1*62c56f98SSadaf Ebrahimi /*
2*62c56f98SSadaf Ebrahimi * Debugging routines
3*62c56f98SSadaf Ebrahimi *
4*62c56f98SSadaf Ebrahimi * Copyright The Mbed TLS Contributors
5*62c56f98SSadaf Ebrahimi * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
6*62c56f98SSadaf Ebrahimi */
7*62c56f98SSadaf Ebrahimi
8*62c56f98SSadaf Ebrahimi #include "common.h"
9*62c56f98SSadaf Ebrahimi
10*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_DEBUG_C)
11*62c56f98SSadaf Ebrahimi
12*62c56f98SSadaf Ebrahimi #include "mbedtls/platform.h"
13*62c56f98SSadaf Ebrahimi
14*62c56f98SSadaf Ebrahimi #include "mbedtls/debug.h"
15*62c56f98SSadaf Ebrahimi #include "mbedtls/error.h"
16*62c56f98SSadaf Ebrahimi
17*62c56f98SSadaf Ebrahimi #include <stdarg.h>
18*62c56f98SSadaf Ebrahimi #include <stdio.h>
19*62c56f98SSadaf Ebrahimi #include <string.h>
20*62c56f98SSadaf Ebrahimi
21*62c56f98SSadaf Ebrahimi /* DEBUG_BUF_SIZE must be at least 2 */
22*62c56f98SSadaf Ebrahimi #define DEBUG_BUF_SIZE 512
23*62c56f98SSadaf Ebrahimi
24*62c56f98SSadaf Ebrahimi static int debug_threshold = 0;
25*62c56f98SSadaf Ebrahimi
mbedtls_debug_set_threshold(int threshold)26*62c56f98SSadaf Ebrahimi void mbedtls_debug_set_threshold(int threshold)
27*62c56f98SSadaf Ebrahimi {
28*62c56f98SSadaf Ebrahimi debug_threshold = threshold;
29*62c56f98SSadaf Ebrahimi }
30*62c56f98SSadaf Ebrahimi
31*62c56f98SSadaf Ebrahimi /*
32*62c56f98SSadaf Ebrahimi * All calls to f_dbg must be made via this function
33*62c56f98SSadaf Ebrahimi */
debug_send_line(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * str)34*62c56f98SSadaf Ebrahimi static inline void debug_send_line(const mbedtls_ssl_context *ssl, int level,
35*62c56f98SSadaf Ebrahimi const char *file, int line,
36*62c56f98SSadaf Ebrahimi const char *str)
37*62c56f98SSadaf Ebrahimi {
38*62c56f98SSadaf Ebrahimi /*
39*62c56f98SSadaf Ebrahimi * If in a threaded environment, we need a thread identifier.
40*62c56f98SSadaf Ebrahimi * Since there is no portable way to get one, use the address of the ssl
41*62c56f98SSadaf Ebrahimi * context instead, as it shouldn't be shared between threads.
42*62c56f98SSadaf Ebrahimi */
43*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_THREADING_C)
44*62c56f98SSadaf Ebrahimi char idstr[20 + DEBUG_BUF_SIZE]; /* 0x + 16 nibbles + ': ' */
45*62c56f98SSadaf Ebrahimi mbedtls_snprintf(idstr, sizeof(idstr), "%p: %s", (void *) ssl, str);
46*62c56f98SSadaf Ebrahimi ssl->conf->f_dbg(ssl->conf->p_dbg, level, file, line, idstr);
47*62c56f98SSadaf Ebrahimi #else
48*62c56f98SSadaf Ebrahimi ssl->conf->f_dbg(ssl->conf->p_dbg, level, file, line, str);
49*62c56f98SSadaf Ebrahimi #endif
50*62c56f98SSadaf Ebrahimi }
51*62c56f98SSadaf Ebrahimi
52*62c56f98SSadaf Ebrahimi MBEDTLS_PRINTF_ATTRIBUTE(5, 6)
mbedtls_debug_print_msg(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * format,...)53*62c56f98SSadaf Ebrahimi void mbedtls_debug_print_msg(const mbedtls_ssl_context *ssl, int level,
54*62c56f98SSadaf Ebrahimi const char *file, int line,
55*62c56f98SSadaf Ebrahimi const char *format, ...)
