Lines Matching refs:SHA
2006 # Allow SHA-1, because many of our test certificates use it
2177 key_file=data_files/server2.key force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
2437 "$P_CLI force_version=tls12 force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA" \
2486 key_file=data_files/server2.key force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA" \
2524 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA" \
2584 force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA" \
2604 run_test_psa TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
2700 # Tests for SHA-1 support
2701 run_test "SHA-1 forbidden by default in server certificate" \
2707 run_test "SHA-1 explicitly allowed in server certificate" \
2712 run_test "SHA-256 allowed by default in server certificate" \
2717 run_test "SHA-1 forbidden by default in client certificate" \
2723 run_test "SHA-1 explicitly allowed in client certificate" \
2728 run_test "SHA-256 allowed by default in client certificate" \
3603 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
3615 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
3639 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
3691 "$P_CLI auth_mode=none etm=1 request_size=0 force_ciphersuite=TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA" \
3707 "$P_CLI auth_mode=none etm=1 request_size=0 force_ciphersuite=TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA dtls=1" \
3725 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA \
5190 # Checks that no Signature Algorithm with SHA-1 gets negotiated. Negotiating SHA-1 would mean that
5192 # algorithm stronger than SHA-1 is enabled in mbedtls_config.h
5206 -S "client hello v3, signature_algorithm ext: 2" # Is SHA-1 negotiated?
5208 # Checks that no Signature Algorithm with SHA-1 gets negotiated. Negotiating SHA-1 would mean that
5210 # algorithm stronger than SHA-1 is enabled in mbedtls_config.h
5224 -S "client hello v3, signature_algorithm ext: 2" # Is SHA-1 negotiated?
6330 # Tests for certificate selection based on SHA version
6333 run_test "Certificate hash: client TLS 1.2 -> SHA-2" \
7575 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
7585 force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA" \
7595 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
7605 force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA" \
7615 force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA" \
7626 force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA" \
7636 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
7646 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
8036 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8044 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8054 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8061 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8068 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8075 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8082 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8089 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8096 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8103 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8110 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8117 "$P_CLI force_ciphersuite=TLS-DHE-RSA-WITH-AES-128-CBC-SHA \
8126 "$P_CLI force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8136 "$P_CLI extended_ms=0 debug_level=1 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8146 run_test "PSK callback: opaque psk on client, no callback, SHA-384" \
8160 "$P_CLI extended_ms=1 debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8170 run_test "PSK callback: opaque psk on client, no callback, SHA-384, EMS" \
8194 run_test "PSK callback: opaque rsa-psk on client, no callback, SHA-384" \
8208 "$P_CLI extended_ms=1 debug_level=3 min_version=tls12 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA \
8218 run_test "PSK callback: opaque rsa-psk on client, no callback, SHA-384, EMS" \
8242 run_test "PSK callback: opaque ecdhe-psk on client, no callback, SHA-384" \
8256 "$P_CLI extended_ms=1 debug_level=3 min_version=tls12 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA \
8266 run_test "PSK callback: opaque ecdhe-psk on client, no callback, SHA-384, EMS" \
8290 run_test "PSK callback: opaque dhe-psk on client, no callback, SHA-384" \
8304 "$P_CLI extended_ms=1 debug_level=3 min_version=tls12 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA \
8314 run_test "PSK callback: opaque dhe-psk on client, no callback, SHA-384, EMS" \
8327 "$P_SRV extended_ms=0 debug_level=1 psk=abc123 psk_identity=foo psk_opaque=1 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA" \
8328 "$P_CLI extended_ms=0 debug_level=1 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8338 run_test "PSK callback: raw psk on client, static opaque on server, no callback, SHA-384" \
8352 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA extended_ms=1" \
8353 "$P_CLI debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8377 "$P_SRV extended_ms=0 debug_level=5 psk=abc123 psk_identity=foo psk_opaque=1 min_version=tls12 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA" \
8378 "$P_CLI extended_ms=0 debug_level=5 min_version=tls12 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA \
8388 run_test "PSK callback: raw rsa-psk on client, static opaque on server, no callback, SHA-384" \
8402 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA extended_ms=1" \
8403 "$P_CLI debug_level=3 min_version=tls12 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA \
8427 "$P_SRV extended_ms=0 debug_level=5 psk=abc123 psk_identity=foo psk_opaque=1 min_version=tls12 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA" \
8428 "$P_CLI extended_ms=0 debug_level=5 min_version=tls12 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA \
8438 run_test "PSK callback: raw ecdhe-psk on client, static opaque on server, no callback, SHA-384" \
8452 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA extended_ms=1" \
8453 "$P_CLI debug_level=3 min_version=tls12 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA \
8477 "$P_SRV extended_ms=0 debug_level=5 psk=abc123 psk_identity=foo psk_opaque=1 min_version=tls12 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA" \
8478 "$P_CLI extended_ms=0 debug_level=5 min_version=tls12 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA \
8488 run_test "PSK callback: raw dhe-psk on client, static opaque on server, no callback, SHA-384" \
8502 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA extended_ms=1" \
8503 "$P_CLI debug_level=3 min_version=tls12 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA \
8527 "$P_SRV extended_ms=0 debug_level=3 psk_list=abc,dead,def,beef psk_list_opaque=1 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA" \
8528 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8538 run_test "PSK callback: raw psk on client, no static PSK on server, opaque PSK from callback, SHA-384" \
8552 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA extended_ms=1" \
8553 "$P_CLI debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8577 "$P_SRV extended_ms=0 debug_level=3 psk_list=abc,dead,def,beef psk_list_opaque=1 min_version=tls12 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA" \
8578 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA \
8588 run_test "PSK callback: raw rsa-psk on client, no static RSA-PSK on server, opaque RSA-PSK from callback, SHA-384" \
8602 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA extended_ms=1" \
8603 "$P_CLI debug_level=3 min_version=tls12 force_ciphersuite=TLS-RSA-PSK-WITH-AES-128-CBC-SHA \
8627 "$P_SRV extended_ms=0 debug_level=3 psk_list=abc,dead,def,beef psk_list_opaque=1 min_version=tls12 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA" \
8628 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA \
8638 run_test "PSK callback: raw ecdhe-psk on client, no static ECDHE-PSK on server, opaque ECDHE-PSK from callback, SHA-384" \
8652 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA extended_ms=1" \
8653 "$P_CLI debug_level=3 min_version=tls12 force_ciphersuite=TLS-ECDHE-PSK-WITH-AES-128-CBC-SHA \
8677 "$P_SRV extended_ms=0 debug_level=3 psk_list=abc,dead,def,beef psk_list_opaque=1 min_version=tls12 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA" \
8678 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA \
8688 run_test "PSK callback: raw dhe-psk on client, no static DHE-PSK on server, opaque DHE-PSK from callback, SHA-384" \
8702 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA extended_ms=1" \
8703 "$P_CLI debug_level=3 min_version=tls12 force_ciphersuite=TLS-DHE-PSK-WITH-AES-128-CBC-SHA \
8727 "$P_SRV extended_ms=0 psk_identity=foo psk=abc123 debug_level=3 psk_list=abc,dead,def,beef psk_list_opaque=1 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA" \
8728 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8739 "$P_SRV extended_ms=0 psk_opaque=1 psk_identity=foo psk=abc123 debug_level=3 psk_list=abc,dead,def,beef psk_list_opaque=1 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA" \
8740 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8751 "$P_SRV extended_ms=0 psk_opaque=1 psk_identity=foo psk=abc123 debug_level=3 psk_list=abc,dead,def,beef min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA" \
8752 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8763 "$P_SRV extended_ms=0 psk_opaque=1 psk_identity=def psk=abc123 debug_level=3 psk_list=abc,dead,def,beef min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA" \
8764 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8775 "$P_SRV extended_ms=0 psk_opaque=1 psk_identity=def psk=beef debug_level=3 psk_list=abc,dead,def,abc123 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA" \
8776 "$P_CLI extended_ms=0 debug_level=3 min_version=tls12 force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8783 "$P_CLI force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8792 "$P_CLI force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8801 "$P_CLI force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8810 "$P_CLI force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8819 "$P_CLI force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
8828 "$P_CLI force_ciphersuite=TLS-PSK-WITH-AES-128-CBC-SHA \
9055 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9062 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA etm=0" \
9109 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9117 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9125 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9131 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA etm=0" \
9173 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9181 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9195 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9203 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9252 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9258 "$P_CLI etm=0 force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA" \
9271 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-256-CBC-SHA trunc_hmac=1 etm=0" \
9608 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
9617 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
9649 $P_CLI force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
9661 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA;
9760 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
9772 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
9783 "$P_CLI force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
9884 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
9896 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \
11882 force_ciphersuite=TLS-RSA-WITH-AES-128-CBC-SHA" \