[CentOS] SSH Weak Ciphers

Wed Oct 19 17:31:43 UTC 2016
Gordon Messmer <gordon.messmer at gmail.com>

On 10/19/2016 08:30 AM, Leonard den Ottolander wrote:
> Where did you get the idea that AES (~ Rijndael) is a weak cipher?


It's not the cipher, but the mode.  CBC has several known weaknesses in 
TLS, and is frequently regarded as potentially insecure as a result.

https://www.openssl.org/~bodo/tls-cbc.txt