forked from pool/openssl
31 lines
925 B
Diff
31 lines
925 B
Diff
|
Index: openssl-1.0.1f/test/testssl
|
||
|
===================================================================
|
||
|
--- openssl-1.0.1f.orig/test/testssl
|
||
|
+++ openssl-1.0.1f/test/testssl
|
||
|
@@ -136,6 +136,25 @@ for protocol in TLSv1.2 SSLv3; do
|
||
|
done
|
||
|
done
|
||
|
|
||
|
+echo "Testing default ciphersuites"
|
||
|
+
|
||
|
+for cipher_suite in DEFAULT_SUSE DEFAULT; do
|
||
|
+ ../util/shlib_wrap.sh ../apps/openssl ciphers $cipher_suite
|
||
|
+ if [ $? -ne 0 ]; then
|
||
|
+ echo "Failed default ciphersuite $cipher_suite"
|
||
|
+ exit 1
|
||
|
+ fi
|
||
|
+done
|
||
|
+
|
||
|
+echo "Testing if MD5, DES and RC4 are excluded from DEFAULT_SUSE cipher suite"
|
||
|
+../util/shlib_wrap.sh ../apps/openssl ciphers DEFAULT_SUSE| grep "MD5\|RC4\|DES-[^CBC3]"
|
||
|
+
|
||
|
+if [ $? -ne 1 ];then
|
||
|
+ echo "weak ciphers are present on DEFAULT_SUSE cipher suite"
|
||
|
+ exit 1
|
||
|
+fi
|
||
|
+
|
||
|
+
|
||
|
#############################################################################
|
||
|
|
||
|
if ../util/shlib_wrap.sh ../apps/openssl no-dh; then
|