summaryrefslogtreecommitdiff
path: root/NEWS
diff options
context:
space:
mode:
authorNikos Mavrogiannopoulos <nmav@redhat.com>2017-06-19 08:20:47 +0200
committerNikos Mavrogiannopoulos <nmav@redhat.com>2017-06-19 08:21:10 +0200
commit86884b19ddc47b06ceb3b854e6a7757623874fae (patch)
tree2c03eef75f34035fb5009bc37d5b9f52b25991b3 /NEWS
parentda326dfb0787e1d37167a6711abaab2eefc9c554 (diff)
downloadgnutls-86884b19ddc47b06ceb3b854e6a7757623874fae.tar.gz
doc update
Signed-off-by: Nikos Mavrogiannopoulos <nmav@redhat.com>
Diffstat (limited to 'NEWS')
-rw-r--r--NEWS4
1 files changed, 4 insertions, 0 deletions
diff --git a/NEWS b/NEWS
index b8eb702786..2894f707d9 100644
--- a/NEWS
+++ b/NEWS
@@ -45,6 +45,10 @@ See the end for copying conditions.
gnutls_x509_crt_set_serial(), will fail on input considered to be invalid
in RFC5280.
+** libgnutls: No longer enable SECP192R1 and SECP224R1 by default on TLS handshakes.
+ These curves were rarely used for that purpose and provide no advantage over
+ x25519.
+
** libgnutls: SHA1 was removed from the trusted set of hashes. Verification
and other operations relying on SHA1 is now considered insecure and will
fail, unless flags intended to enable broken algorithms are set. This