TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Industry Concerns about TLS 1.3

23 点作者 m0nastic超过 8 年前

4 条评论

runesoerensen超过 8 年前
Good response <a href="https:&#x2F;&#x2F;www.ietf.org&#x2F;mail-archive&#x2F;web&#x2F;tls&#x2F;current&#x2F;msg21278.html" rel="nofollow">https:&#x2F;&#x2F;www.ietf.org&#x2F;mail-archive&#x2F;web&#x2F;tls&#x2F;current&#x2F;msg21278.h...</a>
评论 #12561234 未加载
wolf550e超过 8 年前
So banks want to continue not supporting PFS. Banks can afford to log the private ECDHE key of every connection to decrypt all captured packets at a later date.
aorth超过 8 年前
Wow. My message to the banks: We are trying to build a more secure internet. Update your servers, libraries, etc every few years like the rest of us. You&#x27;re not special. It&#x27;s hard for all of us.
ddp超过 8 年前
The changes in TLS 1.3 are long overdue. There are some of us who argued vociferously to not include some of those bad ciphers but we were overruled, probably by the same cabal that decided to remove IPsec from mandatory-to-implement for IPv6.