1 .\" Automatically generated by Pod::Man version 1.15
2 .\" Thu May 9 13:20:30 2002
5 .\" ======================================================================
6 .de Sh \" Subsection heading
14 .de Sp \" Vertical space (when we can't use .PP)
20 .ie \\n(.$>=3 .ne \\$3
24 .de Vb \" Begin verbatim text
29 .de Ve \" End verbatim text
34 .\" Set up some character translations and predefined strings. \*(-- will
35 .\" give an unbreakable dash, \*(PI will give pi, \*(L" will give a left
36 .\" double quote, and \*(R" will give a right double quote. | will give a
37 .\" real vertical bar. \*(C+ will give a nicer C++. Capital omega is used
38 .\" to do unbreakable dashes and therefore won't be available. \*(C` and
39 .\" \*(C' expand to `' in nroff, nothing in troff, for use with C<>
41 .ds C+ C\v'-.1v'\h'-1p'\s-2+\h'-1p'+\s0\v'.1v'\h'-1p'
45 . if (\n(.H=4u)&(1m=24u) .ds -- \(*W\h'-12u'\(*W\h'-12u'-\" diablo 10 pitch
46 . if (\n(.H=4u)&(1m=20u) .ds -- \(*W\h'-12u'\(*W\h'-8u'-\" diablo 12 pitch
59 .\" If the F register is turned on, we'll generate index entries on stderr
60 .\" for titles (.TH), headers (.SH), subsections (.Sh), items (.Ip), and
61 .\" index entries marked with X<> in POD. Of course, you'll have to process
62 .\" the output yourself in some meaningful fashion.
65 . tm Index:\\$1\t\\n%\t"\\$2"
71 .\" For nroff, turn off justification. Always turn off hyphenation; it
72 .\" makes way too many mistakes in technical documents.
76 .\" Accent mark definitions (@(#)ms.acc 1.5 88/02/08 SMI; from UCB 4.2).
77 .\" Fear. Run. Save yourself. No user-serviceable parts.
79 . \" fudge factors for nroff and troff
88 . ds #H ((1u-(\\\\n(.fu%2u))*.13m)
94 . \" simple accents for nroff and troff
104 . ds ' \\k:\h'-(\\n(.wu*8/10-\*(#H)'\'\h"|\\n:u"
105 . ds ` \\k:\h'-(\\n(.wu*8/10-\*(#H)'\`\h'|\\n:u'
106 . ds ^ \\k:\h'-(\\n(.wu*10/11-\*(#H)'^\h'|\\n:u'
107 . ds , \\k:\h'-(\\n(.wu*8/10)',\h'|\\n:u'
108 . ds ~ \\k:\h'-(\\n(.wu-\*(#H-.1m)'~\h'|\\n:u'
109 . ds / \\k:\h'-(\\n(.wu*8/10-\*(#H)'\z\(sl\h'|\\n:u'
111 . \" troff and (daisy-wheel) nroff accents
112 .ds : \\k:\h'-(\\n(.wu*8/10-\*(#H+.1m+\*(#F)'\v'-\*(#V'\z.\h'.2m+\*(#F'.\h'|\\n:u'\v'\*(#V'
113 .ds 8 \h'\*(#H'\(*b\h'-\*(#H'
114 .ds o \\k:\h'-(\\n(.wu+\w'\(de'u-\*(#H)/2u'\v'-.3n'\*(#[\z\(de\v'.3n'\h'|\\n:u'\*(#]
115 .ds d- \h'\*(#H'\(pd\h'-\w'~'u'\v'-.25m'\f2\(hy\fP\v'.25m'\h'-\*(#H'
116 .ds D- D\\k:\h'-\w'D'u'\v'-.11m'\z\(hy\v'.11m'\h'|\\n:u'
117 .ds th \*(#[\v'.3m'\s+1I\s-1\v'-.3m'\h'-(\w'I'u*2/3)'\s-1o\s+1\*(#]
118 .ds Th \*(#[\s+2I\s-2\h'-\w'I'u*3/5'\v'-.3m'o\v'.3m'\*(#]
119 .ds ae a\h'-(\w'a'u*4/10)'e
120 .ds Ae A\h'-(\w'A'u*4/10)'E
121 . \" corrections for vroff
122 .if v .ds ~ \\k:\h'-(\\n(.wu*9/10-\*(#H)'\s-2\u~\d\s+2\h'|\\n:u'
123 .if v .ds ^ \\k:\h'-(\\n(.wu*10/11-\*(#H)'\v'-.4m'^\v'.4m'\h'|\\n:u'
124 . \" for low resolution devices (crt and lpr)
125 .if \n(.H>23 .if \n(.V>19 \
138 .\" ======================================================================
