Document rollback issues.

This commit is contained in:
Bodo Möller
2000-07-29 19:27:20 +00:00
parent 37569e64e8
commit aa826d88e1
3 changed files with 8 additions and 3 deletions

View File

@@ -367,6 +367,7 @@ static int ssl23_get_server_hello(SSL *s)
s->state=SSL2_ST_GET_SERVER_HELLO_A;
if (!(s->client_version == SSL2_VERSION))
/* use special padding (SSL 3.0 draft/RFC 2246, App. E.2) */
s->s2->ssl2_rollback=1;
/* setup the 5 bytes we have read so we get them from

View File

@@ -499,6 +499,8 @@ int ssl23_get_client_hello(SSL *s)
(s->options & SSL_OP_NO_TLSv1 && s->options & SSL_OP_NO_SSLv3))
s->s2->ssl2_rollback=0;
else
/* reject SSL 2.0 session if client supports SSL 3.0 or TLS 1.0
* (SSL 3.0 draft/RFC 2246, App. E.2) */
s->s2->ssl2_rollback=1;
/* setup the n bytes we have read so we get them from