[Ach] FYI: apache in Debian Stable has ECDH support now

christian mock cm at coretec.at
Tue Jul 15 14:19:40 CEST 2014


On Tue, Jul 15, 2014 at 02:03:13PM +0200, Hanno Böck wrote:

> I think there's still a bunch of things missing. I haven't tested, do
> they support tls 1.2 with gcm? 

Yup.

> What about DH exchange with reasonable modulus size (> 1024 bit)?

Nope, that's missing (seems to be supported from apache 2.4.7 onwards)

> OCSP stapling?

Also missing.

> Do you have a test server?

As posted, https://www.tahina.priv.at/

cm.

-- 
Christian Mock                          Wiedner Hauptstr. 15
Senior Security Engineer                1040 Wien
CoreTEC IT Security Solutions GmbH      +43-1-5037273
FN 214709 z

.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.
CoreTEC: Web Application Audit - Damit so etwas nicht passiert!

http://heise.de/-1260559

.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.



More information about the Ach mailing list