mirror of
https://github.com/jart/cosmopolitan.git
synced 2025-10-26 11:10:58 +00:00
- Python static hello world now 1.8mb
- Python static fully loaded now 10mb
- Python HTTPS client now uses MbedTLS
- Python REPL now completes import stmts
- Increase stack size for Python for now
- Begin synthesizing posixpath and ntpath
- Restore Python \N{UNICODE NAME} support
- Restore Python NFKD symbol normalization
- Add optimized code path for Intel SHA-NI
- Get more Python unit tests passing faster
- Get Python help() pagination working on NT
- Python hashlib now supports MbedTLS PBKDF2
- Make memcpy/memmove/memcmp/bcmp/etc. faster
- Add Mersenne Twister and Vigna to LIBC_RAND
- Provide privileged __printf() for error code
- Fix zipos opendir() so that it reports ENOTDIR
- Add basic chmod() implementation for Windows NT
- Add Cosmo's best functions to Python cosmo module
- Pin function trace indent depth to that of caller
- Show memory diagram on invalid access in MODE=dbg
- Differentiate stack overflow on crash in MODE=dbg
- Add stb_truetype and tools for analyzing font files
- Upgrade to UNICODE 13 and reduce its binary footprint
- COMPILE.COM now logs resource usage of build commands
- Start implementing basic poll() support on bare metal
- Set getauxval(AT_EXECFN) to GetModuleFileName() on NT
- Add descriptions to strerror() in non-TINY build modes
- Add COUNTBRANCH() macro to help with micro-optimizations
- Make error / backtrace / asan / memory code more unbreakable
- Add fast perfect C implementation of μ-Law and a-Law audio codecs
- Make strtol() functions consistent with other libc implementations
- Improve Linenoise implementation (see also github.com/jart/bestline)
- COMPILE.COM now suppresses stdout/stderr of successful build commands
61 lines
3.5 KiB
C
61 lines
3.5 KiB
C
/*-*- mode:c;indent-tabs-mode:nil;c-basic-offset:2;tab-width:8;coding:utf-8 -*-│
|
|
│vi: set net ft=c ts=2 sts=2 sw=2 fenc=utf-8 :vi│
|
|
╞══════════════════════════════════════════════════════════════════════════════╡
|
|
│ Copyright 2021 Justine Alexandra Roberts Tunney │
|
|
│ │
|
|
│ Permission to use, copy, modify, and/or distribute this software for │
|
|
│ any purpose with or without fee is hereby granted, provided that the │
|
|
│ above copyright notice and this permission notice appear in all copies. │
|
|
│ │
|
|
│ THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL │
|
|
│ WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED │
|
|
│ WARRANTIES OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE │
|
|
│ AUTHOR BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL │
|
|
│ DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR │
|
|
│ PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER │
|
|
│ TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR │
|
|
│ PERFORMANCE OF THIS SOFTWARE. │
|
|
╚─────────────────────────────────────────────────────────────────────────────*/
|
|
#include "libc/macros.internal.h"
|
|
#include "libc/mem/mem.h"
|
|
#include "libc/str/str.h"
|
|
#include "net/https/https.h"
|
|
#include "third_party/mbedtls/x509.h"
|
|
|
|
static const struct thatispacked SslVerifyString {
|
|
int code;
|
|
const char *str;
|
|
} kSslVerifyStrings[] = {
|
|
{MBEDTLS_X509_BADCERT_BAD_KEY, "badcert_bad_key"},
|
|
{MBEDTLS_X509_BADCERT_BAD_MD, "badcert_bad_md"},
|
|
{MBEDTLS_X509_BADCERT_BAD_PK, "badcert_bad_pk"},
|
|
{MBEDTLS_X509_BADCERT_CN_MISMATCH, "badcert_cn_mismatch"},
|
|
{MBEDTLS_X509_BADCERT_EXPIRED, "badcert_expired"},
|
|
{MBEDTLS_X509_BADCERT_EXT_KEY_USAGE, "badcert_ext_key_usage"},
|
|
{MBEDTLS_X509_BADCERT_FUTURE, "badcert_future"},
|
|
{MBEDTLS_X509_BADCERT_KEY_USAGE, "badcert_key_usage"},
|
|
{MBEDTLS_X509_BADCERT_MISSING, "badcert_missing"},
|
|
{MBEDTLS_X509_BADCERT_NOT_TRUSTED, "badcert_not_trusted"},
|
|
{MBEDTLS_X509_BADCERT_NS_CERT_TYPE, "badcert_ns_cert_type"},
|
|
{MBEDTLS_X509_BADCERT_OTHER, "badcert_other"},
|
|
{MBEDTLS_X509_BADCERT_REVOKED, "badcert_revoked"},
|
|
{MBEDTLS_X509_BADCERT_SKIP_VERIFY, "badcert_skip_verify"},
|
|
{MBEDTLS_X509_BADCRL_BAD_KEY, "badcrl_bad_key"},
|
|
{MBEDTLS_X509_BADCRL_BAD_MD, "badcrl_bad_md"},
|
|
{MBEDTLS_X509_BADCRL_BAD_PK, "badcrl_bad_pk"},
|
|
{MBEDTLS_X509_BADCRL_EXPIRED, "badcrl_expired"},
|
|
{MBEDTLS_X509_BADCRL_FUTURE, "badcrl_future"},
|
|
{MBEDTLS_X509_BADCRL_NOT_TRUSTED, "badcrl_not_trusted"},
|
|
};
|
|
|
|
char *DescribeSslVerifyFailure(int flags) {
|
|
int i;
|
|
char *p, *q;
|
|
p = malloc(1024);
|
|
q = stpcpy(p, "verify failed");
|
|
for (i = 0; i < ARRAYLEN(kSslVerifyStrings); ++i) {
|
|
if (!(flags & kSslVerifyStrings[i].code)) continue;
|
|
q = stpcpy(stpcpy(q, " "), kSslVerifyStrings[i].str);
|
|
}
|
|
return p;
|
|
}
|