[tor-bugs] #12217 [Website]: Fix website weak key exchange
Tor Bug Tracker & Wiki
blackhole at torproject.org
Fri Jun 6 07:39:38 UTC 2014
#12217: Fix website weak key exchange
-------------------------+---------------------
Reporter: UserUnknown | Owner:
Type: defect | Status: new
Priority: normal | Milestone:
Component: Website | Version:
Keywords: | Actual Points:
Parent ID: | Points:
-------------------------+---------------------
The website uses a 2048 bit certificate, but when PFS ciphers are
used(DHE), the key-exchange is limited to 1024 bits, because the DH
parameters are configured to 1024 bits.
https://www.ssllabs.com/ssltest/analyze.html?d=torproject.org
(If it's possible, please enable OCSP stapling was well.)
--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/12217>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
More information about the tor-bugs
mailing list