2f9c9b9a22
1. Added the usual cipher suite changes for the new suite. 2. Added a build option, WOLFSSL_ALT_TEST_STRINGS, for testing against GnuTLS. It wants to receive strings with newlines. 3. Updated the test configs for the new suite. Tested against GnuTLS's client and server using the options: $ gnutls-cli --priority "NONE:+VERS-TLS-ALL:+AEAD:+ECDHE-ECDSA:+AES-128-CCM:+SIGN-ALL:+COMP-NULL:+CURVE-ALL:+CTYPE-X509" --x509cafile=./certs/server-ecc.pem --no-ca-verification -p 11111 localhost $ gnutls-serv --echo --x509keyfile=./certs/ecc-key.pem --x509certfile=./certs/server-ecc.pem --port=11111 -a --priority "NONE:+VERS-TLS-ALL:+AEAD:+ECDHE-ECDSA:+AES-128-CCM:+SIGN-ALL:+COMP-NULL:+CURVE-ALL:+CTYPE-X509" To talk to GnuTLS, wolfSSL also needed the supported curves option enabled.
1112 lines
16 KiB
Plaintext
1112 lines
16 KiB
Plaintext
# server DTLSv1 DHE-RSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 2
|
|
-l DHE-RSA-CHACHA20-POLY1305
|
|
|
|
# client DTLSv1 DHE-RSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 2
|
|
-l DHE-RSA-CHACHA20-POLY1305
|
|
|
|
# server DTLSv1 ECDHE-RSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-CHACHA20-POLY1305
|
|
|
|
# client DTLSv1 ECDHE-RSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-CHACHA20-POLY1305
|
|
|
|
# server DTLSv1 ECDHE-EDCSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-CHACHA20-POLY1305
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1 ECDHE-ECDSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-CHACHA20-POLY1305
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 DHE-RSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-l DHE-RSA-CHACHA20-POLY1305
|
|
|
|
# client DTLSv1.2 DHE-RSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-l DHE-RSA-CHACHA20-POLY1305
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-CHACHA20-POLY1305
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-CHACHA20-POLY1305
|
|
|
|
# server DTLSv1.2 ECDHE-EDCSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-CHACHA20-POLY1305
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-CHACHA20-POLY1305
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server TLSv1.2 DHE-PSK-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-s
|
|
-l DHE-PSK-CHACHA20-POLY1305
|
|
|
|
# client TLSv1.2 DHE-PSK-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-s
|
|
-l DHE-PSK-CHACHA20-POLY1305
|
|
|
|
# server TLSv1.2 ECDHE-PSK-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-s
|
|
-l ECDHE-PSK-CHACHA20-POLY1305
|
|
|
|
# client TLSv1.2 ECDHE-PSK-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-s
|
|
-l ECDHE-PSK-CHACHA20-POLY1305
|
|
|
|
# server TLSv1.2 PSK-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-s
|
|
-l PSK-CHACHA20-POLY1305
|
|
|
|
# client TLSv1.2 PSK-CHACHA20-POLY1305
|
|
-u
|
|
-v 3
|
|
-s
|
|
-l PSK-CHACHA20-POLY1305
|
|
|
|
# server DTLSv1.2 DHE-RSA-CHACHA20-POLY1305-OLD
|
|
-u
|
|
-v 3
|
|
-l DHE-RSA-CHACHA20-POLY1305-OLD
|
|
|
|
# client DTLSv1.2 DHE-RSA-CHACHA20-POLY1305-OLD
|
|
-u
|
|
-v 3
|
|
-l DHE-RSA-CHACHA20-POLY1305-OLD
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-CHACHA20-POLY1305-OLD
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-CHACHA20-POLY1305-OLD
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-CHACHA20-POLY1305-OLD
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-CHACHA20-POLY1305-OLD
|
|
|
|
# server DTLSv1.2 ECDHE-EDCSA-CHACHA20-POLY1305-OLD
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-CHACHA20-POLY1305-OLD
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305-OLD
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-CHACHA20-POLY1305-OLD
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1 RC4-SHA
|
|
-u
|
|
-v 2
|
|
-l RC4-SHA
|
|
|
|
# client DTLSv1 RC4-SHA
|
|
-u
|
|
-v 2
|
|
-l RC4-SHA
|
|
|
|
# server DTLSv1.2 RC4-SHA
|
|
-u
|
|
-v 3
|
|
-l RC4-SHA
|
|
|
|
# client DTLSv1.2 RC4-SHA
|
|
-u
|
|
-v 3
|
|
-l RC4-SHA
|
|
|
|
# server DTLSv1 IDEA-CBC-SHA
|
|
-u
|
|
-v 2
|
|
-l IDEA-CBC-SHA
|
|
|
|
# client DTLSv1 IDEA-CBC-SHA
|
|
-u
|
|
-v 2
|
|
-l IDEA-CBC-SHA
|
|
|
|
# server DTLSv1 DES-CBC3-SHA
|
|
-u
|
|
-v 2
|
|
-l DES-CBC3-SHA
|
|
|
|
# client DTLSv1 DES-CBC3-SHA
|
|
-u
|
|
-v 2
|
|
-l DES-CBC3-SHA
|
|
|
|
# server DTLSv1.2 DES-CBC3-SHA
|
|
-u
|
|
-v 3
|
|
-l DES-CBC3-SHA
|
|
|
|
# client DTLSv1.2 DES-CBC3-SHA
|
|
-u
|
|
-v 3
|
|
-l DES-CBC3-SHA
|
|
|
|
# server DTLSv1 AES128-SHA
|
|
-u
|
|
-v 2
|
|
-l AES128-SHA
|
|
|
|
# client DTLSv1 AES128-SHA
|
|
-u
|
|
-v 2
|
|
-l AES128-SHA
|
|
|
|
# server DTLSv1.2 AES128-SHA
|
|
-u
|
|
-v 3
|
|
-l AES128-SHA
|
|
|
|
# client DTLSv1.2 AES128-SHA
|
|
-u
|
|
-v 3
|
|
-l AES128-SHA
|
|
|
|
# server DTLSv1 AES256-SHA
|
|
-u
|
|
-v 2
|
|
-l AES256-SHA
|
|
|
|
# client DTLSv1 AES256-SHA
|
|
-u
|
|
-v 2
|
|
-l AES256-SHA
|
|
|
|
# server DTLSv1.2 AES256-SHA
|
|
-u
|
|
-v 3
|
|
-l AES256-SHA
|
|
|
|
# client DTLSv1.2 AES256-SHA
|
|
-u
|
|
-v 3
|
|
-l AES256-SHA
|
|
|
|
# server DTLSv1 AES128-SHA256
|
|
-u
|
|
-v 2
|
|
-l AES128-SHA256
|
|
|
|
# client DTLSv1 AES128-SHA256
|
|
-u
|
|
-v 2
|
|
-l AES128-SHA256
|
|
|
|
# server DTLSv1.2 AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l AES128-SHA256
|
|
|
|
# client DTLSv1.2 AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l AES128-SHA256
|
|
|
|
# server DTLSv1 AES256-SHA256
|
|
-u
|
|
-v 2
|
|
-l AES256-SHA256
|
|
|
|
# client DTLSv1 AES256-SHA256
|
|
-u
|
|
-v 2
|
|
-l AES256-SHA256
|
|
|
|
# server DTLSv1.2 AES256-SHA256
|
|
-u
|
|
-v 3
|
|
-l AES256-SHA256
|
|
|
|
# client DTLSv1.2 AES256-SHA256
|
|
-u
|
|
-v 3
|
|
-l AES256-SHA256
|
|
|
|
# server DTLSv1 ECDHE-RSA-RC4
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-RC4-SHA
|
|
|
|
# client DTLSv1 ECDHE-RSA-RC4
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-RC4-SHA
|
|
|
|
# server DTLSv1.1 ECDHE-RSA-DES3
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-DES-CBC3-SHA
|
|
|
|
# client DTLSv1.1 ECDHE-RSA-DES3
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-DES-CBC3-SHA
|
|
|
|
# server DTLSv1.1 ECDHE-RSA-AES128
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-AES128-SHA
|
|
|
|
# client DTLSv1.1 ECDHE-RSA-AES128
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-AES128-SHA
|
|
|
|
# server DTLSv1.1 ECDHE-RSA-AES256
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-AES256-SHA
|
|
|
|
# client DTLSv1.1 ECDHE-RSA-AES256
|
|
-u
|
|
-v 2
|
|
-l ECDHE-RSA-AES256-SHA
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-RC4
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-RC4-SHA
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-RC4
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-RC4-SHA
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-DES3
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-DES-CBC3-SHA
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-DES3
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-DES-CBC3-SHA
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-AES128
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES128-SHA
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-AES128
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES128-SHA
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES128-SHA256
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES128-SHA256
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-AES256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES256-SHA
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-AES256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES256-SHA
|
|
|
|
# server TLSv1 ECDHE-ECDSA-NULL-SHA
|
|
-u
|
|
-v 1
|
|
-l ECDHE-ECDSA-NULL-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client TLSv1 ECDHE-ECDSA-NULL-SHA
|
|
-u
|
|
-v 1
|
|
-l ECDHE-ECDSA-NULL-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server TLSv1.1 ECDHE-ECDSA-NULL-SHA
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-NULL-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client TLSv1 ECDHE-ECDSA-NULL-SHA
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-NULL-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server TLSv1.2 ECDHE-ECDSA-NULL-SHA
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-NULL-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client TLSv1.2 ECDHE-ECDSA-NULL-SHA
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-NULL-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.1 ECDHE-EDCSA-RC4
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-RC4-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDHE-ECDSA-RC4
