Anybody tried solving the TLS downgrade problem by just negotiating TLS-1.2-only ciphersuites (GCM in particular) in TLS < 1.2 handshakes?
-
-
@BRIAN_____@ivanristic I have already sent it to the director of windows security (a few days ago) let me know if you want intro also.Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@BRIAN_____@ivanristic This is all handled below IE in SChannel.@nasko may have a good suggestion on who to talk to. -
@ericlaw@BRIAN_____@ivanristic Ping me over email. nasko@ my blog domain.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.