- Reject AES-CBC cipher suites for TLS 1.0 and TLS 1.1 using auth algorithms other than SHA1-HMAC.
- Reject AES-GCM cipher suites for TLS versions older than 1.2.
Sponsored by: Netflix
Differential D32842
ktls: Reject some invalid cipher suites. jhb on Nov 5 2021, 12:04 AM. Authored by Tags None Referenced Files
Details
Sponsored by: Netflix
Diff Detail
|