Comment 9 for bug 1414790

Revision history for this message
Michael Renner (robe) wrote :

To quote from draft-ietf-uta-tls-bcp-09 (https://tools.ietf.org/html/draft-ietf-uta-tls-bcp-09#page-9)

   o Implementations MUST NOT negotiate RC4 cipher suites.

      Rationale: The RC4 stream cipher has a variety of cryptographic
      weaknesses, as documented in [I-D.ietf-tls-prohibiting-rc4]. Note
      that DTLS specifically forbids the use of RC4 already.