[Git][NTPsec/ntpsec][master] nts.adoc: Add note on required AEAD cipher.
Gary E. Miller
gitlab at mg.gitlab.com
Sat Feb 2 00:00:37 UTC 2019
Gary E. Miller pushed to branch master at NTPsec / ntpsec
Commits:
4188eaac by Gary E. Miller at 2019-02-01T23:59:58Z
nts.adoc: Add note on required AEAD cipher.
- - - - -
1 changed file:
- devel/nts.adoc
Changes:
=====================================
devel/nts.adoc
=====================================
@@ -144,10 +144,10 @@ configured, because the NTS specification relies on RFC 5705, and
also because it explicitly says so, TLS 1.3 is the minimum TLS
version allowed.
-The NTS-KE client SHOULD provide a configuration paramter to
+The NTS-KE client SHOULD provide a configuration parameter to
configure an OpenSSL cipher string for the TLS connection.
-The NTS-KE client SHOULD provide a configuration paramter to
+The NTS-KE client SHOULD provide a configuration parameter to
configure an OpenSSL cipher string for the AEAD algorithms.
The NTP client SHOULD provide a mechanism for the administrator to
@@ -264,8 +264,8 @@ order.
order. TLS 1.2 and 1.3 ciphers are different and must be specified
separately as OpenSSL needs them separately.
-*ntpciphers [list]* List of ciphers to negotiate, in prefered
-order for the NTPD connection.
+*ntpciphers [list]* List of ciphers to negotiate, in prefered order for
+the NTPD connection. The server must support AEAD_AES_SIV_CMAC_256.
*expire [seconds]* How long to use an NTPD association before rekeying
with the NTS-KE server.
View it on GitLab: https://gitlab.com/NTPsec/ntpsec/commit/4188eaace2b08e3015f2b011c3d3029f467c3ac0
--
View it on GitLab: https://gitlab.com/NTPsec/ntpsec/commit/4188eaace2b08e3015f2b011c3d3029f467c3ac0
You're receiving this email because of your account on gitlab.com.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ntpsec.org/pipermail/vc/attachments/20190202/b87532be/attachment.html>
More information about the vc
mailing list