On Fri, Jul 14, 2006, Girish Venkatachalam wrote: > Urjit, > > I got it working once I replaced > "EXP-DES-CBC-SHA" with > "DES-CBC-SHA" > > I think you might have to do something special to > enable export quality ciphers. >
They can place restrictions on the size of the RSA key used for kex exchange. That means that if the key in the certificate is larger than the limit a temporary RSA key is used instead. You need to supply that. Steve. -- Dr Stephen N. Henson. Email, S/MIME and PGP keys: see homepage OpenSSL project core developer and freelance consultant. Funding needed! Details on homepage. Homepage: http://www.drh-consultancy.demon.co.uk ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]