diff options
author | Tobias Nießen <tniessen@tnie.de> | 2023-03-12 19:35:55 +0100 |
---|---|---|
committer | GitHub <noreply@github.com> | 2023-03-12 18:35:55 +0000 |
commit | 2660a321e15196b8bc69320db9fc7e3bbe2d05ef (patch) | |
tree | 862dbde242de966323a5bfed2d1f2df0279c35cc /onboarding.md | |
parent | 7f2ab4e629852741f3b4a879ff622082711e4b45 (diff) | |
download | node-new-2660a321e15196b8bc69320db9fc7e3bbe2d05ef.tar.gz |
tls: support automatic DHE
Node.js has so far only supported user-defined DHE parameters and even
recommended generating custom parameters. This change lets users set the
dhparam option to 'auto' instead, in which case DHE parameters of
sufficient strength are selected automatically (from a small set of
well-known parameters). This has been recommended by OpenSSL for quite a
while, and it makes it much easier for Node.js TLS servers to properly
support DHE-based perfect forward secrecy.
This also updates the documentation to prioritize ECDHE over DHE, mostly
because the former tends to be more efficient and is enabled by default.
PR-URL: https://github.com/nodejs/node/pull/46978
Reviewed-By: Luigi Pinca <luigipinca@gmail.com>
Reviewed-By: Ben Noordhuis <info@bnoordhuis.nl>
Diffstat (limited to 'onboarding.md')
0 files changed, 0 insertions, 0 deletions