Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
84 commits
Select commit Hold shift + click to select a range
db62587
test: fix dtls default CA test identity check
jasnell Aug 23, 2026
9ee785f
dtls: drain the OpenSSL error queue
jasnell Aug 23, 2026
2dc80e6
dtls: preserve record boundaries on the outbound BIO
jasnell Aug 23, 2026
9d89f3b
dtls: drop empty datagrams before the accept path
jasnell Aug 23, 2026
3794ca3
dtls: preserve datagram boundaries on the inbound BIO
jasnell Aug 23, 2026
c227a76
dtls: add session.authorized and session.authorizationError
jasnell Aug 23, 2026
2e521df
dtls: correct the requestCert/rejectUnauthorized matrix
jasnell Aug 23, 2026
432189c
dtls: only extract key material when something is listening
jasnell Aug 23, 2026
7eca2d4
dtls: screen datagrams before allocating a handshake for them
jasnell Aug 23, 2026
8cddf13
dtls: bound the server session table
jasnell Aug 23, 2026
0854124
dtls: size the outbound datagram buffers to the datagram
jasnell Aug 23, 2026
69020bb
dtls: validate the exportKeyingMaterial length
jasnell Aug 23, 2026
a7aab34
src: pair SocketAddress::Hash with a matching equality
jasnell Aug 23, 2026
6bbfc3c
dtls: derive the cookie from a canonical peer address
jasnell Aug 23, 2026
ef33876
dtls: stop retaining server sessions, and scope them to the server
jasnell Aug 23, 2026
c7eca0d
dtls: validate ALPN protocol lists
jasnell Aug 23, 2026
9087686
dtls: fail the handshake when no ALPN protocol is shared
jasnell Aug 23, 2026
f7ed428
dtls: report why send() could not send
jasnell Aug 23, 2026
6986901
dtls: settle session.opened when the session is torn down
jasnell Aug 23, 2026
886d9a4
dtls: bind the local socket in the peer's address family
jasnell Aug 23, 2026
29ae124
dtls: do not resend a datagram that was already sent
jasnell Aug 23, 2026
4d402e8
dtls: describe the OpenSSL options accurately
jasnell Aug 23, 2026
621c90e
dtls: only copy incoming data when something is listening
jasnell Aug 23, 2026
3f59c87
dtls: check the BIO allocation in GetPeerCertificate
jasnell Aug 23, 2026
c1d2a9b
doc: record two deliberate dtls limits
jasnell Aug 23, 2026
0cdbb44
doc: describe the dtls cookie design and the internal-only members
jasnell Aug 23, 2026
a08faca
dtls: stop aborting on failed value creation in the accessors
jasnell Aug 23, 2026
ace03e8
dtls: stop aborting on failed value creation in the callback paths
jasnell Aug 23, 2026
14ef787
dtls: drop truncated datagrams instead of ignoring the recv flags
jasnell Aug 23, 2026
4d3ed85
dtls: report why loading a certificate or key failed
jasnell Aug 23, 2026
3c37737
dtls: support a passphrase for encrypted private keys
jasnell Aug 23, 2026
ae7a0c7
dtls: add session.peerX509Certificate
jasnell Aug 23, 2026
ac71f0c
dtls: add createSecureContext and the secureContext option
jasnell Aug 23, 2026
0f92af3
dtls: add server-side SNI
jasnell Aug 23, 2026
e5bd1a6
dtls: add session resumption
jasnell Aug 23, 2026
57e21fa
dtls: add pre-shared key support
jasnell Aug 23, 2026
749b162
dtls: add handshake timeout
jasnell Aug 23, 2026
65cd083
dtls: emit new sessions before driving the handshake
jasnell Aug 23, 2026
2eec87f
dtls: accept a callback for SNI
jasnell Aug 23, 2026
e2a749c
doc: lift the DTLS topic sections to their own level
jasnell Aug 23, 2026
54252cb
dtls: stop exposing session and endpoint state
jasnell Aug 23, 2026
66b60a8
dtls: do not report verification results before the handshake
jasnell Aug 23, 2026
5e65b4e
dtls: validate the options that reach a CHECK in the binding
jasnell Aug 23, 2026
6ffb8fd
dtls: require servername to be a string
jasnell Aug 23, 2026
b04523d
dtls: report exceptions thrown by the keylog callback
jasnell Aug 23, 2026
9ad57e4
