tls: never destroy a priavte key that is not owned/created by TLS module

Signed-off-by: Valerio Setti <valerio.setti@nordicsemi.no>
This commit is contained in:
Valerio Setti 2023-06-16 13:18:52 +02:00
parent 0813b6f28d
commit b46217d5c1

View File

@ -2622,11 +2622,8 @@ static int ssl_get_ecdh_params_from_cert(mbedtls_ssl_context *ssl)
}
ssl->handshake->ecdh_psa_privkey = pk->priv_id;
if (pk_type == MBEDTLS_PK_OPAQUE) {
/* Key should not be destroyed in the TLS library */
ssl->handshake->ecdh_psa_privkey_is_external = 1;
}
/* Key should not be destroyed in the TLS library */
ssl->handshake->ecdh_psa_privkey_is_external = 1;
status = psa_get_key_attributes(ssl->handshake->ecdh_psa_privkey,
&key_attributes);