56*62c56f98SSadaf Ebrahimi {
57*62c56f98SSadaf Ebrahimi va_list argp;
58*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
59*62c56f98SSadaf Ebrahimi int ret = MBEDTLS_ERR_ERROR_CORRUPTION_DETECTED;
60*62c56f98SSadaf Ebrahimi
61*62c56f98SSadaf Ebrahimi MBEDTLS_STATIC_ASSERT(DEBUG_BUF_SIZE >= 2, "DEBUG_BUF_SIZE too small");
62*62c56f98SSadaf Ebrahimi
63*62c56f98SSadaf Ebrahimi if (NULL == ssl ||
64*62c56f98SSadaf Ebrahimi NULL == ssl->conf ||
65*62c56f98SSadaf Ebrahimi NULL == ssl->conf->f_dbg ||
66*62c56f98SSadaf Ebrahimi level > debug_threshold) {
67*62c56f98SSadaf Ebrahimi return;
68*62c56f98SSadaf Ebrahimi }
69*62c56f98SSadaf Ebrahimi
70*62c56f98SSadaf Ebrahimi va_start(argp, format);
71*62c56f98SSadaf Ebrahimi ret = mbedtls_vsnprintf(str, DEBUG_BUF_SIZE, format, argp);
72*62c56f98SSadaf Ebrahimi va_end(argp);
73*62c56f98SSadaf Ebrahimi
74*62c56f98SSadaf Ebrahimi if (ret < 0) {
75*62c56f98SSadaf Ebrahimi ret = 0;
76*62c56f98SSadaf Ebrahimi } else {
77*62c56f98SSadaf Ebrahimi if (ret >= DEBUG_BUF_SIZE - 1) {
78*62c56f98SSadaf Ebrahimi ret = DEBUG_BUF_SIZE - 2;
79*62c56f98SSadaf Ebrahimi }
80*62c56f98SSadaf Ebrahimi }
81*62c56f98SSadaf Ebrahimi str[ret] = '\n';
82*62c56f98SSadaf Ebrahimi str[ret + 1] = '\0';
83*62c56f98SSadaf Ebrahimi
84*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
85*62c56f98SSadaf Ebrahimi }
86*62c56f98SSadaf Ebrahimi
mbedtls_debug_print_ret(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text,int ret)87*62c56f98SSadaf Ebrahimi void mbedtls_debug_print_ret(const mbedtls_ssl_context *ssl, int level,
88*62c56f98SSadaf Ebrahimi const char *file, int line,
89*62c56f98SSadaf Ebrahimi const char *text, int ret)
90*62c56f98SSadaf Ebrahimi {
91*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
92*62c56f98SSadaf Ebrahimi
93*62c56f98SSadaf Ebrahimi if (NULL == ssl ||
94*62c56f98SSadaf Ebrahimi NULL == ssl->conf ||
95*62c56f98SSadaf Ebrahimi NULL == ssl->conf->f_dbg ||
96*62c56f98SSadaf Ebrahimi level > debug_threshold) {
97*62c56f98SSadaf Ebrahimi return;
98*62c56f98SSadaf Ebrahimi }
99*62c56f98SSadaf Ebrahimi
100*62c56f98SSadaf Ebrahimi /*
101*62c56f98SSadaf Ebrahimi * With non-blocking I/O and examples that just retry immediately,
102*62c56f98SSadaf Ebrahimi * the logs would be quickly flooded with WANT_READ, so ignore that.
103*62c56f98SSadaf Ebrahimi * Don't ignore WANT_WRITE however, since it is usually rare.
104*62c56f98SSadaf Ebrahimi */
105*62c56f98SSadaf Ebrahimi if (ret == MBEDTLS_ERR_SSL_WANT_READ) {
106*62c56f98SSadaf Ebrahimi return;
107*62c56f98SSadaf Ebrahimi }
108*62c56f98SSadaf Ebrahimi
109*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str, sizeof(str), "%s() returned %d (-0x%04x)\n",
110*62c56f98SSadaf Ebrahimi text, ret, (unsigned int) -ret);
111*62c56f98SSadaf Ebrahimi
112*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
113*62c56f98SSadaf Ebrahimi }
114*62c56f98SSadaf Ebrahimi
mbedtls_debug_print_buf(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text,const unsigned char * buf,size_t len)115*62c56f98SSadaf Ebrahimi void mbedtls_debug_print_buf(const mbedtls_ssl_context *ssl, int level,
116*62c56f98SSadaf Ebrahimi const char *file, int line, const char *text,
117*62c56f98SSadaf Ebrahimi const unsigned char *buf, size_t len)
118*62c56f98SSadaf Ebrahimi {
119*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
120*62c56f98SSadaf Ebrahimi char txt[17];
121*62c56f98SSadaf Ebrahimi size_t i, idx = 0;
122*62c56f98SSadaf Ebrahimi
123*62c56f98SSadaf Ebrahimi if (NULL == ssl ||
124*62c56f98SSadaf Ebrahimi NULL == ssl->conf ||
125*62c56f98SSadaf Ebrahimi NULL == ssl->conf->f_dbg ||
126*62c56f98SSadaf Ebrahimi level > debug_threshold) {
127*62c56f98SSadaf Ebrahimi return;
128*62c56f98SSadaf Ebrahimi }
129*62c56f98SSadaf Ebrahimi
130*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, "dumping '%s' (%u bytes)\n",
131*62c56f98SSadaf Ebrahimi text, (unsigned int) len);
132*62c56f98SSadaf Ebrahimi
133*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
134*62c56f98SSadaf Ebrahimi
135*62c56f98SSadaf Ebrahimi memset(txt, 0, sizeof(txt));
136*62c56f98SSadaf Ebrahimi for (i = 0; i < len; i++) {
137*62c56f98SSadaf Ebrahimi if (i >= 4096) {
138*62c56f98SSadaf Ebrahimi break;
139*62c56f98SSadaf Ebrahimi }
140*62c56f98SSadaf Ebrahimi
141*62c56f98SSadaf Ebrahimi if (i % 16 == 0) {
142*62c56f98SSadaf Ebrahimi if (i > 0) {
143*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, " %s\n", txt);
144*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
145*62c56f98SSadaf Ebrahimi
146*62c56f98SSadaf Ebrahimi idx = 0;
147*62c56f98SSadaf Ebrahimi memset(txt, 0, sizeof(txt));
148*62c56f98SSadaf Ebrahimi }
149*62c56f98SSadaf Ebrahimi
150*62c56f98SSadaf Ebrahimi idx += mbedtls_snprintf(str + idx, sizeof(str) - idx, "%04x: ",
151*62c56f98SSadaf Ebrahimi (unsigned int) i);
152*62c56f98SSadaf Ebrahimi
153*62c56f98SSadaf Ebrahimi }
154*62c56f98SSadaf Ebrahimi
155*62c56f98SSadaf Ebrahimi idx += mbedtls_snprintf(str + idx, sizeof(str) - idx, " %02x",
156*62c56f98SSadaf Ebrahimi (unsigned int) buf[i]);
157*62c56f98SSadaf Ebrahimi txt[i % 16] = (buf[i] > 31 && buf[i] < 127) ? buf[i] : '.';
158*62c56f98SSadaf Ebrahimi }
159*62c56f98SSadaf Ebrahimi
160*62c56f98SSadaf Ebrahimi if (len > 0) {
161*62c56f98SSadaf Ebrahimi for (/* i = i */; i % 16 != 0; i++) {
162*62c56f98SSadaf Ebrahimi idx += mbedtls_snprintf(str + idx, sizeof(str) - idx, " ");
163*62c56f98SSadaf Ebrahimi }
164*62c56f98SSadaf Ebrahimi
165*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, " %s\n", txt);
166*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
167*62c56f98SSadaf Ebrahimi }
168*62c56f98SSadaf Ebrahimi }
169*62c56f98SSadaf Ebrahimi
170*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_ECP_LIGHT)
mbedtls_debug_print_ecp(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text,const mbedtls_ecp_point * X)171*62c56f98SSadaf Ebrahimi void mbedtls_debug_print_ecp(const mbedtls_ssl_context *ssl, int level,
172*62c56f98SSadaf Ebrahimi const char *file, int line,
173*62c56f98SSadaf Ebrahimi const char *text, const mbedtls_ecp_point *X)
174*62c56f98SSadaf Ebrahimi {
175*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
176*62c56f98SSadaf Ebrahimi
177*62c56f98SSadaf Ebrahimi if (NULL == ssl ||
178*62c56f98SSadaf Ebrahimi NULL == ssl->conf ||
179*62c56f98SSadaf Ebrahimi NULL == ssl->conf->f_dbg ||
180*62c56f98SSadaf Ebrahimi level > debug_threshold) {
181*62c56f98SSadaf Ebrahimi return;
182*62c56f98SSadaf Ebrahimi }
183*62c56f98SSadaf Ebrahimi
184*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str, sizeof(str), "%s(X)", text);
185*62c56f98SSadaf Ebrahimi mbedtls_debug_print_mpi(ssl, level, file, line, str, &X->X);
186*62c56f98SSadaf Ebrahimi
187*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str, sizeof(str), "%s(Y)", text);
188*62c56f98SSadaf Ebrahimi mbedtls_debug_print_mpi(ssl, level, file, line, str, &X->Y);
189*62c56f98SSadaf Ebrahimi }
190*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_ECP_LIGHT */
191*62c56f98SSadaf Ebrahimi
192*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_PK_USE_PSA_EC_DATA)
mbedtls_debug_print_ec_coord(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text,const unsigned char * buf,size_t len)193*62c56f98SSadaf Ebrahimi static void mbedtls_debug_print_ec_coord(const mbedtls_ssl_context *ssl, int level,
194*62c56f98SSadaf Ebrahimi const char *file, int line, const char *text,
195*62c56f98SSadaf Ebrahimi const unsigned char *buf, size_t len)
196*62c56f98SSadaf Ebrahimi {
197*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
198*62c56f98SSadaf Ebrahimi size_t i, idx = 0;
199*62c56f98SSadaf Ebrahimi
200*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, "value of '%s' (%u bits) is:\n",
201*62c56f98SSadaf Ebrahimi text, (unsigned int) len * 8);
202*62c56f98SSadaf Ebrahimi
203*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
204*62c56f98SSadaf Ebrahimi
205*62c56f98SSadaf Ebrahimi for (i = 0; i < len; i++) {
206*62c56f98SSadaf Ebrahimi if (i >= 4096) {
207*62c56f98SSadaf Ebrahimi break;
208*62c56f98SSadaf Ebrahimi }
209*62c56f98SSadaf Ebrahimi
210*62c56f98SSadaf Ebrahimi if (i % 16 == 0) {
211*62c56f98SSadaf Ebrahimi if (i > 0) {
212*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, "\n");
213*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
214*62c56f98SSadaf Ebrahimi
215*62c56f98SSadaf Ebrahimi idx = 0;
216*62c56f98SSadaf Ebrahimi }
217*62c56f98SSadaf Ebrahimi }
218*62c56f98SSadaf Ebrahimi
219*62c56f98SSadaf Ebrahimi idx += mbedtls_snprintf(str + idx, sizeof(str) - idx, " %02x",
220*62c56f98SSadaf Ebrahimi (unsigned int) buf[i]);
221*62c56f98SSadaf Ebrahimi }
222*62c56f98SSadaf Ebrahimi
223*62c56f98SSadaf Ebrahimi if (len > 0) {
224*62c56f98SSadaf Ebrahimi for (/* i = i */; i % 16 != 0; i++) {
225*62c56f98SSadaf Ebrahimi idx += mbedtls_snprintf(str + idx, sizeof(str) - idx, " ");
226*62c56f98SSadaf Ebrahimi }
227*62c56f98SSadaf Ebrahimi
228*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, "\n");
229*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
230*62c56f98SSadaf Ebrahimi }
231*62c56f98SSadaf Ebrahimi }
232*62c56f98SSadaf Ebrahimi
mbedtls_debug_print_psa_ec(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text,const mbedtls_pk_context * pk)233*62c56f98SSadaf Ebrahimi void mbedtls_debug_print_psa_ec(const mbedtls_ssl_context *ssl, int level,
234*62c56f98SSadaf Ebrahimi const char *file, int line,
235*62c56f98SSadaf Ebrahimi const char *text, const mbedtls_pk_context *pk)
236*62c56f98SSadaf Ebrahimi {
237*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
238*62c56f98SSadaf Ebrahimi const uint8_t *coord_start;
239*62c56f98SSadaf Ebrahimi size_t coord_len;
240*62c56f98SSadaf Ebrahimi
241*62c56f98SSadaf Ebrahimi if (NULL == ssl ||
242*62c56f98SSadaf Ebrahimi NULL == ssl->conf ||
243*62c56f98SSadaf Ebrahimi NULL == ssl->conf->f_dbg ||
244*62c56f98SSadaf Ebrahimi level > debug_threshold) {
245*62c56f98SSadaf Ebrahimi return;
246*62c56f98SSadaf Ebrahimi }
247*62c56f98SSadaf Ebrahimi
248*62c56f98SSadaf Ebrahimi /* For the description of pk->pk_raw content please refer to the description
249*62c56f98SSadaf Ebrahimi * psa_export_public_key() function. */
250*62c56f98SSadaf Ebrahimi coord_len = (pk->pub_raw_len - 1)/2;
251*62c56f98SSadaf Ebrahimi
252*62c56f98SSadaf Ebrahimi /* X coordinate */
253*62c56f98SSadaf Ebrahimi coord_start = pk->pub_raw + 1;
254*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str, sizeof(str), "%s(X)", text);
255*62c56f98SSadaf Ebrahimi mbedtls_debug_print_ec_coord(ssl, level, file, line, str, coord_start, coord_len);
256*62c56f98SSadaf Ebrahimi
257*62c56f98SSadaf Ebrahimi /* Y coordinate */
258*62c56f98SSadaf Ebrahimi coord_start = coord_start + coord_len;
259*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str, sizeof(str), "%s(Y)", text);
260*62c56f98SSadaf Ebrahimi mbedtls_debug_print_ec_coord(ssl, level, file, line, str, coord_start, coord_len);
261*62c56f98SSadaf Ebrahimi }
262*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_PK_USE_PSA_EC_DATA */
263*62c56f98SSadaf Ebrahimi
264*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_BIGNUM_C)
mbedtls_debug_print_mpi(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text,const mbedtls_mpi * X)265*62c56f98SSadaf Ebrahimi void mbedtls_debug_print_mpi(const mbedtls_ssl_context *ssl, int level,
266*62c56f98SSadaf Ebrahimi const char *file, int line,
267*62c56f98SSadaf Ebrahimi const char *text, const mbedtls_mpi *X)
268*62c56f98SSadaf Ebrahimi {
269*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
270*62c56f98SSadaf Ebrahimi size_t bitlen;
271*62c56f98SSadaf Ebrahimi size_t idx = 0;
272*62c56f98SSadaf Ebrahimi
273*62c56f98SSadaf Ebrahimi if (NULL == ssl ||
274*62c56f98SSadaf Ebrahimi NULL == ssl->conf ||
275*62c56f98SSadaf Ebrahimi NULL == ssl->conf->f_dbg ||
276*62c56f98SSadaf Ebrahimi NULL == X ||
277*62c56f98SSadaf Ebrahimi level > debug_threshold) {
278*62c56f98SSadaf Ebrahimi return;
279*62c56f98SSadaf Ebrahimi }
280*62c56f98SSadaf Ebrahimi
281*62c56f98SSadaf Ebrahimi bitlen = mbedtls_mpi_bitlen(X);
282*62c56f98SSadaf Ebrahimi
283*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str, sizeof(str), "value of '%s' (%u bits) is:\n",
284*62c56f98SSadaf Ebrahimi text, (unsigned) bitlen);
285*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
286*62c56f98SSadaf Ebrahimi
287*62c56f98SSadaf Ebrahimi if (bitlen == 0) {
288*62c56f98SSadaf Ebrahimi str[0] = ' '; str[1] = '0'; str[2] = '0';
289*62c56f98SSadaf Ebrahimi idx = 3;
290*62c56f98SSadaf Ebrahimi } else {
291*62c56f98SSadaf Ebrahimi int n;
292*62c56f98SSadaf Ebrahimi for (n = (int) ((bitlen - 1) / 8); n >= 0; n--) {
293*62c56f98SSadaf Ebrahimi size_t limb_offset = n / sizeof(mbedtls_mpi_uint);
294*62c56f98SSadaf Ebrahimi size_t offset_in_limb = n % sizeof(mbedtls_mpi_uint);
295*62c56f98SSadaf Ebrahimi unsigned char octet =
296*62c56f98SSadaf Ebrahimi (X->p[limb_offset] >> (offset_in_limb * 8)) & 0xff;
297*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, " %02x", octet);
298*62c56f98SSadaf Ebrahimi idx += 3;
299*62c56f98SSadaf Ebrahimi /* Wrap lines after 16 octets that each take 3 columns */
300*62c56f98SSadaf Ebrahimi if (idx >= 3 * 16) {
301*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, "\n");
302*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
303*62c56f98SSadaf Ebrahimi idx = 0;
304*62c56f98SSadaf Ebrahimi }
305*62c56f98SSadaf Ebrahimi }
306*62c56f98SSadaf Ebrahimi }
307*62c56f98SSadaf Ebrahimi
308*62c56f98SSadaf Ebrahimi if (idx != 0) {
309*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str + idx, sizeof(str) - idx, "\n");
310*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
311*62c56f98SSadaf Ebrahimi }
312*62c56f98SSadaf Ebrahimi }
313*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_BIGNUM_C */
314*62c56f98SSadaf Ebrahimi
315*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_X509_CRT_PARSE_C) && !defined(MBEDTLS_X509_REMOVE_INFO)
debug_print_pk(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text,const mbedtls_pk_context * pk)316*62c56f98SSadaf Ebrahimi static void debug_print_pk(const mbedtls_ssl_context *ssl, int level,
317*62c56f98SSadaf Ebrahimi const char *file, int line,
318*62c56f98SSadaf Ebrahimi const char *text, const mbedtls_pk_context *pk)
319*62c56f98SSadaf Ebrahimi {
320*62c56f98SSadaf Ebrahimi size_t i;
321*62c56f98SSadaf Ebrahimi mbedtls_pk_debug_item items[MBEDTLS_PK_DEBUG_MAX_ITEMS];
322*62c56f98SSadaf Ebrahimi char name[16];
323*62c56f98SSadaf Ebrahimi
324*62c56f98SSadaf Ebrahimi memset(items, 0, sizeof(items));
325*62c56f98SSadaf Ebrahimi
326*62c56f98SSadaf Ebrahimi if (mbedtls_pk_debug(pk, items) != 0) {
327*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line,
328*62c56f98SSadaf Ebrahimi "invalid PK context\n");
329*62c56f98SSadaf Ebrahimi return;
330*62c56f98SSadaf Ebrahimi }
331*62c56f98SSadaf Ebrahimi
332*62c56f98SSadaf Ebrahimi for (i = 0; i < MBEDTLS_PK_DEBUG_MAX_ITEMS; i++) {
333*62c56f98SSadaf Ebrahimi if (items[i].type == MBEDTLS_PK_DEBUG_NONE) {
334*62c56f98SSadaf Ebrahimi return;
335*62c56f98SSadaf Ebrahimi }
336*62c56f98SSadaf Ebrahimi
337*62c56f98SSadaf Ebrahimi mbedtls_snprintf(name, sizeof(name), "%s%s", text, items[i].name);
338*62c56f98SSadaf Ebrahimi name[sizeof(name) - 1] = '\0';
339*62c56f98SSadaf Ebrahimi
340*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_RSA_C)
341*62c56f98SSadaf Ebrahimi if (items[i].type == MBEDTLS_PK_DEBUG_MPI) {
342*62c56f98SSadaf Ebrahimi mbedtls_debug_print_mpi(ssl, level, file, line, name, items[i].value);
343*62c56f98SSadaf Ebrahimi } else
344*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_RSA_C */
345*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_ECP_LIGHT)
346*62c56f98SSadaf Ebrahimi if (items[i].type == MBEDTLS_PK_DEBUG_ECP) {
347*62c56f98SSadaf Ebrahimi mbedtls_debug_print_ecp(ssl, level, file, line, name, items[i].value);
348*62c56f98SSadaf Ebrahimi } else
349*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_ECP_LIGHT */
350*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_PK_USE_PSA_EC_DATA)
351*62c56f98SSadaf Ebrahimi if (items[i].type == MBEDTLS_PK_DEBUG_PSA_EC) {
352*62c56f98SSadaf Ebrahimi mbedtls_debug_print_psa_ec(ssl, level, file, line, name, items[i].value);
353*62c56f98SSadaf Ebrahimi } else
354*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_PK_USE_PSA_EC_DATA */
355*62c56f98SSadaf Ebrahimi { debug_send_line(ssl, level, file, line,
356*62c56f98SSadaf Ebrahimi "should not happen\n"); }
357*62c56f98SSadaf Ebrahimi }
358*62c56f98SSadaf Ebrahimi }
359*62c56f98SSadaf Ebrahimi
debug_print_line_by_line(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text)360*62c56f98SSadaf Ebrahimi static void debug_print_line_by_line(const mbedtls_ssl_context *ssl, int level,
361*62c56f98SSadaf Ebrahimi const char *file, int line, const char *text)
362*62c56f98SSadaf Ebrahimi {
363*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
364*62c56f98SSadaf Ebrahimi const char *start, *cur;
365*62c56f98SSadaf Ebrahimi
366*62c56f98SSadaf Ebrahimi start = text;
367*62c56f98SSadaf Ebrahimi for (cur = text; *cur != '\0'; cur++) {
368*62c56f98SSadaf Ebrahimi if (*cur == '\n') {
369*62c56f98SSadaf Ebrahimi size_t len = cur - start + 1;
370*62c56f98SSadaf Ebrahimi if (len > DEBUG_BUF_SIZE - 1) {
371*62c56f98SSadaf Ebrahimi len = DEBUG_BUF_SIZE - 1;
372*62c56f98SSadaf Ebrahimi }
373*62c56f98SSadaf Ebrahimi
374*62c56f98SSadaf Ebrahimi memcpy(str, start, len);
375*62c56f98SSadaf Ebrahimi str[len] = '\0';
376*62c56f98SSadaf Ebrahimi
377*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
378*62c56f98SSadaf Ebrahimi
379*62c56f98SSadaf Ebrahimi start = cur + 1;
380*62c56f98SSadaf Ebrahimi }
381*62c56f98SSadaf Ebrahimi }
382*62c56f98SSadaf Ebrahimi }
383*62c56f98SSadaf Ebrahimi
mbedtls_debug_print_crt(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const char * text,const mbedtls_x509_crt * crt)384*62c56f98SSadaf Ebrahimi void mbedtls_debug_print_crt(const mbedtls_ssl_context *ssl, int level,
385*62c56f98SSadaf Ebrahimi const char *file, int line,
386*62c56f98SSadaf Ebrahimi const char *text, const mbedtls_x509_crt *crt)
387*62c56f98SSadaf Ebrahimi {
388*62c56f98SSadaf Ebrahimi char str[DEBUG_BUF_SIZE];
389*62c56f98SSadaf Ebrahimi int i = 0;
390*62c56f98SSadaf Ebrahimi
391*62c56f98SSadaf Ebrahimi if (NULL == ssl ||
392*62c56f98SSadaf Ebrahimi NULL == ssl->conf ||
393*62c56f98SSadaf Ebrahimi NULL == ssl->conf->f_dbg ||
394*62c56f98SSadaf Ebrahimi NULL == crt ||
395*62c56f98SSadaf Ebrahimi level > debug_threshold) {
396*62c56f98SSadaf Ebrahimi return;
397*62c56f98SSadaf Ebrahimi }
398*62c56f98SSadaf Ebrahimi
399*62c56f98SSadaf Ebrahimi while (crt != NULL) {
400*62c56f98SSadaf Ebrahimi char buf[1024];
401*62c56f98SSadaf Ebrahimi
402*62c56f98SSadaf Ebrahimi mbedtls_snprintf(str, sizeof(str), "%s #%d:\n", text, ++i);
403*62c56f98SSadaf Ebrahimi debug_send_line(ssl, level, file, line, str);
404*62c56f98SSadaf Ebrahimi
405*62c56f98SSadaf Ebrahimi mbedtls_x509_crt_info(buf, sizeof(buf) - 1, "", crt);
406*62c56f98SSadaf Ebrahimi debug_print_line_by_line(ssl, level, file, line, buf);
407*62c56f98SSadaf Ebrahimi
408*62c56f98SSadaf Ebrahimi debug_print_pk(ssl, level, file, line, "crt->", &crt->pk);
