allow ECDSA+SHA384 signature algorithm in SUITEB128ONLY mode
authorDr. Stephen Henson <steve@openssl.org>
Sun, 9 Dec 2012 16:03:34 +0000 (16:03 +0000)
committerDr. Stephen Henson <steve@openssl.org>
Sun, 9 Dec 2012 16:03:34 +0000 (16:03 +0000)
ssl/t1_lib.c

index e0f3425c5af9b5423d105875ce05164164eca620..7cc061a8aa206e7577147507cf0ed7e7f0f8dd47 100644 (file)
@@ -332,13 +332,9 @@ static void tls1_get_curvelist(SSL *s, int sess,
        switch (tls1_suiteb(s))
                {
        case SSL_CERT_FLAG_SUITEB_128_LOS:
        switch (tls1_suiteb(s))
                {
        case SSL_CERT_FLAG_SUITEB_128_LOS:
-               *pcurves = suiteb_curves;
-               *pcurveslen = sizeof(suiteb_curves);
-               break;
-
        case SSL_CERT_FLAG_SUITEB_128_LOS_ONLY:
                *pcurves = suiteb_curves;
        case SSL_CERT_FLAG_SUITEB_128_LOS_ONLY:
                *pcurves = suiteb_curves;
-               *pcurveslen = 2;
+               *pcurveslen = sizeof(suiteb_curves);
                break;
 
        case SSL_CERT_FLAG_SUITEB_192_LOS:
                break;
 
        case SSL_CERT_FLAG_SUITEB_192_LOS: