mirror of
https://github.com/jart/cosmopolitan.git
synced 2025-01-31 03:27:39 +00:00
39bf41f4eb
- Python static hello world now 1.8mb - Python static fully loaded now 10mb - Python HTTPS client now uses MbedTLS - Python REPL now completes import stmts - Increase stack size for Python for now - Begin synthesizing posixpath and ntpath - Restore Python \N{UNICODE NAME} support - Restore Python NFKD symbol normalization - Add optimized code path for Intel SHA-NI - Get more Python unit tests passing faster - Get Python help() pagination working on NT - Python hashlib now supports MbedTLS PBKDF2 - Make memcpy/memmove/memcmp/bcmp/etc. faster - Add Mersenne Twister and Vigna to LIBC_RAND - Provide privileged __printf() for error code - Fix zipos opendir() so that it reports ENOTDIR - Add basic chmod() implementation for Windows NT - Add Cosmo's best functions to Python cosmo module - Pin function trace indent depth to that of caller - Show memory diagram on invalid access in MODE=dbg - Differentiate stack overflow on crash in MODE=dbg - Add stb_truetype and tools for analyzing font files - Upgrade to UNICODE 13 and reduce its binary footprint - COMPILE.COM now logs resource usage of build commands - Start implementing basic poll() support on bare metal - Set getauxval(AT_EXECFN) to GetModuleFileName() on NT - Add descriptions to strerror() in non-TINY build modes - Add COUNTBRANCH() macro to help with micro-optimizations - Make error / backtrace / asan / memory code more unbreakable - Add fast perfect C implementation of μ-Law and a-Law audio codecs - Make strtol() functions consistent with other libc implementations - Improve Linenoise implementation (see also github.com/jart/bestline) - COMPILE.COM now suppresses stdout/stderr of successful build commands
61 lines
3.5 KiB
C
61 lines
3.5 KiB
C
/*-*- mode:c;indent-tabs-mode:nil;c-basic-offset:2;tab-width:8;coding:utf-8 -*-│
|
|
│vi: set net ft=c ts=2 sts=2 sw=2 fenc=utf-8 :vi│
|
|
╞══════════════════════════════════════════════════════════════════════════════╡
|
|
│ Copyright 2021 Justine Alexandra Roberts Tunney │
|
|
│ │
|
|
│ Permission to use, copy, modify, and/or distribute this software for │
|
|
│ any purpose with or without fee is hereby granted, provided that the │
|
|
│ above copyright notice and this permission notice appear in all copies. │
|
|
│ │
|
|
│ THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL │
|
|
│ WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED │
|
|
│ WARRANTIES OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE │
|
|
│ AUTHOR BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL │
|
|
│ DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR │
|
|
│ PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER │
|
|
│ TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR │
|
|
│ PERFORMANCE OF THIS SOFTWARE. │
|
|
╚─────────────────────────────────────────────────────────────────────────────*/
|
|
#include "libc/macros.internal.h"
|
|
#include "libc/mem/mem.h"
|
|
#include "libc/str/str.h"
|
|
#include "net/https/https.h"
|
|
#include "third_party/mbedtls/x509.h"
|
|
|
|
static const struct thatispacked SslVerifyString {
|
|
int code;
|
|
const char *str;
|
|
} kSslVerifyStrings[] = {
|
|
{MBEDTLS_X509_BADCERT_BAD_KEY, "badcert_bad_key"},
|
|
{MBEDTLS_X509_BADCERT_BAD_MD, "badcert_bad_md"},
|
|
{MBEDTLS_X509_BADCERT_BAD_PK, "badcert_bad_pk"},
|
|
{MBEDTLS_X509_BADCERT_CN_MISMATCH, "badcert_cn_mismatch"},
|
|
{MBEDTLS_X509_BADCERT_EXPIRED, "badcert_expired"},
|
|
{MBEDTLS_X509_BADCERT_EXT_KEY_USAGE, "badcert_ext_key_usage"},
|
|
{MBEDTLS_X509_BADCERT_FUTURE, "badcert_future"},
|
|
{MBEDTLS_X509_BADCERT_KEY_USAGE, "badcert_key_usage"},
|
|
{MBEDTLS_X509_BADCERT_MISSING, "badcert_missing"},
|
|
{MBEDTLS_X509_BADCERT_NOT_TRUSTED, "badcert_not_trusted"},
|
|
{MBEDTLS_X509_BADCERT_NS_CERT_TYPE, "badcert_ns_cert_type"},
|
|
{MBEDTLS_X509_BADCERT_OTHER, "badcert_other"},
|
|
{MBEDTLS_X509_BADCERT_REVOKED, "badcert_revoked"},
|
|
{MBEDTLS_X509_BADCERT_SKIP_VERIFY, "badcert_skip_verify"},
|
|
{MBEDTLS_X509_BADCRL_BAD_KEY, "badcrl_bad_key"},
|
|
{MBEDTLS_X509_BADCRL_BAD_MD, "badcrl_bad_md"},
|
|
{MBEDTLS_X509_BADCRL_BAD_PK, "badcrl_bad_pk"},
|
|
{MBEDTLS_X509_BADCRL_EXPIRED, "badcrl_expired"},
|
|
{MBEDTLS_X509_BADCRL_FUTURE, "badcrl_future"},
|
|
{MBEDTLS_X509_BADCRL_NOT_TRUSTED, "badcrl_not_trusted"},
|
|
};
|
|
|
|
char *DescribeSslVerifyFailure(int flags) {
|
|
int i;
|
|
char *p, *q;
|
|
p = malloc(1024);
|
|
q = stpcpy(p, "verify failed");
|
|
for (i = 0; i < ARRAYLEN(kSslVerifyStrings); ++i) {
|
|
if (!(flags & kSslVerifyStrings[i].code)) continue;
|
|
q = stpcpy(stpcpy(q, " "), kSslVerifyStrings[i].str);
|
|
}
|
|
return p;
|
|
}
|