Better usage of dhm_calc_secret in SSL
This commit is contained in:
parent
8df68632e8
commit
dd0c0f33c0
@ -2055,7 +2055,7 @@ static int ssl_write_client_key_exchange( ssl_context *ssl )
|
||||
SSL_DEBUG_MPI( 3, "DHM: X ", &ssl->handshake->dhm_ctx.X );
|
||||
SSL_DEBUG_MPI( 3, "DHM: GX", &ssl->handshake->dhm_ctx.GX );
|
||||
|
||||
ssl->handshake->pmslen = ssl->handshake->dhm_ctx.len;
|
||||
ssl->handshake->pmslen = POLARSSL_PREMASTER_SIZE;
|
||||
|
||||
if( ( ret = dhm_calc_secret( &ssl->handshake->dhm_ctx,
|
||||
ssl->handshake->premaster,
|
||||
|
@ -2743,7 +2743,7 @@ static int ssl_parse_client_key_exchange( ssl_context *ssl )
|
||||
return( POLARSSL_ERR_SSL_BAD_HS_CLIENT_KEY_EXCHANGE );
|
||||
}
|
||||
|
||||
ssl->handshake->pmslen = ssl->handshake->dhm_ctx.len;
|
||||
ssl->handshake->pmslen = POLARSSL_PREMASTER_SIZE;
|
||||
|
||||
if( ( ret = dhm_calc_secret( &ssl->handshake->dhm_ctx,
|
||||
ssl->handshake->premaster,
|
||||
|
@ -908,10 +908,7 @@ int ssl_psk_derive_premaster( ssl_context *ssl, key_exchange_type_t key_ex )
|
||||
if( key_ex == POLARSSL_KEY_EXCHANGE_DHE_PSK )
|
||||
{
|
||||
int ret;
|
||||
size_t len = ssl->handshake->dhm_ctx.len;
|
||||
|
||||
if( end - p < 2 + (int) len )
|
||||
return( POLARSSL_ERR_SSL_BAD_INPUT_DATA );
|
||||
size_t len = end - ( p + 2 );
|
||||
|
||||
/* Write length only when we know the actual value */
|
||||
if( ( ret = dhm_calc_secret( &ssl->handshake->dhm_ctx,
|
||||
|
Loading…
Reference in New Issue
Block a user