From 4fb7df6d044a39151e72346ac0d67ac09686f704 Mon Sep 17 00:00:00 2001 From: Jeremy Harris Date: Tue, 11 Aug 2015 22:54:53 +0100 Subject: [PATCH] GnuTLS: avoid whining about OCSP when not requested by config --- src/src/tls-gnu.c | 9 ++++++++- 1 file changed, 8 insertions(+), 1 deletion(-) diff --git a/src/src/tls-gnu.c b/src/src/tls-gnu.c index 8aabc5c6c..fe180946b 100644 --- a/src/src/tls-gnu.c +++ b/src/src/tls-gnu.c @@ -176,7 +176,9 @@ static const char * const exim_default_gnutls_priority = "NORMAL"; static BOOL exim_gnutls_base_init_done = FALSE; +#ifndef DISABLE_OCSP static BOOL gnutls_buggy_ocsp = FALSE; +#endif /* ------------------------------------------------------------------------ */ @@ -1021,6 +1023,8 @@ return OK; *************************************************/ +#ifndef DISABLE_OCSP + static BOOL tls_is_buggy_ocsp(void) { @@ -1047,6 +1051,7 @@ if (maj == 3) return FALSE; } +#endif /* Called from both server and client code. In the case of a server, errors @@ -1112,8 +1117,10 @@ if (!exim_gnutls_base_init_done) } #endif - if ((gnutls_buggy_ocsp = tls_is_buggy_ocsp())) +#ifndef DISABLE_OCSP + if (tls_ocsp_file && (gnutls_buggy_ocsp = tls_is_buggy_ocsp())) log_write(0, LOG_MAIN, "OCSP unusable with this GnuTLS library version"); +#endif exim_gnutls_base_init_done = TRUE; } -- 2.30.2