Change DH_generate_parameters back to order 2q subgroup
authorBernd Edlinger <bernd.edlinger@hotmail.de>
Mon, 9 Sep 2019 07:59:54 +0000 (09:59 +0200)
committerBernd Edlinger <bernd.edlinger@hotmail.de>
Mon, 9 Sep 2019 11:58:03 +0000 (13:58 +0200)
commit1f9dc86b557dd259b636882836885d8e6714735e
tree3dec63052947cdde532395d915b47e2fb0ee541a
parent288241b6bf1ba4f07e06e83bbfdaf06f521d598b
Change DH_generate_parameters back to order 2q subgroup

For for G=2 and 5 DH_generate_parameters will continue to generate
the order 2q subgroup for compatibility with previous versions.

For G=3 DH_generate_parameters generates an order q subgroup, but it
will not pass the check in DH_check with previous OpenSSL versions.

Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/9820)
CHANGES
crypto/dh/dh_gen.c