0000: 23 20 47 72 6f 75 70 2c 4e 61 6d 65 2c 43 6f 6e # Group,Name,Con
0010: 73 74 72 61 69 6e 74 73 2c 53 65 74 75 70 2c 42 straints,Setup,B
0020: 6f 64 79 2c 43 6c 65 61 6e 75 70 2c 4d 61 74 63 ody,Cleanup,Matc
0030: 68 2c 52 65 73 75 6c 74 2c 4f 75 74 70 75 74 2c h,Result,Output,
0040: 45 72 72 6f 72 20 4f 75 74 70 75 74 2c 52 65 74 Error Output,Ret
0050: 75 72 6e 20 43 6f 64 65 73 0a 63 6f 6d 6d 61 6e urn Codes.comman
0060: 64 2c 70 61 63 6b 61 67 65 20 72 65 71 75 69 72 d,package requir
0070: 65 20 74 6c 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 e tls,,,,,,,,,.c
0080: 6f 6d 6d 61 6e 64 2c 2c 2c 2c 2c 2c 2c 2c 2c 2c ommand,,,,,,,,,,
0090: 0a 63 6f 6d 6d 61 6e 64 2c 23 20 4d 61 6b 65 20 .command,# Make
00a0: 73 75 72 65 20 70 61 74 68 20 69 6e 63 6c 75 64 sure path includ
00b0: 65 73 20 6c 6f 63 61 74 69 6f 6e 20 6f 66 20 4f es location of O
00c0: 70 65 6e 53 53 4c 20 65 78 65 63 75 74 61 62 6c penSSL executabl
00d0: 65 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 e,,,,,,,,,.comma
00e0: 6e 64 2c 22 69 66 20 7b 5b 69 6e 66 6f 20 65 78 nd,"if {[info ex
00f0: 69 73 74 73 20 3a 3a 65 6e 76 28 4f 50 45 4e 53 ists ::env(OPENS
0100: 53 4c 29 5d 7d 20 7b 73 65 74 20 3a 3a 65 6e 76 SL)]} {set ::env
0110: 28 70 61 74 68 29 20 5b 73 74 72 69 6e 67 20 63 (path) [string c
0120: 61 74 20 5b 66 69 6c 65 20 6a 6f 69 6e 20 24 3a at [file join $:
0130: 3a 65 6e 76 28 4f 50 45 4e 53 53 4c 29 20 62 69 :env(OPENSSL) bi
0140: 6e 5d 20 22 22 3b 22 22 20 24 3a 3a 65 6e 76 28 n] "";"" $::env(
0150: 70 61 74 68 29 5d 7d 22 2c 2c 2c 2c 2c 2c 2c 2c path)]}",,,,,,,,
0160: 2c 0a 63 6f 6d 6d 61 6e 64 2c 2c 2c 2c 2c 2c 2c ,.command,,,,,,,
0170: 2c 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 23 20 43 6f ,,,.command,# Co
0180: 6e 73 74 72 61 69 6e 74 73 2c 2c 2c 2c 2c 2c 2c nstraints,,,,,,,
0190: 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 73 65 74 20 70 ,,.command,set p
01a0: 72 6f 74 6f 63 6f 6c 73 20 5b 6c 69 73 74 20 73 rotocols [list s
01b0: 73 6c 32 20 73 73 6c 33 20 74 6c 73 31 20 74 6c sl2 ssl3 tls1 tl
01c0: 73 31 2e 31 20 74 6c 73 31 2e 32 20 74 6c 73 31 s1.1 tls1.2 tls1
01d0: 2e 33 5d 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d .3],,,,,,,,,.com
01e0: 6d 61 6e 64 2c 66 6f 72 65 61 63 68 20 70 72 6f mand,foreach pro
01f0: 74 6f 63 6f 6c 20 24 70 72 6f 74 6f 63 6f 6c 73 tocol $protocols
0200: 20 7b 3a 3a 74 63 6c 74 65 73 74 3a 3a 74 65 73 {::tcltest::tes
0210: 74 43 6f 6e 73 74 72 61 69 6e 74 20 24 70 72 6f tConstraint $pro
0220: 74 6f 63 6f 6c 20 30 7d 2c 2c 2c 2c 2c 2c 2c 2c tocol 0},,,,,,,,
0230: 2c 0a 63 6f 6d 6d 61 6e 64 2c 66 6f 72 65 61 63 ,.command,foreac
0240: 68 20 70 72 6f 74 6f 63 6f 6c 20 5b 3a 3a 74 6c h protocol [::tl
0250: 73 3a 3a 70 72 6f 74 6f 63 6f 6c 73 5d 20 7b 3a s::protocols] {:
0260: 3a 74 63 6c 74 65 73 74 3a 3a 74 65 73 74 43 6f :tcltest::testCo
0270: 6e 73 74 72 61 69 6e 74 20 24 70 72 6f 74 6f 63 nstraint $protoc
0280: 6f 6c 20 31 7d 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 ol 1},,,,,,,,,.c
0290: 6f 6d 6d 61 6e 64 2c 22 3a 3a 74 63 6c 74 65 73 ommand,"::tcltes
02a0: 74 3a 3a 74 65 73 74 43 6f 6e 73 74 72 61 69 6e t::testConstrain
02b0: 74 20 4f 70 65 6e 53 53 4c 20 5b 73 74 72 69 6e t OpenSSL [strin
02c0: 67 20 6d 61 74 63 68 20 22 22 4f 70 65 6e 53 53 g match ""OpenSS
02d0: 4c 2a 22 22 20 5b 3a 3a 74 6c 73 3a 3a 76 65 72 L*"" [::tls::ver
02e0: 73 69 6f 6e 5d 5d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c sion]]",,,,,,,,,
02f0: 0a 2c 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d .,,,,,,,,,,.comm
0300: 61 6e 64 2c 23 20 48 65 6c 70 65 72 20 66 75 6e and,# Helper fun
0310: 63 74 69 6f 6e 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a ctions,,,,,,,,,.
