Join the AMA (Ask Me Anything) with the Firefox leadership team to celebrate Firefox 20th anniversary and discuss Firefox’s future on Mozilla Connect. Mark your calendar on Thursday, November 14, 18:00 - 20:00 UTC!

ابحث في الدعم

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

Why did you spent time for integration of Pocket and not in solving the "Logjam"-vulberability?

  • 2 (ردّان اثنان)
  • 1 has this problem
  • 1 view
  • آخر ردّ كتبه cor-el

more options

Why was the logjam-problem not solved? I think it's more impotant than the pocket-integration.

Why was the logjam-problem not solved? I think it's more impotant than the pocket-integration.

الحل المُختار

You can also toggle the involved prefs to false on the about:config page.

  • security.ssl3.dhe_rsa_aes_128_sha
  • security.ssl3.dhe_rsa_aes_256_sha

You can open the about:config page via the location/address bar. You can accept the warning and click "I'll be careful" to continue.

Read this answer in context 👍 0

All Replies (2)

more options

hi thairis, mozilla cannot "solve" the logjam vulnerability since this is a vulnerability in the configuration of web-servers (that their respective owners, admins would have to fix). all a browser can do (and firefox 39 will do) is to disallow users from accessing insecure servers and displaying an error message instead. until then you can use this mozilla-provided addon: https://addons.mozilla.org/firefox/addon/disable-dhe/

more options

الحل المُختار

You can also toggle the involved prefs to false on the about:config page.

  • security.ssl3.dhe_rsa_aes_128_sha
  • security.ssl3.dhe_rsa_aes_256_sha

You can open the about:config page via the location/address bar. You can accept the warning and click "I'll be careful" to continue.