@@ -306,12 +306,9 @@ static const SSL_CIPHER cipher_aliases[] = {
306306 */
307307 {0 , SSL_TXT_kRSA , 0 , SSL_kRSA , 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
308308
309- {0 , SSL_TXT_kDHr , 0 , SSL_kDHr , 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
310- {0 , SSL_TXT_kDHd , 0 , SSL_kDHd , 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
311- {0 , SSL_TXT_kDH , 0 , SSL_kDHr | SSL_kDHd , 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
312309 {0 , SSL_TXT_kEDH , 0 , SSL_kDHE , 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
313310 {0 , SSL_TXT_kDHE , 0 , SSL_kDHE , 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
314- {0 , SSL_TXT_DH , 0 , SSL_kDHr | SSL_kDHd | SSL_kDHE , 0 , 0 , 0 , 0 , 0 , 0 , 0 ,
311+ {0 , SSL_TXT_DH , 0 , SSL_kDHE , 0 , 0 , 0 , 0 , 0 , 0 , 0 ,
315312 0 },
316313
317314 {0 , SSL_TXT_kECDHr , 0 , SSL_kECDHr , 0 , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
@@ -334,8 +331,6 @@ static const SSL_CIPHER cipher_aliases[] = {
334331 {0 , SSL_TXT_aDSS , 0 , 0 , SSL_aDSS , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
335332 {0 , SSL_TXT_DSS , 0 , 0 , SSL_aDSS , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
336333 {0 , SSL_TXT_aNULL , 0 , 0 , SSL_aNULL , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
337- /* no such ciphersuites supported! */
338- {0 , SSL_TXT_aDH , 0 , 0 , SSL_aDH , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
339334 {0 , SSL_TXT_aECDH , 0 , 0 , SSL_aECDH , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
340335 {0 , SSL_TXT_aECDSA , 0 , 0 , SSL_aECDSA , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
341336 {0 , SSL_TXT_ECDSA , 0 , 0 , SSL_aECDSA , 0 , 0 , 0 , 0 , 0 , 0 , 0 },
@@ -506,8 +501,7 @@ void ssl_load_ciphers(void)
506501 disabled_auth_mask |= SSL_aDSS ;
507502#endif
508503#ifdef OPENSSL_NO_DH
509- disabled_mkey_mask |= SSL_kDHr | SSL_kDHd | SSL_kDHE | SSL_kDHEPSK ;
510- disabled_auth_mask |= SSL_aDH ;
504+ disabled_mkey_mask |= SSL_kDHE | SSL_kDHEPSK ;
511505#endif
512506#ifdef OPENSSL_NO_EC
513507 disabled_mkey_mask |= SSL_kECDHe | SSL_kECDHr | SSL_kECDHEPSK ;
@@ -1614,12 +1608,6 @@ char *SSL_CIPHER_description(const SSL_CIPHER *cipher, char *buf, int len)
16141608 case SSL_kRSA :
16151609 kx = "RSA" ;
16161610 break ;
1617- case SSL_kDHr :
1618- kx = "DH/RSA" ;
1619- break ;
1620- case SSL_kDHd :
1621- kx = "DH/DSS" ;
1622- break ;
16231611 case SSL_kDHE :
16241612 kx = "DH" ;
16251613 break ;
@@ -1661,9 +1649,6 @@ char *SSL_CIPHER_description(const SSL_CIPHER *cipher, char *buf, int len)
16611649 case SSL_aDSS :
16621650 au = "DSS" ;
16631651 break ;
1664- case SSL_aDH :
1665- au = "DH" ;
1666- break ;
16671652 case SSL_aECDH :
16681653 au = "ECDH" ;
16691654 break ;
@@ -1980,10 +1965,6 @@ int ssl_cipher_get_cert_index(const SSL_CIPHER *c)
19801965 return SSL_PKEY_ECC ;
19811966 } else if (alg_a & SSL_aECDSA )
19821967 return SSL_PKEY_ECC ;
1983- else if (alg_k & SSL_kDHr )
1984- return SSL_PKEY_DH_RSA ;
1985- else if (alg_k & SSL_kDHd )
1986- return SSL_PKEY_DH_DSA ;
19871968 else if (alg_a & SSL_aDSS )
19881969 return SSL_PKEY_DSA_SIGN ;
19891970 else if (alg_a & SSL_aRSA )
0 commit comments