Re: [us...@httpd] Is it okay to not use exportable ciphers?

2009-09-10 Thread Matus UHLAR - fantomas
On 20.08.09 15:16, Brian Mearns wrote: For the sake of security, I'd like to configure my SSL/TLS server to not allow export level ciphers (using the SSLCipherSuite directive). Is this going to realistically limit the number of people who can use a secure connection to my site? Specifically,

[us...@httpd] Is it okay to not use exportable ciphers?

2009-08-20 Thread Brian Mearns
For the sake of security, I'd like to configure my SSL/TLS server to not allow export level ciphers (using the SSLCipherSuite directive). Is this going to realistically limit the number of people who can use a secure connection to my site? Specifically, will visitors from other countries (outside

Re: [us...@httpd] Is it okay to not use exportable ciphers?

2009-08-20 Thread Sander Temme
On Aug 20, 2009, at 3:16 PM, Brian Mearns wrote: For the sake of security, I'd like to configure my SSL/TLS server to not allow export level ciphers (using the SSLCipherSuite directive). Is this going to realistically limit the number of people who can use a secure connection to my site?

Re: [us...@httpd] Is it okay to not use exportable ciphers?

2009-08-20 Thread Brian Mearns
On Thu, Aug 20, 2009 at 3:24 PM, Sander Temmescte...@apache.org wrote: On Aug 20, 2009, at 3:16 PM, Brian Mearns wrote: For the sake of security, I'd like to configure my SSL/TLS server to not allow export level ciphers (using the SSLCipherSuite directive). Is this going to realistically

Re: [us...@httpd] Is it okay to not use exportable ciphers?

2009-08-20 Thread Crypto Sal
On 08/20/2009 03:40 PM, Brian Mearns wrote: On Thu, Aug 20, 2009 at 3:24 PM, Sander Temmescte...@apache.org wrote: On Aug 20, 2009, at 3:16 PM, Brian Mearns wrote: For the sake of security, I'd like to configure my SSL/TLS server to not allow export level ciphers (using the