48:34 2008 +0000 | 2 | .\" full merge up to: OpenSSL 8671b898 Jun 3 02:48:34 2008 +0000 |
| 3 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 | 3 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: October 8 2020 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_CTX_SET_MODE 3 | 54 | .Dt SSL_CTX_SET_MODE 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -62,6 +62,7 @@ | |||
| 62 | .Nm SSL_get_mode | 62 | .Nm SSL_get_mode |
| 63 | .Nd manipulate SSL engine mode | 63 | .Nd manipulate SSL engine mode |
| 64 | .Sh SYNOPSIS | 64 | .Sh SYNOPSIS |
| 65 | .Lb libssl libcrypto | ||
| 65 | .In openssl/ssl.h | 66 | .In openssl/ssl.h |
| 66 | .Ft long | 67 | .Ft long |
| 67 | .Fn SSL_CTX_set_mode "SSL_CTX *ctx" "long mode" | 68 | .Fn SSL_CTX_set_mode "SSL_CTX *ctx" "long mode" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_msg_callback.3 b/src/lib/libssl/man/SSL_CTX_set_msg_callback.3 index a27333e6d9..65df06016a 100644 --- a/src/lib/libssl/man/SSL_CTX_set_msg_callback.3 +++ b/src/lib/libssl/man/SSL_CTX_set_msg_callback.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_msg_callback.3,v 1.5 2021/04/15 16:43:27 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_msg_callback.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_CTX_set_msg_callback.pod e9b77246 Jan 20 19:58:49 2017 +0100 | 2 | .\" OpenSSL SSL_CTX_set_msg_callback.pod e9b77246 Jan 20 19:58:49 2017 +0100 |
| 3 | .\" OpenSSL SSL_CTX_set_msg_callback.pod b97fdb57 Nov 11 09:33:09 2016 +0100 | 3 | .\" OpenSSL SSL_CTX_set_msg_callback.pod b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: April 15 2021 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_SET_MSG_CALLBACK 3 | 53 | .Dt SSL_CTX_SET_MSG_CALLBACK 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -59,6 +59,7 @@ | |||
| 59 | .Nm SSL_set_msg_callback_arg | 59 | .Nm SSL_set_msg_callback_arg |
| 60 | .Nd install callback for observing protocol messages | 60 | .Nd install callback for observing protocol messages |
| 61 | .Sh SYNOPSIS | 61 | .Sh SYNOPSIS |
| 62 | .Lb libssl libcrypto | ||
| 62 | .In openssl/ssl.h | 63 | .In openssl/ssl.h |
| 63 | .Ft void | 64 | .Ft void |
| 64 | .Fo SSL_CTX_set_msg_callback | 65 | .Fo SSL_CTX_set_msg_callback |
diff --git a/src/lib/libssl/man/SSL_CTX_set_num_tickets.3 b/src/lib/libssl/man/SSL_CTX_set_num_tickets.3 index cb6d7e000a..093387725a 100644 --- a/src/lib/libssl/man/SSL_CTX_set_num_tickets.3 +++ b/src/lib/libssl/man/SSL_CTX_set_num_tickets.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_num_tickets.3,v 1.2 2021/10/23 17:20:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_num_tickets.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL pod checked up to: 5402f96a Sep 11 09:58:52 2021 +0100 | 2 | .\" OpenSSL pod checked up to: 5402f96a Sep 11 09:58:52 2021 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" Copyright (c) 2021 Bob Beck <beck@openbsd.org> | 4 | .\" Copyright (c) 2021 Bob Beck <beck@openbsd.org> |
| @@ -15,7 +15,7 @@ | |||
| 15 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 15 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 16 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 16 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 17 | .\" | 17 | .\" |
| 18 | .Dd $Mdocdate: October 23 2021 $ | 18 | .Dd $Mdocdate: June 8 2025 $ |
| 19 | .Dt SSL_CTX_SET_NUM_TICKETS 3 | 19 | .Dt SSL_CTX_SET_NUM_TICKETS 3 |
| 20 | .Os | 20 | .Os |
| 21 | .Sh NAME | 21 | .Sh NAME |
| @@ -25,6 +25,7 @@ | |||
| 25 | .Nm SSL_get_num_tickets | 25 | .Nm SSL_get_num_tickets |
| 26 | .Nd set and get the number of TLS 1.3 session tickets to be sent | 26 | .Nd set and get the number of TLS 1.3 session tickets to be sent |
| 27 | .Sh SYNOPSIS | 27 | .Sh SYNOPSIS |
| 28 | .Lb libssl libcrypto | ||
| 28 | .In openssl/ssl.h | 29 | .In openssl/ssl.h |
| 29 | .Ft int | 30 | .Ft int |
| 30 | .Fn SSL_CTX_set_num_tickets "SSL_CTX *ctx" "size_t num_tickets" | 31 | .Fn SSL_CTX_set_num_tickets "SSL_CTX *ctx" "size_t num_tickets" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_options.3 b/src/lib/libssl/man/SSL_CTX_set_options.3 index 5df0b07785..5e81c978bd 100644 --- a/src/lib/libssl/man/SSL_CTX_set_options.3 +++ b/src/lib/libssl/man/SSL_CTX_set_options.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_options.3,v 1.16 2022/03/31 17:27:18 naddy Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_options.3,v 1.17 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 7946ab33 Dec 6 17:56:41 2015 +0100 | 2 | .\" full merge up to: OpenSSL 7946ab33 Dec 6 17:56:41 2015 +0100 |
| 3 | .\" selective merge up to: OpenSSL edb79c3a Mar 29 10:07:14 2017 +1000 | 3 | .\" selective merge up to: OpenSSL edb79c3a Mar 29 10:07:14 2017 +1000 |
| 4 | .\" | 4 | .\" |
| @@ -52,7 +52,7 @@ | |||
| 52 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 52 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 53 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 53 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 54 | .\" | 54 | .\" |
| 55 | .Dd $Mdocdate: March 31 2022 $ | 55 | .Dd $Mdocdate: June 8 2025 $ |
| 56 | .Dt SSL_CTX_SET_OPTIONS 3 | 56 | .Dt SSL_CTX_SET_OPTIONS 3 |
| 57 | .Os | 57 | .Os |
| 58 | .Sh NAME | 58 | .Sh NAME |
| @@ -65,6 +65,7 @@ | |||
| 65 | .Nm SSL_get_secure_renegotiation_support | 65 | .Nm SSL_get_secure_renegotiation_support |
| 66 | .Nd manipulate SSL options | 66 | .Nd manipulate SSL options |
| 67 | .Sh SYNOPSIS | 67 | .Sh SYNOPSIS |
| 68 | .Lb libssl libcrypto | ||
| 68 | .In openssl/ssl.h | 69 | .In openssl/ssl.h |
| 69 | .Ft long | 70 | .Ft long |
| 70 | .Fn SSL_CTX_set_options "SSL_CTX *ctx" "long options" | 71 | .Fn SSL_CTX_set_options "SSL_CTX *ctx" "long options" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_quiet_shutdown.3 b/src/lib/libssl/man/SSL_CTX_set_quiet_shutdown.3 index 71463f1eca..20b882167b 100644 --- a/src/lib/libssl/man/SSL_CTX_set_quiet_shutdown.3 +++ b/src/lib/libssl/man/SSL_CTX_set_quiet_shutdown.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_quiet_shutdown.3,v 1.6 2020/03/30 10:28:59 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_quiet_shutdown.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 30 2020 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_QUIET_SHUTDOWN 3 | 52 | .Dt SSL_CTX_SET_QUIET_SHUTDOWN 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_get_quiet_shutdown | 58 | .Nm SSL_get_quiet_shutdown |
| 59 | .Nd manipulate shutdown behaviour | 59 | .Nd manipulate shutdown behaviour |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft void | 63 | .Ft void |
| 63 | .Fn SSL_CTX_set_quiet_shutdown "SSL_CTX *ctx" "int mode" | 64 | .Fn SSL_CTX_set_quiet_shutdown "SSL_CTX *ctx" "int mode" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_read_ahead.3 b/src/lib/libssl/man/SSL_CTX_set_read_ahead.3 index eae76eb472..208ecfbf1a 100644 --- a/src/lib/libssl/man/SSL_CTX_set_read_ahead.3 +++ b/src/lib/libssl/man/SSL_CTX_set_read_ahead.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_read_ahead.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_read_ahead.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Matt Caswell <matt@openssl.org>. | 4 | .\" This file was written by Matt Caswell <matt@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_READ_AHEAD 3 | 52 | .Dt SSL_CTX_SET_READ_AHEAD 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -59,6 +59,7 @@ | |||
| 59 | .Nm SSL_CTX_get_default_read_ahead | 59 | .Nm SSL_CTX_get_default_read_ahead |
| 60 | .Nd manage whether to read as many input bytes as possible | 60 | .Nd manage whether to read as many input bytes as possible |
| 61 | .Sh SYNOPSIS | 61 | .Sh SYNOPSIS |
| 62 | .Lb libssl libcrypto | ||
| 62 | .In openssl/ssl.h | 63 | .In openssl/ssl.h |
| 63 | .Ft void | 64 | .Ft void |
| 64 | .Fo SSL_CTX_set_read_ahead | 65 | .Fo SSL_CTX_set_read_ahead |
diff --git a/src/lib/libssl/man/SSL_CTX_set_security_level.3 b/src/lib/libssl/man/SSL_CTX_set_security_level.3 index 89adb3d65d..2d3afa5785 100644 --- a/src/lib/libssl/man/SSL_CTX_set_security_level.3 +++ b/src/lib/libssl/man/SSL_CTX_set_security_level.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_security_level.3,v 1.2 2025/01/18 10:45:12 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_security_level.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2022 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2022 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,7 +14,7 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: January 18 2025 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_CTX_SET_SECURITY_LEVEL 3 | 18 | .Dt SSL_CTX_SET_SECURITY_LEVEL 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| @@ -24,6 +24,7 @@ | |||
| 24 | .Nm SSL_get_security_level | 24 | .Nm SSL_get_security_level |
| 25 | .Nd change security level for TLS | 25 | .Nd change security level for TLS |
| 26 | .Sh SYNOPSIS | 26 | .Sh SYNOPSIS |
| 27 | .Lb libssl libcrypto | ||
| 27 | .In openssl/ssl.h | 28 | .In openssl/ssl.h |
| 28 | .Ft void | 29 | .Ft void |
| 29 | .Fo SSL_CTX_set_security_level | 30 | .Fo SSL_CTX_set_security_level |
diff --git a/src/lib/libssl/man/SSL_CTX_set_session_cache_mode.3 b/src/lib/libssl/man/SSL_CTX_set_session_cache_mode.3 index 1fe67b2a7e..d19ff79545 100644 --- a/src/lib/libssl/man/SSL_CTX_set_session_cache_mode.3 +++ b/src/lib/libssl/man/SSL_CTX_set_session_cache_mode.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_session_cache_mode.3,v 1.7 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_session_cache_mode.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 67adf0a7 Dec 25 19:58:38 2016 +0100 | 2 | .\" OpenSSL 67adf0a7 Dec 25 19:58:38 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org> and | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org> and |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: June 12 2019 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_SET_SESSION_CACHE_MODE 3 | 53 | .Dt SSL_CTX_SET_SESSION_CACHE_MODE 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_CTX_get_session_cache_mode | 57 | .Nm SSL_CTX_get_session_cache_mode |
| 58 | .Nd enable/disable session caching | 58 | .Nd enable/disable session caching |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft long | 62 | .Ft long |
| 62 | .Fn SSL_CTX_set_session_cache_mode "SSL_CTX ctx" "long mode" | 63 | .Fn SSL_CTX_set_session_cache_mode "SSL_CTX ctx" "long mode" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_session_id_context.3 b/src/lib/libssl/man/SSL_CTX_set_session_id_context.3 index 06fd9348ae..53923888db 100644 --- a/src/lib/libssl/man/SSL_CTX_set_session_id_context.3 +++ b/src/lib/libssl/man/SSL_CTX_set_session_id_context.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_session_id_context.3,v 1.6 2019/06/08 15:25:43 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_session_id_context.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 8 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_SESSION_ID_CONTEXT 3 | 52 | .Dt SSL_CTX_SET_SESSION_ID_CONTEXT 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm SSL_set_session_id_context | 56 | .Nm SSL_set_session_id_context |
| 57 | .Nd set context within which session can be reused (server side only) | 57 | .Nd set context within which session can be reused (server side only) |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft int | 61 | .Ft int |
| 61 | .Fo SSL_CTX_set_session_id_context | 62 | .Fo SSL_CTX_set_session_id_context |
diff --git a/src/lib/libssl/man/SSL_CTX_set_ssl_version.3 b/src/lib/libssl/man/SSL_CTX_set_ssl_version.3 index b1bdb92bb0..fe9febe431 100644 --- a/src/lib/libssl/man/SSL_CTX_set_ssl_version.3 +++ b/src/lib/libssl/man/SSL_CTX_set_ssl_version.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_ssl_version.3,v 1.5 2021/05/11 19:48:56 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_ssl_version.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: May 11 2021 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_SSL_VERSION 3 | 52 | .Dt SSL_CTX_SET_SSL_VERSION 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_get_ssl_method | 58 | .Nm SSL_get_ssl_method |
| 59 | .Nd choose a new TLS/SSL method | 59 | .Nd choose a new TLS/SSL method |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft int | 63 | .Ft int |
| 63 | .Fn SSL_CTX_set_ssl_version "SSL_CTX *ctx" "const SSL_METHOD *method" | 64 | .Fn SSL_CTX_set_ssl_version "SSL_CTX *ctx" "const SSL_METHOD *method" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_timeout.3 b/src/lib/libssl/man/SSL_CTX_set_timeout.3 index ab99e2016e..da2f811528 100644 --- a/src/lib/libssl/man/SSL_CTX_set_timeout.3 +++ b/src/lib/libssl/man/SSL_CTX_set_timeout.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_timeout.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_timeout.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_TIMEOUT 3 | 52 | .Dt SSL_CTX_SET_TIMEOUT 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm SSL_CTX_get_timeout | 56 | .Nm SSL_CTX_get_timeout |
| 57 | .Nd manipulate timeout values for session caching | 57 | .Nd manipulate timeout values for session caching |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft long | 61 | .Ft long |
| 61 | .Fn SSL_CTX_set_timeout "SSL_CTX *ctx" "long t" | 62 | .Fn SSL_CTX_set_timeout "SSL_CTX *ctx" "long t" |
diff --git a/src/lib/libssl/man/SSL_CTX_set_tlsext_servername_callback.3 b/src/lib/libssl/man/SSL_CTX_set_tlsext_servername_callback.3 index 79169a004b..b6cece259c 100644 --- a/src/lib/libssl/man/SSL_CTX_set_tlsext_servername_callback.3 +++ b/src/lib/libssl/man/SSL_CTX_set_tlsext_servername_callback.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_tlsext_servername_callback.3,v 1.7 2025/04/18 08:35:34 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_tlsext_servername_callback.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 190b9a03 Jun 28 15:46:13 2017 +0800 | 2 | .\" full merge up to: OpenSSL 190b9a03 Jun 28 15:46:13 2017 +0800 |
| 3 | .\" selective merge up to: OpenSSL 6328d367 Jul 4 21:58:30 2020 +0200 | 3 | .\" selective merge up to: OpenSSL 6328d367 Jul 4 21:58:30 2020 +0200 |
| 4 | .\" | 4 | .\" |
| @@ -51,7 +51,7 @@ | |||
| 51 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 51 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 52 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 52 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 53 | .\" | 53 | .\" |
| 54 | .Dd $Mdocdate: April 18 2025 $ | 54 | .Dd $Mdocdate: June 8 2025 $ |
| 55 | .Dt SSL_CTX_SET_TLSEXT_SERVERNAME_CALLBACK 3 | 55 | .Dt SSL_CTX_SET_TLSEXT_SERVERNAME_CALLBACK 3 |
| 56 | .Os | 56 | .Os |
| 57 | .Sh NAME | 57 | .Sh NAME |
| @@ -62,6 +62,7 @@ | |||
| 62 | .Nm SSL_set_tlsext_host_name | 62 | .Nm SSL_set_tlsext_host_name |
| 63 | .Nd handle server name indication (SNI) | 63 | .Nd handle server name indication (SNI) |
| 64 | .Sh SYNOPSIS | 64 | .Sh SYNOPSIS |
| 65 | .Lb libssl libcrypto | ||
| 65 | .In openssl/ssl.h | 66 | .In openssl/ssl.h |
| 66 | .Ft long | 67 | .Ft long |
| 67 | .Fo SSL_CTX_set_tlsext_servername_callback | 68 | .Fo SSL_CTX_set_tlsext_servername_callback |
diff --git a/src/lib/libssl/man/SSL_CTX_set_tlsext_status_cb.3 b/src/lib/libssl/man/SSL_CTX_set_tlsext_status_cb.3 index d5979af1e8..c9763f9d2f 100644 --- a/src/lib/libssl/man/SSL_CTX_set_tlsext_status_cb.3 +++ b/src/lib/libssl/man/SSL_CTX_set_tlsext_status_cb.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_tlsext_status_cb.3,v 1.8 2021/09/11 18:58:41 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_tlsext_status_cb.3,v 1.9 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 43c34894 Nov 30 16:04:51 2015 +0000 | 2 | .\" full merge up to: OpenSSL 43c34894 Nov 30 16:04:51 2015 +0000 |
| 3 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 | 3 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: September 11 2021 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CTX_SET_TLSEXT_STATUS_CB 3 | 53 | .Dt SSL_CTX_SET_TLSEXT_STATUS_CB 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -63,6 +63,7 @@ | |||
| 63 | .Nm SSL_set_tlsext_status_ocsp_resp | 63 | .Nm SSL_set_tlsext_status_ocsp_resp |
| 64 | .Nd OCSP Certificate Status Request functions | 64 | .Nd OCSP Certificate Status Request functions |
| 65 | .Sh SYNOPSIS | 65 | .Sh SYNOPSIS |
| 66 | .Lb libssl libcrypto | ||
| 66 | .In openssl/tls1.h | 67 | .In openssl/tls1.h |
| 67 | .Ft long | 68 | .Ft long |
| 68 | .Fo SSL_CTX_set_tlsext_status_cb | 69 | .Fo SSL_CTX_set_tlsext_status_cb |
diff --git a/src/lib/libssl/man/SSL_CTX_set_tlsext_ticket_key_cb.3 b/src/lib/libssl/man/SSL_CTX_set_tlsext_ticket_key_cb.3 index b6ccabaeca..0427f7dcf5 100644 --- a/src/lib/libssl/man/SSL_CTX_set_tlsext_ticket_key_cb.3 +++ b/src/lib/libssl/man/SSL_CTX_set_tlsext_ticket_key_cb.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_tlsext_ticket_key_cb.3,v 1.8 2022/01/25 18:01:20 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_tlsext_ticket_key_cb.3,v 1.9 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Rich Salz <rsalz@akamai.com> | 4 | .\" This file was written by Rich Salz <rsalz@akamai.com> |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: January 25 2022 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_TLSEXT_TICKET_KEY_CB 3 | 52 | .Dt SSL_CTX_SET_TLSEXT_TICKET_KEY_CB 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_CTX_set_tlsext_ticket_key_cb | 55 | .Nm SSL_CTX_set_tlsext_ticket_key_cb |
| 56 | .Nd set a callback for session ticket processing | 56 | .Nd set a callback for session ticket processing |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/tls1.h | 59 | .In openssl/tls1.h |
| 59 | .Ft long | 60 | .Ft long |
| 60 | .Fo SSL_CTX_set_tlsext_ticket_key_cb | 61 | .Fo SSL_CTX_set_tlsext_ticket_key_cb |
diff --git a/src/lib/libssl/man/SSL_CTX_set_tlsext_use_srtp.3 b/src/lib/libssl/man/SSL_CTX_set_tlsext_use_srtp.3 index 04c4833c6a..4acd452ad5 100644 --- a/src/lib/libssl/man/SSL_CTX_set_tlsext_use_srtp.3 +++ b/src/lib/libssl/man/SSL_CTX_set_tlsext_use_srtp.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_tlsext_use_srtp.3,v 1.6 2021/06/11 19:41:39 jmc Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_tlsext_use_srtp.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b0edda11 Mar 20 13:00:17 2018 +0000 | 2 | .\" full merge up to: OpenSSL b0edda11 Mar 20 13:00:17 2018 +0000 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Matt Caswell <matt@openssl.org>. | 4 | .\" This file was written by Matt Caswell <matt@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 11 2021 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_TLSEXT_USE_SRTP 3 | 52 | .Dt SSL_CTX_SET_TLSEXT_USE_SRTP 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_get_selected_srtp_profile | 58 | .Nm SSL_get_selected_srtp_profile |
| 59 | .Nd Configure and query SRTP support | 59 | .Nd Configure and query SRTP support |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/srtp.h | 62 | .In openssl/srtp.h |
| 62 | .Ft int | 63 | .Ft int |
| 63 | .Fo SSL_CTX_set_tlsext_use_srtp | 64 | .Fo SSL_CTX_set_tlsext_use_srtp |
diff --git a/src/lib/libssl/man/SSL_CTX_set_tmp_dh_callback.3 b/src/lib/libssl/man/SSL_CTX_set_tmp_dh_callback.3 index c6f5253431..9fa830656a 100644 --- a/src/lib/libssl/man/SSL_CTX_set_tmp_dh_callback.3 +++ b/src/lib/libssl/man/SSL_CTX_set_tmp_dh_callback.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_tmp_dh_callback.3,v 1.11 2025/01/18 10:45:12 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_tmp_dh_callback.3,v 1.12 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: January 18 2025 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_TMP_DH_CALLBACK 3 | 52 | .Dt SSL_CTX_SET_TMP_DH_CALLBACK 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_set_tmp_dh | 58 | .Nm SSL_set_tmp_dh |
| 59 | .Nd handle DH keys for ephemeral key exchange | 59 | .Nd handle DH keys for ephemeral key exchange |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft void | 63 | .Ft void |
| 63 | .Fo SSL_CTX_set_tmp_dh_callback | 64 | .Fo SSL_CTX_set_tmp_dh_callback |
diff --git a/src/lib/libssl/man/SSL_CTX_set_tmp_rsa_callback.3 b/src/lib/libssl/man/SSL_CTX_set_tmp_rsa_callback.3 index b4c3a3c647..7009ac6ab5 100644 --- a/src/lib/libssl/man/SSL_CTX_set_tmp_rsa_callback.3 +++ b/src/lib/libssl/man/SSL_CTX_set_tmp_rsa_callback.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_tmp_rsa_callback.3,v 1.9 2022/03/29 14:27:59 naddy Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_tmp_rsa_callback.3,v 1.10 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 0b30fc90 Dec 19 15:23:05 2013 -0500 | 2 | .\" OpenSSL 0b30fc90 Dec 19 15:23:05 2013 -0500 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 29 2022 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_CTX_SET_TMP_RSA_CALLBACK 3 | 52 | .Dt SSL_CTX_SET_TMP_RSA_CALLBACK 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -60,6 +60,7 @@ | |||
| 60 | .Nm SSL_need_tmp_RSA | 60 | .Nm SSL_need_tmp_RSA |
| 61 | .Nd handle RSA keys for ephemeral key exchange | 61 | .Nd handle RSA keys for ephemeral key exchange |
| 62 | .Sh SYNOPSIS | 62 | .Sh SYNOPSIS |
| 63 | .Lb libssl libcrypto | ||
| 63 | .In openssl/ssl.h | 64 | .In openssl/ssl.h |
| 64 | .Ft void | 65 | .Ft void |
| 65 | .Fo SSL_CTX_set_tmp_rsa_callback | 66 | .Fo SSL_CTX_set_tmp_rsa_callback |
diff --git a/src/lib/libssl/man/SSL_CTX_set_verify.3 b/src/lib/libssl/man/SSL_CTX_set_verify.3 index 1ed86407e9..656c85afd4 100644 --- a/src/lib/libssl/man/SSL_CTX_set_verify.3 +++ b/src/lib/libssl/man/SSL_CTX_set_verify.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_set_verify.3,v 1.9 2021/06/12 16:59:53 jmc Exp $ | 1 | .\" $OpenBSD: SSL_CTX_set_verify.3,v 1.10 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 | 2 | .\" full merge up to: OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 |
| 3 | .\" selective merge up to: OpenSSL 1cb7eff4 Sep 10 13:56:40 2019 +0100 | 3 | .\" selective merge up to: OpenSSL 1cb7eff4 Sep 10 13:56:40 2019 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: June 12 2021 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_CTX_SET_VERIFY 3 | 54 | .Dt SSL_CTX_SET_VERIFY 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -60,6 +60,7 @@ | |||
| 60 | .Nm SSL_set_verify_depth | 60 | .Nm SSL_set_verify_depth |
| 61 | .Nd set peer certificate verification parameters | 61 | .Nd set peer certificate verification parameters |
| 62 | .Sh SYNOPSIS | 62 | .Sh SYNOPSIS |
| 63 | .Lb libssl libcrypto | ||
| 63 | .In openssl/ssl.h | 64 | .In openssl/ssl.h |
| 64 | .Ft void | 65 | .Ft void |
| 65 | .Fo SSL_CTX_set_verify | 66 | .Fo SSL_CTX_set_verify |
diff --git a/src/lib/libssl/man/SSL_CTX_use_certificate.3 b/src/lib/libssl/man/SSL_CTX_use_certificate.3 index c88a6971b2..27ec834d16 100644 --- a/src/lib/libssl/man/SSL_CTX_use_certificate.3 +++ b/src/lib/libssl/man/SSL_CTX_use_certificate.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_CTX_use_certificate.3,v 1.17 2025/01/18 10:45:12 tb Exp $ | 1 | .\" $OpenBSD: SSL_CTX_use_certificate.3,v 1.18 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 3aaa1bd0 Mar 28 16:35:25 2017 +1000 | 2 | .\" full merge up to: OpenSSL 3aaa1bd0 Mar 28 16:35:25 2017 +1000 |
| 3 | .\" selective merge up to: OpenSSL d1f7a1e6 Apr 26 14:05:40 2018 +0100 | 3 | .\" selective merge up to: OpenSSL d1f7a1e6 Apr 26 14:05:40 2018 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: January 18 2025 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_CTX_USE_CERTIFICATE 3 | 54 | .Dt SSL_CTX_USE_CERTIFICATE 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -79,6 +79,7 @@ | |||
| 79 | .Nm SSL_check_private_key | 79 | .Nm SSL_check_private_key |
| 80 | .Nd load certificate and key data | 80 | .Nd load certificate and key data |
| 81 | .Sh SYNOPSIS | 81 | .Sh SYNOPSIS |
| 82 | .Lb libssl libcrypto | ||
| 82 | .In openssl/ssl.h | 83 | .In openssl/ssl.h |
| 83 | .Ft int | 84 | .Ft int |
| 84 | .Fn SSL_CTX_use_certificate "SSL_CTX *ctx" "X509 *x" | 85 | .Fn SSL_CTX_use_certificate "SSL_CTX *ctx" "X509 *x" |
diff --git a/src/lib/libssl/man/SSL_SESSION_free.3 b/src/lib/libssl/man/SSL_SESSION_free.3 index 3f785e95e5..af02a273a0 100644 --- a/src/lib/libssl/man/SSL_SESSION_free.3 +++ b/src/lib/libssl/man/SSL_SESSION_free.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_free.3,v 1.7 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_free.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b31db505 Mar 24 16:01:50 2017 +0000 | 2 | .\" full merge up to: OpenSSL b31db505 Mar 24 16:01:50 2017 +0000 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org> | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org> |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: June 12 2019 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_SESSION_FREE 3 | 54 | .Dt SSL_SESSION_FREE 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_SESSION_free | 58 | .Nm SSL_SESSION_free |
| 59 | .Nd SSL_SESSION reference counting | 59 | .Nd SSL_SESSION reference counting |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft int | 63 | .Ft int |
| 63 | .Fn SSL_SESSION_up_ref "SSL_SESSION *session" | 64 | .Fn SSL_SESSION_up_ref "SSL_SESSION *session" |
diff --git a/src/lib/libssl/man/SSL_SESSION_get0_cipher.3 b/src/lib/libssl/man/SSL_SESSION_get0_cipher.3 index 239a426dbd..4e5b0bb057 100644 --- a/src/lib/libssl/man/SSL_SESSION_get0_cipher.3 +++ b/src/lib/libssl/man/SSL_SESSION_get0_cipher.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_get0_cipher.3,v 1.1 2021/05/12 14:16:25 tb Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_get0_cipher.3,v 1.2 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL d42e7759f Mar 30 19:40:04 2017 +0200 | 2 | .\" full merge up to: OpenSSL d42e7759f Mar 30 19:40:04 2017 +0200 |
| 3 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 | 3 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -49,13 +49,14 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: May 12 2021 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_SESSION_GET0_CIPHER 3 | 53 | .Dt SSL_SESSION_GET0_CIPHER 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| 56 | .Nm SSL_SESSION_get0_cipher | 56 | .Nm SSL_SESSION_get0_cipher |
| 57 | .Nd retrieve the SSL cipher associated with a session | 57 | .Nd retrieve the SSL cipher associated with a session |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft const SSL_CIPHER * | 61 | .Ft const SSL_CIPHER * |
| 61 | .Fo SSL_SESSION_get0_cipher | 62 | .Fo SSL_SESSION_get0_cipher |
diff --git a/src/lib/libssl/man/SSL_SESSION_get0_peer.3 b/src/lib/libssl/man/SSL_SESSION_get0_peer.3 index 6b1ef6680e..98ae1bab9d 100644 --- a/src/lib/libssl/man/SSL_SESSION_get0_peer.3 +++ b/src/lib/libssl/man/SSL_SESSION_get0_peer.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_get0_peer.3,v 1.2 2018/03/23 05:50:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_get0_peer.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_SESSION_get0_peer.pod b31db505 Mar 24 16:01:50 2017 +0000 | 2 | .\" OpenSSL SSL_SESSION_get0_peer.pod b31db505 Mar 24 16:01:50 2017 +0000 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Matt Caswell <matt@openssl.org> | 4 | .\" This file was written by Matt Caswell <matt@openssl.org> |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 23 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SESSION_GET0_PEER 3 | 52 | .Dt SSL_SESSION_GET0_PEER 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_SESSION_get0_peer | 55 | .Nm SSL_SESSION_get0_peer |
| 56 | .Nd get details about peer's certificate for a session | 56 | .Nd get details about peer's certificate for a session |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft X509 * | 60 | .Ft X509 * |
| 60 | .Fo SSL_SESSION_get0_peer | 61 | .Fo SSL_SESSION_get0_peer |
diff --git a/src/lib/libssl/man/SSL_SESSION_get_compress_id.3 b/src/lib/libssl/man/SSL_SESSION_get_compress_id.3 index aedc216a15..da0d48ff6c 100644 --- a/src/lib/libssl/man/SSL_SESSION_get_compress_id.3 +++ b/src/lib/libssl/man/SSL_SESSION_get_compress_id.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_get_compress_id.3,v 1.3 2018/03/23 05:50:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_get_compress_id.3,v 1.4 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_SESSION_get_compress_id.pod b31db505 Mar 24 16:01:50 2017 | 2 | .\" OpenSSL SSL_SESSION_get_compress_id.pod b31db505 Mar 24 16:01:50 2017 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Matt Caswell <matt@openssl.org> | 4 | .\" This file was written by Matt Caswell <matt@openssl.org> |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 23 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SESSION_GET_COMPRESS_ID 3 | 52 | .Dt SSL_SESSION_GET_COMPRESS_ID 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_SESSION_get_compress_id | 55 | .Nm SSL_SESSION_get_compress_id |
| 56 | .Nd get details about the compression associated with a session | 56 | .Nd get details about the compression associated with a session |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft unsigned int | 60 | .Ft unsigned int |
| 60 | .Fo SSL_SESSION_get_compress_id | 61 | .Fo SSL_SESSION_get_compress_id |
diff --git a/src/lib/libssl/man/SSL_SESSION_get_ex_new_index.3 b/src/lib/libssl/man/SSL_SESSION_get_ex_new_index.3 index 9fd6949b6a..55cde1c66b 100644 --- a/src/lib/libssl/man/SSL_SESSION_get_ex_new_index.3 +++ b/src/lib/libssl/man/SSL_SESSION_get_ex_new_index.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_get_ex_new_index.3,v 1.3 2018/03/21 08:06:34 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_get_ex_new_index.3,v 1.4 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 | 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 21 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SESSION_GET_EX_NEW_INDEX 3 | 52 | .Dt SSL_SESSION_GET_EX_NEW_INDEX 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_SESSION_get_ex_data | 57 | .Nm SSL_SESSION_get_ex_data |
| 58 | .Nd internal application specific data functions | 58 | .Nd internal application specific data functions |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fo SSL_SESSION_get_ex_new_index | 63 | .Fo SSL_SESSION_get_ex_new_index |
diff --git a/src/lib/libssl/man/SSL_SESSION_get_id.3 b/src/lib/libssl/man/SSL_SESSION_get_id.3 index 6d0de1e52e..eb14d24111 100644 --- a/src/lib/libssl/man/SSL_SESSION_get_id.3 +++ b/src/lib/libssl/man/SSL_SESSION_get_id.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_get_id.3,v 1.6 2018/03/24 00:55:37 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_get_id.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: | 2 | .\" full merge up to: |
| 3 | .\" OpenSSL SSL_SESSION_set1_id 17b60280 Dec 21 09:08:25 2017 +0100 | 3 | .\" OpenSSL SSL_SESSION_set1_id 17b60280 Dec 21 09:08:25 2017 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: March 24 2018 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_SESSION_GET_ID 3 | 54 | .Dt SSL_SESSION_GET_ID 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_SESSION_set1_id | 58 | .Nm SSL_SESSION_set1_id |
| 59 | .Nd get and set the SSL session ID | 59 | .Nd get and set the SSL session ID |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft const unsigned char * | 63 | .Ft const unsigned char * |
| 63 | .Fo SSL_SESSION_get_id | 64 | .Fo SSL_SESSION_get_id |
diff --git a/src/lib/libssl/man/SSL_SESSION_get_protocol_version.3 b/src/lib/libssl/man/SSL_SESSION_get_protocol_version.3 index f14c0490e9..dad9eab7ef 100644 --- a/src/lib/libssl/man/SSL_SESSION_get_protocol_version.3 +++ b/src/lib/libssl/man/SSL_SESSION_get_protocol_version.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_get_protocol_version.3,v 1.2 2018/03/24 00:55:37 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_get_protocol_version.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by TJ Saunders <tj@castaglia.org> | 4 | .\" This file was written by TJ Saunders <tj@castaglia.org> |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 24 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SESSION_GET_PROTOCOL_VERSION 3 | 52 | .Dt SSL_SESSION_GET_PROTOCOL_VERSION 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_SESSION_get_protocol_version | 55 | .Nm SSL_SESSION_get_protocol_version |
| 56 | .Nd get the session protocol version | 56 | .Nd get the session protocol version |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft int | 60 | .Ft int |
| 60 | .Fo SSL_SESSION_get_protocol_version | 61 | .Fo SSL_SESSION_get_protocol_version |
diff --git a/src/lib/libssl/man/SSL_SESSION_get_time.3 b/src/lib/libssl/man/SSL_SESSION_get_time.3 index aaadec5137..28aeedf72c 100644 --- a/src/lib/libssl/man/SSL_SESSION_get_time.3 +++ b/src/lib/libssl/man/SSL_SESSION_get_time.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_get_time.3,v 1.8 2019/06/08 15:25:43 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_get_time.3,v 1.9 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: June 8 2019 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_SESSION_GET_TIME 3 | 53 | .Dt SSL_SESSION_GET_TIME 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -63,6 +63,7 @@ | |||
| 63 | .Nm SSL_set_timeout | 63 | .Nm SSL_set_timeout |
| 64 | .Nd retrieve and manipulate session time and timeout settings | 64 | .Nd retrieve and manipulate session time and timeout settings |
| 65 | .Sh SYNOPSIS | 65 | .Sh SYNOPSIS |
| 66 | .Lb libssl libcrypto | ||
| 66 | .In openssl/ssl.h | 67 | .In openssl/ssl.h |
| 67 | .Ft long | 68 | .Ft long |
| 68 | .Fn SSL_SESSION_get_time "const SSL_SESSION *s" | 69 | .Fn SSL_SESSION_get_time "const SSL_SESSION *s" |
diff --git a/src/lib/libssl/man/SSL_SESSION_has_ticket.3 b/src/lib/libssl/man/SSL_SESSION_has_ticket.3 index 322b49feef..07b894c4f8 100644 --- a/src/lib/libssl/man/SSL_SESSION_has_ticket.3 +++ b/src/lib/libssl/man/SSL_SESSION_has_ticket.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_has_ticket.3,v 1.2 2018/03/24 00:55:37 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_has_ticket.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL f2baac27 Feb 8 15:43:16 2015 +0000 | 2 | .\" full merge up to: OpenSSL f2baac27 Feb 8 15:43:16 2015 +0000 |
| 3 | .\" selective merge up to: OpenSSL 61f805c1 Jan 16 01:01:46 2018 +0800 | 3 | .\" selective merge up to: OpenSSL 61f805c1 Jan 16 01:01:46 2018 +0800 |
| 4 | .\" | 4 | .\" |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 24 2018 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_SESSION_HAS_TICKET 3 | 53 | .Dt SSL_SESSION_HAS_TICKET 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_SESSION_get_ticket_lifetime_hint | 57 | .Nm SSL_SESSION_get_ticket_lifetime_hint |
| 58 | .Nd get details about the ticket associated with a session | 58 | .Nd get details about the ticket associated with a session |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fo SSL_SESSION_has_ticket | 63 | .Fo SSL_SESSION_has_ticket |
diff --git a/src/lib/libssl/man/SSL_SESSION_is_resumable.3 b/src/lib/libssl/man/SSL_SESSION_is_resumable.3 index 48d7d17889..ddc037c1aa 100644 --- a/src/lib/libssl/man/SSL_SESSION_is_resumable.3 +++ b/src/lib/libssl/man/SSL_SESSION_is_resumable.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_is_resumable.3,v 1.1 2021/09/14 14:08:15 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_is_resumable.3,v 1.2 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 | 2 | .\" full merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Matt Caswell <matt@openssl.org>. | 4 | .\" This file was written by Matt Caswell <matt@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: September 14 2021 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SESSION_IS_RESUMABLE 3 | 52 | .Dt SSL_SESSION_IS_RESUMABLE 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_SESSION_is_resumable | 55 | .Nm SSL_SESSION_is_resumable |
| 56 | .Nd determine whether an SSL_SESSION object can be used for resumption | 56 | .Nd determine whether an SSL_SESSION object can be used for resumption |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft int | 60 | .Ft int |
| 60 | .Fo SSL_SESSION_is_resumable | 61 | .Fo SSL_SESSION_is_resumable |
diff --git a/src/lib/libssl/man/SSL_SESSION_new.3 b/src/lib/libssl/man/SSL_SESSION_new.3 index 2dcdb264c1..182266a311 100644 --- a/src/lib/libssl/man/SSL_SESSION_new.3 +++ b/src/lib/libssl/man/SSL_SESSION_new.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_new.3,v 1.9 2021/09/14 14:08:15 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_new.3,v 1.12 2025/10/24 13:18:22 tb Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,16 +14,20 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: September 14 2021 $ | 17 | .Dd $Mdocdate: October 24 2025 $ |
| 18 | .Dt SSL_SESSION_NEW 3 | 18 | .Dt SSL_SESSION_NEW 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| 21 | .Nm SSL_SESSION_new | 21 | .Nm SSL_SESSION_new , |
| 22 | .Nm SSL_SESSION_dup | ||
| 22 | .Nd construct a new SSL_SESSION object | 23 | .Nd construct a new SSL_SESSION object |
| 23 | .Sh SYNOPSIS | 24 | .Sh SYNOPSIS |
| 25 | .Lb libssl libcrypto | ||
| 24 | .In openssl/ssl.h | 26 | .In openssl/ssl.h |
| 25 | .Ft SSL_SESSION * | 27 | .Ft SSL_SESSION * |
| 26 | .Fn SSL_SESSION_new void | 28 | .Fn SSL_SESSION_new void |
| 29 | .Ft SSL_SESSION * | ||
| 30 | .Fn SSL_SESSION_dup "const SSL_SESSION *src" | ||
| 27 | .Sh DESCRIPTION | 31 | .Sh DESCRIPTION |
| 28 | .Fn SSL_SESSION_new | 32 | .Fn SSL_SESSION_new |
| 29 | allocates and initializes a new | 33 | allocates and initializes a new |
| @@ -38,9 +42,20 @@ When the object is no longer needed, it can be destructed with | |||
| 38 | .Fn SSL_SESSION_new | 42 | .Fn SSL_SESSION_new |
| 39 | is used internally, for example by | 43 | is used internally, for example by |
| 40 | .Xr SSL_connect 3 . | 44 | .Xr SSL_connect 3 . |
| 45 | .Pp | ||
| 46 | .Fn SSL_SESSION_dup | ||
| 47 | creates a deep copy of | ||
| 48 | .Fa src | ||
| 49 | with the exception that | ||
| 50 | the reference count is set to 1, that | ||
| 51 | the peer certificate is shared with | ||
| 52 | .Fa src , | ||
| 53 | and that the new session is not part of any session cache. | ||
| 41 | .Sh RETURN VALUES | 54 | .Sh RETURN VALUES |
| 42 | .Fn SSL_SESSION_new | 55 | .Fn SSL_SESSION_new |
| 43 | returns the new | 56 | and |
| 57 | .Fn SSL_SESSION_dup | ||
| 58 | return the new | ||
| 44 | .Vt SSL_SESSION | 59 | .Vt SSL_SESSION |
| 45 | object or | 60 | object or |
| 46 | .Dv NULL | 61 | .Dv NULL |
| @@ -76,3 +91,7 @@ returns | |||
| 76 | .Fn SSL_SESSION_new | 91 | .Fn SSL_SESSION_new |
| 77 | first appeared in SSLeay 0.5.2 and has been available since | 92 | first appeared in SSLeay 0.5.2 and has been available since |
| 78 | .Ox 2.4 . | 93 | .Ox 2.4 . |
| 94 | .Pp | ||
| 95 | .Fn SSL_SESSION_dup | ||
| 96 | first appeared in OpenSSL 1.1.1 and has been available since | ||
| 97 | .Ox 7.9 . | ||
diff --git a/src/lib/libssl/man/SSL_SESSION_print.3 b/src/lib/libssl/man/SSL_SESSION_print.3 index e92debde0e..65742140d0 100644 --- a/src/lib/libssl/man/SSL_SESSION_print.3 +++ b/src/lib/libssl/man/SSL_SESSION_print.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_print.3,v 1.4 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_print.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,7 +14,7 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: June 12 2019 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_SESSION_PRINT 3 | 18 | .Dt SSL_SESSION_PRINT 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| @@ -22,6 +22,7 @@ | |||
| 22 | .Nm SSL_SESSION_print_fp | 22 | .Nm SSL_SESSION_print_fp |
| 23 | .Nd print some properties of an SSL_SESSION object | 23 | .Nd print some properties of an SSL_SESSION object |
| 24 | .Sh SYNOPSIS | 24 | .Sh SYNOPSIS |
| 25 | .Lb libssl libcrypto | ||
| 25 | .In openssl/ssl.h | 26 | .In openssl/ssl.h |
| 26 | .Ft int | 27 | .Ft int |
| 27 | .Fo SSL_SESSION_print | 28 | .Fo SSL_SESSION_print |
diff --git a/src/lib/libssl/man/SSL_SESSION_set1_id_context.3 b/src/lib/libssl/man/SSL_SESSION_set1_id_context.3 index dd7595baca..24f1de4fda 100644 --- a/src/lib/libssl/man/SSL_SESSION_set1_id_context.3 +++ b/src/lib/libssl/man/SSL_SESSION_set1_id_context.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_SESSION_set1_id_context.3,v 1.4 2018/03/24 00:55:37 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_SESSION_set1_id_context.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: | 2 | .\" full merge up to: |
| 3 | .\" OpenSSL SSL_SESSION_get0_id_context b31db505 Mar 24 16:01:50 2017 | 3 | .\" OpenSSL SSL_SESSION_get0_id_context b31db505 Mar 24 16:01:50 2017 |
| 4 | .\" | 4 | .\" |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 24 2018 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_SESSION_SET1_ID_CONTEXT 3 | 53 | .Dt SSL_SESSION_SET1_ID_CONTEXT 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_SESSION_set1_id_context | 57 | .Nm SSL_SESSION_set1_id_context |
| 58 | .Nd get and set the SSL ID context associated with a session | 58 | .Nd get and set the SSL ID context associated with a session |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft const unsigned char * | 62 | .Ft const unsigned char * |
| 62 | .Fo SSL_SESSION_get0_id_context | 63 | .Fo SSL_SESSION_get0_id_context |
diff --git a/src/lib/libssl/man/SSL_accept.3 b/src/lib/libssl/man/SSL_accept.3 index fb1d89eb57..ecb757aaa5 100644 --- a/src/lib/libssl/man/SSL_accept.3 +++ b/src/lib/libssl/man/SSL_accept.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_accept.3,v 1.6 2019/06/08 15:25:43 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_accept.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,13 +49,14 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: June 8 2019 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_ACCEPT 3 | 53 | .Dt SSL_ACCEPT 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| 56 | .Nm SSL_accept | 56 | .Nm SSL_accept |
| 57 | .Nd wait for a TLS/SSL client to initiate a TLS/SSL handshake | 57 | .Nd wait for a TLS/SSL client to initiate a TLS/SSL handshake |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft int | 61 | .Ft int |
| 61 | .Fn SSL_accept "SSL *ssl" | 62 | .Fn SSL_accept "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_alert_type_string.3 b/src/lib/libssl/man/SSL_alert_type_string.3 index 354865e546..0f051cc0a6 100644 --- a/src/lib/libssl/man/SSL_alert_type_string.3 +++ b/src/lib/libssl/man/SSL_alert_type_string.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_alert_type_string.3,v 1.7 2024/10/13 08:25:09 jsg Exp $ | 1 | .\" $OpenBSD: SSL_alert_type_string.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: October 13 2024 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_ALERT_TYPE_STRING 3 | 52 | .Dt SSL_ALERT_TYPE_STRING 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_alert_desc_string_long | 58 | .Nm SSL_alert_desc_string_long |
| 59 | .Nd get textual description of alert information | 59 | .Nd get textual description of alert information |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft const char * | 63 | .Ft const char * |
| 63 | .Fn SSL_alert_type_string "int value" | 64 | .Fn SSL_alert_type_string "int value" |
diff --git a/src/lib/libssl/man/SSL_clear.3 b/src/lib/libssl/man/SSL_clear.3 index 809c3b20f4..5e4da1257f 100644 --- a/src/lib/libssl/man/SSL_clear.3 +++ b/src/lib/libssl/man/SSL_clear.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_clear.3,v 1.5 2021/06/11 19:41:39 jmc Exp $ | 1 | .\" $OpenBSD: SSL_clear.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,13 +49,14 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: June 11 2021 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CLEAR 3 | 53 | .Dt SSL_CLEAR 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| 56 | .Nm SSL_clear | 56 | .Nm SSL_clear |
| 57 | .Nd reset SSL object to allow another connection | 57 | .Nd reset SSL object to allow another connection |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft int | 61 | .Ft int |
| 61 | .Fn SSL_clear "SSL *ssl" | 62 | .Fn SSL_clear "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_connect.3 b/src/lib/libssl/man/SSL_connect.3 index d5b962a480..a0cd8f8443 100644 --- a/src/lib/libssl/man/SSL_connect.3 +++ b/src/lib/libssl/man/SSL_connect.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_connect.3,v 1.6 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_connect.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,13 +49,14 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 27 2018 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_CONNECT 3 | 53 | .Dt SSL_CONNECT 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| 56 | .Nm SSL_connect | 56 | .Nm SSL_connect |
| 57 | .Nd initiate the TLS/SSL handshake with a TLS/SSL server | 57 | .Nd initiate the TLS/SSL handshake with a TLS/SSL server |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft int | 61 | .Ft int |
| 61 | .Fn SSL_connect "SSL *ssl" | 62 | .Fn SSL_connect "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_copy_session_id.3 b/src/lib/libssl/man/SSL_copy_session_id.3 index a7a7a8aa99..75a52e8879 100644 --- a/src/lib/libssl/man/SSL_copy_session_id.3 +++ b/src/lib/libssl/man/SSL_copy_session_id.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_copy_session_id.3,v 1.7 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_copy_session_id.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,13 +14,14 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: June 12 2019 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_COPY_SESSION_ID 3 | 18 | .Dt SSL_COPY_SESSION_ID 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| 21 | .Nm SSL_copy_session_id | 21 | .Nm SSL_copy_session_id |
| 22 | .Nd copy session details between SSL objects | 22 | .Nd copy session details between SSL objects |
| 23 | .Sh SYNOPSIS | 23 | .Sh SYNOPSIS |
| 24 | .Lb libssl libcrypto | ||
| 24 | .In openssl/ssl.h | 25 | .In openssl/ssl.h |
| 25 | .Ft int | 26 | .Ft int |
| 26 | .Fo SSL_copy_session_id | 27 | .Fo SSL_copy_session_id |
diff --git a/src/lib/libssl/man/SSL_do_handshake.3 b/src/lib/libssl/man/SSL_do_handshake.3 index e9327b4229..78b41db2f4 100644 --- a/src/lib/libssl/man/SSL_do_handshake.3 +++ b/src/lib/libssl/man/SSL_do_handshake.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_do_handshake.3,v 1.6 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_do_handshake.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Martin Sjoegren <martin@strakt.com>. | 4 | .\" This file was written by Martin Sjoegren <martin@strakt.com>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_DO_HANDSHAKE 3 | 52 | .Dt SSL_DO_HANDSHAKE 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_do_handshake | 55 | .Nm SSL_do_handshake |
| 56 | .Nd perform a TLS/SSL handshake | 56 | .Nd perform a TLS/SSL handshake |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft int | 60 | .Ft int |
| 60 | .Fn SSL_do_handshake "SSL *ssl" | 61 | .Fn SSL_do_handshake "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_dup.3 b/src/lib/libssl/man/SSL_dup.3 index a83440b431..f7d999fb62 100644 --- a/src/lib/libssl/man/SSL_dup.3 +++ b/src/lib/libssl/man/SSL_dup.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_dup.3,v 1.5 2022/07/13 22:05:53 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_dup.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,13 +14,14 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: July 13 2022 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_DUP 3 | 18 | .Dt SSL_DUP 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| 21 | .Nm SSL_dup | 21 | .Nm SSL_dup |
| 22 | .Nd deep copy of an SSL object | 22 | .Nd deep copy of an SSL object |
| 23 | .Sh SYNOPSIS | 23 | .Sh SYNOPSIS |
| 24 | .Lb libssl libcrypto | ||
| 24 | .In openssl/ssl.h | 25 | .In openssl/ssl.h |
| 25 | .Ft SSL * | 26 | .Ft SSL * |
| 26 | .Fo SSL_dup | 27 | .Fo SSL_dup |
diff --git a/src/lib/libssl/man/SSL_dup_CA_list.3 b/src/lib/libssl/man/SSL_dup_CA_list.3 index d073b07176..553c03bd8c 100644 --- a/src/lib/libssl/man/SSL_dup_CA_list.3 +++ b/src/lib/libssl/man/SSL_dup_CA_list.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_dup_CA_list.3,v 1.6 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_dup_CA_list.3,v 1.7 2025/06/08 22:47:20 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,7 +14,7 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: June 12 2019 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_DUP_CA_LIST 3 | 18 | .Dt SSL_DUP_CA_LIST 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| @@ -22,6 +22,8 @@ | |||
| 22 | .Nd deep copy of a stack of X.509 Name objects | 22 | .Nd deep copy of a stack of X.509 Name objects |
| 23 | .\" The capital "N" in "Name" is intentional (X.509 syntax). | 23 | .\" The capital "N" in "Name" is intentional (X.509 syntax). |
| 24 | .Sh SYNOPSIS | 24 | .Sh SYNOPSIS |
| 25 | .Lb libssl libcrypto | ||
| 26 | .In openssl/ssl.h | ||
| 25 | .Ft STACK_OF(X509_NAME) * | 27 | .Ft STACK_OF(X509_NAME) * |
| 26 | .Fo SSL_dup_CA_list | 28 | .Fo SSL_dup_CA_list |
| 27 | .Fa "const STACK_OF(X509_NAME) *sk" | 29 | .Fa "const STACK_OF(X509_NAME) *sk" |
diff --git a/src/lib/libssl/man/SSL_export_keying_material.3 b/src/lib/libssl/man/SSL_export_keying_material.3 index e32a5c5d61..d3daa3a5a3 100644 --- a/src/lib/libssl/man/SSL_export_keying_material.3 +++ b/src/lib/libssl/man/SSL_export_keying_material.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_export_keying_material.3,v 1.3 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_export_keying_material.3,v 1.4 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL a599574b Jun 28 17:18:27 2017 +0100 | 2 | .\" OpenSSL a599574b Jun 28 17:18:27 2017 +0100 |
| 3 | .\" OpenSSL 23cec1f4 Jun 21 13:55:02 2017 +0100 | 3 | .\" OpenSSL 23cec1f4 Jun 21 13:55:02 2017 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -49,13 +49,14 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: June 12 2019 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_EXPORT_KEYING_MATERIAL 3 | 53 | .Dt SSL_EXPORT_KEYING_MATERIAL 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| 56 | .Nm SSL_export_keying_material | 56 | .Nm SSL_export_keying_material |
| 57 | .Nd obtain keying material for application use | 57 | .Nd obtain keying material for application use |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft int | 61 | .Ft int |
| 61 | .Fo SSL_export_keying_material | 62 | .Fo SSL_export_keying_material |
diff --git a/src/lib/libssl/man/SSL_free.3 b/src/lib/libssl/man/SSL_free.3 index c713ded121..b630bc8a2e 100644 --- a/src/lib/libssl/man/SSL_free.3 +++ b/src/lib/libssl/man/SSL_free.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_free.3,v 1.6 2021/06/11 19:41:39 jmc Exp $ | 1 | .\" $OpenBSD: SSL_free.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 11 2021 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_FREE 3 | 52 | .Dt SSL_FREE 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_free | 55 | .Nm SSL_free |
| 56 | .Nd free an allocated SSL structure | 56 | .Nd free an allocated SSL structure |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft void | 60 | .Ft void |
| 60 | .Fn SSL_free "SSL *ssl" | 61 | .Fn SSL_free "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_SSL_CTX.3 b/src/lib/libssl/man/SSL_get_SSL_CTX.3 index 60fda555bc..eaf1b6ff11 100644 --- a/src/lib/libssl/man/SSL_get_SSL_CTX.3 +++ b/src/lib/libssl/man/SSL_get_SSL_CTX.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_SSL_CTX.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_SSL_CTX.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_SSL_CTX 3 | 52 | .Dt SSL_GET_SSL_CTX 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_get_SSL_CTX | 55 | .Nm SSL_get_SSL_CTX |
| 56 | .Nd get the SSL_CTX from which an SSL is created | 56 | .Nd get the SSL_CTX from which an SSL is created |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft SSL_CTX * | 60 | .Ft SSL_CTX * |
| 60 | .Fn SSL_get_SSL_CTX "const SSL *ssl" | 61 | .Fn SSL_get_SSL_CTX "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_certificate.3 b/src/lib/libssl/man/SSL_get_certificate.3 index eb53ea49bf..72ae7ec541 100644 --- a/src/lib/libssl/man/SSL_get_certificate.3 +++ b/src/lib/libssl/man/SSL_get_certificate.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_certificate.3,v 1.5 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_certificate.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,7 +14,7 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: June 12 2019 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_GET_CERTIFICATE 3 | 18 | .Dt SSL_GET_CERTIFICATE 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| @@ -22,6 +22,7 @@ | |||
| 22 | .Nm SSL_get_privatekey | 22 | .Nm SSL_get_privatekey |
| 23 | .Nd get SSL certificate and private key | 23 | .Nd get SSL certificate and private key |
| 24 | .Sh SYNOPSIS | 24 | .Sh SYNOPSIS |
| 25 | .Lb libssl libcrypto | ||
| 25 | .In openssl/ssl.h | 26 | .In openssl/ssl.h |
| 26 | .Ft X509 * | 27 | .Ft X509 * |
| 27 | .Fo SSL_get_certificate | 28 | .Fo SSL_get_certificate |
diff --git a/src/lib/libssl/man/SSL_get_ciphers.3 b/src/lib/libssl/man/SSL_get_ciphers.3 index 8030f0bbb1..d723f7959e 100644 --- a/src/lib/libssl/man/SSL_get_ciphers.3 +++ b/src/lib/libssl/man/SSL_get_ciphers.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_ciphers.3,v 1.11 2020/09/16 07:25:15 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_ciphers.3,v 1.12 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" selective merge up to: OpenSSL 83cf7abf May 29 13:07:08 2018 +0100 | 3 | .\" selective merge up to: OpenSSL 83cf7abf May 29 13:07:08 2018 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -69,7 +69,7 @@ | |||
| 69 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 69 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 70 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 70 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 71 | .\" | 71 | .\" |
| 72 | .Dd $Mdocdate: September 16 2020 $ | 72 | .Dd $Mdocdate: June 8 2025 $ |
| 73 | .Dt SSL_GET_CIPHERS 3 | 73 | .Dt SSL_GET_CIPHERS 3 |
| 74 | .Os | 74 | .Os |
| 75 | .Sh NAME | 75 | .Sh NAME |
| @@ -80,6 +80,7 @@ | |||
| 80 | .Nm SSL_get_cipher_list | 80 | .Nm SSL_get_cipher_list |
| 81 | .Nd get lists of available SSL_CIPHERs | 81 | .Nd get lists of available SSL_CIPHERs |
| 82 | .Sh SYNOPSIS | 82 | .Sh SYNOPSIS |
| 83 | .Lb libssl libcrypto | ||
| 83 | .In openssl/ssl.h | 84 | .In openssl/ssl.h |
| 84 | .Ft STACK_OF(SSL_CIPHER) * | 85 | .Ft STACK_OF(SSL_CIPHER) * |
| 85 | .Fn SSL_get_ciphers "const SSL *ssl" | 86 | .Fn SSL_get_ciphers "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_client_CA_list.3 b/src/lib/libssl/man/SSL_get_client_CA_list.3 index e80e5cb6f5..8be7020489 100644 --- a/src/lib/libssl/man/SSL_get_client_CA_list.3 +++ b/src/lib/libssl/man/SSL_get_client_CA_list.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_client_CA_list.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_client_CA_list.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 27 2018 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_GET_CLIENT_CA_LIST 3 | 53 | .Dt SSL_GET_CLIENT_CA_LIST 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_CTX_get_client_CA_list | 57 | .Nm SSL_CTX_get_client_CA_list |
| 58 | .Nd get list of client CAs | 58 | .Nd get list of client CAs |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft STACK_OF(X509_NAME) * | 62 | .Ft STACK_OF(X509_NAME) * |
| 62 | .Fn SSL_get_client_CA_list "const SSL *s" | 63 | .Fn SSL_get_client_CA_list "const SSL *s" |
diff --git a/src/lib/libssl/man/SSL_get_client_random.3 b/src/lib/libssl/man/SSL_get_client_random.3 index eda74db355..131972b688 100644 --- a/src/lib/libssl/man/SSL_get_client_random.3 +++ b/src/lib/libssl/man/SSL_get_client_random.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_client_random.3,v 1.2 2018/03/24 00:55:37 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_client_random.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL e9b77246 Jan 20 19:58:49 2017 +0100 | 2 | .\" full merge up to: OpenSSL e9b77246 Jan 20 19:58:49 2017 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Nick Mathewson <nickm@torproject.org> | 4 | .\" This file was written by Nick Mathewson <nickm@torproject.org> |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 24 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_CLIENT_RANDOM 3 | 52 | .Dt SSL_GET_CLIENT_RANDOM 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_SESSION_get_master_key | 57 | .Nm SSL_SESSION_get_master_key |
| 58 | .Nd get internal TLS handshake random values and master key | 58 | .Nd get internal TLS handshake random values and master key |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft size_t | 62 | .Ft size_t |
| 62 | .Fo SSL_get_client_random | 63 | .Fo SSL_get_client_random |
diff --git a/src/lib/libssl/man/SSL_get_current_cipher.3 b/src/lib/libssl/man/SSL_get_current_cipher.3 index 6b951d03ca..37f6409023 100644 --- a/src/lib/libssl/man/SSL_get_current_cipher.3 +++ b/src/lib/libssl/man/SSL_get_current_cipher.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_current_cipher.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_current_cipher.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,17 +48,18 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_CURRENT_CIPHER 3 | 52 | .Dt SSL_GET_CURRENT_CIPHER 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_get_current_cipher , | 55 | .Nm SSL_get_current_cipher , |
| 56 | .Nm SSL_get_cipher , | 56 | .Nm SSL_get_cipher , |
| 57 | .Nm SSL_get_cipher_name , | 57 | .Nm SSL_get_cipher_name , |
| 58 | .Nm SSL_get_cipher_bits , | 58 | .Nm SSL_get_cipher_bits , |
| 59 | .Nm SSL_get_cipher_version | 59 | .Nm SSL_get_cipher_version |
| 60 | .Nd get SSL_CIPHER of a connection | 60 | .Nd get SSL_CIPHER of a connection |
| 61 | .Sh SYNOPSIS | 61 | .Sh SYNOPSIS |
| 62 | .Lb libssl libcrypto | ||
| 62 | .In openssl/ssl.h | 63 | .In openssl/ssl.h |
| 63 | .Ft const SSL_CIPHER * | 64 | .Ft const SSL_CIPHER * |
| 64 | .Fn SSL_get_current_cipher "const SSL *ssl" | 65 | .Fn SSL_get_current_cipher "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_default_timeout.3 b/src/lib/libssl/man/SSL_get_default_timeout.3 index 47737d8ee0..ef119780a3 100644 --- a/src/lib/libssl/man/SSL_get_default_timeout.3 +++ b/src/lib/libssl/man/SSL_get_default_timeout.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_default_timeout.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_default_timeout.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_DEFAULT_TIMEOUT 3 | 52 | .Dt SSL_GET_DEFAULT_TIMEOUT 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_get_default_timeout | 55 | .Nm SSL_get_default_timeout |
| 56 | .Nd get default session timeout value | 56 | .Nd get default session timeout value |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft long | 60 | .Ft long |
| 60 | .Fn SSL_get_default_timeout "const SSL *ssl" | 61 | .Fn SSL_get_default_timeout "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_error.3 b/src/lib/libssl/man/SSL_get_error.3 index 5d325b3f56..ba64b779ac 100644 --- a/src/lib/libssl/man/SSL_get_error.3 +++ b/src/lib/libssl/man/SSL_get_error.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_error.3,v 1.5 2018/04/29 07:37:01 guenther Exp $ | 1 | .\" $OpenBSD: SSL_get_error.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL a528d4f0 Oct 27 13:40:11 2015 -0400 | 2 | .\" OpenSSL a528d4f0 Oct 27 13:40:11 2015 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Bodo Moeller <bodo@openssl.org>. | 4 | .\" This file was written by Bodo Moeller <bodo@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: April 29 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_ERROR 3 | 52 | .Dt SSL_GET_ERROR 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_get_error | 55 | .Nm SSL_get_error |
| 56 | .Nd obtain result code for TLS/SSL I/O operation | 56 | .Nd obtain result code for TLS/SSL I/O operation |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft int | 60 | .Ft int |
| 60 | .Fn SSL_get_error "const SSL *ssl" "int ret" | 61 | .Fn SSL_get_error "const SSL *ssl" "int ret" |
diff --git a/src/lib/libssl/man/SSL_get_ex_data_X509_STORE_CTX_idx.3 b/src/lib/libssl/man/SSL_get_ex_data_X509_STORE_CTX_idx.3 index a249cda6ac..234034ac2d 100644 --- a/src/lib/libssl/man/SSL_get_ex_data_X509_STORE_CTX_idx.3 +++ b/src/lib/libssl/man/SSL_get_ex_data_X509_STORE_CTX_idx.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_ex_data_X509_STORE_CTX_idx.3,v 1.5 2022/02/06 00:29:02 jsg Exp $ | 1 | .\" $OpenBSD: SSL_get_ex_data_X509_STORE_CTX_idx.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 | 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: February 6 2022 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_EX_DATA_X509_STORE_CTX_IDX 3 | 52 | .Dt SSL_GET_EX_DATA_X509_STORE_CTX_IDX 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_get_ex_data_X509_STORE_CTX_idx | 55 | .Nm SSL_get_ex_data_X509_STORE_CTX_idx |
| 56 | .Nd get ex_data index to access SSL structure from X509_STORE_CTX | 56 | .Nd get ex_data index to access SSL structure from X509_STORE_CTX |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft int | 60 | .Ft int |
| 60 | .Fn SSL_get_ex_data_X509_STORE_CTX_idx void | 61 | .Fn SSL_get_ex_data_X509_STORE_CTX_idx void |
diff --git a/src/lib/libssl/man/SSL_get_ex_new_index.3 b/src/lib/libssl/man/SSL_get_ex_new_index.3 index cecd25fa44..811df94fc7 100644 --- a/src/lib/libssl/man/SSL_get_ex_new_index.3 +++ b/src/lib/libssl/man/SSL_get_ex_new_index.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_ex_new_index.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_ex_new_index.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 | 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_EX_NEW_INDEX 3 | 52 | .Dt SSL_GET_EX_NEW_INDEX 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_get_ex_data | 57 | .Nm SSL_get_ex_data |
| 58 | .Nd internal application specific data functions | 58 | .Nd internal application specific data functions |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fo SSL_get_ex_new_index | 63 | .Fo SSL_get_ex_new_index |
diff --git a/src/lib/libssl/man/SSL_get_fd.3 b/src/lib/libssl/man/SSL_get_fd.3 index 1e093424cb..3a7948d35f 100644 --- a/src/lib/libssl/man/SSL_get_fd.3 +++ b/src/lib/libssl/man/SSL_get_fd.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_fd.3,v 1.6 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_fd.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_FD 3 | 52 | .Dt SSL_GET_FD 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_get_wfd | 57 | .Nm SSL_get_wfd |
| 58 | .Nd get file descriptor linked to an SSL object | 58 | .Nd get file descriptor linked to an SSL object |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fn SSL_get_fd "const SSL *ssl" | 63 | .Fn SSL_get_fd "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_finished.3 b/src/lib/libssl/man/SSL_get_finished.3 index 3cfb655ea0..e5c8a36cf6 100644 --- a/src/lib/libssl/man/SSL_get_finished.3 +++ b/src/lib/libssl/man/SSL_get_finished.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_finished.3,v 1.2 2021/01/30 10:48:15 tb Exp $ | 1 | .\" $OpenBSD: SSL_get_finished.3,v 1.3 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2020 Theo Buehler <tb@openbsd.org> | 3 | .\" Copyright (c) 2020 Theo Buehler <tb@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,7 +14,7 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: January 30 2021 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_GET_FINISHED 3 | 18 | .Dt SSL_GET_FINISHED 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| @@ -22,6 +22,7 @@ | |||
| 22 | .Nm SSL_get_peer_finished | 22 | .Nm SSL_get_peer_finished |
| 23 | .Nd get last sent or last expected finished message | 23 | .Nd get last sent or last expected finished message |
| 24 | .Sh SYNOPSIS | 24 | .Sh SYNOPSIS |
| 25 | .Lb libssl libcrypto | ||
| 25 | .In openssl/ssl.h | 26 | .In openssl/ssl.h |
| 26 | .Ft size_t | 27 | .Ft size_t |
| 27 | .Fn SSL_get_finished "const SSL *ssl" "void *buf" "size_t count" | 28 | .Fn SSL_get_finished "const SSL *ssl" "void *buf" "size_t count" |
diff --git a/src/lib/libssl/man/SSL_get_peer_cert_chain.3 b/src/lib/libssl/man/SSL_get_peer_cert_chain.3 index eb2ae53dc4..c4f778aac6 100644 --- a/src/lib/libssl/man/SSL_get_peer_cert_chain.3 +++ b/src/lib/libssl/man/SSL_get_peer_cert_chain.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_peer_cert_chain.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_peer_cert_chain.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_get_peer_cert_chain.pod 1f164c6f Jan 18 01:40:36 2017 +0100 | 2 | .\" OpenSSL SSL_get_peer_cert_chain.pod 1f164c6f Jan 18 01:40:36 2017 +0100 |
