mirror of
https://github.com/refraction-networking/utls.git
synced 2025-04-03 20:17:36 +03:00
crypto/tls: implement Extended Master Secret
All OpenSSL tests now test operation with EMS. To test a handshake *without* EMS we need to pass -Options=-ExtendedMasterSecret which is only available in OpenSSL 3.1, which breaks a number of other tests. Updates #43922 Change-Id: Ib9ac79a1d03fab6bfba5fe9cd66689cff661cda7 Reviewed-on: https://go-review.googlesource.com/c/go/+/497376 Run-TryBot: Filippo Valsorda <filippo@golang.org> TryBot-Result: Gopher Robot <gobot@golang.org> Reviewed-by: Roland Shoemaker <roland@golang.org> Auto-Submit: Filippo Valsorda <filippo@golang.org> Reviewed-by: Ian Lance Taylor <iant@google.com> Reviewed-by: Damien Neil <dneil@google.com>
This commit is contained in:
parent
1143de0f03
commit
d154b73cf1
120 changed files with 9366 additions and 9243 deletions
|
@ -474,6 +474,9 @@ func TestTLSUniqueMatches(t *testing.T) {
|
|||
if !bytes.Equal(conn.ConnectionState().TLSUnique, serverTLSUniquesValue) {
|
||||
t.Error("client and server channel bindings differ")
|
||||
}
|
||||
if serverTLSUniquesValue == nil || bytes.Equal(serverTLSUniquesValue, make([]byte, 12)) {
|
||||
t.Error("tls-unique is empty or zero")
|
||||
}
|
||||
conn.Close()
|
||||
|
||||
conn, err = Dial("tcp", ln.Addr().String(), clientConfig)
|
||||
|
@ -494,6 +497,9 @@ func TestTLSUniqueMatches(t *testing.T) {
|
|||
if !bytes.Equal(conn.ConnectionState().TLSUnique, serverTLSUniquesValue) {
|
||||
t.Error("client and server channel bindings differ when session resumption is used")
|
||||
}
|
||||
if serverTLSUniquesValue == nil || bytes.Equal(serverTLSUniquesValue, make([]byte, 12)) {
|
||||
t.Error("resumption tls-unique is empty or zero")
|
||||
}
|
||||
}
|
||||
|
||||
func TestVerifyHostname(t *testing.T) {
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue