summaryrefslogtreecommitdiffstats
path: root/docs/manual/misc/security_tips.xml.es
diff options
context:
space:
mode:
authorWilliam A. Rowe Jr <wrowe@apache.org>2017-05-16 21:33:36 +0200
committerWilliam A. Rowe Jr <wrowe@apache.org>2017-05-16 21:33:36 +0200
commit731634283933cda8c94f27b953f41e0e325db923 (patch)
tree5b91685c0ef272881f94ce12dc3b763108fb4035 /docs/manual/misc/security_tips.xml.es
parentbackported (diff)
downloadapache2-731634283933cda8c94f27b953f41e0e325db923.tar.xz
apache2-731634283933cda8c94f27b953f41e0e325db923.zip
Remove 3DES by default for users of older crypto librarys; the cipher
has been reclassified in current OpenSSL releases as WEAK due to 112 or fewer bits of remaining cipher strength, while the Sweet32 disclosure extended the criticism of RC4 on to 3DES. (IDEA, which potentially has the same issue, is never enabled by default in OpenSSL, due to patent concerns.) This commit does not change default httpd behavior, but alters the suggested behavior of newly provisioned httpd servers. Where adopted, XP with IE8 will no longer handshake with mod_ssl (previously, XP with IE6 would not handshake.) The same net effect occurs where OpenSSL is updated to 1.1.0. git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/trunk@1795358 13f79535-47bb-0310-9956-ffa450edef68
Diffstat (limited to 'docs/manual/misc/security_tips.xml.es')
0 files changed, 0 insertions, 0 deletions