doc_ssltls.h 1.9 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849
  1. /**
  2. * \file doc_ssltls.h
  3. *
  4. * \brief SSL/TLS communication module documentation file.
  5. */
  6. /*
  7. *
  8. * Copyright The Mbed TLS Contributors
  9. * SPDX-License-Identifier: Apache-2.0
  10. *
  11. * Licensed under the Apache License, Version 2.0 (the "License"); you may
  12. * not use this file except in compliance with the License.
  13. * You may obtain a copy of the License at
  14. *
  15. * http://www.apache.org/licenses/LICENSE-2.0
  16. *
  17. * Unless required by applicable law or agreed to in writing, software
  18. * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
  19. * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  20. * See the License for the specific language governing permissions and
  21. * limitations under the License.
  22. */
  23. /**
  24. * @addtogroup ssltls_communication_module SSL/TLS communication module
  25. *
  26. * The SSL/TLS communication module provides the means to create an SSL/TLS
  27. * communication channel.
  28. *
  29. * The basic provisions are:
  30. * - initialise an SSL/TLS context (see \c mbedtls_ssl_init()).
  31. * - perform an SSL/TLS handshake (see \c mbedtls_ssl_handshake()).
  32. * - read/write (see \c mbedtls_ssl_read() and \c mbedtls_ssl_write()).
  33. * - notify a peer that connection is being closed (see \c mbedtls_ssl_close_notify()).
  34. *
  35. * Many aspects of such a channel are set through parameters and callback
  36. * functions:
  37. * - the endpoint role: client or server.
  38. * - the authentication mode. Should verification take place.
  39. * - the Host-to-host communication channel. A TCP/IP module is provided.
  40. * - the random number generator (RNG).
  41. * - the ciphers to use for encryption/decryption.
  42. * - session control functions.
  43. * - X.509 parameters for certificate-handling and key exchange.
  44. *
  45. * This module can be used to create an SSL/TLS server and client and to provide a basic
  46. * framework to setup and communicate through an SSL/TLS communication channel.\n
  47. * Note that you need to provide for several aspects yourself as mentioned above.
  48. */