]> CyberLeo.Net >> Repos - FreeBSD/releng/9.3.git/blob - crypto/openssl/ssl/ssl_err.c
Fix multiple OpenSSL vulnerabilities.
[FreeBSD/releng/9.3.git] / crypto / openssl / ssl / ssl_err.c
1 /* ssl/ssl_err.c */
2 /* ====================================================================
3  * Copyright (c) 1999-2011 The OpenSSL Project.  All rights reserved.
4  *
5  * Redistribution and use in source and binary forms, with or without
6  * modification, are permitted provided that the following conditions
7  * are met:
8  *
9  * 1. Redistributions of source code must retain the above copyright
10  *    notice, this list of conditions and the following disclaimer.
11  *
12  * 2. Redistributions in binary form must reproduce the above copyright
13  *    notice, this list of conditions and the following disclaimer in
14  *    the documentation and/or other materials provided with the
15  *    distribution.
16  *
17  * 3. All advertising materials mentioning features or use of this
18  *    software must display the following acknowledgment:
19  *    "This product includes software developed by the OpenSSL Project
20  *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
21  *
22  * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
23  *    endorse or promote products derived from this software without
24  *    prior written permission. For written permission, please contact
25  *    openssl-core@OpenSSL.org.
26  *
27  * 5. Products derived from this software may not be called "OpenSSL"
28  *    nor may "OpenSSL" appear in their names without prior written
29  *    permission of the OpenSSL Project.
30  *
31  * 6. Redistributions of any form whatsoever must retain the following
32  *    acknowledgment:
33  *    "This product includes software developed by the OpenSSL Project
34  *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
35  *
36  * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
37  * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
38  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
39  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
40  * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
41  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
42  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
43  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
44  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
45  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
46  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
47  * OF THE POSSIBILITY OF SUCH DAMAGE.
48  * ====================================================================
49  *
50  * This product includes cryptographic software written by Eric Young
51  * (eay@cryptsoft.com).  This product includes software written by Tim
52  * Hudson (tjh@cryptsoft.com).
53  *
54  */
55
56 /*
57  * NOTE: this file was auto generated by the mkerr.pl script: any changes
58  * made to it will be overwritten when the script next updates this file,
59  * only reason strings will be preserved.
60  */
61
62 #include <stdio.h>
63 #include <openssl/err.h>
64 #include <openssl/ssl.h>
65
66 /* BEGIN ERROR CODES */
67 #ifndef OPENSSL_NO_ERR
68
69 # define ERR_FUNC(func) ERR_PACK(ERR_LIB_SSL,func,0)
70 # define ERR_REASON(reason) ERR_PACK(ERR_LIB_SSL,0,reason)
71
72 static ERR_STRING_DATA SSL_str_functs[] = {
73     {ERR_FUNC(SSL_F_CLIENT_CERTIFICATE), "CLIENT_CERTIFICATE"},
74     {ERR_FUNC(SSL_F_CLIENT_FINISHED), "CLIENT_FINISHED"},
75     {ERR_FUNC(SSL_F_CLIENT_HELLO), "CLIENT_HELLO"},
76     {ERR_FUNC(SSL_F_CLIENT_MASTER_KEY), "CLIENT_MASTER_KEY"},
77     {ERR_FUNC(SSL_F_D2I_SSL_SESSION), "d2i_SSL_SESSION"},
78     {ERR_FUNC(SSL_F_DO_DTLS1_WRITE), "DO_DTLS1_WRITE"},
79     {ERR_FUNC(SSL_F_DO_SSL3_WRITE), "DO_SSL3_WRITE"},
80     {ERR_FUNC(SSL_F_DTLS1_ACCEPT), "DTLS1_ACCEPT"},
81     {ERR_FUNC(SSL_F_DTLS1_ADD_CERT_TO_BUF), "DTLS1_ADD_CERT_TO_BUF"},
82     {ERR_FUNC(SSL_F_DTLS1_BUFFER_RECORD), "DTLS1_BUFFER_RECORD"},
83     {ERR_FUNC(SSL_F_DTLS1_CHECK_TIMEOUT_NUM), "DTLS1_CHECK_TIMEOUT_NUM"},
84     {ERR_FUNC(SSL_F_DTLS1_CLIENT_HELLO), "DTLS1_CLIENT_HELLO"},
85     {ERR_FUNC(SSL_F_DTLS1_CONNECT), "DTLS1_CONNECT"},
86     {ERR_FUNC(SSL_F_DTLS1_ENC), "DTLS1_ENC"},
87     {ERR_FUNC(SSL_F_DTLS1_GET_HELLO_VERIFY), "DTLS1_GET_HELLO_VERIFY"},
88     {ERR_FUNC(SSL_F_DTLS1_GET_MESSAGE), "DTLS1_GET_MESSAGE"},
89     {ERR_FUNC(SSL_F_DTLS1_GET_MESSAGE_FRAGMENT),
90      "DTLS1_GET_MESSAGE_FRAGMENT"},
91     {ERR_FUNC(SSL_F_DTLS1_GET_RECORD), "DTLS1_GET_RECORD"},
92     {ERR_FUNC(SSL_F_DTLS1_HANDLE_TIMEOUT), "DTLS1_HANDLE_TIMEOUT"},
93     {ERR_FUNC(SSL_F_DTLS1_OUTPUT_CERT_CHAIN), "DTLS1_OUTPUT_CERT_CHAIN"},
94     {ERR_FUNC(SSL_F_DTLS1_PREPROCESS_FRAGMENT), "DTLS1_PREPROCESS_FRAGMENT"},
95     {ERR_FUNC(SSL_F_DTLS1_PROCESS_OUT_OF_SEQ_MESSAGE),
96      "DTLS1_PROCESS_OUT_OF_SEQ_MESSAGE"},
97     {ERR_FUNC(SSL_F_DTLS1_PROCESS_RECORD), "DTLS1_PROCESS_RECORD"},
98     {ERR_FUNC(SSL_F_DTLS1_READ_BYTES), "DTLS1_READ_BYTES"},
99     {ERR_FUNC(SSL_F_DTLS1_READ_FAILED), "DTLS1_READ_FAILED"},
100     {ERR_FUNC(SSL_F_DTLS1_SEND_CERTIFICATE_REQUEST),
101      "DTLS1_SEND_CERTIFICATE_REQUEST"},
102     {ERR_FUNC(SSL_F_DTLS1_SEND_CLIENT_CERTIFICATE),
103      "DTLS1_SEND_CLIENT_CERTIFICATE"},
104     {ERR_FUNC(SSL_F_DTLS1_SEND_CLIENT_KEY_EXCHANGE),
105      "DTLS1_SEND_CLIENT_KEY_EXCHANGE"},
106     {ERR_FUNC(SSL_F_DTLS1_SEND_CLIENT_VERIFY), "DTLS1_SEND_CLIENT_VERIFY"},
107     {ERR_FUNC(SSL_F_DTLS1_SEND_HELLO_VERIFY_REQUEST),
108      "DTLS1_SEND_HELLO_VERIFY_REQUEST"},
109     {ERR_FUNC(SSL_F_DTLS1_SEND_SERVER_CERTIFICATE),
110      "DTLS1_SEND_SERVER_CERTIFICATE"},
111     {ERR_FUNC(SSL_F_DTLS1_SEND_SERVER_HELLO), "DTLS1_SEND_SERVER_HELLO"},
112     {ERR_FUNC(SSL_F_DTLS1_SEND_SERVER_KEY_EXCHANGE),
113      "DTLS1_SEND_SERVER_KEY_EXCHANGE"},
114     {ERR_FUNC(SSL_F_DTLS1_WRITE_APP_DATA_BYTES),
115      "DTLS1_WRITE_APP_DATA_BYTES"},
116     {ERR_FUNC(SSL_F_GET_CLIENT_FINISHED), "GET_CLIENT_FINISHED"},
117     {ERR_FUNC(SSL_F_GET_CLIENT_HELLO), "GET_CLIENT_HELLO"},
118     {ERR_FUNC(SSL_F_GET_CLIENT_MASTER_KEY), "GET_CLIENT_MASTER_KEY"},
119     {ERR_FUNC(SSL_F_GET_SERVER_FINISHED), "GET_SERVER_FINISHED"},
120     {ERR_FUNC(SSL_F_GET_SERVER_HELLO), "GET_SERVER_HELLO"},
121     {ERR_FUNC(SSL_F_GET_SERVER_VERIFY), "GET_SERVER_VERIFY"},
122     {ERR_FUNC(SSL_F_I2D_SSL_SESSION), "i2d_SSL_SESSION"},
123     {ERR_FUNC(SSL_F_READ_N), "READ_N"},
124     {ERR_FUNC(SSL_F_REQUEST_CERTIFICATE), "REQUEST_CERTIFICATE"},
125     {ERR_FUNC(SSL_F_SERVER_FINISH), "SERVER_FINISH"},
126     {ERR_FUNC(SSL_F_SERVER_HELLO), "SERVER_HELLO"},
127     {ERR_FUNC(SSL_F_SERVER_VERIFY), "SERVER_VERIFY"},
128     {ERR_FUNC(SSL_F_SSL23_ACCEPT), "SSL23_ACCEPT"},
129     {ERR_FUNC(SSL_F_SSL23_CLIENT_HELLO), "SSL23_CLIENT_HELLO"},
130     {ERR_FUNC(SSL_F_SSL23_CONNECT), "SSL23_CONNECT"},
131     {ERR_FUNC(SSL_F_SSL23_GET_CLIENT_HELLO), "SSL23_GET_CLIENT_HELLO"},
132     {ERR_FUNC(SSL_F_SSL23_GET_SERVER_HELLO), "SSL23_GET_SERVER_HELLO"},
133     {ERR_FUNC(SSL_F_SSL23_PEEK), "SSL23_PEEK"},
134     {ERR_FUNC(SSL_F_SSL23_READ), "SSL23_READ"},
135     {ERR_FUNC(SSL_F_SSL23_WRITE), "SSL23_WRITE"},
136     {ERR_FUNC(SSL_F_SSL2_ACCEPT), "SSL2_ACCEPT"},
137     {ERR_FUNC(SSL_F_SSL2_CONNECT), "SSL2_CONNECT"},
138     {ERR_FUNC(SSL_F_SSL2_ENC_INIT), "SSL2_ENC_INIT"},
139     {ERR_FUNC(SSL_F_SSL2_GENERATE_KEY_MATERIAL),
140      "SSL2_GENERATE_KEY_MATERIAL"},
141     {ERR_FUNC(SSL_F_SSL2_PEEK), "SSL2_PEEK"},
142     {ERR_FUNC(SSL_F_SSL2_READ), "SSL2_READ"},
143     {ERR_FUNC(SSL_F_SSL2_READ_INTERNAL), "SSL2_READ_INTERNAL"},
144     {ERR_FUNC(SSL_F_SSL2_SET_CERTIFICATE), "SSL2_SET_CERTIFICATE"},
145     {ERR_FUNC(SSL_F_SSL2_WRITE), "SSL2_WRITE"},
146     {ERR_FUNC(SSL_F_SSL3_ACCEPT), "SSL3_ACCEPT"},
147     {ERR_FUNC(SSL_F_SSL3_ADD_CERT_TO_BUF), "SSL3_ADD_CERT_TO_BUF"},
148     {ERR_FUNC(SSL_F_SSL3_CALLBACK_CTRL), "SSL3_CALLBACK_CTRL"},
149     {ERR_FUNC(SSL_F_SSL3_CHANGE_CIPHER_STATE), "SSL3_CHANGE_CIPHER_STATE"},
150     {ERR_FUNC(SSL_F_SSL3_CHECK_CERT_AND_ALGORITHM),
151      "SSL3_CHECK_CERT_AND_ALGORITHM"},
152     {ERR_FUNC(SSL_F_SSL3_CHECK_CLIENT_HELLO), "SSL3_CHECK_CLIENT_HELLO"},
153     {ERR_FUNC(SSL_F_SSL3_CLIENT_HELLO), "SSL3_CLIENT_HELLO"},
154     {ERR_FUNC(SSL_F_SSL3_CONNECT), "SSL3_CONNECT"},
155     {ERR_FUNC(SSL_F_SSL3_CTRL), "SSL3_CTRL"},
156     {ERR_FUNC(SSL_F_SSL3_CTX_CTRL), "SSL3_CTX_CTRL"},
157     {ERR_FUNC(SSL_F_SSL3_DO_CHANGE_CIPHER_SPEC),
158      "SSL3_DO_CHANGE_CIPHER_SPEC"},
159     {ERR_FUNC(SSL_F_SSL3_ENC), "SSL3_ENC"},
160     {ERR_FUNC(SSL_F_SSL3_GENERATE_KEY_BLOCK), "SSL3_GENERATE_KEY_BLOCK"},
161     {ERR_FUNC(SSL_F_SSL3_GET_CERTIFICATE_REQUEST),
162      "SSL3_GET_CERTIFICATE_REQUEST"},
163     {ERR_FUNC(SSL_F_SSL3_GET_CERT_STATUS), "SSL3_GET_CERT_STATUS"},
164     {ERR_FUNC(SSL_F_SSL3_GET_CERT_VERIFY), "SSL3_GET_CERT_VERIFY"},
165     {ERR_FUNC(SSL_F_SSL3_GET_CLIENT_CERTIFICATE),
166      "SSL3_GET_CLIENT_CERTIFICATE"},
167     {ERR_FUNC(SSL_F_SSL3_GET_CLIENT_HELLO), "SSL3_GET_CLIENT_HELLO"},
168     {ERR_FUNC(SSL_F_SSL3_GET_CLIENT_KEY_EXCHANGE),
169      "SSL3_GET_CLIENT_KEY_EXCHANGE"},
170     {ERR_FUNC(SSL_F_SSL3_GET_FINISHED), "SSL3_GET_FINISHED"},
171     {ERR_FUNC(SSL_F_SSL3_GET_KEY_EXCHANGE), "SSL3_GET_KEY_EXCHANGE"},
172     {ERR_FUNC(SSL_F_SSL3_GET_MESSAGE), "SSL3_GET_MESSAGE"},
173     {ERR_FUNC(SSL_F_SSL3_GET_NEW_SESSION_TICKET),
174      "SSL3_GET_NEW_SESSION_TICKET"},
175     {ERR_FUNC(SSL_F_SSL3_GET_RECORD), "SSL3_GET_RECORD"},
176     {ERR_FUNC(SSL_F_SSL3_GET_SERVER_CERTIFICATE),
177      "SSL3_GET_SERVER_CERTIFICATE"},
178     {ERR_FUNC(SSL_F_SSL3_GET_SERVER_DONE), "SSL3_GET_SERVER_DONE"},
179     {ERR_FUNC(SSL_F_SSL3_GET_SERVER_HELLO), "SSL3_GET_SERVER_HELLO"},
180     {ERR_FUNC(SSL_F_SSL3_NEW_SESSION_TICKET), "SSL3_NEW_SESSION_TICKET"},
181     {ERR_FUNC(SSL_F_SSL3_OUTPUT_CERT_CHAIN), "SSL3_OUTPUT_CERT_CHAIN"},
182     {ERR_FUNC(SSL_F_SSL3_PEEK), "SSL3_PEEK"},
183     {ERR_FUNC(SSL_F_SSL3_READ_BYTES), "SSL3_READ_BYTES"},
184     {ERR_FUNC(SSL_F_SSL3_READ_N), "SSL3_READ_N"},
185     {ERR_FUNC(SSL_F_SSL3_SEND_CERTIFICATE_REQUEST),
186      "SSL3_SEND_CERTIFICATE_REQUEST"},
187     {ERR_FUNC(SSL_F_SSL3_SEND_CLIENT_CERTIFICATE),
188      "SSL3_SEND_CLIENT_CERTIFICATE"},
189     {ERR_FUNC(SSL_F_SSL3_SEND_CLIENT_KEY_EXCHANGE),
190      "SSL3_SEND_CLIENT_KEY_EXCHANGE"},
191     {ERR_FUNC(SSL_F_SSL3_SEND_CLIENT_VERIFY), "SSL3_SEND_CLIENT_VERIFY"},
192     {ERR_FUNC(SSL_F_SSL3_SEND_SERVER_CERTIFICATE),
193      "SSL3_SEND_SERVER_CERTIFICATE"},
194     {ERR_FUNC(SSL_F_SSL3_SEND_SERVER_HELLO), "SSL3_SEND_SERVER_HELLO"},
195     {ERR_FUNC(SSL_F_SSL3_SEND_SERVER_KEY_EXCHANGE),
196      "SSL3_SEND_SERVER_KEY_EXCHANGE"},
197     {ERR_FUNC(SSL_F_SSL3_SETUP_BUFFERS), "SSL3_SETUP_BUFFERS"},
198     {ERR_FUNC(SSL_F_SSL3_SETUP_KEY_BLOCK), "SSL3_SETUP_KEY_BLOCK"},
199     {ERR_FUNC(SSL_F_SSL3_WRITE_BYTES), "SSL3_WRITE_BYTES"},
200     {ERR_FUNC(SSL_F_SSL3_WRITE_PENDING), "SSL3_WRITE_PENDING"},
201     {ERR_FUNC(SSL_F_SSL_ADD_CLIENTHELLO_RENEGOTIATE_EXT),
202      "SSL_ADD_CLIENTHELLO_RENEGOTIATE_EXT"},
203     {ERR_FUNC(SSL_F_SSL_ADD_CLIENTHELLO_TLSEXT),
204      "SSL_ADD_CLIENTHELLO_TLSEXT"},
205     {ERR_FUNC(SSL_F_SSL_ADD_DIR_CERT_SUBJECTS_TO_STACK),
206      "SSL_add_dir_cert_subjects_to_stack"},
207     {ERR_FUNC(SSL_F_SSL_ADD_FILE_CERT_SUBJECTS_TO_STACK),
208      "SSL_add_file_cert_subjects_to_stack"},
209     {ERR_FUNC(SSL_F_SSL_ADD_SERVERHELLO_RENEGOTIATE_EXT),
210      "SSL_ADD_SERVERHELLO_RENEGOTIATE_EXT"},
211     {ERR_FUNC(SSL_F_SSL_ADD_SERVERHELLO_TLSEXT),
212      "SSL_ADD_SERVERHELLO_TLSEXT"},
213     {ERR_FUNC(SSL_F_SSL_BAD_METHOD), "SSL_BAD_METHOD"},
214     {ERR_FUNC(SSL_F_SSL_BYTES_TO_CIPHER_LIST), "SSL_BYTES_TO_CIPHER_LIST"},
215     {ERR_FUNC(SSL_F_SSL_CERT_DUP), "SSL_CERT_DUP"},
216     {ERR_FUNC(SSL_F_SSL_CERT_INST), "SSL_CERT_INST"},
217     {ERR_FUNC(SSL_F_SSL_CERT_INSTANTIATE), "SSL_CERT_INSTANTIATE"},
218     {ERR_FUNC(SSL_F_SSL_CERT_NEW), "SSL_CERT_NEW"},
219     {ERR_FUNC(SSL_F_SSL_CHECK_PRIVATE_KEY), "SSL_check_private_key"},
220     {ERR_FUNC(SSL_F_SSL_CHECK_SERVERHELLO_TLSEXT),
221      "SSL_CHECK_SERVERHELLO_TLSEXT"},
222     {ERR_FUNC(SSL_F_SSL_CIPHER_PROCESS_RULESTR),
223      "SSL_CIPHER_PROCESS_RULESTR"},
224     {ERR_FUNC(SSL_F_SSL_CIPHER_STRENGTH_SORT), "SSL_CIPHER_STRENGTH_SORT"},
225     {ERR_FUNC(SSL_F_SSL_CLEAR), "SSL_clear"},
226     {ERR_FUNC(SSL_F_SSL_COMP_ADD_COMPRESSION_METHOD),
227      "SSL_COMP_add_compression_method"},
228     {ERR_FUNC(SSL_F_SSL_CREATE_CIPHER_LIST), "SSL_CREATE_CIPHER_LIST"},
229     {ERR_FUNC(SSL_F_SSL_CTRL), "SSL_ctrl"},
230     {ERR_FUNC(SSL_F_SSL_CTX_CHECK_PRIVATE_KEY), "SSL_CTX_check_private_key"},
231     {ERR_FUNC(SSL_F_SSL_CTX_NEW), "SSL_CTX_new"},
232     {ERR_FUNC(SSL_F_SSL_CTX_SET_CIPHER_LIST), "SSL_CTX_set_cipher_list"},
233     {ERR_FUNC(SSL_F_SSL_CTX_SET_CLIENT_CERT_ENGINE),
234      "SSL_CTX_set_client_cert_engine"},
235     {ERR_FUNC(SSL_F_SSL_CTX_SET_PURPOSE), "SSL_CTX_set_purpose"},
236     {ERR_FUNC(SSL_F_SSL_CTX_SET_SESSION_ID_CONTEXT),
237      "SSL_CTX_set_session_id_context"},
238     {ERR_FUNC(SSL_F_SSL_CTX_SET_SSL_VERSION), "SSL_CTX_set_ssl_version"},
239     {ERR_FUNC(SSL_F_SSL_CTX_SET_TRUST), "SSL_CTX_set_trust"},
240     {ERR_FUNC(SSL_F_SSL_CTX_USE_CERTIFICATE), "SSL_CTX_use_certificate"},
241     {ERR_FUNC(SSL_F_SSL_CTX_USE_CERTIFICATE_ASN1),
242      "SSL_CTX_use_certificate_ASN1"},
243     {ERR_FUNC(SSL_F_SSL_CTX_USE_CERTIFICATE_CHAIN_FILE),
244      "SSL_CTX_use_certificate_chain_file"},
245     {ERR_FUNC(SSL_F_SSL_CTX_USE_CERTIFICATE_FILE),
246      "SSL_CTX_use_certificate_file"},
247     {ERR_FUNC(SSL_F_SSL_CTX_USE_PRIVATEKEY), "SSL_CTX_use_PrivateKey"},
248     {ERR_FUNC(SSL_F_SSL_CTX_USE_PRIVATEKEY_ASN1),
249      "SSL_CTX_use_PrivateKey_ASN1"},
250     {ERR_FUNC(SSL_F_SSL_CTX_USE_PRIVATEKEY_FILE),
251      "SSL_CTX_use_PrivateKey_file"},
252     {ERR_FUNC(SSL_F_SSL_CTX_USE_RSAPRIVATEKEY), "SSL_CTX_use_RSAPrivateKey"},
253     {ERR_FUNC(SSL_F_SSL_CTX_USE_RSAPRIVATEKEY_ASN1),
254      "SSL_CTX_use_RSAPrivateKey_ASN1"},
255     {ERR_FUNC(SSL_F_SSL_CTX_USE_RSAPRIVATEKEY_FILE),
256      "SSL_CTX_use_RSAPrivateKey_file"},
257     {ERR_FUNC(SSL_F_SSL_DO_HANDSHAKE), "SSL_do_handshake"},
258     {ERR_FUNC(SSL_F_SSL_GET_NEW_SESSION), "SSL_GET_NEW_SESSION"},
259     {ERR_FUNC(SSL_F_SSL_GET_PREV_SESSION), "SSL_GET_PREV_SESSION"},
260     {ERR_FUNC(SSL_F_SSL_GET_SERVER_SEND_CERT), "SSL_GET_SERVER_SEND_CERT"},
261     {ERR_FUNC(SSL_F_SSL_GET_SERVER_SEND_PKEY), "SSL_GET_SERVER_SEND_PKEY"},
262     {ERR_FUNC(SSL_F_SSL_GET_SIGN_PKEY), "SSL_GET_SIGN_PKEY"},
263     {ERR_FUNC(SSL_F_SSL_INIT_WBIO_BUFFER), "SSL_INIT_WBIO_BUFFER"},
264     {ERR_FUNC(SSL_F_SSL_LOAD_CLIENT_CA_FILE), "SSL_load_client_CA_file"},
265     {ERR_FUNC(SSL_F_SSL_NEW), "SSL_new"},
266     {ERR_FUNC(SSL_F_SSL_PARSE_CLIENTHELLO_RENEGOTIATE_EXT),
