-
Notifications
You must be signed in to change notification settings - Fork 72
🌱 Update TLS profiles to Mozilla guidelines v5.8 #2631
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
openshift-merge-bot
merged 1 commit into
operator-framework:main
from
camilamacedo86:fix-make-verify
Apr 7, 2026
Merged
Changes from all commits
Commits
File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Some comments aren't visible on the classic Files Changed page.
There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
|
|
@@ -69,17 +69,19 @@ func cipherSuiteId(name string) uint16 { | |
|
|
||
| // This is primarily so that we don't have to rewrite curve values in mozilla_data.go | ||
| const ( | ||
| X25519 tls.CurveID = tls.X25519 | ||
| prime256v1 tls.CurveID = tls.CurveP256 | ||
| secp384r1 tls.CurveID = tls.CurveP384 | ||
| secp521r1 tls.CurveID = tls.CurveP521 | ||
| X25519MLKEM768 tls.CurveID = tls.X25519MLKEM768 | ||
| X25519 tls.CurveID = tls.X25519 | ||
| prime256v1 tls.CurveID = tls.CurveP256 | ||
| secp384r1 tls.CurveID = tls.CurveP384 | ||
|
camilamacedo86 marked this conversation as resolved.
|
||
| secp521r1 tls.CurveID = tls.CurveP521 | ||
| ) | ||
|
|
||
| var curves = map[string]tls.CurveID{ | ||
| "X25519": tls.X25519, | ||
| "prime256v1": tls.CurveP256, | ||
| "secp384r1": tls.CurveP384, | ||
| "secp521r1": tls.CurveP521, | ||
| "X25519MLKEM768": tls.X25519MLKEM768, | ||
| "X25519": tls.X25519, | ||
| "prime256v1": tls.CurveP256, | ||
| "secp384r1": tls.CurveP384, | ||
| "secp521r1": tls.CurveP521, | ||
| } | ||
|
Comment on lines
70
to
85
|
||
|
|
||
| // Returns 0 for an invalid curve name | ||
|
|
||
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
PR metadata/title mentions updating to Mozilla TLS guidelines v6.0, but this script is pinned to
guidelines/5.8.json(and the generatedmozilla_data.goreports DATA VERSION 5.8). Please align the PR title/description with the actual pinned version, or update the script/data generation to the intended v6.0 source URL/version somake verifystays consistent with the stated change.