aboutsummaryrefslogtreecommitdiffstats
path: root/testing/libtls-standalone/libtls-ciphers.patch
blob: b037944655894e709d7936f53d6b3b0222b75ef5 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
--- libressl-2.7.4.orig/tls/tls_internal.h
+++ libressl-2.7.4/tls/tls_internal.h
@@ -30,10 +30,10 @@
 #define _PATH_SSL_CA_FILE "/etc/ssl/cert.pem"
 #endif
 
-#define TLS_CIPHERS_DEFAULT	"TLSv1.2+AEAD+ECDHE:TLSv1.2+AEAD+DHE"
 #define TLS_CIPHERS_COMPAT	"HIGH:!aNULL"
 #define TLS_CIPHERS_LEGACY	"HIGH:MEDIUM:!aNULL"
 #define TLS_CIPHERS_ALL		"ALL:!aNULL:!eNULL"
+#define TLS_CIPHERS_DEFAULT	TLS_CIPHERS_COMPAT
 
 #define TLS_ECDHE_CURVES	"X25519,P-256,P-384"
 
--- libressl-2.7.4.orig/tls/tls_internal.h
+++ libressl-2.7.4/tls/tls_internal.h
@@ -35,7 +35,7 @@
 #define TLS_CIPHERS_ALL		"ALL:!aNULL:!eNULL"
 #define TLS_CIPHERS_DEFAULT	TLS_CIPHERS_COMPAT
 
-#define TLS_ECDHE_CURVES	"X25519,P-256,P-384"
+#define TLS_ECDHE_CURVES	"P-256,P-384"
 
 union tls_addr {
 	struct in_addr ip4;