Comment 6 for bug 1864689

Revision history for this message
Dimitri John Ledkov (xnox) wrote :

About the server:

- It's certificate is valid for 2 years, and Apple has started to rejecting any servers for which certificate is valid for more than 13 months.

- It has a SHA1withRSA certificate in its chain, which will be rejected by all clients soon.

- It supports many weak TLSv1.2 ciphersuites

- It is susceptible to OpenSSL 0-Length attack

Please contact the administrators of said website to secure it immediately & acquire certificate with shorter timespan and no SHA1 signatures.