Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I can't explain it, no unfortunately

But what about someone maintaining and developing, say, an obscure e-mail client?



If someone's maintaining an old/obscure email client, I would expect them to be importing a TLS library under the "don't roll your own crypto" principle. Assuming it's been updated at some point in the last ~15 years, it's probably capable of auto-negotiating to something better than 3DES.

And if it hasn't been updated for that long, it probably doesn't support TLS 1.2 and is getting rejected from just about everything for that reason.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: