Fix <= TLS1.2 break
authorMatt Caswell <matt@openssl.org>
Mon, 23 Jan 2017 16:59:35 +0000 (16:59 +0000)
committerMatt Caswell <matt@openssl.org>
Mon, 30 Jan 2017 10:18:24 +0000 (10:18 +0000)
commit1a3392c878e8421c2e5730fde5accd4ab77c2875
tree81ec1a08db9c3eb55d508be10a75cb0829acaf65
parent342543426d19ad948e3e7a37209baa78d0032d86
Fix <= TLS1.2 break

Changing the value of SSL_MAX_MASTER_KEY_LENGTH had some unexpected
side effects in the <=TLS1.2 code which apparently relies on this being
48 for interoperability. Therefore create a new define for the TLSv1.3
resumption master secret which can be up to 64 bytes.

Found through the boring test suite.

Reviewed-by: Rich Salz <rsalz@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/2259)
include/openssl/ssl.h
ssl/ssl_asn1.c
ssl/ssl_locl.h