OLD | NEW |
1 /* This Source Code Form is subject to the terms of the Mozilla Public | 1 /* This Source Code Form is subject to the terms of the Mozilla Public |
2 * License, v. 2.0. If a copy of the MPL was not distributed with this | 2 * License, v. 2.0. If a copy of the MPL was not distributed with this |
3 * file, You can obtain one at http://mozilla.org/MPL/2.0/. */ | 3 * file, You can obtain one at http://mozilla.org/MPL/2.0/. */ |
4 | 4 |
5 /* SSL-specific security error codes */ | 5 /* SSL-specific security error codes */ |
6 /* caller must include "sslerr.h" */ | 6 /* caller must include "sslerr.h" */ |
7 | 7 |
8 ER3(SSL_ERROR_EXPORT_ONLY_SERVER,» » » SSL_ERROR_BASE + 0, | 8 ER3(SSL_ERROR_EXPORT_ONLY_SERVER, SSL_ERROR_BASE + 0, |
9 "Unable to communicate securely. Peer does not support high-grade encryption.") | 9 "Unable to communicate securely. Peer does not support high-grade encryptio
n.") |
10 | 10 |
11 ER3(SSL_ERROR_US_ONLY_SERVER,» » » » SSL_ERROR_BASE + 1, | 11 ER3(SSL_ERROR_US_ONLY_SERVER, SSL_ERROR_BASE + 1, |
12 "Unable to communicate securely. Peer requires high-grade encryption which is n
ot supported.") | 12 "Unable to communicate securely. Peer requires high-grade encryption which
is not supported.") |
13 | 13 |
14 ER3(SSL_ERROR_NO_CYPHER_OVERLAP,» » » SSL_ERROR_BASE + 2, | 14 ER3(SSL_ERROR_NO_CYPHER_OVERLAP, SSL_ERROR_BASE + 2, |
15 "Cannot communicate securely with peer: no common encryption algorithm(s).") | 15 "Cannot communicate securely with peer: no common encryption algorithm(s).") |
16 | 16 |
17 ER3(SSL_ERROR_NO_CERTIFICATE,» » » » SSL_ERROR_BASE + 3, | 17 ER3(SSL_ERROR_NO_CERTIFICATE, SSL_ERROR_BASE + 3, |
18 "Unable to find the certificate or key necessary for authentication.") | 18 "Unable to find the certificate or key necessary for authentication.") |
19 | 19 |
20 ER3(SSL_ERROR_BAD_CERTIFICATE,» » » » SSL_ERROR_BASE + 4, | 20 ER3(SSL_ERROR_BAD_CERTIFICATE, SSL_ERROR_BASE + 4, |
21 "Unable to communicate securely with peer: peers's certificate was rejected.") | 21 "Unable to communicate securely with peer: peers's certificate was rejected.
") |
22 | 22 |
23 ER3(SSL_ERROR_UNUSED_5,»» » » » SSL_ERROR_BASE + 5, | 23 ER3(SSL_ERROR_UNUSED_5, SSL_ERROR_BASE + 5, |
24 "Unrecognized SSL error code.") | 24 "Unrecognized SSL error code.") |
25 | 25 |
26 ER3(SSL_ERROR_BAD_CLIENT,» » » » SSL_ERROR_BASE + 6, | 26 ER3(SSL_ERROR_BAD_CLIENT, SSL_ERROR_BASE + 6, |
27 "The server has encountered bad data from the client.") | 27 "The server has encountered bad data from the client.") |
28 | 28 |
29 ER3(SSL_ERROR_BAD_SERVER,» » » » SSL_ERROR_BASE + 7, | 29 ER3(SSL_ERROR_BAD_SERVER, SSL_ERROR_BASE + 7, |
30 "The client has encountered bad data from the server.") | 30 "The client has encountered bad data from the server.") |
31 | 31 |
32 ER3(SSL_ERROR_UNSUPPORTED_CERTIFICATE_TYPE,» » SSL_ERROR_BASE + 8, | 32 ER3(SSL_ERROR_UNSUPPORTED_CERTIFICATE_TYPE, SSL_ERROR_BASE + 8, |
33 "Unsupported certificate type.") | 33 "Unsupported certificate type.") |
34 | 34 |
35 ER3(SSL_ERROR_UNSUPPORTED_VERSION,» » » SSL_ERROR_BASE + 9, | 35 ER3(SSL_ERROR_UNSUPPORTED_VERSION, SSL_ERROR_BASE + 9, |
36 "Peer using unsupported version of security protocol.") | 36 "Peer using unsupported version of security protocol.") |
37 | 37 |
38 ER3(SSL_ERROR_UNUSED_10,» » » » SSL_ERROR_BASE + 10, | 38 ER3(SSL_ERROR_UNUSED_10, SSL_ERROR_BASE + 10, |
39 "Unrecognized SSL error code.") | 39 "Unrecognized SSL error code.") |
40 | 40 |
41 ER3(SSL_ERROR_WRONG_CERTIFICATE,» » » SSL_ERROR_BASE + 11, | 41 ER3(SSL_ERROR_WRONG_CERTIFICATE, SSL_ERROR_BASE + 11, |
42 "Client authentication failed: private key in key database does not match public
key in certificate database.") | 42 "Client authentication failed: private key in key database does not match pu
blic key in certificate database.") |
43 | 43 |
44 ER3(SSL_ERROR_BAD_CERT_DOMAIN,» » » » SSL_ERROR_BASE + 12, | 44 ER3(SSL_ERROR_BAD_CERT_DOMAIN, SSL_ERROR_BASE + 12, |
45 "Unable to communicate securely with peer: requested domain name does not match
the server's certificate.") | 45 "Unable to communicate securely with peer: requested domain name does not ma
tch the server's certificate.") |
46 | 46 |
47 ER3(SSL_ERROR_POST_WARNING,» » » » SSL_ERROR_BASE + 13, | 47 ER3(SSL_ERROR_POST_WARNING, SSL_ERROR_BASE + 13, |
48 "Unrecognized SSL error code.") | 48 "Unrecognized SSL error code.") |
49 | 49 |
50 ER3(SSL_ERROR_SSL2_DISABLED,» » » » (SSL_ERROR_BASE + 14), | 50 ER3(SSL_ERROR_SSL2_DISABLED, (SSL_ERROR_BASE + 14), |
51 "Peer only supports SSL version 2, which is locally disabled.") | 51 "Peer only supports SSL version 2, which is locally disabled.") |
52 | 52 |
53 | 53 ER3(SSL_ERROR_BAD_MAC_READ, (SSL_ERROR_BASE + 15), |
54 ER3(SSL_ERROR_BAD_MAC_READ,» » » » (SSL_ERROR_BASE + 15), | 54 "SSL received a record with an incorrect Message Authentication Code.") |
55 "SSL received a record with an incorrect Message Authentication Code.") | 55 |
56 | 56 ER3(SSL_ERROR_BAD_MAC_ALERT, (SSL_ERROR_BASE + 16), |
57 ER3(SSL_ERROR_BAD_MAC_ALERT,» » » » (SSL_ERROR_BASE + 16), | 57 "SSL peer reports incorrect Message Authentication Code.") |
58 "SSL peer reports incorrect Message Authentication Code.") | 58 |
59 | 59 ER3(SSL_ERROR_BAD_CERT_ALERT, (SSL_ERROR_BASE + 17), |
60 ER3(SSL_ERROR_BAD_CERT_ALERT,» » » » (SSL_ERROR_BASE + 17), | 60 "SSL peer cannot verify your certificate.") |
61 "SSL peer cannot verify your certificate.") | 61 |
62 | 62 ER3(SSL_ERROR_REVOKED_CERT_ALERT, (SSL_ERROR_BASE + 18), |
63 ER3(SSL_ERROR_REVOKED_CERT_ALERT,» » » (SSL_ERROR_BASE + 18), | 63 "SSL peer rejected your certificate as revoked.") |
64 "SSL peer rejected your certificate as revoked.") | 64 |
65 | 65 ER3(SSL_ERROR_EXPIRED_CERT_ALERT, (SSL_ERROR_BASE + 19), |
66 ER3(SSL_ERROR_EXPIRED_CERT_ALERT,» » » (SSL_ERROR_BASE + 19), | 66 "SSL peer rejected your certificate as expired.") |
67 "SSL peer rejected your certificate as expired.") | 67 |
68 | 68 ER3(SSL_ERROR_SSL_DISABLED, (SSL_ERROR_BASE + 20), |
69 ER3(SSL_ERROR_SSL_DISABLED,» » » » (SSL_ERROR_BASE + 20), | 69 "Cannot connect: SSL is disabled.") |
70 "Cannot connect: SSL is disabled.") | 70 |
71 | 71 ER3(SSL_ERROR_FORTEZZA_PQG, (SSL_ERROR_BASE + 21), |
72 ER3(SSL_ERROR_FORTEZZA_PQG,» » » » (SSL_ERROR_BASE + 21), | 72 "Cannot connect: SSL peer is in another FORTEZZA domain.") |
73 "Cannot connect: SSL peer is in another FORTEZZA domain.") | 73 |
74 | 74 ER3(SSL_ERROR_UNKNOWN_CIPHER_SUITE, (SSL_ERROR_BASE + 22), |
75 ER3(SSL_ERROR_UNKNOWN_CIPHER_SUITE , (SSL_ERROR_BASE + 22), | 75 "An unknown SSL cipher suite has been requested.") |
76 "An unknown SSL cipher suite has been requested.") | 76 |
77 | 77 ER3(SSL_ERROR_NO_CIPHERS_SUPPORTED, (SSL_ERROR_BASE + 23), |
78 ER3(SSL_ERROR_NO_CIPHERS_SUPPORTED , (SSL_ERROR_BASE + 23), | 78 "No cipher suites are present and enabled in this program.") |
79 "No cipher suites are present and enabled in this program.") | 79 |
80 | 80 ER3(SSL_ERROR_BAD_BLOCK_PADDING, (SSL_ERROR_BASE + 24), |
81 ER3(SSL_ERROR_BAD_BLOCK_PADDING , (SSL_ERROR_BASE + 24), | 81 "SSL received a record with bad block padding.") |
82 "SSL received a record with bad block padding.") | 82 |
83 | 83 ER3(SSL_ERROR_RX_RECORD_TOO_LONG, (SSL_ERROR_BASE + 25), |
84 ER3(SSL_ERROR_RX_RECORD_TOO_LONG , (SSL_ERROR_BASE + 25), | 84 "SSL received a record that exceeded the maximum permissible length.") |
85 "SSL received a record that exceeded the maximum permissible length.") | 85 |
86 | 86 ER3(SSL_ERROR_TX_RECORD_TOO_LONG, (SSL_ERROR_BASE + 26), |
87 ER3(SSL_ERROR_TX_RECORD_TOO_LONG , (SSL_ERROR_BASE + 26), | 87 "SSL attempted to send a record that exceeded the maximum permissible length
.") |
88 "SSL attempted to send a record that exceeded the maximum permissible length.") | |
89 | 88 |
90 /* | 89 /* |
91 * Received a malformed (too long or short or invalid content) SSL handshake. | 90 * Received a malformed (too long or short or invalid content) SSL handshake. |
92 */ | 91 */ |
93 ER3(SSL_ERROR_RX_MALFORMED_HELLO_REQUEST , (SSL_ERROR_BASE + 27), | 92 ER3(SSL_ERROR_RX_MALFORMED_HELLO_REQUEST, (SSL_ERROR_BASE + 27), |
94 "SSL received a malformed Hello Request handshake message.") | 93 "SSL received a malformed Hello Request handshake message.") |
95 | 94 |
96 ER3(SSL_ERROR_RX_MALFORMED_CLIENT_HELLO , (SSL_ERROR_BASE + 28), | 95 ER3(SSL_ERROR_RX_MALFORMED_CLIENT_HELLO, (SSL_ERROR_BASE + 28), |
97 "SSL received a malformed Client Hello handshake message.") | 96 "SSL received a malformed Client Hello handshake message.") |
98 | 97 |
99 ER3(SSL_ERROR_RX_MALFORMED_SERVER_HELLO , (SSL_ERROR_BASE + 29), | 98 ER3(SSL_ERROR_RX_MALFORMED_SERVER_HELLO, (SSL_ERROR_BASE + 29), |
100 "SSL received a malformed Server Hello handshake message.") | 99 "SSL received a malformed Server Hello handshake message.") |
101 | 100 |
102 ER3(SSL_ERROR_RX_MALFORMED_CERTIFICATE , (SSL_ERROR_BASE + 30), | 101 ER3(SSL_ERROR_RX_MALFORMED_CERTIFICATE, (SSL_ERROR_BASE + 30), |
103 "SSL received a malformed Certificate handshake message.") | 102 "SSL received a malformed Certificate handshake message.") |
104 | 103 |
105 ER3(SSL_ERROR_RX_MALFORMED_SERVER_KEY_EXCH , (SSL_ERROR_BASE + 31), | 104 ER3(SSL_ERROR_RX_MALFORMED_SERVER_KEY_EXCH, (SSL_ERROR_BASE + 31), |
106 "SSL received a malformed Server Key Exchange handshake message.") | 105 "SSL received a malformed Server Key Exchange handshake message.") |
107 | 106 |
108 ER3(SSL_ERROR_RX_MALFORMED_CERT_REQUEST , (SSL_ERROR_BASE + 32), | 107 ER3(SSL_ERROR_RX_MALFORMED_CERT_REQUEST, (SSL_ERROR_BASE + 32), |
109 "SSL received a malformed Certificate Request handshake message.") | 108 "SSL received a malformed Certificate Request handshake message.") |
110 | 109 |
111 ER3(SSL_ERROR_RX_MALFORMED_HELLO_DONE , (SSL_ERROR_BASE + 33), | 110 ER3(SSL_ERROR_RX_MALFORMED_HELLO_DONE, (SSL_ERROR_BASE + 33), |
112 "SSL received a malformed Server Hello Done handshake message.") | 111 "SSL received a malformed Server Hello Done handshake message.") |
113 | 112 |
114 ER3(SSL_ERROR_RX_MALFORMED_CERT_VERIFY , (SSL_ERROR_BASE + 34), | 113 ER3(SSL_ERROR_RX_MALFORMED_CERT_VERIFY, (SSL_ERROR_BASE + 34), |
115 "SSL received a malformed Certificate Verify handshake message.") | 114 "SSL received a malformed Certificate Verify handshake message.") |
116 | 115 |
117 ER3(SSL_ERROR_RX_MALFORMED_CLIENT_KEY_EXCH , (SSL_ERROR_BASE + 35), | 116 ER3(SSL_ERROR_RX_MALFORMED_CLIENT_KEY_EXCH, (SSL_ERROR_BASE + 35), |
118 "SSL received a malformed Client Key Exchange handshake message.") | 117 "SSL received a malformed Client Key Exchange handshake message.") |
119 | 118 |
120 ER3(SSL_ERROR_RX_MALFORMED_FINISHED , (SSL_ERROR_BASE + 36), | 119 ER3(SSL_ERROR_RX_MALFORMED_FINISHED, (SSL_ERROR_BASE + 36), |
121 "SSL received a malformed Finished handshake message.") | 120 "SSL received a malformed Finished handshake message.") |
122 | 121 |
123 /* | 122 /* |
124 * Received a malformed (too long or short) SSL record. | 123 * Received a malformed (too long or short) SSL record. |
125 */ | 124 */ |
126 ER3(SSL_ERROR_RX_MALFORMED_CHANGE_CIPHER , (SSL_ERROR_BASE + 37), | 125 ER3(SSL_ERROR_RX_MALFORMED_CHANGE_CIPHER, (SSL_ERROR_BASE + 37), |
127 "SSL received a malformed Change Cipher Spec record.") | 126 "SSL received a malformed Change Cipher Spec record.") |
128 | 127 |
129 ER3(SSL_ERROR_RX_MALFORMED_ALERT , (SSL_ERROR_BASE + 38), | 128 ER3(SSL_ERROR_RX_MALFORMED_ALERT, (SSL_ERROR_BASE + 38), |
130 "SSL received a malformed Alert record.") | 129 "SSL received a malformed Alert record.") |
131 | 130 |
132 ER3(SSL_ERROR_RX_MALFORMED_HANDSHAKE , (SSL_ERROR_BASE + 39), | 131 ER3(SSL_ERROR_RX_MALFORMED_HANDSHAKE, (SSL_ERROR_BASE + 39), |
133 "SSL received a malformed Handshake record.") | 132 "SSL received a malformed Handshake record.") |
134 | 133 |
135 ER3(SSL_ERROR_RX_MALFORMED_APPLICATION_DATA , (SSL_ERROR_BASE + 40), | 134 ER3(SSL_ERROR_RX_MALFORMED_APPLICATION_DATA, (SSL_ERROR_BASE + 40), |
136 "SSL received a malformed Application Data record.") | 135 "SSL received a malformed Application Data record.") |
137 | 136 |
138 /* | 137 /* |
139 * Received an SSL handshake that was inappropriate for the state we're in. | 138 * Received an SSL handshake that was inappropriate for the state we're in. |
140 * E.g. Server received message from server, or wrong state in state machine. | 139 * E.g. Server received message from server, or wrong state in state machine. |
141 */ | 140 */ |
142 ER3(SSL_ERROR_RX_UNEXPECTED_HELLO_REQUEST , (SSL_ERROR_BASE + 41), | 141 ER3(SSL_ERROR_RX_UNEXPECTED_HELLO_REQUEST, (SSL_ERROR_BASE + 41), |
143 "SSL received an unexpected Hello Request handshake message.") | 142 "SSL received an unexpected Hello Request handshake message.") |
144 | 143 |
145 ER3(SSL_ERROR_RX_UNEXPECTED_CLIENT_HELLO , (SSL_ERROR_BASE + 42), | 144 ER3(SSL_ERROR_RX_UNEXPECTED_CLIENT_HELLO, (SSL_ERROR_BASE + 42), |
146 "SSL received an unexpected Client Hello handshake message.") | 145 "SSL received an unexpected Client Hello handshake message.") |
147 | 146 |
148 ER3(SSL_ERROR_RX_UNEXPECTED_SERVER_HELLO , (SSL_ERROR_BASE + 43), | 147 ER3(SSL_ERROR_RX_UNEXPECTED_SERVER_HELLO, (SSL_ERROR_BASE + 43), |
149 "SSL received an unexpected Server Hello handshake message.") | 148 "SSL received an unexpected Server Hello handshake message.") |
150 | 149 |
151 ER3(SSL_ERROR_RX_UNEXPECTED_CERTIFICATE , (SSL_ERROR_BASE + 44), | 150 ER3(SSL_ERROR_RX_UNEXPECTED_CERTIFICATE, (SSL_ERROR_BASE + 44), |
152 "SSL received an unexpected Certificate handshake message.") | 151 "SSL received an unexpected Certificate handshake message.") |
153 | 152 |
154 ER3(SSL_ERROR_RX_UNEXPECTED_SERVER_KEY_EXCH , (SSL_ERROR_BASE + 45), | 153 ER3(SSL_ERROR_RX_UNEXPECTED_SERVER_KEY_EXCH, (SSL_ERROR_BASE + 45), |
155 "SSL received an unexpected Server Key Exchange handshake message.") | 154 "SSL received an unexpected Server Key Exchange handshake message.") |
156 | 155 |
157 ER3(SSL_ERROR_RX_UNEXPECTED_CERT_REQUEST , (SSL_ERROR_BASE + 46), | 156 ER3(SSL_ERROR_RX_UNEXPECTED_CERT_REQUEST, (SSL_ERROR_BASE + 46), |
158 "SSL received an unexpected Certificate Request handshake message.") | 157 "SSL received an unexpected Certificate Request handshake message.") |
159 | 158 |
160 ER3(SSL_ERROR_RX_UNEXPECTED_HELLO_DONE , (SSL_ERROR_BASE + 47), | 159 ER3(SSL_ERROR_RX_UNEXPECTED_HELLO_DONE, (SSL_ERROR_BASE + 47), |
161 "SSL received an unexpected Server Hello Done handshake message.") | 160 "SSL received an unexpected Server Hello Done handshake message.") |
162 | 161 |
163 ER3(SSL_ERROR_RX_UNEXPECTED_CERT_VERIFY , (SSL_ERROR_BASE + 48), | 162 ER3(SSL_ERROR_RX_UNEXPECTED_CERT_VERIFY, (SSL_ERROR_BASE + 48), |
164 "SSL received an unexpected Certificate Verify handshake message.") | 163 "SSL received an unexpected Certificate Verify handshake message.") |
165 | 164 |
166 ER3(SSL_ERROR_RX_UNEXPECTED_CLIENT_KEY_EXCH , (SSL_ERROR_BASE + 49), | 165 ER3(SSL_ERROR_RX_UNEXPECTED_CLIENT_KEY_EXCH, (SSL_ERROR_BASE + 49), |
167 "SSL received an unexpected Client Key Exchange handshake message.") | 166 "SSL received an unexpected Client Key Exchange handshake message.") |
168 | 167 |
169 ER3(SSL_ERROR_RX_UNEXPECTED_FINISHED , (SSL_ERROR_BASE + 50), | 168 ER3(SSL_ERROR_RX_UNEXPECTED_FINISHED, (SSL_ERROR_BASE + 50), |
170 "SSL received an unexpected Finished handshake message.") | 169 "SSL received an unexpected Finished handshake message.") |
171 | 170 |
172 /* | 171 /* |
173 * Received an SSL record that was inappropriate for the state we're in. | 172 * Received an SSL record that was inappropriate for the state we're in. |
174 */ | 173 */ |
175 ER3(SSL_ERROR_RX_UNEXPECTED_CHANGE_CIPHER , (SSL_ERROR_BASE + 51), | 174 ER3(SSL_ERROR_RX_UNEXPECTED_CHANGE_CIPHER, (SSL_ERROR_BASE + 51), |
176 "SSL received an unexpected Change Cipher Spec record.") | 175 "SSL received an unexpected Change Cipher Spec record.") |
177 | 176 |
178 ER3(SSL_ERROR_RX_UNEXPECTED_ALERT , (SSL_ERROR_BASE + 52), | 177 ER3(SSL_ERROR_RX_UNEXPECTED_ALERT, (SSL_ERROR_BASE + 52), |
179 "SSL received an unexpected Alert record.") | 178 "SSL received an unexpected Alert record.") |
180 | 179 |
181 ER3(SSL_ERROR_RX_UNEXPECTED_HANDSHAKE , (SSL_ERROR_BASE + 53), | 180 ER3(SSL_ERROR_RX_UNEXPECTED_HANDSHAKE, (SSL_ERROR_BASE + 53), |
182 "SSL received an unexpected Handshake record.") | 181 "SSL received an unexpected Handshake record.") |
183 | 182 |
184 ER3(SSL_ERROR_RX_UNEXPECTED_APPLICATION_DATA, (SSL_ERROR_BASE + 54), | 183 ER3(SSL_ERROR_RX_UNEXPECTED_APPLICATION_DATA, (SSL_ERROR_BASE + 54), |
185 "SSL received an unexpected Application Data record.") | 184 "SSL received an unexpected Application Data record.") |
186 | 185 |
187 /* | 186 /* |
188 * Received record/message with unknown discriminant. | 187 * Received record/message with unknown discriminant. |
189 */ | 188 */ |
190 ER3(SSL_ERROR_RX_UNKNOWN_RECORD_TYPE , (SSL_ERROR_BASE + 55), | 189 ER3(SSL_ERROR_RX_UNKNOWN_RECORD_TYPE, (SSL_ERROR_BASE + 55), |
191 "SSL received a record with an unknown content type.") | 190 "SSL received a record with an unknown content type.") |
192 | 191 |
193 ER3(SSL_ERROR_RX_UNKNOWN_HANDSHAKE , (SSL_ERROR_BASE + 56), | 192 ER3(SSL_ERROR_RX_UNKNOWN_HANDSHAKE, (SSL_ERROR_BASE + 56), |
194 "SSL received a handshake message with an unknown message type.") | 193 "SSL received a handshake message with an unknown message type.") |
195 | 194 |
196 ER3(SSL_ERROR_RX_UNKNOWN_ALERT , (SSL_ERROR_BASE + 57), | 195 ER3(SSL_ERROR_RX_UNKNOWN_ALERT, (SSL_ERROR_BASE + 57), |
197 "SSL received an alert record with an unknown alert description.") | 196 "SSL received an alert record with an unknown alert description.") |
198 | 197 |
199 /* | 198 /* |
200 * Received an alert reporting what we did wrong. (more alerts above) | 199 * Received an alert reporting what we did wrong. (more alerts above) |
201 */ | 200 */ |
202 ER3(SSL_ERROR_CLOSE_NOTIFY_ALERT , (SSL_ERROR_BASE + 58), | 201 ER3(SSL_ERROR_CLOSE_NOTIFY_ALERT, (SSL_ERROR_BASE + 58), |
203 "SSL peer has closed this connection.") | 202 "SSL peer has closed this connection.") |
204 | 203 |
205 ER3(SSL_ERROR_HANDSHAKE_UNEXPECTED_ALERT , (SSL_ERROR_BASE + 59), | 204 ER3(SSL_ERROR_HANDSHAKE_UNEXPECTED_ALERT, (SSL_ERROR_BASE + 59), |
206 "SSL peer was not expecting a handshake message it received.") | 205 "SSL peer was not expecting a handshake message it received.") |
207 | 206 |
208 ER3(SSL_ERROR_DECOMPRESSION_FAILURE_ALERT , (SSL_ERROR_BASE + 60), | 207 ER3(SSL_ERROR_DECOMPRESSION_FAILURE_ALERT, (SSL_ERROR_BASE + 60), |
209 "SSL peer was unable to successfully decompress an SSL record it received.") | 208 "SSL peer was unable to successfully decompress an SSL record it received.") |
210 | 209 |
211 ER3(SSL_ERROR_HANDSHAKE_FAILURE_ALERT , (SSL_ERROR_BASE + 61), | 210 ER3(SSL_ERROR_HANDSHAKE_FAILURE_ALERT, (SSL_ERROR_BASE + 61), |
212 "SSL peer was unable to negotiate an acceptable set of security parameters.") | 211 "SSL peer was unable to negotiate an acceptable set of security parameters."
) |
213 | 212 |
214 ER3(SSL_ERROR_ILLEGAL_PARAMETER_ALERT , (SSL_ERROR_BASE + 62), | 213 ER3(SSL_ERROR_ILLEGAL_PARAMETER_ALERT, (SSL_ERROR_BASE + 62), |
215 "SSL peer rejected a handshake message for unacceptable content.") | 214 "SSL peer rejected a handshake message for unacceptable content.") |
216 | 215 |
217 ER3(SSL_ERROR_UNSUPPORTED_CERT_ALERT , (SSL_ERROR_BASE + 63), | 216 ER3(SSL_ERROR_UNSUPPORTED_CERT_ALERT, (SSL_ERROR_BASE + 63), |
218 "SSL peer does not support certificates of the type it received.") | 217 "SSL peer does not support certificates of the type it received.") |
219 | 218 |
220 ER3(SSL_ERROR_CERTIFICATE_UNKNOWN_ALERT , (SSL_ERROR_BASE + 64), | 219 ER3(SSL_ERROR_CERTIFICATE_UNKNOWN_ALERT, (SSL_ERROR_BASE + 64), |
221 "SSL peer had some unspecified issue with the certificate it received.") | 220 "SSL peer had some unspecified issue with the certificate it received.") |
222 | 221 |
223 | 222 ER3(SSL_ERROR_GENERATE_RANDOM_FAILURE, (SSL_ERROR_BASE + 65), |
224 ER3(SSL_ERROR_GENERATE_RANDOM_FAILURE , (SSL_ERROR_BASE + 65), | 223 "SSL experienced a failure of its random number generator.") |
225 "SSL experienced a failure of its random number generator.") | 224 |
226 | 225 ER3(SSL_ERROR_SIGN_HASHES_FAILURE, (SSL_ERROR_BASE + 66), |
227 ER3(SSL_ERROR_SIGN_HASHES_FAILURE , (SSL_ERROR_BASE + 66), | 226 "Unable to digitally sign data required to verify your certificate.") |
228 "Unable to digitally sign data required to verify your certificate.") | 227 |
229 | 228 ER3(SSL_ERROR_EXTRACT_PUBLIC_KEY_FAILURE, (SSL_ERROR_BASE + 67), |
