• Donald Stufft's avatar
    Issue #20995: Enhance default ciphers used by the ssl module · 79ccaa2c
    Donald Stufft yazdı
    Closes #20995 by Enabling better security by prioritizing ciphers
    such that:
    
    * Prefer cipher suites that offer perfect forward secrecy (DHE/ECDHE)
    * Prefer ECDHE over DHE for better performance
    * Prefer any AES-GCM over any AES-CBC for better performance and security
    * Then Use HIGH cipher suites as a fallback
    * Then Use 3DES as fallback which is secure but slow
    * Finally use RC4 as a fallback which is problematic but needed for
      compatibility some times.
    * Disable NULL authentication, NULL encryption, and MD5 MACs for security
      reasons
    79ccaa2c
Adı
Son kayıt (commit)
Son güncelleme
Doc Loading commit data...
Grammar Loading commit data...
Include Loading commit data...
Lib Loading commit data...
Mac Loading commit data...
Misc Loading commit data...
Modules Loading commit data...
Objects Loading commit data...
PC Loading commit data...
PCbuild Loading commit data...
Parser Loading commit data...
Python Loading commit data...
Tools Loading commit data...
.bzrignore Loading commit data...
.gitignore Loading commit data...
.hgeol Loading commit data...
.hgignore Loading commit data...
.hgtags Loading commit data...
.hgtouch Loading commit data...
LICENSE Loading commit data...
Makefile.pre.in Loading commit data...
README Loading commit data...
config.guess Loading commit data...
config.sub Loading commit data...
configure Loading commit data...
configure.ac Loading commit data...
install-sh Loading commit data...
pyconfig.h.in Loading commit data...
setup.py Loading commit data...