Hello Maxim,
On Tue, 5 Jun 2018, at 23:20:31 [GMT +0300] (which was 22:20 where I
live) Maxim wrote:

> The Bat! 8.3.0.26 (BETA) is available at
> https://www.ritlabs.com/download/files3/the_bat/beta/tb83026-32.rar

> What's new in 8.3.0.26 since 8.3.0.25:
> [+] TLS 1.2 (but ECDHE is not yet supported)

Fails to connect with TLS 1.2 to a IMAP mail server with modern
ciphers
TLS handshake failure for imap.vivaldi.net

account log shows:
 06.06.2018, 09:59:17: IMAP  - Connecting to IMAP server imap.vivaldi.net on 
port 993
 06.06.2018, 09:59:17: IMAP  - Initiating TLS handshake
!06.06.2018, 09:59:17: IMAP  - TLS handshake failure. Connect failed

I checked what the server can handle:

analyze-ssl.pl --all-ciphers imap.vivaldi.net
-- imap.vivaldi.net port 443
 * maximum SSL version  : TLSv1_2 (SSLv23)
 * supported SSL versions with handshake used and preferred cipher(s):
   * handshake protocols ciphers
   * SSLv23    TLSv1_2   ECDHE-RSA-AES256-GCM-SHA384
   * TLSv1_2   TLSv1_2   ECDHE-RSA-AES256-GCM-SHA384
   * TLSv1_1   TLSv1_1   ECDHE-RSA-AES256-SHA
   * TLSv1     TLSv1     ECDHE-RSA-AES256-SHA
   * SSLv3     FAILED: SSL connect attempt failed because of handshake problems 
error:14094410:SSL routines:ssl3_read_bytes:sslv3 alert handshake failure
 * cipher order by      : server
 * SNI supported        : ok
 * certificate verified : ok
 * chain on 82.221.130.152
   * [0/0] bits=2048, ocsp_uri=http://ocsp.int-x3.letsencrypt.org, 
/CN=imap.vivaldi.net 
SAN=DNS:imap.vivaldi.net,DNS:mail.vivaldi.net,DNS:pop3.vivaldi.net
   * [1/1] bits=2048, ocsp_uri=http://isrg.trustid.ocsp.identrust.com, 
/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
   * [-/2] bits=2048, ocsp_uri=, /O=Digital Signature Trust Co./CN=DST Root CA 
X3
 * OCSP stapling        : no stapled response
 * OCSP status          : good
 * supported ciphers with SSLv23 handshake
   * TLSv1_2 ECDHE-RSA-AES256-GCM-SHA384
   * TLSv1_2 ECDHE-RSA-AES128-GCM-SHA256
   * TLSv1_2 DHE-RSA-AES256-GCM-SHA384
   * TLSv1_2 DHE-RSA-AES128-GCM-SHA256
   * TLSv1_2 ECDHE-RSA-AES256-SHA384
   * TLSv1_2 ECDHE-RSA-AES256-SHA
   * TLSv1_2 DHE-RSA-AES256-SHA256
   * TLSv1_2 DHE-RSA-AES256-SHA
   * TLSv1_2 ECDHE-RSA-AES128-SHA256
   * TLSv1_2 ECDHE-RSA-AES128-SHA
   * TLSv1_2 DHE-RSA-AES128-SHA256
   * TLSv1_2 DHE-RSA-AES128-SHA
   * TLSv1_2 ECDHE-RSA-DES-CBC3-SHA
   * TLSv1_2 EDH-RSA-DES-CBC3-SHA
   * TLSv1_2 AES256-GCM-SHA384
   * TLSv1_2 AES128-GCM-SHA256
   * TLSv1_2 AES256-SHA256
   * TLSv1_2 AES256-SHA
   * TLSv1_2 AES128-SHA256
   * TLSv1_2 AES128-SHA
   * TLSv1_2 DES-CBC3-SHA



TLS connect to this IMAP account worked with version 8.3.0.25 (BETA) (32-bit).

I hope that helps you.

-- 
Regards
Gwen

Using The Bat! Version 8.3.0.26 (BETA) (32-bit) on Windows 10.0 (Build 17134 )

Attachment: pgpa5mBr7fICQ.pgp
Description: PGP signature

________________________________________________________
 Current beta is 8.3.0.26 | 'Using TBBETA' information:
http://www.silverstones.com/thebat/TBUDLInfo.html

Reply via email to