mirror of
https://github.com/refraction-networking/utls.git
synced 2025-04-03 20:17:36 +03:00
crypto/tls: add support for Certificate Transparency
This change adds support for serving and receiving Signed Certificate Timestamps as described in RFC 6962. The server is now capable of serving SCTs listed in the Certificate structure. The client now asks for SCTs and, if any are received, they are exposed in the ConnectionState structure. Fixes #10201 Change-Id: Ib3adae98cb4f173bc85cec04d2bdd3aa0fec70bb Reviewed-on: https://go-review.googlesource.com/8988 Reviewed-by: Adam Langley <agl@golang.org> Run-TryBot: Adam Langley <agl@golang.org> Reviewed-by: Jonathan Rudenberg <jonathan@titanous.com>
This commit is contained in:
parent
06b29738e8
commit
cf04082452
31 changed files with 1106 additions and 779 deletions
75
testdata/Client-TLSv10-ECDHE-RSA-AES
vendored
75
testdata/Client-TLSv10-ECDHE-RSA-AES
vendored
|
@ -1,18 +1,19 @@
|
|||
>>> Flow 1 (client to server)
|
||||
00000000 16 03 01 00 79 01 00 00 75 03 03 00 00 00 00 00 |....y...u.......|
|
||||
00000000 16 03 01 00 7d 01 00 00 79 03 03 00 00 00 00 00 |....}...y.......|
|
||||
00000010 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
|
||||
00000020 00 00 00 00 00 00 00 00 00 00 00 00 00 1e c0 2f |.............../|
|
||||
00000030 c0 2b c0 30 c0 2c c0 11 c0 07 c0 13 c0 09 c0 14 |.+.0.,..........|
|
||||
00000040 c0 0a 00 05 00 2f 00 35 c0 12 00 0a 01 00 00 2e |...../.5........|
|
||||
00000040 c0 0a 00 05 00 2f 00 35 c0 12 00 0a 01 00 00 32 |...../.5.......2|
|
||||
00000050 00 05 00 05 01 00 00 00 00 00 0a 00 08 00 06 00 |................|
|
||||
00000060 17 00 18 00 19 00 0b 00 02 01 00 00 0d 00 0a 00 |................|
|
||||
00000070 08 04 01 04 03 02 01 02 03 ff 01 00 01 00 |..............|
|
||||
00000070 08 04 01 04 03 02 01 02 03 ff 01 00 01 00 00 12 |................|
|
||||
00000080 00 00 |..|
|
||||
>>> Flow 2 (server to client)
|
||||
00000000 16 03 01 00 59 02 00 00 55 03 01 52 5c cd ba 77 |....Y...U..R\..w|
|
||||
00000010 cd 8e 48 de c2 b6 d7 eb 88 c2 e3 b3 8e fd 36 37 |..H...........67|
|
||||
00000020 71 c6 79 43 89 13 48 99 98 dc 78 20 cd 26 72 7b |q.yC..H...x .&r{|
|
||||
00000030 84 c3 dd 55 e3 83 99 af da 65 a7 5f 10 ef 8b 3a |...U.....e._...:|
|
||||
00000040 4c 59 7b 11 d6 6a 61 68 d6 20 3c 3e c0 13 00 00 |LY{..jah. <>....|
|
||||
00000000 16 03 01 00 59 02 00 00 55 03 01 e7 24 a6 8c 53 |....Y...U...$..S|
|
||||
00000010 c3 bc fc 86 68 75 5c f7 36 0b b1 ff 7d 25 16 70 |....hu\.6...}%.p|
|
||||
00000020 18 a0 64 d8 9f 65 3b 3e 6b 48 52 20 7c 86 b4 4a |..d..e;>kHR |..J|
|
||||
00000030 64 b2 6b ee 72 d8 36 fb f5 5c e3 7e 1b 3a ff 69 |d.k.r.6..\.~.:.i|
|
||||
00000040 b7 3d 92 48 c7 a1 c6 9f 69 ab 8a 3d c0 13 00 00 |.=.H....i..=....|
|
||||
00000050 0d ff 01 00 01 00 00 0b 00 04 03 00 01 02 16 03 |................|
