From cb8a9d58fdb3bff492d27977d5d5616220150ac0 Mon Sep 17 00:00:00 2001 From: Tatsuhiro Tsujikawa Date: Sun, 9 Sep 2018 15:53:04 +0900 Subject: [PATCH] src: Remove TLSv1.3 ciphers from DEFAULT_CIPHER_LIST TLSv1.3 ciphers are treated differently from the ciphers for TLSv1.2 or earlier. --- src/tls.h | 18 ------------------ 1 file changed, 18 deletions(-) diff --git a/src/tls.h b/src/tls.h index aca38022..3d9aa225 100644 --- a/src/tls.h +++ b/src/tls.h @@ -48,25 +48,7 @@ public: // mozilla. // // https://wiki.mozilla.org/Security/Server_Side_TLS -// -// Plus TLSv1.3 cipher suites if defined. constexpr char DEFAULT_CIPHER_LIST[] = -#ifdef TLS1_3_TXT_AES_256_GCM_SHA384 - TLS1_3_TXT_AES_256_GCM_SHA384 - ":" -#endif // TLS1_3_TXT_AES_256_GCM_SHA384 -#ifdef TLS1_3_TXT_CHACHA20_POLY1305_SHA256 - TLS1_3_TXT_CHACHA20_POLY1305_SHA256 ":" -#endif // TLS1_3_TXT_CHACHA20_POLY1305_SHA256 -#ifdef TLS1_3_TXT_AES_128_GCM_SHA256 - TLS1_3_TXT_AES_128_GCM_SHA256 ":" -#endif // TLS1_3_TXT_AES_128_GCM_SHA256 -#ifdef TLS1_3_TXT_AES_128_CCM_SHA256 - TLS1_3_TXT_AES_128_CCM_SHA256 ":" -#endif // TLS1_3_TXT_AES_128_CCM_SHA256 -#ifdef TLS1_3_TXT_AES_128_CCM_8_SHA256 - TLS1_3_TXT_AES_128_CCM_8_SHA256 ":" -#endif // TLS1_3_TXT_AES_128_CCM_8_SHA256 "ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-" "CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-" "SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-"