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-RC4-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.1 ECDHE-ECDSA-DES3
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-DES-CBC3-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDHE-ECDSA-DES3
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-DES-CBC3-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.1 ECDHE-ECDSA-AES128
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-AES128-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDHE-ECDSA-AES128
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-AES128-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.1 ECDHE-ECDSA-AES256
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-AES256-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDHE-ECDSA-AES256
|
|
-u
|
|
-v 2
|
|
-l ECDHE-ECDSA-AES256-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-RC4
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-RC4-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-RC4
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-RC4-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-DES3
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-DES-CBC3-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-DES3
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-DES-CBC3-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES128
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES128
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-SHA256
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-SHA256
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES256-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES256-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.1 ECDH-RSA-RC4
|
|
-u
|
|
-v 2
|
|
-l ECDH-RSA-RC4-SHA
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDH-RSA-RC4
|
|
-u
|
|
-v 2
|
|
-l ECDH-RSA-RC4-SHA
|
|
|
|
# server DTLSv1.1 ECDH-RSA-DES3
|
|
-u
|
|
-v 2
|
|
-l ECDH-RSA-DES-CBC3-SHA
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDH-RSA-DES3
|
|
-u
|
|
-v 2
|
|
-l ECDH-RSA-DES-CBC3-SHA
|
|
|
|
# server DTLSv1.1 ECDH-RSA-AES128
|
|
-u
|
|
-v 2
|
|
-l ECDH-RSA-AES128-SHA
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDH-RSA-AES128
|
|
-u
|
|
-v 2
|
|
-l ECDH-RSA-AES128-SHA
|
|
|
|
# server DTLSv1.1 ECDH-RSA-AES256
|
|
-u
|
|
-v 2
|
|
-l ECDH-RSA-AES256-SHA
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDH-RSA-AES256
|
|
-u
|
|
-v 2
|
|
-l ECDH-RSA-AES256-SHA
|
|
|
|
# server DTLSv1.2 ECDH-RSA-RC4
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-RC4-SHA
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-RSA-RC4
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-RC4-SHA
|
|
|
|
# server DTLSv1.2 ECDH-RSA-DES3
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-DES-CBC3-SHA
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-RSA-DES3
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-DES-CBC3-SHA
|
|
|
|
# server DTLSv1.2 ECDH-RSA-AES128
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES128-SHA
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-RSA-AES128
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES128-SHA
|
|
|
|
# server DTLSv1.2 ECDH-RSA-AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES128-SHA256
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-RSA-AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES128-SHA256
|
|
|
|
# server DTLSv1.2 ECDH-RSA-AES256
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES256-SHA
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-RSA-AES256
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES256-SHA
|
|
|
|
# server DTLSv1.1 ECDH-EDCSA-RC4
|
|
-u
|
|
-v 2
|
|
-l ECDH-ECDSA-RC4-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDH-ECDSA-RC4
|
|
-u
|
|
-v 2
|
|
-l ECDH-ECDSA-RC4-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.1 ECDH-ECDSA-DES3
|
|
-u
|
|
-v 2
|
|
-l ECDH-ECDSA-DES-CBC3-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDH-ECDSA-DES3
|
|
-u
|
|
-v 2
|
|
-l ECDH-ECDSA-DES-CBC3-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.1 ECDH-ECDSA-AES128
|
|
-u
|
|
-v 2
|
|
-l ECDH-ECDSA-AES128-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDH-ECDSA-AES128
