From 9c941a677b8c76ec4c874a631d07f67d9211d82f Mon Sep 17 00:00:00 2001 From: Hakase Date: Mon, 23 Apr 2018 00:55:04 +0900 Subject: [PATCH] Update openssl-equal-pre2.patch --- openssl-equal-pre2.patch | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/openssl-equal-pre2.patch b/openssl-equal-pre2.patch index 274303e..eafac2d 100644 --- a/openssl-equal-pre2.patch +++ b/openssl-equal-pre2.patch @@ -186,7 +186,7 @@ diff -urN 1/ssl/s3_lib.c 2/ssl/s3_lib.c + ok = 0; + /* not use ECDSA under TLS v1.2 */ + // if ((alg_a & SSL_aECDSA) && s->version != TLS1_2_VERSION) ok = 0; -+ if ((alg_a & SSL_aRSA) && (alg_k & SSL_kRSA) && s->version == TLS1_2_VERSION) ok = 0; ++ if ((alg_a & SSL_aRSA) && (alg_k & SSL_kRSA) && (c->algorithm_mac != SSL_AEAD) && s->version == TLS1_2_VERSION) ok = 0; + #ifndef OPENSSL_NO_PSK /* with PSK there must be server callback set */