summaryrefslogtreecommitdiff
path: root/options.h
diff options
context:
space:
mode:
authorMatt Johnston <matt@ucc.asn.au>2015-01-23 22:37:14 +0800
committerMatt Johnston <matt@ucc.asn.au>2015-01-23 22:37:14 +0800
commit761c07797649fb59198c811863236471a950ee4c (patch)
treedaaef179bcb6da1e69b50344154862e0820aec2a /options.h
parent9105371dc8125838a0a4ed80bc748ab4c7841cdd (diff)
downloaddropbear-761c07797649fb59198c811863236471a950ee4c.tar.gz
Add config option to disable cbc. Disable twofish by default
Diffstat (limited to 'options.h')
-rw-r--r--options.h8
1 files changed, 6 insertions, 2 deletions
diff --git a/options.h b/options.h
index c96709c..213ba04 100644
--- a/options.h
+++ b/options.h
@@ -95,8 +95,12 @@ much traffic. */
#define DROPBEAR_AES256
/* Compiling in Blowfish will add ~6kB to runtime heap memory usage */
/*#define DROPBEAR_BLOWFISH*/
-#define DROPBEAR_TWOFISH256
-#define DROPBEAR_TWOFISH128
+/*#define DROPBEAR_TWOFISH256*/
+/*#define DROPBEAR_TWOFISH128*/
+
+/* Enable CBC mode for ciphers. This has security issues though
+ * is the most compatible with older SSH implementations */
+#define DROPBEAR_ENABLE_CBC_MODE
/* Enable "Counter Mode" for ciphers. This is more secure than normal
* CBC mode against certain attacks. This adds around 1kB to binary