From: Fabian Keil <fk@fabiankeil.de>
Date: Sat, 13 Feb 2021 21:49:18 +0000 (+0100)
Subject: mbedTLS: Log the TLS version and cipher suite
X-Git-Tag: v_3_0_32~58
X-Git-Url: http://www.privoxy.org/gitweb/@default-cgi@/faq/man-page/static/@default-cgi@send-stylesheet?a=commitdiff_plain;h=62b77bfd9b83e2ead4aa580200282c6ffeae42fd;p=privoxy.git

mbedTLS: Log the TLS version and cipher suite
---

diff --git a/ssl.c b/ssl.c
index cf1e8a0d..48626095 100644
--- a/ssl.c
+++ b/ssl.c
@@ -479,7 +479,10 @@ extern int create_client_ssl_connection(struct client_state *csp)
       }
    }
 
-   log_error(LOG_LEVEL_CONNECT, "Client successfully connected over TLS/SSL");
+   log_error(LOG_LEVEL_CONNECT, "Client successfully connected over %s (%s).",
+      mbedtls_ssl_get_version(&(ssl_attr->mbedtls_attr.ssl)),
+      mbedtls_ssl_get_ciphersuite(&(ssl_attr->mbedtls_attr.ssl)));
+
    csp->ssl_with_client_is_opened = 1;
 
 exit:
@@ -754,7 +757,9 @@ extern int create_server_ssl_connection(struct client_state *csp)
       }
    }
 
-   log_error(LOG_LEVEL_CONNECT, "Server successfully connected over TLS/SSL");
+   log_error(LOG_LEVEL_CONNECT, "Server successfully connected over %s (%s).",
+      mbedtls_ssl_get_version(&(ssl_attr->mbedtls_attr.ssl)),
+      mbedtls_ssl_get_ciphersuite(&(ssl_attr->mbedtls_attr.ssl)));
 
    /*
     * Server certificate chain is valid, so we can clean