From 086e32a6c7df4588834bc4d033a00382fd313b58 Mon Sep 17 00:00:00 2001 From: "Dr. Stephen Henson" Date: Thu, 19 May 2011 18:09:02 +0000 Subject: Implement FIPS_mode and FIPS_mode_set --- ssl/s3_srvr.c | 2 ++ 1 file changed, 2 insertions(+) (limited to 'ssl/s3_srvr.c') diff --git a/ssl/s3_srvr.c b/ssl/s3_srvr.c index 286af3a4db..940c951d0c 100644 --- a/ssl/s3_srvr.c +++ b/ssl/s3_srvr.c @@ -1899,6 +1899,8 @@ int ssl3_send_server_key_exchange(SSL *s) { EVP_DigestInit_ex(&md_ctx,(num == 2) ?s->ctx->md5:s->ctx->sha1, NULL); + EVP_MD_CTX_set_flags(&md_ctx, + EVP_MD_CTX_FLAG_NON_FIPS_ALLOW); EVP_DigestUpdate(&md_ctx,&(s->s3->client_random[0]),SSL3_RANDOM_SIZE); EVP_DigestUpdate(&md_ctx,&(s->s3->server_random[0]),SSL3_RANDOM_SIZE); EVP_DigestUpdate(&md_ctx,&(d[4]),n); -- cgit v1.2.1