summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorNikos Mavrogiannopoulos <nmav@gnutls.org>2011-11-05 21:20:21 +0100
committerNikos Mavrogiannopoulos <nmav@gnutls.org>2011-11-05 21:20:21 +0100
commit5b541a346638429712f8a9db8ced61f1b5ffcec4 (patch)
treeb56180b66d7f5af1b0310d8c8e07d0c9f06ff12d
parentd6413571272f59b90938c0e16c7af452cb6ea668 (diff)
downloadgnutls-5b541a346638429712f8a9db8ced61f1b5ffcec4.tar.gz
ECDHE ciphersuites take precendence to plain DHE
-rw-r--r--lib/gnutls_priority.c4
1 files changed, 2 insertions, 2 deletions
diff --git a/lib/gnutls_priority.c b/lib/gnutls_priority.c
index 22641bf1ee..7d071ecbba 100644
--- a/lib/gnutls_priority.c
+++ b/lib/gnutls_priority.c
@@ -285,10 +285,10 @@ static const int kx_priority_secure[] = {
/* The ciphersuites that offer forward secrecy take
* precendance
*/
- GNUTLS_KX_DHE_RSA,
- GNUTLS_KX_DHE_DSS,
GNUTLS_KX_ECDHE_ECDSA,
GNUTLS_KX_ECDHE_RSA,
+ GNUTLS_KX_DHE_RSA,
+ GNUTLS_KX_DHE_DSS,
GNUTLS_KX_RSA,
/* GNUTLS_KX_ANON_DH: Man-in-the-middle prone, don't add!
* GNUTLS_KX_RSA_EXPORT: Deprecated, don't add!