Skip to content

[Doc] Update required for outdated link in libp2p TLS Handshake (specs/tls/tls.md) #510

@MuhtasimTanmoy

Description

@MuhtasimTanmoy

This doc specs/tls/tls.md contains an outdated link in the following section.

Certificates MUST use the NamedCurve encoding for elliptic curve parameters. Endpoints MUST abort the connection attempt if is not used. Failure to enforce this restriction allows “Whose Curve Is It Anyway” attacks, which completely compromise the security of the connection. Similarly, hash functions with an output length less than 256 bits MUST NOT be used, due to the possibility of collision attacks. In particular, MD5 and SHA1 MUST NOT be used.

Does it needs to be updated with link from web archive or should be removed?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions