On 070825 at 02:10, Nelson B wrote: > IIRC, the problem is not DSA but rather DHE. NSS does not presently > support any DHE cipher suites on the server side, and it so happens > that all the DSA cipher suites are also DHE cipher suites. IIRC, > the missing code is not for DSA but for DHE. The issue is the sharing
You are right, I was able to sign my ServerKeyExchange with DSA. I thought SSL didn't know about the supplied certificate but it was indexed as kt_null. Is there a reason for not activating TLS ciphersuites by default? I need to explicitly enable my TLS ciphersuites when using the 'server' sample application. /steffen -- Hi, I'm a unix-virus. Please copy me into your .signature to help me spread! _______________________________________________ dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto