[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Netscape Export + 128bits SSL (?)



Jean-Paul Kroepfli wrote:
> 
> Do you know if it's possible to use Netscape client (export = 40bits
> RC4) on an external SSL layer (i.e., with full encryption, RC4 long
> keys or IDEA)?
> Use extra-US implantation (SSL-Leavy or AppacheSSL, etc.) the IDEA
> option?

Nope.

> It seems that IDEA is no longer supported by SSL 3 (in the cipher
> suite we see IDEA with RSA but not with D-H).

IDEA is in no way deprecated in SSL 3.0.  We were just trying to prune
the list of cipher suites to what we thought was useful.

The cipher suites specified in the SSL 3.0 protocol document are only
a beginning.  All cipher suites beginning with 0xFF are reserved for
experimental use.  As part of the IETF standards process, I'd like
to see an IANA registry set up for registering new cipher suites.

-- 
Sure we spend a lot of money, but that doesn't mean | Tom Weinstein
we *do* anything.  --  Washington DC motto          | [email protected]