From 21ed9480d7ca1e39c98e50c019ba40831ec9bcfb Mon Sep 17 00:00:00 2001 From: Matt Johnston Date: Fri, 15 Jan 2016 00:19:11 +0800 Subject: add dh group15 and group16, disabled by default --- options.h | 5 +++++ 1 file changed, 5 insertions(+) (limited to 'options.h') diff --git a/options.h b/options.h index 27e2a02..1be412b 100644 --- a/options.h +++ b/options.h @@ -152,6 +152,11 @@ If you test it please contact the Dropbear author */ * on x86-64 */ #define DROPBEAR_ECDSA +/* These larger DH groups (3072 and 4096 bit respectively) add to binary size + and may be significantly slower. Usually ECDH or curve25519 will be a better option */ +/*#define DROPBEAR_DH_GROUP15*/ +/*#define DROPBEAR_DH_GROUP16*/ + /* Generate hostkeys as-needed when the first connection using that key type occurs. This avoids the need to otherwise run "dropbearkey" and avoids some problems with badly seeded /dev/urandom when systems first boot. -- cgit v1.2.3