|
|
-u
|
|
-v 2
|
|
-l ECDH-ECDSA-AES128-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.1 ECDH-ECDSA-AES256
|
|
-u
|
|
-v 2
|
|
-l ECDH-ECDSA-AES256-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.1 ECDH-ECDSA-AES256
|
|
-u
|
|
-v 2
|
|
-l ECDH-ECDSA-AES256-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-RC4
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-RC4-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-ECDSA-RC4
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-RC4-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDH-ECDSA-DES3
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-DES-CBC3-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-ECDSA-DES3
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-DES-CBC3-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDH-ECDSA-AES128
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES128-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-ECDSA-AES128
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES128-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDH-ECDSA-AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES128-SHA256
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-ECDSA-AES128-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES128-SHA256
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDH-ECDSA-AES256
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES256-SHA
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-ECDSA-AES256
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES256-SHA
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-AES256-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES256-SHA384
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-AES256-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES256-SHA384
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES256-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES256-SHA384
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES256-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES256-SHA384
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDH-RSA-AES256-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES256-SHA384
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-RSA-AES256-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES256-SHA384
|
|
|
|
# server DTLSv1.2 ECDH-ECDSA-AES256-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES256-SHA384
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-ECDSA-AES256-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES256-SHA384
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server TLSv1 ECDHE-PSK-AES128-SHA256
|
|
-s
|
|
-u
|
|
-v 1
|
|
-l ECDHE-PSK-AES128-SHA256
|
|
|
|
# client TLSv1 ECDHE-PSK-AES128-SHA256
|
|
-s
|
|
-u
|
|
-v 1
|
|
-l ECDHE-PSK-AES128-SHA256
|
|
|
|
# server TLSv1.1 ECDHE-PSK-AES128-SHA256
|
|
-s
|
|
-u
|
|
-v 2
|
|
-l ECDHE-PSK-AES128-SHA256
|
|
|
|
# client TLSv1.1 ECDHE-PSK-AES128-SHA256
|
|
-s
|
|
-u
|
|
-v 2
|
|
-l ECDHE-PSK-AES128-SHA256
|
|
|
|
# server TLSv1.2 ECDHE-PSK-AES128-SHA256
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l ECDHE-PSK-AES128-SHA256
|
|
|
|
# client TLSv1.2 ECDHE-PSK-AES128-SHA256
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l ECDHE-PSK-AES128-SHA256
|
|
|
|
# server TLSv1 ECDHE-PSK-NULL-SHA256
|
|
-s
|
|
-u
|
|
-v 1
|
|
-l ECDHE-PSK-NULL-SHA256
|
|
|
|
# client TLSv1 ECDHE-PSK-NULL-SHA256
|
|
-s
|
|
-u
|
|
-v 1
|
|
-l ECDHE-PSK-NULL-SHA256
|
|
|
|
# server TLSv1.1 ECDHE-PSK-NULL-SHA256
|
|
-s
|
|
-u
|
|
-v 2
|
|
-l ECDHE-PSK-NULL-SHA256
|
|
|
|
# client TLSv1.1 ECDHE-PSK-NULL-SHA256
|
|
-s
|
|
-u
|
|
-v 2
|
|
-l ECDHE-PSK-NULL-SHA256
|
|
|
|
# server TLSv1.2 ECDHE-PSK-NULL-SHA256
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l ECDHE-PSK-NULL-SHA256
|
|
|
|
# client TLSv1.2 ECDHE-PSK-NULL-SHA256
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l ECDHE-PSK-NULL-SHA256
|
|
|
|
# server DTLSv1 PSK-AES128
|
|
-s
|
|
-u
|
|
-v 2
|
|
-l PSK-AES128-CBC-SHA
|
|
|
|
# client DTLSv1 PSK-AES128
|
|
-s
|
|
-u
|
|
-v 2
|
|
-l PSK-AES128-CBC-SHA
|
|
|
|
# server DTLSv1 PSK-AES256
|
|
-s
|
|
-u
|
|
-v 2
|
|
-l PSK-AES256-CBC-SHA
|
|
|
|
# client DTLSv1 PSK-AES256
|
|
-s
|
|
-u
|
