Commit 3a3739e9 authored by Philipp Schafft's avatar Philipp Schafft 🦁

Update: Updated default list of OpenSSL ciphers.

This updates to the Mozilla Foundation's "Intermediate" list
as of the time of this commit.
The list is appended with several negative rules that we included
before.
parent df96dcbb
Pipeline #492 failed with stage
in 15 seconds
......@@ -78,35 +78,41 @@
#define CONFIG_DEFAULT_RELAY_SERVER "127.0.0.1"
#define CONFIG_DEFAULT_RELAY_PORT 80
#define CONFIG_DEFAULT_RELAY_MOUNT "/"
#define CONFIG_DEFAULT_CIPHER_LIST "ECDHE-RSA-AES128-GCM-SHA256:"\
"ECDHE-ECDSA-AES128-GCM-SHA256:"\
"ECDHE-RSA-AES256-GCM-SHA384:"\
"ECDHE-ECDSA-AES256-GCM-SHA384:"\
"DHE-RSA-AES128-GCM-SHA256:"\
"DHE-DSS-AES128-GCM-SHA256:"\
"kEDH+AESGCM:ECDHE-RSA-AES128-SHA256:"\
"ECDHE-ECDSA-AES128-SHA256:"\
"ECDHE-RSA-AES128-SHA:"\
"ECDHE-ECDSA-AES128-SHA:"\
"ECDHE-RSA-AES256-SHA384:"\
"ECDHE-ECDSA-AES256-SHA384:"\
"ECDHE-RSA-AES256-SHA:"\
"ECDHE-ECDSA-AES256-SHA:"\
"DHE-RSA-AES128-SHA256:"\
"DHE-RSA-AES128-SHA:"\
"DHE-DSS-AES128-SHA256:"\
"DHE-RSA-AES256-SHA256:"\
"DHE-DSS-AES256-SHA:"\
"DHE-RSA-AES256-SHA:"\
"ECDHE-RSA-DES-CBC3-SHA:"\
"ECDHE-ECDSA-DES-CBC3-SHA:"\
"AES128-GCM-SHA256:AES256-GCM-SHA384:"\
"AES128-SHA256:AES256-SHA256:"\
"AES128-SHA:AES256-SHA:AES:"\
"DES-CBC3-SHA:HIGH:!aNULL:!eNULL:"\
"!EXPORT:!DES:!RC4:!MD5:!PSK:!aECDH:"\
"!EDH-DSS-DES-CBC3-SHA:"\
"!EDH-RSA-DES-CBC3-SHA:"\
#define CONFIG_DEFAULT_CIPHER_LIST "ECDHE-ECDSA-CHACHA20-POLY1305:" \
"ECDHE-RSA-CHACHA20-POLY1305:" \
"ECDHE-ECDSA-AES128-GCM-SHA256:" \
"ECDHE-RSA-AES128-GCM-SHA256:" \
"ECDHE-ECDSA-AES256-GCM-SHA384:" \
"ECDHE-RSA-AES256-GCM-SHA384:" \
"DHE-RSA-AES128-GCM-SHA256:" \
"DHE-RSA-AES256-GCM-SHA384:" \
"ECDHE-ECDSA-AES128-SHA256:" \
"ECDHE-RSA-AES128-SHA256:" \
"ECDHE-ECDSA-AES128-SHA:" \
"ECDHE-RSA-AES256-SHA384:" \
"ECDHE-RSA-AES128-SHA:" \
"ECDHE-ECDSA-AES256-SHA384:" \
"ECDHE-ECDSA-AES256-SHA:" \
"ECDHE-RSA-AES256-SHA:" \
"DHE-RSA-AES128-SHA256:" \
"DHE-RSA-AES128-SHA:" \
"DHE-RSA-AES256-SHA256:" \
"DHE-RSA-AES256-SHA:" \
"ECDHE-ECDSA-DES-CBC3-SHA:" \
"ECDHE-RSA-DES-CBC3-SHA:" \
"EDH-RSA-DES-CBC3-SHA:" \
"AES128-GCM-SHA256:" \
"AES256-GCM-SHA384:" \
"AES128-SHA256:" \
"AES256-SHA256:" \
"AES128-SHA:" \
"AES256-SHA:" \
"DES-CBC3-SHA:" \
"!DSS:" \
"!aNULL:!eNULL:" \
"!EXPORT:!DES:!RC4:!MD5:!PSK:!aECDH:" \
"!EDH-DSS-DES-CBC3-SHA:" \
"!EDH-RSA-DES-CBC3-SHA:" \
"!KRB5-DES-CBC3-SHA"
#ifndef _WIN32
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment