Commit 8f119a03 authored by Dr. Stephen Henson's avatar Dr. Stephen Henson
Browse files

set FIPS permitted flag before initalising digest

parent 06843f82
Loading
Loading
Loading
Loading
+1 −1
Original line number Diff line number Diff line
@@ -614,7 +614,6 @@ int ssl3_digest_cached_records(SSL *s)
		if ((mask & ssl_get_algorithm2(s)) && md) 
			{
			s->s3->handshake_dgst[i]=EVP_MD_CTX_create();
			EVP_DigestInit_ex(s->s3->handshake_dgst[i],md,NULL);
#ifdef OPENSSL_FIPS
			if (EVP_MD_nid(md) == NID_md5)
				{
@@ -622,6 +621,7 @@ int ssl3_digest_cached_records(SSL *s)
						EVP_MD_CTX_FLAG_NON_FIPS_ALLOW);
				}
#endif
			EVP_DigestInit_ex(s->s3->handshake_dgst[i],md,NULL);
			EVP_DigestUpdate(s->s3->handshake_dgst[i],hdata,hdatalen);
			} 
		else