mbedtls: enable DHE-RSA key exchange
authorMagnus Kroken <mkroken@gmail.com>
Fri, 30 Dec 2016 00:31:29 +0000 (01:31 +0100)
committerFelix Fietkau <nbd@nbd.name>
Fri, 30 Dec 2016 12:06:43 +0000 (13:06 +0100)
commit8ed11ebf7ddaa4888ab6f2c3ee6b744372cc9487
tree81b61ba406c5a8a450c80a0d0fd0d317e7a177bd
parentca963bbf5fc0446c35ea578ec1476b5282c0cd66
mbedtls: enable DHE-RSA key exchange

Later OpenVPN 2.3-openssl versions only enable
TLS cipher suites with perfect forward secrecy, i.e. DHE and ECDHE
cipher suites. ECDHE key exchange is not supported by
OpenVPN 2.3-openssl, enable DHE key exchange to allow LEDE
OpenVPN 2.4-mbedtls clients to connect to such servers.

Signed-off-by: Magnus Kroken <mkroken@gmail.com>
Reported-by: Martin Blumenstingl <martin.blumenstingl@googlemail.com>
Reported-by: Lucian Cristian <luci@createc.ro>
package/libs/mbedtls/patches/200-config.patch