pub struct SslOptions(/* private fields */);Expand description
Options controlling the behavior of an SslContext.
Implementations§
Source§impl SslOptions
impl SslOptions
Sourcepub const DONT_INSERT_EMPTY_FRAGMENTS: SslOptions
pub const DONT_INSERT_EMPTY_FRAGMENTS: SslOptions
Disables a countermeasure against an SSLv3/TLSv1.0 vulnerability affecting CBC ciphers.
Sourcepub const ALL: SslOptions
pub const ALL: SslOptions
A “reasonable default” set of options which enables compatibility flags.
Sourcepub const NO_QUERY_MTU: SslOptions
pub const NO_QUERY_MTU: SslOptions
Do not query the MTU.
Only affects DTLS connections.
Sourcepub const COOKIE_EXCHANGE: SslOptions
pub const COOKIE_EXCHANGE: SslOptions
Enables Cookie Exchange as described in RFC 4347 Section 4.2.1.
Only affects DTLS connections.
Sourcepub const NO_TICKET: SslOptions
pub const NO_TICKET: SslOptions
Disables the use of session tickets for session resumption.
Sourcepub const NO_SESSION_RESUMPTION_ON_RENEGOTIATION: SslOptions
pub const NO_SESSION_RESUMPTION_ON_RENEGOTIATION: SslOptions
Always start a new session when performing a renegotiation on the server side.
Sourcepub const NO_COMPRESSION: SslOptions
pub const NO_COMPRESSION: SslOptions
Disables the use of TLS compression.
Sourcepub const ALLOW_UNSAFE_LEGACY_RENEGOTIATION: SslOptions
pub const ALLOW_UNSAFE_LEGACY_RENEGOTIATION: SslOptions
Allow legacy insecure renegotiation with servers or clients that do not support secure renegotiation.
Sourcepub const SINGLE_ECDH_USE: SslOptions
pub const SINGLE_ECDH_USE: SslOptions
Creates a new key for each session when using ECDHE.
This is always enabled in OpenSSL 1.1.0.
Sourcepub const SINGLE_DH_USE: SslOptions
pub const SINGLE_DH_USE: SslOptions
Creates a new key for each session when using DHE.
This is always enabled in OpenSSL 1.1.0.
Sourcepub const CIPHER_SERVER_PREFERENCE: SslOptions
pub const CIPHER_SERVER_PREFERENCE: SslOptions
Use the server’s preferences rather than the client’s when selecting a cipher.
This has no effect on the client side.
Sourcepub const TLS_ROLLBACK_BUG: SslOptions
pub const TLS_ROLLBACK_BUG: SslOptions
Disables version rollback attach detection.
Sourcepub const NO_SSLV2: SslOptions
pub const NO_SSLV2: SslOptions
Disables the use of SSLv2.
Sourcepub const NO_SSLV3: SslOptions
pub const NO_SSLV3: SslOptions
Disables the use of SSLv3.
Sourcepub const NO_TLSV1: SslOptions
pub const NO_TLSV1: SslOptions
Disables the use of TLSv1.0.
Sourcepub const NO_TLSV1_1: SslOptions
pub const NO_TLSV1_1: SslOptions
Disables the use of TLSv1.1.
Sourcepub const NO_TLSV1_2: SslOptions
pub const NO_TLSV1_2: SslOptions
Disables the use of TLSv1.2.
Sourcepub const NO_TLSV1_3: SslOptions
pub const NO_TLSV1_3: SslOptions
Disables the use of TLSv1.3.
Requires OpenSSL 1.1.1 or LibreSSL 3.4.0 or newer.
Sourcepub const NO_DTLSV1: SslOptions
pub const NO_DTLSV1: SslOptions
Disables the use of DTLSv1.0
Requires OpenSSL 1.0.2 or LibreSSL 3.3.2 or newer.
Sourcepub const NO_DTLSV1_2: SslOptions
pub const NO_DTLSV1_2: SslOptions
Disables the use of DTLSv1.2.
