mirror of
https://github.com/openssl/openssl.git
synced 2024-12-21 06:09:35 +08:00
hkdf: change FIPS zeroization to use the OPENSSL_PEDANTIC_ZEROIZATION define
Reviewed-by: Richard Levitte <levitte@openssl.org> Reviewed-by: Tim Hudson <tjh@openssl.org> (Merged from https://github.com/openssl/openssl/pull/26068)
This commit is contained in:
parent
e73c1faa53
commit
db1d8c90d5
@ -128,7 +128,7 @@ static void kdf_hkdf_reset(void *vctx)
|
||||
void *provctx = ctx->provctx;
|
||||
|
||||
ossl_prov_digest_reset(&ctx->digest);
|
||||
#ifdef FIPS_MODULE
|
||||
#ifdef OPENSSL_PEDANTIC_ZEROIZATION
|
||||
OPENSSL_clear_free(ctx->salt, ctx->salt_len);
|
||||
#else
|
||||
OPENSSL_free(ctx->salt);
|
||||
|
Loading…
Reference in New Issue
Block a user