Hoi! On 09 Dec 2014, at 00:20, Aaron Zauner <azet at azet.org> wrote: > apply POODLE to TLS < 1.2. Would that really be applicable to TLS 1.1 since checking the padding is required for 1.1. Just curious for my own understanding, not trying to argue into TLS 1.1 which nobody really uses anyway. Best regards Pepi