Advertisement
Guest User

OpenSSL-1.1.1.patch

a guest
Dec 13th, 2019
132
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Diff 3.19 KB | None | 0 0
  1. diff -rubBaN -U7 openssl-1.1.1d.orig/ssl/s3_lib.c openssl-1.1.1d/ssl/s3_lib.c
  2. --- openssl-1.1.1d.orig/ssl/s3_lib.c    2019-11-28 11:18:13.086910281 -0800
  3. +++ openssl-1.1.1d/ssl/s3_lib.c 2019-11-28 10:42:26.471971123 -0800
  4. @@ -310,15 +310,15 @@
  5.       TLS1_CK_DHE_DSS_WITH_AES_256_SHA,
  6.       SSL_kDHE,
  7.       SSL_aDSS,
  8.       SSL_AES256,
  9.       SSL_SHA1,
  10.       SSL3_VERSION, TLS1_2_VERSION,
  11.       DTLS1_BAD_VER, DTLS1_2_VERSION,
  12. -     SSL_NOT_DEFAULT | SSL_HIGH | SSL_FIPS,
  13. +     SSL_HIGH | SSL_FIPS,
  14.       SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
  15.       256,
  16.       256,
  17.       },
  18.      {
  19.       1,
  20.       TLS1_TXT_DHE_RSA_WITH_AES_256_SHA,
  21. @@ -566,15 +566,15 @@
  22.       TLS1_CK_DHE_DSS_WITH_AES_128_GCM_SHA256,
  23.       SSL_kDHE,
  24.       SSL_aDSS,
  25.       SSL_AES128GCM,
  26.       SSL_AEAD,
  27.       TLS1_2_VERSION, TLS1_2_VERSION,
  28.       DTLS1_2_VERSION, DTLS1_2_VERSION,
  29. -     SSL_NOT_DEFAULT | SSL_HIGH | SSL_FIPS,
  30. +     SSL_HIGH | SSL_FIPS,
  31.       SSL_HANDSHAKE_MAC_SHA256 | TLS1_PRF_SHA256,
  32.       128,
  33.       128,
  34.       },
  35.      {
  36.       1,
  37.       TLS1_TXT_DHE_DSS_WITH_AES_256_GCM_SHA384,
  38. @@ -582,15 +582,15 @@
  39.       TLS1_CK_DHE_DSS_WITH_AES_256_GCM_SHA384,
  40.       SSL_kDHE,
  41.       SSL_aDSS,
  42.       SSL_AES256GCM,
  43.       SSL_AEAD,
  44.       TLS1_2_VERSION, TLS1_2_VERSION,
  45.       DTLS1_2_VERSION, DTLS1_2_VERSION,
  46. -     SSL_NOT_DEFAULT | SSL_HIGH | SSL_FIPS,
  47. +     SSL_HIGH | SSL_FIPS,
  48.       SSL_HANDSHAKE_MAC_SHA384 | TLS1_PRF_SHA384,
  49.       256,
  50.       256,
  51.       },
  52.      {
  53.       1,
  54.       TLS1_TXT_ADH_WITH_AES_128_GCM_SHA256,
  55. diff -rubBaN -U7 openssl-1.1.1d.orig/test/cipherlist_test.c openssl-1.1.1d/test/cipherlist_test.c
  56. --- openssl-1.1.1d.orig/test/cipherlist_test.c  2019-11-28 11:15:40.356903389 -0800
  57. +++ openssl-1.1.1d/test/cipherlist_test.c   2019-11-28 11:14:38.424922723 -0800
  58. @@ -71,14 +71,15 @@
  59.      TLS1_3_CK_AES_128_GCM_SHA256,
  60.  #endif
  61.  #ifndef OPENSSL_NO_TLS1_2
  62.  # ifndef OPENSSL_NO_EC
  63.      TLS1_CK_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384,
  64.      TLS1_CK_ECDHE_RSA_WITH_AES_256_GCM_SHA384,
  65.  # endif
  66. +    TLS1_CK_DHE_DSS_WITH_AES_256_GCM_SHA384,
  67.  # ifndef OPENSSL_NO_DH
  68.      TLS1_CK_DHE_RSA_WITH_AES_256_GCM_SHA384,
  69.  # endif
  70.  
  71.  # if !defined(OPENSSL_NO_CHACHA) && !defined(OPENSSL_NO_POLY1305)
  72.  #  ifndef OPENSSL_NO_EC
  73.      TLS1_CK_ECDHE_ECDSA_WITH_CHACHA20_POLY1305,
  74. @@ -89,14 +90,15 @@
  75.  #  endif
  76.  # endif  /* !OPENSSL_NO_CHACHA && !OPENSSL_NO_POLY1305 */
  77.  
  78.  # ifndef OPENSSL_NO_EC
  79.      TLS1_CK_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256,
  80.      TLS1_CK_ECDHE_RSA_WITH_AES_128_GCM_SHA256,
  81.  # endif
  82. +    TLS1_CK_DHE_DSS_WITH_AES_128_GCM_SHA256,
  83.  # ifndef OPENSSL_NO_DH
  84.      TLS1_CK_DHE_RSA_WITH_AES_128_GCM_SHA256,
  85.  # endif
  86.  # ifndef OPENSSL_NO_EC
  87.      TLS1_CK_ECDHE_ECDSA_WITH_AES_256_SHA384,
  88.      TLS1_CK_ECDHE_RSA_WITH_AES_256_SHA384,
  89.  # endif
  90. @@ -117,14 +119,15 @@
  91.  # ifndef OPENSSL_NO_EC
  92.      TLS1_CK_ECDHE_ECDSA_WITH_AES_256_CBC_SHA,
  93.      TLS1_CK_ECDHE_RSA_WITH_AES_256_CBC_SHA,
  94.  # endif
  95.   #ifndef OPENSSL_NO_DH
  96.      TLS1_CK_DHE_RSA_WITH_AES_256_SHA,
  97.  # endif
  98. +    TLS1_CK_DHE_DSS_WITH_AES_256_SHA,
  99.  # ifndef OPENSSL_NO_EC
  100.      TLS1_CK_ECDHE_ECDSA_WITH_AES_128_CBC_SHA,
  101.      TLS1_CK_ECDHE_RSA_WITH_AES_128_CBC_SHA,
  102.  # endif
  103.  # ifndef OPENSSL_NO_DH
  104.      TLS1_CK_DHE_RSA_WITH_AES_128_SHA,
  105.  # endif
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement