summaryrefslogtreecommitdiff
path: root/src/lib/libssl/ssl_kex.c
diff options
context:
space:
mode:
authortb <>2023-06-27 11:03:41 +0000
committertb <>2023-06-27 11:03:41 +0000
commit8e2f453bddde6924a647ded12bcd14de4676dc76 (patch)
tree4baf32a5fd85402ac7903d73c045876fce291cd3 /src/lib/libssl/ssl_kex.c
parent476172a658127f035fb52c0834a423aab8363fc4 (diff)
downloadopenbsd-8e2f453bddde6924a647ded12bcd14de4676dc76.tar.gz
openbsd-8e2f453bddde6924a647ded12bcd14de4676dc76.tar.bz2
openbsd-8e2f453bddde6924a647ded12bcd14de4676dc76.zip
Switch from get_rfc*() to BN_get_rfc*()
The existence of the public get_rfc*() API is a historic curiosity that may soon be corrected. We inherited its use and it survived in libssl until now. Switch to the better named BN_get_rfc*() wrappers. ok jsing
Diffstat (limited to 'src/lib/libssl/ssl_kex.c')
-rw-r--r--src/lib/libssl/ssl_kex.c14
1 files changed, 7 insertions, 7 deletions
diff --git a/src/lib/libssl/ssl_kex.c b/src/lib/libssl/ssl_kex.c
index cab2f1c78d..85caf25e33 100644
--- a/src/lib/libssl/ssl_kex.c
+++ b/src/lib/libssl/ssl_kex.c
@@ -1,4 +1,4 @@
1/* $OpenBSD: ssl_kex.c,v 1.10 2022/01/14 09:11:22 tb Exp $ */ 1/* $OpenBSD: ssl_kex.c,v 1.11 2023/06/27 11:03:41 tb Exp $ */
2/* 2/*
3 * Copyright (c) 2020, 2021 Joel Sing <jsing@openbsd.org> 3 * Copyright (c) 2020, 2021 Joel Sing <jsing@openbsd.org>
4 * 4 *
@@ -63,17 +63,17 @@ ssl_kex_generate_dhe_params_auto(DH *dh, size_t key_bits)
63 int ret = 0; 63 int ret = 0;
64 64
65 if (key_bits >= 8192) 65 if (key_bits >= 8192)
66 p = get_rfc3526_prime_8192(NULL); 66 p = BN_get_rfc3526_prime_8192(NULL);
67 else if (key_bits >= 4096) 67 else if (key_bits >= 4096)
68 p = get_rfc3526_prime_4096(NULL); 68 p = BN_get_rfc3526_prime_4096(NULL);
69 else if (key_bits >= 3072) 69 else if (key_bits >= 3072)
70 p = get_rfc3526_prime_3072(NULL); 70 p = BN_get_rfc3526_prime_3072(NULL);
71 else if (key_bits >= 2048) 71 else if (key_bits >= 2048)
72 p = get_rfc3526_prime_2048(NULL); 72 p = BN_get_rfc3526_prime_2048(NULL);
73 else if (key_bits >= 1536) 73 else if (key_bits >= 1536)
74 p = get_rfc3526_prime_1536(NULL); 74 p = BN_get_rfc3526_prime_1536(NULL);
75 else 75 else
76 p = get_rfc2409_prime_1024(NULL); 76 p = BN_get_rfc2409_prime_1024(NULL);
77 77
78 if (p == NULL) 78 if (p == NULL)
79 goto err; 79 goto err;