diff --git a/CHANGES b/CHANGES index 5136a2dc76..d5f5ee6a15 100644 --- a/CHANGES +++ b/CHANGES @@ -1,4 +1,12 @@ +2.2-beta-55 | 2013-10-10 13:36:38 -0700 + + * A couple of new TLS extension numbers. (Bernhard Amann) + + * Suport for three more new TLS ciphers. (Bernhard Amann) + + * Removing ICSI notary from default site config. (Robin Sommer) + 2.2-beta-51 | 2013-10-07 17:33:56 -0700 * Polishing the reference and scripting sections of the manual. diff --git a/VERSION b/VERSION index fd8b5e801f..43c04a5d37 100644 --- a/VERSION +++ b/VERSION @@ -1 +1 @@ -2.2-beta-51 +2.2-beta-55 diff --git a/scripts/base/protocols/ssl/consts.bro b/scripts/base/protocols/ssl/consts.bro index 5e3b9ec019..732e06b21f 100644 --- a/scripts/base/protocols/ssl/consts.bro +++ b/scripts/base/protocols/ssl/consts.bro @@ -78,6 +78,9 @@ export { [13] = "signature_algorithms", [14] = "use_srtp", [15] = "heartbeat", + [16] = "application_layer_protocol_negotiation", + [17] = "status_request_v2", + [18] = "signed_certificate_timestamp", [35] = "SessionTicket TLS", [40] = "extended_random", [13172] = "next_protocol_negotiation", @@ -434,6 +437,10 @@ export { const TLS_PSK_WITH_AES_256_CCM_8 = 0xC0A9; const TLS_PSK_DHE_WITH_AES_128_CCM_8 = 0xC0AA; const TLS_PSK_DHE_WITH_AES_256_CCM_8 = 0xC0AB; + # draft-agl-tls-chacha20poly1305-02 + const TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 = 0xCC13; + const TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256 = 0xCC14; + const TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256 = 0xCC15; const SSL_RSA_FIPS_WITH_DES_CBC_SHA = 0xFEFE; const SSL_RSA_FIPS_WITH_3DES_EDE_CBC_SHA = 0xFEFF; @@ -792,6 +799,9 @@ export { [TLS_PSK_WITH_AES_256_CCM_8] = "TLS_PSK_WITH_AES_256_CCM_8", [TLS_PSK_DHE_WITH_AES_128_CCM_8] = "TLS_PSK_DHE_WITH_AES_128_CCM_8", [TLS_PSK_DHE_WITH_AES_256_CCM_8] = "TLS_PSK_DHE_WITH_AES_256_CCM_8", + [TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256] = "TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256", + [TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256] = "TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256", + [TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256] = "TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256", [SSL_RSA_FIPS_WITH_DES_CBC_SHA] = "SSL_RSA_FIPS_WITH_DES_CBC_SHA", [SSL_RSA_FIPS_WITH_3DES_EDE_CBC_SHA] = "SSL_RSA_FIPS_WITH_3DES_EDE_CBC_SHA", [SSL_RSA_FIPS_WITH_DES_CBC_SHA_2] = "SSL_RSA_FIPS_WITH_DES_CBC_SHA_2",