0320: 63 6f 6d 6d 61 6e 64 2c 22 70 72 6f 63 20 6c 63 command,"proc lc
0330: 6f 6d 70 61 72 65 20 7b 6c 69 73 74 31 20 6c 69 ompare {list1 li
0340: 73 74 32 7d 20 7b 73 65 74 20 6d 20 22 22 22 22 st2} {set m """"
0350: 3b 73 65 74 20 75 20 22 22 22 22 3b 66 6f 72 65 ;set u """";fore
0360: 61 63 68 20 69 20 24 6c 69 73 74 31 20 7b 69 66 ach i $list1 {if
0370: 20 7b 24 69 20 6e 69 20 24 6c 69 73 74 32 7d 20 {$i ni $list2}
0380: 7b 6c 61 70 70 65 6e 64 20 6d 20 24 69 7d 7d 3b {lappend m $i}};
0390: 66 6f 72 65 61 63 68 20 69 20 24 6c 69 73 74 32 foreach i $list2
03a0: 20 7b 69 66 20 7b 24 69 20 6e 69 20 24 6c 69 73 {if {$i ni $lis
03b0: 74 31 7d 20 7b 6c 61 70 70 65 6e 64 20 75 20 24 t1} {lappend u $
03c0: 69 7d 7d 3b 72 65 74 75 72 6e 20 5b 6c 69 73 74 i}};return [list
03d0: 20 22 22 6d 69 73 73 69 6e 67 22 22 20 24 6d 20 ""missing"" $m
03e0: 22 22 75 6e 65 78 70 65 63 74 65 64 22 22 20 24 ""unexpected"" $
03f0: 75 5d 7d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f u]}",,,,,,,,,.co
0400: 6d 6d 61 6e 64 2c 70 72 6f 63 20 65 78 65 63 5f mmand,proc exec_
0410: 67 65 74 20 7b 64 65 6c 69 6d 20 61 72 67 73 7d get {delim args}
0420: 20 7b 72 65 74 75 72 6e 20 5b 73 70 6c 69 74 20 {return [split
0430: 5b 65 78 65 63 20 6f 70 65 6e 73 73 6c 20 7b 2a [exec openssl {*
0440: 7d 24 61 72 67 73 5d 20 24 64 65 6c 69 6d 5d 7d }$args] $delim]}
0450: 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e ,,,,,,,,,.comman
0460: 64 2c 22 70 72 6f 63 20 65 78 65 63 5f 67 65 74 d,"proc exec_get
0470: 5f 63 69 70 68 65 72 73 20 7b 7d 20 7b 73 65 74 _ciphers {} {set
0480: 20 6c 69 73 74 20 5b 6c 69 73 74 5d 3b 73 65 74 list [list];set
0490: 20 64 61 74 61 20 5b 65 78 65 63 20 6f 70 65 6e data [exec open
04a0: 73 73 6c 20 63 69 70 68 65 72 73 20 41 4c 4c 5d ssl ciphers ALL]
04b0: 3b 66 6f 72 65 61 63 68 20 63 69 70 68 65 72 20 ;foreach cipher
04c0: 5b 73 70 6c 69 74 20 24 64 61 74 61 20 22 22 3a [split $data "":
04d0: 22 22 5d 20 7b 6c 61 70 70 65 6e 64 20 6c 69 73 ""] {lappend lis
04e0: 74 20 5b 73 74 72 69 6e 67 20 74 6f 6c 6f 77 65 t [string tolowe
04f0: 72 20 24 63 69 70 68 65 72 5d 7d 3b 72 65 74 75 r $cipher]};retu
0500: 72 6e 20 5b 6c 73 6f 72 74 20 24 6c 69 73 74 5d rn [lsort $list]
0510: 7d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d }",,,,,,,,,.comm
0520: 61 6e 64 2c 22 70 72 6f 63 20 65 78 65 63 5f 67 and,"proc exec_g
0530: 65 74 5f 64 69 67 65 73 74 73 20 7b 7d 20 7b 73 et_digests {} {s
0540: 65 74 20 6c 69 73 74 20 5b 6c 69 73 74 5d 3b 73 et list [list];s
0550: 65 74 20 64 61 74 61 20 5b 65 78 65 63 20 6f 70 et data [exec op
0560: 65 6e 73 73 6c 20 64 67 73 74 20 2d 6c 69 73 74 enssl dgst -list
0570: 5d 3b 66 6f 72 65 61 63 68 20 6c 69 6e 65 20 5b ];foreach line [
0580: 73 70 6c 69 74 20 24 64 61 74 61 20 22 22 5c 6e split $data ""\n
0590: 22 22 5d 20 7b 66 6f 72 65 61 63 68 20 64 69 67 ""] {foreach dig
05a0: 65 73 74 20 24 6c 69 6e 65 20 7b 69 66 20 7b 5b est $line {if {[
