[PATCH] tls_gnutls: Disable TLS 1.3 if instructed

Jouni Malinen j at w1.fi
Sat Feb 1 10:11:52 PST 2025


On Thu, Jan 30, 2025 at 07:59:32PM +0000, mac at mcrowe.com wrote:
> Ensure that if TLS 1.3 is disabled (which is the default currently),
> GnuTLS is told to disable support for it too. Some RADIUS servers
> apparently object to downgrading from TLS 1.3 to TLS 1.2 later even
> though FreeRADIUS doesn't seem to mind in my testing.

Thanks, applied.
 
-- 
Jouni Malinen                                            PGP id EFC895FA



More information about the Hostap mailing list