Skip to content
Snippets Groups Projects
Commit d2cb1401 authored by Filippo Valsorda's avatar Filippo Valsorda Committed by Gopher Robot
Browse files

[release-branch.go1.21] crypto/tls: align FIPS-only mode with BoringSSL policy

This enables TLS 1.3, disables P-521, and disables non-ECDHE suites.

Updates #64717
Updates #62372
Fixes #64719

Change-Id: I3a65b239ef0198bbdbe5e55e0810e7128f90a091
Reviewed-on: https://go-review.googlesource.com/c/go/+/549975


Reviewed-by: default avatarRoland Shoemaker <roland@golang.org>
LUCI-TryBot-Result: Go LUCI <golang-scoped@luci-project-accounts.iam.gserviceaccount.com>
Reviewed-by: default avatarThan McIntosh <thanm@google.com>
Reviewed-on: https://go-review.googlesource.com/c/go/+/553856


Auto-Submit: Matthew Dempsky <mdempsky@google.com>
Reviewed-by: default avatarMatthew Dempsky <mdempsky@google.com>
parent 368e2a94
No related branches found
No related tags found
No related merge requests found
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment