Don't claim ECDH parameters are nothing-up-my-sleeve numbers
This commit is contained in:
parent
e3481ab533
commit
f5dce36a24
1 changed files with 1 additions and 4 deletions
|
@ -43,10 +43,7 @@
|
|||
* primes systematically is not always an option. If possible, use
|
||||
* Elliptic Curve Diffie-Hellman (ECDH), which has better performance,
|
||||
* and for which the TLS protocol mandates the use of standard
|
||||
* parameters that were generated in a nothing-up-my-sleeve manner.
|
||||
* We therefore consider DHE a security risk. If possible, it is
|
||||
* recommended users should consider preferring other methods of
|
||||
* key exchange.
|
||||
* parameters.
|
||||
*
|
||||
*/
|
||||
#ifndef MBEDTLS_DHM_H
|
||||
|
|
Loading…
Reference in a new issue