|
From: | Jimmy Yuen Ho Wong |
Subject: | Re: A couple of questions and concerns about Emacs network security |
Date: | Sat, 23 Jun 2018 12:55:03 +0100 |
Jimmy Yuen Ho Wong <address@hidden> writes:
> There are more problems with NSM than just these tests. One other
> thing I can think of is, if I've set `gnutls-min-prime-bits` to 2048,
> and presented with a cert with 1536 bits, NSM does nothing for me.
It's not supposed to -- the connection is stopped at the gnutls level.
Which is why that variable defaults to 256, so that the NSM can handle
the problem.
[Prev in Thread] | Current Thread | [Next in Thread] |