3 ms·
I wonder how they manage the SHA-1 fallback? Guess it might be a proxy which decides it, based on the user-agent.
by tomputer 11y ago
I wonder how they manage the SHA-1 fallback? Guess it might be a proxy which decides it, based on the user-agent.
- jgrahamc 11y agoBy examining the ClientHello.
- r1ch 11y agoWouldn't this make modern browsers vulnerable to a downgrade attack via an active MITM?
- deleted 11y ago[deleted]
- ianlevesque 11y agoModern browsers are removing SHA-1 support. The MITM would not be able to downgrade them to something they've removed.