Set hs_psk,ciphercuit_info and kex mode when writing pre-share key

Signed-off-by: Xiaokang Qian <xiaokang.qian@arm.com>
This commit is contained in:
Xiaokang Qian 2022-12-19 07:31:27 +00:00
parent 57a138d5c3
commit 854db28bb7
3 changed files with 30 additions and 21 deletions

View file

@ -966,24 +966,6 @@ int mbedtls_ssl_write_client_hello(mbedtls_ssl_context *ssl)
#if defined(MBEDTLS_SSL_EARLY_DATA)
if (ssl->early_data_status == MBEDTLS_SSL_EARLY_DATA_STATUS_REJECTED) {
psa_algorithm_t hash_alg = PSA_ALG_NONE;
const unsigned char *psk;
size_t psk_len;
MBEDTLS_SSL_DEBUG_MSG(1, ("in generate early keys"));
if ((ret = mbedtls_ssl_tls13_ticket_get_psk(
ssl, &hash_alg, &psk, &psk_len))
!= 0) {
MBEDTLS_SSL_DEBUG_RET(
1, "mbedtls_ssl_tls13_ticket_get_psk", ret);
goto cleanup;
}
if ((ret = mbedtls_ssl_set_hs_psk(ssl, psk, psk_len)) != 0) {
MBEDTLS_SSL_DEBUG_RET(1, "mbedtls_ssl_set_hs_psk", ret);
goto cleanup;
}
/* Start the TLS 1.3 key schedule:
* Set the PSK and derive early secret.
*/