sx.el icon indicating copy to clipboard operation
sx.el copied to clipboard

Security level lowered to 256 bits

Open rickardnorlander opened this issue 9 years ago • 2 comments

Do: sx-tab-all-questions Happens: Emacs displays a warning that security level of diffie-hellman has been lowered to 256 bits, and that session data may be decrypted.

I don't really know what it means but it sounds bad.

rickardnorlander avatar Apr 20 '15 23:04 rickardnorlander

I'm not sure how to reproduce this issue, but I'll research it. Any additional information you can give me (logs, traces, etc.) would be very helpful :)

Here's what shows up in my *Messages* buffer when I M-x sx-tab-all-questions:

Contacting host: api.stackexchange.com:443
Opening TLS connection to `api.stackexchange.com'...
Opening TLS connection with `gnutls-cli --insecure -p 443 api.stackexchange.com'...done
Opening TLS connection to `api.stackexchange.com'...done
[sx] Done.

Running on OSX 10.10.2 with GNU Emacs 24.5.

vermiculus avatar Apr 21 '15 04:04 vermiculus

Did a quickie and found this:

gnutls.c: [1] Note that the security level of the Diffie-Hellman key exchange
has been lowered to 256 bits and this may allow decryption of the session data

If you’re getting this warning, add the following to your init file:

(setq gnutls-min-prime-bits 1024)

There’s an explanation on the mailing list.

Does that help at all?

vermiculus avatar Apr 21 '15 04:04 vermiculus