summaryrefslogtreecommitdiff
path: root/src/lib/libssl/s3_clnt.c
diff options
context:
space:
mode:
authorjsing <>2014-06-11 15:44:10 +0000
committerjsing <>2014-06-11 15:44:10 +0000
commit15a5163e9d43d5fde6fa4dbe72c18760eb6b6c78 (patch)
tree23c29a9b227b6cf2aa9a0d1c5ed3ac92301238aa /src/lib/libssl/s3_clnt.c
parentd1a0198722c76096bd556f920747be41365d2a0c (diff)
downloadopenbsd-15a5163e9d43d5fde6fa4dbe72c18760eb6b6c78.tar.gz
openbsd-15a5163e9d43d5fde6fa4dbe72c18760eb6b6c78.tar.bz2
openbsd-15a5163e9d43d5fde6fa4dbe72c18760eb6b6c78.zip
Stop setting the EVP_MD_CTX_FLAG_NON_FIPS_ALLOW - it has been ignored since
OpenSSL 1.0.0. ok miod@ (a little while back)
Diffstat (limited to '')
-rw-r--r--src/lib/libssl/s3_clnt.c2
1 files changed, 0 insertions, 2 deletions
diff --git a/src/lib/libssl/s3_clnt.c b/src/lib/libssl/s3_clnt.c
index 45dfb64f92..e86d58c671 100644
--- a/src/lib/libssl/s3_clnt.c
+++ b/src/lib/libssl/s3_clnt.c
@@ -1603,8 +1603,6 @@ ssl3_get_key_exchange(SSL *s)
1603 j = 0; 1603 j = 0;
1604 q = md_buf; 1604 q = md_buf;
1605 for (num = 2; num > 0; num--) { 1605 for (num = 2; num > 0; num--) {
1606 EVP_MD_CTX_set_flags(&md_ctx,
1607 EVP_MD_CTX_FLAG_NON_FIPS_ALLOW);
1608 EVP_DigestInit_ex(&md_ctx, 1606 EVP_DigestInit_ex(&md_ctx,
1609 (num == 2) ? s->ctx->md5 : s->ctx->sha1, 1607 (num == 2) ? s->ctx->md5 : s->ctx->sha1,
1610 NULL); 1608 NULL);