Requires OpenSSL 1.0.2 or LibreSSL 3.3.2 or newer.
Sourcepub const NO_SSL_MASK: SslOptions
pub const NO_SSL_MASK: SslOptions
Disables the use of all (D)TLS protocol versions.
This can be used as a mask when whitelisting protocol versions.
Requires OpenSSL 1.0.2 or newer.
§Examples
Only support TLSv1.2:
use openssl::ssl::SslOptions;
let options = SslOptions::NO_SSL_MASK & !SslOptions::NO_TLSV1_2;Sourcepub const NO_RENEGOTIATION: SslOptions
pub const NO_RENEGOTIATION: SslOptions
Disallow all renegotiation in TLSv1.2 and earlier.
Requires OpenSSL 1.1.0h or newer.
Sourcepub const ENABLE_MIDDLEBOX_COMPAT: SslOptions
pub const ENABLE_MIDDLEBOX_COMPAT: SslOptions
Enable TLSv1.3 Compatibility mode.
Requires OpenSSL 1.1.1 or newer. This is on by default in 1.1.1, but a future version may have this disabled by default.
Sourcepub const PRIORITIZE_CHACHA: SslOptions
pub const PRIORITIZE_CHACHA: SslOptions
Prioritize ChaCha ciphers when preferred by clients.
Temporarily reprioritize ChaCha20-Poly1305 ciphers to the top of the server cipher list if a ChaCha20-Poly1305 cipher is at the top of the client cipher list. This helps those clients (e.g. mobile) use ChaCha20-Poly1305 if that cipher is anywhere in the server cipher list; but still allows other clients to use AES and other ciphers.
Requires enable SslOptions::CIPHER_SERVER_PREFERENCE.
Requires OpenSSL 1.1.1 or newer.
Source§impl SslOptions
impl SslOptions
Sourcepub const fn empty() -> SslOptions
pub const fn empty() -> SslOptions
Get a flags value with all bits unset.
Sourcepub const fn all() -> SslOptions
pub const fn all() -> SslOptions
Get a flags value with all known bits set.
Sourcepub const fn bits(&self) -> u64
pub const fn bits(&self) -> u64
Get the underlying bits value.
The returned value is exactly the bits set in this flags value.
Sourcepub const fn from_bits(bits: u64) -> Option<SslOptions>
pub const fn from_bits(bits: u64) -> Option<SslOptions>
Convert from a bits value.
This method will return None if any unknown bits are set.
Sourcepub const fn from_bits_truncate(bits: u64) -> SslOptions
pub const fn from_bits_truncate(bits: u64) -> SslOptions
Convert from a bits value, unsetting any unknown bits.
Sourcepub const fn from_bits_retain(bits: u64) -> SslOptions
pub const fn from_bits_retain(bits: u64) -> SslOptions
Convert from a bits value exactly.
Sourcepub fn from_name(name: &str) -> Option<SslOptions>
pub fn from_name(name: &str) -> Option<SslOptions>
Get a flags value with the bits of a flag with the given name set.
This method will return None if name is empty or doesn’t
correspond to any named flag.
Sourcepub const fn intersects(&self, other: SslOptions) -> bool
pub const fn intersects(&self, other: SslOptions) -> bool
Whether any set bits in a source flags value are also set in a target flags value.
Sourcepub const fn contains(&self, other: SslOptions) -> bool
pub const fn contains(&self, other: SslOptions) -> bool
Whether all set bits in a source flags value are also set in a target flags value.
Sourcepub fn insert(&mut self, other: SslOptions)
pub fn insert(&mut self, other: SslOptions)
The bitwise or (|) of the bits in two flags values.
Sourcepub fn remove(&mut self, other: SslOptions)
pub fn remove(&mut self, other: SslOptions)
The intersection of a source flags value with the complement of a target flags
value (&!).
