Skip to content

aes-256-cfb is insecure #243

@fortuna

Description

@fortuna

You should be using one of the AEAD ciphers instead, since they provide authentication of the encrypted content. Otherwise your server will be unprotected from certain types of attacks: shadowsocks/shadowsocks-org#29

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions