From fdf312709a34eb173f8366f55db0e0884b1f6a26 Mon Sep 17 00:00:00 2001 From: Matt Caswell Date: Tue, 27 Apr 2021 11:07:57 +0100 Subject: Adjust dtlstest for SHA1 security level SHA1 is now in security level 0. SHA1 is required for DTLSv1.1. Therefore dtlstest needed some adjustments in the event that DTLSv1.2 is disabled. Reviewed-by: Paul Dale (Merged from https://github.com/openssl/openssl/pull/15047) --- test/dtlstest.c | 32 ++++++++++++++++++++++++++++++++ 1 file changed, 32 insertions(+) diff --git a/test/dtlstest.c b/test/dtlstest.c index 4f0f9d549d..05b8ded9cc 100644 --- a/test/dtlstest.c +++ b/test/dtlstest.c @@ -67,8 +67,16 @@ static int test_dtls_unprocessed(int testidx) &sctx, &cctx, cert, privkey))) return 0; +#ifndef OPENSSL_NO_DTLS1_2 if (!TEST_true(SSL_CTX_set_cipher_list(cctx, "AES128-SHA"))) goto end; +#else + /* Default sigalgs are SHA1 based in