summaryrefslogtreecommitdiff
path: root/changes/prop198
diff options
context:
space:
mode:
Diffstat (limited to 'changes/prop198')
-rw-r--r--changes/prop19812
1 files changed, 12 insertions, 0 deletions
diff --git a/changes/prop198 b/changes/prop198
new file mode 100644
index 0000000000..fd666864c3
--- /dev/null
+++ b/changes/prop198
@@ -0,0 +1,12 @@
+ o Removed features:
+
+ - Remove support for clients claiming to support any standard
+ ciphersuites that we can actually provide. (As of modern
+ OpenSSL versions, it's not necessary to fake any standard
+ ciphersuite, and doing so prevents us from using better
+ ciphersuites in the future, since servers can't know whether an
+ advertised ciphersuite is really supported or not.) Some
+ hosts--notably, ones with very old versions of OpenSSL or where
+ OpenSSL has been built with ECC disabled-- will stand out
+ because of this change; TBB users should not be affected.
+ This implements the client side of proposal 198.