We previously were accepting only TLS 1.2 and higher and I was surprised to see the amount of senders not being able to find common ciphers (I had mostly encounters with Cisco users), so we decided to also accept TLS 1.0 and 1.1.
But in my opinion, moving the needle upward by not accepting deprecated versions would force those users to be compliant and improve the general security. If we decide to keep old versions in place because not everyone can upgrade, will we still accept TLS 1.0 in 10 years from now ? 20 ? 50 ? And if that's the case, why bother working on more secure ciphers ? Le mer. 13 mars 2024, 22:24, Thomas Walter via mailop <mailop@mailop.org> a écrit : > > > On 13.03.24 18:55, Slavko via mailop wrote: > > Dňa 13. marca 2024 16:32:42 UTC používateľ Andrew C Aitchison via mailop > <mailop@mailop.org> napísal: > > > >> Has anyone checked what traffic is still using TLS 1.0 or TLS 1.1 ? > > > > Yes, some infected machines from DZ, BR, AR, ID and so :-) > So we are removing a perfectly good marker to increase spam scores? > > Just saying... :-) > > Regards, > Thomas Walter > > -- > Thomas Walter > Datenverarbeitungszentrale > > FH Münster > - University of Applied Sciences - > Corrensstr. 25, Raum B 112 > 48149 Münster > > Tel: +49 251 83 64 908 > Fax: +49 251 83 64 910 > www.fh-muenster.de/dvz/ > _______________________________________________ > mailop mailing list > mailop@mailop.org > https://list.mailop.org/listinfo/mailop >
_______________________________________________ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop