Hi!

I was looking at the output of „openssl ecparam -list_curves” and trying to choose a curve for the web server together with letsencrypt.

It seems, letsencrypt supports prime256v1, secp256r1, and secp384r1.

Then I found the site https://safecurves.cr.yp.to/.
I have problems mapping the openssl curves with the curve names from the web site, but I have the feeling that none of the choices above are safe.

Or what am I missing?

Shade and sweet water!

        Stephan

--
|    If your life was a horse, you'd have to shoot it.    |

Reply via email to