Example applications using the wolfSSL lightweight SSL/TLS library
 
 
 
 
 
 
Go to file
Aidan Garske 7d9ed2c72e
Merge pull request #631 from padelsbach/freebsd-version-tolerance
Address nightly failure in BSD kernel workflow
2026-09-17 15:11:52 -07:00
.github Address nightly failure in BSD kernel workflow 2026-09-17 10:32:07 -07:00
Arduino Parameterize Arduino compile-all-examples.sh for matrix use 2025-11-15 15:48:10 -08:00
CSharp Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
ESP32 Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
RPi-Pico F-1305 F-1306 F-1714 F-2111 F-2905 F-2906 F-2909 F-3897 F-4125 F-4608 F-6288: fix NULL-deref, fd-leak, unaligned-access, and buffer-overflow bugs across CAN, PKCS7, embedded, and PEM-printing examples 2026-07-14 13:33:25 -06:00
RT1060 Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
Renesas/cs+/RH850 F-1723 F-1724 F-1725 F-2908 F-2910 F-2911 F-3461 F-3683 F-3684 F-3891 F-4605 F-4606 F-4607: fix CAAM, Renesas, SGX, and UEFI examples issues 2026-07-13 17:29:28 -06:00
SE050 Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
SGX_Linux Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
SGX_Windows update copyright to 2020 2020-01-03 16:08:42 -08:00
STM32 Add STM32 README.md 2024-12-05 15:28:20 +00:00
TOPPERS F-1296 F-2112 F-2893 F-2900 F-3899 F-4121 F-4127: Fix error handling in TLS, DTLS, and protocol examples 2026-07-14 15:06:41 -06:00
X9.146 Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
android Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
btle Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
caam/seco F-6720: use a full 16-byte IV in CAAM/SECO AES-CBC examples 2026-07-15 10:04:02 -06:00
can-bus Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
ccb_vaultic F-1715 F-2114 F-3224 F-3690 F-4120 F-4123 F-4124 F-5614 F-5615: replace hardcoded/UAF-prone secrets and keys with RNG-generated values, zeroize key material before free, and flag non-constant-time secret comparisons 2026-07-14 13:33:25 -06:00
certfields Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
certgen Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
certmanager Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
certs Update certs to fix failing nightly 2026-09-14 14:25:28 -07:00
certstore Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
certvfy Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
cmake adjust md file for newlines 2022-12-29 15:21:48 -08:00
cra-kit cra-kit: address Atwood re-review blockers on #574 2026-07-02 17:50:01 +03:00
crypto new injection mechanic in CI/CD and github review fixes 2026-08-07 19:14:40 -06:00
custom-io-callbacks Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
dtls Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
dtls-mcast F-1715 F-2114 F-3224 F-3690 F-4120 F-4123 F-4124 F-5614 F-5615: replace hardcoded/UAF-prone secrets and keys with RNG-generated values, zeroize key material before free, and flag non-constant-time secret comparisons 2026-07-14 13:33:25 -06:00
ebpf Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
ecc Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
embedded EFR32xG25 Secure Element example for wolfSSL PR 11267: wolfCrypt test, benchmark and TLS 1.3 2026-09-10 16:11:49 -07:00
freertos update copyright to 2020 2020-01-03 16:08:42 -08:00
fullstack/freertos-wolfip-wolfssl-https Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
hash Add BLAKE2b/BLAKE2s examples 2026-07-29 13:38:44 -04:00
hsm wolfHSM: add DTLS client example that uses HSM as cryptographic back end (#555) 2026-07-22 08:37:34 -06:00
http-message-signatures http-message-signatures: address Skoll review feedback 2026-04-23 12:37:58 +03:00
java Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
kernel/bsdkm bsdkm: example cleanup. 2025-11-21 16:00:20 -06:00
lwip F-2115 F-3693 F-3890 F-3895 F-5608 F-5609 F-5613 F-6290 F-6537 F-6538: fix RPi-Pico, TOPPERS, PSK, lwIP, Mynewt, uTasker, wolfIP, and STSafe examples issues 2026-07-13 17:29:28 -06:00
maxq10xx Makefile does not build wolfssl-lwip-client. 2024-10-04 12:31:21 -04:00
meta-wolfssl-linux-fips Example project for using a FIPs Ready linux image on qemu and on RPI 5 with an initramfs kernel module loading, and ported projects to utilize wolfCrypt throughout the image example 2026-04-20 14:29:03 -06:00
mynewt Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
ocsp Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
picotcp Clean up wolfSSL path variable name 2024-04-04 13:28:23 -04:00
pk new injection mechanic in CI/CD and github review fixes 2026-08-07 19:14:40 -06:00
pkcs7 Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
pkcs11 Merge pull request #618 from dgarske/optee_pkcs11 2026-08-21 13:30:46 +01:00
pq new injection mechanic in CI/CD and github review fixes 2026-08-07 19:14:40 -06:00
psa Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
psk F-1296 F-2112 F-2893 F-2900 F-3899 F-4121 F-4127: Fix error handling in TLS, DTLS, and protocol examples 2026-07-14 15:06:41 -06:00
puf puf: fix transmit-only UART HAL and add an interactive INTERACTIVE=1 demo mode 2026-09-10 08:49:58 -07:00
riot-os-posix-lwip Improved README.md after reviewer's comments 2021-04-01 09:08:42 +02:00
rtl8735b Peer review fixes 2026-07-30 14:55:38 -07:00
scripts Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
signature Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
staticmemory Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
stsafe F-2115 F-3693 F-3890 F-3895 F-5608 F-5609 F-5613 F-6290 F-6537 F-6538: fix RPi-Pico, TOPPERS, PSK, lwIP, Mynewt, uTasker, wolfIP, and STSafe examples issues 2026-07-13 17:29:28 -06:00
tirtos_ccs_examples F-1305 F-1306 F-1714 F-2111 F-2905 F-2906 F-2909 F-3897 F-4125 F-4608 F-6288: fix NULL-deref, fd-leak, unaligned-access, and buffer-overflow bugs across CAN, PKCS7, embedded, and PEM-printing examples 2026-07-14 13:33:25 -06:00
tls Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
tls-options F-1296 F-2112 F-2893 F-2900 F-3899 F-4121 F-4127: Fix error handling in TLS, DTLS, and protocol examples 2026-07-14 15:06:41 -06:00
tpm Clean up wolfSSL path variable name 2024-04-04 13:28:23 -04:00
uefi-library Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
uefi-static Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
utasker F-2115 F-3693 F-3890 F-3895 F-5608 F-5609 F-5613 F-6290 F-6537 F-6538: fix RPi-Pico, TOPPERS, PSK, lwIP, Mynewt, uTasker, wolfIP, and STSafe examples issues 2026-07-13 17:29:28 -06:00
x509_acert Add CI that builds and runs every example (#598) 2026-07-23 10:07:06 -06:00
.gitignore new injection mechanic in CI/CD and github review fixes 2026-08-07 19:14:40 -06:00
.gitmodules Alter ISO-TP example to use wolfSSL native 2022-01-06 11:40:36 +00:00
README.md wolfHSM: add DTLS client example that uses HSM as cryptographic back end (#555) 2026-07-22 08:37:34 -06:00

README.md

wolfSSL Example Applications

This repository contains example applications, written in C, which demonstrate how to use the wolfSSL lightweight SSL/TLS library for secure communication.

Each directory represents a unique topic (SSL/TLS, DTLS, PSK, etc.) and contains a Makefile as well as a simple tutorial on the given topic.

Current Examples

android (Android Studio and NDK Examples)

This directory contains examples that demonstrate using wolfSSL, wolfSSL JNI/JSSE, and wolfCrypt JNI/JCE on the Android platform. Examples use either Android Studio with Gradle or the Android NDK standalone toolchain.

Please see the android/README.md for further usage and details.


BTLE

This directory contains examples for securing a Bluetooth Low Energy Link (BTLE). BTLE packets are small and throughput is low, so these examples demonstrate a way to exchange data securely without BTLE pairing.

Please see the btle/README.md for further usage and details.


can-bus

This directory contains an example echo server/client using wolfSSL over CAN bus with an ISO-TP transport layer. It can be used with a virtual CAN bus in Linux.

Please see the can-bus/README.md for further usage and details.


certfields (X509 field extraction)

This directory contains an example that demonstrate using wolfSSL to read a DER encoded certificate and extract the public key and subject name information.

Please see the certfields/README.md for further usage and details.


certgen (wolfSSL Certificate Generation)

This directory contains examples that demonstrate using wolfSSL to generate and sign certificates.

