> > Also, what about changing order so that 128bit+ AEAD and PFS are > > preferred over other ciphers (including 256 bit ones)? > > I sent in a patch for exactly that a while ago. > Unfortunately I got zero feedback... > > https://mta.openssl.org/pipermail/openssl-dev/2015-January/000421.html
Sorry for the delay; it's been on my todo list. I want to think about this more, but... yeah, probably. Hope that helps. _______________________________________________ openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev