plan9fox/sys
cinap_lenrek 17a67eeb65 libsec: implement server side SCSV preventing silly client fallbacks
silly clients (web*) reconnect when the handshake failed with a lower
protocol version, which allows downgrade attacks (POODLE). but instead
of stopping this madness, they invented a new magic TLSID to indicate
to the server that this connection attempt is a retry, and rely on the
server to notice and stop them from sabotaging themselfs.
2016-04-22 02:33:29 +02:00
..
doc
games/lib
include libsec: implement elliptic curve group operations in jacobian coordinate system 2016-04-20 20:09:59 +02:00
lib Subject: typo: ee corrected (thanks Eric Lindblad) 2016-04-13 15:54:31 +02:00
man rsagen: increase default key size to 2048 bits 2016-04-21 21:25:33 +02:00
src libsec: implement server side SCSV preventing silly client fallbacks 2016-04-22 02:33:29 +02:00