diff options
| author | jsing <> | 2014-07-12 22:33:39 +0000 |
|---|---|---|
| committer | jsing <> | 2014-07-12 22:33:39 +0000 |
| commit | a5fd5047b3335510b9ae8ea0b02073c33c7a8f72 (patch) | |
| tree | ac193b1a184864cbde82877d05b433080052c5d1 /src/lib/libssl/s3_lib.c | |
| parent | e0fe7621bce09dd6ba62ddb9889bc82d64e677f7 (diff) | |
| download | openbsd-a5fd5047b3335510b9ae8ea0b02073c33c7a8f72.tar.gz openbsd-a5fd5047b3335510b9ae8ea0b02073c33c7a8f72.tar.bz2 openbsd-a5fd5047b3335510b9ae8ea0b02073c33c7a8f72.zip | |
The correct name for EDH is DHE, likewise EECDH should be ECDHE.
Based on changes to OpenSSL trunk.
ok beck@ miod@
Diffstat (limited to '')
| -rw-r--r-- | src/lib/libssl/s3_lib.c | 134 |
1 files changed, 67 insertions, 67 deletions
diff --git a/src/lib/libssl/s3_lib.c b/src/lib/libssl/s3_lib.c index f94e207fc4..decdda90a3 100644 --- a/src/lib/libssl/s3_lib.c +++ b/src/lib/libssl/s3_lib.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: s3_lib.c,v 1.69 2014/07/11 09:24:44 beck Exp $ */ | 1 | /* $OpenBSD: s3_lib.c,v 1.70 2014/07/12 22:33:39 jsing Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -433,7 +433,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 433 | .valid = 0, /* Weakened 40-bit export cipher. */ | 433 | .valid = 0, /* Weakened 40-bit export cipher. */ |
| 434 | .name = SSL3_TXT_EDH_DSS_DES_40_CBC_SHA, | 434 | .name = SSL3_TXT_EDH_DSS_DES_40_CBC_SHA, |
| 435 | .id = SSL3_CK_EDH_DSS_DES_40_CBC_SHA, | 435 | .id = SSL3_CK_EDH_DSS_DES_40_CBC_SHA, |
| 436 | .algorithm_mkey = SSL_kEDH, | 436 | .algorithm_mkey = SSL_kDHE, |
| 437 | .algorithm_auth = SSL_aDSS, | 437 | .algorithm_auth = SSL_aDSS, |
| 438 | .algorithm_enc = SSL_DES, | 438 | .algorithm_enc = SSL_DES, |
| 439 | .algorithm_mac = SSL_SHA1, | 439 | .algorithm_mac = SSL_SHA1, |
| @@ -449,7 +449,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 449 | .valid = 1, | 449 | .valid = 1, |
| 450 | .name = SSL3_TXT_EDH_DSS_DES_64_CBC_SHA, | 450 | .name = SSL3_TXT_EDH_DSS_DES_64_CBC_SHA, |
| 451 | .id = SSL3_CK_EDH_DSS_DES_64_CBC_SHA, | 451 | .id = SSL3_CK_EDH_DSS_DES_64_CBC_SHA, |
| 452 | .algorithm_mkey = SSL_kEDH, | 452 | .algorithm_mkey = SSL_kDHE, |
| 453 | .algorithm_auth = SSL_aDSS, | 453 | .algorithm_auth = SSL_aDSS, |
| 454 | .algorithm_enc = SSL_DES, | 454 | .algorithm_enc = SSL_DES, |
| 455 | .algorithm_mac = SSL_SHA1, | 455 | .algorithm_mac = SSL_SHA1, |
| @@ -465,7 +465,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 465 | .valid = 1, | 465 | .valid = 1, |
| 466 | .name = SSL3_TXT_EDH_DSS_DES_192_CBC3_SHA, | 466 | .name = SSL3_TXT_EDH_DSS_DES_192_CBC3_SHA, |
| 467 | .id = SSL3_CK_EDH_DSS_DES_192_CBC3_SHA, | 467 | .id = SSL3_CK_EDH_DSS_DES_192_CBC3_SHA, |
| 468 | .algorithm_mkey = SSL_kEDH, | 468 | .algorithm_mkey = SSL_kDHE, |
| 469 | .algorithm_auth = SSL_aDSS, | 469 | .algorithm_auth = SSL_aDSS, |
| 470 | .algorithm_enc = SSL_3DES, | 470 | .algorithm_enc = SSL_3DES, |
| 471 | .algorithm_mac = SSL_SHA1, | 471 | .algorithm_mac = SSL_SHA1, |
| @@ -481,7 +481,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 481 | .valid = 0, /* Weakened 40-bit export cipher. */ | 481 | .valid = 0, /* Weakened 40-bit export cipher. */ |
| 482 | .name = SSL3_TXT_EDH_RSA_DES_40_CBC_SHA, | 482 | .name = SSL3_TXT_EDH_RSA_DES_40_CBC_SHA, |
| 483 | .id = SSL3_CK_EDH_RSA_DES_40_CBC_SHA, | 483 | .id = SSL3_CK_EDH_RSA_DES_40_CBC_SHA, |
| 484 | .algorithm_mkey = SSL_kEDH, | 484 | .algorithm_mkey = SSL_kDHE, |
| 485 | .algorithm_auth = SSL_aRSA, | 485 | .algorithm_auth = SSL_aRSA, |
| 486 | .algorithm_enc = SSL_DES, | 486 | .algorithm_enc = SSL_DES, |
| 487 | .algorithm_mac = SSL_SHA1, | 487 | .algorithm_mac = SSL_SHA1, |
| @@ -497,7 +497,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 497 | .valid = 1, | 497 | .valid = 1, |
| 498 | .name = SSL3_TXT_EDH_RSA_DES_64_CBC_SHA, | 498 | .name = SSL3_TXT_EDH_RSA_DES_64_CBC_SHA, |
| 499 | .id = SSL3_CK_EDH_RSA_DES_64_CBC_SHA, | 499 | .id = SSL3_CK_EDH_RSA_DES_64_CBC_SHA, |
| 500 | .algorithm_mkey = SSL_kEDH, | 500 | .algorithm_mkey = SSL_kDHE, |
| 501 | .algorithm_auth = SSL_aRSA, | 501 | .algorithm_auth = SSL_aRSA, |
| 502 | .algorithm_enc = SSL_DES, | 502 | .algorithm_enc = SSL_DES, |
| 503 | .algorithm_mac = SSL_SHA1, | 503 | .algorithm_mac = SSL_SHA1, |
| @@ -513,7 +513,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 513 | .valid = 1, | 513 | .valid = 1, |
| 514 | .name = SSL3_TXT_EDH_RSA_DES_192_CBC3_SHA, | 514 | .name = SSL3_TXT_EDH_RSA_DES_192_CBC3_SHA, |
| 515 | .id = SSL3_CK_EDH_RSA_DES_192_CBC3_SHA, | 515 | .id = SSL3_CK_EDH_RSA_DES_192_CBC3_SHA, |
| 516 | .algorithm_mkey = SSL_kEDH, | 516 | .algorithm_mkey = SSL_kDHE, |
| 517 | .algorithm_auth = SSL_aRSA, | 517 | .algorithm_auth = SSL_aRSA, |
| 518 | .algorithm_enc = SSL_3DES, | 518 | .algorithm_enc = SSL_3DES, |
| 519 | .algorithm_mac = SSL_SHA1, | 519 | .algorithm_mac = SSL_SHA1, |
| @@ -529,7 +529,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 529 | .valid = 0, /* Weakened 40-bit export cipher. */ | 529 | .valid = 0, /* Weakened 40-bit export cipher. */ |
| 530 | .name = SSL3_TXT_ADH_RC4_40_MD5, | 530 | .name = SSL3_TXT_ADH_RC4_40_MD5, |
| 531 | .id = SSL3_CK_ADH_RC4_40_MD5, | 531 | .id = SSL3_CK_ADH_RC4_40_MD5, |
| 532 | .algorithm_mkey = SSL_kEDH, | 532 | .algorithm_mkey = SSL_kDHE, |
| 533 | .algorithm_auth = SSL_aNULL, | 533 | .algorithm_auth = SSL_aNULL, |
| 534 | .algorithm_enc = SSL_RC4, | 534 | .algorithm_enc = SSL_RC4, |
| 535 | .algorithm_mac = SSL_MD5, | 535 | .algorithm_mac = SSL_MD5, |
| @@ -545,7 +545,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 545 | .valid = 1, | 545 | .valid = 1, |
| 546 | .name = SSL3_TXT_ADH_RC4_128_MD5, | 546 | .name = SSL3_TXT_ADH_RC4_128_MD5, |
| 547 | .id = SSL3_CK_ADH_RC4_128_MD5, | 547 | .id = SSL3_CK_ADH_RC4_128_MD5, |
| 548 | .algorithm_mkey = SSL_kEDH, | 548 | .algorithm_mkey = SSL_kDHE, |
| 549 | .algorithm_auth = SSL_aNULL, | 549 | .algorithm_auth = SSL_aNULL, |
| 550 | .algorithm_enc = SSL_RC4, | 550 | .algorithm_enc = SSL_RC4, |
| 551 | .algorithm_mac = SSL_MD5, | 551 | .algorithm_mac = SSL_MD5, |
| @@ -561,7 +561,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 561 | .valid = 0, /* Weakened 40-bit export cipher. */ | 561 | .valid = 0, /* Weakened 40-bit export cipher. */ |
| 562 | .name = SSL3_TXT_ADH_DES_40_CBC_SHA, | 562 | .name = SSL3_TXT_ADH_DES_40_CBC_SHA, |
| 563 | .id = SSL3_CK_ADH_DES_40_CBC_SHA, | 563 | .id = SSL3_CK_ADH_DES_40_CBC_SHA, |
| 564 | .algorithm_mkey = SSL_kEDH, | 564 | .algorithm_mkey = SSL_kDHE, |
| 565 | .algorithm_auth = SSL_aNULL, | 565 | .algorithm_auth = SSL_aNULL, |
| 566 | .algorithm_enc = SSL_DES, | 566 | .algorithm_enc = SSL_DES, |
| 567 | .algorithm_mac = SSL_SHA1, | 567 | .algorithm_mac = SSL_SHA1, |
| @@ -577,7 +577,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 577 | .valid = 1, | 577 | .valid = 1, |
| 578 | .name = SSL3_TXT_ADH_DES_64_CBC_SHA, | 578 | .name = SSL3_TXT_ADH_DES_64_CBC_SHA, |
| 579 | .id = SSL3_CK_ADH_DES_64_CBC_SHA, | 579 | .id = SSL3_CK_ADH_DES_64_CBC_SHA, |
| 580 | .algorithm_mkey = SSL_kEDH, | 580 | .algorithm_mkey = SSL_kDHE, |
| 581 | .algorithm_auth = SSL_aNULL, | 581 | .algorithm_auth = SSL_aNULL, |
| 582 | .algorithm_enc = SSL_DES, | 582 | .algorithm_enc = SSL_DES, |
| 583 | .algorithm_mac = SSL_SHA1, | 583 | .algorithm_mac = SSL_SHA1, |
| @@ -593,7 +593,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 593 | .valid = 1, | 593 | .valid = 1, |
| 594 | .name = SSL3_TXT_ADH_DES_192_CBC_SHA, | 594 | .name = SSL3_TXT_ADH_DES_192_CBC_SHA, |
| 595 | .id = SSL3_CK_ADH_DES_192_CBC_SHA, | 595 | .id = SSL3_CK_ADH_DES_192_CBC_SHA, |
| 596 | .algorithm_mkey = SSL_kEDH, | 596 | .algorithm_mkey = SSL_kDHE, |
| 597 | .algorithm_auth = SSL_aNULL, | 597 | .algorithm_auth = SSL_aNULL, |
| 598 | .algorithm_enc = SSL_3DES, | 598 | .algorithm_enc = SSL_3DES, |
| 599 | .algorithm_mac = SSL_SHA1, | 599 | .algorithm_mac = SSL_SHA1, |
| @@ -655,7 +655,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 655 | .valid = 1, | 655 | .valid = 1, |
| 656 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_SHA, | 656 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_SHA, |
| 657 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_SHA, | 657 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_SHA, |
| 658 | .algorithm_mkey = SSL_kEDH, | 658 | .algorithm_mkey = SSL_kDHE, |
| 659 | .algorithm_auth = SSL_aDSS, | 659 | .algorithm_auth = SSL_aDSS, |
| 660 | .algorithm_enc = SSL_AES128, | 660 | .algorithm_enc = SSL_AES128, |
| 661 | .algorithm_mac = SSL_SHA1, | 661 | .algorithm_mac = SSL_SHA1, |
| @@ -670,7 +670,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 670 | .valid = 1, | 670 | .valid = 1, |
| 671 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_SHA, | 671 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_SHA, |
| 672 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_SHA, | 672 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_SHA, |
| 673 | .algorithm_mkey = SSL_kEDH, | 673 | .algorithm_mkey = SSL_kDHE, |
| 674 | .algorithm_auth = SSL_aRSA, | 674 | .algorithm_auth = SSL_aRSA, |
| 675 | .algorithm_enc = SSL_AES128, | 675 | .algorithm_enc = SSL_AES128, |
| 676 | .algorithm_mac = SSL_SHA1, | 676 | .algorithm_mac = SSL_SHA1, |
| @@ -685,7 +685,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 685 | .valid = 1, | 685 | .valid = 1, |
| 686 | .name = TLS1_TXT_ADH_WITH_AES_128_SHA, | 686 | .name = TLS1_TXT_ADH_WITH_AES_128_SHA, |
| 687 | .id = TLS1_CK_ADH_WITH_AES_128_SHA, | 687 | .id = TLS1_CK_ADH_WITH_AES_128_SHA, |
| 688 | .algorithm_mkey = SSL_kEDH, | 688 | .algorithm_mkey = SSL_kDHE, |
| 689 | .algorithm_auth = SSL_aNULL, | 689 | .algorithm_auth = SSL_aNULL, |
| 690 | .algorithm_enc = SSL_AES128, | 690 | .algorithm_enc = SSL_AES128, |
| 691 | .algorithm_mac = SSL_SHA1, | 691 | .algorithm_mac = SSL_SHA1, |
| @@ -748,7 +748,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 748 | .valid = 1, | 748 | .valid = 1, |
| 749 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_SHA, | 749 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_SHA, |
| 750 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_SHA, | 750 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_SHA, |
| 751 | .algorithm_mkey = SSL_kEDH, | 751 | .algorithm_mkey = SSL_kDHE, |
| 752 | .algorithm_auth = SSL_aDSS, | 752 | .algorithm_auth = SSL_aDSS, |
| 753 | .algorithm_enc = SSL_AES256, | 753 | .algorithm_enc = SSL_AES256, |
| 754 | .algorithm_mac = SSL_SHA1, | 754 | .algorithm_mac = SSL_SHA1, |
| @@ -764,7 +764,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 764 | .valid = 1, | 764 | .valid = 1, |
| 765 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_SHA, | 765 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_SHA, |
| 766 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_SHA, | 766 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_SHA, |
| 767 | .algorithm_mkey = SSL_kEDH, | 767 | .algorithm_mkey = SSL_kDHE, |
| 768 | .algorithm_auth = SSL_aRSA, | 768 | .algorithm_auth = SSL_aRSA, |
| 769 | .algorithm_enc = SSL_AES256, | 769 | .algorithm_enc = SSL_AES256, |
| 770 | .algorithm_mac = SSL_SHA1, | 770 | .algorithm_mac = SSL_SHA1, |
