From c9b8056cbe3bba1a6c151b0a8af6a15b8ce32fb6 Mon Sep 17 00:00:00 2001 From: fwh-dc <56966127+fwh-dc@users.noreply.github.com> Date: Tue, 27 Aug 2024 08:31:13 +0200 Subject: [PATCH] Adds note on supported openssl versions for tls certificates. [skip ci] (#498) Signed-off-by: Frederik Wedel-Heinen --- USAGE.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/USAGE.md b/USAGE.md index 8682f0c0..74800d68 100644 --- a/USAGE.md +++ b/USAGE.md @@ -196,6 +196,10 @@ to create QSC certificates replacing the key type "dilithium3" with any of the Q [signature algorithms supported](README.md#signature-algorithms). Of course, also any classic signature algorithm like "rsa" may be used. +Note: While generating QSC certificates is supported with OpenSSL 3.0+, using +QSC CA's and server certificates is not supported in versions prior to OpenSSL 3.2. +Refer to [Note on OpenSSL versions](README.md#note-on-openssl-versions). + ### Setting up a (quantum-safe) test server Using keys and certificates as created above, a simple server utilizing a