On Thu, Oct 10, 2013 at 12:23 PM, Vick Khera <[email protected]> wrote:

>
>
> To list the "strong" ciphers only, use this: /usr/local/bin/openssl
> ciphers "TLSv1.2:-MD5:-RC4:-aNULL:-MED:-LOW:-EXP:-NULL"
>


MD5 as a hash function has been broken, but that break (fast collision
search) is irrelevant for its use as a component of HMAC. HMAC-MD5 is still
acceptable for many uses, esp. on an ALIX board that's not very fast anyway.



-- 
Gé
_______________________________________________
List mailing list
[email protected]
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to