La empresa Swisscom cambiará sus protocolos TLS y ya no admitirá versiones de protocolo TLS no seguras ni procesos criptográficos. El cambio tendrá lugar el 29 de octubre de 2020 a las 10 p.m. Lo siguiente cambiará:
- Ya no es compatible con TLS versión 1.0
- Ya no es compatible con TLS versión 1.1
- Ya no es compatible con la siguiente criptografía TLS-Versión 1.2:
- AES256-GCM-SHA384
- AES256-SHA256
- AES256-SHA
- AES128-GCM-SHA256
- AES128-SHA256
- AES128-SHA
¡Compruebe sus conexiones TLS con nosotros! Esta es la nueva configuración con los chiffres admitidos restantes después del cambio:
SUITE |
BITS |
PROT |
CIPHER |
MAC |
KEYX |
ECDHE-RSA-AES256-GCM-SHA384 |
256 |
TLS1.2 |
AES-GCM |
SHA384 |
ECDHE_RSA |
ECDHE-RSA-AES256-SHA384 |
256 |
TLS1.2 |
AES |
SHA384 |
ECDHE_RSA |
ECDHE-RSA-AES256-CBC-SHA |
256 |
TLS1.2 |
AES |
SHA |
ECDHE_RSA |
ECDHE-RSA-AES128-GCM-SHA256 |
128 |
TLS1.2 |
AES-GCM |
SHA256 |
ECDHE_RSA |
ECDHE-RSA-AES128-SHA256 |
128 |
TLS1.2 |
AES |
SHA256 |
ECDHE_RSA |
ECDHE-RSA-AES128-CBC-SHA |
128 |
TLS1.2 |
AES |
SHA |
ECDHE_RSA |
Der Vollständigkeit nach ist dies die aktuelle Liste der Verschlüsselungssammlungen, die mit dem entsprechenden Protokoll aktiviert sind:
SUITE |
BITS |
PROT |
CIPHER |
MAC |
KEYX |
ECDHE-RSA-AES256-GCM-SHA384 |
256 |
TLS1.2 |
AES-GCM |
SHA384 |
ECDHE_RSA |
ECDHE-RSA-AES256-SHA384 |
256 |
TLS1.2 |
AES |
SHA384 |
ECDHE_RSA |
ECDHE-RSA-AES256-CBC-SHA |
256 |
TLS1 |
AES |
SHA |
ECDHE_RSA |
ECDHE-RSA-AES256-CBC-SHA |
256 |
TLS1.1 |
AES |
SHA |
ECDHE_RSA |
ECDHE-RSA-AES256-CBC-SHA |
256 |
TLS1.2 |
AES |
SHA |
ECDHE_RSA |
AES256-GCM-SHA384 |
256 |
TLS1.2 |
AES-GCM |
SHA384 |
RSA |
AES256-SHA256 |
256 |
TLS1.2 |
AES |
SHA256 |
RSA |
AES256-SHA |
256 |
TLS1 |
AES |
SHA |
RSA |
AES256-SHA |
256 |
TLS1.1 |
AES |
SHA |
RSA |
AES256-SHA |
256 |
TLS1.2 |
AES |
SHA |
RSA |
AES256-SHA |
256 |
DTLS1 |
AES |
SHA |
RSA |
ECDHE-RSA-AES128-GCM-SHA256 |
128 |
TLS1.2 |
AES-GCM |
SHA256 |
ECDHE_RSA |
ECDHE-RSA-AES128-SHA256 |
128 |
TLS1.2 |
AES |
SHA256 |
ECDHE_RSA |
ECDHE-RSA-AES128-CBC-SHA |
128 |
TLS1 |
AES |
SHA |
ECDHE_RSA |
ECDHE-RSA-AES128-CBC-SHA |
128 |
TLS1.1 |
AES |
SHA |
ECDHE_RSA |
ECDHE-RSA-AES128-CBC-SHA |
128 |
TLS1.2 |
AES |
SHA |
ECDHE_RSA |
AES128-GCM-SHA256 |
128 |
TLS1.2 |
AES-GCM |
SHA256 |
RSA |
AES128-SHA256 |
128 |
TLS1.2 |
AES |
SHA256 |
RSA |
AES128-SHA |
128 |
TLS1 |
AES |
SHA |
RSA |
AES128-SHA |
128 |
TLS1.1 |
AES |
SHA |
RSA |
AES128-SHA |
128 |
TLS1.2 |
AES |
SHA |
RSA |
AES128-SHA |
128 |
DTLS1 |
AES |
|
Se eliminarán estas suites:
SUITE |
BITS |
PROT |
CIPHER |
MAC |
KEYX |
ECDHE-RSA-AES256-CBC-SHA |
256 |
TLS1 |
AES |
SHA |
ECDHE_RSA |
ECDHE-RSA-AES256-CBC-SHA |
256 |
TLS1.1 |
AES |
SHA |
ECDHE_RSA |
AES256-GCM-SHA384 |
256 |
TLS1.2 |
AES-GCM |
SHA384 |
RSA |
AES256-SHA256 |
256 |
TLS1.2 |
AES |
SHA256 |
RSA |
AES256-SHA |
256 |
TLS1 |
AES |
SHA |
RSA |
AES256-SHA |
256 |
TLS1.1 |
AES |
SHA |
RSA |
AES256-SHA |
256 |
TLS1.2 |
AES |
SHA |
RSA |
AES256-SHA |
256 |
DTLS1 |
AES |
SHA |
RSA |
ECDHE-RSA-AES128-CBC-SHA |
128 |
TLS1 |
AES |
SHA |
ECDHE_RSA |
ECDHE-RSA-AES128-CBC-SHA |
128 |
TLS1.1 |
AES |
SHA |
ECDHE_RSA |
AES128-GCM-SHA256 |
128 |
TLS1.2 |
AES-GCM |
SHA256 |
RSA |
AES128-SHA256 |
128 |
TLS1.2 |
AES |
SHA256 |
RSA |
AES128-SHA |
128 |
TLS1 |
AES |
SHA |
RSA |
AES128-SHA |
128 |
TLS1.1 |
AES |
SHA |
RSA |
AES128-SHA |
128 |
TLS1.2 |
AES |
SHA |
RSA |
AES128-SHA |
128 |
DTLS1 |
AES |