[Swan-commit] Changes to ref refs/heads/master

Andrew Cagney cagney at vault.libreswan.fi
Tue Feb 7 20:48:54 UTC 2017


New commits:
commit c09edeb4218788895c503d064358e5814ea2304a
Author: Andrew Cagney <cagney at gnu.org>
Date:   Wed Feb 1 12:40:13 2017 -0500

    pluto: IKEv1 IKE: when no 'ike=', use a simple table to add default (FIPS?) algorithms
    
    Rather than all the IKEv1 IKE tables in spdb.c:
    
    - for xauth, MODP2048 is added and prefered over MODP1536
    - MODP1024 is dropped
    - MD5 is dropped
    - the list is also FIPS filtered when needed
    
    Reuse code that already handles ike=aes (i.e. adding default DH and
    PRF algorithms).



More information about the Swan-commit mailing list