On Fri, November 1, 2013 5:30 pm, Wan-Teh Chang wrote:
>  On Fri, Nov 1, 2013 at 1:28 AM, Jeff Hodges <j...@somethingsimilar.com>
>  wrote:
> >
> > I dug through the NSS codebase and found where it was defined in
> > lib/ssl/sslproto.h as:
> >
> >   /* New non-experimental openly spec'ed versions of those cipher
> > suites. */
> >   #define SSL_RSA_FIPS_WITH_3DES_EDE_CBC_SHA 0xfeff
> >   #define SSL_RSA_FIPS_WITH_DES_CBC_SHA       0xfefe
>
>  We should remove these two nonstandard cipher suites from NSS.
>
>  Wan-Teh
>  --
>  dev-tech-crypto mailing list
>  dev-tech-crypto@lists.mozilla.org
>  https://lists.mozilla.org/listinfo/dev-tech-crypto
>

+1

Filed https://bugzilla.mozilla.org/show_bug.cgi?id=934033 for interested
parties to track.

-- 
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to