Martín Córdova

Wrong handshake emulation for IE11/Win7

Discussion created by Martín Córdova on Jan 29, 2015
Latest reply on Jan 29, 2015 by Martín Córdova

SSLTest reports this result for IE11/Win7:

 

TLS 1.2TLS_RSA_WITH_3DES_EDE_CBC_SHA (0xa No FS

 

But this is incorrect, real IE11 on Win7 SP1 HomePremium x64 reports this:

 

"TLS 1.2, AES with 256 bit encryption (High); ECDH_P256 with 256 bit exchange" which is  TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, with FS support. Since this is a reference browser I consider it is important to fix it, since it affects score regarding not supporting FS on reference browsers.

 

I suspect that handshake results for IE8/IE10 running on Win7 may also be incorrect.

 

Regards,

Martin

Outcomes