config_client_ciphers.go 460 B

1234567891011121314
  1. // Package tlsconfig provides primitives to retrieve secure-enough TLS configurations for both clients and servers.
  2. package tlsconfig
  3. import (
  4. "crypto/tls"
  5. )
  6. // Client TLS cipher suites (dropping CBC ciphers for client preferred suite set)
  7. var clientCipherSuites = []uint16{
  8. tls.TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384,
  9. tls.TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384,
  10. tls.TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256,
  11. tls.TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256,
  12. }