nginx only allows P-256 and X25519 while ats-tls is currently accepting other curves:
vgutierrez@cp5001:~$ openssl s_client -connect 127.0.0.1:443 -curves secp521r1 2>&1 </dev/null |egrep "Server Temp Key|Cipher" Server Temp Key: ECDH, P-521, 521 bits New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Cipher : ECDHE-RSA-CHACHA20-POLY1305 vgutierrez@cp5001:~$ openssl s_client -connect 127.0.0.1:4443 -curves secp521r1 2>&1 </dev/null |egrep "Server Temp Key|Cipher" # nginx is currently listening on port 4443 Server Temp Key: DH, 2048 bits New, SSLv3, Cipher is DHE-RSA-AES128-SHA Cipher : DHE-RSA-AES128-SHA