[Swan-commit] Changes to ref refs/heads/master
Andrew Cagney
cagney at vault.libreswan.fi
Tue Feb 7 20:48:54 UTC 2017
New commits:
commit c09edeb4218788895c503d064358e5814ea2304a
Author: Andrew Cagney <cagney at gnu.org>
Date: Wed Feb 1 12:40:13 2017 -0500
pluto: IKEv1 IKE: when no 'ike=', use a simple table to add default (FIPS?) algorithms
Rather than all the IKEv1 IKE tables in spdb.c:
- for xauth, MODP2048 is added and prefered over MODP1536
- MODP1024 is dropped
- MD5 is dropped
- the list is also FIPS filtered when needed
Reuse code that already handles ike=aes (i.e. adding default DH and
PRF algorithms).
More information about the Swan-commit
mailing list