IPC@CHIP® RTOS – API Documentation

Header image

Main page


Release Notes – SC2x @CHIP-RTOS V2.03

The tickets are grouped by component and then sorted by type and ticket number.


RTOS - IPsec/IKE/Crypt
Ticket: #2376
Component: RTOS - IPsec/IKE/Crypt
Type: defect
Summary: RTOS memory corruption when SHA512/SHA384 hash methods are used in certificates
Description: When PKI certficates use the SHA512 or SHA384 signature methods, the hash buffer allocation is too small and neighboring memory is corrupted. (Typically seeing EXT RS-232 port management structure corrupted, which resulted in invalid opcode fault when EXT port is used by Fossil API.)
Solution: Allocate sufficient memory for SHA512 and SHA384 hash bookkeeping.



Ticket: #2378
Component: RTOS - IPsec/IKE/Crypt
Type: defect
Summary: SHA384 or SHA512 usage for IPsec HMAC causes memory corruption
Description: If either SHA384 or SHA512 is used for the IP Security message authentication HMAC, this leads to TCP/IP heap corruption.
Solution: Correct HMAC context memory allocation within the IP Security section of RTOS-x86. Also several less serious IKE issues related SHA384 and SHA256 have been fixed so that these hash methods work for IKE.




RTOS - Web server
Ticket: #2381
Component: RTOS - Web server
Type: defect
Summary: User response headers no longer working from CGI page
Description: User response headers given in the fResponseHeadersPtr field, are no longer transmitted by the web server. This bug was introduced with ticket #2364 on RTOS V2.02.
Solution: Fixed.



Ticket: #2384
Component: RTOS - Web server
Type: enhancement
Summary: Change the TLS cipher suites that the web server offers
Description: Should change the TLS cipher suites that the web server offers. Remove cipher suites that are regarded as insecure, like RC4.
Solution: Implemented.




RTOS - FTP server
Ticket: #2374
Component: RTOS - FTP server
Type: enhancement
Summary: SYST command should return "UNIX Type: L8"
Description: To increase the compatibility with FTP clients, the FTP server should return the string "UNIX Type: L8" on the FTP SYST command. Currently, the server only return "UNIX".
Solution: Implemented.




RTOS - TCP/IP
Ticket: #2380
Component: RTOS - TCP/IP
Type: enhancement
Summary: Call IP configuration callback also on default gateway change
Description: Should call IP configuration callback also on default gateway changes.
Solution: Implemented.



Ticket: #2382
Component: RTOS - TCP/IP
Type: enhancement
Summary: Add option to skip certificate validation
Description: Should add an option to skip the certificate validation during the TLS handshake.
Solution: Extended the SSL_SessionOpt() API to allow for this certificate validation skipping.



Ticket: #2383
Component: RTOS - TCP/IP
Type: enhancement
Summary: Accept DNS replies if neither "authoritative answer" nor "recursion available" flag is set
Description: The RTOS only accepts replies on DNS requests only if either the "authoritative answer" or the "recursion available" flag are set in the response header. However, some servers are able to provide a valid response without one of these two flags being set. The RTOS should accept answers form these servers.
Solution: Implemented








Top of page | Main page

Copyright © Beck IPC GmbH