Hello !
I'm testing aws-lc library with haproxy (3.1) and I was surprised to get
a start failure after migration from quictls to aws-lc :
[ALERT] : config : parsing [/etc/haproxy/haproxy.cfg:19] : unknown
keyword 'ssl-dh-param-file' in 'global' section; did you mean
'tune.ssl.default-dh-param' maybe ?
I removed 'ssl-dh-param-file' and haproxy started. However it made me
wonder if there is some other differences/limitations related to aws-lc.
I've already seen that some ciphers are not available in aws-lc.
So, I'm currently looking for a suggested (basic/secure) config for use
with aws-lc. Maybe some articles are available to explain haproxy and
aws-lc interactions from admin point of view ?
--
Best regards,
Artur