emacs-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: A couple of questions and concerns about Emacs network security


From: Eli Zaretskii
Subject: Re: A couple of questions and concerns about Emacs network security
Date: Mon, 09 Jul 2018 20:02:44 +0300

> From: Lars Ingebrigtsen <address@hidden>
> Cc: address@hidden,  address@hidden
> Date: Sun, 08 Jul 2018 21:28:20 +0200
> 
> Eli Zaretskii <address@hidden> writes:
> 
> >> Users aren't supposed to care about that variable, anyway, since the NSM
> >> warns about less than 1024 bits...
> >
> > Yes, but what if GnuTLS bumps the default to more than that?  And even
> > if not, I think I might like to know how far below 1024 I'm going to
> > be if I allow the connection.
> 
> The NSM will say explicitly how many bits the DH exchange is using.  Try
> this one with `M-x eww'
> 
> https://dh480.badssl.com/
> 
> and you should get the warning.

The warning says

  The Diffie-Hellman prime bits (480) used for this connection to
  dh480.badssl.com:443 is less than what is considered safe (1024)

So it doesn't show the 1008 value.  What did I miss?



reply via email to

[Prev in Thread] Current Thread [Next in Thread]