diff options
author | bcook <> | 2016-09-20 04:25:09 +0000 |
---|---|---|
committer | bcook <> | 2016-09-20 04:25:09 +0000 |
commit | 1dbcb54204a7b24fa96a79e4bd09dc80c94bc016 (patch) | |
tree | a06be3d99c665826951a3407061d026fe150285e /src/lib/libc/stdlib | |
parent | 9a8cde0f82c643d383a2c4619e7f8d2af1c0c172 (diff) | |
download | openbsd-1dbcb54204a7b24fa96a79e4bd09dc80c94bc016.tar.gz openbsd-1dbcb54204a7b24fa96a79e4bd09dc80c94bc016.tar.bz2 openbsd-1dbcb54204a7b24fa96a79e4bd09dc80c94bc016.zip |
Avoid selecting weak digests for (EC)DH when using SNI.
from OpenSSL:
SSL_set_SSL_CTX is normally called for SNI after ClientHello has
received and the digest to use for each certificate has been decided.
The original ssl->cert contains the negotiated digests and is now
copied to the new ssl->cert.
noted by David Benjamin and Kinichiro Inoguchi
Diffstat (limited to 'src/lib/libc/stdlib')
0 files changed, 0 insertions, 0 deletions