Artifact
52471437c8fe1769bda94ddc1a4b032dda8d8aecec403e9fbf1ca02397e06883:
0000: 23 20 41 75 74 6f 20 67 65 6e 65 72 61 74 65 64 # Auto generated
0010: 20 74 65 73 74 20 63 61 73 65 73 20 66 6f 72 20 test cases for
0020: 69 6e 66 6f 2e 63 73 76 0a 0a 23 20 4c 6f 61 64 info.csv..# Load
0030: 20 54 63 6c 20 54 65 73 74 20 70 61 63 6b 61 67 Tcl Test packag
0040: 65 0a 69 66 20 7b 5b 6c 73 65 61 72 63 68 20 5b e.if {[lsearch [
0050: 6e 61 6d 65 73 70 61 63 65 20 63 68 69 6c 64 72 namespace childr
0060: 65 6e 5d 20 3a 3a 74 63 6c 74 65 73 74 5d 20 3d en] ::tcltest] =
0070: 3d 20 2d 31 7d 20 7b 0a 09 70 61 63 6b 61 67 65 = -1} {..package
0080: 20 72 65 71 75 69 72 65 20 74 63 6c 74 65 73 74 require tcltest
0090: 0a 09 6e 61 6d 65 73 70 61 63 65 20 69 6d 70 6f ..namespace impo
00a0: 72 74 20 3a 3a 74 63 6c 74 65 73 74 3a 3a 2a 0a rt ::tcltest::*.
00b0: 7d 0a 0a 73 65 74 20 61 75 74 6f 5f 70 61 74 68 }..set auto_path
00c0: 20 5b 63 6f 6e 63 61 74 20 5b 6c 69 73 74 20 5b [concat [list [
00d0: 66 69 6c 65 20 64 69 72 6e 61 6d 65 20 5b 66 69 file dirname [fi
00e0: 6c 65 20 64 69 72 6e 61 6d 65 20 5b 69 6e 66 6f le dirname [info
00f0: 20 73 63 72 69 70 74 5d 5d 5d 5d 20 24 61 75 74 script]]]] $aut
0100: 6f 5f 70 61 74 68 5d 0a 0a 70 61 63 6b 61 67 65 o_path]..package
0110: 20 72 65 71 75 69 72 65 20 74 6c 73 0a 0a 23 20 require tls..#
0120: 4d 61 6b 65 20 73 75 72 65 20 70 61 74 68 20 69 Make sure path i
0130: 6e 63 6c 75 64 65 73 20 6c 6f 63 61 74 69 6f 6e ncludes location
0140: 20 6f 66 20 4f 70 65 6e 53 53 4c 20 65 78 65 63 of OpenSSL exec
0150: 75 74 61 62 6c 65 0a 69 66 20 7b 5b 69 6e 66 6f utable.if {[info
0160: 20 65 78 69 73 74 73 20 3a 3a 65 6e 76 28 4f 50 exists ::env(OP
0170: 45 4e 53 53 4c 29 5d 7d 20 7b 73 65 74 20 3a 3a ENSSL)]} {set ::
0180: 65 6e 76 28 70 61 74 68 29 20 5b 73 74 72 69 6e env(path) [strin
0190: 67 20 63 61 74 20 5b 66 69 6c 65 20 6a 6f 69 6e g cat [file join
01a0: 20 24 3a 3a 65 6e 76 28 4f 50 45 4e 53 53 4c 29 $::env(OPENSSL)
01b0: 20 62 69 6e 5d 20 22 3b 22 20 24 3a 3a 65 6e 76 bin] ";" $::env
01c0: 28 70 61 74 68 29 5d 7d 0a 0a 23 20 43 6f 6e 73 (path)]}..# Cons
01d0: 74 72 61 69 6e 74 73 0a 73 6f 75 72 63 65 20 63 traints.source c
01e0: 6f 6d 6d 6f 6e 2e 74 63 6c 0a 0a 23 20 48 65 6c ommon.tcl..# Hel
01f0: 70 65 72 20 66 75 6e 63 74 69 6f 6e 73 0a 70 72 per functions.pr
0200: 6f 63 20 6c 63 6f 6d 70 61 72 65 20 7b 6c 69 73 oc lcompare {lis
0210: 74 31 20 6c 69 73 74 32 7d 20 7b 73 65 74 20 6d t1 list2} {set m
0220: 20 22 22 3b 73 65 74 20 75 20 22 22 3b 66 6f 72 "";set u "";for
0230: 65 61 63 68 20 69 20 24 6c 69 73 74 31 20 7b 69 each i $list1 {i
0240: 66 20 7b 24 69 20 6e 69 20 24 6c 69 73 74 32 7d f {$i ni $list2}
0250: 20 7b 6c 61 70 70 65 6e 64 20 6d 20 24 69 7d 7d {lappend m $i}}
0260: 3b 66 6f 72 65 61 63 68 20 69 20 24 6c 69 73 74 ;foreach i $list
0270: 32 20 7b 69 66 20 7b 24 69 20 6e 69 20 24 6c 69 2 {if {$i ni $li
0280: 73 74 31 7d 20 7b 6c 61 70 70 65 6e 64 20 75 20 st1} {lappend u
0290: 24 69 7d 7d 3b 72 65 74 75 72 6e 20 5b 6c 69 73 $i}};return [lis
02a0: 74 20 22 6d 69 73 73 69 6e 67 22 20 24 6d 20 22 t "missing" $m "
02b0: 75 6e 65 78 70 65 63 74 65 64 22 20 24 75 5d 7d unexpected" $u]}
02c0: 0a 70 72 6f 63 20 65 78 65 63 5f 67 65 74 20 7b .proc exec_get {
02d0: 64 65 6c 69 6d 20 61 72 67 73 7d 20 7b 72 65 74 delim args} {ret
02e0: 75 72 6e 20 5b 73 70 6c 69 74 20 5b 65 78 65 63 urn [split [exec
02f0: 20 6f 70 65 6e 73 73 6c 20 7b 2a 7d 24 61 72 67 openssl {*}$arg
0300: 73 5d 20 24 64 65 6c 69 6d 5d 7d 0a 70 72 6f 63 s] $delim]}.proc
0310: 20 65 78 65 63 5f 67 65 74 5f 63 69 70 68 65 72 exec_get_cipher
0320: 73 20 7b 7d 20 7b 73 65 74 20 6c 69 73 74 20 5b s {} {set list [
0330: 6c 69 73 74 5d 3b 73 65 74 20 64 61 74 61 20 5b list];set data [
0340: 65 78 65 63 20 6f 70 65 6e 73 73 6c 20 6c 69 73 exec openssl lis
0350: 74 20 2d 63 69 70 68 65 72 2d 61 6c 67 6f 72 69 t -cipher-algori
0360: 74 68 6d 73 5d 3b 66 6f 72 65 61 63 68 20 6c 69 thms];foreach li
0370: 6e 65 20 5b 73 70 6c 69 74 20 24 64 61 74 61 20 ne [split $data
0380: 22 5c 6e 22 5d 20 7b 66 6f 72 65 61 63 68 20 7b "\n"] {foreach {
0390: 63 69 70 68 65 72 20 6e 75 6c 6c 20 61 6c 69 61 cipher null alia
03a0: 73 7d 20 5b 73 70 6c 69 74 20 5b 73 74 72 69 6e s} [split [strin
03b0: 67 20 74 72 69 6d 20 24 6c 69 6e 65 5d 5d 20 7b g trim $line]] {
03c0: 6c 61 70 70 65 6e 64 20 6c 69 73 74 20 5b 73 74 lappend list [st
03d0: 72 69 6e 67 20 74 6f 6c 6f 77 65 72 20 24 63 69 ring tolower $ci
03e0: 70 68 65 72 5d 7d 7d 3b 72 65 74 75 72 6e 20 5b pher]}};return [
03f0: 6c 73 6f 72 74 20 2d 75 6e 69 71 75 65 20 24 6c lsort -unique $l
0400: 69 73 74 5d 7d 0a 70 72 6f 63 20 65 78 65 63 5f ist]}.proc exec_
0410: 67 65 74 5f 64 69 67 65 73 74 73 20 7b 7d 20 7b get_digests {} {
0420: 73 65 74 20 6c 69 73 74 20 5b 6c 69 73 74 5d 3b set list [list];
0430: 73 65 74 20 64 61 74 61 20 5b 65 78 65 63 20 6f set data [exec o
0440: 70 65 6e 73 73 6c 20 64 67 73 74 20 2d 6c 69 73 penssl dgst -lis
0450: 74 5d 3b 66 6f 72 65 61 63 68 20 6c 69 6e 65 20 t];foreach line
0460: 5b 73 70 6c 69 74 20 24 64 61 74 61 20 22 5c 6e [split $data "\n
0470: 22 5d 20 7b 66 6f 72 65 61 63 68 20 64 69 67 65 "] {foreach dige
0480: 73 74 20 24 6c 69 6e 65 20 7b 69 66 20 7b 5b 73 st $line {if {[s
0490: 74 72 69 6e 67 20 6d 61 74 63 68 20 22 2d 2a 22 tring match "-*"
04a0: 20 24 64 69 67 65 73 74 5d 7d 20 7b 6c 61 70 70 $digest]} {lapp
04b0: 65 6e 64 20 6c 69 73 74 20 5b 73 74 72 69 6e 67 end list [string
04c0: 20 74 72 69 6d 6c 65 66 74 20 24 64 69 67 65 73 trimleft $diges
04d0: 74 20 22 2d 22 5d 7d 7d 7d 3b 72 65 74 75 72 6e t "-"]}}};return
04e0: 20 5b 6c 73 6f 72 74 20 24 6c 69 73 74 5d 7d 0a [lsort $list]}.
04f0: 70 72 6f 63 20 65 78 65 63 5f 67 65 74 5f 70 6b proc exec_get_pk
0500: 73 20 7b 7d 20 7b 73 65 74 20 6c 69 73 74 20 5b s {} {set list [
0510: 6c 69 73 74 5d 3b 73 65 74 20 64 61 74 61 20 5b list];set data [
0520: 65 78 65 63 20 6f 70 65 6e 73 73 6c 20 6c 69 73 exec openssl lis
0530: 74 20 2d 70 75 62 6c 69 63 2d 6b 65 79 2d 6d 65 t -public-key-me
0540: 74 68 6f 64 73 5d 3b 66 6f 72 65 61 63 68 20 6c thods];foreach l
0550: 69 6e 65 20 5b 73 70 6c 69 74 20 24 64 61 74 61 ine [split $data
0560: 20 22 5c 6e 22 5d 20 7b 69 66 20 7b 21 5b 73 74 "\n"] {if {![st
0570: 72 69 6e 67 20 6d 61 74 63 68 20 22 2a 54 79 70 ring match "*Typ
0580: 65 3a 2a 22 20 24 6c 69 6e 65 5d 7d 20 7b 6c 61 e:*" $line]} {la
0590: 70 70 65 6e 64 20 6c 69 73 74 20 5b 73 74 72 69 ppend list [stri
05a0: 6e 67 20 74 72 69 6d 20 24 6c 69 6e 65 5d 7d 7d ng trim $line]}}
05b0: 3b 72 65 74 75 72 6e 20 24 6c 69 73 74 7d 0a 70 ;return $list}.p
05c0: 72 6f 63 20 65 78 65 63 5f 67 65 74 5f 6d 61 63 roc exec_get_mac
05d0: 73 20 7b 7d 20 7b 72 65 74 75 72 6e 20 5b 6c 69 s {} {return [li
05e0: 73 74 20 63 6d 61 63 20 68 6d 61 63 5d 7d 0a 70 st cmac hmac]}.p
05f0: 72 6f 63 20 6c 69 73 74 5f 74 6f 6c 6f 77 65 72 roc list_tolower
0600: 20 7b 6c 69 73 74 7d 20 7b 73 65 74 20 72 65 73 {list} {set res
0610: 75 6c 74 20 5b 6c 69 73 74 5d 3b 66 6f 72 65 61 ult [list];forea
0620: 63 68 20 65 6c 65 6d 65 6e 74 20 24 6c 69 73 74 ch element $list
0630: 20 7b 6c 61 70 70 65 6e 64 20 72 65 73 75 6c 74 {lappend result
0640: 20 5b 73 74 72 69 6e 67 20 74 6f 6c 6f 77 65 72 [string tolower
0650: 20 24 65 6c 65 6d 65 6e 74 5d 7d 3b 72 65 74 75 $element]};retu
0660: 72 6e 20 24 72 65 73 75 6c 74 7d 0a 0a 23 20 54 rn $result}..# T
0670: 65 73 74 20 6c 69 73 74 20 63 69 70 68 65 72 73 est list ciphers
0680: 0a 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f ...test Ciphers_
0690: 4c 69 73 74 2d 31 2e 31 20 7b 41 6c 6c 7d 20 2d List-1.1 {All} -
06a0: 62 6f 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 body {..lcompare
06b0: 20 5b 6c 73 6f 72 74 20 5b 65 78 65 63 5f 67 65 [lsort [exec_ge
06c0: 74 5f 63 69 70 68 65 72 73 5d 5d 20 5b 6c 69 73 t_ciphers]] [lis
06d0: 74 5f 74 6f 6c 6f 77 65 72 20 5b 6c 73 6f 72 74 t_tolower [lsort
06e0: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
06f0: 5d 5d 5d 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c ]]]. } -resul
0700: 74 20 7b 6d 69 73 73 69 6e 67 20 7b 72 63 35 20 t {missing {rc5
0710: 72 63 35 2d 63 62 63 20 72 63 35 2d 63 66 62 20 rc5-cbc rc5-cfb
0720: 72 63 35 2d 65 63 62 20 72 63 35 2d 6f 66 62 7d rc5-ecb rc5-ofb}
0730: 20 75 6e 65 78 70 65 63 74 65 64 20 7b 61 65 73 unexpected {aes
0740: 2d 31 32 38 2d 63 63 6d 20 61 65 73 2d 31 32 38 -128-ccm aes-128
0750: 2d 67 63 6d 20 61 65 73 2d 31 39 32 2d 63 63 6d -gcm aes-192-ccm
0760: 20 61 65 73 2d 31 39 32 2d 67 63 6d 20 61 65 73 aes-192-gcm aes
0770: 2d 32 35 36 2d 63 63 6d 20 61 65 73 2d 32 35 36 -256-ccm aes-256
0780: 2d 67 63 6d 7d 7d 0a 0a 23 20 54 65 73 74 20 6c -gcm}}..# Test l
0790: 69 73 74 20 63 69 70 68 65 72 73 20 66 6f 72 20 ist ciphers for
07a0: 70 72 6f 74 6f 63 6f 6c 73 0a 0a 0a 74 65 73 74 protocols...test
07b0: 20 43 69 70 68 65 72 73 5f 42 79 5f 50 72 6f 74 Ciphers_By_Prot
07c0: 6f 63 6f 6c 2d 32 2e 31 20 7b 53 53 4c 32 7d 20 ocol-2.1 {SSL2}
07d0: 2d 63 6f 6e 73 74 72 61 69 6e 74 73 20 7b 73 73 -constraints {ss
07e0: 6c 32 7d 20 2d 62 6f 64 79 20 7b 0a 09 6c 63 6f l2} -body {..lco
07f0: 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 74 20 mpare [exec_get
0800: 22 3a 22 20 63 69 70 68 65 72 73 20 2d 73 73 6c ":" ciphers -ssl
0810: 32 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 2] [::tls::ciphe
0820: 72 73 20 73 73 6c 32 5d 0a 20 20 20 20 7d 20 2d rs ssl2]. } -
0830: 72 65 73 75 6c 74 20 7b 6d 69 73 73 69 6e 67 20 result {missing
0840: 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d {} unexpected {}
0850: 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f }..test Ciphers_
0860: 42 79 5f 50 72 6f 74 6f 63 6f 6c 2d 32 2e 32 20 By_Protocol-2.2
0870: 7b 53 53 4c 33 7d 20 2d 63 6f 6e 73 74 72 61 69 {SSL3} -constrai
0880: 6e 74 73 20 7b 73 73 6c 33 7d 20 2d 62 6f 64 79 nts {ssl3} -body
0890: 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 20 5b 65 78 {..lcompare [ex
08a0: 65 63 5f 67 65 74 20 22 3a 22 20 63 69 70 68 65 ec_get ":" ciphe
08b0: 72 73 20 2d 73 73 6c 33 5d 20 5b 3a 3a 74 6c 73 rs -ssl3] [::tls
08c0: 3a 3a 63 69 70 68 65 72 73 20 73 73 6c 33 5d 0a ::ciphers ssl3].
08d0: 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b 6d } -result {m
08e0: 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 issing {} unexpe
08f0: 63 74 65 64 20 7b 7d 7d 0a 0a 74 65 73 74 20 43 cted {}}..test C
0900: 69 70 68 65 72 73 5f 42 79 5f 50 72 6f 74 6f 63 iphers_By_Protoc
0910: 6f 6c 2d 32 2e 33 20 7b 54 4c 53 31 2e 30 7d 20 ol-2.3 {TLS1.0}
0920: 2d 63 6f 6e 73 74 72 61 69 6e 74 73 20 7b 74 6c -constraints {tl
0930: 73 31 7d 20 2d 62 6f 64 79 20 7b 0a 09 6c 63 6f s1} -body {..lco
0940: 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 74 20 mpare [exec_get
0950: 22 3a 22 20 63 69 70 68 65 72 73 20 2d 74 6c 73 ":" ciphers -tls
0960: 31 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 1] [::tls::ciphe
0970: 72 73 20 74 6c 73 31 5d 0a 20 20 20 20 7d 20 2d rs tls1]. } -
0980: 72 65 73 75 6c 74 20 7b 6d 69 73 73 69 6e 67 20 result {missing
0990: 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d {} unexpected {}
09a0: 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f }..test Ciphers_
09b0: 42 79 5f 50 72 6f 74 6f 63 6f 6c 2d 32 2e 34 20 By_Protocol-2.4
09c0: 7b 54 4c 53 31 2e 31 7d 20 2d 63 6f 6e 73 74 72 {TLS1.1} -constr
09d0: 61 69 6e 74 73 20 7b 74 6c 73 31 2e 31 7d 20 2d aints {tls1.1} -
09e0: 62 6f 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 body {..lcompare
09f0: 20 5b 65 78 65 63 5f 67 65 74 20 22 3a 22 20 63 [exec_get ":" c
0a00: 69 70 68 65 72 73 20 2d 74 6c 73 31 5f 31 5d 20 iphers -tls1_1]
0a10: 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 [::tls::ciphers
0a20: 74 6c 73 31 2e 31 5d 0a 20 20 20 20 7d 20 2d 72 tls1.1]. } -r
0a30: 65 73 75 6c 74 20 7b 6d 69 73 73 69 6e 67 20 7b esult {missing {
0a40: 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 7d } unexpected {}}
0a50: 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f 42 ..test Ciphers_B
0a60: 79 5f 50 72 6f 74 6f 63 6f 6c 2d 32 2e 35 20 7b y_Protocol-2.5 {
0a70: 54 4c 53 31 2e 32 7d 20 2d 63 6f 6e 73 74 72 61 TLS1.2} -constra
0a80: 69 6e 74 73 20 7b 74 6c 73 31 2e 32 7d 20 2d 62 ints {tls1.2} -b
0a90: 6f 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 20 ody {..lcompare
0aa0: 5b 65 78 65 63 5f 67 65 74 20 22 3a 22 20 63 69 [exec_get ":" ci
0ab0: 70 68 65 72 73 20 2d 74 6c 73 31 5f 32 5d 20 5b phers -tls1_2] [
0ac0: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
0ad0: 6c 73 31 2e 32 5d 0a 20 20 20 20 7d 20 2d 72 65 ls1.2]. } -re
0ae0: 73 75 6c 74 20 7b 6d 69 73 73 69 6e 67 20 7b 7d sult {missing {}
0af0: 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 7d 0a unexpected {}}.
0b00: 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f 42 79 .test Ciphers_By
0b10: 5f 50 72 6f 74 6f 63 6f 6c 2d 32 2e 36 20 7b 54 _Protocol-2.6 {T
0b20: 4c 53 31 2e 33 7d 20 2d 63 6f 6e 73 74 72 61 69 LS1.3} -constrai
0b30: 6e 74 73 20 7b 74 6c 73 31 2e 33 7d 20 2d 62 6f nts {tls1.3} -bo
0b40: 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 20 5b dy {..lcompare [
0b50: 65 78 65 63 5f 67 65 74 20 22 3a 22 20 63 69 70 exec_get ":" cip
0b60: 68 65 72 73 20 2d 74 6c 73 31 5f 33 5d 20 5b 3a hers -tls1_3] [:
0b70: 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 6c :tls::ciphers tl
0b80: 73 31 2e 33 5d 0a 20 20 20 20 7d 20 2d 72 65 73 s1.3]. } -res
0b90: 75 6c 74 20 7b 6d 69 73 73 69 6e 67 20 7b 7d 20 ult {missing {}
0ba0: 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 7d 0a 0a unexpected {}}..
0bb0: 23 20 54 65 73 74 20 63 69 70 68 65 72 20 64 65 # Test cipher de
0bc0: 73 63 72 69 70 74 69 6f 6e 73 0a 0a 0a 74 65 73 scriptions...tes
0bd0: 74 20 43 69 70 68 65 72 73 5f 57 69 74 68 5f 44 t Ciphers_With_D
0be0: 65 73 63 72 69 70 74 69 6f 6e 73 2d 33 2e 31 20 escriptions-3.1
0bf0: 7b 53 53 4c 32 7d 20 2d 63 6f 6e 73 74 72 61 69 {SSL2} -constrai
0c00: 6e 74 73 20 7b 73 73 6c 32 7d 20 2d 62 6f 64 79 nts {ssl2} -body
0c10: 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 20 5b 65 78 {..lcompare [ex
0c20: 65 63 5f 67 65 74 20 22 5c 72 5c 6e 22 20 63 69 ec_get "\r\n" ci
0c30: 70 68 65 72 73 20 2d 73 73 6c 32 20 2d 76 5d 20 phers -ssl2 -v]
0c40: 5b 73 70 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 [split [string t
0c50: 72 69 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 rim [::tls::ciph
0c60: 65 72 73 20 73 73 6c 32 20 31 5d 5d 20 5c 6e 5d ers ssl2 1]] \n]
0c70: 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b . } -result {
0c80: 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 missing {} unexp
0c90: 65 63 74 65 64 20 7b 7d 7d 0a 0a 74 65 73 74 20 ected {}}..test
0ca0: 43 69 70 68 65 72 73 5f 57 69 74 68 5f 44 65 73 Ciphers_With_Des
0cb0: 63 72 69 70 74 69 6f 6e 73 2d 33 2e 32 20 7b 53 criptions-3.2 {S
0cc0: 53 4c 33 7d 20 2d 63 6f 6e 73 74 72 61 69 6e 74 SL3} -constraint
0cd0: 73 20 7b 73 73 6c 33 7d 20 2d 62 6f 64 79 20 7b s {ssl3} -body {
0ce0: 0a 09 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 ..lcompare [exec
0cf0: 5f 67 65 74 20 22 5c 72 5c 6e 22 20 63 69 70 68 _get "\r\n" ciph
0d00: 65 72 73 20 2d 73 73 6c 33 20 2d 76 5d 20 5b 73 ers -ssl3 -v] [s
0d10: 70 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 69 plit [string tri
0d20: 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 m [::tls::cipher
0d30: 73 20 73 73 6c 33 20 31 5d 5d 20 5c 6e 5d 0a 20 s ssl3 1]] \n].
0d40: 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b 6d 69 } -result {mi
0d50: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0d60: 74 65 64 20 7b 7d 7d 0a 0a 74 65 73 74 20 43 69 ted {}}..test Ci
0d70: 70 68 65 72 73 5f 57 69 74 68 5f 44 65 73 63 72 phers_With_Descr
0d80: 69 70 74 69 6f 6e 73 2d 33 2e 33 20 7b 54 4c 53 iptions-3.3 {TLS
0d90: 31 2e 30 7d 20 2d 63 6f 6e 73 74 72 61 69 6e 74 1.0} -constraint
0da0: 73 20 7b 74 6c 73 31 7d 20 2d 62 6f 64 79 20 7b s {tls1} -body {
0db0: 0a 09 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 ..lcompare [exec
0dc0: 5f 67 65 74 20 22 5c 72 5c 6e 22 20 63 69 70 68 _get "\r\n" ciph
0dd0: 65 72 73 20 2d 74 6c 73 31 20 2d 76 5d 20 5b 73 ers -tls1 -v] [s
0de0: 70 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 69 plit [string tri
0df0: 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 m [::tls::cipher
0e00: 73 20 74 6c 73 31 20 31 5d 5d 20 5c 6e 5d 0a 20 s tls1 1]] \n].
