From: Dr. Stephen Henson Date: Thu, 5 Jan 2012 00:28:29 +0000 (+0000) Subject: PR: 2671 X-Git-Tag: OpenSSL_1_0_1-beta2~18 X-Git-Url: https://git.librecmc.org/?a=commitdiff_plain;h=e0b9678d7f7401d34f899f8dc2ba66bdb44b6135;p=oweals%2Fopenssl.git PR: 2671 Submitted by: steve Update maximum message size for certifiate verify messages to support 4096 bit RSA keys again as TLS v1.2 messages is two bytes longer. --- diff --git a/ssl/s3_srvr.c b/ssl/s3_srvr.c index 45c36aed4f..a60e4d699c 100644 --- a/ssl/s3_srvr.c +++ b/ssl/s3_srvr.c @@ -2911,7 +2911,7 @@ int ssl3_get_cert_verify(SSL *s) SSL3_ST_SR_CERT_VRFY_A, SSL3_ST_SR_CERT_VRFY_B, -1, - 514, /* 514? */ + 516, /* Enough for 4096 bit RSA key with TLS v1.2 */ &ok); if (!ok) return((int)n);