Re: [PATCH 2/3] TLS: Add tls_connection_params.openssl_ecdh_curves

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, Apr 20, 2017 at 02:40:35PM +0100, Hristo Venev wrote:
> OpenSSL needs server support for ECDH to be explicitly enabled.

Thanks, patches 2/3 and 3/3 applied with some cleanup and changes to
work with newer OpenSSL (and BoringSSL/LibreSSL) versions. It should be
noted that for Suite B, there is actually a different way of setting
ECDH parameters and latest OpenSSL versions enable automatic
determination of ECDH curves, so they should not actually need this new
functionality unless there is need to disable some curves.

I don't think I've seen an updated version of 1/3, so I dropped that one
from my queue.

-- 
Jouni Malinen                                            PGP id EFC895FA

_______________________________________________
Hostap mailing list
Hostap@xxxxxxxxxxxxxxxxxxx
http://lists.infradead.org/mailman/listinfo/hostap



[Index of Archives]     [Linux Wireless]     [Linux Kernel]     [ATH6KL]     [Linux Bluetooth]     [Linux Netdev]     [Kernel Newbies]     [IDE]     [Security]     [Git]     [Netfilter]     [Bugtraq]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Linux ATA RAID]     [Samba]     [Device Mapper]

  Powered by Linux