Add perfect forward secrecy to the VPN/Communication criteria #240

Closed
opened 2017-06-29 12:37:19 +00:00 by haroon-ali · 3 comments
haroon-ali commented 2017-06-29 12:37:19 +00:00 (Migrated from github.com)

Hi,
I think that "perfect forward secrecy" should not be optional in a serious secure service any more.

So for communication services/apps and VPN it should be included in the criteria.
Per connection, per session or per time-interval whatsoever but it should be implemented & enabled by default.

Hi, I think that "perfect forward secrecy" should not be optional in a serious secure service any more. So for communication services/apps and VPN it should be included in the criteria. Per connection, per session or per time-interval whatsoever but it should be implemented & enabled by default.
Hillside502 commented 2017-06-29 13:09:11 +00:00 (Migrated from github.com)

Forward secrecy - Wikipedia
https://en.wikipedia.org/wiki/Forward_secrecy

SSL Server Test (Powered by Qualys SSL Labs)
https://www.ssllabs.com/ssltest/index.html

Forward secrecy - Wikipedia https://en.wikipedia.org/wiki/Forward_secrecy SSL Server Test (Powered by Qualys SSL Labs) https://www.ssllabs.com/ssltest/index.html
kewde commented 2017-07-16 18:55:47 +00:00 (Migrated from github.com)

PFS-by-default is already an industry standard alive among messaging applications and SSL/TLS, I don't know how many VPN support it however.

PFS-by-default is already an industry standard alive among messaging applications and SSL/TLS, I don't know how many VPN support it however.
- [x] IVPN: https://www.ivpn.net/knowledgebase/106/Does-IVPN-offer-Perfect-Forward-Secrecy-PFS.html - [x] ProtonVPN: https://protonvpn.com/secure-vpn - [x] NordVPN: https://support.nordvpn.com/Getting-started/1047408592/Which-protocol-should-I-choose.htm - [x] Mullvad: https://mullvad.net/en/what-is-vpn/
This repo is archived. You cannot comment on issues.
No Milestone
No Assignees
1 Participants
Due Date
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

No due date set.

Dependencies

No dependencies set.

Reference: privacyguides/privacytools.io#240
No description provided.