| @@ -780,7 +780,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 780 | .valid = 1, | 780 | .valid = 1, |
| 781 | .name = TLS1_TXT_ADH_WITH_AES_256_SHA, | 781 | .name = TLS1_TXT_ADH_WITH_AES_256_SHA, |
| 782 | .id = TLS1_CK_ADH_WITH_AES_256_SHA, | 782 | .id = TLS1_CK_ADH_WITH_AES_256_SHA, |
| 783 | .algorithm_mkey = SSL_kEDH, | 783 | .algorithm_mkey = SSL_kDHE, |
| 784 | .algorithm_auth = SSL_aNULL, | 784 | .algorithm_auth = SSL_aNULL, |
| 785 | .algorithm_enc = SSL_AES256, | 785 | .algorithm_enc = SSL_AES256, |
| 786 | .algorithm_mac = SSL_SHA1, | 786 | .algorithm_mac = SSL_SHA1, |
| @@ -877,7 +877,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 877 | .valid = 1, | 877 | .valid = 1, |
| 878 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_SHA256, | 878 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_SHA256, |
| 879 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_SHA256, | 879 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_SHA256, |
| 880 | .algorithm_mkey = SSL_kEDH, | 880 | .algorithm_mkey = SSL_kDHE, |
| 881 | .algorithm_auth = SSL_aDSS, | 881 | .algorithm_auth = SSL_aDSS, |
| 882 | .algorithm_enc = SSL_AES128, | 882 | .algorithm_enc = SSL_AES128, |
| 883 | .algorithm_mac = SSL_SHA256, | 883 | .algorithm_mac = SSL_SHA256, |
| @@ -944,7 +944,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 944 | .valid = 1, | 944 | .valid = 1, |
| 945 | .name = TLS1_TXT_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA, | 945 | .name = TLS1_TXT_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA, |
| 946 | .id = TLS1_CK_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA, | 946 | .id = TLS1_CK_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA, |
| 947 | .algorithm_mkey = SSL_kEDH, | 947 | .algorithm_mkey = SSL_kDHE, |
| 948 | .algorithm_auth = SSL_aDSS, | 948 | .algorithm_auth = SSL_aDSS, |
| 949 | .algorithm_enc = SSL_CAMELLIA128, | 949 | .algorithm_enc = SSL_CAMELLIA128, |
| 950 | .algorithm_mac = SSL_SHA1, | 950 | .algorithm_mac = SSL_SHA1, |
| @@ -960,7 +960,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 960 | .valid = 1, | 960 | .valid = 1, |
| 961 | .name = TLS1_TXT_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA, | 961 | .name = TLS1_TXT_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA, |
| 962 | .id = TLS1_CK_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA, | 962 | .id = TLS1_CK_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA, |
| 963 | .algorithm_mkey = SSL_kEDH, | 963 | .algorithm_mkey = SSL_kDHE, |
| 964 | .algorithm_auth = SSL_aRSA, | 964 | .algorithm_auth = SSL_aRSA, |
| 965 | .algorithm_enc = SSL_CAMELLIA128, | 965 | .algorithm_enc = SSL_CAMELLIA128, |
| 966 | .algorithm_mac = SSL_SHA1, | 966 | .algorithm_mac = SSL_SHA1, |
| @@ -976,7 +976,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 976 | .valid = 1, | 976 | .valid = 1, |
| 977 | .name = TLS1_TXT_ADH_WITH_CAMELLIA_128_CBC_SHA, | 977 | .name = TLS1_TXT_ADH_WITH_CAMELLIA_128_CBC_SHA, |
| 978 | .id = TLS1_CK_ADH_WITH_CAMELLIA_128_CBC_SHA, | 978 | .id = TLS1_CK_ADH_WITH_CAMELLIA_128_CBC_SHA, |
| 979 | .algorithm_mkey = SSL_kEDH, | 979 | .algorithm_mkey = SSL_kDHE, |
| 980 | .algorithm_auth = SSL_aNULL, | 980 | .algorithm_auth = SSL_aNULL, |
| 981 | .algorithm_enc = SSL_CAMELLIA128, | 981 | .algorithm_enc = SSL_CAMELLIA128, |
| 982 | .algorithm_mac = SSL_SHA1, | 982 | .algorithm_mac = SSL_SHA1, |
| @@ -994,7 +994,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 994 | .valid = 1, | 994 | .valid = 1, |
| 995 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_SHA256, | 995 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_SHA256, |
| 996 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_SHA256, | 996 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_SHA256, |
| 997 | .algorithm_mkey = SSL_kEDH, | 997 | .algorithm_mkey = SSL_kDHE, |
| 998 | .algorithm_auth = SSL_aRSA, | 998 | .algorithm_auth = SSL_aRSA, |
| 999 | .algorithm_enc = SSL_AES128, | 999 | .algorithm_enc = SSL_AES128, |
| 1000 | .algorithm_mac = SSL_SHA256, | 1000 | .algorithm_mac = SSL_SHA256, |
| @@ -1042,7 +1042,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1042 | .valid = 1, | 1042 | .valid = 1, |
| 1043 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_SHA256, | 1043 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_SHA256, |
| 1044 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_SHA256, | 1044 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_SHA256, |
| 1045 | .algorithm_mkey = SSL_kEDH, | 1045 | .algorithm_mkey = SSL_kDHE, |
| 1046 | .algorithm_auth = SSL_aDSS, | 1046 | .algorithm_auth = SSL_aDSS, |
| 1047 | .algorithm_enc = SSL_AES256, | 1047 | .algorithm_enc = SSL_AES256, |
| 1048 | .algorithm_mac = SSL_SHA256, | 1048 | .algorithm_mac = SSL_SHA256, |
| @@ -1058,7 +1058,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1058 | .valid = 1, | 1058 | .valid = 1, |
| 1059 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_SHA256, | 1059 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_SHA256, |
| 1060 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_SHA256, | 1060 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_SHA256, |
| 1061 | .algorithm_mkey = SSL_kEDH, | 1061 | .algorithm_mkey = SSL_kDHE, |
| 1062 | .algorithm_auth = SSL_aRSA, | 1062 | .algorithm_auth = SSL_aRSA, |
| 1063 | .algorithm_enc = SSL_AES256, | 1063 | .algorithm_enc = SSL_AES256, |
| 1064 | .algorithm_mac = SSL_SHA256, | 1064 | .algorithm_mac = SSL_SHA256, |
| @@ -1074,7 +1074,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1074 | .valid = 1, | 1074 | .valid = 1, |
