0000: 23 20 47 72 6f 75 70 2c 4e 61 6d 65 2c 43 6f 6e # Group,Name,Con
0010: 73 74 72 61 69 6e 74 73 2c 53 65 74 75 70 2c 42 straints,Setup,B
0020: 6f 64 79 2c 43 6c 65 61 6e 75 70 2c 4d 61 74 63 ody,Cleanup,Matc
0030: 68 2c 52 65 73 75 6c 74 2c 4f 75 74 70 75 74 2c h,Result,Output,
0040: 45 72 72 6f 72 20 4f 75 74 70 75 74 2c 52 65 74 Error Output,Ret
0050: 75 72 6e 20 43 6f 64 65 73 0a 63 6f 6d 6d 61 6e urn Codes.comman
0060: 64 2c 70 61 63 6b 61 67 65 20 72 65 71 75 69 72 d,package requir
0070: 65 20 74 6c 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 e tls,,,,,,,,,.c
0080: 6f 6d 6d 61 6e 64 2c 2c 2c 2c 2c 2c 2c 2c 2c 2c ommand,,,,,,,,,,
0090: 0a 63 6f 6d 6d 61 6e 64 2c 23 20 4d 61 6b 65 20 .command,# Make
00a0: 73 75 72 65 20 70 61 74 68 20 69 6e 63 6c 75 64 sure path includ
00b0: 65 73 20 6c 6f 63 61 74 69 6f 6e 20 6f 66 20 4f es location of O
00c0: 70 65 6e 53 53 4c 20 65 78 65 63 75 74 61 62 6c penSSL executabl
00d0: 65 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 e,,,,,,,,,.comma
00e0: 6e 64 2c 22 69 66 20 7b 5b 69 6e 66 6f 20 65 78 nd,"if {[info ex
00f0: 69 73 74 73 20 3a 3a 65 6e 76 28 4f 50 45 4e 53 ists ::env(OPENS
0100: 53 4c 29 5d 7d 20 7b 73 65 74 20 3a 3a 65 6e 76 SL)]} {set ::env
0110: 28 70 61 74 68 29 20 5b 73 74 72 69 6e 67 20 63 (path) [string c
0120: 61 74 20 5b 66 69 6c 65 20 6a 6f 69 6e 20 24 3a at [file join $:
0130: 3a 65 6e 76 28 4f 50 45 4e 53 53 4c 29 20 62 69 :env(OPENSSL) bi
0140: 6e 5d 20 22 22 3b 22 22 20 24 3a 3a 65 6e 76 28 n] "";"" $::env(
0150: 70 61 74 68 29 5d 7d 22 2c 2c 2c 2c 2c 2c 2c 2c path)]}",,,,,,,,
0160: 2c 0a 63 6f 6d 6d 61 6e 64 2c 2c 2c 2c 2c 2c 2c ,.command,,,,,,,
0170: 2c 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 23 20 43 6f ,,,.command,# Co
0180: 6e 73 74 72 61 69 6e 74 73 2c 2c 2c 2c 2c 2c 2c nstraints,,,,,,,
0190: 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 73 65 74 20 70 ,,.command,set p
01a0: 72 6f 74 6f 63 6f 6c 73 20 5b 6c 69 73 74 20 73 rotocols [list s
01b0: 73 6c 32 20 73 73 6c 33 20 74 6c 73 31 20 74 6c sl2 ssl3 tls1 tl
01c0: 73 31 2e 31 20 74 6c 73 31 2e 32 20 74 6c 73 31 s1.1 tls1.2 tls1
01d0: 2e 33 5d 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d .3],,,,,,,,,.com
01e0: 6d 61 6e 64 2c 66 6f 72 65 61 63 68 20 70 72 6f mand,foreach pro
01f0: 74 6f 63 6f 6c 20 24 70 72 6f 74 6f 63 6f 6c 73 tocol $protocols
0200: 20 7b 3a 3a 74 63 6c 74 65 73 74 3a 3a 74 65 73 {::tcltest::tes
0210: 74 43 6f 6e 73 74 72 61 69 6e 74 20 24 70 72 6f tConstraint $pro
0220: 74 6f 63 6f 6c 20 30 7d 2c 2c 2c 2c 2c 2c 2c 2c tocol 0},,,,,,,,
0230: 2c 0a 63 6f 6d 6d 61 6e 64 2c 66 6f 72 65 61 63 ,.command,foreac
0240: 68 20 70 72 6f 74 6f 63 6f 6c 20 5b 3a 3a 74 6c h protocol [::tl
0250: 73 3a 3a 70 72 6f 74 6f 63 6f 6c 73 5d 20 7b 3a s::protocols] {:
0260: 3a 74 63 6c 74 65 73 74 3a 3a 74 65 73 74 43 6f :tcltest::testCo
0270: 6e 73 74 72 61 69 6e 74 20 24 70 72 6f 74 6f 63 nstraint $protoc
0280: 6f 6c 20 31 7d 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 ol 1},,,,,,,,,.c
0290: 6f 6d 6d 61 6e 64 2c 22 3a 3a 74 63 6c 74 65 73 ommand,"::tcltes
02a0: 74 3a 3a 74 65 73 74 43 6f 6e 73 74 72 61 69 6e t::testConstrain
02b0: 74 20 4f 70 65 6e 53 53 4c 20 5b 73 74 72 69 6e t OpenSSL [strin
02c0: 67 20 6d 61 74 63 68 20 22 22 4f 70 65 6e 53 53 g match ""OpenSS
02d0: 4c 2a 22 22 20 5b 3a 3a 74 6c 73 3a 3a 76 65 72 L*"" [::tls::ver
02e0: 73 69 6f 6e 5d 5d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c sion]]",,,,,,,,,
02f0: 0a 2c 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d .,,,,,,,,,,.comm
0300: 61 6e 64 2c 23 20 48 65 6c 70 65 72 20 66 75 6e and,# Helper fun
0310: 63 74 69 6f 6e 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a ctions,,,,,,,,,.
