1.25 TCP/IP WolfSSL TCP Server
This configuration demonstrates creating a simple Internet Web server, that operates with clear text (TCP Port 80), and with encrypted text (TCP Port 443). If IPv6 is enabled than the demonstration also serves both types of connections on IPv6. The Web server only serves one page with the text 'Nothing Here' to all Web clients.
This demonstration uses the NET_PRES layer for encrypted communication through an external service provider for TLS support.
TCP/IP WolfSSL TCP Server MCC Configuration
The following Project Graph diagram shows the Harmony components included in the WolfSSL TCP Server application demonstration.
MCC is launched by selecting Tools > Embedded > MPLAB® Code Configurator from the MPLAB X IDE and after opening the project, TCP/IP demo project is ready to be configured and regenerated.
TCP/IP Root Layer Project Graph
The root layer project shows that UART2 peripheral is selected to do read and write operation for TCP/IP commands.
This is the basic configuration with SYS_CONSOLE, SYS_DEBUG and SYS_COMMAND modules. These modules are required for TCP/IP command execution.
NOTE - The above diagram contains FreeRTOS component and that is required for RTOS application. For bare-metal(non-RTOS) FreeRTOS component shouldn't be selected.
TCP sockets calculate the ISN using the wolfSSL crypto library.
NOTE - The Hardware cryptography is enabled in the wolfCrypt Library's configuration in MCC.
TCP/IP Configuration
PIC32MZ EF Starter Kit
TCP/IP Required Application
TCP/IP demo use these application module components for this demo.
DHCP Client module to discover the IPv4 address from the nearest DHCP Server.
DNS Client provides DNS resolution capabilities to the stack.
SNTP Simple Network Time Protocol updates its internal time periodically using a pool of public global time servers.
TCP/IP Data Link Layer
Internal ethernet driver(ethmac) is enabled with the external LAN8740 PHY driver library for the starter kit. The MIIM Driver supports asynchronous read/write and scan operations for accessing the external PHY registers and notification when MIIM operations have completed.
TCP/IP WolfSSL TCP Server Hardware Configuration
This section describes the hardware configuration for PIC32MZ EF Starter Kit and one can be used for the respective application demonstration.
This section describes the PIC32MZ EF Starter Kit default hardware configuration which uses the on-board debugger and programmer for this application demonstration.
Refer to the PIC32MZ EF Starter Kit User Guide for the programming/debugging options supported & setting up the hardware.
Connect the mini USB cable from the computer to the USB DEBUG connector on the PIC32MZ EF Starter Kit
Connect the mini USB cable from the computer to the USB-UART connector on the PIC32MZ EF Starter Kit
Establish a connection between the router/switch with the PIC32MZ EF Starter Kit through the RJ45 connector on PHY daughter board
TCP/IP WolfSSL TCP Server Running Application
This table list the name and location of the MPLAB X IDE project folder for the demonstration.
Project Name | Target Device | Target Development Board | Description |
---|---|---|---|
pic32mz_ef_sk.X | PIC32MZ2048EFM144 | PIC32MZ EF Starter Kit | Demonstrates the WolfSSL TCP Server on development board with PIC32MZ2048EFM144 device and LAN8740 PHY daughter board. This implementation is based on bare-metal(non-RTOS). |
pic32mz_ef_sk_freertos.X | PIC32MZ2048EFM144 | PIC32MZ EF Starter Kit | Demonstrates the WolfSSL TCP Server on development board with PIC32MZ2048EFM144 device and LAN8740 PHY daughter board. This implementation is based on FreeRTOS. |
Running Demonstration Steps
Build and download the demonstration project on the target board.
If the board has a UART connection:
A virtual COM port will be detected on the computer, when the USB cable is connected to USB-UART connector.
Open a standard terminal application on the computer (like Hyper-terminal or Tera Term) and configure the virtual COM port.
Set the serial baud rate to 115200 baud in the terminal application.
See that the initialization prints on the serial port terminal.
When the DHCP client is enabled in the demonstration, wait for the DHCP server to assign an IP address for the development board. This will be printed on the serial port terminal.
Alternatively: Use the Announce service or ping to get the IP address of the board.
Run tcpip_discoverer.jar to discover the IPv4 and IPv6 address for the board.
Execution :
As soon as a valid IP address is assigned through the DHCP to the demonstration, it is ready to accept a TCP/IP connection on non-secured port 80 or secured port 443.
Send a TCP packet to the IP address of the hardware board using port 443 or 80 from any TCP Client application running on the computer.
The TCP Server demonstration running on the hardware board will echo back everything it receives along the connection.
For TCP Server test, the TCP Client application is required to run on the computer (SocketTest, Packet Sender etc).
a. Clear text connection (Port 80):
Send a TCP packet to the IP address of the hardware board, port 80, from any TCP Client application running on the computer.
The TCP Server running on the hardware board will receive the message and prints on console ‘Received a clear text connection’. See the following screenshot.
The expected output -
b. Encrypted connection (Port 443):
For encrypted mode, send a packet to port 443 in secure mode from any TCP Client application running on the computer.
The TCP Server running on the hardware board will receive the message and prints on console ‘Received a clear ssl connection’. See the following screenshot.
The expected output -