Ensure we don't call the OCSP callback if resuming a session
It makes no sense to call the OCSP status callback if we are resuming a session because no certificates will be sent. Reviewed-by: Viktor Dukhovni <viktor@openssl.org> (cherry picked from commit 0ac6239955965f58f9dddb4229e8cd58e0dba20d)
This commit is contained in:
parent
a7316aace3
commit
604f67f521
@ -2089,7 +2089,7 @@ int ssl_check_serverhello_tlsext(SSL *s)
|
||||
* callback
|
||||
*/
|
||||
if ((s->tlsext_status_type != -1) && !(s->tlsext_status_expected)
|
||||
&& s->ctx && s->ctx->tlsext_status_cb) {
|
||||
&& !(s->hit) && s->ctx && s->ctx->tlsext_status_cb) {
|
||||
int r;
|
||||
/*
|
||||
* Call callback with resp == NULL and resplen == -1 so callback
|
||||
|
Loading…
x
Reference in New Issue
Block a user