Update SSL_trace to understand TLSv1.3 Certificates
[openssl.git] / ssl / ssl_err.c
1 /*
2  * Generated by util/mkerr.pl DO NOT EDIT
3  * Copyright 1995-2016 The OpenSSL Project Authors. All Rights Reserved.
4  *
5  * Licensed under the OpenSSL license (the "License").  You may not use
6  * this file except in compliance with the License.  You can obtain a copy
7  * in the file LICENSE in the source distribution or at
8  * https://www.openssl.org/source/license.html
9  */
10
11 #include <stdio.h>
12 #include <openssl/err.h>
13 #include <openssl/ssl.h>
14
15 /* BEGIN ERROR CODES */
16 #ifndef OPENSSL_NO_ERR
17
18 # define ERR_FUNC(func) ERR_PACK(ERR_LIB_SSL,func,0)
19 # define ERR_REASON(reason) ERR_PACK(ERR_LIB_SSL,0,reason)
20
21 static ERR_STRING_DATA SSL_str_functs[] = {
22     {ERR_FUNC(SSL_F_ADD_CLIENT_KEY_SHARE_EXT), "add_client_key_share_ext"},
23     {ERR_FUNC(SSL_F_CHECK_SUITEB_CIPHER_LIST), "check_suiteb_cipher_list"},
24     {ERR_FUNC(SSL_F_CT_MOVE_SCTS), "ct_move_scts"},
25     {ERR_FUNC(SSL_F_CT_STRICT), "ct_strict"},
26     {ERR_FUNC(SSL_F_D2I_SSL_SESSION), "d2i_SSL_SESSION"},
27     {ERR_FUNC(SSL_F_DANE_CTX_ENABLE), "dane_ctx_enable"},
28     {ERR_FUNC(SSL_F_DANE_MTYPE_SET), "dane_mtype_set"},
29     {ERR_FUNC(SSL_F_DANE_TLSA_ADD), "dane_tlsa_add"},
30     {ERR_FUNC(SSL_F_DO_DTLS1_WRITE), "do_dtls1_write"},
31     {ERR_FUNC(SSL_F_DO_SSL3_WRITE), "do_ssl3_write"},
32     {ERR_FUNC(SSL_F_DTLS1_BUFFER_RECORD), "dtls1_buffer_record"},
33     {ERR_FUNC(SSL_F_DTLS1_CHECK_TIMEOUT_NUM), "dtls1_check_timeout_num"},
34     {ERR_FUNC(SSL_F_DTLS1_HEARTBEAT), "dtls1_heartbeat"},
35     {ERR_FUNC(SSL_F_DTLS1_PREPROCESS_FRAGMENT), "dtls1_preprocess_fragment"},
36     {ERR_FUNC(SSL_F_DTLS1_PROCESS_BUFFERED_RECORDS),
37      "dtls1_process_buffered_records"},
38     {ERR_FUNC(SSL_F_DTLS1_PROCESS_RECORD), "dtls1_process_record"},
39     {ERR_FUNC(SSL_F_DTLS1_READ_BYTES), "dtls1_read_bytes"},
40     {ERR_FUNC(SSL_F_DTLS1_READ_FAILED), "dtls1_read_failed"},
41     {ERR_FUNC(SSL_F_DTLS1_RETRANSMIT_MESSAGE), "dtls1_retransmit_message"},
42     {ERR_FUNC(SSL_F_DTLS1_WRITE_APP_DATA_BYTES),
43      "dtls1_write_app_data_bytes"},
44     {ERR_FUNC(SSL_F_DTLSV1_LISTEN), "DTLSv1_listen"},
45     {ERR_FUNC(SSL_F_DTLS_CONSTRUCT_CHANGE_CIPHER_SPEC),
46      "dtls_construct_change_cipher_spec"},
47     {ERR_FUNC(SSL_F_DTLS_CONSTRUCT_HELLO_VERIFY_REQUEST),
48      "dtls_construct_hello_verify_request"},
49     {ERR_FUNC(SSL_F_DTLS_GET_REASSEMBLED_MESSAGE),
50      "dtls_get_reassembled_message"},
51     {ERR_FUNC(SSL_F_DTLS_PROCESS_HELLO_VERIFY), "dtls_process_hello_verify"},
52     {ERR_FUNC(SSL_F_FINAL_EC_PT_FORMATS), "final_ec_pt_formats"},
53     {ERR_FUNC(SSL_F_FINAL_EMS), "final_ems"},
54     {ERR_FUNC(SSL_F_FINAL_RENEGOTIATE), "final_renegotiate"},
55     {ERR_FUNC(SSL_F_OPENSSL_INIT_SSL), "OPENSSL_init_ssl"},
56     {ERR_FUNC(SSL_F_OSSL_STATEM_CLIENT13_READ_TRANSITION),
57      "ossl_statem_client13_read_transition"},
58     {ERR_FUNC(SSL_F_OSSL_STATEM_CLIENT_CONSTRUCT_MESSAGE),
59      "ossl_statem_client_construct_message"},
60     {ERR_FUNC(SSL_F_OSSL_STATEM_CLIENT_READ_TRANSITION),
61      "ossl_statem_client_read_transition"},
62     {ERR_FUNC(SSL_F_OSSL_STATEM_SERVER13_READ_TRANSITION),
63      "ossl_statem_server13_read_transition"},
64     {ERR_FUNC(SSL_F_OSSL_STATEM_SERVER_CONSTRUCT_MESSAGE),
65      "ossl_statem_server_construct_message"},
66     {ERR_FUNC(SSL_F_OSSL_STATEM_SERVER_READ_TRANSITION),
67      "ossl_statem_server_read_transition"},
68     {ERR_FUNC(SSL_F_PROCESS_KEY_SHARE_EXT), "process_key_share_ext"},
69     {ERR_FUNC(SSL_F_READ_STATE_MACHINE), "read_state_machine"},
70     {ERR_FUNC(SSL_F_SSL3_CHANGE_CIPHER_STATE), "ssl3_change_cipher_state"},
71     {ERR_FUNC(SSL_F_SSL3_CHECK_CERT_AND_ALGORITHM),
72      "ssl3_check_cert_and_algorithm"},
73     {ERR_FUNC(SSL_F_SSL3_CTRL), "ssl3_ctrl"},
74     {ERR_FUNC(SSL_F_SSL3_CTX_CTRL), "ssl3_ctx_ctrl"},
75     {ERR_FUNC(SSL_F_SSL3_DIGEST_CACHED_RECORDS),
76      "ssl3_digest_cached_records"},
77     {ERR_FUNC(SSL_F_SSL3_DO_CHANGE_CIPHER_SPEC),
78      "ssl3_do_change_cipher_spec"},
79     {ERR_FUNC(SSL_F_SSL3_FINAL_FINISH_MAC), "ssl3_final_finish_mac"},
80     {ERR_FUNC(SSL_F_SSL3_GENERATE_KEY_BLOCK), "ssl3_generate_key_block"},
81     {ERR_FUNC(SSL_F_SSL3_GENERATE_MASTER_SECRET),
82      "ssl3_generate_master_secret"},
83     {ERR_FUNC(SSL_F_SSL3_GET_RECORD), "ssl3_get_record"},
84     {ERR_FUNC(SSL_F_SSL3_INIT_FINISHED_MAC), "ssl3_init_finished_mac"},
85     {ERR_FUNC(SSL_F_SSL3_OUTPUT_CERT_CHAIN), "ssl3_output_cert_chain"},
86     {ERR_FUNC(SSL_F_SSL3_READ_BYTES), "ssl3_read_bytes"},
87     {ERR_FUNC(SSL_F_SSL3_READ_N), "ssl3_read_n"},
88     {ERR_FUNC(SSL_F_SSL3_SETUP_KEY_BLOCK), "ssl3_setup_key_block"},
89     {ERR_FUNC(SSL_F_SSL3_SETUP_READ_BUFFER), "ssl3_setup_read_buffer"},
90     {ERR_FUNC(SSL_F_SSL3_SETUP_WRITE_BUFFER), "ssl3_setup_write_buffer"},
91     {ERR_FUNC(SSL_F_SSL3_WRITE_BYTES), "ssl3_write_bytes"},
92     {ERR_FUNC(SSL_F_SSL3_WRITE_PENDING), "ssl3_write_pending"},
93     {ERR_FUNC(SSL_F_SSL_ADD_CERT_CHAIN), "ssl_add_cert_chain"},
94     {ERR_FUNC(SSL_F_SSL_ADD_CERT_TO_BUF), "ssl_add_cert_to_buf"},
95     {ERR_FUNC(SSL_F_SSL_ADD_CERT_TO_WPACKET), "ssl_add_cert_to_wpacket"},
96     {ERR_FUNC(SSL_F_SSL_ADD_CLIENTHELLO_RENEGOTIATE_EXT),
97      "ssl_add_clienthello_renegotiate_ext"},
98     {ERR_FUNC(SSL_F_SSL_ADD_CLIENTHELLO_TLSEXT),
99      "ssl_add_clienthello_tlsext"},
100     {ERR_FUNC(SSL_F_SSL_ADD_CLIENTHELLO_USE_SRTP_EXT),
101      "ssl_add_clienthello_use_srtp_ext"},
102     {ERR_FUNC(SSL_F_SSL_ADD_DIR_CERT_SUBJECTS_TO_STACK),
103      "SSL_add_dir_cert_subjects_to_stack"},
104     {ERR_FUNC(SSL_F_SSL_ADD_FILE_CERT_SUBJECTS_TO_STACK),
105      "SSL_add_file_cert_subjects_to_stack"},
106     {ERR_FUNC(SSL_F_SSL_ADD_SERVERHELLO_RENEGOTIATE_EXT),
107      "ssl_add_serverhello_renegotiate_ext"},
