Branch: Tag:

2015-02-23

2015-02-23 17:30:31 by Martin Nilsson <nilsson@opera.com>

Use the full ECC mask for the post filtering of certificate chains.

367: Inside #if constant(Crypto.ECC.Curve)
   if (!sizeof(ecc_curves) || ecc_point_format==-1) {    // Client and server have no common curves, so remove ECC from KE    // mask. -  ke_mask &= ~((1<<KE_ecdh_rsa)|(1<<KE_ecdhe_rsa)| -  (1<<KE_ecdh_anon)); +  ke_mask &= ~KE_ecc_mask;    }   #endif