Enable elliptic curve NISTP in openssl from base
zaphod at berentweb.com
Wed Nov 19 12:42:32 UTC 2014
My TOR log shows below for start up. I don't have security/openssl installed as I'm using that from base. Also that's not among the depends ports for security/tor.
"We were built to run on a 64-bit CPU, with OpenSSL 1.0.1 or later, but with a version of OpenSSL that apparently lacks accelerated support for the NIST P-224 and P-256 groups. Building openssl with such support (using the enable-ec_nistp_64_gcc_128 option when configuring it) would make ECDH much faster."
I cannot find any extra setting in /etc/src.conf that would enable this. The man page mentions EC, and I have generated SSL/EC keys as test which works.
I don't know where to look from here.
More information about the freebsd-questions