[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: OpenLDAP and DH parameter size / LogJam vulnerability



Jens Vagelpohl <jens@dataflake.org> wrote:

> The issue might have appeared less important back in 2013, but now we have
> LogJam and DH groups have received proper attention. It would be great
> if the current release branch of software as important as OpenLDAP would
> handle those better.

Agreed. Admin-supplied DH parameters and ECDH support (because DH > 1024
bits is really slow) are a raising need.

-- 
Emmanuel Dreyfus
http://hcpnet.free.fr/pubz
manu@netbsd.org