| 1075 | .name = TLS1_TXT_ADH_WITH_AES_128_SHA256, | 1075 | .name = TLS1_TXT_ADH_WITH_AES_128_SHA256, |
| 1076 | .id = TLS1_CK_ADH_WITH_AES_128_SHA256, | 1076 | .id = TLS1_CK_ADH_WITH_AES_128_SHA256, |
| 1077 | .algorithm_mkey = SSL_kEDH, | 1077 | .algorithm_mkey = SSL_kDHE, |
| 1078 | .algorithm_auth = SSL_aNULL, | 1078 | .algorithm_auth = SSL_aNULL, |
| 1079 | .algorithm_enc = SSL_AES128, | 1079 | .algorithm_enc = SSL_AES128, |
| 1080 | .algorithm_mac = SSL_SHA256, | 1080 | .algorithm_mac = SSL_SHA256, |
| @@ -1090,7 +1090,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1090 | .valid = 1, | 1090 | .valid = 1, |
| 1091 | .name = TLS1_TXT_ADH_WITH_AES_256_SHA256, | 1091 | .name = TLS1_TXT_ADH_WITH_AES_256_SHA256, |
| 1092 | .id = TLS1_CK_ADH_WITH_AES_256_SHA256, | 1092 | .id = TLS1_CK_ADH_WITH_AES_256_SHA256, |
| 1093 | .algorithm_mkey = SSL_kEDH, | 1093 | .algorithm_mkey = SSL_kDHE, |
| 1094 | .algorithm_auth = SSL_aNULL, | 1094 | .algorithm_auth = SSL_aNULL, |
| 1095 | .algorithm_enc = SSL_AES256, | 1095 | .algorithm_enc = SSL_AES256, |
| 1096 | .algorithm_mac = SSL_SHA256, | 1096 | .algorithm_mac = SSL_SHA256, |
| @@ -1218,7 +1218,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1218 | .valid = 1, | 1218 | .valid = 1, |
| 1219 | .name = TLS1_TXT_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA, | 1219 | .name = TLS1_TXT_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA, |
| 1220 | .id = TLS1_CK_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA, | 1220 | .id = TLS1_CK_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA, |
| 1221 | .algorithm_mkey = SSL_kEDH, | 1221 | .algorithm_mkey = SSL_kDHE, |
| 1222 | .algorithm_auth = SSL_aDSS, | 1222 | .algorithm_auth = SSL_aDSS, |
| 1223 | .algorithm_enc = SSL_CAMELLIA256, | 1223 | .algorithm_enc = SSL_CAMELLIA256, |
| 1224 | .algorithm_mac = SSL_SHA1, | 1224 | .algorithm_mac = SSL_SHA1, |
| @@ -1234,7 +1234,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1234 | .valid = 1, | 1234 | .valid = 1, |
| 1235 | .name = TLS1_TXT_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA, | 1235 | .name = TLS1_TXT_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA, |
| 1236 | .id = TLS1_CK_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA, | 1236 | .id = TLS1_CK_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA, |
| 1237 | .algorithm_mkey = SSL_kEDH, | 1237 | .algorithm_mkey = SSL_kDHE, |
| 1238 | .algorithm_auth = SSL_aRSA, | 1238 | .algorithm_auth = SSL_aRSA, |
| 1239 | .algorithm_enc = SSL_CAMELLIA256, | 1239 | .algorithm_enc = SSL_CAMELLIA256, |
| 1240 | .algorithm_mac = SSL_SHA1, | 1240 | .algorithm_mac = SSL_SHA1, |
| @@ -1250,7 +1250,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1250 | .valid = 1, | 1250 | .valid = 1, |
| 1251 | .name = TLS1_TXT_ADH_WITH_CAMELLIA_256_CBC_SHA, | 1251 | .name = TLS1_TXT_ADH_WITH_CAMELLIA_256_CBC_SHA, |
| 1252 | .id = TLS1_CK_ADH_WITH_CAMELLIA_256_CBC_SHA, | 1252 | .id = TLS1_CK_ADH_WITH_CAMELLIA_256_CBC_SHA, |
| 1253 | .algorithm_mkey = SSL_kEDH, | 1253 | .algorithm_mkey = SSL_kDHE, |
| 1254 | .algorithm_auth = SSL_aNULL, | 1254 | .algorithm_auth = SSL_aNULL, |
| 1255 | .algorithm_enc = SSL_CAMELLIA256, | 1255 | .algorithm_enc = SSL_CAMELLIA256, |
| 1256 | .algorithm_mac = SSL_SHA1, | 1256 | .algorithm_mac = SSL_SHA1, |
| @@ -1306,7 +1306,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1306 | .valid = 1, | 1306 | .valid = 1, |
| 1307 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_GCM_SHA256, | 1307 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_GCM_SHA256, |
| 1308 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_GCM_SHA256, | 1308 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_GCM_SHA256, |
| 1309 | .algorithm_mkey = SSL_kEDH, | 1309 | .algorithm_mkey = SSL_kDHE, |
| 1310 | .algorithm_auth = SSL_aRSA, | 1310 | .algorithm_auth = SSL_aRSA, |
| 1311 | .algorithm_enc = SSL_AES128GCM, | 1311 | .algorithm_enc = SSL_AES128GCM, |
| 1312 | .algorithm_mac = SSL_AEAD, | 1312 | .algorithm_mac = SSL_AEAD, |
| @@ -1324,7 +1324,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1324 | .valid = 1, | 1324 | .valid = 1, |
| 1325 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_GCM_SHA384, | 1325 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_GCM_SHA384, |
| 1326 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_GCM_SHA384, | 1326 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_GCM_SHA384, |
| 1327 | .algorithm_mkey = SSL_kEDH, | 1327 | .algorithm_mkey = SSL_kDHE, |
| 1328 | .algorithm_auth = SSL_aRSA, | 1328 | .algorithm_auth = SSL_aRSA, |
| 1329 | .algorithm_enc = SSL_AES256GCM, | 1329 | .algorithm_enc = SSL_AES256GCM, |
| 1330 | .algorithm_mac = SSL_AEAD, | 1330 | .algorithm_mac = SSL_AEAD, |
| @@ -1378,7 +1378,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1378 | .valid = 1, | 1378 | .valid = 1, |
| 1379 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_GCM_SHA256, | 1379 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_GCM_SHA256, |
| 1380 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_GCM_SHA256, | 1380 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_GCM_SHA256, |
| 1381 | .algorithm_mkey = SSL_kEDH, | 1381 | .algorithm_mkey = SSL_kDHE, |
| 1382 | .algorithm_auth = SSL_aDSS, | 1382 | .algorithm_auth = SSL_aDSS, |
| 1383 | .algorithm_enc = SSL_AES128GCM, | 1383 | .algorithm_enc = SSL_AES128GCM, |
| 1384 | .algorithm_mac = SSL_AEAD, | 1384 | .algorithm_mac = SSL_AEAD, |
| @@ -1396,7 +1396,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1396 | .valid = 1, | 1396 | .valid = 1, |
| 1397 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_GCM_SHA384, | 1397 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_GCM_SHA384, |
| 1398 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_GCM_SHA384, | 1398 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_GCM_SHA384, |
| 1399 | .algorithm_mkey = SSL_kEDH, | 1399 | .algorithm_mkey = SSL_kDHE, |
| 1400 | .algorithm_auth = SSL_aDSS, | 1400 | .algorithm_auth = SSL_aDSS, |
| 1401 | .algorithm_enc = SSL_AES256GCM, | 1401 | .algorithm_enc = SSL_AES256GCM, |
| 1402 | .algorithm_mac = SSL_AEAD, | 1402 | .algorithm_mac = SSL_AEAD, |
| @@ -1450,7 +1450,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1450 | .valid = 1, | 1450 | .valid = 1, |
| 1451 | .name = TLS1_TXT_ADH_WITH_AES_128_GCM_SHA256, | 1451 | .name = TLS1_TXT_ADH_WITH_AES_128_GCM_SHA256, |
| 1452 | .id = TLS1_CK_ADH_WITH_AES_128_GCM_SHA256, | 1452 | .id = TLS1_CK_ADH_WITH_AES_128_GCM_SHA256, |
| 1453 | .algorithm_mkey = SSL_kEDH, | 1453 | .algorithm_mkey = SSL_kDHE, |
| 1454 | .algorithm_auth = SSL_aNULL, | 1454 | .algorithm_auth = SSL_aNULL, |
| 1455 | .algorithm_enc = SSL_AES128GCM, | 1455 | .algorithm_enc = SSL_AES128GCM, |
| 1456 | .algorithm_mac = SSL_AEAD, | 1456 | .algorithm_mac = SSL_AEAD, |
| @@ -1468,7 +1468,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1468 | .valid = 1, | 1468 | .valid = 1, |
| 1469 | .name = TLS1_TXT_ADH_WITH_AES_256_GCM_SHA384, | 1469 | .name = TLS1_TXT_ADH_WITH_AES_256_GCM_SHA384, |
| 1470 | .id = TLS1_CK_ADH_WITH_AES_256_GCM_SHA384, | 1470 | .id = TLS1_CK_ADH_WITH_AES_256_GCM_SHA384, |
| 1471 | .algorithm_mkey = SSL_kEDH, | 1471 | .algorithm_mkey = SSL_kDHE, |
| 1472 | .algorithm_auth = SSL_aNULL, | 1472 | .algorithm_auth = SSL_aNULL, |
| 1473 | .algorithm_enc = SSL_AES256GCM, | 1473 | .algorithm_enc = SSL_AES256GCM, |
| 1474 | .algorithm_mac = SSL_AEAD, | 1474 | .algorithm_mac = SSL_AEAD, |
| @@ -1566,7 +1566,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1566 | .valid = 1, | 1566 | .valid = 1, |
| 1567 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_NULL_SHA, | 1567 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_NULL_SHA, |
| 1568 | .id = TLS1_CK_ECDHE_ECDSA_WITH_NULL_SHA, | 1568 | .id = TLS1_CK_ECDHE_ECDSA_WITH_NULL_SHA, |
| 1569 | .algorithm_mkey = SSL_kEECDH, | 1569 | .algorithm_mkey = SSL_kECDHE, |
| 1570 | .algorithm_auth = SSL_aECDSA, | 1570 | .algorithm_auth = SSL_aECDSA, |
| 1571 | .algorithm_enc = SSL_eNULL, | 1571 | .algorithm_enc = SSL_eNULL, |
| 1572 | .algorithm_mac = SSL_SHA1, | 1572 | .algorithm_mac = SSL_SHA1, |
| @@ -1582,7 +1582,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1582 | .valid = 1, | 1582 | .valid = 1, |
| 1583 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_RC4_128_SHA, | 1583 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_RC4_128_SHA, |
| 1584 | .id = TLS1_CK_ECDHE_ECDSA_WITH_RC4_128_SHA, | 1584 | .id = TLS1_CK_ECDHE_ECDSA_WITH_RC4_128_SHA, |
| 1585 | .algorithm_mkey = SSL_kEECDH, | 1585 | .algorithm_mkey = SSL_kECDHE, |
| 1586 | .algorithm_auth = SSL_aECDSA, | 1586 | .algorithm_auth = SSL_aECDSA, |
| 1587 | .algorithm_enc = SSL_RC4, | 1587 | .algorithm_enc = SSL_RC4, |
| 1588 | .algorithm_mac = SSL_SHA1, | 1588 | .algorithm_mac = SSL_SHA1, |
| @@ -1598,7 +1598,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1598 | .valid = 1, | 1598 | .valid = 1, |
| 1599 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_DES_192_CBC3_SHA, | 1599 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_DES_192_CBC3_SHA, |
| 1600 | .id = TLS1_CK_ECDHE_ECDSA_WITH_DES_192_CBC3_SHA, | 1600 | .id = TLS1_CK_ECDHE_ECDSA_WITH_DES_192_CBC3_SHA, |
| 1601 | .algorithm_mkey = SSL_kEECDH, | 1601 | .algorithm_mkey = SSL_kECDHE, |
| 1602 | .algorithm_auth = SSL_aECDSA, | 1602 | .algorithm_auth = SSL_aECDSA, |
| 1603 | .algorithm_enc = SSL_3DES, | 1603 | .algorithm_enc = SSL_3DES, |
| 1604 | .algorithm_mac = SSL_SHA1, | 1604 | .algorithm_mac = SSL_SHA1, |
| @@ -1614,7 +1614,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1614 | .valid = 1, | 1614 | .valid = 1, |
| 1615 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, | 1615 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, |
| 1616 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, | 1616 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, |
| 1617 | .algorithm_mkey = SSL_kEECDH, | 1617 | .algorithm_mkey = SSL_kECDHE, |
| 1618 | .algorithm_auth = SSL_aECDSA, | 1618 | .algorithm_auth = SSL_aECDSA, |
| 1619 | .algorithm_enc = SSL_AES128, | 1619 | .algorithm_enc = SSL_AES128, |
| 1620 | .algorithm_mac = SSL_SHA1, | 1620 | .algorithm_mac = SSL_SHA1, |
| @@ -1630,7 +1630,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1630 | .valid = 1, | 1630 | .valid = 1, |
| 1631 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, | 1631 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, |
| 1632 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, | 1632 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, |
| 1633 | .algorithm_mkey = SSL_kEECDH, | 1633 | .algorithm_mkey = SSL_kECDHE, |
| 1634 | .algorithm_auth = SSL_aECDSA, | 1634 | .algorithm_auth = SSL_aECDSA, |
| 1635 | .algorithm_enc = SSL_AES256, | 1635 | .algorithm_enc = SSL_AES256, |
| 1636 | .algorithm_mac = SSL_SHA1, | 1636 | .algorithm_mac = SSL_SHA1, |
| @@ -1726,7 +1726,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1726 | .valid = 1, | 1726 | .valid = 1, |
| 1727 | .name = TLS1_TXT_ECDHE_RSA_WITH_NULL_SHA, | 1727 | .name = TLS1_TXT_ECDHE_RSA_WITH_NULL_SHA, |
