]> git.ipfire.org Git - thirdparty/openssl.git/commitdiff
Add CHANGES.md entry for ess_cert_id_alg default change
authorTomas Mraz <tomas@openssl.org>
Fri, 25 Aug 2023 13:24:16 +0000 (15:24 +0200)
committerTomas Mraz <tomas@openssl.org>
Thu, 31 Aug 2023 09:11:44 +0000 (11:11 +0200)
The default was changed in 10536b7f5b07aab3dc9631e94a56258155a1d942

Reviewed-by: Matt Caswell <matt@openssl.org>
Reviewed-by: Paul Dale <pauli@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/21845)

CHANGES.md

index 11a0ee793d819b404a9211ee5ed444d11b0a4220..78e74c41fa1f81fa86bf1a141904efc47d43e432 100644 (file)
@@ -25,6 +25,13 @@ OpenSSL 3.2
 
 ### Changes between 3.1 and 3.2 [xx XXX xxxx]
 
+ * Changed the default value of the `ess_cert_id_alg` configuration
+   option which is used to calculate the TSA's public key certificate
+   identifier. The default algorithm is updated to be sha256 instead
+   of sha1.
+
+   *Małgorzata Olszówka*
+
  * Added optimization for SM2 algorithm on aarch64. It uses a huge precomputed
    table for point multiplication of the base point, which increases the size of
    libcrypto from 4.4 MB to 4.9 MB. A new configure option `no-sm2-precomp` has