Change DH parameters to generate the order q subgroup instead of 2q
This avoids leaking bit 0 of the private key. Backport-of: #9363 Reviewed-by: Kurt Roeckx <kurt@roeckx.be> (Merged from https://github.com/openssl/openssl/pull/9435)
parent
8e747338
Please register or sign in to comment