pike.git / lib / modules / SSL.pmod / Context.pike

version» Context lines:

pike.git/lib/modules/SSL.pmod/Context.pike:167:   //! draft, in order of size with the smallest group (2048 bits) first.   //!   //! Server-side the first group in the list that satisfies the NIST guide   //! lines for key strength (NIST SP800-57 5.6.1) (if any) for the selected   //! cipher suite will be selected, and otherwise the largest group.   //!   //! Client-side the list will be reversed (as a precaution if the server   //! actually follows the clients preferences).   array(int) ffdhe_groups = sort(indices(FFDHE_GROUPS));    + //! DHE parameter lookup for the FFDHE private range. + //! + //! Add any custom FFDHE-groups here. + //! + //! Defaults to the empty mapping. + //! + //! @note + //! If you add any groups here, you will also need to update + //! @[ffdhe_groups] accordingly. + mapping(int(508..511):Crypto.DH.Parameters) private_ffdhe_groups = ([]);      //! The set of <hash, signature> combinations to use by us.   //!   //! Only used with TLS 1.2 and later.   //!   //! Defaults to all combinations supported by Pike except for MD5.   //!   //! This list is typically filtered by @[get_signature_algorithms()]   //! to get rid of combinations not supported by the runtime.   //!