dtls: report exceptions thrown while reading a callback's result
jasnell Aug 23, 2026
1147d41
dtls: register the two missing external references
jasnell Aug 23, 2026
6677bc9
dtls: keep pre-shared keys working on a server that serves SNI
jasnell Aug 23, 2026
5b42688
dtls: hold SNI contexts weakly
jasnell Aug 23, 2026
b2eb4f6
dtls: clear a callback when one is not supplied
jasnell Aug 23, 2026
487a392
dtls: check that a value is a context before unwrapping it
jasnell Aug 23, 2026
69b2529
dtls: make sni a property of the secure context
jasnell Aug 23, 2026
1fe78e6
dtls: settle a session's promises when its endpoint is destroyed
jasnell Aug 23, 2026
878cd28
src: do not change the address map QUIC uses
jasnell Aug 23, 2026
bdc0e14
dtls: remove a callback that cannot be invoked
jasnell Aug 23, 2026
b1aa4f5
dtls: state the session constructor's endpoint invariant once
jasnell Aug 23, 2026
29ac8bd
dtls: report a record that could not be sent
jasnell Aug 23, 2026
15ebc31
dtls: read the error this operation queued, not the oldest one present
jasnell Aug 23, 2026
de182fb
dtls: make ownsEndpoint internal
jasnell Aug 23, 2026
9b3e5b0
doc: fix dtls examples that throw, and a garbled option entry
jasnell Aug 23, 2026
4f5dba0
dtls: validate isServer and rejectUnauthorized as booleans
jasnell Aug 23, 2026
ef4b12b
dtls: mark stats stale when their source goes away
jasnell Aug 23, 2026
e808cdf
dtls: report bind and listen failures with the operating system's code
jasnell Aug 23, 2026
c5a43cc
doc: correct three dtls claims and file two sections under the right …
jasnell Aug 23, 2026
18daa3c
doc: document the dtls members that were public but unlisted
jasnell Aug 23, 2026
a658b0d
dtls: check the return values that were being discarded
jasnell Aug 23, 2026
e79e4b4
dtls: say why a psk callback's result was unusable
jasnell Aug 23, 2026
7fc1ff2
dtls: accept any view over bytes in send()
jasnell Aug 23, 2026
8d79c82
dtls: refuse server-only options on a client context
jasnell Aug 23, 2026
9192b81
dtls: use a type error for a session that is not a Buffer
jasnell Aug 23, 2026
96ad53a
dtls: explain why the binding's closed-session guard stays
jasnell Aug 23, 2026
61111f4
dtls: bind dual stack by default, and make ipv6Only an option
jasnell Aug 23, 2026
03edf8b
dtls: add reusePort and the UDP buffer and TTL options
jasnell Aug 23, 2026
e650b5a
dtls: list the new socket options in the listen() and connect() jsdoc
jasnell Aug 23, 2026
3d0e0c0
doc: remove mention of C++ internals from dtls.md
jasnell Aug 23, 2026
67b43e2
test: fix the dtls permission test for the symbol-keyed bind()
jasnell Aug 23, 2026
01f4a04
doc: restore a dropped word in the endpoint.stats description
jasnell Aug 23, 2026
3e21d21
src: replace NewFromUtf8 with ToV8Value
jasnell Aug 23, 2026
318f3fe
src: fixup c++ linting after multiple commits
jasnell Aug 23, 2026
007aabf
dtls: take the psk error message as a string_view
jasnell Aug 23, 2026
d4c143f
test: clean up some dtls tests
jasnell Aug 25, 2026
199edc3
src: fixup dtls alpn error
jasnell Sep 5, 2026
def6921
doc: mark dtls 1.1 Active Development
jasnell Sep 5, 2026
22bb59d
lib: shorten extraneous comments in dtls.js
jasnell Sep 5, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
791 changes: 724 additions & 67 deletions doc/api/dtls.md

Large diffs are not rendered by default.

4 changes: 4 additions & 0 deletions lib/dtls.js
Original file line number Diff line number Diff line change
Expand Up @@ -7,14 +7,18 @@ emitExperimentalWarning('dtls');

const {
connect,
createSecureContext,
listen,
DTLSEndpoint,
DTLSSecureContext,
DTLSSession,
} = require('internal/dtls/dtls');

module.exports = {
connect,
createSecureContext,
listen,
DTLSEndpoint,
DTLSSecureContext,
DTLSSession,
};
Loading
Loading