Bernhard Froehlich wrote:
Maybe this would be possible using the NULL cipher combined with DH authentication...
(The official NULL cipher suites use RSA authentication.) The answer to the first question of the OP is yes, use a NULL cipher suite.
But if your problem is only performance I don't think it's worthwhile to worry about bulk encryption. [...]
I agree to this. Anyway, it is not much effort to make the cipher suite used by the application configurable; comparing a NULL cipher suite with an e.g. AES-128 cipher suite gives in short time the answer to the OP's second question.
Ciao, Richard -- Dr. Richard W. Könning Fujitsu Siemens Computers GmbH ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]