diff options
| author | bcook <> | 2016-09-20 04:25:09 +0000 | 
|---|---|---|
| committer | bcook <> | 2016-09-20 04:25:09 +0000 | 
| commit | 1dbcb54204a7b24fa96a79e4bd09dc80c94bc016 (patch) | |
| tree | a06be3d99c665826951a3407061d026fe150285e /src/lib/libssl/t1_lib.c | |
| parent | 9a8cde0f82c643d383a2c4619e7f8d2af1c0c172 (diff) | |
| download | openbsd-1dbcb54204a7b24fa96a79e4bd09dc80c94bc016.tar.gz openbsd-1dbcb54204a7b24fa96a79e4bd09dc80c94bc016.tar.bz2 openbsd-1dbcb54204a7b24fa96a79e4bd09dc80c94bc016.zip | |
Avoid selecting weak digests for (EC)DH when using SNI.
from OpenSSL:
SSL_set_SSL_CTX is normally called for SNI after ClientHello has
received and the digest to use for each certificate has been decided.
The original ssl->cert contains the negotiated digests and is now
copied to the new ssl->cert.
noted by David Benjamin and Kinichiro Inoguchi
Diffstat (limited to '')
0 files changed, 0 insertions, 0 deletions
