3 ms·
The explanation of the Full cipher suite format has some tiny mistakes for the explained case. > Use GCM for the cipher mode > Use SHA256 for message authentic
by masta 12y ago
The explanation of the Full cipher suite format has some tiny mistakes for the explained case.
> Use GCM for the cipher mode
> Use SHA256 for message authentication (making sure messages haven't been tampered with)
GCM is an AEAD-Mode, it builts upon CTR-Mode, but also provides message authentication. SHA256 is used as a PRF (Pseudo Random Function) to generate key material based on the master secrect. See https://tools.ietf.org/html/rfc5246 https://tools.ietf.org/html/rfc5246 Section 5 for more information.
- nailer 12y agoThank you! I've published a correction in the article and credited you.