ssl_prefer_server_ciphers

Gena Makhomed gmm at csdoc.com
Thu Sep 12 21:43:23 UTC 2013


On 12.09.2013 23:36, Dmitry Morozovsky wrote:

> разве не AES'ом нынче в основном пользуются
> для криптования транспорта https/tls?

~50%.

After the BEAST attack was disclosed in 2011, we—grudgingly—started 
using RC4 in order to avoid the vulnerable CBC suites in TLS 1.0 and 
earlier. This caused the usage of RC4 to increase, and some say that it 
now accounts for about 50% of all TLS traffic.

https://community.qualys.com/blogs/securitylabs/2013/03/19/rc4-in-tls-is-broken-now-what

-- 
Best regards,
  Gena



Подробная информация о списке рассылки nginx-ru