267      "SSL_PARSE_CLIENTHELLO_RENEGOTIATE_EXT"},
268     {ERR_FUNC(SSL_F_SSL_PARSE_CLIENTHELLO_TLSEXT),
269      "SSL_PARSE_CLIENTHELLO_TLSEXT"},
270     {ERR_FUNC(SSL_F_SSL_PARSE_SERVERHELLO_RENEGOTIATE_EXT),
271      "SSL_PARSE_SERVERHELLO_RENEGOTIATE_EXT"},
272     {ERR_FUNC(SSL_F_SSL_PARSE_SERVERHELLO_TLSEXT),
273      "SSL_PARSE_SERVERHELLO_TLSEXT"},
274     {ERR_FUNC(SSL_F_SSL_PEEK), "SSL_peek"},
275     {ERR_FUNC(SSL_F_SSL_PREPARE_CLIENTHELLO_TLSEXT),
276      "SSL_PREPARE_CLIENTHELLO_TLSEXT"},
277     {ERR_FUNC(SSL_F_SSL_PREPARE_SERVERHELLO_TLSEXT),
278      "SSL_PREPARE_SERVERHELLO_TLSEXT"},
279     {ERR_FUNC(SSL_F_SSL_READ), "SSL_read"},
280     {ERR_FUNC(SSL_F_SSL_RSA_PRIVATE_DECRYPT), "SSL_RSA_PRIVATE_DECRYPT"},
281     {ERR_FUNC(SSL_F_SSL_RSA_PUBLIC_ENCRYPT), "SSL_RSA_PUBLIC_ENCRYPT"},
282     {ERR_FUNC(SSL_F_SSL_SESSION_DUP), "ssl_session_dup"},
283     {ERR_FUNC(SSL_F_SSL_SESSION_NEW), "SSL_SESSION_new"},
284     {ERR_FUNC(SSL_F_SSL_SESSION_PRINT_FP), "SSL_SESSION_print_fp"},
285     {ERR_FUNC(SSL_F_SSL_SESS_CERT_NEW), "SSL_SESS_CERT_NEW"},
286     {ERR_FUNC(SSL_F_SSL_SET_CERT), "SSL_SET_CERT"},
287     {ERR_FUNC(SSL_F_SSL_SET_CIPHER_LIST), "SSL_set_cipher_list"},
288     {ERR_FUNC(SSL_F_SSL_SET_FD), "SSL_set_fd"},
289     {ERR_FUNC(SSL_F_SSL_SET_PKEY), "SSL_SET_PKEY"},
290     {ERR_FUNC(SSL_F_SSL_SET_PURPOSE), "SSL_set_purpose"},
291     {ERR_FUNC(SSL_F_SSL_SET_RFD), "SSL_set_rfd"},
292     {ERR_FUNC(SSL_F_SSL_SET_SESSION), "SSL_set_session"},
293     {ERR_FUNC(SSL_F_SSL_SET_SESSION_ID_CONTEXT),
294      "SSL_set_session_id_context"},
295     {ERR_FUNC(SSL_F_SSL_SET_TRUST), "SSL_set_trust"},
296     {ERR_FUNC(SSL_F_SSL_SET_WFD), "SSL_set_wfd"},
297     {ERR_FUNC(SSL_F_SSL_SHUTDOWN), "SSL_shutdown"},
298     {ERR_FUNC(SSL_F_SSL_UNDEFINED_CONST_FUNCTION),
299      "SSL_UNDEFINED_CONST_FUNCTION"},
300     {ERR_FUNC(SSL_F_SSL_UNDEFINED_FUNCTION), "SSL_UNDEFINED_FUNCTION"},
301     {ERR_FUNC(SSL_F_SSL_UNDEFINED_VOID_FUNCTION),
302      "SSL_UNDEFINED_VOID_FUNCTION"},
303     {ERR_FUNC(SSL_F_SSL_USE_CERTIFICATE), "SSL_use_certificate"},
304     {ERR_FUNC(SSL_F_SSL_USE_CERTIFICATE_ASN1), "SSL_use_certificate_ASN1"},
305     {ERR_FUNC(SSL_F_SSL_USE_CERTIFICATE_FILE), "SSL_use_certificate_file"},
306     {ERR_FUNC(SSL_F_SSL_USE_PRIVATEKEY), "SSL_use_PrivateKey"},
307     {ERR_FUNC(SSL_F_SSL_USE_PRIVATEKEY_ASN1), "SSL_use_PrivateKey_ASN1"},
308     {ERR_FUNC(SSL_F_SSL_USE_PRIVATEKEY_FILE), "SSL_use_PrivateKey_file"},
309     {ERR_FUNC(SSL_F_SSL_USE_RSAPRIVATEKEY), "SSL_use_RSAPrivateKey"},
310     {ERR_FUNC(SSL_F_SSL_USE_RSAPRIVATEKEY_ASN1),
311      "SSL_use_RSAPrivateKey_ASN1"},
312     {ERR_FUNC(SSL_F_SSL_USE_RSAPRIVATEKEY_FILE),
313      "SSL_use_RSAPrivateKey_file"},
314     {ERR_FUNC(SSL_F_SSL_VERIFY_CERT_CHAIN), "SSL_VERIFY_CERT_CHAIN"},
315     {ERR_FUNC(SSL_F_SSL_WRITE), "SSL_write"},
316     {ERR_FUNC(SSL_F_TLS1_CHANGE_CIPHER_STATE), "TLS1_CHANGE_CIPHER_STATE"},
317     {ERR_FUNC(SSL_F_TLS1_ENC), "TLS1_ENC"},
318     {ERR_FUNC(SSL_F_TLS1_SETUP_KEY_BLOCK), "TLS1_SETUP_KEY_BLOCK"},
319     {ERR_FUNC(SSL_F_WRITE_PENDING), "WRITE_PENDING"},
320     {0, NULL}
321 };
322
323 static ERR_STRING_DATA SSL_str_reasons[] = {
324     {ERR_REASON(SSL_R_APP_DATA_IN_HANDSHAKE), "app data in handshake"},
325     {ERR_REASON(SSL_R_ATTEMPT_TO_REUSE_SESSION_IN_DIFFERENT_CONTEXT),
326      "attempt to reuse session in different context"},
327     {ERR_REASON(SSL_R_BAD_ALERT_RECORD), "bad alert record"},
328     {ERR_REASON(SSL_R_BAD_AUTHENTICATION_TYPE), "bad authentication type"},
329     {ERR_REASON(SSL_R_BAD_CHANGE_CIPHER_SPEC), "bad change cipher spec"},
330     {ERR_REASON(SSL_R_BAD_CHECKSUM), "bad checksum"},
331     {ERR_REASON(SSL_R_BAD_DATA_RETURNED_BY_CALLBACK),
332      "bad data returned by callback"},
333     {ERR_REASON(SSL_R_BAD_DECOMPRESSION), "bad decompression"},
334     {ERR_REASON(SSL_R_BAD_DH_G_LENGTH), "bad dh g length"},
335     {ERR_REASON(SSL_R_BAD_DH_PUB_KEY_LENGTH), "bad dh pub key length"},
336     {ERR_REASON(SSL_R_BAD_DH_P_LENGTH), "bad dh p length"},
337     {ERR_REASON(SSL_R_BAD_DIGEST_LENGTH), "bad digest length"},
338     {ERR_REASON(SSL_R_BAD_DSA_SIGNATURE), "bad dsa signature"},
339     {ERR_REASON(SSL_R_BAD_ECC_CERT), "bad ecc cert"},
340     {ERR_REASON(SSL_R_BAD_ECDSA_SIGNATURE), "bad ecdsa signature"},
341     {ERR_REASON(SSL_R_BAD_ECPOINT), "bad ecpoint"},
342     {ERR_REASON(SSL_R_BAD_HELLO_REQUEST), "bad hello request"},
343     {ERR_REASON(SSL_R_BAD_LENGTH), "bad length"},
344     {ERR_REASON(SSL_R_BAD_MAC_DECODE), "bad mac decode"},
345     {ERR_REASON(SSL_R_BAD_MESSAGE_TYPE), "bad message type"},
346     {ERR_REASON(SSL_R_BAD_PACKET_LENGTH), "bad packet length"},
347     {ERR_REASON(SSL_R_BAD_PROTOCOL_VERSION_NUMBER),
348      "bad protocol version number"},
349     {ERR_REASON(SSL_R_BAD_RESPONSE_ARGUMENT), "bad response argument"},
350     {ERR_REASON(SSL_R_BAD_RSA_DECRYPT), "bad rsa decrypt"},
351     {ERR_REASON(SSL_R_BAD_RSA_ENCRYPT), "bad rsa encrypt"},
352     {ERR_REASON(SSL_R_BAD_RSA_E_LENGTH), "bad rsa e length"},
353     {ERR_REASON(SSL_R_BAD_RSA_MODULUS_LENGTH), "bad rsa modulus length"},
354     {ERR_REASON(SSL_R_BAD_RSA_SIGNATURE), "bad rsa signature"},
355     {ERR_REASON(SSL_R_BAD_SIGNATURE), "bad signature"},
356     {ERR_REASON(SSL_R_BAD_SSL_FILETYPE), "bad ssl filetype"},
357     {ERR_REASON(SSL_R_BAD_SSL_SESSION_ID_LENGTH),
358      "bad ssl session id length"},
359     {ERR_REASON(SSL_R_BAD_STATE), "bad state"},
360     {ERR_REASON(SSL_R_BAD_WRITE_RETRY), "bad write retry"},
361     {ERR_REASON(SSL_R_BIO_NOT_SET), "bio not set"},
362     {ERR_REASON(SSL_R_BLOCK_CIPHER_PAD_IS_WRONG),
363      "block cipher pad is wrong"},
364     {ERR_REASON(SSL_R_BN_LIB), "bn lib"},
365     {ERR_REASON(SSL_R_CA_DN_LENGTH_MISMATCH), "ca dn length mismatch"},
366     {ERR_REASON(SSL_R_CA_DN_TOO_LONG), "ca dn too long"},
367     {ERR_REASON(SSL_R_CCS_RECEIVED_EARLY), "ccs received early"},
368     {ERR_REASON(SSL_R_CERTIFICATE_VERIFY_FAILED),
369      "certificate verify failed"},
370     {ERR_REASON(SSL_R_CERT_LENGTH_MISMATCH), "cert length mismatch"},
371     {ERR_REASON(SSL_R_CHALLENGE_IS_DIFFERENT), "challenge is different"},
372     {ERR_REASON(SSL_R_CIPHER_CODE_WRONG_LENGTH), "cipher code wrong length"},
373     {ERR_REASON(SSL_R_CIPHER_OR_HASH_UNAVAILABLE),
374      "cipher or hash unavailable"},
375     {ERR_REASON(SSL_R_CIPHER_TABLE_SRC_ERROR), "cipher table src error"},
376     {ERR_REASON(SSL_R_CLIENTHELLO_TLSEXT), "clienthello tlsext"},
377     {ERR_REASON(SSL_R_COMPRESSED_LENGTH_TOO_LONG),
378      "compressed length too long"},
379     {ERR_REASON(SSL_R_COMPRESSION_FAILURE), "compression failure"},
380     {ERR_REASON(SSL_R_COMPRESSION_ID_NOT_WITHIN_PRIVATE_RANGE),
381      "compression id not within private range"},
382     {ERR_REASON(SSL_R_COMPRESSION_LIBRARY_ERROR),
383      "compression library error"},
384     {ERR_REASON(SSL_R_CONNECTION_ID_IS_DIFFERENT),
385      "connection id is different"},
386     {ERR_REASON(SSL_R_CONNECTION_TYPE_NOT_SET), "connection type not set"},
387     {ERR_REASON(SSL_R_COOKIE_MISMATCH), "cookie mismatch"},
388     {ERR_REASON(SSL_R_DATA_BETWEEN_CCS_AND_FINISHED),
389      "data between ccs and finished"},
390     {ERR_REASON(SSL_R_DATA_LENGTH_TOO_LONG), "data length too long"},
391     {ERR_REASON(SSL_R_DECRYPTION_FAILED), "decryption failed"},
392     {ERR_REASON(SSL_R_DECRYPTION_FAILED_OR_BAD_RECORD_MAC),
393      "decryption failed or bad record mac"},
394     {ERR_REASON(SSL_R_DH_PUBLIC_VALUE_LENGTH_IS_WRONG),
395      "dh public value length is wrong"},
396     {ERR_REASON(SSL_R_DIGEST_CHECK_FAILED), "digest check failed"},
397     {ERR_REASON(SSL_R_DTLS_MESSAGE_TOO_BIG), "dtls message too big"},
398     {ERR_REASON(SSL_R_DUPLICATE_COMPRESSION_ID), "duplicate compression id"},
399     {ERR_REASON(SSL_R_ECGROUP_TOO_LARGE_FOR_CIPHER),
400      "ecgroup too large for cipher"},
401     {ERR_REASON(SSL_R_ENCRYPTED_LENGTH_TOO_LONG),
402      "encrypted length too long"},
403     {ERR_REASON(SSL_R_ERROR_GENERATING_TMP_RSA_KEY),
404      "error generating tmp rsa key"},
405     {ERR_REASON(SSL_R_ERROR_IN_RECEIVED_CIPHER_LIST),
406      "error in received cipher list"},
407     {ERR_REASON(SSL_R_EXCESSIVE_MESSAGE_SIZE), "excessive message size"},
408     {ERR_REASON(SSL_R_EXTRA_DATA_IN_MESSAGE), "extra data in message"},
409     {ERR_REASON(SSL_R_GOT_A_FIN_BEFORE_A_CCS), "got a fin before a ccs"},
410     {ERR_REASON(SSL_R_HTTPS_PROXY_REQUEST), "https proxy request"},
411     {ERR_REASON(SSL_R_HTTP_REQUEST), "http request"},
412     {ERR_REASON(SSL_R_ILLEGAL_PADDING), "illegal padding"},
413     {ERR_REASON(SSL_R_INAPPROPRIATE_FALLBACK), "inappropriate fallback"},
414     {ERR_REASON(SSL_R_INVALID_CHALLENGE_LENGTH), "invalid challenge length"},
415     {ERR_REASON(SSL_R_INVALID_COMMAND), "invalid command"},
416     {ERR_REASON(SSL_R_INVALID_PURPOSE), "invalid purpose"},
417     {ERR_REASON(SSL_R_INVALID_STATUS_RESPONSE), "invalid status response"},
418     {ERR_REASON(SSL_R_INVALID_TICKET_KEYS_LENGTH),
419      "invalid ticket keys length"},
420     {ERR_REASON(SSL_R_INVALID_TRUST), "invalid trust"},
421     {ERR_REASON(SSL_R_KEY_ARG_TOO_LONG), "key arg too long"},
422     {ERR_REASON(SSL_R_KRB5), "krb5"},
423     {ERR_REASON(SSL_R_KRB5_C_CC_PRINC), "krb5 client cc principal (no tkt?)"},
424     {ERR_REASON(SSL_R_KRB5_C_GET_CRED), "krb5 client get cred"},
425     {ERR_REASON(SSL_R_KRB5_C_INIT), "krb5 client init"},
426     {ERR_REASON(SSL_R_KRB5_C_MK_REQ), "krb5 client mk_req (expired tkt?)"},
427     {ERR_REASON(SSL_R_KRB5_S_BAD_TICKET), "krb5 server bad ticket"},
428     {ERR_REASON(SSL_R_KRB5_S_INIT), "krb5 server init"},
429     {ERR_REASON(SSL_R_KRB5_S_RD_REQ), "krb5 server rd_req (keytab perms?)"},
430     {ERR_REASON(SSL_R_KRB5_S_TKT_EXPIRED), "krb5 server tkt expired"},
431     {ERR_REASON(SSL_R_KRB5_S_TKT_NYV), "krb5 server tkt not yet valid"},
432     {ERR_REASON(SSL_R_KRB5_S_TKT_SKEW), "krb5 server tkt skew"},
433     {ERR_REASON(SSL_R_LENGTH_MISMATCH), "length mismatch"},
434     {ERR_REASON(SSL_R_LENGTH_TOO_SHORT), "length too short"},
435     {ERR_REASON(SSL_R_LIBRARY_BUG), "library bug"},
436     {ERR_REASON(SSL_R_LIBRARY_HAS_NO_CIPHERS), "library has no ciphers"},
437     {ERR_REASON(SSL_R_MESSAGE_TOO_LONG), "message too long"},
438     {ERR_REASON(SSL_R_MISSING_DH_DSA_CERT), "missing dh dsa cert"},
439     {ERR_REASON(SSL_R_MISSING_DH_KEY), "missing dh key"},
440     {ERR_REASON(SSL_R_MISSING_DH_RSA_CERT), "missing dh rsa cert"},
441     {ERR_REASON(SSL_R_MISSING_DSA_SIGNING_CERT), "missing dsa signing cert"},
442     {ERR_REASON(SSL_R_MISSING_EXPORT_TMP_DH_KEY),
443      "missing export tmp dh key"},
444     {ERR_REASON(SSL_R_MISSING_EXPORT_TMP_RSA_KEY),
445      "missing export tmp rsa key"},
446     {ERR_REASON(SSL_R_MISSING_RSA_CERTIFICATE), "missing rsa certificate"},
447     {ERR_REASON(SSL_R_MISSING_RSA_ENCRYPTING_CERT),
448      "missing rsa encrypting cert"},
449     {ERR_REASON(SSL_R_MISSING_RSA_SIGNING_CERT), "missing rsa signing cert"},
450     {ERR_REASON(SSL_R_MISSING_TMP_DH_KEY), "missing tmp dh key"},
451     {ERR_REASON(SSL_R_MISSING_TMP_ECDH_KEY), "missing tmp ecdh key"},
452     {ERR_REASON(SSL_R_MISSING_TMP_RSA_KEY), "missing tmp rsa key"},
453     {ERR_REASON(SSL_R_MISSING_TMP_RSA_PKEY), "missing tmp rsa pkey"},
454     {ERR_REASON(SSL_R_MISSING_VERIFY_MESSAGE), "missing verify message"},
455     {ERR_REASON(SSL_R_MULTIPLE_SGC_RESTARTS), "multiple sgc restarts"},
456     {ERR_REASON(SSL_R_NON_SSLV2_INITIAL_PACKET), "non sslv2 initial packet"},
457     {ERR_REASON(SSL_R_NO_CERTIFICATES_RETURNED), "no certificates returned"},
458     {ERR_REASON(SSL_R_NO_CERTIFICATE_ASSIGNED), "no certificate assigned"},
459     {ERR_REASON(SSL_R_NO_CERTIFICATE_RETURNED), "no certificate returned"},
460     {ERR_REASON(SSL_R_NO_CERTIFICATE_SET), "no certificate set"},
461     {ERR_REASON(SSL_R_NO_CERTIFICATE_SPECIFIED), "no certificate specified"},
462     {ERR_REASON(SSL_R_NO_CIPHERS_AVAILABLE), "no ciphers available"},
463     {ERR_REASON(SSL_R_NO_CIPHERS_PASSED), "no ciphers passed"},
464     {ERR_REASON(SSL_R_NO_CIPHERS_SPECIFIED), "no ciphers specified"},
465     {ERR_REASON(SSL_R_NO_CIPHER_LIST), "no cipher list"},
466     {ERR_REASON(SSL_R_NO_CIPHER_MATCH), "no cipher match"},
467     {ERR_REASON(SSL_R_NO_CLIENT_CERT_METHOD), "no client cert method"},
468     {ERR_REASON(SSL_R_NO_CLIENT_CERT_RECEIVED), "no client cert received"},
469     {ERR_REASON(SSL_R_NO_COMPRESSION_SPECIFIED), "no compression specified"},
470     {ERR_REASON(SSL_R_NO_METHOD_SPECIFIED), "no method specified"},
471     {ERR_REASON(SSL_R_NO_PRIVATEKEY), "no privatekey"},
472     {ERR_REASON(SSL_R_NO_PRIVATE_KEY_ASSIGNED), "no private key assigned"},
473     {ERR_REASON(SSL_R_NO_PROTOCOLS_AVAILABLE), "no protocols available"},
474     {ERR_REASON(SSL_R_NO_PUBLICKEY), "no publickey"},
475     {ERR_REASON(SSL_R_NO_RENEGOTIATION), "no renegotiation"},
476     {ERR_REASON(SSL_R_NO_SHARED_CIPHER), "no shared cipher"},
477     {ERR_REASON(SSL_R_NO_VERIFY_CALLBACK), "no verify callback"},
478     {ERR_REASON(SSL_R_NULL_SSL_CTX), "null ssl ctx"},
479     {ERR_REASON(SSL_R_NULL_SSL_METHOD_PASSED), "null ssl method passed"},
480     {ERR_REASON(SSL_R_OLD_SESSION_CIPHER_NOT_RETURNED),
481      "old session cipher not returned"},
482     {ERR_REASON(SSL_R_ONLY_TLS_ALLOWED_IN_FIPS_MODE),
483      "only tls allowed in fips mode"},
484     {ERR_REASON(SSL_R_PACKET_LENGTH_TOO_LONG), "packet length too long"},
485     {ERR_REASON(SSL_R_PARSE_TLSEXT), "parse tlsext"},
486     {ERR_REASON(SSL_R_PATH_TOO_LONG), "path too long"},
487     {ERR_REASON(SSL_R_PEER_DID_NOT_RETURN_A_CERTIFICATE),
488      "peer did not return a certificate"},
489     {ERR_REASON(SSL_R_PEER_ERROR), "peer error"},
490     {ERR_REASON(SSL_R_PEER_ERROR_CERTIFICATE), "peer error certificate"},
491     {ERR_REASON(SSL_R_PEER_ERROR_NO_CERTIFICATE),
492      "peer error no certificate"},
493     {ERR_REASON(SSL_R_PEER_ERROR_NO_CIPHER), "peer error no cipher"},
494     {ERR_REASON(SSL_R_PEER_ERROR_UNSUPPORTED_CERTIFICATE_TYPE),
495      "peer error unsupported certificate type"},
496     {ERR_REASON(SSL_R_PRE_MAC_LENGTH_TOO_LONG), "pre mac length too long"},
497     {ERR_REASON(SSL_R_PROBLEMS_MAPPING_CIPHER_FUNCTIONS),
498      "problems mapping cipher functions"},
499     {ERR_REASON(SSL_R_PROTOCOL_IS_SHUTDOWN), "protocol is shutdown"},
500     {ERR_REASON(SSL_R_PUBLIC_KEY_ENCRYPT_ERROR), "public key encrypt error"},
501     {ERR_REASON(SSL_R_PUBLIC_KEY_IS_NOT_RSA), "public key is not rsa"},
502     {ERR_REASON(SSL_R_PUBLIC_KEY_NOT_RSA), "public key not rsa"},
503     {ERR_REASON(SSL_R_READ_BIO_NOT_SET), "read bio not set"},
