Interesting paper... So what are the current blockers for OpenVPN supporting ECC with OpenSSL?

We will certainly consider any patch that addresses these issues.

James

On 05/08/2013 10:30, Asim Ali wrote:
I would like to know where OpenVPN stands on having TLS 1.2 working
with Suite B cryptography (http://tools.ietf.org/html/rfc6460
<mailto:openvpn-devel@lists.sourceforge.net>).


My colleagues and I want to use
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 ciphersuite which is supported
by OpenSSL. But cannot get it to work with OpenVPN.


The closest we can get to work is TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA
which is only TLS 1.0.


Our push for Suite B is coming from this...
https://media.blackhat.com/us-13/us-13-Stamos-The-Factoring-Dead.pdf


Please let me know your thoughts on this matter.


Thank you.


Asim


------------------------------------------------------------------------------
Get your SQL database under version control now!
Version control is standard for application code, but databases havent
caught up. So what steps can you take to put your SQL databases under
version control? Why should you start doing it? Read more to find out.
http://pubads.g.doubleclick.net/gampad/clk?id=49501711&iu=/4140/ostg.clktrk



_______________________________________________
Openvpn-devel mailing list
Openvpn-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-devel


Reply via email to