diff --git a/doc/go1.13.html b/doc/go1.13.html index 9d2c65be2b..4240d4b1a7 100644 --- a/doc/go1.13.html +++ b/doc/go1.13.html @@ -534,6 +534,14 @@ godoc
+ Support for SSL version 3.0 (SSLv3)
+ is now deprecated and will be removed in Go 1.14. Note that SSLv3
+ is cryptographically
+ broken, is already disabled by default in crypto/tls,
+ and was never supported by Go clients.
+
Ed25519 certificates are now supported in TLS versions 1.2 and 1.3.
diff --git a/src/crypto/tls/common.go b/src/crypto/tls/common.go index d135b1fc99..da1eae0800 100644 --- a/src/crypto/tls/common.go +++ b/src/crypto/tls/common.go @@ -23,11 +23,14 @@ import ( ) const ( - VersionSSL30 = 0x0300 VersionTLS10 = 0x0301 VersionTLS11 = 0x0302 VersionTLS12 = 0x0303 VersionTLS13 = 0x0304 + + // Deprecated: SSLv3 is cryptographically broken, and will be + // removed in Go 1.14. See golang.org/issue/32716. + VersionSSL30 = 0x0300 ) const (