via cert generator provided through UCI/LuCI (luci-app-uhttpd)
manually cert generation through userland
For the former is seems to support only RSA signature algorithm but not EdDSA or ECDSA, least could not get it to work. Cert generation settings are in the config cert section of /etc/config/uhttpd
config cert 'defaults'
option days '730'
option country 'ZZ'
option state 'Somewhere'
option location 'Unknown'
option commonname 'openwrt'
option key_type ec
but this just creates https cert and doesn't change the the tls version to 1.3 and only 1.2.
I don't think using a changed cert make a web server use tls1.3 ?
for example on desktop I have to specify tls version for nginx.
but I dont see anything like that for uhttpd.