On Fri, Oct 20, 2006 at 08:44:25PM +0200, Arno Garrels wrote: > Hello, > > How to force negotiation of AES256-SHA without disabling the > AES128-SHA at the server-side when a client sends AES128-SHA > as its first preference and AES256-SHA as second?
Please have a look into SSL_OP_CIPHER_SERVER_PREFERENCE available via SSL_CTX_set_options(). Best regards, Lutz -- Lutz Jaenicke [EMAIL PROTECTED] http://www.aet.TU-Cottbus.DE/personen/jaenicke/ BTU Cottbus, Allgemeine Elektrotechnik Universitaetsplatz 3-4, D-03044 Cottbus ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]