Paul, > Does anyone know how can the encryption key used to > secure SSL communication be changed/rotated over a > long-lived (hours to days) SSL connection to prevent > sniffers from deciphering the key by analyzing a > arge amount of traffic?
Look at SSL_renegotiate() and SSL_renegotiate_pending() Mark ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]