|
-v 2
|
|
-l PSK-AES256-CBC-SHA
|
|
|
|
# server DTLSv1.2 PSK-AES128
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l PSK-AES128-CBC-SHA
|
|
|
|
# client DTLSv1.2 PSK-AES128
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l PSK-AES128-CBC-SHA
|
|
|
|
# server DTLSv1.2 PSK-AES256
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l PSK-AES256-CBC-SHA
|
|
|
|
# client DTLSv1.2 PSK-AES256
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l PSK-AES256-CBC-SHA
|
|
|
|
# server DTLSv1.2 PSK-AES128-SHA256
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l PSK-AES128-CBC-SHA256
|
|
|
|
# client DTLSv1.2 PSK-AES128-SHA256
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l PSK-AES128-CBC-SHA256
|
|
|
|
# server DTLSv1.2 PSK-AES256-SHA384
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l PSK-AES256-CBC-SHA384
|
|
|
|
# client DTLSv1.2 PSK-AES256-SHA384
|
|
-s
|
|
-u
|
|
-v 3
|
|
-l PSK-AES256-CBC-SHA384
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES256-GCM-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES256-GCM-SHA384
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES256-GCM-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES256-GCM-SHA384
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDH-ECDSA-AES128-GCM-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES128-GCM-SHA256
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-ECDSA-AES128-GCM-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES128-GCM-SHA256
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDH-ECDSA-AES256-GCM-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES256-GCM-SHA384
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-ECDSA-AES256-GCM-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDH-ECDSA-AES256-GCM-SHA384
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES128-GCM-SHA256
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES128-GCM-SHA256
|
|
|
|
# server DTLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES256-GCM-SHA384
|
|
|
|
# client DTLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDHE-RSA-AES256-GCM-SHA384
|
|
|
|
# server DTLSv1.2 ECDH-RSA-AES128-GCM-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES128-GCM-SHA256
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-RSA-AES128-GCM-SHA256
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES128-GCM-SHA256
|
|
|
|
# server DTLSv1.2 ECDH-RSA-AES256-GCM-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES256-GCM-SHA384
|
|
-c ./certs/server-ecc-rsa.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDH-RSA-AES256-GCM-SHA384
|
|
-u
|
|
-v 3
|
|
-l ECDH-RSA-AES256-GCM-SHA384
|
|
|
|
# server DTLSv1.2 PSK-AES128-GCM-SHA256
|
|
-u
|
|
-s
|
|
-v 3
|
|
-l PSK-AES128-GCM-SHA256
|
|
|
|
# client DTLSv1.2 PSK-AES128-GCM-SHA256
|
|
-u
|
|
-s
|
|
-v 3
|
|
-l PSK-AES128-GCM-SHA256
|
|
|
|
# server DTLSv1.2 PSK-AES256-GCM-SHA384
|
|
-u
|
|
-s
|
|
-v 3
|
|
-l PSK-AES256-GCM-SHA384
|
|
|
|
# client DTLSv1.2 PSK-AES256-GCM-SHA384
|
|
-u
|
|
-s
|
|
-v 3
|
|
-l PSK-AES256-GCM-SHA384
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES128-CCM
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-CCM
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES128-CCM
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-CCM
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES128-CCM-8
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-CCM-8
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES128-CCM-8
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-CCM-8
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ECDHE-ECDSA-AES256-CCM-8
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES256-CCM-8
|
|
-c ./certs/server-ecc.pem
|
|
-k ./certs/ecc-key.pem
|
|
|
|
# client DTLSv1.2 ECDHE-ECDSA-AES256-CCM-8
|
|
-u
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES256-CCM-8
|
|
-A ./certs/server-ecc.pem
|
|
|
|
# server DTLSv1.2 ADH-AES128-SHA
|
|
-u
|
|
-a
|
|
-v 3
|
|
-l ADH-AES128-SHA
|
|
|
|
# client DTLSv1.2 ADH-AES128-SHA
|
|
-u
|
|
-a
|
|
-v 3
|
|
-l ADH-AES128-SHA
|
|
|
|
# server DTLSv1.0 ADH-AES128-SHA
|
|
-u
|
|
-a
|
|
-v 2
|
|
-l ADH-AES128-SHA
|
|
|
|
# client DTLSv1.0 ADH-AES128-SHA
|
|
-u
|
|
-a
|
|
-v 2
|
|
-l ADH-AES128-SHA
|
|
|