Hacker News new | ask | show | jobs
by leonidasrup 24 days ago
Don't roll your own crypto, use what?

OpenSSL ?

LibreSSL, created as a response to the OpenSSL Heartbleed security vulnerability?

Any alternative SSL/TLS library?

Non-SSL/TLS cryptography? NaCL, Libsodium? Post-quantum crypto?

There are many libraries, with different applications, protocol, crypto algorithms. Some implement everything, some implement secure minimum.

Then the question is PKI, who do you trust your keys? Which SSL certificates do you trust?