Blame SOURCES/openssl-1.0.2j-downgrade-strength.patch

cfec1a
diff -up openssl-1.0.2j/ssl/s3_lib.c.downgrade-strength openssl-1.0.2j/ssl/s3_lib.c
cfec1a
--- openssl-1.0.2j/ssl/s3_lib.c.downgrade-strength	2017-01-05 17:23:21.091203023 +0100
cfec1a
+++ openssl-1.0.2j/ssl/s3_lib.c	2017-01-05 17:36:37.250194225 +0100
cfec1a
@@ -227,7 +227,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_SSLV3,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -243,7 +243,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_SSLV3,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -278,7 +278,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_SSLV3,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 #endif
cfec1a
@@ -575,7 +575,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_SSLV3,
cfec1a
      SSL_NOT_DEFAULT | SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -730,7 +730,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_SSLV3,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -746,7 +746,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_SSLV3,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -796,7 +796,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_SSLV3,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -812,7 +812,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_SSLV3,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -1429,7 +1429,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_TLSV1,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 #endif
cfec1a
@@ -1714,7 +1714,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_TLSV1,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -2106,7 +2106,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_TLSV1,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -2186,7 +2186,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_TLSV1,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -2266,7 +2266,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_TLSV1,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -2346,7 +2346,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_TLSV1,
cfec1a
      SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a
 
cfec1a
@@ -2426,7 +2426,7 @@ OPENSSL_GLOBAL SSL_CIPHER ssl3_ciphers[]
cfec1a
      SSL_TLSV1,
cfec1a
      SSL_NOT_DEFAULT | SSL_NOT_EXP | SSL_MEDIUM,
cfec1a
      SSL_HANDSHAKE_MAC_DEFAULT | TLS1_PRF,
cfec1a
-     128,
cfec1a
+     112,
cfec1a
      128,
cfec1a
      },
cfec1a