[openssl-users] Appropriate use of SSL_CTX_set_cipher_list()

Daurnimator quae at daurnimator.com
Wed Jul 18 02:00:16 UTC 2018


On 18 July 2018 at 08:36, Ryan Beethe <ryan at splintermail.com> wrote:
> So that makes me nervous about whether or not I am using
> SSL_CTX_set_cipher_list() wrong.  Should I be calling it at all?  And if
> so, where would I find the "right" setting for other operating systems,
> since "PROFILE=SYSTEM" appears to be Fedora-specific?

Mozilla maintain a recommended cipher list. See
https://wiki.mozilla.org/Security/Server_Side_TLS#Modern_compatibility


More information about the openssl-users mailing list