openssl/test/ssl-tests
Shane Lontis 341c3e7f28 Add fips checks for ecdh key agreement
For key agreement only NIST curves that have a security strength of 112 bits or more are allowed.
Fixed tests so they obey these restrictions when testing in fips mode.

Reviewed-by: Tomas Mraz <tmraz@fedoraproject.org>
(Merged from https://github.com/openssl/openssl/pull/12745)
2020-09-18 14:20:38 +01:00
..
01-simple.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
01-simple.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
02-protocol-version.cnf Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
02-protocol-version.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
03-custom_verify.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
03-custom_verify.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
04-client_auth.cnf Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
04-client_auth.cnf.in Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
05-sni.cnf Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
05-sni.cnf.in Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
06-sni-ticket.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
06-sni-ticket.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
07-dtls-protocol-version.cnf Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
07-dtls-protocol-version.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
08-npn.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
08-npn.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
09-alpn.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
09-alpn.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
10-resumption.cnf Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
10-resumption.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
11-dtls_resumption.cnf Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
11-dtls_resumption.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
12-ct.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
12-ct.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
13-fragmentation.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
13-fragmentation.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
14-curves.cnf Add fips checks for ecdh key agreement 2020-09-18 14:20:38 +01:00
14-curves.cnf.in Add fips checks for ecdh key agreement 2020-09-18 14:20:38 +01:00
15-certstatus.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
15-certstatus.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
16-dtls-certstatus.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
16-dtls-certstatus.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
17-renegotiate.cnf Add a test for renegotiation with EXTMS dropped 2020-06-09 14:11:20 +02:00
17-renegotiate.cnf.in Add a test for renegotiation with EXTMS dropped 2020-06-09 14:11:20 +02:00
18-dtls-renegotiate.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
18-dtls-renegotiate.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
19-mac-then-encrypt.cnf Test mte with stitched ciphersuites in TLSv1.0 2020-08-20 17:02:34 +01:00
19-mac-then-encrypt.cnf.in Test mte with stitched ciphersuites in TLSv1.0 2020-08-20 17:02:34 +01:00
20-cert-select.cnf Add fips checks for ecdsa signatures 2020-09-18 14:20:38 +01:00
20-cert-select.cnf.in Add fips checks for ecdsa signatures 2020-09-18 14:20:38 +01:00
21-key-update.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
21-key-update.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
22-compression.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
22-compression.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
23-srp.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
23-srp.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
24-padding.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
24-padding.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
25-cipher.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
25-cipher.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
26-tls13_client_auth.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
26-tls13_client_auth.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
27-ticket-appdata.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
27-ticket-appdata.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
28-seclevel.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
28-seclevel.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
29-dtls-sctp-label-bug.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
29-dtls-sctp-label-bug.cnf.in Update copyright year 2020-04-23 13:55:52 +01:00
30-extended-master-secret.cnf Use .cnf for config files, not .conf 2020-03-06 18:25:13 +01:00
30-extended-master-secret.cnf.in Amend references to "OpenSSL license" 2020-04-29 15:27:22 +02:00
protocol_version.pm Reduce the security bits for MD5 and SHA1 based signatures in TLS 2020-06-27 08:41:40 +02:00
ssltests_base.pm Update copyright year 2020-04-23 13:55:52 +01:00