[openssl-users] Default Diffie Hellman Parameters

Salz, Rich rsalz at akamai.com
Mon Jul 10 08:16:30 UTC 2017


X25519 does not use DH parameters.

If you don’t set the parameters with a callback, or generate them and tell openssl to use them, then EDH will not be used.  Not that EDH is *not* the same as ECDHE.

Don’t use DH, use X25519, for a number of reasons.  Search “25519” to find more.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mta.openssl.org/pipermail/openssl-users/attachments/20170710/235344dc/attachment-0001.html>


More information about the openssl-users mailing list