0320: 63 6f 6d 6d 61 6e 64 2c 22 70 72 6f 63 20 6c 63 command,"proc lc
0330: 6f 6d 70 61 72 65 20 7b 6c 69 73 74 31 20 6c 69 ompare {list1 li
0340: 73 74 32 7d 20 7b 73 65 74 20 6d 20 22 22 22 22 st2} {set m """"
0350: 3b 73 65 74 20 75 20 22 22 22 22 3b 66 6f 72 65 ;set u """";fore
0360: 61 63 68 20 69 20 24 6c 69 73 74 31 20 7b 69 66 ach i $list1 {if
0370: 20 7b 24 69 20 6e 69 20 24 6c 69 73 74 32 7d 20 {$i ni $list2}
0380: 7b 6c 61 70 70 65 6e 64 20 6d 20 24 69 7d 7d 3b {lappend m $i}};
0390: 66 6f 72 65 61 63 68 20 69 20 24 6c 69 73 74 32 foreach i $list2
03a0: 20 7b 69 66 20 7b 24 69 20 6e 69 20 24 6c 69 73 {if {$i ni $lis
03b0: 74 31 7d 20 7b 6c 61 70 70 65 6e 64 20 75 20 24 t1} {lappend u $
03c0: 69 7d 7d 3b 72 65 74 75 72 6e 20 5b 6c 69 73 74 i}};return [list
03d0: 20 22 22 6d 69 73 73 69 6e 67 22 22 20 24 6d 20 ""missing"" $m
03e0: 22 22 75 6e 65 78 70 65 63 74 65 64 22 22 20 24 ""unexpected"" $
03f0: 75 5d 7d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f u]}",,,,,,,,,.co
0400: 6d 6d 61 6e 64 2c 70 72 6f 63 20 65 78 65 63 5f mmand,proc exec_
0410: 67 65 74 20 7b 64 65 6c 69 6d 20 61 72 67 73 7d get {delim args}
0420: 20 7b 72 65 74 75 72 6e 20 5b 73 70 6c 69 74 20 {return [split
0430: 5b 65 78 65 63 20 6f 70 65 6e 73 73 6c 20 7b 2a [exec openssl {*
0440: 7d 24 61 72 67 73 5d 20 24 64 65 6c 69 6d 5d 7d }$args] $delim]}
0450: 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e ,,,,,,,,,.comman
0460: 64 2c 22 70 72 6f 63 20 65 78 65 63 5f 67 65 74 d,"proc exec_get
0470: 5f 63 69 70 68 65 72 73 20 7b 7d 20 7b 73 65 74 _ciphers {} {set
0480: 20 6c 69 73 74 20 5b 6c 69 73 74 5d 3b 73 65 74 list [list];set
0490: 20 64 61 74 61 20 5b 65 78 65 63 20 6f 70 65 6e data [exec open
04a0: 73 73 6c 20 63 69 70 68 65 72 73 20 41 4c 4c 5d ssl ciphers ALL]
04b0: 3b 66 6f 72 65 61 63 68 20 63 69 70 68 65 72 20 ;foreach cipher
04c0: 5b 73 70 6c 69 74 20 24 64 61 74 61 20 22 22 3a [split $data "":
04d0: 22 22 5d 20 7b 6c 61 70 70 65 6e 64 20 6c 69 73 ""] {lappend lis
04e0: 74 20 5b 73 74 72 69 6e 67 20 74 6f 6c 6f 77 65 t [string tolowe
04f0: 72 20 24 63 69 70 68 65 72 5d 7d 3b 72 65 74 75 r $cipher]};retu
0500: 72 6e 20 5b 6c 73 6f 72 74 20 24 6c 69 73 74 5d rn [lsort $list]
0510: 7d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d }",,,,,,,,,.comm
0520: 61 6e 64 2c 22 70 72 6f 63 20 65 78 65 63 5f 67 and,"proc exec_g
0530: 65 74 5f 64 69 67 65 73 74 73 20 7b 7d 20 7b 73 et_digests {} {s
0540: 65 74 20 6c 69 73 74 20 5b 6c 69 73 74 5d 3b 73 et list [list];s
0550: 65 74 20 64 61 74 61 20 5b 65 78 65 63 20 6f 70 et data [exec op
0560: 65 6e 73 73 6c 20 64 67 73 74 20 2d 6c 69 73 74 enssl dgst -list
0570: 5d 3b 66 6f 72 65 61 63 68 20 6c 69 6e 65 20 5b ];foreach line [
0580: 73 70 6c 69 74 20 24 64 61 74 61 20 22 22 5c 6e split $data ""\n
0590: 22 22 5d 20 7b 66 6f 72 65 61 63 68 20 64 69 67 ""] {foreach dig
05a0: 65 73 74 20 24 6c 69 6e 65 20 7b 69 66 20 7b 5b est $line {if {[
05b0: 73 74 72 69 6e 67 20 6d 61 74 63 68 20 22 22 2d string match ""-
05c0: 2a 22 22 20 24 64 69 67 65 73 74 5d 7d 20 7b 6c *"" $digest]} {l
05d0: 61 70 70 65 6e 64 20 6c 69 73 74 20 5b 73 74 72 append list [str
05e0: 69 6e 67 20 74 72 69 6d 6c 65 66 74 20 24 64 69 ing trimleft $di
05f0: 67 65 73 74 20 22 22 2d 22 22 5d 7d 7d 7d 3b 72 gest ""-""]}}};r
0600: 65 74 75 72 6e 20 5b 6c 73 6f 72 74 20 24 6c 69 eturn [lsort $li
0610: 73 74 5d 7d 22 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 2c st]}",,,,,,,,,.,
0620: 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e ,,,,,,,,,.comman
0630: 64 2c 23 20 54 65 73 74 20 6c 69 73 74 20 63 69 d,# Test list ci
0640: 70 68 65 72 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 43 phers,,,,,,,,,.C
0650: 69 70 68 65 72 73 41 6c 6c 2c 2c 2c 2c 6c 63 6f iphersAll,,,,lco
0660: 6d 70 61 72 65 20 5b 6c 73 6f 72 74 20 5b 65 78 mpare [lsort [ex
0670: 65 63 5f 67 65 74 5f 63 69 70 68 65 72 73 5d 5d ec_get_ciphers]]
0680: 20 5b 6c 73 6f 72 74 20 5b 3a 3a 74 6c 73 3a 3a [lsort [::tls::
0690: 63 69 70 68 65 72 73 5d 5d 2c 2c 2c 6d 69 73 73 ciphers]],,,miss
06a0: 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 ing {} unexpecte
06b0: 64 20 7b 7d 2c 2c 2c 0a 2c 2c 2c 2c 2c 2c 2c 2c d {},,,.,,,,,,,,
06c0: 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 23 20 54 65 73 ,,.command,# Tes
06d0: 74 20 6c 69 73 74 20 63 69 70 68 65 72 73 20 66 t list ciphers f
06e0: 6f 72 20 70 72 6f 74 6f 63 6f 6c 73 2c 2c 2c 2c or protocols,,,,
06f0: 2c 2c 2c 2c 2c 0a 43 69 70 68 65 72 73 50 72 6f ,,,,,.CiphersPro
0700: 74 6f 63 6f 6c 73 2c 53 53 4c 32 2c 73 73 6c 32 tocols,SSL2,ssl2
0710: 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 ,,"lcompare [exe
0720: 63 5f 67 65 74 20 22 22 3a 22 22 20 63 69 70 68 c_get "":"" ciph
0730: 65 72 73 20 2d 73 73 6c 32 5d 20 5b 3a 3a 74 6c ers -ssl2] [::tl
0740: 73 3a 3a 63 69 70 68 65 72 73 20 73 73 6c 32 5d s::ciphers ssl2]
0750: 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 75 ",,,missing {} u
0760: 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a nexpected {},,,.
0770: 43 69 70 68 65 72 73 50 72 6f 74 6f 63 6f 6c 73 CiphersProtocols
0780: 2c 53 53 4c 33 2c 73 73 6c 33 2c 2c 22 6c 63 6f ,SSL3,ssl3,,"lco
0790: 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 74 20 mpare [exec_get
07a0: 22 22 3a 22 22 20 63 69 70 68 65 72 73 20 2d 73 "":"" ciphers -s
07b0: 73 6c 33 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 sl3] [::tls::cip
07c0: 68 65 72 73 20 73 73 6c 33 5d 22 2c 2c 2c 6d 69 hers ssl3]",,,mi
07d0: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
07e0: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
07f0: 73 50 72 6f 74 6f 63 6f 6c 73 2c 54 4c 53 31 2c sProtocols,TLS1,
0800: 74 6c 73 31 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 tls1,,"lcompare
0810: 5b 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 [exec_get "":""
0820: 63 69 70 68 65 72 73 20 2d 74 6c 73 31 5d 20 5b ciphers -tls1] [
0830: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
0840: 6c 73 31 5d 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 ls1]",,,missing
0850: 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d {} unexpected {}
0860: 2c 2c 2c 0a 43 69 70 68 65 72 73 50 72 6f 74 6f ,,,.CiphersProto
0870: 63 6f 6c 73 2c 54 4c 53 31 2e 31 2c 74 6c 73 31 cols,TLS1.1,tls1
0880: 2e 31 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b 65 .1,,"lcompare [e
0890: 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 63 69 xec_get "":"" ci
08a0: 70 68 65 72 73 20 2d 74 6c 73 31 5f 31 5d 20 5b phers -tls1_1] [
08b0: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
08c0: 6c 73 31 2e 31 5d 22 2c 2c 2c 6d 69 73 73 69 6e ls1.1]",,,missin
08d0: 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 20 g {} unexpected
08e0: 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 73 50 72 6f {},,,.CiphersPro
08f0: 74 6f 63 6f 6c 73 2c 54 4c 53 31 2e 32 2c 74 6c tocols,TLS1.2,tl
0900: 73 31 2e 32 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 s1.2,,"lcompare
0910: 5b 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 [exec_get "":""
0920: 63 69 70 68 65 72 73 20 2d 74 6c 73 31 5f 32 5d ciphers -tls1_2]
0930: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
0940: 20 74 6c 73 31 2e 32 5d 22 2c 2c 2c 6d 69 73 73 tls1.2]",,,miss
0950: 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 ing {} unexpecte
0960: 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 73 50 d {},,,.CiphersP
0970: 72 6f 74 6f 63 6f 6c 73 2c 54 4c 53 31 2e 33 2c rotocols,TLS1.3,
0980: 74 6c 73 31 2e 33 2c 2c 22 6c 63 6f 6d 70 61 72 tls1.3,,"lcompar
0990: 65 20 5b 65 78 65 63 5f 67 65 74 20 22 22 3a 22 e [exec_get "":"
09a0: 22 20 63 69 70 68 65 72 73 20 2d 74 6c 73 31 5f " ciphers -tls1_
09b0: 33 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 3] [::tls::ciphe
09c0: 72 73 20 74 6c 73 31 2e 33 5d 22 2c 2c 2c 6d 69 rs tls1.3]",,,mi
09d0: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
09e0: 74 65 64 20 7b 7d 2c 2c 2c 0a 2c 2c 2c 2c 2c 2c ted {},,,.,,,,,,
09f0: 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c 23 20 54 ,,,,.command,# T
0a00: 65 73 74 20 63 69 70 68 65 72 20 64 65 73 63 72 est cipher descr
0a10: 69 70 74 69 6f 6e 73 2c 2c 2c 2c 2c 2c 2c 2c 2c iptions,,,,,,,,,
0a20: 0a 43 69 70 68 65 72 73 44 65 73 63 72 69 70 74 .CiphersDescript
0a30: 69 6f 6e 73 2c 53 53 4c 32 2c 73 73 6c 32 2c 2c ions,SSL2,ssl2,,
0a40: 22 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f "lcompare [exec_
0a50: 67 65 74 20 22 22 5c 72 5c 6e 22 22 20 63 69 70 get ""\r\n"" cip
0a60: 68 65 72 73 20 2d 73 73 6c 32 20 2d 76 5d 20 5b hers -ssl2 -v] [
0a70: 73 70 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 split [string tr
0a80: 69 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 im [::tls::ciphe
0a90: 72 73 20 73 73 6c 32 20 31 5d 5d 20 5c 6e 5d 22 rs ssl2 1]] \n]"
