logjam attack and exim4
Hi,
there are already some help web sites around, e.g.:
Logjam: How Diffie-Hellman Fails in Practice
https://weakdh.org/
(browser check; for iceweasel one can de-activate
security.ssl3.dhe_dss_aes_128_sha, security.ssl3.dhe_rsa_aes_128_sha,
security.ssl3.dhe_rsa_aes_256_sha via about:config)
Logjam: PFS Deployment Guide
https://weakdh.org/sysadmin.html
(tips for server apache, nginx, dovecot, ...)
Secure Secure Shell
https://stribika.github.io/2015/01/04/secure-secure-shell.html
What about DHE hardening for exim4 smtp server?
--
Regards,
jvp.
Reply to: