aboutsummaryrefslogtreecommitdiffstats
path: root/src
diff options
context:
space:
mode:
authorJack Lloyd <[email protected]>2019-11-13 10:51:07 -0500
committerJack Lloyd <[email protected]>2019-11-13 10:51:07 -0500
commit6874f6f568f55c6f670c0a22c2146e1dcb61b63a (patch)
treeea70d5b77b7a3951cd2ca26c3de19c3a3ceabe29 /src
parent2cb3f99902387a24b0bfa8aeb9f1875604e2011f (diff)
Fix TLS PRF and module policy
We can firmly disable MD5 now, but not SHA1 since X.509 needs it
Diffstat (limited to 'src')
-rw-r--r--src/build-data/policy/bsi.txt2
-rw-r--r--src/build-data/policy/nist.txt2
-rw-r--r--src/lib/kdf/prf_tls/info.txt2
3 files changed, 4 insertions, 2 deletions
diff --git a/src/build-data/policy/bsi.txt b/src/build-data/policy/bsi.txt
index d5d73a761..8aea26eb1 100644
--- a/src/build-data/policy/bsi.txt
+++ b/src/build-data/policy/bsi.txt
@@ -160,9 +160,11 @@ blake2
comb4p
gost_3411
md4
+md5
rmd160
shake
skein
+#sha1 // needed for x509
sm3
streebog
tiger
diff --git a/src/build-data/policy/nist.txt b/src/build-data/policy/nist.txt
index d00c601b9..de399610d 100644
--- a/src/build-data/policy/nist.txt
+++ b/src/build-data/policy/nist.txt
@@ -160,9 +160,11 @@ emsa_x931
blake2
comb4p
gost_3411
+md5
md4
rmd160
skein
+#sha1 // needed for x509
sm3
streebog
tiger
diff --git a/src/lib/kdf/prf_tls/info.txt b/src/lib/kdf/prf_tls/info.txt
index d4307b6af..3d76e4b4c 100644
--- a/src/lib/kdf/prf_tls/info.txt
+++ b/src/lib/kdf/prf_tls/info.txt
@@ -5,6 +5,4 @@ TLS_V12_PRF -> 20131128
<requires>
hmac
-md5
-sha1
</requires>