[gnutls-devel] chacha

James Cloos cloos at jhcloos.com
Thu Apr 16 17:05:35 CEST 2015


Are there any sites which accept CCA1?

I found that cloudflare has enabled chacha-poly site wide, but from
what I can determine (mostly by way of ssllabs¹) they expect CC13.

I had some difficulty in getting gnutls-cli to send the CCAx suites in
the clienthello.  I just tested again and using priority:

 SECURE128:+CHACHA20-POLY1305

finally worked.

1] https://www.ssllabs.com/ssltest/analyze.html?d=cloudflare.com

-JimC
-- 
James Cloos <cloos at jhcloos.com>         OpenPGP: 0x997A9F17ED7DAEA6



More information about the Gnutls-devel mailing list