revert SUITEB128ONLY patch, anything wanting to use P-384 can use SUITEB128 instead
authorDr. Stephen Henson <steve@openssl.org>
Mon, 10 Dec 2012 02:02:16 +0000 (02:02 +0000)
committerDr. Stephen Henson <steve@openssl.org>
Mon, 10 Dec 2012 02:02:16 +0000 (02:02 +0000)
ssl/t1_lib.c

index 7cc061a8aa206e7577147507cf0ed7e7f0f8dd47..e0f3425c5af9b5423d105875ce05164164eca620 100644 (file)
@@ -332,11 +332,15 @@ static void tls1_get_curvelist(SSL *s, int sess,
        switch (tls1_suiteb(s))
                {
        case SSL_CERT_FLAG_SUITEB_128_LOS:
-       case SSL_CERT_FLAG_SUITEB_128_LOS_ONLY:
                *pcurves = suiteb_curves;
                *pcurveslen = sizeof(suiteb_curves);
                break;
 
+       case SSL_CERT_FLAG_SUITEB_128_LOS_ONLY:
+               *pcurves = suiteb_curves;
+               *pcurveslen = 2;
+               break;
+
        case SSL_CERT_FLAG_SUITEB_192_LOS:
                *pcurves = suiteb_curves + 2;
                *pcurveslen = 2;