[tor-bugs] #12217 [Website]: Fix website weak key exchange

Tor Bug Tracker & Wiki blackhole at torproject.org
Fri Jun 6 07:39:38 UTC 2014


#12217: Fix website weak key exchange
-------------------------+---------------------
 Reporter:  UserUnknown  |          Owner:
     Type:  defect       |         Status:  new
 Priority:  normal       |      Milestone:
Component:  Website      |        Version:
 Keywords:               |  Actual Points:
Parent ID:               |         Points:
-------------------------+---------------------
 The website uses a 2048 bit certificate, but when PFS ciphers are
 used(DHE), the key-exchange is limited to 1024 bits, because the DH
 parameters are configured to 1024 bits.

 https://www.ssllabs.com/ssltest/analyze.html?d=torproject.org

 (If it's possible, please enable OCSP stapling was well.)

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/12217>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list