[libvirt] [PATCH] tests: fix TLS handshake failure with TLS 1.3

Michal Prívozník mprivozn at redhat.com
Mon Jul 23 10:27:13 UTC 2018


On 07/18/2018 08:21 PM, Daniel P. Berrangé wrote:
> When gnutls negotiates TLS 1.3 instead of 1.2, the order of messages
> sent by the handshake changes. This exposed a logic bug in the test
> suite which caused us to wait for the server to see handshake
> completion, but not wait for the client to see completion. The result
> was the client didn't receive the certificate for verification and the
> test failed.
> 
> This is exposed in Fedora 29 rawhide which has just enabled TLS 1.3 in
> its GNUTLS builds.
> 
> Signed-off-by: Daniel P. Berrangé <berrange at redhat.com>
> ---
>  tests/virnettlssessiontest.c | 2 +-
>  1 file changed, 1 insertion(+), 1 deletion(-)

ACK

Michal




More information about the libvir-list mailing list