|
||||
00000060 01 02 be 0b 00 02 ba 00 02 b7 00 02 b4 30 82 02 |.............0..|
|
||||
00000070 b0 30 82 02 19 a0 03 02 01 02 02 09 00 85 b0 bb |.0..............|
|
||||
|
@ -58,40 +59,40 @@
|
|||
000002f0 5f 33 c4 b6 d8 c9 75 90 96 8c 0f 52 98 b5 cd 98 |_3....u....R....|
|
||||
00000300 1f 89 20 5f f2 a0 1c a3 1b 96 94 dd a9 fd 57 e9 |.. _..........W.|
|
||||
00000310 70 e8 26 6d 71 99 9b 26 6e 38 50 29 6c 90 a7 bd |p.&mq..&n8P)l...|
|
||||
00000320 d9 16 03 01 00 cb 0c 00 00 c7 03 00 17 41 04 25 |.............A.%|
|
||||
00000330 0b 65 90 de 1c eb d0 7c fe cb 71 2c 62 dd f9 7c |.e.....|..q,b..||
|
||||
00000340 bd bc f5 bd a9 79 df a1 38 36 2a 98 7b 5d ce 17 |.....y..86*.{]..|
|
||||
00000350 67 a7 71 b9 9e 0a f2 02 f4 f3 19 a6 96 bc 53 45 |g.q...........SE|
|
||||
00000360 2e e0 df f1 e6 50 8b a2 36 a1 e9 59 1e d2 8f 00 |.....P..6..Y....|
|
||||
00000370 80 5a c1 19 13 94 5e ee 89 33 4a 22 e6 5d fa bc |.Z....^..3J".]..|
|
||||
00000380 78 20 f2 5d 73 39 c9 84 1f e0 de 77 99 72 2b 77 |x .]s9.....w.r+w|
|
||||
00000390 58 f2 b6 a7 6e 3d e3 f9 95 b6 23 6e 27 36 45 f7 |X...n=....#n'6E.|
|
||||
000003a0 75 87 ff 4a 49 e1 d0 ea 83 52 97 b1 77 c6 00 8e |u..JI....R..w...|
|
||||
000003b0 62 af 4f d0 cd 5e a4 9b 2f 72 ca dc 87 96 6b 73 |b.O..^../r....ks|
|
||||
000003c0 08 2c a5 75 d8 9d d5 a3 ba 25 45 78 07 db f1 86 |.,.u.....%Ex....|
|
||||
000003d0 08 4a 56 26 9d da f6 10 43 74 c1 93 ae 89 17 f1 |.JV&....Ct......|
|
||||
000003e0 1c 22 10 15 30 81 47 78 25 de fe 30 6d da 7d 0f |."..0.Gx%..0m.}.|
|
||||
000003f0 36 16 03 01 00 04 0e 00 00 00 |6.........|
|
||||
00000320 d9 16 03 01 00 cb 0c 00 00 c7 03 00 17 41 04 33 |.............A.3|
|
||||
00000330 62 6e b1 57 74 80 ab 83 3a e0 8d ed e2 71 ae c0 |bn.Wt...:....q..|
|
||||
00000340 75 37 f1 61 dc c2 73 30 1d a8 4f 29 6d b3 49 7e |u7.a..s0..O)m.I~|
|
||||
00000350 57 3f 71 a1 8e c2 8d c9 c0 e3 c8 cc 57 dc 47 09 |W?q.........W.G.|
|
||||
00000360 0c 48 81 97 3e 7b 3a ad f9 64 9f 23 9e de 37 00 |.H..>{:..d.#..7.|
|
||||
00000370 80 03 83 0e 5f fe 54 4f e1 c7 d3 41 5f 27 75 82 |...._.TO...A_'u.|
|
||||
00000380 40 f8 7c 9c 68 15 f0 7a bc 0c 4e 40 6c a3 64 e4 |@.|.h..z..N@l.d.|
|
||||
00000390 92 54 e4 01 fd 60 2a 24 30 22 0e 5d a8 52 9e 74 |.T...`*$0".].R.t|
|
||||
000003a0 eb b6 48 70 e0 7a ad 63 65 36 27 78 90 09 3b 23 |..Hp.z.ce6'x..;#|
|
||||
000003b0 4b 9c dc 5b c5 61 17 f3 0d fc b6 6c 7f 19 92 23 |K..[.a.....l...#|
|
||||
000003c0 c7 8e d8 b2 c0 18 e8 3c 08 0b 1d 59 99 00 98 d2 |.......<...Y....|
|
||||
000003d0 35 78 be 19 a6 ac 7e 0e 91 35 17 d4 c7 88 41 ce |5x....~..5....A.|
|
||||
000003e0 a2 60 98 b2 94 1f a6 05 20 06 90 21 d3 7e a6 e6 |.`...... ..!.~..|
|
||||
000003f0 c6 16 03 01 00 04 0e 00 00 00 |..........|
|
||||
>>> Flow 3 (client to server)
|
||||
00000000 16 03 01 00 46 10 00 00 42 41 04 1e 18 37 ef 0d |....F...BA...7..|
