On 29/08/14 17:12, Viktor Dukhovni wrote:
I retestet with "-no_ssl2" option and then the ECDHE ciphers are used again.
Applications should these days employ "SSL_OP_NO_SSLv2",
I agree, but then openssl should set this option by default also. ______________________________________________________________________ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager majord...@openssl.org