mirror of
				https://github.com/cuberite/polarssl.git
				synced 2025-11-04 04:32:24 -05:00 
			
		
		
		
	Fix documentation for 3DES removal
This commit is contained in:
		
							parent
							
								
									2dadab7d3f
								
							
						
					
					
						commit
						bdfba79f0d
					
				@ -696,7 +696,7 @@
 | 
			
		||||
 * to enable (some of) them with mbedtls_ssl_conf_ciphersuites() by including
 | 
			
		||||
 * them explicitly.
 | 
			
		||||
 *
 | 
			
		||||
 * A man-in-the browser attacker can recover authentication tokens sent through
 | 
			
		||||
 * A man-in-the-browser attacker can recover authentication tokens sent through
 | 
			
		||||
 * a TLS connection using a 3DES based cipher suite (see "On the Practical
 | 
			
		||||
 * (In-)Security of 64-bit Block Ciphers" by Karthikeyan Bhargavan and Gaëtan
 | 
			
		||||
 * Leurent, see https://sweet32.info/SWEET32_CCS16.pdf). If this attack falls
 | 
			
		||||
 | 
			
		||||
@ -62,6 +62,7 @@ FILTER=""
 | 
			
		||||
#   avoid plain DES but keep 3DES-EDE-CBC (mbedTLS), DES-CBC3 (OpenSSL)
 | 
			
		||||
# - ARIA: not in default config.h + requires OpenSSL >= 1.1.1
 | 
			
		||||
# - ChachaPoly: requires OpenSSL >= 1.1.0
 | 
			
		||||
# - 3DES: not in default config
 | 
			
		||||
EXCLUDE='NULL\|DES-CBC-\|RC4\|3DES\|ARCFOUR\|ARIA\|CHACHA20-POLY1305'
 | 
			
		||||
VERBOSE=""
 | 
			
		||||
MEMCHECK=0
 | 
			
		||||
 | 
			
		||||
		Loading…
	
	
			
			x
			
			
		
	
		Reference in New Issue
	
	Block a user