pike.git / lib / modules / SSL.pmod / Context.pike

version» Context lines:

pike.git/lib/modules/SSL.pmod/Context.pike:158:   int encrypt_then_mac = 1;      //! Cipher suites we want to support, in order of preference, best   //! first.   array(int) preferred_suites;      //! Supported elliptical curve cipher curves in order of preference.   array(int) ecc_curves = reverse(sort(indices(ECC_CURVES)));      //! Supported DH groups for DHE key exchanges, in order of preference. - //! Defaults to MODP Group 24 (2048/256 bits) from RFC 5114 section - //! 2.3. + //! Defaults to FFDHE-2048.   array(Crypto.DH.Parameters) dh_groups = ({ -  Crypto.DH.MODPGroup24, // MODP Group 24 (2048/256 bits). +  Crypto.DH.FFDHE2048,   });         //! The set of <hash, signature> combinations to use by us.   //!   //! Only used with TLS 1.2 and later.   //!   //! Defaults to all combinations supported by Pike except for MD5.   //!   //! This list is typically filtered by @[get_signature_algorithms()]