Security/Server Side TLS: Difference between revisions

Jump to navigation Jump to search
m
Line 454: Line 454:
|}
|}


The recommended ciphersuite was tested on each system. The list below shows the ciphersuites supported by all tested systems. However old your setup may be, it is safe to assume that the following ciphers are going to be available, in the following order:
The recommended ciphersuite was tested on each system. The list below shows the ciphersuites supported by all tested systems. However old your setup may be, it is safe to assume that the following ciphers are going to be available:
 
* RC4-SHA
{| class="wikitable"
* DHE-RSA-AES128-SHA
|-
* DHE-RSA-AES256-SHA
! Cipher !! Has Forward Secrecy !! Issues
* AES128-SHA
|-
* AES256-SHA
| RC4-SHA || No || RC4 Warning
* DHE-DSS-AES128-SHA
|-
* DHE-DSS-AES256-SHA
| DHE-RSA-AES128-SHA || Yes || vulnerable to BEAST
|-
| DHE-RSA-AES256-SHA || Yes || vulnerable to BEAST
|-
| AES256-SHA || No || vulnerable to BEAST
|-
| DHE-DSS-AES128-SHA || Yes || vulnerable to BEAST
|-
| DHE-DSS-AES256-SHA || Yes || vulnerable to BEAST
|-
| AES128-SHA || No || vulnerable to BEAST
|}


== Attacks on TLS ==
== Attacks on TLS ==
Confirmed users
529

edits

Navigation menu