From c9d147e8f46cf23cf9b01956a066d80c62c5f8ba Mon Sep 17 00:00:00 2001 From: JacobBarthelmeh Date: Fri, 30 Jan 2026 15:42:56 -0700 Subject: [PATCH] Revert "TLS 1.2 message order check: certificate before CKE" --- src/internal.c | 6 ------ 1 file changed, 6 deletions(-) diff --git a/src/internal.c b/src/internal.c index ea3b3f5370..6edad7309f 100644 --- a/src/internal.c +++ b/src/internal.c @@ -18083,12 +18083,6 @@ static int SanityCheckMsgReceived(WOLFSSL* ssl, byte type) WOLFSSL_ERROR_VERBOSE(OUT_OF_ORDER_E); return OUT_OF_ORDER_E; } - if (!ssl->options.resuming && ssl->options.verifyPeer && - !ssl->options.usingPSK_cipher && - !ssl->options.usingAnon_cipher && - !ssl->msgsReceived.got_certificate) { - return OUT_OF_ORDER_E; - } if (ssl->msgsReceived.got_certificate_verify|| ssl->msgsReceived.got_change_cipher || ssl->msgsReceived.got_finished) {