From owner-freebsd-security@FreeBSD.ORG Thu May 3 13:41:03 2012 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 6377E106564A for ; Thu, 3 May 2012 13:41:03 +0000 (UTC) (envelope-from feld@feld.me) Received: from feld.me (unknown [IPv6:2607:f4e0:100:300::2]) by mx1.freebsd.org (Postfix) with ESMTP id 2B9638FC16 for ; Thu, 3 May 2012 13:41:02 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=feld.me; s=blargle; h=In-Reply-To:Message-Id:From:Mime-Version:Date:References:Subject:To:Content-Type; bh=t27UAmYQwD+28Ms0wTteMf1pl4jzHH4ylncSRrvpSGY=; b=qZ1NdjIiihSqLcOY9dA9rxG4aFdyLx/+7YgtDjxn7cQl1qpBjtXu/PsjUCP8MYj1hA0u7jOpl+cUf/BazzYBpxwOSeBclXEINWkvE5VkCYeJ3BeY3QEgc+nfOmDuxbm8; Received: from localhost ([127.0.0.1] helo=mwi1.coffeenet.org) by feld.me with esmtp (Exim 4.77 (FreeBSD)) (envelope-from ) id 1SPwH9-0005An-5h for freebsd-security@freebsd.org; Thu, 03 May 2012 08:41:01 -0500 Received: from feld@feld.me by mwi1.coffeenet.org (Archiveopteryx 3.1.4) with esmtpa id 1336052449-30163-30162/5/48; Thu, 3 May 2012 13:40:49 +0000 Content-Type: text/plain; charset=utf-8; format=flowed; delsp=yes To: freebsd-security@freebsd.org References: <201205022201.50506.matt@chronos.org.uk> <201205022345.27904.matt@chronos.org.uk> Date: Thu, 3 May 2012 08:40:49 -0500 Mime-Version: 1.0 From: Mark Felder Message-Id: In-Reply-To: <201205022345.27904.matt@chronos.org.uk> User-Agent: Opera Mail/11.62 (FreeBSD) X-SA-Score: -1.5 Subject: Re: OpenSSL and Heimdal X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 03 May 2012 13:41:03 -0000 On Wed, 02 May 2012 17:45:27 -0500, Matt Dawson wrote: > > IE might be the only client with support for those protocols right now > but somebody has to lead the way on the server side or you end up with > a mutual apathy loop (AKA positive can't be arsed feedback loop). Actually Opera is the only browser on the market that supports TLS 1.2, unless Firefox or Chrome added support within the last 6 months. I doubt it though because FF and Chrome tend to use already existing open source infrastructure and Opera forged ahead and wrote their own TLS 1.2 code.