Commit bc348244 authored by Ben Laurie's avatar Ben Laurie
Browse files

Disable new TLS1 ciphersuites.

parent a49034ab
Loading
Loading
Loading
Loading
+3 −0
Original line number Diff line number Diff line
@@ -5,6 +5,9 @@

 Changes between 0.9.1c and 0.9.2

  *) Disable new TLS1 ciphersuites by default: they aren't official yet.
     [Ben Laurie]

  *) Allow DSO flags like -fpic, -fPIC, -KPIC etc. to be specified
     on the `perl Configure ...' command line. This way one can compile
     OpenSSL libraries with Position Independent Code (PIC) which is needed
+2 −0
Original line number Diff line number Diff line
@@ -355,6 +355,7 @@ SSL_CIPHER ssl3_ciphers[]={
	SSL_ALL_CIPHERS,
	},

#if TLS1_ALLOW_EXPERIMENTAL_CIPHERSUITES
	/* New TLS Export CipherSuites */
	/* Cipher 60 */
	    {
@@ -383,6 +384,7 @@ SSL_CIPHER ssl3_ciphers[]={
	    0,
	    SSL_ALL_CIPHERS
	    },
#endif

/* end of list */
	};
+2 −0
Original line number Diff line number Diff line
@@ -65,6 +65,8 @@
extern "C" {
#endif

#define TLS1_ALLOW_EXPERIMENTAL_CIPHERSUITES	0

#define TLS1_VERSION			0x0301
#define TLS1_VERSION_MAJOR		0x03
#define TLS1_VERSION_MINOR		0x01