emacs-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: A couple of questions and concerns about Emacs network security


From: Jimmy Yuen Ho Wong
Subject: Re: A couple of questions and concerns about Emacs network security
Date: Sun, 8 Jul 2018 20:31:09 +0100

On Sun, Jul 8, 2018 at 8:28 PM Lars Ingebrigtsen <address@hidden> wrote:
>
> Eli Zaretskii <address@hidden> writes:
>
> >> Users aren't supposed to care about that variable, anyway, since the NSM
> >> warns about less than 1024 bits...
> >
> > Yes, but what if GnuTLS bumps the default to more than that?  And even
> > if not, I think I might like to know how far below 1024 I'm going to
> > be if I allow the connection.
>
> The NSM will say explicitly how many bits the DH exchange is using.  Try
> this one with `M-x eww'
>
> https://dh480.badssl.com/
>
> and you should get the warning.
>

That's only because 480 > 256.  I think Eli wants to know the bit
length if we leave gnutls-min-prime-bits to nil. In my other emails
I've pointed out a way to do that.



reply via email to

[Prev in Thread] Current Thread [Next in Thread]