Hi Steffan,
On 25/02/14 09:48, Steffan Karger wrote:
Hi,
On Tue, Feb 25, 2014 at 9:22 AM, Gert Doering <g...@greenie.muc.de
<mailto:g...@greenie.muc.de>> wrote:
> Although there is apparently more work to do to get more cipher
suites
> working, this does give us a start on working with EC-crypto.
Maybe this
> part can go in (once ACK'ed) as 'the start of EC-support', so more
> people can help improve the code. Any other opinions on this?
- easy to understand and a bit more detailed README
- ACK from a "trusted contributor" (read: someone who has worked
on the
OpenVPN crypto code before and knows the pitfalls)
then I'm fine with it
As for the README part, I can probably cook up something 'tonight'
(CEST). The ACK can obviously not come from me, but I'll try to make
the patch as easy as possible to review.
- PolarSSL...?
ECDH and ECDSA will work upon upgrade to PolarSSL 1.3, for which I'll
send patches soon.
read up on the original ticket too:
https://forums.openvpn.net/topic8404-30.html
there's some useful commands/description in there on how to generate
ECDSA certificates.
HTH,
JJK