]> git.ipfire.org Git - thirdparty/gnutls.git/commitdiff
PKCS#12: switch default encryption to AES-256-CBC
authorSahana Prasad <sahana@redhat.com>
Thu, 29 Oct 2020 09:18:56 +0000 (10:18 +0100)
committerSahana Prasad <sahana@redhat.com>
Fri, 30 Oct 2020 12:00:55 +0000 (13:00 +0100)
Signed-off-by: Sahana Prasad <sahana@redhat.com>
lib/x509/pkcs7-crypt.c

index d64862df43dd09d2c097fe4fb8c812b781bef2ff..edd0bcb77bdc88534a201baa97456f4e7bf83173 100644 (file)
@@ -225,9 +225,9 @@ int _gnutls_pkcs_flags_to_schema(unsigned int flags)
 
        gnutls_assert();
        _gnutls_debug_log
-           ("Selecting default encryption PKCS12_3DES_SHA1 (flags: %u).\n",
+           ("Selecting default encryption PBES2_AES_256 (flags: %u).\n",
             flags);
-       return PKCS12_3DES_SHA1;
+       return PBES2_AES_256;
 }
 
 /**