pbkdf2: change FIPS zeroization to use the OPENSSL_PEDANTIC_ZEROIZATION define
Reviewed-by: Richard Levitte <levitte@openssl.org> Reviewed-by: Tim Hudson <tjh@openssl.org> (Merged from https://github.com/openssl/openssl/pull/26068)
This commit is contained in:
parent
db1d8c90d5
commit
8d09e61be6
@ -93,7 +93,7 @@ static void *kdf_pbkdf2_new(void *provctx)
|
|||||||
static void kdf_pbkdf2_cleanup(KDF_PBKDF2 *ctx)
|
static void kdf_pbkdf2_cleanup(KDF_PBKDF2 *ctx)
|
||||||
{
|
{
|
||||||
ossl_prov_digest_reset(&ctx->digest);
|
ossl_prov_digest_reset(&ctx->digest);
|
||||||
#ifdef FIPS_MODULE
|
#ifdef OPENSSL_PEDANTIC_ZEROIZATION
|
||||||
OPENSSL_clear_free(ctx->salt, ctx->salt_len);
|
OPENSSL_clear_free(ctx->salt, ctx->salt_len);
|
||||||
#else
|
#else
|
||||||
OPENSSL_free(ctx->salt);
|
OPENSSL_free(ctx->salt);
|
||||||
|
Loading…
x
Reference in New Issue
Block a user