ANNOUNCE: PureTLS 0.9b4
Eric Rescorla
ekr at rtfm.com
Sun May 4 11:16:59 EDT 2003
ANNOUNCE: PureTLS version 0.9b4
Copyright (C) 1999-2002 Claymore Systems, Inc.
http://www.rtfm.com/puretls
DESCRIPTION
PureTLS is a free Java-only implementation of the SSLv3 and TLSv1
(RFC2246) protocols. PureTLS was developed by Eric Rescorla for
Claymore Systems, Inc, but is being distributed for free because we
believe that basic network security is a public good and should be a
commodity. PureTLS is licensed under a Berkeley-style license, which
basically means that you can do anything you want with it, provided
that you give us credit.
This is a beta release of PureTLS. Although it has undergone a fair
amount of testing and is believed to operate correctly, it no doubt contains
significant bugs, which this release is intended to shake out. Please
send any bug reports to the author at <ekr at rtfm.com>.
0.9b4 is a bugfix release which includes protection against timing
attacks on RSA (Boneh-Brumley/Kocher) and CBC padding (Vaudenay).
Server users and clients who do client authentication should upgrade.
Client-only users may not need to.
WEB SITE
http://www.rtfm.com/puretls
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com
More information about the cryptography
mailing list