Skip to content
Permalink
Branch: master
Commits on Nov 15, 2019
  1. Prefer CCM over CBC ciphersuites

    securitykernel committed Nov 15, 2019
Commits on Nov 14, 2019
  1. Remove non-ephemeral PSK ciphersuites from BSI TLS policy

    securitykernel committed Nov 14, 2019
  2. Add AES-128/CCM and AES-256/CCM ciphersuites to BSI TLS policy

    securitykernel committed Nov 14, 2019
    BSI TR-02102-1 version 2019-01 added CCM ciphersuites
    as recommended, so we add them to the BSI TLS policy.
  3. Remove some FFDHE groups from BSI TLS policy

    securitykernel committed Nov 14, 2019
    BSI TR-02102-2 version 2019-01 explicitly lists
    the FFDHE groups recommended now. ffdhe6144 and
    ffdhe8192 are not listed, so we remove them from
    the BSI TLS policy.
You can’t perform that action at this time.