05b0: 73 74 72 69 6e 67 20 6d 61 74 63 68 20 22 22 2d string match ""-
05c0: 2a 22 22 20 24 64 69 67 65 73 74 5d 7d 20 7b 6c *"" $digest]} {l
05d0: 61 70 70 65 6e 64 20 6c 69 73 74 20 5b 73 74 72 append list [str
05e0: 69 6e 67 20 74 72 69 6d 6c 65 66 74 20 24 64 69 ing trimleft $di
05f0: 67 65 73 74 20 22 22 2d 22 22 5d 7d 7d 7d 3b 72 gest ""-""]}}};r
0600: 65 74 75 72 6e 20 5b 6c 73 6f 72 74 20 24 6c 69 eturn [lsort $li
0610: 73 74 5d 7d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 st]}",,,,,,,,,.c
0620: 6f 6d 6d 61 6e 64 2c 22 70 72 6f 63 20 6e 6f 5f ommand,"proc no_
0630: 72 73 61 20 7b 64 69 67 65 73 74 73 7d 20 7b 73 rsa {digests} {s
0640: 65 74 20 6c 69 73 74 20 5b 6c 69 73 74 5d 3b 66 et list [list];f
0650: 6f 72 65 61 63 68 20 64 69 67 65 73 74 20 24 64 oreach digest $d
0660: 69 67 65 73 74 73 20 7b 69 66 20 7b 21 5b 73 74 igests {if {![st
0670: 72 69 6e 67 20 6d 61 74 63 68 20 2d 6e 6f 63 61 ring match -noca
0680: 73 65 20 22 22 2a 52 53 41 2a 22 22 20 24 64 69 se ""*RSA*"" $di
0690: 67 65 73 74 5d 7d 20 7b 6c 61 70 70 65 6e 64 20 gest]} {lappend
06a0: 6c 69 73 74 20 24 64 69 67 65 73 74 7d 7d 3b 72 list $digest}};r
06b0: 65 74 75 72 6e 20 5b 6c 73 6f 72 74 20 24 6c 69 eturn [lsort $li
06c0: 73 74 5d 7d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 2c st]}",,,,,,,,,.,
06d0: 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e ,,,,,,,,,.comman
06e0: 64 2c 23 20 54 65 73 74 20 6c 69 73 74 20 63 69 d,# Test list ci
06f0: 70 68 65 72 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 43 phers,,,,,,,,,.C
0700: 69 70 68 65 72 73 41 6c 6c 2c 2c 2c 2c 6c 63 6f iphersAll,,,,lco
0710: 6d 70 61 72 65 20 5b 6c 73 6f 72 74 20 5b 65 78 mpare [lsort [ex
0720: 65 63 5f 67 65 74 5f 63 69 70 68 65 72 73 5d 5d ec_get_ciphers]]
0730: 20 5b 6c 73 6f 72 74 20 5b 3a 3a 74 6c 73 3a 3a [lsort [::tls::
0740: 63 69 70 68 65 72 73 5d 5d 2c 2c 2c 6d 69 73 73 ciphers]],,,miss
0750: 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 ing {} unexpecte
0760: 64 20 7b 7d 2c 2c 2c 0a 2c 2c 2c 2c 2c 2c 2c 2c d {},,,.,,,,,,,,
0770: 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 23 20 54 65 73 ,,.command,# Tes
0780: 74 20 6c 69 73 74 20 63 69 70 68 65 72 73 20 66 t list ciphers f
0790: 6f 72 20 70 72 6f 74 6f 63 6f 6c 73 2c 2c 2c 2c or protocols,,,,
07a0: 2c 2c 2c 2c 2c 0a 43 69 70 68 65 72 73 50 72 6f ,,,,,.CiphersPro
07b0: 74 6f 63 6f 6c 73 2c 53 53 4c 32 2c 73 73 6c 32 tocols,SSL2,ssl2
07c0: 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 ,,"lcompare [exe
07d0: 63 5f 67 65 74 20 22 22 3a 22 22 20 63 69 70 68 c_get "":"" ciph
07e0: 65 72 73 20 2d 73 73 6c 32 5d 20 5b 3a 3a 74 6c ers -ssl2] [::tl
07f0: 73 3a 3a 63 69 70 68 65 72 73 20 73 73 6c 32 5d s::ciphers ssl2]
0800: 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 75 ",,,missing {} u
0810: 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a nexpected {},,,.
0820: 43 69 70 68 65 72 73 50 72 6f 74 6f 63 6f 6c 73 CiphersProtocols
0830: 2c 53 53 4c 33 2c 73 73 6c 33 2c 2c 22 6c 63 6f ,SSL3,ssl3,,"lco
0840: 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 74 20 mpare [exec_get
0850: 22 22 3a 22 22 20 63 69 70 68 65 72 73 20 2d 73 "":"" ciphers -s
0860: 73 6c 33 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 sl3] [::tls::cip
0870: 68 65 72 73 20 73 73 6c 33 5d 22 2c 2c 2c 6d 69 hers ssl3]",,,mi
0880: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0890: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
08a0: 73 50 72 6f 74 6f 63 6f 6c 73 2c 54 4c 53 31 2c sProtocols,TLS1,
08b0: 74 6c 73 31 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 tls1,,"lcompare
08c0: 5b 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 [exec_get "":""
08d0: 63 69 70 68 65 72 73 20 2d 74 6c 73 31 5d 20 5b ciphers -tls1] [
08e0: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
08f0: 6c 73 31 5d 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 ls1]",,,missing
0900: 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d {} unexpected {}
0910: 2c 2c 2c 0a 43 69 70 68 65 72 73 50 72 6f 74 6f ,,,.CiphersProto
0920: 63 6f 6c 73 2c 54 4c 53 31 2e 31 2c 74 6c 73 31 cols,TLS1.1,tls1
0930: 2e 31 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b 65 .1,,"lcompare [e
0940: 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 63 69 xec_get "":"" ci
0950: 70 68 65 72 73 20 2d 74 6c 73 31 5f 31 5d 20 5b phers -tls1_1] [
0960: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
0970: 6c 73 31 2e 31 5d 22 2c 2c 2c 6d 69 73 73 69 6e ls1.1]",,,missin
0980: 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 20 g {} unexpected
0990: 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 73 50 72 6f {},,,.CiphersPro
09a0: 74 6f 63 6f 6c 73 2c 54 4c 53 31 2e 32 2c 74 6c tocols,TLS1.2,tl
09b0: 73 31 2e 32 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 s1.2,,"lcompare
09c0: 5b 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 [exec_get "":""
09d0: 63 69 70 68 65 72 73 20 2d 74 6c 73 31 5f 32 5d ciphers -tls1_2]
09e0: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
09f0: 20 74 6c 73 31 2e 32 5d 22 2c 2c 2c 6d 69 73 73 tls1.2]",,,miss
0a00: 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 ing {} unexpecte
0a10: 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 73 50 d {},,,.CiphersP
0a20: 72 6f 74 6f 63 6f 6c 73 2c 54 4c 53 31 2e 33 2c rotocols,TLS1.3,
0a30: 74 6c 73 31 2e 33 2c 2c 22 6c 63 6f 6d 70 61 72 tls1.3,,"lcompar
0a40: 65 20 5b 65 78 65 63 5f 67 65 74 20 22 22 3a 22 e [exec_get "":"
0a50: 22 20 63 69 70 68 65 72 73 20 2d 74 6c 73 31 5f " ciphers -tls1_
0a60: 33 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 3] [::tls::ciphe
0a70: 72 73 20 74 6c 73 31 2e 33 5d 22 2c 2c 2c 6d 69 rs tls1.3]",,,mi
0a80: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0a90: 74 65 64 20 7b 7d 2c 2c 2c 0a 2c 2c 2c 2c 2c 2c ted {},,,.,,,,,,
0aa0: 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 23 20 54 ,,,,.command,# T
0ab0: 65 73 74 20 63 69 70 68 65 72 20 64 65 73 63 72 est cipher descr
0ac0: 69 70 74 69 6f 6e 73 2c 2c 2c 2c 2c 2c 2c 2c 2c iptions,,,,,,,,,
0ad0: 0a 43 69 70 68 65 72 73 44 65 73 63 72 69 70 74 .CiphersDescript
0ae0: 69 6f 6e 73 2c 53 53 4c 32 2c 73 73 6c 32 2c 2c ions,SSL2,ssl2,,
0af0: 22 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f "lcompare [exec_
0b00: 67 65 74 20 22 22 5c 72 5c 6e 22 22 20 63 69 70 get ""\r\n"" cip
0b10: 68 65 72 73 20 2d 73 73 6c 32 20 2d 76 5d 20 5b hers -ssl2 -v] [
