> Yes if you are trusting any certificate then you might as well use anon DH. > > Normally, for certificates, this is resolved by using a mutually acceptable > certificate or CA certificate which have been exchanged by some secure means. > > Steve.
First of all thanks for your suggestions, i'll keep them in mind. How would i then use the anonymous DH public key algorithm? (May it either be on the fly or from a file containing the public values.) Are there any functions for that in the openssl library that i can use? best regards threadhead ____________________________________________________ Aufnehmen, abschicken, nah sein - So einfach ist WEB.DE Video-Mail: http://freemail.web.de/?mc=021200 ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]