badssl.com icon indicating copy to clipboard operation
badssl.com copied to clipboard

badsll.com dashboard : Should a client which accepts 3ᴅᴇꜱ connections no longer be “🆗 OKAY” ?

Open ytrezq opened this issue 6 years ago • 2 comments
trafficstars

Currently on https://badssl.com/dashboard/, if a client supports 3ᴅᴇꜱ by default, The expected result is labeld “🆗 OKAY”. But recently an attacked on 3ᴅᴇꜱ appeared called Sweet32. While it requires a lot of traffic over the same connection, it should be noticed that ʀᴄ4 which is in the same situation (can be broken but with a lot of attempts) gets a “❌ NO” result.

Should a sucessfull connection using 3ᴅᴇꜱ now be considered a “❌ NO” expected result instead of “🆗 OKAY” ?

ytrezq avatar Nov 26 '18 00:11 ytrezq

Firefox will no longer let you connect to a 3ᴅᴇꜱ client.

redcatpaw avatar Apr 21 '22 00:04 redcatpaw

Firefox will no longer let you connect to a 3ᴅᴇꜱ client.

Sounds like a good reason for a PR to change this! :-D

lgarron avatar Apr 28 '22 03:04 lgarron