Don't send signature algorithms when client_version is below TLS 1.2.
[openssl.git] / ssl / t1_lib.c
index dd5bd0050d89f5585c1b06a227eb8221ebf984f1..fb64607acf35ef84d70278facb244698a58b393d 100644 (file)
@@ -1429,7 +1429,7 @@ unsigned char *ssl_add_clienthello_tlsext(SSL *s, unsigned char *buf,
     }
  skip_ext:
 
-    if (SSL_USE_SIGALGS(s)) {
+    if (SSL_CLIENT_USE_SIGALGS(s)) {
         size_t salglen;
         const unsigned char *salg;
         salglen = tls12_get_psigalgs(s, &salg);