| Paul Bakker | 37ca75d | 2011-01-06 12:28:03 +0000 | [diff] [blame] | 1 | /** | 
| Jaeden Amero | 25facdd | 2018-01-23 15:36:58 +0000 | [diff] [blame] | 2 | * \file doc_ssltls.h | 
|  | 3 | * | 
|  | 4 | * \brief SSL/TLS communication module documentation file. | 
|  | 5 | */ | 
|  | 6 | /* | 
| Manuel Pégourié-Gonnard | 8119dad | 2015-08-06 10:59:26 +0200 | [diff] [blame] | 7 | * | 
| Bence Szépkúti | 1e14827 | 2020-08-07 13:07:28 +0200 | [diff] [blame] | 8 | *  Copyright The Mbed TLS Contributors | 
| Manuel Pégourié-Gonnard | 37ff140 | 2015-09-04 14:21:07 +0200 | [diff] [blame] | 9 | *  SPDX-License-Identifier: Apache-2.0 | 
|  | 10 | * | 
|  | 11 | *  Licensed under the Apache License, Version 2.0 (the "License"); you may | 
|  | 12 | *  not use this file except in compliance with the License. | 
|  | 13 | *  You may obtain a copy of the License at | 
|  | 14 | * | 
|  | 15 | *  http://www.apache.org/licenses/LICENSE-2.0 | 
|  | 16 | * | 
|  | 17 | *  Unless required by applicable law or agreed to in writing, software | 
|  | 18 | *  distributed under the License is distributed on an "AS IS" BASIS, WITHOUT | 
|  | 19 | *  WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. | 
|  | 20 | *  See the License for the specific language governing permissions and | 
|  | 21 | *  limitations under the License. | 
| Paul Bakker | 37ca75d | 2011-01-06 12:28:03 +0000 | [diff] [blame] | 22 | */ | 
|  | 23 |  | 
|  | 24 | /** | 
|  | 25 | * @addtogroup ssltls_communication_module SSL/TLS communication module | 
| Paul Bakker | dcbfdcc | 2013-09-10 16:16:50 +0200 | [diff] [blame] | 26 | * | 
| Paul Bakker | 37ca75d | 2011-01-06 12:28:03 +0000 | [diff] [blame] | 27 | * The SSL/TLS communication module provides the means to create an SSL/TLS | 
| Paul Bakker | dcbfdcc | 2013-09-10 16:16:50 +0200 | [diff] [blame] | 28 | * communication channel. | 
|  | 29 | * | 
| Paul Bakker | 37ca75d | 2011-01-06 12:28:03 +0000 | [diff] [blame] | 30 | * The basic provisions are: | 
| Manuel Pégourié-Gonnard | 151dc77 | 2015-05-14 13:55:51 +0200 | [diff] [blame] | 31 | * - initialise an SSL/TLS context (see \c mbedtls_ssl_init()). | 
|  | 32 | * - perform an SSL/TLS handshake (see \c mbedtls_ssl_handshake()). | 
|  | 33 | * - read/write (see \c mbedtls_ssl_read() and \c mbedtls_ssl_write()). | 
|  | 34 | * - notify a peer that connection is being closed (see \c mbedtls_ssl_close_notify()). | 
| Paul Bakker | 37ca75d | 2011-01-06 12:28:03 +0000 | [diff] [blame] | 35 | * | 
| Paul Bakker | 37ca75d | 2011-01-06 12:28:03 +0000 | [diff] [blame] | 36 | * Many aspects of such a channel are set through parameters and callback | 
|  | 37 | * functions: | 
|  | 38 | * - the endpoint role: client or server. | 
|  | 39 | * - the authentication mode. Should verification take place. | 
|  | 40 | * - the Host-to-host communication channel. A TCP/IP module is provided. | 
|  | 41 | * - the random number generator (RNG). | 
|  | 42 | * - the ciphers to use for encryption/decryption. | 
|  | 43 | * - session control functions. | 
|  | 44 | * - X.509 parameters for certificate-handling and key exchange. | 
| Paul Bakker | 37ca75d | 2011-01-06 12:28:03 +0000 | [diff] [blame] | 45 | * | 
|  | 46 | * This module can be used to create an SSL/TLS server and client and to provide a basic | 
|  | 47 | * framework to setup and communicate through an SSL/TLS communication channel.\n | 
|  | 48 | * Note that you need to provide for several aspects yourself as mentioned above. | 
|  | 49 | */ |