0e10: 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b 6d 69 } -result {mi
0e20: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0e30: 74 65 64 20 7b 7d 7d 0a 0a 74 65 73 74 20 43 69 ted {}}..test Ci
0e40: 70 68 65 72 73 5f 57 69 74 68 5f 44 65 73 63 72 phers_With_Descr
0e50: 69 70 74 69 6f 6e 73 2d 33 2e 34 20 7b 54 4c 53 iptions-3.4 {TLS
0e60: 31 2e 31 7d 20 2d 63 6f 6e 73 74 72 61 69 6e 74 1.1} -constraint
0e70: 73 20 7b 74 6c 73 31 2e 31 7d 20 2d 62 6f 64 79 s {tls1.1} -body
0e80: 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 20 5b 65 78 {..lcompare [ex
0e90: 65 63 5f 67 65 74 20 22 5c 72 5c 6e 22 20 63 69 ec_get "\r\n" ci
0ea0: 70 68 65 72 73 20 2d 74 6c 73 31 5f 31 20 2d 76 phers -tls1_1 -v
0eb0: 5d 20 5b 73 70 6c 69 74 20 5b 73 74 72 69 6e 67 ] [split [string
0ec0: 20 74 72 69 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 trim [::tls::ci
0ed0: 70 68 65 72 73 20 74 6c 73 31 2e 31 20 31 5d 5d phers tls1.1 1]]
0ee0: 20 5c 6e 5d 0a 20 20 20 20 7d 20 2d 72 65 73 75 \n]. } -resu
0ef0: 6c 74 20 7b 6d 69 73 73 69 6e 67 20 7b 7d 20 75 lt {missing {} u
0f00: 6e 65 78 70 65 63 74 65 64 20 7b 7d 7d 0a 0a 74 nexpected {}}..t
0f10: 65 73 74 20 43 69 70 68 65 72 73 5f 57 69 74 68 est Ciphers_With
0f20: 5f 44 65 73 63 72 69 70 74 69 6f 6e 73 2d 33 2e _Descriptions-3.
0f30: 35 20 7b 54 4c 53 31 2e 32 7d 20 2d 63 6f 6e 73 5 {TLS1.2} -cons
0f40: 74 72 61 69 6e 74 73 20 7b 74 6c 73 31 2e 32 7d traints {tls1.2}
0f50: 20 2d 62 6f 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 -body {..lcompa
0f60: 72 65 20 5b 65 78 65 63 5f 67 65 74 20 22 5c 72 re [exec_get "\r
0f70: 5c 6e 22 20 63 69 70 68 65 72 73 20 2d 74 6c 73 \n" ciphers -tls
0f80: 31 5f 32 20 2d 76 5d 20 5b 73 70 6c 69 74 20 5b 1_2 -v] [split [
0f90: 73 74 72 69 6e 67 20 74 72 69 6d 20 5b 3a 3a 74 string trim [::t
0fa0: 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 6c 73 31 ls::ciphers tls1
0fb0: 2e 32 20 31 5d 5d 20 5c 6e 5d 0a 20 20 20 20 7d .2 1]] \n]. }
0fc0: 20 2d 72 65 73 75 6c 74 20 7b 6d 69 73 73 69 6e -result {missin
0fd0: 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 20 g {} unexpected
0fe0: 7b 7d 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 {}}..test Cipher
0ff0: 73 5f 57 69 74 68 5f 44 65 73 63 72 69 70 74 69 s_With_Descripti
1000: 6f 6e 73 2d 33 2e 36 20 7b 54 4c 53 31 2e 33 7d ons-3.6 {TLS1.3}
1010: 20 2d 63 6f 6e 73 74 72 61 69 6e 74 73 20 7b 74 -constraints {t
1020: 6c 73 31 2e 33 7d 20 2d 62 6f 64 79 20 7b 0a 09 ls1.3} -body {..
1030: 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 lcompare [exec_g
1040: 65 74 20 22 5c 72 5c 6e 22 20 63 69 70 68 65 72 et "\r\n" cipher
1050: 73 20 2d 74 6c 73 31 5f 33 20 2d 76 5d 20 5b 73 s -tls1_3 -v] [s
1060: 70 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 69 plit [string tri
1070: 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 m [::tls::cipher
1080: 73 20 74 6c 73 31 2e 33 20 31 5d 5d 20 5c 6e 5d s tls1.3 1]] \n]
1090: 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b . } -result {
10a0: 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 missing {} unexp
10b0: 65 63 74 65 64 20 7b 7d 7d 0a 0a 23 20 54 65 73 ected {}}..# Tes
10c0: 74 20 70 72 6f 74 6f 63 6f 6c 20 73 70 65 63 69 t protocol speci
10d0: 66 69 63 20 63 69 70 68 65 72 73 0a 0a 0a 74 65 fic ciphers...te
10e0: 73 74 20 43 69 70 68 65 72 73 5f 50 72 6f 74 6f st Ciphers_Proto
10f0: 63 6f 6c 5f 53 70 65 63 69 66 69 63 2d 34 2e 31 col_Specific-4.1
1100: 20 7b 53 53 4c 32 7d 20 2d 63 6f 6e 73 74 72 61 {SSL2} -constra
1110: 69 6e 74 73 20 7b 73 73 6c 32 7d 20 2d 62 6f 64 ints {ssl2} -bod
1120: 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 20 5b 65 y {..lcompare [e
1130: 78 65 63 5f 67 65 74 20 22 3a 22 20 63 69 70 68 xec_get ":" ciph
1140: 65 72 73 20 2d 73 73 6c 32 20 2d 73 5d 20 5b 3a ers -ssl2 -s] [:
1150: 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 73 73 :tls::ciphers ss
1160: 6c 32 20 30 20 31 5d 0a 20 20 20 20 7d 20 2d 72 l2 0 1]. } -r
1170: 65 73 75 6c 74 20 7b 6d 69 73 73 69 6e 67 20 7b esult {missing {
1180: 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 7d } unexpected {}}
1190: 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f 50 ..test Ciphers_P
11a0: 72 6f 74 6f 63 6f 6c 5f 53 70 65 63 69 66 69 63 rotocol_Specific
11b0: 2d 34 2e 32 20 7b 53 53 4c 33 7d 20 2d 63 6f 6e -4.2 {SSL3} -con
11c0: 73 74 72 61 69 6e 74 73 20 7b 73 73 6c 33 7d 20 straints {ssl3}
11d0: 2d 62 6f 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 -body {..lcompar
11e0: 65 20 5b 65 78 65 63 5f 67 65 74 20 22 3a 22 20 e [exec_get ":"
11f0: 63 69 70 68 65 72 73 20 2d 73 73 6c 33 20 2d 73 ciphers -ssl3 -s
1200: 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 ] [::tls::cipher
1210: 73 20 73 73 6c 33 20 30 20 31 5d 0a 20 20 20 20 s ssl3 0 1].
