31 ms·
Who is affected? Websites, mail servers, and other Transport Layer Security (TLS) dependent services that support Diffie-Hellman key exchange using ephemeral k
by c0r0n3r 4y ago
Who is affected?
Websites, mail servers, and other Transport Layer Security (TLS) dependent services that support Diffie-Hellman key exchange using ephemeral keys (DHE cipher suites) are at risk of the DHEat attack. Services using other cryptographic protocols can also be affected.
* Secure Shell (SSH) services support Diffie-Hellman key exchange methods.
* Internet Protocol Security (IPsec) services offer DH groups.
* OpenVPN servers support Diffie-Hellman key exchange in the control channel (DHE TLS ciphers).