Please see the certgen/README.md for further usage and details.


certmanager (wolfSSL CertManager)

This directory contains examples that demonstrate using CertManager (Certificate Manager) functionality.

Please see the certmanager/README.md for further usage and details.


crypto (wolfCrypt Examples)

This directory contains examples that demonstrate using the wolfCrypt functionality to encrypt files with different algorithms (aes, 3des, etc.)

Please see the crypto/README.md for further usage and details.


CSharp (C# Wrapper Examples)

This directory contains examples that demonstrate using the C# wrapper.

Please see the CSharp/README.md for further usage and details.


custom-io-callbacks (wolfSSL Custom IO Callbacks)

This directory contains examples that demonstrate how the custom IO callbacks can be used to 4 facilitate a TLS connection using any medium.

Please see the custom-io-callbacks/README.md for further usage and details.


DTLS (Datagram TLS)

This directory contains examples of using DTLS, with client and server examples demonstrating UDP, DTLS, non-blocking, session resumption, and multi-threading.

When compiling wolfSSL for use with these examples, wolfSSL will need to be compiled with DTLS support:

cd wolfssl-[version]
./configure --enable-dtls

Examples in this directory may be compiled using:

cd ./dtls
make

Please see the dtls/README.md for further usage and details.


ecc (Elliptic Curve Cryptography)

This directory contains examples that demonstrate the various use-cases of wolfcrypt ECC.

Please see the ecc/README.md for further usage and details.


ESP32 (Espressif)

This directory contains examples for the Espressif ESP32 chips.

Please see the ESP32/README.md for further usage and details.


embedded (Embedded Systems)

This directory contains examples that demonstrate TLS client/servers communicating through buffers and using sockets.

Please see the embedded/README.md for further usage and details.


hash (wolfCrypt Hash Examples)

This directory contains examples that demonstrate how to hash an input file using wolfCrypt.

Please see the hash/README.md for further usage and details.


java (wolfJSSE Examples)

This directory contains examples that demonstrate HTTPS URL use with wolfJSSE and example keystores.

Please see the java/README.md for further usage and details.


mynewt (Apache Mynewt Examples)

This directory contains examples that demonstrate using wolfSSL with Apache Mynewt OS.

Please see the mynewt/README.md for further usage and details.


picotcp (picoTCP Examples)

This directory contains a TLS server created by using picoTCP via wolfSSL custom callbacks.

Please see the picotcp/README.md for further usage and details.


picotcp (picoTCP Examples)

This directory contains a TLS server created by using picoTCP via wolfSSL custom callbacks.

Please see the picotcp/README.md for further usage and details.


pk (Public-Key)

This directory contains examples that demonstrate various wolfCrypt public-key functionality (storing and loading keys after generation, extracting public key from private key, etc.).

Please see the pk/README.md for further usage and details.


pkcs11 (PKCS #11)

This directory contains examples of using wolfSSL's PKCS #11 feature and a TLS server example using a PKCS 11 based key.

Please see the pkcs11/README.md for further usage and details.


pkcs7 (PKCS #7)

This directory contains example applications that demonstrate usage of the wolfCrypt PKCS#7/CMS API, included in the [wolfSSL embedded SSL/TLS library].

It includes examples of several different content types (EncryptedData, SignedData, EnvelopedData, CompressedData), and demonstrates both signing/encrypting and verifying/decrypting operations.

Please see the pkcs7/README.md for further usage and details.


PUF (SRAM Physically Unclonable Function)

This directory contains a bare-metal example demonstrating wolfCrypt's SRAM PUF support. It derives device-unique cryptographic keys from the power-on state of SRAM memory using a BCH(127,64,t=10) fuzzy extractor with HKDF key derivation. Tested on NUCLEO-H563ZI (Cortex-M33).

Please see the puf/README.md for further usage and details.


PSK (Pre-Shared Keys)

This directory contains examples of using PSK, with client and server examples demonstrating TCP/IP, PSK, non-blocking, session resumption, and multi-threading.

When compiling wolfSSL for use with these examples, wolfSSL will need to be compiled with PSK support:

cd wolfssl-[version]
./configure --enable-psk

Examples in this directory may be compiled using:

cd ./psk
make

Please see the psk/README.md for further usage and details.


riot-os-posix-lwip (RIOT-OS)

This directory contains examples that demonstrate how to use wolfSSL TLS sockets over RIOT-OS POSIX sockets.

