Jens Vagelpohl jens@dataflake.org wrote:
The issue might have appeared less important back in 2013, but now we have LogJam and DH groups have received proper attention. It would be great if the current release branch of software as important as OpenLDAP would handle those better.
Agreed. Admin-supplied DH parameters and ECDH support (because DH > 1024 bits is really slow) are a raising need.