pike.git / lib / modules / SSL.pmod / Context.pike

version» Context lines:

pike.git/lib/modules/SSL.pmod/Context.pike:157:   //! Attempt to enable encrypt-then-mac mode.   int encrypt_then_mac = 1;      //! Cipher suites we want to support, in order of preference, best   //! first.   array(int) preferred_suites;      //! Supported elliptical curve cipher curves in order of preference.   array(int) ecc_curves = reverse(sort(indices(ECC_CURVES)));    + //! Supported DH groups for DHE key exchanges, in order of preference. + //! Defaults to MODP Group 24 (2048/256 bits) from RFC 5114 section + //! 2.3. + array(Crypto.DH.Parameters) dh_groups = ({ +  Crypto.DH.MODPGroup24, // MODP Group 24 (2048/256 bits). + }); +  +    //! The set of <hash, signature> combinations to use by us.   //!   //! Only used with TLS 1.2 and later.   //!   //! Defaults to all combinations supported by Pike except for MD5.   //!   //! This list is typically filtered by @[get_signature_algorithms()]   //! to get rid of combinations not supported by the runtime.   //!   //! @note