Please see the riot-os-posix-lwip/README.md for further usage and details.


RT1060 (i.MX RT1060-EVK)

This directory contains a wolfCrypt benchmark test application for i.MX RT1060-EVK.

Please see the RT1060/README.md for further usage and details.


NXP SE050

This directory contains example applications for NXP's SE050. The examples have been tested on a Raspberry Pi with SE050 EdgeLock.

Please see the SE050/README.md for further details.


SGX_Linux (Linux Enclave)

This directory contains an example application, written in C, which demonstrates how to link the wolfSSL lightweight SSL/TLS library with a simple Enclave using Linux. The example has been tested with Ubuntu 16.04.

Please see the SGX_Linux/README.md for further usage and details.


SGX_Windows (Windows Enclave)

This directory contains an example application, written in C++, which demonstrates how to link the wolfSSL lightweight SSL/TLS library with a simple Enclave using Windows.

Please see the SGX_Windows/README.md for further usage and details.


signature (Sign and Verify Examples)

This directory contains examples that demonstrate using wolfSSL to sign and verify binary data (supports RSA and ECC for signing and MD2, MD4, MD5, SHA, SHA224, SHA256, SHA384 and SHA512).

Please see the signature/README.md for further usage and details.


tirtos_ccs_examples (TI-RTOS)

This directory contains a client/server examples that demonstrates using wolfSSL in a TI-RTOS ecosystem.

Please see the tirtos_ccs_examples/README.md for further usage and details.


TLS

This directory contains examples of using SSL/TLS, with client and server examples demonstrating TCP/IP, SSL/TLS, non-blocking, session resumption, and multi-threading.

Examples in this directory may be compiled using:

cd ./tls
make

Please see the tls/README.md for further usage and details.


utasker (uTasker wolfSSL Example Tasks)

This directory contains example uTasker client and server tasks that demonstrate using wolfSSL with the uTasker stack. These have been tested on the uTasker Simulator.

Please see the utasker/README.md for further usage and details.


hsm (wolfHSM Examples)

This directory contains examples demonstrating wolfSSL integration with wolfHSM, a portable Hardware Security Module framework.

Please see the hsm/README.md for further details.


uefi-static (wolfCrypt UEFI application Example)

This directory contains an example UEFI application that runs wolfcrypt test.

Please see the uefi-static/README.md for further usage and details.


http-message-signatures (RFC 9421 HTTP Message Signatures)

This directory contains examples that demonstrate RFC 9421 HTTP Message Signatures using wolfCrypt Ed25519, including a signing example, client/server demo, and test vectors for RFC 9421 Appendix B.2.6.

Please see the http-message-signatures/README.md for further usage and details.


cra-kit (wolfSSL CRA Kit)

This directory is not a TLS/crypto tutorial. It demonstrates how to generate wolfSSL component SBOMs (SPDX + CycloneDX), nest them in a fictional product SBOM, and understand optional bomsh build provenance (Linux host only) for EU Cyber Resilience Act-style software transparency.

Includes a CRA compliance shortlist, a who provides what cheat sheet, full glossary, AI playbook, sample customer-side auditor packet (fictional Acme Connect Gateway), manufacturer-side filings (what wolfSSL Inc. itself ships under CRA — classification, conformity assessment, declaration of conformity template, EU AR status, etc.), and helper scripts (validate.sh runs without building wolfSSL, with optional cyclonedx-cli / pyspdxtools schema validation). Regenerating component SBOMs requires a wolfSSL tree with SBOM support — see cra-kit/README.md.

Please see the cra-kit/README.md for further usage and details.


uefi-library (wolfCrypt UEFI boot module and test app)

This directory contains a UEFI wolfCrypt protocol driver (libwolfcrypt.efi) and a companion test application (test.efi). Examples run on qemu.

Please see the uefi-library/README.md for further usage and details.


Notes

When necessary, examples will use the example certificates and keys located in the ./certs directory. These certificates and keys have been pulled in from the main wolfSSL repository.

To generate your own cert text, see the DER to C script.


Support

Please contact wolfSSL at support@wolfssl.com with any questions, bug fixes, or suggested feature additions.