aports/main/libtls-standalone/libtls-ciphers.patch
Natanael Copa e0c4bf32c3 main/libtls-standalone: move from testing
needed by busybox
2018-11-07 16:46:12 +00:00

18 lines
541 B
Diff

--- libressl-2.7.4.orig/tls/tls_internal.h
+++ libressl-2.7.4/tls/tls_internal.h
@@ -30,12 +30,12 @@
#define _PATH_SSL_CA_FILE "/etc/ssl/cert.pem"
#endif
-#define TLS_CIPHERS_DEFAULT "TLSv1.2+AEAD+ECDHE:TLSv1.2+AEAD+DHE"
#define TLS_CIPHERS_COMPAT "HIGH:!aNULL"
#define TLS_CIPHERS_LEGACY "HIGH:MEDIUM:!aNULL"
#define TLS_CIPHERS_ALL "ALL:!aNULL:!eNULL"
+#define TLS_CIPHERS_DEFAULT TLS_CIPHERS_COMPAT
-#define TLS_ECDHE_CURVES "X25519,P-256,P-384"
+#define TLS_ECDHE_CURVES "P-256,P-384"
union tls_addr {
struct in_addr ip4;