Fwd: Requesting to share OpenSSL commands to increase G Pramaeter length in DHE Cipher.
Hubert Kario
hkario at redhat.com
Wed Mar 3 12:26:19 UTC 2021
On Wednesday, 3 March 2021 11:44:17 CET, Vadivel P wrote:
> Hi OpenSSL team,
>
> We are looking for the command line option or any other way to increase the
> DHE G Parameter length to 256 bytes, by default it's 2 now, we need to
> modify it as 256 byte on the server side for our testing either by command
> line or with any other option.we need it for our local server bring up.
> Please support us.
why?
size of g has no impact on security of the DHE key agreement what so
ever...
you really should use parameters defined in RFC 7919 and not some custom
ones
--
Regards,
Hubert Kario
Senior Quality Engineer, QE BaseOS Security team
Web: www.cz.redhat.com
Red Hat Czech s.r.o., Purkyňova 115, 612 00 Brno, Czech Republic
More information about the openssl-users
mailing list