0b20: 73 70 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 split [string tr
0b30: 69 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 im [::tls::ciphe
0b40: 72 73 20 73 73 6c 32 20 31 5d 5d 20 5c 6e 5d 22 rs ssl2 1]] \n]"
0b50: 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e ,,,missing {} un
0b60: 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a 43 expected {},,,.C
0b70: 69 70 68 65 72 73 44 65 73 63 72 69 70 74 69 6f iphersDescriptio
0b80: 6e 73 2c 53 53 4c 33 2c 73 73 6c 33 2c 2c 22 6c ns,SSL3,ssl3,,"l
0b90: 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 compare [exec_ge
0ba0: 74 20 22 22 5c 72 5c 6e 22 22 20 63 69 70 68 65 t ""\r\n"" ciphe
0bb0: 72 73 20 2d 73 73 6c 33 20 2d 76 5d 20 5b 73 70 rs -ssl3 -v] [sp
0bc0: 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 69 6d lit [string trim
0bd0: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
0be0: 20 73 73 6c 33 20 31 5d 5d 20 5c 6e 5d 22 2c 2c ssl3 1]] \n]",,
0bf0: 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 ,missing {} unex
0c00: 70 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 pected {},,,.Cip
0c10: 68 65 72 73 44 65 73 63 72 69 70 74 69 6f 6e 73 hersDescriptions
0c20: 2c 54 4c 53 31 2c 74 6c 73 31 2c 2c 22 6c 63 6f ,TLS1,tls1,,"lco
0c30: 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 74 20 mpare [exec_get
0c40: 22 22 5c 72 5c 6e 22 22 20 63 69 70 68 65 72 73 ""\r\n"" ciphers
0c50: 20 2d 74 6c 73 31 20 2d 76 5d 20 5b 73 70 6c 69 -tls1 -v] [spli
0c60: 74 20 5b 73 74 72 69 6e 67 20 74 72 69 6d 20 5b t [string trim [
0c70: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
0c80: 6c 73 31 20 31 5d 5d 20 5c 6e 5d 22 2c 2c 2c 6d ls1 1]] \n]",,,m
0c90: 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 issing {} unexpe
0ca0: 63 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 cted {},,,.Ciphe
0cb0: 72 73 44 65 73 63 72 69 70 74 69 6f 6e 73 2c 54 rsDescriptions,T
0cc0: 4c 53 31 2e 31 2c 74 6c 73 31 2e 31 2c 2c 22 6c LS1.1,tls1.1,,"l
0cd0: 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 compare [exec_ge
0ce0: 74 20 22 22 5c 72 5c 6e 22 22 20 63 69 70 68 65 t ""\r\n"" ciphe
0cf0: 72 73 20 2d 74 6c 73 31 5f 31 20 2d 76 5d 20 5b rs -tls1_1 -v] [
0d00: 73 70 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 split [string tr
0d10: 69 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 im [::tls::ciphe
0d20: 72 73 20 74 6c 73 31 2e 31 20 31 5d 5d 20 5c 6e rs tls1.1 1]] \n
0d30: 5d 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 ]",,,missing {}
0d40: 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c 2c unexpected {},,,
0d50: 0a 43 69 70 68 65 72 73 44 65 73 63 72 69 70 74 .CiphersDescript
0d60: 69 6f 6e 73 2c 54 4c 53 31 2e 32 2c 74 6c 73 31 ions,TLS1.2,tls1
0d70: 2e 32 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b 65 .2,,"lcompare [e
0d80: 78 65 63 5f 67 65 74 20 22 22 5c 72 5c 6e 22 22 xec_get ""\r\n""
0d90: 20 63 69 70 68 65 72 73 20 2d 74 6c 73 31 5f 32 ciphers -tls1_2
0da0: 20 2d 76 5d 20 5b 73 70 6c 69 74 20 5b 73 74 72 -v] [split [str
0db0: 69 6e 67 20 74 72 69 6d 20 5b 3a 3a 74 6c 73 3a ing trim [::tls:
0dc0: 3a 63 69 70 68 65 72 73 20 74 6c 73 31 2e 32 20 :ciphers tls1.2
0dd0: 31 5d 5d 20 5c 6e 5d 22 2c 2c 2c 6d 69 73 73 69 1]] \n]",,,missi
0de0: 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 ng {} unexpected
0df0: 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 73 44 65 {},,,.CiphersDe
0e00: 73 63 72 69 70 74 69 6f 6e 73 2c 54 4c 53 31 2e scriptions,TLS1.
