> > Also, what about changing order so that 128bit+ AEAD and PFS are
> > preferred over other ciphers (including 256 bit ones)?
> 
> I sent in a patch for exactly that a while ago.
> Unfortunately I got zero feedback...
> 
> https://mta.openssl.org/pipermail/openssl-dev/2015-January/000421.html

Sorry for the delay; it's been on my todo list.

I want to think about this more, but... yeah, probably.  Hope that helps.
_______________________________________________
openssl-dev mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

Reply via email to