Hello !

I'm testing aws-lc library with haproxy (3.1) and I was surprised to get a start failure after migration from quictls to aws-lc :

[ALERT] : config : parsing [/etc/haproxy/haproxy.cfg:19] : unknown keyword 'ssl-dh-param-file' in 'global' section; did you mean 'tune.ssl.default-dh-param' maybe ?

I removed 'ssl-dh-param-file' and haproxy started. However it made me wonder if there is some other differences/limitations related to aws-lc.
I've already seen that some ciphers are not available in aws-lc.

So, I'm currently looking for a suggested (basic/secure) config for use with aws-lc. Maybe some articles are available to explain haproxy and aws-lc interactions from admin point of view ?

--
Best regards,
Artur



Reply via email to