summaryrefslogtreecommitdiffstats
path: root/lib/libssl/ssl_lib.c
diff options
context:
space:
mode:
authorbeck <beck@openbsd.org>2020-05-09 16:52:15 +0000
committerbeck <beck@openbsd.org>2020-05-09 16:52:15 +0000
commitc07686ceb0f49611e1017a6dc688a4d3cd3587de (patch)
tree4b108e87271cd205ba9d77f18aa3f96315915f64 /lib/libssl/ssl_lib.c
parentShuffle and clarify logic creating the contents of resolv.conf. (diff)
downloadwireguard-openbsd-c07686ceb0f49611e1017a6dc688a4d3cd3587de.tar.xz
wireguard-openbsd-c07686ceb0f49611e1017a6dc688a4d3cd3587de.zip
Forcibly ensure that only PSS may be used with RSA in TLS 1.3.
This prevents us from incorrectly choosing a PKCS1 based signature if the client advertises support for them but also prefers them to PSS such as appears to be the case with gnuTLS. ok jsing@
Diffstat (limited to 'lib/libssl/ssl_lib.c')
0 files changed, 0 insertions, 0 deletions