5f9a684de5
1024-bit Diffie-Hellman is somewhat weak, but I haven't been able to figure out how to make OpenSSL use longer Diffie-Hellman keys than that. If this isn't available, OpenSSL doesn't let connections proceed. This change should be reverted when we figure out how to make OpenSSL use longer Diffie-Hellman keys.
11 lines
492 B
Plaintext
11 lines
492 B
Plaintext
-----BEGIN DH PARAMETERS-----
|
|
MIGHAoGBAPSI/VhOSdvNILSd5JEHNmszbDgNRR0PfIizHHxbLY7288kjwEPwpVsY
|
|
jY67VYy4XTjTNP18F1dDox0YbN4zISy1Kv884bEpQBgRjXyEpwpy1obEAxnIByl6
|
|
ypUM2Zafq9AKUJsCRtMIPWakXUGfnHy9iUsiGSa6q6Jew1XpL3jHAgEC
|
|
-----END DH PARAMETERS-----
|
|
|
|
These are the 1024 bit DH parameters from "Assigned Number for SKIP Protocols"
|
|
(http://www.skip-vpn.org/spec/numbers.html).
|
|
See there for how they were generated.
|
|
Note that g is not a generator, but this is not a problem since p is a safe prime.
|