0e10: 33 2c 74 6c 73 31 2e 33 2c 2c 22 6c 63 6f 6d 70 3,tls1.3,,"lcomp
0e20: 61 72 65 20 5b 65 78 65 63 5f 67 65 74 20 22 22 are [exec_get ""
0e30: 5c 72 5c 6e 22 22 20 63 69 70 68 65 72 73 20 2d \r\n"" ciphers -
0e40: 74 6c 73 31 5f 33 20 2d 76 5d 20 5b 73 70 6c 69 tls1_3 -v] [spli
0e50: 74 20 5b 73 74 72 69 6e 67 20 74 72 69 6d 20 5b t [string trim [
0e60: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
0e70: 6c 73 31 2e 33 20 31 5d 5d 20 5c 6e 5d 22 2c 2c ls1.3 1]] \n]",,
0e80: 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 ,missing {} unex
0e90: 70 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a 2c 2c 2c pected {},,,.,,,
0ea0: 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c ,,,,,,,.command,
0eb0: 23 20 54 65 73 74 20 70 72 6f 74 6f 63 6f 6c 20 # Test protocol
0ec0: 73 70 65 63 69 66 69 63 20 63 69 70 68 65 72 73 specific ciphers
0ed0: 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 43 69 70 68 65 72 ,,,,,,,,,.Cipher
0ee0: 73 53 70 65 63 69 66 69 63 2c 53 53 4c 32 2c 73 sSpecific,SSL2,s
0ef0: 73 6c 32 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b sl2,,"lcompare [
0f00: 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 63 exec_get "":"" c
0f10: 69 70 68 65 72 73 20 2d 73 73 6c 32 20 2d 73 5d iphers -ssl2 -s]
0f20: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
0f30: 20 73 73 6c 32 20 30 20 31 5d 22 2c 2c 2c 6d 69 ssl2 0 1]",,,mi
0f40: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0f50: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
0f60: 73 53 70 65 63 69 66 69 63 2c 53 53 4c 33 2c 73 sSpecific,SSL3,s
0f70: 73 6c 33 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b sl3,,"lcompare [
0f80: 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 63 exec_get "":"" c
0f90: 69 70 68 65 72 73 20 2d 73 73 6c 33 20 2d 73 5d iphers -ssl3 -s]
0fa0: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
0fb0: 20 73 73 6c 33 20 30 20 31 5d 22 2c 2c 2c 6d 69 ssl3 0 1]",,,mi
0fc0: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0fd0: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
0fe0: 73 53 70 65 63 69 66 69 63 2c 54 4c 53 31 2c 74 sSpecific,TLS1,t
0ff0: 6c 73 31 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b ls1,,"lcompare [
1000: 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 63 exec_get "":"" c
1010: 69 70 68 65 72 73 20 2d 74 6c 73 31 20 2d 73 5d iphers -tls1 -s]
1020: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
1030: 20 74 6c 73 31 20 30 20 31 5d 22 2c 2c 2c 6d 69 tls1 0 1]",,,mi
1040: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
1050: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
1060: 73 53 70 65 63 69 66 69 63 2c 54 4c 53 31 2e 31 sSpecific,TLS1.1
1070: 2c 74 6c 73 31 2e 31 2c 2c 22 6c 63 6f 6d 70 61 ,tls1.1,,"lcompa
1080: 72 65 20 5b 65 78 65 63 5f 67 65 74 20 22 22 3a re [exec_get "":
1090: 22 22 20 63 69 70 68 65 72 73 20 2d 74 6c 73 31 "" ciphers -tls1
10a0: 5f 31 20 2d 73 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 _1 -s] [::tls::c
10b0: 69 70 68 65 72 73 20 74 6c 73 31 2e 31 20 30 20 iphers tls1.1 0
10c0: 31 5d 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 1]",,,missing {}
10d0: 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c unexpected {},,
10e0: 2c 0a 43 69 70 68 65 72 73 53 70 65 63 69 66 69 ,.CiphersSpecifi
10f0: 63 2c 54 4c 53 31 2e 32 2c 74 6c 73 31 2e 32 2c c,TLS1.2,tls1.2,
1100: 2c 22 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 ,"lcompare [exec
1110: 5f 67 65 74 20 22 22 3a 22 22 20 63 69 70 68 65 _get "":"" ciphe
1120: 72 73 20 2d 74 6c 73 31 5f 32 20 2d 73 5d 20 5b rs -tls1_2 -s] [
1130: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
1140: 6c 73 31 2e 32 20 30 20 31 5d 22 2c 2c 2c 6d 69 ls1.2 0 1]",,,mi
1150: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
1160: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
1170: 73 53 70 65 63 69 66 69 63 2c 54 4c 53 31 2e 33 sSpecific,TLS1.3
1180: 2c 74 6c 73 31 2e 33 2c 2c 22 6c 63 6f 6d 70 61 ,tls1.3,,"lcompa
1190: 72 65 20 5b 65 78 65 63 5f 67 65 74 20 22 22 3a re [exec_get "":
11a0: 22 22 20 63 69 70 68 65 72 73 20 2d 74 6c 73 31 "" ciphers -tls1
11b0: 5f 33 20 2d 73 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 _3 -s] [::tls::c
11c0: 69 70 68 65 72 73 20 74 6c 73 31 2e 33 20 30 20 iphers tls1.3 0
11d0: 31 5d 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 1]",,,missing {}
11e0: 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c unexpected {},,
11f0: 2c 0a 2c 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d ,.,,,,,,,,,,.com
1200: 6d 61 6e 64 2c 23 20 54 65 73 74 20 76 65 72 73 mand,# Test vers
1210: 69 6f 6e 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 56 65 72 ion,,,,,,,,,.Ver
1220: 73 69 6f 6e 2c 41 6c 6c 2c 2c 2c 3a 3a 74 6c 73 sion,All,,,::tls
1230: 3a 3a 76 65 72 73 69 6f 6e 2c 2c 67 6c 6f 62 2c ::version,,glob,
1240: 2a 2c 2c 2c 0a 56 65 72 73 69 6f 6e 2c 4f 70 65 *,,,.Version,Ope
1250: 6e 53 53 4c 2c 4f 70 65 6e 53 53 4c 2c 2c 3a 3a nSSL,OpenSSL,,::
1260: 74 6c 73 3a 3a 76 65 72 73 69 6f 6e 2c 2c 67 6c tls::version,,gl
1270: 6f 62 2c 4f 70 65 6e 53 53 4c 2a 2c 2c 2c 0a 2c ob,OpenSSL*,,,.,
1280: 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e ,,,,,,,,,.comman
1290: 64 2c 23 20 54 65 73 74 20 6c 69 73 74 20 64 69 d,# Test list di
12a0: 67 65 73 74 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 44 gests,,,,,,,,,.D
12b0: 69 67 65 73 74 20 4c 69 73 74 2c 44 69 67 65 73 igest List,Diges
12c0: 74 20 4c 69 73 74 2c 2c 2c 6c 63 6f 6d 70 61 72 t List,,,lcompar
12d0: 65 20 5b 65 78 65 63 5f 67 65 74 5f 64 69 67 65 e [exec_get_dige
12e0: 73 74 73 5d 20 5b 6e 6f 2d 72 73 61 20 5b 74 6c sts] [no-rsa [tl
12f0: 73 3a 3a 64 69 67 65 73 74 73 5d 5d 2c 2c 2c 6d s::digests]],,,m
1300: 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 issing {} unexpe
1310: 63 74 65 64 20 7b 7d 2c 2c 2c 0a 2c 2c 2c 2c 2c cted {},,,.,,,,,
1320: 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 23 20 ,,,,,.command,#
1330: 54 65 73 74 20 44 69 67 65 73 74 73 2c 2c 2c 2c Test Digests,,,,
1340: 2c 2c 2c 2c 2c 0a 44 69 67 65 73 74 2c 6d 64 34 ,,,,,.Digest,md4
1350: 20 6f 70 74 2c 2c 2c 22 74 6c 73 3a 3a 6d 64 34 opt,,,"tls::md4
1360: 20 22 22 45 78 61 6d 70 6c 65 20 73 74 72 69 6e ""Example strin
1370: 67 20 66 6f 72 20 6d 65 73 73 61 67 65 20 64 69 g for message di
1380: 67 65 73 74 20 74 65 73 74 73 2e 22 22 22 2c 2c gest tests.""",,
1390: 2c 31 38 31 43 44 43 46 39 44 42 39 42 36 46 41 ,181CDCF9DB9B6FA
13a0: 38 46 43 30 41 33 42 46 39 43 33 34 45 32 39 44 8FC0A3BF9C34E29D
13b0: 39 2c 2c 2c 0a 44 69 67 65 73 74 2c 6d 64 35 20 9,,,.Digest,md5
13c0: 6f 70 74 2c 2c 2c 22 74 6c 73 3a 3a 6d 64 35 20 opt,,,"tls::md5
13d0: 22 22 45 78 61 6d 70 6c 65 20 73 74 72 69 6e 67 ""Example string
13e0: 20 66 6f 72 20 6d 65 73 73 61 67 65 20 64 69 67 for message dig
13f0: 65 73 74 20 74 65 73 74 73 2e 22 22 22 2c 2c 2c est tests.""",,,
1400: 43 43 42 31 42 45 32 45 31 31 44 38 31 38 33 45 CCB1BE2E11D8183E
1410: 38 34 33 46 46 37 33 44 41 38 43 36 44 32 30 36 843FF73DA8C6D206
1420: 2c 2c 2c 0a 44 69 67 65 73 74 2c 73 68 61 31 20 ,,,.Digest,sha1
1430: 6f 70 74 2c 2c 2c 22 74 6c 73 3a 3a 73 68 61 31 opt,,,"tls::sha1
1440: 20 22 22 45 78 61 6d 70 6c 65 20 73 74 72 69 6e ""Example strin
1450: 67 20 66 6f 72 20 6d 65 73 73 61 67 65 20 64 69 g for message di
1460: 67 65 73 74 20 74 65 73 74 73 2e 22 22 22 2c 2c gest tests.""",,
