No TLS1.3 ciphers in cipher_list only when ...

SSL_set_ciphersuites in OpenSSL API.
This commit is contained in:
Willem Toorop 2018-12-31 16:13:20 +01:00
parent c69a2f7806
commit bbe7dff257
1 changed files with 5 additions and 0 deletions

View File

@ -1468,7 +1468,12 @@ static char const * const _getdns_default_trust_anchors_verify_CA =
static char const * const _getdns_default_trust_anchors_verify_email = static char const * const _getdns_default_trust_anchors_verify_email =
"dnssec@iana.org"; "dnssec@iana.org";
static char const * const _getdns_default_tls_cipher_list = static char const * const _getdns_default_tls_cipher_list =
#ifndef HAVE_SSL_CTX_SET_CIPHERSUITES
"TLS13-AES-256-GCM-SHA384:TLS13-AES-128-GCM-SHA256:"
"TLS13-CHACHA20-POLY1305-SHA256:"
#endif
"EECDH+AESGCM:EECDH+CHACHA20"; "EECDH+AESGCM:EECDH+CHACHA20";
static char const * const _getdns_default_tls_ciphersuites = static char const * const _getdns_default_tls_ciphersuites =