This method is not equivalent to self & !other when other has unknown bits set.
remove won’t truncate other, but the ! operator will.
Sourcepub fn toggle(&mut self, other: SslOptions)
pub fn toggle(&mut self, other: SslOptions)
The bitwise exclusive-or (^) of the bits in two flags values.
Sourcepub fn set(&mut self, other: SslOptions, value: bool)
pub fn set(&mut self, other: SslOptions, value: bool)
Call insert when value is true or remove when value is false.
Sourcepub const fn intersection(self, other: SslOptions) -> SslOptions
pub const fn intersection(self, other: SslOptions) -> SslOptions
The bitwise and (&) of the bits in two flags values.
Sourcepub const fn union(self, other: SslOptions) -> SslOptions
pub const fn union(self, other: SslOptions) -> SslOptions
The bitwise or (|) of the bits in two flags values.
Sourcepub const fn difference(self, other: SslOptions) -> SslOptions
pub const fn difference(self, other: SslOptions) -> SslOptions
The intersection of a source flags value with the complement of a target flags
value (&!).
This method is not equivalent to self & !other when other has unknown bits set.
difference won’t truncate other, but the ! operator will.
Sourcepub const fn symmetric_difference(self, other: SslOptions) -> SslOptions
pub const fn symmetric_difference(self, other: SslOptions) -> SslOptions
The bitwise exclusive-or (^) of the bits in two flags values.
Sourcepub const fn complement(self) -> SslOptions
pub const fn complement(self) -> SslOptions
The bitwise negation (!) of the bits in a flags value, truncating the result.
Source§impl SslOptions
impl SslOptions
Sourcepub const fn iter(&self) -> Iter<SslOptions>
pub const fn iter(&self) -> Iter<SslOptions>
Yield a set of contained flags values.
Each yielded flags value will correspond to a defined named flag. Any unknown bits will be yielded together as a final flags value.
Sourcepub const fn iter_names(&self) -> IterNames<SslOptions>
pub const fn iter_names(&self) -> IterNames<SslOptions>
Yield a set of contained named flags values.
This method is like iter, except only yields bits in contained named flags.
Any unknown bits, or bits not corresponding to a contained flag will not be yielded.
Trait Implementations§
Source§impl Binary for SslOptions
impl Binary for SslOptions
Source§impl BitAnd for SslOptions
impl BitAnd for SslOptions
Source§fn bitand(self, other: SslOptions) -> SslOptions
fn bitand(self, other: SslOptions) -> SslOptions
The bitwise and (&) of the bits in two flags values.
Source§type Output = SslOptions
type Output = SslOptions
& operator.Source§impl BitAndAssign for SslOptions
impl BitAndAssign for SslOptions
Source§fn bitand_assign(&mut self, other: SslOptions)
fn bitand_assign(&mut self, other: SslOptions)
The bitwise and (&) of the bits in two flags values.
Source§impl BitOr for SslOptions
impl BitOr for SslOptions
Source§fn bitor(self, other: SslOptions) -> SslOptions
fn bitor(self, other: SslOptions) -> SslOptions
The bitwise or (|) of the bits in two flags values.
Source§type Output = SslOptions
type Output = SslOptions
| operator.Source§impl BitOrAssign for SslOptions
impl BitOrAssign for SslOptions
Source§fn bitor_assign(&mut self, other: SslOptions)
fn bitor_assign(&mut self, other: SslOptions)
The bitwise or (|) of the bits in two flags values.
Source§impl BitXor for SslOptions
impl BitXor for SslOptions
Source§fn bitxor(self, other: SslOptions) -> SslOptions
fn bitxor(self, other: SslOptions) -> SslOptions
The bitwise exclusive-or (^) of the bits in two flags values.
Source§type Output = SslOptions
type Output = SslOptions
^ operator.Source§impl BitXorAssign for SslOptions
impl BitXorAssign for SslOptions
Source§fn bitxor_assign(&mut self, other: SslOptions)
fn bitxor_assign(&mut self, other: SslOptions)
The bitwise exclusive-or (^) of the bits in two flags values.
Source§impl Clone for SslOptions
impl Clone for SslOptions
Source§fn clone(&self) -> SslOptions
fn clone(&self) -> SslOptions
1.0.0 · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source. Read moreSource§impl Debug for SslOptions
impl Debug for SslOptions
Source§impl Extend<SslOptions> for SslOptions
impl Extend<SslOptions> for SslOptions
Source§fn extend<T>(&mut self, iterator: T)where
T: IntoIterator<Item = SslOptions>,
fn extend<T>(&mut self, iterator: T)where
T: IntoIterator<Item = SslOptions>,
The bitwise or (|) of the bits in each flags value.
Source§fn extend_one(&mut self, item: A)
fn extend_one(&mut self, item: A)
extend_one)Source§fn extend_reserve(&mut self, additional: usize)
fn extend_reserve(&mut self, additional: usize)
extend_one)Source§impl Flags for SslOptions
impl Flags for SslOptions
Source§const FLAGS: &'static [Flag<SslOptions>]
const FLAGS: &'static [Flag<SslOptions>]
Source§fn from_bits_retain(bits: u64) -> SslOptions
fn from_bits_retain(bits: u64) -> SslOptions
Source§fn contains_unknown_bits(&self) -> bool
fn contains_unknown_bits(&self) -> bool
true if any unknown bits are set.Source§fn from_bits_truncate(bits: Self::Bits) -> Self
fn from_bits_truncate(bits: Self::Bits) -> Self
Source§fn from_name(name: &str) -> Option<Self>
fn from_name(name: &str) -> Option<Self>
Source§fn iter_names(&self) -> IterNames<Self>
fn iter_names(&self) -> IterNames<Self>
Source§fn intersects(&self, other: Self) -> boolwhere
Self: Sized,
fn intersects(&self, other: Self) -> boolwhere
Self: Sized,
Source§fn contains(&self, other: Self) -> boolwhere
Self: Sized,
fn contains(&self, other: Self) -> boolwhere
Self: Sized,
Source§fn insert(&mut self, other: Self)where
Self: Sized,
fn insert(&mut self, other: Self)where
Self: Sized,
|) of the bits in two flags values.Source§fn remove(&mut self, other: Self)where
Self: Sized,
fn remove(&mut self, other: Self)where
Self: Sized,
&!). Read moreSource§fn toggle(&mut self, other: Self)where
Self: Sized,
fn toggle(&mut self, other: Self)where
Self: Sized,
^) of the bits in two flags values.Source§fn intersection(self, other: Self) -> Self
fn intersection(self, other: Self) -> Self
&) of the bits in two flags values.Source§fn difference(self, other: Self) -> Self
fn difference(self, other: Self) -> Self
&!). Read moreSource§fn symmetric_difference(self, other: Self) -> Self
fn symmetric_difference(self, other: Self) -> Self
^) of the bits in two flags values.Source§fn complement(self) -> Self
fn complement(self) -> Self
!) of the bits in a flags value, truncating the result.Source§impl FromIterator<SslOptions> for SslOptions
impl FromIterator<SslOptions> for SslOptions
Source§fn from_iter<T>(iterator: T) -> SslOptionswhere
T: IntoIterator<Item = SslOptions>,
fn from_iter<T>(iterator: T) -> SslOptionswhere
T: IntoIterator<Item = SslOptions>,
The bitwise or (|) of the bits in each flags value.
Source§impl Hash for SslOptions
impl Hash for SslOptions
Source§impl IntoIterator for SslOptions
impl IntoIterator for SslOptions
Source§type Item = SslOptions
type Item = SslOptions
Source§type IntoIter = Iter<SslOptions>
type IntoIter = Iter<SslOptions>
Source§fn into_iter(self) -> <SslOptions as IntoIterator>::IntoIter
fn into_iter(self) -> <SslOptions as IntoIterator>::IntoIter
Source§impl LowerHex for SslOptions
impl LowerHex for SslOptions
Source§impl Not for SslOptions
impl Not for SslOptions
Source§fn not(self) -> SslOptions
fn not(self) -> SslOptions
The bitwise negation (!) of the bits in a flags value, truncating the result.
