mirror of
				https://git.proxmox.com/git/pve-http-server
				synced 2025-10-25 03:25:23 +00:00 
			
		
		
		
	|  10f9a4b775 with openssl 1.0.1, we had to limit ourself to one curve to allow ECDHE at all. with openssl 1.1.x, the same limit actually means only allowing ECDSA certificates using that curve, even for non-ephemeral ECDH handshakes, effectively only allowing prime256 EC certificates. since openssl 1.1.x supports auto-negotiation of the curve used for ECDHE, simply use that for now. Signed-off-by: Fabian Grünbichler <f.gruenbichler@proxmox.com> | ||
|---|---|---|
| .. | ||
| APIServer | ||