Support for More Curves - OpenSSL

This is where we can discuss what we would like to see added or changed in OpenVPN.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Post Reply
MisterSurface
OpenVPN User
Posts: 34
Joined: Wed May 10, 2017 10:08 pm

Support for More Curves - OpenSSL

Post by MisterSurface » Wed May 10, 2017 10:26 pm

Hello,

I was wondering if there was going to be any movement in the openvpn curve support for openssl. Right now there are not very many good options with regards to the paranoid around NIST recommendations and curves e.g. secp and sect and mostly older curves. Thinking specifically about brainpool which in my research of what cryptographers have come across this one is about as secure as you can get. Right now libressl + openvpn supports it. Also, I'd imagine a lot of people are wondering about cha-cha. I know this would be up for debate but an authoritative list of more curves than I have mentioned that are new would be here - https://safecurves.cr.yp.to/

Post Reply