[Pkg-openssl-devel] syncing up openssl dev efforts, DEfO making custom packages for ECH support

Kurt Roeckx kurt at roeckx.be
Thu Aug 31 09:00:05 BST 2023


On Wed, Aug 30, 2023 at 09:33:58PM +0200, Sebastian Andrzej Siewior wrote:
> 
> Now integrating ECH into the Debian package. This will be tough. I would
> need to sync with Kurt on this, too. However, if it is not in upstream
> then it is some out-of-tree that asks to be included. Adding just a
> cipher would be "easier" since it would be isolated piece of code
> without any exported symbols. This however is part of every TLS
> handshake and there critical in terms security and or memory leaks and
> so on.

I think he wants to provide his own .deb packages, not in Debian, so
people can test it.

It's my understanding that he's part of the effort to get ECH in
upstream OpenSSL, and they're still working on the new APIs for it. But
in the mean time would like to provide .deb packages and might need
help in making them.


Kurt




More information about the Pkg-openssl-devel mailing list