Hi,
I went on and cloned the OpenSSL 1.0.2 repository, compiled it, and did some
checks.
Turns out you were correct, when using DH, the parameter is now 2048:
Server Temp Key: DH, 2048 bits
As compared to 2.4.6:
Server Temp Key: DH, 1024 bits
Following the documentation, I added 1024-bit DH
Including d...@httpd.apache.org...
-- Forwarded message --
From: Cedric Roijakkers
Date: Fri, Feb 21, 2014 at 7:44 AM
Subject: [users@httpd] Performance drop in 2.4.7 versus 2.4.6
To: "users@httpd.apache.org"
Hi All,
As most of you, we're running Apache in a production set-