From ef454c89bade5e7984dfa6a867a127d4f3ce4546 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Tobias=20Nie=C3=9Fen?= Date: Sat, 4 Mar 2023 21:24:53 +0000 Subject: [PATCH] src: remove use of SSL_OP_SINGLE_DH_USE This option does not have any effect in any supported OpenSSL version. Refs: https://github.com/nodejs/node/pull/46954 PR-URL: https://github.com/nodejs/node/pull/46955 Reviewed-By: Ben Noordhuis Reviewed-By: Filip Skokan Reviewed-By: Colin Ihrig --- src/crypto/crypto_context.cc | 2 -- 1 file changed, 2 deletions(-) diff --git a/src/crypto/crypto_context.cc b/src/crypto/crypto_context.cc index a232e084ea34e5..50036c6466131b 100644 --- a/src/crypto/crypto_context.cc +++ b/src/crypto/crypto_context.cc @@ -878,8 +878,6 @@ void SecureContext::SetDHParam(const FunctionCallbackInfo& args) { env->isolate(), "DH parameter is less than 2048 bits")); } - SSL_CTX_set_options(sc->ctx_.get(), SSL_OP_SINGLE_DH_USE); - if (!SSL_CTX_set_tmp_dh(sc->ctx_.get(), dh.get())) { return THROW_ERR_CRYPTO_OPERATION_FAILED( env, "Error setting temp DH parameter");