From 6910e5c7533c76f33ac207198b33912bdd2c50af Mon Sep 17 00:00:00 2001 From: Martin Willi Date: Wed, 24 Oct 2012 11:52:59 +0200 Subject: [PATCH] Add NEWS about proposals with PRFs different from integrity protection algorithms --- NEWS | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/NEWS b/NEWS index 9c0375b51..d9743ecac 100644 --- a/NEWS +++ b/NEWS @@ -12,6 +12,10 @@ strongswan-5.0.2 tunnels. The "ipsec lookip" command can be used to query such information or receive notifications. +- IKE proposals can now use a PRF algorithm different to that defined for + integrity protection. If an algorithm with a "prf" prefix is defined + explicitly (such as prfsha1 or prfsha256), no implicit PRF algorithm based on + the integrity algorithm is added to the proposal. strongswan-5.0.1 ----------------