[Ach] Update adds new TLS cipher suites and changes cipher suite prioritiesin Windows 8.1 and Windows Server 2012 R2

Julien Vehent julien at linuxwall.info
Sun Apr 13 16:28:28 CEST 2014


On 2014-04-13 10:17, Hanno Böck wrote:
> On Sun, 13 Apr 2014 15:29:55 +0200
> Kurt Roeckx <kurt at roeckx.be> wrote:
> 
>> On Sun, Apr 13, 2014 at 02:56:30PM +0200, Aaron Zauner wrote:
>> > http://support.microsoft.com/kb/2929781/en-us
>> 
>> ECDHE-RSA-AES*-GCM-SHA* still seems to be missing, which really is
>> the cipher we want.
> 
> One can have different opinions on that, at least as long as we don't
> have trustworthy elliptic curves defined.

In which case they probably shoudn't have 
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256 at the top of their 
ciphersuite...

- Julien



More information about the Ach mailing list