ITS#7595 more doc for elliptic curve

This commit is contained in:
Howard Chu 2013-09-07 10:13:40 -07:00
parent 69f810d549
commit 9562ad00bd

View File

@ -203,6 +203,18 @@ or
This directive is ignored with Mozilla NSS. This directive is ignored with Mozilla NSS.
H4: TLSECName <name>
This directive specifies the curve to use for Elliptic Curve
Diffie-Hellman ephemeral key exchange. This is required in order
to use ECDHE-based cipher suites in OpenSSL. The names of supported
curves may be shown using the following command
> openssl ecparam -list_curves
This directive is not used for GnuTLS and is ignored with Mozilla NSS.
For GnuTLS the curves may be specified in the ciphersuite.
H4: TLSVerifyClient { never | allow | try | demand } H4: TLSVerifyClient { never | allow | try | demand }
This directive specifies what checks to perform on client certificates This directive specifies what checks to perform on client certificates