Commit 48c16012 authored by Dmitry Belyavsky's avatar Dmitry Belyavsky Committed by Dr. Stephen Henson
Browse files

Don't use GOST ciphersuites with DTLS.



RT#4438

Reviewed-by: default avatarMatt Caswell <matt@openssl.org>
Reviewed-by: default avatarStephen Henson <steve@openssl.org>
parent 7c0ef843
Loading
Loading
Loading
Loading
+4 −4
Original line number Diff line number Diff line
@@ -2506,7 +2506,7 @@ static SSL_CIPHER ssl3_ciphers[] =
     SSL_eGOST2814789CNT,
     SSL_GOST89MAC,
     TLS1_VERSION, TLS1_2_VERSION,
     DTLS1_VERSION, DTLS1_2_VERSION,
     0, 0,
     SSL_HIGH,
     SSL_HANDSHAKE_MAC_GOST94 | TLS1_PRF_GOST94 | TLS1_STREAM_MAC,
     256,
@@ -2521,7 +2521,7 @@ static SSL_CIPHER ssl3_ciphers[] =
     SSL_eNULL,
     SSL_GOST94,
     TLS1_VERSION, TLS1_2_VERSION,
     DTLS1_VERSION, DTLS1_2_VERSION,
     0, 0,
     SSL_STRONG_NONE,
     SSL_HANDSHAKE_MAC_GOST94 | TLS1_PRF_GOST94,
     0,
@@ -2536,7 +2536,7 @@ static SSL_CIPHER ssl3_ciphers[] =
     SSL_eGOST2814789CNT12,
     SSL_GOST89MAC12,
     TLS1_VERSION, TLS1_2_VERSION,
     DTLS1_VERSION, DTLS1_2_VERSION,
     0, 0,
     SSL_HIGH,
     SSL_HANDSHAKE_MAC_GOST12_256 | TLS1_PRF_GOST12_256 | TLS1_STREAM_MAC,
     256,
@@ -2551,7 +2551,7 @@ static SSL_CIPHER ssl3_ciphers[] =
     SSL_eNULL,
     SSL_GOST12_256,
     TLS1_VERSION, TLS1_2_VERSION,
     DTLS1_VERSION, DTLS1_2_VERSION,
     0, 0,
     SSL_STRONG_NONE,
     SSL_HANDSHAKE_MAC_GOST12_256 | TLS1_PRF_GOST12_256 | TLS1_STREAM_MAC,
     0,