1220: 7d 20 2d 72 65 73 75 6c 74 20 7b 6d 69 73 73 69 } -result {missi
1230: 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 ng {} unexpected
1240: 20 7b 7d 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 {}}..test Ciphe
1250: 72 73 5f 50 72 6f 74 6f 63 6f 6c 5f 53 70 65 63 rs_Protocol_Spec
1260: 69 66 69 63 2d 34 2e 33 20 7b 54 4c 53 31 2e 30 ific-4.3 {TLS1.0
1270: 7d 20 2d 63 6f 6e 73 74 72 61 69 6e 74 73 20 7b } -constraints {
1280: 74 6c 73 31 7d 20 2d 62 6f 64 79 20 7b 0a 09 6c tls1} -body {..l
1290: 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 compare [exec_ge
12a0: 74 20 22 3a 22 20 63 69 70 68 65 72 73 20 2d 74 t ":" ciphers -t
12b0: 6c 73 31 20 2d 73 5d 20 5b 3a 3a 74 6c 73 3a 3a ls1 -s] [::tls::
12c0: 63 69 70 68 65 72 73 20 74 6c 73 31 20 30 20 31 ciphers tls1 0 1
12d0: 5d 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 ]. } -result
12e0: 7b 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 {missing {} unex
12f0: 70 65 63 74 65 64 20 7b 7d 7d 0a 0a 74 65 73 74 pected {}}..test
1300: 20 43 69 70 68 65 72 73 5f 50 72 6f 74 6f 63 6f Ciphers_Protoco
1310: 6c 5f 53 70 65 63 69 66 69 63 2d 34 2e 34 20 7b l_Specific-4.4 {
1320: 54 4c 53 31 2e 31 7d 20 2d 63 6f 6e 73 74 72 61 TLS1.1} -constra
1330: 69 6e 74 73 20 7b 74 6c 73 31 2e 31 7d 20 2d 62 ints {tls1.1} -b
1340: 6f 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 20 ody {..lcompare
1350: 5b 65 78 65 63 5f 67 65 74 20 22 3a 22 20 63 69 [exec_get ":" ci
1360: 70 68 65 72 73 20 2d 74 6c 73 31 5f 31 20 2d 73 phers -tls1_1 -s
1370: 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 ] [::tls::cipher
1380: 73 20 74 6c 73 31 2e 31 20 30 20 31 5d 0a 20 20 s tls1.1 0 1].
1390: 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b 6d 69 73 } -result {mis
13a0: 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 sing {} unexpect
13b0: 65 64 20 7b 7d 7d 0a 0a 74 65 73 74 20 43 69 70 ed {}}..test Cip
13c0: 68 65 72 73 5f 50 72 6f 74 6f 63 6f 6c 5f 53 70 hers_Protocol_Sp
13d0: 65 63 69 66 69 63 2d 34 2e 35 20 7b 54 4c 53 31 ecific-4.5 {TLS1
13e0: 2e 32 7d 20 2d 63 6f 6e 73 74 72 61 69 6e 74 73 .2} -constraints
13f0: 20 7b 74 6c 73 31 2e 32 7d 20 2d 62 6f 64 79 20 {tls1.2} -body
1400: 7b 0a 09 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 {..lcompare [exe
1410: 63 5f 67 65 74 20 22 3a 22 20 63 69 70 68 65 72 c_get ":" cipher
1420: 73 20 2d 74 6c 73 31 5f 32 20 2d 73 5d 20 5b 3a s -tls1_2 -s] [:
1430: 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 6c :tls::ciphers tl
1440: 73 31 2e 32 20 30 20 31 5d 0a 20 20 20 20 7d 20 s1.2 0 1]. }
1450: 2d 72 65 73 75 6c 74 20 7b 6d 69 73 73 69 6e 67 -result {missing
1460: 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b {} unexpected {
1470: 7d 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 }}..test Ciphers
1480: 5f 50 72 6f 74 6f 63 6f 6c 5f 53 70 65 63 69 66 _Protocol_Specif
1490: 69 63 2d 34 2e 36 20 7b 54 4c 53 31 2e 33 7d 20 ic-4.6 {TLS1.3}
14a0: 2d 63 6f 6e 73 74 72 61 69 6e 74 73 20 7b 74 6c -constraints {tl
14b0: 73 31 2e 33 7d 20 2d 62 6f 64 79 20 7b 0a 09 6c s1.3} -body {..l
14c0: 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 compare [exec_ge
14d0: 74 20 22 3a 22 20 63 69 70 68 65 72 73 20 2d 74 t ":" ciphers -t
14e0: 6c 73 31 5f 33 20 2d 73 5d 20 5b 3a 3a 74 6c 73 ls1_3 -s] [::tls
14f0: 3a 3a 63 69 70 68 65 72 73 20 74 6c 73 31 2e 33 ::ciphers tls1.3
1500: 20 30 20 31 5d 0a 20 20 20 20 7d 20 2d 72 65 73 0 1]. } -res
1510: 75 6c 74 20 7b 6d 69 73 73 69 6e 67 20 7b 7d 20 ult {missing {}
1520: 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 7d 0a 0a unexpected {}}..
1530: 23 20 43 69 70 68 65 72 73 20 45 72 72 6f 72 20 # Ciphers Error
1540: 43 61 73 65 73 0a 0a 0a 74 65 73 74 20 43 69 70 Cases...test Cip
1550: 68 65 72 73 5f 45 72 72 6f 72 73 2d 35 2e 31 20 hers_Errors-5.1
1560: 7b 54 6f 6f 20 6d 61 6e 79 20 61 72 67 73 7d 20 {Too many args}
1570: 2d 62 6f 64 79 20 7b 0a 09 3a 3a 74 6c 73 3a 3a -body {..::tls::
1580: 63 69 70 68 65 72 73 20 74 6f 6f 20 6d 61 6e 79 ciphers too many
1590: 20 61 72 67 73 20 74 6f 20 70 61 73 73 0a 20 20 args to pass.
15a0: 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b 77 72 6f } -result {wro
15b0: 6e 67 20 23 20 61 72 67 73 3a 20 73 68 6f 75 6c ng # args: shoul
15c0: 64 20 62 65 20 22 3a 3a 74 6c 73 3a 3a 63 69 70 d be "::tls::cip
15d0: 68 65 72 73 20 3f 70 72 6f 74 6f 63 6f 6c 3f 20 hers ?protocol?
15e0: 3f 76 65 72 62 6f 73 65 3f 20 3f 73 75 70 70 6f ?verbose? ?suppo
15f0: 72 74 65 64 3f 22 7d 20 2d 72 65 74 75 72 6e 43 rted?"} -returnC
1600: 6f 64 65 73 20 7b 31 7d 0a 0a 74 65 73 74 20 43 odes {1}..test C
1610: 69 70 68 65 72 73 5f 45 72 72 6f 72 73 2d 35 2e iphers_Errors-5.
1620: 32 20 7b 49 6e 76 61 6c 69 64 20 70 72 6f 74 6f 2 {Invalid proto
1630: 63 6f 6c 7d 20 2d 62 6f 64 79 20 7b 0a 09 3a 3a col} -body {..::
1640: 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 62 6f 67 tls::ciphers bog
1650: 75 73 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 us. } -result
1660: 20 7b 62 61 64 20 70 72 6f 74 6f 63 6f 6c 20 22 {bad protocol "
1670: 62 6f 67 75 73 22 3a 20 6d 75 73 74 20 62 65 20 bogus": must be
1680: 73 73 6c 32 2c 20 73 73 6c 33 2c 20 74 6c 73 31 ssl2, ssl3, tls1
1690: 2c 20 74 6c 73 31 2e 31 2c 20 74 6c 73 31 2e 32 , tls1.1, tls1.2
16a0: 2c 20 6f 72 20 74 6c 73 31 2e 33 7d 20 2d 72 65 , or tls1.3} -re
16b0: 74 75 72 6e 43 6f 64 65 73 20 7b 31 7d 0a 0a 74 turnCodes {1}..t
16c0: 65 73 74 20 43 69 70 68 65 72 73 5f 45 72 72 6f est Ciphers_Erro
16d0: 72 73 2d 35 2e 33 20 7b 49 6e 76 61 6c 69 64 20 rs-5.3 {Invalid
16e0: 76 65 72 62 6f 73 65 7d 20 2d 62 6f 64 79 20 7b verbose} -body {
16f0: 0a 09 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 ..::tls::ciphers
1700: 20 74 6c 73 31 2e 33 20 62 6f 67 75 73 0a 20 20 tls1.3 bogus.
1710: 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b 65 78 70 } -result {exp
1720: 65 63 74 65 64 20 62 6f 6f 6c 65 61 6e 20 76 61 ected boolean va
1730: 6c 75 65 20 62 75 74 20 67 6f 74 20 22 62 6f 67 lue but got "bog
1740: 75 73 22 7d 20 2d 72 65 74 75 72 6e 43 6f 64 65 us"} -returnCode
1750: 73 20 7b 31 7d 0a 0a 74 65 73 74 20 43 69 70 68 s {1}..test Ciph
1760: 65 72 73 5f 45 72 72 6f 72 73 2d 35 2e 34 20 7b ers_Errors-5.4 {
1770: 49 6e 76 61 6c 69 64 20 73 75 70 70 6f 72 74 65 Invalid supporte
1780: 64 7d 20 2d 62 6f 64 79 20 7b 0a 09 3a 3a 74 6c d} -body {..::tl
1790: 73 3a 3a 63 69 70 68 65 72 73 20 74 6c 73 31 2e s::ciphers tls1.
17a0: 33 20 31 20 62 6f 67 75 73 0a 20 20 20 20 7d 20 3 1 bogus. }
17b0: 2d 72 65 73 75 6c 74 20 7b 65 78 70 65 63 74 65 -result {expecte
17c0: 64 20 62 6f 6f 6c 65 61 6e 20 76 61 6c 75 65 20 d boolean value
17d0: 62 75 74 20 67 6f 74 20 22 62 6f 67 75 73 22 7d but got "bogus"}
17e0: 20 2d 72 65 74 75 72 6e 43 6f 64 65 73 20 7b 31 -returnCodes {1
17f0: 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f }..test Ciphers_
1800: 45 72 72 6f 72 73 2d 35 2e 35 20 7b 53 53 4c 32 Errors-5.5 {SSL2
1810: 7d 20 2d 63 6f 6e 73 74 72 61 69 6e 74 73 20 7b } -constraints {
1820: 21 73 73 6c 32 7d 20 2d 62 6f 64 79 20 7b 0a 09 !ssl2} -body {..
1830: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 73 ::tls::ciphers s
1840: 73 6c 32 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c sl2. } -resul
1850: 74 20 7b 73 73 6c 32 3a 20 70 72 6f 74 6f 63 6f t {ssl2: protoco
1860: 6c 20 6e 6f 74 20 73 75 70 70 6f 72 74 65 64 7d l not supported}
1870: 20 2d 72 65 74 75 72 6e 43 6f 64 65 73 20 7b 31 -returnCodes {1
1880: 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f }..test Ciphers_
1890: 45 72 72 6f 72 73 2d 35 2e 36 20 7b 53 53 4c 33 Errors-5.6 {SSL3
18a0: 7d 20 2d 63 6f 6e 73 74 72 61 69 6e 74 73 20 7b } -constraints {
18b0: 21 73 73 6c 33 7d 20 2d 62 6f 64 79 20 7b 0a 09 !ssl3} -body {..
18c0: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 73 ::tls::ciphers s
18d0: 73 6c 33 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c sl3. } -resul
18e0: 74 20 7b 73 73 6c 33 3a 20 70 72 6f 74 6f 63 6f t {ssl3: protoco
18f0: 6c 20 6e 6f 74 20 73 75 70 70 6f 72 74 65 64 7d l not supported}
1900: 20 2d 72 65 74 75 72 6e 43 6f 64 65 73 20 7b 31 -returnCodes {1
1910: 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 73 5f }..test Ciphers_
1920: 45 72 72 6f 72 73 2d 35 2e 37 20 7b 54 4c 53 31 Errors-5.7 {TLS1
1930: 2e 30 7d 20 2d 63 6f 6e 73 74 72 61 69 6e 74 73 .0} -constraints
1940: 20 7b 21 74 6c 73 31 7d 20 2d 62 6f 64 79 20 7b {!tls1} -body {
1950: 0a 09 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 ..::tls::ciphers
1960: 20 74 6c 73 31 0a 20 20 20 20 7d 20 2d 72 65 73 tls1. } -res
1970: 75 6c 74 20 7b 74 6c 73 31 3a 20 70 72 6f 74 6f ult {tls1: proto
1980: 63 6f 6c 20 6e 6f 74 20 73 75 70 70 6f 72 74 65 col not supporte
1990: 64 7d 20 2d 72 65 74 75 72 6e 43 6f 64 65 73 20 d} -returnCodes
19a0: 7b 31 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 {1}..test Cipher
19b0: 73 5f 45 72 72 6f 72 73 2d 35 2e 38 20 7b 54 4c s_Errors-5.8 {TL
19c0: 53 31 2e 31 7d 20 2d 63 6f 6e 73 74 72 61 69 6e S1.1} -constrain
19d0: 74 73 20 7b 21 74 6c 73 31 2e 31 7d 20 2d 62 6f ts {!tls1.1} -bo
19e0: 64 79 20 7b 0a 09 3a 3a 74 6c 73 3a 3a 63 69 70 dy {..::tls::cip
19f0: 68 65 72 73 20 74 6c 73 31 2e 31 0a 20 20 20 20 hers tls1.1.
1a00: 7d 20 2d 72 65 73 75 6c 74 20 7b 74 6c 73 31 2e } -result {tls1.
1a10: 30 3a 20 70 72 6f 74 6f 63 6f 6c 20 6e 6f 74 20 0: protocol not
1a20: 73 75 70 70 6f 72 74 65 64 7d 20 2d 72 65 74 75 supported} -retu
1a30: 72 6e 43 6f 64 65 73 20 7b 31 7d 0a 0a 74 65 73 rnCodes {1}..tes
1a40: 74 20 43 69 70 68 65 72 73 5f 45 72 72 6f 72 73 t Ciphers_Errors
1a50: 2d 35 2e 39 20 7b 54 4c 53 31 2e 32 7d 20 2d 63 -5.9 {TLS1.2} -c
1a60: 6f 6e 73 74 72 61 69 6e 74 73 20 7b 21 74 6c 73 onstraints {!tls
1a70: 31 2e 32 7d 20 2d 62 6f 64 79 20 7b 0a 09 3a 3a 1.2} -body {..::
1a80: 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 6c 73 tls::ciphers tls
1a90: 31 2e 32 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 1.2. } -resul
1aa0: 74 20 7b 74 6c 73 31 2e 31 3a 20 70 72 6f 74 6f t {tls1.1: proto
1ab0: 63 6f 6c 20 6e 6f 74 20 73 75 70 70 6f 72 74 65 col not supporte
1ac0: 64 7d 20 2d 72 65 74 75 72 6e 43 6f 64 65 73 20 d} -returnCodes
1ad0: 7b 31 7d 0a 0a 74 65 73 74 20 43 69 70 68 65 72 {1}..test Cipher
1ae0: 73 5f 45 72 72 6f 72 73 2d 35 2e 31 30 20 7b 54 s_Errors-5.10 {T
1af0: 4c 53 31 2e 33 7d 20 2d 63 6f 6e 73 74 72 61 69 LS1.3} -constrai
1b00: 6e 74 73 20 7b 21 74 6c 73 31 2e 33 7d 20 2d 62 nts {!tls1.3} -b
1b10: 6f 64 79 20 7b 0a 09 3a 3a 74 6c 73 3a 3a 63 69 ody {..::tls::ci
1b20: 70 68 65 72 73 20 74 6c 73 31 2e 33 0a 20 20 20 phers tls1.3.
1b30: 20 7d 20 2d 72 65 73 75 6c 74 20 7b 74 6c 73 31 } -result {tls1
1b40: 2e 33 3a 20 70 72 6f 74 6f 63 6f 6c 20 6e 6f 74 .3: protocol not
1b50: 20 73 75 70 70 6f 72 74 65 64 7d 20 2d 72 65 74 supported} -ret
1b60: 75 72 6e 43 6f 64 65 73 20 7b 31 7d 0a 0a 23 20 urnCodes {1}..#
1b70: 54 65 73 74 20 43 69 70 68 65 72 20 49 6e 66 6f Test Cipher Info
1b80: 0a 0a 0a 74 65 73 74 20 43 69 70 68 65 72 5f 49 ...test Cipher_I
1b90: 6e 66 6f 2d 36 2e 31 20 7b 41 45 53 2d 32 35 36 nfo-6.1 {AES-256
1ba0: 2d 43 43 4d 7d 20 2d 62 6f 64 79 20 7b 0a 09 74 -CCM} -body {..t
1bb0: 6c 73 3a 3a 63 69 70 68 65 72 20 61 65 73 2d 32 ls::cipher aes-2
1bc0: 35 36 2d 63 63 6d 0a 20 20 20 20 7d 20 2d 72 65 56-ccm. } -re
1bd0: 73 75 6c 74 20 7b 6e 69 64 20 61 65 73 2d 32 35 sult {nid aes-25
1be0: 36 2d 63 63 6d 20 6e 61 6d 65 20 69 64 2d 61 65 6-ccm name id-ae
1bf0: 73 32 35 36 2d 43 43 4d 20 64 65 73 63 72 69 70 s256-CCM descrip
1c00: 74 69 6f 6e 20 7b 7d 20 62 6c 6f 63 6b 5f 73 69 tion {} block_si
1c10: 7a 65 20 31 20 6b 65 79 5f 6c 65 6e 67 74 68 20 ze 1 key_length
1c20: 33 32 20 69 76 5f 6c 65 6e 67 74 68 20 31 32 20 32 iv_length 12
1c30: 74 79 70 65 20 61 65 73 2d 32 35 36 2d 63 63 6d type aes-256-ccm
1c40: 20 70 72 6f 76 69 64 65 72 20 7b 7d 20 6d 6f 64 provider {} mod
1c50: 65 20 43 43 4d 20 66 6c 61 67 73 20 7b 7b 56 61 e CCM flags {{Va
1c60: 72 69 61 62 6c 65 20 4c 65 6e 67 74 68 7d 20 30 riable Length} 0
1c70: 20 7b 41 6c 77 61 79 73 20 43 61 6c 6c 20 49 6e {Always Call In
1c80: 69 74 7d 20 31 20 7b 43 75 73 74 6f 6d 20 49 56 it} 1 {Custom IV
1c90: 7d 20 31 20 7b 43 6f 6e 74 72 6f 6c 20 49 6e 69 } 1 {Control Ini
1ca0: 74 7d 20 31 20 7b 43 75 73 74 6f 6d 20 43 69 70 t} 1 {Custom Cip
1cb0: 68 65 72 7d 20 31 20 7b 41 45 41 44 20 43 69 70 her} 1 {AEAD Cip
1cc0: 68 65 72 7d 20 31 20 7b 43 75 73 74 6f 6d 20 43 her} 1 {Custom C
1cd0: 6f 70 79 7d 20 31 20 7b 4e 6f 6e 20 46 49 50 53 opy} 1 {Non FIPS
1ce0: 20 41 6c 6c 6f 77 7d 20 30 7d 7d 0a 0a 23 20 54 Allow} 0}}..# T
1cf0: 65 73 74 20 6c 69 73 74 20 64 69 67 65 73 74 73 est list digests
1d00: 0a 0a 0a 74 65 73 74 20 44 69 67 65 73 74 73 5f ...test Digests_
1d10: 4c 69 73 74 2d 37 2e 31 20 7b 41 6c 6c 7d 20 2d List-7.1 {All} -
1d20: 62 6f 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 body {..lcompare
1d30: 20 5b 6c 73 6f 72 74 20 5b 65 78 65 63 5f 67 65 [lsort [exec_ge
1d40: 74 5f 64 69 67 65 73 74 73 5d 5d 20 5b 6c 73 6f t_digests]] [lso
1d50: 72 74 20 5b 74 6c 73 3a 3a 64 69 67 65 73 74 73 rt [tls::digests
1d60: 5d 5d 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 ]]. } -result
1d70: 20 7b 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 {missing {} une
1d80: 78 70 65 63 74 65 64 20 7b 7d 7d 0a 0a 23 20 54 xpected {}}..# T
1d90: 65 73 74 20 44 69 67 65 73 74 20 49 6e 66 6f 0a est Digest Info.
1da0: 0a 0a 74 65 73 74 20 44 69 67 65 73 74 5f 49 6e ..test Digest_In
1db0: 66 6f 2d 38 2e 31 20 7b 6d 64 35 7d 20 2d 62 6f fo-8.1 {md5} -bo
1dc0: 64 79 20 7b 0a 09 74 6c 73 3a 3a 64 69 67 65 73 dy {..tls::diges
1dd0: 74 73 20 6d 64 35 0a 20 20 20 20 7d 20 2d 72 65 ts md5. } -re
1de0: 73 75 6c 74 20 7b 6e 61 6d 65 20 4d 44 35 20 64 sult {name MD5 d
1df0: 65 73 63 72 69 70 74 69 6f 6e 20 7b 7d 20 73 69 escription {} si
1e00: 7a 65 20 31 36 20 62 6c 6f 63 6b 5f 73 69 7a 65 ze 16 block_size
1e10: 20 36 34 20 70 72 6f 76 69 64 65 72 20 7b 7d 20 64 provider {}
1e20: 74 79 70 65 20 6d 64 35 20 70 6b 65 79 5f 74 79 type md5 pkey_ty
1e30: 70 65 20 6d 64 35 57 69 74 68 52 53 41 45 6e 63 pe md5WithRSAEnc
1e40: 72 79 70 74 69 6f 6e 20 66 6c 61 67 73 20 7b 4f ryption flags {O
1e50: 6e 65 2d 73 68 6f 74 20 30 20 58 4f 46 20 30 20 ne-shot 0 XOF 0
1e60: 44 69 67 65 73 74 41 6c 67 6f 72 69 74 68 6d 49 DigestAlgorithmI
1e70: 64 5f 4e 55 4c 4c 20 30 20 44 69 67 65 73 74 41 d_NULL 0 DigestA
1e80: 6c 67 6f 72 69 74 68 6d 49 64 5f 41 62 73 63 65 lgorithmId_Absce
1e90: 6e 74 20 30 20 44 69 67 65 73 74 41 6c 67 6f 72 nt 0 DigestAlgor
1ea0: 69 74 68 6d 49 64 5f 43 75 73 74 6f 6d 20 30 20 ithmId_Custom 0
1eb0: 46 49 50 53 20 30 7d 7d 0a 0a 23 20 54 65 73 74 FIPS 0}}..# Test
1ec0: 20 6c 69 73 74 20 4d 41 43 73 0a 0a 0a 74 65 73 list MACs...tes
1ed0: 74 20 4d 41 43 5f 4c 69 73 74 2d 39 2e 31 20 7b t MAC_List-9.1 {
1ee0: 41 6c 6c 7d 20 2d 62 6f 64 79 20 7b 0a 09 6c 63 All} -body {..lc
1ef0: 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 74 ompare [exec_get
1f00: 5f 6d 61 63 73 5d 20 5b 74 6c 73 3a 3a 6d 61 63 _macs] [tls::mac
1f10: 73 5d 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 s]. } -result
1f20: 20 7b 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 {missing {} une
1f30: 78 70 65 63 74 65 64 20 7b 7d 7d 0a 0a 23 20 54 xpected {}}..# T
1f40: 65 73 74 20 6c 69 73 74 20 70 72 6f 74 6f 63 6f est list protoco
1f50: 6c 73 0a 0a 0a 74 65 73 74 20 50 72 6f 74 6f 63 ls...test Protoc
1f60: 6f 6c 73 2d 31 30 2e 31 20 7b 41 6c 6c 7d 20 2d ols-10.1 {All} -
1f70: 62 6f 64 79 20 7b 0a 09 6c 63 6f 6d 70 61 72 65 body {..lcompare
1f80: 20 24 3a 3a 70 72 6f 74 6f 63 6f 6c 73 20 5b 3a $::protocols [:
1f90: 3a 74 6c 73 3a 3a 70 72 6f 74 6f 63 6f 6c 73 5d :tls::protocols]
1fa0: 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b . } -result {
1fb0: 6d 69 73 73 69 6e 67 20 7b 73 73 6c 32 20 73 73 missing {ssl2 ss
1fc0: 6c 33 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b l3} unexpected {
1fd0: 7d 7d 0a 0a 23 20 54 65 73 74 20 73 68 6f 77 20 }}..# Test show
1fe0: 76 65 72 73 69 6f 6e 0a 0a 0a 74 65 73 74 20 56 version...test V
1ff0: 65 72 73 69 6f 6e 2d 31 31 2e 31 20 7b 41 6c 6c ersion-11.1 {All
2000: 7d 20 2d 62 6f 64 79 20 7b 0a 09 3a 3a 74 6c 73 } -body {..::tls
2010: 3a 3a 76 65 72 73 69 6f 6e 0a 20 20 20 20 7d 20 ::version. }
2020: 2d 6d 61 74 63 68 20 7b 67 6c 6f 62 7d 20 2d 72 -match {glob} -r
2030: 65 73 75 6c 74 20 7b 2a 7d 0a 0a 74 65 73 74 20 esult {*}..test
2040: 56 65 72 73 69 6f 6e 2d 31 31 2e 32 20 7b 4f 70 Version-11.2 {Op
2050: 65 6e 53 53 4c 7d 20 2d 63 6f 6e 73 74 72 61 69 enSSL} -constrai
2060: 6e 74 73 20 7b 4f 70 65 6e 53 53 4c 7d 20 2d 62 nts {OpenSSL} -b
2070: 6f 64 79 20 7b 0a 09 3a 3a 74 6c 73 3a 3a 76 65 ody {..::tls::ve
2080: 72 73 69 6f 6e 0a 20 20 20 20 7d 20 2d 6d 61 74 rsion. } -mat
2090: 63 68 20 7b 67 6c 6f 62 7d 20 2d 72 65 73 75 6c ch {glob} -resul
20a0: 74 20 7b 4f 70 65 6e 53 53 4c 2a 7d 0a 0a 23 20 t {OpenSSL*}..#
20b0: 45 72 72 6f 72 20 43 61 73 65 73 0a 0a 0a 74 65 Error Cases...te
20c0: 73 74 20 45 72 72 6f 72 5f 43 61 73 65 73 2d 31 st Error_Cases-1
20d0: 32 2e 31 20 7b 43 69 70 68 65 72 20 54 6f 6f 20 2.1 {Cipher Too
20e0: 66 65 77 20 61 72 67 73 7d 20 2d 62 6f 64 79 20 few args} -body
20f0: 7b 0a 09 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 {..::tls::cipher
2100: 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 7b . } -result {
2110: 77 72 6f 6e 67 20 23 20 61 72 67 73 3a 20 73 68 wrong # args: sh
2120: 6f 75 6c 64 20 62 65 20 22 3a 3a 74 6c 73 3a 3a ould be "::tls::
2130: 63 69 70 68 65 72 20 6e 61 6d 65 22 7d 20 2d 72 cipher name"} -r
2140: 65 74 75 72 6e 43 6f 64 65 73 20 7b 31 7d 0a 0a eturnCodes {1}..
