Fwd: Requesting to share OpenSSL commands to increase G Pramaeter length in DHE Cipher.

Hubert Kario hkario at redhat.com
Wed Mar 3 12:26:19 UTC 2021


On Wednesday, 3 March 2021 11:44:17 CET, Vadivel P wrote:
> Hi OpenSSL team,
>
> We are looking for the command line option or any other way to increase the
> DHE G Parameter length to 256 bytes, by default it's 2 now, we need to
> modify it as 256 byte on the server side for our testing either by command
> line or with any other option.we need it for our local server bring up.
> Please support us.

why?
size of g has no impact on security of the DHE key agreement what so
ever...

you really should use parameters defined in RFC 7919 and not some custom 
ones
-- 
Regards,
Hubert Kario
Senior Quality Engineer, QE BaseOS Security team
Web: www.cz.redhat.com
Red Hat Czech s.r.o., Purkyňova 115, 612 00  Brno, Czech Republic



More information about the openssl-users mailing list