• Heikki Linnakangas's avatar
    Simplify the way OpenSSL renegotiation is initiated in server. · 272923a0
    Heikki Linnakangas authored
    At least in all modern versions of OpenSSL, it is enough to call
    SSL_renegotiate() once, and then forget about it. Subsequent SSL_write()
    and SSL_read() calls will finish the handshake.
    
    The SSL_set_session_id_context() call is unnecessary too. We only have
    one SSL context, and the SSL session was created with that to begin with.
    272923a0
be-secure-openssl.c 28.2 KB