New commits:
commit 4d950a966ff38c3aed95b74b939060d2e52780be
Author: Andrew Cagney <[email protected]>
Date: Thu Jan 12 11:14:23 2017 -0500
pluto: completely drop esp/ah proposals with invalid (non-FIPS say)
algorithms
That is:
- unknown algorithms (from the POV of the ike_alg db)
- combining AEAD with INTEG
- including, or defaulting to, an algorithm that FIPS rejcts
- using a wrong key size
This should be good enough until the esp_info.c code starts
using the ike_alg database directly.
_______________________________________________
Swan-commit mailing list
[email protected]
https://lists.libreswan.org/mailman/listinfo/swan-commit