On Fri, Nov 01, 2013, Piotr Sikora wrote:

> Hey,
> 
> > I think it's a bug in OpenSSL 1.0.2. It shouldn't break anything that works 
> > in
> > previous versions, at least not without a very good reason.
> >
> > I'll look into it.
> 
> I already reported / patched this a while ago (with no response):
> https://rt.openssl.org/Ticket/Display.html?id=3103
> 

Oops sorry missed that.

> > It's the preferred way as it just does the right thing.
> 
> It always choses the strongest curve supported by both sides, which
> isn't always preferred (IMHO).
> 

It picks the highest preference curve supported by both sides, which is
usually the strongest curve but it doesn't have to be.

Steve.
--
Dr Stephen N. Henson. OpenSSL project core developer.
Commercial tech support now available see: http://www.openssl.org
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       openssl-dev@openssl.org
Automated List Manager                           majord...@openssl.org

Reply via email to