TLS authentication KEY_SIZE=4096



  • Hi!

    How can i create key size 4096 (or more)?
    ![2017-12-04 07_40_23.png](/public/imported_attachments/1/2017-12-04 07_40_23.png)
    ![2017-12-04 07_40_23.png_thumb](/public/imported_attachments/1/2017-12-04 07_40_23.png_thumb)


  • LAYER 8 Global Moderator

    Why would you want to do that?  that is just the shared secret.. Really no point in that being any higher..

    https://community.openvpn.net/openvpn/wiki/Hardening

    that is the shared secret key, anything over 2048 is just pointless.. This is the key used to sign the tls packets..  Would be better to set your tls min to 1.2 and enable tls encryption… Keep in mind that the some clients do not support tls crypt - I do not believe the ios openvpn connect app as enabled its use yet, etc.  But really don't see how increasing that would matter..


Log in to reply