230 ER3(SSL_ERROR_EXTRACT_PUBLIC_KEY_FAILURE , (SSL_ERROR_BASE + 67), | 229 "SSL was unable to extract the public key from the peer's certificate.") |
231 "SSL was unable to extract the public key from the peer's certificate.") | 230 |
232 | 231 ER3(SSL_ERROR_SERVER_KEY_EXCHANGE_FAILURE, (SSL_ERROR_BASE + 68), |
233 ER3(SSL_ERROR_SERVER_KEY_EXCHANGE_FAILURE , (SSL_ERROR_BASE + 68), | 232 "Unspecified failure while processing SSL Server Key Exchange handshake.") |
234 "Unspecified failure while processing SSL Server Key Exchange handshake.") | 233 |
235 | 234 ER3(SSL_ERROR_CLIENT_KEY_EXCHANGE_FAILURE, (SSL_ERROR_BASE + 69), |
236 ER3(SSL_ERROR_CLIENT_KEY_EXCHANGE_FAILURE , (SSL_ERROR_BASE + 69), | 235 "Unspecified failure while processing SSL Client Key Exchange handshake.") |
237 "Unspecified failure while processing SSL Client Key Exchange handshake.") | 236 |
238 | 237 ER3(SSL_ERROR_ENCRYPTION_FAILURE, (SSL_ERROR_BASE + 70), |
239 ER3(SSL_ERROR_ENCRYPTION_FAILURE , (SSL_ERROR_BASE + 70), | 238 "Bulk data encryption algorithm failed in selected cipher suite.") |
240 "Bulk data encryption algorithm failed in selected cipher suite.") | 239 |
241 | 240 ER3(SSL_ERROR_DECRYPTION_FAILURE, (SSL_ERROR_BASE + 71), |
242 ER3(SSL_ERROR_DECRYPTION_FAILURE , (SSL_ERROR_BASE + 71), | 241 "Bulk data decryption algorithm failed in selected cipher suite.") |
243 "Bulk data decryption algorithm failed in selected cipher suite.") | 242 |
244 | 243 ER3(SSL_ERROR_SOCKET_WRITE_FAILURE, (SSL_ERROR_BASE + 72), |
245 ER3(SSL_ERROR_SOCKET_WRITE_FAILURE , (SSL_ERROR_BASE + 72), | 244 "Attempt to write encrypted data to underlying socket failed.") |
246 "Attempt to write encrypted data to underlying socket failed.") | 245 |
247 | 246 ER3(SSL_ERROR_MD5_DIGEST_FAILURE, (SSL_ERROR_BASE + 73), |
248 ER3(SSL_ERROR_MD5_DIGEST_FAILURE , (SSL_ERROR_BASE + 73), | 247 "MD5 digest function failed.") |
249 "MD5 digest function failed.") | 248 |
250 | 249 ER3(SSL_ERROR_SHA_DIGEST_FAILURE, (SSL_ERROR_BASE + 74), |
251 ER3(SSL_ERROR_SHA_DIGEST_FAILURE , (SSL_ERROR_BASE + 74), | 250 "SHA-1 digest function failed.") |
252 "SHA-1 digest function failed.") | 251 |
253 | 252 ER3(SSL_ERROR_MAC_COMPUTATION_FAILURE, (SSL_ERROR_BASE + 75), |
254 ER3(SSL_ERROR_MAC_COMPUTATION_FAILURE , (SSL_ERROR_BASE + 75), | 253 "MAC computation failed.") |
255 "MAC computation failed.") | 254 |
256 | 255 ER3(SSL_ERROR_SYM_KEY_CONTEXT_FAILURE, (SSL_ERROR_BASE + 76), |
257 ER3(SSL_ERROR_SYM_KEY_CONTEXT_FAILURE , (SSL_ERROR_BASE + 76), | 256 "Failure to create Symmetric Key context.") |
258 "Failure to create Symmetric Key context.") | 257 |
259 | 258 ER3(SSL_ERROR_SYM_KEY_UNWRAP_FAILURE, (SSL_ERROR_BASE + 77), |
260 ER3(SSL_ERROR_SYM_KEY_UNWRAP_FAILURE , (SSL_ERROR_BASE + 77), | 259 "Failure to unwrap the Symmetric key in Client Key Exchange message.") |
261 "Failure to unwrap the Symmetric key in Client Key Exchange message.") | 260 |
262 | 261 ER3(SSL_ERROR_PUB_KEY_SIZE_LIMIT_EXCEEDED, (SSL_ERROR_BASE + 78), |
263 ER3(SSL_ERROR_PUB_KEY_SIZE_LIMIT_EXCEEDED , (SSL_ERROR_BASE + 78), | 262 "SSL Server attempted to use domestic-grade public key with export cipher su
ite.") |
264 "SSL Server attempted to use domestic-grade public key with export cipher suite.
") | 263 |
265 | 264 ER3(SSL_ERROR_IV_PARAM_FAILURE, (SSL_ERROR_BASE + 79), |
266 ER3(SSL_ERROR_IV_PARAM_FAILURE , (SSL_ERROR_BASE + 79), | 265 "PKCS11 code failed to translate an IV into a param.") |
267 "PKCS11 code failed to translate an IV into a param.") | 266 |
268 | 267 ER3(SSL_ERROR_INIT_CIPHER_SUITE_FAILURE, (SSL_ERROR_BASE + 80), |
269 ER3(SSL_ERROR_INIT_CIPHER_SUITE_FAILURE , (SSL_ERROR_BASE + 80), | 268 "Failed to initialize the selected cipher suite.") |
270 "Failed to initialize the selected cipher suite.") | 269 |
271 | 270 ER3(SSL_ERROR_SESSION_KEY_GEN_FAILURE, (SSL_ERROR_BASE + 81), |
272 ER3(SSL_ERROR_SESSION_KEY_GEN_FAILURE , (SSL_ERROR_BASE + 81), | 271 "Client failed to generate session keys for SSL session.") |
273 "Client failed to generate session keys for SSL session.") | 272 |
274 | 273 ER3(SSL_ERROR_NO_SERVER_KEY_FOR_ALG, (SSL_ERROR_BASE + 82), |
275 ER3(SSL_ERROR_NO_SERVER_KEY_FOR_ALG , (SSL_ERROR_BASE + 82), | 274 "Server has no key for the attempted key exchange algorithm.") |
276 "Server has no key for the attempted key exchange algorithm.") | 275 |
277 | 276 ER3(SSL_ERROR_TOKEN_INSERTION_REMOVAL, (SSL_ERROR_BASE + 83), |
278 ER3(SSL_ERROR_TOKEN_INSERTION_REMOVAL , (SSL_ERROR_BASE + 83), | 277 "PKCS#11 token was inserted or removed while operation was in progress.") |
279 "PKCS#11 token was inserted or removed while operation was in progress.") | 278 |
280 | 279 ER3(SSL_ERROR_TOKEN_SLOT_NOT_FOUND, (SSL_ERROR_BASE + 84), |
281 ER3(SSL_ERROR_TOKEN_SLOT_NOT_FOUND , (SSL_ERROR_BASE + 84), | 280 "No PKCS#11 token could be found to do a required operation.") |
282 "No PKCS#11 token could be found to do a required operation.") | 281 |
283 | 282 ER3(SSL_ERROR_NO_COMPRESSION_OVERLAP, (SSL_ERROR_BASE + 85), |
284 ER3(SSL_ERROR_NO_COMPRESSION_OVERLAP , (SSL_ERROR_BASE + 85), | 283 "Cannot communicate securely with peer: no common compression algorithm(s)."
) |
285 "Cannot communicate securely with peer: no common compression algorithm(s).") | 284 |
286 | 285 ER3(SSL_ERROR_HANDSHAKE_NOT_COMPLETED, (SSL_ERROR_BASE + 86), |
287 ER3(SSL_ERROR_HANDSHAKE_NOT_COMPLETED , (SSL_ERROR_BASE + 86), | 286 "Cannot perform the operation until the handshake is complete.") |
288 "Cannot perform the operation until the handshake is complete.") | 287 |
289 | 288 ER3(SSL_ERROR_BAD_HANDSHAKE_HASH_VALUE, (SSL_ERROR_BASE + 87), |
290 ER3(SSL_ERROR_BAD_HANDSHAKE_HASH_VALUE , (SSL_ERROR_BASE + 87), | 289 "Received incorrect handshakes hash values from peer.") |
291 "Received incorrect handshakes hash values from peer.") | 290 |
292 | 291 ER3(SSL_ERROR_CERT_KEA_MISMATCH, (SSL_ERROR_BASE + 88), |
293 ER3(SSL_ERROR_CERT_KEA_MISMATCH , (SSL_ERROR_BASE + 88), | 292 "The certificate provided cannot be used with the selected key exchange algo
rithm.") |
294 "The certificate provided cannot be used with the selected key exchange algorith
m.") | 293 |
295 | 294 ER3(SSL_ERROR_NO_TRUSTED_SSL_CLIENT_CA, (SSL_ERROR_BASE + 89), |
296 ER3(SSL_ERROR_NO_TRUSTED_SSL_CLIENT_CA , (SSL_ERROR_BASE + 89), | 295 "No certificate authority is trusted for SSL client authentication.") |
297 "No certificate authority is trusted for SSL client authentication.") | 296 |
298 | 297 ER3(SSL_ERROR_SESSION_NOT_FOUND, (SSL_ERROR_BASE + 90), |
299 ER3(SSL_ERROR_SESSION_NOT_FOUND , (SSL_ERROR_BASE + 90), | 298 "Client's SSL session ID not found in server's session cache.") |
300 "Client's SSL session ID not found in server's session cache.") | 299 |
301 | 300 ER3(SSL_ERROR_DECRYPTION_FAILED_ALERT, (SSL_ERROR_BASE + 91), |
302 ER3(SSL_ERROR_DECRYPTION_FAILED_ALERT , (SSL_ERROR_BASE + 91), | 301 "Peer was unable to decrypt an SSL record it received.") |
303 "Peer was unable to decrypt an SSL record it received.") | 302 |
304 | 303 ER3(SSL_ERROR_RECORD_OVERFLOW_ALERT, (SSL_ERROR_BASE + 92), |
305 ER3(SSL_ERROR_RECORD_OVERFLOW_ALERT , (SSL_ERROR_BASE + 92), | 304 "Peer received an SSL record that was longer than is permitted.") |
306 "Peer received an SSL record that was longer than is permitted.") | 305 |
307 | 306 ER3(SSL_ERROR_UNKNOWN_CA_ALERT, (SSL_ERROR_BASE + 93), |
308 ER3(SSL_ERROR_UNKNOWN_CA_ALERT , (SSL_ERROR_BASE + 93), | 307 "Peer does not recognize and trust the CA that issued your certificate.") |
309 "Peer does not recognize and trust the CA that issued your certificate.") | 308 |
310 | 309 ER3(SSL_ERROR_ACCESS_DENIED_ALERT, (SSL_ERROR_BASE + 94), |
311 ER3(SSL_ERROR_ACCESS_DENIED_ALERT , (SSL_ERROR_BASE + 94), | 310 "Peer received a valid certificate, but access was denied.") |
312 "Peer received a valid certificate, but access was denied.") | 311 |
313 | 312 ER3(SSL_ERROR_DECODE_ERROR_ALERT, (SSL_ERROR_BASE + 95), |
314 ER3(SSL_ERROR_DECODE_ERROR_ALERT , (SSL_ERROR_BASE + 95), | 313 "Peer could not decode an SSL handshake message.") |
315 "Peer could not decode an SSL handshake message.") | 314 |
316 | 315 ER3(SSL_ERROR_DECRYPT_ERROR_ALERT, (SSL_ERROR_BASE + 96), |
317 ER3(SSL_ERROR_DECRYPT_ERROR_ALERT , (SSL_ERROR_BASE + 96), | 316 "Peer reports failure of signature verification or key exchange.") |
318 "Peer reports failure of signature verification or key exchange.") | 317 |
319 | 318 ER3(SSL_ERROR_EXPORT_RESTRICTION_ALERT, (SSL_ERROR_BASE + 97), |
320 ER3(SSL_ERROR_EXPORT_RESTRICTION_ALERT , (SSL_ERROR_BASE + 97), | 319 "Peer reports negotiation not in compliance with export regulations.") |
321 "Peer reports negotiation not in compliance with export regulations.") | 320 |
322 | 321 ER3(SSL_ERROR_PROTOCOL_VERSION_ALERT, (SSL_ERROR_BASE + 98), |
323 ER3(SSL_ERROR_PROTOCOL_VERSION_ALERT , (SSL_ERROR_BASE + 98), | 322 "Peer reports incompatible or unsupported protocol version.") |
324 "Peer reports incompatible or unsupported protocol version.") | 323 |
325 | 324 ER3(SSL_ERROR_INSUFFICIENT_SECURITY_ALERT, (SSL_ERROR_BASE + 99), |
326 ER3(SSL_ERROR_INSUFFICIENT_SECURITY_ALERT , (SSL_ERROR_BASE + 99), | 325 "Server requires ciphers more secure than those supported by client.") |
327 "Server requires ciphers more secure than those supported by client.") | 326 |
328 | 327 ER3(SSL_ERROR_INTERNAL_ERROR_ALERT, (SSL_ERROR_BASE + 100), |
329 ER3(SSL_ERROR_INTERNAL_ERROR_ALERT , (SSL_ERROR_BASE + 100), | 328 "Peer reports it experienced an internal error.") |
330 "Peer reports it experienced an internal error.") | 329 |
331 | 330 ER3(SSL_ERROR_USER_CANCELED_ALERT, (SSL_ERROR_BASE + 101), |
332 ER3(SSL_ERROR_USER_CANCELED_ALERT , (SSL_ERROR_BASE + 101), | 331 "Peer user canceled handshake.") |
333 "Peer user canceled handshake.") | 332 |
334 | 333 ER3(SSL_ERROR_NO_RENEGOTIATION_ALERT, (SSL_ERROR_BASE + 102), |
335 ER3(SSL_ERROR_NO_RENEGOTIATION_ALERT , (SSL_ERROR_BASE + 102), | 334 "Peer does not permit renegotiation of SSL security parameters.") |
336 "Peer does not permit renegotiation of SSL security parameters.") | 335 |
337 | 336 ER3(SSL_ERROR_SERVER_CACHE_NOT_CONFIGURED, (SSL_ERROR_BASE + 103), |
338 ER3(SSL_ERROR_SERVER_CACHE_NOT_CONFIGURED , (SSL_ERROR_BASE + 103), | 337 "SSL server cache not configured and not disabled for this socket.") |
339 "SSL server cache not configured and not disabled for this socket.") | 338 |
340 | 339 ER3(SSL_ERROR_UNSUPPORTED_EXTENSION_ALERT, (SSL_ERROR_BASE + 104), |
341 ER3(SSL_ERROR_UNSUPPORTED_EXTENSION_ALERT , (SSL_ERROR_BASE + 104), | 340 "SSL peer does not support requested TLS hello extension.") |
342 "SSL peer does not support requested TLS hello extension.") | 341 |
343 | 342 ER3(SSL_ERROR_CERTIFICATE_UNOBTAINABLE_ALERT, (SSL_ERROR_BASE + 105), |
344 ER3(SSL_ERROR_CERTIFICATE_UNOBTAINABLE_ALERT , (SSL_ERROR_BASE + 105), | 343 "SSL peer could not obtain your certificate from the supplied URL.") |
345 "SSL peer could not obtain your certificate from the supplied URL.") | 344 |
346 | 345 ER3(SSL_ERROR_UNRECOGNIZED_NAME_ALERT, (SSL_ERROR_BASE + 106), |
347 ER3(SSL_ERROR_UNRECOGNIZED_NAME_ALERT , (SSL_ERROR_BASE + 106), | 346 "SSL peer has no certificate for the requested DNS name.") |
348 "SSL peer has no certificate for the requested DNS name.") | 347 |
349 | 348 ER3(SSL_ERROR_BAD_CERT_STATUS_RESPONSE_ALERT, (SSL_ERROR_BASE + 107), |
350 ER3(SSL_ERROR_BAD_CERT_STATUS_RESPONSE_ALERT , (SSL_ERROR_BASE + 107), | 349 "SSL peer was unable to get an OCSP response for its certificate.") |
351 "SSL peer was unable to get an OCSP response for its certificate.") | 350 |
352 | 351 ER3(SSL_ERROR_BAD_CERT_HASH_VALUE_ALERT, (SSL_ERROR_BASE + 108), |
353 ER3(SSL_ERROR_BAD_CERT_HASH_VALUE_ALERT , (SSL_ERROR_BASE + 108), | 352 "SSL peer reported bad certificate hash value.") |
354 "SSL peer reported bad certificate hash value.") | |
355 | 353 |
356 ER3(SSL_ERROR_RX_UNEXPECTED_NEW_SESSION_TICKET, (SSL_ERROR_BASE + 109), | 354 ER3(SSL_ERROR_RX_UNEXPECTED_NEW_SESSION_TICKET, (SSL_ERROR_BASE + 109), |
357 "SSL received an unexpected New Session Ticket handshake message.") | 355 "SSL received an unexpected New Session Ticket handshake message.") |
358 | 356 |
359 ER3(SSL_ERROR_RX_MALFORMED_NEW_SESSION_TICKET, (SSL_ERROR_BASE + 110), | 357 ER3(SSL_ERROR_RX_MALFORMED_NEW_SESSION_TICKET, (SSL_ERROR_BASE + 110), |
360 "SSL received a malformed New Session Ticket handshake message.") | 358 "SSL received a malformed New Session Ticket handshake message.") |
361 | 359 |
362 ER3(SSL_ERROR_DECOMPRESSION_FAILURE, (SSL_ERROR_BASE + 111), | 360 ER3(SSL_ERROR_DECOMPRESSION_FAILURE, (SSL_ERROR_BASE + 111), |
363 "SSL received a compressed record that could not be decompressed.") | 361 "SSL received a compressed record that could not be decompressed.") |
364 | 362 |
365 ER3(SSL_ERROR_RENEGOTIATION_NOT_ALLOWED, (SSL_ERROR_BASE + 112), | 363 ER3(SSL_ERROR_RENEGOTIATION_NOT_ALLOWED, (SSL_ERROR_BASE + 112), |
366 "Renegotiation is not allowed on this SSL socket.") | 364 "Renegotiation is not allowed on this SSL socket.") |
367 | 365 |
368 ER3(SSL_ERROR_UNSAFE_NEGOTIATION, (SSL_ERROR_BASE + 113), | 366 ER3(SSL_ERROR_UNSAFE_NEGOTIATION, (SSL_ERROR_BASE + 113), |
369 "Peer attempted old style (potentially vulnerable) handshake.") | 367 "Peer attempted old style (potentially vulnerable) handshake.") |
370 | 368 |
371 ER3(SSL_ERROR_RX_UNEXPECTED_UNCOMPRESSED_RECORD, (SSL_ERROR_BASE + 114), | 369 ER3(SSL_ERROR_RX_UNEXPECTED_UNCOMPRESSED_RECORD, (SSL_ERROR_BASE + 114), |
372 "SSL received an unexpected uncompressed record.") | 370 "SSL received an unexpected uncompressed record.") |
373 | 371 |
374 ER3(SSL_ERROR_WEAK_SERVER_EPHEMERAL_DH_KEY, (SSL_ERROR_BASE + 115), | 372 ER3(SSL_ERROR_WEAK_SERVER_EPHEMERAL_DH_KEY, (SSL_ERROR_BASE + 115), |
375 "SSL received a weak ephemeral Diffie-Hellman key in Server Key Exchange handsha
ke message.") | 373 "SSL received a weak ephemeral Diffie-Hellman key in Server Key Exchange han
dshake message.") |
376 | 374 |
377 ER3(SSL_ERROR_NEXT_PROTOCOL_DATA_INVALID, (SSL_ERROR_BASE + 116), | 375 ER3(SSL_ERROR_NEXT_PROTOCOL_DATA_INVALID, (SSL_ERROR_BASE + 116), |
378 "SSL received invalid NPN extension data.") | 376 "SSL received invalid NPN extension data.") |
379 | 377 |
380 ER3(SSL_ERROR_FEATURE_NOT_SUPPORTED_FOR_SSL2, (SSL_ERROR_BASE + 117), | 378 ER3(SSL_ERROR_FEATURE_NOT_SUPPORTED_FOR_SSL2, (SSL_ERROR_BASE + 117), |
381 "SSL feature not supported for SSL 2.0 connections.") | 379 "SSL feature not supported for SSL 2.0 connections.") |
382 | 380 |
383 ER3(SSL_ERROR_FEATURE_NOT_SUPPORTED_FOR_SERVERS, (SSL_ERROR_BASE + 118), | 381 ER3(SSL_ERROR_FEATURE_NOT_SUPPORTED_FOR_SERVERS, (SSL_ERROR_BASE + 118), |
384 "SSL feature not supported for servers.") | 382 "SSL feature not supported for servers.") |
385 | 383 |
386 ER3(SSL_ERROR_FEATURE_NOT_SUPPORTED_FOR_CLIENTS, (SSL_ERROR_BASE + 119), | 384 ER3(SSL_ERROR_FEATURE_NOT_SUPPORTED_FOR_CLIENTS, (SSL_ERROR_BASE + 119), |
387 "SSL feature not supported for clients.") | 385 "SSL feature not supported for clients.") |
388 | 386 |
389 ER3(SSL_ERROR_INVALID_VERSION_RANGE, (SSL_ERROR_BASE + 120), | 387 ER3(SSL_ERROR_INVALID_VERSION_RANGE, (SSL_ERROR_BASE + 120), |
390 "SSL version range is not valid.") | 388 "SSL version range is not valid.") |
391 | 389 |
392 ER3(SSL_ERROR_CIPHER_DISALLOWED_FOR_VERSION, (SSL_ERROR_BASE + 121), | 390 ER3(SSL_ERROR_CIPHER_DISALLOWED_FOR_VERSION, (SSL_ERROR_BASE + 121), |
393 "SSL peer selected a cipher suite disallowed for the selected protocol version."
) | 391 "SSL peer selected a cipher suite disallowed for the selected protocol versi
on.") |
394 | 392 |
395 ER3(SSL_ERROR_RX_MALFORMED_HELLO_VERIFY_REQUEST, (SSL_ERROR_BASE + 122), | 393 ER3(SSL_ERROR_RX_MALFORMED_HELLO_VERIFY_REQUEST, (SSL_ERROR_BASE + 122), |
396 "SSL received a malformed Hello Verify Request handshake message.") | 394 "SSL received a malformed Hello Verify Request handshake message.") |
397 | 395 |
398 ER3(SSL_ERROR_RX_UNEXPECTED_HELLO_VERIFY_REQUEST, (SSL_ERROR_BASE + 123), | 396 ER3(SSL_ERROR_RX_UNEXPECTED_HELLO_VERIFY_REQUEST, (SSL_ERROR_BASE + 123), |
399 "SSL received an unexpected Hello Verify Request handshake message.") | 397 "SSL received an unexpected Hello Verify Request handshake message.") |
400 | 398 |
401 ER3(SSL_ERROR_FEATURE_NOT_SUPPORTED_FOR_VERSION, (SSL_ERROR_BASE + 124), | 399 ER3(SSL_ERROR_FEATURE_NOT_SUPPORTED_FOR_VERSION, (SSL_ERROR_BASE + 124), |
402 "SSL feature not supported for the protocol version.") | 400 "SSL feature not supported for the protocol version.") |
403 | 401 |
404 ER3(SSL_ERROR_RX_UNEXPECTED_CERT_STATUS, (SSL_ERROR_BASE + 125), | 402 ER3(SSL_ERROR_RX_UNEXPECTED_CERT_STATUS, (SSL_ERROR_BASE + 125), |
405 "SSL received an unexpected Certificate Status handshake message.") | 403 "SSL received an unexpected Certificate Status handshake message.") |
406 | 404 |
407 ER3(SSL_ERROR_UNSUPPORTED_HASH_ALGORITHM, (SSL_ERROR_BASE + 126), | 405 ER3(SSL_ERROR_UNSUPPORTED_HASH_ALGORITHM, (SSL_ERROR_BASE + 126), |
408 "Unsupported hash algorithm used by TLS peer.") | 406 "Unsupported hash algorithm used by TLS peer.") |
409 | 407 |
410 ER3(SSL_ERROR_DIGEST_FAILURE, (SSL_ERROR_BASE + 127), | 408 ER3(SSL_ERROR_DIGEST_FAILURE, (SSL_ERROR_BASE + 127), |
411 "Digest function failed.") | 409 "Digest function failed.") |
412 | 410 |
413 ER3(SSL_ERROR_INCORRECT_SIGNATURE_ALGORITHM, (SSL_ERROR_BASE + 128), | 411 ER3(SSL_ERROR_INCORRECT_SIGNATURE_ALGORITHM, (SSL_ERROR_BASE + 128), |
414 "Incorrect signature algorithm specified in a digitally-signed element.") | 412 "Incorrect signature algorithm specified in a digitally-signed element.") |
415 | 413 |
416 ER3(SSL_ERROR_NEXT_PROTOCOL_NO_CALLBACK, (SSL_ERROR_BASE + 129), | 414 ER3(SSL_ERROR_NEXT_PROTOCOL_NO_CALLBACK, (SSL_ERROR_BASE + 129), |
417 "The next protocol negotiation extension was enabled, but the callback was clear
ed prior to being needed.") | 415 "The next protocol negotiation extension was enabled, but the callback was c
leared prior to being needed.") |
418 | 416 |
419 ER3(SSL_ERROR_NEXT_PROTOCOL_NO_PROTOCOL, (SSL_ERROR_BASE + 130), | 417 ER3(SSL_ERROR_NEXT_PROTOCOL_NO_PROTOCOL, (SSL_ERROR_BASE + 130), |
420 "The server supports no protocols that the client advertises in the ALPN extensi
on.") | 418 "The server supports no protocols that the client advertises in the ALPN ext
ension.") |
421 | 419 |
422 ER3(SSL_ERROR_INAPPROPRIATE_FALLBACK_ALERT, (SSL_ERROR_BASE + 131), | 420 ER3(SSL_ERROR_INAPPROPRIATE_FALLBACK_ALERT, (SSL_ERROR_BASE + 131), |
423 "The server rejected the handshake because the client downgraded to a lower " | 421 "The server rejected the handshake because the client downgraded to a lower
" |
424 "TLS version than the server supports.") | 422 "TLS version than the server supports.") |
425 | 423 |
426 ER3(SSL_ERROR_WEAK_SERVER_CERT_KEY, (SSL_ERROR_BASE + 132), | 424 ER3(SSL_ERROR_WEAK_SERVER_CERT_KEY, (SSL_ERROR_BASE + 132), |
427 "The server certificate included a public key that was too weak.") | 425 "The server certificate included a public key that was too weak.") |
428 | 426 |
429 ER3(SSL_ERROR_RX_SHORT_DTLS_READ, (SSL_ERROR_BASE + 133), | 427 ER3(SSL_ERROR_RX_SHORT_DTLS_READ, (SSL_ERROR_BASE + 133), |
430 "Not enough room in buffer for DTLS record.") | 428 "Not enough room in buffer for DTLS record.") |
431 | 429 |
432 ER3(SSL_ERROR_NO_SUPPORTED_SIGNATURE_ALGORITHM, (SSL_ERROR_BASE + 134), | 430 ER3(SSL_ERROR_NO_SUPPORTED_SIGNATURE_ALGORITHM, (SSL_ERROR_BASE + 134), |
433 "No supported TLS signature algorithm was configured.") | 431 "No supported TLS signature algorithm was configured.") |
434 | 432 |
435 ER3(SSL_ERROR_UNSUPPORTED_SIGNATURE_ALGORITHM, (SSL_ERROR_BASE + 135), | 433 ER3(SSL_ERROR_UNSUPPORTED_SIGNATURE_ALGORITHM, (SSL_ERROR_BASE + 135), |
436 "The peer used an unsupported combination of signature and hash algorithm.") | 434 "The peer used an unsupported combination of signature and hash algorithm.") |
437 | 435 |
438 ER3(SSL_ERROR_MISSING_EXTENDED_MASTER_SECRET, (SSL_ERROR_BASE + 136), | 436 ER3(SSL_ERROR_MISSING_EXTENDED_MASTER_SECRET, (SSL_ERROR_BASE + 136), |
439 "The peer tried to resume without a correct extended_master_secret extension") | 437 "The peer tried to resume without a correct extended_master_secret extension
") |
440 | 438 |
441 ER3(SSL_ERROR_UNEXPECTED_EXTENDED_MASTER_SECRET, (SSL_ERROR_BASE + 137), | 439 ER3(SSL_ERROR_UNEXPECTED_EXTENDED_MASTER_SECRET, (SSL_ERROR_BASE + 137), |
442 "The peer tried to resume with an unexpected extended_master_secret extension") | 440 "The peer tried to resume with an unexpected extended_master_secret extensio
n") |
443 | 441 |
444 ER3(SSL_ERROR_BAD_CHANNEL_ID_DATA, (SSL_ERROR_BASE + 138), | 442 ER3(SSL_ERROR_RX_MALFORMED_KEY_SHARE, (SSL_ERROR_BASE + 138), |
445 "SSL received a malformed TLS Channel ID extension.") | 443 "SSL received a malformed Key Share extension.") |
446 | 444 |
447 ER3(SSL_ERROR_INVALID_CHANNEL_ID_KEY, (SSL_ERROR_BASE + 139), | 445 ER3(SSL_ERROR_MISSING_KEY_SHARE, (SSL_ERROR_BASE + 139), |
448 "The application provided an invalid TLS Channel ID key.") | 446 "SSL expected a Key Share extension.") |
449 | 447 |
450 ER3(SSL_ERROR_GET_CHANNEL_ID_FAILED, (SSL_ERROR_BASE + 140), | 448 ER3(SSL_ERROR_RX_MALFORMED_ECDHE_KEY_SHARE, (SSL_ERROR_BASE + 140), |
451 "The application could not get a TLS Channel ID.") | 449 "SSL received a malformed ECDHE key share handshake extension.") |
| 450 |
| 451 ER3(SSL_ERROR_RX_MALFORMED_DHE_KEY_SHARE, (SSL_ERROR_BASE + 141), |
| 452 "SSL received a malformed DHE key share handshake extension.") |
| 453 |
| 454 ER3(SSL_ERROR_RX_UNEXPECTED_ENCRYPTED_EXTENSIONS, (SSL_ERROR_BASE + 142), |
| 455 "SSL received an unexpected Encrypted Extensions handshake message.") |
| 456 |
| 457 ER3(SSL_ERROR_MISSING_EXTENSION_ALERT, (SSL_ERROR_BASE + 143), |
| 458 "SSL received a missing_extenson alert.") |
| 459 |
| 460 ER3(SSL_ERROR_KEY_EXCHANGE_FAILURE, (SSL_ERROR_BASE + 144), |
| 461 "SSL had an error performing key exchange.") |
| 462 |
| 463 ER3(SSL_ERROR_EXTENSION_DISALLOWED_FOR_VERSION, (SSL_ERROR_BASE + 145), |
| 464 "SSL received an extension that is not permitted for this version.") |
| 465 |
| 466 ER3(SSL_ERROR_RX_MALFORMED_ENCRYPTED_EXTENSIONS, (SSL_ERROR_BASE + 146), |
| 467 "SSL received a malformed Encrypted Extensions handshake message.") |
| 468 |
| 469 ER3(SSL_ERROR_BAD_CHANNEL_ID_DATA, (SSL_ERROR_BASE + 147), |
| 470 "SSL received a malformed TLS Channel ID extension.") |
| 471 |
| 472 ER3(SSL_ERROR_INVALID_CHANNEL_ID_KEY, (SSL_ERROR_BASE + 148), |
| 473 "The application provided an invalid TLS Channel ID key.") |
| 474 |
| 475 ER3(SSL_ERROR_GET_CHANNEL_ID_FAILED, (SSL_ERROR_BASE + 149), |
| 476 "The application could not get a TLS Channel ID.") |
OLD | NEW |