Re: Sites which fail with tls > 1.0

2014-02-14 Thread cloos
Matthias Hunstock writes: > Firefox 27, default settings, connection to a SSL site fails with > "sec_error_input_len". Downgrading to TLS 1.1 via setting > security.tls.version.max to "2" --> works. What site? -JimC -- James Cloos OpenPGP: 1024D/ED7D

Re: Sites which fail with tls > 1.0

2014-02-05 Thread cloos
es an explicit prefs setting. Is the retry logic in nss or in mozilla-central? And if the latter, can anyone help narrow the search? I didn't find anything relevant in comm-central. Thanks, -JimC -- James Cloos OpenPGP: 1024D/ED7DAEA6 -- dev-tech-crypto mailing list dev-tech-crypt

Re: Sites which fail with tls > 1.0

2014-01-29 Thread cloos
ain. Since the retry problem seems limited to sm, It seems my post was a false alarm. :( Sorry for that. -JimC -- James Cloos OpenPGP: 1024D/ED7DAEA6 -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto

Re: Sites which fail with tls > 1.0

2014-01-28 Thread cloos
ed with 1.0, since it defaults to 1.2 when connecting to my servers. -JimC -- James Cloos OpenPGP: 1024D/ED7DAEA6 -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto

Sites which fail with tls > 1.0

2014-01-27 Thread cloos
o get ff (26) or sm (2.23) to get her (relevant) profile to log in to their site. [Side note: +\inf on the concecpt of profiles; one of Gecko's most important features!] -JimC -- James Cloos OpenPGP: 1024D/ED7DAEA6 -- dev-tech-crypto mailing list dev-tech-crypto@lists.m

Re: [Ach] Proposal to Remove legacy TLS Ciphersuits Offered by Firefox

2014-01-05 Thread cloos
a /lot/ of pre-aes-ni hardware in use. -JimC -- James Cloos OpenPGP: 1024D/ED7DAEA6 -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto

Re: Proposal to Remove legacy TLS Ciphersuits Offered by Firefox

2013-12-14 Thread cloos
A certs? Is that intra-government usage? -JimC -- James Cloos OpenPGP: 1024D/ED7DAEA6 -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto

Re: Rus GOST 89

2009-09-15 Thread James Cloos
you can still use/modify/distribute/etc the contributed code after contributing it to the FSF. But only because they explicitly license it back. (How that interacts with the extent to which the contributed code is a derivative of GPL or LGPL code sounds like an interesting question.) -JimC -- J