certtool --generate-dh-params --sec-param high --outfile proxy-dh.pem
-- Use "SECURE" as GnuTLS priority string which disallows insecure algorithms.
+- Use "SECURE" (replacing "NORMAL") as GnuTLS priority string which disallows
+ insecure algorithms.
- Add -a option, authentication for tlsproxy via basic digest authentication.
- Add new debug level (-d 3) for even more debug output, including information
about the current TLS session.
- Allow rehandshakes for server connections (%SAFE_RENEGOTIATION is forced to
- prevent issues).
+ prevent security issues).
- Use pre-generated Diffie-Hellman parameters in proxy-dh.pem.
- Code cleanup.
- Better error handling.