tls-crypto: Check if TLS versions and cipher suites match
authorPascal Knecht <pascal.knecht@hsr.ch>
Fri, 4 Sep 2020 16:29:43 +0000 (18:29 +0200)
committerTobias Brunner <tobias@strongswan.org>
Fri, 12 Feb 2021 13:35:23 +0000 (14:35 +0100)
commit8a6edc08a45830842f3946562fe23fcb37863e01
tree826e111410f644cf8ca6c65ab583b321f3ed0d76
parentf920125304d2799c9c270f27bcaca457c19b3926
tls-crypto: Check if TLS versions and cipher suites match

Only suggest TLS versions of supported cipher suites.  For instance, do not
suggest TLS 1.3 if none of its cipher suites (requiring GCM/CCM or
ChaPoly) are available.
src/libtls/tls_crypto.c
src/libtls/tls_peer.c