X-Git-Url: https://git.openssl.org/?p=openssl.git;a=blobdiff_plain;f=doc%2Fman3%2FBN_generate_prime.pod;h=6a3376b1fdeb8f79551d1ec696ed925e2c90aefe;hp=5de646d916267ea3f3f666169c12987a3e0bb6bd;hb=03b9393e15990f0e557e477e945cb5f334574696;hpb=28b4880b8b30c3c19ed34068f9cfa8a89af7e737
diff --git a/doc/man3/BN_generate_prime.pod b/doc/man3/BN_generate_prime.pod
index 5de646d916..6a3376b1fd 100644
--- a/doc/man3/BN_generate_prime.pod
+++ b/doc/man3/BN_generate_prime.pod
@@ -58,6 +58,8 @@ BN_generate_prime_ex2() generates a pseudo-random prime number of
at least bit length B using the BN_CTX provided in B. The value of
B must not be NULL.
The returned number is probably prime with a negligible error.
+If B is B the returned prime number will have exact bit
+length B with the top most two bits set.
If B is not B, it will be used to store the number.
@@ -94,7 +96,9 @@ If B is not B, the prime will fulfill the condition p % B
generator.
If B is true, it will be a safe prime (i.e. a prime p so
-that (p-1)/2 is also prime).
+that (p-1)/2 is also prime). If B is true, and B == B
+the condition will be p % B == 3.
+It is recommended that B is a multiple of 4.
The random generator must be seeded prior to calling BN_generate_prime_ex().
If the automatic seeding or reseeding of the OpenSSL CSPRNG fails due to
@@ -218,7 +222,7 @@ and BN_GENCB_get_arg() functions were added in OpenSSL 1.1.0.
=head1 COPYRIGHT
-Copyright 2000-2018 The OpenSSL Project Authors. All Rights Reserved.
+Copyright 2000-2019 The OpenSSL Project Authors. All Rights Reserved.
Licensed under the Apache License 2.0 (the "License"). You may not use
this file except in compliance with the License. You can obtain a copy