Re: [exim-dev] [Bug 2954] New: tls_eccurve (>= OpenSSL 3.0.0…

Páxina inicial
Borrar esta mensaxe
Responder a esta mensaxe
Autor: Jeremy Harris
Data:  
Para: exim-dev
Asunto: Re: [exim-dev] [Bug 2954] New: tls_eccurve (>= OpenSSL 3.0.0) dysfunctional
On 02/01/2023 04:16, Viktor Dukhovni via Exim-dev wrote:
> Mind you, things are a bit complicated with TLS 1.3, where ECDHE groups
> and FFDHE groups are unified and always negotiated, and setting the
> grouplist to just ECDHE groups will disable FFDHE.


Is there any particular advantage, or behaviour difference, in
FFDHE vs. ECDHE?

Is it mostly "EC keys are smaller, for equivalent protection"?
--
Cheers,
Jeremy