EXTENDED BCP195 TLS PROFILE

All other questions regarding DCMTK

Moderator: Moderator Team

Post Reply
Message
Author
amal.jesudas
Posts: 36
Joined: Tue, 2017-12-19, 11:49

EXTENDED BCP195 TLS PROFILE

#1 Post by amal.jesudas »

Hi,

We are planning to upgrade our current dcmtk version to latest 3.6.5.
However while checking the TLS related implementations, it was seen that 3.6.5 supports EXTENDED BCP195 TLS PROFILE.
But, not all ciphers suites mentioned in DICOM Sup 206 is seen to be supported.
https://www.dicomstandard.org/News/prog ... sup206.pdf
For example, TLS_DHE_RSA_WITH_CAMELLIA_256_GCM_SHA384.
Is there any specific reason why these were avoided?

Thank & Regards,
Amal

Marco Eichelberg
OFFIS DICOM Team
OFFIS DICOM Team
Posts: 1437
Joined: Tue, 2004-11-02, 17:22
Location: Oldenburg, Germany
Contact:

Re: EXTENDED BCP195 TLS PROFILE

#2 Post by Marco Eichelberg »

DCMTK uses the OpenSSL library to implement TLS functionality and thus can only support the TLS ciphersuites implemented in OpenSSL.
OpenSSL (at least up to, and including release 1.1.1) does not yet support any of the CAMELLIA ciphersuites in GCM mode.

amal.jesudas
Posts: 36
Joined: Tue, 2017-12-19, 11:49

Re: EXTENDED BCP195 TLS PROFILE

#3 Post by amal.jesudas »

Thanks Marco for clarifying the same.

Regards,
Amal

Post Reply

Who is online

Users browsing this forum: Ahrefs [Bot], Bing [Bot], Google [Bot] and 1 guest