Hello!

I use openSSL to test our own Erlang SSL/TLS implementation that also uses
openssl crypto facilities. This all works out very good. I
have two questions that are more on a principal level than a use of
openssl questions,
but I do not think they really fit in very good on any of the lists,
so I hope someone
can help me out with these and I apologies if it is a little of topic
for the list.

>From OpenSSL documentation:
"The non-ephemeral DH modes are currently unimplemented in OpenSSL
because there is no support for DH certificates."

Question: Why is this? Is it something that you plan to implement? Or
is this functionallity
something that is not widly used so you choose not to implement it?

Second I like to know your opinion on how important it is to support
export cipher suites for
TLS-1.0 and SSL-v3? Do you think it would be an issue if we decided
not to support them?

Regards Ingela
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           majord...@openssl.org

Reply via email to