Re: [cryptography] no, don't advertise that you support SSLv2!

2015-08-04 Thread ianG
On 4/08/2015 05:29 am, Patrick Pelletier wrote: I was on an e-commerce site today, and was horrified when I saw the following badge: https://lib.store.yahoo.net/lib/yhst-11870311283124/secure.gif Did they still have SSLv2 enabled? I checked, and luckily they don't:

Re: [cryptography] no, don't advertise that you support SSLv2!

2015-08-04 Thread shawn wilson
Yahoo has always had lax security (weak spam filters, no bad pass lock, no attachment virus scan). But as a news site (as long as their reporters get to have better security), they don't do bad. On Aug 3, 2015 10:03 PM, Patrick Pelletier c...@funwithsoftware.org wrote: I was on an e-commerce

Re: [cryptography] no, don't advertise that you support SSLv2!

2015-08-04 Thread Kevin
On 8/4/2015 12:29 AM, Patrick Pelletier wrote: I was on an e-commerce site today, and was horrified when I saw the following badge: https://lib.store.yahoo.net/lib/yhst-11870311283124/secure.gif Did they still have SSLv2 enabled? I checked, and luckily they don't: