From c5202c1bd736bf20add156ca105517f19e0144b2 Mon Sep 17 00:00:00 2001 From: Pirabarlen Cheenaramen Date: Sat, 17 Mar 2018 17:54:02 +0100 Subject: [PATCH] use default tls 1.3 cipher suite --- src/LibsslTLSContext.cc | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/src/LibsslTLSContext.cc b/src/LibsslTLSContext.cc index 85d2a940..22796e12 100644 --- a/src/LibsslTLSContext.cc +++ b/src/LibsslTLSContext.cc @@ -142,12 +142,13 @@ OpenSSLTLSContext::OpenSSLTLSContext(TLSSessionSide side, TLSVersion minVer) /* keep memory usage low */ SSL_CTX_set_mode(sslCtx_, SSL_MODE_RELEASE_BUFFERS); #endif +#ifndef TLS1_3_VERSION if (SSL_CTX_set_cipher_list(sslCtx_, "HIGH:!aNULL:!eNULL") == 0) { good_ = false; A2_LOG_ERROR(fmt("SSL_CTX_set_cipher_list() failed. Cause: %s", ERR_error_string(ERR_get_error(), nullptr))); } - +#endif //TLS1_3_VERSION #if OPENSSL_VERSION_NUMBER >= 0x0090800fL #ifndef OPENSSL_NO_ECDH auto ecdh = EC_KEY_new_by_curve_name(NID_X9_62_prime256v1);