1470: 2c 33 41 45 46 45 38 34 30 43 41 34 39 32 43 33 ,3AEFE840CA492C3
1480: 38 37 45 39 30 33 46 31 35 45 44 36 30 31 39 45 87E903F15ED6019E
1490: 37 41 44 38 33 33 42 34 37 2c 2c 2c 0a 44 69 67 7AD833B47,,,.Dig
14a0: 65 73 74 2c 73 68 61 32 35 36 20 6f 70 74 2c 2c est,sha256 opt,,
14b0: 2c 22 74 6c 73 3a 3a 73 68 61 32 35 36 20 22 22 ,"tls::sha256 ""
14c0: 45 78 61 6d 70 6c 65 20 73 74 72 69 6e 67 20 66 Example string f
14d0: 6f 72 20 6d 65 73 73 61 67 65 20 64 69 67 65 73 or message diges
14e0: 74 20 74 65 73 74 73 2e 22 22 22 2c 2c 2c 42 37 t tests.""",,,B7
14f0: 44 46 44 44 45 42 30 33 31 34 41 37 34 46 46 35 DFDDEB0314A74FF5
1500: 36 41 38 41 43 31 45 33 44 43 35 37 44 46 30 39 6A8AC1E3DC57DF09
1510: 42 42 35 32 41 39 36 44 41 35 30 46 36 35 34 39 BB52A96DA50F6549
1520: 45 42 36 32 43 41 36 31 41 30 41 34 39 31 2c 2c EB62CA61A0A491,,
1530: 2c 0a 44 69 67 65 73 74 2c 6d 64 34 2c 2c 2c 22 ,.Digest,md4,,,"
1540: 74 6c 73 3a 3a 64 69 67 65 73 74 20 6d 64 34 20 tls::digest md4
1550: 22 22 45 78 61 6d 70 6c 65 20 73 74 72 69 6e 67 ""Example string
1560: 20 66 6f 72 20 6d 65 73 73 61 67 65 20 64 69 67 for message dig
1570: 65 73 74 20 74 65 73 74 73 2e 22 22 22 2c 2c 2c est tests.""",,,
1580: 31 38 31 43 44 43 46 39 44 42 39 42 36 46 41 38 181CDCF9DB9B6FA8
1590: 46 43 30 41 33 42 46 39 43 33 34 45 32 39 44 39 FC0A3BF9C34E29D9
15a0: 2c 2c 2c 0a 44 69 67 65 73 74 2c 6d 64 35 2c 2c ,,,.Digest,md5,,
15b0: 2c 22 74 6c 73 3a 3a 64 69 67 65 73 74 20 6d 64 ,"tls::digest md
15c0: 35 20 22 22 45 78 61 6d 70 6c 65 20 73 74 72 69 5 ""Example stri
15d0: 6e 67 20 66 6f 72 20 6d 65 73 73 61 67 65 20 64 ng for message d
15e0: 69 67 65 73 74 20 74 65 73 74 73 2e 22 22 22 2c igest tests.""",
15f0: 2c 2c 43 43 42 31 42 45 32 45 31 31 44 38 31 38 ,,CCB1BE2E11D818
1600: 33 45 38 34 33 46 46 37 33 44 41 38 43 36 44 32 3E843FF73DA8C6D2
1610: 30 36 2c 2c 2c 0a 44 69 67 65 73 74 2c 73 68 61 06,,,.Digest,sha
1620: 31 2c 2c 2c 22 74 6c 73 3a 3a 64 69 67 65 73 74 1,,,"tls::digest
1630: 20 73 68 61 31 20 22 22 45 78 61 6d 70 6c 65 20 sha1 ""Example
1640: 73 74 72 69 6e 67 20 66 6f 72 20 6d 65 73 73 61 string for messa
1650: 67 65 20 64 69 67 65 73 74 20 74 65 73 74 73 2e ge digest tests.
1660: 22 22 22 2c 2c 2c 33 41 45 46 45 38 34 30 43 41 """,,,3AEFE840CA
1670: 34 39 32 43 33 38 37 45 39 30 33 46 31 35 45 44 492C387E903F15ED
1680: 36 30 31 39 45 37 41 44 38 33 33 42 34 37 2c 2c 6019E7AD833B47,,
1690: 2c 0a 44 69 67 65 73 74 2c 73 68 61 32 35 36 2c ,.Digest,sha256,
16a0: 2c 2c 22 74 6c 73 3a 3a 64 69 67 65 73 74 20 73 ,,"tls::digest s
16b0: 68 61 32 35 36 20 22 22 45 78 61 6d 70 6c 65 20 ha256 ""Example
16c0: 73 74 72 69 6e 67 20 66 6f 72 20 6d 65 73 73 61 string for messa
16d0: 67 65 20 64 69 67 65 73 74 20 74 65 73 74 73 2e ge digest tests.
16e0: 22 22 22 2c 2c 2c 42 37 44 46 44 44 45 42 30 33 """,,,B7DFDDEB03
16f0: 31 34 41 37 34 46 46 35 36 41 38 41 43 31 45 33 14A74FF56A8AC1E3
1700: 44 43 35 37 44 46 30 39 42 42 35 32 41 39 36 44 DC57DF09BB52A96D
1710: 41 35 30 46 36 35 34 39 45 42 36 32 43 41 36 31 A50F6549EB62CA61
1720: 41 30 41 34 39 31 2c 2c 2c 0a 2c 2c 2c 2c 2c 2c A0A491,,,.,,,,,,
1730: 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 23 20 54 ,,,,.command,# T
1740: 65 73 74 20 70 72 6f 74 6f 63 6f 6c 73 2c 2c 2c est protocols,,,
1750: 2c 2c 2c 2c 2c 2c 0a 50 72 6f 74 6f 63 6f 6c 73 ,,,,,,.Protocols
1760: 2c 41 6c 6c 2c 2c 2c 6c 63 6f 6d 70 61 72 65 20 ,All,,,lcompare
1770: 24 70 72 6f 74 6f 63 6f 6c 73 20 5b 3a 3a 74 6c $protocols [::tl
1780: 73 3a 3a 70 72 6f 74 6f 63 6f 6c 73 5d 2c 2c 2c s::protocols],,,
1790: 6d 69 73 73 69 6e 67 20 7b 73 73 6c 32 20 73 73 missing {ssl2 ss
17a0: 6c 33 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b l3} unexpected {
17b0: 7d 2c 2c 2c 0a },,,.