data:image/s3,"s3://crabby-images/d31d0/d31d0d16377e2b0eac4d66173b3735ef18e3b7f7" alt="Sean Parkinson"
Digest size compared to key size - P521 has large key size. Fixed to round down. Added P-521 keys and certificates. Added testing of P-521 keys and certificcates to unittest.
62 lines
1.4 KiB
Plaintext
62 lines
1.4 KiB
Plaintext
# server TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-c ./certs/p521/server-p521.pem
|
|
-k ./certs/p521/server-p521-priv.pem
|
|
-d
|
|
|
|
# client TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-A ./certs/p521/root-p521.pem
|
|
-C
|
|
|
|
# server TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-c ./certs/p521/server-p521.pem
|
|
-k ./certs/p521/server-p521-priv.pem
|
|
-A ./certs/p521/client-p521.pem
|
|
-V
|
|
# Remove -V when CRL for P-521 certificates available.
|
|
|
|
# client TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-v 3
|
|
-l ECDHE-ECDSA-AES128-GCM-SHA256
|
|
-c ./certs/p521/client-p521.pem
|
|
-k ./certs/p521/client-p521-priv.pem
|
|
-A ./certs/p521/root-p521.pem
|
|
-C
|
|
|
|
# server TLSv1.3 TLS13-AES128-GCM-SHA256
|
|
-v 4
|
|
-l TLS13-AES128-GCM-SHA256
|
|
-c ./certs/p521/server-p521.pem
|
|
-k ./certs/p521/server-p521-priv.pem
|
|
-d
|
|
|
|
# client TLSv1.3 TLS13-AES128-GCM-SHA256
|
|
-v 4
|
|
-l TLS13-AES128-GCM-SHA256
|
|
-A ./certs/p521/root-p521.pem
|
|
-C
|
|
|
|
# Enable when CRL for P-521 certificates available.
|
|
# server TLSv1.3 TLS13-AES128-GCM-SHA256
|
|
-v 4
|
|
-l TLS13-AES128-GCM-SHA256
|
|
-c ./certs/p521/server-p521.pem
|
|
-k ./certs/p521/server-p521-priv.pem
|
|
-A ./certs/p521/client-p521.pem
|
|
-V
|
|
# Remove -V when CRL for P-521 certificates available.
|
|
|
|
# client TLSv1.3 TLS13-AES128-GCM-SHA256
|
|
-v 4
|
|
-l TLS13-AES128-GCM-SHA256
|
|
-c ./certs/p521/client-p521.pem
|
|
-k ./certs/p521/client-p521-priv.pem
|
|
-A ./certs/p521/root-p521.pem
|
|
-C
|
|
|