summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorDr. Stephen Henson <steve@openssl.org>2011-07-20 15:17:33 +0000
committerDr. Stephen Henson <steve@openssl.org>2011-07-20 15:17:33 +0000
commitb58ea0b9418b900caad4401ca2eae1fa8a8dd7a0 (patch)
tree35f2c541f2ba88ec6b3848feac09493685a9c3ab
parent16067fe5fdd33c7d0812cd3bc257ef0114e07f6e (diff)
PR: 2555
Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de> Reviewed by: steve Fix DTLS sequence number bug
-rw-r--r--ssl/d1_srvr.c8
1 files changed, 8 insertions, 0 deletions
diff --git a/ssl/d1_srvr.c b/ssl/d1_srvr.c
index 318920e76f..acf62abb51 100644
--- a/ssl/d1_srvr.c
+++ b/ssl/d1_srvr.c
@@ -167,6 +167,8 @@ int dtls1_accept(SSL *s)
s->in_handshake++;
if (!SSL_in_init(s) || SSL_in_before(s)) SSL_clear(s);
+ s->d1->listen = listen;
+
if (s->cert == NULL)
{
SSLerr(SSL_F_DTLS1_ACCEPT,SSL_R_NO_CERTIFICATE_SET);
@@ -276,6 +278,12 @@ int dtls1_accept(SSL *s)
s->init_num=0;
+ /* Reflect ClientHello sequence to remain stateless while listening */
+ if (listen)
+ {
+ memcpy(s->s3->write_sequence, s->s3->read_sequence, sizeof(s->s3->write_sequence));
+ }
+
/* If we're just listening, stop here */
if (listen && s->state == SSL3_ST_SW_SRVR_HELLO_A)
{