From 9884018b0064dc954a6f0ae49230c3946c0cee0e Mon Sep 17 00:00:00 2001 From: Jayesh Srivastava Date: Tue, 8 Aug 2023 10:43:07 +0530 Subject: [PATCH] PEM-2613: Update cipher suit (#116) --- util/flags/tls.go | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/util/flags/tls.go b/util/flags/tls.go index d42c221bb4da..2d012f2ae00a 100644 --- a/util/flags/tls.go +++ b/util/flags/tls.go @@ -80,8 +80,9 @@ func GetTLSOptionOverrideFuncs(options TLSOptions) ([]func(*tls.Config), error) func GetDefaultTLSCipherSuits() []uint16 { return []uint16{ - tls.TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, - tls.TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA, - tls.TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA, + tls.TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, + tls.TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, + tls.TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, + tls.TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, } }