Qualys SSL Labs - Projects / User Agent Capabilities: Java 6u45 has "Forward Secrecy" after the DHE_DSA suites in gray with the footnote "Cannot be used for Forward Secrecy because they require DSA keys, which are effectively limited to 1024 bits." but then it's shown in green next to the DHE_RSA suites, even though they're limited to 1024-bit DH parameters with java 6. shouldn't it be in gray there, too? and java 6 listed as not supporting forward secrecy in the handshake simulation, just like IE on windows XP? also, should weak (<2048-bit) DHE count as forward secrecy in the server test?
Message was edited by: lily wilson