Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- diff -rubBaN -U7 openssl-1.1.1d.orig/ssl/s3_lib.c openssl-1.1.1d/ssl/s3_lib.c
- --- openssl-1.1.1d.orig/ssl/s3_lib.c 2019-11-28 11:18:13.086910281 -0800
- +++ openssl-1.1.1d/ssl/s3_lib.c 2019-11-28 10:42:26.471971123 -0800
- @@ -310,15 +310,15 @@
- TLS1_CK_DHE_DSS_WITH_AES_256_SHA,
- SSL_kDHE,
- SSL_aDSS,
- SSL_AES256,
- SSL_SHA1,
- SSL3_VERSION, TLS1_2_VERSION,
- DTLS1_BAD_VER, DTLS1_2_VERSION,
- - SSL_NOT_DEFAULT | SSL_HIGH | SSL_FIPS,
- + SSL_HIGH | SSL_FIPS,
- SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
- 256,
- 256,
- },
- {
- 1,
- TLS1_TXT_DHE_RSA_WITH_AES_256_SHA,
- @@ -566,15 +566,15 @@
- TLS1_CK_DHE_DSS_WITH_AES_128_GCM_SHA256,
- SSL_kDHE,
- SSL_aDSS,
- SSL_AES128GCM,
- SSL_AEAD,
- TLS1_2_VERSION, TLS1_2_VERSION,
- DTLS1_2_VERSION, DTLS1_2_VERSION,
- - SSL_NOT_DEFAULT | SSL_HIGH | SSL_FIPS,
- + SSL_HIGH | SSL_FIPS,
- SSL_HANDSHAKE_MAC_SHA256 | TLS1_PRF_SHA256,
- 128,
- 128,
- },
- {
- 1,
- TLS1_TXT_DHE_DSS_WITH_AES_256_GCM_SHA384,
- @@ -582,15 +582,15 @@
- TLS1_CK_DHE_DSS_WITH_AES_256_GCM_SHA384,
- SSL_kDHE,
- SSL_aDSS,
- SSL_AES256GCM,
- SSL_AEAD,
- TLS1_2_VERSION, TLS1_2_VERSION,
- DTLS1_2_VERSION, DTLS1_2_VERSION,
- - SSL_NOT_DEFAULT | SSL_HIGH | SSL_FIPS,
- + SSL_HIGH | SSL_FIPS,
- SSL_HANDSHAKE_MAC_SHA384 | TLS1_PRF_SHA384,
- 256,
- 256,
- },
- {
- 1,
- TLS1_TXT_ADH_WITH_AES_128_GCM_SHA256,
- diff -rubBaN -U7 openssl-1.1.1d.orig/test/cipherlist_test.c openssl-1.1.1d/test/cipherlist_test.c
- --- openssl-1.1.1d.orig/test/cipherlist_test.c 2019-11-28 11:15:40.356903389 -0800
- +++ openssl-1.1.1d/test/cipherlist_test.c 2019-11-28 11:14:38.424922723 -0800
- @@ -71,14 +71,15 @@
- TLS1_3_CK_AES_128_GCM_SHA256,
- #endif
- #ifndef OPENSSL_NO_TLS1_2
- # ifndef OPENSSL_NO_EC
- TLS1_CK_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384,
- TLS1_CK_ECDHE_RSA_WITH_AES_256_GCM_SHA384,
- # endif
- + TLS1_CK_DHE_DSS_WITH_AES_256_GCM_SHA384,
- # ifndef OPENSSL_NO_DH
- TLS1_CK_DHE_RSA_WITH_AES_256_GCM_SHA384,
- # endif
- # if !defined(OPENSSL_NO_CHACHA) && !defined(OPENSSL_NO_POLY1305)
- # ifndef OPENSSL_NO_EC
- TLS1_CK_ECDHE_ECDSA_WITH_CHACHA20_POLY1305,
- @@ -89,14 +90,15 @@
- # endif
- # endif /* !OPENSSL_NO_CHACHA && !OPENSSL_NO_POLY1305 */
- # ifndef OPENSSL_NO_EC
- TLS1_CK_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256,
- TLS1_CK_ECDHE_RSA_WITH_AES_128_GCM_SHA256,
- # endif
- + TLS1_CK_DHE_DSS_WITH_AES_128_GCM_SHA256,
- # ifndef OPENSSL_NO_DH
- TLS1_CK_DHE_RSA_WITH_AES_128_GCM_SHA256,
- # endif
- # ifndef OPENSSL_NO_EC
- TLS1_CK_ECDHE_ECDSA_WITH_AES_256_SHA384,
- TLS1_CK_ECDHE_RSA_WITH_AES_256_SHA384,
- # endif
- @@ -117,14 +119,15 @@
- # ifndef OPENSSL_NO_EC
- TLS1_CK_ECDHE_ECDSA_WITH_AES_256_CBC_SHA,
- TLS1_CK_ECDHE_RSA_WITH_AES_256_CBC_SHA,
- # endif
- #ifndef OPENSSL_NO_DH
- TLS1_CK_DHE_RSA_WITH_AES_256_SHA,
- # endif
- + TLS1_CK_DHE_DSS_WITH_AES_256_SHA,
- # ifndef OPENSSL_NO_EC
- TLS1_CK_ECDHE_ECDSA_WITH_AES_128_CBC_SHA,
- TLS1_CK_ECDHE_RSA_WITH_AES_128_CBC_SHA,
- # endif
- # ifndef OPENSSL_NO_DH
- TLS1_CK_DHE_RSA_WITH_AES_128_SHA,
- # endif
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement