From mboxrd@z Thu Jan 1 00:00:00 1970 Path: news.gmane.org!.POSTED!not-for-mail From: Lars Ingebrigtsen Newsgroups: gmane.emacs.bugs Subject: bug#31946: 27.0.50; The NSM should warn about more TLS problems Date: Thu, 28 Jun 2018 18:15:52 +0200 Message-ID: References: <87fu1apchn.fsf@gmail.com> <83in65r4n9.fsf@gnu.org> <87y3f1njku.fsf@gmail.com> <87tvpnojgt.fsf@gmail.com> NNTP-Posting-Host: blaine.gmane.org Mime-Version: 1.0 Content-Type: text/plain X-Trace: blaine.gmane.org 1530202449 18555 195.159.176.226 (28 Jun 2018 16:14:09 GMT) X-Complaints-To: usenet@blaine.gmane.org NNTP-Posting-Date: Thu, 28 Jun 2018 16:14:09 +0000 (UTC) User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/27.0.50 (gnu/linux) Cc: 31946@debbugs.gnu.org, Noam Postavsky To: Jimmy Yuen Ho Wong Original-X-From: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Thu Jun 28 18:14:04 2018 Return-path: Envelope-to: geb-bug-gnu-emacs@m.gmane.org Original-Received: from lists.gnu.org ([208.118.235.17]) by blaine.gmane.org with esmtp (Exim 4.84_2) (envelope-from ) id 1fYZYZ-0004gc-Vj for geb-bug-gnu-emacs@m.gmane.org; Thu, 28 Jun 2018 18:14:04 +0200 Original-Received: from localhost ([::1]:37477 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1fYZah-0003IK-DW for geb-bug-gnu-emacs@m.gmane.org; Thu, 28 Jun 2018 12:16:15 -0400 Original-Received: from eggs.gnu.org ([2001:4830:134:3::10]:46157) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1fYZaW-0003HA-7p for bug-gnu-emacs@gnu.org; Thu, 28 Jun 2018 12:16:05 -0400 Original-Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1fYZaV-0000TO-7H for bug-gnu-emacs@gnu.org; Thu, 28 Jun 2018 12:16:04 -0400 Original-Received: from debbugs.gnu.org ([208.118.235.43]:59112) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_128_CBC_SHA1:16) (Exim 4.71) (envelope-from ) id 1fYZaV-0000T2-32 for bug-gnu-emacs@gnu.org; Thu, 28 Jun 2018 12:16:03 -0400 Original-Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1fYZaU-0004Ft-PD for bug-gnu-emacs@gnu.org; Thu, 28 Jun 2018 12:16:02 -0400 X-Loop: help-debbugs@gnu.org Resent-From: Lars Ingebrigtsen Original-Sender: "Debbugs-submit" Resent-CC: bug-gnu-emacs@gnu.org Resent-Date: Thu, 28 Jun 2018 16:16:02 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 31946 X-GNU-PR-Package: emacs X-GNU-PR-Keywords: security Original-Received: via spool by 31946-submit@debbugs.gnu.org id=B31946.153020255816341 (code B ref 31946); Thu, 28 Jun 2018 16:16:02 +0000 Original-Received: (at 31946) by debbugs.gnu.org; 28 Jun 2018 16:15:58 +0000 Original-Received: from localhost ([127.0.0.1]:38776 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1fYZaP-0004FU-Mj for submit@debbugs.gnu.org; Thu, 28 Jun 2018 12:15:57 -0400 Original-Received: from hermes.netfonds.no ([80.91.224.195]:52626) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1fYZaO-0004FI-2m for 31946@debbugs.gnu.org; Thu, 28 Jun 2018 12:15:56 -0400 Original-Received: from cm-84.212.221.165.getinternet.no ([84.212.221.165] helo=stories) by hermes.netfonds.no with esmtpsa (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.84_2) (envelope-from ) id 1fYZaK-0006y1-RM; Thu, 28 Jun 2018 18:15:54 +0200 Face: iVBORw0KGgoAAAANSUhEUgAAADAAAAAwBAMAAAClLOS0AAAAHlBMVEVfXV8SChBDQUB3dHMF BAkCAgaQh3ssJClwbW8EAwgaZRNoAAACSklEQVQ4jW3Uv4+bMBQHcMtUIWNJiXLZ0nfSOSMNEsca ydU1Y6V6YENB8mVMrJPcEYUTYa0EA//tPduQ+9HzgAKffP0eP2wCnw52IuGut6Pr275vOY7eHDiZ m2t9JqxyvkNoHWQonRCZwB+YaltzMCC6rEf486CCcMu4m7g1gP8VQvybeqAO0y+Y4+3OQIYluqz7 7XlMSe95hxd564qH/a7rt94ULLimOFn2C19rTVXVwFHGz0NrBmaPDVPnVRXBHQLn14QFikBvX2E7 AjHwV8aXWe1rpUML+8Z3gDWaOrkcvfiJvwVTvEmSy8orwhHgmngPTP0Pcws2wYYa10Qe+1CuGUXw 13WCt+TgWx7TlZyQEuG8TuTGwXyApIp8W0PuoSqCMUFkPbQbSwqxm+rrPgUVjV1FEiCNHTxG2C4M CQPRB/BHyFNbHAHv3CRuZXE5nhaQszDEd27AJFIDZ28D9ECeggGgXDkgSQS0SE4W7rHGGZoGQMak Ll/hEjHYQIRPTFYfQRkAC+QK5itRG0UazcrSwHkAsZgxPckXWp0WdJUQ2FtYiuxXRfVEptOCLVQi yxGy7qaiMJGxd3gHuAwQGCa83HdAi/qaGECrpDAwGRLxZ7DsPoJit8R2ZQASC0rF9wHnD0GAU/Xi JibawQzBftMIy75DYHWRegcDP95CdGZ3eeo12G7qYGsgQ9AGSoRmgBCLi5vSJqYldjUAN12JrWJB oJiG70FAT2/ADlzVwy4y1sBEYMZPkZkNA0+2FuYjLO0mwx9wbYfY7gsiYj391QNdLwAAAABJRU5E rkJggg== In-Reply-To: (Jimmy Yuen Ho Wong's message of "Thu, 28 Jun 2018 16:58:51 +0100") X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-detected-operating-system: by eggs.gnu.org: GNU/Linux 2.2.x-3.x [generic] X-Received-From: 208.118.235.43 X-BeenThere: bug-gnu-emacs@gnu.org List-Id: "Bug reports for GNU Emacs, the Swiss army knife of text editors" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Original-Sender: "bug-gnu-emacs" Xref: news.gmane.org gmane.emacs.bugs:147914 Archived-At: Jimmy Yuen Ho Wong writes: > A bit more update from my research, the authoritative list of browser > capabilities is actually https://www.ssllabs.com/ssltest/clients.html > . We can see that only IE and Opera still support DHE_RSA KX, and > these browsers don't matter as game changers. (For those who don't read Encryption Acronym Soup, that means "Diffie-Hellman (Ephemeral) key exchange.) I can't see that that web page mentions Diffie-Hellman at all? And Firefox in Debian Stable certainly supports Diffie-Hellman. -- (domestic pets only, the antidote for overdose, milk.) bloggy blog: http://lars.ingebrigtsen.no