2150: 74 65 73 74 20 45 72 72 6f 72 5f 43 61 73 65 73 test Error_Cases
2160: 2d 31 32 2e 32 20 7b 43 69 70 68 65 72 20 54 6f -12.2 {Cipher To
2170: 6f 20 6d 61 6e 79 20 61 72 67 73 7d 20 2d 62 6f o many args} -bo
2180: 64 79 20 7b 0a 09 3a 3a 74 6c 73 3a 3a 63 69 70 dy {..::tls::cip
2190: 68 65 72 20 74 6f 6f 20 6d 61 6e 79 20 61 72 67 her too many arg
21a0: 73 0a 20 20 20 20 7d 20 2d 72 65 73 75 6c 74 20 s. } -result
21b0: 7b 77 72 6f 6e 67 20 23 20 61 72 67 73 3a 20 73 {wrong # args: s
21c0: 68 6f 75 6c 64 20 62 65 20 22 3a 3a 74 6c 73 3a hould be "::tls:
21d0: 3a 63 69 70 68 65 72 20 6e 61 6d 65 22 7d 20 2d :cipher name"} -
21e0: 72 65 74 75 72 6e 43 6f 64 65 73 20 7b 31 7d 0a returnCodes {1}.
21f0: 0a 74 65 73 74 20 45 72 72 6f 72 5f 43 61 73 65 .test Error_Case
2200: 73 2d 31 32 2e 33 20 7b 44 69 67 65 73 74 73 20 s-12.3 {Digests
2210: 54 6f 6f 20 6d 61 6e 79 20 61 72 67 73 7d 20 2d Too many args} -
2220: 62 6f 64 79 20 7b 0a 09 3a 3a 74 6c 73 3a 3a 64 body {..::tls::d
2230: 69 67 65 73 74 73 20 74 6f 6f 20 6d 61 6e 79 20 igests too many
2240: 61 72 67 73 0a 20 20 20 20 7d 20 2d 72 65 73 75 args. } -resu
2250: 6c 74 20 7b 77 72 6f 6e 67 20 23 20 61 72 67 73 lt {wrong # args
2260: 3a 20 73 68 6f 75 6c 64 20 62 65 20 22 3a 3a 74 : should be "::t
2270: 6c 73 3a 3a 64 69 67 65 73 74 73 20 3f 6e 61 6d ls::digests ?nam
2280: 65 3f 22 7d 20 2d 72 65 74 75 72 6e 43 6f 64 65 e?"} -returnCode
2290: 73 20 7b 31 7d 0a 0a 74 65 73 74 20 45 72 72 6f s {1}..test Erro
22a0: 72 5f 43 61 73 65 73 2d 31 32 2e 34 20 7b 4d 41 r_Cases-12.4 {MA
22b0: 43 73 20 54 6f 6f 20 6d 61 6e 79 20 61 72 67 73 Cs Too many args
22c0: 7d 20 2d 62 6f 64 79 20 7b 0a 09 3a 3a 74 6c 73 } -body {..::tls
22d0: 3a 3a 6d 61 63 73 20 74 6f 6f 20 6d 61 6e 79 20 ::macs too many
22e0: 61 72 67 73 0a 20 20 20 20 7d 20 2d 72 65 73 75 args. } -resu
22f0: 6c 74 20 7b 77 72 6f 6e 67 20 23 20 61 72 67 73 lt {wrong # args
2300: 3a 20 73 68 6f 75 6c 64 20 62 65 20 22 3a 3a 74 : should be "::t
2310: 6c 73 3a 3a 6d 61 63 73 22 7d 20 2d 72 65 74 75 ls::macs"} -retu
2320: 72 6e 43 6f 64 65 73 20 7b 31 7d 0a 0a 74 65 73 rnCodes {1}..tes
2330: 74 20 45 72 72 6f 72 5f 43 61 73 65 73 2d 31 32 t Error_Cases-12
2340: 2e 35 20 7b 50 72 6f 74 6f 63 6f 6c 73 20 54 6f .5 {Protocols To
2350: 6f 20 6d 61 6e 79 20 61 72 67 73 7d 20 2d 62 6f o many args} -bo
2360: 64 79 20 7b 0a 09 3a 3a 74 6c 73 3a 3a 70 72 6f dy {..::tls::pro
2370: 74 6f 63 6f 6c 73 20 74 6f 6f 20 6d 61 6e 79 20 tocols too many
2380: 61 72 67 73 0a 20 20 20 20 7d 20 2d 72 65 73 75 args. } -resu
2390: 6c 74 20 7b 77 72 6f 6e 67 20 23 20 61 72 67 73 lt {wrong # args
23a0: 3a 20 73 68 6f 75 6c 64 20 62 65 20 22 3a 3a 74 : should be "::t
23b0: 6c 73 3a 3a 70 72 6f 74 6f 63 6f 6c 73 22 7d 20 ls::protocols"}
23c0: 2d 72 65 74 75 72 6e 43 6f 64 65 73 20 7b 31 7d -returnCodes {1}
23d0: 0a 0a 74 65 73 74 20 45 72 72 6f 72 5f 43 61 73 ..test Error_Cas
23e0: 65 73 2d 31 32 2e 36 20 7b 56 65 72 73 69 6f 6e es-12.6 {Version
23f0: 20 54 6f 6f 20 6d 61 6e 79 20 61 72 67 73 7d 20 Too many args}
2400: 2d 62 6f 64 79 20 7b 0a 09 3a 3a 74 6c 73 3a 3a -body {..::tls::
2410: 76 65 72 73 69 6f 6e 20 74 6f 6f 20 6d 61 6e 79 version too many
2420: 20 61 72 67 73 0a 20 20 20 20 7d 20 2d 72 65 73 args. } -res
2430: 75 6c 74 20 7b 77 72 6f 6e 67 20 23 20 61 72 67 ult {wrong # arg
2440: 73 3a 20 73 68 6f 75 6c 64 20 62 65 20 22 3a 3a s: should be "::
2450: 74 6c 73 3a 3a 76 65 72 73 69 6f 6e 22 7d 20 2d tls::version"} -
2460: 72 65 74 75 72 6e 43 6f 64 65 73 20 7b 31 7d 0a returnCodes {1}.
2470: 0a 23 20 43 6c 65 61 6e 75 70 0a 3a 3a 74 63 6c .# Cleanup.::tcl
2480: 74 65 73 74 3a 3a 63 6c 65 61 6e 75 70 54 65 73 test::cleanupTes
2490: 74 73 0a 72 65 74 75 72 6e 0a ts.return.