mina-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Emmanuel Lécharny <elecha...@gmail.com>
Subject Re: Back to code
Date Tue, 29 Apr 2014 07:35:49 GMT
Le 4/23/14 5:09 PM, Jeff MAURY a écrit :
>    - SSL: We've refactored the SSL process to be more event oriented, but I
>    think we should complete it, mainly related to rehandshake

After having read this :
http://blog.cryptographyengineering.com/2014/04/attack-of-week-triple-handshakes-3shake.html

I'm wondering if it wouldn't be better to explicitely claim that we
won't support renegociation ?


-- 
Regards,
Cordialement,
Emmanuel Lécharny
www.iktek.com 


Mime
View raw message