Re: The TLS Report

2008-06-10 Thread Mohamad Badra
Mohamad Badra CNRS - LIMOS Laboratory Eddy Nigg (StartCom Ltd.) a écrit : > Frank Hecker: >> I tried out my own site on it, and got a C. I think you deserve better than Addy if you enable EDH based ciphersuites :) > > LOL, I got a A 80 :-) Bravo, better than Microsoft:

Re: verifying peer identity during handshake

2008-05-21 Thread Badra
. > > Right now there is no such callback available in NSS' lbissl to do what > you want. > > Why do you want to use non-standard authentication ? SSL/TLS client > authentication is already available and standard. > ___ > Fingerprint-ba

Re: ssl without data encryption

2006-03-29 Thread Mohamad Badra
Hello Berle, You can use the following CipherSuite TLS_RSA_WITH_NULL_MD5 TLS_RSA_WITH_NULL_SHA Badra berle oliver a écrit: Hello, Is there a way to turn off data encryption on an SSL connection? In my case client authentication is much more important and the data encryption step simply adds