Commit 0ced42e0 authored by Matt Caswell's avatar Matt Caswell
Browse files

Use ciphersuite id when matching if we've got one



When matching a ciphersuite if we are given an id, make sure we use it
otherwise we will match another ciphersuite which is identical except for
the TLS version.

Reviewed-by: default avatarRich Salz <rsalz@openssl.org>
parent 582a17d6
Loading
Loading
Loading
Loading
+2 −0
Original line number Diff line number Diff line
@@ -859,6 +859,8 @@ static void ssl_cipher_apply_rule(uint32_t cipher_id, uint32_t alg_mkey,
                    cp->algorithm_enc, cp->algorithm_mac, cp->min_tls,
                    cp->algo_strength);
#endif
            if (cipher_id != 0 && (cipher_id != cp->id))
                continue;
            if (alg_mkey && !(alg_mkey & cp->algorithm_mkey))
                continue;
            if (alg_auth && !(alg_auth & cp->algorithm_auth))