We previously were accepting only TLS 1.2 and higher and I was surprised to
see the amount of senders not being able to find common ciphers (I had
mostly encounters with Cisco users), so we decided to also accept TLS 1.0
and 1.1.

But in my opinion, moving the needle upward by not accepting deprecated
versions would force those users to be compliant and improve the general
security.

If we decide to keep old versions in place because not everyone can
upgrade, will we still accept TLS 1.0 in 10 years from now ? 20 ? 50 ?

And if that's the case, why bother working on more secure ciphers ?

Le mer. 13 mars 2024, 22:24, Thomas Walter via mailop <mailop@mailop.org> a
écrit :

>
>
> On 13.03.24 18:55, Slavko via mailop wrote:
> > Dňa 13. marca 2024 16:32:42 UTC používateľ Andrew C Aitchison via mailop
> <mailop@mailop.org> napísal:
> >
> >> Has anyone checked what traffic is still using TLS 1.0 or TLS 1.1 ?
> >
> > Yes, some infected machines from DZ, BR, AR, ID and so :-)
> So we are removing a perfectly good marker to increase spam scores?
>
> Just saying... :-)
>
> Regards,
> Thomas Walter
>
> --
> Thomas Walter
> Datenverarbeitungszentrale
>
> FH Münster
> - University of Applied Sciences -
> Corrensstr. 25, Raum B 112
> 48149 Münster
>
> Tel: +49 251 83 64 908
> Fax: +49 251 83 64 910
> www.fh-muenster.de/dvz/
> _______________________________________________
> mailop mailing list
> mailop@mailop.org
> https://list.mailop.org/listinfo/mailop
>
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to