mintls, maxtls, enclair, and cipher.

Eric S. Raymond esr at thyrsus.com
Sun Feb 3 14:17:29 UTC 2019


Hal Murray <hmurray at megapathdsl.net>:
> Please verify with a TLS wizard that you can do what you are describing with 
> OpenSSL.  I've poked around a bit and don't know how to do that.

My plan is to brute-force the problem. Rather than trying to beat TLS into
talking en clair, I'll make 'enclair' change the socket-fu so TLS never
gets involved at all, the NTS-KE traffic goes over a bare socket.

Of course this will mean the same switch has to be set on ntsd for testing.
I don't see that as a problem.
-- 
		<a href="http://www.catb.org/~esr/">Eric S. Raymond</a>

My work is funded by the Internet Civil Engineering Institute: https://icei.org
Please visit their site and donate: the civilization you save might be your own.




More information about the devel mailing list