[CentOS] SSH Weak Ciphers

Gordon Messmer gordon.messmer at gmail.com
Wed Oct 19 17:31:43 UTC 2016


On 10/19/2016 08:30 AM, Leonard den Ottolander wrote:
> Where did you get the idea that AES (~ Rijndael) is a weak cipher?


It's not the cipher, but the mode.  CBC has several known weaknesses in 
TLS, and is frequently regarded as potentially insecure as a result.

https://www.openssl.org/~bodo/tls-cbc.txt





More information about the CentOS mailing list