ProtoCore v1.0.16
Deterministic, zero-heap network stack for embedded targets
Loading...
Searching...
No Matches
DtlsRecordKeys Struct Reference

One direction's record-protection keys for one epoch (RFC 9147 §4). More...

#include <dtls_record.h>

Public Attributes

DtlsCipher cipher
 negotiated AEAD (phase 1: AES-128-GCM)
 
uint16_t epoch
 this epoch number; its low 2 bits appear in the unified header
 
uint8_t gcm [PROTOCORE_AES128GCM_BORROW]
 
uint8_t iv [12]
 AEAD write IV (per-record nonce = iv XOR sequence_number)
 

Detailed Description

One direction's record-protection keys for one epoch (RFC 9147 §4).

Derived from a TLS 1.3 traffic secret; holds the AEAD key + write IV plus the separate sequence-number-encryption key. One instance per (epoch, direction).

Definition at line 83 of file dtls_record.h.

Member Data Documentation

◆ cipher

DtlsCipher DtlsRecordKeys::cipher

negotiated AEAD (phase 1: AES-128-GCM)

Definition at line 85 of file dtls_record.h.

◆ epoch

uint16_t DtlsRecordKeys::epoch

this epoch number; its low 2 bits appear in the unified header

Definition at line 86 of file dtls_record.h.

◆ gcm

uint8_t DtlsRecordKeys::gcm[PROTOCORE_AES128GCM_BORROW]

this epoch's AEAD borrow. Carries both keyed contexts: the record AEAD and the sequence-number-protection block. Replaces the raw keys, so neither stays resident.

Definition at line 87 of file dtls_record.h.

◆ iv

uint8_t DtlsRecordKeys::iv[12]

AEAD write IV (per-record nonce = iv XOR sequence_number)

Definition at line 91 of file dtls_record.h.


The documentation for this struct was generated from the following file: