Zomanga zausiku za Firefox zayimitsa chithandizo cha TLS 1.0 ndi TLS 1.1

Π’ amamanga usiku Firefox mwachisawawa olumala kuthandizira kwa ma protocol a TLS 1.0 ndi TLS 1.1 (chitetezo.tls.version.min yakhazikitsidwa ku 3, yomwe imayika TLS 1.2 ngati mtundu wocheperako). Pakutulutsa kokhazikika, TLS 1.0/1.1 ikukonzekera kuyimitsidwa mu Marichi 2020. Mu Chrome, chithandizo cha TLS 1.0/1.1 chidzatsitsidwa mu Chrome 81, chomwe chikuyembekezeka mu Januware 2020.

Mafotokozedwe a TLS 1.0 adasindikizidwa mu Januware 1999. Zaka zisanu ndi ziwiri pambuyo pake, zosintha za TLS 1.1 zidatulutsidwa ndikusintha kwachitetezo kokhudzana ndi m'badwo wa ma vector oyambitsa ndi padding. Pakadali pano, komiti ya IETF (Internet Engineering Task Force) yomwe ikugwira nawo ntchito yopanga ma protocol ndi zomangamanga pa intaneti,
akukula zolemba zomwe zikutsitsa ma protocol a TLS 1.0/1.1. Malinga ndi utumiki SSL Pulse kuyambira Seputembara 3, protocol ya TLS 1.2 imathandizidwa ndi 95.8% yamasamba omwe amalola kukhazikitsidwa kwa kulumikizana kotetezeka, ndi TLS 1.3 - ndi 17.7%. Malumikizidwe a TLS 1.1 amavomerezedwa ndi 75.5% ya masamba a HTTPS, pomwe ma TLS 1.0 amavomerezedwa ndi 65.5%.

Mavuto akuluakulu a TLS 1.0 / 1.1 ndi kusowa kwa chithandizo cha ma ciphers amakono (mwachitsanzo, ECDHE ndi AEAD) komanso kufunikira kothandizira ma ciphers akale, kudalirika komwe kumakayikiridwa pakali pano pakukula kwaukadaulo wamakompyuta (mwachitsanzo. , thandizo la TLS_DHE_DSS_WITH_3DES_EDE_CBC_SHA likufunika, MD5 ndi SHA amagwiritsidwa ntchito pofufuza ndi kutsimikizira -1). Kuthandizira ma aligorivimu akale kwapangitsa kale kuukira monga
ROBOT, AMAMERA, CHIYAMBI, logjam ΠΈ ZONSE. Komabe, mavutowa sanali kuonedwa mwachindunji chiwopsezo protocol ndipo anathetsedwa pa mlingo wa kukhazikitsa kwake. Ma protocol a TLS 1.0/1.1 pawokha alibe zovuta zomwe zingagwiritsidwe ntchito pochita ziwonetsero.

Source: opennet.ru

Kuwonjezera ndemanga