diff options
Diffstat (limited to 'src/lib/libssl/s3_lib.c')
-rw-r--r-- | src/lib/libssl/s3_lib.c | 134 |
1 files changed, 67 insertions, 67 deletions
diff --git a/src/lib/libssl/s3_lib.c b/src/lib/libssl/s3_lib.c index f94e207fc4..decdda90a3 100644 --- a/src/lib/libssl/s3_lib.c +++ b/src/lib/libssl/s3_lib.c | |||
@@ -1,4 +1,4 @@ | |||
1 | /* $OpenBSD: s3_lib.c,v 1.69 2014/07/11 09:24:44 beck Exp $ */ | 1 | /* $OpenBSD: s3_lib.c,v 1.70 2014/07/12 22:33:39 jsing Exp $ */ |
2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) | 2 | /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) |
3 | * All rights reserved. | 3 | * All rights reserved. |
4 | * | 4 | * |
@@ -433,7 +433,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
433 | .valid = 0, /* Weakened 40-bit export cipher. */ | 433 | .valid = 0, /* Weakened 40-bit export cipher. */ |
434 | .name = SSL3_TXT_EDH_DSS_DES_40_CBC_SHA, | 434 | .name = SSL3_TXT_EDH_DSS_DES_40_CBC_SHA, |
435 | .id = SSL3_CK_EDH_DSS_DES_40_CBC_SHA, | 435 | .id = SSL3_CK_EDH_DSS_DES_40_CBC_SHA, |
436 | .algorithm_mkey = SSL_kEDH, | 436 | .algorithm_mkey = SSL_kDHE, |
437 | .algorithm_auth = SSL_aDSS, | 437 | .algorithm_auth = SSL_aDSS, |
438 | .algorithm_enc = SSL_DES, | 438 | .algorithm_enc = SSL_DES, |
439 | .algorithm_mac = SSL_SHA1, | 439 | .algorithm_mac = SSL_SHA1, |
@@ -449,7 +449,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
449 | .valid = 1, | 449 | .valid = 1, |
450 | .name = SSL3_TXT_EDH_DSS_DES_64_CBC_SHA, | 450 | .name = SSL3_TXT_EDH_DSS_DES_64_CBC_SHA, |
451 | .id = SSL3_CK_EDH_DSS_DES_64_CBC_SHA, | 451 | .id = SSL3_CK_EDH_DSS_DES_64_CBC_SHA, |
452 | .algorithm_mkey = SSL_kEDH, | 452 | .algorithm_mkey = SSL_kDHE, |
453 | .algorithm_auth = SSL_aDSS, | 453 | .algorithm_auth = SSL_aDSS, |
454 | .algorithm_enc = SSL_DES, | 454 | .algorithm_enc = SSL_DES, |
455 | .algorithm_mac = SSL_SHA1, | 455 | .algorithm_mac = SSL_SHA1, |
@@ -465,7 +465,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
465 | .valid = 1, | 465 | .valid = 1, |
466 | .name = SSL3_TXT_EDH_DSS_DES_192_CBC3_SHA, | 466 | .name = SSL3_TXT_EDH_DSS_DES_192_CBC3_SHA, |
467 | .id = SSL3_CK_EDH_DSS_DES_192_CBC3_SHA, | 467 | .id = SSL3_CK_EDH_DSS_DES_192_CBC3_SHA, |
468 | .algorithm_mkey = SSL_kEDH, | 468 | .algorithm_mkey = SSL_kDHE, |
469 | .algorithm_auth = SSL_aDSS, | 469 | .algorithm_auth = SSL_aDSS, |
470 | .algorithm_enc = SSL_3DES, | 470 | .algorithm_enc = SSL_3DES, |
471 | .algorithm_mac = SSL_SHA1, | 471 | .algorithm_mac = SSL_SHA1, |
@@ -481,7 +481,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
481 | .valid = 0, /* Weakened 40-bit export cipher. */ | 481 | .valid = 0, /* Weakened 40-bit export cipher. */ |
482 | .name = SSL3_TXT_EDH_RSA_DES_40_CBC_SHA, | 482 | .name = SSL3_TXT_EDH_RSA_DES_40_CBC_SHA, |
483 | .id = SSL3_CK_EDH_RSA_DES_40_CBC_SHA, | 483 | .id = SSL3_CK_EDH_RSA_DES_40_CBC_SHA, |
484 | .algorithm_mkey = SSL_kEDH, | 484 | .algorithm_mkey = SSL_kDHE, |
485 | .algorithm_auth = SSL_aRSA, | 485 | .algorithm_auth = SSL_aRSA, |
486 | .algorithm_enc = SSL_DES, | 486 | .algorithm_enc = SSL_DES, |
487 | .algorithm_mac = SSL_SHA1, | 487 | .algorithm_mac = SSL_SHA1, |
@@ -497,7 +497,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
497 | .valid = 1, | 497 | .valid = 1, |
498 | .name = SSL3_TXT_EDH_RSA_DES_64_CBC_SHA, | 498 | .name = SSL3_TXT_EDH_RSA_DES_64_CBC_SHA, |
499 | .id = SSL3_CK_EDH_RSA_DES_64_CBC_SHA, | 499 | .id = SSL3_CK_EDH_RSA_DES_64_CBC_SHA, |
500 | .algorithm_mkey = SSL_kEDH, | 500 | .algorithm_mkey = SSL_kDHE, |
501 | .algorithm_auth = SSL_aRSA, | 501 | .algorithm_auth = SSL_aRSA, |
502 | .algorithm_enc = SSL_DES, | 502 | .algorithm_enc = SSL_DES, |
503 | .algorithm_mac = SSL_SHA1, | 503 | .algorithm_mac = SSL_SHA1, |
@@ -513,7 +513,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
513 | .valid = 1, | 513 | .valid = 1, |
514 | .name = SSL3_TXT_EDH_RSA_DES_192_CBC3_SHA, | 514 | .name = SSL3_TXT_EDH_RSA_DES_192_CBC3_SHA, |
515 | .id = SSL3_CK_EDH_RSA_DES_192_CBC3_SHA, | 515 | .id = SSL3_CK_EDH_RSA_DES_192_CBC3_SHA, |
516 | .algorithm_mkey = SSL_kEDH, | 516 | .algorithm_mkey = SSL_kDHE, |
517 | .algorithm_auth = SSL_aRSA, | 517 | .algorithm_auth = SSL_aRSA, |
518 | .algorithm_enc = SSL_3DES, | 518 | .algorithm_enc = SSL_3DES, |
519 | .algorithm_mac = SSL_SHA1, | 519 | .algorithm_mac = SSL_SHA1, |
@@ -529,7 +529,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
529 | .valid = 0, /* Weakened 40-bit export cipher. */ | 529 | .valid = 0, /* Weakened 40-bit export cipher. */ |
530 | .name = SSL3_TXT_ADH_RC4_40_MD5, | 530 | .name = SSL3_TXT_ADH_RC4_40_MD5, |
531 | .id = SSL3_CK_ADH_RC4_40_MD5, | 531 | .id = SSL3_CK_ADH_RC4_40_MD5, |
532 | .algorithm_mkey = SSL_kEDH, | 532 | .algorithm_mkey = SSL_kDHE, |
533 | .algorithm_auth = SSL_aNULL, | 533 | .algorithm_auth = SSL_aNULL, |
534 | .algorithm_enc = SSL_RC4, | 534 | .algorithm_enc = SSL_RC4, |
535 | .algorithm_mac = SSL_MD5, | 535 | .algorithm_mac = SSL_MD5, |
@@ -545,7 +545,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
545 | .valid = 1, | 545 | .valid = 1, |
546 | .name = SSL3_TXT_ADH_RC4_128_MD5, | 546 | .name = SSL3_TXT_ADH_RC4_128_MD5, |
547 | .id = SSL3_CK_ADH_RC4_128_MD5, | 547 | .id = SSL3_CK_ADH_RC4_128_MD5, |
548 | .algorithm_mkey = SSL_kEDH, | 548 | .algorithm_mkey = SSL_kDHE, |
549 | .algorithm_auth = SSL_aNULL, | 549 | .algorithm_auth = SSL_aNULL, |
550 | .algorithm_enc = SSL_RC4, | 550 | .algorithm_enc = SSL_RC4, |
551 | .algorithm_mac = SSL_MD5, | 551 | .algorithm_mac = SSL_MD5, |
@@ -561,7 +561,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
561 | .valid = 0, /* Weakened 40-bit export cipher. */ | 561 | .valid = 0, /* Weakened 40-bit export cipher. */ |
562 | .name = SSL3_TXT_ADH_DES_40_CBC_SHA, | 562 | .name = SSL3_TXT_ADH_DES_40_CBC_SHA, |
563 | .id = SSL3_CK_ADH_DES_40_CBC_SHA, | 563 | .id = SSL3_CK_ADH_DES_40_CBC_SHA, |
564 | .algorithm_mkey = SSL_kEDH, | 564 | .algorithm_mkey = SSL_kDHE, |
565 | .algorithm_auth = SSL_aNULL, | 565 | .algorithm_auth = SSL_aNULL, |
566 | .algorithm_enc = SSL_DES, | 566 | .algorithm_enc = SSL_DES, |
567 | .algorithm_mac = SSL_SHA1, | 567 | .algorithm_mac = SSL_SHA1, |
@@ -577,7 +577,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
577 | .valid = 1, | 577 | .valid = 1, |
578 | .name = SSL3_TXT_ADH_DES_64_CBC_SHA, | 578 | .name = SSL3_TXT_ADH_DES_64_CBC_SHA, |
579 | .id = SSL3_CK_ADH_DES_64_CBC_SHA, | 579 | .id = SSL3_CK_ADH_DES_64_CBC_SHA, |
580 | .algorithm_mkey = SSL_kEDH, | 580 | .algorithm_mkey = SSL_kDHE, |
581 | .algorithm_auth = SSL_aNULL, | 581 | .algorithm_auth = SSL_aNULL, |
582 | .algorithm_enc = SSL_DES, | 582 | .algorithm_enc = SSL_DES, |
583 | .algorithm_mac = SSL_SHA1, | 583 | .algorithm_mac = SSL_SHA1, |
@@ -593,7 +593,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
593 | .valid = 1, | 593 | .valid = 1, |
594 | .name = SSL3_TXT_ADH_DES_192_CBC_SHA, | 594 | .name = SSL3_TXT_ADH_DES_192_CBC_SHA, |
595 | .id = SSL3_CK_ADH_DES_192_CBC_SHA, | 595 | .id = SSL3_CK_ADH_DES_192_CBC_SHA, |
596 | .algorithm_mkey = SSL_kEDH, | 596 | .algorithm_mkey = SSL_kDHE, |
597 | .algorithm_auth = SSL_aNULL, | 597 | .algorithm_auth = SSL_aNULL, |
598 | .algorithm_enc = SSL_3DES, | 598 | .algorithm_enc = SSL_3DES, |
599 | .algorithm_mac = SSL_SHA1, | 599 | .algorithm_mac = SSL_SHA1, |
@@ -655,7 +655,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
655 | .valid = 1, | 655 | .valid = 1, |
656 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_SHA, | 656 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_SHA, |
657 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_SHA, | 657 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_SHA, |
658 | .algorithm_mkey = SSL_kEDH, | 658 | .algorithm_mkey = SSL_kDHE, |
659 | .algorithm_auth = SSL_aDSS, | 659 | .algorithm_auth = SSL_aDSS, |
660 | .algorithm_enc = SSL_AES128, | 660 | .algorithm_enc = SSL_AES128, |
661 | .algorithm_mac = SSL_SHA1, | 661 | .algorithm_mac = SSL_SHA1, |
@@ -670,7 +670,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
670 | .valid = 1, | 670 | .valid = 1, |
671 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_SHA, | 671 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_SHA, |
672 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_SHA, | 672 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_SHA, |
673 | .algorithm_mkey = SSL_kEDH, | 673 | .algorithm_mkey = SSL_kDHE, |
674 | .algorithm_auth = SSL_aRSA, | 674 | .algorithm_auth = SSL_aRSA, |
675 | .algorithm_enc = SSL_AES128, | 675 | .algorithm_enc = SSL_AES128, |
676 | .algorithm_mac = SSL_SHA1, | 676 | .algorithm_mac = SSL_SHA1, |
@@ -685,7 +685,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
685 | .valid = 1, | 685 | .valid = 1, |
686 | .name = TLS1_TXT_ADH_WITH_AES_128_SHA, | 686 | .name = TLS1_TXT_ADH_WITH_AES_128_SHA, |
687 | .id = TLS1_CK_ADH_WITH_AES_128_SHA, | 687 | .id = TLS1_CK_ADH_WITH_AES_128_SHA, |
688 | .algorithm_mkey = SSL_kEDH, | 688 | .algorithm_mkey = SSL_kDHE, |
689 | .algorithm_auth = SSL_aNULL, | 689 | .algorithm_auth = SSL_aNULL, |
690 | .algorithm_enc = SSL_AES128, | 690 | .algorithm_enc = SSL_AES128, |
691 | .algorithm_mac = SSL_SHA1, | 691 | .algorithm_mac = SSL_SHA1, |
@@ -748,7 +748,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
748 | .valid = 1, | 748 | .valid = 1, |
749 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_SHA, | 749 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_SHA, |
750 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_SHA, | 750 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_SHA, |
751 | .algorithm_mkey = SSL_kEDH, | 751 | .algorithm_mkey = SSL_kDHE, |
752 | .algorithm_auth = SSL_aDSS, | 752 | .algorithm_auth = SSL_aDSS, |
753 | .algorithm_enc = SSL_AES256, | 753 | .algorithm_enc = SSL_AES256, |
754 | .algorithm_mac = SSL_SHA1, | 754 | .algorithm_mac = SSL_SHA1, |
@@ -764,7 +764,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
764 | .valid = 1, | 764 | .valid = 1, |
765 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_SHA, | 765 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_SHA, |
766 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_SHA, | 766 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_SHA, |
767 | .algorithm_mkey = SSL_kEDH, | 767 | .algorithm_mkey = SSL_kDHE, |
768 | .algorithm_auth = SSL_aRSA, | 768 | .algorithm_auth = SSL_aRSA, |
769 | .algorithm_enc = SSL_AES256, | 769 | .algorithm_enc = SSL_AES256, |
770 | .algorithm_mac = SSL_SHA1, | 770 | .algorithm_mac = SSL_SHA1, |
@@ -780,7 +780,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
780 | .valid = 1, | 780 | .valid = 1, |
781 | .name = TLS1_TXT_ADH_WITH_AES_256_SHA, | 781 | .name = TLS1_TXT_ADH_WITH_AES_256_SHA, |
782 | .id = TLS1_CK_ADH_WITH_AES_256_SHA, | 782 | .id = TLS1_CK_ADH_WITH_AES_256_SHA, |
783 | .algorithm_mkey = SSL_kEDH, | 783 | .algorithm_mkey = SSL_kDHE, |
784 | .algorithm_auth = SSL_aNULL, | 784 | .algorithm_auth = SSL_aNULL, |
785 | .algorithm_enc = SSL_AES256, | 785 | .algorithm_enc = SSL_AES256, |
786 | .algorithm_mac = SSL_SHA1, | 786 | .algorithm_mac = SSL_SHA1, |
@@ -877,7 +877,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
877 | .valid = 1, | 877 | .valid = 1, |
878 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_SHA256, | 878 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_SHA256, |
879 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_SHA256, | 879 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_SHA256, |
880 | .algorithm_mkey = SSL_kEDH, | 880 | .algorithm_mkey = SSL_kDHE, |
881 | .algorithm_auth = SSL_aDSS, | 881 | .algorithm_auth = SSL_aDSS, |
882 | .algorithm_enc = SSL_AES128, | 882 | .algorithm_enc = SSL_AES128, |
883 | .algorithm_mac = SSL_SHA256, | 883 | .algorithm_mac = SSL_SHA256, |
@@ -944,7 +944,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
944 | .valid = 1, | 944 | .valid = 1, |
945 | .name = TLS1_TXT_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA, | 945 | .name = TLS1_TXT_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA, |
946 | .id = TLS1_CK_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA, | 946 | .id = TLS1_CK_DHE_DSS_WITH_CAMELLIA_128_CBC_SHA, |
947 | .algorithm_mkey = SSL_kEDH, | 947 | .algorithm_mkey = SSL_kDHE, |
948 | .algorithm_auth = SSL_aDSS, | 948 | .algorithm_auth = SSL_aDSS, |
949 | .algorithm_enc = SSL_CAMELLIA128, | 949 | .algorithm_enc = SSL_CAMELLIA128, |
950 | .algorithm_mac = SSL_SHA1, | 950 | .algorithm_mac = SSL_SHA1, |
@@ -960,7 +960,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
960 | .valid = 1, | 960 | .valid = 1, |
961 | .name = TLS1_TXT_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA, | 961 | .name = TLS1_TXT_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA, |
962 | .id = TLS1_CK_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA, | 962 | .id = TLS1_CK_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA, |
963 | .algorithm_mkey = SSL_kEDH, | 963 | .algorithm_mkey = SSL_kDHE, |
964 | .algorithm_auth = SSL_aRSA, | 964 | .algorithm_auth = SSL_aRSA, |
965 | .algorithm_enc = SSL_CAMELLIA128, | 965 | .algorithm_enc = SSL_CAMELLIA128, |
966 | .algorithm_mac = SSL_SHA1, | 966 | .algorithm_mac = SSL_SHA1, |
@@ -976,7 +976,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
976 | .valid = 1, | 976 | .valid = 1, |
977 | .name = TLS1_TXT_ADH_WITH_CAMELLIA_128_CBC_SHA, | 977 | .name = TLS1_TXT_ADH_WITH_CAMELLIA_128_CBC_SHA, |
978 | .id = TLS1_CK_ADH_WITH_CAMELLIA_128_CBC_SHA, | 978 | .id = TLS1_CK_ADH_WITH_CAMELLIA_128_CBC_SHA, |
979 | .algorithm_mkey = SSL_kEDH, | 979 | .algorithm_mkey = SSL_kDHE, |
980 | .algorithm_auth = SSL_aNULL, | 980 | .algorithm_auth = SSL_aNULL, |
981 | .algorithm_enc = SSL_CAMELLIA128, | 981 | .algorithm_enc = SSL_CAMELLIA128, |
982 | .algorithm_mac = SSL_SHA1, | 982 | .algorithm_mac = SSL_SHA1, |
@@ -994,7 +994,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
994 | .valid = 1, | 994 | .valid = 1, |
995 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_SHA256, | 995 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_SHA256, |
996 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_SHA256, | 996 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_SHA256, |
997 | .algorithm_mkey = SSL_kEDH, | 997 | .algorithm_mkey = SSL_kDHE, |
998 | .algorithm_auth = SSL_aRSA, | 998 | .algorithm_auth = SSL_aRSA, |
999 | .algorithm_enc = SSL_AES128, | 999 | .algorithm_enc = SSL_AES128, |
1000 | .algorithm_mac = SSL_SHA256, | 1000 | .algorithm_mac = SSL_SHA256, |
@@ -1042,7 +1042,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1042 | .valid = 1, | 1042 | .valid = 1, |
1043 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_SHA256, | 1043 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_SHA256, |
1044 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_SHA256, | 1044 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_SHA256, |
1045 | .algorithm_mkey = SSL_kEDH, | 1045 | .algorithm_mkey = SSL_kDHE, |
1046 | .algorithm_auth = SSL_aDSS, | 1046 | .algorithm_auth = SSL_aDSS, |
1047 | .algorithm_enc = SSL_AES256, | 1047 | .algorithm_enc = SSL_AES256, |
1048 | .algorithm_mac = SSL_SHA256, | 1048 | .algorithm_mac = SSL_SHA256, |
@@ -1058,7 +1058,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1058 | .valid = 1, | 1058 | .valid = 1, |
1059 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_SHA256, | 1059 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_SHA256, |
1060 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_SHA256, | 1060 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_SHA256, |
1061 | .algorithm_mkey = SSL_kEDH, | 1061 | .algorithm_mkey = SSL_kDHE, |
1062 | .algorithm_auth = SSL_aRSA, | 1062 | .algorithm_auth = SSL_aRSA, |
1063 | .algorithm_enc = SSL_AES256, | 1063 | .algorithm_enc = SSL_AES256, |
1064 | .algorithm_mac = SSL_SHA256, | 1064 | .algorithm_mac = SSL_SHA256, |
@@ -1074,7 +1074,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1074 | .valid = 1, | 1074 | .valid = 1, |
1075 | .name = TLS1_TXT_ADH_WITH_AES_128_SHA256, | 1075 | .name = TLS1_TXT_ADH_WITH_AES_128_SHA256, |
1076 | .id = TLS1_CK_ADH_WITH_AES_128_SHA256, | 1076 | .id = TLS1_CK_ADH_WITH_AES_128_SHA256, |