| 3 | .\" OpenSSL SSL_get_peer_cert_chain.pod 9b86974e Aug 17 15:21:33 2015 -0400 | 3 | .\" OpenSSL SSL_get_peer_cert_chain.pod 9b86974e Aug 17 15:21:33 2015 -0400 |
| 4 | .\" | 4 | .\" |
| @@ -50,13 +50,14 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: March 27 2018 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_GET_PEER_CERT_CHAIN 3 | 54 | .Dt SSL_GET_PEER_CERT_CHAIN 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| 57 | .Nm SSL_get_peer_cert_chain | 57 | .Nm SSL_get_peer_cert_chain |
| 58 | .Nd get the X509 certificate chain sent by the peer | 58 | .Nd get the X509 certificate chain sent by the peer |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft STACK_OF(X509) * | 62 | .Ft STACK_OF(X509) * |
| 62 | .Fn SSL_get_peer_cert_chain "const SSL *ssl" | 63 | .Fn SSL_get_peer_cert_chain "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_peer_certificate.3 b/src/lib/libssl/man/SSL_get_peer_certificate.3 index 99f9330288..9ac35a607d 100644 --- a/src/lib/libssl/man/SSL_get_peer_certificate.3 +++ b/src/lib/libssl/man/SSL_get_peer_certificate.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_peer_certificate.3,v 1.6 2021/06/26 17:36:28 tb Exp $ | 1 | .\" $OpenBSD: SSL_get_peer_certificate.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 26 2021 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_PEER_CERTIFICATE 3 | 52 | .Dt SSL_GET_PEER_CERTIFICATE 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_get_peer_certificate | 55 | .Nm SSL_get_peer_certificate |
| 56 | .Nd get the X509 certificate of the peer | 56 | .Nd get the X509 certificate of the peer |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft X509 * | 60 | .Ft X509 * |
| 60 | .Fn SSL_get_peer_certificate "const SSL *ssl" | 61 | .Fn SSL_get_peer_certificate "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_rbio.3 b/src/lib/libssl/man/SSL_get_rbio.3 index 38096fbecf..7179277f71 100644 --- a/src/lib/libssl/man/SSL_get_rbio.3 +++ b/src/lib/libssl/man/SSL_get_rbio.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_rbio.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_rbio.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_RBIO 3 | 52 | .Dt SSL_GET_RBIO 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm SSL_get_wbio | 56 | .Nm SSL_get_wbio |
| 57 | .Nd get BIO linked to an SSL object | 57 | .Nd get BIO linked to an SSL object |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft BIO * | 61 | .Ft BIO * |
| 61 | .Fn SSL_get_rbio "SSL *ssl" | 62 | .Fn SSL_get_rbio "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_server_tmp_key.3 b/src/lib/libssl/man/SSL_get_server_tmp_key.3 index aeeb358240..c55036d526 100644 --- a/src/lib/libssl/man/SSL_get_server_tmp_key.3 +++ b/src/lib/libssl/man/SSL_get_server_tmp_key.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_server_tmp_key.3,v 1.4 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_server_tmp_key.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_get_server_tmp_key.pod 508fafd8 Apr 3 15:41:21 2017 +0100 | 2 | .\" OpenSSL SSL_get_server_tmp_key.pod 508fafd8 Apr 3 15:41:21 2017 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Matt Caswell <matt@openssl.org> | 4 | .\" This file was written by Matt Caswell <matt@openssl.org> |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 12 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_SERVER_TMP_KEY 3 | 52 | .Dt SSL_GET_SERVER_TMP_KEY 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_get_server_tmp_key | 55 | .Nm SSL_get_server_tmp_key |
| 56 | .Nd temporary server key during a handshake | 56 | .Nd temporary server key during a handshake |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft long | 60 | .Ft long |
| 60 | .Fo SSL_get_server_tmp_key | 61 | .Fo SSL_get_server_tmp_key |
diff --git a/src/lib/libssl/man/SSL_get_session.3 b/src/lib/libssl/man/SSL_get_session.3 index 2ab43fdd3e..597888a0bd 100644 --- a/src/lib/libssl/man/SSL_get_session.3 +++ b/src/lib/libssl/man/SSL_get_session.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_session.3,v 1.8 2022/03/31 17:27:18 naddy Exp $ | 1 | .\" $OpenBSD: SSL_get_session.3,v 1.9 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 31 2022 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_GET_SESSION 3 | 53 | .Dt SSL_GET_SESSION 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -58,6 +58,7 @@ | |||
| 58 | .Nm SSL_get1_session | 58 | .Nm SSL_get1_session |
| 59 | .Nd retrieve TLS/SSL session data | 59 | .Nd retrieve TLS/SSL session data |
| 60 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 61 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 62 | .Ft SSL_SESSION * | 63 | .Ft SSL_SESSION * |
| 63 | .Fn SSL_get_session "const SSL *ssl" | 64 | .Fn SSL_get_session "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_shared_ciphers.3 b/src/lib/libssl/man/SSL_get_shared_ciphers.3 index 207e8c42eb..9011780527 100644 --- a/src/lib/libssl/man/SSL_get_shared_ciphers.3 +++ b/src/lib/libssl/man/SSL_get_shared_ciphers.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_shared_ciphers.3,v 1.5 2021/01/09 10:50:02 tb Exp $ | 1 | .\" $OpenBSD: SSL_get_shared_ciphers.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,13 +14,14 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: January 9 2021 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_GET_SHARED_CIPHERS 3 | 18 | .Dt SSL_GET_SHARED_CIPHERS 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| 21 | .Nm SSL_get_shared_ciphers | 21 | .Nm SSL_get_shared_ciphers |
| 22 | .Nd ciphers supported by both client and server | 22 | .Nd ciphers supported by both client and server |
| 23 | .Sh SYNOPSIS | 23 | .Sh SYNOPSIS |
| 24 | .Lb libssl libcrypto | ||
| 24 | .In openssl/ssl.h | 25 | .In openssl/ssl.h |
| 25 | .Ft char * | 26 | .Ft char * |
| 26 | .Fo SSL_get_shared_ciphers | 27 | .Fo SSL_get_shared_ciphers |
diff --git a/src/lib/libssl/man/SSL_get_state.3 b/src/lib/libssl/man/SSL_get_state.3 index 297bbce876..0e1a20e6f7 100644 --- a/src/lib/libssl/man/SSL_get_state.3 +++ b/src/lib/libssl/man/SSL_get_state.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_state.3,v 1.5 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_get_state.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,7 +14,7 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: June 12 2019 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_GET_STATE 3 | 18 | .Dt SSL_GET_STATE 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| @@ -27,6 +27,7 @@ | |||
| 27 | .Nm SSL_is_init_finished | 27 | .Nm SSL_is_init_finished |
| 28 | .Nd inspect the state of the SSL state machine | 28 | .Nd inspect the state of the SSL state machine |
| 29 | .Sh SYNOPSIS | 29 | .Sh SYNOPSIS |
| 30 | .Lb libssl libcrypto | ||
| 30 | .In openssl/ssl.h | 31 | .In openssl/ssl.h |
| 31 | .Ft int | 32 | .Ft int |
| 32 | .Fo SSL_get_state | 33 | .Fo SSL_get_state |
diff --git a/src/lib/libssl/man/SSL_get_verify_result.3 b/src/lib/libssl/man/SSL_get_verify_result.3 index 180cf1bb73..32a397f4a2 100644 --- a/src/lib/libssl/man/SSL_get_verify_result.3 +++ b/src/lib/libssl/man/SSL_get_verify_result.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_verify_result.3,v 1.6 2021/06/26 17:36:28 tb Exp $ | 1 | .\" $OpenBSD: SSL_get_verify_result.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 26 2021 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_GET_VERIFY_RESULT 3 | 52 | .Dt SSL_GET_VERIFY_RESULT 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_get_verify_result | 55 | .Nm SSL_get_verify_result |
| 56 | .Nd get result of peer certificate verification | 56 | .Nd get result of peer certificate verification |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft long | 60 | .Ft long |
| 60 | .Fn SSL_get_verify_result "const SSL *ssl" | 61 | .Fn SSL_get_verify_result "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_get_version.3 b/src/lib/libssl/man/SSL_get_version.3 index a6cefb055b..d32dd34e0e 100644 --- a/src/lib/libssl/man/SSL_get_version.3 +++ b/src/lib/libssl/man/SSL_get_version.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_get_version.3,v 1.9 2021/04/15 16:13:22 tb Exp $ | 1 | .\" $OpenBSD: SSL_get_version.3,v 1.10 2025/06/08 22:49:42 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL e417070c Jun 8 11:37:06 2016 -0400 | 2 | .\" full merge up to: OpenSSL e417070c Jun 8 11:37:06 2016 -0400 |
| 3 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 | 3 | .\" selective merge up to: OpenSSL df75c2bf Dec 9 01:02:36 2018 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -49,21 +49,16 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: April 15 2021 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_GET_VERSION 3 | 53 | .Dt SSL_GET_VERSION 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| 56 | .Nm SSL_get_version , | 56 | .Nm SSL_get_version , |
| 57 | .Nm SSL_is_dtls , | 57 | .Nm SSL_is_dtls , |
| 58 | .Nm SSL_version | 58 | .Nm SSL_version |
| 59 | .\" The following are intentionally undocumented because | ||
| 60 | .\" - the longer term plan is to remove them | ||
| 61 | .\" - nothing appears to be using them in the wild | ||
| 62 | .\" - and they have the wrong namespace prefix | ||
| 63 | .\" Nm TLS1_get_version | ||
| 64 | .\" Nm TLS1_get_client_version | ||
| 65 | .Nd get the protocol information of a connection | 59 | .Nd get the protocol information of a connection |
| 66 | .Sh SYNOPSIS | 60 | .Sh SYNOPSIS |
| 61 | .Lb libssl libcrypto | ||
| 67 | .In openssl/ssl.h | 62 | .In openssl/ssl.h |
| 68 | .Ft const char * | 63 | .Ft const char * |
| 69 | .Fn SSL_get_version "const SSL *ssl" | 64 | .Fn SSL_get_version "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_library_init.3 b/src/lib/libssl/man/SSL_library_init.3 index 053c1e6fcb..d25a248617 100644 --- a/src/lib/libssl/man/SSL_library_init.3 +++ b/src/lib/libssl/man/SSL_library_init.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_library_init.3,v 1.7 2019/06/14 13:41:31 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_library_init.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 14 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_LIBRARY_INIT 3 | 52 | .Dt SSL_LIBRARY_INIT 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSLeay_add_ssl_algorithms | 57 | .Nm SSLeay_add_ssl_algorithms |
| 58 | .Nd initialize SSL library by registering algorithms | 58 | .Nd initialize SSL library by registering algorithms |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fn SSL_library_init void | 63 | .Fn SSL_library_init void |
diff --git a/src/lib/libssl/man/SSL_load_client_CA_file.3 b/src/lib/libssl/man/SSL_load_client_CA_file.3 index f782d96dce..e57900c941 100644 --- a/src/lib/libssl/man/SSL_load_client_CA_file.3 +++ b/src/lib/libssl/man/SSL_load_client_CA_file.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_load_client_CA_file.3,v 1.9 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_load_client_CA_file.3,v 1.10 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file is a derived work. | 4 | .\" This file is a derived work. |
| @@ -65,7 +65,7 @@ | |||
| 65 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 65 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 66 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 66 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 67 | .\" | 67 | .\" |
| 68 | .Dd $Mdocdate: June 12 2019 $ | 68 | .Dd $Mdocdate: June 8 2025 $ |
| 69 | .Dt SSL_LOAD_CLIENT_CA_FILE 3 | 69 | .Dt SSL_LOAD_CLIENT_CA_FILE 3 |
| 70 | .Os | 70 | .Os |
| 71 | .Sh NAME | 71 | .Sh NAME |
| @@ -74,6 +74,7 @@ | |||
| 74 | .Nm SSL_add_dir_cert_subjects_to_stack | 74 | .Nm SSL_add_dir_cert_subjects_to_stack |
| 75 | .Nd load certificate names from files | 75 | .Nd load certificate names from files |
| 76 | .Sh SYNOPSIS | 76 | .Sh SYNOPSIS |
| 77 | .Lb libssl libcrypto | ||
| 77 | .In openssl/ssl.h | 78 | .In openssl/ssl.h |
| 78 | .Ft STACK_OF(X509_NAME) * | 79 | .Ft STACK_OF(X509_NAME) * |
| 79 | .Fn SSL_load_client_CA_file "const char *file" | 80 | .Fn SSL_load_client_CA_file "const char *file" |
diff --git a/src/lib/libssl/man/SSL_new.3 b/src/lib/libssl/man/SSL_new.3 index 22c5dbf2db..3906a346d7 100644 --- a/src/lib/libssl/man/SSL_new.3 +++ b/src/lib/libssl/man/SSL_new.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_new.3,v 1.7 2022/07/13 22:05:53 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_new.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 1c7ae3dd Mar 29 19:17:55 2017 +1000 | 2 | .\" full merge up to: OpenSSL 1c7ae3dd Mar 29 19:17:55 2017 +1000 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Richard Levitte <levitte@openssl.org> | 4 | .\" This file was written by Richard Levitte <levitte@openssl.org> |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: July 13 2022 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_NEW 3 | 53 | .Dt SSL_NEW 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_up_ref | 57 | .Nm SSL_up_ref |
| 58 | .Nd create a new SSL structure for a connection | 58 | .Nd create a new SSL structure for a connection |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft SSL * | 62 | .Ft SSL * |
| 62 | .Fn SSL_new "SSL_CTX *ctx" | 63 | .Fn SSL_new "SSL_CTX *ctx" |
diff --git a/src/lib/libssl/man/SSL_num_renegotiations.3 b/src/lib/libssl/man/SSL_num_renegotiations.3 index 6a81b76a60..d366f97c4a 100644 --- a/src/lib/libssl/man/SSL_num_renegotiations.3 +++ b/src/lib/libssl/man/SSL_num_renegotiations.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_num_renegotiations.3,v 1.5 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_num_renegotiations.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2016 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,7 +14,7 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: June 12 2019 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_NUM_RENEGOTIATIONS 3 | 18 | .Dt SSL_NUM_RENEGOTIATIONS 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| @@ -23,6 +23,7 @@ | |||
| 23 | .Nm SSL_total_renegotiations | 23 | .Nm SSL_total_renegotiations |
| 24 | .Nd renegotiation counters | 24 | .Nd renegotiation counters |
| 25 | .Sh SYNOPSIS | 25 | .Sh SYNOPSIS |
| 26 | .Lb libssl libcrypto | ||
| 26 | .In openssl/ssl.h | 27 | .In openssl/ssl.h |
| 27 | .Ft long | 28 | .Ft long |
| 28 | .Fo SSL_num_renegotiations | 29 | .Fo SSL_num_renegotiations |
diff --git a/src/lib/libssl/man/SSL_pending.3 b/src/lib/libssl/man/SSL_pending.3 index bbc2e9bdd2..c304302ed8 100644 --- a/src/lib/libssl/man/SSL_pending.3 +++ b/src/lib/libssl/man/SSL_pending.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_pending.3,v 1.5 2020/01/23 03:40:18 beck Exp $ | 1 | .\" $OpenBSD: SSL_pending.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL a528d4f0 Oct 27 13:40:11 2015 -0400 | 2 | .\" OpenSSL a528d4f0 Oct 27 13:40:11 2015 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>, | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>, |
| @@ -50,13 +50,14 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: January 23 2020 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_PENDING 3 | 54 | .Dt SSL_PENDING 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| 57 | .Nm SSL_pending | 57 | .Nm SSL_pending |
| 58 | .Nd obtain number of readable bytes buffered in an SSL object | 58 | .Nd obtain number of readable bytes buffered in an SSL object |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fn SSL_pending "const SSL *ssl" | 63 | .Fn SSL_pending "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_read.3 b/src/lib/libssl/man/SSL_read.3 index bb72a8ed82..3d42fd8a90 100644 --- a/src/lib/libssl/man/SSL_read.3 +++ b/src/lib/libssl/man/SSL_read.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_read.3,v 1.8 2021/10/24 15:10:13 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_read.3,v 1.9 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL 5a2443ae Nov 14 11:37:36 2016 +0000 | 2 | .\" full merge up to: OpenSSL 5a2443ae Nov 14 11:37:36 2016 +0000 |
| 3 | .\" partial merge up to: OpenSSL 24a535ea Sep 22 13:14:20 2020 +0100 | 3 | .\" partial merge up to: OpenSSL 24a535ea Sep 22 13:14:20 2020 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -51,7 +51,7 @@ | |||
| 51 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 51 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 52 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 52 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 53 | .\" | 53 | .\" |
| 54 | .Dd $Mdocdate: October 24 2021 $ | 54 | .Dd $Mdocdate: June 8 2025 $ |
| 55 | .Dt SSL_READ 3 | 55 | .Dt SSL_READ 3 |
| 56 | .Os | 56 | .Os |
| 57 | .Sh NAME | 57 | .Sh NAME |
| @@ -61,6 +61,7 @@ | |||
| 61 | .Nm SSL_peek | 61 | .Nm SSL_peek |
| 62 | .Nd read bytes from a TLS connection | 62 | .Nd read bytes from a TLS connection |
| 63 | .Sh SYNOPSIS | 63 | .Sh SYNOPSIS |
| 64 | .Lb libssl libcrypto | ||
| 64 | .In openssl/ssl.h | 65 | .In openssl/ssl.h |
| 65 | .Ft int | 66 | .Ft int |
| 66 | .Fn SSL_read_ex "SSL *ssl" "void *buf" "size_t num" "size_t *readbytes" | 67 | .Fn SSL_read_ex "SSL *ssl" "void *buf" "size_t num" "size_t *readbytes" |
diff --git a/src/lib/libssl/man/SSL_read_early_data.3 b/src/lib/libssl/man/SSL_read_early_data.3 index 1435c15935..d36b1e49f7 100644 --- a/src/lib/libssl/man/SSL_read_early_data.3 +++ b/src/lib/libssl/man/SSL_read_early_data.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_read_early_data.3,v 1.4 2021/11/26 13:48:22 jsg Exp $ | 1 | .\" $OpenBSD: SSL_read_early_data.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" content checked up to: OpenSSL 6328d367 Jul 4 21:58:30 2020 +0200 | 2 | .\" content checked up to: OpenSSL 6328d367 Jul 4 21:58:30 2020 +0200 |
| 3 | .\" | 3 | .\" |
| 4 | .\" Copyright (c) 2020 Ingo Schwarze <schwarze@openbsd.org> | 4 | .\" Copyright (c) 2020 Ingo Schwarze <schwarze@openbsd.org> |
| @@ -15,7 +15,7 @@ | |||
| 15 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 15 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 16 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 16 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 17 | .\" | 17 | .\" |
| 18 | .Dd $Mdocdate: November 26 2021 $ | 18 | .Dd $Mdocdate: June 8 2025 $ |
| 19 | .Dt SSL_READ_EARLY_DATA 3 | 19 | .Dt SSL_READ_EARLY_DATA 3 |
| 20 | .Os | 20 | .Os |
| 21 | .Sh NAME | 21 | .Sh NAME |
| @@ -30,6 +30,7 @@ | |||
| 30 | .Nm SSL_get_early_data_status | 30 | .Nm SSL_get_early_data_status |
| 31 | .Nd transmit application data during the handshake | 31 | .Nd transmit application data during the handshake |
| 32 | .Sh SYNOPSIS | 32 | .Sh SYNOPSIS |
| 33 | .Lb libssl libcrypto | ||
| 33 | .In openssl/ssl.h | 34 | .In openssl/ssl.h |
| 34 | .Ft int | 35 | .Ft int |
| 35 | .Fo SSL_CTX_set_max_early_data | 36 | .Fo SSL_CTX_set_max_early_data |
diff --git a/src/lib/libssl/man/SSL_renegotiate.3 b/src/lib/libssl/man/SSL_renegotiate.3 index 8188d37323..badfe8c6cb 100644 --- a/src/lib/libssl/man/SSL_renegotiate.3 +++ b/src/lib/libssl/man/SSL_renegotiate.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_renegotiate.3,v 1.9 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_renegotiate.3,v 1.10 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL SSL_key_update.pod 4fbfe86a Feb 16 17:04:40 2017 +0000 | 2 | .\" OpenSSL SSL_key_update.pod 4fbfe86a Feb 16 17:04:40 2017 +0000 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file is a derived work. | 4 | .\" This file is a derived work. |
| @@ -65,7 +65,7 @@ | |||
| 65 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 65 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 66 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 66 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 67 | .\" | 67 | .\" |
| 68 | .Dd $Mdocdate: June 12 2019 $ | 68 | .Dd $Mdocdate: June 8 2025 $ |
| 69 | .Dt SSL_RENEGOTIATE 3 | 69 | .Dt SSL_RENEGOTIATE 3 |
| 70 | .Os | 70 | .Os |
| 71 | .Sh NAME | 71 | .Sh NAME |
| @@ -74,6 +74,7 @@ | |||
| 74 | .Nm SSL_renegotiate_pending | 74 | .Nm SSL_renegotiate_pending |
| 75 | .Nd initiate a new TLS handshake | 75 | .Nd initiate a new TLS handshake |
| 76 | .Sh SYNOPSIS | 76 | .Sh SYNOPSIS |
| 77 | .Lb libssl libcrypto | ||
| 77 | .In openssl/ssl.h | 78 | .In openssl/ssl.h |
| 78 | .Ft int | 79 | .Ft int |
| 79 | .Fo SSL_renegotiate | 80 | .Fo SSL_renegotiate |
diff --git a/src/lib/libssl/man/SSL_rstate_string.3 b/src/lib/libssl/man/SSL_rstate_string.3 index 99613ba3c0..624c1b08ab 100644 --- a/src/lib/libssl/man/SSL_rstate_string.3 +++ b/src/lib/libssl/man/SSL_rstate_string.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_rstate_string.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_rstate_string.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_RSTATE_STRING 3 | 52 | .Dt SSL_RSTATE_STRING 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm SSL_rstate_string_long | 56 | .Nm SSL_rstate_string_long |
| 57 | .Nd get textual description of state of an SSL object during read operation | 57 | .Nd get textual description of state of an SSL object during read operation |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft const char * | 61 | .Ft const char * |
| 61 | .Fn SSL_rstate_string "SSL *ssl" | 62 | .Fn SSL_rstate_string "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_session_reused.3 b/src/lib/libssl/man/SSL_session_reused.3 index add61a904b..3340144660 100644 --- a/src/lib/libssl/man/SSL_session_reused.3 +++ b/src/lib/libssl/man/SSL_session_reused.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_session_reused.3,v 1.6 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_session_reused.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 12 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SESSION_REUSED 3 | 52 | .Dt SSL_SESSION_REUSED 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_session_reused | 55 | .Nm SSL_session_reused |
| 56 | .Nd query whether a reused session was negotiated during handshake | 56 | .Nd query whether a reused session was negotiated during handshake |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft int | 60 | .Ft int |
| 60 | .Fn SSL_session_reused "SSL *ssl" | 61 | .Fn SSL_session_reused "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_set1_host.3 b/src/lib/libssl/man/SSL_set1_host.3 index 2a3935c3f2..2c6cdbe5a1 100644 --- a/src/lib/libssl/man/SSL_set1_host.3 +++ b/src/lib/libssl/man/SSL_set1_host.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set1_host.3,v 1.4 2021/03/31 16:56:46 tb Exp $ | 1 | .\" $OpenBSD: SSL_set1_host.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" selective merge up to: OpenSSL 6328d367 Jul 4 21:58:30 2020 +0200 | 2 | .\" selective merge up to: OpenSSL 6328d367 Jul 4 21:58:30 2020 +0200 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Viktor Dukhovni <viktor@openssl.org> | 4 | .\" This file was written by Viktor Dukhovni <viktor@openssl.org> |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 31 2021 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SET1_HOST 3 | 52 | .Dt SSL_SET1_HOST 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_get0_peername | 57 | .Nm SSL_get0_peername |
| 58 | .Nd SSL server verification parameters | 58 | .Nd SSL server verification parameters |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fo SSL_set1_host | 63 | .Fo SSL_set1_host |
diff --git a/src/lib/libssl/man/SSL_set1_param.3 b/src/lib/libssl/man/SSL_set1_param.3 index cd8ad40ad0..2d255a0991 100644 --- a/src/lib/libssl/man/SSL_set1_param.3 +++ b/src/lib/libssl/man/SSL_set1_param.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set1_param.3,v 1.6 2022/09/10 10:22:46 jsg Exp $ | 1 | .\" $OpenBSD: SSL_set1_param.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: | 2 | .\" full merge up to: |
| 3 | .\" OpenSSL man3/SSL_CTX_get0_param 99d63d46 Oct 26 13:56:48 2016 -0400 | 3 | .\" OpenSSL man3/SSL_CTX_get0_param 99d63d46 Oct 26 13:56:48 2016 -0400 |
| 4 | .\" | 4 | .\" |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: September 10 2022 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_SET1_PARAM 3 | 53 | .Dt SSL_SET1_PARAM 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -59,6 +59,7 @@ | |||
| 59 | .Nm SSL_set1_param | 59 | .Nm SSL_set1_param |
| 60 | .Nd get and set verification parameters | 60 | .Nd get and set verification parameters |
| 61 | .Sh SYNOPSIS | 61 | .Sh SYNOPSIS |
| 62 | .Lb libssl libcrypto | ||
| 62 | .In openssl/ssl.h | 63 | .In openssl/ssl.h |
| 63 | .Ft X509_VERIFY_PARAM * | 64 | .Ft X509_VERIFY_PARAM * |
| 64 | .Fo SSL_CTX_get0_param | 65 | .Fo SSL_CTX_get0_param |
diff --git a/src/lib/libssl/man/SSL_set_SSL_CTX.3 b/src/lib/libssl/man/SSL_set_SSL_CTX.3 index 2abaefb292..3a909dabe6 100644 --- a/src/lib/libssl/man/SSL_set_SSL_CTX.3 +++ b/src/lib/libssl/man/SSL_set_SSL_CTX.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_SSL_CTX.3,v 1.4 2022/07/13 22:05:53 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_set_SSL_CTX.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2020 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2020 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,13 +14,14 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: July 13 2022 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_SET_SSL_CTX 3 | 18 | .Dt SSL_SET_SSL_CTX 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| 21 | .Nm SSL_set_SSL_CTX | 21 | .Nm SSL_set_SSL_CTX |
| 22 | .Nd modify an SSL connection object to use another context | 22 | .Nd modify an SSL connection object to use another context |
| 23 | .Sh SYNOPSIS | 23 | .Sh SYNOPSIS |
| 24 | .Lb libssl libcrypto | ||
| 24 | .In openssl/ssl.h | 25 | .In openssl/ssl.h |
| 25 | .Ft SSL_CTX * | 26 | .Ft SSL_CTX * |
| 26 | .Fo SSL_set_SSL_CTX | 27 | .Fo SSL_set_SSL_CTX |
diff --git a/src/lib/libssl/man/SSL_set_bio.3 b/src/lib/libssl/man/SSL_set_bio.3 index e727f442d6..98ce9a7080 100644 --- a/src/lib/libssl/man/SSL_set_bio.3 +++ b/src/lib/libssl/man/SSL_set_bio.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_bio.3,v 1.6 2020/10/08 18:21:30 tb Exp $ | 1 | .\" $OpenBSD: SSL_set_bio.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL acb5b343 Sep 16 16:00:38 2000 +0000 | 2 | .\" OpenSSL acb5b343 Sep 16 16:00:38 2000 +0000 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: October 8 2020 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SET_BIO 3 | 52 | .Dt SSL_SET_BIO 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_set_bio | 55 | .Nm SSL_set_bio |
| 56 | .Nd connect the SSL object with a BIO | 56 | .Nd connect the SSL object with a BIO |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft void | 60 | .Ft void |
| 60 | .Fn SSL_set_bio "SSL *ssl" "BIO *rbio" "BIO *wbio" | 61 | .Fn SSL_set_bio "SSL *ssl" "BIO *rbio" "BIO *wbio" |
diff --git a/src/lib/libssl/man/SSL_set_connect_state.3 b/src/lib/libssl/man/SSL_set_connect_state.3 index c2072c4370..b7d126d046 100644 --- a/src/lib/libssl/man/SSL_set_connect_state.3 +++ b/src/lib/libssl/man/SSL_set_connect_state.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_connect_state.3,v 1.6 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_set_connect_state.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to OpenSSL 99d63d46 Oct 26 13:56:48 2016 -0400 | 2 | .\" full merge up to OpenSSL 99d63d46 Oct 26 13:56:48 2016 -0400 |
| 3 | .\" selective merge up to: OpenSSL dbd007d7 Jul 28 13:31:27 2017 +0800 | 3 | .\" selective merge up to: OpenSSL dbd007d7 Jul 28 13:31:27 2017 +0800 |
| 4 | .\" | 4 | .\" |
| @@ -50,7 +50,7 @@ | |||
| 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 50 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 51 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 52 | .\" | 52 | .\" |
| 53 | .Dd $Mdocdate: March 27 2018 $ | 53 | .Dd $Mdocdate: June 8 2025 $ |
| 54 | .Dt SSL_SET_CONNECT_STATE 3 | 54 | .Dt SSL_SET_CONNECT_STATE 3 |
| 55 | .Os | 55 | .Os |
| 56 | .Sh NAME | 56 | .Sh NAME |
| @@ -59,6 +59,7 @@ | |||
| 59 | .Nm SSL_is_server | 59 | .Nm SSL_is_server |
| 60 | .Nd prepare SSL object to work in client or server mode | 60 | .Nd prepare SSL object to work in client or server mode |
| 61 | .Sh SYNOPSIS | 61 | .Sh SYNOPSIS |
| 62 | .Lb libssl libcrypto | ||
| 62 | .In openssl/ssl.h | 63 | .In openssl/ssl.h |
| 63 | .Ft void | 64 | .Ft void |
| 64 | .Fn SSL_set_connect_state "SSL *ssl" | 65 | .Fn SSL_set_connect_state "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_set_fd.3 b/src/lib/libssl/man/SSL_set_fd.3 index 7b9727e9ad..3c4441e677 100644 --- a/src/lib/libssl/man/SSL_set_fd.3 +++ b/src/lib/libssl/man/SSL_set_fd.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_fd.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_set_fd.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SET_FD 3 | 52 | .Dt SSL_SET_FD 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_set_wfd | 57 | .Nm SSL_set_wfd |
| 58 | .Nd connect the SSL object with a file descriptor | 58 | .Nd connect the SSL object with a file descriptor |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft int | 62 | .Ft int |
| 62 | .Fn SSL_set_fd "SSL *ssl" "int fd" | 63 | .Fn SSL_set_fd "SSL *ssl" "int fd" |
diff --git a/src/lib/libssl/man/SSL_set_max_send_fragment.3 b/src/lib/libssl/man/SSL_set_max_send_fragment.3 index 7de087a743..d5265ebb74 100644 --- a/src/lib/libssl/man/SSL_set_max_send_fragment.3 +++ b/src/lib/libssl/man/SSL_set_max_send_fragment.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_max_send_fragment.3,v 1.5 2019/06/12 09:36:30 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_set_max_send_fragment.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL doc/man3/SSL_CTX_set_split_send_fragment.pod | 2 | .\" OpenSSL doc/man3/SSL_CTX_set_split_send_fragment.pod |
| 3 | .\" OpenSSL 6782e5fd Oct 21 16:16:20 2016 +0100 | 3 | .\" OpenSSL 6782e5fd Oct 21 16:16:20 2016 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -49,7 +49,7 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: June 12 2019 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_SET_MAX_SEND_FRAGMENT 3 | 53 | .Dt SSL_SET_MAX_SEND_FRAGMENT 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| @@ -57,6 +57,7 @@ | |||
| 57 | .Nm SSL_set_max_send_fragment | 57 | .Nm SSL_set_max_send_fragment |
| 58 | .Nd control fragment sizes | 58 | .Nd control fragment sizes |
| 59 | .Sh SYNOPSIS | 59 | .Sh SYNOPSIS |
| 60 | .Lb libssl libcrypto | ||
| 60 | .In openssl/ssl.h | 61 | .In openssl/ssl.h |
| 61 | .Ft long | 62 | .Ft long |
| 62 | .Fo SSL_CTX_set_max_send_fragment | 63 | .Fo SSL_CTX_set_max_send_fragment |
diff --git a/src/lib/libssl/man/SSL_set_psk_use_session_callback.3 b/src/lib/libssl/man/SSL_set_psk_use_session_callback.3 index 7f2bfcc010..d53f5b97c9 100644 --- a/src/lib/libssl/man/SSL_set_psk_use_session_callback.3 +++ b/src/lib/libssl/man/SSL_set_psk_use_session_callback.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_psk_use_session_callback.3,v 1.1 2021/09/14 14:30:57 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_set_psk_use_session_callback.3,v 1.2 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL man3/SSL_CTX_set_psk_client_callback.pod | 2 | .\" OpenSSL man3/SSL_CTX_set_psk_client_callback.pod |
| 3 | .\" checked up to 24a535ea Sep 22 13:14:20 2020 +0100 | 3 | .\" checked up to 24a535ea Sep 22 13:14:20 2020 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -16,7 +16,7 @@ | |||
| 16 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 16 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 17 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 17 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 18 | .\" | 18 | .\" |
| 19 | .Dd $Mdocdate: September 14 2021 $ | 19 | .Dd $Mdocdate: June 8 2025 $ |
| 20 | .Dt SSL_SET_PSK_USE_SESSION_CALLBACK 3 | 20 | .Dt SSL_SET_PSK_USE_SESSION_CALLBACK 3 |
| 21 | .Os | 21 | .Os |
| 22 | .Sh NAME | 22 | .Sh NAME |
| @@ -24,6 +24,7 @@ | |||
| 24 | .Nm SSL_psk_use_session_cb_func | 24 | .Nm SSL_psk_use_session_cb_func |
| 25 | .Nd set TLS pre-shared key client callback | 25 | .Nd set TLS pre-shared key client callback |
| 26 | .Sh SYNOPSIS | 26 | .Sh SYNOPSIS |
| 27 | .Lb libssl libcrypto | ||
| 27 | .In openssl/ssl.h | 28 | .In openssl/ssl.h |
| 28 | .Ft typedef int | 29 | .Ft typedef int |
| 29 | .Fo (*SSL_psk_use_session_cb_func) | 30 | .Fo (*SSL_psk_use_session_cb_func) |
diff --git a/src/lib/libssl/man/SSL_set_session.3 b/src/lib/libssl/man/SSL_set_session.3 index 7d85f5ad0c..db3fc6a85c 100644 --- a/src/lib/libssl/man/SSL_set_session.3 +++ b/src/lib/libssl/man/SSL_set_session.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_session.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_set_session.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 05ea606a May 20 20:52:46 2016 -0400 | 2 | .\" OpenSSL 05ea606a May 20 20:52:46 2016 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SET_SESSION 3 | 52 | .Dt SSL_SET_SESSION 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_set_session | 55 | .Nm SSL_set_session |
| 56 | .Nd set a TLS/SSL session to be used during TLS/SSL connect | 56 | .Nd set a TLS/SSL session to be used during TLS/SSL connect |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft int | 60 | .Ft int |
| 60 | .Fn SSL_set_session "SSL *ssl" "SSL_SESSION *session" | 61 | .Fn SSL_set_session "SSL *ssl" "SSL_SESSION *session" |
diff --git a/src/lib/libssl/man/SSL_set_shutdown.3 b/src/lib/libssl/man/SSL_set_shutdown.3 index ef8c004f76..1c1d59e927 100644 --- a/src/lib/libssl/man/SSL_set_shutdown.3 +++ b/src/lib/libssl/man/SSL_set_shutdown.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_shutdown.3,v 1.7 2024/12/19 06:45:21 jmc Exp $ | 1 | .\" $OpenBSD: SSL_set_shutdown.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: December 19 2024 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SET_SHUTDOWN 3 | 52 | .Dt SSL_SET_SHUTDOWN 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm SSL_get_shutdown | 56 | .Nm SSL_get_shutdown |
| 57 | .Nd manipulate shutdown state of an SSL connection | 57 | .Nd manipulate shutdown state of an SSL connection |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft void | 61 | .Ft void |
| 61 | .Fn SSL_set_shutdown "SSL *ssl" "int mode" | 62 | .Fn SSL_set_shutdown "SSL *ssl" "int mode" |
diff --git a/src/lib/libssl/man/SSL_set_tmp_ecdh.3 b/src/lib/libssl/man/SSL_set_tmp_ecdh.3 index 8fd2d9fd5b..0794efdfb7 100644 --- a/src/lib/libssl/man/SSL_set_tmp_ecdh.3 +++ b/src/lib/libssl/man/SSL_set_tmp_ecdh.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_tmp_ecdh.3,v 1.6 2021/11/30 15:58:08 jsing Exp $ | 1 | .\" $OpenBSD: SSL_set_tmp_ecdh.3,v 1.7 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" | 2 | .\" |
| 3 | .\" Copyright (c) 2017 Ingo Schwarze <schwarze@openbsd.org> | 3 | .\" Copyright (c) 2017 Ingo Schwarze <schwarze@openbsd.org> |
| 4 | .\" | 4 | .\" |
| @@ -14,7 +14,7 @@ | |||
| 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | 14 | .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF |
| 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | 15 | .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. |
| 16 | .\" | 16 | .\" |
| 17 | .Dd $Mdocdate: November 30 2021 $ | 17 | .Dd $Mdocdate: June 8 2025 $ |
| 18 | .Dt SSL_SET_TMP_ECDH 3 | 18 | .Dt SSL_SET_TMP_ECDH 3 |
| 19 | .Os | 19 | .Os |
| 20 | .Sh NAME | 20 | .Sh NAME |
| @@ -26,6 +26,7 @@ | |||
| 26 | .Nm SSL_CTX_set_tmp_ecdh_callback | 26 | .Nm SSL_CTX_set_tmp_ecdh_callback |
| 27 | .Nd select a curve for ECDH ephemeral key exchange | 27 | .Nd select a curve for ECDH ephemeral key exchange |
| 28 | .Sh SYNOPSIS | 28 | .Sh SYNOPSIS |
| 29 | .Lb libssl libcrypto | ||
| 29 | .In openssl/ssl.h | 30 | .In openssl/ssl.h |
| 30 | .Ft long | 31 | .Ft long |
| 31 | .Fo SSL_set_tmp_ecdh | 32 | .Fo SSL_set_tmp_ecdh |
diff --git a/src/lib/libssl/man/SSL_set_verify_result.3 b/src/lib/libssl/man/SSL_set_verify_result.3 index 4b7cc6ec3c..f43d375bc9 100644 --- a/src/lib/libssl/man/SSL_set_verify_result.3 +++ b/src/lib/libssl/man/SSL_set_verify_result.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_set_verify_result.3,v 1.5 2020/03/29 17:05:02 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_set_verify_result.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,13 +48,14 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 29 2020 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_SET_VERIFY_RESULT 3 | 52 | .Dt SSL_SET_VERIFY_RESULT 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| 55 | .Nm SSL_set_verify_result | 55 | .Nm SSL_set_verify_result |
| 56 | .Nd override result of peer certificate verification | 56 | .Nd override result of peer certificate verification |
| 57 | .Sh SYNOPSIS | 57 | .Sh SYNOPSIS |
| 58 | .Lb libssl libcrypto | ||
| 58 | .In openssl/ssl.h | 59 | .In openssl/ssl.h |
| 59 | .Ft void | 60 | .Ft void |
| 60 | .Fn SSL_set_verify_result "SSL *ssl" "long verify_result" | 61 | .Fn SSL_set_verify_result "SSL *ssl" "long verify_result" |
diff --git a/src/lib/libssl/man/SSL_shutdown.3 b/src/lib/libssl/man/SSL_shutdown.3 index bfb1e91ea7..ad49a47d8e 100644 --- a/src/lib/libssl/man/SSL_shutdown.3 +++ b/src/lib/libssl/man/SSL_shutdown.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_shutdown.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_shutdown.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -49,13 +49,14 @@ | |||
| 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 49 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 50 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 51 | .\" | 51 | .\" |
| 52 | .Dd $Mdocdate: March 27 2018 $ | 52 | .Dd $Mdocdate: June 8 2025 $ |
| 53 | .Dt SSL_SHUTDOWN 3 | 53 | .Dt SSL_SHUTDOWN 3 |
| 54 | .Os | 54 | .Os |
| 55 | .Sh NAME | 55 | .Sh NAME |
| 56 | .Nm SSL_shutdown | 56 | .Nm SSL_shutdown |
| 57 | .Nd shut down a TLS/SSL connection | 57 | .Nd shut down a TLS/SSL connection |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft int | 61 | .Ft int |
| 61 | .Fn SSL_shutdown "SSL *ssl" | 62 | .Fn SSL_shutdown "SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_state_string.3 b/src/lib/libssl/man/SSL_state_string.3 index 1070335448..d202056eec 100644 --- a/src/lib/libssl/man/SSL_state_string.3 +++ b/src/lib/libssl/man/SSL_state_string.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_state_string.3,v 1.4 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_state_string.3,v 1.5 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_STATE_STRING 3 | 52 | .Dt SSL_STATE_STRING 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm SSL_state_string_long | 56 | .Nm SSL_state_string_long |
| 57 | .Nd get textual description of state of an SSL object | 57 | .Nd get textual description of state of an SSL object |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft const char * | 61 | .Ft const char * |
| 61 | .Fn SSL_state_string "const SSL *ssl" | 62 | .Fn SSL_state_string "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_want.3 b/src/lib/libssl/man/SSL_want.3 index 24e8645ba8..c7c2ee4885 100644 --- a/src/lib/libssl/man/SSL_want.3 +++ b/src/lib/libssl/man/SSL_want.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_want.3,v 1.5 2018/03/27 17:35:50 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_want.3,v 1.6 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 | 2 | .\" OpenSSL 9b86974e Aug 17 15:21:33 2015 -0400 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: March 27 2018 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt SSL_WANT 3 | 52 | .Dt SSL_WANT 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -59,6 +59,7 @@ | |||
| 59 | .Nm SSL_want_x509_lookup | 59 | .Nm SSL_want_x509_lookup |
| 60 | .Nd obtain state information TLS/SSL I/O operation | 60 | .Nd obtain state information TLS/SSL I/O operation |
| 61 | .Sh SYNOPSIS | 61 | .Sh SYNOPSIS |
| 62 | .Lb libssl libcrypto | ||
| 62 | .In openssl/ssl.h | 63 | .In openssl/ssl.h |
| 63 | .Ft int | 64 | .Ft int |
| 64 | .Fn SSL_want "const SSL *ssl" | 65 | .Fn SSL_want "const SSL *ssl" |
diff --git a/src/lib/libssl/man/SSL_write.3 b/src/lib/libssl/man/SSL_write.3 index 2c6fbcef08..54d0953e82 100644 --- a/src/lib/libssl/man/SSL_write.3 +++ b/src/lib/libssl/man/SSL_write.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: SSL_write.3,v 1.7 2021/10/24 15:10:13 schwarze Exp $ | 1 | .\" $OpenBSD: SSL_write.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" full merge up to: OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" partial merge up to: OpenSSL 24a535ea Sep 22 13:14:20 2020 +0100 | 3 | .\" partial merge up to: OpenSSL 24a535ea Sep 22 13:14:20 2020 +0100 |
| 4 | .\" | 4 | .\" |
| @@ -51,7 +51,7 @@ | |||
| 51 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 51 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 52 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 52 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 53 | .\" | 53 | .\" |
| 54 | .Dd $Mdocdate: October 24 2021 $ | 54 | .Dd $Mdocdate: June 8 2025 $ |
| 55 | .Dt SSL_WRITE 3 | 55 | .Dt SSL_WRITE 3 |
| 56 | .Os | 56 | .Os |
| 57 | .Sh NAME | 57 | .Sh NAME |
| @@ -59,6 +59,7 @@ | |||
| 59 | .Nm SSL_write | 59 | .Nm SSL_write |
| 60 | .Nd write bytes to a TLS connection | 60 | .Nd write bytes to a TLS connection |
| 61 | .Sh SYNOPSIS | 61 | .Sh SYNOPSIS |
| 62 | .Lb libssl libcrypto | ||
| 62 | .In openssl/ssl.h | 63 | .In openssl/ssl.h |
| 63 | .Ft int | 64 | .Ft int |
| 64 | .Fn SSL_write_ex "SSL *ssl" "const void *buf" "size_t num" "size_t *written" | 65 | .Fn SSL_write_ex "SSL *ssl" "const void *buf" "size_t num" "size_t *written" |
diff --git a/src/lib/libssl/man/d2i_SSL_SESSION.3 b/src/lib/libssl/man/d2i_SSL_SESSION.3 index 7a2bc529ab..6b0dfc86b9 100644 --- a/src/lib/libssl/man/d2i_SSL_SESSION.3 +++ b/src/lib/libssl/man/d2i_SSL_SESSION.3 | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | .\" $OpenBSD: d2i_SSL_SESSION.3,v 1.7 2019/06/08 15:25:43 schwarze Exp $ | 1 | .\" $OpenBSD: d2i_SSL_SESSION.3,v 1.8 2025/06/08 22:52:00 schwarze Exp $ |
| 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 | 2 | .\" OpenSSL b97fdb57 Nov 11 09:33:09 2016 +0100 |
| 3 | .\" | 3 | .\" |
| 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. | 4 | .\" This file was written by Lutz Jaenicke <jaenicke@openssl.org>. |
| @@ -48,7 +48,7 @@ | |||
| 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED | 48 | .\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED |
| 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. | 49 | .\" OF THE POSSIBILITY OF SUCH DAMAGE. |
| 50 | .\" | 50 | .\" |
| 51 | .Dd $Mdocdate: June 8 2019 $ | 51 | .Dd $Mdocdate: June 8 2025 $ |
| 52 | .Dt D2I_SSL_SESSION 3 | 52 | .Dt D2I_SSL_SESSION 3 |
| 53 | .Os | 53 | .Os |
| 54 | .Sh NAME | 54 | .Sh NAME |
| @@ -56,6 +56,7 @@ | |||
| 56 | .Nm i2d_SSL_SESSION | 56 | .Nm i2d_SSL_SESSION |
| 57 | .Nd convert SSL_SESSION object from/to ASN1 representation | 57 | .Nd convert SSL_SESSION object from/to ASN1 representation |
| 58 | .Sh SYNOPSIS | 58 | .Sh SYNOPSIS |
| 59 | .Lb libssl libcrypto | ||
| 59 | .In openssl/ssl.h | 60 | .In openssl/ssl.h |
| 60 | .Ft SSL_SESSION * | 61 | .Ft SSL_SESSION * |
| 61 | .Fn d2i_SSL_SESSION "SSL_SESSION **a" "const unsigned char **pp" "long length" | 62 | .Fn d2i_SSL_SESSION "SSL_SESSION **a" "const unsigned char **pp" "long length" |