| 1728 | .id = TLS1_CK_ECDHE_RSA_WITH_NULL_SHA, | 1728 | .id = TLS1_CK_ECDHE_RSA_WITH_NULL_SHA, |
| 1729 | .algorithm_mkey = SSL_kEECDH, | 1729 | .algorithm_mkey = SSL_kECDHE, |
| 1730 | .algorithm_auth = SSL_aRSA, | 1730 | .algorithm_auth = SSL_aRSA, |
| 1731 | .algorithm_enc = SSL_eNULL, | 1731 | .algorithm_enc = SSL_eNULL, |
| 1732 | .algorithm_mac = SSL_SHA1, | 1732 | .algorithm_mac = SSL_SHA1, |
| @@ -1742,7 +1742,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1742 | .valid = 1, | 1742 | .valid = 1, |
| 1743 | .name = TLS1_TXT_ECDHE_RSA_WITH_RC4_128_SHA, | 1743 | .name = TLS1_TXT_ECDHE_RSA_WITH_RC4_128_SHA, |
| 1744 | .id = TLS1_CK_ECDHE_RSA_WITH_RC4_128_SHA, | 1744 | .id = TLS1_CK_ECDHE_RSA_WITH_RC4_128_SHA, |
| 1745 | .algorithm_mkey = SSL_kEECDH, | 1745 | .algorithm_mkey = SSL_kECDHE, |
| 1746 | .algorithm_auth = SSL_aRSA, | 1746 | .algorithm_auth = SSL_aRSA, |
| 1747 | .algorithm_enc = SSL_RC4, | 1747 | .algorithm_enc = SSL_RC4, |
| 1748 | .algorithm_mac = SSL_SHA1, | 1748 | .algorithm_mac = SSL_SHA1, |
| @@ -1758,7 +1758,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1758 | .valid = 1, | 1758 | .valid = 1, |
| 1759 | .name = TLS1_TXT_ECDHE_RSA_WITH_DES_192_CBC3_SHA, | 1759 | .name = TLS1_TXT_ECDHE_RSA_WITH_DES_192_CBC3_SHA, |
| 1760 | .id = TLS1_CK_ECDHE_RSA_WITH_DES_192_CBC3_SHA, | 1760 | .id = TLS1_CK_ECDHE_RSA_WITH_DES_192_CBC3_SHA, |
| 1761 | .algorithm_mkey = SSL_kEECDH, | 1761 | .algorithm_mkey = SSL_kECDHE, |
| 1762 | .algorithm_auth = SSL_aRSA, | 1762 | .algorithm_auth = SSL_aRSA, |
| 1763 | .algorithm_enc = SSL_3DES, | 1763 | .algorithm_enc = SSL_3DES, |
| 1764 | .algorithm_mac = SSL_SHA1, | 1764 | .algorithm_mac = SSL_SHA1, |
| @@ -1774,7 +1774,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1774 | .valid = 1, | 1774 | .valid = 1, |
| 1775 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_CBC_SHA, | 1775 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_CBC_SHA, |
| 1776 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_CBC_SHA, | 1776 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_CBC_SHA, |
| 1777 | .algorithm_mkey = SSL_kEECDH, | 1777 | .algorithm_mkey = SSL_kECDHE, |
| 1778 | .algorithm_auth = SSL_aRSA, | 1778 | .algorithm_auth = SSL_aRSA, |
| 1779 | .algorithm_enc = SSL_AES128, | 1779 | .algorithm_enc = SSL_AES128, |
| 1780 | .algorithm_mac = SSL_SHA1, | 1780 | .algorithm_mac = SSL_SHA1, |
| @@ -1790,7 +1790,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1790 | .valid = 1, | 1790 | .valid = 1, |
| 1791 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_CBC_SHA, | 1791 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_CBC_SHA, |
| 1792 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_CBC_SHA, | 1792 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_CBC_SHA, |
| 1793 | .algorithm_mkey = SSL_kEECDH, | 1793 | .algorithm_mkey = SSL_kECDHE, |
| 1794 | .algorithm_auth = SSL_aRSA, | 1794 | .algorithm_auth = SSL_aRSA, |
| 1795 | .algorithm_enc = SSL_AES256, | 1795 | .algorithm_enc = SSL_AES256, |
| 1796 | .algorithm_mac = SSL_SHA1, | 1796 | .algorithm_mac = SSL_SHA1, |
| @@ -1806,7 +1806,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1806 | .valid = 1, | 1806 | .valid = 1, |
| 1807 | .name = TLS1_TXT_ECDH_anon_WITH_NULL_SHA, | 1807 | .name = TLS1_TXT_ECDH_anon_WITH_NULL_SHA, |
| 1808 | .id = TLS1_CK_ECDH_anon_WITH_NULL_SHA, | 1808 | .id = TLS1_CK_ECDH_anon_WITH_NULL_SHA, |
| 1809 | .algorithm_mkey = SSL_kEECDH, | 1809 | .algorithm_mkey = SSL_kECDHE, |
| 1810 | .algorithm_auth = SSL_aNULL, | 1810 | .algorithm_auth = SSL_aNULL, |
| 1811 | .algorithm_enc = SSL_eNULL, | 1811 | .algorithm_enc = SSL_eNULL, |
| 1812 | .algorithm_mac = SSL_SHA1, | 1812 | .algorithm_mac = SSL_SHA1, |
| @@ -1822,7 +1822,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1822 | .valid = 1, | 1822 | .valid = 1, |
| 1823 | .name = TLS1_TXT_ECDH_anon_WITH_RC4_128_SHA, | 1823 | .name = TLS1_TXT_ECDH_anon_WITH_RC4_128_SHA, |
| 1824 | .id = TLS1_CK_ECDH_anon_WITH_RC4_128_SHA, | 1824 | .id = TLS1_CK_ECDH_anon_WITH_RC4_128_SHA, |
| 1825 | .algorithm_mkey = SSL_kEECDH, | 1825 | .algorithm_mkey = SSL_kECDHE, |
| 1826 | .algorithm_auth = SSL_aNULL, | 1826 | .algorithm_auth = SSL_aNULL, |
| 1827 | .algorithm_enc = SSL_RC4, | 1827 | .algorithm_enc = SSL_RC4, |
| 1828 | .algorithm_mac = SSL_SHA1, | 1828 | .algorithm_mac = SSL_SHA1, |
| @@ -1838,7 +1838,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1838 | .valid = 1, | 1838 | .valid = 1, |
| 1839 | .name = TLS1_TXT_ECDH_anon_WITH_DES_192_CBC3_SHA, | 1839 | .name = TLS1_TXT_ECDH_anon_WITH_DES_192_CBC3_SHA, |
| 1840 | .id = TLS1_CK_ECDH_anon_WITH_DES_192_CBC3_SHA, | 1840 | .id = TLS1_CK_ECDH_anon_WITH_DES_192_CBC3_SHA, |
| 1841 | .algorithm_mkey = SSL_kEECDH, | 1841 | .algorithm_mkey = SSL_kECDHE, |
| 1842 | .algorithm_auth = SSL_aNULL, | 1842 | .algorithm_auth = SSL_aNULL, |
| 1843 | .algorithm_enc = SSL_3DES, | 1843 | .algorithm_enc = SSL_3DES, |
| 1844 | .algorithm_mac = SSL_SHA1, | 1844 | .algorithm_mac = SSL_SHA1, |
| @@ -1854,7 +1854,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1854 | .valid = 1, | 1854 | .valid = 1, |
| 1855 | .name = TLS1_TXT_ECDH_anon_WITH_AES_128_CBC_SHA, | 1855 | .name = TLS1_TXT_ECDH_anon_WITH_AES_128_CBC_SHA, |
| 1856 | .id = TLS1_CK_ECDH_anon_WITH_AES_128_CBC_SHA, | 1856 | .id = TLS1_CK_ECDH_anon_WITH_AES_128_CBC_SHA, |
| 1857 | .algorithm_mkey = SSL_kEECDH, | 1857 | .algorithm_mkey = SSL_kECDHE, |
| 1858 | .algorithm_auth = SSL_aNULL, | 1858 | .algorithm_auth = SSL_aNULL, |
| 1859 | .algorithm_enc = SSL_AES128, | 1859 | .algorithm_enc = SSL_AES128, |
| 1860 | .algorithm_mac = SSL_SHA1, | 1860 | .algorithm_mac = SSL_SHA1, |
| @@ -1870,7 +1870,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1870 | .valid = 1, | 1870 | .valid = 1, |
| 1871 | .name = TLS1_TXT_ECDH_anon_WITH_AES_256_CBC_SHA, | 1871 | .name = TLS1_TXT_ECDH_anon_WITH_AES_256_CBC_SHA, |
| 1872 | .id = TLS1_CK_ECDH_anon_WITH_AES_256_CBC_SHA, | 1872 | .id = TLS1_CK_ECDH_anon_WITH_AES_256_CBC_SHA, |
| 1873 | .algorithm_mkey = SSL_kEECDH, | 1873 | .algorithm_mkey = SSL_kECDHE, |
| 1874 | .algorithm_auth = SSL_aNULL, | 1874 | .algorithm_auth = SSL_aNULL, |
| 1875 | .algorithm_enc = SSL_AES256, | 1875 | .algorithm_enc = SSL_AES256, |
| 1876 | .algorithm_mac = SSL_SHA1, | 1876 | .algorithm_mac = SSL_SHA1, |
| @@ -1889,7 +1889,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1889 | .valid = 1, | 1889 | .valid = 1, |
| 1890 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_SHA256, | 1890 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_SHA256, |
| 1891 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_SHA256, | 1891 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_SHA256, |
| 1892 | .algorithm_mkey = SSL_kEECDH, | 1892 | .algorithm_mkey = SSL_kECDHE, |
| 1893 | .algorithm_auth = SSL_aECDSA, | 1893 | .algorithm_auth = SSL_aECDSA, |
| 1894 | .algorithm_enc = SSL_AES128, | 1894 | .algorithm_enc = SSL_AES128, |
| 1895 | .algorithm_mac = SSL_SHA256, | 1895 | .algorithm_mac = SSL_SHA256, |
| @@ -1905,7 +1905,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1905 | .valid = 1, | 1905 | .valid = 1, |
| 1906 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_SHA384, | 1906 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_SHA384, |
| 1907 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_SHA384, | 1907 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_SHA384, |
| 1908 | .algorithm_mkey = SSL_kEECDH, | 1908 | .algorithm_mkey = SSL_kECDHE, |
| 1909 | .algorithm_auth = SSL_aECDSA, | 1909 | .algorithm_auth = SSL_aECDSA, |
| 1910 | .algorithm_enc = SSL_AES256, | 1910 | .algorithm_enc = SSL_AES256, |
| 1911 | .algorithm_mac = SSL_SHA384, | 1911 | .algorithm_mac = SSL_SHA384, |
| @@ -1953,7 +1953,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1953 | .valid = 1, | 1953 | .valid = 1, |
| 1954 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_SHA256, | 1954 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_SHA256, |
| 1955 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_SHA256, | 1955 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_SHA256, |
| 1956 | .algorithm_mkey = SSL_kEECDH, | 1956 | .algorithm_mkey = SSL_kECDHE, |
| 1957 | .algorithm_auth = SSL_aRSA, | 1957 | .algorithm_auth = SSL_aRSA, |
| 1958 | .algorithm_enc = SSL_AES128, | 1958 | .algorithm_enc = SSL_AES128, |
| 1959 | .algorithm_mac = SSL_SHA256, | 1959 | .algorithm_mac = SSL_SHA256, |
| @@ -1969,7 +1969,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 1969 | .valid = 1, | 1969 | .valid = 1, |
| 1970 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_SHA384, | 1970 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_SHA384, |
| 1971 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_SHA384, | 1971 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_SHA384, |
| 1972 | .algorithm_mkey = SSL_kEECDH, | 1972 | .algorithm_mkey = SSL_kECDHE, |
| 1973 | .algorithm_auth = SSL_aRSA, | 1973 | .algorithm_auth = SSL_aRSA, |
| 1974 | .algorithm_enc = SSL_AES256, | 1974 | .algorithm_enc = SSL_AES256, |
| 1975 | .algorithm_mac = SSL_SHA384, | 1975 | .algorithm_mac = SSL_SHA384, |
| @@ -2019,7 +2019,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 2019 | .valid = 1, | 2019 | .valid = 1, |
| 2020 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, | 2020 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, |
| 2021 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, | 2021 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, |
| 2022 | .algorithm_mkey = SSL_kEECDH, | 2022 | .algorithm_mkey = SSL_kECDHE, |
| 2023 | .algorithm_auth = SSL_aECDSA, | 2023 | .algorithm_auth = SSL_aECDSA, |
| 2024 | .algorithm_enc = SSL_AES128GCM, | 2024 | .algorithm_enc = SSL_AES128GCM, |
| 2025 | .algorithm_mac = SSL_AEAD, | 2025 | .algorithm_mac = SSL_AEAD, |
| @@ -2037,7 +2037,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 2037 | .valid = 1, | 2037 | .valid = 1, |
| 2038 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, | 2038 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, |
| 2039 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, | 2039 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, |
| 2040 | .algorithm_mkey = SSL_kEECDH, | 2040 | .algorithm_mkey = SSL_kECDHE, |
| 2041 | .algorithm_auth = SSL_aECDSA, | 2041 | .algorithm_auth = SSL_aECDSA, |
| 2042 | .algorithm_enc = SSL_AES256GCM, | 2042 | .algorithm_enc = SSL_AES256GCM, |
| 2043 | .algorithm_mac = SSL_AEAD, | 2043 | .algorithm_mac = SSL_AEAD, |
| @@ -2091,7 +2091,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 2091 | .valid = 1, | 2091 | .valid = 1, |
| 2092 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_GCM_SHA256, | 2092 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_GCM_SHA256, |
| 2093 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_GCM_SHA256, | 2093 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_GCM_SHA256, |
| 2094 | .algorithm_mkey = SSL_kEECDH, | 2094 | .algorithm_mkey = SSL_kECDHE, |
| 2095 | .algorithm_auth = SSL_aRSA, | 2095 | .algorithm_auth = SSL_aRSA, |
| 2096 | .algorithm_enc = SSL_AES128GCM, | 2096 | .algorithm_enc = SSL_AES128GCM, |
| 2097 | .algorithm_mac = SSL_AEAD, | 2097 | .algorithm_mac = SSL_AEAD, |
| @@ -2109,7 +2109,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 2109 | .valid = 1, | 2109 | .valid = 1, |
| 2110 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_GCM_SHA384, | 2110 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_GCM_SHA384, |
| 2111 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_GCM_SHA384, | 2111 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_GCM_SHA384, |
| 2112 | .algorithm_mkey = SSL_kEECDH, | 2112 | .algorithm_mkey = SSL_kECDHE, |
| 2113 | .algorithm_auth = SSL_aRSA, | 2113 | .algorithm_auth = SSL_aRSA, |
| 2114 | .algorithm_enc = SSL_AES256GCM, | 2114 | .algorithm_enc = SSL_AES256GCM, |
| 2115 | .algorithm_mac = SSL_AEAD, | 2115 | .algorithm_mac = SSL_AEAD, |
| @@ -2224,7 +2224,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 2224 | .valid = 1, | 2224 | .valid = 1, |
| 2225 | .name = TLS1_TXT_ECDHE_RSA_WITH_CHACHA20_POLY1305, | 2225 | .name = TLS1_TXT_ECDHE_RSA_WITH_CHACHA20_POLY1305, |
| 2226 | .id = TLS1_CK_ECDHE_RSA_CHACHA20_POLY1305, | 2226 | .id = TLS1_CK_ECDHE_RSA_CHACHA20_POLY1305, |
| 2227 | .algorithm_mkey = SSL_kEECDH, | 2227 | .algorithm_mkey = SSL_kECDHE, |
| 2228 | .algorithm_auth = SSL_aRSA, | 2228 | .algorithm_auth = SSL_aRSA, |
| 2229 | .algorithm_enc = SSL_CHACHA20POLY1305, | 2229 | .algorithm_enc = SSL_CHACHA20POLY1305, |
| 2230 | .algorithm_mac = SSL_AEAD, | 2230 | .algorithm_mac = SSL_AEAD, |
| @@ -2240,7 +2240,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 2240 | .valid = 1, | 2240 | .valid = 1, |
| 2241 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_CHACHA20_POLY1305, | 2241 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_CHACHA20_POLY1305, |
| 2242 | .id = TLS1_CK_ECDHE_ECDSA_CHACHA20_POLY1305, | 2242 | .id = TLS1_CK_ECDHE_ECDSA_CHACHA20_POLY1305, |
| 2243 | .algorithm_mkey = SSL_kEECDH, | 2243 | .algorithm_mkey = SSL_kECDHE, |
| 2244 | .algorithm_auth = SSL_aECDSA, | 2244 | .algorithm_auth = SSL_aECDSA, |
| 2245 | .algorithm_enc = SSL_CHACHA20POLY1305, | 2245 | .algorithm_enc = SSL_CHACHA20POLY1305, |
| 2246 | .algorithm_mac = SSL_AEAD, | 2246 | .algorithm_mac = SSL_AEAD, |
| @@ -2256,7 +2256,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
| 2256 | .valid = 1, | 2256 | .valid = 1, |
| 2257 | .name = TLS1_TXT_DHE_RSA_WITH_CHACHA20_POLY1305, | 2257 | .name = TLS1_TXT_DHE_RSA_WITH_CHACHA20_POLY1305, |
| 2258 | .id = TLS1_CK_DHE_RSA_CHACHA20_POLY1305, | 2258 | .id = TLS1_CK_DHE_RSA_CHACHA20_POLY1305, |
| 2259 | .algorithm_mkey = SSL_kEDH, | 2259 | .algorithm_mkey = SSL_kDHE, |
| 2260 | .algorithm_auth = SSL_aRSA, | 2260 | .algorithm_auth = SSL_aRSA, |
| 2261 | .algorithm_enc = SSL_CHACHA20POLY1305, | 2261 | .algorithm_enc = SSL_CHACHA20POLY1305, |
| 2262 | .algorithm_mac = SSL_AEAD, | 2262 | .algorithm_mac = SSL_AEAD, |
| @@ -3069,7 +3069,7 @@ SSL_CIPHER *ssl3_choose_cipher(SSL *s, STACK_OF(SSL_CIPHER) *clnt, | |||
| 3069 | * if we are considering an ECC cipher suite that uses an | 3069 | * if we are considering an ECC cipher suite that uses an |
| 3070 | * ephemeral EC key | 3070 | * ephemeral EC key |
| 3071 | */ | 3071 | */ |
| 3072 | (alg_k & SSL_kEECDH) | 3072 | (alg_k & SSL_kECDHE) |
| 3073 | /* and we have an ephemeral EC key */ | 3073 | /* and we have an ephemeral EC key */ |
| 3074 | && (s->cert->ecdh_tmp != NULL) | 3074 | && (s->cert->ecdh_tmp != NULL) |
| 3075 | /* and the client specified an EllipticCurves extension */ | 3075 | /* and the client specified an EllipticCurves extension */ |
| @@ -3108,7 +3108,7 @@ SSL_CIPHER *ssl3_choose_cipher(SSL *s, STACK_OF(SSL_CIPHER) *clnt, | |||
| 3108 | continue; | 3108 | continue; |
| 3109 | ii = sk_SSL_CIPHER_find(allow, c); | 3109 | ii = sk_SSL_CIPHER_find(allow, c); |
| 3110 | if (ii >= 0) { | 3110 | if (ii >= 0) { |
| 3111 | if ((alg_k & SSL_kEECDH) && | 3111 | if ((alg_k & SSL_kECDHE) && |
| 3112 | (alg_a & SSL_aECDSA) && s->s3->is_probably_safari) { | 3112 | (alg_a & SSL_aECDSA) && s->s3->is_probably_safari) { |
| 3113 | if (!ret) | 3113 | if (!ret) |
| 3114 | ret = sk_SSL_CIPHER_value(allow, ii); | 3114 | ret = sk_SSL_CIPHER_value(allow, ii); |
| @@ -3139,12 +3139,12 @@ ssl3_get_req_cert_type(SSL *s, unsigned char *p) | |||
| 3139 | } | 3139 | } |
| 3140 | #endif | 3140 | #endif |
| 3141 | 3141 | ||
| 3142 | if (alg_k & (SSL_kDHr|SSL_kEDH)) { | 3142 | if (alg_k & (SSL_kDHr|SSL_kDHE)) { |
| 3143 | p[ret++] = SSL3_CT_RSA_FIXED_DH; | 3143 | p[ret++] = SSL3_CT_RSA_FIXED_DH; |
| 3144 | p[ret++] = SSL3_CT_DSS_FIXED_DH; | 3144 | p[ret++] = SSL3_CT_DSS_FIXED_DH; |
| 3145 | } | 3145 | } |
| 3146 | if ((s->version == SSL3_VERSION) && | 3146 | if ((s->version == SSL3_VERSION) && |
| 3147 | (alg_k & (SSL_kEDH|SSL_kDHd|SSL_kDHr))) { | 3147 | (alg_k & (SSL_kDHE|SSL_kDHd|SSL_kDHr))) { |
| 3148 | p[ret++] = SSL3_CT_RSA_EPHEMERAL_DH; | 3148 | p[ret++] = SSL3_CT_RSA_EPHEMERAL_DH; |
| 3149 | p[ret++] = SSL3_CT_DSS_EPHEMERAL_DH; | 3149 | p[ret++] = SSL3_CT_DSS_EPHEMERAL_DH; |
| 3150 | } | 3150 | } |
| @@ -3157,7 +3157,7 @@ ssl3_get_req_cert_type(SSL *s, unsigned char *p) | |||
| 3157 | 3157 | ||
| 3158 | /* | 3158 | /* |
| 3159 | * ECDSA certs can be used with RSA cipher suites as well | 3159 | * ECDSA certs can be used with RSA cipher suites as well |
| 3160 | * so we don't need to check for SSL_kECDH or SSL_kEECDH | 3160 | * so we don't need to check for SSL_kECDH or SSL_kECDHE |
| 3161 | */ | 3161 | */ |
| 3162 | if (s->version >= TLS1_VERSION) { | 3162 | if (s->version >= TLS1_VERSION) { |
| 3163 | p[ret++] = TLS_CT_ECDSA_SIGN; | 3163 | p[ret++] = TLS_CT_ECDSA_SIGN; |
