Fix #2949: swap TLS 1.3 & 1.2 in gnutls-algorithm-priority
This commit is contained in:
parent
27c64a3abd
commit
0c3e11766c
1 changed files with 3 additions and 2 deletions
|
@ -196,11 +196,12 @@ users).")
|
|||
(setq gnutls-verify-error (not (getenv "INSECURE"))
|
||||
gnutls-algorithm-priority
|
||||
(when (boundp 'libgnutls-version)
|
||||
(concat "SECURE128:+SECURE192:-VERS-ALL:+VERS-TLS1.2"
|
||||
(concat "SECURE128:+SECURE192:-VERS-ALL"
|
||||
(if (and (not IS-WINDOWS)
|
||||
(not (version< emacs-version "26.3"))
|
||||
(>= libgnutls-version 30605))
|
||||
":+VERS-TLS1.3")))
|
||||
":+VERS-TLS1.3")
|
||||
":+VERS-TLS1.2"))
|
||||
;; `gnutls-min-prime-bits' is set based on recommendations from
|
||||
;; https://www.keylength.com/en/4/
|
||||
gnutls-min-prime-bits 3072
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue