
5/3/2014 · John Graham-Cumming
What this post added
This post details Cloudflare's proactive approach to managing and evolving its SSL/TLS configuration in response to emerging security threats. It introduces a new mechanism for tracking these changes via a GitHub repository (sslconfig) and highlights specific security vulnerabilities addressed, such as Lucky 13, BEAST, and RC4 biases. The post also emphasizes the adoption of advanced cryptographic techniques like ECDSA and Perfect Forward Secrecy to enhance customer security.