From: Dr. Stephen Henson Date: Sun, 25 Sep 2011 22:04:43 +0000 (+0000) Subject: Handle provable prime parameters for canonical g generation which are X-Git-Tag: OpenSSL-fips-2_0-rc1~119 X-Git-Url: https://git.librecmc.org/?a=commitdiff_plain;h=bac3db9cc1f48307482c42ac69ae68da7ac06c80;p=oweals%2Fopenssl.git Handle provable prime parameters for canonical g generation which are sometimes erroneously included. --- diff --git a/fips/dsa/fips_dssvs.c b/fips/dsa/fips_dssvs.c index d355fcb6ff..3362a33e6c 100644 --- a/fips/dsa/fips_dssvs.c +++ b/fips/dsa/fips_dssvs.c @@ -202,6 +202,12 @@ static void pqg(FILE *in, FILE *out) q=hex2bn(value); else if(!strcmp(keyword,"domain_parameter_seed")) seedlen = hex2bin(value, seed); + else if(!strcmp(keyword,"firstseed")) + seedlen = hex2bin(value, seed); + else if(!strcmp(keyword,"pseed")) + seedlen += hex2bin(value, seed + seedlen); + else if(!strcmp(keyword,"qseed")) + seedlen += hex2bin(value, seed + seedlen); else if(!strcmp(keyword,"index")) { idxlen = hex2bin(value, idtmp);