aboutsummaryrefslogtreecommitdiffstats
path: root/main/libtls-standalone/libtls-ciphers.patch
diff options
context:
space:
mode:
authorNatanael Copa <ncopa@alpinelinux.org>2018-10-31 09:38:37 +0000
committerNatanael Copa <ncopa@alpinelinux.org>2018-11-07 16:46:12 +0000
commite0c4bf32c3423530abb4919dd2fd0f20ae7df2e8 (patch)
tree3a677ab8f9ff99193de6cc1a9b9157a09290fbf6 /main/libtls-standalone/libtls-ciphers.patch
parentca6964abf88ba5441e9a23f0005fafd4485a39a4 (diff)
downloadaports-e0c4bf32c3423530abb4919dd2fd0f20ae7df2e8.tar.bz2
aports-e0c4bf32c3423530abb4919dd2fd0f20ae7df2e8.tar.xz
main/libtls-standalone: move from testing
needed by busybox
Diffstat (limited to 'main/libtls-standalone/libtls-ciphers.patch')
-rw-r--r--main/libtls-standalone/libtls-ciphers.patch17
1 files changed, 17 insertions, 0 deletions
diff --git a/main/libtls-standalone/libtls-ciphers.patch b/main/libtls-standalone/libtls-ciphers.patch
new file mode 100644
index 0000000000..7b5843b28c
--- /dev/null
+++ b/main/libtls-standalone/libtls-ciphers.patch
@@ -0,0 +1,17 @@
+--- libressl-2.7.4.orig/tls/tls_internal.h
++++ libressl-2.7.4/tls/tls_internal.h
+@@ -30,12 +30,12 @@
+ #define _PATH_SSL_CA_FILE "/etc/ssl/cert.pem"
+ #endif
+
+-#define TLS_CIPHERS_DEFAULT "TLSv1.2+AEAD+ECDHE:TLSv1.2+AEAD+DHE"
+ #define TLS_CIPHERS_COMPAT "HIGH:!aNULL"
+ #define TLS_CIPHERS_LEGACY "HIGH:MEDIUM:!aNULL"
+ #define TLS_CIPHERS_ALL "ALL:!aNULL:!eNULL"
++#define TLS_CIPHERS_DEFAULT TLS_CIPHERS_COMPAT
+
+-#define TLS_ECDHE_CURVES "X25519,P-256,P-384"
++#define TLS_ECDHE_CURVES "P-256,P-384"
+
+ union tls_addr {
+ struct in_addr ip4;