0aa0: 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e ,,,missing {} un
0ab0: 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a 43 expected {},,,.C
0ac0: 69 70 68 65 72 73 44 65 73 63 72 69 70 74 69 6f iphersDescriptio
0ad0: 6e 73 2c 53 53 4c 33 2c 73 73 6c 33 2c 2c 22 6c ns,SSL3,ssl3,,"l
0ae0: 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 compare [exec_ge
0af0: 74 20 22 22 5c 72 5c 6e 22 22 20 63 69 70 68 65 t ""\r\n"" ciphe
0b00: 72 73 20 2d 73 73 6c 33 20 2d 76 5d 20 5b 73 70 rs -ssl3 -v] [sp
0b10: 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 69 6d lit [string trim
0b20: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
0b30: 20 73 73 6c 33 20 31 5d 5d 20 5c 6e 5d 22 2c 2c ssl3 1]] \n]",,
0b40: 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 ,missing {} unex
0b50: 70 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 pected {},,,.Cip
0b60: 68 65 72 73 44 65 73 63 72 69 70 74 69 6f 6e 73 hersDescriptions
0b70: 2c 54 4c 53 31 2c 74 6c 73 31 2c 2c 22 6c 63 6f ,TLS1,tls1,,"lco
0b80: 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 74 20 mpare [exec_get
0b90: 22 22 5c 72 5c 6e 22 22 20 63 69 70 68 65 72 73 ""\r\n"" ciphers
0ba0: 20 2d 74 6c 73 31 20 2d 76 5d 20 5b 73 70 6c 69 -tls1 -v] [spli
0bb0: 74 20 5b 73 74 72 69 6e 67 20 74 72 69 6d 20 5b t [string trim [
0bc0: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
0bd0: 6c 73 31 20 31 5d 5d 20 5c 6e 5d 22 2c 2c 2c 6d ls1 1]] \n]",,,m
0be0: 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 issing {} unexpe
0bf0: 63 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 cted {},,,.Ciphe
0c00: 72 73 44 65 73 63 72 69 70 74 69 6f 6e 73 2c 54 rsDescriptions,T
0c10: 4c 53 31 2e 31 2c 74 6c 73 31 2e 31 2c 2c 22 6c LS1.1,tls1.1,,"l
0c20: 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 5f 67 65 compare [exec_ge
0c30: 74 20 22 22 5c 72 5c 6e 22 22 20 63 69 70 68 65 t ""\r\n"" ciphe
0c40: 72 73 20 2d 74 6c 73 31 5f 31 20 2d 76 5d 20 5b rs -tls1_1 -v] [
0c50: 73 70 6c 69 74 20 5b 73 74 72 69 6e 67 20 74 72 split [string tr
0c60: 69 6d 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 im [::tls::ciphe
0c70: 72 73 20 74 6c 73 31 2e 31 20 31 5d 5d 20 5c 6e rs tls1.1 1]] \n
0c80: 5d 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 ]",,,missing {}
0c90: 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c 2c unexpected {},,,
0ca0: 0a 43 69 70 68 65 72 73 44 65 73 63 72 69 70 74 .CiphersDescript
0cb0: 69 6f 6e 73 2c 54 4c 53 31 2e 32 2c 74 6c 73 31 ions,TLS1.2,tls1
0cc0: 2e 32 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b 65 .2,,"lcompare [e
0cd0: 78 65 63 5f 67 65 74 20 22 22 5c 72 5c 6e 22 22 xec_get ""\r\n""
0ce0: 20 63 69 70 68 65 72 73 20 2d 74 6c 73 31 5f 32 ciphers -tls1_2
0cf0: 20 2d 76 5d 20 5b 73 70 6c 69 74 20 5b 73 74 72 -v] [split [str
0d00: 69 6e 67 20 74 72 69 6d 20 5b 3a 3a 74 6c 73 3a ing trim [::tls:
0d10: 3a 63 69 70 68 65 72 73 20 74 6c 73 31 2e 32 20 :ciphers tls1.2
0d20: 31 5d 5d 20 5c 6e 5d 22 2c 2c 2c 6d 69 73 73 69 1]] \n]",,,missi
0d30: 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 74 65 64 ng {} unexpected
0d40: 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 73 44 65 {},,,.CiphersDe
0d50: 73 63 72 69 70 74 69 6f 6e 73 2c 54 4c 53 31 2e scriptions,TLS1.
0d60: 33 2c 74 6c 73 31 2e 33 2c 2c 22 6c 63 6f 6d 70 3,tls1.3,,"lcomp
0d70: 61 72 65 20 5b 65 78 65 63 5f 67 65 74 20 22 22 are [exec_get ""
0d80: 5c 72 5c 6e 22 22 20 63 69 70 68 65 72 73 20 2d \r\n"" ciphers -
0d90: 74 6c 73 31 5f 33 20 2d 76 5d 20 5b 73 70 6c 69 tls1_3 -v] [spli
0da0: 74 20 5b 73 74 72 69 6e 67 20 74 72 69 6d 20 5b t [string trim [
0db0: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
0dc0: 6c 73 31 2e 33 20 31 5d 5d 20 5c 6e 5d 22 2c 2c ls1.3 1]] \n]",,
