crypto/tls: simplify supported points handling to match BoringSSL
BoGo: PointFormat-Server-*
This commit is contained in:
parent
922b99e473
commit
bbb712bfd8
@ -185,28 +185,32 @@ func (hs *serverHandshakeState) readClientHello() (isResume bool, err error) {
|
|||||||
}
|
}
|
||||||
c.haveVers = true
|
c.haveVers = true
|
||||||
|
|
||||||
supportedCurve := false
|
|
||||||
preferredCurves := c.config.curvePreferences()
|
preferredCurves := c.config.curvePreferences()
|
||||||
Curves:
|
Curves:
|
||||||
for _, curve := range hs.clientHello.supportedCurves {
|
for _, curve := range hs.clientHello.supportedCurves {
|
||||||
for _, supported := range preferredCurves {
|
for _, supported := range preferredCurves {
|
||||||
if supported == curve {
|
if supported == curve {
|
||||||
supportedCurve = true
|
hs.ellipticOk = true
|
||||||
break Curves
|
break Curves
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
supportedPointFormat := false
|
// If present, the supported points extension must include uncompressed.
|
||||||
for _, pointFormat := range hs.clientHello.supportedPoints {
|
// Can be absent. This behavior mirrors BoringSSL.
|
||||||
if pointFormat == pointFormatUncompressed {
|
if hs.clientHello.supportedPoints != nil {
|
||||||
supportedPointFormat = true
|
supportedPointFormat := false
|
||||||
break
|
for _, pointFormat := range hs.clientHello.supportedPoints {
|
||||||
|
if pointFormat == pointFormatUncompressed {
|
||||||
|
supportedPointFormat = true
|
||||||
|
break
|
||||||
|
}
|
||||||
|
}
|
||||||
|
if !supportedPointFormat {
|
||||||
|
c.sendAlert(alertHandshakeFailure)
|
||||||
|
return false, errors.New("tls: client does not support uncompressed points")
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
// TLS 1.3 has removed point format negotiation.
|
|
||||||
supportedPointFormat = supportedPointFormat || c.vers >= VersionTLS13
|
|
||||||
hs.ellipticOk = supportedCurve && supportedPointFormat
|
|
||||||
|
|
||||||
foundCompression := false
|
foundCompression := false
|
||||||
// We only support null compression, so check that the client offered it.
|
// We only support null compression, so check that the client offered it.
|
||||||
|
Loading…
Reference in New Issue
Block a user