diff options
author | jsing <> | 2017-08-12 02:55:22 +0000 |
---|---|---|
committer | jsing <> | 2017-08-12 02:55:22 +0000 |
commit | fad09b90be5a30598349a06adfd7574ef7264599 (patch) | |
tree | 772b4920210f4698c462169705fb8707d52beb22 /src/lib/libssl/ssl_srvr.c | |
parent | 0b7f072258d7c4dc45d470d21ddb06b4cba1a765 (diff) | |
download | openbsd-fad09b90be5a30598349a06adfd7574ef7264599.tar.gz openbsd-fad09b90be5a30598349a06adfd7574ef7264599.tar.bz2 openbsd-fad09b90be5a30598349a06adfd7574ef7264599.zip |
Remove support for DSS/DSA, since we removed the cipher suites a while
back.
ok guenther@
Diffstat (limited to 'src/lib/libssl/ssl_srvr.c')
-rw-r--r-- | src/lib/libssl/ssl_srvr.c | 13 |
1 files changed, 1 insertions, 12 deletions
diff --git a/src/lib/libssl/ssl_srvr.c b/src/lib/libssl/ssl_srvr.c index e370b7571c..a21039e727 100644 --- a/src/lib/libssl/ssl_srvr.c +++ b/src/lib/libssl/ssl_srvr.c | |||
@@ -1,4 +1,4 @@ | |||
1 | /* $OpenBSD: ssl_srvr.c,v 1.19 2017/08/11 17:54:41 jsing Exp $ */ | 1 | /* $OpenBSD: ssl_srvr.c,v 1.20 2017/08/12 02:55:22 jsing Exp $ */ |
2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
3 | * All rights reserved. | 3 | * All rights reserved. |
4 | * | 4 | * |
@@ -2256,17 +2256,6 @@ ssl3_get_cert_verify(SSL *s) | |||
2256 | goto f_err; | 2256 | goto f_err; |
2257 | } | 2257 | } |
2258 | } else | 2258 | } else |
2259 | if (pkey->type == EVP_PKEY_DSA) { | ||
2260 | j = DSA_verify(pkey->save_type, | ||
2261 | &(S3I(s)->tmp.cert_verify_md[MD5_DIGEST_LENGTH]), | ||
2262 | SHA_DIGEST_LENGTH, p, i, pkey->pkey.dsa); | ||
2263 | if (j <= 0) { | ||
2264 | /* bad signature */ | ||
2265 | al = SSL_AD_DECRYPT_ERROR; | ||
2266 | SSLerror(s, SSL_R_BAD_DSA_SIGNATURE); | ||
2267 | goto f_err; | ||
2268 | } | ||
2269 | } else | ||
2270 | if (pkey->type == EVP_PKEY_EC) { | 2259 | if (pkey->type == EVP_PKEY_EC) { |
2271 | j = ECDSA_verify(pkey->save_type, | 2260 | j = ECDSA_verify(pkey->save_type, |
2272 | &(S3I(s)->tmp.cert_verify_md[MD5_DIGEST_LENGTH]), | 2261 | &(S3I(s)->tmp.cert_verify_md[MD5_DIGEST_LENGTH]), |