make ecp_x_coordinate_only = yes the default

This commit is contained in:
Andreas Steffen
2009-07-06 11:47:38 +02:00
parent 21863d6361
commit eebecebead
@@ -185,10 +185,12 @@ static bool compute_shared_key(private_openssl_ec_diffie_hellman_t *this, chunk_
}
/*
* x_coordinate_only = TRUE applies errata for RFC 4753
* The default setting ecp_x_coordinate_only = TRUE
* applies the following errata for RFC 4753:
* http://www.rfc-editor.org/errata_search.php?eid=9
*/
x_coordinate_only = lib->settings->get_bool(lib->settings,
"libstrongswan.ecp_x_coordinate_only", FALSE);
"libstrongswan.ecp_x_coordinate_only", TRUE);
if (!ecp2chunk(this->ec_group, secret, shared_secret, x_coordinate_only))
{
goto error;