Sounds like this bug: https://bugzilla.redhat.com/show_bug.cgi?id=1022468
TL;DR:
OpenSSL shipped in RHEL-6.5 supports only two curves, ones specified in Suite B.
It does advertise support for all of the upstream ones in Client Hello
message in elliptic_curves extension.
On Wed, Mar 19, 2014 at 9:34 AM, perry <perry at couprie.net> wrote:
> Hi,
>
> I just tried to generate keys for tinc.
>
> /usr/sbin/tinc generate-keys
>
> When generating the key, the rsa key are generated.
> But ik get de following error, what does it means.
>
> Generating ECDSA keypair:
> Generating EC key failed: error:100AE081:elliptic curve
> routines:EC_GROUP_new_by_curve_name:unknown groupError during key
> generation!
>
> Perry
> _______________________________________________
> tinc mailing list
> tinc at tinc-vpn.org
> http://www.tinc-vpn.org/cgi-bin/mailman/listinfo/tinc
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL:
<http://www.tinc-vpn.org/pipermail/tinc/attachments/20140319/636b8c44/attachment.html>