409*62c56f98SSadaf Ebrahimi
410*62c56f98SSadaf Ebrahimi crt = crt->next;
411*62c56f98SSadaf Ebrahimi }
412*62c56f98SSadaf Ebrahimi }
413*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_X509_CRT_PARSE_C && MBEDTLS_X509_REMOVE_INFO */
414*62c56f98SSadaf Ebrahimi
415*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_KEY_EXCHANGE_SOME_ECDH_OR_ECDHE_ANY_ENABLED) && \
416*62c56f98SSadaf Ebrahimi defined(MBEDTLS_ECDH_C)
mbedtls_debug_printf_ecdh_internal(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const mbedtls_ecdh_context * ecdh,mbedtls_debug_ecdh_attr attr)417*62c56f98SSadaf Ebrahimi static void mbedtls_debug_printf_ecdh_internal(const mbedtls_ssl_context *ssl,
418*62c56f98SSadaf Ebrahimi int level, const char *file,
419*62c56f98SSadaf Ebrahimi int line,
420*62c56f98SSadaf Ebrahimi const mbedtls_ecdh_context *ecdh,
421*62c56f98SSadaf Ebrahimi mbedtls_debug_ecdh_attr attr)
422*62c56f98SSadaf Ebrahimi {
423*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_ECDH_LEGACY_CONTEXT)
424*62c56f98SSadaf Ebrahimi const mbedtls_ecdh_context *ctx = ecdh;
425*62c56f98SSadaf Ebrahimi #else
426*62c56f98SSadaf Ebrahimi const mbedtls_ecdh_context_mbed *ctx = &ecdh->ctx.mbed_ecdh;
427*62c56f98SSadaf Ebrahimi #endif
428*62c56f98SSadaf Ebrahimi
429*62c56f98SSadaf Ebrahimi switch (attr) {
430*62c56f98SSadaf Ebrahimi case MBEDTLS_DEBUG_ECDH_Q:
431*62c56f98SSadaf Ebrahimi mbedtls_debug_print_ecp(ssl, level, file, line, "ECDH: Q",
432*62c56f98SSadaf Ebrahimi &ctx->Q);
433*62c56f98SSadaf Ebrahimi break;
434*62c56f98SSadaf Ebrahimi case MBEDTLS_DEBUG_ECDH_QP:
435*62c56f98SSadaf Ebrahimi mbedtls_debug_print_ecp(ssl, level, file, line, "ECDH: Qp",
436*62c56f98SSadaf Ebrahimi &ctx->Qp);
437*62c56f98SSadaf Ebrahimi break;
438*62c56f98SSadaf Ebrahimi case MBEDTLS_DEBUG_ECDH_Z:
439*62c56f98SSadaf Ebrahimi mbedtls_debug_print_mpi(ssl, level, file, line, "ECDH: z",
440*62c56f98SSadaf Ebrahimi &ctx->z);
441*62c56f98SSadaf Ebrahimi break;
442*62c56f98SSadaf Ebrahimi default:
443*62c56f98SSadaf Ebrahimi break;
444*62c56f98SSadaf Ebrahimi }
445*62c56f98SSadaf Ebrahimi }
446*62c56f98SSadaf Ebrahimi
mbedtls_debug_printf_ecdh(const mbedtls_ssl_context * ssl,int level,const char * file,int line,const mbedtls_ecdh_context * ecdh,mbedtls_debug_ecdh_attr attr)447*62c56f98SSadaf Ebrahimi void mbedtls_debug_printf_ecdh(const mbedtls_ssl_context *ssl, int level,
448*62c56f98SSadaf Ebrahimi const char *file, int line,
449*62c56f98SSadaf Ebrahimi const mbedtls_ecdh_context *ecdh,
450*62c56f98SSadaf Ebrahimi mbedtls_debug_ecdh_attr attr)
451*62c56f98SSadaf Ebrahimi {
452*62c56f98SSadaf Ebrahimi #if defined(MBEDTLS_ECDH_LEGACY_CONTEXT)
453*62c56f98SSadaf Ebrahimi mbedtls_debug_printf_ecdh_internal(ssl, level, file, line, ecdh, attr);
454*62c56f98SSadaf Ebrahimi #else
455*62c56f98SSadaf Ebrahimi switch (ecdh->var) {
456*62c56f98SSadaf Ebrahimi default:
457*62c56f98SSadaf Ebrahimi mbedtls_debug_printf_ecdh_internal(ssl, level, file, line, ecdh,
458*62c56f98SSadaf Ebrahimi attr);
459*62c56f98SSadaf Ebrahimi }
460*62c56f98SSadaf Ebrahimi #endif
461*62c56f98SSadaf Ebrahimi }
462*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_KEY_EXCHANGE_SOME_ECDH_OR_ECDHE_ANY_ENABLED &&
463*62c56f98SSadaf Ebrahimi MBEDTLS_ECDH_C */
464*62c56f98SSadaf Ebrahimi
465*62c56f98SSadaf Ebrahimi #endif /* MBEDTLS_DEBUG_C */
466