[SECNET PATCH 04/12] secnet.8: Fix wrong information.

Ian Jackson ijackson at chiark.greenend.org.uk
Sat May 18 01:21:49 BST 2019


From: Mark Wooding <mdw at distorted.org.uk>

No, sites don't all have to use the same DH group.  It's true that sites
have to agree pairwise to use the same group when talking to each other.

Signed-off-by: Mark Wooding <mdw at distorted.org.uk>
---
 secnet.8 | 1 -
 1 file changed, 1 deletion(-)

diff --git a/secnet.8 b/secnet.8
index 0b0afda..9ffa605 100644
--- a/secnet.8
+++ b/secnet.8
@@ -284,7 +284,6 @@ Boolean.
 If \fBtrue\fR (the default) then check if \fIp\fR is prime.
 .PP
 A \fIdh closure\fR defines a group to be used for key exchange.
-The same group must be used by all sites in the VPN.
 
 .SS logfile
 \fBlogfile(\fIDICT\fB)\fR => \fIlog closure\fR
-- 
2.11.0




More information about the sgo-software-discuss mailing list