RSA is for authentication. DH key exchange is the way to go for perfect forward secrecy. For non-DH exchange protocols, the RSA key will be enough to read the server side of the connection (receive and transmit).
-Kyle H On 5/25/06, Sreeram Kandallu <[EMAIL PROTECTED]> wrote:
Thanks! looks like RSA+DH is the way to go for perfect forward secrecy! Sreeram
______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]