Source§type Output = SslOptions
type Output = SslOptions
! operator.Source§impl Octal for SslOptions
impl Octal for SslOptions
Source§impl Ord for SslOptions
impl Ord for SslOptions
Source§fn cmp(&self, other: &SslOptions) -> Ordering
fn cmp(&self, other: &SslOptions) -> Ordering
1.21.0 · Source§fn max(self, other: Self) -> Selfwhere
Self: Sized,
fn max(self, other: Self) -> Selfwhere
Self: Sized,
Source§impl PartialEq for SslOptions
impl PartialEq for SslOptions
Source§impl PartialOrd for SslOptions
impl PartialOrd for SslOptions
Source§impl Sub for SslOptions
impl Sub for SslOptions
Source§fn sub(self, other: SslOptions) -> SslOptions
fn sub(self, other: SslOptions) -> SslOptions
The intersection of a source flags value with the complement of a target flags value (&!).
This method is not equivalent to self & !other when other has unknown bits set.
difference won’t truncate other, but the ! operator will.
Source§type Output = SslOptions
type Output = SslOptions
- operator.Source§impl SubAssign for SslOptions
impl SubAssign for SslOptions
Source§fn sub_assign(&mut self, other: SslOptions)
fn sub_assign(&mut self, other: SslOptions)
The intersection of a source flags value with the complement of a target flags value (&!).
This method is not equivalent to self & !other when other has unknown bits set.
difference won’t truncate other, but the ! operator will.
Source§impl UpperHex for SslOptions
impl UpperHex for SslOptions
impl Copy for SslOptions
impl Eq for SslOptions
impl StructuralPartialEq for SslOptions
Auto Trait Implementations§
impl Freeze for SslOptions
impl RefUnwindSafe for SslOptions
impl Send for SslOptions
impl Sync for SslOptions
impl Unpin for SslOptions
impl UnwindSafe for SslOptions
Blanket Implementations§
Source§impl<T> ArchivePointee for T
impl<T> ArchivePointee for T
Source§type ArchivedMetadata = ()
type ArchivedMetadata = ()
Source§fn pointer_metadata(
_: &<T as ArchivePointee>::ArchivedMetadata,
) -> <T as Pointee>::Metadata
fn pointer_metadata( _: &<T as ArchivePointee>::ArchivedMetadata, ) -> <T as Pointee>::Metadata
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
Source§impl<Q, K> Comparable<K> for Q
impl<Q, K> Comparable<K> for Q
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§fn equivalent(&self, key: &K) -> bool
fn equivalent(&self, key: &K) -> bool
key and return true if they are equal.Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§fn equivalent(&self, key: &K) -> bool
fn equivalent(&self, key: &K) -> bool
key and return true if they are equal.Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
Source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§impl<T> LayoutRaw for T
impl<T> LayoutRaw for T
Source§fn layout_raw(_: <T as Pointee>::Metadata) -> Result<Layout, LayoutError>
fn layout_raw(_: <T as Pointee>::Metadata) -> Result<Layout, LayoutError>
Source§impl<T, N1, N2> Niching<NichedOption<T, N1>> for N2
impl<T, N1, N2> Niching<NichedOption<T, N1>> for N2
Source§unsafe fn is_niched(niched: *const NichedOption<T, N1>) -> bool
unsafe fn is_niched(niched: *const NichedOption<T, N1>) -> bool
Source§fn resolve_niched(out: Place<NichedOption<T, N1>>)
fn resolve_niched(out: Place<NichedOption<T, N1>>)
out indicating that a T is niched.