From b0ce012ce3e1f417c9cf4c5bf2d7dc57eccb5f80 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Philipp=20H=C3=B6rist?= Date: Thu, 28 Jun 2018 18:41:49 +0200 Subject: [PATCH] Remove RC4-SHA because it is insecure Newer openssl version would not use this even if it was stated in our cipher string --- gajim/common/config.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/gajim/common/config.py b/gajim/common/config.py index f6c0b6ffa..7144ebf42 100644 --- a/gajim/common/config.py +++ b/gajim/common/config.py @@ -340,7 +340,7 @@ class Config: 'keyname': [ opt_str, '', '', True ], 'allow_plaintext_connection': [ opt_bool, False, _('Allow plaintext connections')], 'tls_version': [ opt_str, '1.2', '' ], - 'cipher_list': [ opt_str, 'HIGH:!aNULL:RC4-SHA', '' ], + 'cipher_list': [ opt_str, 'HIGH:!aNULL', '' ], 'authentication_mechanisms': [ opt_str, '', _('List (space separated) of authentication mechanisms to try. Can contain ANONYMOUS, EXTERNAL, GSSAPI, SCRAM-SHA-1-PLUS, SCRAM-SHA-1, DIGEST-MD5, PLAIN, X-MESSENGER-OAUTH2 or XEP-0078') ], 'action_when_plaintext_connection': [ opt_str, 'warn', _('Show a warning dialog before sending password on an plaintext connection. Can be \'warn\', \'connect\', \'disconnect\'') ], 'warn_when_insecure_ssl_connection': [ opt_bool, True, _('Show a warning dialog before using standard SSL library.') ],