Index: openssl-1.0.2a/test/testssl =================================================================== --- openssl-1.0.2a.orig/test/testssl 2015-03-19 14:30:36.000000000 +0100 +++ openssl-1.0.2a/test/testssl 2015-05-24 14:06:02.038506053 +0200 @@ -138,6 +138,25 @@ for protocol in TLSv1.2 SSLv3; do done done +echo "Testing default ciphersuites" + +for cipher_suite in DEFAULT_SUSE DEFAULT; do + ../util/shlib_wrap.sh ../apps/openssl ciphers $cipher_suite + if [ $? -ne 0 ]; then + echo "Failed default ciphersuite $cipher_suite" + exit 1 + fi +done + +echo "Testing if MD5, DES and RC4 are excluded from DEFAULT_SUSE cipher suite" +../util/shlib_wrap.sh ../apps/openssl ciphers DEFAULT_SUSE| grep "MD5\|RC4\|DES-[^CBC3]" + +if [ $? -ne 1 ];then + echo "weak ciphers are present on DEFAULT_SUSE cipher suite" + exit 1 +fi + + ############################################################################# if ../util/shlib_wrap.sh ../apps/openssl no-dh; then