Crypto overhaul

Poul-Henning Kamp phk at phk.freebsd.dk
Fri Oct 27 19:24:39 UTC 2017


--------
In message <CAG5KPzws=jmF2wLeEAz8Lzn7Ugude=0w5neoQjeDjYnGtJpS9Q at mail.gmail.com>
, Ben Laurie writes:

>OpenSSL includes (and is used for) lots of crypto that is not used in
>SSL - since BearSSL targets SSL/TLS only, it can't, presumably, be
>used to replace all uses of OpenSSL.

Which implicitly raises the question if we really need all the
boatloads of crap OpenSSL drags in, or if we would be in a better
position with something simpler and saner ?

-- 
Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
phk at FreeBSD.ORG         | TCP/IP since RFC 956
FreeBSD committer       | BSD since 4.3-tahoe    
Never attribute to malice what can adequately be explained by incompetence.


More information about the freebsd-arch mailing list