On Tue, Jan 7, 2014 at 10:18 AM, Guus Sliepen <[email protected]> wrote:
> The default values are already pretty good (2048 bits RSA keys, Blowfish-CBC,
> and SHA1).

Isn't SHA1 considered unsafe now and not recommended for new
deployments? I know it's still only weakened and not broken but to
stay on the safe side shouldn't we me migrating away from it?

Pedro
_______________________________________________
tinc mailing list
[email protected]
http://www.tinc-vpn.org/cgi-bin/mailman/listinfo/tinc

Reply via email to