❦ 20 février 2015 22:50 +0100, Kurt Roeckx <k...@roeckx.be> :

> Please note that RC4 in the default configuration should never be
> negiotated by modern clients and servers.  The problem is
> administrators who think they know better changed somethign not to
> use the defaults.  If we adjust the defaults it's not going to fix
> anything.

Many administrators don't use the defaults because the defaults are most
of the time inappropriate for a web server. At some time, RC4 was widely
advertised as the preferred cipher because it was immune to BEAST and
supported by all browsers from IE6.
-- 
Watch out for off-by-one errors.
            - The Elements of Programming Style (Kernighan & Plauger)

Attachment: signature.asc
Description: PGP signature

Reply via email to