]> git.ipfire.org Git - thirdparty/openvpn.git/commit
Make tls_ctx_restrict_ciphers accept NULL as char *cipher_list.
authorSteffan Karger <steffan@karger.me>
Fri, 3 Jan 2014 20:03:02 +0000 (21:03 +0100)
committerGert Doering <gert@greenie.muc.de>
Sun, 5 Jan 2014 17:35:18 +0000 (18:35 +0100)
commite83313a8ba92684a660c9d78c536699f67dcdf63
tree1351cddb1a2e06952723273f3eedc2ef31c59609
parent69e03f4cd4971c8748faa83be45c89694d4b7a51
Make tls_ctx_restrict_ciphers accept NULL as char *cipher_list.

This adds some ifs to check for NULL in tls_ctx_restrict_ciphers() to
prepare
for disabling export ciphers by default in OpenVPN 2.4+.

Also let tls_ctx_restrict_ciphers always be called, also when *cipher_list
is
NULL.

Signed-off-by: Steffan Karger <steffan@karger.me>
Acked-by: Gert Doering <gert@greenie.muc.de>
Message-Id: <52C8922E.3030607@karger.me>
URL: http://article.gmane.org/gmane.network.openvpn.devel/8173
Signed-off-by: Gert Doering <gert@greenie.muc.de>
src/openvpn/ssl.c
src/openvpn/ssl_backend.h
src/openvpn/ssl_openssl.c
src/openvpn/ssl_polarssl.c