Franco Fichtner ca18801b96 crypto: address a few potential loopholes for #logjam
o Regenerate all dhparam files.  (Looksie, we don't have under 1024!)

o Make beast mitigation the default, been around since 2011.

o Tweak the cipher settings via recommendations below.

Open points are the zapping of 1024 bit dhparam and how we should
handle dhparam shipping in the future.  Please write in to discuss.  :)

Taken from: https://weakdh.org/sysadmin.html
2015-05-22 14:26:31 +02:00
..
2015-05-22 08:47:40 +02:00
2015-04-24 09:07:54 +02:00
2015-05-12 23:58:35 -04:00