504     {ERR_REASON(SSL_R_READ_TIMEOUT_EXPIRED), "read timeout expired"},
505     {ERR_REASON(SSL_R_READ_WRONG_PACKET_TYPE), "read wrong packet type"},
506     {ERR_REASON(SSL_R_RECORD_LENGTH_MISMATCH), "record length mismatch"},
507     {ERR_REASON(SSL_R_RECORD_TOO_LARGE), "record too large"},
508     {ERR_REASON(SSL_R_RECORD_TOO_SMALL), "record too small"},
509     {ERR_REASON(SSL_R_RENEGOTIATE_EXT_TOO_LONG), "renegotiate ext too long"},
510     {ERR_REASON(SSL_R_RENEGOTIATION_ENCODING_ERR),
511      "renegotiation encoding err"},
512     {ERR_REASON(SSL_R_RENEGOTIATION_MISMATCH), "renegotiation mismatch"},
513     {ERR_REASON(SSL_R_REQUIRED_CIPHER_MISSING), "required cipher missing"},
514     {ERR_REASON(SSL_R_REUSE_CERT_LENGTH_NOT_ZERO),
515      "reuse cert length not zero"},
516     {ERR_REASON(SSL_R_REUSE_CERT_TYPE_NOT_ZERO), "reuse cert type not zero"},
517     {ERR_REASON(SSL_R_REUSE_CIPHER_LIST_NOT_ZERO),
518      "reuse cipher list not zero"},
519     {ERR_REASON(SSL_R_SCSV_RECEIVED_WHEN_RENEGOTIATING),
520      "scsv received when renegotiating"},
521     {ERR_REASON(SSL_R_SERVERHELLO_TLSEXT), "serverhello tlsext"},
522     {ERR_REASON(SSL_R_SESSION_ID_CONTEXT_UNINITIALIZED),
523      "session id context uninitialized"},
524     {ERR_REASON(SSL_R_SHORT_READ), "short read"},
525     {ERR_REASON(SSL_R_SIGNATURE_FOR_NON_SIGNING_CERTIFICATE),
526      "signature for non signing certificate"},
527     {ERR_REASON(SSL_R_SSL23_DOING_SESSION_ID_REUSE),
528      "ssl23 doing session id reuse"},
529     {ERR_REASON(SSL_R_SSL2_CONNECTION_ID_TOO_LONG),
530      "ssl2 connection id too long"},
531     {ERR_REASON(SSL_R_SSL3_EXT_INVALID_SERVERNAME),
532      "ssl3 ext invalid servername"},
533     {ERR_REASON(SSL_R_SSL3_EXT_INVALID_SERVERNAME_TYPE),
534      "ssl3 ext invalid servername type"},
535     {ERR_REASON(SSL_R_SSL3_SESSION_ID_TOO_LONG), "ssl3 session id too long"},
536     {ERR_REASON(SSL_R_SSL3_SESSION_ID_TOO_SHORT),
537      "ssl3 session id too short"},
538     {ERR_REASON(SSL_R_SSLV3_ALERT_BAD_CERTIFICATE),
539      "sslv3 alert bad certificate"},
540     {ERR_REASON(SSL_R_SSLV3_ALERT_BAD_RECORD_MAC),
541      "sslv3 alert bad record mac"},
542     {ERR_REASON(SSL_R_SSLV3_ALERT_CERTIFICATE_EXPIRED),
543      "sslv3 alert certificate expired"},
544     {ERR_REASON(SSL_R_SSLV3_ALERT_CERTIFICATE_REVOKED),
545      "sslv3 alert certificate revoked"},
546     {ERR_REASON(SSL_R_SSLV3_ALERT_CERTIFICATE_UNKNOWN),
547      "sslv3 alert certificate unknown"},
548     {ERR_REASON(SSL_R_SSLV3_ALERT_DECOMPRESSION_FAILURE),
549      "sslv3 alert decompression failure"},
550     {ERR_REASON(SSL_R_SSLV3_ALERT_HANDSHAKE_FAILURE),
551      "sslv3 alert handshake failure"},
552     {ERR_REASON(SSL_R_SSLV3_ALERT_ILLEGAL_PARAMETER),
553      "sslv3 alert illegal parameter"},
554     {ERR_REASON(SSL_R_SSLV3_ALERT_NO_CERTIFICATE),
555      "sslv3 alert no certificate"},
556     {ERR_REASON(SSL_R_SSLV3_ALERT_UNEXPECTED_MESSAGE),
557      "sslv3 alert unexpected message"},
558     {ERR_REASON(SSL_R_SSLV3_ALERT_UNSUPPORTED_CERTIFICATE),
559      "sslv3 alert unsupported certificate"},
560     {ERR_REASON(SSL_R_SSL_CTX_HAS_NO_DEFAULT_SSL_VERSION),
561      "ssl ctx has no default ssl version"},
562     {ERR_REASON(SSL_R_SSL_HANDSHAKE_FAILURE), "ssl handshake failure"},
563     {ERR_REASON(SSL_R_SSL_LIBRARY_HAS_NO_CIPHERS),
564      "ssl library has no ciphers"},
565     {ERR_REASON(SSL_R_SSL_SESSION_ID_CALLBACK_FAILED),
566      "ssl session id callback failed"},
567     {ERR_REASON(SSL_R_SSL_SESSION_ID_CONFLICT), "ssl session id conflict"},
568     {ERR_REASON(SSL_R_SSL_SESSION_ID_CONTEXT_TOO_LONG),
569      "ssl session id context too long"},
570     {ERR_REASON(SSL_R_SSL_SESSION_ID_HAS_BAD_LENGTH),
571      "ssl session id has bad length"},
572     {ERR_REASON(SSL_R_SSL_SESSION_ID_IS_DIFFERENT),
573      "ssl session id is different"},
574     {ERR_REASON(SSL_R_TLSV1_ALERT_ACCESS_DENIED),
575      "tlsv1 alert access denied"},
576     {ERR_REASON(SSL_R_TLSV1_ALERT_DECODE_ERROR), "tlsv1 alert decode error"},
577     {ERR_REASON(SSL_R_TLSV1_ALERT_DECRYPTION_FAILED),
578      "tlsv1 alert decryption failed"},
579     {ERR_REASON(SSL_R_TLSV1_ALERT_DECRYPT_ERROR),
580      "tlsv1 alert decrypt error"},
581     {ERR_REASON(SSL_R_TLSV1_ALERT_EXPORT_RESTRICTION),
582      "tlsv1 alert export restriction"},
583     {ERR_REASON(SSL_R_TLSV1_ALERT_INAPPROPRIATE_FALLBACK),
584      "tlsv1 alert inappropriate fallback"},
585     {ERR_REASON(SSL_R_TLSV1_ALERT_INSUFFICIENT_SECURITY),
586      "tlsv1 alert insufficient security"},
587     {ERR_REASON(SSL_R_TLSV1_ALERT_INTERNAL_ERROR),
588      "tlsv1 alert internal error"},
589     {ERR_REASON(SSL_R_TLSV1_ALERT_NO_RENEGOTIATION),
590      "tlsv1 alert no renegotiation"},
591     {ERR_REASON(SSL_R_TLSV1_ALERT_PROTOCOL_VERSION),
592      "tlsv1 alert protocol version"},
593     {ERR_REASON(SSL_R_TLSV1_ALERT_RECORD_OVERFLOW),
594      "tlsv1 alert record overflow"},
