From ad76fc8ee191ac27c7614f9a37b6a8c1cc615aca Mon Sep 17 00:00:00 2001 From: jsing <> Date: Wed, 11 Jun 2014 15:44:10 +0000 Subject: Stop setting the EVP_MD_CTX_FLAG_NON_FIPS_ALLOW - it has been ignored since OpenSSL 1.0.0. ok miod@ (a little while back) --- src/lib/libcrypto/x509/x509_cmp.c | 1 - 1 file changed, 1 deletion(-) (limited to 'src/lib/libcrypto') diff --git a/src/lib/libcrypto/x509/x509_cmp.c b/src/lib/libcrypto/x509/x509_cmp.c index b6b3423e3f..8877c6e284 100644 --- a/src/lib/libcrypto/x509/x509_cmp.c +++ b/src/lib/libcrypto/x509/x509_cmp.c @@ -258,7 +258,6 @@ X509_NAME_hash_old(X509_NAME *x) /* Make sure X509_NAME structure contains valid cached encoding */ i2d_X509_NAME(x, NULL); EVP_MD_CTX_init(&md_ctx); - EVP_MD_CTX_set_flags(&md_ctx, EVP_MD_CTX_FLAG_NON_FIPS_ALLOW); if (EVP_DigestInit_ex(&md_ctx, EVP_md5(), NULL) && EVP_DigestUpdate(&md_ctx, x->bytes->data, x->bytes->length) && EVP_DigestFinal_ex(&md_ctx, md, NULL)) -- cgit v1.2.3-55-g6feb