Changes between Version 19 and Version 20 of TipAndDoc/ssl
- Timestamp:
- Jun 8, 2013 5:05:52 AM (11 years ago)
Legend:
- Unmodified
- Added
- Removed
- Modified
-
TipAndDoc/ssl
v19 v20 8 8 9 9 * [https://www.ssllabs.com/ssltest/ Qualys SSL Labs - Projects / SSL Server Test] 10 * http://en.wikipedia.org/wiki/Transport_Layer_Security#Dealing_with_RC4_and_BEAST10 * wikipedia:Transport_Layer_Security#Dealing_with_RC4_and_BEAST 11 11 > The best choice is to only allow TLS 1.1 and TLS 1.2, but Firefox only supports TLS 1.0 and SSL 3.0 and Opera and Internet Explorer have support for TLS 1.1 and TLS 1.2 disabled by default. In most web servers, only one cipher can be assigned as the preferred cipher. Choosing RC4 is still the best choice for TLS 1.0, but not for TLS 1.1 and TLS 1.2. Choosing AES (CBC cipher) is secure for TLS 1.1 and TLS 1.2, but not for TLS 1.0 due to the BEAST attack. 12 12