On Fri, Jul 14, 2006, Girish Venkatachalam wrote:

> Urjit,
> 
> I got it working once I replaced 
> "EXP-DES-CBC-SHA" with 
> "DES-CBC-SHA"
> 
> I think you might have to do something special to
> enable export quality ciphers. 
> 

They can place restrictions on the size of the RSA key used for kex exchange.
That means that if the key in the certificate is larger than the limit a
temporary RSA key is used instead. You need to supply that.

Steve.
--
Dr Stephen N. Henson. Email, S/MIME and PGP keys: see homepage
OpenSSL project core developer and freelance consultant.
Funding needed! Details on homepage.
Homepage: http://www.drh-consultancy.demon.co.uk
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to