mirror of
https://github.com/ARMmbed/mbedtls.git
synced 2025-06-25 22:56:35 +08:00
mbedtls_config: remove MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED
This commit also removes its disabling from config_adjust_ssl.h Signed-off-by: Valerio Setti <valerio.setti@nordicsemi.no>
This commit is contained in:
parent
a07345247e
commit
6ba324de02
@ -66,7 +66,6 @@
|
|||||||
#undef MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED
|
#undef MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED
|
||||||
#undef MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED
|
#undef MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED
|
||||||
#undef MBEDTLS_KEY_EXCHANGE_PSK_ENABLED
|
#undef MBEDTLS_KEY_EXCHANGE_PSK_ENABLED
|
||||||
#undef MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED
|
|
||||||
#undef MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED
|
#undef MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED
|
||||||
#undef MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED
|
#undef MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED
|
||||||
#undef MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED
|
#undef MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED
|
||||||
|
@ -206,36 +206,6 @@
|
|||||||
*/
|
*/
|
||||||
#define MBEDTLS_DEBUG_C
|
#define MBEDTLS_DEBUG_C
|
||||||
|
|
||||||
/**
|
|
||||||
* \def MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED
|
|
||||||
*
|
|
||||||
* Enable the DHE-PSK based ciphersuite modes in SSL / TLS.
|
|
||||||
*
|
|
||||||
* Requires: MBEDTLS_DHM_C
|
|
||||||
*
|
|
||||||
* This enables the following ciphersuites (if other requisites are
|
|
||||||
* enabled as well):
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_AES_256_GCM_SHA384
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_AES_256_CBC_SHA384
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_AES_256_CBC_SHA
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_CAMELLIA_256_GCM_SHA384
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_CAMELLIA_256_CBC_SHA384
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_AES_128_GCM_SHA256
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_AES_128_CBC_SHA256
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_AES_128_CBC_SHA
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_CAMELLIA_128_GCM_SHA256
|
|
||||||
* MBEDTLS_TLS_DHE_PSK_WITH_CAMELLIA_128_CBC_SHA256
|
|
||||||
*
|
|
||||||
* \warning Using DHE constitutes a security risk as it
|
|
||||||
* is not possible to validate custom DH parameters.
|
|
||||||
* If possible, it is recommended users should consider
|
|
||||||
* preferring other methods of key exchange.
|
|
||||||
* See dhm.h for more details.
|
|
||||||
*
|
|
||||||
*/
|
|
||||||
#define MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED
|
|
||||||
|
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* \def MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED
|
* \def MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED
|
||||||
*
|
*
|
||||||
|
Loading…
x
Reference in New Issue
Block a user