weak cipher in TLS?

moris blues moris at oleco.net
Sat Nov 21 21:42:30 UTC 2009


Helo, 

i red in the tor-spec, that: 

In "backwards-compatible renegotiation", the connection initiator's
ClientHello MUST include at least one ciphersuite other than those listed
above.

Does this mean that a different algorithm can be used that is not in the list?
Then it could theoretically unsafe Algo as DES are being used? 
---- 
versendet mit www.oleco.de Mail - Anmeldung und Nutzung kostenlos!
Oleco www.netlcr.org - jetzt auch mit Spamschutz.
***********************************************************************
To unsubscribe, send an e-mail to majordomo at torproject.org with
unsubscribe or-talk    in the body. http://archives.seul.org/or/talk/



More information about the tor-talk mailing list