|
||||
00000010 19 51 88 35 75 71 b5 e5 54 5b 12 2e 8f 09 67 fd |.Q.5uq..T[....g.|
|
||||
00000020 a7 24 20 3e b2 56 1c ce 97 28 5e f8 2b 2d 4f 9e |.$ >.V...(^.+-O.|
|
||||
00000030 f1 07 9f 6c 4b 5b 83 56 e2 32 42 e9 58 b6 d7 49 |...lK[.V.2B.X..I|
|
||||
00000040 a6 b5 68 1a 41 03 56 6b dc 5a 89 14 03 01 00 01 |..h.A.Vk.Z......|
|
||||
00000050 01 16 03 01 00 30 fa 12 bd 34 6f ca 53 e6 9a 77 |.....0...4o.S..w|
|
||||
00000060 ec 0c de 3e 96 ab fe ac 52 7b 04 61 21 29 ab 86 |...>....R{.a!)..|
|
||||
00000070 7a 0b 4f 4b 9a f2 2d fe 89 96 07 a5 20 38 71 8b |z.OK..-..... 8q.|
|
||||
00000080 2e 76 9c 4e de 26 |.v.N.&|
|
||||
00000050 01 16 03 01 00 30 12 12 1b 40 63 b8 fb 97 a4 5f |.....0...@c...._|
|
||||
00000060 07 91 4b 01 f0 e8 d4 8b c2 c4 0a a2 bd ee 0d 05 |..K.............|
|
||||
00000070 b1 38 99 9e e8 ae df a9 37 fc 8d 31 05 bd ea 93 |.8......7..1....|
|
||||
00000080 fa ff a5 82 74 07 |....t.|
|
||||
>>> Flow 4 (server to client)
|
||||
00000000 14 03 01 00 01 01 16 03 01 00 30 54 5d dc 18 0e |..........0T]...|
|
||||
00000010 76 37 48 8c 06 e6 6c 26 6d af 3d 57 fa 57 4f 6b |v7H...l&m.=W.WOk|
|
||||
00000020 3d 00 e5 d6 81 ac 86 ae 1c 82 9c 08 4d 37 fd fc |=...........M7..|
|
||||
00000030 27 d4 38 1e 28 8e 2b 0e 50 23 80 |'.8.(.+.P#.|
|
||||
00000000 14 03 01 00 01 01 16 03 01 00 30 27 e5 f7 a2 69 |..........0'...i|
|
||||
00000010 55 61 87 32 46 be d0 41 f2 8f 8b 19 52 61 d2 2e |Ua.2F..A....Ra..|
|
||||
00000020 28 63 fb 45 37 43 cc 88 25 5c 97 b9 03 3b 69 51 |(c.E7C..%\...;iQ|
|
||||
00000030 14 c5 bc 16 67 56 d7 30 37 c0 04 |....gV.07..|
|
||||
>>> Flow 5 (client to server)
|
||||
00000000 17 03 01 00 20 28 98 f6 dd a7 6f 74 c6 5c 6d 54 |.... (....ot.\mT|
|
||||
00000010 8a 69 99 c8 db 88 73 9e 94 a6 d7 81 9e be 5f ba |.i....s......._.|
|
||||
00000020 9e 6d 46 72 be 17 03 01 00 20 a9 d1 38 e1 eb 0f |.mFr..... ..8...|
|
||||
00000030 7a fd c7 81 12 8b 5e 8e 4e e8 e2 8b 40 af 74 e3 |z.....^.N...@.t.|
|
||||
00000040 80 6d 52 40 13 d5 d4 a0 d9 29 15 03 01 00 20 7c |.mR@.....).... ||
|
||||
00000050 3f d7 27 13 2b d5 41 4e 17 93 10 79 20 f2 f6 21 |?.'.+.AN...y ..!|
|
||||
00000060 c7 21 08 f4 bc 5f 97 61 46 2e 4f 35 86 15 79 |.!..._.aF.O5..y|
|
||||
00000000 17 03 01 00 20 e4 46 36 a5 57 c8 70 6c 0a b0 ed |.... .F6.W.pl...|
|
||||
00000010 52 23 d6 39 7b ea 14 51 86 7e 59 8c af 66 26 2b |R#.9{..Q.~Y..f&+|
|
||||
00000020 cd d0 73 f2 2a 17 03 01 00 20 47 4f 0c fb 3e 9b |..s.*.... GO..>.|
|
||||
00000030 d2 2c 29 90 37 07 38 27 43 93 5c 72 b7 35 01 8c |.,).7.8'C.\r.5..|
|
||||
00000040 05 23 13 c3 04 9f 45 a2 ca d3 15 03 01 00 20 33 |.#....E....... 3|
|
||||
00000050 6d 4f f3 16 0f 9f a0 01 ea ac 04 16 0d b1 dd a7 |mO..............|
|
||||
00000060 48 55 29 f9 6f 84 ff 6c d7 24 a9 b5 4c 6d dd |HU).o..l.$..Lm.|
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue