diff options
| author | jsing <> | 2017-08-12 02:55:22 +0000 |
|---|---|---|
| committer | jsing <> | 2017-08-12 02:55:22 +0000 |
| commit | 6c1ad08ad5efc682da1effe59e647f7ac8cdb641 (patch) | |
| tree | 772b4920210f4698c462169705fb8707d52beb22 /src/lib/libssl/ssl_srvr.c | |
| parent | b316f9f277648e3f7b8d4b8e8c5efe957a0fd85c (diff) | |
| download | openbsd-6c1ad08ad5efc682da1effe59e647f7ac8cdb641.tar.gz openbsd-6c1ad08ad5efc682da1effe59e647f7ac8cdb641.tar.bz2 openbsd-6c1ad08ad5efc682da1effe59e647f7ac8cdb641.zip | |
Remove support for DSS/DSA, since we removed the cipher suites a while
back.
ok guenther@
Diffstat (limited to 'src/lib/libssl/ssl_srvr.c')
| -rw-r--r-- | src/lib/libssl/ssl_srvr.c | 13 |
1 files changed, 1 insertions, 12 deletions
diff --git a/src/lib/libssl/ssl_srvr.c b/src/lib/libssl/ssl_srvr.c index e370b7571c..a21039e727 100644 --- a/src/lib/libssl/ssl_srvr.c +++ b/src/lib/libssl/ssl_srvr.c | |||
| @@ -1,4 +1,4 @@ | |||
| 1 | /* $OpenBSD: ssl_srvr.c,v 1.19 2017/08/11 17:54:41 jsing Exp $ */ | 1 | /* $OpenBSD: ssl_srvr.c,v 1.20 2017/08/12 02:55:22 jsing Exp $ */ |
| 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
| 3 | * All rights reserved. | 3 | * All rights reserved. |
| 4 | * | 4 | * |
| @@ -2256,17 +2256,6 @@ ssl3_get_cert_verify(SSL *s) | |||
| 2256 | goto f_err; | 2256 | goto f_err; |
| 2257 | } | 2257 | } |
| 2258 | } else | 2258 | } else |
| 2259 | if (pkey->type == EVP_PKEY_DSA) { | ||
| 2260 | j = DSA_verify(pkey->save_type, | ||
| 2261 | &(S3I(s)->tmp.cert_verify_md[MD5_DIGEST_LENGTH]), | ||
| 2262 | SHA_DIGEST_LENGTH, p, i, pkey->pkey.dsa); | ||
| 2263 | if (j <= 0) { | ||
| 2264 | /* bad signature */ | ||
| 2265 | al = SSL_AD_DECRYPT_ERROR; | ||
| 2266 | SSLerror(s, SSL_R_BAD_DSA_SIGNATURE); | ||
| 2267 | goto f_err; | ||
| 2268 | } | ||
| 2269 | } else | ||
| 2270 | if (pkey->type == EVP_PKEY_EC) { | 2259 | if (pkey->type == EVP_PKEY_EC) { |
| 2271 | j = ECDSA_verify(pkey->save_type, | 2260 | j = ECDSA_verify(pkey->save_type, |
| 2272 | &(S3I(s)->tmp.cert_verify_md[MD5_DIGEST_LENGTH]), | 2261 | &(S3I(s)->tmp.cert_verify_md[MD5_DIGEST_LENGTH]), |