1077 | .algorithm_mkey = SSL_kEDH, | 1077 | .algorithm_mkey = SSL_kDHE, |
1078 | .algorithm_auth = SSL_aNULL, | 1078 | .algorithm_auth = SSL_aNULL, |
1079 | .algorithm_enc = SSL_AES128, | 1079 | .algorithm_enc = SSL_AES128, |
1080 | .algorithm_mac = SSL_SHA256, | 1080 | .algorithm_mac = SSL_SHA256, |
@@ -1090,7 +1090,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1090 | .valid = 1, | 1090 | .valid = 1, |
1091 | .name = TLS1_TXT_ADH_WITH_AES_256_SHA256, | 1091 | .name = TLS1_TXT_ADH_WITH_AES_256_SHA256, |
1092 | .id = TLS1_CK_ADH_WITH_AES_256_SHA256, | 1092 | .id = TLS1_CK_ADH_WITH_AES_256_SHA256, |
1093 | .algorithm_mkey = SSL_kEDH, | 1093 | .algorithm_mkey = SSL_kDHE, |
1094 | .algorithm_auth = SSL_aNULL, | 1094 | .algorithm_auth = SSL_aNULL, |
1095 | .algorithm_enc = SSL_AES256, | 1095 | .algorithm_enc = SSL_AES256, |
1096 | .algorithm_mac = SSL_SHA256, | 1096 | .algorithm_mac = SSL_SHA256, |
@@ -1218,7 +1218,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1218 | .valid = 1, | 1218 | .valid = 1, |
1219 | .name = TLS1_TXT_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA, | 1219 | .name = TLS1_TXT_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA, |
1220 | .id = TLS1_CK_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA, | 1220 | .id = TLS1_CK_DHE_DSS_WITH_CAMELLIA_256_CBC_SHA, |
1221 | .algorithm_mkey = SSL_kEDH, | 1221 | .algorithm_mkey = SSL_kDHE, |
1222 | .algorithm_auth = SSL_aDSS, | 1222 | .algorithm_auth = SSL_aDSS, |
1223 | .algorithm_enc = SSL_CAMELLIA256, | 1223 | .algorithm_enc = SSL_CAMELLIA256, |
1224 | .algorithm_mac = SSL_SHA1, | 1224 | .algorithm_mac = SSL_SHA1, |
@@ -1234,7 +1234,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1234 | .valid = 1, | 1234 | .valid = 1, |
1235 | .name = TLS1_TXT_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA, | 1235 | .name = TLS1_TXT_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA, |
1236 | .id = TLS1_CK_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA, | 1236 | .id = TLS1_CK_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA, |
1237 | .algorithm_mkey = SSL_kEDH, | 1237 | .algorithm_mkey = SSL_kDHE, |
1238 | .algorithm_auth = SSL_aRSA, | 1238 | .algorithm_auth = SSL_aRSA, |
1239 | .algorithm_enc = SSL_CAMELLIA256, | 1239 | .algorithm_enc = SSL_CAMELLIA256, |
1240 | .algorithm_mac = SSL_SHA1, | 1240 | .algorithm_mac = SSL_SHA1, |
@@ -1250,7 +1250,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1250 | .valid = 1, | 1250 | .valid = 1, |
1251 | .name = TLS1_TXT_ADH_WITH_CAMELLIA_256_CBC_SHA, | 1251 | .name = TLS1_TXT_ADH_WITH_CAMELLIA_256_CBC_SHA, |
1252 | .id = TLS1_CK_ADH_WITH_CAMELLIA_256_CBC_SHA, | 1252 | .id = TLS1_CK_ADH_WITH_CAMELLIA_256_CBC_SHA, |
1253 | .algorithm_mkey = SSL_kEDH, | 1253 | .algorithm_mkey = SSL_kDHE, |
1254 | .algorithm_auth = SSL_aNULL, | 1254 | .algorithm_auth = SSL_aNULL, |
1255 | .algorithm_enc = SSL_CAMELLIA256, | 1255 | .algorithm_enc = SSL_CAMELLIA256, |
1256 | .algorithm_mac = SSL_SHA1, | 1256 | .algorithm_mac = SSL_SHA1, |
@@ -1306,7 +1306,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1306 | .valid = 1, | 1306 | .valid = 1, |
1307 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_GCM_SHA256, | 1307 | .name = TLS1_TXT_DHE_RSA_WITH_AES_128_GCM_SHA256, |
1308 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_GCM_SHA256, | 1308 | .id = TLS1_CK_DHE_RSA_WITH_AES_128_GCM_SHA256, |
1309 | .algorithm_mkey = SSL_kEDH, | 1309 | .algorithm_mkey = SSL_kDHE, |
1310 | .algorithm_auth = SSL_aRSA, | 1310 | .algorithm_auth = SSL_aRSA, |
1311 | .algorithm_enc = SSL_AES128GCM, | 1311 | .algorithm_enc = SSL_AES128GCM, |
1312 | .algorithm_mac = SSL_AEAD, | 1312 | .algorithm_mac = SSL_AEAD, |
@@ -1324,7 +1324,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1324 | .valid = 1, | 1324 | .valid = 1, |
1325 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_GCM_SHA384, | 1325 | .name = TLS1_TXT_DHE_RSA_WITH_AES_256_GCM_SHA384, |
1326 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_GCM_SHA384, | 1326 | .id = TLS1_CK_DHE_RSA_WITH_AES_256_GCM_SHA384, |
1327 | .algorithm_mkey = SSL_kEDH, | 1327 | .algorithm_mkey = SSL_kDHE, |
1328 | .algorithm_auth = SSL_aRSA, | 1328 | .algorithm_auth = SSL_aRSA, |
1329 | .algorithm_enc = SSL_AES256GCM, | 1329 | .algorithm_enc = SSL_AES256GCM, |
1330 | .algorithm_mac = SSL_AEAD, | 1330 | .algorithm_mac = SSL_AEAD, |
@@ -1378,7 +1378,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1378 | .valid = 1, | 1378 | .valid = 1, |
1379 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_GCM_SHA256, | 1379 | .name = TLS1_TXT_DHE_DSS_WITH_AES_128_GCM_SHA256, |
1380 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_GCM_SHA256, | 1380 | .id = TLS1_CK_DHE_DSS_WITH_AES_128_GCM_SHA256, |
1381 | .algorithm_mkey = SSL_kEDH, | 1381 | .algorithm_mkey = SSL_kDHE, |
1382 | .algorithm_auth = SSL_aDSS, | 1382 | .algorithm_auth = SSL_aDSS, |
1383 | .algorithm_enc = SSL_AES128GCM, | 1383 | .algorithm_enc = SSL_AES128GCM, |
1384 | .algorithm_mac = SSL_AEAD, | 1384 | .algorithm_mac = SSL_AEAD, |
@@ -1396,7 +1396,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1396 | .valid = 1, | 1396 | .valid = 1, |
1397 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_GCM_SHA384, | 1397 | .name = TLS1_TXT_DHE_DSS_WITH_AES_256_GCM_SHA384, |
1398 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_GCM_SHA384, | 1398 | .id = TLS1_CK_DHE_DSS_WITH_AES_256_GCM_SHA384, |
1399 | .algorithm_mkey = SSL_kEDH, | 1399 | .algorithm_mkey = SSL_kDHE, |
1400 | .algorithm_auth = SSL_aDSS, | 1400 | .algorithm_auth = SSL_aDSS, |
1401 | .algorithm_enc = SSL_AES256GCM, | 1401 | .algorithm_enc = SSL_AES256GCM, |
1402 | .algorithm_mac = SSL_AEAD, | 1402 | .algorithm_mac = SSL_AEAD, |
@@ -1450,7 +1450,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1450 | .valid = 1, | 1450 | .valid = 1, |
1451 | .name = TLS1_TXT_ADH_WITH_AES_128_GCM_SHA256, | 1451 | .name = TLS1_TXT_ADH_WITH_AES_128_GCM_SHA256, |
1452 | .id = TLS1_CK_ADH_WITH_AES_128_GCM_SHA256, | 1452 | .id = TLS1_CK_ADH_WITH_AES_128_GCM_SHA256, |
1453 | .algorithm_mkey = SSL_kEDH, | 1453 | .algorithm_mkey = SSL_kDHE, |
1454 | .algorithm_auth = SSL_aNULL, | 1454 | .algorithm_auth = SSL_aNULL, |
1455 | .algorithm_enc = SSL_AES128GCM, | 1455 | .algorithm_enc = SSL_AES128GCM, |
1456 | .algorithm_mac = SSL_AEAD, | 1456 | .algorithm_mac = SSL_AEAD, |
@@ -1468,7 +1468,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1468 | .valid = 1, | 1468 | .valid = 1, |
1469 | .name = TLS1_TXT_ADH_WITH_AES_256_GCM_SHA384, | 1469 | .name = TLS1_TXT_ADH_WITH_AES_256_GCM_SHA384, |
1470 | .id = TLS1_CK_ADH_WITH_AES_256_GCM_SHA384, | 1470 | .id = TLS1_CK_ADH_WITH_AES_256_GCM_SHA384, |
1471 | .algorithm_mkey = SSL_kEDH, | 1471 | .algorithm_mkey = SSL_kDHE, |
1472 | .algorithm_auth = SSL_aNULL, | 1472 | .algorithm_auth = SSL_aNULL, |
1473 | .algorithm_enc = SSL_AES256GCM, | 1473 | .algorithm_enc = SSL_AES256GCM, |
1474 | .algorithm_mac = SSL_AEAD, | 1474 | .algorithm_mac = SSL_AEAD, |
@@ -1566,7 +1566,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1566 | .valid = 1, | 1566 | .valid = 1, |
1567 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_NULL_SHA, | 1567 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_NULL_SHA, |
1568 | .id = TLS1_CK_ECDHE_ECDSA_WITH_NULL_SHA, | 1568 | .id = TLS1_CK_ECDHE_ECDSA_WITH_NULL_SHA, |
1569 | .algorithm_mkey = SSL_kEECDH, | 1569 | .algorithm_mkey = SSL_kECDHE, |
1570 | .algorithm_auth = SSL_aECDSA, | 1570 | .algorithm_auth = SSL_aECDSA, |
1571 | .algorithm_enc = SSL_eNULL, | 1571 | .algorithm_enc = SSL_eNULL, |
1572 | .algorithm_mac = SSL_SHA1, | 1572 | .algorithm_mac = SSL_SHA1, |
@@ -1582,7 +1582,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1582 | .valid = 1, | 1582 | .valid = 1, |
1583 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_RC4_128_SHA, | 1583 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_RC4_128_SHA, |
1584 | .id = TLS1_CK_ECDHE_ECDSA_WITH_RC4_128_SHA, | 1584 | .id = TLS1_CK_ECDHE_ECDSA_WITH_RC4_128_SHA, |
1585 | .algorithm_mkey = SSL_kEECDH, | 1585 | .algorithm_mkey = SSL_kECDHE, |
1586 | .algorithm_auth = SSL_aECDSA, | 1586 | .algorithm_auth = SSL_aECDSA, |
1587 | .algorithm_enc = SSL_RC4, | 1587 | .algorithm_enc = SSL_RC4, |
1588 | .algorithm_mac = SSL_SHA1, | 1588 | .algorithm_mac = SSL_SHA1, |
@@ -1598,7 +1598,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1598 | .valid = 1, | 1598 | .valid = 1, |
1599 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_DES_192_CBC3_SHA, | 1599 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_DES_192_CBC3_SHA, |
1600 | .id = TLS1_CK_ECDHE_ECDSA_WITH_DES_192_CBC3_SHA, | 1600 | .id = TLS1_CK_ECDHE_ECDSA_WITH_DES_192_CBC3_SHA, |
1601 | .algorithm_mkey = SSL_kEECDH, | 1601 | .algorithm_mkey = SSL_kECDHE, |
1602 | .algorithm_auth = SSL_aECDSA, | 1602 | .algorithm_auth = SSL_aECDSA, |
1603 | .algorithm_enc = SSL_3DES, | 1603 | .algorithm_enc = SSL_3DES, |
1604 | .algorithm_mac = SSL_SHA1, | 1604 | .algorithm_mac = SSL_SHA1, |
@@ -1614,7 +1614,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1614 | .valid = 1, | 1614 | .valid = 1, |
1615 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, | 1615 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, |
1616 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, | 1616 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, |
1617 | .algorithm_mkey = SSL_kEECDH, | 1617 | .algorithm_mkey = SSL_kECDHE, |
1618 | .algorithm_auth = SSL_aECDSA, | 1618 | .algorithm_auth = SSL_aECDSA, |
1619 | .algorithm_enc = SSL_AES128, | 1619 | .algorithm_enc = SSL_AES128, |
1620 | .algorithm_mac = SSL_SHA1, | 1620 | .algorithm_mac = SSL_SHA1, |
@@ -1630,7 +1630,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1630 | .valid = 1, | 1630 | .valid = 1, |
1631 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, | 1631 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, |
1632 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, | 1632 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, |
1633 | .algorithm_mkey = SSL_kEECDH, | 1633 | .algorithm_mkey = SSL_kECDHE, |
1634 | .algorithm_auth = SSL_aECDSA, | 1634 | .algorithm_auth = SSL_aECDSA, |
1635 | .algorithm_enc = SSL_AES256, | 1635 | .algorithm_enc = SSL_AES256, |
1636 | .algorithm_mac = SSL_SHA1, | 1636 | .algorithm_mac = SSL_SHA1, |
@@ -1726,7 +1726,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1726 | .valid = 1, | 1726 | .valid = 1, |
1727 | .name = TLS1_TXT_ECDHE_RSA_WITH_NULL_SHA, | 1727 | .name = TLS1_TXT_ECDHE_RSA_WITH_NULL_SHA, |
1728 | .id = TLS1_CK_ECDHE_RSA_WITH_NULL_SHA, | 1728 | .id = TLS1_CK_ECDHE_RSA_WITH_NULL_SHA, |
1729 | .algorithm_mkey = SSL_kEECDH, | 1729 | .algorithm_mkey = SSL_kECDHE, |
1730 | .algorithm_auth = SSL_aRSA, | 1730 | .algorithm_auth = SSL_aRSA, |
