From 3f5616d734a92fdf99ab827f21e5b6cab85e7194 Mon Sep 17 00:00:00 2001 From: Todd Short Date: Wed, 11 Jan 2017 16:38:44 -0500 Subject: Add support for parameterized SipHash The core SipHash supports either 8 or 16-byte output and a configurable number of rounds. The default behavior, as added to EVP, is to use 16-byte output and 2,4 rounds, which matches the behavior of most implementations. There is an EVP_PKEY_CTRL that can control the output size. Reviewed-by: Richard Levitte Reviewed-by: Rich Salz (Merged from https://github.com/openssl/openssl/pull/2216) --- CHANGES | 3 +++ 1 file changed, 3 insertions(+) (limited to 'CHANGES') diff --git a/CHANGES b/CHANGES index 8b817e35f2..8b27bd5634 100644 --- a/CHANGES +++ b/CHANGES @@ -4,6 +4,9 @@ Changes between 1.1.0a and 1.1.1 [xx XXX xxxx] + *) Add support for SipHash + [Todd Short] + *) OpenSSL now fails if it receives an unrecognised record type in TLS1.0 or TLS1.1. Previously this only happened in SSLv3 and TLS1.2. This is to prevent issues where no progress is being made and the peer continually -- cgit v1.2.3