aboutsummaryrefslogblamecommitdiffstats
path: root/main/libtls-standalone/libtls-ciphers.patch
blob: 7b5843b28c30b818e7011574153f893c68c45f3d (plain) (tree)
1
2
3
4
5
6
7
8
9
10
11
12

                                          
                   








                                                                     




                                                    
--- libressl-2.7.4.orig/tls/tls_internal.h
+++ libressl-2.7.4/tls/tls_internal.h
@@ -30,12 +30,12 @@
 #define _PATH_SSL_CA_FILE "/etc/ssl/cert.pem"
 #endif
 
-#define TLS_CIPHERS_DEFAULT	"TLSv1.2+AEAD+ECDHE:TLSv1.2+AEAD+DHE"
 #define TLS_CIPHERS_COMPAT	"HIGH:!aNULL"
 #define TLS_CIPHERS_LEGACY	"HIGH:MEDIUM:!aNULL"
 #define TLS_CIPHERS_ALL		"ALL:!aNULL:!eNULL"
+#define TLS_CIPHERS_DEFAULT	TLS_CIPHERS_COMPAT
 
-#define TLS_ECDHE_CURVES	"X25519,P-256,P-384"
+#define TLS_ECDHE_CURVES	"P-256,P-384"
 
 union tls_addr {
 	struct in_addr ip4;