2021-05-24 10:15:29 +00:00
|
|
|
API changes
|
2021-06-08 08:24:55 +00:00
|
|
|
* mbedtls_ssl_conf_export_keys_ext_cb() and
|
|
|
|
mbedtls_ssl_conf_export_keys_cb() have been removed
|
|
|
|
and replaced by a new API
|
|
|
|
mbedtls_ssl_set_export_keys_cb().
|
2021-05-24 10:15:29 +00:00
|
|
|
* The signature of key export callbacks configured via
|
2021-06-08 08:24:55 +00:00
|
|
|
mbedtls_ssl_set_export_keys_cb() is different from that
|
|
|
|
of the previous mbedtls_ssl_conf_export_keys_cb(): First,
|
|
|
|
raw keys and IVs are no longer exported. Further, callbacks
|
2021-05-24 10:15:29 +00:00
|
|
|
now receive an additional parameter indicating the type
|
|
|
|
of secret that's being exported, paving the way for the
|
2021-06-08 08:24:55 +00:00
|
|
|
larger number of secrets in TLS 1.3. Finally, the key export
|
|
|
|
callback and context are now connection-specific.
|