While we are on the topic of ciphers

Which of the follwoing three use an "authenticated" DH key exchange ? Or are
all ephimereal DH exchanges autheticated
by default ?

EDH-DSS-DES-CBC3-SHA
EXP1024-DHE-DSS-DES-CBC-SHA
EDH-DSS-DES-CBC-SHA

-----Original Message-----
From: Eric Rescorla [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 02, 2000 9:20 AM
To: [EMAIL PROTECTED]
Subject: Re: Missing ciphers


Bill Rebey <[EMAIL PROTECTED]> writes:
> I just realized that the only ciphers available to me (according to
'openssl
> ciphers') are:
> 
>
EDH-DSS-DES-CBC3-SHA:EXP1024-DHE-DSS-DES-CBC-SHA:EDH-DSS-DES-CBC-SHA:EXP-EDH
> -DSS-DES-CBC-SHA
>
> That all seems fine, as I turned off all the
> non-distributable-without-permission stuff, plus Blowfish, _except_ that
> there is no Triple-DES in there.  What am I doing wrong that is making
> Triple-DES go away with all the others?
Uh, yes there is: 
DES-CBC3 is 3DES.

-Ekr
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to