diff options
author | Nikos Mavrogiannopoulos <nmav@gnutls.org> | 2011-11-05 21:20:21 +0100 |
---|---|---|
committer | Nikos Mavrogiannopoulos <nmav@gnutls.org> | 2011-11-05 21:20:21 +0100 |
commit | 5b541a346638429712f8a9db8ced61f1b5ffcec4 (patch) | |
tree | b56180b66d7f5af1b0310d8c8e07d0c9f06ff12d | |
parent | d6413571272f59b90938c0e16c7af452cb6ea668 (diff) | |
download | gnutls-5b541a346638429712f8a9db8ced61f1b5ffcec4.tar.gz |
ECDHE ciphersuites take precendence to plain DHE
-rw-r--r-- | lib/gnutls_priority.c | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/lib/gnutls_priority.c b/lib/gnutls_priority.c index 22641bf1ee..7d071ecbba 100644 --- a/lib/gnutls_priority.c +++ b/lib/gnutls_priority.c @@ -285,10 +285,10 @@ static const int kx_priority_secure[] = { /* The ciphersuites that offer forward secrecy take * precendance */ - GNUTLS_KX_DHE_RSA, - GNUTLS_KX_DHE_DSS, GNUTLS_KX_ECDHE_ECDSA, GNUTLS_KX_ECDHE_RSA, + GNUTLS_KX_DHE_RSA, + GNUTLS_KX_DHE_DSS, GNUTLS_KX_RSA, /* GNUTLS_KX_ANON_DH: Man-in-the-middle prone, don't add! * GNUTLS_KX_RSA_EXPORT: Deprecated, don't add! |