595     {ERR_REASON(SSL_R_TLSV1_ALERT_UNKNOWN_CA), "tlsv1 alert unknown ca"},
596     {ERR_REASON(SSL_R_TLSV1_ALERT_USER_CANCELLED),
597      "tlsv1 alert user cancelled"},
598     {ERR_REASON(SSL_R_TLSV1_BAD_CERTIFICATE_HASH_VALUE),
599      "tlsv1 bad certificate hash value"},
600     {ERR_REASON(SSL_R_TLSV1_BAD_CERTIFICATE_STATUS_RESPONSE),
601      "tlsv1 bad certificate status response"},
602     {ERR_REASON(SSL_R_TLSV1_CERTIFICATE_UNOBTAINABLE),
603      "tlsv1 certificate unobtainable"},
604     {ERR_REASON(SSL_R_TLSV1_UNRECOGNIZED_NAME), "tlsv1 unrecognized name"},
605     {ERR_REASON(SSL_R_TLSV1_UNSUPPORTED_EXTENSION),
606      "tlsv1 unsupported extension"},
607     {ERR_REASON(SSL_R_TLS_CLIENT_CERT_REQ_WITH_ANON_CIPHER),
608      "tls client cert req with anon cipher"},
609     {ERR_REASON(SSL_R_TLS_INVALID_ECPOINTFORMAT_LIST),
610      "tls invalid ecpointformat list"},
611     {ERR_REASON(SSL_R_TLS_PEER_DID_NOT_RESPOND_WITH_CERTIFICATE_LIST),
612      "tls peer did not respond with certificate list"},
613     {ERR_REASON(SSL_R_TLS_RSA_ENCRYPTED_VALUE_LENGTH_IS_WRONG),
614      "tls rsa encrypted value length is wrong"},
615     {ERR_REASON(SSL_R_TRIED_TO_USE_UNSUPPORTED_CIPHER),
616      "tried to use unsupported cipher"},
617     {ERR_REASON(SSL_R_UNABLE_TO_DECODE_DH_CERTS),
618      "unable to decode dh certs"},
619     {ERR_REASON(SSL_R_UNABLE_TO_DECODE_ECDH_CERTS),
620      "unable to decode ecdh certs"},
621     {ERR_REASON(SSL_R_UNABLE_TO_EXTRACT_PUBLIC_KEY),
622      "unable to extract public key"},
623     {ERR_REASON(SSL_R_UNABLE_TO_FIND_DH_PARAMETERS),
624      "unable to find dh parameters"},
625     {ERR_REASON(SSL_R_UNABLE_TO_FIND_ECDH_PARAMETERS),
626      "unable to find ecdh parameters"},
627     {ERR_REASON(SSL_R_UNABLE_TO_FIND_PUBLIC_KEY_PARAMETERS),
628      "unable to find public key parameters"},
629     {ERR_REASON(SSL_R_UNABLE_TO_FIND_SSL_METHOD),
630      "unable to find ssl method"},
631     {ERR_REASON(SSL_R_UNABLE_TO_LOAD_SSL2_MD5_ROUTINES),
632      "unable to load ssl2 md5 routines"},
633     {ERR_REASON(SSL_R_UNABLE_TO_LOAD_SSL3_MD5_ROUTINES),
634      "unable to load ssl3 md5 routines"},
635     {ERR_REASON(SSL_R_UNABLE_TO_LOAD_SSL3_SHA1_ROUTINES),
636      "unable to load ssl3 sha1 routines"},
637     {ERR_REASON(SSL_R_UNEXPECTED_MESSAGE), "unexpected message"},
638     {ERR_REASON(SSL_R_UNEXPECTED_RECORD), "unexpected record"},
639     {ERR_REASON(SSL_R_UNINITIALIZED), "uninitialized"},
640     {ERR_REASON(SSL_R_UNKNOWN_ALERT_TYPE), "unknown alert type"},
641     {ERR_REASON(SSL_R_UNKNOWN_CERTIFICATE_TYPE), "unknown certificate type"},
642     {ERR_REASON(SSL_R_UNKNOWN_CIPHER_RETURNED), "unknown cipher returned"},
643     {ERR_REASON(SSL_R_UNKNOWN_CIPHER_TYPE), "unknown cipher type"},
644     {ERR_REASON(SSL_R_UNKNOWN_KEY_EXCHANGE_TYPE),
645      "unknown key exchange type"},
646     {ERR_REASON(SSL_R_UNKNOWN_PKEY_TYPE), "unknown pkey type"},
647     {ERR_REASON(SSL_R_UNKNOWN_PROTOCOL), "unknown protocol"},
648     {ERR_REASON(SSL_R_UNKNOWN_REMOTE_ERROR_TYPE),
649      "unknown remote error type"},
650     {ERR_REASON(SSL_R_UNKNOWN_SSL_VERSION), "unknown ssl version"},
651     {ERR_REASON(SSL_R_UNKNOWN_STATE), "unknown state"},
652     {ERR_REASON(SSL_R_UNSAFE_LEGACY_RENEGOTIATION_DISABLED),
653      "unsafe legacy renegotiation disabled"},
654     {ERR_REASON(SSL_R_UNSUPPORTED_CIPHER), "unsupported cipher"},
655     {ERR_REASON(SSL_R_UNSUPPORTED_COMPRESSION_ALGORITHM),
656      "unsupported compression algorithm"},
657     {ERR_REASON(SSL_R_UNSUPPORTED_ELLIPTIC_CURVE),
658      "unsupported elliptic curve"},
659     {ERR_REASON(SSL_R_UNSUPPORTED_PROTOCOL), "unsupported protocol"},
660     {ERR_REASON(SSL_R_UNSUPPORTED_SSL_VERSION), "unsupported ssl version"},
661     {ERR_REASON(SSL_R_UNSUPPORTED_STATUS_TYPE), "unsupported status type"},
662     {ERR_REASON(SSL_R_WRITE_BIO_NOT_SET), "write bio not set"},
663     {ERR_REASON(SSL_R_WRONG_CIPHER_RETURNED), "wrong cipher returned"},
664     {ERR_REASON(SSL_R_WRONG_MESSAGE_TYPE), "wrong message type"},
665     {ERR_REASON(SSL_R_WRONG_NUMBER_OF_KEY_BITS), "wrong number of key bits"},
666     {ERR_REASON(SSL_R_WRONG_SIGNATURE_LENGTH), "wrong signature length"},
667     {ERR_REASON(SSL_R_WRONG_SIGNATURE_SIZE), "wrong signature size"},
668     {ERR_REASON(SSL_R_WRONG_SSL_VERSION), "wrong ssl version"},
669     {ERR_REASON(SSL_R_WRONG_VERSION_NUMBER), "wrong version number"},
670     {ERR_REASON(SSL_R_X509_LIB), "x509 lib"},
671     {ERR_REASON(SSL_R_X509_VERIFICATION_SETUP_PROBLEMS),
672      "x509 verification setup problems"},
673     {0, NULL}
674 };
675
676 #endif
677
678 void ERR_load_SSL_strings(void)
679 {
680 #ifndef OPENSSL_NO_ERR
681
682     if (ERR_func_error_string(SSL_str_functs[0].error) == NULL) {
683         ERR_load_strings(0, SSL_str_functs);
684         ERR_load_strings(0, SSL_str_reasons);
685     }
686 #endif
687 }