Skip to content

esys_crypto_ossl: Avoid EVP_PKEY_CTX_new_from_name for OpenSSL 3.X - #3161

Open
moritzbuhl wants to merge 1 commit into
tpm2-software:masterfrom
moritzbuhl:mbuhl-3151-1
Open

moritzbuhl wants to merge 1 commit into
tpm2-software:masterfrom
moritzbuhl:mbuhl-3151-1

Conversation

@moritzbuhl

Copy link
Copy Markdown
Member

OpenSSL before 4.0 can support engines and providers. However, the engine path never properly worked in case another engine (like pkcs11) was loaded. Engines overwrite the global dispatch table and change the behavior of EVP_PKEY_CTX_new_from_name.

Avoid the function similar to the OpenSSL 1.1 code, avoid deprecation warnings with pragmas.

This addresses the esys part of #3151, the fapi part is still missing.

OpenSSL before 4.0 can support engines and providers. However, the
engine path never properly worked in case another engine (like pkcs11)
was loaded. Engines overwrite the global dispatch table and change
the behavior of EVP_PKEY_CTX_new_from_name.

Avoid the function similar to the OpenSSL 1.1 code, avoid deprecation
warnings with pragmas.

Signed-off-by: Moritz Buhl <Moritz.Buhl@infineon.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant