X-Git-Url: https://tinc-vpn.org/git/browse?a=blobdiff_plain;f=README;h=db6a80e07ff41e852733457b4d3019cf71ea0156;hb=32ff5ab8a22ab80cd6c141625538dcc027458c0e;hp=63075994852dc790162ffdfcecc532102614c994;hpb=6c0584c55b99dd9814fed5c13536d831b3e5317e;p=tinc diff --git a/README b/README index 63075994..db6a80e0 100644 --- a/README +++ b/README @@ -50,9 +50,9 @@ ensure you have the latest stable versions of all the required libraries: The following libraries are used by default, but can be disabled if necessary: -- zlib (http://www.zlib.net/) +- zlib (https://zlib.net/) - LZO (https://www.oberhumer.com/opensource/lzo/) -- ncurses (http://invisible-island.net/ncurses/) +- ncurses (https://invisible-island.net/ncurses/) - readline (https://cnswww.cns.cwru.edu/php/chet/readline/rltop.html) @@ -68,8 +68,8 @@ be forwarded by intermediate nodes. Tinc 1.1 support two protocols. The first is a legacy protocol that provides backwards compatibility with tinc 1.0 nodes, and which by default uses 2048 bit -RSA keys for authentication, and encrypts traffic using Blowfish in CBC mode -and HMAC-SHA1. The second is a new protocol which uses Curve25519 keys for +RSA keys for authentication, and encrypts traffic using AES256 in CBC mode +and HMAC-SHA256. The second is a new protocol which uses Curve25519 keys for authentication, and encrypts traffic using Chacha20-Poly1305, and provides forward secrecy.