Hi Steffan,

On 25/02/14 09:48, Steffan Karger wrote:
Hi,

On Tue, Feb 25, 2014 at 9:22 AM, Gert Doering <g...@greenie.muc.de <mailto:g...@greenie.muc.de>> wrote:

    > Although there is apparently more work to do to get more cipher
    suites
    > working, this does give us a start on working with EC-crypto.
    Maybe this
    > part can go in (once ACK'ed) as 'the start of EC-support', so more
    > people can help improve the code. Any other opinions on this?

    - easy to understand and a bit more detailed README
    - ACK from a "trusted contributor" (read: someone who has worked
    on the
      OpenVPN crypto code before and knows the pitfalls)

    then I'm fine with it


As for the README part, I can probably cook up something 'tonight' (CEST). The ACK can obviously not come from me, but I'll try to make the patch as easy as possible to review.

    - PolarSSL...?


ECDH and ECDSA will work upon upgrade to PolarSSL 1.3, for which I'll send patches soon.


read up on the original ticket too:
  https://forums.openvpn.net/topic8404-30.html

there's some useful commands/description in there on how to generate ECDSA certificates.

HTH,

JJK

Reply via email to