Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 14 May 2015 17:32:53 +0200
From:      Adam Major <adi@ivpro.net>
To:        freebsd-security@freebsd.org
Subject:   Re: Forums.FreeBSD.org - SSL Issue?
Message-ID:  <5554C025.9090903@ivpro.net>
In-Reply-To: <1431608885.1875421.268665801.1220FE34@webmail.messagingengine.com>
References:  <CACRVPYOALi-V8D34zeJTYdSwHshYrqtttqVV3=aP8Yb6ZAxfyg@mail.gmail.com> <2857899F-802E-4086-AD41-DD76FACD44FB@modirum.com> <05636D22-BBC3-4A15-AC44-0F39FB265CDF@patpro.net> <20150514193706.V69409@sola.nimnet.asn.au> <555476CB.2010005@ivpro.net> <1431608885.1875421.268665801.1220FE34@webmail.messagingengine.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Hello

>> But I don't think disable TLS 1.0 is ok.
>>
> 
> TLS 1.0 is dead and is even now banned in new installations according to
> the PCI DSS 3.1 standards. Nobody should expect TLS 1.0 to be supported
> by *any* HTTPS site now.

Maybe is dead but is used in many old browser / software still used.

In PCI DSS 3.1 merchants must remove SSL and TLS 1.0 to 30 June 2016.
(new installations "in theory" should not be built on TLS 1.0).

So we have 1 year and FreeBSD forum is not e-commerce site ;)

Best Regards.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?5554C025.9090903>