diff --git a/src/lib/libssl/s3_lib.c b/src/lib/libssl/s3_lib.c index 86b32aec15..bcf26bec40 100644 --- a/src/lib/libssl/s3_lib.c +++ b/src/lib/libssl/s3_lib.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: s3_lib.c,v 1.257 2024/07/23 14:40:53 jsing Exp $ */ | 1 | /* $OpenBSD: s3_lib.c,v 1.258 2025/12/04 21:16:17 beck Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -1286,6 +1286,7 @@ ssl3_free(SSL *s) | |||
| 1286 | sk_X509_pop_free(s->s3->hs.peer_certs_no_leaf, X509_free); | 1286 | sk_X509_pop_free(s->s3->hs.peer_certs_no_leaf, X509_free); |
| 1287 | sk_X509_pop_free(s->s3->hs.verified_chain, X509_free); | 1287 | sk_X509_pop_free(s->s3->hs.verified_chain, X509_free); |
| 1288 | tls_key_share_free(s->s3->hs.key_share); | 1288 | tls_key_share_free(s->s3->hs.key_share); |
| 1289 | tls_key_share_free(s->s3->hs.tls13.key_share); | ||
| 1289 | 1290 | ||
| 1290 | tls13_secrets_destroy(s->s3->hs.tls13.secrets); | 1291 | tls13_secrets_destroy(s->s3->hs.tls13.secrets); |
| 1291 | freezero(s->s3->hs.tls13.cookie, s->s3->hs.tls13.cookie_len); | 1292 | freezero(s->s3->hs.tls13.cookie, s->s3->hs.tls13.cookie_len); |
| @@ -1337,6 +1338,8 @@ ssl3_clear(SSL *s) | |||
| 1337 | 1338 | ||
| 1338 | tls_key_share_free(s->s3->hs.key_share); | 1339 | tls_key_share_free(s->s3->hs.key_share); |
| 1339 | s->s3->hs.key_share = NULL; | 1340 | s->s3->hs.key_share = NULL; |
| 1341 | tls_key_share_free(s->s3->hs.tls13.key_share); | ||
| 1342 | s->s3->hs.tls13.key_share = NULL; | ||
| 1340 | 1343 | ||
| 1341 | tls13_secrets_destroy(s->s3->hs.tls13.secrets); | 1344 | tls13_secrets_destroy(s->s3->hs.tls13.secrets); |
| 1342 | s->s3->hs.tls13.secrets = NULL; | 1345 | s->s3->hs.tls13.secrets = NULL; |
diff --git a/src/lib/libssl/shlib_version b/src/lib/libssl/shlib_version index c2665004b4..dc886efa77 100644 --- a/src/lib/libssl/shlib_version +++ b/src/lib/libssl/shlib_version | |||
| @@ -1,3 +1,3 @@ | |||
| 1 | # Don't forget to give libtls the same type of bump! | 1 | # Don't forget to give libtls the same type of bump! |
| 2 | major=59 | 2 | major=60 |
| 3 | minor=1 | 3 | minor=2 |
diff --git a/src/lib/libssl/ssl.h b/src/lib/libssl/ssl.h index e8a11ebdb9..48cb6256df 100644 --- a/src/lib/libssl/ssl.h +++ b/src/lib/libssl/ssl.h | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl.h,v 1.248 2025/04/18 07:34:01 tb Exp $ */ | 1 | /* $OpenBSD: ssl.h,v 1.249 2025/10/24 11:36:08 tb Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -1199,6 +1199,7 @@ int SSL_SESSION_is_resumable(const SSL_SESSION *s); | |||
| 1199 | 1199 | ||
| 1200 | SSL_SESSION *SSL_SESSION_new(void); | 1200 | SSL_SESSION *SSL_SESSION_new(void); |
| 1201 | void SSL_SESSION_free(SSL_SESSION *ses); | 1201 | void SSL_SESSION_free(SSL_SESSION *ses); |
| 1202 | SSL_SESSION *SSL_SESSION_dup(const SSL_SESSION *src); | ||
| 1202 | int SSL_SESSION_up_ref(SSL_SESSION *ss); | 1203 | int SSL_SESSION_up_ref(SSL_SESSION *ss); |
| 1203 | const unsigned char *SSL_SESSION_get_id(const SSL_SESSION *ss, | 1204 | const unsigned char *SSL_SESSION_get_id(const SSL_SESSION *ss, |
| 1204 | unsigned int *len); | 1205 | unsigned int *len); |
diff --git a/src/lib/libssl/ssl_clnt.c b/src/lib/libssl/ssl_clnt.c index 0d3dcf78af..22469ce346 100644 --- a/src/lib/libssl/ssl_clnt.c +++ b/src/lib/libssl/ssl_clnt.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_clnt.c,v 1.169 2025/03/09 15:53:36 tb Exp $ */ | 1 | /* $OpenBSD: ssl_clnt.c,v 1.170 2025/12/04 21:03:42 beck Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -1195,7 +1195,7 @@ ssl3_get_server_kex_dhe(SSL *s, CBS *cbs) | |||
| 1195 | } | 1195 | } |
| 1196 | goto err; | 1196 | goto err; |
| 1197 | } | 1197 | } |
| 1198 | if (!tls_key_share_peer_public(s->s3->hs.key_share, cbs, | 1198 | if (!tls_key_share_client_peer_public(s->s3->hs.key_share, cbs, |
| 1199 | &decode_error, &invalid_key)) { | 1199 | &decode_error, &invalid_key)) { |
| 1200 | if (decode_error) { | 1200 | if (decode_error) { |
| 1201 | SSLerror(s, SSL_R_BAD_PACKET_LENGTH); | 1201 | SSLerror(s, SSL_R_BAD_PACKET_LENGTH); |
| @@ -1264,7 +1264,7 @@ ssl3_get_server_kex_ecdhe(SSL *s, CBS *cbs) | |||
| 1264 | if ((s->s3->hs.key_share = tls_key_share_new(group_id)) == NULL) | 1264 | if ((s->s3->hs.key_share = tls_key_share_new(group_id)) == NULL) |
| 1265 | goto err; | 1265 | goto err; |
| 1266 | 1266 | ||
| 1267 | if (!tls_key_share_peer_public(s->s3->hs.key_share, &public, | 1267 | if (!tls_key_share_client_peer_public(s->s3->hs.key_share, &public, |
| 1268 | &decode_error, NULL)) { | 1268 | &decode_error, NULL)) { |
| 1269 | if (decode_error) | 1269 | if (decode_error) |
| 1270 | goto decode_err; | 1270 | goto decode_err; |
| @@ -1859,7 +1859,7 @@ ssl3_send_client_kex_dhe(SSL *s, CBB *cbb) | |||
| 1859 | goto err; | 1859 | goto err; |
| 1860 | } | 1860 | } |
| 1861 | 1861 | ||
| 1862 | if (!tls_key_share_generate(s->s3->hs.key_share)) | 1862 | if (!tls_key_share_client_generate(s->s3->hs.key_share)) |
| 1863 | goto err; | 1863 | goto err; |
| 1864 | if (!tls_key_share_public(s->s3->hs.key_share, cbb)) | 1864 | if (!tls_key_share_public(s->s3->hs.key_share, cbb)) |
| 1865 | goto err; | 1865 | goto err; |
| @@ -1898,7 +1898,7 @@ ssl3_send_client_kex_ecdhe(SSL *s, CBB *cbb) | |||
| 1898 | goto err; | 1898 | goto err; |
| 1899 | } | 1899 | } |
| 1900 | 1900 | ||
| 1901 | if (!tls_key_share_generate(s->s3->hs.key_share)) | 1901 | if (!tls_key_share_client_generate(s->s3->hs.key_share)) |
| 1902 | goto err; | 1902 | goto err; |
| 1903 | 1903 | ||
| 1904 | if (!CBB_add_u8_length_prefixed(cbb, &public)) | 1904 | if (!CBB_add_u8_length_prefixed(cbb, &public)) |
diff --git a/src/lib/libssl/ssl_lib.c b/src/lib/libssl/ssl_lib.c index ce68981493..630724e670 100644 --- a/src/lib/libssl/ssl_lib.c +++ b/src/lib/libssl/ssl_lib.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_lib.c,v 1.331 2025/03/12 14:03:55 jsing Exp $ */ | 1 | /* $OpenBSD: ssl_lib.c,v 1.333 2025/06/09 10:14:38 tb Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -1298,7 +1298,7 @@ SSL_shutdown(SSL *s) | |||
| 1298 | return (-1); | 1298 | return (-1); |
| 1299 | } | 1299 | } |
| 1300 | 1300 | ||
| 1301 | if (s != NULL && !SSL_in_init(s)) | 1301 | if (!SSL_in_init(s)) |
| 1302 | return (s->method->ssl_shutdown(s)); | 1302 | return (s->method->ssl_shutdown(s)); |
| 1303 | 1303 | ||
| 1304 | return (1); | 1304 | return (1); |
| @@ -3008,8 +3008,9 @@ SSL_dup(SSL *s) | |||
| 3008 | 3008 | ||
| 3009 | /* Dup the client_CA list */ | 3009 | /* Dup the client_CA list */ |
| 3010 | if (s->client_CA != NULL) { | 3010 | if (s->client_CA != NULL) { |
| 3011 | if ((sk = sk_X509_NAME_dup(s->client_CA)) == NULL) goto err; | 3011 | if ((sk = sk_X509_NAME_dup(s->client_CA)) == NULL) |
| 3012 | ret->client_CA = sk; | 3012 | goto err; |
| 3013 | ret->client_CA = sk; | ||
| 3013 | for (i = 0; i < sk_X509_NAME_num(sk); i++) { | 3014 | for (i = 0; i < sk_X509_NAME_num(sk); i++) { |
| 3014 | xn = sk_X509_NAME_value(sk, i); | 3015 | xn = sk_X509_NAME_value(sk, i); |
| 3015 | if (sk_X509_NAME_set(sk, i, | 3016 | if (sk_X509_NAME_set(sk, i, |
diff --git a/src/lib/libssl/ssl_local.h b/src/lib/libssl/ssl_local.h index acb87f8650..7942c36dbd 100644 --- a/src/lib/libssl/ssl_local.h +++ b/src/lib/libssl/ssl_local.h | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_local.h,v 1.33 2025/05/10 06:04:36 tb Exp $ */ | 1 | /* $OpenBSD: ssl_local.h,v 1.35 2025/12/04 21:16:17 beck Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -490,6 +490,9 @@ typedef struct ssl_handshake_tls13_st { | |||
| 490 | /* Certificate selected for use (static pointer). */ | 490 | /* Certificate selected for use (static pointer). */ |
| 491 | const SSL_CERT_PKEY *cpk; | 491 | const SSL_CERT_PKEY *cpk; |
| 492 | 492 | ||
| 493 | /* Client's extra predicted key share */ | ||
| 494 | struct tls_key_share *key_share; | ||
| 495 | |||
| 493 | /* Version proposed by peer server. */ | 496 | /* Version proposed by peer server. */ |
| 494 | uint16_t server_version; | 497 | uint16_t server_version; |
| 495 | 498 | ||
| @@ -1240,7 +1243,7 @@ int ssl_security_cert_chain(const SSL *ssl, STACK_OF(X509) *sk, | |||
| 1240 | int ssl_security_shared_group(const SSL *ssl, uint16_t group_id); | 1243 | int ssl_security_shared_group(const SSL *ssl, uint16_t group_id); |
| 1241 | int ssl_security_supported_group(const SSL *ssl, uint16_t group_id); | 1244 | int ssl_security_supported_group(const SSL *ssl, uint16_t group_id); |
| 1242 | 1245 | ||
| 1243 | SSL_SESSION *ssl_session_dup(SSL_SESSION *src, int include_ticket); | 1246 | SSL_SESSION *ssl_session_dup(const SSL_SESSION *src, int include_ticket); |
| 1244 | int ssl_get_new_session(SSL *s, int session); | 1247 | int ssl_get_new_session(SSL *s, int session); |
| 1245 | int ssl_get_prev_session(SSL *s, CBS *session_id, CBS *ext_block, | 1248 | int ssl_get_prev_session(SSL *s, CBS *session_id, CBS *ext_block, |
| 1246 | int *alert); | 1249 | int *alert); |
diff --git a/src/lib/libssl/ssl_rsa.c b/src/lib/libssl/ssl_rsa.c index 6c8a2be3d3..1490e10ba4 100644 --- a/src/lib/libssl/ssl_rsa.c +++ b/src/lib/libssl/ssl_rsa.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_rsa.c,v 1.51 2023/12/30 06:25:56 tb Exp $ */ | 1 | /* $OpenBSD: ssl_rsa.c,v 1.53 2025/08/14 15:55:54 tb Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
diff --git a/src/lib/libssl/ssl_sess.c b/src/lib/libssl/ssl_sess.c index a5cfc33c04..7f16061b48 100644 --- a/src/lib/libssl/ssl_sess.c +++ b/src/lib/libssl/ssl_sess.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_sess.c,v 1.129 2025/03/09 15:53:36 tb Exp $ */ | 1 | /* $OpenBSD: ssl_sess.c,v 1.131 2025/10/24 11:36:08 tb Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -247,7 +247,7 @@ SSL_SESSION_new(void) | |||
| 247 | LSSL_ALIAS(SSL_SESSION_new); | 247 | LSSL_ALIAS(SSL_SESSION_new); |
| 248 | 248 | ||
| 249 | SSL_SESSION * | 249 | SSL_SESSION * |
| 250 | ssl_session_dup(SSL_SESSION *sess, int include_ticket) | 250 | ssl_session_dup(const SSL_SESSION *sess, int include_ticket) |
| 251 | { | 251 | { |
| 252 | SSL_SESSION *copy; | 252 | SSL_SESSION *copy; |
| 253 | CBS cbs; | 253 | CBS cbs; |
| @@ -313,7 +313,7 @@ ssl_session_dup(SSL_SESSION *sess, int include_ticket) | |||
| 313 | goto err; | 313 | goto err; |
| 314 | 314 | ||
| 315 | if (!CRYPTO_dup_ex_data(CRYPTO_EX_INDEX_SSL_SESSION, ©->ex_data, | 315 | if (!CRYPTO_dup_ex_data(CRYPTO_EX_INDEX_SSL_SESSION, ©->ex_data, |
| 316 | &sess->ex_data)) | 316 | (CRYPTO_EX_DATA *)&sess->ex_data)) |
| 317 | goto err; | 317 | goto err; |
| 318 | 318 | ||
| 319 | /* Omit prev/next: the new session gets its own slot in the cache. */ | 319 | /* Omit prev/next: the new session gets its own slot in the cache. */ |
| @@ -345,6 +345,13 @@ ssl_session_dup(SSL_SESSION *sess, int include_ticket) | |||
| 345 | return NULL; | 345 | return NULL; |
| 346 | } | 346 | } |
| 347 | 347 | ||
| 348 | SSL_SESSION * | ||
| 349 | SSL_SESSION_dup(const SSL_SESSION *src) | ||
| 350 | { | ||
| 351 | return ssl_session_dup(src, 1); | ||
| 352 | } | ||
| 353 | LSSL_ALIAS(SSL_SESSION_dup); | ||
| 354 | |||
| 348 | const unsigned char * | 355 | const unsigned char * |
| 349 | SSL_SESSION_get_id(const SSL_SESSION *ss, unsigned int *len) | 356 | SSL_SESSION_get_id(const SSL_SESSION *ss, unsigned int *len) |
| 350 | { | 357 | { |
diff --git a/src/lib/libssl/ssl_srvr.c b/src/lib/libssl/ssl_srvr.c index db4ba38b51..ef93e283de 100644 --- a/src/lib/libssl/ssl_srvr.c +++ b/src/lib/libssl/ssl_srvr.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_srvr.c,v 1.166 2025/03/09 15:53:36 tb Exp $ */ | 1 | /* $OpenBSD: ssl_srvr.c,v 1.167 2025/12/04 21:03:42 beck Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -1357,7 +1357,7 @@ ssl3_send_server_kex_dhe(SSL *s, CBB *cbb) | |||
| 1357 | goto err; | 1357 | goto err; |
| 1358 | } | 1358 | } |
| 1359 | 1359 | ||
| 1360 | if (!tls_key_share_generate(s->s3->hs.key_share)) | 1360 | if (!tls_key_share_server_generate(s->s3->hs.key_share)) |
| 1361 | goto err; | 1361 | goto err; |
| 1362 | 1362 | ||
| 1363 | if (!tls_key_share_params(s->s3->hs.key_share, cbb)) | 1363 | if (!tls_key_share_params(s->s3->hs.key_share, cbb)) |
| @@ -1393,7 +1393,7 @@ ssl3_send_server_kex_ecdhe(SSL *s, CBB *cbb) | |||
| 1393 | if ((s->s3->hs.key_share = tls_key_share_new_nid(nid)) == NULL) | 1393 | if ((s->s3->hs.key_share = tls_key_share_new_nid(nid)) == NULL) |
| 1394 | goto err; | 1394 | goto err; |
| 1395 | 1395 | ||
| 1396 | if (!tls_key_share_generate(s->s3->hs.key_share)) | 1396 | if (!tls_key_share_server_generate(s->s3->hs.key_share)) |
| 1397 | goto err; | 1397 | goto err; |
| 1398 | 1398 | ||
| 1399 | /* | 1399 | /* |
| @@ -1744,7 +1744,7 @@ ssl3_get_client_kex_dhe(SSL *s, CBS *cbs) | |||
| 1744 | goto err; | 1744 | goto err; |
| 1745 | } | 1745 | } |
| 1746 | 1746 | ||
| 1747 | if (!tls_key_share_peer_public(s->s3->hs.key_share, cbs, | 1747 | if (!tls_key_share_server_peer_public(s->s3->hs.key_share, cbs, |
| 1748 | &decode_error, &invalid_key)) { | 1748 | &decode_error, &invalid_key)) { |
| 1749 | if (decode_error) { | 1749 | if (decode_error) { |
| 1750 | SSLerror(s, SSL_R_BAD_PACKET_LENGTH); | 1750 | SSLerror(s, SSL_R_BAD_PACKET_LENGTH); |
| @@ -1792,7 +1792,7 @@ ssl3_get_client_kex_ecdhe(SSL *s, CBS *cbs) | |||
| 1792 | ssl3_send_alert(s, SSL3_AL_FATAL, SSL_AD_DECODE_ERROR); | 1792 | ssl3_send_alert(s, SSL3_AL_FATAL, SSL_AD_DECODE_ERROR); |
| 1793 | goto err; | 1793 | goto err; |
| 1794 | } | 1794 | } |
| 1795 | if (!tls_key_share_peer_public(s->s3->hs.key_share, &public, | 1795 | if (!tls_key_share_server_peer_public(s->s3->hs.key_share, &public, |
| 1796 | &decode_error, NULL)) { | 1796 | &decode_error, NULL)) { |
| 1797 | if (decode_error) { | 1797 | if (decode_error) { |
| 1798 | SSLerror(s, SSL_R_BAD_PACKET_LENGTH); | 1798 | SSLerror(s, SSL_R_BAD_PACKET_LENGTH); |
diff --git a/src/lib/libssl/ssl_stat.c b/src/lib/libssl/ssl_stat.c index b19944ca83..9966217ca3 100644 --- a/src/lib/libssl/ssl_stat.c +++ b/src/lib/libssl/ssl_stat.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_stat.c,v 1.23 2024/10/12 03:54:18 tb Exp $ */ | 1 | /* $OpenBSD: ssl_stat.c,v 1.24 2025/05/22 08:25:26 tb Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -438,72 +438,7 @@ LSSL_ALIAS(SSL_alert_type_string); | |||
| 438 | const char * | 438 | const char * |
| 439 | SSL_alert_desc_string(int value) | 439 | SSL_alert_desc_string(int value) |
| 440 | { | 440 | { |
| 441 | switch (value & 0xff) { | 441 | return "!!"; |
| 442 | case SSL_AD_CLOSE_NOTIFY: | ||
| 443 | return "CN"; | ||
| 444 | case SSL_AD_UNEXPECTED_MESSAGE: | ||
| 445 | return "UM"; | ||
| 446 | case SSL_AD_BAD_RECORD_MAC: | ||
| 447 | return "BM"; | ||
| 448 | case SSL_AD_RECORD_OVERFLOW: | ||
| 449 | return "RO"; | ||
| 450 | case SSL_AD_DECOMPRESSION_FAILURE: | ||
| 451 | return "DF"; | ||
| 452 | case SSL_AD_HANDSHAKE_FAILURE: | ||
| 453 | return "HF"; | ||
| 454 | case SSL_AD_BAD_CERTIFICATE: | ||
| 455 | return "BC"; | ||
| 456 | case SSL_AD_UNSUPPORTED_CERTIFICATE: | ||
| 457 | return "UC"; | ||
| 458 | case SSL_AD_CERTIFICATE_REVOKED: | ||
| 459 | return "CR"; | ||
| 460 | case SSL_AD_CERTIFICATE_EXPIRED: | ||
| 461 | return "CE"; | ||
| 462 | case SSL_AD_CERTIFICATE_UNKNOWN: | ||
| 463 | return "CU"; | ||
| 464 | case SSL_AD_ILLEGAL_PARAMETER: | ||
| 465 | return "IP"; | ||
| 466 | case SSL_AD_UNKNOWN_CA: | ||
| 467 | return "CA"; | ||
| 468 | case SSL_AD_ACCESS_DENIED: | ||
| 469 | return "AD"; | ||
| 470 | case SSL_AD_DECODE_ERROR: | ||
| 471 | return "DE"; | ||
| 472 | case SSL_AD_DECRYPT_ERROR: | ||
| 473 | return "CY"; | ||
| 474 | case SSL_AD_PROTOCOL_VERSION: | ||
| 475 | return "PV"; | ||
| 476 | case SSL_AD_INSUFFICIENT_SECURITY: | ||
| 477 | return "IS"; | ||
| 478 | case SSL_AD_INTERNAL_ERROR: | ||
| 479 | return "IE"; | ||
| 480 | case SSL_AD_INAPPROPRIATE_FALLBACK: | ||
| 481 | return "IF"; | ||
| 482 | case SSL_AD_USER_CANCELLED: | ||
| 483 | return "US"; | ||
| 484 | case SSL_AD_NO_RENEGOTIATION: | ||
| 485 | return "NR"; | ||
| 486 | case SSL_AD_MISSING_EXTENSION: | ||
| 487 | return "ME"; | ||
| 488 | case SSL_AD_UNSUPPORTED_EXTENSION: | ||
| 489 | return "UE"; | ||
| 490 | case SSL_AD_CERTIFICATE_UNOBTAINABLE: | ||
| 491 | return "CO"; | ||
| 492 | case SSL_AD_UNRECOGNIZED_NAME: | ||
| 493 | return "UN"; | ||
| 494 | case SSL_AD_BAD_CERTIFICATE_STATUS_RESPONSE: | ||
| 495 | return "BR"; | ||
| 496 | case SSL_AD_BAD_CERTIFICATE_HASH_VALUE: | ||
| 497 | return "BH"; | ||
| 498 | case SSL_AD_UNKNOWN_PSK_IDENTITY: | ||
| 499 | return "UP"; | ||
| 500 | case SSL_AD_CERTIFICATE_REQUIRED: | ||
| 501 | return "CQ"; /* XXX */ | ||
| 502 | case SSL_AD_NO_APPLICATION_PROTOCOL: | ||
| 503 | return "AP"; | ||
| 504 | default: | ||
| 505 | return "UK"; | ||
| 506 | } | ||
| 507 | } | 442 | } |
| 508 | LSSL_ALIAS(SSL_alert_desc_string); | 443 | LSSL_ALIAS(SSL_alert_desc_string); |
| 509 | 444 | ||
diff --git a/src/lib/libssl/ssl_tlsext.c b/src/lib/libssl/ssl_tlsext.c index 57efb75d32..d879b3304e 100644 --- a/src/lib/libssl/ssl_tlsext.c +++ b/src/lib/libssl/ssl_tlsext.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_tlsext.c,v 1.155 2025/04/30 13:50:50 tb Exp $ */ | 1 | /* $OpenBSD: ssl_tlsext.c,v 1.159 2025/12/04 21:16:17 beck Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Copyright (c) 2016, 2017, 2019 Joel Sing <jsing@openbsd.org> | 3 | * Copyright (c) 2016, 2017, 2019 Joel Sing <jsing@openbsd.org> |
| 4 | * Copyright (c) 2017 Doug Hogan <doug@openbsd.org> | 4 | * Copyright (c) 2017 Doug Hogan <doug@openbsd.org> |
| @@ -1445,7 +1445,7 @@ tlsext_keyshare_client_needs(SSL *s, uint16_t msg_type) | |||
| 1445 | static int | 1445 | static int |
| 1446 | tlsext_keyshare_client_build(SSL *s, uint16_t msg_type, CBB *cbb) | 1446 | tlsext_keyshare_client_build(SSL *s, uint16_t msg_type, CBB *cbb) |
| 1447 | { | 1447 | { |
| 1448 | CBB client_shares, key_exchange; | 1448 | CBB client_shares, key_exchange, key_exchange2; |
| 1449 | 1449 | ||
| 1450 | if (!CBB_add_u16_length_prefixed(cbb, &client_shares)) | 1450 | if (!CBB_add_u16_length_prefixed(cbb, &client_shares)) |
| 1451 | return 0; | 1451 | return 0; |
| @@ -1458,6 +1458,31 @@ tlsext_keyshare_client_build(SSL *s, uint16_t msg_type, CBB *cbb) | |||
| 1458 | if (!tls_key_share_public(s->s3->hs.key_share, &key_exchange)) | 1458 | if (!tls_key_share_public(s->s3->hs.key_share, &key_exchange)) |
| 1459 | return 0; | 1459 | return 0; |
| 1460 | 1460 | ||
| 1461 | /* | ||
| 1462 | * We wish to include a second key share prediction in a TLS 1.3 client | ||
| 1463 | * hello if we have more than one preferred group. We never wish to do | ||
| 1464 | * this in response to a server selected group (Either from a TLS 1.2 | ||
| 1465 | * server, or from a hello retry request after having negotiated TLS | ||
| 1466 | * 1.3). | ||
| 1467 | * | ||
| 1468 | * Therefore we only do this if we have not yet negotiated | ||
| 1469 | * a version, and our max version could negotiate TLS 1.3. | ||
| 1470 | */ | ||
| 1471 | if (s->s3->hs.negotiated_tls_version == 0 && | ||
| 1472 | s->s3->hs.our_max_tls_version >= TLS1_3_VERSION) { | ||
| 1473 | if (s->s3->hs.tls13.key_share != NULL) { | ||
| 1474 | if (!CBB_add_u16(&client_shares, | ||
| 1475 | tls_key_share_group(s->s3->hs.tls13.key_share))) | ||
| 1476 | return 0; | ||
| 1477 | if (!CBB_add_u16_length_prefixed(&client_shares, | ||
| 1478 | &key_exchange2)) | ||
| 1479 | return 0; | ||
| 1480 | if (!tls_key_share_public(s->s3->hs.tls13.key_share, | ||
| 1481 | &key_exchange2)) | ||
| 1482 | return 0; | ||
| 1483 | } | ||
| 1484 | } | ||
| 1485 | |||
| 1461 | if (!CBB_flush(cbb)) | 1486 | if (!CBB_flush(cbb)) |
| 1462 | return 0; | 1487 | return 0; |
| 1463 | 1488 | ||
| @@ -1523,7 +1548,7 @@ tlsext_keyshare_server_process(SSL *s, uint16_t msg_type, CBS *cbs, int *alert) | |||
| 1523 | *alert = SSL_AD_INTERNAL_ERROR; | 1548 | *alert = SSL_AD_INTERNAL_ERROR; |
| 1524 | return 0; | 1549 | return 0; |
| 1525 | } | 1550 | } |
| 1526 | if (!tls_key_share_peer_public(s->s3->hs.key_share, | 1551 | if (!tls_key_share_server_peer_public(s->s3->hs.key_share, |
| 1527 | &key_exchange, &decode_error, NULL)) { | 1552 | &key_exchange, &decode_error, NULL)) { |
| 1528 | if (!decode_error) | 1553 | if (!decode_error) |
| 1529 | *alert = SSL_AD_INTERNAL_ERROR; | 1554 | *alert = SSL_AD_INTERNAL_ERROR; |
| @@ -1554,6 +1579,7 @@ tlsext_keyshare_server_process(SSL *s, uint16_t msg_type, CBS *cbs, int *alert) | |||
| 1554 | for (j = 0; j < server_groups_len; j++) { | 1579 | for (j = 0; j < server_groups_len; j++) { |
| 1555 | if (server_groups[j] == client_groups[i]) { | 1580 | if (server_groups[j] == client_groups[i]) { |
| 1556 | client_preferred_group = client_groups[i]; | 1581 | client_preferred_group = client_groups[i]; |
| 1582 | s->s3->hs.tls13.server_group = client_preferred_group; | ||
| 1557 | preferred_group_found = 1; | 1583 | preferred_group_found = 1; |
| 1558 | break; | 1584 | break; |
| 1559 | } | 1585 | } |
| @@ -1613,7 +1639,7 @@ tlsext_keyshare_server_process(SSL *s, uint16_t msg_type, CBS *cbs, int *alert) | |||
| 1613 | *alert = SSL_AD_INTERNAL_ERROR; | 1639 | *alert = SSL_AD_INTERNAL_ERROR; |
| 1614 | return 0; | 1640 | return 0; |
| 1615 | } | 1641 | } |
| 1616 | if (!tls_key_share_peer_public(s->s3->hs.key_share, | 1642 | if (!tls_key_share_server_peer_public(s->s3->hs.key_share, |
| 1617 | &key_exchange, &decode_error, NULL)) { | 1643 | &key_exchange, &decode_error, NULL)) { |
| 1618 | if (!decode_error) | 1644 | if (!decode_error) |
| 1619 | *alert = SSL_AD_INTERNAL_ERROR; | 1645 | *alert = SSL_AD_INTERNAL_ERROR; |
| @@ -1686,11 +1712,33 @@ tlsext_keyshare_client_process(SSL *s, uint16_t msg_type, CBS *cbs, int *alert) | |||
