diff --git a/tls/src/main/java/org/bouncycastle/jsse/provider/FipsUtils.java b/tls/src/main/java/org/bouncycastle/jsse/provider/FipsUtils.java index 4a0628be9d..26cb817a9d 100644 --- a/tls/src/main/java/org/bouncycastle/jsse/provider/FipsUtils.java +++ b/tls/src/main/java/org/bouncycastle/jsse/provider/FipsUtils.java @@ -18,7 +18,7 @@ abstract class FipsUtils private static final boolean provAllowGCMCiphersIn12 = false; private static final boolean provAllowRSAKeyExchange = PropertyUtils - .getBooleanSystemProperty("org.bouncycastle.jsse.fips.allowRSAKeyExchange", true); + .getBooleanSystemProperty("org.bouncycastle.jsse.fips.allowRSAKeyExchange", false); private static final Set FIPS_SUPPORTED_CIPHERSUITES = createFipsSupportedCipherSuites(); private static final Set FIPS_SUPPORTED_PROTOCOLS = createFipsSupportedProtocols();