Re: DH group cipher suites getting rejected
[
Date Prev
][
Date Next
][
Thread Prev
][
Thread Next
][
Date Index
][
Thread Index
]
To
: Chitrang Srivastava <chitrang.srivastava@xxxxxxxxx>, openssl-users <openssl-users@xxxxxxxxxxx>
Subject
: Re: DH group cipher suites getting rejected
From
: "Salz, Rich via openssl-users" <openssl-users@xxxxxxxxxxx>
Date
: Wed, 18 Sep 2019 12:30:44 +0000
Accept-language
: en-US
In-reply-to
: <
CANPP3o0xjF34DPJxLxjiCcEeKiaaEmf38MsHf0vFfSkkbhctng@mail.gmail.com
>
References
: <
CANPP3o0xjF34DPJxLxjiCcEeKiaaEmf38MsHf0vFfSkkbhctng@mail.gmail.com
>
Reply-to
: "Salz, Rich" <rsalz@xxxxxxxxxx>
User-agent
: Microsoft-MacOutlook/10.1d.0.190908
However if I try ECDHE, it works fine. Is DHE only cipher suites less common now ?
I believe its responsibility of server to generate DHparam of large enough size.
Yes, DHE has dropped because it is hard to get right, and it takes more CPU cycles than ECDHE.
[
Date Prev
][
Date Next
][
Thread Prev
][
Thread Next
][
Date Index
][
Thread Index
]
References
:
DH group cipher suites getting rejected
From:
Chitrang Srivastava
Prev by Date:
DH group cipher suites getting rejected
Next by Date:
Proposed change to linux kernel about random numbers
Previous by thread:
DH group cipher suites getting rejected
Next by thread:
Proposed change to linux kernel about random numbers
Index(es):
Date
Thread
[Index of Archives]
[Linux ARM Kernel]
[Linux ARM]
[Linux Omap]
[Fedora ARM]
[IETF Annouce]
[Security]
[Bugtraq]
[Linux]
[Linux OMAP]
[Linux MIPS]
[ECOS]
[Asterisk Internet PBX]
[Linux API]