cipherlist with only tlsv1.3 ciphers reports error?

Viktor Dukhovni openssl-users at dukhovni.org
Sat Jul 20 14:28:54 UTC 2019


On Fri, Jul 19, 2019 at 10:38:19AM -0700, PGNet Dev wrote:

> I suspect I've misunderstood usage of TLSv1.3 @
> 
>     https://www.openssl.org/blog/blog/2018/02/08/tlsv1.3/
> 
> Checking cipherlist for just TLSv1.3 ciphers FAILs here,
> 
> 	openssl ciphers  -stdname -s -V 'TTLS13-CHACHA20-POLY1305-SHA256:TLS13-AES-128-GCM-SHA256:TLS13-AES-256-GCM-SHA384'
> 		Error in cipher list

This is expected.  Try:

    openssl ciphers -tls1_3 -stdname -s -V -ciphersuites 'TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256' 'aNULL'

-- 
	Viktor.


More information about the openssl-users mailing list