| 1686 | *alert = SSL_AD_INTERNAL_ERROR; | 1712 | *alert = SSL_AD_INTERNAL_ERROR; |
| 1687 | return 0; | 1713 | return 0; |
| 1688 | } | 1714 | } |
| 1715 | |||
| 1716 | if (s->s3->hs.tls13.server_version >= TLS1_3_VERSION && | ||
| 1717 | tls_key_share_group(s->s3->hs.key_share) != group && | ||
| 1718 | s->s3->hs.tls13.key_share != NULL && | ||
| 1719 | tls_key_share_group(s->s3->hs.tls13.key_share) == group) { | ||
| 1720 | /* | ||
| 1721 | * Server chose our second key share prediction, switch to it, | ||
| 1722 | * and discard the first one. | ||
| 1723 | */ | ||
| 1724 | tls_key_share_free(s->s3->hs.key_share); | ||
| 1725 | s->s3->hs.key_share = s->s3->hs.tls13.key_share; | ||
| 1726 | s->s3->hs.tls13.key_share = NULL; | ||
| 1727 | } | ||
| 1728 | |||
| 1689 | if (tls_key_share_group(s->s3->hs.key_share) != group) { | 1729 | if (tls_key_share_group(s->s3->hs.key_share) != group) { |
| 1690 | *alert = SSL_AD_INTERNAL_ERROR; | 1730 | *alert = SSL_AD_INTERNAL_ERROR; |
| 1691 | return 0; | 1731 | return 0; |
| 1692 | } | 1732 | } |
| 1693 | if (!tls_key_share_peer_public(s->s3->hs.key_share, | 1733 | |
| 1734 | /* | ||
| 1735 | * Discard our now unused second key share prediction if we had made one | ||
| 1736 | * with our initial 1.3 client hello | ||
| 1737 | */ | ||
| 1738 | tls_key_share_free(s->s3->hs.tls13.key_share); | ||
| 1739 | s->s3->hs.tls13.key_share = NULL; | ||
| 1740 | |||
| 1741 | if (!tls_key_share_client_peer_public(s->s3->hs.key_share, | ||
| 1694 | &key_exchange, &decode_error, NULL)) { | 1742 | &key_exchange, &decode_error, NULL)) { |
| 1695 | if (!decode_error) | 1743 | if (!decode_error) |
| 1696 | *alert = SSL_AD_INTERNAL_ERROR; | 1744 | *alert = SSL_AD_INTERNAL_ERROR; |
| @@ -2414,8 +2462,8 @@ tlsext_randomize_build_order(SSL *s) | |||
| 2414 | free(s->tlsext_build_order); | 2462 | free(s->tlsext_build_order); |
| 2415 | s->tlsext_build_order_len = 0; | 2463 | s->tlsext_build_order_len = 0; |
| 2416 | 2464 | ||
| 2417 | if ((s->tlsext_build_order = calloc(sizeof(*s->tlsext_build_order), | 2465 | if ((s->tlsext_build_order = calloc(N_TLS_EXTENSIONS, |
| 2418 | N_TLS_EXTENSIONS)) == NULL) | 2466 | sizeof(*s->tlsext_build_order))) == NULL) |
| 2419 | return 0; | 2467 | return 0; |
| 2420 | s->tlsext_build_order_len = N_TLS_EXTENSIONS; | 2468 | s->tlsext_build_order_len = N_TLS_EXTENSIONS; |
| 2421 | 2469 | ||
| @@ -2443,8 +2491,8 @@ tlsext_linearize_build_order(SSL *s) | |||
| 2443 | free(s->tlsext_build_order); | 2491 | free(s->tlsext_build_order); |
| 2444 | s->tlsext_build_order_len = 0; | 2492 | s->tlsext_build_order_len = 0; |
| 2445 | 2493 | ||
| 2446 | if ((s->tlsext_build_order = calloc(sizeof(*s->tlsext_build_order), | 2494 | if ((s->tlsext_build_order = calloc(N_TLS_EXTENSIONS, |
| 2447 | N_TLS_EXTENSIONS)) == NULL) | 2495 | sizeof(*s->tlsext_build_order))) == NULL) |
| 2448 | return 0; | 2496 | return 0; |
| 2449 | s->tlsext_build_order_len = N_TLS_EXTENSIONS; | 2497 | s->tlsext_build_order_len = N_TLS_EXTENSIONS; |
| 2450 | 2498 | ||
diff --git a/src/lib/libssl/t1_lib.c b/src/lib/libssl/t1_lib.c index b200f78098..912bea592a 100644 --- a/src/lib/libssl/t1_lib.c +++ b/src/lib/libssl/t1_lib.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: t1_lib.c,v 1.204 2025/01/18 14:17:05 tb Exp $ */ | 1 | /* $OpenBSD: t1_lib.c,v 1.207 2025/12/04 21:16:17 beck Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -151,6 +151,7 @@ tls1_clear(SSL *s) | |||
| 151 | } | 151 | } |
| 152 | 152 | ||
| 153 | struct supported_group { | 153 | struct supported_group { |
| 154 | uint16_t group_id; | ||
| 154 | int nid; | 155 | int nid; |
| 155 | int bits; | 156 | int bits; |
| 156 | }; | 157 | }; |
| @@ -160,122 +161,156 @@ struct supported_group { | |||
| 160 | * https://www.iana.org/assignments/tls-parameters/#tls-parameters-8 | 161 | * https://www.iana.org/assignments/tls-parameters/#tls-parameters-8 |
| 161 | */ | 162 | */ |
| 162 | static const struct supported_group nid_list[] = { | 163 | static const struct supported_group nid_list[] = { |
| 163 | [1] = { | 164 | { |
| 165 | .group_id = 1, | ||
| 164 | .nid = NID_sect163k1, | 166 | .nid = NID_sect163k1, |
| 165 | .bits = 80, | 167 | .bits = 80, |
| 166 | }, | 168 | }, |
| 167 | [2] = { | 169 | { |
| 170 | .group_id = 2, | ||
| 168 | .nid = NID_sect163r1, | 171 | .nid = NID_sect163r1, |
| 169 | .bits = 80, | 172 | .bits = 80, |
| 170 | }, | 173 | }, |
| 171 | [3] = { | 174 | { |
| 175 | .group_id = 3, | ||
| 172 | .nid = NID_sect163r2, | 176 | .nid = NID_sect163r2, |
| 173 | .bits = 80, | 177 | .bits = 80, |
| 174 | }, | 178 | }, |
| 175 | [4] = { | 179 | { |
| 180 | .group_id = 4, | ||
| 176 | .nid = NID_sect193r1, | 181 | .nid = NID_sect193r1, |
| 177 | .bits = 80, | 182 | .bits = 80, |
| 178 | }, | 183 | }, |
| 179 | [5] = { | 184 | { |
| 185 | .group_id = 5, | ||
| 180 | .nid = NID_sect193r2, | 186 | .nid = NID_sect193r2, |
| 181 | .bits = 80, | 187 | .bits = 80, |
| 182 | }, | 188 | }, |
| 183 | [6] = { | 189 | { |
| 190 | .group_id = 6, | ||
| 184 | .nid = NID_sect233k1, | 191 | .nid = NID_sect233k1, |
| 185 | .bits = 112, | 192 | .bits = 112, |
| 186 | }, | 193 | }, |
| 187 | [7] = { | 194 | { |
| 195 | .group_id = 7, | ||
| 188 | .nid = NID_sect233r1, | 196 | .nid = NID_sect233r1, |
| 189 | .bits = 112, | 197 | .bits = 112, |
| 190 | }, | 198 | }, |
| 191 | [8] = { | 199 | { |
| 200 | .group_id = 8, | ||
| 192 | .nid = NID_sect239k1, | 201 | .nid = NID_sect239k1, |
| 193 | .bits = 112, | 202 | .bits = 112, |
| 194 | }, | 203 | }, |
| 195 | [9] = { | 204 | { |
| 205 | .group_id = 9, | ||
| 196 | .nid = NID_sect283k1, | 206 | .nid = NID_sect283k1, |
| 197 | .bits = 128, | 207 | .bits = 128, |
| 198 | }, | 208 | }, |
| 199 | [10] = { | 209 | { |
| 210 | .group_id = 10, | ||
| 200 | .nid = NID_sect283r1, | 211 | .nid = NID_sect283r1, |
| 201 | .bits = 128, | 212 | .bits = 128, |
| 202 | }, | 213 | }, |
| 203 | [11] = { | 214 | { |
| 215 | .group_id = 11, | ||
| 204 | .nid = NID_sect409k1, | 216 | .nid = NID_sect409k1, |
| 205 | .bits = 192, | 217 | .bits = 192, |
| 206 | }, | 218 | }, |
| 207 | [12] = { | 219 | { |
| 220 | .group_id = 12, | ||
| 208 | .nid = NID_sect409r1, | 221 | .nid = NID_sect409r1, |
| 209 | .bits = 192, | 222 | .bits = 192, |
| 210 | }, | 223 | }, |
| 211 | [13] = { | 224 | { |
| 225 | .group_id = 13, | ||
| 212 | .nid = NID_sect571k1, | 226 | .nid = NID_sect571k1, |
| 213 | .bits = 256, | 227 | .bits = 256, |
| 214 | }, | 228 | }, |
| 215 | [14] = { | 229 | { |
| 230 | .group_id = 14, | ||
| 216 | .nid = NID_sect571r1, | 231 | .nid = NID_sect571r1, |
| 217 | .bits = 256, | 232 | .bits = 256, |
| 218 | }, | 233 | }, |
| 219 | [15] = { | 234 | { |
| 235 | .group_id = 15, | ||
| 220 | .nid = NID_secp160k1, | 236 | .nid = NID_secp160k1, |
| 221 | .bits = 80, | 237 | .bits = 80, |
| 222 | }, | 238 | }, |
| 223 | [16] = { | 239 | { |
| 240 | .group_id = 16, | ||
| 224 | .nid = NID_secp160r1, | 241 | .nid = NID_secp160r1, |
| 225 | .bits = 80, | 242 | .bits = 80, |
| 226 | }, | 243 | }, |
| 227 | [17] = { | 244 | { |
| 245 | .group_id = 17, | ||
| 228 | .nid = NID_secp160r2, | 246 | .nid = NID_secp160r2, |
| 229 | .bits = 80, | 247 | .bits = 80, |
| 230 | }, | 248 | }, |
| 231 | [18] = { | 249 | { |
| 250 | .group_id = 18, | ||
| 232 | .nid = NID_secp192k1, | 251 | .nid = NID_secp192k1, |
| 233 | .bits = 80, | 252 | .bits = 80, |
| 234 | }, | 253 | }, |
| 235 | [19] = { | 254 | { |
| 255 | .group_id = 19, | ||
| 236 | .nid = NID_X9_62_prime192v1, /* aka secp192r1 */ | 256 | .nid = NID_X9_62_prime192v1, /* aka secp192r1 */ |
| 237 | .bits = 80, | 257 | .bits = 80, |
| 238 | }, | 258 | }, |
| 239 | [20] = { | 259 | { |
| 260 | .group_id = 20, | ||
| 240 | .nid = NID_secp224k1, | 261 | .nid = NID_secp224k1, |
| 241 | .bits = 112, | 262 | .bits = 112, |
| 242 | }, | 263 | }, |
| 243 | [21] = { | 264 | { |
| 265 | .group_id = 21, | ||
| 244 | .nid = NID_secp224r1, | 266 | .nid = NID_secp224r1, |
| 245 | .bits = 112, | 267 | .bits = 112, |
| 246 | }, | 268 | }, |
| 247 | [22] = { | 269 | { |
| 270 | .group_id = 22, | ||
| 248 | .nid = NID_secp256k1, | 271 | .nid = NID_secp256k1, |
| 249 | .bits = 128, | 272 | .bits = 128, |
| 250 | }, | 273 | }, |
| 251 | [23] = { | 274 | { |
| 275 | .group_id = 23, | ||
| 252 | .nid = NID_X9_62_prime256v1, /* aka secp256r1 */ | 276 | .nid = NID_X9_62_prime256v1, /* aka secp256r1 */ |
| 253 | .bits = 128, | 277 | .bits = 128, |
| 254 | }, | 278 | }, |
| 255 | [24] = { | 279 | { |
| 280 | .group_id = 24, | ||
| 256 | .nid = NID_secp384r1, | 281 | .nid = NID_secp384r1, |
| 257 | .bits = 192, | 282 | .bits = 192, |
| 258 | }, | 283 | }, |
| 259 | [25] = { | 284 | { |
| 285 | .group_id = 25, | ||
| 260 | .nid = NID_secp521r1, | 286 | .nid = NID_secp521r1, |
| 261 | .bits = 256, | 287 | .bits = 256, |
| 262 | }, | 288 | }, |
| 263 | [26] = { | 289 | { |
| 290 | .group_id = 26, | ||
| 264 | .nid = NID_brainpoolP256r1, | 291 | .nid = NID_brainpoolP256r1, |
| 265 | .bits = 128, | 292 | .bits = 128, |
| 266 | }, | 293 | }, |
| 267 | [27] = { | 294 | { |
| 295 | .group_id = 27, | ||
| 268 | .nid = NID_brainpoolP384r1, | 296 | .nid = NID_brainpoolP384r1, |
| 269 | .bits = 192, | 297 | .bits = 192, |
| 270 | }, | 298 | }, |
| 271 | [28] = { | 299 | { |
| 300 | .group_id = 28, | ||
| 272 | .nid = NID_brainpoolP512r1, | 301 | .nid = NID_brainpoolP512r1, |
| 273 | .bits = 256, | 302 | .bits = 256, |
| 274 | }, | 303 | }, |
| 275 | [29] = { | 304 | { |
| 305 | .group_id = 29, | ||
| 276 | .nid = NID_X25519, | 306 | .nid = NID_X25519, |
| 277 | .bits = 128, | 307 | .bits = 128, |
| 278 | }, | 308 | }, |
| 309 | { | ||
| 310 | .group_id = 4588, | ||
| 311 | .nid = NID_X25519MLKEM768, | ||
| 312 | .bits = 128, | ||
| 313 | }, | ||
| 279 | }; | 314 | }; |
| 280 | 315 | ||
| 281 | #define NID_LIST_LEN (sizeof(nid_list) / sizeof(nid_list[0])) | 316 | #define NID_LIST_LEN (sizeof(nid_list) / sizeof(nid_list[0])) |
| @@ -292,41 +327,21 @@ static const uint8_t ecformats_default[] = { | |||
| 292 | TLSEXT_ECPOINTFORMAT_uncompressed, | 327 | TLSEXT_ECPOINTFORMAT_uncompressed, |
| 293 | }; | 328 | }; |
| 294 | 329 | ||
| 295 | #if 0 | 330 | static const uint16_t ecgroups_tls12_client_default[] = { |
| 296 | static const uint16_t ecgroups_list[] = { | ||
| 297 | 29, /* X25519 (29) */ | 331 | 29, /* X25519 (29) */ |
| 298 | 14, /* sect571r1 (14) */ | 332 | 23, /* secp256r1 (23) */ |
| 299 | 13, /* sect571k1 (13) */ | ||
| 300 | 25, /* secp521r1 (25) */ | ||
| 301 | 28, /* brainpoolP512r1 (28) */ | ||
| 302 | 11, /* sect409k1 (11) */ | ||
| 303 | 12, /* sect409r1 (12) */ | ||
| 304 | 27, /* brainpoolP384r1 (27) */ | ||
| 305 | 24, /* secp384r1 (24) */ | 333 | 24, /* secp384r1 (24) */ |
| 306 | 9, /* sect283k1 (9) */ | 334 | 25, /* secp521r1 (25) */ |
| 307 | 10, /* sect283r1 (10) */ | 335 | }; |
| 308 | 26, /* brainpoolP256r1 (26) */ | 336 | |
| 309 | 22, /* secp256k1 (22) */ | 337 | static const uint16_t ecgroups_tls12_server_default[] = { |
| 338 | 29, /* X25519 (29) */ | ||
| 310 | 23, /* secp256r1 (23) */ | 339 | 23, /* secp256r1 (23) */ |
| 311 | 8, /* sect239k1 (8) */ | 340 | 24, /* secp384r1 (24) */ |
| 312 | 6, /* sect233k1 (6) */ | ||
| 313 | 7, /* sect233r1 (7) */ | ||
| 314 | 20, /* secp224k1 (20) */ | ||
| 315 | 21, /* secp224r1 (21) */ | ||
| 316 | 4, /* sect193r1 (4) */ | ||
| 317 | 5, /* sect193r2 (5) */ | ||
| 318 | 18, /* secp192k1 (18) */ | ||
| 319 | 19, /* secp192r1 (19) */ | ||
| 320 | 1, /* sect163k1 (1) */ | ||
| 321 | 2, /* sect163r1 (2) */ | ||
| 322 | 3, /* sect163r2 (3) */ | ||
| 323 | 15, /* secp160k1 (15) */ | ||
| 324 | 16, /* secp160r1 (16) */ | ||
| 325 | 17, /* secp160r2 (17) */ | ||
| 326 | }; | 341 | }; |
| 327 | #endif | ||
| 328 | 342 | ||
| 329 | static const uint16_t ecgroups_client_default[] = { | 343 | static const uint16_t ecgroups_client_default[] = { |
| 344 | 4588, /* X25519MLKEM768 (4588) */ | ||
| 330 | 29, /* X25519 (29) */ | 345 | 29, /* X25519 (29) */ |
| 331 | 23, /* secp256r1 (23) */ | 346 | 23, /* secp256r1 (23) */ |
| 332 | 24, /* secp384r1 (24) */ | 347 | 24, /* secp384r1 (24) */ |
| @@ -334,23 +349,47 @@ static const uint16_t ecgroups_client_default[] = { | |||
| 334 | }; | 349 | }; |
| 335 | 350 | ||
| 336 | static const uint16_t ecgroups_server_default[] = { | 351 | static const uint16_t ecgroups_server_default[] = { |
| 352 | 4588, /* X25519MLKEM768 (4588) */ | ||
| 337 | 29, /* X25519 (29) */ | 353 | 29, /* X25519 (29) */ |
| 338 | 23, /* secp256r1 (23) */ | 354 | 23, /* secp256r1 (23) */ |
| 339 | 24, /* secp384r1 (24) */ | 355 | 24, /* secp384r1 (24) */ |
| 340 | }; | 356 | }; |
| 341 | 357 | ||
| 358 | static const struct supported_group * | ||
| 359 | tls1_supported_group_by_id(uint16_t group_id) | ||
| 360 | { | ||
| 361 | int i; | ||
| 362 | |||
| 363 | for (i = 0; i < NID_LIST_LEN; i++) { | ||
| 364 | if (group_id == nid_list[i].group_id) | ||
| 365 | return &nid_list[i]; | ||
| 366 | } | ||
| 367 | |||
| 368 | return NULL; | ||
| 369 | } | ||
| 370 | |||
| 371 | static const struct supported_group * | ||
| 372 | tls1_supported_group_by_nid(int nid) | ||
| 373 | { | ||
| 374 | int i; | ||
| 375 | |||
| 376 | for (i = 0; i < NID_LIST_LEN; i++) { | ||
| 377 | if (nid == nid_list[i].nid) | ||
| 378 | return &nid_list[i]; | ||
| 379 | } | ||
| 380 | |||
| 381 | return NULL; | ||
| 382 | } | ||
| 383 | |||
| 342 | int | 384 | int |
| 343 | tls1_ec_group_id2nid(uint16_t group_id, int *out_nid) | 385 | tls1_ec_group_id2nid(uint16_t group_id, int *out_nid) |
| 344 | { | 386 | { |
| 345 | int nid; | 387 | const struct supported_group *sg; |
| 346 | |||
| 347 | if (group_id >= NID_LIST_LEN) | ||
| 348 | return 0; | ||
| 349 | 388 | ||
| 350 | if ((nid = nid_list[group_id].nid) == 0) | 389 | if ((sg = tls1_supported_group_by_id(group_id)) == NULL) |
| 351 | return 0; | 390 | return 0; |
| 352 | 391 | ||
| 353 | *out_nid = nid; | 392 | *out_nid = sg->nid; |
| 354 | 393 | ||
| 355 | return 1; | 394 | return 1; |
| 356 | } | 395 | } |
| @@ -358,15 +397,12 @@ tls1_ec_group_id2nid(uint16_t group_id, int *out_nid) | |||
| 358 | int | 397 | int |
| 359 | tls1_ec_group_id2bits(uint16_t group_id, int *out_bits) | 398 | tls1_ec_group_id2bits(uint16_t group_id, int *out_bits) |
| 360 | { | 399 | { |
| 361 | int bits; | 400 | const struct supported_group *sg; |
| 362 | 401 | ||
| 363 | if (group_id >= NID_LIST_LEN) | 402 | if ((sg = tls1_supported_group_by_id(group_id)) == NULL) |
| 364 | return 0; | 403 | return 0; |
| 365 | 404 | ||
| 366 | if ((bits = nid_list[group_id].bits) == 0) | 405 | *out_bits = sg->bits; |
| 367 | return 0; | ||
| 368 | |||
| 369 | *out_bits = bits; | ||
| 370 | 406 | ||
| 371 | return 1; | 407 | return 1; |
| 372 | } | 408 | } |
| @@ -374,19 +410,14 @@ tls1_ec_group_id2bits(uint16_t group_id, int *out_bits) | |||
| 374 | int | 410 | int |
| 375 | tls1_ec_nid2group_id(int nid, uint16_t *out_group_id) | 411 | tls1_ec_nid2group_id(int nid, uint16_t *out_group_id) |
| 376 | { | 412 | { |
| 377 | uint16_t group_id; | 413 | const struct supported_group *sg; |
| 378 | 414 | ||
| 379 | if (nid == 0) | 415 | if ((sg = tls1_supported_group_by_nid(nid)) == NULL) |
| 380 | return 0; | 416 | return 0; |
| 381 | 417 | ||
| 382 | for (group_id = 0; group_id < NID_LIST_LEN; group_id++) { | 418 | *out_group_id = sg->group_id; |
| 383 | if (nid_list[group_id].nid == nid) { | ||
| 384 | *out_group_id = group_id; | ||
| 385 | return 1; | ||
| 386 | } | ||
| 387 | } | ||
| 388 | 419 | ||
| 389 | return 0; | 420 | return 1; |
| 390 | } | 421 | } |
| 391 | 422 | ||
| 392 | /* | 423 | /* |
| @@ -433,11 +464,21 @@ tls1_get_group_list(const SSL *s, int client_groups, const uint16_t **pgroups, | |||
| 433 | return; | 464 | return; |
| 434 | 465 | ||
| 435 | if (!s->server) { | 466 | if (!s->server) { |
| 436 | *pgroups = ecgroups_client_default; | 467 | if (s->s3->hs.our_max_tls_version >= TLS1_3_VERSION) { |
| 437 | *pgroupslen = sizeof(ecgroups_client_default) / 2; | 468 | *pgroups = ecgroups_client_default; |
| 469 | *pgroupslen = sizeof(ecgroups_client_default) / 2; | ||
| 470 | } else { | ||
| 471 | *pgroups = ecgroups_tls12_client_default; | ||
| 472 | *pgroupslen = sizeof(ecgroups_tls12_client_default) / 2; | ||
| 473 | } | ||
| 438 | } else { | 474 | } else { |
| 439 | *pgroups = ecgroups_server_default; | 475 | if (s->s3->hs.our_max_tls_version >= TLS1_3_VERSION) { |
| 440 | *pgroupslen = sizeof(ecgroups_server_default) / 2; | 476 | *pgroups = ecgroups_server_default; |
| 477 | *pgroupslen = sizeof(ecgroups_server_default) / 2; | ||
| 478 | } else { | ||
| 479 | *pgroups = ecgroups_tls12_server_default; | ||
| 480 | *pgroupslen = sizeof(ecgroups_tls12_server_default) / 2; | ||
| 481 | } | ||
| 441 | } | 482 | } |
| 442 | } | 483 | } |
| 443 | 484 | ||
diff --git a/src/lib/libssl/tls13_client.c b/src/lib/libssl/tls13_client.c index 901b38f860..21d3960796 100644 --- a/src/lib/libssl/tls13_client.c +++ b/src/lib/libssl/tls13_client.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: tls13_client.c,v 1.104 2024/07/22 14:47:15 jsing Exp $ */ | 1 | /* $OpenBSD: tls13_client.c,v 1.106 2025/12/04 21:16:17 beck Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Copyright (c) 2018, 2019 Joel Sing <jsing@openbsd.org> | 3 | * Copyright (c) 2018, 2019 Joel Sing <jsing@openbsd.org> |
| 4 | * | 4 | * |
| @@ -53,9 +53,21 @@ tls13_client_init(struct tls13_ctx *ctx) | |||
| 53 | return 0; | 53 | return 0; |
| 54 | if ((ctx->hs->key_share = tls_key_share_new(groups[0])) == NULL) | 54 | if ((ctx->hs->key_share = tls_key_share_new(groups[0])) == NULL) |
| 55 | return 0; | 55 | return 0; |
| 56 | if (!tls_key_share_generate(ctx->hs->key_share)) | 56 | if (!tls_key_share_client_generate(ctx->hs->key_share)) |
| 57 | return 0; | 57 | return 0; |
| 58 | 58 | ||
| 59 | /* | ||
| 60 | * Generate a second key share prediction if we have another | ||
| 61 | * supported group | ||
| 62 | */ | ||
| 63 | if (groups_len > 1) { | ||
| 64 | if ((ctx->hs->tls13.key_share = tls_key_share_new(groups[1])) == | ||
| 65 | NULL) | ||
| 66 | return 0; | ||
| 67 | if (!tls_key_share_client_generate(ctx->hs->tls13.key_share)) | ||
| 68 | return 0; | ||
| 69 | } | ||
| 70 | |||
| 59 | arc4random_buf(s->s3->client_random, SSL3_RANDOM_SIZE); | 71 | arc4random_buf(s->s3->client_random, SSL3_RANDOM_SIZE); |
| 60 | 72 | ||
| 61 | /* | 73 | /* |
| @@ -450,7 +462,7 @@ tls13_client_hello_retry_send(struct tls13_ctx *ctx, CBB *cbb) | |||
| 450 | if ((ctx->hs->key_share = | 462 | if ((ctx->hs->key_share = |
| 451 | tls_key_share_new(ctx->hs->tls13.server_group)) == NULL) | 463 | tls_key_share_new(ctx->hs->tls13.server_group)) == NULL) |
| 452 | return 0; | 464 | return 0; |
| 453 | if (!tls_key_share_generate(ctx->hs->key_share)) | 465 | if (!tls_key_share_client_generate(ctx->hs->key_share)) |
| 454 | return 0; | 466 | return 0; |
| 455 | 467 | ||
| 456 | if (!tls13_client_hello_build(ctx, cbb)) | 468 | if (!tls13_client_hello_build(ctx, cbb)) |
diff --git a/src/lib/libssl/tls13_lib.c b/src/lib/libssl/tls13_lib.c index 331a3ad1a7..c3470b2931 100644 --- a/src/lib/libssl/tls13_lib.c +++ b/src/lib/libssl/tls13_lib.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: tls13_lib.c,v 1.77 2024/01/27 14:23:51 jsing Exp $ */ | 1 | /* $OpenBSD: tls13_lib.c,v 1.78 2025/06/07 10:25:12 tb Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Copyright (c) 2018, 2019 Joel Sing <jsing@openbsd.org> | 3 | * Copyright (c) 2018, 2019 Joel Sing <jsing@openbsd.org> |
| 4 | * Copyright (c) 2019 Bob Beck <beck@openbsd.org> | 4 | * Copyright (c) 2019 Bob Beck <beck@openbsd.org> |
| @@ -538,7 +538,7 @@ tls13_ctx_new(int mode, SSL *ssl) | |||
| 538 | { | 538 | { |
| 539 | struct tls13_ctx *ctx = NULL; | 539 | struct tls13_ctx *ctx = NULL; |
| 540 | 540 | ||
| 541 | if ((ctx = calloc(sizeof(struct tls13_ctx), 1)) == NULL) | 541 | if ((ctx = calloc(1, sizeof(*ctx))) == NULL) |
| 542 | goto err; | 542 | goto err; |
| 543 | 543 | ||
| 544 | ctx->hs = &ssl->s3->hs; | 544 | ctx->hs = &ssl->s3->hs; |
diff --git a/src/lib/libssl/tls13_server.c b/src/lib/libssl/tls13_server.c index 63b7d92093..604dab4cba 100644 --- a/src/lib/libssl/tls13_server.c +++ b/src/lib/libssl/tls13_server.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: tls13_server.c,v 1.109 2024/07/22 14:47:15 jsing Exp $ */ | 1 | /* $OpenBSD: tls13_server.c,v 1.112 2025/12/04 21:03:42 beck Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Copyright (c) 2019, 2020 Joel Sing <jsing@openbsd.org> | 3 | * Copyright (c) 2019, 2020 Joel Sing <jsing@openbsd.org> |
| 4 | * Copyright (c) 2020 Bob Beck <beck@openbsd.org> | 4 | * Copyright (c) 2020 Bob Beck <beck@openbsd.org> |
| @@ -327,7 +327,7 @@ tls13_client_hello_recv(struct tls13_ctx *ctx, CBS *cbs) | |||
| 327 | } | 327 | } |
| 328 | 328 | ||
| 329 | static int | 329 | static int |
| 330 | tls13_server_hello_build(struct tls13_ctx *ctx, CBB *cbb, int hrr) | 330 | tls13_server_hello_build(struct tls13_ctx *ctx, CBB *cbb) |
| 331 | { | 331 | { |
| 332 | uint16_t tlsext_msg_type = SSL_TLSEXT_MSG_SH; | 332 | uint16_t tlsext_msg_type = SSL_TLSEXT_MSG_SH; |
| 333 | const uint8_t *server_random; | 333 | const uint8_t *server_random; |
| @@ -338,7 +338,7 @@ tls13_server_hello_build(struct tls13_ctx *ctx, CBB *cbb, int hrr) | |||
| 338 | cipher = SSL_CIPHER_get_value(ctx->hs->cipher); | 338 | cipher = SSL_CIPHER_get_value(ctx->hs->cipher); |
| 339 | server_random = s->s3->server_random; | 339 | server_random = s->s3->server_random; |
| 340 | 340 | ||
| 341 | if (hrr) { | 341 | if (ctx->hs->tls13.hrr) { |
| 342 | server_random = tls13_hello_retry_request_hash; | 342 | server_random = tls13_hello_retry_request_hash; |
