keylog.h (2392B)
1 #ifndef HEADER_CURL_KEYLOG_H 2 #define HEADER_CURL_KEYLOG_H 3 /*************************************************************************** 4 * _ _ ____ _ 5 * Project ___| | | | _ \| | 6 * / __| | | | |_) | | 7 * | (__| |_| | _ <| |___ 8 * \___|\___/|_| \_\_____| 9 * 10 * Copyright (C) Daniel Stenberg, <daniel@haxx.se>, et al. 11 * 12 * This software is licensed as described in the file COPYING, which 13 * you should have received as part of this distribution. The terms 14 * are also available at https://curl.se/docs/copyright.html. 15 * 16 * You may opt to use, copy, modify, merge, publish, distribute and/or sell 17 * copies of the Software, and permit persons to whom the Software is 18 * furnished to do so, under the terms of the COPYING file. 19 * 20 * This software is distributed on an "AS IS" basis, WITHOUT WARRANTY OF ANY 21 * KIND, either express or implied. 22 * 23 * SPDX-License-Identifier: curl 24 * 25 ***************************************************************************/ 26 #include "../curl_setup.h" 27 28 #define KEYLOG_LABEL_MAXLEN (sizeof("CLIENT_HANDSHAKE_TRAFFIC_SECRET") - 1) 29 30 #define CLIENT_RANDOM_SIZE 32 31 32 /* 33 * The master secret in TLS 1.2 and before is always 48 bytes. In TLS 1.3, the 34 * secret size depends on the cipher suite's hash function which is 32 bytes 35 * for SHA-256 and 48 bytes for SHA-384. 36 */ 37 #define SECRET_MAXLEN 48 38 39 /* 40 * Opens the TLS key log file if requested by the user. The SSLKEYLOGFILE 41 * environment variable specifies the output file. 42 */ 43 void Curl_tls_keylog_open(void); 44 45 /* 46 * Closes the TLS key log file if not already. 47 */ 48 void Curl_tls_keylog_close(void); 49 50 /* 51 * Returns true if the user successfully enabled the TLS key log file. 52 */ 53 bool Curl_tls_keylog_enabled(void); 54 55 /* 56 * Appends a key log file entry. 57 * Returns true iff the key log file is open and a valid entry was provided. 58 */ 59 bool Curl_tls_keylog_write(const char *label, 60 const unsigned char client_random[32], 61 const unsigned char *secret, size_t secretlen); 62 63 /* 64 * Appends a line to the key log file, ensure it is terminated by an LF. 65 * Returns true iff the key log file is open and a valid line was provided. 66 */ 67 bool Curl_tls_keylog_write_line(const char *line); 68 69 #endif /* HEADER_CURL_KEYLOG_H */