1731 | .algorithm_enc = SSL_eNULL, | 1731 | .algorithm_enc = SSL_eNULL, |
1732 | .algorithm_mac = SSL_SHA1, | 1732 | .algorithm_mac = SSL_SHA1, |
@@ -1742,7 +1742,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1742 | .valid = 1, | 1742 | .valid = 1, |
1743 | .name = TLS1_TXT_ECDHE_RSA_WITH_RC4_128_SHA, | 1743 | .name = TLS1_TXT_ECDHE_RSA_WITH_RC4_128_SHA, |
1744 | .id = TLS1_CK_ECDHE_RSA_WITH_RC4_128_SHA, | 1744 | .id = TLS1_CK_ECDHE_RSA_WITH_RC4_128_SHA, |
1745 | .algorithm_mkey = SSL_kEECDH, | 1745 | .algorithm_mkey = SSL_kECDHE, |
1746 | .algorithm_auth = SSL_aRSA, | 1746 | .algorithm_auth = SSL_aRSA, |
1747 | .algorithm_enc = SSL_RC4, | 1747 | .algorithm_enc = SSL_RC4, |
1748 | .algorithm_mac = SSL_SHA1, | 1748 | .algorithm_mac = SSL_SHA1, |
@@ -1758,7 +1758,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1758 | .valid = 1, | 1758 | .valid = 1, |
1759 | .name = TLS1_TXT_ECDHE_RSA_WITH_DES_192_CBC3_SHA, | 1759 | .name = TLS1_TXT_ECDHE_RSA_WITH_DES_192_CBC3_SHA, |
1760 | .id = TLS1_CK_ECDHE_RSA_WITH_DES_192_CBC3_SHA, | 1760 | .id = TLS1_CK_ECDHE_RSA_WITH_DES_192_CBC3_SHA, |
1761 | .algorithm_mkey = SSL_kEECDH, | 1761 | .algorithm_mkey = SSL_kECDHE, |
1762 | .algorithm_auth = SSL_aRSA, | 1762 | .algorithm_auth = SSL_aRSA, |
1763 | .algorithm_enc = SSL_3DES, | 1763 | .algorithm_enc = SSL_3DES, |
1764 | .algorithm_mac = SSL_SHA1, | 1764 | .algorithm_mac = SSL_SHA1, |
@@ -1774,7 +1774,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1774 | .valid = 1, | 1774 | .valid = 1, |
1775 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_CBC_SHA, | 1775 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_CBC_SHA, |
1776 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_CBC_SHA, | 1776 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_CBC_SHA, |
1777 | .algorithm_mkey = SSL_kEECDH, | 1777 | .algorithm_mkey = SSL_kECDHE, |
1778 | .algorithm_auth = SSL_aRSA, | 1778 | .algorithm_auth = SSL_aRSA, |
1779 | .algorithm_enc = SSL_AES128, | 1779 | .algorithm_enc = SSL_AES128, |
1780 | .algorithm_mac = SSL_SHA1, | 1780 | .algorithm_mac = SSL_SHA1, |
@@ -1790,7 +1790,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1790 | .valid = 1, | 1790 | .valid = 1, |
1791 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_CBC_SHA, | 1791 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_CBC_SHA, |
1792 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_CBC_SHA, | 1792 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_CBC_SHA, |
1793 | .algorithm_mkey = SSL_kEECDH, | 1793 | .algorithm_mkey = SSL_kECDHE, |
1794 | .algorithm_auth = SSL_aRSA, | 1794 | .algorithm_auth = SSL_aRSA, |
1795 | .algorithm_enc = SSL_AES256, | 1795 | .algorithm_enc = SSL_AES256, |
1796 | .algorithm_mac = SSL_SHA1, | 1796 | .algorithm_mac = SSL_SHA1, |
@@ -1806,7 +1806,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1806 | .valid = 1, | 1806 | .valid = 1, |
1807 | .name = TLS1_TXT_ECDH_anon_WITH_NULL_SHA, | 1807 | .name = TLS1_TXT_ECDH_anon_WITH_NULL_SHA, |
1808 | .id = TLS1_CK_ECDH_anon_WITH_NULL_SHA, | 1808 | .id = TLS1_CK_ECDH_anon_WITH_NULL_SHA, |
1809 | .algorithm_mkey = SSL_kEECDH, | 1809 | .algorithm_mkey = SSL_kECDHE, |
1810 | .algorithm_auth = SSL_aNULL, | 1810 | .algorithm_auth = SSL_aNULL, |
1811 | .algorithm_enc = SSL_eNULL, | 1811 | .algorithm_enc = SSL_eNULL, |
1812 | .algorithm_mac = SSL_SHA1, | 1812 | .algorithm_mac = SSL_SHA1, |
@@ -1822,7 +1822,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1822 | .valid = 1, | 1822 | .valid = 1, |
1823 | .name = TLS1_TXT_ECDH_anon_WITH_RC4_128_SHA, | 1823 | .name = TLS1_TXT_ECDH_anon_WITH_RC4_128_SHA, |
1824 | .id = TLS1_CK_ECDH_anon_WITH_RC4_128_SHA, | 1824 | .id = TLS1_CK_ECDH_anon_WITH_RC4_128_SHA, |
1825 | .algorithm_mkey = SSL_kEECDH, | 1825 | .algorithm_mkey = SSL_kECDHE, |
1826 | .algorithm_auth = SSL_aNULL, | 1826 | .algorithm_auth = SSL_aNULL, |
1827 | .algorithm_enc = SSL_RC4, | 1827 | .algorithm_enc = SSL_RC4, |
1828 | .algorithm_mac = SSL_SHA1, | 1828 | .algorithm_mac = SSL_SHA1, |
@@ -1838,7 +1838,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1838 | .valid = 1, | 1838 | .valid = 1, |
1839 | .name = TLS1_TXT_ECDH_anon_WITH_DES_192_CBC3_SHA, | 1839 | .name = TLS1_TXT_ECDH_anon_WITH_DES_192_CBC3_SHA, |
1840 | .id = TLS1_CK_ECDH_anon_WITH_DES_192_CBC3_SHA, | 1840 | .id = TLS1_CK_ECDH_anon_WITH_DES_192_CBC3_SHA, |
1841 | .algorithm_mkey = SSL_kEECDH, | 1841 | .algorithm_mkey = SSL_kECDHE, |
1842 | .algorithm_auth = SSL_aNULL, | 1842 | .algorithm_auth = SSL_aNULL, |
1843 | .algorithm_enc = SSL_3DES, | 1843 | .algorithm_enc = SSL_3DES, |
1844 | .algorithm_mac = SSL_SHA1, | 1844 | .algorithm_mac = SSL_SHA1, |
@@ -1854,7 +1854,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1854 | .valid = 1, | 1854 | .valid = 1, |
1855 | .name = TLS1_TXT_ECDH_anon_WITH_AES_128_CBC_SHA, | 1855 | .name = TLS1_TXT_ECDH_anon_WITH_AES_128_CBC_SHA, |
1856 | .id = TLS1_CK_ECDH_anon_WITH_AES_128_CBC_SHA, | 1856 | .id = TLS1_CK_ECDH_anon_WITH_AES_128_CBC_SHA, |
1857 | .algorithm_mkey = SSL_kEECDH, | 1857 | .algorithm_mkey = SSL_kECDHE, |
1858 | .algorithm_auth = SSL_aNULL, | 1858 | .algorithm_auth = SSL_aNULL, |
1859 | .algorithm_enc = SSL_AES128, | 1859 | .algorithm_enc = SSL_AES128, |
1860 | .algorithm_mac = SSL_SHA1, | 1860 | .algorithm_mac = SSL_SHA1, |
@@ -1870,7 +1870,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1870 | .valid = 1, | 1870 | .valid = 1, |
1871 | .name = TLS1_TXT_ECDH_anon_WITH_AES_256_CBC_SHA, | 1871 | .name = TLS1_TXT_ECDH_anon_WITH_AES_256_CBC_SHA, |
1872 | .id = TLS1_CK_ECDH_anon_WITH_AES_256_CBC_SHA, | 1872 | .id = TLS1_CK_ECDH_anon_WITH_AES_256_CBC_SHA, |
1873 | .algorithm_mkey = SSL_kEECDH, | 1873 | .algorithm_mkey = SSL_kECDHE, |
1874 | .algorithm_auth = SSL_aNULL, | 1874 | .algorithm_auth = SSL_aNULL, |
1875 | .algorithm_enc = SSL_AES256, | 1875 | .algorithm_enc = SSL_AES256, |
1876 | .algorithm_mac = SSL_SHA1, | 1876 | .algorithm_mac = SSL_SHA1, |
@@ -1889,7 +1889,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1889 | .valid = 1, | 1889 | .valid = 1, |
1890 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_SHA256, | 1890 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_SHA256, |
1891 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_SHA256, | 1891 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_SHA256, |
1892 | .algorithm_mkey = SSL_kEECDH, | 1892 | .algorithm_mkey = SSL_kECDHE, |
1893 | .algorithm_auth = SSL_aECDSA, | 1893 | .algorithm_auth = SSL_aECDSA, |
1894 | .algorithm_enc = SSL_AES128, | 1894 | .algorithm_enc = SSL_AES128, |
1895 | .algorithm_mac = SSL_SHA256, | 1895 | .algorithm_mac = SSL_SHA256, |
@@ -1905,7 +1905,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1905 | .valid = 1, | 1905 | .valid = 1, |
1906 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_SHA384, | 1906 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_SHA384, |
1907 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_SHA384, | 1907 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_SHA384, |
1908 | .algorithm_mkey = SSL_kEECDH, | 1908 | .algorithm_mkey = SSL_kECDHE, |
1909 | .algorithm_auth = SSL_aECDSA, | 1909 | .algorithm_auth = SSL_aECDSA, |
1910 | .algorithm_enc = SSL_AES256, | 1910 | .algorithm_enc = SSL_AES256, |
1911 | .algorithm_mac = SSL_SHA384, | 1911 | .algorithm_mac = SSL_SHA384, |
@@ -1953,7 +1953,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1953 | .valid = 1, | 1953 | .valid = 1, |
1954 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_SHA256, | 1954 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_SHA256, |
1955 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_SHA256, | 1955 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_SHA256, |
1956 | .algorithm_mkey = SSL_kEECDH, | 1956 | .algorithm_mkey = SSL_kECDHE, |
1957 | .algorithm_auth = SSL_aRSA, | 1957 | .algorithm_auth = SSL_aRSA, |
1958 | .algorithm_enc = SSL_AES128, | 1958 | .algorithm_enc = SSL_AES128, |
1959 | .algorithm_mac = SSL_SHA256, | 1959 | .algorithm_mac = SSL_SHA256, |
@@ -1969,7 +1969,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
1969 | .valid = 1, | 1969 | .valid = 1, |
1970 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_SHA384, | 1970 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_SHA384, |
1971 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_SHA384, | 1971 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_SHA384, |
1972 | .algorithm_mkey = SSL_kEECDH, | 1972 | .algorithm_mkey = SSL_kECDHE, |
1973 | .algorithm_auth = SSL_aRSA, | 1973 | .algorithm_auth = SSL_aRSA, |
1974 | .algorithm_enc = SSL_AES256, | 1974 | .algorithm_enc = SSL_AES256, |
1975 | .algorithm_mac = SSL_SHA384, | 1975 | .algorithm_mac = SSL_SHA384, |
@@ -2019,7 +2019,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
2019 | .valid = 1, | 2019 | .valid = 1, |
2020 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, | 2020 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, |
2021 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, | 2021 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, |
2022 | .algorithm_mkey = SSL_kEECDH, | 2022 | .algorithm_mkey = SSL_kECDHE, |
2023 | .algorithm_auth = SSL_aECDSA, | 2023 | .algorithm_auth = SSL_aECDSA, |
2024 | .algorithm_enc = SSL_AES128GCM, | 2024 | .algorithm_enc = SSL_AES128GCM, |
2025 | .algorithm_mac = SSL_AEAD, | 2025 | .algorithm_mac = SSL_AEAD, |
@@ -2037,7 +2037,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
2037 | .valid = 1, | 2037 | .valid = 1, |
2038 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, | 2038 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, |
2039 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, | 2039 | .id = TLS1_CK_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, |
2040 | .algorithm_mkey = SSL_kEECDH, | 2040 | .algorithm_mkey = SSL_kECDHE, |
2041 | .algorithm_auth = SSL_aECDSA, | 2041 | .algorithm_auth = SSL_aECDSA, |
2042 | .algorithm_enc = SSL_AES256GCM, | 2042 | .algorithm_enc = SSL_AES256GCM, |
2043 | .algorithm_mac = SSL_AEAD, | 2043 | .algorithm_mac = SSL_AEAD, |
@@ -2091,7 +2091,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
2091 | .valid = 1, | 2091 | .valid = 1, |
2092 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_GCM_SHA256, | 2092 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_128_GCM_SHA256, |
2093 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_GCM_SHA256, | 2093 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_128_GCM_SHA256, |
2094 | .algorithm_mkey = SSL_kEECDH, | 2094 | .algorithm_mkey = SSL_kECDHE, |
2095 | .algorithm_auth = SSL_aRSA, | 2095 | .algorithm_auth = SSL_aRSA, |
2096 | .algorithm_enc = SSL_AES128GCM, | 2096 | .algorithm_enc = SSL_AES128GCM, |
2097 | .algorithm_mac = SSL_AEAD, | 2097 | .algorithm_mac = SSL_AEAD, |
@@ -2109,7 +2109,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
2109 | .valid = 1, | 2109 | .valid = 1, |
2110 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_GCM_SHA384, | 2110 | .name = TLS1_TXT_ECDHE_RSA_WITH_AES_256_GCM_SHA384, |
2111 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_GCM_SHA384, | 2111 | .id = TLS1_CK_ECDHE_RSA_WITH_AES_256_GCM_SHA384, |
2112 | .algorithm_mkey = SSL_kEECDH, | 2112 | .algorithm_mkey = SSL_kECDHE, |
2113 | .algorithm_auth = SSL_aRSA, | 2113 | .algorithm_auth = SSL_aRSA, |
2114 | .algorithm_enc = SSL_AES256GCM, | 2114 | .algorithm_enc = SSL_AES256GCM, |
2115 | .algorithm_mac = SSL_AEAD, | 2115 | .algorithm_mac = SSL_AEAD, |
@@ -2224,7 +2224,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
2224 | .valid = 1, | 2224 | .valid = 1, |
2225 | .name = TLS1_TXT_ECDHE_RSA_WITH_CHACHA20_POLY1305, | 2225 | .name = TLS1_TXT_ECDHE_RSA_WITH_CHACHA20_POLY1305, |
2226 | .id = TLS1_CK_ECDHE_RSA_CHACHA20_POLY1305, | 2226 | .id = TLS1_CK_ECDHE_RSA_CHACHA20_POLY1305, |
2227 | .algorithm_mkey = SSL_kEECDH, | 2227 | .algorithm_mkey = SSL_kECDHE, |
2228 | .algorithm_auth = SSL_aRSA, | 2228 | .algorithm_auth = SSL_aRSA, |
2229 | .algorithm_enc = SSL_CHACHA20POLY1305, | 2229 | .algorithm_enc = SSL_CHACHA20POLY1305, |
2230 | .algorithm_mac = SSL_AEAD, | 2230 | .algorithm_mac = SSL_AEAD, |
@@ -2240,7 +2240,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
2240 | .valid = 1, | 2240 | .valid = 1, |
2241 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_CHACHA20_POLY1305, | 2241 | .name = TLS1_TXT_ECDHE_ECDSA_WITH_CHACHA20_POLY1305, |
2242 | .id = TLS1_CK_ECDHE_ECDSA_CHACHA20_POLY1305, | 2242 | .id = TLS1_CK_ECDHE_ECDSA_CHACHA20_POLY1305, |
2243 | .algorithm_mkey = SSL_kEECDH, | 2243 | .algorithm_mkey = SSL_kECDHE, |
2244 | .algorithm_auth = SSL_aECDSA, | 2244 | .algorithm_auth = SSL_aECDSA, |
2245 | .algorithm_enc = SSL_CHACHA20POLY1305, | 2245 | .algorithm_enc = SSL_CHACHA20POLY1305, |
2246 | .algorithm_mac = SSL_AEAD, | 2246 | .algorithm_mac = SSL_AEAD, |
@@ -2256,7 +2256,7 @@ SSL_CIPHER ssl3_ciphers[] = { | |||
2256 | .valid = 1, | 2256 | .valid = 1, |
2257 | .name = TLS1_TXT_DHE_RSA_WITH_CHACHA20_POLY1305, | 2257 | .name = TLS1_TXT_DHE_RSA_WITH_CHACHA20_POLY1305, |
2258 | .id = TLS1_CK_DHE_RSA_CHACHA20_POLY1305, | 2258 | .id = TLS1_CK_DHE_RSA_CHACHA20_POLY1305, |
2259 | .algorithm_mkey = SSL_kEDH, | 2259 | .algorithm_mkey = SSL_kDHE, |
2260 | .algorithm_auth = SSL_aRSA, | 2260 | .algorithm_auth = SSL_aRSA, |
2261 | .algorithm_enc = SSL_CHACHA20POLY1305, | 2261 | .algorithm_enc = SSL_CHACHA20POLY1305, |
2262 | .algorithm_mac = SSL_AEAD, | 2262 | .algorithm_mac = SSL_AEAD, |
@@ -3069,7 +3069,7 @@ SSL_CIPHER *ssl3_choose_cipher(SSL *s, STACK_OF(SSL_CIPHER) *clnt, | |||
3069 | * if we are considering an ECC cipher suite that uses an | 3069 | * if we are considering an ECC cipher suite that uses an |
3070 | * ephemeral EC key | 3070 | * ephemeral EC key |
3071 | */ | 3071 | */ |
3072 | (alg_k & SSL_kEECDH) | 3072 | (alg_k & SSL_kECDHE) |
3073 | /* and we have an ephemeral EC key */ | 3073 | /* and we have an ephemeral EC key */ |
3074 | && (s->cert->ecdh_tmp != NULL) | 3074 | && (s->cert->ecdh_tmp != NULL) |
3075 | /* and the client specified an EllipticCurves extension */ | 3075 | /* and the client specified an EllipticCurves extension */ |
@@ -3108,7 +3108,7 @@ SSL_CIPHER *ssl3_choose_cipher(SSL *s, STACK_OF(SSL_CIPHER) *clnt, | |||
3108 | continue; | 3108 | continue; |
3109 | ii = sk_SSL_CIPHER_find(allow, c); | 3109 | ii = sk_SSL_CIPHER_find(allow, c); |
3110 | if (ii >= 0) { | 3110 | if (ii >= 0) { |
3111 | if ((alg_k & SSL_kEECDH) && | 3111 | if ((alg_k & SSL_kECDHE) && |
3112 | (alg_a & SSL_aECDSA) && s->s3->is_probably_safari) { | 3112 | (alg_a & SSL_aECDSA) && s->s3->is_probably_safari) { |
3113 | if (!ret) | 3113 | if (!ret) |
3114 | ret = sk_SSL_CIPHER_value(allow, ii); | 3114 | ret = sk_SSL_CIPHER_value(allow, ii); |
@@ -3139,12 +3139,12 @@ ssl3_get_req_cert_type(SSL *s, unsigned char *p) | |||
3139 | } | 3139 | } |
3140 | #endif | 3140 | #endif |
3141 | 3141 | ||
3142 | if (alg_k & (SSL_kDHr|SSL_kEDH)) { | 3142 | if (alg_k & (SSL_kDHr|SSL_kDHE)) { |
3143 | p[ret++] = SSL3_CT_RSA_FIXED_DH; | 3143 | p[ret++] = SSL3_CT_RSA_FIXED_DH; |
3144 | p[ret++] = SSL3_CT_DSS_FIXED_DH; | 3144 | p[ret++] = SSL3_CT_DSS_FIXED_DH; |
3145 | } | 3145 | } |
3146 | if ((s->version == SSL3_VERSION) && | 3146 | if ((s->version == SSL3_VERSION) && |
3147 | (alg_k & (SSL_kEDH|SSL_kDHd|SSL_kDHr))) { | 3147 | (alg_k & (SSL_kDHE|SSL_kDHd|SSL_kDHr))) { |
3148 | p[ret++] = SSL3_CT_RSA_EPHEMERAL_DH; | 3148 | p[ret++] = SSL3_CT_RSA_EPHEMERAL_DH; |
3149 | p[ret++] = SSL3_CT_DSS_EPHEMERAL_DH; | 3149 | p[ret++] = SSL3_CT_DSS_EPHEMERAL_DH; |
3150 | } | 3150 | } |
@@ -3157,7 +3157,7 @@ ssl3_get_req_cert_type(SSL *s, unsigned char *p) | |||
3157 | 3157 | ||
3158 | /* | 3158 | /* |
3159 | * ECDSA certs can be used with RSA cipher suites as well | 3159 | * ECDSA certs can be used with RSA cipher suites as well |
3160 | * so we don't need to check for SSL_kECDH or SSL_kEECDH | 3160 | * so we don't need to check for SSL_kECDH or SSL_kECDHE |
3161 | */ | 3161 | */ |
3162 | if (s->version >= TLS1_VERSION) { | 3162 | if (s->version >= TLS1_VERSION) { |
3163 | p[ret++] = TLS_CT_ECDSA_SIGN; | 3163 | p[ret++] = TLS_CT_ECDSA_SIGN; |