108     {ERR_FUNC(SSL_F_SSL_ADD_SERVERHELLO_TLSEXT),
109      "ssl_add_serverhello_tlsext"},
110     {ERR_FUNC(SSL_F_SSL_ADD_SERVERHELLO_USE_SRTP_EXT),
111      "ssl_add_serverhello_use_srtp_ext"},
112     {ERR_FUNC(SSL_F_SSL_BAD_METHOD), "ssl_bad_method"},
113     {ERR_FUNC(SSL_F_SSL_BUILD_CERT_CHAIN), "ssl_build_cert_chain"},
114     {ERR_FUNC(SSL_F_SSL_BYTES_TO_CIPHER_LIST), "ssl_bytes_to_cipher_list"},
115     {ERR_FUNC(SSL_F_SSL_CERT_ADD0_CHAIN_CERT), "ssl_cert_add0_chain_cert"},
116     {ERR_FUNC(SSL_F_SSL_CERT_DUP), "ssl_cert_dup"},
117     {ERR_FUNC(SSL_F_SSL_CERT_NEW), "ssl_cert_new"},
118     {ERR_FUNC(SSL_F_SSL_CERT_SET0_CHAIN), "ssl_cert_set0_chain"},
119     {ERR_FUNC(SSL_F_SSL_CHECK_PRIVATE_KEY), "SSL_check_private_key"},
120     {ERR_FUNC(SSL_F_SSL_CHECK_SERVERHELLO_TLSEXT),
121      "ssl_check_serverhello_tlsext"},
122     {ERR_FUNC(SSL_F_SSL_CHECK_SRVR_ECC_CERT_AND_ALG),
123      "ssl_check_srvr_ecc_cert_and_alg"},
124     {ERR_FUNC(SSL_F_SSL_CIPHER_LIST_TO_BYTES), "ssl_cipher_list_to_bytes"},
125     {ERR_FUNC(SSL_F_SSL_CIPHER_PROCESS_RULESTR),
126      "ssl_cipher_process_rulestr"},
127     {ERR_FUNC(SSL_F_SSL_CIPHER_STRENGTH_SORT), "ssl_cipher_strength_sort"},
128     {ERR_FUNC(SSL_F_SSL_CLEAR), "SSL_clear"},
129     {ERR_FUNC(SSL_F_SSL_COMP_ADD_COMPRESSION_METHOD),
130      "SSL_COMP_add_compression_method"},
131     {ERR_FUNC(SSL_F_SSL_CONF_CMD), "SSL_CONF_cmd"},
132     {ERR_FUNC(SSL_F_SSL_CREATE_CIPHER_LIST), "ssl_create_cipher_list"},
133     {ERR_FUNC(SSL_F_SSL_CTRL), "SSL_ctrl"},
134     {ERR_FUNC(SSL_F_SSL_CTX_CHECK_PRIVATE_KEY), "SSL_CTX_check_private_key"},
135     {ERR_FUNC(SSL_F_SSL_CTX_ENABLE_CT), "SSL_CTX_enable_ct"},
136     {ERR_FUNC(SSL_F_SSL_CTX_MAKE_PROFILES), "ssl_ctx_make_profiles"},
137     {ERR_FUNC(SSL_F_SSL_CTX_NEW), "SSL_CTX_new"},
138     {ERR_FUNC(SSL_F_SSL_CTX_SET_ALPN_PROTOS), "SSL_CTX_set_alpn_protos"},
139     {ERR_FUNC(SSL_F_SSL_CTX_SET_CIPHER_LIST), "SSL_CTX_set_cipher_list"},
140     {ERR_FUNC(SSL_F_SSL_CTX_SET_CLIENT_CERT_ENGINE),
141      "SSL_CTX_set_client_cert_engine"},
142     {ERR_FUNC(SSL_F_SSL_CTX_SET_CT_VALIDATION_CALLBACK),
143      "SSL_CTX_set_ct_validation_callback"},
144     {ERR_FUNC(SSL_F_SSL_CTX_SET_SESSION_ID_CONTEXT),
145      "SSL_CTX_set_session_id_context"},
146     {ERR_FUNC(SSL_F_SSL_CTX_SET_SSL_VERSION), "SSL_CTX_set_ssl_version"},
147     {ERR_FUNC(SSL_F_SSL_CTX_USE_CERTIFICATE), "SSL_CTX_use_certificate"},
148     {ERR_FUNC(SSL_F_SSL_CTX_USE_CERTIFICATE_ASN1),
149      "SSL_CTX_use_certificate_ASN1"},
150     {ERR_FUNC(SSL_F_SSL_CTX_USE_CERTIFICATE_FILE),
151      "SSL_CTX_use_certificate_file"},
152     {ERR_FUNC(SSL_F_SSL_CTX_USE_PRIVATEKEY), "SSL_CTX_use_PrivateKey"},
153     {ERR_FUNC(SSL_F_SSL_CTX_USE_PRIVATEKEY_ASN1),
154      "SSL_CTX_use_PrivateKey_ASN1"},
155     {ERR_FUNC(SSL_F_SSL_CTX_USE_PRIVATEKEY_FILE),
156      "SSL_CTX_use_PrivateKey_file"},
157     {ERR_FUNC(SSL_F_SSL_CTX_USE_PSK_IDENTITY_HINT),
158      "SSL_CTX_use_psk_identity_hint"},
159     {ERR_FUNC(SSL_F_SSL_CTX_USE_RSAPRIVATEKEY), "SSL_CTX_use_RSAPrivateKey"},
160     {ERR_FUNC(SSL_F_SSL_CTX_USE_RSAPRIVATEKEY_ASN1),
161      "SSL_CTX_use_RSAPrivateKey_ASN1"},
162     {ERR_FUNC(SSL_F_SSL_CTX_USE_RSAPRIVATEKEY_FILE),
163      "SSL_CTX_use_RSAPrivateKey_file"},
164     {ERR_FUNC(SSL_F_SSL_CTX_USE_SERVERINFO), "SSL_CTX_use_serverinfo"},
165     {ERR_FUNC(SSL_F_SSL_CTX_USE_SERVERINFO_FILE),
166      "SSL_CTX_use_serverinfo_file"},
167     {ERR_FUNC(SSL_F_SSL_DANE_DUP), "ssl_dane_dup"},
168     {ERR_FUNC(SSL_F_SSL_DANE_ENABLE), "SSL_dane_enable"},
169     {ERR_FUNC(SSL_F_SSL_DO_CONFIG), "ssl_do_config"},
170     {ERR_FUNC(SSL_F_SSL_DO_HANDSHAKE), "SSL_do_handshake"},
171     {ERR_FUNC(SSL_F_SSL_DUP_CA_LIST), "SSL_dup_CA_list"},
172     {ERR_FUNC(SSL_F_SSL_ENABLE_CT), "SSL_enable_ct"},
173     {ERR_FUNC(SSL_F_SSL_GET_NEW_SESSION), "ssl_get_new_session"},
174     {ERR_FUNC(SSL_F_SSL_GET_PREV_SESSION), "ssl_get_prev_session"},
175     {ERR_FUNC(SSL_F_SSL_GET_SERVER_CERT_INDEX), "ssl_get_server_cert_index"},
176     {ERR_FUNC(SSL_F_SSL_GET_SIGN_PKEY), "ssl_get_sign_pkey"},
177     {ERR_FUNC(SSL_F_SSL_INIT_WBIO_BUFFER), "ssl_init_wbio_buffer"},
178     {ERR_FUNC(SSL_F_SSL_LOAD_CLIENT_CA_FILE), "SSL_load_client_CA_file"},
179     {ERR_FUNC(SSL_F_SSL_MODULE_INIT), "ssl_module_init"},
180     {ERR_FUNC(SSL_F_SSL_NEW), "SSL_new"},
181     {ERR_FUNC(SSL_F_SSL_PARSE_CLIENTHELLO_RENEGOTIATE_EXT),
182      "ssl_parse_clienthello_renegotiate_ext"},
183     {ERR_FUNC(SSL_F_SSL_PARSE_CLIENTHELLO_TLSEXT),
184      "ssl_parse_clienthello_tlsext"},
185     {ERR_FUNC(SSL_F_SSL_PARSE_CLIENTHELLO_USE_SRTP_EXT),
186      "ssl_parse_clienthello_use_srtp_ext"},
187     {ERR_FUNC(SSL_F_SSL_PARSE_SERVERHELLO_RENEGOTIATE_EXT),
188      "ssl_parse_serverhello_renegotiate_ext"},
189     {ERR_FUNC(SSL_F_SSL_PARSE_SERVERHELLO_TLSEXT),
190      "ssl_parse_serverhello_tlsext"},
191     {ERR_FUNC(SSL_F_SSL_PARSE_SERVERHELLO_USE_SRTP_EXT),
192      "ssl_parse_serverhello_use_srtp_ext"},
193     {ERR_FUNC(SSL_F_SSL_PEEK), "SSL_peek"},
194     {ERR_FUNC(SSL_F_SSL_PEEK_EX), "SSL_peek_ex"},
195     {ERR_FUNC(SSL_F_SSL_READ), "SSL_read"},
196     {ERR_FUNC(SSL_F_SSL_READ_EX), "SSL_read_ex"},
197     {ERR_FUNC(SSL_F_SSL_SCAN_CLIENTHELLO_TLSEXT),
198      "ssl_scan_clienthello_tlsext"},
199     {ERR_FUNC(SSL_F_SSL_SCAN_SERVERHELLO_TLSEXT),
200      "ssl_scan_serverhello_tlsext"},
201     {ERR_FUNC(SSL_F_SSL_SESSION_DUP), "ssl_session_dup"},
202     {ERR_FUNC(SSL_F_SSL_SESSION_NEW), "SSL_SESSION_new"},
203     {ERR_FUNC(SSL_F_SSL_SESSION_PRINT_FP), "SSL_SESSION_print_fp"},
204     {ERR_FUNC(SSL_F_SSL_SESSION_SET1_ID), "SSL_SESSION_set1_id"},
205     {ERR_FUNC(SSL_F_SSL_SESSION_SET1_ID_CONTEXT),
206      "SSL_SESSION_set1_id_context"},
207     {ERR_FUNC(SSL_F_SSL_SET_ALPN_PROTOS), "SSL_set_alpn_protos"},
208     {ERR_FUNC(SSL_F_SSL_SET_CERT), "ssl_set_cert"},
209     {ERR_FUNC(SSL_F_SSL_SET_CIPHER_LIST), "SSL_set_cipher_list"},
210     {ERR_FUNC(SSL_F_SSL_SET_CT_VALIDATION_CALLBACK),
211      "SSL_set_ct_validation_callback"},
212     {ERR_FUNC(SSL_F_SSL_SET_FD), "SSL_set_fd"},
213     {ERR_FUNC(SSL_F_SSL_SET_PKEY), "ssl_set_pkey"},
214     {ERR_FUNC(SSL_F_SSL_SET_RFD), "SSL_set_rfd"},
215     {ERR_FUNC(SSL_F_SSL_SET_SESSION), "SSL_set_session"},
216     {ERR_FUNC(SSL_F_SSL_SET_SESSION_ID_CONTEXT),
217      "SSL_set_session_id_context"},
218     {ERR_FUNC(SSL_F_SSL_SET_SESSION_TICKET_EXT),
219      "SSL_set_session_ticket_ext"},
220     {ERR_FUNC(SSL_F_SSL_SET_WFD), "SSL_set_wfd"},
221     {ERR_FUNC(SSL_F_SSL_SHUTDOWN), "SSL_shutdown"},
222     {ERR_FUNC(SSL_F_SSL_SRP_CTX_INIT), "SSL_SRP_CTX_init"},
223     {ERR_FUNC(SSL_F_SSL_START_ASYNC_JOB), "ssl_start_async_job"},
224     {ERR_FUNC(SSL_F_SSL_UNDEFINED_FUNCTION), "ssl_undefined_function"},
225     {ERR_FUNC(SSL_F_SSL_UNDEFINED_VOID_FUNCTION),
226      "ssl_undefined_void_function"},
227     {ERR_FUNC(SSL_F_SSL_USE_CERTIFICATE), "SSL_use_certificate"},
228     {ERR_FUNC(SSL_F_SSL_USE_CERTIFICATE_ASN1), "SSL_use_certificate_ASN1"},
229     {ERR_FUNC(SSL_F_SSL_USE_CERTIFICATE_FILE), "SSL_use_certificate_file"},
230     {ERR_FUNC(SSL_F_SSL_USE_PRIVATEKEY), "SSL_use_PrivateKey"},
231     {ERR_FUNC(SSL_F_SSL_USE_PRIVATEKEY_ASN1), "SSL_use_PrivateKey_ASN1"},
232     {ERR_FUNC(SSL_F_SSL_USE_PRIVATEKEY_FILE), "SSL_use_PrivateKey_file"},
233     {ERR_FUNC(SSL_F_SSL_USE_PSK_IDENTITY_HINT), "SSL_use_psk_identity_hint"},
234     {ERR_FUNC(SSL_F_SSL_USE_RSAPRIVATEKEY), "SSL_use_RSAPrivateKey"},
235     {ERR_FUNC(SSL_F_SSL_USE_RSAPRIVATEKEY_ASN1),
236      "SSL_use_RSAPrivateKey_ASN1"},
237     {ERR_FUNC(SSL_F_SSL_USE_RSAPRIVATEKEY_FILE),
238      "SSL_use_RSAPrivateKey_file"},
239     {ERR_FUNC(SSL_F_SSL_VALIDATE_CT), "ssl_validate_ct"},
240     {ERR_FUNC(SSL_F_SSL_VERIFY_CERT_CHAIN), "ssl_verify_cert_chain"},
241     {ERR_FUNC(SSL_F_SSL_WRITE), "SSL_write"},
242     {ERR_FUNC(SSL_F_SSL_WRITE_EX), "SSL_write_ex"},
243     {ERR_FUNC(SSL_F_STATE_MACHINE), "state_machine"},
244     {ERR_FUNC(SSL_F_TLS12_CHECK_PEER_SIGALG), "tls12_check_peer_sigalg"},
245     {ERR_FUNC(SSL_F_TLS13_CHANGE_CIPHER_STATE), "tls13_change_cipher_state"},
246     {ERR_FUNC(SSL_F_TLS13_SETUP_KEY_BLOCK), "tls13_setup_key_block"},
247     {ERR_FUNC(SSL_F_TLS1_CHANGE_CIPHER_STATE), "tls1_change_cipher_state"},
248     {ERR_FUNC(SSL_F_TLS1_CHECK_DUPLICATE_EXTENSIONS),
249      "tls1_check_duplicate_extensions"},
250     {ERR_FUNC(SSL_F_TLS1_ENC), "tls1_enc"},
251     {ERR_FUNC(SSL_F_TLS1_EXPORT_KEYING_MATERIAL),
252      "tls1_export_keying_material"},
253     {ERR_FUNC(SSL_F_TLS1_GET_CURVELIST), "tls1_get_curvelist"},
254     {ERR_FUNC(SSL_F_TLS1_PRF), "tls1_PRF"},
255     {ERR_FUNC(SSL_F_TLS1_SETUP_KEY_BLOCK), "tls1_setup_key_block"},
256     {ERR_FUNC(SSL_F_TLS1_SET_SERVER_SIGALGS), "tls1_set_server_sigalgs"},
257     {ERR_FUNC(SSL_F_TLS_CLIENT_KEY_EXCHANGE_POST_WORK),
258      "tls_client_key_exchange_post_work"},
259     {ERR_FUNC(SSL_F_TLS_COLLECT_EXTENSIONS), "tls_collect_extensions"},
260     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CERTIFICATE_REQUEST),
261      "tls_construct_certificate_request"},
262     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CERT_STATUS), "tls_construct_cert_status"},
263     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CERT_STATUS_BODY),
264      "tls_construct_cert_status_body"},
265     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CHANGE_CIPHER_SPEC),
266      "tls_construct_change_cipher_spec"},
267     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CKE_DHE), "tls_construct_cke_dhe"},
268     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CKE_ECDHE), "tls_construct_cke_ecdhe"},
269     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CKE_GOST), "tls_construct_cke_gost"},
270     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CKE_PSK_PREAMBLE),
271      "tls_construct_cke_psk_preamble"},
272     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CKE_RSA), "tls_construct_cke_rsa"},
273     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CKE_SRP), "tls_construct_cke_srp"},
274     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CLIENT_CERTIFICATE),
275      "tls_construct_client_certificate"},
276     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CLIENT_HELLO),
277      "tls_construct_client_hello"},
278     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CLIENT_KEY_EXCHANGE),
279      "tls_construct_client_key_exchange"},
280     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CLIENT_VERIFY),
281      "tls_construct_client_verify"},
282     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_ALPN), "tls_construct_ctos_alpn"},
283     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_CERTIFICATE),
284      "TLS_CONSTRUCT_CTOS_CERTIFICATE"},
285     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_EC_PT_FORMATS),
286      "tls_construct_ctos_ec_pt_formats"},
287     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_EMS), "tls_construct_ctos_ems"},
288     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_ETM), "tls_construct_ctos_etm"},
289     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_HELLO), "TLS_CONSTRUCT_CTOS_HELLO"},
290     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_KEY_EXCHANGE),
291      "TLS_CONSTRUCT_CTOS_KEY_EXCHANGE"},
292     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_KEY_SHARE),
293      "tls_construct_ctos_key_share"},
294     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_NPN), "tls_construct_ctos_npn"},
295     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_PADDING),
296      "tls_construct_ctos_padding"},
297     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_RENEGOTIATE),
298      "tls_construct_ctos_renegotiate"},
299     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_SCT), "tls_construct_ctos_sct"},
300     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_SERVER_NAME),
301      "tls_construct_ctos_server_name"},
302     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_SESSION_TICKET),
303      "tls_construct_ctos_session_ticket"},
304     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_SIG_ALGS),
305      "tls_construct_ctos_sig_algs"},
306     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_SRP), "tls_construct_ctos_srp"},
307     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_STATUS_REQUEST),
308      "tls_construct_ctos_status_request"},
309     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_SUPPORTED_GROUPS),
310      "tls_construct_ctos_supported_groups"},
311     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_SUPPORTED_VERSIONS),
312      "tls_construct_ctos_supported_versions"},
313     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_USE_SRTP),
314      "tls_construct_ctos_use_srtp"},
315     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_CTOS_VERIFY), "TLS_CONSTRUCT_CTOS_VERIFY"},
316     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_ENCRYPTED_EXTENSIONS),
317      "tls_construct_encrypted_extensions"},
318     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_EXTENSIONS), "tls_construct_extensions"},
319     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_FINISHED), "tls_construct_finished"},
320     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_HELLO_REQUEST),
321      "tls_construct_hello_request"},
322     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_NEW_SESSION_TICKET),
323      "tls_construct_new_session_ticket"},
324     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_NEXT_PROTO), "tls_construct_next_proto"},
325     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_SERVER_CERTIFICATE),
326      "tls_construct_server_certificate"},
327     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_SERVER_HELLO),
328      "tls_construct_server_hello"},
329     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_SERVER_KEY_EXCHANGE),
330      "tls_construct_server_key_exchange"},
331     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_ALPN), "tls_construct_stoc_alpn"},
332     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_CERTIFICATE),
333      "TLS_CONSTRUCT_STOC_CERTIFICATE"},
334     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_CRYPTOPRO_BUG),
335      "tls_construct_stoc_cryptopro_bug"},
336     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_DONE), "TLS_CONSTRUCT_STOC_DONE"},
337     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_EC_PT_FORMATS),
338      "tls_construct_stoc_ec_pt_formats"},
339     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_EMS), "tls_construct_stoc_ems"},
340     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_ETM), "tls_construct_stoc_etm"},
341     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_HELLO), "TLS_CONSTRUCT_STOC_HELLO"},
342     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_KEY_EXCHANGE),
343      "TLS_CONSTRUCT_STOC_KEY_EXCHANGE"},
344     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_KEY_SHARE),
345      "tls_construct_stoc_key_share"},
346     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_NEXT_PROTO_NEG),
347      "tls_construct_stoc_next_proto_neg"},
348     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_RENEGOTIATE),
349      "tls_construct_stoc_renegotiate"},
350     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_SERVER_NAME),
351      "tls_construct_stoc_server_name"},
352     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_SESSION_TICKET),
353      "tls_construct_stoc_session_ticket"},
354     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_STATUS_REQUEST),
355      "tls_construct_stoc_status_request"},
356     {ERR_FUNC(SSL_F_TLS_CONSTRUCT_STOC_USE_SRTP),
357      "tls_construct_stoc_use_srtp"},
358     {ERR_FUNC(SSL_F_TLS_GET_MESSAGE_BODY), "tls_get_message_body"},
359     {ERR_FUNC(SSL_F_TLS_GET_MESSAGE_HEADER), "tls_get_message_header"},
360     {ERR_FUNC(SSL_F_TLS_PARSE_CLIENTHELLO_TLSEXT),
361      "tls_parse_clienthello_tlsext"},
362     {ERR_FUNC(SSL_F_TLS_PARSE_CTOS_KEY_SHARE), "tls_parse_ctos_key_share"},
363     {ERR_FUNC(SSL_F_TLS_PARSE_CTOS_RENEGOTIATE),
364      "tls_parse_ctos_renegotiate"},
365     {ERR_FUNC(SSL_F_TLS_PARSE_CTOS_USE_SRTP), "tls_parse_ctos_use_srtp"},
366     {ERR_FUNC(SSL_F_TLS_PARSE_STOC_KEY_SHARE), "tls_parse_stoc_key_share"},
367     {ERR_FUNC(SSL_F_TLS_PARSE_STOC_RENEGOTIATE),
368      "tls_parse_stoc_renegotiate"},
369     {ERR_FUNC(SSL_F_TLS_PARSE_STOC_USE_SRTP), "tls_parse_stoc_use_srtp"},
370     {ERR_FUNC(SSL_F_TLS_POST_PROCESS_CLIENT_HELLO),
371      "tls_post_process_client_hello"},
372     {ERR_FUNC(SSL_F_TLS_POST_PROCESS_CLIENT_KEY_EXCHANGE),
373      "tls_post_process_client_key_exchange"},
374     {ERR_FUNC(SSL_F_TLS_PREPARE_CLIENT_CERTIFICATE),
375      "tls_prepare_client_certificate"},
376     {ERR_FUNC(SSL_F_TLS_PROCESS_CERTIFICATE_REQUEST),
377      "tls_process_certificate_request"},
378     {ERR_FUNC(SSL_F_TLS_PROCESS_CERT_STATUS), "tls_process_cert_status"},
379     {ERR_FUNC(SSL_F_TLS_PROCESS_CERT_STATUS_BODY),
380      "tls_process_cert_status_body"},
381     {ERR_FUNC(SSL_F_TLS_PROCESS_CERT_VERIFY), "tls_process_cert_verify"},
382     {ERR_FUNC(SSL_F_TLS_PROCESS_CHANGE_CIPHER_SPEC),
383      "tls_process_change_cipher_spec"},
384     {ERR_FUNC(SSL_F_TLS_PROCESS_CKE_DHE), "tls_process_cke_dhe"},
385     {ERR_FUNC(SSL_F_TLS_PROCESS_CKE_ECDHE), "tls_process_cke_ecdhe"},
386     {ERR_FUNC(SSL_F_TLS_PROCESS_CKE_GOST), "tls_process_cke_gost"},
387     {ERR_FUNC(SSL_F_TLS_PROCESS_CKE_PSK_PREAMBLE),
388      "tls_process_cke_psk_preamble"},
389     {ERR_FUNC(SSL_F_TLS_PROCESS_CKE_RSA), "tls_process_cke_rsa"},
390     {ERR_FUNC(SSL_F_TLS_PROCESS_CKE_SRP), "tls_process_cke_srp"},
391     {ERR_FUNC(SSL_F_TLS_PROCESS_CLIENT_CERTIFICATE),
392      "tls_process_client_certificate"},
393     {ERR_FUNC(SSL_F_TLS_PROCESS_CLIENT_HELLO), "tls_process_client_hello"},
394     {ERR_FUNC(SSL_F_TLS_PROCESS_CLIENT_KEY_EXCHANGE),
395      "tls_process_client_key_exchange"},
396     {ERR_FUNC(SSL_F_TLS_PROCESS_ENCRYPTED_EXTENSIONS),
397      "tls_process_encrypted_extensions"},
398     {ERR_FUNC(SSL_F_TLS_PROCESS_FINISHED), "tls_process_finished"},
399     {ERR_FUNC(SSL_F_TLS_PROCESS_INITIAL_SERVER_FLIGHT),
400      "tls_process_initial_server_flight"},
401     {ERR_FUNC(SSL_F_TLS_PROCESS_KEY_EXCHANGE), "tls_process_key_exchange"},
402     {ERR_FUNC(SSL_F_TLS_PROCESS_NEW_SESSION_TICKET),
403      "tls_process_new_session_ticket"},
404     {ERR_FUNC(SSL_F_TLS_PROCESS_NEXT_PROTO), "tls_process_next_proto"},
405     {ERR_FUNC(SSL_F_TLS_PROCESS_SERVER_CERTIFICATE),
406      "tls_process_server_certificate"},
407     {ERR_FUNC(SSL_F_TLS_PROCESS_SERVER_DONE), "tls_process_server_done"},
408     {ERR_FUNC(SSL_F_TLS_PROCESS_SERVER_HELLO), "tls_process_server_hello"},
409     {ERR_FUNC(SSL_F_TLS_PROCESS_SKE_DHE), "tls_process_ske_dhe"},
410     {ERR_FUNC(SSL_F_TLS_PROCESS_SKE_ECDHE), "tls_process_ske_ecdhe"},
411     {ERR_FUNC(SSL_F_TLS_PROCESS_SKE_PSK_PREAMBLE),
412      "tls_process_ske_psk_preamble"},
413     {ERR_FUNC(SSL_F_TLS_PROCESS_SKE_SRP), "tls_process_ske_srp"},
414     {ERR_FUNC(SSL_F_TLS_SCAN_CLIENTHELLO_TLSEXT),
415      "tls_scan_clienthello_tlsext"},
416     {ERR_FUNC(SSL_F_USE_CERTIFICATE_CHAIN_FILE),
417      "use_certificate_chain_file"},
418     {0, NULL}
419 };
420
421 static ERR_STRING_DATA SSL_str_reasons[] = {
422     {ERR_REASON(SSL_R_APP_DATA_IN_HANDSHAKE), "app data in handshake"},
423     {ERR_REASON(SSL_R_ATTEMPT_TO_REUSE_SESSION_IN_DIFFERENT_CONTEXT),
424      "attempt to reuse session in different context"},
425     {ERR_REASON(SSL_R_AT_LEAST_TLS_1_0_NEEDED_IN_FIPS_MODE),
426      "at least TLS 1.0 needed in FIPS mode"},
427     {ERR_REASON(SSL_R_AT_LEAST_TLS_1_2_NEEDED_IN_SUITEB_MODE),
428      "at least (D)TLS 1.2 needed in Suite B mode"},
429     {ERR_REASON(SSL_R_BAD_CHANGE_CIPHER_SPEC), "bad change cipher spec"},
430     {ERR_REASON(SSL_R_BAD_DATA), "bad data"},
431     {ERR_REASON(SSL_R_BAD_DATA_RETURNED_BY_CALLBACK),
432      "bad data returned by callback"},
433     {ERR_REASON(SSL_R_BAD_DECOMPRESSION), "bad decompression"},
434     {ERR_REASON(SSL_R_BAD_DH_VALUE), "bad dh value"},
435     {ERR_REASON(SSL_R_BAD_DIGEST_LENGTH), "bad digest length"},
436     {ERR_REASON(SSL_R_BAD_ECC_CERT), "bad ecc cert"},
437     {ERR_REASON(SSL_R_BAD_ECPOINT), "bad ecpoint"},
438     {ERR_REASON(SSL_R_BAD_EXTENSION), "bad extension"},
439     {ERR_REASON(SSL_R_BAD_HANDSHAKE_LENGTH), "bad handshake length"},
440     {ERR_REASON(SSL_R_BAD_HELLO_REQUEST), "bad hello request"},
441     {ERR_REASON(SSL_R_BAD_KEY_SHARE), "bad key share"},
442     {ERR_REASON(SSL_R_BAD_LENGTH), "bad length"},
443     {ERR_REASON(SSL_R_BAD_PACKET_LENGTH), "bad packet length"},
444     {ERR_REASON(SSL_R_BAD_PROTOCOL_VERSION_NUMBER),
445      "bad protocol version number"},
446     {ERR_REASON(SSL_R_BAD_RECORD_TYPE), "bad record type"},
447     {ERR_REASON(SSL_R_BAD_RSA_ENCRYPT), "bad rsa encrypt"},
448     {ERR_REASON(SSL_R_BAD_SIGNATURE), "bad signature"},
449     {ERR_REASON(SSL_R_BAD_SRP_A_LENGTH), "bad srp a length"},
450     {ERR_REASON(SSL_R_BAD_SRP_PARAMETERS), "bad srp parameters"},
451     {ERR_REASON(SSL_R_BAD_SRTP_MKI_VALUE), "bad srtp mki value"},
452     {ERR_REASON(SSL_R_BAD_SRTP_PROTECTION_PROFILE_LIST),
453      "bad srtp protection profile list"},
454     {ERR_REASON(SSL_R_BAD_SSL_FILETYPE), "bad ssl filetype"},
455     {ERR_REASON(SSL_R_BAD_VALUE), "bad value"},
456     {ERR_REASON(SSL_R_BAD_WRITE_RETRY), "bad write retry"},
457     {ERR_REASON(SSL_R_BIO_NOT_SET), "bio not set"},
458     {ERR_REASON(SSL_R_BLOCK_CIPHER_PAD_IS_WRONG),
459      "block cipher pad is wrong"},
460     {ERR_REASON(SSL_R_BN_LIB), "bn lib"},
461     {ERR_REASON(SSL_R_CANNOT_CHANGE_CIPHER), "cannot change cipher"},
462     {ERR_REASON(SSL_R_CA_DN_LENGTH_MISMATCH), "ca dn length mismatch"},
463     {ERR_REASON(SSL_R_CA_KEY_TOO_SMALL), "ca key too small"},
464     {ERR_REASON(SSL_R_CA_MD_TOO_WEAK), "ca md too weak"},
465     {ERR_REASON(SSL_R_CCS_RECEIVED_EARLY), "ccs received early"},
466     {ERR_REASON(SSL_R_CERTIFICATE_VERIFY_FAILED),
467      "certificate verify failed"},
468     {ERR_REASON(SSL_R_CERT_CB_ERROR), "cert cb error"},
469     {ERR_REASON(SSL_R_CERT_LENGTH_MISMATCH), "cert length mismatch"},
470     {ERR_REASON(SSL_R_CIPHER_CODE_WRONG_LENGTH), "cipher code wrong length"},
471     {ERR_REASON(SSL_R_CIPHER_OR_HASH_UNAVAILABLE),
472      "cipher or hash unavailable"},
473     {ERR_REASON(SSL_R_CLIENTHELLO_TLSEXT), "clienthello tlsext"},
474     {ERR_REASON(SSL_R_COMPRESSED_LENGTH_TOO_LONG),
475      "compressed length too long"},
476     {ERR_REASON(SSL_R_COMPRESSION_DISABLED), "compression disabled"},
477     {ERR_REASON(SSL_R_COMPRESSION_FAILURE), "compression failure"},
478     {ERR_REASON(SSL_R_COMPRESSION_ID_NOT_WITHIN_PRIVATE_RANGE),
479      "compression id not within private range"},
480     {ERR_REASON(SSL_R_COMPRESSION_LIBRARY_ERROR),
481      "compression library error"},
482     {ERR_REASON(SSL_R_CONNECTION_TYPE_NOT_SET), "connection type not set"},
483     {ERR_REASON(SSL_R_CONTEXT_NOT_DANE_ENABLED), "context not dane enabled"},
484     {ERR_REASON(SSL_R_COOKIE_GEN_CALLBACK_FAILURE),
485      "cookie gen callback failure"},
486     {ERR_REASON(SSL_R_COOKIE_MISMATCH), "cookie mismatch"},
487     {ERR_REASON(SSL_R_CUSTOM_EXT_HANDLER_ALREADY_INSTALLED),
488      "custom ext handler already installed"},
489     {ERR_REASON(SSL_R_DANE_ALREADY_ENABLED), "dane already enabled"},
490     {ERR_REASON(SSL_R_DANE_CANNOT_OVERRIDE_MTYPE_FULL),
491      "dane cannot override mtype full"},
492     {ERR_REASON(SSL_R_DANE_NOT_ENABLED), "dane not enabled"},
493     {ERR_REASON(SSL_R_DANE_TLSA_BAD_CERTIFICATE),
494      "dane tlsa bad certificate"},
495     {ERR_REASON(SSL_R_DANE_TLSA_BAD_CERTIFICATE_USAGE),
496      "dane tlsa bad certificate usage"},
497     {ERR_REASON(SSL_R_DANE_TLSA_BAD_DATA_LENGTH),
498      "dane tlsa bad data length"},
499     {ERR_REASON(SSL_R_DANE_TLSA_BAD_DIGEST_LENGTH),
500      "dane tlsa bad digest length"},
501     {ERR_REASON(SSL_R_DANE_TLSA_BAD_MATCHING_TYPE),
502      "dane tlsa bad matching type"},
503     {ERR_REASON(SSL_R_DANE_TLSA_BAD_PUBLIC_KEY), "dane tlsa bad public key"},
504     {ERR_REASON(SSL_R_DANE_TLSA_BAD_SELECTOR), "dane tlsa bad selector"},
505     {ERR_REASON(SSL_R_DANE_TLSA_NULL_DATA), "dane tlsa null data"},
506     {ERR_REASON(SSL_R_DATA_BETWEEN_CCS_AND_FINISHED),
507      "data between ccs and finished"},
508     {ERR_REASON(SSL_R_DATA_LENGTH_TOO_LONG), "data length too long"},
509     {ERR_REASON(SSL_R_DECRYPTION_FAILED), "decryption failed"},
510     {ERR_REASON(SSL_R_DECRYPTION_FAILED_OR_BAD_RECORD_MAC),
511      "decryption failed or bad record mac"},
512     {ERR_REASON(SSL_R_DH_KEY_TOO_SMALL), "dh key too small"},
513     {ERR_REASON(SSL_R_DH_PUBLIC_VALUE_LENGTH_IS_WRONG),
514      "dh public value length is wrong"},
515     {ERR_REASON(SSL_R_DIGEST_CHECK_FAILED), "digest check failed"},
516     {ERR_REASON(SSL_R_DTLS_MESSAGE_TOO_BIG), "dtls message too big"},
517     {ERR_REASON(SSL_R_DUPLICATE_COMPRESSION_ID), "duplicate compression id"},
518     {ERR_REASON(SSL_R_ECC_CERT_NOT_FOR_SIGNING), "ecc cert not for signing"},
519     {ERR_REASON(SSL_R_ECDH_REQUIRED_FOR_SUITEB_MODE),
520      "ecdh required for suiteb mode"},
521     {ERR_REASON(SSL_R_EE_KEY_TOO_SMALL), "ee key too small"},
522     {ERR_REASON(SSL_R_EMPTY_SRTP_PROTECTION_PROFILE_LIST),
523      "empty srtp protection profile list"},
524     {ERR_REASON(SSL_R_ENCRYPTED_LENGTH_TOO_LONG),
525      "encrypted length too long"},
526     {ERR_REASON(SSL_R_ERROR_IN_RECEIVED_CIPHER_LIST),
527      "error in received cipher list"},
528     {ERR_REASON(SSL_R_ERROR_SETTING_TLSA_BASE_DOMAIN),
529      "error setting tlsa base domain"},
530     {ERR_REASON(SSL_R_EXCESSIVE_MESSAGE_SIZE), "excessive message size"},
531     {ERR_REASON(SSL_R_EXTRA_DATA_IN_MESSAGE), "extra data in message"},
532     {ERR_REASON(SSL_R_FAILED_TO_INIT_ASYNC), "failed to init async"},
533     {ERR_REASON(SSL_R_FRAGMENTED_CLIENT_HELLO), "fragmented client hello"},
534     {ERR_REASON(SSL_R_GOT_A_FIN_BEFORE_A_CCS), "got a fin before a ccs"},
535     {ERR_REASON(SSL_R_HTTPS_PROXY_REQUEST), "https proxy request"},
536     {ERR_REASON(SSL_R_HTTP_REQUEST), "http request"},
537     {ERR_REASON(SSL_R_ILLEGAL_SUITEB_DIGEST), "illegal Suite B digest"},
538     {ERR_REASON(SSL_R_INAPPROPRIATE_FALLBACK), "inappropriate fallback"},
539     {ERR_REASON(SSL_R_INCONSISTENT_COMPRESSION), "inconsistent compression"},
540     {ERR_REASON(SSL_R_INCONSISTENT_EXTMS), "inconsistent extms"},
541     {ERR_REASON(SSL_R_INVALID_COMMAND), "invalid command"},
542     {ERR_REASON(SSL_R_INVALID_COMPRESSION_ALGORITHM),
543      "invalid compression algorithm"},
544     {ERR_REASON(SSL_R_INVALID_CONFIGURATION_NAME),
545      "invalid configuration name"},
546     {ERR_REASON(SSL_R_INVALID_CT_VALIDATION_TYPE),
547      "invalid ct validation type"},
548     {ERR_REASON(SSL_R_INVALID_NULL_CMD_NAME), "invalid null cmd name"},
549     {ERR_REASON(SSL_R_INVALID_SEQUENCE_NUMBER), "invalid sequence number"},
550     {ERR_REASON(SSL_R_INVALID_SERVERINFO_DATA), "invalid serverinfo data"},
551     {ERR_REASON(SSL_R_INVALID_SRP_USERNAME), "invalid srp username"},
552     {ERR_REASON(SSL_R_INVALID_STATUS_RESPONSE), "invalid status response"},
553     {ERR_REASON(SSL_R_INVALID_TICKET_KEYS_LENGTH),
554      "invalid ticket keys length"},
555     {ERR_REASON(SSL_R_LENGTH_MISMATCH), "length mismatch"},
556     {ERR_REASON(SSL_R_LENGTH_TOO_LONG), "length too long"},
557     {ERR_REASON(SSL_R_LENGTH_TOO_SHORT), "length too short"},
558     {ERR_REASON(SSL_R_LIBRARY_BUG), "library bug"},
559     {ERR_REASON(SSL_R_LIBRARY_HAS_NO_CIPHERS), "library has no ciphers"},
560     {ERR_REASON(SSL_R_MISSING_DSA_SIGNING_CERT), "missing dsa signing cert"},
561     {ERR_REASON(SSL_R_MISSING_ECDSA_SIGNING_CERT),
562      "missing ecdsa signing cert"},
563     {ERR_REASON(SSL_R_MISSING_RSA_CERTIFICATE), "missing rsa certificate"},
564     {ERR_REASON(SSL_R_MISSING_RSA_ENCRYPTING_CERT),
565      "missing rsa encrypting cert"},
566     {ERR_REASON(SSL_R_MISSING_RSA_SIGNING_CERT), "missing rsa signing cert"},
567     {ERR_REASON(SSL_R_MISSING_SRP_PARAM), "can't find SRP server param"},
568     {ERR_REASON(SSL_R_MISSING_TMP_DH_KEY), "missing tmp dh key"},
569     {ERR_REASON(SSL_R_MISSING_TMP_ECDH_KEY), "missing tmp ecdh key"},
570     {ERR_REASON(SSL_R_NO_CERTIFICATES_RETURNED), "no certificates returned"},
571     {ERR_REASON(SSL_R_NO_CERTIFICATE_ASSIGNED), "no certificate assigned"},
572     {ERR_REASON(SSL_R_NO_CERTIFICATE_SET), "no certificate set"},
573     {ERR_REASON(SSL_R_NO_CIPHERS_AVAILABLE), "no ciphers available"},
574     {ERR_REASON(SSL_R_NO_CIPHERS_SPECIFIED), "no ciphers specified"},
575     {ERR_REASON(SSL_R_NO_CIPHER_MATCH), "no cipher match"},
576     {ERR_REASON(SSL_R_NO_CLIENT_CERT_METHOD), "no client cert method"},
577     {ERR_REASON(SSL_R_NO_COMPRESSION_SPECIFIED), "no compression specified"},
578     {ERR_REASON(SSL_R_NO_GOST_CERTIFICATE_SENT_BY_PEER),
579      "Peer haven't sent GOST certificate, required for selected ciphersuite"},
580     {ERR_REASON(SSL_R_NO_METHOD_SPECIFIED), "no method specified"},
581     {ERR_REASON(SSL_R_NO_PEM_EXTENSIONS), "no pem extensions"},
582     {ERR_REASON(SSL_R_NO_PRIVATE_KEY_ASSIGNED), "no private key assigned"},
583     {ERR_REASON(SSL_R_NO_PROTOCOLS_AVAILABLE), "no protocols available"},
584     {ERR_REASON(SSL_R_NO_RENEGOTIATION), "no renegotiation"},
585     {ERR_REASON(SSL_R_NO_REQUIRED_DIGEST), "no required digest"},
586     {ERR_REASON(SSL_R_NO_SHARED_CIPHER), "no shared cipher"},
587     {ERR_REASON(SSL_R_NO_SHARED_SIGNATURE_ALGORITHMS),
588      "no shared signature algorithms"},
589     {ERR_REASON(SSL_R_NO_SRTP_PROFILES), "no srtp profiles"},
590     {ERR_REASON(SSL_R_NO_SUITABLE_KEY_SHARE), "no suitable key share"},
591     {ERR_REASON(SSL_R_NO_VALID_SCTS), "no valid scts"},
592     {ERR_REASON(SSL_R_NO_VERIFY_COOKIE_CALLBACK),
593      "no verify cookie callback"},
594     {ERR_REASON(SSL_R_NULL_SSL_CTX), "null ssl ctx"},
595     {ERR_REASON(SSL_R_NULL_SSL_METHOD_PASSED), "null ssl method passed"},
596     {ERR_REASON(SSL_R_OLD_SESSION_CIPHER_NOT_RETURNED),
597      "old session cipher not returned"},
598     {ERR_REASON(SSL_R_OLD_SESSION_COMPRESSION_ALGORITHM_NOT_RETURNED),
599      "old session compression algorithm not returned"},
600     {ERR_REASON(SSL_R_PACKET_LENGTH_TOO_LONG), "packet length too long"},
601     {ERR_REASON(SSL_R_PARSE_TLSEXT), "parse tlsext"},
602     {ERR_REASON(SSL_R_PATH_TOO_LONG), "path too long"},
603     {ERR_REASON(SSL_R_PEER_DID_NOT_RETURN_A_CERTIFICATE),
604      "peer did not return a certificate"},
605     {ERR_REASON(SSL_R_PEM_NAME_BAD_PREFIX), "pem name bad prefix"},
606     {ERR_REASON(SSL_R_PEM_NAME_TOO_SHORT), "pem name too short"},
607     {ERR_REASON(SSL_R_PIPELINE_FAILURE), "pipeline failure"},
608     {ERR_REASON(SSL_R_PROTOCOL_IS_SHUTDOWN), "protocol is shutdown"},
609     {ERR_REASON(SSL_R_PSK_IDENTITY_NOT_FOUND), "psk identity not found"},
610     {ERR_REASON(SSL_R_PSK_NO_CLIENT_CB), "psk no client cb"},
611     {ERR_REASON(SSL_R_PSK_NO_SERVER_CB), "psk no server cb"},
612     {ERR_REASON(SSL_R_READ_BIO_NOT_SET), "read bio not set"},
613     {ERR_REASON(SSL_R_READ_TIMEOUT_EXPIRED), "read timeout expired"},
614     {ERR_REASON(SSL_R_RECORD_LENGTH_MISMATCH), "record length mismatch"},
615     {ERR_REASON(SSL_R_RECORD_TOO_SMALL), "record too small"},
616     {ERR_REASON(SSL_R_RENEGOTIATE_EXT_TOO_LONG), "renegotiate ext too long"},
617     {ERR_REASON(SSL_R_RENEGOTIATION_ENCODING_ERR),
618      "renegotiation encoding err"},
619     {ERR_REASON(SSL_R_RENEGOTIATION_MISMATCH), "renegotiation mismatch"},
620     {ERR_REASON(SSL_R_REQUIRED_CIPHER_MISSING), "required cipher missing"},
621     {ERR_REASON(SSL_R_REQUIRED_COMPRESSION_ALGORITHM_MISSING),
622      "required compression algorithm missing"},
623     {ERR_REASON(SSL_R_SCSV_RECEIVED_WHEN_RENEGOTIATING),
624      "scsv received when renegotiating"},
625     {ERR_REASON(SSL_R_SCT_VERIFICATION_FAILED), "sct verification failed"},
626     {ERR_REASON(SSL_R_SERVERHELLO_TLSEXT), "serverhello tlsext"},
627     {ERR_REASON(SSL_R_SESSION_ID_CONTEXT_UNINITIALIZED),
628      "session id context uninitialized"},
629     {ERR_REASON(SSL_R_SHUTDOWN_WHILE_IN_INIT), "shutdown while in init"},
630     {ERR_REASON(SSL_R_SIGNATURE_ALGORITHMS_ERROR),
631      "signature algorithms error"},
632     {ERR_REASON(SSL_R_SIGNATURE_FOR_NON_SIGNING_CERTIFICATE),
633      "signature for non signing certificate"},
634     {ERR_REASON(SSL_R_SRP_A_CALC), "error with the srp params"},
635     {ERR_REASON(SSL_R_SRTP_COULD_NOT_ALLOCATE_PROFILES),
636      "srtp could not allocate profiles"},
637     {ERR_REASON(SSL_R_SRTP_PROTECTION_PROFILE_LIST_TOO_LONG),
638      "srtp protection profile list too long"},
639     {ERR_REASON(SSL_R_SRTP_UNKNOWN_PROTECTION_PROFILE),
640      "srtp unknown protection profile"},
641     {ERR_REASON(SSL_R_SSL3_EXT_INVALID_SERVERNAME),
642      "ssl3 ext invalid servername"},
643     {ERR_REASON(SSL_R_SSL3_EXT_INVALID_SERVERNAME_TYPE),
644      "ssl3 ext invalid servername type"},
645     {ERR_REASON(SSL_R_SSL3_SESSION_ID_TOO_LONG), "ssl3 session id too long"},
646     {ERR_REASON(SSL_R_SSLV3_ALERT_BAD_CERTIFICATE),
647      "sslv3 alert bad certificate"},
648     {ERR_REASON(SSL_R_SSLV3_ALERT_BAD_RECORD_MAC),
649      "sslv3 alert bad record mac"},
650     {ERR_REASON(SSL_R_SSLV3_ALERT_CERTIFICATE_EXPIRED),
651      "sslv3 alert certificate expired"},
652     {ERR_REASON(SSL_R_SSLV3_ALERT_CERTIFICATE_REVOKED),
653      "sslv3 alert certificate revoked"},
654     {ERR_REASON(SSL_R_SSLV3_ALERT_CERTIFICATE_UNKNOWN),
655      "sslv3 alert certificate unknown"},
656     {ERR_REASON(SSL_R_SSLV3_ALERT_DECOMPRESSION_FAILURE),
657      "sslv3 alert decompression failure"},
658     {ERR_REASON(SSL_R_SSLV3_ALERT_HANDSHAKE_FAILURE),
659      "sslv3 alert handshake failure"},
660     {ERR_REASON(SSL_R_SSLV3_ALERT_ILLEGAL_PARAMETER),
661      "sslv3 alert illegal parameter"},
662     {ERR_REASON(SSL_R_SSLV3_ALERT_NO_CERTIFICATE),
663      "sslv3 alert no certificate"},
664     {ERR_REASON(SSL_R_SSLV3_ALERT_UNEXPECTED_MESSAGE),
665      "sslv3 alert unexpected message"},
666     {ERR_REASON(SSL_R_SSLV3_ALERT_UNSUPPORTED_CERTIFICATE),
667      "sslv3 alert unsupported certificate"},
668     {ERR_REASON(SSL_R_SSL_COMMAND_SECTION_EMPTY),
669      "ssl command section empty"},
670     {ERR_REASON(SSL_R_SSL_COMMAND_SECTION_NOT_FOUND),
671      "ssl command section not found"},
672     {ERR_REASON(SSL_R_SSL_CTX_HAS_NO_DEFAULT_SSL_VERSION),
673      "ssl ctx has no default ssl version"},
674     {ERR_REASON(SSL_R_SSL_HANDSHAKE_FAILURE), "ssl handshake failure"},
675     {ERR_REASON(SSL_R_SSL_LIBRARY_HAS_NO_CIPHERS),
676      "ssl library has no ciphers"},
677     {ERR_REASON(SSL_R_SSL_NEGATIVE_LENGTH), "ssl negative length"},
678     {ERR_REASON(SSL_R_SSL_SECTION_EMPTY), "ssl section empty"},
679     {ERR_REASON(SSL_R_SSL_SECTION_NOT_FOUND), "ssl section not found"},
680     {ERR_REASON(SSL_R_SSL_SESSION_ID_CALLBACK_FAILED),
681      "ssl session id callback failed"},
682     {ERR_REASON(SSL_R_SSL_SESSION_ID_CONFLICT), "ssl session id conflict"},
683     {ERR_REASON(SSL_R_SSL_SESSION_ID_CONTEXT_TOO_LONG),
684      "ssl session id context too long"},
685     {ERR_REASON(SSL_R_SSL_SESSION_ID_HAS_BAD_LENGTH),
686      "ssl session id has bad length"},
687     {ERR_REASON(SSL_R_SSL_SESSION_ID_TOO_LONG), "ssl session id too long"},
688     {ERR_REASON(SSL_R_SSL_SESSION_VERSION_MISMATCH),
689      "ssl session version mismatch"},
690     {ERR_REASON(SSL_R_TLSV1_ALERT_ACCESS_DENIED),
691      "tlsv1 alert access denied"},
692     {ERR_REASON(SSL_R_TLSV1_ALERT_DECODE_ERROR), "tlsv1 alert decode error"},
693     {ERR_REASON(SSL_R_TLSV1_ALERT_DECRYPTION_FAILED),
694      "tlsv1 alert decryption failed"},
695     {ERR_REASON(SSL_R_TLSV1_ALERT_DECRYPT_ERROR),
696      "tlsv1 alert decrypt error"},
697     {ERR_REASON(SSL_R_TLSV1_ALERT_EXPORT_RESTRICTION),
698      "tlsv1 alert export restriction"},
699     {ERR_REASON(SSL_R_TLSV1_ALERT_INAPPROPRIATE_FALLBACK),
700      "tlsv1 alert inappropriate fallback"},
701     {ERR_REASON(SSL_R_TLSV1_ALERT_INSUFFICIENT_SECURITY),
702      "tlsv1 alert insufficient security"},
703     {ERR_REASON(SSL_R_TLSV1_ALERT_INTERNAL_ERROR),
704      "tlsv1 alert internal error"},
705     {ERR_REASON(SSL_R_TLSV1_ALERT_NO_RENEGOTIATION),
706      "tlsv1 alert no renegotiation"},
707     {ERR_REASON(SSL_R_TLSV1_ALERT_PROTOCOL_VERSION),
708      "tlsv1 alert protocol version"},
709     {ERR_REASON(SSL_R_TLSV1_ALERT_RECORD_OVERFLOW),
710      "tlsv1 alert record overflow"},
711     {ERR_REASON(SSL_R_TLSV1_ALERT_UNKNOWN_CA), "tlsv1 alert unknown ca"},
712     {ERR_REASON(SSL_R_TLSV1_ALERT_USER_CANCELLED),
713      "tlsv1 alert user cancelled"},
714     {ERR_REASON(SSL_R_TLSV1_BAD_CERTIFICATE_HASH_VALUE),
715      "tlsv1 bad certificate hash value"},
716     {ERR_REASON(SSL_R_TLSV1_BAD_CERTIFICATE_STATUS_RESPONSE),
717      "tlsv1 bad certificate status response"},
718     {ERR_REASON(SSL_R_TLSV1_CERTIFICATE_UNOBTAINABLE),
719      "tlsv1 certificate unobtainable"},
720     {ERR_REASON(SSL_R_TLSV1_UNRECOGNIZED_NAME), "tlsv1 unrecognized name"},
721     {ERR_REASON(SSL_R_TLSV1_UNSUPPORTED_EXTENSION),
722      "tlsv1 unsupported extension"},
723     {ERR_REASON(SSL_R_TLS_HEARTBEAT_PEER_DOESNT_ACCEPT),
724      "peer does not accept heartbeats"},
725     {ERR_REASON(SSL_R_TLS_HEARTBEAT_PENDING),
726      "heartbeat request already pending"},
727     {ERR_REASON(SSL_R_TLS_ILLEGAL_EXPORTER_LABEL),
728      "tls illegal exporter label"},
729     {ERR_REASON(SSL_R_TLS_INVALID_ECPOINTFORMAT_LIST),
730      "tls invalid ecpointformat list"},
731     {ERR_REASON(SSL_R_TOO_MANY_WARN_ALERTS), "too many warn alerts"},
732     {ERR_REASON(SSL_R_UNABLE_TO_FIND_ECDH_PARAMETERS),
733      "unable to find ecdh parameters"},
734     {ERR_REASON(SSL_R_UNABLE_TO_FIND_PUBLIC_KEY_PARAMETERS),
735      "unable to find public key parameters"},
736     {ERR_REASON(SSL_R_UNABLE_TO_LOAD_SSL3_MD5_ROUTINES),
737      "unable to load ssl3 md5 routines"},
738     {ERR_REASON(SSL_R_UNABLE_TO_LOAD_SSL3_SHA1_ROUTINES),
739      "unable to load ssl3 sha1 routines"},
740     {ERR_REASON(SSL_R_UNEXPECTED_MESSAGE), "unexpected message"},
741     {ERR_REASON(SSL_R_UNEXPECTED_RECORD), "unexpected record"},
742     {ERR_REASON(SSL_R_UNINITIALIZED), "uninitialized"},
743     {ERR_REASON(SSL_R_UNKNOWN_ALERT_TYPE), "unknown alert type"},
744     {ERR_REASON(SSL_R_UNKNOWN_CERTIFICATE_TYPE), "unknown certificate type"},
745     {ERR_REASON(SSL_R_UNKNOWN_CIPHER_RETURNED), "unknown cipher returned"},
746     {ERR_REASON(SSL_R_UNKNOWN_CIPHER_TYPE), "unknown cipher type"},
747     {ERR_REASON(SSL_R_UNKNOWN_CMD_NAME), "unknown cmd name"},
748     {ERR_REASON(SSL_R_UNKNOWN_COMMAND), "unknown command"},
749     {ERR_REASON(SSL_R_UNKNOWN_DIGEST), "unknown digest"},
750     {ERR_REASON(SSL_R_UNKNOWN_KEY_EXCHANGE_TYPE),
751      "unknown key exchange type"},
752     {ERR_REASON(SSL_R_UNKNOWN_PKEY_TYPE), "unknown pkey type"},
753     {ERR_REASON(SSL_R_UNKNOWN_PROTOCOL), "unknown protocol"},
754     {ERR_REASON(SSL_R_UNKNOWN_SSL_VERSION), "unknown ssl version"},
755     {ERR_REASON(SSL_R_UNKNOWN_STATE), "unknown state"},
756     {ERR_REASON(SSL_R_UNSAFE_LEGACY_RENEGOTIATION_DISABLED),
757      "unsafe legacy renegotiation disabled"},
758     {ERR_REASON(SSL_R_UNSUPPORTED_COMPRESSION_ALGORITHM),
759      "unsupported compression algorithm"},
760     {ERR_REASON(SSL_R_UNSUPPORTED_ELLIPTIC_CURVE),
761      "unsupported elliptic curve"},
762     {ERR_REASON(SSL_R_UNSUPPORTED_PROTOCOL), "unsupported protocol"},
763     {ERR_REASON(SSL_R_UNSUPPORTED_SSL_VERSION), "unsupported ssl version"},
764     {ERR_REASON(SSL_R_UNSUPPORTED_STATUS_TYPE), "unsupported status type"},
765     {ERR_REASON(SSL_R_USE_SRTP_NOT_NEGOTIATED), "use srtp not negotiated"},
766     {ERR_REASON(SSL_R_VERSION_TOO_HIGH), "version too high"},
767     {ERR_REASON(SSL_R_VERSION_TOO_LOW), "version too low"},
768     {ERR_REASON(SSL_R_WRONG_CERTIFICATE_TYPE), "wrong certificate type"},
769     {ERR_REASON(SSL_R_WRONG_CIPHER_RETURNED), "wrong cipher returned"},
770     {ERR_REASON(SSL_R_WRONG_CURVE), "wrong curve"},
771     {ERR_REASON(SSL_R_WRONG_SIGNATURE_LENGTH), "wrong signature length"},
772     {ERR_REASON(SSL_R_WRONG_SIGNATURE_SIZE), "wrong signature size"},
773     {ERR_REASON(SSL_R_WRONG_SIGNATURE_TYPE), "wrong signature type"},
774     {ERR_REASON(SSL_R_WRONG_SSL_VERSION), "wrong ssl version"},
775     {ERR_REASON(SSL_R_WRONG_VERSION_NUMBER), "wrong version number"},
776     {ERR_REASON(SSL_R_X509_LIB), "x509 lib"},
777     {ERR_REASON(SSL_R_X509_VERIFICATION_SETUP_PROBLEMS),
778      "x509 verification setup problems"},
779     {0, NULL}
780 };
781
782 #endif
783
784 int ERR_load_SSL_strings(void)
785 {
786 #ifndef OPENSSL_NO_ERR
787
788     if (ERR_func_error_string(SSL_str_functs[0].error) == NULL) {
789         ERR_load_strings(0, SSL_str_functs);
790         ERR_load_strings(0, SSL_str_reasons);
791     }
792 #endif
793     return 1;
794 }