Backport support for fixed DH ciphersuites (from HEAD)
This commit is contained in:
@@ -2108,6 +2108,9 @@ void ssl_set_cert_masks(CERT *c, const SSL_CIPHER *cipher)
|
||||
if (dh_dsa) mask_k|=SSL_kDHd;
|
||||
if (dh_dsa_export) emask_k|=SSL_kDHd;
|
||||
|
||||
if (emask_k & (SSL_kDHr|SSL_kDHd))
|
||||
mask_a |= SSL_aDH;
|
||||
|
||||
if (rsa_enc || rsa_sign)
|
||||
{
|
||||
mask_a|=SSL_aRSA;
|
||||
|
Reference in New Issue
Block a user