summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorDimitri John Ledkov <dimitri.ledkov@surgut.co.uk>2024-04-17 09:04:59 +0200
committerTomas Mraz <tomas@openssl.org>2024-04-19 10:32:27 +0200
commitfccd1615eea5f81f2a12b2fb953e6606edbc59c8 (patch)
treef3b35192710f23c907c16f613f16de051046e55e
parent52ca56090cb651ffa8ef9b5cd155742ee35117d1 (diff)
Exclude X25519 and X448 from capabilities advertised by FIPS provider
Reviewed-by: Neil Horman <nhorman@openssl.org> Reviewed-by: Paul Dale <ppzgs1@gmail.com> Reviewed-by: Tomas Mraz <tomas@openssl.org> (Merged from https://github.com/openssl/openssl/pull/24099)
-rw-r--r--providers/common/capabilities.c2
1 files changed, 0 insertions, 2 deletions
diff --git a/providers/common/capabilities.c b/providers/common/capabilities.c
index f7234615e4..2cb2ee58de 100644
--- a/providers/common/capabilities.c
+++ b/providers/common/capabilities.c
@@ -189,10 +189,8 @@ static const OSSL_PARAM param_group_list[][10] = {
TLS_GROUP_ENTRY("brainpoolP256r1", "brainpoolP256r1", "EC", 25),
TLS_GROUP_ENTRY("brainpoolP384r1", "brainpoolP384r1", "EC", 26),
TLS_GROUP_ENTRY("brainpoolP512r1", "brainpoolP512r1", "EC", 27),
-# endif
TLS_GROUP_ENTRY("x25519", "X25519", "X25519", 28),
TLS_GROUP_ENTRY("x448", "X448", "X448", 29),
-# ifndef FIPS_MODULE
TLS_GROUP_ENTRY("brainpoolP256r1tls13", "brainpoolP256r1", "EC", 30),
TLS_GROUP_ENTRY("brainpoolP384r1tls13", "brainpoolP384r1", "EC", 31),
TLS_GROUP_ENTRY("brainpoolP512r1tls13", "brainpoolP512r1", "EC", 32),