OpenSSL CVS Repository
http://cvs.openssl.org/
____________________________________________________________
________________
Server: cvs.openssl.org Name: Dr.
Stephen Henson
Root: /v/openssl/cvs Email: steve openssl.org
Module: openssl Date:
23-Aug-2007 13:34:48
Branch: HEAD Handle:
2007082312344701
Modified files:
openssl/apps s_client.c s_server.c
openssl/doc/apps s_client.pod s_server.pod
Log:
Docs and usage messages for RFC4507bis support.
Summary:
Revision Changes Path
1.105 +2 -0 openssl/apps/s_client.c
1.121 +2 -0 openssl/apps/s_server.c
1.16 +25 -0 openssl/doc/apps/s_client.pod
1.16 +10 -0 openssl/doc/apps/s_server.pod
____________________________________________________________
________________
patch -p0 <<' .'
Index: openssl/apps/s_client.c
============================================================
================
$ cvs diff -u -r1.104 -r1.105 s_client.c
--- openssl/apps/s_client.c 12 Aug 2007 17:44:27
-0000 1.104
+++ openssl/apps/s_client.c 23 Aug 2007 11:34:47
-0000 1.105
 -326,6 +326,8 
BIO_printf(bio_err," -rand file%cfile%c...n",
LIST_SEPARATOR_CHAR, LIST_SEPARATOR_CHAR);
#ifndef OPENSSL_NO_TLSEXT
BIO_printf(bio_err," -servername host - Set TLS
extension servername in ClientHellon");
+ BIO_printf(bio_err," -tlsextdebug - hex dump
of all TLS extensions receivedn");
+ BIO_printf(bio_err," -no_ticket - disable
use of RFC4507bis session ticketsn");
#endif
}
 .
patch -p0 <<' .'
Index: openssl/apps/s_server.c
============================================================
================
$ cvs diff -u -r1.120 -r1.121 s_server.c
--- openssl/apps/s_server.c 12 Aug 2007 17:44:27
-0000 1.120
+++ openssl/apps/s_server.c 23 Aug 2007 11:34:47
-0000 1.121
 -474,6 +474,8 
BIO_printf(bio_err," (default is
%s)n",TEST_CERT2);
BIO_printf(bio_err," -key2 arg - Private Key
file to use for servername, in cert file ifn");
BIO_printf(bio_err," not specified
(default is %s)n",TEST_CERT2);
+ BIO_printf(bio_err," -tlsextdebug - hex dump of
all TLS extensions receivedn");
+ BIO_printf(bio_err," -no_ticket - disable use of
RFC4507bis session ticketsn");
#endif
}
 .
patch -p0 <<' .'
Index: openssl/doc/apps/s_client.pod
============================================================
================
$ cvs diff -u -r1.15 -r1.16 s_client.pod
--- openssl/doc/apps/s_client.pod 16 Feb 2007 18:12:16
-0000 1.15
+++ openssl/doc/apps/s_client.pod 23 Aug 2007 11:34:48
-0000 1.16
 -38,6 +38,10 
[B<-cipher cipherlist>]
[B<-starttls protocol>]
[B<-engine id>]
+[B<-tlsextdebug>]
+[B<-no_ticket>]
+[B<-sess_out filename>]
+[B<-sess_in filename>]
[B<-rand file(s)>]
=head1 DESCRIPTION
 -196,6 +200,23 
B<protocol> is a keyword for the intended protocol.
Currently, the only
supported keywords are "smtp",
"pop3", "imap", and "ftp".
+=item B<-tlsextdebug>
+
+print out a hex dump of any TLS extensions received from
the server.
+
+=item B<-no_ticket>
+
+disable RFC4507bis session ticket support.
+
+=item B<-sess_out filename>
+
+output SSL session to B<filename>
+
+=item B<-sess_in sess.pem>
+
+load SSL session from B<filename>. The client will
attempt to resume a
+connection from this session.
+
=item B<-engine id>
specifying an engine (by it's unique B<id> string)
will cause B<s_client>
 -256,6 +277,10 
If there are problems verifying a server certificate then
the
B<-showcerts> option can be used to show the whole
chain.
+Since the SSLv23 client hello cannot include compression
methods or extensions
+these will only be supported if its use is disabled, for
example by using the
+B<-no_sslv2> option.
+
=head1 BUGS
Because this program has a lot of options and also
because some of
 .
patch -p0 <<' .'
Index: openssl/doc/apps/s_server.pod
============================================================
================
$ cvs diff -u -r1.15 -r1.16 s_server.pod
--- openssl/doc/apps/s_server.pod 10 Mar 2006 23:06:15
-0000 1.15
+++ openssl/doc/apps/s_server.pod 23 Aug 2007 11:34:48
-0000 1.16
 -48,6 +48,8 
[B<-WWW>]
[B<-HTTP>]
[B<-engine id>]
+[B<-tlsextdebug>]
+[B<-no_ticket>]
[B<-id_prefix arg>]
[B<-rand file(s)>]
 -215,6 +217,14 
the preference order, the order of the server cipherlist
irrelevant. See
the B<ciphers> command for more information.
+=item B<-tlsextdebug>
+
+print out a hex dump of any TLS extensions received from
the server.
+
+=item B<-no_ticket>
+
+disable RFC4507bis session ticket support.
+
=item B<-www>
sends a status message back to the client when it
connects. This includes
 .
____________________________________________________________
__________
OpenSSL Project http://www.openssl.org
CVS Repository Commit List
openssl-cvs openssl.org
Automated List Manager
majordomo openssl.org
|