User: Password:
|
|
Subscribe / Log in / New account

TLS renegotiation vulnerability

TLS renegotiation vulnerability

Posted Nov 19, 2009 7:48 UTC (Thu) by dlang (subscriber, #313)
Parent article: TLS renegotiation vulnerability

so am I understanding properly that this is a problem in TLS, but not in SSLv3?

so if TLSv1 is disabled and instead everyone uses SSLv3 this problem would not exist?


(Log in to post comments)

TLS renegotiation vulnerability

Posted Nov 19, 2009 15:44 UTC (Thu) by dtlin (✭ supporter ✭, #36537) [Link]

No, this affects all existing versions of the TLS/SSL protocols, including
- SSL 2.0
- SSL 3.0
- TLS 1.0
- TLS 1.1
- TLS 1.2


Copyright © 2017, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds