diff options
-rw-r--r-- | src/lib/libtls/tls.c | 7 |
1 files changed, 6 insertions, 1 deletions
diff --git a/src/lib/libtls/tls.c b/src/lib/libtls/tls.c index b639873df4..7906788b08 100644 --- a/src/lib/libtls/tls.c +++ b/src/lib/libtls/tls.c | |||
@@ -1,4 +1,4 @@ | |||
1 | /* $OpenBSD: tls.c,v 1.62 2017/05/06 20:59:28 jsing Exp $ */ | 1 | /* $OpenBSD: tls.c,v 1.63 2017/05/07 01:59:34 jsing Exp $ */ |
2 | /* | 2 | /* |
3 | * Copyright (c) 2014 Joel Sing <jsing@openbsd.org> | 3 | * Copyright (c) 2014 Joel Sing <jsing@openbsd.org> |
4 | * | 4 | * |
@@ -627,6 +627,11 @@ tls_handshake(struct tls *ctx) | |||
627 | goto out; | 627 | goto out; |
628 | } | 628 | } |
629 | 629 | ||
630 | if ((ctx->state & TLS_HANDSHAKE_COMPLETE) != 0) { | ||
631 | tls_set_errorx(ctx, "handshake already completed"); | ||
632 | goto out; | ||
633 | } | ||
634 | |||
630 | if ((ctx->flags & TLS_CLIENT) != 0) | 635 | if ((ctx->flags & TLS_CLIENT) != 0) |
631 | rv = tls_handshake_client(ctx); | 636 | rv = tls_handshake_client(ctx); |
632 | else if ((ctx->flags & TLS_SERVER_CONN) != 0) | 637 | else if ((ctx->flags & TLS_SERVER_CONN) != 0) |