7.2 KiB
module mbedtls
Contents
- new_ssl_conn
- new_ssl_listener
- new_sslcerts
- new_sslcerts_from_file
- new_sslcerts_in_memory
- C.mbedtls_ctr_drbg_context
- C.mbedtls_entropy_context
- C.mbedtls_net_context
- C.mbedtls_pk_context
- C.mbedtls_ssl_config
- C.mbedtls_ssl_context
- C.mbedtls_ssl_recv_t
- C.mbedtls_ssl_recv_timeout_t
- C.mbedtls_ssl_send_t
- C.mbedtls_x509_crl
- C.mbedtls_x509_crt
- SSLCerts
- SSLConn
- SSLConnectConfig
- SSLListener
new_ssl_conn
fn new_ssl_conn(config SSLConnectConfig) !&SSLConn
new_ssl_conn returns a new SSLConn with the given config.
new_ssl_listener
fn new_ssl_listener(saddr string, config SSLConnectConfig) !&SSLListener
create a new SSLListener binding to saddr
new_sslcerts
fn new_sslcerts() &SSLCerts
new_sslcerts initializes and returns a pair of SSL certificates and key
new_sslcerts_from_file
fn new_sslcerts_from_file(verify string, cert string, cert_key string) !&SSLCerts
new_sslcerts_from_file creates a new pair of SSL certificates, given their paths on the filesystem.
new_sslcerts_in_memory
fn new_sslcerts_in_memory(verify string, cert string, cert_key string) !&SSLCerts
new_sslcerts_in_memory creates a pair of SSL certificates, given their contents (not paths).
C.mbedtls_ctr_drbg_context
struct C.mbedtls_ctr_drbg_context {}
C.mbedtls_entropy_context
struct C.mbedtls_entropy_context {}
C.mbedtls_net_context
struct C.mbedtls_net_context {
mut:
fd int
}
C.mbedtls_pk_context
struct C.mbedtls_pk_context {}
C.mbedtls_ssl_config
struct C.mbedtls_ssl_config {}
C.mbedtls_ssl_context
struct C.mbedtls_ssl_context {}
C.mbedtls_ssl_recv_t
struct C.mbedtls_ssl_recv_t {}
C.mbedtls_ssl_recv_timeout_t
struct C.mbedtls_ssl_recv_timeout_t {}
C.mbedtls_ssl_send_t
struct C.mbedtls_ssl_send_t {}
C.mbedtls_x509_crl
struct C.mbedtls_x509_crl {}
C.mbedtls_x509_crt
struct C.mbedtls_x509_crt {}
SSLCerts
struct SSLCerts {
pub mut:
cacert C.mbedtls_x509_crt
client_cert C.mbedtls_x509_crt
client_key C.mbedtls_pk_context
}
SSLCerts represents a pair of CA and client certificates + key
cleanup
fn (mut c SSLCerts) cleanup()
cleanup frees the SSL certificates
SSLConn
struct SSLConn {
pub:
config SSLConnectConfig
pub mut:
server_fd C.mbedtls_net_context
ssl C.mbedtls_ssl_context
conf C.mbedtls_ssl_config
certs &SSLCerts = unsafe { nil }
handle int
duration time.Duration
opened bool
ip string
owns_socket bool
}
SSLConn is the current connection
close
fn (mut s SSLConn) close() !
close terminates the ssl connection and does cleanup
shutdown
fn (mut s SSLConn) shutdown() !
shutdown terminates the ssl connection and does cleanup
connect
fn (mut s SSLConn) connect(mut tcp_conn net.TcpConn, hostname string) !
connect sets up an ssl connection on an existing TCP connection
dial
fn (mut s SSLConn) dial(hostname string, port int) !
dial opens an ssl connection on hostname:port
addr
fn (s &SSLConn) addr() !net.Addr
addr retrieves the local ip address and port number for this connection
peer_addr
fn (s &SSLConn) peer_addr() !net.Addr
peer_addr retrieves the ip address and port number used by the peer
socket_read_into_ptr
fn (mut s SSLConn) socket_read_into_ptr(buf_ptr &u8, len int) !int
socket_read_into_ptr reads len bytes into buf
read
fn (mut s SSLConn) read(mut buffer []u8) !int
read reads data from the ssl connection into buffer
write_ptr
fn (mut s SSLConn) write_ptr(bytes &u8, len int) !int
write_ptr writes len bytes from bytes to the ssl connection
write
fn (mut s SSLConn) write(bytes []u8) !int
write writes data from bytes to the ssl connection
write_string
fn (mut s SSLConn) write_string(str string) !int
write_string writes a string to the ssl connection
SSLConnectConfig
struct SSLConnectConfig {
pub:
verify string // the path to a rootca.pem file, containing trusted CA certificate(s)
cert string // the path to a cert.pem file, containing client certificate(s) for the request
cert_key string // the path to a key.pem file, containing private keys for the client certificate(s)
validate bool // set this to true, if you want to stop requests, when their certificates are found to be invalid
in_memory_verification bool // if true, verify, cert, and cert_key are read from memory, not from a file
get_certificate ?fn (mut SSLListener, string) !&SSLCerts
}
SSLListener
struct SSLListener {
saddr string
config SSLConnectConfig
mut:
server_fd C.mbedtls_net_context
ssl C.mbedtls_ssl_context
conf C.mbedtls_ssl_config
certs &SSLCerts = unsafe { nil }
opened bool
// handle int
// duration time.Duration
}
SSLListener listens on a TCP port and accepts connection secured with TLS
shutdown
fn (mut l SSLListener) shutdown() !
finish the listener and clean up resources
accept
fn (mut l SSLListener) accept() !&SSLConn
accepts a new connection and returns a SSLConn of the connected client