diff --git a/include/openssl/ssl.h b/include/openssl/ssl.h index 81896111..2d72fec0 100644 --- a/include/openssl/ssl.h +++ b/include/openssl/ssl.h @@ -1050,10 +1050,7 @@ enum ssl_private_key_result_t { typedef struct ssl_private_key_method_st { /* type returns the type of the key used by |ssl|. For RSA keys, return * |NID_rsaEncryption|. For ECDSA keys, return |NID_X9_62_prime256v1|, - * |NID_secp384r1|, or |NID_secp521r1|, depending on the curve. - * - * Returning |EVP_PKEY_EC| for ECDSA keys is deprecated and may result in - * connection failures in TLS 1.3. */ + * |NID_secp384r1|, or |NID_secp521r1|, depending on the curve. */ int (*type)(SSL *ssl); /* max_signature_len returns the maximum length of a signature signed by the diff --git a/ssl/ssl_privkey.c b/ssl/ssl_privkey.c index ed8ebaa5..c5441dec 100644 --- a/ssl/ssl_privkey.c +++ b/ssl/ssl_privkey.c @@ -304,8 +304,6 @@ int ssl_has_private_key(const SSL *ssl) { int ssl_is_ecdsa_key_type(int type) { switch (type) { - /* TODO(davidben): Remove support for |EVP_PKEY_EC| key types. */ - case EVP_PKEY_EC: case NID_secp224r1: case NID_X9_62_prime256v1: case NID_secp384r1: