mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2025-07-29 11:41:15 +03:00
Revert "TLS 1.3: SRV: Don't select ephemeral mode on resumption"
This reverts commit dadeb20383
.
Signed-off-by: Pengyu Lv <pengyu.lv@arm.com>
This commit is contained in:
@ -1026,8 +1026,7 @@ MBEDTLS_CHECK_RETURN_CRITICAL
|
|||||||
static int ssl_tls13_check_ephemeral_key_exchange(mbedtls_ssl_context *ssl)
|
static int ssl_tls13_check_ephemeral_key_exchange(mbedtls_ssl_context *ssl)
|
||||||
{
|
{
|
||||||
#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED)
|
#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED)
|
||||||
return !ssl->handshake->resume &&
|
return mbedtls_ssl_conf_tls13_ephemeral_enabled(ssl) &&
|
||||||
mbedtls_ssl_conf_tls13_ephemeral_enabled(ssl) &&
|
|
||||||
ssl_tls13_client_hello_has_exts_for_ephemeral_key_exchange(ssl);
|
ssl_tls13_client_hello_has_exts_for_ephemeral_key_exchange(ssl);
|
||||||
#else
|
#else
|
||||||
((void) ssl);
|
((void) ssl);
|
||||||
|
Reference in New Issue
Block a user