Skip to Content.
Sympa Menu

cacert-de - Re: heise zu massentaugliche E-Mail-Verschlüsselung

Subject: Deutschsprachige CAcert Support Liste

List archive

Re: heise zu massentaugliche E-Mail-Verschlüsselung


Chronological Thread 
  • From: Christian Felsing <hostmaster AT ip6.li>
  • To: cacert-de AT lists.cacert.org
  • Subject: Re: heise zu massentaugliche E-Mail-Verschlüsselung
  • Date: Mon, 23 Feb 2015 11:47:05 +0100

Am 23.02.15 um 11:30 schrieb Matthias Bergt:


> Postbank AG**
> ...
> ** wirbt wieder mal mit dem angeblich sichersten Online-Banking

Hallo Matthias,

ist damit etwa dieser Server gemeint?

banking.postbank.de

[1] This server is vulnerable to the POODLE attack. If possible, disable SSL 3
to mitigate. Grade capped to C.
Certificate uses a weak signature. When renewing, ensure you upgrade to SHA2.
This server accepts the RC4 cipher, which is weak. Grade capped to B.
The server does not support Forward Secrecy with the reference browsers.

oder der in einem Paralleluniversum?

[1] Quelle: ssllabs.com

Viele Grüße
Christian


Attachment: smime.p7s
Description: S/MIME Cryptographic Signature




Archive powered by MHonArc 2.6.18.

Top of Page