Skip to main content
Pre-release

This release is a pre-release and may not be stable for production use.

tlslite-ng is a pure python implementation of SSLv3.0, TLS 1.0, TLS 1.1, TLS 1.2 and TLS 1.3 protocols.

It can use pycrypto, m2crypto and gmp for acceleration of cryptographic operations but is not dependant upon them.

Functionality implemented include:
  • all above mentioned protocols, including support for client certificates (RFC 6101, RFC 2246, RFC 4346, RFC 5246, RFC 8446 - not complete)

  • RSA, RSA-PSS and ECDSA certificates

  • RC4, 3DES-CBC, AES-CBC, AES-GCM, AES-CCM, AES-CCM_8 and ChaCha20 ciphers (RFC 5246, RFC 6347, RFC 4492, RFC 5288, RFC 5289, RFC 7539, RFC 7905, RFC 6655, RFC 7251)

  • MD5, SHA1, SHA256 and SHA384 HMACs as well as AEAD mode of operation with GCM or Poly1305 authenticator

  • RSA, DHE_RSA, ECDHE_RSA, ECDHE_ECDSA key exchange

  • full set of signature hashes (md5, sha1, sha224, sha256, sha384, sha512, rsa_pss_rsae_sha256, rsa_pss_rsae_sha384 and rsa_pss_rsae_sha512) for ServerKeyExchange and CertfificateVerify

  • secp256r1, secp384r1, secp521r1, secp256k1, secp224r1 and secp192r1 curves for ECDHE key exchange (support for last two depends on the version of ecdsa library used)

  • x25519 and x448 curves for ECDHE key exchage (RFC 7748. RFC 4492bis)

  • anonymous DHE key exchange

  • anonymous ECDH key exchange

  • PSK and PSK-DH key exchange in TLS 1.3

  • session ticket based resumption in TLS 1.3

  • post-handshake key authentication in TLS 1.3

  • NULL encryption ciphersuites

  • FALLBACK_SCSV (RFC 7507)

  • encrypt-then-MAC mode of operation for CBC ciphersuites (RFC 7366)

  • TACK certificate pinning

  • SRP_SHA_RSA and SRP_SHA ciphersuites (RFC 5054)

  • Extended Master Secret calculation for TLS connections (RFC 7627)

  • padding extension (RFC 7685)

  • Keying material exporter (RFC 5705)

  • Next Protocol Negotiation

  • Application-Layer Protocol Negotiation Extension (RFC 7301)

  • FFDHE prime/group negotiation (RFC 7919)

  • Heartbeat Extension (RFC 6520)

  • Record Size Limit (RFC 8449)

tlslite-ng aims to be a drop-in replacement for tlslite while providing more comprehensive set of features and more secure defautls.

Release files for tlslite-ng 0.8.0-alpha33

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for tlslite-ng 0.8.0-alpha33
File Size Uploaded
tlslite-ng-0.8.0-alpha33.tar.gz 574.4 kB Details

Release files / tlslite-ng-0.8.0-alpha33.tar.gz

Download URL tlslite-ng-0.8.0-alpha33.tar.gz
Size 574.4 kB
Tags Source
SHA-256 checksum
How to use checksums
c58943a3017c4aa9040cd1a21f7d589ee3a583e31d49d4a6c299c81a4f492dc6
BLAKE2b-256 checksum
How to use checksums
fe49bb48de3041919bd19f20e1d67478fb13054547467b467121e2f62ee76444
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/2.0.0 pkginfo/1.5.0.1 requests/2.22.0 setuptools/41.4.0 requests-toolbelt/0.9.1 tqdm/4.38.0 CPython/3.7.5

Release history Release notifications | RSS feed

0.8.2

2 release files

0.8.1

2 release files

0.8.0

2 release files

This release

0.8.0-alpha33 This release

1 release file

0.7.6

1 release file

0.7.5

1 release file

0.7.4

1 release file

0.7.3

1 release file

0.7.2

1 release file

0.7.1

1 release file

0.7.0

1 release file

0.6.0

1 release file

0.5.2

1 release file

0.5.1

1 release file

0.5.0

1 release file

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page