]> git.ipfire.org Git - thirdparty/openssh-portable.git/commitdiff
upstream: prefer AES-GCM to AES-CTR; ok deraadt markus
authordjm@openbsd.org <djm@openbsd.org>
Mon, 2 Dec 2024 13:37:18 +0000 (13:37 +0000)
committerDamien Miller <djm@mindrot.org>
Mon, 2 Dec 2024 13:38:18 +0000 (00:38 +1100)
OpenBSD-Commit-ID: 8366a72e0f300ee31c5dab2c95025387ec15bbc9

myproposal.h

index cd4197641f88f25856c8b57c30d0db13920b825a..ccaa6aa067ac2f8fd039060deb9e024299c289f9 100644 (file)
@@ -1,4 +1,4 @@
-/* $OpenBSD: myproposal.h,v 1.75 2024/10/25 01:34:18 djm Exp $ */
+/* $OpenBSD: myproposal.h,v 1.76 2024/12/02 13:37:18 djm Exp $ */
 
 /*
  * Copyright (c) 2000 Markus Friedl.  All rights reserved.
@@ -60,8 +60,8 @@
 
 #define        KEX_SERVER_ENCRYPT \
        "chacha20-poly1305@openssh.com," \
-       "aes128-ctr,aes192-ctr,aes256-ctr," \
-       "aes128-gcm@openssh.com,aes256-gcm@openssh.com"
+       "aes128-gcm@openssh.com,aes256-gcm@openssh.com,"
+       "aes128-ctr,aes192-ctr,aes256-ctr" \
 
 #define KEX_CLIENT_ENCRYPT KEX_SERVER_ENCRYPT