Add NEWS about proposals with PRFs different from integrity protection algorithms
authorMartin Willi <martin@revosec.ch>
Wed, 24 Oct 2012 09:52:59 +0000 (11:52 +0200)
committerMartin Willi <martin@revosec.ch>
Wed, 24 Oct 2012 09:52:59 +0000 (11:52 +0200)
NEWS

diff --git a/NEWS b/NEWS
index 9c0375b..d9743ec 100644 (file)
--- a/NEWS
+++ b/NEWS
@@ -12,6 +12,10 @@ strongswan-5.0.2
   tunnels. The "ipsec lookip" command can be used to query such information
   or receive notifications.
 
+- IKE proposals can now use a PRF algorithm different to that defined for
+  integrity protection. If an algorithm with a "prf" prefix is defined
+  explicitly (such as prfsha1 or prfsha256), no implicit PRF algorithm based on
+  the integrity algorithm is added to the proposal.
 
 strongswan-5.0.1
 ----------------