|
ProtoCore v1.0.16
Deterministic, zero-heap network stack for embedded targets
|
One direction's record-protection keys for one epoch (RFC 9147 §4). More...
#include <dtls_record.h>
Public Attributes | |
| DtlsCipher | cipher |
| negotiated AEAD (phase 1: AES-128-GCM) | |
| uint16_t | epoch |
| this epoch number; its low 2 bits appear in the unified header | |
| uint8_t | gcm [PROTOCORE_AES128GCM_BORROW] |
| uint8_t | iv [12] |
| AEAD write IV (per-record nonce = iv XOR sequence_number) | |
One direction's record-protection keys for one epoch (RFC 9147 §4).
Derived from a TLS 1.3 traffic secret; holds the AEAD key + write IV plus the separate sequence-number-encryption key. One instance per (epoch, direction).
Definition at line 83 of file dtls_record.h.
| DtlsCipher DtlsRecordKeys::cipher |
negotiated AEAD (phase 1: AES-128-GCM)
Definition at line 85 of file dtls_record.h.
| uint16_t DtlsRecordKeys::epoch |
this epoch number; its low 2 bits appear in the unified header
Definition at line 86 of file dtls_record.h.
| uint8_t DtlsRecordKeys::gcm[PROTOCORE_AES128GCM_BORROW] |
this epoch's AEAD borrow. Carries both keyed contexts: the record AEAD and the sequence-number-protection block. Replaces the raw keys, so neither stays resident.
Definition at line 87 of file dtls_record.h.
| uint8_t DtlsRecordKeys::iv[12] |
AEAD write IV (per-record nonce = iv XOR sequence_number)
Definition at line 91 of file dtls_record.h.