0dd0: 2c 6d 69 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 ,missing {} unex
0de0: 70 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a 2c 2c 2c pected {},,,.,,,
0df0: 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e 64 2c ,,,,,,,.command,
0e00: 23 20 54 65 73 74 20 70 72 6f 74 6f 63 6f 6c 20 # Test protocol
0e10: 73 70 65 63 69 66 69 63 20 63 69 70 68 65 72 73 specific ciphers
0e20: 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 43 69 70 68 65 72 ,,,,,,,,,.Cipher
0e30: 73 53 70 65 63 69 66 69 63 2c 53 53 4c 32 2c 73 sSpecific,SSL2,s
0e40: 73 6c 32 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b sl2,,"lcompare [
0e50: 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 63 exec_get "":"" c
0e60: 69 70 68 65 72 73 20 2d 73 73 6c 32 20 2d 73 5d iphers -ssl2 -s]
0e70: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
0e80: 20 73 73 6c 32 20 30 20 31 5d 22 2c 2c 2c 6d 69 ssl2 0 1]",,,mi
0e90: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0ea0: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
0eb0: 73 53 70 65 63 69 66 69 63 2c 53 53 4c 33 2c 73 sSpecific,SSL3,s
0ec0: 73 6c 33 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b sl3,,"lcompare [
0ed0: 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 63 exec_get "":"" c
0ee0: 69 70 68 65 72 73 20 2d 73 73 6c 33 20 2d 73 5d iphers -ssl3 -s]
0ef0: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
0f00: 20 73 73 6c 33 20 30 20 31 5d 22 2c 2c 2c 6d 69 ssl3 0 1]",,,mi
0f10: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0f20: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
0f30: 73 53 70 65 63 69 66 69 63 2c 54 4c 53 31 2c 74 sSpecific,TLS1,t
0f40: 6c 73 31 2c 2c 22 6c 63 6f 6d 70 61 72 65 20 5b ls1,,"lcompare [
0f50: 65 78 65 63 5f 67 65 74 20 22 22 3a 22 22 20 63 exec_get "":"" c
0f60: 69 70 68 65 72 73 20 2d 74 6c 73 31 20 2d 73 5d iphers -tls1 -s]
0f70: 20 5b 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 [::tls::ciphers
0f80: 20 74 6c 73 31 20 30 20 31 5d 22 2c 2c 2c 6d 69 tls1 0 1]",,,mi
0f90: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
0fa0: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
0fb0: 73 53 70 65 63 69 66 69 63 2c 54 4c 53 31 2e 31 sSpecific,TLS1.1
0fc0: 2c 74 6c 73 31 2e 31 2c 2c 22 6c 63 6f 6d 70 61 ,tls1.1,,"lcompa
0fd0: 72 65 20 5b 65 78 65 63 5f 67 65 74 20 22 22 3a re [exec_get "":
0fe0: 22 22 20 63 69 70 68 65 72 73 20 2d 74 6c 73 31 "" ciphers -tls1
0ff0: 5f 31 20 2d 73 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 _1 -s] [::tls::c
1000: 69 70 68 65 72 73 20 74 6c 73 31 2e 31 20 30 20 iphers tls1.1 0
1010: 31 5d 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 1]",,,missing {}
1020: 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c unexpected {},,
1030: 2c 0a 43 69 70 68 65 72 73 53 70 65 63 69 66 69 ,.CiphersSpecifi
1040: 63 2c 54 4c 53 31 2e 32 2c 74 6c 73 31 2e 32 2c c,TLS1.2,tls1.2,
1050: 2c 22 6c 63 6f 6d 70 61 72 65 20 5b 65 78 65 63 ,"lcompare [exec
1060: 5f 67 65 74 20 22 22 3a 22 22 20 63 69 70 68 65 _get "":"" ciphe
1070: 72 73 20 2d 74 6c 73 31 5f 32 20 2d 73 5d 20 5b rs -tls1_2 -s] [
1080: 3a 3a 74 6c 73 3a 3a 63 69 70 68 65 72 73 20 74 ::tls::ciphers t
1090: 6c 73 31 2e 32 20 30 20 31 5d 22 2c 2c 2c 6d 69 ls1.2 0 1]",,,mi
10a0: 73 73 69 6e 67 20 7b 7d 20 75 6e 65 78 70 65 63 ssing {} unexpec
10b0: 74 65 64 20 7b 7d 2c 2c 2c 0a 43 69 70 68 65 72 ted {},,,.Cipher
10c0: 73 53 70 65 63 69 66 69 63 2c 54 4c 53 31 2e 33 sSpecific,TLS1.3
10d0: 2c 74 6c 73 31 2e 33 2c 2c 22 6c 63 6f 6d 70 61 ,tls1.3,,"lcompa
10e0: 72 65 20 5b 65 78 65 63 5f 67 65 74 20 22 22 3a re [exec_get "":
10f0: 22 22 20 63 69 70 68 65 72 73 20 2d 74 6c 73 31 "" ciphers -tls1
1100: 5f 33 20 2d 73 5d 20 5b 3a 3a 74 6c 73 3a 3a 63 _3 -s] [::tls::c
1110: 69 70 68 65 72 73 20 74 6c 73 31 2e 33 20 30 20 iphers tls1.3 0
1120: 31 5d 22 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d 1]",,,missing {}
1130: 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c unexpected {},,
1140: 2c 0a 2c 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d ,.,,,,,,,,,,.com
1150: 6d 61 6e 64 2c 23 20 54 65 73 74 20 76 65 72 73 mand,# Test vers
1160: 69 6f 6e 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 56 65 72 ion,,,,,,,,,.Ver
1170: 73 69 6f 6e 2c 41 6c 6c 2c 2c 2c 3a 3a 74 6c 73 sion,All,,,::tls
1180: 3a 3a 76 65 72 73 69 6f 6e 2c 2c 67 6c 6f 62 2c ::version,,glob,
1190: 2a 2c 2c 2c 0a 56 65 72 73 69 6f 6e 2c 4f 70 65 *,,,.Version,Ope
11a0: 6e 53 53 4c 2c 4f 70 65 6e 53 53 4c 2c 2c 3a 3a nSSL,OpenSSL,,::
11b0: 74 6c 73 3a 3a 76 65 72 73 69 6f 6e 2c 2c 67 6c tls::version,,gl
11c0: 6f 62 2c 4f 70 65 6e 53 53 4c 2a 2c 2c 2c 0a 2c ob,OpenSSL*,,,.,
11d0: 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d 61 6e ,,,,,,,,,.comman
11e0: 64 2c 23 20 54 65 73 74 20 6c 69 73 74 20 64 69 d,# Test list di
11f0: 67 65 73 74 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 44 gests,,,,,,,,,.D
1200: 69 67 65 73 74 20 4c 69 73 74 2c 44 69 67 65 73 igest List,Diges
1210: 74 20 4c 69 73 74 2c 2c 2c 6c 63 6f 6d 70 61 72 t List,,,lcompar
1220: 65 20 5b 6c 73 6f 72 74 20 5b 65 78 65 63 5f 67 e [lsort [exec_g
1230: 65 74 5f 64 69 67 65 73 74 73 5d 5d 20 5b 6c 73 et_digests]] [ls
1240: 6f 72 74 20 5b 74 6c 73 3a 3a 64 69 67 65 73 74 ort [tls::digest
1250: 73 5d 5d 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b 7d s]],,,missing {}
1260: 20 75 6e 65 78 70 65 63 74 65 64 20 7b 7d 2c 2c unexpected {},,
1270: 2c 0a 2c 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d ,.,,,,,,,,,,.com
1280: 6d 61 6e 64 2c 23 20 54 65 73 74 20 44 69 67 65 mand,# Test Dige
1290: 73 74 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 44 69 67 sts,,,,,,,,,.Dig
12a0: 65 73 74 2c 6d 64 34 20 6f 70 74 2c 2c 2c 22 74 est,md4 opt,,,"t
12b0: 6c 73 3a 3a 6d 64 34 20 22 22 45 78 61 6d 70 6c ls::md4 ""Exampl
12c0: 65 20 73 74 72 69 6e 67 20 66 6f 72 20 6d 65 73 e string for mes
12d0: 73 61 67 65 20 64 69 67 65 73 74 20 74 65 73 74 sage digest test
12e0: 73 2e 22 22 22 2c 2c 2c 31 38 31 43 44 43 46 39 s.""",,,181CDCF9
12f0: 44 42 39 42 36 46 41 38 46 43 30 41 33 42 46 39 DB9B6FA8FC0A3BF9
1300: 43 33 34 45 32 39 44 39 2c 2c 2c 0a 44 69 67 65 C34E29D9,,,.Dige
1310: 73 74 2c 6d 64 35 20 6f 70 74 2c 2c 2c 22 74 6c st,md5 opt,,,"tl
1320: 73 3a 3a 6d 64 35 20 22 22 45 78 61 6d 70 6c 65 s::md5 ""Example
1330: 20 73 74 72 69 6e 67 20 66 6f 72 20 6d 65 73 73 string for mess
1340: 61 67 65 20 64 69 67 65 73 74 20 74 65 73 74 73 age digest tests
1350: 2e 22 22 22 2c 2c 2c 43 43 42 31 42 45 32 45 31 .""",,,CCB1BE2E1
1360: 31 44 38 31 38 33 45 38 34 33 46 46 37 33 44 41 1D8183E843FF73DA
1370: 38 43 36 44 32 30 36 2c 2c 2c 0a 44 69 67 65 73 8C6D206,,,.Diges
1380: 74 2c 73 68 61 31 20 6f 70 74 2c 2c 2c 22 74 6c t,sha1 opt,,,"tl
1390: 73 3a 3a 73 68 61 31 20 22 22 45 78 61 6d 70 6c s::sha1 ""Exampl
13a0: 65 20 73 74 72 69 6e 67 20 66 6f 72 20 6d 65 73 e string for mes
13b0: 73 61 67 65 20 64 69 67 65 73 74 20 74 65 73 74 sage digest test
13c0: 73 2e 22 22 22 2c 2c 2c 33 41 45 46 45 38 34 30 s.""",,,3AEFE840
13d0: 43 41 34 39 32 43 33 38 37 45 39 30 33 46 31 35 CA492C387E903F15
13e0: 45 44 36 30 31 39 45 37 41 44 38 33 33 42 34 37 ED6019E7AD833B47
13f0: 2c 2c 2c 0a 44 69 67 65 73 74 2c 73 68 61 32 35 ,,,.Digest,sha25
1400: 36 20 6f 70 74 2c 2c 2c 22 74 6c 73 3a 3a 73 68 6 opt,,,"tls::sh
1410: 61 32 35 36 20 22 22 45 78 61 6d 70 6c 65 20 73 a256 ""Example s
1420: 74 72 69 6e 67 20 66 6f 72 20 6d 65 73 73 61 67 tring for messag
1430: 65 20 64 69 67 65 73 74 20 74 65 73 74 73 2e 22 e digest tests."
1440: 22 22 2c 2c 2c 42 37 44 46 44 44 45 42 30 33 31 "",,,B7DFDDEB031
1450: 34 41 37 34 46 46 35 36 41 38 41 43 31 45 33 44 4A74FF56A8AC1E3D
1460: 43 35 37 44 46 30 39 42 42 35 32 41 39 36 44 41 C57DF09BB52A96DA
1470: 35 30 46 36 35 34 39 45 42 36 32 43 41 36 31 41 50F6549EB62CA61A
1480: 30 41 34 39 31 2c 2c 2c 0a 44 69 67 65 73 74 2c 0A491,,,.Digest,
1490: 6d 64 34 2c 2c 2c 22 74 6c 73 3a 3a 64 69 67 65 md4,,,"tls::dige
14a0: 73 74 20 6d 64 34 20 22 22 45 78 61 6d 70 6c 65 st md4 ""Example
14b0: 20 73 74 72 69 6e 67 20 66 6f 72 20 6d 65 73 73 string for mess
14c0: 61 67 65 20 64 69 67 65 73 74 20 74 65 73 74 73 age digest tests
14d0: 2e 22 22 22 2c 2c 2c 31 38 31 43 44 43 46 39 44 .""",,,181CDCF9D
14e0: 42 39 42 36 46 41 38 46 43 30 41 33 42 46 39 43 B9B6FA8FC0A3BF9C
14f0: 33 34 45 32 39 44 39 2c 2c 2c 0a 44 69 67 65 73 34E29D9,,,.Diges
1500: 74 2c 6d 64 35 2c 2c 2c 22 74 6c 73 3a 3a 64 69 t,md5,,,"tls::di
1510: 67 65 73 74 20 6d 64 35 20 22 22 45 78 61 6d 70 gest md5 ""Examp
1520: 6c 65 20 73 74 72 69 6e 67 20 66 6f 72 20 6d 65 le string for me
1530: 73 73 61 67 65 20 64 69 67 65 73 74 20 74 65 73 ssage digest tes
1540: 74 73 2e 22 22 22 2c 2c 2c 43 43 42 31 42 45 32 ts.""",,,CCB1BE2
1550: 45 31 31 44 38 31 38 33 45 38 34 33 46 46 37 33 E11D8183E843FF73
1560: 44 41 38 43 36 44 32 30 36 2c 2c 2c 0a 44 69 67 DA8C6D206,,,.Dig
1570: 65 73 74 2c 73 68 61 31 2c 2c 2c 22 74 6c 73 3a est,sha1,,,"tls:
1580: 3a 64 69 67 65 73 74 20 73 68 61 31 20 22 22 45 :digest sha1 ""E
1590: 78 61 6d 70 6c 65 20 73 74 72 69 6e 67 20 66 6f xample string fo
15a0: 72 20 6d 65 73 73 61 67 65 20 64 69 67 65 73 74 r message digest
15b0: 20 74 65 73 74 73 2e 22 22 22 2c 2c 2c 33 41 45 tests.""",,,3AE
15c0: 46 45 38 34 30 43 41 34 39 32 43 33 38 37 45 39 FE840CA492C387E9
15d0: 30 33 46 31 35 45 44 36 30 31 39 45 37 41 44 38 03F15ED6019E7AD8
15e0: 33 33 42 34 37 2c 2c 2c 0a 44 69 67 65 73 74 2c 33B47,,,.Digest,
15f0: 73 68 61 32 35 36 2c 2c 2c 22 74 6c 73 3a 3a 64 sha256,,,"tls::d
1600: 69 67 65 73 74 20 73 68 61 32 35 36 20 22 22 45 igest sha256 ""E
1610: 78 61 6d 70 6c 65 20 73 74 72 69 6e 67 20 66 6f xample string fo
1620: 72 20 6d 65 73 73 61 67 65 20 64 69 67 65 73 74 r message digest
1630: 20 74 65 73 74 73 2e 22 22 22 2c 2c 2c 42 37 44 tests.""",,,B7D
1640: 46 44 44 45 42 30 33 31 34 41 37 34 46 46 35 36 FDDEB0314A74FF56
1650: 41 38 41 43 31 45 33 44 43 35 37 44 46 30 39 42 A8AC1E3DC57DF09B
1660: 42 35 32 41 39 36 44 41 35 30 46 36 35 34 39 45 B52A96DA50F6549E
1670: 42 36 32 43 41 36 31 41 30 41 34 39 31 2c 2c 2c B62CA61A0A491,,,
1680: 0a 2c 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 63 6f 6d 6d .,,,,,,,,,,.comm
1690: 61 6e 64 2c 23 20 54 65 73 74 20 70 72 6f 74 6f and,# Test proto
16a0: 63 6f 6c 73 2c 2c 2c 2c 2c 2c 2c 2c 2c 0a 50 72 cols,,,,,,,,,.Pr
16b0: 6f 74 6f 63 6f 6c 73 2c 41 6c 6c 2c 2c 2c 6c 63 otocols,All,,,lc
16c0: 6f 6d 70 61 72 65 20 24 70 72 6f 74 6f 63 6f 6c ompare $protocol
16d0: 73 20 5b 3a 3a 74 6c 73 3a 3a 70 72 6f 74 6f 63 s [::tls::protoc
16e0: 6f 6c 73 5d 2c 2c 2c 6d 69 73 73 69 6e 67 20 7b ols],,,missing {
16f0: 73 73 6c 32 20 73 73 6c 33 7d 20 75 6e 65 78 70 ssl2 ssl3} unexp
1700: 65 63 74 65 64 20 7b 7d 2c 2c 2c 0a ected {},,,.