[openssl-dev] What key length is used for DHE by default ?

mancha mancha1 at zoho.com
Sat May 23 22:15:27 UTC 2015


On Fri, May 22, 2015 at 06:43:28PM +0200, Rainer Jung wrote:
> Am 22.05.2015 um 18:32 schrieb Nayna Jain:
> >Ok, I think this is what I didn't know. I was using openssl 1.0.1g
> >client. I still didn't have openssl 1.0.2 .
> 
> If it were trivial I think showing the temp key size would be a
> welcome backport to 1.0.1 before the next release. It is very useful
> in light of logjam but many people are not yet at 1.0.2. Of course
> they wont get the latest 1.0.1 immediately, but distros have a chance
> to backport.
> 
> Regards,
> 
> Rainer

Hi Rainer (and devs).

I had already done this for personal consumption. When I saw your email
I decided to make a pull request (devs, for your consideration):

  https://github.com/openssl/openssl/pull/291

If you'd like to patch OpenSSL 1.0.1m immediately, grab my patch
(https://github.com/mancha1/openssl/commit/a59f22520bb5.patch), remove
the first hunk (to CHANGES), and apply it.

--mancha
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 819 bytes
Desc: not available
URL: <http://mta.openssl.org/pipermail/openssl-dev/attachments/20150523/4b22ca72/attachment.sig>


More information about the openssl-dev mailing list