diff options
author | lloyd <[email protected]> | 2015-01-21 20:58:04 +0000 |
---|---|---|
committer | lloyd <[email protected]> | 2015-01-21 20:58:04 +0000 |
commit | 316a7b79146e8003d33f50b58e1c6c3ba9874a32 (patch) | |
tree | e9b049271ac1e4ff963e67caac30cb29f9e7b9a0 /doc/relnotes/1_11_14.rst | |
parent | 1f59fa09984cb364c1dc560043ffa735e1f23494 (diff) |
Update TLS OCB ciphersuites to match draft-zauner-tls-aes-ocb-00
and enable them in the default build, though still not enabled in the
runtime policy.
Diffstat (limited to 'doc/relnotes/1_11_14.rst')
-rw-r--r-- | doc/relnotes/1_11_14.rst | 9 |
1 files changed, 9 insertions, 0 deletions
diff --git a/doc/relnotes/1_11_14.rst b/doc/relnotes/1_11_14.rst new file mode 100644 index 000000000..0fabe190e --- /dev/null +++ b/doc/relnotes/1_11_14.rst @@ -0,0 +1,9 @@ +1.11.14, Not Yet Released +^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ + +* OCB mode, which provides a fast and constant time AEAD mode without + requiring hardware support, is now supported in TLS, following + draft-zauner-tls-aes-ocb-00. Because this specification is not yet + finalized is not yet enabled by the default policy, and the + ciphersuite numbers used are in the experimental range and may + conflict with other uses. |