From 964f0ad5ad82b2cbf10eeee67074f9fef846781f Mon Sep 17 00:00:00 2001 From: Kapil Gupta Date: Tue, 23 Aug 2022 12:39:49 +0530 Subject: [PATCH] wpa_supplicant: remove RC4 and 3DES ciphers for TLS MbedTLS-3.x has dropped support for 3DES and RC4 TLS cipher suites. Removing them from supplicant as well Closes https://github.com/espressif/esp-idf/issues/9607 --- .../esp_supplicant/src/crypto/tls_mbedtls.c | 17 ----------------- 1 file changed, 17 deletions(-) diff --git a/components/wpa_supplicant/esp_supplicant/src/crypto/tls_mbedtls.c b/components/wpa_supplicant/esp_supplicant/src/crypto/tls_mbedtls.c index 575a59e4583..a63cb3c6471 100644 --- a/components/wpa_supplicant/esp_supplicant/src/crypto/tls_mbedtls.c +++ b/components/wpa_supplicant/esp_supplicant/src/crypto/tls_mbedtls.c @@ -390,23 +390,6 @@ static const int eap_ciphersuite_preference[] = #if defined(MBEDTLS_CCM_C) MBEDTLS_TLS_PSK_WITH_AES_128_CCM_8, #endif -#endif - -#if defined(MBEDTLS_DES_C) - /* 3DES suites */ - MBEDTLS_TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA, - MBEDTLS_TLS_DHE_PSK_WITH_3DES_EDE_CBC_SHA, - MBEDTLS_TLS_RSA_WITH_3DES_EDE_CBC_SHA, - MBEDTLS_TLS_RSA_PSK_WITH_3DES_EDE_CBC_SHA, - MBEDTLS_TLS_PSK_WITH_3DES_EDE_CBC_SHA, -#endif -#if defined(MBEDTLS_ARC4_C) - /* RC4 suites */ - MBEDTLS_TLS_DHE_PSK_WITH_RC4_128_SHA, - MBEDTLS_TLS_RSA_WITH_RC4_128_SHA, - MBEDTLS_TLS_RSA_WITH_RC4_128_MD5, - MBEDTLS_TLS_RSA_PSK_WITH_RC4_128_SHA, - MBEDTLS_TLS_PSK_WITH_RC4_128_SHA, #endif 0 };