Add additional ECDSA/Ed25519 selection tests.
authorDr. Stephen Henson <steve@openssl.org>
Tue, 4 Jul 2017 12:07:22 +0000 (13:07 +0100)
committerDr. Stephen Henson <steve@openssl.org>
Thu, 13 Jul 2017 11:38:42 +0000 (12:38 +0100)
commit50a3a1f04ba56249d48112e04a6b303b44512fc7
tree675c67088ee00e475a636a086455d68bddb3d66d
parent13cc25742351b3df1efe73ea5b86dd3ecf0ba31c
Add additional ECDSA/Ed25519 selection tests.

Add two tests with ECDSA+SHA256 preferred over Ed25519, the second also
excludes P-256 from the supported curves extension which will force the
use of Ed25519 in TLS 1.2, but not TLS 1.3: this would fail before the
certificate table updates.

Add TLS 1.3 test also with P-256 exclude from the groups extension: this
should have no effect as the groups extension is not used for signature
selection in TLS 1.3

Reviewed-by: Rich Salz <rsalz@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/3858)
test/ssl-tests/20-cert-select.conf
test/ssl-tests/20-cert-select.conf.in