From: Dr. Stephen Henson Date: Mon, 13 Jul 2009 11:53:53 +0000 (+0000) Subject: Document MD2 deprecation. X-Git-Tag: OpenSSL_0_9_8m-beta1~171 X-Git-Url: https://git.librecmc.org/?a=commitdiff_plain;h=856f3005def785e7f7319df6a8137c1c79c7b08e;p=oweals%2Fopenssl.git Document MD2 deprecation. --- diff --git a/CHANGES b/CHANGES index 7ef440736a..06c72fe5b3 100644 --- a/CHANGES +++ b/CHANGES @@ -4,6 +4,12 @@ Changes between 0.9.8k and 0.9.8l [xx XXX xxxx] + *) Delete MD2 from algorithm tables. This follows the recommendation in + several standards that it is not used in new applications due to + several cryptographic weaknesses. For binary compatibility reasons + the MD2 API is still compiled in by default. + [Steve Henson] + *) Add compression id to {d2i,i2d}_SSL_SESSION so it is correctly saved and restored. [Steve Henson]