Do not use TLS_FALLBACK_SCSV
closes #2937 Thanks to @tmolitor-stud-tu for explaining the situation in https://github.com/guardianproject/NetCipher/pull/74
This commit is contained in:
parent
1510958278
commit
fd7a5c605a
|
@ -130,6 +130,7 @@ public final class CryptoHelper {
|
||||||
cipherSuites.retainAll(platformCiphers);
|
cipherSuites.retainAll(platformCiphers);
|
||||||
cipherSuites.addAll(platformCiphers);
|
cipherSuites.addAll(platformCiphers);
|
||||||
filterWeakCipherSuites(cipherSuites);
|
filterWeakCipherSuites(cipherSuites);
|
||||||
|
cipherSuites.remove("TLS_FALLBACK_SCSV");
|
||||||
return cipherSuites.toArray(new String[cipherSuites.size()]);
|
return cipherSuites.toArray(new String[cipherSuites.size()]);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|
Loading…
Reference in a new issue