[tor-bugs] #5598 [Tor Relay]: Turn DynamicDHGroups off by default

Tor Bug Tracker & Wiki torproject-admin at torproject.org
Sat May 26 06:17:26 UTC 2012


#5598: Turn DynamicDHGroups off by default
-------------------------+--------------------------------------------------
 Reporter:  rransom      |          Owner:                    
     Type:  enhancement  |         Status:  new               
 Priority:  normal       |      Milestone:  Tor: 0.2.3.x-final
Component:  Tor Relay    |        Version:                    
 Keywords:               |         Parent:                    
   Points:               |   Actualpoints:                    
-------------------------+--------------------------------------------------

Comment(by arma):

 Replying to [comment:5 nickm]:
 >   * might get blocked someday, if a censor is willing to block every
 mod_ssl installation that negotiates DH with the default group.

 While we're talking about people who might block all apache ssl servers,
 consider people who might block every ssl handshake *except* apache ssl
 servers.

 Both seem far enough down the arms race that we're not going to predict
 much at this point.

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/5598#comment:6>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list