feat(esp-tls): Update esp_tls CMakeLists.txt and Kconfig for wolfssl (IDFGH-16560) #17683
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Description
This is the sixth in a series of pull requests to improve wolfSSL integration with the ESP-IDF as proposed in #16145
As there are multiple changes there, it was suggested that I break the update into smaller pieces.
This PR updates the requirements for wolfSSL in the
components/esp-tls/CMakeLists.txt
andcomponents/esp-tls/Kconfig
Related
See:
Testing
The fully-implemented update is on my wolfssl-dev branch. I've been testing with this esp_http_client_example.
See also the published wolfSSL Managed component that already includes the Certificate Bundle feature introduced in wolfSSL/wolfssl#7936
Checklist
Before submitting a Pull Request, please ensure the following:
Note
Improves wolfSSL selection/linkage in
esp-tls
CMake and updates Kconfig (selectsTLS_STACK_WOLFSSL
, addsESP_WOLFSSL_SMALL_CERT_VERIFY
, and build diagnostics).components/esp-tls/CMakeLists.txt
):wolfssl_esp_tls_lib
, includeesp_tls_wolfssl.c
, and add${wolfssl_esp_tls_lib}
toREQUIRES
.esp-wolfssl
locations; linkCOMPONENT_LIB
to detectedwolfssl
.-DWOLFSSL_ESPIDF
and-DWOLFSSL_USER_SETTINGS
.message(STATUS ...)
diagnostics for configuration paths and decisions.components/esp-tls/Kconfig
):select TLS_STACK_WOLFSSL
(replacesdepends on
).ESP_WOLFSSL_SMALL_CERT_VERIFY
(defaulty
) for reduced chain verification.Written by Cursor Bugbot for commit 75df0a7. This will update automatically on new commits. Configure here.