I was wondering if there was going to be any movement in the openvpn curve support for openssl. Right now there are not very many good options with regards to the paranoid around NIST recommendations and curves e.g. secp and sect and mostly older curves. Thinking specifically about brainpool which in my research of what cryptographers have come across this one is about as secure as you can get. Right now libressl + openvpn supports it. Also, I'd imagine a lot of people are wondering about cha-cha. I know this would be up for debate but an authoritative list of more curves than I have mentioned that are new would be here - https://safecurves.cr.yp.to/
This is where we can discuss what we would like to see added or changed in OpenVPN.
1 post • Page 1 of 1