tree 796850e2aef1587e17ef17cf40ab1f43128e0e31
parent 494dd7a6b4eed3c4fd35ad07895346e45ee90da6
author Hanno Becker <hanno.becker@arm.com> 1549469911 +0000
committer Hanno Becker <hanno.becker@arm.com> 1551191889 +0000

Add field for peer's raw public key to TLS handshake param structure

When removing the (session-local) copy of the peer's CRT chain, we must
keep a handshake-local copy of the peer's public key, as (naturally) every
key exchange will make use of that public key at some point to verify that
the peer actually owns the corresponding private key (e.g., verify signatures
from ServerKeyExchange or CertificateVerify, or encrypt a PMS in a RSA-based
exchange, or extract static (EC)DH parameters).

This commit adds a PK context field `peer_pubkey` to the handshake parameter
structure `mbedtls_handshake_params_init()` and adapts the init and free
functions accordingly. It does not yet make actual use of the new field.
