46
46
<emphasis>not</emphasis> run in debug mode.
49
<para id="priority_compat">
50
GnuTLS priority string for the <acronym>TLS</acronym> handshake.
51
The default is <quote><literal
52
>SECURE256:!CTYPE-X.509:+CTYPE-OPENPGP:!RSA</literal>
53
<literal>:+SIGN-RSA-SHA224:+SIGN-RSA-RMD160</literal></quote>.
54
See <citerefentry><refentrytitle
55
>gnutls_priority_init</refentrytitle>
56
<manvolnum>3</manvolnum></citerefentry> for the syntax.
57
<emphasis>Warning</emphasis>: changing this may make the
58
<acronym>TLS</acronym> handshake fail, making server-client
59
communication impossible. Changing this option may also make the
60
network traffic decryptable by an attacker.
49
63
<para id="priority">
50
64
GnuTLS priority string for the <acronym>TLS</acronym> handshake.
52
<quote><literal>SECURE128​:!CTYPE-X.509​:+CTYPE-RAWPK​:!RSA​:!VERS-ALL​:+VERS-TLS1.3​:%PROFILE_ULTRA</literal></quote>
53
when using raw public keys in TLS, and
54
<quote><literal>SECURE256​:!CTYPE-X.509​:+CTYPE-OPENPGP​:!RSA​:+SIGN-DSA-SHA256</literal></quote>
55
when using OpenPGP keys in TLS,. See <citerefentry><refentrytitle
65
The default is <quote><literal
66
>SECURE256:!CTYPE-X.509:+CTYPE-OPENPGP:!RSA</literal></quote>.
67
See <citerefentry><refentrytitle
56
68
>gnutls_priority_init</refentrytitle>
57
69
<manvolnum>3</manvolnum></citerefentry> for the syntax.
58
70
<emphasis>Warning</emphasis>: changing this may make the