diff options
author | Matt Caswell <matt@openssl.org> | 2021-02-08 15:52:07 +0000 |
---|---|---|
committer | Matt Caswell <matt@openssl.org> | 2021-02-12 08:47:32 +0000 |
commit | 13888e797c5a3193e91d71e5f5a196a2d68d266f (patch) | |
tree | 0d1c559337e49fa4bf498fdf697f12157b7e4ad8 /CHANGES.md | |
parent | 76cb077f81c96e98d2f2042478c916ed2fdeda16 (diff) |
Update documentation following deprecation of SRP
Ensure all the man pages correctly reflect the deprecated status of SRP.
Fixes #13917
Reviewed-by: Tomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/14132)
Diffstat (limited to 'CHANGES.md')
-rw-r--r-- | CHANGES.md | 8 |
1 files changed, 7 insertions, 1 deletions
diff --git a/CHANGES.md b/CHANGES.md index b846746204..bda3c44aa1 100644 --- a/CHANGES.md +++ b/CHANGES.md @@ -23,12 +23,18 @@ OpenSSL 3.0 ### Changes between 1.1.1 and 3.0 [xx XXX xxxx] +* The SRP APIs have been deprecated. The old APIs do not work via providers, + and there is no EVP interface to them. Unfortunately there is no replacement + for these APIs at this time. + + *Matt Caswell* + * Add a compile time option to prevent the caching of provider fetched algorithms. This is enabled by including the no-cached-fetch option at configuration time. *Paul Dale* - + * Combining the Configure options no-ec and no-dh no longer disables TLSv1.3. Typically if OpenSSL has no EC or DH algorithms then it cannot support connections with TLSv1.3. However OpenSSL now supports "pluggable" groups |