From 72882b2079879a3d89134d7c35793189e8da93c6 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Manuel=20P=C3=A9gouri=C3=A9-Gonnard?= Date: Fri, 2 Aug 2013 13:36:00 +0200 Subject: [PATCH] Relax limit on ClientHello size --- library/ssl_srv.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/library/ssl_srv.c b/library/ssl_srv.c index bae58abd6..848c04fa2 100644 --- a/library/ssl_srv.c +++ b/library/ssl_srv.c @@ -752,7 +752,7 @@ static int ssl_parse_client_hello( ssl_context *ssl ) n = ( buf[3] << 8 ) | buf[4]; - if( n < 45 || n > 512 ) + if( n < 45 || n > 2048 ) { SSL_DEBUG_MSG( 1, ( "bad client hello message" ) ); return( POLARSSL_ERR_SSL_BAD_HS_CLIENT_HELLO );