Blame SOURCES/mod_nss-defaultcipherlist.patch

88aca9
From 04b6d11d7745b319fad127622f45bfb99759a8d7 Mon Sep 17 00:00:00 2001
88aca9
From: Rob Crittenden <rcritten@redhat.com>
88aca9
Date: Tue, 17 May 2016 14:02:24 -0400
88aca9
Subject: [PATCH] Work around missing ndg-httpsclient breaking import of
88aca9
 pyopenssl
88aca9
88aca9
---
88aca9
 test/test_request.py | 13 +++++++++----
88aca9
 1 file changed, 9 insertions(+), 4 deletions(-)
88aca9
88aca9
diff --git a/test/test_request.py b/test/test_request.py
88aca9
index 5d2a525..254b31c 100644
88aca9
--- a/test/test_request.py
88aca9
+++ b/test/test_request.py
88aca9
@@ -8,8 +8,13 @@ import logging
88aca9
 import socket
88aca9
 from requests.packages.urllib3.util import get_host
88aca9
 from requests.packages.urllib3.util.timeout import Timeout
88aca9
-from requests.packages.urllib3.contrib import pyopenssl
88aca9
 from requests.packages.urllib3.connectionpool import HTTPConnectionPool, HTTPSConnectionPool, VerifiedHTTPSConnection 
88aca9
+try:
88aca9
+    from requests.packages.urllib3.contrib.pyopenssl import DEFAULT_SSL_CIPHER_LIST
88aca9
+except ImportError:
88aca9
+    DEFAULT_SSL_CIPHER_LIST = "ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:" + \
88aca9
+    "ECDH+AES128:DH+AES:ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:RSA+3DES:" + \
88aca9
+    "!aNULL:!MD5:!DSS"
88aca9
 
88aca9
 # Don't bend over backwards for ssl support, assume it is there.
88aca9
 import ssl
88aca9
@@ -33,7 +38,7 @@ except ImportError:
88aca9
         # Other older python we use the urllib3 bundled copy
88aca9
 		from urllib3.packages.ssl_match_hostname import match_hostname, CertificateError
88aca9
 
88aca9
-SAVE_DEFAULT_SSL_CIPHER_LIST = pyopenssl.DEFAULT_SSL_CIPHER_LIST
88aca9
+SAVE_DEFAULT_SSL_CIPHER_LIST = DEFAULT_SSL_CIPHER_LIST
88aca9
 
88aca9
 log = logging.getLogger(__name__)
88aca9
 
88aca9
@@ -141,9 +146,9 @@ class MyVerifiedHTTPSConnection(VerifiedHTTPSConnection):
88aca9
     def connect(self):
88aca9
         if self.sni:
88aca9
             if self.ciphers:
88aca9
-                pyopenssl.DEFAULT_SSL_CIPHER_LIST = self.ciphers
88aca9
+                DEFAULT_SSL_CIPHER_LIST = self.ciphers
88aca9
             else:
88aca9
-                pyopenssl.DEFAULT_SSL_CIPHER_LIST = SAVE_DEFAULT_SSL_CIPHER_LIST
88aca9
+                DEFAULT_SSL_CIPHER_LIST = SAVE_DEFAULT_SSL_CIPHER_LIST
88aca9
             return super(MyVerifiedHTTPSConnection, self).connect()
88aca9
 
88aca9
         # Add certificate verification
88aca9
-- 
88aca9
2.5.5
88aca9