| 343 | tlsext_msg_type = SSL_TLSEXT_MSG_HRR; | 343 | tlsext_msg_type = SSL_TLSEXT_MSG_HRR; |
| 344 | } | 344 | } |
| @@ -437,8 +437,6 @@ tls13_server_engage_record_protection(struct tls13_ctx *ctx) | |||
| 437 | int | 437 | int |
| 438 | tls13_server_hello_retry_request_send(struct tls13_ctx *ctx, CBB *cbb) | 438 | tls13_server_hello_retry_request_send(struct tls13_ctx *ctx, CBB *cbb) |
| 439 | { | 439 | { |
| 440 | int nid; | ||
| 441 | |||
| 442 | ctx->hs->tls13.hrr = 1; | 440 | ctx->hs->tls13.hrr = 1; |
| 443 | 441 | ||
| 444 | if (!tls13_synthetic_handshake_message(ctx)) | 442 | if (!tls13_synthetic_handshake_message(ctx)) |
| @@ -446,12 +444,10 @@ tls13_server_hello_retry_request_send(struct tls13_ctx *ctx, CBB *cbb) | |||
| 446 | 444 | ||
| 447 | if (ctx->hs->key_share != NULL) | 445 | if (ctx->hs->key_share != NULL) |
| 448 | return 0; | 446 | return 0; |
| 449 | if (!tls1_get_supported_group(ctx->ssl, &nid)) | 447 | if (ctx->hs->tls13.server_group == 0) |
| 450 | return 0; | ||
| 451 | if (!tls1_ec_nid2group_id(nid, &ctx->hs->tls13.server_group)) | ||
| 452 | return 0; | 448 | return 0; |
| 453 | 449 | ||
| 454 | if (!tls13_server_hello_build(ctx, cbb, 1)) | 450 | if (!tls13_server_hello_build(ctx, cbb)) |
| 455 | return 0; | 451 | return 0; |
| 456 | 452 | ||
| 457 | return 1; | 453 | return 1; |
| @@ -506,14 +502,12 @@ tls13_server_hello_send(struct tls13_ctx *ctx, CBB *cbb) | |||
| 506 | { | 502 | { |
| 507 | if (ctx->hs->key_share == NULL) | 503 | if (ctx->hs->key_share == NULL) |
| 508 | return 0; | 504 | return 0; |
| 509 | if (!tls_key_share_generate(ctx->hs->key_share)) | 505 | if (!tls_key_share_server_generate(ctx->hs->key_share)) |
| 510 | return 0; | 506 | return 0; |
| 511 | if (!tls13_servername_process(ctx)) | 507 | if (!tls13_servername_process(ctx)) |
| 512 | return 0; | 508 | return 0; |
| 513 | 509 | ||
| 514 | ctx->hs->tls13.server_group = 0; | 510 | if (!tls13_server_hello_build(ctx, cbb)) |
| 515 | |||
| 516 | if (!tls13_server_hello_build(ctx, cbb, 0)) | ||
| 517 | return 0; | 511 | return 0; |
| 518 | 512 | ||
| 519 | return 1; | 513 | return 1; |
diff --git a/src/lib/libssl/tls_internal.h b/src/lib/libssl/tls_internal.h index 84edde8474..3d8d6aa940 100644 --- a/src/lib/libssl/tls_internal.h +++ b/src/lib/libssl/tls_internal.h | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: tls_internal.h,v 1.10 2022/11/10 18:06:37 jsing Exp $ */ | 1 | /* $OpenBSD: tls_internal.h,v 1.11 2025/12/04 21:03:42 beck Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Copyright (c) 2018, 2019, 2021 Joel Sing <jsing@openbsd.org> | 3 | * Copyright (c) 2018, 2019, 2021 Joel Sing <jsing@openbsd.org> |
| 4 | * | 4 | * |
| @@ -85,12 +85,15 @@ int tls_key_share_nid(struct tls_key_share *ks); | |||
| 85 | void tls_key_share_set_key_bits(struct tls_key_share *ks, size_t key_bits); | 85 | void tls_key_share_set_key_bits(struct tls_key_share *ks, size_t key_bits); |
| 86 | int tls_key_share_set_dh_params(struct tls_key_share *ks, DH *dh_params); | 86 | int tls_key_share_set_dh_params(struct tls_key_share *ks, DH *dh_params); |
| 87 | int tls_key_share_peer_pkey(struct tls_key_share *ks, EVP_PKEY *pkey); | 87 | int tls_key_share_peer_pkey(struct tls_key_share *ks, EVP_PKEY *pkey); |
| 88 | int tls_key_share_generate(struct tls_key_share *ks); | 88 | int tls_key_share_client_generate(struct tls_key_share *ks); |
| 89 | int tls_key_share_server_generate(struct tls_key_share *ks); | ||
| 89 | int tls_key_share_params(struct tls_key_share *ks, CBB *cbb); | 90 | int tls_key_share_params(struct tls_key_share *ks, CBB *cbb); |
| 90 | int tls_key_share_public(struct tls_key_share *ks, CBB *cbb); | 91 | int tls_key_share_public(struct tls_key_share *ks, CBB *cbb); |
| 91 | int tls_key_share_peer_params(struct tls_key_share *ks, CBS *cbs, | 92 | int tls_key_share_peer_params(struct tls_key_share *ks, CBS *cbs, |
| 92 | int *decode_error, int *invalid_params); | 93 | int *decode_error, int *invalid_params); |
| 93 | int tls_key_share_peer_public(struct tls_key_share *ks, CBS *cbs, | 94 | int tls_key_share_server_peer_public(struct tls_key_share *ks, CBS *cbs, |
| 95 | int *decode_error, int *invalid_key); | ||
| 96 | int tls_key_share_client_peer_public(struct tls_key_share *ks, CBS *cbs, | ||
| 94 | int *decode_error, int *invalid_key); | 97 | int *decode_error, int *invalid_key); |
| 95 | int tls_key_share_derive(struct tls_key_share *ks, uint8_t **shared_key, | 98 | int tls_key_share_derive(struct tls_key_share *ks, uint8_t **shared_key, |
| 96 | size_t *shared_key_len); | 99 | size_t *shared_key_len); |
diff --git a/src/lib/libssl/tls_key_share.c b/src/lib/libssl/tls_key_share.c index cf7b1da262..9e04cb7b75 100644 --- a/src/lib/libssl/tls_key_share.c +++ b/src/lib/libssl/tls_key_share.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: tls_key_share.c,v 1.8 2022/11/26 16:08:56 tb Exp $ */ | 1 | /* $OpenBSD: tls_key_share.c,v 1.10 2026/01/01 12:47:52 tb Exp $ */ |
| 2 | /* | 2 | /* |
| 3 | * Copyright (c) 2020, 2021 Joel Sing <jsing@openbsd.org> | 3 | * Copyright (c) 2020, 2021 Joel Sing <jsing@openbsd.org> |
| 4 | * | 4 | * |
| @@ -21,6 +21,7 @@ | |||
| 21 | #include <openssl/dh.h> | 21 | #include <openssl/dh.h> |
| 22 | #include <openssl/ec.h> | 22 | #include <openssl/ec.h> |
| 23 | #include <openssl/evp.h> | 23 | #include <openssl/evp.h> |
| 24 | #include <openssl/mlkem.h> | ||
| 24 | 25 | ||
| 25 | #include "bytestring.h" | 26 | #include "bytestring.h" |
| 26 | #include "ssl_local.h" | 27 | #include "ssl_local.h" |
| @@ -40,6 +41,19 @@ struct tls_key_share { | |||
| 40 | uint8_t *x25519_public; | 41 | uint8_t *x25519_public; |
| 41 | uint8_t *x25519_private; | 42 | uint8_t *x25519_private; |
| 42 | uint8_t *x25519_peer_public; | 43 | uint8_t *x25519_peer_public; |
| 44 | |||
| 45 | uint8_t *mlkem_public; | ||
| 46 | size_t mlkem_public_len; | ||
| 47 | MLKEM_private_key *mlkem_private; | ||
| 48 | MLKEM_public_key *mlkem_peer_public; | ||
| 49 | |||
| 50 | /* The ciphertext from MLKEM_encap. */ | ||
| 51 | uint8_t *mlkem_encap; | ||
| 52 | size_t mlkem_encap_len; | ||
| 53 | |||
| 54 | /* The shared secret from an ML-KEM encapsulation. */ | ||
| 55 | uint8_t *mlkem_shared_secret; | ||
| 56 | size_t mlkem_shared_secret_len; | ||
| 43 | }; | 57 | }; |
| 44 | 58 | ||
| 45 | static struct tls_key_share * | 59 | static struct tls_key_share * |
| @@ -96,6 +110,12 @@ tls_key_share_free(struct tls_key_share *ks) | |||
| 96 | freezero(ks->x25519_private, X25519_KEY_LENGTH); | 110 | freezero(ks->x25519_private, X25519_KEY_LENGTH); |
| 97 | freezero(ks->x25519_peer_public, X25519_KEY_LENGTH); | 111 | freezero(ks->x25519_peer_public, X25519_KEY_LENGTH); |
| 98 | 112 | ||
| 113 | freezero(ks->mlkem_public, ks->mlkem_public_len); | ||
| 114 | MLKEM_private_key_free(ks->mlkem_private); | ||
| 115 | MLKEM_public_key_free(ks->mlkem_peer_public); | ||
| 116 | freezero(ks->mlkem_encap, ks->mlkem_encap_len); | ||
| 117 | freezero(ks->mlkem_shared_secret, ks->mlkem_shared_secret_len); | ||
| 118 | |||
| 99 | freezero(ks, sizeof(*ks)); | 119 | freezero(ks, sizeof(*ks)); |
| 100 | } | 120 | } |
| 101 | 121 | ||
| @@ -230,7 +250,73 @@ tls_key_share_generate_x25519(struct tls_key_share *ks) | |||
| 230 | return ret; | 250 | return ret; |
| 231 | } | 251 | } |
| 232 | 252 | ||
| 233 | int | 253 | static int |
| 254 | tls_key_share_generate_mlkem(struct tls_key_share *ks, int rank) | ||
| 255 | { | ||
| 256 | MLKEM_private_key *private = NULL; | ||
| 257 | uint8_t *public = NULL; | ||
| 258 | size_t p_len = 0; | ||
| 259 | int ret = 0; | ||
| 260 | |||
| 261 | if (ks->mlkem_public != NULL || ks->mlkem_private != NULL) | ||
| 262 | goto err; | ||
| 263 | |||
| 264 | if ((private = MLKEM_private_key_new(rank)) == NULL) | ||
| 265 | goto err; | ||
| 266 | |||
| 267 | if (!MLKEM_generate_key(private, &public, &p_len, NULL, NULL)) | ||
| 268 | goto err; | ||
| 269 | |||
| 270 | ks->mlkem_public = public; | ||
| 271 | ks->mlkem_public_len = p_len; | ||
| 272 | ks->mlkem_private = private; | ||
| 273 | public = NULL; | ||
| 274 | private = NULL; | ||
| 275 | |||
| 276 | ret = 1; | ||
| 277 | |||
| 278 | err: | ||
| 279 | freezero(public, p_len); | ||
| 280 | MLKEM_private_key_free(private); | ||
| 281 | |||
| 282 | return ret; | ||
| 283 | } | ||
| 284 | |||
| 285 | static int | ||
| 286 | tls_key_share_client_generate_mlkem768x25519(struct tls_key_share *ks) | ||
| 287 | { | ||
| 288 | if (!tls_key_share_generate_mlkem(ks, MLKEM768_RANK)) | ||
| 289 | return 0; | ||
| 290 | |||
| 291 | if (!tls_key_share_generate_x25519(ks)) | ||
| 292 | return 0; | ||
| 293 | |||
| 294 | return 1; | ||
| 295 | } | ||
| 296 | |||
| 297 | static int | ||
| 298 | tls_key_share_server_generate_mlkem768x25519(struct tls_key_share *ks) | ||
| 299 | { | ||
| 300 | if (ks->mlkem_private != NULL) | ||
| 301 | return 0; | ||
| 302 | |||
| 303 | /* The server side needs the client's parsed share */ | ||
| 304 | |||
| 305 | if (ks->x25519_peer_public == NULL) | ||
| 306 | return 0; | ||
| 307 | |||
| 308 | if (ks->mlkem_peer_public == NULL) | ||
| 309 | return 0; | ||
| 310 | |||
| 311 | if (!tls_key_share_generate_x25519(ks)) | ||
| 312 | return 0; | ||
| 313 | |||
| 314 | return MLKEM_encap(ks->mlkem_peer_public, &ks->mlkem_encap, | ||
| 315 | &ks->mlkem_encap_len, &ks->mlkem_shared_secret, | ||
| 316 | &ks->mlkem_shared_secret_len); | ||
| 317 | } | ||
| 318 | |||
| 319 | static int | ||
| 234 | tls_key_share_generate(struct tls_key_share *ks) | 320 | tls_key_share_generate(struct tls_key_share *ks) |
| 235 | { | 321 | { |
| 236 | if (ks->nid == NID_dhKeyAgreement) | 322 | if (ks->nid == NID_dhKeyAgreement) |
| @@ -242,6 +328,24 @@ tls_key_share_generate(struct tls_key_share *ks) | |||
| 242 | return tls_key_share_generate_ecdhe_ecp(ks); | 328 | return tls_key_share_generate_ecdhe_ecp(ks); |
| 243 | } | 329 | } |
| 244 | 330 | ||
| 331 | int | ||
| 332 | tls_key_share_client_generate(struct tls_key_share *ks) | ||
| 333 | { | ||
| 334 | if (ks->nid == NID_X25519MLKEM768) | ||
| 335 | return tls_key_share_client_generate_mlkem768x25519(ks); | ||
| 336 | |||
| 337 | return tls_key_share_generate(ks); | ||
| 338 | } | ||
| 339 | |||
| 340 | int | ||
| 341 | tls_key_share_server_generate(struct tls_key_share *ks) | ||
| 342 | { | ||
| 343 | if (ks->nid == NID_X25519MLKEM768) | ||
| 344 | return tls_key_share_server_generate_mlkem768x25519(ks); | ||
| 345 | |||
| 346 | return tls_key_share_generate(ks); | ||
| 347 | } | ||
| 348 | |||
| 245 | static int | 349 | static int |
| 246 | tls_key_share_params_dhe(struct tls_key_share *ks, CBB *cbb) | 350 | tls_key_share_params_dhe(struct tls_key_share *ks, CBB *cbb) |
| 247 | { | 351 | { |
| @@ -287,6 +391,47 @@ tls_key_share_public_x25519(struct tls_key_share *ks, CBB *cbb) | |||
| 287 | return CBB_add_bytes(cbb, ks->x25519_public, X25519_KEY_LENGTH); | 391 | return CBB_add_bytes(cbb, ks->x25519_public, X25519_KEY_LENGTH); |
| 288 | } | 392 | } |
| 289 | 393 | ||
| 394 | static int | ||
| 395 | tls_key_share_public_mlkem768x25519(struct tls_key_share *ks, CBB *cbb) | ||
| 396 | { | ||
| 397 | uint8_t *mlkem_part; | ||
| 398 | size_t mlkem_part_len; | ||
| 399 | |||
| 400 | if (ks->x25519_public == NULL) | ||
| 401 | return 0; | ||
| 402 | |||
| 403 | /* | ||
| 404 | * https://datatracker.ietf.org/doc/draft-ietf-tls-ecdhe-mlkem/ | ||
| 405 | * Section 3.1.2: | ||
| 406 | * The server's key exchange value is the concatenation of an | ||
| 407 | * ML-KEM ciphertext returned from encapsulation to the client's | ||
| 408 | * encapsulation key, and the server's ephemeral X25519 share. | ||
| 409 | */ | ||
| 410 | mlkem_part = ks->mlkem_encap; | ||
| 411 | mlkem_part_len = ks->mlkem_encap_len; | ||
| 412 | |||
| 413 | /* | ||
| 414 | * https://datatracker.ietf.org/doc/draft-ietf-tls-ecdhe-mlkem/ | ||
| 415 | * Section 3.1.1: | ||
| 416 | * The client's key_exchange value is the concatenation of the | ||
| 417 | * client's ML-KEM-768 encapsulation key and the client's X25519 | ||
| 418 | * ephemeral share. | ||
| 419 | */ | ||
| 420 | if (mlkem_part == NULL) { | ||
| 421 | mlkem_part = ks->mlkem_public; | ||
| 422 | mlkem_part_len = ks->mlkem_public_len; | ||
| 423 | } | ||
| 424 | |||
| 425 | if (mlkem_part == NULL) | ||
| 426 | return 0; | ||
| 427 | |||
| 428 | if (!CBB_add_bytes(cbb, mlkem_part, mlkem_part_len)) | ||
| 429 | return 0; | ||
| 430 | |||
| 431 | /* Both the client and server send their x25519 public keys. */ | ||
| 432 | return CBB_add_bytes(cbb, ks->x25519_public, X25519_KEY_LENGTH); | ||
| 433 | } | ||
| 434 | |||
| 290 | int | 435 | int |
| 291 | tls_key_share_public(struct tls_key_share *ks, CBB *cbb) | 436 | tls_key_share_public(struct tls_key_share *ks, CBB *cbb) |
| 292 | { | 437 | { |
| @@ -296,6 +441,9 @@ tls_key_share_public(struct tls_key_share *ks, CBB *cbb) | |||
| 296 | if (ks->nid == NID_X25519) | 441 | if (ks->nid == NID_X25519) |
| 297 | return tls_key_share_public_x25519(ks, cbb); | 442 | return tls_key_share_public_x25519(ks, cbb); |
| 298 | 443 | ||
| 444 | if (ks->nid == NID_X25519MLKEM768) | ||
| 445 | return tls_key_share_public_mlkem768x25519(ks, cbb); | ||
| 446 | |||
| 299 | return tls_key_share_public_ecdhe_ecp(ks, cbb); | 447 | return tls_key_share_public_ecdhe_ecp(ks, cbb); |
| 300 | } | 448 | } |
| 301 | 449 | ||
| @@ -325,7 +473,7 @@ tls_key_share_peer_params(struct tls_key_share *ks, CBS *cbs, | |||
| 325 | return 0; | 473 | return 0; |
| 326 | 474 | ||
| 327 | return tls_key_share_peer_params_dhe(ks, cbs, decode_error, | 475 | return tls_key_share_peer_params_dhe(ks, cbs, decode_error, |
| 328 | invalid_params); | 476 | invalid_params); |
| 329 | } | 477 | } |
| 330 | 478 | ||
| 331 | static int | 479 | static int |
| @@ -383,7 +531,91 @@ tls_key_share_peer_public_x25519(struct tls_key_share *ks, CBS *cbs, | |||
| 383 | return CBS_stow(cbs, &ks->x25519_peer_public, &out_len); | 531 | return CBS_stow(cbs, &ks->x25519_peer_public, &out_len); |
| 384 | } | 532 | } |
| 385 | 533 | ||
| 386 | int | 534 | static int |
| 535 | tls_key_share_client_peer_public_mlkem768x25519(struct tls_key_share *ks, | ||
| 536 | CBS *cbs, int *decode_error) | ||
| 537 | { | ||
| 538 | CBS x25519_cbs, mlkem_ciphertext_cbs; | ||
| 539 | size_t out_len; | ||
| 540 | |||
| 541 | if (ks->mlkem_shared_secret != NULL) | ||
| 542 | return 0; | ||
| 543 | |||
| 544 | if (ks->mlkem_private == NULL) | ||
| 545 | return 0; | ||
| 546 | |||
| 547 | if (!CBS_get_bytes(cbs, &mlkem_ciphertext_cbs, | ||
| 548 | MLKEM_private_key_ciphertext_length(ks->mlkem_private))) | ||
| 549 | return 0; | ||
| 550 | |||
| 551 | if (!CBS_get_bytes(cbs, &x25519_cbs, X25519_KEY_LENGTH)) | ||
| 552 | return 0; | ||
| 553 | |||
| 554 | if (CBS_len(cbs) != 0) | ||
| 555 | return 0; | ||
| 556 | |||
| 557 | if (!CBS_stow(&x25519_cbs, &ks->x25519_peer_public, &out_len)) | ||
| 558 | return 0; | ||
| 559 | |||
| 560 | if (!CBS_stow(&mlkem_ciphertext_cbs, &ks->mlkem_encap, &ks->mlkem_encap_len)) | ||
| 561 | return 0; | ||
| 562 | |||
| 563 | return 1; | ||
| 564 | } | ||
| 565 | |||
| 566 | static int | ||
| 567 | tls_key_share_server_peer_public_mlkem768x25519(struct tls_key_share *ks, | ||
| 568 | CBS *cbs, int *decode_error) | ||
| 569 | { | ||
| 570 | CBS x25519_cbs, mlkem768_cbs; | ||
| 571 | size_t out_len; | ||
| 572 | |||
| 573 | *decode_error = 0; | ||
| 574 | |||
| 575 | /* The server should not have an mlkem private key */ | ||
| 576 | if (ks->mlkem_private != NULL) | ||
| 577 | return 0; | ||
| 578 | |||
| 579 | if (ks->mlkem_shared_secret != NULL) | ||
| 580 | return 0; | ||
| 581 | |||
| 582 | if (ks->mlkem_peer_public != NULL) | ||
| 583 | return 0; | ||
| 584 | |||
| 585 | if (ks->x25519_peer_public != NULL) | ||
| 586 | return 0; | ||
| 587 | |||
| 588 | /* Nein, ist nur normal (1024 ist gigantisch) */ | ||
| 589 | if ((ks->mlkem_peer_public = MLKEM_public_key_new(MLKEM768_RANK)) == NULL) | ||
| 590 | goto err; | ||
| 591 | |||
| 592 | if (!CBS_get_bytes(cbs, &mlkem768_cbs, | ||
| 593 | MLKEM_public_key_encoded_length(ks->mlkem_peer_public))) | ||
| 594 | goto err; | ||
| 595 | |||
| 596 | if (!CBS_get_bytes(cbs, &x25519_cbs, X25519_KEY_LENGTH)) | ||
| 597 | goto err; | ||
| 598 | |||
| 599 | if (CBS_len(cbs) != 0) | ||
| 600 | goto err; | ||
| 601 | |||
| 602 | if (!CBS_stow(&x25519_cbs, &ks->x25519_peer_public, &out_len)) | ||
| 603 | goto err; | ||
| 604 | |||
| 605 | /* Poetische */ | ||
| 606 | if (!MLKEM_parse_public_key(ks->mlkem_peer_public, | ||
| 607 | CBS_data(&mlkem768_cbs), CBS_len(&mlkem768_cbs))) | ||
| 608 | goto err; | ||
| 609 | |||
| 610 | return 1; | ||
| 611 | |||
| 612 | err: | ||
| 613 | *decode_error = 1; | ||
| 614 | |||
| 615 | return 0; | ||
| 616 | } | ||
| 617 | |||
| 618 | static int | ||
| 387 | tls_key_share_peer_public(struct tls_key_share *ks, CBS *cbs, int *decode_error, | 619 | tls_key_share_peer_public(struct tls_key_share *ks, CBS *cbs, int *decode_error, |
| 388 | int *invalid_key) | 620 | int *invalid_key) |
| 389 | { | 621 | { |
| @@ -402,6 +634,30 @@ tls_key_share_peer_public(struct tls_key_share *ks, CBS *cbs, int *decode_error, | |||
| 402 | return tls_key_share_peer_public_ecdhe_ecp(ks, cbs); | 634 | return tls_key_share_peer_public_ecdhe_ecp(ks, cbs); |
| 403 | } | 635 | } |
| 404 | 636 | ||
| 637 | /* Called from client to process a server peer */ | ||
| 638 | int | ||
| 639 | tls_key_share_client_peer_public(struct tls_key_share *ks, CBS *cbs, | ||
| 640 | int *decode_error, int *invalid_key) | ||
| 641 | { | ||
| 642 | if (ks->nid == NID_X25519MLKEM768) | ||
| 643 | return tls_key_share_client_peer_public_mlkem768x25519(ks, cbs, | ||
| 644 | decode_error); | ||
| 645 | |||
| 646 | return tls_key_share_peer_public(ks, cbs, decode_error, invalid_key); | ||
| 647 | } | ||
| 648 | |||
| 649 | /* Called from server to process a client peer */ | ||
| 650 | int | ||
| 651 | tls_key_share_server_peer_public(struct tls_key_share *ks, CBS *cbs, | ||
| 652 | int *decode_error, int *invalid_key) | ||
| 653 | { | ||
| 654 | if (ks->nid == NID_X25519MLKEM768) | ||
| 655 | return tls_key_share_server_peer_public_mlkem768x25519(ks, cbs, | ||
| 656 | decode_error); | ||
| 657 | |||
| 658 | return tls_key_share_peer_public(ks, cbs, decode_error, invalid_key); | ||
| 659 | } | ||
| 660 | |||
| 405 | static int | 661 | static int |
| 406 | tls_key_share_derive_dhe(struct tls_key_share *ks, | 662 | tls_key_share_derive_dhe(struct tls_key_share *ks, |
| 407 | uint8_t **shared_key, size_t *shared_key_len) | 663 | uint8_t **shared_key, size_t *shared_key_len) |
| @@ -451,6 +707,65 @@ tls_key_share_derive_x25519(struct tls_key_share *ks, | |||
| 451 | return ret; | 707 | return ret; |
| 452 | } | 708 | } |
| 453 | 709 | ||
| 710 | /* | ||
| 711 | * https://datatracker.ietf.org/doc/draft-ietf-tls-ecdhe-mlkem/ | ||
| 712 | * Section 3.1.3: | ||
| 713 | * For X25519MLKEM768, the shared secret is the concatenation of the ML-KEM | ||
| 714 | * shared secret and the X25519 shared secret. | ||
| 715 | */ | ||
| 716 | static int | ||
| 717 | tls_key_share_derive_mlkem768x25519(struct tls_key_share *ks, | ||
| 718 | uint8_t **out_shared_key, size_t *out_shared_key_len) | ||
| 719 | { | ||
| 720 | uint8_t *x25519_shared_key; | ||
| 721 | CBB cbb; | ||
| 722 | |||
| 723 | memset(&cbb, 0, sizeof(cbb)); | ||
| 724 | |||
| 725 | if (ks->x25519_private == NULL) | ||
| 726 | goto err; | ||
| 727 | |||
| 728 | if (ks->x25519_peer_public == NULL) | ||
| 729 | goto err; | ||
| 730 | |||
| 731 | if (ks->mlkem_shared_secret == NULL) { | ||
| 732 | if (ks->mlkem_private == NULL) | ||
| 733 | goto err; | ||
| 734 | |||
| 735 | if (ks->mlkem_encap == NULL) | ||
| 736 | goto err; | ||
| 737 | |||
| 738 | if (!MLKEM_decap(ks->mlkem_private, ks->mlkem_encap, | ||
| 739 | MLKEM_private_key_ciphertext_length(ks->mlkem_private), | ||
| 740 | &ks->mlkem_shared_secret, &ks->mlkem_shared_secret_len)) | ||
| 741 | goto err; | ||
| 742 | } | ||
| 743 | |||
| 744 | if (!CBB_init(&cbb, ks->mlkem_shared_secret_len + X25519_KEY_LENGTH)) | ||
| 745 | goto err; | ||
| 746 | |||
| 747 | if (!CBB_add_bytes(&cbb, ks->mlkem_shared_secret, | ||
| 748 | ks->mlkem_shared_secret_len)) | ||
| 749 | goto err; | ||
| 750 | |||
| 751 | if (!CBB_add_space(&cbb, &x25519_shared_key, X25519_KEY_LENGTH)) | ||
| 752 | goto err; | ||
| 753 | |||
| 754 | if (!X25519(x25519_shared_key, ks->x25519_private, | ||
| 755 | ks->x25519_peer_public)) | ||
| 756 | goto err; | ||
| 757 | |||
| 758 | if (!CBB_finish(&cbb, out_shared_key, out_shared_key_len)) | ||
| 759 | goto err; | ||
| 760 | |||
| 761 | return 1; | ||
| 762 | |||
| 763 | err: | ||
| 764 | CBB_cleanup(&cbb); | ||
| 765 | |||
| 766 | return 0; | ||
| 767 | } | ||
| 768 | |||
| 454 | int | 769 | int |
| 455 | tls_key_share_derive(struct tls_key_share *ks, uint8_t **shared_key, | 770 | tls_key_share_derive(struct tls_key_share *ks, uint8_t **shared_key, |
| 456 | size_t *shared_key_len) | 771 | size_t *shared_key_len) |
| @@ -468,6 +783,10 @@ tls_key_share_derive(struct tls_key_share *ks, uint8_t **shared_key, | |||
| 468 | return tls_key_share_derive_x25519(ks, shared_key, | 783 | return tls_key_share_derive_x25519(ks, shared_key, |
| 469 | shared_key_len); | 784 | shared_key_len); |
| 470 | 785 | ||
| 786 | if (ks->nid == NID_X25519MLKEM768) | ||
| 787 | return tls_key_share_derive_mlkem768x25519(ks, shared_key, | ||
| 788 | shared_key_len); | ||
| 789 | |||
| 471 | return tls_key_share_derive_ecdhe_ecp(ks, shared_key, | 790 | return tls_key_share_derive_ecdhe_ecp(ks, shared_key, |
| 472 | shared_key_len); | 791 | shared_key_len); |
| 473 | } | 792 | } |
