I wonder if the new exprerimental --without-openssl option on both client and server side makes many of these tweaks unnecessary?