140 .IX Title "SSL_CTX_SET_SESSION_ID_CONTEXT 1"
141 .TH SSL_CTX_SET_SESSION_ID_CONTEXT 1 "perl v5.6.1" "2001-02-18" "User Contributed Perl Documentation"
144 SSL_CTX_set_session_id_context, SSL_set_session_id_context \- set context within which session can be reused (server side only)
146 .IX Header "SYNOPSIS"
148 \& #include <openssl/ssl.h>
151 \& int SSL_CTX_set_session_id_context(SSL_CTX *ctx, const unsigned char *sid_ctx,
152 \& unsigned int sid_ctx_len);
153 \& int SSL_set_session_id_context(SSL *ssl, const unsigned char *sid_ctx,
154 \& unsigned int sid_ctx_len);
157 .IX Header "DESCRIPTION"
158 \&\fISSL_CTX_set_session_id_context()\fR sets the context \fBsid_ctx\fR of length
159 \&\fBsid_ctx_len\fR within which a session can be reused for the \fBctx\fR object.
161 \&\fISSL_set_session_id_context()\fR sets the context \fBsid_ctx\fR of length
162 \&\fBsid_ctx_len\fR within which a session can be reused for the \fBssl\fR object.
165 Sessions are generated within a certain context. When exporting/importing
166 sessions with \fBi2d_SSL_SESSION\fR/\fBd2i_SSL_SESSION\fR it would be possible,
167 to re-import a session generated from another context (e.g. another
168 application), which might lead to malfunctions. Therefore each application
169 must set its own session id context \fBsid_ctx\fR which is used to distinguish
170 the contexts and is stored in exported sessions. The \fBsid_ctx\fR can be
171 any kind of binary data with a given length, it is therefore possible
172 to use e.g. the name of the application and/or the hostname and/or service
175 The session id context becomes part of the session. The session id context
176 is set by the \s-1SSL/TLS\s0 server. The \fISSL_CTX_set_session_id_context()\fR and
177 \&\fISSL_set_session_id_context()\fR functions are therefore only useful on the
180 OpenSSL clients will check the session id context returned by the server
181 when reusing a session.
183 The maximum length of the \fBsid_ctx\fR is limited to
184 \&\fB\s-1SSL_MAX_SSL_SESSION_ID_LENGTH\s0\fR.
186 .IX Header "WARNINGS"
187 If the session id context is not set on an \s-1SSL/TLS\s0 server, stored sessions
188 will not be reused but a fatal error will be flagged and the handshake
191 If a server returns a different session id context to an OpenSSL client
192 when reusing a session, an error will be flagged and the handshake will
193 fail. OpenSSL servers will always return the correct session id context,
194 as an OpenSSL server checks the session id context itself before reusing
195 a session as described above.
197 .IX Header "RETURN VALUES"
198 \&\fISSL_CTX_set_session_id_context()\fR and \fISSL_set_session_id_context()\fR
199 return the following values:
201 The length \fBsid_ctx_len\fR of the session id context \fBsid_ctx\fR exceeded
202 the maximum allowed length of \fB\s-1SSL_MAX_SSL_SESSION_ID_LENGTH\s0\fR. The error
203 is logged to the error stack.
206 The operation succeeded.
208 .IX Header "SEE ALSO"