1
0
mirror of https://github.com/Mbed-TLS/mbedtls.git synced 2025-07-28 00:21:48 +03:00

Remove pkcs1 from certificate_verify

Signed-off-by: Jerry Yu <jerry.h.yu@arm.com>
This commit is contained in:
Jerry Yu
2022-06-16 19:07:10 +08:00
parent 08524c55f9
commit 7ab7f2b184
3 changed files with 15 additions and 5 deletions

View File

@ -864,6 +864,12 @@ static int ssl_tls13_get_sig_alg_from_pk( mbedtls_ssl_context *ssl,
*algorithm = MBEDTLS_TLS1_3_SIG_NONE;
for( ; *sig_alg != MBEDTLS_TLS1_3_SIG_NONE ; sig_alg++ )
{
if( *sig_alg == MBEDTLS_TLS1_3_SIG_RSA_PKCS1_SHA256 ||
*sig_alg == MBEDTLS_TLS1_3_SIG_RSA_PKCS1_SHA384 ||
*sig_alg == MBEDTLS_TLS1_3_SIG_RSA_PKCS1_SHA512 )
{
continue;
}
if( mbedtls_ssl_sig_alg_is_supported( ssl, *sig_alg) &&
mbedtls_ssl_tls13_sig_alg_is_available_for_pk(
ssl, *sig_alg, own_key ) )