tls

package
v0.0.0-...-21cfbab Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Apr 10, 2023 License: Apache-2.0 Imports: 2 Imported by: 0

Documentation

Index

Constants

View Source
const BuiltWithBoringCrypto = false

BuiltWithBoringCrypto if true, strict fips mode is enforced.

Variables

This section is empty.

Functions

func NewTLSConfig

func NewTLSConfig(fipsMode bool) *tls.Config

NewTLSConfig returns a tls.Config with the recommended default settings for Calico Enterprise components. Read more recommendations here in Chapter 3: https://www.gsa.gov/cdnstatic/SSL_TLS_Implementation_%5BCIO_IT_Security_14-69_Rev_6%5D_04-06-2021docx.pdf When built with GOEXPERIMENT and tag boringcrypto, the TLS settings in the config will automatically be overwritten and set to strict mode, due to the fipsonly import in fipstls.go.

Types

This section is empty.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL