public abstract class AbstractTlsPeer extends java.lang.Object implements TlsPeer
Modifier | Constructor and Description |
---|---|
protected |
AbstractTlsPeer(TlsCrypto crypto) |
Modifier and Type | Method and Description |
---|---|
boolean |
allowLegacyResumption() |
void |
cancel() |
TlsCrypto |
getCrypto() |
int |
getHandshakeResendTimeMillis()
NOTE: Currently only respected by DTLS protocols.
|
int |
getHandshakeTimeoutMillis()
NOTE: Currently only respected by DTLS protocols.
|
TlsHeartbeat |
getHeartbeat()
Return a
TlsHeartbeat instance that will control the generation of heartbeats locally
(if permitted by the remote peer), or null to not generate heartbeats. |
short |
getHeartbeatPolicy()
Return the heartbeat mode applicable to the remote peer.
|
TlsKeyExchangeFactory |
getKeyExchangeFactory() |
int |
getMaxCertificateChainLength() |
int |
getMaxHandshakeMessageSize() |
short[] |
getPskKeyExchangeModes() |
int |
getRenegotiationPolicy()
WARNING: EXPERIMENTAL FEATURE
Return this peer's policy on renegotiation requests from the remote peer.
|
protected abstract int[] |
getSupportedCipherSuites() |
protected ProtocolVersion[] |
getSupportedVersions()
Get the
ProtocolVersion values that are supported by this peer. |
void |
notifyAlertRaised(short alertLevel,
short alertDescription,
java.lang.String message,
java.lang.Throwable cause)
This method will be called when an alert is raised by the protocol.
|
void |
notifyAlertReceived(short alertLevel,
short alertDescription)
This method will be called when an alert is received from the remote peer.
|
void |
notifyCloseHandle(TlsCloseable closeHandle) |
void |
notifyConnectionClosed()
Notifies the peer that the connection has been closed.
|
void |
notifyHandshakeBeginning()
Notifies the peer that a new handshake is about to begin.
|
void |
notifyHandshakeComplete()
Notifies the peer that the handshake has been successfully completed.
|
void |
notifySecureRenegotiation(boolean secureRenegotiation)
RFC 5746 3.4/3.6.
|
boolean |
requiresCloseNotify()
This option is provided as a last resort for interoperability with TLS peers that fail to
correctly send a close_notify alert at end of stream.
|
boolean |
requiresExtendedMasterSecret()
This implementation supports RFC 7627 and will always negotiate the extended_master_secret
extension where possible.
|
boolean |
shouldCheckSigAlgOfPeerCerts()
Controls whether the protocol will check the 'signatureAlgorithm' of received certificates as
specified in RFC 5246 7.4.2, 7.4.4, 7.4.6 and similar rules for earlier TLS versions.
|
boolean |
shouldUseExtendedMasterSecret() |
boolean |
shouldUseExtendedPadding()
See RFC 5246 6.2.3.2.
|
boolean |
shouldUseGMTUnixTime()
draft-mathewson-no-gmtunixtime-00 2.
|
clone, equals, finalize, getClass, hashCode, notify, notifyAll, toString, wait, wait, wait
getCipherSuites, getProtocolVersions
protected AbstractTlsPeer(TlsCrypto crypto)
protected ProtocolVersion[] getSupportedVersions()
ProtocolVersion
values that are supported by this peer.
WARNING: Mixing DTLS and TLS versions in the returned array is currently NOT supported. Use a
separate (sub-)class for each case.ProtocolVersion
values.protected abstract int[] getSupportedCipherSuites()
public void cancel() throws java.io.IOException
public void notifyCloseHandle(TlsCloseable closeHandle)
notifyCloseHandle
in interface TlsPeer
public void notifyHandshakeBeginning() throws java.io.IOException
TlsPeer
notifyHandshakeBeginning
in interface TlsPeer
java.io.IOException
public int getHandshakeTimeoutMillis()
TlsPeer
NOTE: Currently only respected by DTLS protocols.
Specify the timeout, in milliseconds, to use for the complete handshake process. Negative values are not allowed. A timeout of zero means an infinite timeout (i.e. the handshake will never time out).
getHandshakeTimeoutMillis
in interface TlsPeer
public int getHandshakeResendTimeMillis()
TlsPeer
NOTE: Currently only respected by DTLS protocols.
Specify the time, in milliseconds, after which a handshake packet is resent.
getHandshakeResendTimeMillis
in interface TlsPeer
public boolean allowLegacyResumption()
allowLegacyResumption
in interface TlsPeer
public int getMaxCertificateChainLength()
getMaxCertificateChainLength
in interface TlsPeer
public int getMaxHandshakeMessageSize()
getMaxHandshakeMessageSize
in interface TlsPeer
public short[] getPskKeyExchangeModes()
getPskKeyExchangeModes
in interface TlsPeer
public boolean requiresCloseNotify()
TlsPeer
requiresCloseNotify
in interface TlsPeer
public boolean requiresExtendedMasterSecret()
TlsPeer
requiresExtendedMasterSecret
in interface TlsPeer
true
if the handshake should be aborted when the peer does not negotiate
the extended_master_secret extension, or false
to support legacy
interoperability.public boolean shouldCheckSigAlgOfPeerCerts()
TlsPeer
shouldCheckSigAlgOfPeerCerts
in interface TlsPeer
true
if the 'signatureAlgorithm' of received certificates should be
checked, or false
to skip those checks.public boolean shouldUseExtendedMasterSecret()
shouldUseExtendedMasterSecret
in interface TlsPeer
public boolean shouldUseExtendedPadding()
TlsPeer
shouldUseExtendedPadding
in interface TlsPeer
true
if random extra padding should be added during block cipher
encryption, or false
to always use the minimum amount of required
padding.public boolean shouldUseGMTUnixTime()
TlsPeer
shouldUseGMTUnixTime
in interface TlsPeer
true
if the current time should be used in the gmt_unix_time field of
Random, or false
if gmt_unix_time should contain a cryptographically
random value.public void notifySecureRenegotiation(boolean secureRenegotiation) throws java.io.IOException
TlsPeer
notifySecureRenegotiation
in interface TlsPeer
java.io.IOException
public TlsKeyExchangeFactory getKeyExchangeFactory() throws java.io.IOException
getKeyExchangeFactory
in interface TlsPeer
java.io.IOException
public void notifyAlertRaised(short alertLevel, short alertDescription, java.lang.String message, java.lang.Throwable cause)
TlsPeer
notifyAlertRaised
in interface TlsPeer
alertLevel
- AlertLevel
alertDescription
- AlertDescription
message
- A human-readable message explaining what caused this alert. May be null.cause
- The Throwable
that caused this alert to be raised. May be null.public void notifyAlertReceived(short alertLevel, short alertDescription)
TlsPeer
notifyAlertReceived
in interface TlsPeer
alertLevel
- AlertLevel
alertDescription
- AlertDescription
public void notifyConnectionClosed()
TlsPeer
notifyConnectionClosed
in interface TlsPeer
public void notifyHandshakeComplete() throws java.io.IOException
TlsPeer
notifyHandshakeComplete
in interface TlsPeer
java.io.IOException
public TlsHeartbeat getHeartbeat()
TlsPeer
TlsHeartbeat
instance that will control the generation of heartbeats locally
(if permitted by the remote peer), or null to not generate heartbeats. Heartbeats are
described in RFC 6520.getHeartbeat
in interface TlsPeer
TlsHeartbeat
.DefaultTlsHeartbeat
public short getHeartbeatPolicy()
TlsPeer
Return the heartbeat mode applicable to the remote peer. Heartbeats are described in RFC 6520.
See enumeration class HeartbeatMode
for appropriate return values.
getHeartbeatPolicy
in interface TlsPeer
HeartbeatMode
value.public int getRenegotiationPolicy()
TlsPeer
getRenegotiationPolicy
in interface TlsPeer
RenegotiationPolicy
constant corresponding to the desired policy.RenegotiationPolicy