mirror of
https://github.com/curl/curl.git
synced 2024-12-03 06:20:31 +08:00
1cafede9f2
When the random seed is purposely made predictable for testing purposes by using the CURL_ENTROPY environment variable, process that data in an endian agnostic way so the the initial random seed is the same regardless of endianness. - Change Curl_rand to write to a char array instead of int array. - Add Curl_rand_hex to write random hex characters to a buffer. Fixes #1315 Closes #1468 Co-authored-by: Daniel Stenberg Reported-by: Michael Kaufmann
48 lines
1.9 KiB
C
48 lines
1.9 KiB
C
#ifndef HEADER_CURL_RAND_H
|
|
#define HEADER_CURL_RAND_H
|
|
/***************************************************************************
|
|
* _ _ ____ _
|
|
* Project ___| | | | _ \| |
|
|
* / __| | | | |_) | |
|
|
* | (__| |_| | _ <| |___
|
|
* \___|\___/|_| \_\_____|
|
|
*
|
|
* Copyright (C) 1998 - 2017, Daniel Stenberg, <daniel@haxx.se>, et al.
|
|
*
|
|
* This software is licensed as described in the file COPYING, which
|
|
* you should have received as part of this distribution. The terms
|
|
* are also available at https://curl.haxx.se/docs/copyright.html.
|
|
*
|
|
* You may opt to use, copy, modify, merge, publish, distribute and/or sell
|
|
* copies of the Software, and permit persons to whom the Software is
|
|
* furnished to do so, under the terms of the COPYING file.
|
|
*
|
|
* This software is distributed on an "AS IS" basis, WITHOUT WARRANTY OF ANY
|
|
* KIND, either express or implied.
|
|
*
|
|
***************************************************************************/
|
|
|
|
/*
|
|
* Curl_rand() stores 'num' number of random unsigned characters in the buffer
|
|
* 'rnd' points to.
|
|
*
|
|
* If libcurl is built without TLS support or with a TLS backend that lacks a
|
|
* proper random API (Gskit, PolarSSL or mbedTLS), this function will use
|
|
* "weak" random.
|
|
*
|
|
* When built *with* TLS support and a backend that offers strong random, it
|
|
* will return error if it cannot provide strong random values.
|
|
*
|
|
* NOTE: 'data' may be passed in as NULL when coming from external API without
|
|
* easy handle!
|
|
*
|
|
*/
|
|
CURLcode Curl_rand(struct Curl_easy *data, unsigned char *rnd, size_t num);
|
|
|
|
/* Same as above but outputs only random lowercase hex characters.
|
|
Does NOT terminate.*/
|
|
CURLcode Curl_rand_hex(struct Curl_easy *data, unsigned char *rnd,
|
|
size_t num);
|
|
|
|
#endif /* HEADER_CURL_RAND_H */
|