< Previous by Date Date Index Next by Date >
< Previous in Thread Thread Index Next in Thread >

Re: [reSIProcate] TLS/WSS support for DH, ECDH and PFS added



On 21/09/15 10:30, Karlsson wrote:
> Hi Daniel, about the Diffie-Hellman (DH) parameters file, does it is
> only one file for global ? For example, I have set more than one TLS
> transports for multiple domains but just need only one DH file, right ?
> And the DH file is a random content not relates to any domain ?
> 

That is correct - one DH parameters file is shared between all
transports and domains.

Also, if you have multiple servers in a cluster, they do not need to use
an identical copy of the DH parameters.